--------[ EVEREST Ultimate Edition ]------------------------------------------------------------------------------------

                                                EVEREST v5.02.1819 Beta/ru
                                        2.4.258.0
                                      http://www.lavalys.com/
                                              
                                             RAZINKIN-7C1358
                                             Administrator
                                   Microsoft Windows XP Professional x64 Edition 5.2.3790 (Win2003 Retail)
                                                  2009-11-09
                                                 22:08


--------[   ]----------------------------------------------------------------------------------------

    :
                                           ACPI Multiprocessor x64-based PC
                                     Microsoft Windows XP Professional x64 Edition
                                       Service Pack 2
      Internet Explorer                                 6.0.3790.1830
      DirectX                                           4.10.0.18000 (DirectX 10)
                                           RAZINKIN-7C1358
                                         Administrator
                                              RAZINKIN-7C1358
       /                                       2009-11-09 / 22:08

     :
                                                   DualCore Intel Core 2 Duo E8400, 3078 MHz (9 x 342)
                                          Asus P5QC  (2 PCI, 3 PCI-E x1, 1 PCI-E x16, 4 DDR2 DIMM, 2 DDR3 DIMM, Audio, Gigabit LAN, IEEE-1394)
                                    Intel Eaglelake P45
                                         4096   (DDR3-1333 DDR3 SDRAM)
      DIMM2: Kingston 9905403-011.A03LF                 2  DDR3-1333 DDR3 SDRAM  (8-8-8-22 @ 609 )  (7-7-7-20 @ 533 )  (6-6-6-17 @ 457 )
      DIMM4: Kingston 9905403-011.A01LF                 2  DDR3-1333 DDR3 SDRAM  (9-9-9-24 @ 666 )  (8-8-8-22 @ 592 )  (7-7-7-19 @ 518 )  (6-6-6-16 @ 444 )
       BIOS                                          AMI (04/27/09)
                                    Communications Port (COM1)

    :
                                            NVIDIA GeForce GTX 260  (896 )
      3D-                                    nVIDIA GeForce GTX 260
                                                 LG Flatron 795FT Plus  [17" CRT]  (100016843009)

    :
                                         Realtek ALC1200 @ Intel 82801JB ICH10 - High Definition Audio Controller

     :
       IDE                                    Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
       IDE                                    Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20
                                A64FS6YR IDE Controller
                                Marvell 61xx RAID Controller
      -                                 Floppy disk drive
                                      JetFlash TS2GJF150 USB Device  (1959 , USB)
                                      Kingston DataTraveler 2.0 USB Device  (245 , USB)
                                      WDC WD1200JS-22MHB0  (111 , IDE)
                                    _NEC DVD_RW ND-3540A SCSI CdRom Device  (DVD+R9:8x, DVD-R9:4x, DVD+RW:16x/8x, DVD-RW:16x/6x, DVD-ROM:16x, CD:48x/32x/48x DVD+RW/DVD-RW)
                                    GTQRWDC IZW9QNOLI SCSI CdRom Device
       SMART                         FAIL

    :
      C: (NTFS)                                         17171  (2095  )
      D: (NTFS)                                         97284  (11440  )
                                              111.8  (13.2  )

    :
                                              Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
                                                    Microsoft PS/2 Mouse

    :
        IP                                127.0.0.1
        MAC                               00-22-15-F0-EE-81
                                          Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller

     :
                                                 Samsung SCX-4200 Series
       FireWire                               AT&T/Lucent IEEE1394 FireWire Controller (PHY: Agere LFW3226/3227)
       USB1                                   Intel 82801JB ICH10 - USB Universal Host Controller
       USB1                                   Intel 82801JB ICH10 - USB Universal Host Controller
       USB1                                   Intel 82801JB ICH10 - USB Universal Host Controller
       USB1                                   Intel 82801JB ICH10 - USB Universal Host Controller
       USB1                                   Intel 82801JB ICH10 - USB Universal Host Controller
       USB1                                   Intel 82801JB ICH10 - USB Universal Host Controller
       USB2                                   Intel 82801JB ICH10 - USB2 Enhanced Host Controller
       USB2                                   Intel 82801JB ICH10 - USB2 Enhanced Host Controller
      USB-                                    USB Mass Storage Device
      USB-                                    USB Mass Storage Device

    DMI:
      DMI  BIOS                                American Megatrends Inc.
      DMI  BIOS                                   2103
      DMI                           System manufacturer
      DMI                                        P5QC
      DMI                                System Version
      DMI                         System Serial Number
      DMI  UUID                                A00D001E-8C000179-396A0022-15F0EE81
      DMI                    ASUSTeK Computer INC.
      DMI                                 P5QC
      DMI                           Rev 2.xx
      DMI                    MS1C88B85B00045
      DMI                             Chassis Manufacture
      DMI                                    Chassis Version
      DMI                             Chassis Serial Number
      DMI Asset-                                Asset-1234567890
      DMI                                       Desktop Case
      DMI  /                 4 / 2


--------[   ]----------------------------------------------------------------------------------------------

          
     NetBIOS                 RAZINKIN-7C1358
      DNS               razinkin-7c1358
      DNS              
      DNS              razinkin-7c1358
     NetBIOS                 RAZINKIN-7C1358
      DNS               razinkin-7c1358
      DNS              
      DNS              razinkin-7c1358


--------[ DMI ]---------------------------------------------------------------------------------------------------------

  [ BIOS ]

     BIOS:
                                           American Megatrends Inc.
                                                  2103
                                             04/27/2009
                                                  1024 
                                   Floppy Disk, Hard Disk, CD-ROM, ATAPI ZIP, LS-120
                                             Flash BIOS, Shadow BIOS, Selectable Boot, EDD, BBS
                                 DMI, APM, ACPI, ESCD, PnP
                                   ISA, PCI, USB

  [  ]

     :
                                           System manufacturer
                                                 P5QC
                                                  System Version
                                           System Serial Number
      SKU#                                              To Be Filled By O.E.M.
                                               To Be Filled By O.E.M.
        ID                       A00D001E-8C000179-396A0022-15F0EE81
                                           

  [   ]

      :
                                           ASUSTeK Computer INC.
                                                 P5QC
                                                  Rev 2.xx
                                           MS1C88B85B00045

  [  ]

     :
                                           Chassis Manufacture
                                                  Chassis Version
                                           Chassis Serial Number
                                            Asset-1234567890
                                                
                                     
                               
                                  
                                   

  [   ]

      :
                                  64-bit ECC
                                         
                              1-Way
                                1-Way
                                DIMM
                   3.3V
                           2048 
                                           4

  [  / Intel(R) Core(TM)2 Duo CPU E8400 @ 3.00GHz ]

     :
                                           Intel
                                                  Intel(R) Core(TM)2 Duo CPU E8400 @ 3.00GHz
                                           To Be Filled By O.E.M.
                                            To Be Filled By O.E.M.
                                          To Be Filled By O.E.M.
                                          333 
                                     3800 
                                          3000 
                                                     Central Processor
                                       1.2 V
                                                  
                                              LGA 775
      HTT / CMP                                         1 / 2

  [ - / L1-Cache ]

     :
                                                     
                                                  
                                             Write-Back
                                         8-way Set-Associative
                                       64 
                                      64 
                                         Parity
                                              L1-Cache

  [ - / L2-Cache ]

     :
                                                     
                                                  
                                             Write-Back
                                       6144 
                                      6144 
                                         Single-bit ECC
                                              L2-Cache

  [ - / L3-Cache ]

     :
                                                     
                                                  
                                       0 
                                      0 
                                              L3-Cache

  [   / DIMM0 ]

      :
                                              DIMM0
                                                     DIMM
                                       
                                          

  [   / DIMM1 ]

      :
                                              DIMM1
                                                     DIMM
                                                70 ns, 60 ns
                                      2048 
                                         2048 

  [   / DIMM2 ]

      :
                                              DIMM2
                                                     DIMM
                                       
                                          

  [   / DIMM3 ]

      :
                                              DIMM3
                                                     DIMM
                                                70 ns, 60 ns
                                      2048 
                                         2048 

  [   / DIMM0 ]

      :
      -                                       DIMM
                                              DIMM0
                                                    BANK0
                                           Manufacturer00
                                           SerNum00
                                            AssetTagNum0
                                          ModulePartNumber00

  [   / DIMM1 ]

      :
      -                                       DIMM
                                                     DDR2
                                                     Synchronous
                                                  2048 
                                                1333 
                                             64 
                                            64 
                                              DIMM1
                                                    BANK1
                                           Manufacturer01
                                           SerNum01
                                            AssetTagNum1
                                          ModulePartNumber01

  [   / DIMM2 ]

      :
      -                                       DIMM
                                              DIMM2
                                                    BANK2
                                           Manufacturer02
                                           SerNum02
                                            AssetTagNum2
                                          ModulePartNumber02

  [   / DIMM3 ]

      :
      -                                       DIMM
                                                     DDR2
                                                     Synchronous
                                                  2048 
                                                1333 
                                             64 
                                            64 
                                              DIMM3
                                                    BANK3
                                           Manufacturer03
                                           SerNum03
                                            AssetTagNum3
                                          ModulePartNumber03

  [   / PCIEX16_1 ]

      :
                                       PCIEX16_1
                                                     PCI-E x1
                                           
                                        32-bit
                                                   

  [   / PCIEX1_1 ]

      :
                                       PCIEX1_1
                                                     PCI-E x1
                                           
                                        32-bit
                                                   

  [   / PCIEX1_2 ]

      :
                                       PCIEX1_2
                                                     PCI-E x1
                                           
                                        32-bit
                                                   

  [   / PCIEX1_3 ]

      :
                                       PCIEX1_3
                                                     PCI-E x1
                                           
                                        32-bit
                                                   

  [   / PCI_1 ]

      :
                                       PCI_1
                                                     PCI-E x1
                                           
                                        64-bit
                                                   

  [   / PCI_2 ]

      :
                                       PCI_2
                                                     PCI
                                           
                                        32-bit
                                                   

  [   / PS/2 Keyboard ]

      :
                                                Keyboard Port
                                   PS/2 Keyboard
                                    
                                      PS/2 Keyboard
                                       PS/2

  [   / USB12 ]

      :
                                                USB
                                   USB12
                                    
                                      USB12
                                       USB

  [   / USB34 ]

      :
                                                USB
                                   USB34
                                    
                                      USB34
                                       USB

  [   / USB56 ]

      :
                                                USB
                                   USB56
                                    
                                      USB56
                                       USB

  [   / USB78 ]

      :
                                                USB
                                   USB78
                                    
                                      USB78
                                       USB

  [   / USB910 ]

      :
                                                USB
                                   USB910
                                    
                                      USB910
                                       USB

  [   / USB1112 ]

      :
                                                USB
                                   USB1112
                                    
                                      USB1112
                                       USB

  [   / GbE LAN ]

      :
                                                Network Port
                                   GbE LAN
                                    
                                      GbE LAN
                                       RJ-45

  [   / COM 1 ]

      :
                                                Serial Port 16550A Compatible
                                   COM 1
                                    
                                      COM 1
                                       DB-9 pin male

  [   / Audio Line Out1 ]

      :
                                                Audio Port
                                   Audio Line Out1
                                    
                                      Audio Line Out1
                                       Mini-jack (headphones)

  [   / Audio Line Out2 ]

      :
                                                Audio Port
                                   Audio Line Out2
                                    
                                      Audio Line Out2
                                       Mini-jack (headphones)

  [   / Audio Line Out3 ]

      :
                                                Audio Port
                                   Audio Line Out3
                                    
                                      Audio Line Out3
                                       Mini-jack (headphones)

  [   / Audio Line Out4 ]

      :
                                                Audio Port
                                   Audio Line Out4
                                    
                                      Audio Line Out4
                                       Mini-jack (headphones)

  [   / Audio Line Out5 ]

      :
                                                Audio Port
                                   Audio Line Out5
                                    
                                      Audio Line Out5
                                       Mini-jack (headphones)

  [   / Audio Line Out6 ]

      :
                                                Audio Port
                                   Audio Line Out6
                                    
                                      Audio Line Out6
                                       Mini-jack (headphones)

  [   / SPDIF_OUT ]

      :
                                                Audio Port
                                   SPDIF_OUT
                                    
                                      SPDIF_OUT
                                       On-Board Sound Input from CD-ROM

  [   / IE1394_1 ]

      :
                                                FireWire (IEEE P1394)
                                   IE1394_1
                                    
                                      IE1394_1
                                       1394

  [   / IE1394_2 ]

      :
                                                FireWire (IEEE P1394)
                                   IE1394_2
                                    
                                      IE1394_2
                                       1394

  [   / SATA1 ]

      :
                                                SATA
                                   SATA1
                                    SATA/SAS Plug Receptacle
                                       

  [   / SATA2 ]

      :
                                                SATA
                                   SATA2
                                    SATA/SAS Plug Receptacle
                                       

  [   / SATA3 ]

      :
                                                SATA
                                   SATA3
                                    SATA/SAS Plug Receptacle
                                       

  [   / SATA4 ]

      :
                                                SATA
                                   SATA4
                                    SATA/SAS Plug Receptacle
                                       

  [   / SATA5 ]

      :
                                                SATA
                                   SATA5
                                    SATA/SAS Plug Receptacle
                                       

  [   / SATA6 ]

      :
                                                SATA
                                   SATA6
                                    SATA/SAS Plug Receptacle
                                       

  [   / PRI_EIDE ]

      :
                                                SATA
                                   PRI_EIDE
                                    SATA/SAS Plug Receptacle
                                       

  [   / SATAE1 ]

      :
                                                SATA
                                   SATAE1
                                    SATA/SAS Plug Receptacle
                                       

  [   / SATAE2 ]

      :
                                                SATA
                                   SATAE2
                                    SATA/SAS Plug Receptacle
                                       

  [   / FLOPPY ]

      :
                                   FLOPPY
                                    On-Board Floppy
                                       

  [   / CD ]

      :
                                                Audio Port
                                   CD
                                    On-Board Sound Input from CD-ROM
                                       

  [   / AAFP ]

      :
                                                Audio Port
                                   AAFP
                                    Mini-jack (headphones)
                                       

  [   / CPU_FAN ]

      :
                                   CPU_FAN
                                       

  [   / PWR_FAN ]

      :
                                   PWR_FAN
                                       

  [   / Onboard Ethernet ]

      :
                                                Onboard Ethernet
                                                     Ethernet
                                                  

  [  ]

    :
      OEM String                                        002215F0EE81
      OEM String                                        To Be Filled By O.E.M.
      OEM String                                        To Be Filled By O.E.M.
      OEM String                                        To Be Filled By O.E.M.
      System Configuration Option                       To Be Filled By O.E.M.


--------[  ]------------------------------------------------------------------------------------------------------

     :
                                                   DualCore Intel Core 2 Duo E8400
                                             Wolfdale
                                              E0
      Engineering Sample                                
        CPUID                                      Intel(R) Core(TM)2 Duo CPU E8400 @ 3.00GHz
       CPUID                                      0001067Ah
      CPU VID                                           0.9875 V

     :
                                               2051.7 MHz  (: 3000 MHz)
                                             6x
      CPU FSB                                           342.0 MHz  (: 333 MHz, overclock: 3%)
                                              683.9 MHz
       DRAM:FSB                              20:10

     :
       L1                                        32  per core
       L1                                      32  per core
       L2                                            6   (On-Die, ECC, ASC, Full-Speed)

      :
      ID                                  64-2103-000001-00101111-042709-Eaglelake$A0981001_BIOS DATE: 04/27/09 14:59:08 VER: 08.00.14
                                          Asus P5QC  (2 PCI, 3 PCI-E x1, 1 PCI-E x16, 4 DDR2 DIMM, 2 DDR3 DIMM, Audio, Gigabit LAN, IEEE-1394)

       ():
                                    Intel Eaglelake P45
                                          9-9-9-24  (CL-RCD-RP-RAS)
      Command Rate (CR)                                 2T
      DIMM2: Kingston 9905403-011.A03LF                 2  DDR3-1333 DDR3 SDRAM  (8-8-8-22 @ 609 )  (7-7-7-20 @ 533 )  (6-6-6-17 @ 457 )
      DIMM4: Kingston 9905403-011.A01LF                 2  DDR3-1333 DDR3 SDRAM  (9-9-9-24 @ 666 )  (8-8-8-22 @ 592 )  (7-7-7-19 @ 518 )  (6-6-6-16 @ 444 )

     BIOS:
        BIOS                               04/27/09
       BIOS                            03/31/09
      DMI  BIOS                                   2103

      :
                                            nVIDIA GeForce GTX 260
                                       GT200b  (PCI Express 2.0 x16 10DE / 05E2, Rev B1)
        (Geometric Domain)                     301   (: 625 MHz)
        (Shader Domain)                        602   (: 1348 MHz)
                                           250   (: 1100 MHz)


--------[  ]----------------------------------------------------------------------------------------------

     :
                                  
                                         
                              
                          


--------[   ]----------------------------------------------------------------------------------------------

    Centrino (Carmel)  :
      : Intel Pentium M (Banias/Dothan)                 (DualCore Intel Core 2 Duo E8400)
      : Intel i855GM/PM                             (Intel Eaglelake P45)
      WLAN: Intel PRO/Wireless                          
      : Centrino-                     

    Centrino (Sonoma)  :
      : Intel Pentium M (Dothan)                        (DualCore Intel Core 2 Duo E8400)
      : Intel i915GM/PM                             (Intel Eaglelake P45)
      WLAN: Intel PRO/Wireless                          
      : Centrino-                     

    Centrino (Napa)  :
      : Intel Core (Yonah) / Core 2 (Merom)             (DualCore Intel Core 2 Duo E8400)
      : Intel i945GM/PM                             (Intel Eaglelake P45)
      WLAN: Intel PRO/Wireless 3945                     
      : Centrino-                     

    Centrino (Santa Rosa)  :
      : Intel Core 2 (Merom/Penryn)                     (DualCore Intel Core 2 Duo E8400)
      : Intel GM965/PM965                           (Intel Eaglelake P45)
      WLAN: Intel Wireless WiFi Link 4965               
      : Centrino-                     

    Centrino (Montevina)  :
      : Intel Core 2 (Penryn)                           (DualCore Intel Core 2 Duo E8400)
      : Intel GM45/GM47/GS45/PM45                   (Intel Eaglelake P45)
      WLAN: Intel WiFi Link 5000 Series                 
      : Centrino-                     


--------[  ]------------------------------------------------------------------------------------------------------

     :
                                              Winbond W83667HG  (ISA 290h)
                                            Analog Devices ADT7473  (NV-I2C 2Eh)
                                          Asus P5Q / P5Q3 / P5QL Series
                               

    :
                                          33 C  (91 F)
                                                      31 C  (88 F)
       1 /  1                                     43 C  (109 F)
       1 /  2                                     43 C  (109 F)
                                    48 C  (118 F)
                                                40 C  (104 F)
                                             38 C  (100 F)
      WDC WD1200JS-22MHB0                               34 C  (93 F)

    :
                                                      1962 RPM
                                    3028 RPM  (62%)
                                    100%

    :
                                                  1.11 V
      +3.3 V                                            3.38 V
      +5 V                                              5.14 V
      +12 V                                             11.93 V
      +5 V                                        5.14 V
      GPU Vcc                                           3.40 V

     :
                                                      16.13 A

     :
                                                      18.31 W
      Debug Info F                                      FF 2B FF FF FF
      Debug Info T                                      33 31 29
      Debug Info V                                      8B D5 D5 D3 D6 FF 9B (03)
      Debug Info I                                      C1 A513


--------[  ]----------------------------------------------------------------------------------------------------------

     :
                                                   DualCore Intel Core 2 Duo E8400, 3078 MHz (9 x 342)
                                             Wolfdale
                                              E0
                                        x86, x86-64, MMX, SSE, SSE2, SSE3, SSSE3, SSE4.1
                                         3000 
      ./.                             6x / 9x
      Engineering Sample                                
       L1                                        32  per core
       L1                                      32  per core
       L2                                            6   (On-Die, ECC, ASC, Full-Speed)

    Multi CPU:
      CPU #1                                            Intel(R) Core(TM)2 Duo CPU E8400 @ 3.00GHz, 3000 
      CPU #2                                            Intel(R) Core(TM)2 Duo CPU E8400 @ 3.00GHz, 3000 

       :
                                              775 Contact LGA
                                          3.75 cm x 3.75 cm
                                       410 .
                                  45 nm, CMOS, Cu, High-K + Metal Gate
                                         107 mm2
                                   0.988 - 1.163 V
       I/O                                    0.988 - 1.163 V
                                        65 W @ 3.00 GHz
                                    91.9 W @ 3.00 GHz

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/processor

     :
       1 /  1                                     0 %
       1 /  2                                     0 %


--------[ CPUID ]-------------------------------------------------------------------------------------------------------

     CPUID:
       CPUID                               GenuineIntel
        CPUID                                      Intel(R) Core(TM)2 Duo CPU E8400 @ 3.00GHz
       CPUID                                      0001067Ah
        IA                            00h  ()
                                  2Bh / MC 01h  (LGA775)
                               A07
      HTT / CMP                                         0 / 2
       Tjmax                                 100 C  (212 F)
      CPU Thermal Design Power                          65 W

     :
      64- x86- (AMD64, Intel64)            
      AMD 3DNow!                                         
      AMD 3DNow! Professional                            
      AMD 3DNowPrefetch                                  
      AMD Enhanced 3DNow!                                
      AMD Extended MMX                                   
      AMD MisAligned SSE                                 
      AMD SSE4A                                          
      AMD SSE5                                           
      Cyrix Extended MMX                                 
      IA-64                                              
      IA MMX                                            
      IA SSE                                            
      IA SSE 2                                          
      IA SSE 3                                          
      IA Supplemental SSE 3                             
      IA SSE 4.1                                        
      IA SSE 4.2                                         
      IA AVX                                             
      IA FMA                                             
      IA AES Extensions                                  
      VIA Alternate Instruction Set                      
       CLFLUSH                                
       CMPXCHG8B                              
       CMPXCHG16B                             
       Conditional Move                       
       LZCNT                                   
       MONITOR / MWAIT                        
       MOVBE                                   
       PCLMULQDQ                               
       POPCNT                                  
       RDTSCP                                  
       SYSCALL / SYSRET                        
       SYSENTER / SYSEXIT                     
       VIA FEMMS                               

     :
      Advanced Cryptography Engine (ACE)                 
      Advanced Cryptography Engine 2 (ACE2)              
         (DEP, NX, EDB)           
          (RNG)         
      PadLock Hash Engine (PHE)                          
      PadLock Montgomery Multiplier (PMM)                
         (PSN)                    

     :
      Automatic Clock Control                           
      Digital Thermometer                               
      Dynamic FSB Frequency Switching                    
      Enhanced Halt State (C1E)                         , 
      Enhanced SpeedStep Technology (EIST, ESS)         , 
      Frequency ID Control                               
      Hardware P-State Control                           
      LongRun                                            
      LongRun Table Interface                            
      PowerSaver 1.0                                     
      PowerSaver 2.0                                     
      PowerSaver 3.0                                     
      Processor Duty Cycle Control                      
      Software Thermal Control                           
                                                
      Thermal Monitor 1                                 
      Thermal Monitor 2                                 
      Thermal Monitoring                                 
      Thermal Trip                                       
      Voltage ID Control                                 

     CPUID:
      1 GB Page Size                                     
      36-bit Page Size Extension                        
      Address Region Registers (ARR)                     
      CPL Qualified Debug Store                         
      Debug Trace Store                                 
      Debugging Extension                               
      Direct Cache Access                                
      Dynamic Acceleration Technology (IDA)              
      Fast Save & Restore                               
      Hyper-Threading Technology (HTT)                   
      Invariant Time Stamp Counter                      
      L1 Context ID                                      
      Local APIC On Chip                                
      Machine Check Architecture (MCA)                  
      Machine Check Exception (MCE)                     
      Memory Configuration Registers (MCR)               
      Memory Type Range Registers (MTRR)                
      Model Specific Registers (MSR)                    
      Nested Paging                                      
      Page Attribute Table (PAT)                        
      Page Global Extension                             
      Page Size Extension (PSE)                         
      Pending Break Event                               
      Physical Address Extension (PAE)                  
      Safer Mode Extensions (SMX)                       
      Secure Virtual Machine Extensions (Pacifica)       
      Self-Snoop                                        
      Time Stamp Counter (TSC)                          
      Turbo Boost                                        
      Virtual Machine Extensions (Vanderpool)           
      Virtual Mode Extension                            
      x2APIC                                             
      XSAVE / XRSTOR Extended States                    

    CPUID Registers (CPU #1):
      CPUID 00000000                                    0000000D-756E6547-6C65746E-49656E69
      CPUID 00000001                                    0001067A-00020800-0408E3FD-BFEBFBFF
      CPUID 00000002                                    05B0B101-005657F0-00000000-2CB4304E
      CPUID 00000003                                    00000000-00000000-00000000-00000000
      CPUID 00000004                                    04000121-01C0003F-0000003F-00000001
      CPUID 00000004                                    04000122-01C0003F-0000003F-00000001
      CPUID 00000004                                    04004143-05C0003F-00000FFF-00000001
      CPUID 00000005                                    00000040-00000040-00000003-00022220
      CPUID 00000006                                    00000001-00000002-00000003-00000000
      CPUID 00000007                                    00000000-00000000-00000000-00000000
      CPUID 00000008                                    00000400-00000000-00000000-00000000
      CPUID 00000009                                    00000000-00000000-00000000-00000000
      CPUID 0000000A                                    07280202-00000000-00000000-00000503
      CPUID 0000000C                                    00000000-00000000-00000000-00000000
      CPUID 0000000D                                    00000003-00000240-00000240-00000000
      CPUID 80000000                                    80000008-00000000-00000000-00000000
      CPUID 80000001                                    00000000-00000000-00000001-20100000
      CPUID 80000002                                    65746E49-2952286C-726F4320-4D542865
      CPUID 80000003                                    44203229-43206F75-20205550-45202020
      CPUID 80000004                                    30303438-20402020-30302E33-007A4847
      CPUID 80000005                                    00000000-00000000-00000000-00000000
      CPUID 80000006                                    00000000-00000000-18008040-00000000
      CPUID 80000007                                    00000000-00000000-00000000-00000000
      CPUID 80000008                                    00003024-00000000-00000000-00000000

    CPUID Registers (CPU #2):
      CPUID 00000000                                    0000000D-756E6547-6C65746E-49656E69
      CPUID 00000001                                    0001067A-01020800-0408E3FD-BFEBFBFF
      CPUID 00000002                                    05B0B101-005657F0-00000000-2CB4304E
      CPUID 00000003                                    00000000-00000000-00000000-00000000
      CPUID 00000004                                    04000121-01C0003F-0000003F-00000001
      CPUID 00000004                                    04000122-01C0003F-0000003F-00000001
      CPUID 00000004                                    04004143-05C0003F-00000FFF-00000001
      CPUID 00000005                                    00000040-00000040-00000003-00022220
      CPUID 00000006                                    00000001-00000002-00000003-00000000
      CPUID 00000007                                    00000000-00000000-00000000-00000000
      CPUID 00000008                                    00000400-00000000-00000000-00000000
      CPUID 00000009                                    00000000-00000000-00000000-00000000
      CPUID 0000000A                                    07280202-00000000-00000000-00000503
      CPUID 0000000C                                    00000000-00000000-00000000-00000000
      CPUID 0000000D                                    00000003-00000240-00000240-00000000
      CPUID 80000000                                    80000008-00000000-00000000-00000000
      CPUID 80000001                                    00000000-00000000-00000001-20100000
      CPUID 80000002                                    65746E49-2952286C-726F4320-4D542865
      CPUID 80000003                                    44203229-43206F75-20205550-45202020
      CPUID 80000004                                    30303438-20402020-30302E33-007A4847
      CPUID 80000005                                    00000000-00000000-00000000-00000000
      CPUID 80000006                                    00000000-00000000-18008040-00000000
      CPUID 80000007                                    00000000-00000000-00000000-00000000
      CPUID 80000008                                    00003024-00000000-00000000-00000000

    MSR Registers:
      MSR 00000017                                      0400-0000-8884-891B [PlatID = 0]
      MSR 0000001B                                      0000-0000-FEE0-0900
      MSR 0000002A                                      0000-0000-4248-0000
      MSR 0000008B                                      0000-0A07-0000-0000
      MSR 000000CD                                      0000-0000-8000-0804
      MSR 000000CE                                      000D-091B-4444-070B
      MSR 000000E7                                      0000-0031-49D0-8220
      MSR 000000E8                                      0000-0023-0137-D574
      MSR 000000EE                                      0000-0000-8679-1300
      MSR 0000011E                                      0000-0000-BE70-2111
      MSR 00000198                                      060D-091B-0600-091B
      MSR 00000199                                      0000-0000-0000-091B
      MSR 0000019A                                      0000-0000-0000-0002
      MSR 0000019B                                      0000-0000-0000-0000
      MSR 0000019C                                      0000-0000-8837-0008
      MSR 0000019D                                      0000-0000-0000-060D
      MSR 000001A0                                      0000-0040-6297-2489


--------[   ]---------------------------------------------------------------------------------------------

      :
      ID                                  64-2103-000001-00101111-042709-Eaglelake$A0981001_BIOS DATE: 04/27/09 14:59:08 VER: 08.00.14
                                          Asus P5QC

      FSB:
                                                 Intel AGTL+
                                              64 
                                         342  (QDR)
                                      1368 
                                   10944 /

      :
                                                 Dual DDR3 SDRAM
                                              128 
       DRAM:FSB                              20:10
                                         684  (DDR)
                                      1368 
                                   21888 /

      :
                                                 Intel Direct Media Interface

        :
                                         1 LGA775
                                       2 PCI, 3 PCI-E x1, 1 PCI-E x16
                                              4 DDR2 DIMM, 2 DDR3 DIMM
                                    Audio, Gigabit LAN, IEEE-1394
      -                                       ATX
                                   240 mm x 300 mm
                                    P45
                                   JumperFree, Stepless Freq Selection, Ultra-ATA/133, SATA-II

      :
                                                   ASUSTeK Computer Inc.
                                     http://www.asus.com/ProductGroup2.aspx?PG_ID=mKyCKlQ4oSEtSu5m
        BIOS                          http://support.asus.com/download/download.aspx?SLanguage=en-us
                                     http://driveragent.com?ref=59
       BIOS                                   http://www.esupport.com/biosagent/index.cfm?refererid=40


--------[  ]------------------------------------------------------------------------------------------------------

     :
                                                   4094 
                                                  686 
                                                3408 
                                                17 %

       :
                                                   5891 
                                                  405 
                                                5485 
                                                7 %

     :
                                                   9986 
                                                  1092 
                                                8893 
                                                11 %

     :
                                            C:\pagefile.sys
      /                       2046  / 4092 
                                           2046 
      /                           23  / 24 
                                                1 %

    Physical Address Extension (PAE):
                                        
                                        
                                                


--------[ SPD ]---------------------------------------------------------------------------------------------------------

  [ DIMM2: Kingston 9905403-011.A03LF ]

      :
                                               Kingston 9905403-011.A03LF
                                           14CCD871h (1910033428)
                                              26 / 2009
                                            2  (2 ranks, 8 banks)
                                               Unbuffered DIMM
                                               DDR3 SDRAM
                                          DDR3-1333 (667 )
                                            64 bit
                                  

     :
      @ 609                                          8-8-8-22  (CL-RCD-RP-RAS) / 30-68-4-10-5-5  (RC-RFC-RRD-WR-WTR-RTP)
      @ 533                                          7-7-7-20  (CL-RCD-RP-RAS) / 27-59-4-8-4-4  (RC-RFC-RRD-WR-WTR-RTP)
      @ 457                                          6-6-6-17  (CL-RCD-RP-RAS) / 23-51-3-7-4-4  (RC-RFC-RRD-WR-WTR-RTP)

      :
      Auto Self Refresh                                  
      Extended Temperature Range                        
      Extended Temperature Refresh Rate                  
      On-Die Thermal Sensor Readout                      

      :
                                                   Kingston Technology Company, Inc.
                                     http://www.kingston.com/products/default.asp

  [ DIMM4: Kingston 9905403-011.A01LF ]

      :
                                               Kingston 9905403-011.A01LF
                                           95CC8711h (294112405)
                                              52 / 2008
                                            2  (2 ranks, 8 banks)
                                               Unbuffered DIMM
                                               DDR3 SDRAM
                                          DDR3-1333 (667 )
                                            64 bit
                                  

     :
      @ 666                                          9-9-9-24  (CL-RCD-RP-RAS) / 33-74-4-10-5-5  (RC-RFC-RRD-WR-WTR-RTP)
      @ 592                                          8-8-8-22  (CL-RCD-RP-RAS) / 30-66-4-9-5-5  (RC-RFC-RRD-WR-WTR-RTP)
      @ 518                                          7-7-7-19  (CL-RCD-RP-RAS) / 26-58-4-8-4-4  (RC-RFC-RRD-WR-WTR-RTP)
      @ 444                                          6-6-6-16  (CL-RCD-RP-RAS) / 22-49-3-7-4-4  (RC-RFC-RRD-WR-WTR-RTP)

      :
      Auto Self Refresh                                  
      Extended Temperature Range                        
      Extended Temperature Refresh Rate                  
      On-Die Thermal Sensor Readout                      

      :
                                                   Kingston Technology Company, Inc.
                                     http://www.kingston.com/products/default.asp


--------[  ]------------------------------------------------------------------------------------------------------

  [  : Intel Eaglelake P45 ]

      :
                                            Intel Eaglelake P45
       / Stepping                                 03 / A3
                                              1254 Pin FC-BGA
                                          3.4 cm x 3.4 cm
                                  65 nm
                                   1.1 V
      In-Order Queue Depth                              12

     :
                                                     Dual Channel  (128 )
                                           Dual Channel  (128 )

     :
      CAS Latency (CL)                                  9T
      RAS To CAS Delay (tRCD)                           9T
      RAS Precharge (tRP)                               9T
      RAS Active Time (tRAS)                            24T
      Row Refresh Cycle Time (tRFC)                     74T
      Command Rate (CR)                                 2T
      RAS To RAS Delay (tRRD)                           4T
      Write Recovery Time (tWR)                         21T
      Read To Read Delay (tRTR)                         Same Rank: 4T, Different Rank: 9T
      Read To Write Delay (tRTW)                        10T
      Write To Write Delay (tWTW)                       Same Rank: 4T, Different Rank: 7T
      Read To Precharge Delay (tRTP)                    7T
      Write To Precharge Delay (tWTP)                   21T
      Precharge To Precharge Delay (tPTP)               1T
      Refresh Period (tREF)                             5200T
      DRAM Read ODT                                     3T
      DRAM Write ODT                                    7T
      MCH Read ODT                                      8T
      Performance Level                                 8
      Read Delay Phase Adjust                           Neutral
      DIMM1 Clock Fine Delay                            7T
      DIMM2 Clock Fine Delay                            2T
      DIMM3 Clock Fine Delay                            6T
      DIMM4 Clock Fine Delay                            2T

     :
      ECC                                                
      ChipKill ECC                                       
      RAID                                               
      ECC Scrubbing                                      

     :
       DRAM #1                                    2   (DDR3-1333 DDR3 SDRAM)
       DRAM #2                                    2   (DDR3-1333 DDR3 SDRAM)

     PCI Express:
      PCI-E 2.0 x16 port #2                              @ x16  (nVIDIA GeForce GTX 260 Video Adapter)

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/chipsets
       BIOS                                   http://www.esupport.com/biosagent/index.cfm?refererid=40
                                     http://driveragent.com?ref=59

  [  : Intel 82801JR ICH10R ]

      :
                                               Intel 82801JR ICH10R
       / Stepping                                 90 / A0
                                              676 Pin mBGA
                                          3.1 cm x 3.1 cm
                                   1.1 V

    High Definition Audio:
                                               Realtek ALC1200
      ID                                          10EC0888h / 104382FEh
                                            00100101h
                                               Audio
                           44 kHz, 48 kHz, 96 kHz, 192 kHz, 16 , 20 , 24 

     PCI Express:
      PCI-E 1.0 x1 port #1                              
      PCI-E 1.0 x1 port #5                               @ x1  (Marvell 88SE6121 Serial ATA II Host Controller)
      PCI-E 1.0 x1 port #6                               @ x1  (Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller)

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/chipsets
       BIOS                                   http://www.esupport.com/biosagent/index.cfm?refererid=40
                                     http://driveragent.com?ref=59


--------[ BIOS ]--------------------------------------------------------------------------------------------------------

     BIOS:
       BIOS                                          AMI
       BIOS                                       2103
        BIOS                               04/27/09
       BIOS                            03/31/09

     BIOS:
                                                   American Megatrends Inc.
                                     http://www.ami.com/amibios
       BIOS                                   http://www.esupport.com/biosagent/index.cfm?refererid=40


--------[ ACPI ]--------------------------------------------------------------------------------------------------------

  [ APIC: Multiple APIC Description Table ]

      ACPI:
       ACPI                                      APIC
                                         Multiple APIC Description Table
                                             CFF70390h
                                           108 
      OEM ID                                            A_M_I_
      OEM Table ID                                      OEMAPIC
      OEM Revision                                      04000927h
      Creator ID                                        MSFT
      Creator Revision                                  00000097h
      Local APIC Address                                FEE00000h

  [ DSDT: Differentiated System Description Table ]

      ACPI:
       ACPI                                      DSDT
                                         Differentiated System Description Table
                                             CFF70440h
                                           38711 
      OEM ID                                            A0981
      OEM Table ID                                      A0981001
      OEM Revision                                      00000001h
      Creator ID                                        INTL
      Creator Revision                                  20060113h

  [ FACP: Fixed ACPI Description Table ]

      ACPI:
       ACPI                                      FACP
                                         Fixed ACPI Description Table
                                             CFF70200h
                                           132 
      OEM ID                                            A_M_I_
      OEM Table ID                                      OEMFACP
      OEM Revision                                      04000927h
      Creator ID                                        MSFT
      Creator Revision                                  00000097h
      SMI Command Port                                  000000B2h
      PM Timer                                          00000808h

  [ FACS: Firmware ACPI Control Structure ]

      ACPI:
       ACPI                                      FACS
                                         Firmware ACPI Control Structure
                                             CFF7E000h
                                           64 

  [ HPET: IA-PC High Precision Event Timer Table ]

      ACPI:
       ACPI                                      HPET
                                         IA-PC High Precision Event Timer Table
                                             CFF79B80h
                                           56 
      OEM ID                                            A_M_I_
      OEM Table ID                                      OEMHPET
      OEM Revision                                      04000927h
      Creator ID                                        MSFT
      Creator Revision                                  00000097h

  [ MCFG: Memory Mapped Configuration Space Base Address Description Table ]

      ACPI:
       ACPI                                      MCFG
                                         Memory Mapped Configuration Space Base Address Description Table
                                             CFF70400h
                                           60 
      OEM ID                                            A_M_I_
      OEM Table ID                                      OEMMCFG
      OEM Revision                                      04000927h
      Creator ID                                        MSFT
      Creator Revision                                  00000097h

  [ OEMB: OEM Specific Information Table ]

      ACPI:
       ACPI                                      OEMB
                                         OEM Specific Information Table
                                             CFF7E040h
                                           137 
      OEM ID                                            A_M_I_
      OEM Table ID                                      AMI_OEM
      OEM Revision                                      04000927h
      Creator ID                                        MSFT
      Creator Revision                                  00000097h

  [ OSFR:  ]

      ACPI:
       ACPI                                      OSFR
                                         
                                             CFF79BC0h
                                           176 
      OEM ID                                            A_M_I_
      OEM Table ID                                      OEMOSFR
      OEM Revision                                      04000927h
      Creator ID                                        MSFT
      Creator Revision                                  00000097h

  [ RSD PTR: Root System Description Pointer ]

      ACPI:
       ACPI                                      RSD PTR
                                         Root System Description Pointer
                                             000FAFF0h
                                           36 
      OEM ID                                            ACPIAM

  [ RSDT: Root System Description Table ]

      ACPI:
       ACPI                                      RSDT
                                         Root System Description Table
                                             CFF70000h
                                           64 
      OEM ID                                            A_M_I_
      OEM Table ID                                      OEMRSDT
      OEM Revision                                      04000927h
      Creator ID                                        MSFT
      Creator Revision                                  00000097h

  [ SSDT: Secondary System Description Table ]

      ACPI:
       ACPI                                      SSDT
                                         Secondary System Description Table
                                             CFF7E0D0h
                                           631 
      OEM ID                                            DpgPmm
      OEM Table ID                                      P001Ist
      OEM Revision                                      00000011h
      Creator ID                                        INTL
      Creator Revision                                  20060113h

  [ SSDT: Secondary System Description Table ]

      ACPI:
       ACPI                                      SSDT
                                         Secondary System Description Table
                                             CFF7E350h
                                           631 
      OEM ID                                            DpgPmm
      OEM Table ID                                      P002Ist
      OEM Revision                                      00000012h
      Creator ID                                        INTL
      Creator Revision                                  20060113h

  [ SSDT: Secondary System Description Table ]

      ACPI:
       ACPI                                      SSDT
                                         Secondary System Description Table
                                             CFF7E5D0h
                                           2684 
      OEM ID                                            DpgPmm
      OEM Table ID                                      CpuPm
      OEM Revision                                      00000012h
      Creator ID                                        INTL
      Creator Revision                                  20060113h


--------[   ]----------------------------------------------------------------------------------------

      :
                                              Microsoft Windows XP Professional x64 Edition
                                       Whistler Server
                                                  English (United States)
                                               Multiprocessor Free (64-bit)
                                                5.2.3790 (Win2003 Retail)
                                       Service Pack 2
                                       11.10.2009
                                         C:\WINDOWS

     :
                          Vova
                           Razinkin
                               2
      ID                                        76588-652-8284616-50401
                                            VCFQD-V9FX9-46WVH-K3CD4-4J3JM
        (WPA)                           

     :
                                           RAZINKIN-7C1358
                                         Administrator
                                              RAZINKIN-7C1358
                                             1355  (0 ., 0 , 22 , 35 )

     :
      Common Controls                                   6.00
      Internet Explorer                                 6.0.3790.1830
       Internet Explorer                      SP1
      Outlook Express                                   6.00.3790.3959 (srv03_sp2_rtm.070216-1710)
      Windows Media Player                              10.00.00.3997
      Windows Messenger                                 4.7.3001
      MSN Messenger                                     -
      Internet Information Services (IIS)               -
      .NET Framework                                    -
      Novell Client                                     -
      DirectX                                           4.10.0.18000 (DirectX 10)
      OpenGL                                            5.2.3790.3959 (srv03_sp2_rtm.070216-1710)
      ASPI                                              -

      :
                                        
       DBCS                                       
                                        
                                     
                                             
                                         
                                         
                                      
                                      


--------[  ]----------------------------------------------------------------------------------------------------

    alg.exe                  C:\WINDOWS\system32\alg.exe                                                   32          4568              1 
    caller64.exe             C:\WINDOWS\Samsung\PanelMgr\caller64.exe                                      64          5220              2 
    csrss.exe                                                                                              64          5528              1 
    ctfmon.exe               C:\WINDOWS\system32\ctfmon.exe                                                64          4736              1 
    ctfmon.exe               C:\WINDOWS\SysWOW64\ctfmon.exe                                                32          4068              1 
    dmaster.exe              C:\Program Files (x86)\Download Master\dmaster.exe                            32          5288              7 
    egui.exe                 C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe                           64          4652              3 
    ekrn.exe                 C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe                       32         50232             44 
    everest.exe              H:\Everest 5\everest.exe                                                      32         39080             33 
    explorer.exe             C:\WINDOWS\Explorer.EXE                                                       64         31328             18 
    lsass.exe                C:\WINDOWS\system32\lsass.exe                                                 64          2156              5 
    nvsvc64.exe              C:\WINDOWS\system32\nvsvc64.exe                                               64          6248              3 
    RTHDCPL.exe              C:\WINDOWS\RTHDCPL.EXE                                                        32         25436             20 
    rundll32.exe             C:\WINDOWS\system32\RUNDLL32.EXE                                              64          6152              3 
    services.exe             C:\WINDOWS\system32\services.exe                                              64          8656              5 
    SixEngine.exe            C:\Program Files\ASUS\Six Engine\SixEngine.exe                                32         22524             12 
    smss.exe                 C:\WINDOWS\system32\smss.exe                                                  64           672              0 
    splwow64.exe             C:\WINDOWS\splwow64.exe                                                       64          4364              1 
    spoolsv.exe              C:\WINDOWS\system32\spoolsv.exe                                               64          6992              4 
    SSMMgr.exe               C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe                                        32          6324              2 
    StarWindServiceAE.exe    C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe  32          6128              2 
    svchost.exe              C:\WINDOWS\System32\svchost.exe                                               64          3508              1 
    svchost.exe              C:\WINDOWS\system32\svchost.exe                                               32          5164              2 
    svchost.exe              C:\WINDOWS\system32\svchost.exe                                               64          4312              1 
    svchost.exe              C:\WINDOWS\system32\svchost.exe                                               64          5424              2 
    svchost.exe              C:\WINDOWS\System32\svchost.exe                                               64         34220             21 
    svchost.exe              C:\WINDOWS\system32\svchost.exe                                               64          6512              5 
    svchost.exe              C:\WINDOWS\system32\svchost.exe                                               64          7248              3 
    System Idle Process                                                                                                     24              0 
    System                                                                                                 64           260              0 
    TBPANEL.exe              C:\Program Files (x86)\Vtune\TBPanel.exe                                      32          6456              2 
    winlogon.exe             C:\WINDOWS\system32\winlogon.exe                                              64          3120              9 
    wmiprvse.exe             C:\WINDOWS\system32\wbem\wmiprvse.exe                                         32          8128              2 
    wmiprvse.exe             C:\WINDOWS\system32\wbem\wmiprvse.exe                                         64          9504              4 


--------[   ]------------------------------------------------------------------------------------------

    Abiosdsk         Abiosdsk                                                                                                                            
    ACPI             Microsoft ACPI Driver                                                   ACPI.sys                                                    
    ACPIEC           ACPIEC                                                                                                                              
    adpu160m         adpu160m                                                                                                                            
    adpu320          adpu320                                                                                                                             
    aec              Microsoft Kernel Acoustic Echo Canceller                                aec.sys                                                     
    AFD              AFD                                                                     afd.sys                                                     
    aic78u2          aic78u2                                                                                                                             
    aic78xx          aic78xx                                                                                                                             
    AliIde           AliIde                                                                                                                              
    AmdIde           AmdIde                                                                                                                              
    arc              arc                                                                                                                                 
    Arp1394          1394 ARP Client Protocol                                                arp1394.sys                                                 
    AsIO             AsIO                                                                    AsIO.sys                                                    
    AsyncMac         RAS Asynchronous Media Driver                                           asyncmac.sys                                                
    atapi            Standard IDE/ESDI Hard Disk Controller                                  atapi.sys                                                   
    Atdisk           Atdisk                                                                                                                              
    Atmarpc          ATM ARP Client Protocol                                                 atmarpc.sys                                                 
    audstub          Audio Stub Driver                                                       audstub.sys                                                 
    BCMNTIO          BCMNTIO                                                                 BCMNTIO.sys                                                 
    Beep             Beep                                                                                                                                
    Cardex           Cardex                                                                  TBPANELX64.SYS        5.2.3790.1830                         
    CdaC15BA         CdaC15BA                                                                CdaC15BA.sys                                                
    CdaD10BA         CdaD10BA                                                                CdaD10BA.sys                                                
    Cdfs             Cdfs                                                                                                                     
    Cdrom            CD-ROM Driver                                                           cdrom.sys                                                   
    Changer          Changer                                                                                                                             
    CmdIde           CmdIde                                                                                                                              
    crcdisk          CRC Disk Filter Driver                                                  crcdisk.sys                                                 
    DgiVecp          DgiVecp                                                                 DgiVecp.sys                                                 
    Disk             Disk Driver                                                             disk.sys                                                    
    dmboot           dmboot                                                                  dmboot.sys                                                  
    dmio             Logical Disk Manager Driver                                             dmio.sys                                                    
    dmload           dmload                                                                  dmload.sys                                                  
    dpti2o           dpti2o                                                                                                                              
    eamon            eamon                                                                   eamon.sys                                        
    ehdrv            ehdrv                                                                   ehdrv.sys                                                   
    EIO_XP           EIO_XP                                                                  EIO64_XP.sys                                                
    epfwtdir         epfwtdir                                                                epfwtdir.sys                                                
    EverestDriver    Lavalys EVEREST Kernel Driver                                           Everest                                                     
    Fastfat          Fastfat                                                                                                                  
    Fdc              Floppy Disk Controller Driver                                           fdc.sys                                                     
    Fips             Fips                                                                                                                                
    Flpydisk         Floppy Disk Driver                                                      flpydisk.sys                                                
    FltMgr           FltMgr                                                                  fltMgr.sys                                       
    Ftdisk           Volume Manager Driver                                                   ftdisk.sys                                                  
    Gpc              Generic Packet Classifier                                               msgpc.sys                                                   
    HDAudBus         Microsoft UAA Bus Driver for High Definition Audio                      HDAudBus.sys                                                
    HTTP             HTTP                                                                    HTTP.sys                                                    
    i2omgmt          i2omgmt                                                                                                                             
    i8042prt         i8042 Keyboard and PS/2 Mouse Port Driver                               i8042prt.sys                                                
    iirsp            iirsp                                                                                                                               
    imapi            CD-Burning Filter Driver                                                imapi.sys                                                   
    IntcAzAudAddService  Service for Realtek HD Audio (WDM)                                      RTKHDA64.SYS                                                
    IntelIde         IntelIde                                                                                                                            
    intelppm         Intel Processor Driver                                                  intelppm.sys                                                
    Ip6Fw            IPv6 Windows Firewall Driver                                            Ip6Fw.sys                                                   
    IpFilterDriver   IP Traffic Filter Driver                                                ipfltdrv.sys                                                
    IpInIp           IP in IP Tunnel Driver                                                  ipinip.sys                                                  
    IpNat            IP Network Address Translator                                           ipnat.sys                                                   
    IPSec            IPSEC driver                                                            ipsec.sys                                                   
    IRENUM           IR Enumerator Service                                                   irenum.sys                                                  
    isapnp           PnP ISA/EISA Bus Driver                                                 isapnp.sys                                                  
    Kbdclass         Keyboard Class Driver                                                   kbdclass.sys                                                
    kmixer           Microsoft Kernel Wave Audio Mixer                                       kmixer.sys                                                  
    KSecDD           KSecDD                                                                                                                              
    ksthunk          Kernel Streaming WOW64 Thunk Service                                    ksthunk.sys                                                 
    L1e              Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller  l1e51x64.sys                                                
    MAPMEM           MAPMEM                                                                  MAPMEM.sys                                                  
    mnmdd            mnmdd                                                                                                                               
    Modem            Modem                                                                                                                               
    Mouclass         Mouse Class Driver                                                      mouclass.sys                                                
    MountMgr         Mount Point Manager                                                                                                                 
    mraid35x         mraid35x                                                                                                                            
    MRxDAV           WebDav Client Redirector                                                mrxdav.sys                                       
    MRxSmb           MRxSmb                                                                  mrxsmb.sys                                       
    Msfs             Msfs                                                                                                                     
    MSKSSRV          Microsoft Streaming Service Proxy                                       MSKSSRV.sys                                                 
    MSPCLOCK         Microsoft Streaming Clock Proxy                                         MSPCLOCK.sys                                                
    MSPQM            Microsoft Streaming Quality Manager Proxy                               MSPQM.sys                                                   
    mssmbios         Microsoft System Management BIOS Driver                                 mssmbios.sys                                                
    MTsensor         ATK0110 ACPI UTILITY                                                    ASACPI.sys                                                  
    Mup              Mup                                                                                                                      
    mv61xx           mv61xx                                                                  mv61xx.sys                                                  
    NDIS             NDIS System Driver                                                                                                                  
    NdisTapi         Remote Access NDIS TAPI Driver                                          ndistapi.sys                                                
    Ndisuio          NDIS Usermode I/O Protocol                                              ndisuio.sys                                                 
    NdisWan          Remote Access NDIS WAN Driver                                           ndiswan.sys                                                 
    NDProxy          NDIS Proxy                                                                                                                          
    NetBIOS          NetBIOS Interface                                                       netbios.sys                                      
    NetBT            NetBios over Tcpip                                                      netbt.sys                                                   
    NIC1394          1394 Net Driver                                                         nic1394.sys                                                 
    Npfs             Npfs                                                                                                                     
    Ntfs             Ntfs                                                                                                                     
    Null             Null                                                                                                                                
    nv               nv                                                                      nv4_mini.sys                                                
    ohci1394         AGERE OHCI Compliant IEEE 1394 Host Controller                          ohci1394.sys                                                
    Parport          Parport                                                                                                                             
    PartMgr          Partition Manager                                                                                                                   
    PCI              PCI Bus Driver                                                          pci.sys                                                     
    PCIIde           PCIIde                                                                  pciide.sys                                                  
    Pcmcia           Pcmcia                                                                                                                              
    PDCOMP           PDCOMP                                                                                                                              
    PDFRAME          PDFRAME                                                                                                                             
    PDRELI           PDRELI                                                                                                                              
    PDRFRAME         PDRFRAME                                                                                                                            
    PptpMiniport     WAN Miniport (PPTP)                                                     raspptp.sys                                                 
    PSched           QoS Packet Scheduler                                                    psched.sys                                                  
    Ptilink          Direct Parallel Link Driver                                             ptilink.sys                                                 
    RasAcd           Remote Access Auto Connection Driver                                    rasacd.sys                                                  
    Rasl2tp          WAN Miniport (L2TP)                                                     rasl2tp.sys                                                 
    RasPppoe         Remote Access PPPOE Driver                                              raspppoe.sys                                                
    Raspti           Direct Parallel                                                         raspti.sys                                                  
    Rdbss            Rdbss                                                                   rdbss.sys                                        
    RDPCDD           RDPCDD                                                                  RDPCDD.sys                                                  
    rdpdr            Terminal Server Device Redirector Driver                                rdpdr.sys                                                   
    RDPWD            RDPWD                                                                                                                               
    redbook          Digital CD Audio Playback Filter Driver                                 redbook.sys                                                 
    Secdrv           Security Driver                                                         secdrv.sys                                                  
    serenum          Serenum Filter Driver                                                   serenum.sys                                                 
    Serial           Serial port driver                                                      serial.sys                                                  
    Sfloppy          Sfloppy                                                                                                                             
    Simbad           Simbad                                                                                                                              
    splitter         Microsoft Kernel Audio Splitter                                         splitter.sys                                                
    sptd             sptd                                                                    sptd.sys                                                    
    sr               System Restore Filter Driver                                            sr.sys                                           
    Srv              Srv                                                                     srv.sys                                          
    SSPORT           SSPORT                                                                  SSPORT.sys                                                  
    swenum           Software Bus Driver                                                     swenum.sys                                                  
    swmidi           Microsoft Kernel GS Wavetable Synthesizer                               swmidi.sys                                                  
    sym_hi           sym_hi                                                                                                                              
    sym_u3           sym_u3                                                                                                                              
    symc8xx          symc8xx                                                                                                                             
    symmpi           symmpi                                                                                                                              
    sysaudio         Microsoft Kernel System Audio Device                                    sysaudio.sys                                                
    TBPanel          TBPanel                                                                                                                             
    Tcpip            TCP/IP Protocol Driver                                                  tcpip.sys                                                   
    TDPIPE           TDPIPE                                                                                                                              
    TDTCP            TDTCP                                                                                                                               
    TermDD           Terminal Device Driver                                                  termdd.sys                                                  
    TosIde           TosIde                                                                                                                              
    Udfs             Udfs                                                                                                                     
    ultra            ultra                                                                                                                               
    Update           Microcode Update Driver                                                 update.sys                                                  
    usbccgp          Microsoft USB Generic Parent Driver                                     usbccgp.sys                                                 
    usbehci          Microsoft USB 2.0 Enhanced Host Controller Miniport Driver              usbehci.sys                                                 
    usbhub           USB2 Enabled Hub                                                        usbhub.sys                                                  
    usbprint         Microsoft USB PRINTER Class                                             usbprint.sys                                                
    usbscan          USB Scanner Driver                                                      usbscan.sys                                                 
    USBSTOR          USB Mass Storage Driver                                                 USBSTOR.SYS                                                 
    usbuhci          Microsoft USB Universal Host Controller Miniport Driver                 usbuhci.sys                                                 
    vga              vga                                                                     vgapnp.sys                                                  
    VgaSave          VGA Display Controller.                                                 vga.sys                                                     
    ViaIde           ViaIde                                                                                                                              
    VolSnap          Storage volumes                                                         volsnap.sys                                                 
    Wanarp           Remote Access IP ARP Driver                                             wanarp.sys                                                  
    WDICA            WDICA                                                                                                                               
    wdmaud           Microsoft WINMM WDM Audio Compatibility Driver                          wdmaud.sys                                                  
    WS2IFSL          Windows Socket 2.0 Non-IFS Service Provider Support Environment         ws2ifsl.sys                                                 


--------[  ]------------------------------------------------------------------------------------------------------

    AeLookupSvc                        Application Experience Lookup Service                                   svchost.exe           5.2.3790.3959                        LocalSystem
    Alerter                            Alerter                                                                 svchost.exe           5.2.3790.3959                        NT AUTHORITY\LocalService
    ALG                                Application Layer Gateway Service                                       alg.exe               5.2.3790.1830                  NT AUTHORITY\LocalService
    AppMgmt                            Application Management                                                  svchost.exe           5.2.3790.3959                        LocalSystem
    AudioSrv                           Windows Audio                                                           svchost.exe           5.2.3790.3959                        LocalSystem
    BITS                               Background Intelligent Transfer Service                                 svchost.exe           5.2.3790.3959                        LocalSystem
    Browser                            Computer Browser                                                        svchost.exe           5.2.3790.3959                        LocalSystem
    CiSvc                              Indexing Service                                                        cisvc.exe             5.2.3790.1830                        LocalSystem
    ClipSrv                            ClipBook                                                                clipsrv.exe           5.2.3790.0                     LocalSystem
    COMSysApp                          COM+ System Application                                                 dllhost.exe           5.2.3790.3959                  LocalSystem
    CryptSvc                           Cryptographic Services                                                  svchost.exe           5.2.3790.3959                        LocalSystem
    DcomLaunch                         DCOM Server Process Launcher                                            svchost.exe           5.2.3790.3959                        LocalSystem
    Dhcp                               DHCP Client                                                             svchost.exe           5.2.3790.3959                        NT AUTHORITY\NetworkService
    dmadmin                            Logical Disk Manager Administrative Service                             dmadmin.exe                                                LocalSystem
    dmserver                           Logical Disk Manager                                                    svchost.exe           5.2.3790.3959                        LocalSystem
    Dnscache                           DNS Client                                                              svchost.exe           5.2.3790.3959                        NT AUTHORITY\NetworkService
    EhttpSrv                           ESET HTTP Server                                                        EHttpSrv.exe          4.0.468.0                      NT AUTHORITY\NetworkService
    ekrn                               ESET Service                                                            ekrn.exe              4.0.468.0                      LocalSystem
    ERSvc                              Error Reporting Service                                                 svchost.exe           5.2.3790.3959                        LocalSystem
    Eventlog                           Event Log                                                               services.exe                                               LocalSystem
    EventSystem                        COM+ Event System                                                       svchost.exe           5.2.3790.3959                        LocalSystem
    HidServ                            Human Interface Device Access                                           svchost.exe           5.2.3790.3959                        LocalSystem
    HTTPFilter                         HTTP SSL                                                                lsass.exe                                                  LocalSystem
    IASJet                             IAS Jet Database Access                                                 svchost.exe           5.2.3790.3959                        LocalSystem
    ImapiService                       IMAPI CD-Burning COM Service                                            imapi.exe                                            LocalSystem
    lanmanserver                       Server                                                                  svchost.exe           5.2.3790.3959                        LocalSystem
    lanmanworkstation                  Workstation                                                             svchost.exe           5.2.3790.3959                        LocalSystem
    LmHosts                            TCP/IP NetBIOS Helper                                                   svchost.exe           5.2.3790.3959                        NT AUTHORITY\LocalService
    Messenger                          Messenger                                                               svchost.exe           5.2.3790.3959                        LocalSystem
    Microsoft Office Groove Audit Service  Microsoft Office Groove Audit Service                                   GrooveAuditService.exe  12.0.4518.1014                 NT AUTHORITY\LocalService
    mnmsrvc                            NetMeeting Remote Desktop Sharing                                       mnmsrvc.exe           5.2.3790.1830                  LocalSystem
    MSDTC                              Distributed Transaction Coordinator                                     msdtc.exe                                            NT AUTHORITY\NetworkService
    MSIServer                          Windows Installer                                                       msiexec.exe           3.1.4000.3959                        LocalSystem
    NetDDE                             Network DDE                                                             netdde.exe            5.2.3790.3959                        LocalSystem
    NetDDEdsdm                         Network DDE DSDM                                                        netdde.exe            5.2.3790.3959                        LocalSystem
    Netlogon                           Net Logon                                                               lsass.exe                                                  LocalSystem
    Netman                             Network Connections                                                     svchost.exe           5.2.3790.3959                        LocalSystem
    Nla                                Network Location Awareness (NLA)                                        svchost.exe           5.2.3790.3959                        LocalSystem
    NtLmSsp                            NT LM Security Support Provider                                         lsass.exe                                                  LocalSystem
    NtmsSvc                            Removable Storage                                                       svchost.exe           5.2.3790.3959                        LocalSystem
    NVSvc                              NVIDIA Display Driver Service                                           nvsvc64.exe                                          LocalSystem
    odserv                             Microsoft Office Diagnostics Service                                    ODSERV.EXE            12.0.4518.1014                 LocalSystem
    ose                                Office Source Engine                                                    OSE.EXE               12.0.4518.1014                 LocalSystem
    PlugPlay                           Plug and Play                                                           services.exe                                               LocalSystem
    PolicyAgent                        IPSEC Services                                                          lsass.exe                                                  LocalSystem
    ProtectedStorage                   Protected Storage                                                       lsass.exe                                                  LocalSystem
    RasAuto                            Remote Access Auto Connection Manager                                   svchost.exe           5.2.3790.3959                        LocalSystem
    RasMan                             Remote Access Connection Manager                                        svchost.exe           5.2.3790.3959                        LocalSystem
    RDSessMgr                          Remote Desktop Help Session Manager                                     sessmgr.exe                                          LocalSystem
    RemoteAccess                       Routing and Remote Access                                               svchost.exe           5.2.3790.3959                        LocalSystem
    RemoteRegistry                     Remote Registry                                                         svchost.exe           5.2.3790.3959                        NT AUTHORITY\LocalService
    RpcLocator                         Remote Procedure Call (RPC) Locator                                     locator.exe           5.2.3790.0                     NT AUTHORITY\NetworkService
    RpcSs                              Remote Procedure Call (RPC)                                             svchost.exe           5.2.3790.3959                        NT AUTHORITY\NetworkService
    SamSs                              Security Accounts Manager                                               lsass.exe                                                  LocalSystem
    SCardSvr                           Smart Card                                                              SCardSvr.exe          5.2.3790.3959                        NT AUTHORITY\LocalService
    Schedule                           Task Scheduler                                                          svchost.exe           5.2.3790.3959                        LocalSystem
    seclogon                           Secondary Logon                                                         svchost.exe           5.2.3790.3959                        LocalSystem
    SENS                               System Event Notification                                               svchost.exe           5.2.3790.3959                        LocalSystem
    SharedAccess                       Windows Firewall/Internet Connection Sharing (ICS)                      svchost.exe           5.2.3790.3959                        LocalSystem
    ShellHWDetection                   Shell Hardware Detection                                                svchost.exe           5.2.3790.3959                        LocalSystem
    Spooler                            Print Spooler                                                           spoolsv.exe           5.2.3790.3959                  LocalSystem
    srservice                          System Restore Service                                                  svchost.exe           5.2.3790.3959                        LocalSystem
    SSDPSRV                            SSDP Discovery Service                                                  svchost.exe           5.2.3790.3959                        NT AUTHORITY\LocalService
    StarWindServiceAE                  StarWind AE Service                                                     StarWindServiceAE.exe  3.2.0.1319                     LocalSystem
    stisvc                             Windows Image Acquisition (WIA)                                         svchost.exe           5.2.3790.3959                        NT AUTHORITY\LocalService
    swprv                              Microsoft Software Shadow Copy Provider                                 svchost.exe           5.2.3790.3959                  LocalSystem
    SysmonLog                          Performance Logs and Alerts                                             smlogsvc.exe          5.2.3790.3959                  NT Authority\NetworkService
    TapiSrv                            Telephony                                                               svchost.exe           5.2.3790.3959                        LocalSystem
    TermService                        Terminal Services                                                       svchost.exe           5.2.3790.3959                        LocalSystem
    Themes                             Themes                                                                  svchost.exe           5.2.3790.3959                        LocalSystem
    TlntSvr                            Telnet                                                                  tlntsvr.exe                                          NT AUTHORITY\LocalService
    TrkWks                             Distributed Link Tracking Client                                        svchost.exe           5.2.3790.3959                        LocalSystem
    UMWdf                              Windows User Mode Driver Framework                                      wdfmgr.exe            5.2.3790.1830                  NT AUTHORITY\LocalService
    upnphost                           Universal Plug and Play Device Host                                     svchost.exe           5.2.3790.3959                        NT AUTHORITY\LocalService
    UPS                                Uninterruptible Power Supply                                            ups.exe               5.2.3790.0                     NT AUTHORITY\LocalService
    vds                                Virtual Disk Service                                                    vds.exe                                              LocalSystem
    VSS                                Volume Shadow Copy                                                      vssvc.exe                                            LocalSystem
    W32Time                            Windows Time                                                            svchost.exe           5.2.3790.3959                        NT AUTHORITY\LocalService
    WebClient                          WebClient                                                               svchost.exe           5.2.3790.3959                        NT AUTHORITY\LocalService
    WinHttpAutoProxySvc                WinHTTP Web Proxy Auto-Discovery Service                                svchost.exe           5.2.3790.3959                        NT AUTHORITY\LocalService
    winmgmt                            Windows Management Instrumentation                                      svchost.exe           5.2.3790.3959                        LocalSystem
    WmdmPmSN                           Portable Media Serial Number Service                                    svchost.exe           5.2.3790.3959                        LocalSystem
    Wmi                                Windows Management Instrumentation Driver Extensions                    svchost.exe           5.2.3790.3959                        LocalSystem
    WmiApSrv                           WMI Performance Adapter                                                 wmiapsrv.exe                                         LocalSystem
    wscsvc                             Security Center                                                         svchost.exe           5.2.3790.3959                        LocalSystem
    wuauserv                           Automatic Updates                                                       svchost.exe           5.2.3790.3959                        LocalSystem
    WZCSVC                             Wireless Configuration                                                  svchost.exe           5.2.3790.3959                        LocalSystem
    xmlprov                            Network Provisioning Service                                            svchost.exe           5.2.3790.3959                        LocalSystem


--------[  AX ]----------------------------------------------------------------------------------------------------

    acelpdec.ax                1.4.0.0                     ACELP.net Audio Decoder
    g711codc.ax                5.2.3790.1830               Intel G711 CODEC
    ir41_32.ax                 4.51.16.3                   Intel Indeo Video 4.5
    ksproxy.ax                 5.3.3790.1830               WDM Streaming ActiveMovie Proxy
    l3codecx.ax                1.5.0.50                    MPEG Layer-3 Audio Decoder
    mpeg2data.ax               6.5.3790.3959               Microsoft MPEG-2 Section and Table Acquisition Module
    mpg2splt.ax                6.5.3790.3959               DirectShow MPEG-2 Splitter.
    mpg4ds32.ax                8.0.0.4487                  Microsoft MPEG-4 Video Decompressor
    msadds32.ax                8.0.0.4487                  Windows Media Audio Decoder
    msscds32.ax                8.0.0.4487                  Microsoft Screen Video Decompressor
    nvpvenc.ax                 6.14.11.8242                NVIDIA Pure Video Encoder, Version 182.42 
    vbisurf.ax                 5.3.3790.1830               VBI Surface Allocator Filter
    wiasf.ax                   1.0.0.0                     WIA Stream Snapshot Filter
    wmv8ds32.ax                8.0.0.4000                  Windows Media Video Decoder V8
    wmvds32.ax                 8.0.0.4487                  Windows Media Video Decoder


--------[  DLL ]---------------------------------------------------------------------------------------------------

    6to4svc.dll                5.2.3790.3959               Service that offers IPv6 connectivity over an IPv4 network.
    aaaamon.dll                5.2.3790.1830               Aaaa Monitor DLL
    acctres.dll                6.0.3790.0                  Microsoft Internet Account Manager Resources
    acledit.dll                5.2.3790.3959               Access Control List Editor
    aclui.dll                  5.2.3790.3959               Security Descriptor Editor
    activeds.dll               5.2.3790.3959               ADs Router Layer DLL
    actxprxy.dll               6.0.3790.3959               ActiveX Interface Marshaling Library
    admparse.dll               6.0.3790.1830               IEAK Global Policy Template Parser
    adptif.dll                 5.2.3790.1830               IPX Interface via WinSock
    adsldp.dll                 5.2.3790.3959               ADs LDAP Provider DLL
    adsldpc.dll                5.2.3790.3959               ADs LDAP Provider C DLL
    adsmsext.dll               5.2.3790.3959               ADs LDAP Provider DLL
    adsnt.dll                  5.2.3790.3959               ADs Windows NT Provider DLL
    advapi32.dll               5.2.3790.3959               Advanced Windows 32 Base API
    advpack.dll                6.0.3790.3959               ADVPACK
    aelupsvc.dll               5.2.3790.1830               Application Experience Lookup Service
    agcpanelfrench.dll         8.9.25.0                    NVIDIA PhysX System Tray String Table
    agcpanelgerman.dll         8.9.26.0                    NVIDIA PhysX System Tray String Table
    agcpaneljapanese.dll       8.9.25.0                    NVIDIA PhysX System Tray String Table
    agcpanelkorean.dll         8.9.18.0                    NVIDIA PhysX System Tray String Table
    agcpanelportugese.dll      8.9.25.0                    NVIDIA PhysX System Tray String Table
    agcpanelsimplifiedchinese.dll  8.9.25.0                    NVIDIA PhysX System Tray String Table
    agcpanelspanish.dll        8.9.25.0                    NVIDIA PhysX System Tray String Table
    agcpanelswedish.dll        8.9.25.0                    NVIDIA PhysX System Tray String Table
    agcpaneltraditionalchinese.dll  8.9.25.0                    NVIDIA PhysX System Tray String Table
    amstream.dll               6.5.3790.3959               DirectShow Runtime.
    apcups.dll                 5.2.3790.3959               APC Smart Provider
    apphelp.dll                5.2.3790.3959               Application Compatibility Client Library
    appmgmts.dll               5.2.3790.3959               Software installation Service
    appmgr.dll                 5.2.3790.3959               Software Installation Snapin Extenstion
    asferror.dll               10.0.0.3997                 ASF Error Definitions
    asio.dll                   1.0.0.1                     AsIO DLL
    asycfilt.dll               5.2.3790.3959               
    atkctrs.dll                5.2.3790.0                  Windows NT AppleTalk Perfmon Counter dll
    atl.dll                    3.5.2284.2                  ATL Module for Windows XP (Unicode)
    atmlib.dll                 5.1.2.226                   Windows NT OpenType/Type 1 API Library.
    atmpvcno.dll               5.2.3790.1830               Atm Epvc Install DLL
    audiodev.dll               5.2.3810.3997               Portable Media Devices Shell Extension
    audiosrv.dll               5.2.3790.1830               Windows Audio Service
    authz.dll                  5.2.3790.3959               Authorization Framework
    autodisc.dll               5.2.3790.0                  Windows AutoDiscovery API
    avicap.dll                 1.15.0.1                    AVI Capture DLL
    avicap32.dll               5.2.3790.1830               AVI Capture window class
    avifil32.dll               5.2.3790.4527               Microsoft AVI File support library
    avifile.dll                4.90.0.3000                 Microsoft AVI File support library
    azroles.dll                5.2.3790.3959               azroles Module
    azroleui.dll               5.2.3790.3959               Authorization Manager
    batmeter.dll               6.0.3790.3959               Battery Meter Helper DLL
    bidispl.dll                5.2.3790.0                  Bidispl DLL
    bitsprx2.dll               6.6.3790.3959               Background Intelligent Transfer Service Proxy
    bitsprx3.dll               6.6.3790.3959               Background Intelligent Transfer Service 2.0 Proxy
    blackbox.dll               10.0.0.3997                 BlackBox DLL
    browselc.dll               6.0.3790.0                  Shell Browser UI Library
    browser.dll                5.2.3790.3959               Computer Browser Service DLL
    browseui.dll               6.0.3790.4589               Shell Browser UI Library
    browsewm.dll               6.0.3790.1830               BrowseWM Player
    c_eucdb.dll                5.2.3790.0                  EUC DBCS-Unicode Conversion DLL
    c_g18030.dll               5.2.3790.1830               GB18030 DBCS-Unicode Conversion DLL
    c_is2022.dll               5.2.3790.1830               ISO-2022 Code Page Translation DLL
    c_iscii.dll                5.2.3790.1830               ISCII Code Page Translation DLL
    c_snadb.dll                5.2.3790.0                  SNA IBM DBCS-Unicode Conversions DLL
    cabinet.dll                5.2.3790.3959               Microsoft Cabinet File API
    cabview.dll                6.0.3790.3959               Cabinet File Viewer Shell Extension
    camocx.dll                 5.2.3790.3959               WIA Camera View DLL
    cards.dll                  5.2.3790.0                  Entertainment Pack Cardplaying Helper DLL
    catsrv.dll                 2001.12.4720.3959           COM+ Configuration Catalog Server
    catsrvps.dll               2001.12.4720.3959           COM+ Configuration Catalog Server Proxy/Stub
    catsrvut.dll               2001.12.4720.3959           COM+ Configuration Catalog Server Utilities
    cc3260mt.dll               6.0.1.0                     Borland C++ Multi-thread RTL (WIN/VCL MT)
    ccfgnt.dll                 7.2.3790.0                  Internet Configuration Library
    cdfview.dll                6.0.3790.3959               Channel Definition File Viewer
    cdosys.dll                 6.5.6757.0                  Microsoft CDO for Windows Library
    certcli.dll                5.2.3790.3959               Microsoft Certificate Services Client
    certmgr.dll                5.2.3790.3959               Certificates snap-in
    cewmdm.dll                 10.0.3790.3997              Windows CE WMDM Service Provider
    cfgmgr32.dll               5.2.3790.0                  Configuration Manager Forwarder DLL
    chsbrkr.dll                2.0.2022.0                  Microsoft Chinese_Simplified Word Breaker Component
    chtbrkr.dll                3.0.0.1507                  Microsoft Traditional Chinese Word Breaker
    ciadmin.dll                5.2.3790.3959               CI Administration (MMC)
    cic.dll                    5.2.3790.3959               CIC - MMC controls for Taskpad
    ciodm.dll                  5.2.3790.3959               Indexing Service Admin Automation Objects
    clb.dll                    5.2.3790.0                  Column List Box
    clbcatex.dll               2001.12.4720.3959           COM+
    clbcatq.dll                2001.12.4720.3959           COM+ Configuration Catalog
    cliconfg.dll               2000.86.1830.0              SQL Client Configuration Utility DLL
    clusapi.dll                5.2.3790.3959               Cluster API Library
    cmcfg32.dll                7.2.3790.1830               Microsoft Connection Manager Configuration Dll
    cmdial32.dll               7.2.3790.3959               Microsoft Connection Manager
    cmpbk32.dll                7.2.3790.0                  Microsoft Connection Manager Phonebook
    cmsetacl.dll               5.2.3790.1830               Connection Manager ACL update
    cmutil.dll                 7.2.3790.1830               Microsoft Connection Manager Utility Lib
    cnetcfg.dll                7.2.3790.0                  Connection Manager Library
    cnvfat.dll                 5.2.3790.1830               FAT File System Conversion Utility DLL
    colbact.dll                2001.12.4720.3959           COM+
    comaddin.dll               2001.12.4720.3959           COM+
    comadmin.dll               2001.12.4720.3959           COM+ Administration SDK
    comcat.dll                 5.2.3790.0                  Microsoft Component Category Manager Library
    comctl32.dll               5.82.3790.3959              Common Controls Library
    comdlg32.dll               6.0.3790.3959               Common Dialogs DLL
    commdlg.dll                3.10.0.103                  Common Dialogs libraries
    compatui.dll               5.2.3790.3959               Application Compatibility UI Library
    compobj.dll                2.10.35.35                  OLE 2.1 16/32 Interoperability Library
    compstui.dll               5.2.3790.0                  Common Property Sheet User Interface DLL
    comres.dll                 2001.12.4720.3959           COM+ Resources
    comsnap.dll                2001.12.4720.1830           COM+ Explorer MMC Snapin
    comsvcs.dll                2001.12.4720.3959           COM+ Services
    comuid.dll                 2001.12.4720.3959           COM+ Explorer UI
    confmsp.dll                5.2.3790.3959               Microsoft IP Conferencing Media Service Provider
    console.dll                5.2.3790.0                  Control Panel Console Applet
    corpol.dll                 2003.2.3790.3959            Microsoft COM Runtime Execution Engine
    credui.dll                 5.2.3790.3959               Credential Manager User Interface
    crtdll.dll                 4.0.1183.1                  Microsoft C Runtime Library
    crypt32.dll                5.131.3790.3959             Crypto API32
    cryptdlg.dll               5.2.3790.0                  Microsoft Common Certificate Dialogs
    cryptdll.dll               5.2.3790.3959               Cryptography Manager
    cryptext.dll               5.131.3790.3959             Crypto Shell Extensions
    cryptnet.dll               5.131.3790.3959             Crypto Network Related API
    cryptsvc.dll               5.2.3790.3959               Cryptographic Services
    cryptui.dll                5.131.3790.3959             Microsoft Trust UI Provider
    cscdll.dll                 5.2.3790.3959               Offline Network Agent
    cscui.dll                  5.2.3790.3959               Client Side Caching UI
    csseqchk.dll               10.0.0.1009                 CSSeqChk
    csver.dll                  9.0.0.1009                  CSVer
    ctl3d32.dll                2.31.0.0                    Ctl3D 3D Windows Controls
    ctl3dv2.dll                2.99.0.0                    Ctl3D 3D Windows NT(WOW) Controls
    d3d10.dll                  6.0.5270.9                  Microsoft Direct3D
    d3d10core.dll                                          
    d3d8.dll                   5.3.3790.3959               Microsoft Direct3D
    d3d8thk.dll                5.2.3790.0                  Microsoft Direct3D OS Thunk Layer
    d3d9.dll                   5.3.3790.3959               Microsoft Direct3D
    d3dcompiler_33.dll         9.18.904.15                 Microsoft Direct3D
    d3dcompiler_34.dll         9.19.949.46                 Microsoft Direct3D
    d3dcompiler_35.dll         9.19.949.1104               Microsoft Direct3D
    d3dcompiler_36.dll         9.19.949.2111               Microsoft Direct3D
    d3dcompiler_37.dll         9.22.949.2248               Microsoft Direct3D
    d3dcompiler_38.dll         9.23.949.2378               Microsoft Direct3D
    d3dcompiler_39.dll         9.24.949.2307               Microsoft Direct3D
    d3dcompiler_40.dll         9.24.950.2656               Direct3D HLSL Compiler
    d3dcompiler_41.dll         9.26.952.2844               Direct3D HLSL Compiler
    d3dcompiler_42.dll         9.27.952.3022               Direct3D HLSL Compiler
    d3dcsx_42.dll              9.27.952.3022               Direct3D 10.1 Extensions
    d3dim.dll                  5.2.3790.3959               Microsoft Direct3D
    d3dim700.dll               5.3.3790.1830               Microsoft Direct3D
    d3dpmesh.dll               5.2.3790.0                  Direct3D Progressive Mesh DLL
    d3dramp.dll                5.2.3790.0                  Microsoft Direct3D
    d3drm.dll                  5.2.3790.0                  Direct3D Retained Mode DLL
    d3dx10.dll                 9.16.843.0                  Microsoft Direct3D
    d3dx10_33.dll              9.18.904.21                 Microsoft Direct3D
    d3dx10_34.dll              9.19.949.46                 Microsoft Direct3D
    d3dx10_35.dll              9.19.949.1104               Microsoft Direct3D
    d3dx10_36.dll              9.19.949.2009               Microsoft Direct3D
    d3dx10_37.dll              9.19.949.2187               Microsoft Direct3D
    d3dx10_38.dll              9.23.949.2378               Microsoft Direct3D
    d3dx10_39.dll              9.24.949.2307               Microsoft Direct3D
    d3dx10_40.dll              9.24.950.2656               Direct3D 10.1 Extensions
    d3dx10_41.dll              9.26.952.2844               Direct3D 10.1 Extensions
    d3dx10_42.dll              9.27.952.3001               Direct3D 10.1 Extensions
    d3dx11_42.dll              9.27.952.3022               Direct3D 10.1 Extensions
    d3dx9_24.dll               9.5.132.0                   Microsoft DirectX for Windows
    d3dx9_25.dll               9.6.168.0                   Microsoft DirectX for Windows
    d3dx9_26.dll               9.7.239.0                   Microsoft DirectX for Windows
    d3dx9_27.dll               9.8.299.0                   Microsoft DirectX for Windows
    d3dx9_28.dll               9.10.455.0                  Microsoft DirectX for Windows
    d3dx9_29.dll               9.11.519.0                  Microsoft DirectX for Windows
    d3dx9_30.dll               9.12.589.0                  Microsoft DirectX for Windows
    d3dx9_31.dll               9.15.779.0                  Microsoft DirectX for Windows
    d3dx9_32.dll               9.16.843.0                  Microsoft DirectX for Windows
    d3dx9_33.dll               9.18.904.15                 Microsoft DirectX for Windows
    d3dx9_34.dll               9.19.949.46                 Microsoft DirectX for Windows
    d3dx9_35.dll               9.19.949.1104               Microsoft DirectX for Windows
    d3dx9_36.dll               9.19.949.2111               Microsoft DirectX for Windows
    d3dx9_37.dll               9.22.949.2248               Microsoft DirectX for Windows
    d3dx9_38.dll               9.23.949.2378               Microsoft DirectX for Windows
    d3dx9_39.dll               9.24.949.2307               Microsoft DirectX for Windows
    d3dx9_40.dll               9.24.950.2656               Direct3D 9 Extensions
    d3dx9_41.dll               9.26.952.2844               Direct3D 9 Extensions
    d3dx9_42.dll               9.27.952.3001               Direct3D 9 Extensions
    d3dxof.dll                 5.2.3790.0                  DirectX Files DLL
    danim.dll                  6.3.1.148                   DirectX Media -- DirectAnimation
    dataclen.dll               6.0.3790.1830               Disk Space Cleaner for Windows
    datime.dll                 6.3.1.148                   TIME
    davclnt.dll                5.2.3790.3959               Web DAV Client DLL
    dbgeng.dll                 5.2.3790.3959               Windows Symbolic Debugger Engine
    dbghelp.dll                5.2.3790.1830               Windows Image Helper
    dbmsrpcn.dll               2000.86.1830.0              ConnectTo RPC Net Library
    dbnetlib.dll               2000.86.3959.0              Winsock Oriented Net DLL for SQL Clients
    dbnmpntw.dll               2000.86.3959.0              Named Pipes Net DLL for SQL Clients
    dciman32.dll               5.2.3790.0                  DCI Manager
    ddeml.dll                  3.50.0.103                  DDE Management library
    ddraw.dll                  5.3.3790.1830               Microsoft DirectDraw
    ddrawex.dll                5.3.3790.1830               Direct Draw Ex
    deskadp.dll                6.0.3790.0                  Advanced display adapter properties
    deskmon.dll                6.0.3790.0                  Advanced display monitor properties
    deskperf.dll               5.2.3790.3959               Advanced display performance properties
    devenum.dll                6.5.3790.3959               Device enumeration.
    dfsshlex.dll               5.2.3790.1830               Distributed File System shell extension
    dgnet.dll                  1.0.0.1                     Dgnet Module
    dhcpcsvc.dll               5.2.3790.3959               DHCP Client Service
    dhcpmon.dll                5.2.3790.3959               DHCP Monitor Dll
    dhcpsapi.dll               5.2.3790.1830               DHCP Server API Stub DLL
    diactfrm.dll               5.3.3790.3959               Microsoft DirectInput Mapper Framework
    digest.dll                 6.0.3790.3959               Digest SSPI Authentication Package
    dimap.dll                  5.2.3790.0                  Microsoft DirectInput Mapper
    dimsntfy.dll               5.2.3790.3959               DIMS Notification Handler
    dimsroam.dll               5.2.3790.3959               Key Roaming DIMS Provider DLL
    dinput.dll                 5.3.3790.3959               Microsoft DirectInput
    dinput8.dll                5.3.3790.1830               Microsoft DirectInput
    directdb.dll               6.0.3790.3959               Microsoft Direct Database API
    diskcopy.dll               6.0.3790.3959               Windows DiskCopy
    dispex.dll                 5.6.0.8832                  Microsoft (r) DispEx
    dmband.dll                 5.3.3790.1830               Microsoft DirectMusic Band
    dmcompos.dll               5.3.3790.1830               Microsoft DirectMusic Composer
    dmime.dll                  5.3.3790.3959               Microsoft DirectMusic Interactive Engine
    dmloader.dll               5.3.3790.3959               Microsoft DirectMusic Loader
    dmocx.dll                  5.2.3790.0                  TreeView OCX
    dmscript.dll               5.3.3790.1830               Microsoft DirectMusic Scripting
    dmstyle.dll                5.3.3790.1830               Microsoft DirectMusic Style Engline
    dmsynth.dll                5.3.3790.1830               Microsoft DirectMusic Software Synthesizer
    dmusic.dll                 5.3.3790.3959               Microsoft DirectMusic Core Services
    dnsapi.dll                 5.2.3790.4318               DNS Client API DLL
    dnsrslvr.dll               5.2.3790.4238               DNS Caching Resolver Service
    docprop.dll                5.2.3790.0                  OLE DocFile Property Page
    docprop2.dll               5.2.3790.3959               Microsoft DocProp Shell Ext
    dplay.dll                  5.0.2134.1                  Microsoft DirectPlay
    dplayx.dll                 5.3.3790.3959               Microsoft DirectPlay
    dpmodemx.dll               5.3.3790.1830               Modem and Serial Connection For DirectPlay
    dpnaddr.dll                5.3.3790.3959               Microsoft DirectPlay8 Address
    dpnet.dll                  5.3.3790.3959               Microsoft DirectPlay
    dpnhpast.dll               5.3.3790.3959               Microsoft DirectPlay NAT Helper PAST
    dpnhupnp.dll               5.3.3790.3959               Microsoft DirectPlay NAT Helper UPnP
    dpnlobby.dll               5.3.3790.3959               Microsoft DirectPlay8 Lobby
    dpvacm.dll                 5.3.3790.3959               Microsoft DirectPlay Voice ACM Provider
    dpvoice.dll                5.3.3790.3959               Microsoft DirectPlay Voice
    dpvvox.dll                 5.3.3790.3959               Microsoft DirectPlay Voice Voxware Provider
    dpwsockx.dll               5.3.3790.3959               Internet TCP/IP and IPX Connection For DirectPlay
    drmclien.dll               10.0.0.3997                 DRM Client DLL
    drmstor.dll                10.0.0.3997                 DRM Store DLL
    drmv2clt.dll               10.0.0.3997                 DRMv2 Client DLL
    drprov.dll                 5.2.3790.1830               Microsoft Terminal Server Network Provider
    ds32gt.dll                 3.526.1830.0                Microsoft Data Access - ODBC Driver Setup Generic Thunk
    dsauth.dll                 5.2.3790.3959               DS Authorization for Services
    dsdmo.dll                  5.3.3790.1830               DirectSound Effects
    dsdmoprp.dll               5.3.3790.1830               DirectSound Effects Property Pages
    dskquota.dll               5.2.3790.3959               Windows Shell Disk Quota Support DLL
    dskquoui.dll               5.2.3790.3959               Windows Shell Disk Quota UI DLL
    dsound.dll                 5.3.3790.3959               DirectSound
    dsound3d.dll               5.3.3790.1830               DirectSound3D LUT
    dsprop.dll                 5.2.3790.3959               Windows Active Directory Property Pages
    dsquery.dll                5.2.3790.3959               Directory Service Find
    dssec.dll                  5.2.3790.1830               Directory Service Security UI
    dssenh.dll                 5.2.3790.3959               Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider
    dsuiext.dll                5.2.3790.3959               Directory Service Common UI
    dswave.dll                 5.3.3790.1830               Microsoft DirectMusic Wave
    duser.dll                  5.2.3790.3959               Windows DirectUser Engine
    dwmapi.dll                 6.0.5270.9                  Microsoft Desktop Window Manager API
    dx7vb.dll                  5.3.3790.3959               Microsoft DirectX for Visual Basic
    dx8vb.dll                  5.3.3790.3959               Microsoft DirectX for Visual Basic
    dxdiagn.dll                5.3.3790.3959               Microsoft DirectX Diagnostic Tool
    dxgi.dll                                               
    dxmasf.dll                 6.4.9.1133                  Windows Media Source Filter
    dxtmsft.dll                6.3.3790.4589               DirectX Media -- Image DirectX Transforms
    dxtrans.dll                6.3.3790.4589               DirectX Media -- DirectX Transform Core
    efsadu.dll                 5.2.3790.0                  File Encryption Utility
    els.dll                    5.2.3790.3959               Event Viewer Snapin
    encapi.dll                 5.3.3790.1830               Encoder API
    encdec.dll                 6.5.3790.3959               (No COPP Allowed) XDSCodec & Encypter/Decrypter Tagger Filters.
    es.dll                     2001.12.4720.4282           COM+
    esent.dll                  5.2.3790.3959               Server Database Storage Engine
    esent97.dll                6.0.3940.13                 Microsoft(R) Windows NT(TM) Server Database Storage Engine
    esentprf.dll               5.2.3790.1830               Server Database Storage Performance Library
    expsrv.dll                 6.0.72.9589                 Visual Basic for Applications Runtime - Expression Service
    extmgr.dll                 6.0.3790.3959               Extensions Manager
    f3ahvoas.dll               5.2.3790.0                  JP Japanese Keyboard Layout for Fujitsu FMV oyayubi-shift keyboard
    faultrep.dll               5.2.3790.1830               Windows Error Reporting
    fde.dll                    5.2.3790.3959               Folder Redirection Snapin Extension
    fdeploy.dll                5.2.3790.3959               Folder Redirection Winlogon Extension
    feclient.dll               5.2.3790.1830               Windows NT File Encryption Client Interfaces
    filemgmt.dll               5.2.3790.1830               Services and Shared Folders
    fldrclnr.dll               6.0.3790.3959               Desktop Cleanup Wizard
    fltlib.dll                 5.2.3790.1830               Filter Library
    fm20.dll                   12.0.4518.1014              Microsoft Forms DLL
    fm20enu.dll                12.0.4518.1014              Microsoft Forms International DLL
    fmifs.dll                  5.2.3790.3959               FM IFS Utility DLL
    fontext.dll                5.2.3790.3959               Windows Font Folder
    fontsub.dll                5.2.3790.4559               Font Subsetting DLL
    fsusd.dll                  5.2.3790.3959               File System Camera Devices DLL
    ftlx041e.dll               5.2.3790.0                  Thai Wordbreaker
    ftsrch.dll                 4.0.0.4553                  Microsoft Full-Text Search
    fwcfg.dll                  5.2.3790.3959               Windows Firewall Configuration Helper
    gcdef.dll                  5.3.3790.3959               Game Controllers Default Sheets
    gdi32.dll                  5.2.3790.4396               GDI Client DLL
    getuname.dll               5.2.3790.0                  Unicode name Dll for UCE
    glmf32.dll                 5.2.3790.1830               OpenGL Metafiling DLL
    glu32.dll                  5.2.3790.3959               OpenGL Utility Library DLL
    gpedit.dll                 5.2.3790.3959               GPEdit
    gpkcsp.dll                 5.2.3790.1830               Gemplus Cryptographic Service Provider
    gpkrsrc.dll                5.2.3790.1830               Gemplus Cryptographic Service Provider Resources
    gptext.dll                 5.2.3790.3959               GPTExt
    h323msp.dll                5.2.3790.3959               Microsoft H.323 Media Service Provider
    hbaapi.dll                 5.2.3790.3959               HBA API data interface dll for HBA_API_Rev_2-18_2002MAR1.doc
    hhsetup.dll                5.2.3790.3959               Microsoft HTML Help
    hid.dll                    5.2.3790.3959               Hid User Library
    hlink.dll                  5.2.3790.3959               Microsoft Office 2000 component
    hnetcfg.dll                5.2.3790.3959               Home Networking Configuration Manager
    hnetmon.dll                5.2.3790.1830               Home Networking Monitor DLL
    httpapi.dll                5.2.3790.3959               HTTP Protocol Stack API
    htui.dll                   5.2.3790.0                  Common halftone Color Adjustment Dialogs
    iasacct.dll                5.2.3790.1830               IAS Accounting Provider
    iasads.dll                 5.2.3790.1830               IAS Active Directory Data Store
    iashlpr.dll                5.2.3790.1830               IAS Surrogate Component
    iasnap.dll                 5.2.3790.3959               IAS NAP Provider
    iaspolcy.dll               5.2.3790.1830               IAS Pipeline
    iasrad.dll                 5.2.3790.1830               IAS RADIUS Protocol Component
    iasrecst.dll               5.2.3790.1830               IAS Jet Database Access
    iassam.dll                 5.2.3790.3959               IAS NT SAM Provider
    iassdo.dll                 5.2.3790.3959               IAS SDO Component
    iassvcs.dll                5.2.3790.3959               IAS Services Component
    iccvid.dll                 1.10.0.12                   Cinepak Codec
    icfgnt5.dll                6.0.3790.0                  Internet Connection Wizard
    icm32.dll                  5.2.3790.3959               Microsoft Color Management Module (CMM)
    icmp.dll                   5.2.3790.0                  ICMP DLL
    icmui.dll                  5.2.3790.1830               Microsoft Color Matching System User Interface DLL
    icwdial.dll                6.0.3790.1830               Internet Connection Wizard Autodialer
    icwphbk.dll                6.0.3790.1830               Internet Connection Wizard
    idndl.dll                  6.0.5441.0                  Downlevel DLL
    idq.dll                    5.2.3790.3959               Indexing Service ISAPI Extension
    ieakeng.dll                6.0.3790.3959               Internet Explorer Administration Kit Engine Library
    ieaksie.dll                6.0.3790.3959               Internet Explorer Snap-in Extension to Group Policy
    ieakui.dll                 6.0.3790.0                  Microsoft IEAK Shared UI DLL
    iedkcs32.dll               16.0.3790.3959              Microsoft Internet Explorer Customization DLL
    ieencode.dll               2009.10.31.10               Microsoft Character Encoder
    iepeers.dll                6.0.3790.3959               Internet Explorer Peer Objects
    iernonce.dll               6.0.3790.1830               Extended RunOnce processing with UI
    iesetup.dll                6.0.3790.1830               IOD Version Map
    ifmon.dll                  5.2.3790.3959               IF Monitor DLL
    ifsutil.dll                5.2.3790.3959               IFS Utility DLL
    igmpagnt.dll               5.2.3790.0                  Microsoft IGMP subagent
    ils.dll                    5.2.3790.1830               User Location Services Component Module
    imagehlp.dll               5.2.3790.3959               Windows NT Image Helper
    imeshare.dll               9.3.7020.0                  Microsoft Office IME Shared property library.
    imgutil.dll                6.0.3790.3959               IE plugin image decoder support DLL
    imjp81k.dll                8.1.7103.0                  Microsoft IME
    imm32.dll                  5.2.3790.3959               Windows IMM32 API Client DLL
    inetcfg.dll                6.0.3790.1830               Internet Connection Wizard Library
    inetcomm.dll               6.0.3790.4325               Microsoft Internet Messaging API
    inetcplc.dll               6.0.3790.0                  Internet Control Panel
    inetmib1.dll               5.2.3790.1830               Microsoft MIB-II subagent
    inetpp.dll                 5.2.3790.3959               Internet Print Provider DLL
    inetppui.dll               5.2.3790.0                  Internet Print Client DLL
    inetres.dll                6.0.3790.1830               Microsoft Internet Messaging API Resources
    infosoft.dll               5.2.3790.0                  Wordbreaker and stemmer dll
    initpki.dll                5.131.3790.3959             Microsoft Trust Installation and Setup
    inked.dll                  1.7.2600.2180               Microsoft Tablet PC Component
    input.dll                  5.2.3790.1830               Text Input DLL
    inseng.dll                 6.0.3790.3959               Install engine
    iologmsg.dll               5.2.3790.0                  IO Logging DLL
    iphlpapi.dll               5.2.3790.3959               IP Helper API
    ipmontr.dll                5.2.3790.1830               IP Router Monitor DLL
    ipnathlp.dll               5.2.3790.3959               Microsoft NAT Helper Components
    ippromon.dll               5.2.3790.3959               IP Protocols Monitor DLL
    iprop.dll                  5.2.3790.1830               OLE PropertySet Implementation
    iprtprio.dll               5.2.3790.1830               IP Routing Protocol Priority DLL
    iprtrmgr.dll               5.2.3790.1830               IP Router Manager
    ipsecsnp.dll               5.2.3790.3959               IP Security Policy Management Snap-in
    ipsecsvc.dll               5.2.3790.3959               Windows IPSec SPD Server DLL
    ipsmsnap.dll               5.2.3790.3959               IP Security Monitor Snap-in
    ipv6mon.dll                5.2.3790.1830               IPv6 Monitor DLL
    ipxsap.dll                 5.2.3790.1830               SAP Agent DLL
    ir32_32.dll                3.24.15.3                   Intel Indeo(R) Video R3.2 32-bit Driver
    ir41_qc.dll                4.30.62.2                   Intel Indeo Video Interactive Quick Compressor
    ir41_qcx.dll               4.30.64.1                   Intel Indeo Video Interactive Quick Compressor
    ir50_32.dll                5.2562.15.55                Intel Indeo video 5.10
    ir50_qc.dll                5.0.63.48                   Intel Indeo video 5.10 Quick Compressor
    ir50_qcx.dll               5.0.64.48                   Intel Indeo video 5.10 Quick Compressor
    irisco32.dll                                           
    isign32.dll                6.0.3790.3959               Internet Signup
    isrdbg32.dll               0.0.0.0                     ISR Debug 32-bit Engine
    itircl.dll                 5.2.3790.3959               Microsoft InfoTech IR Local DLL
    itss.dll                   5.2.3790.3959               Microsoft InfoTech Storage System Library
    iwhtmllayoutmgr.dll        1.0.0.0                     IntraWeb 5.0
    iwpreviewmgr.dll           1.0.0.0                     IntraWeb 5.0
    ixsso.dll                  5.2.3790.3959               Indexing Service Server-side Object
    iyuv_32.dll                5.2.3790.1830               Intel Indeo(R) Video YUV Codec
    jet500.dll                 5.2.3790.3959               JET Engine DLL
    jgaw400.dll                36.0.0.0                    JG Audio Interface DLL
    jgdw400.dll                106.0.0.0                   JG ART DLL
    jgmd400.dll                34.0.0.0                    JG MIDI Player DLL
    jgpl400.dll                54.0.0.0                    JG ART Player DLL
    jgsd400.dll                17.0.0.0                    JG ART DLL
    jgsh400.dll                23.0.0.0                    JG Slide Show Player DLL
    jobexec.dll                5.0.0.1                     Active Setup Job Executer
    jscript.dll                5.6.0.8837                  Microsoft (r) JScript
    jsproxy.dll                6.0.3790.3959               JScript Proxy Auto-Configuration
    kbd101.dll                 5.2.3790.0                  JP Japanese Keyboard Layout for 101
    kbd101a.dll                5.2.3790.0                  KO Hangeul Keyboard Layout for 101 (Type A)
    kbd101b.dll                5.2.3790.0                  KO Hangeul Keyboard Layout for 101(Type B)
    kbd101c.dll                5.2.3790.0                  KO Hangeul Keyboard Layout for 101(Type C)
    kbd103.dll                 5.2.3790.0                  KO Hangeul Keyboard Layout for 103
    kbd106.dll                 5.2.3790.0                  JP Japanese Keyboard Layout for 106
    kbd106n.dll                5.2.3790.0                  JP Japanese Keyboard Layout for 106
    kbda1.dll                  5.2.3790.0                  Arabic_English_101 Keyboard Layout
    kbda2.dll                  5.2.3790.0                  Arabic_2 Keyboard Layout
    kbda3.dll                  5.2.3790.0                  Arabic_French_102 Keyboard Layout
    kbdal.dll                  5.2.3790.0                  Albania Keyboard Layout
    kbdarme.dll                5.2.3790.0                  Eastern Armenian Keyboard Layout
    kbdarmw.dll                5.2.3790.0                  Western Armenian Keyboard Layout
    kbdax2.dll                 5.2.3790.0                  JP Japanese Keyboard Layout for AX2
    kbdaze.dll                 5.2.3790.0                  Azerbaijan_Cyrillic Keyboard Layout
    kbdazel.dll                5.2.3790.0                  Azeri-Latin Keyboard Layout
    kbdbe.dll                  5.2.3790.0                  Belgian Keyboard Layout
    kbdbene.dll                5.2.3790.0                  Belgian Dutch Keyboard Layout
    kbdbhc.dll                 5.2.3790.3959               Bosnian (Cyrillic) Keyboard Layout
    kbdblr.dll                 5.2.3790.0                  Belarusian Keyboard Layout
    kbdbr.dll                  5.2.3790.0                  Brazilian Keyboard Layout
    kbdbu.dll                  5.2.3790.0                  Bulgarian Keyboard Layout
    kbdca.dll                  5.2.3790.0                  Canadian Multilingual Keyboard Layout
    kbdcan.dll                 5.2.3790.0                  Canadian National Standard Keyboard Layout
    kbdcr.dll                  5.2.3790.0                  Croatian/Slovenian Keyboard Layout
    kbdcz.dll                  5.2.3790.0                  Czech Keyboard Layout
    kbdcz1.dll                 5.2.3790.0                  Czech_101 Keyboard Layout
    kbdcz2.dll                 5.2.3790.0                  Czech_Programmer's Keyboard Layout
    kbdda.dll                  5.2.3790.0                  Danish Keyboard Layout
    kbddiv1.dll                5.2.3790.0                  Divehi Phonetic Keyboard Layout
    kbddiv2.dll                5.2.3790.0                  Divehi Typewriter Keyboard Layout
    kbddv.dll                  5.2.3790.0                  Dvorak US English Keyboard Layout
    kbdes.dll                  5.2.3790.0                  Spanish Alernate Keyboard Layout
    kbdest.dll                 5.2.3790.0                  Estonia Keyboard Layout
    kbdfa.dll                  5.2.3790.0                  Farsi Keyboard Layout
    kbdfc.dll                  5.2.3790.0                  Canadian French Keyboard Layout
    kbdfi.dll                  5.2.3790.0                  Finnish Keyboard Layout
    kbdfi1.dll                 5.2.3790.3959               Finnish-Swedish with Sami Keyboard Layout
    kbdfo.dll                  5.2.3790.0                  F?roese Keyboard Layout
    kbdfr.dll                  5.2.3790.0                  French Keyboard Layout
    kbdgae.dll                 5.2.3790.0                  Gaelic Keyboard Layout
    kbdgeo.dll                 5.2.3790.0                  Georgian Keyboard Layout
    kbdgkl.dll                 5.2.3790.0                  Greek_Latin Keyboard Layout
    kbdgr.dll                  5.2.3790.0                  German Keyboard Layout
    kbdgr1.dll                 5.2.3790.0                  German_IBM Keyboard Layout
    kbdhe.dll                  5.2.3790.0                  Greek Keyboard Layout
    kbdhe220.dll               5.2.3790.0                  Greek IBM 220 Keyboard Layout
    kbdhe319.dll               5.2.3790.0                  Greek IBM 319 Keyboard Layout
    kbdheb.dll                 5.2.3790.0                  KBDHEB Keyboard Layout
    kbdhela2.dll               5.2.3790.0                  Greek IBM 220 Latin Keyboard Layout
    kbdhela3.dll               5.2.3790.0                  Greek IBM 319 Latin Keyboard Layout
    kbdhept.dll                5.2.3790.0                  Greek_Polytonic Keyboard Layout
    kbdhu.dll                  5.2.3790.0                  Hungarian Keyboard Layout
    kbdhu1.dll                 5.2.3790.0                  Hungarian 101-key Keyboard Layout
    kbdibm02.dll               5.2.3790.0                  JP Japanese Keyboard Layout for IBM 5576-002/003
    kbdic.dll                  5.2.3790.0                  Icelandic Keyboard Layout
    kbdindev.dll               5.2.3790.0                  Devanagari Keyboard Layout
    kbdinguj.dll               5.2.3790.0                  Gujarati Keyboard Layout
    kbdinhin.dll               5.2.3790.0                  Hindi Keyboard Layout
    kbdinkan.dll               5.2.3790.0                  Kannada Keyboard Layout
    kbdinmar.dll               5.2.3790.0                  Marathi Keyboard Layout
    kbdinpun.dll               5.2.3790.0                  Punjabi/Gurmukhi Keyboard Layout
    kbdintam.dll               5.2.3790.0                  Tamil Keyboard Layout
    kbdintel.dll               5.2.3790.0                  Telugu Keyboard Layout
    kbdir.dll                  5.2.3790.0                  Irish Keyboard Layout
    kbdit.dll                  5.2.3790.0                  Italian Keyboard Layout
    kbdit142.dll               5.2.3790.0                  Italian 142 Keyboard Layout
    kbdiultn.dll               5.2.3790.3959               Inuktitut Latin Keyboard Layout
    kbdjpn.dll                 5.2.3790.3959               JP Japanese Keyboard Layout Stub driver
    kbdkaz.dll                 5.2.3790.0                  Kazak_Cyrillic Keyboard Layout
    kbdkor.dll                 5.2.3790.3959               KO Hangeul Keyboard Layout Stub driver
    kbdkyr.dll                 5.2.3790.0                  Kyrgyz Keyboard Layout
    kbdla.dll                  5.2.3790.0                  Latin-American Spanish Keyboard Layout
    kbdlk41a.dll               5.2.3790.0                  DEC LK411-AJ Keyboard Layout
    kbdlk41j.dll               5.2.3790.0                  DEC LK411-JJ Keyboard Layout
    kbdlt.dll                  5.2.3790.0                  Lithuania Keyboard Layout
    kbdlt1.dll                 5.2.3790.0                  Lithuanian Keyboard Layout
    kbdlv.dll                  5.2.3790.0                  Latvia Keyboard Layout
    kbdlv1.dll                 5.2.3790.0                  Latvia-QWERTY Keyboard Layout
    kbdmac.dll                 5.2.3790.0                  FYROMacedonian_Cyrillic Keyboard Layout
    kbdmaori.dll               5.2.3790.3959               Maori Keyboard Layout
    kbdmlt47.dll               5.2.3790.3959               Maltese 47-key Keyboard Layout
    kbdmlt48.dll               5.2.3790.3959               Maltese 48-key Keyboard Layout
    kbdmon.dll                 5.2.3790.0                  Mongolian Keyboard Layout
    kbdne.dll                  5.2.3790.0                  Dutch Keyboard Layout
    kbdnec.dll                 5.2.3790.0                  JP Japanese Keyboard Layout for (NEC PC-9800)
    kbdnec95.dll               5.2.3790.0                  JP Japanese Keyboard Layout for (NEC PC-9800 Windows 95)
    kbdnecat.dll               5.2.3790.0                  JP Japanese Keyboard Layout for (NEC PC-9800 on PC98-NX)
    kbdnecnt.dll               5.2.3790.0                  JP Japanese NEC PC-9800 Keyboard Layout
    kbdnepr.dll                5.2.3790.3959               Nepali Keyboard Layout
    kbdno.dll                  5.2.3790.0                  Norwegian Keyboard Layout
    kbdno1.dll                 5.2.3790.3959               Norwegian with Sami Keyboard Layout
    kbdpash.dll                5.2.3790.3959               Pashto (Afghanistan) Keyboard Layout
    kbdpl.dll                  5.2.3790.0                  Polish Keyboard Layout
    kbdpl1.dll                 5.2.3790.0                  Polish Programmer's Keyboard Layout
    kbdpo.dll                  5.2.3790.0                  Portuguese Keyboard Layout
    kbdro.dll                  5.2.3790.0                  Romanian Keyboard Layout
    kbdru.dll                  5.2.3790.0                  Russian Keyboard Layout
    kbdru1.dll                 5.2.3790.0                  Russia(Typewriter) Keyboard Layout
    kbdsf.dll                  5.2.3790.0                  Swiss French Keyboard Layout
    kbdsg.dll                  5.2.3790.0                  Swiss German Keyboard Layout
    kbdsl.dll                  5.2.3790.0                  Slovak Keyboard Layout
    kbdsl1.dll                 5.2.3790.0                  Slovak(QWERTY) Keyboard Layout
    kbdsmsfi.dll               5.2.3790.3959               Sami Extended Finland-Sweden Keyboard Layout
    kbdsmsno.dll               5.2.3790.3959               Sami Extended Norway Keyboard Layout
    kbdsp.dll                  5.2.3790.0                  Spanish Keyboard Layout
    kbdsw.dll                  5.2.3790.0                  Swedish Keyboard Layout
    kbdsyr1.dll                5.2.3790.0                  Syriac Standard Keyboard Layout
    kbdsyr2.dll                5.2.3790.0                  Syriac Phoenetic Keyboard Layout
    kbdtat.dll                 5.2.3790.0                  Tatar_Cyrillic Keyboard Layout
    kbdth0.dll                 5.2.3790.0                  Thai Kedmanee Keyboard Layout
    kbdth1.dll                 5.2.3790.0                  Thai Pattachote Keyboard Layout
    kbdth2.dll                 5.2.3790.0                  Thai Kedmanee (non-ShiftLock) Keyboard Layout
    kbdth3.dll                 5.2.3790.0                  Thai Pattachote (non-ShiftLock) Keyboard Layout
    kbdtuf.dll                 5.2.3790.0                  Turkish F Keyboard Layout
    kbdtuq.dll                 5.2.3790.0                  Turkish Q Keyboard Layout
    kbduk.dll                  5.2.3790.0                  United Kingdom Keyboard Layout
    kbdukx.dll                 5.2.3790.3959               United Kingdom Extended Keyboard Layout
    kbdur.dll                  5.2.3790.0                  Ukrainian Keyboard Layout
    kbdurdu.dll                5.2.3790.0                  Urdu Keyboard Layout
    kbdus.dll                  5.2.3790.0                  United States Keyboard Layout
    kbdusa.dll                 5.2.3790.0                  US IBM Arabic 238_L Keyboard Layout
    kbdusl.dll                 5.2.3790.0                  Dvorak Left-Hand US English Keyboard Layout
    kbdusr.dll                 5.2.3790.0                  Dvorak Right-Hand US English Keyboard Layout
    kbdusx.dll                 5.2.3790.0                  US Multinational Keyboard Layout
    kbduzb.dll                 5.2.3790.0                  Uzbek_Cyrillic Keyboard Layout
    kbdvntc.dll                5.2.3790.0                  Vietnamese Keyboard Layout
    kbdycc.dll                 5.2.3790.0                  Serbian_Cyrillic Keyboard Layout
    kbdycl.dll                 5.2.3790.0                  Serbian_Latin Keyboard Layout
    kerberos.dll               5.2.3790.4530               Kerberos Security Package
    kernel32.dll               5.2.3790.4480               Windows NT BASE API Client DLL
    keymgr.dll                 5.2.3790.1830               Stored User Names and Passwords
    korwbrkr.dll               6.0.1529.1                  Korean WordBreaker
    ksuser.dll                 5.3.3790.1830               User CSA Library
    lame_enc.dll                                           
    langwrbk.dll               5.2.3790.0                  English wordbreaker
    laprxy.dll                 10.0.0.3997                 Windows Media Logagent Proxy
    lfani13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfani13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfavi13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfavi13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfbmp13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfbmp13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfclp13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfclp13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfcmp13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfcmp13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfeps13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfeps13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lffax13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lffax13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfiff13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfiff13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfimg13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfimg13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfitg13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfitg13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfj2k13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfj2k13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfjbg13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfjbg13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfmsp13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfmsp13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfpcd13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfpcd13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfpcx13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfpcx13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfpng13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfpng13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfpnm13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfpnm13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfpsd13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lfpsd13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lftif13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lftif13s.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    licmgr10.dll               6.0.3790.0                  ActiveX License Manager
    linkinfo.dll               5.2.3790.3959               Windows Volume Tracking
    lmhsvc.dll                 5.2.3790.3959               TCPIP NetBios Transport Services DLL
    lmrt.dll                   6.3.1.148                   Liquid Motion Runtime Control
    loadperf.dll               5.2.3790.0                  Load & Unload Performance Counters
    localsec.dll               5.2.3790.3959               Local Users and Groups MMC Snapin
    localui.dll                5.2.3790.0                  Local Monitor UI DLL
    loghours.dll               5.2.3790.0                  Schedule Dialog
    lpk.dll                    5.2.3790.3959               Language Pack
    lprhelp.dll                5.2.3790.1830               LPR Print Monitor
    lprmonui.dll               5.2.3790.0                  LPR Print Monitor UI
    ltbar13n.dll               13.0.0.64                   LEADTOOLS(r) DLL for Win32
    ltclr13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    ltdis13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    ltdlg13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    ltefx13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    ltfil13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    ltimg13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    ltkrn13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    ltlst13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    ltocr13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    ltpdg13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    ltpnt13n.dll               13.0.0.85                   LEADTOOLS(r) DLL for Win32
    ltr13n.dll                 13.0.0.124                  LEADTOOLS(r) COM for Win32
    ltrio13n.dll               13.0.0.124                  LEADTOOLS(r) COM for Win32
    ltrpr13n.dll               13.0.0.124                  LEADTOOLS(r) COM for Win32
    lttlb13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lttmb13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lttwn13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    ltwvc13n.dll               13.0.0.124                  LEADTOOLS(r) DLL for Win32
    lz32.dll                   5.2.3790.0                  LZ Expand/Compress API DLL
    lzexpand.dll               3.10.0.103                  Windows file expansion library
    mag_hook.dll               5.2.3790.1830               Microsoft Magnifier hook library file
    mapi32.dll                 1.0.2536.0                  Extended MAPI 1.0 for Windows NT
    mapistub.dll               1.0.2536.0                  Extended MAPI 1.0 for Windows NT
    mcastmib.dll               5.2.3790.0                  Microsoft Multicast subagent
    mcd32.dll                  5.2.3790.3959               OpenGL MCD Client DLL
    mchgrcoi.dll               5.2.3790.0                  Medium Changer CoInstaller
    mciavi32.dll               5.2.3790.1830               Video For Windows MCI driver
    mcicda.dll                 5.2.3790.0                  MCI driver for cdaudio devices
    mciole16.dll               3.10.0.103                  MCIOLE16 - OLE Handler DLL for MCI Objects
    mciole32.dll               5.2.3790.0                  MCI OLE DLL
    mciqtz32.dll               6.5.3790.3959               DirectShow MCI Driver
    mciseq.dll                 5.2.3790.1830               MCI driver for MIDI sequencer
    mciwave.dll                5.2.3790.1830               MCI driver for waveform audio
    mdhcp.dll                  5.2.3790.1830               Microsoft MDHCP Client COM Interface
    mdminst.dll                5.2.3790.3959               Modem Class Installer
    mf3216.dll                 5.2.3790.4033               32-bit to 16-bit Metafile Conversion DLL
    mfc40.dll                  4.1.0.6140                  MFCDLL Shared Library - Retail Version
    mfc40u.dll                 4.1.0.6141                  MFCDLL Shared Library - Retail Version
    mfc42.dll                  6.6.8063.0                  MFCDLL Shared Library - Retail Version
    mfc42u.dll                 6.6.8063.0                  MFCDLL Shared Library - Retail Version
    mfcans32.dll               3.1.0.2                     OLE2ANSI Library - Retail Version
    mfcoleui.dll               2.0.1.0                     Microsoft Windows(TM) OLE 2.0 User Interface Support
    mfcsubs.dll                2001.12.4720.3959           COM+
    mgmtapi.dll                5.2.3790.3959               Microsoft SNMP Manager API (uses WinSNMP)
    microsoft.managementconsole.dll  5.2.3790.3959               MMCFx
    midas.dll                  7.0.4.453                   Borland MIDAS Component Package
    midimap.dll                5.2.3790.1830               Microsoft MIDI Mapper
    miglibnt.dll               5.2.3790.3959               NT migration dll support
    mimefilt.dll               2006.0.5730.0               Microsoft (R) IMimeFilter Persistent Handler DLL
    mlang.dll                  6.0.3790.3959               Multi Language Support DLL
    mll_hp.dll                 5.2.3790.1830               HP Media Label Library
    mll_mtf.dll                5.2.3790.1830               MTF (Microsoft Tape Format) Media Label Library
    mll_qic.dll                5.2.3790.1830               QIC113 Media Label Library
    mmcbase.dll                5.2.3790.3959               MMC Base DLL
    mmcex.dll                  5.2.3790.3959               MMCEx
    mmcfxcommon.dll            5.2.3790.3959               MMCFxCommon
    mmcndmgr.dll               5.2.3790.3959               MMC Node Manager DLL
    mmcshext.dll               5.2.3790.3959               MMC Shell Extension DLL
    mmfutil.dll                5.2.3790.1830               WMI Snapin Helpers
    mmsystem.dll               3.10.0.103                  System APIs for Multimedia
    mmutilse.dll               6.3.1.146                   Microsoft Multimedia Controls Utilities
    mnmdd.dll                  5.2.3790.1830               Application Sharing Display Driver
    mobsync.dll                5.2.3790.3959               Microsoft Synchronization Manager
    modemui.dll                5.2.3790.1830               Windows Modem Properties
    moricons.dll               5.2.3790.0                  Windows NT Setup Icon Resources Library
    mp43dmod.dll               10.0.0.3997                 Windows Media MPEG-4 Video Decoder
    mp4sdmod.dll               10.0.0.3997                 Corona Windows Media MPEG-4 S Video Decoder
    mpg4c32.dll                4.1.0.3920                  Microsoft MPEG-4 Video Codec
    mpg4dmod.dll               10.0.0.3997                 Corona Windows Media MPEG-4 Video Decoder
    mpr.dll                    5.2.3790.3959               Multiple Provider Router DLL
    mprapi.dll                 5.2.3790.3959               Windows NT MP Router Administration DLL
    mprddm.dll                 5.2.3790.3959               Demand Dial Manager Supervisor
    mprdim.dll                 5.2.3790.3959               Dynamic Interface Manager
    mprmsg.dll                 5.2.3790.0                  Multi-Protocol Router Service Messages DLL
    mprui.dll                  5.2.3790.0                  Multiple Provider
    mqad.dll                   5.2.2007.4530               Message Queuing Active Directory Client
    mqdscli.dll                5.2.2007.4530               Message Queuing Directory Service Client
    mqoa.dll                   5.2.2007.4530               Message Queuing ActiveX Interface
    mqperf.dll                 5.2.2007.4530               Message Queuing Performance Coutners
    mqrt.dll                   5.2.2007.4530               Message Queuing Runtime
    mqsec.dll                  5.2.2007.4530               Message Queuing Utilities
    mqutil.dll                 5.2.2003.3959               Message Queuing Resource DLL
    msaatext.dll               2.0.10413.0                 Active Accessibility text support
    msacm.dll                  3.50.0.9                    Microsoft Audio Compression Manager
    msacm32.dll                5.2.3790.3959               Microsoft ACM Audio Filter
    msadce.dll                 2.82.3959.0                 Microsoft Data Access - OLE DB Cursor Engine
    msadcer.dll                2.82.1830.0                 Microsoft Data Access - OLE DB Cursor Engine Resources
    msadcf.dll                 2.82.3959.0                 Microsoft Data Access - Remote Data Services Data Factory
    msadcfr.dll                2.82.1830.0                 Microsoft Data Access - Remote Data Services Data Factory Resources
    msadco.dll                 2.82.3959.0                 Microsoft Data Access - Remote Data Services Data Control
    msadcor.dll                2.82.1830.0                 Microsoft Data Access - Remote Data Services Data Control Resources
    msadcs.dll                 2.82.3959.0                 Microsoft Data Access - Remote Data Services ISAPI Library
    msadds.dll                 2.82.3959.0                 Microsoft Data Access - OLE DB Data Shape Provider
    msaddsr.dll                2.82.1830.0                 Microsoft Data Access -  OLE DB Data Shape Provider Resources
    msader15.dll               2.82.1830.0                 Microsoft Data Access - ActiveX Data Objects Resources
    msado15.dll                2.82.3959.0                 Microsoft Data Access - ActiveX Data Objects
    msadomd.dll                2.82.3959.0                 Microsoft Data Access - ActiveX Data Objects (Multi-Dimensional)
    msador15.dll               2.82.1830.0                 Microsoft Data Access - ActiveX Data Objects
    msadox.dll                 2.82.3959.0                 Microsoft Data Access - ActiveX Data Objects Extensions
    msadrh15.dll               2.82.3959.0                 Microsoft Data Access - ActiveX Data Objects Rowset Helper
    msafd.dll                  5.2.3790.0                  Microsoft Windows Sockets 2.0 Service Provider
    msapsspc.dll               6.0.0.7755                  DPA Client for 32 bit platforms
    msasn1.dll                 5.2.3790.4584               ASN.1 Runtime APIs
    msaudite.dll               5.2.3790.1830               Security Audit Events DLL
    mscat32.dll                5.131.3790.0                MSCAT32 Forwarder DLL
    mscms.dll                  5.2.3790.4320               Microsoft Color Matching System DLL
    msconf.dll                 5.2.3790.1830               Conferencing Utility Dll
    mscpx32r.dll               3.526.1830.0                Microsoft Data Access - ODBC Code Page Translator Resources
    mscpxl32.dll               3.526.1830.0                Microsoft Data Access - ODBC Code Page Translator
    msctf.dll                  5.2.3790.3959               MSCTF Server DLL
    msctfp.dll                 5.2.3790.1830               MSCTFP Server DLL
    msdadc.dll                 2.82.1830.0                 Microsoft Data Access - OLE DB Data Conversion Stub
    msdadiag.dll               2.82.1830.0                 Microsoft Data Access - Built-In Diagnostics
    msdaenum.dll               2.82.1830.0                 Microsoft Data Access - OLE DB Root Enumerator Stub
    msdaer.dll                 2.82.1830.0                 Microsoft Data Access - OLE DB Error Collection Stub
    msdaipp.dll                12.0.4518.1014              Windows executable
    msdaora.dll                2.82.3959.0                 Microsoft Data Access - OLE DB Provider for Oracle
    msdaorar.dll               2.82.1830.0                 Microsoft Data Access - OLE DB Provider for Oracle Resources
    msdaosp.dll                2.82.3959.0                 Microsoft Data Access - OLE DB Simple Provider
    msdapml.dll                12.0.4518.1014              Windows executable
    msdaprsr.dll               2.82.1830.0                 Microsoft Data Access - OLE DB Persistence Services Resources
    msdaprst.dll               2.82.3959.0                 Microsoft Data Access - OLE DB Persistence Services
    msdaps.dll                 2.82.3959.0                 Microsoft Data Access - OLE DB Interface Proxies/Stubs
    msdarem.dll                2.82.3959.0                 Microsoft Data Access - OLE DB Remote Provider
    msdaremr.dll               2.82.1830.0                 Microsoft Data Access - OLE DB Remote Provider Resources
    msdart.dll                 2.82.3959.0                 Microsoft Data Access - OLE DB Runtime Routines
    msdasc.dll                 2.82.1830.0                 Microsoft Data Access - OLE DB Service Components Stub
    msdasql.dll                2.82.3959.0                 Microsoft Data Access - OLE DB Provider for ODBC Drivers
    msdasqlr.dll               2.82.1830.0                 Microsoft Data Access - OLE DB Provider for ODBC Drivers Resources
    msdatl3.dll                2.82.1830.0                 Microsoft Data Access - OLE DB Implementation Support Routines
    msdatt.dll                 2.82.1830.0                 Microsoft Data Access - OLE DB Temporary Table Services
    msdaurl.dll                9.2.1830.0                  Microsoft Data Access - OLE DB RootBinder Stub
    msdbg2.dll                 9.0.30729.1                 Microsoft Visual Studio 7.0 Debugging Proxy/Stub
    msdfmap.dll                2.82.1830.0                 Microsoft Data Access - Data Factory Handler
    msdmeng.dll                8.0.2039.0                  Microsoft Data Mining Engine
    msdmine.dll                8.0.2039.0                  Microsoft OLE DB Provider for Data Mining Services
    msdmo.dll                  6.5.3790.1830               DMO Runtime
    msdtcprx.dll               2001.12.4720.4340           MS DTCOLE Transactions interface proxy DLL
    msdtcuiu.dll               2001.12.4720.4340           MS DTCadministrative component DLL
    msdxmlc.dll                6.4.9.1125                  Windows Media Player
    msencode.dll               2002.10.4.0                 Microsoft Character Encoder
    msexch40.dll               4.0.9502.0                  Microsoft Jet Exchange Isam
    msexcl40.dll               4.0.9502.0                  Microsoft Jet Excel Isam
    msftedit.dll               5.41.21.2506                Rich Text Edit Control, v4.1
    msgina.dll                 5.2.3790.3959               Windows NT Logon GINA DLL
    mshtml.dll                 6.0.3790.4605               Microsoft (R) HTML Viewer
    mshtmled.dll               6.0.3790.3959               Microsoft (R) HTML Editing Component
    mshtmler.dll               6.0.3790.1830               Microsoft (R) HTML Editing Component's Resource DLL
    msi.dll                    3.1.4000.4042               Windows Installer
    msidcrl40.dll              5.0.737.6                   IDCRL Dynamic Link Library
    msident.dll                6.0.3790.1830               Microsoft Identity Manager
    msidle.dll                 6.0.3790.1830               User Idle Monitor
    msidntld.dll               6.0.3790.0                  Microsoft Identity Manager
    msieftp.dll                6.0.3790.3959               Microsoft Internet Explorer FTP Folder Shell Extension
    msihnd.dll                 3.1.4000.3959               Windows installer
    msimg32.dll                5.2.3790.0                  GDIEXT Client DLL
    msimsg.dll                 3.1.4000.1830               Windows Installer International Messages
    msimtf.dll                 5.2.3790.3959               Active IMM Server DLL
    msir3jp.dll                5.2.3790.1830               Japanese Wordbreaker and Stemmer
    msisip.dll                 3.1.4000.1830               MSI Signature SIP Provider
    msjet40.dll                4.0.9505.0                  Microsoft Jet Engine Library
    msjetoledb40.dll           4.0.9502.0                  Microsoft OLE DB Provider for Jet
    msjint40.dll               4.0.9502.0                  Microsoft Jet Database Engine International DLL
    msjro.dll                  2.82.3959.0                 Microsoft Jet and Replication Objects
    msjter40.dll               4.0.9502.0                  Microsoft Jet Database Engine Error DLL
    msjtes40.dll               4.0.9502.0                  Microsoft Jet Expression Service
    mslbui.dll                 5.2.3790.3959               LangageBar Add In
    msls31.dll                 3.10.349.0                  Microsoft Line Services library file
    msltus40.dll               4.0.9502.0                  Microsoft Jet Lotus 1-2-3 Isam
    msmapi32.dll               12.0.4518.1014              Extended MAPI 1.0 for Windows NT
    msmdcb80.dll               8.0.2039.0                  PivotTable Service dll
    msmdgd80.dll               8.0.2039.0                  Microsoft SQL Server Analysis Services driver
    msmdlocal.dll              9.0.3017.0                  Microsoft SQL Server Analysis Services
    msmdun80.dll               2000.80.2039.0              String Function .DLL for SQL Enterprise Components
    msmgdsrv.dll               9.0.3017.0                  Microsoft SQL Server Analysis Services Managed Module
    msnetobj.dll               10.0.0.3997                 DRM ActiveX Network Object
    msnsspc.dll                6.1.1825.0                  MSN Internet Access
    msobjs.dll                 5.2.3790.0                  System object audit names
    msoeacct.dll               6.0.3790.3959               Microsoft Internet Account Manager
    msoert2.dll                6.0.3790.3959               Microsoft Outlook Express RT Lib
    msolap80.dll               8.0.2216.0                  Microsoft OLE DB Provider for Analysis Services 8.0
    msolap90.dll               9.0.3017.0                  Microsoft OLE DB Provider for Analysis Services 9.0
    msolui80.dll               8.0.0.2039                  Microsoft OLE DB provider for Analysis Services connection dialog 8.0
    msolui90.dll               9.0.3017.0                  Microsoft OLE DB Provider for Analysis Services Connection Dialog 9.0
    msorc32r.dll               2.576.1830.0                Microsoft Data Access - ODBC Driver for Oracle Resources
    msorcl32.dll               2.576.3959.0                Microsoft Data Access - ODBC Driver for Oracle
    mspatcha.dll               5.2.3790.0                  Microsoft(R) Patch Engine
    mspbde40.dll               4.0.9502.0                  Microsoft Jet Paradox Isam
    mspmsnsv.dll               10.0.3790.3997              Microsoft Media Device Service Provider
    mspmsp.dll                 10.0.3790.3997              Microsoft Media Device Service Provider
    msports.dll                5.2.3790.1830               Ports Class Installer
    msprivs.dll                5.2.3790.0                  Microsoft Privilege Translations
    msr2c.dll                  1.0.4211.0                  Microsoft Forms DLL
    msr2cenu.dll               1.0.4211.0                  Microsoft Forms DLL
    msratelc.dll               6.0.3790.0                  Internet Ratings and Local User Management DLL
    msrating.dll               6.0.3790.3959               Internet Ratings and Local User Management DLL
    msrclr40.dll               4.0.6508.0                  Microsoft Jet Briefcase Reconciler Library
    msrd2x40.dll               4.0.9502.0                  Microsoft (R) Red ISAM
    msrd3x40.dll               4.0.9502.0                  Microsoft (R) Red ISAM
    msrecr40.dll               4.0.6508.0                  Microsoft Jet Briefcase Reconciler Resource Library
    msrepl40.dll               4.0.9502.0                  Microsoft Replication Library
    msrle32.dll                5.2.3790.0                  Microsoft RLE Compressor
    mssap.dll                  10.0.0.3700                 DRM
    msscp.dll                  10.0.0.3997                 Windows Media Secure Content Provider
    mssign32.dll               5.131.3790.0                Microsoft Trust Signing APIs
    mssip32.dll                5.131.3790.0                MSSIP32 Forwarder DLL
    msstdfmt.dll               6.0.84.50                   Microsoft Standard Data Formating Object DLL
    msswch.dll                 5.2.3790.0                  msswch
    mstask.dll                 5.2.3790.3959               Task Scheduler interface DLL
    mstext40.dll               4.0.9502.0                  Microsoft Jet Text Isam
    mstime.dll                 6.0.3790.4589               Microsoft (R) Timed Interactive Multimedia Extensions to HTML
    mstlsapi.dll               5.2.3790.3959               Microsoft Terminal Server Licensing
    mstscax.dll                5.2.3790.4524               Terminal Services ActiveX Client
    msutb.dll                  5.2.3790.3959               MSUTB Server DLL
    msv1_0.dll                 5.2.3790.4587               Microsoft Authentication Package v1.0
    msvbvm60.dll               6.0.97.82                   Visual Basic Virtual Machine
    msvcirt.dll                7.0.3790.3959               Windows NT IOStreams DLL
    msvcm80.dll                8.0.50727.42                Microsoft C Runtime Library
    msvcm90.dll                9.0.30428.1                 Microsoft C Runtime Library
    msvcp50.dll                5.0.0.7051                  Microsoft (R) C++ Runtime Library
    msvcp60.dll                7.0.3790.1830               Windows NT C++ Runtime Library DLL
    msvcp70.dll                7.0.9466.0                  Microsoft C++ Runtime Library
    msvcp71.dll                7.10.3077.0                 Microsoft C++ Runtime Library
    msvcp80.dll                8.0.50727.1433              Microsoft C++ Runtime Library
    msvcp90.dll                9.0.30428.1                 Microsoft C++ Runtime Library
    msvcr70.dll                7.0.9466.0                  Microsoft C Runtime Library
    msvcr71.dll                7.10.3052.4                 Microsoft C Runtime Library
    msvcr80.dll                8.0.50727.1433              Microsoft C Runtime Library
    msvcr80d.dll               8.0.50727.42                Microsoft C Runtime Library
    msvcr90.dll                9.0.30428.1                 Microsoft C Runtime Library
    msvcrt.dll                 7.0.3790.3959               Windows NT CRT DLL
    msvcrt20.dll               2.12.0.0                    Microsoft C Runtime Library
    msvcrt40.dll               5.2.3790.0                  VC 4.x CRT DLL (Forwarded to msvcrt.dll)
    msvcrtnew.dll              8.0.50727.1433              Microsoft C Runtime Library
    msvfw32.dll                5.2.3790.1830               Microsoft Video for Windows DLL
    msvidc32.dll               5.2.3790.0                  Microsoft Video 1 Compressor
    msvidctl.dll               6.5.3790.3959               ActiveX control for streaming video
    msvideo.dll                1.15.0.1                    Microsoft Video for Windows DLL
    msw3prt.dll                5.2.3790.1830               ISAPI dll for Web Printing
    mswdat10.dll               4.0.9502.0                  Microsoft Jet Sort Tables
    mswebdvd.dll               6.5.3790.4565               MSWebDVD Module
    mswmdm.dll                 10.0.3790.3997              Windows Media Device Manager Core
    mswsock.dll                5.2.3790.4318               Microsoft Windows Sockets 2.0 Service Provider
    mswstr10.dll               4.0.9502.0                  Microsoft Jet Sort Library
    msxactps.dll               2.82.1830.0                 Microsoft Data Access - OLE DB Transaction Proxies/Stubs
    msxbde40.dll               4.0.9502.0                  Microsoft Jet xBASE Isam
    msxml.dll                  8.0.7002.0                  XML OM for Win32
    msxml2.dll                 8.30.9528.0                 XML OM for Win32
    msxml2r.dll                8.1.7502.0                  XML Resources for Win32
    msxml3.dll                 8.100.1048.0                MSXML 3.0 SP10
    msxml3r.dll                8.20.8730.1                 XML Resources
    msxml4.dll                 4.20.9870.0                 MSXML 4.0 SP 2
    msxml4r.dll                4.10.9404.0                 MSXML 4.0 SP1 Resources
    msxmlr.dll                 8.0.6730.0                  XML Resources for Win32
    msyuv.dll                  5.2.3790.0                  Microsoft UYVY Video Decompressor
    mtxclu.dll                 2001.12.4720.4340           MS DTC amd MTS clustering support DLL
    mtxdm.dll                  2001.12.4720.3959           COM+
    mtxex.dll                  2001.12.4720.3959           COM+
    mtxlegih.dll               2001.12.4720.0              COM+
    mtxoci.dll                 2001.12.4720.4340           Microsoft database support DLL for Oracle
    mycomput.dll               5.2.3790.1830               Computer Management
    mydocs.dll                 6.0.3790.3959               My Documents Folder UI
    narrhook.dll               5.2.3790.0                  Microsoft Narrator Keyboard and WinEvent hook
    ncobjapi.dll               5.2.3790.3959               Microsoft Windows Operating System
    nctaudiofile2.dll          2.4.2.261                   NCTAudioFile2 ActiveX DLL
    nctaudioinformation2.dll   2.4.3.224                   NCTAudioInformation2 ActiveX DLL
    nctaudioplayer2.dll        2.3.7.122                   NCTAudioPlayer2 ActiveX DLL
    nctwmafile2.dll            2.4.1.113                   NCTWMAFile2 ActiveX DLL
    nddeapi.dll                5.2.3790.3959               Network DDE Share Management APIs
    nddenb32.dll               5.2.3790.3959               Network DDE NetBIOS Interface
    netapi.dll                 3.11.0.300                  Microsoft Network Dynamic Link Library for Microsoft Windows
    netapi32.dll               5.2.3790.4392               Net Win32 API DLL
    netcfgx.dll                5.2.3790.3959               Network Configuration Objects
    netevent.dll               5.2.3790.0                  Net Event Handler
    neth.dll                   5.2.3790.0                  Net Help Messages DLL
    netid.dll                  5.2.3790.3959               System Control Panel Applet; Network ID Page
    netlogon.dll               5.2.3790.3959               Net Logon Services DLL
    netman.dll                 5.2.3790.3959               Network Connections Manager
    netmsg.dll                 5.2.3790.0                  Net Messages DLL
    netplwiz.dll               5.2.3790.3959               Map Network Drives/Network Places Wizard
    netrap.dll                 5.2.3790.0                  Net Remote Admin Protocol DLL
    netshell.dll               5.2.3790.3959               Network Connections Shell
    netui0.dll                 5.2.3790.0                  NT LM UI Common Code - GUI Classes
    netui1.dll                 5.2.3790.0                  NT LM UI Common Code - Networking classes
    netui2.dll                 5.2.3790.3959               NT LM UI Common Code - GUI Classes
    newdev.dll                 5.2.3790.3959               Add Hardware Device Library
    nlhtml.dll                 2006.0.5730.0               HTML filter
    nlsdl.dll                  6.0.5438.0                  Nls Downlevel DLL
    nmevtmsg.dll               5.2.3790.1830               NetMeeting Event Logging DLL
    nmmkcert.dll               5.2.3790.1830               NMMKCERT Library
    normaliz.dll               6.0.5441.0                  Unicode Normalization DLL
    npptools.dll               5.2.3790.0                  NPP Tools Helper DLL
    nshipsec.dll               5.2.3790.3959               Net Shell IP Security helper DLL
    ntdll.dll                  5.2.3790.3959               NT Layer DLL
    ntdsapi.dll                5.2.3790.3959               NT5DS
    ntdsbcli.dll               5.2.3790.3959               NT5DS
    ntlanman.dll               5.2.3790.3959               Microsoft Lan Manager
    ntlanui.dll                5.2.3790.0                  Lanman Control dll
    ntlanui2.dll               5.2.3790.0                  Network object shell UI
    ntlsapi.dll                5.2.3790.0                  Microsoft License Server Interface DLL
    ntmarta.dll                5.2.3790.3959               Windows NT MARTA provider
    ntmsapi.dll                5.2.3790.3959               Removable Storage Public Interfaces
    ntprint.dll                5.2.3790.3959               Spooler Setup DLL
    ntshrui.dll                6.0.3790.3959               Shell extensions for sharing
    ntvdm64.dll                5.2.3790.1830               16-bit Emulation on NT64
    nvapi.dll                  6.14.11.9107                NVIDIA NVAPI Library, Version 191.07 
    nvcuda.dll                 6.14.11.9107                NVIDIA Compatible CUDA Driver, Version 191.07 
    nvcuvenc.dll               6.14.11.9107                NVIDIA CUDA Video Encoder, Version 191.07 
    nvcuvid.dll                6.14.11.9107                NVIDIA CUDA Video Decode API, Version 191.07 
    nvogl32.dll                6.14.11.9107                NVIDIA Compatible OpenGL ICD
    nvwddi.dll                 6.14.11.9107                NVIDIA nView Display Driver Interface Lib, Version 191.07
    oakley.dll                 5.2.3790.3959               Oakley Key Manager
    objsel.dll                 5.2.3790.1830               Object Picker Dialog
    oc30.dll                   3.20.0.0                    Microsoft OLE Control runtime DLL
    occache.dll                6.0.3790.3959               Object Control Viewer
    ocmanage.dll               5.2.3790.3959               Optional Component Manager Library
    odbc16gt.dll               3.510.3711.0                Microsoft ODBC Driver Generic Thunk
    odbc32.dll                 3.526.3959.0                Microsoft Data Access - ODBC Driver Manager
    odbc32gt.dll               3.526.1830.0                Microsoft Data Access - ODBC Driver Generic Thunk
    odbcbcp.dll                2000.86.3959.0              Microsoft BCP for ODBC
    odbcconf.dll               3.526.3959.0                Microsoft Data Access - ODBC Driver Configuration Program
    odbccp32.dll               3.526.3959.0                Microsoft Data Access - ODBC Installer
    odbccr32.dll               3.526.1830.0                Microsoft Data Access - ODBC Cursor Library
    odbccu32.dll               3.526.1830.0                Microsoft Data Access - ODBC Cursor Library
    odbcint.dll                3.526.1830.0                Microsoft Data Access - ODBC Resources
    odbcji32.dll               4.0.6305.0                  Microsoft ODBC Desktop Driver Pack 3.5
    odbcjt32.dll               4.0.6305.0                  Microsoft ODBC Desktop Driver Pack 3.5
    odbcp32r.dll               3.526.1830.0                Microsoft Data Access - ODBC Driver Manager Resources
    odbctrac.dll               3.526.3959.0                Microsoft Data Access - ODBC Driver Manager Trace
    oddbse32.dll               4.0.6305.0                  ODBC (3.0) driver for DBase
    odexl32.dll                4.0.6305.0                  ODBC (3.0) driver for Excel
    odfox32.dll                4.0.6305.0                  ODBC (3.0) driver for FoxPro
    odpdx32.dll                4.0.6305.0                  ODBC (3.0) driver for Paradox
    odtext32.dll               4.0.6305.0                  ODBC (3.0) driver for text files
    offfilt.dll                2006.0.5730.0               OffFilt
    ole2.dll                   2.10.35.35                  OLE 2.1 16/32 Interoperability Library
    ole2nls.dll                5.2.3790.1830               Ole2nls
    ole32.dll                  5.2.3790.3959               Microsoft OLE for Windows
    oleacc.dll                 4.2.5406.0                  Active Accessibility Core Component
    oleaccrc.dll               4.2.5406.0                  Active Accessibility Resource DLL
    oleaut32.dll               5.2.3790.4202               
    olecli32.dll               5.2.3790.3959               Object Linking and Embedding Client Library
    olecnv32.dll               5.2.3790.3959               Microsoft OLE for Windows
    oledb32.dll                2.82.3959.0                 Microsoft Data Access - OLE DB Core Services
    oledb32r.dll               2.82.1830.0                 Microsoft Data Access - OLE DB Core Services Resources
    oledlg.dll                 5.2.3790.3959               Microsoft Windows(TM) OLE 2.0 User Interface Support
    oleprn.dll                 5.2.3790.3959               Oleprn DLL
    olepro32.dll               5.2.3790.3959               
    olesvr32.dll               5.2.3790.0                  Object Linking and Embedding Server Library
    olethk32.dll               5.2.3790.1830               Microsoft OLE for Windows
    opengl32.dll               5.2.3790.3959               OpenGL Client DLL
    osuninst.dll               5.2.3790.0                  Uninstall Interface
    panmap.dll                 5.2.3790.0                  PANOSE(tm) Font Mapper
    pautoenr.dll               5.2.3790.3959               Auto Enrollment DLL
    pcdlib32.dll               3.0.0.0                     PCDLIB32
    pdh.dll                    5.2.3790.4471               Windows Performance Data Helper DLL
    perfctrs.dll               5.2.3790.3959               Performance Counters
    perfdisk.dll               5.2.3790.3959               Windows Disk Performance Objects DLL
    perfnet.dll                5.2.3790.3959               Windows Network Service Performance Objects DLL
    perfos.dll                 5.2.3790.3959               Windows System Performance Objects DLL
    perfproc.dll               5.2.3790.3959               Windows System Process Performance Objects DLL
    perfts.dll                 5.2.3790.3959               Windows Terminal Services Performance Objects
    photowiz.dll               5.2.3790.3959               Photo Printing Wizard
    physxcudart_20.dll                                     
    physxdevice.dll            9.7.30.0                    NVIDIA PhysX Device Module
    physxloader.dll            2.8.1.33                    PhysXLoader Dynamic Link Library
    pid.dll                    5.2.3790.0                  Microsoft PID
    pidgen.dll                 5.2.3790.3959               Pid3.0 generation
    pifmgr.dll                 5.2.3790.0                  Windows NT PIF Manager Icon Resources Library
    pmspl.dll                  2.10.0.1                    Microsoft LAN Manager 2.1 Network Dynamic Link Library for Microsoft Windows
    pngfilt.dll                5.2.3790.3959               IE PNG plugin image decoder
    polstore.dll               5.2.3790.3959               Policy Storage dll
    powrprof.dll               6.0.3790.1830               Power Profile Helper DLL
    prflbmsg.dll               5.2.3790.0                  Perflib Event Messages
    printui.dll                5.2.3790.3959               Print UI DLL
    profmap.dll                5.2.3790.3959               Userenv
    psapi.dll                  5.2.3790.3959               Process Status Helper
    psbase.dll                 5.2.3790.3959               Protected Storage default provider
    pschdprf.dll               5.2.3790.1830               Microsoft Windows(TM) PSched Performance Monitor
    psnppagn.dll               5.2.3790.0                  DCOM Proxy for NPPAgent Object
    pstorec.dll                5.2.3790.3959               Protected Storage COM interfaces
    pstorsvc.dll               5.2.3790.3959               Protected storage server
    qasf.dll                   10.0.0.3997                 DirectShow ASF Support
    qcap.dll                   6.5.3790.3959               DirectShow Runtime.
    qdv.dll                    6.5.3790.3959               DirectShow Runtime.
    qdvd.dll                   6.5.3790.3959               DirectShow DVD PlayBack Runtime.
    qedit.dll                  6.5.3790.3959               DirectShow Editing.
    qedwipes.dll               6.5.3790.1830               DirectShow Editing SMPTE Wipes
    qmgrprxy.dll               6.6.3790.3959               Background Intelligent Transfer Service Proxy
    qosname.dll                5.2.3790.1830               Microsoft Windows GetQosByName Service Provider
    qtintf70.dll               7.0.4.258                   Delphi-Qt2.x Interface Library
    quartz.dll                 6.5.3790.4523               DirectShow Runtime.
    query.dll                  5.2.3790.4554               Content Index Utility DLL
    r2brand.dll                5.2.3790.1830               Windows Server R2 Branding Resources
    rasadhlp.dll               5.2.3790.3959               Remote Access AutoDial Helper
    rasapi32.dll               5.2.3790.3959               Remote Access API
    rasauto.dll                5.2.3790.3959               Remote Access AutoDial Manager
    raschap.dll                5.2.3790.3959               Remote Access PPP CHAP
    rasctrs.dll                5.2.3790.1830               Windows NT Remote Access Perfmon Counter dll
    rasdlg.dll                 5.2.3790.3959               Remote Access Common Dialog API
    rasman.dll                 5.2.3790.3959               Remote Access Connection Manager
    rasmans.dll                5.2.3790.3959               Remote Access Connection Manager
    rasmontr.dll               5.2.3790.3959               RAS Monitor DLL
    rasmxs.dll                 5.2.3790.0                  Remote Access Device DLL for modems, PADs and switches
    rasppp.dll                 5.2.3790.3959               Remote Access PPP
    rasrad.dll                 5.2.3790.3959               Remote Access Service NT RADIUS client module
    rassapi.dll                5.2.3790.0                  Windows NT 4.0 Remote Access Administration DLL
    rasser.dll                 5.2.3790.0                  Remote Access Media DLL for COM ports
    rastapi.dll                5.2.3790.3959               Remote Access TAPI Compliance Layer
    rastls.dll                 5.2.3790.3959               Remote Access PPP EAP-TLS
    rdpsnd.dll                 5.2.3790.0                  Terminal Server MultiMedia Driver
    regapi.dll                 5.2.3790.3959               Registry Configuration APIs
    regsvc.dll                 5.2.3790.3959               Remote Registry Service
    regwizc.dll                5.2.3790.1830               Online Registration Wizard
    rend.dll                   5.2.3790.1830               Microsoft Rendezvous Control
    resutils.dll               5.2.3790.1830               Microsoft Cluster Resource Utility DLL
    riched20.dll               5.31.23.1225                Rich Text Edit Control, v3.1
    riched32.dll               5.2.3790.0                  Wrapper Dll for Richedit 1.0
    rnr20.dll                  5.2.3790.0                  Windows Socket2 NameSpace DLL
    routetab.dll               5.2.3790.0                  Microsoft Routing Table DLL
    rpcns4.dll                 5.2.3790.1830               Remote Procedure Call Name Service Client
    rpcnsh.dll                 5.2.3790.0                  RPC Netshell Helper
    rpcrt4.dll                 5.2.3790.4502               Remote Procedure Call Runtime
    rsaenh.dll                 5.2.3790.3959               Microsoft Enhanced Cryptographic Provider
    rshx32.dll                 5.2.3790.3959               Security Shell Extension
    rtm.dll                    5.2.3790.3959               Routing Table Manager
    rtutils.dll                5.2.3790.1830               Routing Utilities
    samlib.dll                 5.2.3790.3959               SAM Library DLL
    sbe.dll                    6.5.3790.3959               DirectShow Stream Buffer Filter.
    sbeio.dll                  9.0.0.3165                  Stream Buffer IO DLL
    scarddlg.dll               5.2.3790.0                  SCardDlg - Smart Card Common Dialog
    sccbase.dll                5.2.3790.3959               Infineon SICRYPT Base Smart Card CSP
    sccsccp.dll                5.2.3790.3959               Infineon SICRYPT Smart Card Crypto Provider COM Objects
    scecli.dll                 5.2.3790.3959               Windows Security Configuration Editor Client Engine
    schannel.dll               5.2.3790.4530               TLS / SSL Security Provider
    schedsvc.dll               5.2.3790.3959               Task Scheduler Engine
    sclgntfy.dll               5.2.3790.0                  Secondary Logon Service Notification DLL
    scp32.dll                  2.0.330.0                   Code Page Translation Library
    scredir.dll                5.2.3790.3959               Smart Card Redirection for TS
    scripto.dll                6.5.6755.0                  Microsoft ScriptO
    scriptpw.dll               5.2.3790.0                  Scripting PassWord Utility
    scrobj.dll                 5.6.0.8832                  Windows (r) Script Component Runtime
    scrptutl.dll               5.2.3790.0                  Scripting Utils
    scrrun.dll                 5.6.0.8832                  Microsoft (r) Script Runtime
    sdpblb.dll                 5.2.3790.1830               Microsoft Sdpblb
    seclogon.dll               5.2.3790.3959               Secondary Logon Service DLL
    secsnmp.dll                2.0.7.0                     SNMPManager
    secur32.dll                5.2.3790.4530               Security Support Provider Interface
    security.dll               5.2.3790.0                  Security Support Provider Interface
    sendcmsg.dll               5.2.3790.3959               Send Console Message
    sendmail.dll               6.0.3790.3959               Send Mail
    sens.dll                   5.2.3790.3959               System Event Notification Service (SENS)
    sensapi.dll                5.2.3790.3959               SENS Connectivity API DLL
    senscfg.dll                5.2.3790.0                  SENS Setup/Setup Tool
    serialui.dll               5.2.3790.1830               Serial Port Property Pages
    servdeps.dll               5.2.3790.3959               WMI Snapins
    serwvdrv.dll               5.2.3790.1830               Unimodem Serial Wave driver
    setupapi.dll               5.2.3790.3959               Windows Setup API
    sfc.dll                    5.2.3790.0                  Windows File Protection
    sfc_os.dll                 5.2.3790.3959               Windows File Protection
    sfcfiles.dll               5.2.3790.3959               Windows System File Checker
    sfmapi.dll                 5.2.3790.0                  Windows NT Macintosh File Service Client
    shdoclc.dll                6.0.3790.0                  Shell Doc Object and Control Library
    shdocvw.dll                6.0.3790.4589               Shell Doc Object and Control Library
    shell32.dll                6.0.3790.4315               Windows Shell Common Dll
    shellstyle.dll             5.2.3790.0                  Windows Shell Style Resource Dll
    shfolder.dll               6.0.3790.1830               Shell Folder Service
    shgina.dll                 6.0.3790.3959               Windows Shell User Logon
    shimeng.dll                5.2.3790.3959               Shim Engine DLL
    shimgvw.dll                6.0.3790.3959               Windows Picture and Fax Viewer
    shlwapi.dll                6.0.3790.3959               Shell Light-weight Utility Library
    shmedia.dll                6.0.3790.3959               Media File Property Extractor Shell Extension
    shscrap.dll                5.2.3790.1830               Shell scrap object handler
    shsvcs.dll                 6.0.3790.3959               Windows Shell Services Dll
    sigtab.dll                 5.2.3790.0                  File Integrity Settings
    sisbkup.dll                5.2.3790.3959               Single-Instance Store Backup Support Functions
    skdll.dll                  5.2.3790.0                  Serial Keys
    slayerxp.dll               6.0.5.0                     Compatibility Tab Shell Extension DLL
    slbcsp.dll                 5.2.3790.3959               Schlumberger Smart Card CryptoAPI Library
    slbiop.dll                 5.2.3790.3959               Schlumberger Smart Card Interoperability Library v2
    slbrccsp.dll               5.2.3790.1830               Schlumberger Smart Card CryptoAPI Resource File
    smlogcfg.dll               5.2.3790.3959               Performance Logs and Alerts Snap-in
    snmpapi.dll                5.2.3790.1830               SNMP Utility Library
    snmpsnap.dll               5.2.3790.3959               SNMP snap-in
    softpub.dll                5.131.3790.0                Softpub Forwarder DLL
    sqloledb.dll               2000.86.3959.0              Microsoft OLE DB Provider for SQL Server
    sqlsrv32.dll               2000.86.3959.0              Microsoft SQL Server ODBC Driver
    sqlunirl.dll               2000.80.728.0               String Function .DLL for SQL Enterprise Components
    sqlwid.dll                 1999.10.20.0                Unicode Function .DLL for SQL Enterprise Components
    sqlwoa.dll                 1999.10.20.0                Unicode/ANSI Function .DLL for SQL Enterprise Components
    sqlxmlx.dll                2000.86.3959.0              Microsoft XML extensions for SQL Server
    srclient.dll               5.2.3790.3959               SR CLIENT DLL
    ssdevm.dll                 1.5.3.3                     Device Monitor
    ssdpapi.dll                5.2.3790.1830               SSDP Client API DLL
    ssdpsrv.dll                5.2.3790.3959               SSDP Service DLL
    ssusbpn.dll                0.6.0.0                     USB Device
    stclient.dll               2001.12.4720.3959           COM+ Configuration Catalog Client
    stdvcl32.dll               3.0.0.0                     Delphi standard VCL type library
    stdvcl40.dll               4.0.0.0                     Standard VCL ActiveX Library
    sti.dll                    5.2.3790.3959               Still Image Devices client DLL 
    sti_ci.dll                 5.2.3790.3959               Still Image Class Installer
    stobject.dll               5.2.3790.3959               Systray shell service object
    storage.dll                2.10.35.35                  OLE 2.1 16/32 Interoperability Library
    streamci.dll               5.2.3790.1830               Streaming Device Class Installer
    strmdll.dll                4.1.0.3938                  Windows Media Services Streamer Dll
    strmfilt.dll               6.0.3790.1830               Stream Filter Library
    svcpack.dll                5.2.3790.1830               Windows Service Pack Setup
    sxs.dll                    5.2.3790.3959               Fusion 2.5
    synceng.dll                5.2.3790.1830               Windows Briefcase Engine
    syncui.dll                 5.2.3790.1830               Windows Briefcase
    sysinv.dll                 4.10.0.2016                 Windows System Inventory
    syssetup.dll               5.2.3790.3959               Windows NT System Setup
    t2embed.dll                5.2.3790.4559               Microsoft T2Embed Font Embedding
    tapi.dll                   3.10.0.103                  Microsoft Windows(TM) Telephony Server16
    tapi3.dll                  5.2.3790.3959               Microsoft TAPI3
    tapi32.dll                 5.2.3790.3959               Microsoft Windows(TM) Telephony API Client DLL
    tapiperf.dll               5.2.3790.0                  Microsoft Windows(TM) Telephony Performance Monitor
    tapisrv.dll                5.2.3790.3959               Microsoft Windows(TM) Telephony Server
    tapiui.dll                 5.2.3790.0                  Microsoft Windows(TM) Telephony API UI DLL
    tcpmib.dll                 5.2.3790.3959               Standard TCP/IP Port Monitor Helper DLL
    tcpmon.dll                 5.2.3790.3959               Standard TCP/IP Port Monitor DLL
    tcpmonui.dll               5.2.3790.3959               Standard TCP/IP Port Monitor UI DLL
    termmgr.dll                5.2.3790.3959               Microsoft TAPI3 Terminal Manager
    thawbrkr.dll               5.2.3790.3959               Thai Word Breaker
    themeui.dll                6.0.3790.3959               Windows Theme API
    traffic.dll                5.2.3790.1830               Microsoft Traffic Control 1.0 DLL
    trkwks.dll                 5.2.3790.3959               Distributed Link Tracking Client
    tsappcmp.dll               5.2.3790.3959               Terminal Services Application Compatibility DLL
    tsbyuv.dll                 5.2.3790.0                  Toshiba Video Codec
    tsd32.dll                  1.3.3.7                     DSP Group TrueSpeech(TM) Audio Encoder & Decoder
    tsddd.dll                  5.2.3790.0                  Framebuffer Display Driver
    twext.dll                  6.0.3790.3959               Previous Versions property page
    txflog.dll                 2001.12.4720.3959           COM+
    udhisapi.dll               5.2.3790.1830               UPnP Device Host ISAPI Extension
    ufat.dll                   5.2.3790.1830               FAT Utility DLL
    ulib.dll                   5.2.3790.3959               File Utilities Support DLL
    umandlg.dll                5.2.3790.3959               UManDlg DLL
    umdmxfrm.dll               5.2.3790.0                  Unimodem Tranform Module
    unicows.dll                1.0.3626.0                  Win9x Supplemental Unicode eXtension
    uniime.dll                 5.2.3790.1830               Generic IME 5.0 version
    unimdmat.dll               5.2.3790.3959               Unimodem Service Provider AT Mini Driver
    uniplat.dll                5.2.3790.3959               Unimodem AT Mini Driver Platform Driver for Windows NT
    untfs.dll                  5.2.3790.3959               NTFS Utility DLL
    upnp.dll                   5.2.3790.3959               Universal Plug and Play API
    upnphost.dll               5.2.3790.4019               UPnP Device Host
    upnpui.dll                 5.2.3790.1830               UPNP Tray Monitor and Folder
    ureg.dll                   5.2.3790.0                  Registry Utility DLL
    url.dll                    6.0.3790.1830               Internet Shortcut Shell Extension DLL
    urlmon.dll                 6.0.3790.4589               OLE32 Extensions for Win32
    usbmon.dll                 5.2.3790.3959               Standard Dynamic Printing Port Monitor DLL
    user32.dll                 5.2.3790.4033               Multi-User Windows USER API Client DLL
    userenv.dll                5.2.3790.3959               Userenv
    usp10.dll                  1.422.3790.3959             Uniscribe Unicode script processor
    utildll.dll                5.2.3790.3959               WinStation utility support DLL
    uxtheme.dll                6.0.3790.3959               Microsoft UxTheme Library
    vbajet32.dll               6.0.1.9431                  Visual Basic for Applications Development Environment - Expression Service Loader
    vbame.dll                  2.0.2.5                     VBA : Middle East Support
    vbscript.dll               5.6.0.8835                  Microsoft (r) VBScript
    vcfidl32.dll               2.0.2.1                     VTCHDL32.DLL - Release Version
    vcfiwz32.dll               2.0.2.1                     VTCHWZ32.DLL - Release Version
    vdmdbg.dll                 5.2.3790.0                  VDMDBG.DLL
    vds_ps.dll                 5.2.3790.3959               Microsoft Virtual Disk Service proxy/stub
    verifier.dll               5.2.3790.1830               Standard application verifier provider dll
    version.dll                5.2.3790.1830               Version Checking and File Installation Libraries
    vfpodbc.dll                1.0.2.0                     vfpodbc
    vspell32.dll               2.0.0.51023                 VisualSpeller(TM) 32-bit DLL for spellchecking and hyphenation
    vss_ps.dll                 5.2.3790.3959               Microsoft Volume Shadow Copy Service proxy/stub
    vssapi.dll                 5.2.3790.3959               Microsoft Volume Shadow Copy Requestor/Writer Services API DLL
    vwipxspx.dll               5.2.3790.0                  Virtual Dos Machine IPX/SPX Interface Library
    w03a2409.dll               5.2.3790.4043               Service Pack Messages
    w03a3409.dll               5.2.3790.4546               Service Pack Messages
    w32time.dll                5.2.3790.3959               Windows Time Service
    w32topl.dll                5.2.3790.0                  Windows NT Topology Maintenance Tool
    w3ssl.dll                  6.0.3790.0                  SSL service for HTTP
    wab32.dll                  6.0.3790.4073               Microsoft (R) Address Book DLL
    wab32res.dll               6.0.3790.1830               Microsoft (R) Address Book DLL
    wavemsp.dll                5.2.3790.3959               Microsoft Wave MSP
    wdfapi.dll                 5.2.3790.1830               Windows User Mode Driver Framework API
    wdigest.dll                5.2.3790.4530               Microsoft Digest Access
    webcheck.dll               6.0.3790.3959               Web Site Monitor
    webclnt.dll                5.2.3790.3959               Web DAV Service DLL
    webhits.dll                5.2.3790.0                  Indexing Service Webhits
    webvw.dll                  6.0.3790.3959               Shell WebView Content & Control Library
    wiadefui.dll               5.2.3790.3959               WIA Scanner Default UI
    wiadss.dll                 5.2.3790.3959               WIA TWAIN compatibility layer
    wiarpc.dll                 5.2.3790.3959               Windows Image Acquisition RPC client DLL
    wiascr.dll                 5.2.3790.0                  WIA Scripting Layer
    wiaservc.dll               5.2.3790.3959               Still Image Devices Service
    wiashext.dll               5.2.3790.3959               Imaging Devices Shell Folder UI
    wiavideo.dll               5.2.3790.3959               WIA Video
    wiavusd.dll                5.2.3790.3959               WIA Video Stream device USD
    wifeman.dll                3.10.0.103                  Windows WIFE interface core component
    winbrand.dll               5.2.3790.0                  Windows Branding Resources
    winfax.dll                 5.2.3790.1830               Microsoft  Fax API Support DLL
    wininet.dll                6.0.3790.4589               Internet Extensions for Win32
    winipsec.dll               5.2.3790.3959               Windows IPSec SPD Client DLL
    winmm.dll                  5.2.3790.3959               MCI API DLL
    winnls.dll                 3.10.0.103                  Windows IME interface core component
    winrnr.dll                 5.2.3790.3959               LDAP RnR Provider DLL
    winscard.dll               5.2.3790.3959               Microsoft Smart Card API
    winshfhc.dll               5.2.3790.1830               File Has Code parser
    winsock.dll                3.10.0.103                  Windows Socket 16-Bit DLL
    winsta.dll                 5.2.3790.3959               Winstation Library
    wintrust.dll               5.131.3790.3959             Microsoft Trust Verification APIs
    wlanmon.dll                5.2.3790.3959               Wireless Monitor Snapin
    wldap32.dll                5.2.3790.3959               Win32 LDAP API DLL
    wlsnp.dll                  5.2.3790.3959               Wireless Network Policy Management Snap-in
    wlstore.dll                5.2.3790.3959               Policy Storage dll
    wmadmod.dll                10.0.0.3997                 Windows Media Audio Decoder
    wmadmoe.dll                10.0.0.3997                 Windows Media Audio Encoder/Transcoder
    wmasf.dll                  10.0.0.4000                 Windows Media ASF DLL
    wmdmlog.dll                10.0.3790.3997              Windows Media Device Manager Logger
    wmdmps.dll                 10.0.3790.3997              Windows Media Device Manager Proxy Stub
    wmdrmdev.dll               10.0.0.3997                 Windows Media DRM for Network Devices Registration DLL
    wmdrmnet.dll               10.0.0.3997                 Windows Media DRM for Network Devices DLL
    wmerrenu.dll               8.0.0.4487                  Windows Media Services Error Definitions
    wmerror.dll                10.0.0.3997                 Windows Media Error Definitions (English)
    wmi.dll                    5.2.3790.0                  WMI DC and DP functionality
    wmidx.dll                  10.0.0.3997                 Windows Media Indexer DLL
    wmiprop.dll                5.2.3790.1830               WDM Provider Dynamic Property Page CoInstaller
    wmiscmgr.dll               5.0.1636.1                  WMI Filter Manager
    wmnetmgr.dll               10.0.0.4001                 Windows Media Network Plugin Manager DLL
    wmp.dll                    10.0.0.4006                 Windows Media Player Core
    wmpasf.dll                 10.0.0.3997                 Windows Media Filter Shim
    wmpcd.dll                  10.0.0.3997                 Windows Media Player
    wmpcore.dll                9.0.0.2991                  Windows Media Player
    wmpdxm.dll                 10.0.0.4006                 Windows Media 6.4 Player Shim
    wmpencen.dll               10.0.0.3997                 Windows Media Player Encoding Module
    wmploc.dll                 10.0.0.3997                 Windows Media Player
    wmpshell.dll               10.0.0.3997                 Windows Media Player Launcher
    wmpsrcwp.dll               10.0.0.3997                 WMPSrcWp Module
    wmpui.dll                  9.0.0.2991                  Windows Media Player
    wmsdmod.dll                10.0.0.3997                 Windows Media Screen Decoder
    wmsdmoe2.dll               10.0.0.3997                 Corona Windows Media Screen Encoder
    wmspdmod.dll               10.0.0.4004                 Windows Media Audio 9 Voice Decoder
    wmspdmoe.dll               10.0.0.3997                 Windows Media Audio 9 Voice Encoder
    wmstream.dll               8.0.0.4487                  Windows Media Streamer DLL
    wmv8dmod.dll               8.0.0.371                   Windows Media Video 8 Decoder
    wmvadvd.dll                10.0.0.3997                 Windows Media Video 9 Decoder
    wmvadve.dll                10.0.0.3997                 Windows Media Video 9 Decoder
    wmvcore.dll                10.0.0.4005                 Windows Media Playback/Authoring DLL
    wmvdmod.dll                10.0.0.3997                 Windows Media Video Decoder
    wmvdmoe2.dll               10.0.0.3997                 Windows Media Video Encoder
    wow32.dll                  5.2.3790.3959               Wow32
    wowfax.dll                 0.2.0.0                     Windows 3.1 Compatible Fax Driver DLL
    wowfaxui.dll               0.2.0.0                     Windows 3.1 Compatible Fax Driver UI DLL
    wpd_ci.dll                 5.2.3790.3700               Driver Setup Class Installer for Windows Portable Devices
    wpdsp.dll                  5.2.3810.3997               WMDM Service Provider for Windows Portable Devices
    ws03res.dll                5.2.3790.3959               Service Pack Messages
    ws2_32.dll                 5.2.3790.3959               Windows Socket 2.0 32-Bit DLL
    ws2help.dll                5.2.3790.1830               Windows Socket 2.0 Helper for Windows NT
    wsecedit.dll               5.2.3790.3959               Security Configuration UI Module
    wshatm.dll                 5.2.3790.0                  Windows Sockets Helper DLL
    wshbth.dll                 5.2.3790.1830               Windows Sockets Helper DLL
    wshcon.dll                 5.6.0.8827                  Microsoft (r) Windows Script Controller
    wshext.dll                 5.6.0.8832                  Microsoft (r) Shell Extension for Windows Script Host
    wship6.dll                 5.2.3790.3959               IPv6 Helper DLL
    wshisn.dll                 5.2.3790.0                  NWLINK2 Socket Helper DLL
    wshnetbs.dll               5.2.3790.0                  Netbios Windows Sockets Helper DLL
    wshqos.dll                 5.2.3790.1830               Windows QoS Helper DLL
    wshrm.dll                  5.2.3790.0                  Windows Sockets Helper DLL for PGM
    wshtcpip.dll               5.2.3790.3959               Windows Sockets Helper DLL
    wsihk32.dll                                            
    wsiwin32.dll                                           
    wsnmp32.dll                5.2.3790.3959               Microsoft WinSNMP v2.0 Manager API
    wsock32.dll                5.2.3790.0                  Windows Socket 32-Bit DLL
    wstdecod.dll               5.3.3790.1830               WST Decoder Filter
    wtsapi32.dll               5.2.3790.3959               Windows Terminal Server SDK APIs
    wuapi.dll                  7.4.7600.226                Windows Update Client API
    wuaueng.dll                7.4.7600.226                Windows Update Agent
    wups.dll                   7.4.7600.226                Windows Update client proxy stub
    wups2.dll                  7.4.7600.226                Windows Update client proxy stub 2
    wuweb.dll                  7.4.7600.226                Windows Update Web Control
    wzcdlg.dll                 5.2.3790.3959               Wireless Zero Configuration Service UI
    wzcsapi.dll                5.2.3790.3959               Wireless Zero Configuration service API
    wzcsvc.dll                 5.2.3790.3959               Wireless Zero Configuration Service
    x3daudio1_0.dll            9.11.519.0                  X3DAudio
    x3daudio1_1.dll            9.15.779.0                  X3DAudio
    x3daudio1_2.dll            9.21.1148.0                 X3DAudio
    x3daudio1_3.dll            9.22.1284.0                 X3DAudio
    x3daudio1_4.dll            9.23.1350.0                 X3DAudio
    x3daudio1_5.dll            9.25.1476.0                 X3DAudio
    x3daudio1_6.dll            9.26.1590.0                 3D Audio Library
    xactengine2_0.dll          9.11.519.0                  XACT Engine API
    xactengine2_1.dll          9.12.589.0                  XACT Engine API
    xactengine2_10.dll         9.21.1148.0                 XACT Engine API
    xactengine2_2.dll          9.13.644.0                  XACT Engine API
    xactengine2_3.dll          9.14.701.0                  XACT Engine API
    xactengine2_4.dll          9.15.779.0                  XACT Engine API
    xactengine2_5.dll          9.16.857.0                  XACT Engine API
    xactengine2_6.dll          9.17.892.0                  XACT Engine API
    xactengine2_7.dll          9.18.944.0                  XACT Engine API
    xactengine2_8.dll          9.19.1007.0                 XACT Engine API
    xactengine2_9.dll          9.20.1057.0                 XACT Engine API
    xactengine3_0.dll          9.22.1284.0                 XACT Engine API
    xactengine3_1.dll          9.23.1350.0                 XACT Engine API
    xactengine3_2.dll          9.24.1400.0                 XACT Engine API
    xactengine3_3.dll          9.25.1476.0                 XACT Engine API
    xactengine3_4.dll          9.26.1590.0                 XACT Engine API
    xactengine3_5.dll          9.27.1734.0                 XACT Engine API
    xactsrv.dll                5.2.3790.3959               Downlevel API Server DLL
    xapofx1_0.dll              9.23.1350.0                 XAPOFX
    xapofx1_1.dll              9.24.1400.0                 XAPOFX
    xapofx1_2.dll              9.25.1476.0                 XAPOFX
    xapofx1_3.dll              9.26.1590.0                 Audio Effect Library
    xaudio2_0.dll              9.22.1284.0                 XAudio2 Game Audio API
    xaudio2_1.dll              9.23.1350.0                 XAudio2 Game Audio API
    xaudio2_2.dll              9.24.1400.0                 XAudio2 Game Audio API
    xaudio2_3.dll              9.25.1476.0                 XAudio2 Game Audio API
    xaudio2_4.dll              9.26.1590.0                 XAudio2 Game Audio API
    xaudio2_5.dll              9.27.1734.0                 XAudio2 Game Audio API
    xenroll.dll                5.131.3686.0                XEnroll
    xerceslib.dll              1.6.0.0                     Shared Library for Xerces-C Version 1.6.0
    xercesxmldom.dll           7.0.0.0                     Xerces XML DOM Interfaces
    xinput1_1.dll              9.12.589.0                  Microsoft Common Controller API
    xinput1_2.dll              9.14.701.0                  Microsoft Common Controller API
    xinput1_3.dll              9.18.944.0                  Microsoft Common Controller API
    xinput9_1_0.dll            9.10.455.0                  Microsoft Common Controller API
    xlive.dll                  3.0.17.0                    Games for Windows - LIVE DLL
    xlivefnt.dll               3.0.17.0                    XLive Fonts DLL
    xmllite.dll                1.0.1018.0                  Microsoft XmlLite Library
    xmlprov.dll                5.2.3790.3959               Network Provisioning Service
    xmlprovi.dll               5.2.3790.1830               Network Provisioning Service Client API
    xmlrw.dll                  2.0.3609.0                  Microsoft XML Slim Library
    xmlrwbin.dll               2.0.3609.0                  Microsoft XML Slim Library
    xolehlp.dll                2001.12.4720.4340           MS DTChelper APIs DLL
    xpob2res.dll               5.2.3790.3959               Service Pack 2 OOB Messages
    xpsp2res.dll               5.2.3790.3959               Service Pack 2 Messages
    zipfldr.dll                6.0.3790.3959               Compressed (zipped) Folders


--------[   ]------------------------------------------------------------------------------------------------

     :
                         09.11.2009 6:36:33
                           09.11.2009 21:46:30
                                            09.11.2009 22:08:47
                                             1374  (0 ., 0 , 22 , 54 )

      :
                                     12.10.2009 13:22:31
                            11.10.2009 23:22:27
                                        1150190  (13 ., 7 , 29 , 50 )
                                       3242088  (37 ., 12 , 34 , 48 )
                                  335616  (3 ., 21 , 13 , 36 )
                                 244607  (2 ., 19 , 56 , 47 )
                                       88
                                26.19%

      (" "):
                                        25.10.2009 20:21:55
                                     05.11.2009 17:00:10
                                              12

    :
                                                    


--------[   ]-----------------------------------------------------------------------------------------------

    ADMIN$                                   Remote Admin                              C:\WINDOWS
    C$                                       Default share                             C:\
    D$                                       Default share                             D:\
    IPC$                            IPC           Remote IPC                                


--------[  ]------------------------------------------------------------------------------------------------

       :
                                          
                                             RAZINKIN-7C1358
                              
                      
      ./.                      0 / 49710 .
                                  0 
                                     
                                       
                                30 
                                30 


--------[    ]----------------------------------------------------------------------------------------------

    Administrator                                 RAZINKIN-7C1358           RAZINKIN-7C1358
    RAZINKIN-7C1358$                                                        ADMIN


--------[  ]------------------------------------------------------------------------------------------------

  [ Administrator ]

     :
                                         Administrator
                                               Administrator
                                             Built-in account for administering the computer/domain
                                               Administrators
                                     222
                                           -

     :
                         
                                     
                             
                                  
                                         
                                      
                            

  [ Guest ]

     :
                                         Guest
                                               Guest
                                             Built-in account for guest access to the computer/domain
                                               Guests
                                     0
                                           -

     :
                         
                                     
                             
                                  
                                         
                                      
                            


--------[   ]--------------------------------------------------------------------------------------------

  [ Administrators ]

      :
                                             Administrators have complete and unrestricted access to the computer/domain

     :
      Administrator                                     

  [ Backup Operators ]

      :
                                             Backup Operators can override security restrictions for the sole purpose of backing up or restoring files

  [ Distributed COM Users ]

      :
                                             Members are allowed to launch, activate and use Distributed COM objects on this machine.

  [ Guests ]

      :
                                             Guests have the same access as members of the Users group by default, except for the Guest account which is further restricted

     :
      Guest                                             

  [ Network Configuration Operators ]

      :
                                             Members in this group can have some administrative privileges to manage configuration of networking features

  [ Performance Log Users ]

      :
                                             Members of this group have remote access to schedule logging of performance counters on this computer

     :
      NETWORK SERVICE                                   

  [ Performance Monitor Users ]

      :
                                             Members of this group have remote access to monitor this computer

  [ Power Users ]

      :
                                             Power Users possess most administrative powers with some restrictions.  Thus, Power Users can run legacy applications in addition to certified applications

  [ Remote Desktop Users ]

      :
                                             Members in this group are granted the right to logon remotely

  [ Replicator ]

      :
                                             Supports file replication in a domain

  [ Users ]

      :
                                             Users are prevented from making accidental or intentional system-wide changes.  Thus, Users can run certified applications, but not most legacy applications

     :
      Authenticated Users                               
      INTERACTIVE                                       


--------[   ]-------------------------------------------------------------------------------------------

  [ None ]

      :
                                             Ordinary users

     :
      Administrator                                     
      Guest                                             


--------[  Windows ]-----------------------------------------------------------------------------------------------

  [ NVIDIA GeForce GTX 260 ]

     :
                                      NVIDIA GeForce GTX 260
                                          GeForce GTX 260
       BIOS                                       Version 62.00.49.00.03
                                      GeForce GTX 260
       DAC                                           Integrated RAMDAC
                                           896 

     :
      nv4_disp                                          6.14.11.9107 - nVIDIA ForceWare 191.07

     :
                                                   NVIDIA Corporation
                                     http://www.nvidia.com/page/products.html
                                       http://www.nvidia.com/content/drivers/drivers.asp
                                     http://driveragent.com?ref=59


--------[  PCI / AGP ]---------------------------------------------------------------------------------------------

    nVIDIA GeForce GTX 260                                                            
    nVIDIA GeForce GTX 260                                                            3D-


--------[   ]---------------------------------------------------------------------------------------

  [ PCI Express 2.0 x16: nVIDIA GeForce GTX 260 ]

      :
                                            nVIDIA GeForce GTX 260
       BIOS                                       62.00.49.00.03
                                       GT200b
      PCI-                                    10DE-05E2 / 0000-0000  (Rev B1)
                                       1400 .
                                  55 nm
                                         470 mm2
                                                 PCI Express 2.0 x16 @ x16
                                           896 
        (Geometric Domain)                     626   (: 625 MHz)
        (Shader Domain)                        1350   (: 1348 MHz)
       RAMDAC                                    400 
                                     28
      TMU                                     1
                                     216  (v4.0)
        DirectX                      DirectX v10
                            17528 /
                            67608 /

      :
                                                 GDDR3
                                              448 
                                         1107  (DDR)  (: 1100 MHz)
                                      2214 
                                   121.1 /

    nVIDIA ForceWare Clocks:
      Standard 2D                                        : 300 , : 600 , : 250 
      Low-Power 3D                                       : 400 , : 800 , : 250 
      Performance 3D                                     : 625 , : 1348 , : 1100 

      :
                                                   NVIDIA Corporation
                                     http://www.nvidia.com/page/products.html
                                       http://www.nvidia.com/content/drivers/drivers.asp
                                     http://driveragent.com?ref=59

    nVIDIA GPU Registers:
      nv-000000                                         0A0100B1
      nv-0010F0                                         00000000
      nv-001218                                         00000000
      nv-001540                                         F77F01FF
      nv-0015F4                                         00000000
      nv-0015F8                                         00000000
      nv-0015FC                                         00000000
      nv-001600                                         00000000
      nv-001850                                         00000000
      nv-004000                                         80000000
      nv-004004                                         00002008
      nv-004008                                         80006400
      nv-00400C                                         00002904
      nv-004018                                         00001200
      nv-00401C                                         00001C03
      nv-004020                                         80000000
      nv-004024                                         00001902
      nv-004028                                         80000000
      nv-00402C                                         00001D05
      nv-00C040                                         2200DBB3
      nv-00E114                                         00000001
      nv-00E118                                         00000000
      nv-00E11C                                         00000200
      nv-00E120                                         00000000
      nv-020008                                         C00800C0
      nv-020014                                         FE0202EE
      nv-020400                                         00000000
      nv-100000                                         0000C042
      nv-100200                                         00001800
      nv-10020C                                         38000000
      nv-100214                                         22222222
      nv-100474                                         00000000
      nv-100714                                         00033222
      nv-100914                                         0F0F0F0F
      nv-101000                                         8F408A8E

  [ nVIDIA SLI ]

    nVIDIA SLI:
       SLI                                         


--------[  ]-----------------------------------------------------------------------------------------------------

  [ LG Flatron 795FT Plus ]

     :
                                             LG Flatron 795FT Plus
      ID                                        GSM42DD
                                                  Flatron795FT
                                             17" CRT
                                             2000
                                           100016843009
      .                         33 cm x 25 cm (16.3")
                                       4:3
                                            30 - 96 
                                           50 - 160 
      Maximum Pixel Clock                               200 
                                  1600 x 1200
                                                   2.90
        DPMS                        Standby, Suspend, Active-Off

     :
      640 x 480                                         160 
      800 x 480                                         160 
      800 x 600                                         150 
      1024 x 600                                        150 
      1024 x 768                                        115 
      1152 x 864                                        105 
      1280 x 720                                        125 
      1280 x 768                                        115 
      1280 x 800                                        110 
      1280 x 1024                                       85 
      1366 x 768                                        115 
      1400 x 1050                                       85 
      1440 x 900                                        100 
      1600 x 1200                                       75 

     :
                                                   LG Electronics
                                     http://www.lge.com/products/category/list/computer%20products_monitor.jhtml
                                       http://www.lge.com/support/main.jhtml
                                     http://driveragent.com?ref=59


--------[   ]------------------------------------------------------------------------------------------------

      :
                                     
                                              1024 x 768
                                            32 
                                       1
                                        96 dpi
        /                         36 / 36
                                     51
                                      60 
                                    C:\WINDOWS\web\wallpaper\Windows XP.bmp

      :
       -                             
                                              
                                      
                              
      ClearType                                         
             
                                
                                  
                                      
                                  
                                 
                                            
                                   
       /           
                                           
                              
                               
                            
                              
      Windows Aero                                       
       Windows Plus!                               


--------[  ]-----------------------------------------------------------------------------------------------

    \\.\DISPLAY1           (0,0)          (1024,768)


--------[  ]-------------------------------------------------------------------------------------------------

    640 x 480           4    
    640 x 480           8   100 Hz
    640 x 480           8   120 Hz
    640 x 480           8   140 Hz
    640 x 480           8   144 Hz
    640 x 480           8   150 Hz
    640 x 480           8   60 Hz
    640 x 480           8   70 Hz
    640 x 480           8   72 Hz
    640 x 480           8   75 Hz
    640 x 480           8   85 Hz
    640 x 480          16   100 Hz
    640 x 480          16   120 Hz
    640 x 480          16   140 Hz
    640 x 480          16   144 Hz
    640 x 480          16   150 Hz
    640 x 480          16   60 Hz
    640 x 480          16   70 Hz
    640 x 480          16   72 Hz
    640 x 480          16   75 Hz
    640 x 480          16   85 Hz
    640 x 480          32   100 Hz
    640 x 480          32   120 Hz
    640 x 480          32   140 Hz
    640 x 480          32   144 Hz
    640 x 480          32   150 Hz
    640 x 480          32   60 Hz
    640 x 480          32   70 Hz
    640 x 480          32   72 Hz
    640 x 480          32   75 Hz
    640 x 480          32   85 Hz
    720 x 480           8   60 Hz
    720 x 480          16   60 Hz
    720 x 480          32   60 Hz
    720 x 540           8   70 Hz
    720 x 540          16   70 Hz
    720 x 540          32   70 Hz
    720 x 576           8   60 Hz
    720 x 576          16   60 Hz
    720 x 576          32   60 Hz
    800 x 600           4    
    800 x 600           8   100 Hz
    800 x 600           8   120 Hz
    800 x 600           8   140 Hz
    800 x 600           8   144 Hz
    800 x 600           8   150 Hz
    800 x 600           8   56 Hz
    800 x 600           8   60 Hz
    800 x 600           8   70 Hz
    800 x 600           8   72 Hz
    800 x 600           8   75 Hz
    800 x 600           8   85 Hz
    800 x 600          16   100 Hz
    800 x 600          16   120 Hz
    800 x 600          16   140 Hz
    800 x 600          16   144 Hz
    800 x 600          16   150 Hz
    800 x 600          16   56 Hz
    800 x 600          16   60 Hz
    800 x 600          16   70 Hz
    800 x 600          16   72 Hz
    800 x 600          16   75 Hz
    800 x 600          16   85 Hz
    800 x 600          32   100 Hz
    800 x 600          32   120 Hz
    800 x 600          32   140 Hz
    800 x 600          32   144 Hz
    800 x 600          32   150 Hz
    800 x 600          32   56 Hz
    800 x 600          32   60 Hz
    800 x 600          32   70 Hz
    800 x 600          32   72 Hz
    800 x 600          32   75 Hz
    800 x 600          32   85 Hz
    1024 x 768          8   100 Hz
    1024 x 768          8   60 Hz
    1024 x 768          8   70 Hz
    1024 x 768          8   72 Hz
    1024 x 768          8   75 Hz
    1024 x 768          8   85 Hz
    1024 x 768         16   100 Hz
    1024 x 768         16   60 Hz
    1024 x 768         16   70 Hz
    1024 x 768         16   72 Hz
    1024 x 768         16   75 Hz
    1024 x 768         16   85 Hz
    1024 x 768         32   100 Hz
    1024 x 768         32   60 Hz
    1024 x 768         32   70 Hz
    1024 x 768         32   72 Hz
    1024 x 768         32   75 Hz
    1024 x 768         32   85 Hz
    1152 x 864          8   100 Hz
    1152 x 864          8   60 Hz
    1152 x 864          8   70 Hz
    1152 x 864          8   72 Hz
    1152 x 864          8   75 Hz
    1152 x 864          8   85 Hz
    1152 x 864         16   100 Hz
    1152 x 864         16   60 Hz
    1152 x 864         16   70 Hz
    1152 x 864         16   72 Hz
    1152 x 864         16   75 Hz
    1152 x 864         16   85 Hz
    1152 x 864         32   100 Hz
    1152 x 864         32   60 Hz
    1152 x 864         32   70 Hz
    1152 x 864         32   72 Hz
    1152 x 864         32   75 Hz
    1152 x 864         32   85 Hz
    1280 x 720          8   60 Hz
    1280 x 720         16   60 Hz
    1280 x 720         32   60 Hz
    1280 x 768          8   100 Hz
    1280 x 768          8   60 Hz
    1280 x 768          8   70 Hz
    1280 x 768          8   72 Hz
    1280 x 768          8   75 Hz
    1280 x 768          8   85 Hz
    1280 x 768         16   100 Hz
    1280 x 768         16   60 Hz
    1280 x 768         16   70 Hz
    1280 x 768         16   72 Hz
    1280 x 768         16   75 Hz
    1280 x 768         16   85 Hz
    1280 x 768         32   100 Hz
    1280 x 768         32   60 Hz
    1280 x 768         32   70 Hz
    1280 x 768         32   72 Hz
    1280 x 768         32   75 Hz
    1280 x 768         32   85 Hz
    1280 x 800          8   100 Hz
    1280 x 800          8   60 Hz
    1280 x 800          8   70 Hz
    1280 x 800          8   72 Hz
    1280 x 800          8   75 Hz
    1280 x 800          8   85 Hz
    1280 x 800         16   100 Hz
    1280 x 800         16   60 Hz
    1280 x 800         16   70 Hz
    1280 x 800         16   72 Hz
    1280 x 800         16   75 Hz
    1280 x 800         16   85 Hz
    1280 x 800         32   100 Hz
    1280 x 800         32   60 Hz
    1280 x 800         32   70 Hz
    1280 x 800         32   72 Hz
    1280 x 800         32   75 Hz
    1280 x 800         32   85 Hz
    1280 x 960          8   60 Hz
    1280 x 960          8   70 Hz
    1280 x 960          8   72 Hz
    1280 x 960          8   75 Hz
    1280 x 960          8   85 Hz
    1280 x 960         16   60 Hz
    1280 x 960         16   70 Hz
    1280 x 960         16   72 Hz
    1280 x 960         16   75 Hz
    1280 x 960         16   85 Hz
    1280 x 960         32   60 Hz
    1280 x 960         32   70 Hz
    1280 x 960         32   72 Hz
    1280 x 960         32   75 Hz
    1280 x 960         32   85 Hz
    1280 x 1024         8   60 Hz
    1280 x 1024         8   70 Hz
    1280 x 1024         8   72 Hz
    1280 x 1024         8   75 Hz
    1280 x 1024         8   85 Hz
    1280 x 1024        16   60 Hz
    1280 x 1024        16   70 Hz
    1280 x 1024        16   72 Hz
    1280 x 1024        16   75 Hz
    1280 x 1024        16   85 Hz
    1280 x 1024        32   60 Hz
    1280 x 1024        32   70 Hz
    1280 x 1024        32   72 Hz
    1280 x 1024        32   75 Hz
    1280 x 1024        32   85 Hz
    1360 x 768          8   100 Hz
    1360 x 768          8   60 Hz
    1360 x 768          8   70 Hz
    1360 x 768          8   72 Hz
    1360 x 768          8   75 Hz
    1360 x 768          8   85 Hz
    1360 x 768         16   100 Hz
    1360 x 768         16   60 Hz
    1360 x 768         16   70 Hz
    1360 x 768         16   72 Hz
    1360 x 768         16   75 Hz
    1360 x 768         16   85 Hz
    1360 x 768         32   100 Hz
    1360 x 768         32   60 Hz
    1360 x 768         32   70 Hz
    1360 x 768         32   72 Hz
    1360 x 768         32   75 Hz
    1360 x 768         32   85 Hz
    1600 x 900          8   60 Hz
    1600 x 900          8   70 Hz
    1600 x 900          8   72 Hz
    1600 x 900          8   75 Hz
    1600 x 900          8   85 Hz
    1600 x 900         16   60 Hz
    1600 x 900         16   70 Hz
    1600 x 900         16   72 Hz
    1600 x 900         16   75 Hz
    1600 x 900         16   85 Hz
    1600 x 900         32   60 Hz
    1600 x 900         32   70 Hz
    1600 x 900         32   72 Hz
    1600 x 900         32   75 Hz
    1600 x 900         32   85 Hz
    1600 x 1024         8   60 Hz
    1600 x 1024         8   70 Hz
    1600 x 1024         8   72 Hz
    1600 x 1024         8   75 Hz
    1600 x 1024         8   85 Hz
    1600 x 1024        16   60 Hz
    1600 x 1024        16   70 Hz
    1600 x 1024        16   72 Hz
    1600 x 1024        16   75 Hz
    1600 x 1024        16   85 Hz
    1600 x 1024        32   60 Hz
    1600 x 1024        32   70 Hz
    1600 x 1024        32   72 Hz
    1600 x 1024        32   75 Hz
    1600 x 1024        32   85 Hz
    1600 x 1200         8   60 Hz
    1600 x 1200         8   70 Hz
    1600 x 1200         8   72 Hz
    1600 x 1200        16   60 Hz
    1600 x 1200        16   70 Hz
    1600 x 1200        16   72 Hz
    1600 x 1200        32   60 Hz
    1600 x 1200        32   70 Hz
    1600 x 1200        32   72 Hz


--------[ OpenGL ]------------------------------------------------------------------------------------------------------

     OpenGL:
                                           NVIDIA Corporation
      Renderer                                          GeForce GTX 260/PCI/SSE2
                                                  3.2.0
                                    1.50 NVIDIA via Cg compiler
      OpenGL DLL                                        5.2.3790.3959(srv03_sp2_rtm.070216-1710)
       ICD                                       nvogl32.dll (6.14.11.9107 - nVIDIA ForceWare 191.07)
      Multitexture Texture Units                        4
      Occlusion Query Counter Bits                      32
      Sub-Pixel Precision                               8 
      Max Viewport Size                                 8192 x 8192
      Max Cube Map Texture Size                         8192 x 8192
      Max Rectangle Texture Size                        8192 x 8192
      Max 3D Texture Size                               2048 x 2048 x 2048
      Max Anisotropy                                    16
      Max Clipping Planes                               6
      Max Display-List Nesting Level                    64
      Max Draw Buffers                                  8
      Max Evaluator Order                               8
      Max General Register Combiners                    8
      Max Light Sources                                 8
      Max Pixel Map Table Size                          65536
      Min / Max Program Texel Offset                    -8 / 7
      Max Texture Array Layers                          512
      Max Texture LOD Bias                              15
      Max Vertex Array Range Element Size               1048575

     OpenGL:
      OpenGL 1.1                                          (100%)
      OpenGL 1.2                                          (100%)
      OpenGL 1.3                                          (100%)
      OpenGL 1.4                                          (100%)
      OpenGL 1.5                                          (100%)
      OpenGL 2.0                                          (100%)
      OpenGL 2.1                                          (100%)
      OpenGL 3.0                                          (100%)
      OpenGL 3.1                                          (100%)
      OpenGL 3.2                                          (100%)

    Max Stack Depth:
      Attribute Stack                                   16
      Client Attribute Stack                            16
      Modelview Matrix Stack                            32
      Name Stack                                        128
      Projection Matrix Stack                           4
      Texture Matrix Stack                              10

    Draw Range Elements:
      Max Index Count                                   1048576
      Max Vertex Count                                  1048576

    Extended Lighting Parameters:
      Max Shininess                                     128
      Max Spot Exponent                                 128

    Transform Feedback:
      Max Interleaved Components                        64
      Max Separate Attributes                           4
      Max Separate Components                           4

    Framebuffer Object:
      Max Color Attachments                             8
      Max Render Buffer Size                            8192 x 8192

    Imaging:
      Max Color Matrix Stack Depth                      2
      Max Convolution Width / Height                    11 / 11

    Vertex Shader:
      Max Uniform Vertex Components                     4096
      Max Varying Floats                                60
      Max Vertex Texture Image Units                    32
      Max Combined Texture Image Units                  32

    Geometry Shader:
      Max Geometry Texture Units                        32
      Max Varying Components                            60
      Max Geometry Varying Components                   124
      Max Vertex Varying Components                     60
      Max Geometry Uniform Components                   2048
      Max Geometry Output Vertices                      1024
      Max Geometry Total Output Components              1024

    Fragment Shader:
      Max Uniform Fragment Components                   2048

    Vertex Program:
      Max Local Parameters                              1024
      Max Environment Parameters                        256
      Max Program Matrices                              8
      Max Program Matrix Stack Depth                    1
      Max Tracking Matrices                             8
      Max Tracking Matrix Stack Depth                   1
      Max Vertex Attributes                             16
      Max Instructions                                  16384
      Max Native Instructions                           16384
      Max Temporaries                                   4096
      Max Native Temporaries                            4096
      Max Parameters                                    1024
      Max Native Parameters                             1024
      Max Attributes                                    16
      Max Native Attributes                             16
      Max Address Registers                             2
      Max Native Address Registers                      2

    Fragment Program:
      Max Local Parameters                              512
      Max Environment Parameters                        256
      Max Texture Coordinates                           8
      Max Texture Image Units                           32
      Max Instructions                                  16384
      Max Native Instructions                           16384
      Max Temporaries                                   4096
      Max Native Temporaries                            4096
      Max Parameters                                    1024
      Max Native Parameters                             1024
      Max Attributes                                    16
      Max Native Attributes                             16
      Max Address Registers                             1
      Max Native Address Registers                      1
      Max ALU Instructions                              16384
      Max Native ALU Instructions                       16384
      Max Texture Instructions                          16384
      Max Native Texture Instructions                   16384
      Max Texture Indirections                          16384
      Max Native Texture Indirections                   16384
      Max Execution Instructions                        16777216
      Max Call Stack Depth                              32
      Max If Statement Depth                            64
      Max Loop Depth                                    64
      Max Loop Count                                    16777216

     OpenGL:
      GL_3DFX_multisample                                
      GL_3DFX_tbuffer                                    
      GL_3DFX_texture_compression_FXT1                   
      GL_3DL_direct_texture_access2                      
      GL_3Dlabs_multisample_transparency_id              
      GL_3Dlabs_multisample_transparency_range           
      GL_AMD_performance_monitor                         
      GL_AMD_texture_texture4                            
      GL_AMDX_vertex_shader_tessellator                  
      GL_APPLE_aux_depth_stencil                         
      GL_APPLE_client_storage                            
      GL_APPLE_element_array                             
      GL_APPLE_fence                                     
      GL_APPLE_float_pixels                              
      GL_APPLE_flush_buffer_range                        
      GL_APPLE_flush_render                              
      GL_APPLE_packed_pixel                              
      GL_APPLE_packed_pixels                             
      GL_APPLE_pixel_buffer                              
      GL_APPLE_specular_vector                           
      GL_APPLE_texture_range                             
      GL_APPLE_transform_hint                            
      GL_APPLE_vertex_array_object                       
      GL_APPLE_vertex_array_range                        
      GL_APPLE_vertex_program_evaluators                 
      GL_APPLE_ycbcr_422                                 
      GL_ARB_color_buffer_float                         
      GL_ARB_compatibility                              
      GL_ARB_copy_buffer                                
      GL_ARB_depth_buffer_float                         
      GL_ARB_depth_clamp                                
      GL_ARB_depth_texture                              
      GL_ARB_draw_buffers                               
      GL_ARB_draw_elements_base_vertex                  
      GL_ARB_draw_instanced                             
      GL_ARB_fragment_coord_conventions                 
      GL_ARB_fragment_program                           
      GL_ARB_fragment_program_shadow                    
      GL_ARB_fragment_shader                            
      GL_ARB_framebuffer_object                         
      GL_ARB_framebuffer_sRGB                           
      GL_ARB_geometry_shader4                           
      GL_ARB_half_float_pixel                           
      GL_ARB_half_float_vertex                          
      GL_ARB_imaging                                    
      GL_ARB_instanced_arrays                            
      GL_ARB_map_buffer_range                           
      GL_ARB_matrix_palette                              
      GL_ARB_multisample                                
      GL_ARB_multitexture                               
      GL_ARB_occlusion_query                            
      GL_ARB_pixel_buffer_object                        
      GL_ARB_point_parameters                           
      GL_ARB_point_sprite                               
      GL_ARB_provoking_vertex                           
      GL_ARB_seamless_cube_map                          
      GL_ARB_shader_objects                             
      GL_ARB_shader_texture_lod                          
      GL_ARB_shading_language_100                       
      GL_ARB_shadow                                     
      GL_ARB_shadow_ambient                              
      GL_ARB_sync                                       
      GL_ARB_texture_border_clamp                       
      GL_ARB_texture_buffer_object                      
      GL_ARB_texture_compression                        
      GL_ARB_texture_compression_rgtc                   
      GL_ARB_texture_cube_map                           
      GL_ARB_texture_env_add                            
      GL_ARB_texture_env_combine                        
      GL_ARB_texture_env_crossbar                       
      GL_ARB_texture_env_dot3                           
      GL_ARB_texture_float                              
      GL_ARB_texture_mirrored_repeat                    
      GL_ARB_texture_multisample                        
      GL_ARB_texture_non_power_of_two                   
      GL_ARB_texture_rectangle                          
      GL_ARB_texture_rg                                 
      GL_ARB_transpose_matrix                           
      GL_ARB_uniform_buffer_object                      
      GL_ARB_vertex_array_bgra                          
      GL_ARB_vertex_array_object                        
      GL_ARB_vertex_blend                                
      GL_ARB_vertex_buffer_object                       
      GL_ARB_vertex_program                             
      GL_ARB_vertex_shader                              
      GL_ARB_window_pos                                 
      GL_ATI_array_rev_comps_in_4_bytes                  
      GL_ATI_blend_equation_separate                     
      GL_ATI_blend_weighted_minmax                       
      GL_ATI_draw_buffers                               
      GL_ATI_element_array                               
      GL_ATI_envmap_bumpmap                              
      GL_ATI_fragment_shader                             
      GL_ATI_lock_texture                                
      GL_ATI_map_object_buffer                           
      GL_ATI_meminfo                                     
      GL_ATI_pixel_format_float                          
      GL_ATI_pn_triangles                                
      GL_ATI_point_cull_mode                             
      GL_ATI_separate_stencil                            
      GL_ATI_shader_texture_lod                          
      GL_ATI_text_fragment_shader                        
      GL_ATI_texture_compression_3dc                     
      GL_ATI_texture_env_combine3                        
      GL_ATI_texture_float                              
      GL_ATI_texture_mirror_once                        
      GL_ATI_vertex_array_object                         
      GL_ATI_vertex_attrib_array_object                  
      GL_ATI_vertex_blend                                
      GL_ATI_vertex_shader                               
      GL_ATI_vertex_streams                              
      GL_ATIX_pn_triangles                               
      GL_ATIX_texture_env_combine3                       
      GL_ATIX_texture_env_route                          
      GL_ATIX_vertex_shader_output_point_size            
      GL_Autodesk_facet_normal                           
      GL_Autodesk_valid_back_buffer_hint                 
      GL_DIMD_YUV                                        
      GL_EXT_422_pixels                                  
      GL_EXT_abgr                                       
      GL_EXT_bgra                                       
      GL_EXT_bindable_uniform                           
      GL_EXT_blend_color                                
      GL_EXT_blend_equation_separate                    
      GL_EXT_blend_func_separate                        
      GL_EXT_blend_logic_op                              
      GL_EXT_blend_minmax                               
      GL_EXT_blend_subtract                             
      GL_EXT_Cg_shader                                  
      GL_EXT_clip_volume_hint                            
      GL_EXT_cmyka                                       
      GL_EXT_color_matrix                                
      GL_EXT_color_subtable                              
      GL_EXT_color_table                                 
      GL_EXT_compiled_vertex_array                      
      GL_EXT_convolution                                 
      GL_EXT_convolution_border_modes                    
      GL_EXT_coordinate_frame                            
      GL_EXT_copy_buffer                                 
      GL_EXT_copy_texture                                
      GL_EXT_cull_vertex                                 
      GL_EXT_depth_bounds_test                          
      GL_EXT_depth_buffer_float                          
      GL_EXT_direct_state_access                        
      GL_EXT_draw_buffers2                              
      GL_EXT_draw_instanced                             
      GL_EXT_draw_range_elements                        
      GL_EXT_fog_coord                                  
      GL_EXT_fog_function                                
      GL_EXT_fog_offset                                  
      GL_EXT_fragment_lighting                           
      GL_EXT_framebuffer_blit                           
      GL_EXT_framebuffer_multisample                    
      GL_EXT_framebuffer_object                         
      GL_EXT_framebuffer_sRGB                           
      GL_EXT_generate_mipmap                             
      GL_EXT_geometry_shader4                           
      GL_EXT_gpu_program_parameters                     
      GL_EXT_gpu_shader4                                
      GL_EXT_histogram                                   
      GL_EXT_index_array_formats                         
      GL_EXT_index_func                                  
      GL_EXT_index_material                              
      GL_EXT_index_texture                               
      GL_EXT_interlace                                   
      GL_EXT_light_texture                               
      GL_EXT_misc_attribute                              
      GL_EXT_multi_draw_arrays                          
      GL_EXT_multisample                                 
      GL_EXT_packed_depth_stencil                       
      GL_EXT_packed_float                               
      GL_EXT_packed_pixels                              
      GL_EXT_packed_pixels_12                            
      GL_EXT_paletted_texture                            
      GL_EXT_pixel_buffer_object                        
      GL_EXT_pixel_format                                
      GL_EXT_pixel_texture                               
      GL_EXT_pixel_transform                             
      GL_EXT_pixel_transform_color_table                 
      GL_EXT_point_parameters                           
      GL_EXT_polygon_offset                              
      GL_EXT_provoking_vertex                           
      GL_EXT_rescale_normal                             
      GL_EXT_scene_marker                                
      GL_EXT_secondary_color                            
      GL_EXT_separate_shader_objects                    
      GL_EXT_separate_specular_color                    
      GL_EXT_shadow_funcs                               
      GL_EXT_shared_texture_palette                      
      GL_EXT_stencil_clear_tag                           
      GL_EXT_stencil_two_side                           
      GL_EXT_stencil_wrap                               
      GL_EXT_subtexture                                  
      GL_EXT_swap_control                                
      GL_EXT_texgen_reflection                           
      GL_EXT_texture                                     
      GL_EXT_texture_array                              
      GL_EXT_texture_border_clamp                        
      GL_EXT_texture_buffer_object                      
      GL_EXT_texture_color_table                         
      GL_EXT_texture_compression_dxt1                    
      GL_EXT_texture_compression_latc                   
      GL_EXT_texture_compression_rgtc                   
      GL_EXT_texture_compression_s3tc                   
      GL_EXT_texture_cube_map                           
      GL_EXT_texture_edge_clamp                         
      GL_EXT_texture_env                                 
      GL_EXT_texture_env_add                            
      GL_EXT_texture_env_combine                        
      GL_EXT_texture_env_dot3                           
      GL_EXT_texture_filter_anisotropic                 
      GL_EXT_texture_integer                            
      GL_EXT_texture_lod                                
      GL_EXT_texture_lod_bias                           
      GL_EXT_texture_mirror_clamp                       
      GL_EXT_texture_object                             
      GL_EXT_texture_perturb_normal                      
      GL_EXT_texture_rectangle                           
      GL_EXT_texture_shared_exponent                    
      GL_EXT_texture_sRGB                               
      GL_EXT_texture_swizzle                            
      GL_EXT_texture3D                                  
      GL_EXT_texture4D                                   
      GL_EXT_timer_query                                
      GL_EXT_transform_feedback                          
      GL_EXT_vertex_array                               
      GL_EXT_vertex_array_bgra                          
      GL_EXT_vertex_shader                               
      GL_EXT_vertex_weighting                            
      GL_EXTX_framebuffer_mixed_formats                 
      GL_EXTX_packed_depth_stencil                       
      GL_FGL_lock_texture                                
      GL_GL2_geometry_shader                             
      GL_GREMEDY_frame_terminator                        
      GL_GREMEDY_string_marker                           
      GL_HP_convolution_border_modes                     
      GL_HP_image_transform                              
      GL_HP_occlusion_test                               
      GL_HP_texture_lighting                             
      GL_I3D_argb                                        
      GL_I3D_color_clamp                                 
      GL_I3D_interlace_read                              
      GL_IBM_clip_check                                  
      GL_IBM_cull_vertex                                 
      GL_IBM_load_named_matrix                           
      GL_IBM_multi_draw_arrays                           
      GL_IBM_multimode_draw_arrays                       
      GL_IBM_occlusion_cull                              
      GL_IBM_pixel_filter_hint                           
      GL_IBM_rasterpos_clip                             
      GL_IBM_rescale_normal                              
      GL_IBM_static_data                                 
      GL_IBM_texture_clamp_nodraw                        
      GL_IBM_texture_mirrored_repeat                    
      GL_IBM_vertex_array_lists                          
      GL_IBM_YCbCr                                       
      GL_INGR_blend_func_separate                        
      GL_INGR_color_clamp                                
      GL_INGR_interlace_read                             
      GL_INGR_multiple_palette                           
      GL_INTEL_parallel_arrays                           
      GL_INTEL_texture_scissor                           
      GL_KTX_buffer_region                              
      GL_MESA_pack_invert                                
      GL_MESA_resize_buffers                             
      GL_MESA_window_pos                                 
      GL_MESA_ycbcr_texture                              
      GL_MESAX_texture_stack                             
      GL_MTX_fragment_shader                             
      GL_MTX_precision_dpi                               
      GL_NV_blend_square                                
      GL_NV_centroid_sample                              
      GL_NV_conditional_render                          
      GL_NV_copy_depth_to_color                         
      GL_NV_copy_image                                  
      GL_NV_depth_buffer_float                          
      GL_NV_depth_clamp                                 
      GL_NV_depth_range_unclamped                        
      GL_NV_evaluators                                   
      GL_NV_explicit_multisample                        
      GL_NV_fence                                       
      GL_NV_float_buffer                                
      GL_NV_fog_distance                                
      GL_NV_fragment_program                            
      GL_NV_fragment_program_option                     
      GL_NV_fragment_program2                           
      GL_NV_fragment_program4                            
      GL_NV_framebuffer_multisample_coverage            
      GL_NV_framebuffer_multisample_ex                   
      GL_NV_geometry_program4                            
      GL_NV_geometry_shader4                            
      GL_NV_gpu_program4                                
      GL_NV_half_float                                  
      GL_NV_light_max_exponent                          
      GL_NV_multisample_coverage                        
      GL_NV_multisample_filter_hint                     
      GL_NV_occlusion_query                             
      GL_NV_packed_depth_stencil                        
      GL_NV_parameter_buffer_object                     
      GL_NV_parameter_buffer_object2                    
      GL_NV_pixel_buffer_object                          
      GL_NV_pixel_data_range                            
      GL_NV_point_sprite                                
      GL_NV_present_video                                
      GL_NV_primitive_restart                           
      GL_NV_register_combiners                          
      GL_NV_register_combiners2                         
      GL_NV_shader_buffer_load                          
      GL_NV_texgen_emboss                                
      GL_NV_texgen_reflection                           
      GL_NV_texture_barrier                             
      GL_NV_texture_compression_latc                     
      GL_NV_texture_compression_vtc                     
      GL_NV_texture_env_combine4                        
      GL_NV_texture_expand_normal                       
      GL_NV_texture_rectangle                           
      GL_NV_texture_shader                              
      GL_NV_texture_shader2                             
      GL_NV_texture_shader3                             
      GL_NV_timer_query                                  
      GL_NV_transform_feedback                          
      GL_NV_transform_feedback2                         
      GL_NV_vertex_array_range                          
      GL_NV_vertex_array_range2                         
      GL_NV_vertex_buffer_unified_memory                
      GL_NV_vertex_program                              
      GL_NV_vertex_program1_1                           
      GL_NV_vertex_program2                             
      GL_NV_vertex_program2_option                      
      GL_NV_vertex_program3                             
      GL_NV_vertex_program4                              
      GL_NVX_conditional_render                         
      GL_NVX_flush_hold                                  
      GL_NVX_ycrcb                                       
      GL_OES_byte_coordinates                            
      GL_OES_compressed_paletted_texture                 
      GL_OES_fixed_point                                 
      GL_OES_query_matrix                                
      GL_OES_read_format                                 
      GL_OES_single_precision                            
      GL_OML_interlace                                   
      GL_OML_resample                                    
      GL_OML_subsample                                   
      GL_PGI_misc_hints                                  
      GL_PGI_vertex_hints                                
      GL_REND_screen_coordinates                         
      GL_S3_performance_analyzer                         
      GL_S3_s3tc                                        
      GL_SGI_color_matrix                                
      GL_SGI_color_table                                 
      GL_SGI_compiled_vertex_array                       
      GL_SGI_cull_vertex                                 
      GL_SGI_index_array_formats                         
      GL_SGI_index_func                                  
      GL_SGI_index_material                              
      GL_SGI_index_texture                               
      GL_SGI_make_current_read                           
      GL_SGI_texture_add_env                             
      GL_SGI_texture_color_table                         
      GL_SGI_texture_edge_clamp                          
      GL_SGI_texture_lod                                 
      GL_SGIS_color_range                                
      GL_SGIS_detail_texture                             
      GL_SGIS_fog_function                               
      GL_SGIS_generate_mipmap                           
      GL_SGIS_multisample                                
      GL_SGIS_multitexture                               
      GL_SGIS_pixel_texture                              
      GL_SGIS_point_line_texgen                          
      GL_SGIS_sharpen_texture                            
      GL_SGIS_texture_border_clamp                       
      GL_SGIS_texture_color_mask                         
      GL_SGIS_texture_edge_clamp                         
      GL_SGIS_texture_filter4                            
      GL_SGIS_texture_lod                               
      GL_SGIS_texture_select                             
      GL_SGIS_texture4D                                  
      GL_SGIX_async                                      
      GL_SGIX_async_histogram                            
      GL_SGIX_async_pixel                                
      GL_SGIX_blend_alpha_minmax                         
      GL_SGIX_clipmap                                    
      GL_SGIX_convolution_accuracy                       
      GL_SGIX_depth_pass_instrument                      
      GL_SGIX_depth_texture                             
      GL_SGIX_flush_raster                               
      GL_SGIX_fog_offset                                 
      GL_SGIX_framezoom                                  
      GL_SGIX_instruments                                
      GL_SGIX_interlace                                  
      GL_SGIX_ir_instrument1                             
      GL_SGIX_list_priority                              
      GL_SGIX_pbuffer                                    
      GL_SGIX_pixel_texture                              
      GL_SGIX_pixel_texture_bits                         
      GL_SGIX_reference_plane                            
      GL_SGIX_resample                                   
      GL_SGIX_shadow                                    
      GL_SGIX_shadow_ambient                             
      GL_SGIX_sprite                                     
      GL_SGIX_subsample                                  
      GL_SGIX_tag_sample_buffer                          
      GL_SGIX_texture_add_env                            
      GL_SGIX_texture_coordinate_clamp                   
      GL_SGIX_texture_lod_bias                           
      GL_SGIX_texture_multi_buffer                       
      GL_SGIX_texture_range                              
      GL_SGIX_texture_scale_bias                         
      GL_SGIX_vertex_preclip                             
      GL_SGIX_vertex_preclip_hint                        
      GL_SGIX_ycrcb                                      
      GL_SGIX_ycrcb_subsample                            
      GL_SUN_convolution_border_modes                    
      GL_SUN_global_alpha                                
      GL_SUN_mesh_array                                  
      GL_SUN_multi_draw_arrays                           
      GL_SUN_slice_accum                                
      GL_SUN_triangle_list                               
      GL_SUN_vertex                                      
      GL_SUNX_constant_data                              
      GL_WGL_ARB_extensions_string                       
      GL_WGL_EXT_extensions_string                       
      GL_WGL_EXT_swap_control                            
      GL_WIN_phong_shading                               
      GL_WIN_specular_fog                                
      GL_WIN_swap_hint                                  
      GLU_EXT_nurbs_tessellator                          
      GLU_EXT_object_space_tess                          
      GLU_SGI_filter4_parameters                         
      GLX_ARB_create_context                             
      GLX_ARB_fbconfig_float                             
      GLX_ARB_framebuffer_sRGB                           
      GLX_ARB_get_proc_address                           
      GLX_ARB_multisample                                
      GLX_EXT_fbconfig_packed_float                      
      GLX_EXT_framebuffer_sRGB                           
      GLX_EXT_import_context                             
      GLX_EXT_scene_marker                               
      GLX_EXT_texture_from_pixmap                        
      GLX_EXT_visual_info                                
      GLX_EXT_visual_rating                              
      GLX_MESA_agp_offset                                
      GLX_MESA_copy_sub_buffer                           
      GLX_MESA_pixmap_colormap                           
      GLX_MESA_release_buffers                           
      GLX_MESA_set_3dfx_mode                             
      GLX_NV_present_video                               
      GLX_NV_swap_group                                  
      GLX_NV_video_output                                
      GLX_OML_swap_method                                
      GLX_OML_sync_control                               
      GLX_SGI_cushion                                    
      GLX_SGI_make_current_read                          
      GLX_SGI_swap_control                               
      GLX_SGI_video_sync                                 
      GLX_SGIS_blended_overlay                           
      GLX_SGIS_color_range                               
      GLX_SGIS_multisample                               
      GLX_SGIX_dm_buffer                                 
      GLX_SGIX_fbconfig                                  
      GLX_SGIX_hyperpipe                                 
      GLX_SGIX_pbuffer                                   
      GLX_SGIX_swap_barrier                              
      GLX_SGIX_swap_group                                
      GLX_SGIX_video_resize                              
      GLX_SGIX_video_source                              
      GLX_SGIX_visual_select_group                       
      GLX_SUN_get_transparent_index                      
      GLX_SUN_video_resize                               
      WGL_3DFX_gamma_control                             
      WGL_3DFX_multisample                               
      WGL_3DL_stereo_control                             
      WGL_ARB_buffer_region                             
      WGL_ARB_create_context                            
      WGL_ARB_create_context_profile                    
      WGL_ARB_extensions_string                         
      WGL_ARB_framebuffer_sRGB                           
      WGL_ARB_make_current_read                         
      WGL_ARB_multisample                               
      WGL_ARB_pbuffer                                   
      WGL_ARB_pixel_format                              
      WGL_ARB_pixel_format_float                        
      WGL_ARB_render_texture                            
      WGL_ATI_pbuffer_memory_hint                        
      WGL_ATI_pixel_format_float                        
      WGL_ATI_render_texture_rectangle                   
      WGL_EXT_buffer_region                              
      WGL_EXT_depth_float                                
      WGL_EXT_display_color_table                        
      WGL_EXT_extensions_string                         
      WGL_EXT_framebuffer_sRGB                          
      WGL_EXT_framebuffer_sRGBWGL_ARB_create_context     
      WGL_EXT_gamma_control                              
      WGL_EXT_make_current_read                          
      WGL_EXT_multisample                                
      WGL_EXT_pbuffer                                    
      WGL_EXT_pixel_format                               
      WGL_EXT_pixel_format_packed_float                 
      WGL_EXT_render_texture                             
      WGL_EXT_swap_control                              
      WGL_EXT_swap_interval                              
      WGL_I3D_digital_video_control                      
      WGL_I3D_gamma                                      
      WGL_I3D_genlock                                    
      WGL_I3D_image_buffer                               
      WGL_I3D_swap_frame_lock                            
      WGL_I3D_swap_frame_usage                           
      WGL_MTX_video_preview                              
      WGL_NV_float_buffer                               
      WGL_NV_gpu_affinity                                
      WGL_NV_multisample_coverage                       
      WGL_NV_present_video                               
      WGL_NV_render_depth_texture                       
      WGL_NV_render_texture_rectangle                   
      WGL_NV_swap_group                                  
      WGL_NV_video_output                                
      WGL_NVX_DX_interop                                
      WGL_OML_sync_control                               

       :
      RGB DXT1                                          
      RGBA DXT1                                          
      RGBA DXT3                                         
      RGBA DXT5                                         
      RGB FXT1                                           
      RGBA FXT1                                          
      3Dc                                                


--------[ GPGPU ]-------------------------------------------------------------------------------------------------------

  [ CUDA: GeForce GTX 260 ]

     :
                                           GeForce GTX 260
                                                 1348 
      /                             27 / 216
      Max Threads Per Block                             512
      Max Registers Per Block                           16384
      Warp Size                                         32 threads
      Max Block Size                                    512 x 512 x 64
      Max Grid Size                                     65535 x 65535 x 1
      Compute Capability                                1.3
      CUDA DLL                                          nvcuda.dll (6.14.11.9107 - nVIDIA ForceWare 191.07)

     :
      Total Memory                                      895 
      Total Constant Memory                             64 
      Max Shared Memory Per Block                       16 
      Max Memory Pitch                                  256 
      Texture Alignment                                 256 

     :
      32-bit Atomic Operations                          
      64-bit Atomic Operations                          
      Concurrent Memory Copy & Execute                  
      Double-Precision Floating-Point                   
      Warp Vote Functions                               

     :
                                                   NVIDIA Corporation
                                     http://www.nvidia.com/page/products.html
                                       http://www.nvidia.com/content/drivers/drivers.asp
                                     http://driveragent.com?ref=59


--------[  ]------------------------------------------------------------------------------------------------------

    @Arial Unicode MS                         Swiss               Arabic                  14 x 43   40 %
    @Arial Unicode MS                         Swiss               Baltic                  14 x 43   40 %
    @Arial Unicode MS                         Swiss               Central European        14 x 43   40 %
    @Arial Unicode MS                         Swiss               CHINESE_BIG5            14 x 43   40 %
    @Arial Unicode MS                         Swiss               CHINESE_GB2312          14 x 43   40 %
    @Arial Unicode MS                         Swiss               Cyrillic                14 x 43   40 %
    @Arial Unicode MS                         Swiss               Greek                   14 x 43   40 %
    @Arial Unicode MS                         Swiss               Hangul(Johab)           14 x 43   40 %
    @Arial Unicode MS                         Swiss               Hangul                  14 x 43   40 %
    @Arial Unicode MS                         Swiss               Hebrew                  14 x 43   40 %
    @Arial Unicode MS                         Swiss               Japanese                14 x 43   40 %
    @Arial Unicode MS                         Swiss               Thai                    14 x 43   40 %
    @Arial Unicode MS                         Swiss               Turkish                 14 x 43   40 %
    @Arial Unicode MS                         Swiss               Vietnamese              14 x 43   40 %
    @Arial Unicode MS                         Swiss               Western                 14 x 43   40 %
    @Batang                                   Roman       Regular        Baltic                  16 x 32   40 %
    @Batang                                   Roman       Regular        Central European        16 x 32   40 %
    @Batang                                   Roman       Regular        Cyrillic                16 x 32   40 %
    @Batang                                   Roman       Regular        Greek                   16 x 32   40 %
    @Batang                                   Roman       Regular        Hangul                  16 x 32   40 %
    @Batang                                   Roman       Regular        Turkish                 16 x 32   40 %
    @Batang                                   Roman       Regular        Western                 16 x 32   40 %
    @BatangChe                                Modern      Regular        Baltic                  16 x 32   40 %
    @BatangChe                                Modern      Regular        Central European        16 x 32   40 %
    @BatangChe                                Modern      Regular        Cyrillic                16 x 32   40 %
    @BatangChe                                Modern      Regular        Greek                   16 x 32   40 %
    @BatangChe                                Modern      Regular        Hangul                  16 x 32   40 %
    @BatangChe                                Modern      Regular        Turkish                 16 x 32   40 %
    @BatangChe                                Modern      Regular        Western                 16 x 32   40 %
    @Dotum                                    Swiss       Regular        Baltic                  16 x 32   40 %
    @Dotum                                    Swiss       Regular        Central European        16 x 32   40 %
    @Dotum                                    Swiss       Regular        Cyrillic                16 x 32   40 %
    @Dotum                                    Swiss       Regular        Greek                   16 x 32   40 %
    @Dotum                                    Swiss       Regular        Hangul                  16 x 32   40 %
    @Dotum                                    Swiss       Regular        Turkish                 16 x 32   40 %
    @Dotum                                    Swiss       Regular        Western                 16 x 32   40 %
    @DotumChe                                 Modern      Regular        Baltic                  16 x 32   40 %
    @DotumChe                                 Modern      Regular        Central European        16 x 32   40 %
    @DotumChe                                 Modern      Regular        Cyrillic                16 x 32   40 %
    @DotumChe                                 Modern      Regular        Greek                   16 x 32   40 %
    @DotumChe                                 Modern      Regular        Hangul                  16 x 32   40 %
    @DotumChe                                 Modern      Regular        Turkish                 16 x 32   40 %
    @DotumChe                                 Modern      Regular        Western                 16 x 32   40 %
    @Gulim                                    Swiss       Regular        Baltic                  16 x 32   40 %
    @Gulim                                    Swiss       Regular        Central European        16 x 32   40 %
    @Gulim                                    Swiss       Regular        Cyrillic                16 x 32   40 %
    @Gulim                                    Swiss       Regular        Greek                   16 x 32   40 %
    @Gulim                                    Swiss       Regular        Hangul                  16 x 32   40 %
    @Gulim                                    Swiss       Regular        Turkish                 16 x 32   40 %
    @Gulim                                    Swiss       Regular        Western                 16 x 32   40 %
    @GulimChe                                 Modern      Regular        Baltic                  16 x 32   40 %
    @GulimChe                                 Modern      Regular        Central European        16 x 32   40 %
    @GulimChe                                 Modern      Regular        Cyrillic                16 x 32   40 %
    @GulimChe                                 Modern      Regular        Greek                   16 x 32   40 %
    @GulimChe                                 Modern      Regular        Hangul                  16 x 32   40 %
    @GulimChe                                 Modern      Regular        Turkish                 16 x 32   40 %
    @GulimChe                                 Modern      Regular        Western                 16 x 32   40 %
    @Gungsuh                                  Roman       Regular        Baltic                  16 x 32   40 %
    @Gungsuh                                  Roman       Regular        Central European        16 x 32   40 %
    @Gungsuh                                  Roman       Regular        Cyrillic                16 x 32   40 %
    @Gungsuh                                  Roman       Regular        Greek                   16 x 32   40 %
    @Gungsuh                                  Roman       Regular        Hangul                  16 x 32   40 %
    @Gungsuh                                  Roman       Regular        Turkish                 16 x 32   40 %
    @Gungsuh                                  Roman       Regular        Western                 16 x 32   40 %
    @GungsuhChe                               Modern      Regular        Baltic                  16 x 32   40 %
    @GungsuhChe                               Modern      Regular        Central European        16 x 32   40 %
    @GungsuhChe                               Modern      Regular        Cyrillic                16 x 32   40 %
    @GungsuhChe                               Modern      Regular        Greek                   16 x 32   40 %
    @GungsuhChe                               Modern      Regular        Hangul                  16 x 32   40 %
    @GungsuhChe                               Modern      Regular        Turkish                 16 x 32   40 %
    @GungsuhChe                               Modern      Regular        Western                 16 x 32   40 %
    @MingLiU                                  Modern      Regular        CHINESE_BIG5            16 x 32   40 %
    @MingLiU                                  Modern      Regular        Western                 16 x 32   40 %
    @MS Gothic                                Modern      Regular        Baltic                  16 x 32   40 %
    @MS Gothic                                Modern      Regular        Central European        16 x 32   40 %
    @MS Gothic                                Modern      Regular        Cyrillic                16 x 32   40 %
    @MS Gothic                                Modern      Regular        Greek                   16 x 32   40 %
    @MS Gothic                                Modern      Regular        Japanese                16 x 32   40 %
    @MS Gothic                                Modern      Regular        Turkish                 16 x 32   40 %
    @MS Gothic                                Modern      Regular        Western                 16 x 32   40 %
    @MS Mincho                                Modern      Regular        Baltic                  16 x 32   40 %
    @MS Mincho                                Modern      Regular        Central European        16 x 32   40 %
    @MS Mincho                                Modern      Regular        Cyrillic                16 x 32   40 %
    @MS Mincho                                Modern      Regular        Greek                   16 x 32   40 %
    @MS Mincho                                Modern      Regular        Japanese                16 x 32   40 %
    @MS Mincho                                Modern      Regular        Turkish                 16 x 32   40 %
    @MS Mincho                                Modern      Regular        Western                 16 x 32   40 %
    @MS PGothic                               Swiss       Regular        Baltic                  13 x 32   40 %
    @MS PGothic                               Swiss       Regular        Central European        13 x 32   40 %
    @MS PGothic                               Swiss       Regular        Cyrillic                13 x 32   40 %
    @MS PGothic                               Swiss       Regular        Greek                   13 x 32   40 %
    @MS PGothic                               Swiss       Regular        Japanese                13 x 32   40 %
    @MS PGothic                               Swiss       Regular        Turkish                 13 x 32   40 %
    @MS PGothic                               Swiss       Regular        Western                 13 x 32   40 %
    @MS PMincho                               Roman       Regular        Baltic                  13 x 32   40 %
    @MS PMincho                               Roman       Regular        Central European        13 x 32   40 %
    @MS PMincho                               Roman       Regular        Cyrillic                13 x 32   40 %
    @MS PMincho                               Roman       Regular        Greek                   13 x 32   40 %
    @MS PMincho                               Roman       Regular        Japanese                13 x 32   40 %
    @MS PMincho                               Roman       Regular        Turkish                 13 x 32   40 %
    @MS PMincho                               Roman       Regular        Western                 13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular        Baltic                  13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular        Central European        13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular        Cyrillic                13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular        Greek                   13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular        Japanese                13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular        Turkish                 13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular        Western                 13 x 32   40 %
    @NSimSun                                  Modern      Regular        CHINESE_GB2312          16 x 32   40 %
    @NSimSun                                  Modern      Regular        Western                 16 x 32   40 %
    @PMingLiU                                 Roman       Regular        CHINESE_BIG5            16 x 32   40 %
    @PMingLiU                                 Roman       Regular        Western                 16 x 32   40 %
    @SimHei                                   Special     Regular        CHINESE_GB2312          16 x 32   40 %
    @SimSun                                   Special     Regular        CHINESE_GB2312          16 x 32   40 %
    @SimSun                                   Special     Regular        Western                 16 x 32   40 %
    Agency FB                                 Swiss            Western                 11 x 37   70 %
    Aharoni                                   Special     Bold           Hebrew                  15 x 32   70 %
    Algerian                                  Decorative  Regular        Western                 17 x 36   40 %
    Andalus                                   Special     Regular        Arabic                  13 x 49   40 %
    Angsana New                               Roman       Regular        Thai                     8 x 43   40 %
    Angsana New                               Roman       Regular        Western                  8 x 43   40 %
    AngsanaUPC                                Roman       Regular        Thai                     8 x 43   40 %
    Arabic Transparent                        Special     Regular        Arabic                  13 x 38   40 %
    Arial Black                               Swiss               Baltic                  18 x 45   40 %
    Arial Black                               Swiss               Central European        18 x 45   40 %
    Arial Black                               Swiss               Cyrillic                18 x 45   40 %
    Arial Black                               Swiss               Greek                   18 x 45   40 %
    Arial Black                               Swiss               Turkish                 18 x 45   40 %
    Arial Black                               Swiss               Western                 18 x 45   40 %
    Arial Narrow                              Swiss               Baltic                  12 x 36   40 %
    Arial Narrow                              Swiss               Central European        12 x 36   40 %
    Arial Narrow                              Swiss               Cyrillic                12 x 36   40 %
    Arial Narrow                              Swiss               Greek                   12 x 36   40 %
    Arial Narrow                              Swiss               Turkish                 12 x 36   40 %
    Arial Narrow                              Swiss               Western                 12 x 36   40 %
    Arial Rounded MT Bold                     Swiss               Western                 15 x 37   40 %
    Arial Unicode MS                          Swiss               Arabic                  14 x 43   40 %
    Arial Unicode MS                          Swiss               Baltic                  14 x 43   40 %
    Arial Unicode MS                          Swiss               Central European        14 x 43   40 %
    Arial Unicode MS                          Swiss               CHINESE_BIG5            14 x 43   40 %
    Arial Unicode MS                          Swiss               CHINESE_GB2312          14 x 43   40 %
    Arial Unicode MS                          Swiss               Cyrillic                14 x 43   40 %
    Arial Unicode MS                          Swiss               Greek                   14 x 43   40 %
    Arial Unicode MS                          Swiss               Hangul(Johab)           14 x 43   40 %
    Arial Unicode MS                          Swiss               Hangul                  14 x 43   40 %
    Arial Unicode MS                          Swiss               Hebrew                  14 x 43   40 %
    Arial Unicode MS                          Swiss               Japanese                14 x 43   40 %
    Arial Unicode MS                          Swiss               Thai                    14 x 43   40 %
    Arial Unicode MS                          Swiss               Turkish                 14 x 43   40 %
    Arial Unicode MS                          Swiss               Vietnamese              14 x 43   40 %
    Arial Unicode MS                          Swiss               Western                 14 x 43   40 %
    Arial                                     Swiss               Arabic                  14 x 36   40 %
    Arial                                     Swiss               Baltic                  14 x 36   40 %
    Arial                                     Swiss               Central European        14 x 36   40 %
    Arial                                     Swiss               Cyrillic                14 x 36   40 %
    Arial                                     Swiss               Greek                   14 x 36   40 %
    Arial                                     Swiss               Hebrew                  14 x 36   40 %
    Arial                                     Swiss               Turkish                 14 x 36   40 %
    Arial                                     Swiss               Vietnamese              14 x 36   40 %
    Arial                                     Swiss               Western                 14 x 36   40 %
    Baskerville Old Face                      Roman               Western                 13 x 37   40 %
    Batang                                    Roman       Regular        Baltic                  16 x 32   40 %
    Batang                                    Roman       Regular        Central European        16 x 32   40 %
    Batang                                    Roman       Regular        Cyrillic                16 x 32   40 %
    Batang                                    Roman       Regular        Greek                   16 x 32   40 %
    Batang                                    Roman       Regular        Hangul                  16 x 32   40 %
    Batang                                    Roman       Regular        Turkish                 16 x 32   40 %
    Batang                                    Roman       Regular        Western                 16 x 32   40 %
    BatangChe                                 Modern      Regular        Baltic                  16 x 32   40 %
    BatangChe                                 Modern      Regular        Central European        16 x 32   40 %
    BatangChe                                 Modern      Regular        Cyrillic                16 x 32   40 %
    BatangChe                                 Modern      Regular        Greek                   16 x 32   40 %
    BatangChe                                 Modern      Regular        Hangul                  16 x 32   40 %
    BatangChe                                 Modern      Regular        Turkish                 16 x 32   40 %
    BatangChe                                 Modern      Regular        Western                 16 x 32   40 %
    Bauhaus 93                                Decorative          Western                 14 x 36   40 %
    Bell MT                                   Roman               Western                 13 x 35   40 %
    Berlin Sans FB Demi                       Swiss            Western                 14 x 36   70 %
    Berlin Sans FB                            Swiss            Western                 15 x 36   70 %
    Bernard MT Condensed                      Roman               Western                 12 x 38   40 %
    Blackadder ITC                            Decorative          Western                 10 x 41   40 %
    Bodoni MT Black                           Roman                Western                 17 x 37   90 %
    Bodoni MT Condensed                       Roman            Western                 11 x 38   70 %
    Bodoni MT Poster Compressed               Roman               Turkish                  8 x 37   30 %
    Bodoni MT Poster Compressed               Roman               Western                  8 x 37   30 %
    Bodoni MT                                 Roman            Western                 13 x 38   70 %
    Book Antiqua                              Roman            Baltic                  15 x 38   70 %
    Book Antiqua                              Roman            Central European        15 x 38   70 %
    Book Antiqua                              Roman            Cyrillic                15 x 38   70 %
    Book Antiqua                              Roman            Greek                   15 x 38   70 %
    Book Antiqua                              Roman            Turkish                 15 x 38   70 %
    Book Antiqua                              Roman            Western                 15 x 38   70 %
    Bookman Old Style                         Roman               Baltic                  16 x 36   30 %
    Bookman Old Style                         Roman               Central European        16 x 36   30 %
    Bookman Old Style                         Roman               Cyrillic                16 x 36   30 %
    Bookman Old Style                         Roman               Greek                   16 x 36   30 %
    Bookman Old Style                         Roman               Turkish                 16 x 36   30 %
    Bookman Old Style                         Roman               Western                 16 x 36   30 %
    Bookshelf Symbol 7                        Special     Regular        Symbol                  21 x 32   40 %
    Bradley Hand ITC                          Script              Western                 13 x 40   40 %
    Britannic Bold                            Swiss               Western                 14 x 35   40 %
    Broadway                                  Decorative          Western                 17 x 36   40 %
    Browallia New                             Swiss       Regular        Thai                     9 x 40   40 %
    Browallia New                             Swiss       Regular        Western                  9 x 40   40 %
    BrowalliaUPC                              Swiss       Regular        Thai                     9 x 40   40 %
    Brush Script MT                           Script               Western                 10 x 39   40 %
    Calibri                                   Swiss       Regular        Baltic                  16 x 39   40 %
    Calibri                                   Swiss       Regular        Central European        16 x 39   40 %
    Calibri                                   Swiss       Regular        Cyrillic                16 x 39   40 %
    Calibri                                   Swiss       Regular        Greek                   16 x 39   40 %
    Calibri                                   Swiss       Regular        Turkish                 16 x 39   40 %
    Calibri                                   Swiss       Regular        Western                 16 x 39   40 %
    Californian FB                            Roman            Western                 14 x 37   70 %
    Calisto MT                                Roman               Western                 13 x 37   40 %
    Cambria Math                              Roman       Regular        Baltic                  19 x 179   40 %
    Cambria Math                              Roman       Regular        Central European        19 x 179   40 %
    Cambria Math                              Roman       Regular        Cyrillic                19 x 179   40 %
    Cambria Math                              Roman       Regular        Greek                   19 x 179   40 %
    Cambria Math                              Roman       Regular        Turkish                 19 x 179   40 %
    Cambria Math                              Roman       Regular        Western                 19 x 179   40 %
    Cambria                                   Roman       Regular        Baltic                  19 x 38   40 %
    Cambria                                   Roman       Regular        Central European        19 x 38   40 %
    Cambria                                   Roman       Regular        Cyrillic                19 x 38   40 %
    Cambria                                   Roman       Regular        Greek                   19 x 38   40 %
    Cambria                                   Roman       Regular        Turkish                 19 x 38   40 %
    Cambria                                   Roman       Regular        Western                 19 x 38   40 %
    Candara                                   Swiss       Regular        Baltic                  16 x 39   40 %
    Candara                                   Swiss       Regular        Central European        16 x 39   40 %
    Candara                                   Swiss       Regular        Cyrillic                16 x 39   40 %
    Candara                                   Swiss       Regular        Greek                   16 x 39   40 %
    Candara                                   Swiss       Regular        Turkish                 16 x 39   40 %
    Candara                                   Swiss       Regular        Western                 16 x 39   40 %
    Castellar                                 Roman               Western                 21 x 39   40 %
    Centaur                                   Roman               Western                 12 x 36   40 %
    Century Gothic                            Swiss               Baltic                  16 x 38   40 %
    Century Gothic                            Swiss               Central European        16 x 38   40 %
    Century Gothic                            Swiss               Cyrillic                16 x 38   40 %
    Century Gothic                            Swiss               Greek                   16 x 38   40 %
    Century Gothic                            Swiss               Turkish                 16 x 38   40 %
    Century Gothic                            Swiss               Western                 16 x 38   40 %
    Century Schoolbook                        Roman               Baltic                  15 x 38   40 %
    Century Schoolbook                        Roman               Central European        15 x 38   40 %
    Century Schoolbook                        Roman               Cyrillic                15 x 38   40 %
    Century Schoolbook                        Roman               Greek                   15 x 38   40 %
    Century Schoolbook                        Roman               Turkish                 15 x 38   40 %
    Century Schoolbook                        Roman               Western                 15 x 38   40 %
    Century                                   Roman               Baltic                  15 x 38   40 %
    Century                                   Roman               Central European        15 x 38   40 %
    Century                                   Roman               Cyrillic                15 x 38   40 %
    Century                                   Roman               Greek                   15 x 38   40 %
    Century                                   Roman               Turkish                 15 x 38   40 %
    Century                                   Roman               Western                 15 x 38   40 %
    Chiller                                   Decorative          Western                  9 x 37   40 %
    Colonna MT                                Decorative          Western                 13 x 34   40 %
    Comic Sans MS                             Script              Baltic                  15 x 45   40 %
    Comic Sans MS                             Script              Central European        15 x 45   40 %
    Comic Sans MS                             Script              Cyrillic                15 x 45   40 %
    Comic Sans MS                             Script              Greek                   15 x 45   40 %
    Comic Sans MS                             Script              Turkish                 15 x 45   40 %
    Comic Sans MS                             Script              Western                 15 x 45   40 %
    Consolas                                  Modern      Regular        Baltic                  18 x 37   40 %
    Consolas                                  Modern      Regular        Central European        18 x 37   40 %
    Consolas                                  Modern      Regular        Cyrillic                18 x 37   40 %
    Consolas                                  Modern      Regular        Greek                   18 x 37   40 %
    Consolas                                  Modern      Regular        Turkish                 18 x 37   40 %
    Consolas                                  Modern      Regular        Western                 18 x 37   40 %
    Constantia                                Roman       Regular        Baltic                  17 x 39   40 %
    Constantia                                Roman       Regular        Central European        17 x 39   40 %
    Constantia                                Roman       Regular        Cyrillic                17 x 39   40 %
    Constantia                                Roman       Regular        Greek                   17 x 39   40 %
    Constantia                                Roman       Regular        Turkish                 17 x 39   40 %
    Constantia                                Roman       Regular        Western                 17 x 39   40 %
    Cooper Black                              Roman               Western                 16 x 37   40 %
    Copperplate Gothic Bold                   Swiss               Western                 19 x 36   40 %
    Copperplate Gothic Light                  Swiss               Western                 18 x 35   40 %
    Corbel                                    Swiss       Regular        Baltic                  16 x 39   40 %
    Corbel                                    Swiss       Regular        Central European        16 x 39   40 %
    Corbel                                    Swiss       Regular        Cyrillic                16 x 39   40 %
    Corbel                                    Swiss       Regular        Greek                   16 x 39   40 %
    Corbel                                    Swiss       Regular        Turkish                 16 x 39   40 %
    Corbel                                    Swiss       Regular        Western                 16 x 39   40 %
    Cordia New                                Swiss       Regular        Thai                     9 x 44   40 %
    Cordia New                                Swiss       Regular        Western                  9 x 44   40 %
    CordiaUPC                                 Swiss       Regular        Thai                     9 x 44   40 %
    Courier New                               Modern              Arabic                  19 x 36   40 %
    Courier New                               Modern              Baltic                  19 x 36   40 %
    Courier New                               Modern              Central European        19 x 36   40 %
    Courier New                               Modern              Cyrillic                19 x 36   40 %
    Courier New                               Modern              Greek                   19 x 36   40 %
    Courier New                               Modern              Hebrew                  19 x 36   40 %
    Courier New                               Modern              Turkish                 19 x 36   40 %
    Courier New                               Modern              Vietnamese              19 x 36   40 %
    Courier New                               Modern              Western                 19 x 36   40 %
    Courier                                   Roman                      Cyrillic                 8 x 13   40 %
    Curlz MT                                  Decorative          Western                 12 x 42   40 %
    David Transparent                         Special     Regular        Hebrew                  13 x 38   40 %
    David                                     Special     Regular        Hebrew                  13 x 31   40 %
    DilleniaUPC                               Roman       Regular        Thai                     9 x 42   40 %
    Dotum                                     Swiss       Regular        Baltic                  16 x 32   40 %
    Dotum                                     Swiss       Regular        Central European        16 x 32   40 %
    Dotum                                     Swiss       Regular        Cyrillic                16 x 32   40 %
    Dotum                                     Swiss       Regular        Greek                   16 x 32   40 %
    Dotum                                     Swiss       Regular        Hangul                  16 x 32   40 %
    Dotum                                     Swiss       Regular        Turkish                 16 x 32   40 %
    Dotum                                     Swiss       Regular        Western                 16 x 32   40 %
    DotumChe                                  Modern      Regular        Baltic                  16 x 32   40 %
    DotumChe                                  Modern      Regular        Central European        16 x 32   40 %
    DotumChe                                  Modern      Regular        Cyrillic                16 x 32   40 %
    DotumChe                                  Modern      Regular        Greek                   16 x 32   40 %
    DotumChe                                  Modern      Regular        Hangul                  16 x 32   40 %
    DotumChe                                  Modern      Regular        Turkish                 16 x 32   40 %
    DotumChe                                  Modern      Regular        Western                 16 x 32   40 %
    Edwardian Script ITC                      Script              Western                  8 x 38   40 %
    Elephant                                  Roman               Western                 16 x 41   40 %
    Engravers MT                              Roman               Western                 25 x 37   50 %
    Eras Bold ITC                             Swiss               Western                 16 x 37   40 %
    Eras Demi ITC                             Swiss               Western                 15 x 36   40 %
    Eras Light ITC                            Swiss               Western                 13 x 36   40 %
    Eras Medium ITC                           Swiss               Western                 14 x 36   40 %
    Estrangelo Edessa                         Script      Regular        Other                   13 x 32   40 %
    EucrosiaUPC                               Roman       Regular        Thai                     9 x 39   40 %
    Felix Titling                             Decorative          Western                 19 x 37   40 %
    Fixed Miriam Transparent                  Modern      Regular        Hebrew                  19 x 36   40 %
    Fixedsys                                  Swiss                      Cyrillic                 8 x 16   40 %
    Footlight MT Light                        Roman               Western                 13 x 34   30 %
    Forte                                     Script      Regular        Western                 14 x 35   40 %
    Franklin Gothic Book                      Swiss               Baltic                  13 x 36   40 %
    Franklin Gothic Book                      Swiss               Central European        13 x 36   40 %
    Franklin Gothic Book                      Swiss               Cyrillic                13 x 36   40 %
    Franklin Gothic Book                      Swiss               Greek                   13 x 36   40 %
    Franklin Gothic Book                      Swiss               Turkish                 13 x 36   40 %
    Franklin Gothic Book                      Swiss               Western                 13 x 36   40 %
    Franklin Gothic Demi Cond                 Swiss               Baltic                  12 x 36   40 %
    Franklin Gothic Demi Cond                 Swiss               Central European        12 x 36   40 %
    Franklin Gothic Demi Cond                 Swiss               Cyrillic                12 x 36   40 %
    Franklin Gothic Demi Cond                 Swiss               Greek                   12 x 36   40 %
    Franklin Gothic Demi Cond                 Swiss               Turkish                 12 x 36   40 %
    Franklin Gothic Demi Cond                 Swiss               Western                 12 x 36   40 %
    Franklin Gothic Demi                      Swiss               Baltic                  14 x 36   40 %
    Franklin Gothic Demi                      Swiss               Central European        14 x 36   40 %
    Franklin Gothic Demi                      Swiss               Cyrillic                14 x 36   40 %
    Franklin Gothic Demi                      Swiss               Greek                   14 x 36   40 %
    Franklin Gothic Demi                      Swiss               Turkish                 14 x 36   40 %
    Franklin Gothic Demi                      Swiss               Western                 14 x 36   40 %
    Franklin Gothic Heavy                     Swiss               Baltic                  15 x 36   40 %
    Franklin Gothic Heavy                     Swiss               Central European        15 x 36   40 %
    Franklin Gothic Heavy                     Swiss               Cyrillic                15 x 36   40 %
    Franklin Gothic Heavy                     Swiss               Greek                   15 x 36   40 %
    Franklin Gothic Heavy                     Swiss               Turkish                 15 x 36   40 %
    Franklin Gothic Heavy                     Swiss               Western                 15 x 36   40 %
    Franklin Gothic Medium Cond               Swiss               Baltic                  12 x 36   40 %
    Franklin Gothic Medium Cond               Swiss               Central European        12 x 36   40 %
    Franklin Gothic Medium Cond               Swiss               Cyrillic                12 x 36   40 %
    Franklin Gothic Medium Cond               Swiss               Greek                   12 x 36   40 %
    Franklin Gothic Medium Cond               Swiss               Turkish                 12 x 36   40 %
    Franklin Gothic Medium Cond               Swiss               Western                 12 x 36   40 %
    Franklin Gothic Medium                    Swiss               Baltic                  14 x 36   40 %
    Franklin Gothic Medium                    Swiss               Central European        14 x 36   40 %
    Franklin Gothic Medium                    Swiss               Cyrillic                14 x 36   40 %
    Franklin Gothic Medium                    Swiss               Greek                   14 x 36   40 %
    Franklin Gothic Medium                    Swiss               Turkish                 14 x 36   40 %
    Franklin Gothic Medium                    Swiss               Western                 14 x 36   40 %
    FrankRuehl                                Special     Regular        Hebrew                  13 x 30   40 %
    FreesiaUPC                                Swiss       Regular        Thai                     9 x 38   40 %
    Freestyle Script                          Script              Western                  8 x 38   40 %
    French Script MT                          Script              Western                  9 x 36   40 %
    Garamond                                  Roman               Baltic                  12 x 36   40 %
    Garamond                                  Roman               Central European        12 x 36   40 %
    Garamond                                  Roman               Cyrillic                12 x 36   40 %
    Garamond                                  Roman               Greek                   12 x 36   40 %
    Garamond                                  Roman               Turkish                 12 x 36   40 %
    Garamond                                  Roman               Western                 12 x 36   40 %
    Gautami                                   Special     Regular        Other                   13 x 56   40 %
    Georgia                                   Roman               Baltic                  14 x 36   40 %
    Georgia                                   Roman               Central European        14 x 36   40 %
    Georgia                                   Roman               Cyrillic                14 x 36   40 %
    Georgia                                   Roman               Greek                   14 x 36   40 %
    Georgia                                   Roman               Turkish                 14 x 36   40 %
    Georgia                                   Roman               Western                 14 x 36   40 %
    Gigi                                      Decorative          Western                 13 x 44   40 %
    Gill Sans MT Condensed                    Swiss               Central European        10 x 39   40 %
    Gill Sans MT Condensed                    Swiss               Western                 10 x 39   40 %
    Gill Sans MT Ext Condensed Bold           Swiss               Central European         7 x 38   40 %
    Gill Sans MT Ext Condensed Bold           Swiss               Western                  7 x 38   40 %
    Gill Sans MT                              Swiss          Central European        14 x 37   70 %
    Gill Sans MT                              Swiss          Western                 14 x 37   70 %
    Gill Sans Ultra Bold Condensed            Swiss               Central European        14 x 40   40 %
    Gill Sans Ultra Bold Condensed            Swiss               Western                 14 x 40   40 %
    Gill Sans Ultra Bold                      Swiss               Central European        20 x 40   40 %
    Gill Sans Ultra Bold                      Swiss               Western                 20 x 40   40 %
    Gloucester MT Extra Condensed             Roman       Regular        Western                  9 x 37   40 %
    Goudy Old Style                           Roman               Western                 13 x 36   40 %
    Goudy Stout                               Roman               Western                 36 x 44   40 %
    Guitar Pro 5                              Special     Regular        Western                 39 x 81   40 %
    Gulim                                     Swiss       Regular        Baltic                  16 x 32   40 %
    Gulim                                     Swiss       Regular        Central European        16 x 32   40 %
    Gulim                                     Swiss       Regular        Cyrillic                16 x 32   40 %
    Gulim                                     Swiss       Regular        Greek                   16 x 32   40 %
    Gulim                                     Swiss       Regular        Hangul                  16 x 32   40 %
    Gulim                                     Swiss       Regular        Turkish                 16 x 32   40 %
    Gulim                                     Swiss       Regular        Western                 16 x 32   40 %
    GulimChe                                  Modern      Regular        Baltic                  16 x 32   40 %
    GulimChe                                  Modern      Regular        Central European        16 x 32   40 %
    GulimChe                                  Modern      Regular        Cyrillic                16 x 32   40 %
    GulimChe                                  Modern      Regular        Greek                   16 x 32   40 %
    GulimChe                                  Modern      Regular        Hangul                  16 x 32   40 %
    GulimChe                                  Modern      Regular        Turkish                 16 x 32   40 %
    GulimChe                                  Modern      Regular        Western                 16 x 32   40 %
    Gungsuh                                   Roman       Regular        Baltic                  16 x 32   40 %
    Gungsuh                                   Roman       Regular        Central European        16 x 32   40 %
    Gungsuh                                   Roman       Regular        Cyrillic                16 x 32   40 %
    Gungsuh                                   Roman       Regular        Greek                   16 x 32   40 %
    Gungsuh                                   Roman       Regular        Hangul                  16 x 32   40 %
    Gungsuh                                   Roman       Regular        Turkish                 16 x 32   40 %
    Gungsuh                                   Roman       Regular        Western                 16 x 32   40 %
    GungsuhChe                                Modern      Regular        Baltic                  16 x 32   40 %
    GungsuhChe                                Modern      Regular        Central European        16 x 32   40 %
    GungsuhChe                                Modern      Regular        Cyrillic                16 x 32   40 %
    GungsuhChe                                Modern      Regular        Greek                   16 x 32   40 %
    GungsuhChe                                Modern      Regular        Hangul                  16 x 32   40 %
    GungsuhChe                                Modern      Regular        Turkish                 16 x 32   40 %
    GungsuhChe                                Modern      Regular        Western                 16 x 32   40 %
    Haettenschweiler                          Swiss               Baltic                  10 x 33   40 %
    Haettenschweiler                          Swiss               Central European        10 x 33   40 %
    Haettenschweiler                          Swiss               Cyrillic                10 x 33   40 %
    Haettenschweiler                          Swiss               Greek                   10 x 33   40 %
    Haettenschweiler                          Swiss               Turkish                 10 x 33   40 %
    Haettenschweiler                          Swiss               Western                 10 x 33   40 %
    Harlow Solid Italic                       Decorative  Italic         Western                 12 x 40   40 %
    Harrington                                Decorative          Western                 14 x 38   40 %
    High Tower Text                           Roman               Western                 13 x 37   40 %
    Impact                                    Swiss               Baltic                  13 x 39   40 %
    Impact                                    Swiss               Central European        13 x 39   40 %
    Impact                                    Swiss               Cyrillic                13 x 39   40 %
    Impact                                    Swiss               Greek                   13 x 39   40 %
    Impact                                    Swiss               Turkish                 13 x 39   40 %
    Impact                                    Swiss               Western                 13 x 39   40 %
    Imprint MT Shadow                         Decorative          Western                 13 x 38   40 %
    Informal Roman                            Script              Western                 12 x 32   40 %
    IrisUPC                                   Swiss       Regular        Thai                     9 x 40   40 %
    JasmineUPC                                Roman       Regular        Thai                     9 x 34   40 %
    Jokerman                                  Decorative          Western                 16 x 48   40 %
    Juice ITC                                 Decorative          Western                  9 x 36   40 %
    KodchiangUPC                              Roman       Regular        Thai                     9 x 31   40 %
    Kristen ITC                               Script              Western                 16 x 44   40 %
    Kunstler Script                           Script              Western                  8 x 35   40 %
    Latha                                     Special     Regular        Other                   29 x 44   40 %
    Levenim MT                                Special     Regular        Hebrew                  16 x 42   40 %
    LilyUPC                                   Swiss       Regular        Thai                     9 x 30   40 %
    Lucida Bright                             Roman       Regular        Western                 16 x 36   40 %
    Lucida Calligraphy                        Script      Italic         Western                 17 x 40   40 %
    Lucida Console                            Modern              Central European        19 x 32   40 %
    Lucida Console                            Modern              Cyrillic                19 x 32   40 %
    Lucida Console                            Modern              Greek                   19 x 32   40 %
    Lucida Console                            Modern              Turkish                 19 x 32   40 %
    Lucida Console                            Modern              Western                 19 x 32   40 %
    Lucida Fax                                Roman       Regular        Western                 16 x 37   40 %
    Lucida Handwriting                        Script      Italic         Western                 18 x 41   40 %
    Lucida Sans Typewriter                    Modern      Regular        Western                 19 x 36   40 %
    Lucida Sans Unicode                       Swiss               Central European        16 x 49   40 %
    Lucida Sans Unicode                       Swiss               Cyrillic                16 x 49   40 %
    Lucida Sans Unicode                       Swiss               Greek                   16 x 49   40 %
    Lucida Sans Unicode                       Swiss               Hebrew                  16 x 49   40 %
    Lucida Sans Unicode                       Swiss               Turkish                 16 x 49   40 %
    Lucida Sans Unicode                       Swiss               Western                 16 x 49   40 %
    Lucida Sans                               Swiss       Regular        Western                 16 x 36   40 %
    Magneto                                   Decorative       Western                 18 x 39   70 %
    Maiandra GD                               Swiss               Western                 14 x 38   40 %
    Mangal                                    Special     Regular        Other                   18 x 54   40 %
    Marlett                                   Special     Regular        Symbol                  31 x 32   50 %
    Matura MT Script Capitals                 Script              Western                 14 x 43   40 %
    Microsoft Sans Serif                      Swiss               Arabic                  14 x 36   40 %
    Microsoft Sans Serif                      Swiss               Baltic                  14 x 36   40 %
    Microsoft Sans Serif                      Swiss               Central European        14 x 36   40 %
    Microsoft Sans Serif                      Swiss               Cyrillic                14 x 36   40 %
    Microsoft Sans Serif                      Swiss               Greek                   14 x 36   40 %
    Microsoft Sans Serif                      Swiss               Hebrew                  14 x 36   40 %
    Microsoft Sans Serif                      Swiss               Thai                    14 x 36   40 %
    Microsoft Sans Serif                      Swiss               Turkish                 14 x 36   40 %
    Microsoft Sans Serif                      Swiss               Vietnamese              14 x 36   40 %
    Microsoft Sans Serif                      Swiss               Western                 14 x 36   40 %
    MingLiU                                   Modern      Regular        CHINESE_BIG5            16 x 32   40 %
    MingLiU                                   Modern      Regular        Western                 16 x 32   40 %
    Miriam Fixed                              Modern      Regular        Hebrew                  19 x 32   40 %
    Miriam Transparent                        Special     Regular        Hebrew                  13 x 39   40 %
    Miriam                                    Special     Regular        Hebrew                  13 x 32   40 %
    Mistral                                   Script              Baltic                  10 x 39   40 %
    Mistral                                   Script              Central European        10 x 39   40 %
    Mistral                                   Script              Cyrillic                10 x 39   40 %
    Mistral                                   Script              Greek                   10 x 39   40 %
    Mistral                                   Script              Turkish                 10 x 39   40 %
    Mistral                                   Script              Western                 10 x 39   40 %
    Modern No. 20                             Roman               Western                 13 x 33   40 %
    Modern                                    Modern                     OEM/DOS                 19 x 37   40 %
    Monotype Corsiva                          Script              Baltic                  11 x 35   40 %
    Monotype Corsiva                          Script              Central European        11 x 35   40 %
    Monotype Corsiva                          Script              Cyrillic                11 x 35   40 %
    Monotype Corsiva                          Script              Greek                   11 x 35   40 %
    Monotype Corsiva                          Script              Turkish                 11 x 35   40 %
    Monotype Corsiva                          Script              Western                 11 x 35   40 %
    MS Dialog Light                           Swiss                      Western                  7 x 10   40 %
    MS Dialog                                 Swiss                      Western                  8 x 10   70 %
    MS Gothic                                 Modern      Regular        Baltic                  16 x 32   40 %
    MS Gothic                                 Modern      Regular        Central European        16 x 32   40 %
    MS Gothic                                 Modern      Regular        Cyrillic                16 x 32   40 %
    MS Gothic                                 Modern      Regular        Greek                   16 x 32   40 %
    MS Gothic                                 Modern      Regular        Japanese                16 x 32   40 %
    MS Gothic                                 Modern      Regular        Turkish                 16 x 32   40 %
    MS Gothic                                 Modern      Regular        Western                 16 x 32   40 %
    MS Mincho                                 Modern      Regular        Baltic                  16 x 32   40 %
    MS Mincho                                 Modern      Regular        Central European        16 x 32   40 %
    MS Mincho                                 Modern      Regular        Cyrillic                16 x 32   40 %
    MS Mincho                                 Modern      Regular        Greek                   16 x 32   40 %
    MS Mincho                                 Modern      Regular        Japanese                16 x 32   40 %
    MS Mincho                                 Modern      Regular        Turkish                 16 x 32   40 %
    MS Mincho                                 Modern      Regular        Western                 16 x 32   40 %
    MS Outlook                                Special             Symbol                  31 x 33   40 %
    MS PGothic                                Swiss       Regular        Baltic                  13 x 32   40 %
    MS PGothic                                Swiss       Regular        Central European        13 x 32   40 %
    MS PGothic                                Swiss       Regular        Cyrillic                13 x 32   40 %
    MS PGothic                                Swiss       Regular        Greek                   13 x 32   40 %
    MS PGothic                                Swiss       Regular        Japanese                13 x 32   40 %
    MS PGothic                                Swiss       Regular        Turkish                 13 x 32   40 %
    MS PGothic                                Swiss       Regular        Western                 13 x 32   40 %
    MS PMincho                                Roman       Regular        Baltic                  13 x 32   40 %
    MS PMincho                                Roman       Regular        Central European        13 x 32   40 %
    MS PMincho                                Roman       Regular        Cyrillic                13 x 32   40 %
    MS PMincho                                Roman       Regular        Greek                   13 x 32   40 %
    MS PMincho                                Roman       Regular        Japanese                13 x 32   40 %
    MS PMincho                                Roman       Regular        Turkish                 13 x 32   40 %
    MS PMincho                                Roman       Regular        Western                 13 x 32   40 %
    MS Reference Sans Serif                   Swiss               Baltic                  16 x 39   40 %
    MS Reference Sans Serif                   Swiss               Central European        16 x 39   40 %
    MS Reference Sans Serif                   Swiss               Cyrillic                16 x 39   40 %
    MS Reference Sans Serif                   Swiss               Greek                   16 x 39   40 %
    MS Reference Sans Serif                   Swiss               Turkish                 16 x 39   40 %
    MS Reference Sans Serif                   Swiss               Vietnamese              16 x 39   40 %
    MS Reference Sans Serif                   Swiss               Western                 16 x 39   40 %
    MS Reference Specialty                    Special             Symbol                  23 x 39   40 %
    MS Sans Serif                             Swiss                      Cyrillic                 5 x 13   40 %
    MS Serif                                  Swiss                      Cyrillic                 5 x 10   40 %
    MS SystemEx                               Swiss                      Western                  9 x 12   70 %
    MS UI Gothic                              Swiss       Regular        Baltic                  13 x 32   40 %
    MS UI Gothic                              Swiss       Regular        Central European        13 x 32   40 %
    MS UI Gothic                              Swiss       Regular        Cyrillic                13 x 32   40 %
    MS UI Gothic                              Swiss       Regular        Greek                   13 x 32   40 %
    MS UI Gothic                              Swiss       Regular        Japanese                13 x 32   40 %
    MS UI Gothic                              Swiss       Regular        Turkish                 13 x 32   40 %
    MS UI Gothic                              Swiss       Regular        Western                 13 x 32   40 %
    MT Extra                                  Roman       Regular        Symbol                  20 x 32   40 %
    MV Boli                                   Special     Regular        Other                   16 x 52   40 %
    Narkisim                                  Special     Regular        Hebrew                  12 x 32   40 %
    Niagara Engraved                          Decorative          Western                  8 x 34   40 %
    Niagara Solid                             Decorative          Western                  8 x 34   40 %
    NSimSun                                   Modern      Regular        CHINESE_GB2312          16 x 32   40 %
    NSimSun                                   Modern      Regular        Western                 16 x 32   40 %
    OCR A Extended                            Modern              Western                 19 x 33   40 %
    Old English Text MT                       Script              Western                 12 x 39   40 %
    Onyx                                      Decorative          Western                  8 x 37   40 %
    Palace Script MT                          Script      Regular        Western                  7 x 30   40 %
    Palatino Linotype                         Roman               Baltic                  14 x 43   40 %
    Palatino Linotype                         Roman               Central European        14 x 43   40 %
    Palatino Linotype                         Roman               Cyrillic                14 x 43   40 %
    Palatino Linotype                         Roman               Greek                   14 x 43   40 %
    Palatino Linotype                         Roman               Turkish                 14 x 43   40 %
    Palatino Linotype                         Roman               Vietnamese              14 x 43   40 %
    Palatino Linotype                         Roman               Western                 14 x 43   40 %
    Papyrus                                   Script              Western                 13 x 50   40 %
    Parchment                                 Script              Western                  6 x 34   40 %
    Perpetua Titling MT                       Roman            Western                 21 x 39   70 %
    Perpetua                                  Roman          Western                 12 x 37   70 %
    Playbill                                  Decorative          Western                  8 x 32   40 %
    PMingLiU                                  Roman       Regular        CHINESE_BIG5            16 x 32   40 %
    PMingLiU                                  Roman       Regular        Western                 16 x 32   40 %
    Poor Richard                              Roman               Western                 12 x 36   40 %
    Pristina                                  Script              Western                 10 x 42   40 %
    Raavi                                     Special     Regular        Other                   18 x 53   40 %
    Rage Italic                               Script              Western                 11 x 40   40 %
    Ravie                                     Decorative          Western                 22 x 43   40 %
    Rockwell Condensed                        Roman            Western                 13 x 38   70 %
    Rockwell Extra Bold                       Roman               Western                 19 x 38   80 %
    Rockwell                                  Roman               Western                 15 x 38   40 %
    Rod Transparent                           Modern      Regular        Hebrew                  19 x 36   40 %
    Rod                                       Modern      Regular        Hebrew                  19 x 31   40 %
    Roman                                     Roman                      OEM/DOS                 22 x 37   40 %
    Script MT Bold                            Script      Regular        Western                 13 x 39   70 %
    Script                                    Script                     OEM/DOS                 16 x 36   40 %
    Segoe UI                                  Swiss               Arabic                  17 x 43   40 %
    Segoe UI                                  Swiss               Baltic                  17 x 43   40 %
    Segoe UI                                  Swiss               Central European        17 x 43   40 %
    Segoe UI                                  Swiss               Cyrillic                17 x 43   40 %
    Segoe UI                                  Swiss               Greek                   17 x 43   40 %
    Segoe UI                                  Swiss               Turkish                 17 x 43   40 %
    Segoe UI                                  Swiss               Vietnamese              17 x 43   40 %
    Segoe UI                                  Swiss               Western                 17 x 43   40 %
    Showcard Gothic                           Decorative          Western                 18 x 40   40 %
    Shruti                                    Special     Regular        Other                   19 x 54   40 %
    SimHei                                    Special     Regular        CHINESE_GB2312          16 x 32   40 %
    Simplified Arabic Fixed                   Modern      Regular        Arabic                  19 x 35   40 %
    Simplified Arabic                         Special     Regular        Arabic                  13 x 53   40 %
    SimSun                                    Special     Regular        CHINESE_GB2312          16 x 32   40 %
    SimSun                                    Special     Regular        Western                 16 x 32   40 %
    Small Fonts                               Swiss                      Cyrillic                  1 x 3   40 %
    Snap ITC                                  Decorative          Western                 19 x 41   40 %
    Stencil                                   Decorative          Western                 18 x 38   40 %
    Sylfaen                                   Roman               Baltic                  13 x 42   40 %
    Sylfaen                                   Roman               Central European        13 x 42   40 %
    Sylfaen                                   Roman               Cyrillic                13 x 42   40 %
    Sylfaen                                   Roman               Greek                   13 x 42   40 %
    Sylfaen                                   Roman               Turkish                 13 x 42   40 %
    Sylfaen                                   Roman               Western                 13 x 42   40 %
    Symbol                                    Roman       Regular        Symbol                  19 x 39   40 %
    System                                    Swiss                      Cyrillic                 7 x 16   70 %
    Tahoma                                    Swiss            Arabic                  16 x 39   70 %
    Tahoma                                    Swiss            Baltic                  16 x 39   70 %
    Tahoma                                    Swiss            Central European        16 x 39   70 %
    Tahoma                                    Swiss            Cyrillic                16 x 39   70 %
    Tahoma                                    Swiss            Greek                   16 x 39   70 %
    Tahoma                                    Swiss            Hebrew                  16 x 39   70 %
    Tahoma                                    Swiss            Thai                    16 x 39   70 %
    Tahoma                                    Swiss            Turkish                 16 x 39   70 %
    Tahoma                                    Swiss            Vietnamese              16 x 39   70 %
    Tahoma                                    Swiss            Western                 16 x 39   70 %
    Tempus Sans ITC                           Decorative          Western                 13 x 42   40 %
    Terminal                                  Modern                     OEM/DOS                  8 x 12   40 %
    Times New Roman                           Roman               Arabic                  13 x 35   40 %
    Times New Roman                           Roman               Baltic                  13 x 35   40 %
    Times New Roman                           Roman               Central European        13 x 35   40 %
    Times New Roman                           Roman               Cyrillic                13 x 35   40 %
    Times New Roman                           Roman               Greek                   13 x 35   40 %
    Times New Roman                           Roman               Hebrew                  13 x 35   40 %
    Times New Roman                           Roman               Turkish                 13 x 35   40 %
    Times New Roman                           Roman               Vietnamese              13 x 35   40 %
    Times New Roman                           Roman               Western                 13 x 35   40 %
    Traditional Arabic                        Special     Regular        Arabic                  13 x 48   40 %
    Trebuchet MS                              Swiss               Baltic                  15 x 37   40 %
    Trebuchet MS                              Swiss               Central European        15 x 37   40 %
    Trebuchet MS                              Swiss               Cyrillic                15 x 37   40 %
    Trebuchet MS                              Swiss               Greek                   15 x 37   40 %
    Trebuchet MS                              Swiss               Turkish                 15 x 37   40 %
    Trebuchet MS                              Swiss               Western                 15 x 37   40 %
    Tunga                                     Special     Regular        Other                   17 x 53   40 %
    Tw Cen MT Condensed Extra Bold            Swiss               Central European        12 x 35   40 %
    Tw Cen MT Condensed Extra Bold            Swiss               Western                 12 x 35   40 %
    Tw Cen MT Condensed                       Swiss               Central European        10 x 34   40 %
    Tw Cen MT Condensed                       Swiss               Western                 10 x 34   40 %
    Tw Cen MT                                 Swiss          Central European        12 x 35   70 %
    Tw Cen MT                                 Swiss          Western                 12 x 35   70 %
    Verdana                                   Swiss               Baltic                  16 x 39   40 %
    Verdana                                   Swiss               Central European        16 x 39   40 %
    Verdana                                   Swiss               Cyrillic                16 x 39   40 %
    Verdana                                   Swiss               Greek                   16 x 39   40 %
    Verdana                                   Swiss               Turkish                 16 x 39   40 %
    Verdana                                   Swiss               Vietnamese              16 x 39   40 %
    Verdana                                   Swiss               Western                 16 x 39   40 %
    Viner Hand ITC                            Script              Western                 15 x 52   40 %
    Vivaldi                                   Script               Western                  9 x 38   40 %
    Vladimir Script                           Script              Western                 10 x 39   40 %
    Webdings                                  Roman               Symbol                  31 x 32   40 %
    Wide Latin                                Roman               Western                 26 x 39   40 %
    Wingdings 2                               Roman       Regular        Symbol                  27 x 34   40 %
    Wingdings 3                               Roman       Regular        Symbol                  25 x 36   40 %
    Wingdings                                 Special     Regular        Symbol                  28 x 36   40 %


--------[  Windows ]-----------------------------------------------------------------------------------------------

    midi-out.0   0001 0066  Microsoft GS Wavetable SW Synth
    mixer.0      0001 0068  Realtek HD Audio output
    mixer.1      0001 0068  Realtek HD Audio Input
    wave-in.0    0001 0065  Realtek HD Audio Input
    wave-out.0   0001 0064  Realtek HD Audio output


--------[  PCI / PnP ]---------------------------------------------------------------------------------------------

    Realtek ALC1200 @ Intel 82801JB ICH10 - High Definition Audio Controller          PCI


--------[ HD Audio ]----------------------------------------------------------------------------------------------------

  [ Intel 82801JB ICH10 - High Definition Audio Controller ]

     :
                                      Intel 82801JB ICH10 - High Definition Audio Controller
        (Windows)                     Microsoft UAA Bus Driver for High Definition Audio
                                                 PCI
      ID                                      8086-3A3E
                               1043-82FE
                                                  00
       ID                                     PCI\VEN_8086&DEV_3A3E&SUBSYS_82FE1043&REV_00

  [ Realtek ALC1200 ]

     :
                                      Realtek ALC1200
        (Windows)                     Realtek High Definition Audio
                                           Audio
                                                 HDAUDIO
      ID                                      10EC-0888
                               1043-82FE
                                                  1001
       ID                                     HDAUDIO\FUNC_01&VEN_10EC&DEV_0888&SUBSYS_104382FE&REV_1001


--------[   ]------------------------------------------------------------------------------------------------

  [ DSP Group TrueSpeech(TM) Software CODEC ]

      ACM:
                                        DSP Group TrueSpeech(TM) Software CODEC
      Copyright-                                  Copyright (C) 1993-1996 DSP Group, Inc.
                                  TrueSpeech is a trademark of DSP Group, Inc., Santa Clara, California.
                                         Compresses and decompresses DSP Group TrueSpeech(TM) audio data.
                                          1.00

  [ Fraunhofer IIS MPEG Layer-3 Codec (advanced) ]

      ACM:
                                        Fraunhofer IIS MPEG Layer-3 Codec (advanced)
      Copyright-                                  Copyright  1996-1999 Fraunhofer Institut Integrierte Schaltungen IIS
                                         bitrates up to 56kBit/s, mono and stereo codec (advanced)
                                          1.09

  [ Microsoft ADPCM CODEC ]

      ACM:
                                        Microsoft ADPCM CODEC
      Copyright-                                  Copyright (C) 1992-1996 Microsoft Corporation
                                         Compresses and decompresses Microsoft ADPCM audio data.
                                          4.00

  [ Microsoft CCITT G.711 A-Law and u-Law CODEC ]

      ACM:
                                        Microsoft CCITT G.711 A-Law and u-Law CODEC
      Copyright-                                  Copyright (c) 1993-1996 Microsoft Corporation
                                         Compresses and decompresses CCITT G.711 A-Law and u-Law audio data.
                                          4.00

  [ Microsoft G.723.1 CODEC ]

      ACM:
                                        Microsoft G.723.1 CODEC
      Copyright-                                  Copyright  1996 Intel Corporation and Microsoft Corporation
                                         Compresses and decompresses G.723.1 audio data.
                                          1.02

  [ Microsoft GSM 6.10 Audio CODEC ]

      ACM:
                                        Microsoft GSM 6.10 Audio CODEC
      Copyright-                                  Copyright (C) 1993-1996 Microsoft Corporation
                                         Compresses and decompresses audio data conforming to the ETSI-GSM (European Telecommunications Standards Institute-Groupe Special Mobile) recommendation 6.10.
                                          4.00

  [ Microsoft IMA ADPCM CODEC ]

      ACM:
                                        Microsoft IMA ADPCM CODEC
      Copyright-                                  Copyright (C) 1992-1996 Microsoft Corporation
                                         Compresses and decompresses IMA ADPCM audio data.
                                          4.00

  [ Microsoft PCM Converter ]

      ACM:
                                        Microsoft PCM Converter
      Copyright-                                  Copyright (C) 1992-1996 Microsoft Corporation
                                         Converts frequency and bits per sample of PCM audio data.
                                          5.00

  [ Sipro Lab Telecom ACELP.net audio codec ]

      ACM:
                                        Sipro Lab Telecom ACELP.net audio codec
      Copyright-                                  Copyright  1995-99 Sipro Lab Telecom Inc., Montreal
                                         ACELP.net audio encoder/decoder. For licensing please access  HTTP: //www.sipro.com
                                          3.02

  [ Windows Media Audio ]

      ACM:
                                        Windows Media Audio
      Copyright-                                  Copyright (C) Microsoft Corporation, 1999 - 2001
                                         Compresses and decompresses audio data.
                                          4.02


--------[   ]------------------------------------------------------------------------------------------------

    ir50_32.dll                R.5.10.15.2.55                      Indeo video 5.10
    iccvid.dll                 1.10.0.11                           Cinepak Codec
    ir32_32.dll                                                    
    ir41_32.ax                 4.51.16.03                          Intel Indeo Video 4.5
    iyuv_32.dll                5.2.3790.1830 (srv03_sp1_rtm.050324-1447)  Intel Indeo(R) Video YUV Codec
    mpg4c32.dll                4.1.00.3920                         Microsoft MPEG-4 Video Codec
    msh261.drv                 5.2.3790.1830                       Microsoft H.261 ICM Driver
    msh263.drv                 5.2.3790.1830                       Microsoft H.263 ICM Driver
    msrle32.dll                5.2.3790.0 (srv03_rtm.030324-2048)  Microsoft RLE Compressor
    msvidc32.dll               5.2.3790.0 (srv03_rtm.030324-2048)  Microsoft Video 1 Compressor
    msyuv.dll                  5.2.3790.0 (srv03_rtm.030324-2048)  Microsoft UYVY Video Decompressor
    tsbyuv.dll                 5.2.3790.0 (srv03_rtm.030324-2048)  Toshiba Video Codec


--------[ MCI ]---------------------------------------------------------------------------------------------------------

  [ AVIVideo ]

      MCI:
                                              AVIVideo
                                                     Video for Windows
                                                Video For Windows MCI driver
                                                     Digital Video Device
                                                 mciavi32.dll
                                                  

      MCI:
                                     
                                  
                                      
                                         
                                 
                                                  
                                        
      ''                             
                                      
                                         
                                         
                                            
                                          
                                          
                                

  [ CDAudio ]

      MCI:
                                              CDAudio
                                                     CD Audio
                                                MCI driver for cdaudio devices
                                                     CD Audio Device
                                                 mcicda.dll
                                                  

      MCI:
                                     
                                  
                                      
                                         
                                                  
                                        
                                          
                                          

  [ MPEGVideo ]

      MCI:
                                              MPEGVideo
                                                     DirectShow
                                                DirectShow MCI Driver
                                                     Digital Video Device
                                                 mciqtz32.dll
                                                  

      MCI:
                                     
                                  
                                      
                                         
                                 
                                                  
                                        
      ''                             
                                      
                                         
                                         
                                            
                                          
                                          
                                

  [ Sequencer ]

      MCI:
                                              Sequencer
                                                     MIDI Sequencer
                                                MCI driver for MIDI sequencer
                                                     Sequencer Device
                                                 mciseq.dll
                                                  

      MCI:
                                     
                                  
                                      
                                         
                                                  
                                        
                                          
                                          

  [ WaveAudio ]

      MCI:
                                              WaveAudio
                                                     Sound
                                                MCI driver for waveform audio
                                                     Waveform Audio Device
                                                 mciwave.dll
                                                  

      MCI:
                                     
                                  
                                      
                                         
                                                  
                                        
                                          
                                          


--------[   Windows ]-------------------------------------------------------------------------------------

  [ Floppy disk drive ]

     :
                                        Floppy disk drive
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          flpydisk.inf

  [ JetFlash TS2GJF150 USB Device ]

     :
                                        JetFlash TS2GJF150 USB Device
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          disk.inf

  [ Kingston DataTraveler 2.0 USB Device ]

     :
                                        Kingston DataTraveler 2.0 USB Device
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          disk.inf

  [ WDC WD1200JS-22MHB0 ]

     :
                                        WDC WD1200JS-22MHB0
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          disk.inf

     :
                                                   Western Digital Corporation
                                     http://www.westerndigital.com/en/products

  [ _NEC DVD_RW ND-3540A SCSI CdRom Device ]

     :
                                        _NEC DVD_RW ND-3540A SCSI CdRom Device
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          cdrom.inf

      :
                                           NEC
                                           DVD+RW/DVD-RW
                                               ATAPI

     :
      DVD+R9 Dual Layer                                 8x
      DVD+R                                             16x
      DVD+RW                                            8x
      DVD-R9 Dual Layer                                 4x
      DVD-R                                             16x
      DVD-RW                                            6x
      CD-R                                              48x
      CD-RW                                             32x

     :
      DVD-ROM                                           16x
      CD-ROM                                            48x

     :
                                                   Sony NEC Optiarc Inc.
                                     http://www.sonynec-optiarc.com/products/index.html
       firmware                                 http://www.sonynec-optiarc.com

  [ GTQRWDC IZW9QNOLI SCSI CdRom Device ]

     :
                                        GTQRWDC IZW9QNOLI SCSI CdRom Device
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          cdrom.inf

  [ Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26 ]

     :
                                        Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
                                            25.02.2008
                                          9.0.0.1005
                                       Intel
      INF-                                          oem3.inf

     :
      IRQ                                               19
                                                    A400-A40F
                                                    A480-A48F
                                                    A800-A803
                                                    A880-A887
                                                    AC00-AC03
                                                    B000-B007

  [ Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20 ]

     :
                                        Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20
                                            25.02.2008
                                          9.0.0.1005
                                       Intel
      INF-                                          oem3.inf

     :
      IRQ                                               19
                                                    9400-940F
                                                    9480-948F
                                                    9800-9803
                                                    9880-9887
                                                    9C00-9C03
                                                    A000-A007

  [ Primary IDE Channel ]

     :
                                        Primary IDE Channel
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          mshdc.inf

  [ Primary IDE Channel ]

     :
                                        Primary IDE Channel
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          mshdc.inf

  [ Secondary IDE Channel ]

     :
                                        Secondary IDE Channel
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          mshdc.inf

  [ Secondary IDE Channel ]

     :
                                        Secondary IDE Channel
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          mshdc.inf

  [ Standard floppy disk controller ]

     :
                                        Standard floppy disk controller
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          fdc.inf

     :
      DMA                                               02
      IRQ                                               06
                                                    03F0-03F5
                                                    03F7-03F7

  [ A64FS6YR IDE Controller ]

     :
                                        A64FS6YR IDE Controller

     :
      IRQ                                               09
                                                    FFE0-FFEF

  [ Marvell 61xx RAID Controller ]

     :
                                        Marvell 61xx RAID Controller
                                            23.06.2008
                                          1.2.0.57
                                       Marvell Inc.
      INF-                                          oem8.inf

     :
      IRQ                                               16
                                                  FEAFFC00-FEAFFFFF
                                                    E400-E40F
                                                    E480-E483
                                                    E800-E807
                                                    E880-E883
                                                    EC00-EC07

     :
                                                   Marvell Semiconductor, Inc.
                                     http://www.marvell.com/products/storage/index.jsp
                                       http://www.marvell.com/products/storage/index.jsp
                                     http://driveragent.com?ref=59


--------[   ]--------------------------------------------------------------------------------------------

    A:                                                                                                                     
    C:                                               NTFS          17171       15075        2095    12 %  E0AA-F022
    D: (Games)                                       NTFS          97284       85843       11440    12 %  80C1-C7EA
    E: (CSS_4)                                   CDFS            503         503           0     0 %  60CB-852B
    F:                                                                                                               
    G: (KINGSTON)                                      FAT32           244         231          12     5 %  4CFB-A5E8
    H: (FLESHKO)                                       FAT32          1956        1408         548    28 %  5C7B-F3A0


--------[   ]--------------------------------------------------------------------------------------------

  [  #1 - WDC WD1200JS-22MHB0 (111 ) ]

    #1 ()    NTFS             C:                                              0 MB    17171 MB
    #2               NTFS             D: (Games)                                  17171 MB    97284 MB

  [  #2 - KingstonDataTraveler 2.0 (245 ) ]

    #1 ()    FAT32            G:                                              0 MB      244 MB

  [  #3 - JetFlashTS2GJF150 (1960 ) ]

    #1               FAT16            H:                                              0 MB     1959 MB


--------[   ]---------------------------------------------------------------------------------------

  [ E:\  _NEC DVD_RW ND-3540A SCSI CdRom Device ]

      :
                                      _NEC DVD_RW ND-3540A SCSI CdRom Device
                                           58FCR54S112
       firmware                                   1.01
       firmware                                     16.03.2005
                                             2 
                                           NEC
                                           DVD+RW/DVD-RW
                                               ATAPI

     :
      DVD+R9 Dual Layer                                 8x
      DVD+R                                             16x
      DVD+RW                                            8x
      DVD-R9 Dual Layer                                 4x
      DVD-R                                             16x
      DVD-RW                                            6x
      CD-R                                              48x
      CD-RW                                             32x

     :
      DVD-ROM                                           16x
      CD-ROM                                            48x

      :
      BD-ROM                                             
      BD-R                                               
      BD-RE                                              
      HD DVD-ROM                                         
      HD DVD-R                                           
      HD DVD-RW                                          
      DVD-ROM                                           
      DVD+R9 Dual Layer                                  + 
      DVD+R                                              + 
      DVD+RW                                             + 
      DVD-R9 Dual Layer                                  + 
      DVD-R                                              + 
      DVD-RW                                             + 
      DVD-RAM                                            
      CD-ROM                                            
      CD-R                                               + 
      CD-RW                                              + 

      :
      Buffer Underrun Protection                        
      C2 Error Pointers                                 
      CD+G                                               
      CD-Text                                           
      Hybrid Disc                                        
      JustLink                                          
      LabelFlash                                         
      Layer-Jump Recording                               
      LightScribe                                        
      Mount Rainier                                      
      SMART                                              
      CSS                                               
      CPRM                                              
      AACS                                               
      VCPS                                               
      BD CPS                                             

     :
                                                   Sony NEC Optiarc Inc.
                                     http://www.sonynec-optiarc.com/products/index.html
       firmware                                 http://www.sonynec-optiarc.com

  [ F:\  GTQRWDC IZW9QNOLI SCSI CdRom Device ]

      :
                                      GTQRWDC IZW9QNOLI SCSI CdRom Device
       firmware                                   3.5Z
                                             128 
                                              
                               5
                                      4

      :
      BD-ROM                                            
      BD-R                                              
      BD-RE                                             
      HD DVD-ROM                                        
      HD DVD-R                                          
      HD DVD-RW                                         
      DVD-ROM                                           
      DVD+R9 Dual Layer                                 
      DVD+R                                             
      DVD+RW                                            
      DVD-R9 Dual Layer                                 
      DVD-R                                             
      DVD-RW                                            
      DVD-RAM                                            
      CD-ROM                                            
      CD-R                                              
      CD-RW                                             

      :
      Buffer Underrun Protection                         
      C2 Error Pointers                                 
      CD+G                                              
      CD-Text                                           
      Hybrid Disc                                        
      JustLink                                           
      LabelFlash                                         
      Layer-Jump Recording                               
      LightScribe                                        
      Mount Rainier                                      
      SMART                                              
      CSS                                                
      CPRM                                               
      AACS                                               
      VCPS                                               
      BD CPS                                             


--------[ ASPI ]--------------------------------------------------------------------------------------------------------

    03  00  00         WDC WD12  00JS-22MHB0             
    03  07  00  -             atapi                             
    04  00  00       _NEC      DVD_RW ND-3540A   1.01  
    04  07  00  -             mv61xx                            
    04  14  00  ArrayPeripheral          MARVELL   Virtual Device    1.00  
    05  00  00       GTQRWDC   IZW9QNOLI         3.5Z  
    05  07  00  -             a64fs6yr                          


--------[ ATA ]---------------------------------------------------------------------------------------------------------

  [ WDC WD1200JS-22MHB0 (WD-WMANP1028059) ]

      ATA:
      ID                                          WDC WD1200JS-22MHB0
                                           WD-WMANP1028059
                                                  02.01C03
                                           SATA-II
                                               : 232581, : 16,   : 63,   : 512
       LBA                                       234441648
                                                   8 
                                           16
       ECC                                         50
                                114473 

      ATA:
      48-bit LBA                                        
       (APM)                             
      Automatic Acoustic Management                     , 
      Device Configuration Overlay                      
      DMA Setup Auto-Activate                            
      General Purpose Logging                           
      Host Protected Area                               , 
      In-Order Data Delivery                             
      Native Command Queuing                             
      Phy Event Counters                                
                                          , 
      Power-Up In Standby                                
      Read Look-Ahead                                   , 
      Release Interrupt                                  
                                       , 
      SMART                                             , 
      SMART Error Logging                               
      SMART Self-Test                                   
      Software Settings Preservation                    , 
      Streaming                                          
      Tagged Command Queuing                             
                                               , 

     ATA-:
                                                   Western Digital Corporation
                                     http://www.westerndigital.com/en/products


--------[ SMART ]-------------------------------------------------------------------------------------------------------

  [ WDC WD1200JS-22MHB0 (WD-WMANP1028059) ]

    01  Raw Read Error Rate                  51   200  200           0  OK:  
    03  Spinup Time                          21   210  179        2491  OK:  
    04  Start/Stop Count                     0    98   98         2683  OK:  
    05  Reallocated Sector Count             140  200  200           0  OK:  
    07  Seek Error Rate                      51   200  200           0  OK:  
    09  Power-On Time Count                  0    83   83        13102  OK:  
    0A  Spinup Retry Count                   51   100  100           0  OK:  
    0B  Calibration Retry Count              51   100  100           0  OK:  
    0C  Power Cycle Count                    0    98   98         2625  OK:  
    BE  Airflow Temperature                  45   66   1            34  OK:  
    C2  Temperature                          0    113  1            34  OK:  
    C4  Reallocation Event Count             0    200  200           0  OK:  
    C5  Current Pending Sector Count         0    200  200           0  OK:  
    C6  Offline Uncorrectable Sector Count   0    200  200           0  OK:  
    C7  Ultra ATA CRC Error Rate             0    200  200           1  OK:  
    C8  Write Error Rate                     51   200  200           0  OK:  


--------[  Windows ]------------------------------------------------------------------------------------------------

  [ Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller ]

      :
                                          Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller
                                           Ethernet
                                         00-22-15-F0-EE-81
                                              Local Area Connection
                                      10 Mbps
      MTU                                               1500 
      DHCP-                               09.11.2009 0:23:35
      DHCP-                               06.02.2106 22:28:15
                                            0
                                          0

      :
      DHCP                                              255.255.255.255

      :
                                                   Atheros Communications, Inc.
                                     http://www.atheros.com/pt
                                       http://www.atheros.com
                                     http://driveragent.com?ref=59


--------[  PCI / PnP ]----------------------------------------------------------------------------------------------

    Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller                            PCI


--------[ RAS ]---------------------------------------------------------------------------------------------------------

  [ Broadband Connection ]

     :
                                              Broadband Connection
                                                  
                                           pppoe
                                           WAN Miniport (PPPOE)
                                         Feb09qooer
        /                                 
                                         pppoe
                                     
      IP-                                          
      DNS-                                        
      WINS-                                       
                                        TCP/IP
                                    PPP
                                

     :
                           
                                       
                                               
       IP-                               
                                       
       PPP LCP                                
                                 
                              
                            
       MS-                  
                               
                                


--------[  ]----------------------------------------------------------------------------------------------------

     :
                                        http://www.ya.ru/
                                          http://search.qip.ru
                               D:\

     :
                                            

    LAN-:
                                            


--------[  ]----------------------------------------------------------------------------------------------------

                127.0.0.0        255.0.0.0        127.0.0.1  1    127.0.0.1 (MS TCP Loopback interface)
          255.255.255.255  255.255.255.255  255.255.255.255  1    0.0.0.0 (Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller - Packet Scheduler Miniport)


--------[ IE Cookie ]---------------------------------------------------------------------------------------------------

    2009-10-11 00:22:53  administrator@getpic.info/
    2009-10-11 00:23:43  administrator@www.soft-internet.ru/
    2009-10-11 00:24:57  administrator@porno-fakt.com/
    2009-10-11 00:26:39  administrator@uploadbox.com/
    2009-10-11 00:27:02  administrator@depositfiles.com/ru/files/
    2009-10-11 00:27:16  administrator@depositfiles.com/
    2009-10-11 00:28:17  administrator@rts.pgmediaserve.com/
    2009-10-11 00:29:39  administrator@partypoker.com/
    2009-10-11 03:41:36  administrator@snap.com/
    2009-10-11 03:41:37  administrator@novochek.net/
    2009-10-11 03:45:14  administrator@forum.gameland.ru/
    2009-10-11 05:08:03  administrator@bs.serving-sys.com/
    2009-10-11 05:08:04  administrator@serving-sys.com/
    2009-10-11 05:08:06  administrator@live.com/
    2009-10-11 05:09:42  administrator@myslf.ucoz.ru/
    2009-10-11 05:09:42  administrator@myslf.ucoz.ru/publ
    2009-10-11 05:09:58  administrator@forum.wc-world.net/
    2009-10-11 05:11:44  administrator@www.goodgameserver.net/
    2009-10-11 05:18:01  administrator@akavita.com/
    2009-10-11 05:24:29  administrator@all.by/
    2009-10-11 05:32:12  administrator@forum.chitamedia.ru/
    2009-10-11 18:34:54  administrator@forum.gameplanet.by/
    2009-10-11 18:38:10  administrator@www.scourge.su/
    2009-10-11 18:41:13  administrator@elvis.org.ru/
    2009-10-11 18:41:19  administrator@213.163.89.56/pornpics/
    2009-10-11 18:45:05  administrator@recaptcha.net/
    2009-10-11 18:48:29  administrator@www.forum-wownati.ru/
    2009-10-11 18:50:08  administrator@wownati.ru/
    2009-10-11 18:53:12  administrator@cod.abestgame.ru/
    2009-10-11 18:54:20  administrator@abestgame.ru/
    2009-10-11 19:41:13  administrator@wow.mmotop.ru/
    2009-10-11 20:10:16  administrator@warik.net/
    2009-10-11 20:15:08  administrator@c.msn.com/
    2009-10-11 20:15:08  administrator@msnportal.112.2o7.net/
    2009-10-11 20:15:08  administrator@rad.msn.com/
    2009-10-11 20:15:27  administrator@www.msn.com/
    2009-10-11 20:24:59  administrator@fx.yandex.ru/
    2009-10-12 20:41:08  administrator@westbyte.com/
    2009-10-15 21:42:27  administrator@psy.passion.ru/l.php/
    2009-10-15 21:42:48  administrator@ex.passion.ru/
    2009-10-15 21:42:56  administrator@psy.passion.ru/
    2009-10-15 21:43:01  administrator@hit.gemius.pl/
    2009-10-15 21:43:02  administrator@videoclik.ru/
    2009-10-15 21:43:12  administrator@sms-controler.com/
    2009-10-17 00:07:57  administrator@auto.search.msn.com/
    2009-10-17 00:08:06  administrator@www.bing.com/
    2009-10-17 00:08:19  administrator@bing.com/search
    2009-10-17 00:08:25  administrator@c.bing.com/
    2009-10-17 00:08:26  administrator@bing.com/
    2009-10-19 00:07:07  administrator@siski-super.ru/
    2009-10-19 00:14:20  administrator@familiaresearch.com/
    2009-10-19 00:18:34  administrator@s.profitstat.biz/
    2009-10-19 00:18:42  administrator@seks-vkontakte.net/
    2009-10-19 00:24:20  administrator@totalcontroler.com/
    2009-10-19 00:37:37  administrator@coxer.ru/
    2009-10-19 00:37:38  administrator@vzroslye-znakomstva.ru/
    2009-10-26 23:18:11  administrator@atdmt.com/
    2009-10-26 23:18:48  administrator@rad.microsoft.com/
    2009-10-26 23:19:07  administrator@www.microsoft.com/
    2009-10-26 23:19:09  administrator@m.webtrends.com/
    2009-10-28 20:26:27  administrator@msn.com/
    2009-11-01 00:35:43  administrator@nvidia.com/
    2009-11-01 00:37:48  administrator@nvidia.ru/
    2009-11-02 14:18:06  administrator@www.xvidon.ru/
    2009-11-03 15:13:10  administrator@vip-file.com/
    2009-11-03 15:15:39  administrator@radeant.com/
    2009-11-03 15:24:06  administrator@animedot.ru/
    2009-11-03 18:03:49  administrator@c.bb.ru/
    2009-11-03 18:29:08  administrator@go.tx2.ru/informers
    2009-11-03 18:31:11  administrator@kinovuku.ru/
    2009-11-04 02:44:55  administrator@an.yandex.ru/
    2009-11-04 02:49:13  administrator@rb2.design.ru/
    2009-11-04 02:49:16  administrator@mbe.ru/adrevolver/
    2009-11-04 02:53:39  administrator@begun.ru/
    2009-11-04 03:05:39  administrator@top.gde.ru/
    2009-11-04 03:09:45  administrator@luxup.ru/
    2009-11-04 03:18:09  administrator@mochibot.com/
    2009-11-04 04:27:23  administrator@kulina.ru/
    2009-11-04 04:27:23  administrator@millionmenu.ru/
    2009-11-05 02:30:04  administrator@kazakmys.ru/
    2009-11-05 02:30:06  administrator@yahheo.com/
    2009-11-05 02:30:07  administrator@www.yablondinka.com/
    2009-11-05 02:33:09  administrator@ucozka.ucoz.ru/
    2009-11-05 02:35:17  administrator@ad.100-gen.tbn.ru/
    2009-11-05 02:35:17  administrator@ad.gen.tbn.ru/
    2009-11-05 02:41:35  administrator@ad10.bannerbank.ru/
    2009-11-05 02:42:29  administrator@193.169.12.107/freeporn/
    2009-11-05 02:49:09  administrator@classic.ben.ru/
    2009-11-05 02:49:11  administrator@pornotalk.org/
    2009-11-05 02:51:56  administrator@list.ru/
    2009-11-05 02:53:48  administrator@193.169.12.107/hardcore/
    2009-11-05 02:55:56  administrator@ad.text-ent.tbn.ru/
    2009-11-05 02:55:57  administrator@bannerbank.ru/
    2009-11-05 02:55:58  administrator@www.sexmult.ru/
    2009-11-07 03:19:35  administrator@vuku.ru/
    2009-11-07 11:37:36  administrator@ucoz.ru/
    2009-11-07 11:37:40  administrator@post.rmbn.ru/cgi-bin/
    2009-11-07 11:37:43  administrator@samlab.ws/
    2009-11-07 11:37:51  administrator@adriver.ru/
    2009-11-07 12:17:57  administrator@onlinestores.metaservices.microsoft.com/serviceswitching/
    2009-11-07 14:06:48  administrator@doubleclick.net/
    2009-11-07 14:13:00  administrator@www.marketgid.com/
    2009-11-07 14:13:10  administrator@minus15kg.ru
    2009-11-07 20:16:42  administrator@bigmir.net/
    2009-11-07 20:16:42  administrator@rambler.ru/
    2009-11-07 20:16:43  administrator@mail.ru/
    2009-11-07 20:16:43  administrator@proext.com/
    2009-11-07 20:16:52  administrator@spylog.com/
    2009-11-07 20:16:56  administrator@igrun.com/
    2009-11-08 11:08:37  administrator@store.steampowered.com/
    2009-11-08 11:08:56  administrator@steamcommunity.com/
    2009-11-08 13:39:50  administrator@yahoo.com/
    2009-11-08 13:39:51  administrator@tns-counter.ru/
    2009-11-08 13:39:52  administrator@yandex.ru/
    2009-11-08 13:40:27  administrator@mystat-in.net/
    2009-11-08 14:05:52  administrator@sexlist.com/
    2009-11-08 14:05:52  administrator@yadro.ru/
    2009-11-09 01:23:56  administrator@topdownloads.ru/
    2009-11-09 02:04:40  administrator@microsoft.com/


--------[   ]--------------------------------------------------------------------------------------------

    2009-11-06 19:38:11  Administrator@file:///C:/Documents%20and%20Settings/Administrator/Desktop/priceUNT.xls
    2009-11-06 22:14:13  Administrator@file:///D://%20%20%202008%20%202-5.AVI
    2009-11-06 22:16:18  Administrator@file:///C:/Documents%20and%20Settings/Administrator/Desktop/470u/01.png
    2009-11-07 01:44:11  Administrator@http://yandex.ru/yandsearch?text=%D0%BF%D0%BE%D1%80%D0%BD%D0%BE&stpar2=%2Fh1%2Ftm25%2Fs1&stpar4=%2Fs1&stpar1=%2Fu0
    2009-11-07 01:44:18  Administrator@http://yandex.ru/yandsearch?text=%D0%BF%D0%BE%D1%80%D0%BD%D0%BE&lr=225
    2009-11-07 01:46:23  Administrator@http://www.eroticpics-online.ru
    2009-11-07 01:47:02  Administrator@http://yandex.ru/yandsearch?text=%D0%B8%D0%BD%D1%86%D0%B5%D1%81%D1%82&lr=225&stpar2=%2Fh1%2Ftm159%2Fs3&stpar4=%2Fs3&stpar1=%2Fu0
    2009-11-07 01:47:45  Administrator@http://incest.sextut.ru
    2009-11-07 01:48:50  Administrator@http://rusmature.com/comics/v_forme.htm
    2009-11-07 01:49:19  Administrator@http://rusmature.com/comics/v_forme/v_forme_01.jpg
    2009-11-07 01:50:39  Administrator@http://rusmature.com/comics/v_forme/v_forme_02.jpg
    2009-11-07 01:51:56  Administrator@http://rusmature.com/comics/v_forme/v_forme_03.jpg
    2009-11-07 01:54:07  Administrator@http://rusmature.com/comics/v_forme/v_forme_04.jpg
    2009-11-07 01:55:01  Administrator@http://rusmature.com/comics/v_forme/v_forme_05.jpg
    2009-11-07 01:55:38  Administrator@http://rusmature.com/comics/v_forme/v_forme_06.jpg
    2009-11-07 01:56:45  Administrator@http://vuku.ru/thumbnails-89-0-page-0.html
    2009-11-07 01:57:14  Administrator@http://rusmature.com/comics/strogaia_uchitelnica.htm
    2009-11-07 01:57:32  Administrator@http://rusmature.com/comics/pianaya_dochka.htm
    2009-11-07 01:57:38  Administrator@http://rusmature.com/comics/pianaya_dochka/pianaya_dochka_01.jpg
    2009-11-07 01:57:58  Administrator@http://rusmature.com/comics/morozhennoe_s_papoi.htm
    2009-11-07 01:58:27  Administrator@http://rusmature.com/comics/family_swimming_pool.htm
    2009-11-07 01:58:48  Administrator@http://rusmature.com/comics/family_swimming_pool/family_swimming_pool_03.jpg
    2009-11-07 01:59:26  Administrator@http://rusmature.com/comics/family_swimming_pool/family_swimming_pool_09.jpg
    2009-11-07 01:59:59  Administrator@http://rusmature.com/comics/family_swimming_pool/family_swimming_pool_11.jpg
    2009-11-07 02:01:42  Administrator@http://vuku.ru/displayimage-89-0-18354.html
    2009-11-07 02:02:45  Administrator@http://rusmature.com/comics/clubnaya_suka.htm
    2009-11-07 02:03:45  Administrator@http://rusmature.com/comics/lara_jones_den_stressov.htm
    2009-11-07 02:04:39  Administrator@http://rusmature.com/comics/lara_jones_den_stressov/lara_jones_den_stressov_02.jpg
    2009-11-07 02:05:46  Administrator@http://rusmature.com/comics/lara_jones_den_stressov/lara_jones_den_stressov_03.jpg
    2009-11-07 02:08:20  Administrator@http://rusmature.com/comics/lara_jones_den_stressov/lara_jones_den_stressov_04.jpg
    2009-11-07 02:09:48  Administrator@http://rusmature.com/comics/lara_jones_den_stressov/lara_jones_den_stressov_05.jpg
    2009-11-07 02:12:02  Administrator@http://rusmature.com/comics/lara_jones_den_stressov/lara_jones_den_stressov_06.jpg
    2009-11-07 02:14:39  Administrator@http://rusmature.com/comics/lara_jones_den_stressov/lara_jones_den_stressov_07.jpg
    2009-11-07 02:21:50  Administrator@http://rusmature.com/comics/lara_jones_i_amazonki.htm
    2009-11-07 02:26:06  Administrator@http://vuku.ru/thumbnails-89-0-page-5.html
    2009-11-07 02:26:22  Administrator@http://vuku.ru/thumbnails-89-0-page-6.html
    2009-11-07 02:28:10  Administrator@http://vuku.ru/thumbnails-89-0-page-7.html
    2009-11-07 02:29:42  Administrator@http://vuku.ru/displayimage-89-0-16766.html
    2009-11-07 02:30:25  Administrator@http://rusmature.com/comics/lift.htm
    2009-11-07 02:32:23  Administrator@http://vuku.ru/thumbnails-89-0-page-8.html
    2009-11-07 02:33:16  Administrator@http://rusmature.com/comics/sex_teacher.htm
    2009-11-07 02:33:45  Administrator@http://rusmature.com/comics/sex_teacher/sex_teacher_02.jpg
    2009-11-07 02:34:38  Administrator@http://rusmature.com/comics/sex_teacher/sex_teacher_03.jpg
    2009-11-07 02:35:04  Administrator@http://rusmature.com/comics/sex_teacher/sex_teacher_04.jpg
    2009-11-07 02:35:48  Administrator@http://rusmature.com/comics/sex_teacher/sex_teacher_05.jpg
    2009-11-07 02:36:42  Administrator@http://rusmature.com/comics/hot_bhabhi.htm
    2009-11-07 02:36:55  Administrator@http://rusmature.com/comics/hot_bhabhi/hot_bhabhi_11.jpg
    2009-11-07 02:37:57  Administrator@http://rusmature.com/comics/moms_leg.htm
    2009-11-07 02:38:20  Administrator@http://rusmature.com/comics/moms_leg/moms_leg_08.jpg
    2009-11-07 02:38:31  Administrator@http://rusmature.com/comics/moms_leg/moms_leg_01.jpg
    2009-11-07 02:39:08  Administrator@http://rusmature.com/comics/moms_leg/moms_leg_03.jpg
    2009-11-07 02:40:12  Administrator@http://rusmature.com/comics/moms_leg/moms_leg_05.jpg
    2009-11-07 02:40:59  Administrator@http://rusmature.com/comics/moms_leg/moms_leg_06.jpg
    2009-11-07 02:43:10  Administrator@http://vuku.ru/displayimage-89-0-15498.html
    2009-11-07 02:50:58  Administrator@http://rusmature.com/comics/teens_at_play.htm
    2009-11-07 02:52:27  Administrator@http://rusmature.com/comics/happy_puppy.htm
    2009-11-07 02:52:53  Administrator@http://rusmature.com/comics/sex_lesson_for_sonny.htm
    2009-11-07 02:53:14  Administrator@http://rusmature.com/comics/sex_lesson_for_sonny/sex_lesson_for_sonny_24.jpg
    2009-11-07 02:54:28  Administrator@http://vuku.ru/thumbnails-89-0-page-9.html
    2009-11-07 02:54:38  Administrator@http://rusmature.com/comics/utrennya_gimnastika.htm
    2009-11-07 02:54:48  Administrator@http://rusmature.com/comics/utrennya_gimnastika/utrennya_gimnastika_01.jpg
    2009-11-07 02:55:19  Administrator@http://www.rusmature.com/pics/pandora2.htm
    2009-11-07 02:55:51  Administrator@http://rusmature.com/comics/utrenny_minet_bratu.htm
    2009-11-07 02:56:08  Administrator@http://rusmature.com/comics/v_gostiah_u_priatelia.htm
    2009-11-07 02:56:23  Administrator@http://rusmature.com/comics/mama_lutche.htm
    2009-11-07 02:56:59  Administrator@http://rusmature.com/comics/s_papoi_v_zooparke.htm
    2009-11-07 02:57:14  Administrator@http://rusmature.com/comics/ledenets_dlia_sestri.htm
    2009-11-07 02:57:30  Administrator@http://rusmature.com/comics/den_rozhdenia_sina.htm
    2009-11-07 02:58:06  Administrator@http://rusmature.com/comics/family_foursome.htm
    2009-11-07 02:58:22  Administrator@http://rusmature.com/comics/amanda_help_bro.htm
    2009-11-07 02:58:28  Administrator@http://rusmature.com/comics/amanda_help_bro/ahmbo_01.jpg
    2009-11-07 02:59:00  Administrator@http://rusmature.com/comics/amanda_help_bro/ahmbo_11.jpg
    2009-11-07 02:59:29  Administrator@http://rusmature.com/comics/amanda_lesbi.htm
    2009-11-07 03:00:30  Administrator@http://www.rusmature.com/pics/ttt/trunks_33.jpg
    2009-11-07 03:00:31  Administrator@http://www.rusmature.com/pics/ttt2.htm
    2009-11-07 03:00:48  Administrator@http://www.rusmature.com/pics/ttt/trunks_34.jpg
    2009-11-07 03:01:00  Administrator@http://www.rusmature.com/pics/ttt/trunks_35.jpg
    2009-11-07 03:01:27  Administrator@http://www.rusmature.com/pics/ttt/trunks_41.jpg
    2009-11-07 03:02:26  Administrator@http://www.rusmature.com/pics/mothersandaunts.htm
    2009-11-07 03:03:13  Administrator@http://rusmature.com/pics/laraandboys.htm
    2009-11-07 03:03:46  Administrator@http://rusmature.com/pics/cleaning.htm
    2009-11-07 03:03:59  Administrator@http://rusmature.com/pics/cleaning/jerkingoff_11.jpg
    2009-11-07 03:04:25  Administrator@http://rusmature.com/pics/cleaning/jerkingoff_13.jpg
    2009-11-07 03:04:34  Administrator@http://rusmature.com/pics/cleaning/jerkingoff_14.jpg
    2009-11-07 03:04:51  Administrator@http://rusmature.com/pics/cleaning/jerkingoff_16.jpg
    2009-11-07 03:05:19  Administrator@http://rusmature.com/pics/consulta.htm
    2009-11-07 03:06:32  Administrator@http://rusmature.com/pics/hilda1.htm
    2009-11-07 03:06:48  Administrator@http://rusmature.com/pics/hilda1/hilda-1-142.jpg
    2009-11-07 03:07:40  Administrator@http://www.rusmature.com/fromforum/borgia/image_95_MM_BG2_05-1.jpg
    2009-11-07 03:07:44  Administrator@http://www.rusmature.com/pics/borgia.htm
    2009-11-07 03:08:11  Administrator@http://www.rusmature.com/pics/beaver.htm
    2009-11-07 03:08:26  Administrator@http://www.rusmature.com/fromforum/Beaver/image_707_Beaver_01.jpg
    2009-11-07 03:08:46  Administrator@http://www.rusmature.com/fromforum/Beaver/image_707_Beaver_02.JPG
    2009-11-07 03:09:29  Administrator@http://www.rusmature.com/fromforum/Beaver/image_707_Beaver_05.JPG
    2009-11-07 03:10:16  Administrator@http://www.rusmature.com/fromforum/Beaver/image_707_Beaver_10.JPG
    2009-11-07 03:10:42  Administrator@http://www.rusmature.com/pics/incestgallery3.htm
    2009-11-07 03:10:48  Administrator@http://www.rusmature.com/pics/3/1009904353.jpg
    2009-11-07 03:11:20  Administrator@http://www.rusmature.com/pics/3/1009904472.jpg
    2009-11-07 03:11:46  Administrator@http://www.rusmature.com/pics/incestgallery4.htm
    2009-11-07 03:12:10  Administrator@http://www.rusmature.com/pics/incestgallery7.htm
    2009-11-07 03:12:50  Administrator@http://www.incest-hentai.rusmature.com
    2009-11-07 03:13:16  Administrator@http://www.rusmature.com/pics/mamakan3part3.htm
    2009-11-07 03:15:15  Administrator@http://yandex.ru/yandsearch?text=gjhyj&stpar2=%2Fh1%2Ftm40%2Fs1&stpar4=%2Fs1&stpar1=%2Fu0
    2009-11-07 03:15:17  Administrator@http://yandex.ru/yandsearch?text=gjhyj&lr=225
    2009-11-07 03:15:27  Administrator@http://yandex.ru/yandsearch?text=%D0%BF%D0%BE%D1%80%D0%BD%D0%BE&lr=225&stpar2=%2Fh1%2Ftm9%2Fs1&stpar4=%2Fs1&stpar1=%2Fu0
    2009-11-07 03:15:36  Administrator@http://vuku.ru
    2009-11-07 03:15:57  Administrator@http://vuku.ru/thumbnails-75-0-page-0.html
    2009-11-07 03:16:09  Administrator@http://vuku.ru/thumbnails-75-0-page-6.html
    2009-11-07 03:16:26  Administrator@http://vuku.ru/thumbnails-75-0-page-8.html
    2009-11-07 03:16:59  Administrator@http://vuku.ru/thumbnails-75-0-page-10.html
    2009-11-07 03:17:24  Administrator@http://vuku.ru/thumbnails-75-0-page-12.html
    2009-11-07 03:17:41  Administrator@http://vuku.ru/thumbnails-75-0-page-14.html
    2009-11-07 03:18:23  Administrator@http://vuku.ru/displayimage-75-0-20603.html
    2009-11-07 03:18:59  Administrator@http://vuku.ru/displayimage-75-0-20599.html
    2009-11-07 03:19:36  Administrator@http://vuku.ru/displayimage-75-0-20585.html
    2009-11-07 10:59:24  Administrator@file:///C:/Documents%20and%20Settings/Administrator/Desktop/sirena_and_alex_astero__tak_nado_-_sirena_and_alex_astero__tak_nado.mp3
    2009-11-07 11:00:09  Administrator@file:///C:/Documents%20and%20Settings/Administrator/Desktop/Scooter_-_Jadore_hardcore.mp3
    2009-11-07 11:00:31  Administrator@file:///C:/Documents%20and%20Settings/Administrator/Desktop/(mp3xa.net)_Dj_Tiesto_Sneaky_Sound_System_-_I_Will_be_here.mp3
    2009-11-07 11:01:11  Administrator@file:///C:/Documents%20and%20Settings/Administrator/Desktop/serge_devant_-_addicted.mp3
    2009-11-07 11:12:44  Administrator@file:///D:/NFS/NFSpeed-Shift/Audio/Music/nfs_fe_music.mp3
    2009-11-07 11:12:58  Administrator@file:///D:/NFS/NFSpeed-Shift/Audio/Music/nfs_fe_music4.mp3
    2009-11-07 11:13:07  Administrator@file:///D:/NFS/NFSpeed-Shift/Audio/Music/nfs_fe_music3.mp3
    2009-11-07 11:13:14  Administrator@file:///D:/NFS/NFSpeed-Shift/Audio/Music/nfs_fe_music2.mp3
    2009-11-07 11:13:27  Administrator@file:///D:/NFS/NFSpeed-Shift/Audio/Music/nfs_postrace_ambience.mp3
    2009-11-07 11:36:48  Administrator@file:///C:/Documents%20and%20Settings/Administrator/Desktop/VirtualDub.rar
    2009-11-07 11:37:56  Administrator@http://samlab.ws
    2009-11-07 11:48:04  Administrator@file:///D:/NFS/NFSpeed-Shift/Audio/Music/nfs_racemusic.mp3
    2009-11-07 11:53:10  Administrator@file:///D:/NFS/NFSpeed-Shift/Audio/Music/New%20Text%20Document.txt
    2009-11-07 11:57:24  Administrator@file:///D:/nfs_racemusic.mp3
    2009-11-07 11:57:45  Administrator@file:///D:/nfs_racemusic2%20%20.mp3
    2009-11-07 12:03:16  Administrator@file:///D:/nfs_racemusic1%20.mp3
    2009-11-07 12:12:12  Administrator@file:///D:/nfs_racemusic3%20.mp3
    2009-11-07 12:15:22  Administrator@file:///D:/NFS/NFSpeed-Shift/Audio/nfs_racemusic.mp3
    2009-11-07 12:17:42  Administrator@file:///D:/nfs_racemusic4%20.mp3
    2009-11-07 14:06:59  Administrator@res://wmploc.dll/Error_ServiceInfo.htm
    2009-11-07 14:07:12  Administrator@http://www.windowsmedia.com/mediaguide/default.aspx?WMPFriendly=true&locale=409&geoid=cb&version=10.0.0.4006&userlocale=419
    2009-11-07 14:07:23  Administrator@res://wmploc.dll/SamiCaptioning.htm
    2009-11-07 14:13:11  Administrator@http://minus15kg.ru/?partner=markgtz1
    2009-11-07 14:15:24  Administrator@http://search.yahoo.com/?fr=slv7-flv
    2009-11-07 14:15:48  Administrator@http://topdownloads.ru/games/file/OceanRange2Rus/3190719.htm
    2009-11-07 16:34:18  Administrator@file:///C:/Program%20Files%20(x86)/Alawar/%20.%20%20/.jpg
    2009-11-07 16:35:27  Administrator@file:///C:/Program%20Files%20(x86)/Alawar/%20.%20%20/license.txt
    2009-11-07 16:36:10  Administrator@file:///C:/Program%20Files%20(x86)/Alawar/%20.%20%20/registrator.ini
    2009-11-07 16:36:42  Administrator@file:///C:/Program%20Files%20(x86)/Alawar/%20.%20%20/OceanRange2.txt
    2009-11-07 16:39:26  Administrator@file:///C:/Program%20Files%20(x86)/Alawar/%20.%20%20/partner.ini
    2009-11-07 16:39:33  Administrator@file:///C:/Program%20Files%20(x86)/Alawar/%20.%20%20/sm_config.xml
    2009-11-07 16:46:18  Administrator@file:///C:/Program%20Files%20(x86)/Alawar/%20.%20%20/images/placeholder.txt
    2009-11-07 16:46:31  Administrator@file:///C:/Program%20Files%20(x86)/Alawar/%20.%20%20/config.txt
    2009-11-07 17:17:17  Administrator@file:///C:/Program%20Files%20(x86)/Alawar/Alawar%20games/%20%20%20%20.doc
    2009-11-07 17:17:39  Administrator@file:///C:/Program%20Files%20(x86)/Alawar/%20.%20%20/Serial!.txt
    2009-11-07 17:17:56  Administrator@file:///C:/Program%20Files%20(x86)/Alawar/Alawar%20games/Alawar%20/.txt
    2009-11-07 17:18:13  Administrator@file:///C:/Program%20Files%20(x86)/Alawar/Alawar%20games/50_Alawar_Wrapper_%20%20%20%20%20Alawar/Alawar_Wrapper_UniCrack_v0.5.1.zip.txt
    2009-11-07 17:18:43  Administrator@file:///C:/Program%20Files%20(x86)/Alawar/Alawar%20games/1-%20%20%20/Alawar%20Universal%20Crack%20v0.5.1.txt
    2009-11-07 17:19:11  Administrator@file:///C:/Program%20Files%20(x86)/Alawar/Alawar%20games/%20%2054%20%20%20Alawar/Loading54games_ReadME.txt
    2009-11-07 17:19:37  Administrator@file:///C:/Program%20Files%20(x86)/Alawar/Alawar%20games/%20%20%20/Read%20Me%20!!!.txt
    2009-11-07 17:20:05  Administrator@file:///C:/Program%20Files%20(x86)/Alawar/Alawar%20games/%20%20%20%20Alawar/Alawar_Wrapper_Protected_Games.txt
    2009-11-07 17:21:16  Administrator@file:///C:/Documents%20and%20Settings/Administrator/Desktop/ONby_CRACK_.rar
    2009-11-07 18:46:57  Administrator@file:///D:/mp3wall.ru%20-%20Inna%20-%20Fall%20(Original%20Version).mp4
    2009-11-07 18:47:07  Administrator@file:///D:/mp3wall.ru%20-%20Inna%20-%20Fall%20(Original%20Version).avi
    2009-11-07 18:51:09  Administrator@file:///D://RANDOM/%20/%20WoW/().wmv
    2009-11-07 18:52:02  Administrator@file:///D://RANDOM/%20/%20WoW/.avi
    2009-11-07 18:53:07  Administrator@file:///D://RANDOM/%20/%20WoW/.mp3
    2009-11-07 18:53:49  Administrator@file:///D://RANDOM/%20/%20WoW/.wmv
    2009-11-07 20:03:41  Administrator@file:///D:/GAMES/hA/Readme.txt
    2009-11-07 20:16:44  Administrator@ebook:index.html
    2009-11-07 20:16:53  Administrator@ebook:set_free.html
    2009-11-07 21:14:05  Administrator@file:///D:/GAMES/Horde%202/readme.txt
    2009-11-07 22:50:30  Administrator@file:///D:/programm%20files//spc/%20/1.jpg
    2009-11-08 10:28:17  Administrator@http://topdownloads.ru/news/?country=RUS
    2009-11-08 10:37:22  Administrator@http://store.steampowered.com/app/240
    2009-11-08 10:39:32  Administrator@http://steamcommunity.com/actions/InitializeSession?steamid=76561198015379143&onetimepassword=cbb4d0031f7d0f60&language=russian
    2009-11-08 11:08:36  Administrator@http://store.steampowered.com
    2009-11-08 11:08:37  Administrator@http://cdn.store.steampowered.com/message/18174807630595312/?l=russian&cc=RU
    2009-11-08 11:08:55  Administrator@http://steamcommunity.com/actions/InitializeSession?steamid=76561198015379143&onetimepassword=9c054423987dcb7d&language=russian
    2009-11-08 11:19:21  Administrator@file:///C:/Documents%20and%20Settings/Administrator/Desktop/Counter-Strike_Source_Crack___Fix_%5BCSS%5D.torrent
    2009-11-08 12:43:38  Administrator@about:blank
    2009-11-08 13:30:09  Administrator@file:///C:/Documents%20and%20Settings/Administrator/Desktop/Remote.Administrator3.Loader.ICU.rar
    2009-11-08 13:39:52  Administrator@http://www.ya.ru
    2009-11-08 13:40:08  Administrator@http://yandex.ru/yandsearch?text=%D0%B8%D0%BD%D1%86%D0%B5%D1%81%D1%82+%D0%BA%D0%BE%D0%BC%D0%B8%D0%BA%D1%81%D1%8B&stpar2=%2Fh1%2Ftm14%2Fs1&stpar4=%2Fs1&stpar1=%2Fu0
    2009-11-08 13:40:16  Administrator@http://yandex.ru/yandsearch?text=%D0%B8%D0%BD%D1%86%D0%B5%D1%81%D1%82%20%D0%BA%D0%BE%D0%BC%D0%B8%D0%BA%D1%81%D1%8B&lr=225
    2009-11-08 13:42:41  Administrator@http://rusmature.com/comics/namio_harukawa_01.htm
    2009-11-08 13:43:07  Administrator@http://www.rusmature.com
    2009-11-08 13:43:32  Administrator@http://rusmature.com/comics/namio_harukawa_02.htm
    2009-11-08 13:44:22  Administrator@http://rusmature.com/comics/namio_harukawa_03.htm
    2009-11-08 13:45:11  Administrator@http://rusmature.com/comics/story_family_2.htm
    2009-11-08 13:45:31  Administrator@http://rusmature.com/comics/story_family_2/story_family_2_09.jpg
    2009-11-08 13:46:09  Administrator@http://rusmature.com/comics/my_sister_pornstar_goddes.htm
    2009-11-08 13:46:12  Administrator@http://rusmature.com/comics/my_sister_pornstar_goddes/my_sister_pornstar_goddes_01.jpg
    2009-11-08 13:46:43  Administrator@http://rusmature.com/comics/my_sister_pornstar_goddes/my_sister_pornstar_goddes_03.jpg
    2009-11-08 13:47:11  Administrator@http://rusmature.com/comics/my_sister_pornstar_goddes/my_sister_pornstar_goddes_07.jpg
    2009-11-08 13:47:56  Administrator@http://rusmature.com/comics/my_sister_pornstar_goddes/my_sister_pornstar_goddes_26.jpg
    2009-11-08 13:48:27  Administrator@http://rusmature.com/comics/randy_mommy.htm
    2009-11-08 13:48:53  Administrator@http://rusmature.com/comics/reconcile.htm
    2009-11-08 13:50:05  Administrator@http://rusmature.com/comics/teenage_dream/teenage_dream_06.jpg
    2009-11-08 13:50:07  Administrator@http://rusmature.com/comics/teenage_dream.htm
    2009-11-08 13:50:30  Administrator@http://rusmature.com/comics/teenage_dream/teenage_dream_10.jpg
    2009-11-08 13:51:50  Administrator@http://rusmature.com/comics/peep_for_parent.htm
    2009-11-08 13:52:28  Administrator@http://rusmature.com/comics/secret_bussines/secret_bussines_01.jpg
    2009-11-08 13:52:29  Administrator@http://rusmature.com/comics/secret_bussines.htm
    2009-11-08 13:53:07  Administrator@http://rusmature.com/comics/secret_bussines/secret_bussines_02.jpg
    2009-11-08 13:53:45  Administrator@http://rusmature.com/comics/secret_bussines/secret_bussines_04.jpg
    2009-11-08 13:54:31  Administrator@http://rusmature.com/comics/secret_bussines/secret_bussines_05.jpg
    2009-11-08 13:55:02  Administrator@http://rusmature.com/comics/secret_bussines/secret_bussines_06.jpg
    2009-11-08 13:55:23  Administrator@http://rusmature.com/comics/secret_bussines/secret_bussines_07.jpg
    2009-11-08 13:55:46  Administrator@http://rusmature.com/comics/secret_bussines/secret_bussines_10.jpg
    2009-11-08 13:56:07  Administrator@http://rusmature.com/comics/psihoanalitik.htm
    2009-11-08 13:56:21  Administrator@http://rusmature.com/comics/psihoanalitik/psihoanalitik_02.jpg
    2009-11-08 13:56:45  Administrator@http://rusmature.com/comics/psihoanalitik/psihoanalitik_03.jpg
    2009-11-08 13:57:44  Administrator@http://rusmature.com/comics/psihoanalitik/psihoanalitik_04.jpg
    2009-11-08 13:58:31  Administrator@http://rusmature.com/comics/psihoanalitik/psihoanalitik_06.jpg
    2009-11-08 13:59:33  Administrator@http://rusmature.com/comics/psihoanalitik/psihoanalitik_07.jpg
    2009-11-08 13:59:57  Administrator@http://rusmature.com/comics/psihoanalitik/psihoanalitik_08.jpg
    2009-11-08 14:01:27  Administrator@http://rusmature.com/comics/coccker_mom.htm
    2009-11-08 14:02:43  Administrator@http://rusmature.com/comics/gulliverka.htm
    2009-11-08 14:03:16  Administrator@http://rusmature.com/comics/gulliverka/gulliverka_31.jpg
    2009-11-08 14:04:18  Administrator@http://rusmature.com/comics/gulliverka/gulliverka_46.jpg
    2009-11-08 14:05:09  Administrator@http://rusmature.com/comics/gulliverka/gulliverka_54.jpg
    2009-11-08 14:06:08  Administrator@http://rusmature.com/comics/eva_rozhdenie_zvezdi/eva_rozhdenie_zvezdi_02.jpg
    2009-11-08 14:06:55  Administrator@http://rusmature.com/comics/eva_rozhdenie_zvezdi/eva_rozhdenie_zvezdi_03.jpg
    2009-11-08 14:06:57  Administrator@http://rusmature.com/comics/eva_rozhdenie_zvezdi.htm
    2009-11-08 14:07:29  Administrator@http://rusmature.com/comics/eva_rozhdenie_zvezdi/eva_rozhdenie_zvezdi_04.jpg
    2009-11-08 14:08:14  Administrator@http://rusmature.com/comics/eva_rozhdenie_zvezdi/eva_rozhdenie_zvezdi_05.jpg
    2009-11-08 14:08:55  Administrator@http://rusmature.com/comics/eva_rozhdenie_zvezdi/eva_rozhdenie_zvezdi_06.jpg
    2009-11-08 14:09:55  Administrator@http://rusmature.com/comics/eva_rozhdenie_zvezdi/eva_rozhdenie_zvezdi_11.jpg
    2009-11-08 14:10:34  Administrator@http://rusmature.com/comics/eva_rozhdenie_zvezdi/eva_rozhdenie_zvezdi_16.jpg
    2009-11-09 03:58:18  Administrator@file:///C:/Documents%20and%20Settings/Administrator/Desktop/New%20Text%20Document.txt
    2009-11-09 06:15:59  Administrator@file:///C:/Documents%20and%20Settings/Administrator/Desktop/DrWeb.csv
    2009-11-09 06:31:26  Administrator@file:///C:/Documents%20and%20Settings/Administrator/Desktop//470u/01.png
    2009-11-09 06:32:47  Administrator@file:///D://RANDOM/%20/Video.avi
    2009-11-09 22:03:41  Administrator@file:///G:/report.html
    2009-11-09 22:07:55  Administrator@file:///C:/Documents%20and%20Settings/Administrator/Local%20Settings/Temp/rpt-1.txt


--------[  DirectX ]-----------------------------------------------------------------------------------------------

    amstream.dll                              6.05.3790.3959    Final Retail  English                       72704  18.02.2007 02:00:00
    d3d8.dll                                  5.03.3790.3959    Final Retail  English                     1042432  18.02.2007 02:00:00
    d3d8thk.dll                               5.02.3790.0000    Final Retail  English                        8192  18.02.2007 02:00:00
    d3d9.dll                                  5.03.3790.3959    Final Retail  English                     1690624  18.02.2007 02:00:00
    d3dim.dll                                 5.02.3790.3959    Final Retail  English                      378880  18.02.2007 02:00:00
    d3dim700.dll                              5.03.3790.1830    Final Retail  English                      835584  18.02.2007 02:00:00
    d3dpmesh.dll                              5.02.3790.0000    Final Retail  English                       36864  18.02.2007 02:00:00
    d3dramp.dll                               5.02.3790.0000    Final Retail  English                      590848  18.02.2007 02:00:00
    d3drm.dll                                 5.02.3790.0000    Final Retail  English                      351744  18.02.2007 02:00:00
    d3dxof.dll                                5.02.3790.0000    Final Retail  English                       48128  18.02.2007 02:00:00
    ddraw.dll                                 5.03.3790.1830    Final Retail  English                      283136  18.02.2007 02:00:00
    ddrawex.dll                               5.03.3790.1830    Final Retail  English                       28160  18.02.2007 02:00:00
    devenum.dll                               6.05.3790.3959    Final Retail  English                       61440  18.02.2007 02:00:00
    diactfrm.dll                              5.03.3790.3959    Final Retail  English                      415744  18.02.2007 02:00:00
    dimap.dll                                 5.02.3790.0000    Final Retail  English                       42496  18.02.2007 02:00:00
    dinput.dll                                5.03.3790.3959    Final Retail  English                      159744  18.02.2007 02:00:00
    dinput8.dll                               5.03.3790.1830    Final Retail  English                      182272  18.02.2007 02:00:00
    dmband.dll                                5.03.3790.1830    Final Retail  English                       28672  18.02.2007 02:00:00
    dmcompos.dll                              5.03.3790.1830    Final Retail  English                       61952  18.02.2007 02:00:00
    dmime.dll                                 5.03.3790.3959    Final Retail  English                      181760  18.02.2007 02:00:00
    dmloader.dll                              5.03.3790.3959    Final Retail  English                       36352  18.02.2007 02:00:00
    dmscript.dll                              5.03.3790.1830    Final Retail  English                       82432  18.02.2007 02:00:00
    dmstyle.dll                               5.03.3790.1830    Final Retail  English                      105984  18.02.2007 02:00:00
    dmsynth.dll                               5.03.3790.1830    Final Retail  English                      103424  18.02.2007 02:00:00
    dmusic.dll                                5.03.3790.3959    Final Retail  English                      104448  18.02.2007 02:00:00
    dplay.dll                                 5.00.2134.0001    Final Retail  English                       33040  18.02.2007 02:00:00
    dplaysvr.exe                              5.03.3790.1830    Final Retail  English                       31744  18.02.2007 02:00:00
    dplayx.dll                                5.03.3790.3959    Final Retail  English                      230400  18.02.2007 02:00:00
    dpmodemx.dll                              5.03.3790.1830    Final Retail  English                       23552  18.02.2007 02:00:00
    dpnaddr.dll                               5.03.3790.3959    Final Retail  English                        3584  18.02.2007 02:00:00
    dpnet.dll                                 5.03.3790.3959    Final Retail  English                      376320  18.02.2007 02:00:00
    dpnhpast.dll                              5.03.3790.3959    Final Retail  English                        4096  18.02.2007 02:00:00
    dpnhupnp.dll                              5.03.3790.3959    Final Retail  English                       60928  18.02.2007 02:00:00
    dpnlobby.dll                              5.03.3790.3959    Final Retail  English                        3584  18.02.2007 02:00:00
    dpnsvr.exe                                5.03.3790.3959    Final Retail  English                       17920  18.02.2007 02:00:00
    dpvacm.dll                                5.03.3790.3959    Final Retail  English                       22016  18.02.2007 02:00:00
    dpvoice.dll                               5.03.3790.3959    Final Retail  English                      212480  18.02.2007 02:00:00
    dpvsetup.exe                              5.03.3790.3959    Final Retail  English                       83968  18.02.2007 02:00:00
    dpvvox.dll                                5.03.3790.3959    Final Retail  English                      116736  18.02.2007 02:00:00
    dpwsockx.dll                              5.03.3790.3959    Final Retail  English                       57344  18.02.2007 02:00:00
    dsdmo.dll                                 5.03.3790.1830    Final Retail  English                      182272  18.02.2007 02:00:00
    dsdmoprp.dll                              5.03.3790.1830    Final Retail  English                       75776  18.02.2007 02:00:00
    dsound.dll                                5.03.3790.3959    Final Retail  English                      360960  18.02.2007 02:00:00
    dsound3d.dll                              5.03.3790.1830    Final Retail  English                     1294848  18.02.2007 02:00:00
    dswave.dll                                5.03.3790.1830    Final Retail  English                       19456  18.02.2007 02:00:00
    dx7vb.dll                                 5.03.3790.3959    Final Retail  English                      621056  18.02.2007 02:00:00
    dx8vb.dll                                 5.03.3790.3959    Final Retail  English                     1225216  18.02.2007 02:00:00
    dxdiagn.dll                               5.03.3790.3959    Final Retail  English                     1765376  18.02.2007 02:00:00
    dxmasf.dll                                6.04.0009.1133    Final Retail  English                      498742  22.08.2006 04:05:26
    encapi.dll                                5.03.3790.1830    Final Retail  English                       20480  18.02.2007 02:00:00
    gcdef.dll                                 5.03.3790.3959    Final Retail  English                       80896  18.02.2007 02:00:00
    ir41_32.ax                                4.51.0016.0003    Final Retail  English                      848384  18.02.2007 02:00:00
    ir41_qc.dll                               4.30.0062.0002    Final Retail  English                      120320  18.02.2007 02:00:00
    ir41_qcx.dll                              4.30.0064.0001    Final Retail  English                      338432  18.02.2007 02:00:00
    ir50_32.dll                               5.2562.0015.0055  Final Retail  English                      755200  18.02.2007 02:00:00
    ir50_qc.dll                               5.00.0063.0048    Final Retail  English                      200192  18.02.2007 02:00:00
    ir50_qcx.dll                              5.00.0064.0048    Final Retail  English                      183808  18.02.2007 02:00:00
    joy.cpl                                   5.03.3790.3959    Final Retail  English                       69632  18.02.2007 02:00:00
    ksproxy.ax                                5.03.3790.1830    Final Retail  Russian                      130048  24.03.2005 17:57:44
    ksuser.dll                                5.03.3790.1830    Final Retail  Russian                        4096  18.02.2007 02:00:00
    mciqtz32.dll                              6.05.3790.3959    Final Retail  English                       62464  18.02.2007 02:00:00
    mfc40.dll                                 4.01.0000.6140    Final Retail  English                      924432  18.02.2007 02:00:00
    mfc42.dll                                 6.06.8063.0000    Beta Retail   English                     1160704  18.02.2007 02:00:00
    mpeg2data.ax                              6.05.3790.3959    Final Retail  English                       62976  18.02.2007 02:00:00
    mpg2splt.ax                               6.05.3790.3959    Final Retail  English                      148992  18.02.2007 02:00:00
    msdmo.dll                                 6.05.3790.1830    Final Retail  English                       14336  18.02.2007 02:00:00
    msvidctl.dll                              6.05.3790.3959    Final Retail  English                     1563136  18.02.2007 02:00:00
    mswebdvd.dll                              6.05.3790.4565    Final Retail  English                      209408  05.08.2009 15:48:48
    msyuv.dll                                 5.02.3790.0000    Final Retail  English                       16896  18.02.2007 02:00:00
    pid.dll                                   5.02.3790.0000    Final Retail  English                       33792  18.02.2007 02:00:00
    qasf.dll                                  10.00.0000.3997   Final Retail  English                      217088  18.02.2007 02:00:00
    qcap.dll                                  6.05.3790.3959    Final Retail  English                      192512  18.02.2007 02:00:00
    qdv.dll                                   6.05.3790.3959    Final Retail  English                      279040  18.02.2007 02:00:00
    qdvd.dll                                  6.05.3790.3959    Final Retail  English                      385536  18.02.2007 02:00:00
    qedit.dll                                 6.05.3790.3959    Final Retail  English                      512512  18.02.2007 02:00:00
    qedwipes.dll                              6.05.3790.1830    Final Retail  English                      733696  18.02.2007 02:00:00
    quartz.dll                                6.05.3790.4523    Final Retail  English                     1277952  04.06.2009 02:13:58
    strmdll.dll                               4.01.0000.3938    Final Retail  English                      247326  10.09.2009 02:00:54
    vbisurf.ax                                5.03.3790.1830    Final Retail  English                       30720  18.02.2007 02:00:00
    wsock32.dll                               5.02.3790.0000    Final Retail  English                       22528  18.02.2007 02:00:00
    wstdecod.dll                              5.03.3790.1830    Final Retail  English                       50688  18.02.2007 02:00:00


--------[ DirectX -  ]---------------------------------------------------------------------------------------------

  [ Primary Display Driver ]

     DirectDraw:
        DirectDraw                           display
        DirectDraw                      Primary Display Driver
                                       nv4_disp.dll
                                      NVIDIA GeForce GTX 260

     Direct3D:
      /                908943  / 906942 
      /              515071  / 515071 
                                8, 16, 32
        Z-                          16, 24
      Multisample Anti-Aliasing Modes                   MSAA 2x, MSAA 4x, MSAA 8x, CSAA 8x, CSAA 8xQ, CSAA 16x, CSAA 16xQ
                               1 x 1
                              8192 x 8192
       Vertex-                             3.0
                                3.0

     Direct3D:
      Additive Texture Blending                         
      AGP Texturing                                     
      Anisotropic Filtering                             
      Automatic Mipmap Generation                       
      Bilinear Filtering                                
      Cubic Environment Mapping                         
      Cubic Filtering                                    
      Decal-Alpha Texture Blending                      
      Decal Texture Blending                            
      DirectX Texture Compression                       
      DirectX Volumetric Texture Compression             
      Dithering                                         
      Dot3 Texture Blending                             
      Dynamic Textures                                  
      Edge Anti-Aliasing                                
      Environmental Bump Mapping                        
      Environmental Bump Mapping + Luminance            
      Factor Alpha Blending                             
      Geometric Hidden-Surface Removal                   
      Guard Band                                        
      Hardware Scene Rasterization                      
      Hardware Transform & Lighting                     
      Legacy Depth Bias                                 
      Mipmap LOD Bias Adjustments                       
      Mipmapped Cube Textures                           
      Mipmapped Volume Textures                         
      Modulate-Alpha Texture Blending                   
      Modulate Texture Blending                         
      Non-Square Textures                               
      N-Patches                                          
      Perspective Texture Correction                    
      Point Sampling                                    
      Projective Textures                               
      Quintic Bezier Curves & B-Splines                  
      Range-Based Fog                                   
      Rectangular & Triangular Patches                   
      Rendering In Windowed Mode                        
      Scissor Test                                      
      Slope-Scale Based Depth Bias                      
      Specular Flat Shading                             
      Specular Gouraud Shading                          
      Specular Phong Shading                             
      Spherical Mapping                                 
      Stencil Buffers                                   
      Sub-Pixel Accuracy                                
      Subtractive Texture Blending                      
      Table Fog                                         
      Texture Alpha Blending                            
      Texture Clamping                                  
      Texture Mirroring                                 
      Texture Transparency                              
      Texture Wrapping                                  
      Triangle Culling                                   
      Trilinear Filtering                               
      Two-Sided Stencil Test                            
      Vertex Alpha Blending                             
      Vertex Fog                                        
      Vertex Tweening                                    
      Volume Textures                                   
      W-Based Fog                                       
      W-Buffering                                        
      Z-Based Fog                                       
      Z-Bias                                            
      Z-Test                                            

      FourCC:
      AI44                                              
      AIP8                                              
      ATI1                                              
      ATI2                                              
      AV12                                              
      AYUV                                              
      DXT1                                              
      DXT2                                              
      DXT3                                              
      DXT4                                              
      DXT5                                              
      IA44                                              
      IF09                                              
      IV31                                              
      IV32                                              
      NV12                                              
      NV24                                              
      NVCS                                              
      PL16                                              
      PLFF                                              
      RAW8                                              
      UYVY                                              
      YUY2                                              
      YV12                                              
      YVU9                                              

     :
                                                   NVIDIA Corporation
                                     http://www.nvidia.com/page/products.html
                                       http://www.nvidia.com/content/drivers/drivers.asp
                                     http://driveragent.com?ref=59


--------[ DirectX -  ]----------------------------------------------------------------------------------------------

  [ Primary Sound Driver ]

     DirectSound:
                                      Primary Sound Driver
                                          
                                         1
      ./.          8000 / 192000 
                             8 , 16 , , 
                             8 , 16 , , 
       /                   33 / 32
       /        33 / 32
       /           33 / 32
       /   3D-                33 / 32
       /    3D-    33 / 32
       /    3D-       33 / 32

     DirectSound:
                                
                                      
                                    
      DirectSound3D                                     
      Creative EAX 1.0                                  
      Creative EAX 2.0                                  
      Creative EAX 3.0                                   
      Creative EAX 4.0                                   
      Creative EAX 5.0                                   
      I3DL2                                             
      Sensaura ZoomFX                                    

  [ Realtek HD Audio output ]

     DirectSound:
                                      Realtek HD Audio output
                                          RTKHDA64.SYS
                                         1
      ./.          8000 / 192000 
                             8 , 16 , , 
                             8 , 16 , , 
       /                   33 / 32
       /        33 / 32
       /           33 / 32
       /   3D-                33 / 32
       /    3D-    33 / 32
       /    3D-       33 / 32

     DirectSound:
                                
                                      
                                    
      DirectSound3D                                     
      Creative EAX 1.0                                  
      Creative EAX 2.0                                  
      Creative EAX 3.0                                   
      Creative EAX 4.0                                   
      Creative EAX 5.0                                   
      I3DL2                                             
      Sensaura ZoomFX                                    


--------[ DirectX -  ]--------------------------------------------------------------------------------------------

  [ Microsoft MIDI Mapper [Emulated] ]

     DirectMusic:
                                      Microsoft MIDI Mapper [Emulated]
                                          
                                          
                                           Windows Multimedia
       MIDI                                       16

     DirectMusic:
         GM                  
         Roland GS                 
      DirectSound                                        
        DLS L1                           
        DLS L2                           
        MIDI                                 
         DLS                    
                                         
                                               
                                           
                                       

  [ Microsoft GS Wavetable SW Synth [Emulated] ]

     DirectMusic:
                                      Microsoft GS Wavetable SW Synth [Emulated]
                                          
                                          
                                           Windows Multimedia
       MIDI                                       16

     DirectMusic:
         GM                  
         Roland GS                 
      DirectSound                                        
        DLS L1                           
        DLS L2                           
        MIDI                                 
         DLS                    
                                         
                                               
                                           
                                       

  [ Microsoft Synthesizer ]

     DirectMusic:
                                      Microsoft Synthesizer
                                          
                                          
                                           User-Mode Synthesizer
                                             2
       MIDI                                       16000
                                                  1000
                                          

     DirectMusic:
         GM                  
         Roland GS                 
      DirectSound                                       
        DLS L1                          
        DLS L2                          
        MIDI                                 
         DLS                    
                                          
                                               
                                           
                                      


--------[ DirectX -  ]----------------------------------------------------------------------------------------------

  [  ]

     DirectInput:
                                      
                                           
                                        
                                                     3
      /                                    3

     DirectInput:
                                      
      Alias Device                                      
      Polled Device                                     
      Polled Data Format                                
      Attack Force Feedback                              
      Deadband Force Feedback                            
      Fade Force Feedback                                
      Force Feedback                                     
      Saturation Force Feedback                          
      +/- Force Feedback Coefficients                    
      +/- Force Feedback Saturation                      

  [  ]

     DirectInput:
                                      
                                           
                                        
      /                                    128

     DirectInput:
                                      
      Alias Device                                      
      Polled Device                                     
      Polled Data Format                                
      Attack Force Feedback                              
      Deadband Force Feedback                            
      Fade Force Feedback                                
      Force Feedback                                     
      Saturation Force Feedback                          
      +/- Force Feedback Coefficients                    
      +/- Force Feedback Saturation                      


--------[  Windows ]------------------------------------------------------------------------------------------

  [  ]

    Computer:
      ACPI Multiprocessor x64-based PC                  5.2.3790.3959

    Disk drives:
      JetFlash TS2GJF150 USB Device                     5.2.3790.1830
      Kingston DataTraveler 2.0 USB Device              5.2.3790.1830
      WDC WD1200JS-22MHB0                               5.2.3790.1830

    Display adapters:
      NVIDIA GeForce GTX 260                            6.14.11.9107

    DVD/CD-ROM drives:
      _NEC DVD_RW ND-3540A SCSI CdRom Device            5.2.3790.1830
      GTQRWDC IZW9QNOLI SCSI CdRom Device               5.2.3790.1830

    Floppy disk controllers:
      Standard floppy disk controller                   5.2.3790.1830

    Floppy disk drives:
      Floppy disk drive                                 5.2.3790.1830

    IDE ATA/ATAPI controllers:
      Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A269.0.0.1005
      Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A209.0.0.1005
      Primary IDE Channel                               5.2.3790.1830
      Primary IDE Channel                               5.2.3790.1830
      Secondary IDE Channel                             5.2.3790.1830
      Secondary IDE Channel                             5.2.3790.1830

    IEEE 1394 Bus host controllers:
      AGERE OHCI Compliant IEEE 1394 Host Controller    5.2.3790.1830

    Keyboards:
      Standard 101/102-Key or Microsoft Natural PS/2 Keyboard5.2.3790.1830

    Mice and other pointing devices:
      Microsoft PS/2 Mouse                              5.2.3790.1830

    Monitors:
      FLATRON 795FT PLUS/SUPER                          5.2.3790.1830

    Network adapters:
      1394 Net Adapter                                  5.2.3790.1830
      Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller - Packet Scheduler Miniport5.2.3790.1830
      Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller1.0.0.27
      Direct Parallel                                   5.2.3790.1830
      WAN Miniport (IP) - Packet Scheduler Miniport     5.2.3790.1830
      WAN Miniport (IP)                                 5.2.3790.1830
      WAN Miniport (L2TP)                               5.2.3790.1830
      WAN Miniport (PPPOE)                              5.2.3790.1830
      WAN Miniport (PPTP)                               5.2.3790.1830

    Non-Plug and Play Drivers:
      1394 ARP Client Protocol                          
      AFD                                               
      AsIO                                              
      Beep                                              
      Cardex                                            
      CdaC15BA                                          
      CdaD10BA                                          
      CRC Disk Filter Driver                            
      dmboot                                            
      dmload                                            
      ehdrv                                             
      EIO_XP                                            
      epfwtdir                                          
      Fips                                              
      Generic Packet Classifier                         
      HTTP                                              
      IP Network Address Translator                     
      IPSEC driver                                      
      ksecdd                                            
      mnmdd                                             
      mountmgr                                          
      NDIS System Driver                                
      NDIS Usermode I/O Protocol                        
      NDProxy                                           
      NetBios over Tcpip                                
      Null                                              
      Partition Manager                                 
      RDPCDD                                            
      Remote Access Auto Connection Driver              
      Remote Access IP ARP Driver                       
      Remote Access NDIS TAPI Driver                    
      Security Driver                                   
      sptd                                              
      SSPORT                                            
      Storage volumes                                   
      TCP/IP Protocol Driver                            
      VGA Display Controller.                           
      Windows Socket 2.0 Non-IFS Service Provider Support Environment

    Ports (COM & LPT):
      Communications Port (COM1)                        5.2.3790.1830

    Processors:
      Intel(R) Core(TM)2 Duo CPU     E8400  @ 3.00GHz   5.2.3790.1830
      Intel(R) Core(TM)2 Duo CPU     E8400  @ 3.00GHz   5.2.3790.1830

    SCSI and RAID controllers:
      A64FS6YR IDE Controller                           
      Marvell 61xx RAID Controller                      1.2.0.57

    Sound, video and game controllers:
                                             5.2.3790.1830
      Legacy Audio Drivers                              5.2.3790.1830
      Legacy Video Capture Devices                      5.2.3790.1830
      Media Control Devices                             5.2.3790.1830
      Microsoft Kernel System Audio Device              5.2.3790.1830
      Microsoft Kernel Wave Audio Mixer                 5.2.3790.1830
      Microsoft WINMM WDM Audio Compatibility Driver    5.2.3790.1830
      Realtek High Definition Audio                     5.10.0.5628
                                             5.2.3790.1830

    Storage volumes:
      Generic volume                                    5.2.3790.1830
      Generic volume                                    5.2.3790.1830
      Generic volume                                    5.2.3790.1830
      Generic volume                                    5.2.3790.1830

    System devices:
      ACPI Fixed Feature Button                         5.2.3790.3959
      ACPI Power Button                                 5.2.3790.3959
      ATK0110 ACPI UTILITY                              1043.5.0.0
      Direct memory access controller                   5.2.3790.3959
      Extended IO Bus                                   5.2.3790.3959
      High precision event timer                        5.2.3790.3959
      Intel(R) 4 Series Chipset PCI Express Root Port - 2E219.0.0.1009
      Intel(R) 4 Series Chipset Processor to I/O Controller - 2E209.0.0.1009
      Intel(R) 82801 PCI Bridge - 244E                  5.2.3790.3959
      Intel(R) 82802 Firmware Hub Device                5.2.3790.3959
      Intel(R) ICH10 Family PCI Express Root Port 1 - 3A409.0.0.1009
      Intel(R) ICH10 Family PCI Express Root Port 5 - 3A489.0.0.1009
      Intel(R) ICH10 Family PCI Express Root Port 6 - 3A4A9.0.0.1009
      Intel(R) ICH10 Family SMBus Controller - 3A30     9.0.0.1005
      Intel(R) ICH10R LPC Interface Controller - 3A16   9.0.0.1009
      Logical Disk Manager                              5.2.3790.3959
      Marvell Virtual Device                            1.2.0.57
      Microcode Update Device                           5.2.3790.3959
      Microsoft ACPI-Compliant System                   5.2.3790.1830
      Microsoft System Management BIOS Driver           5.2.3790.3959
      Microsoft UAA Bus Driver for High Definition Audio5.10.0.5010
      Motherboard resources                             5.2.3790.3959
      Motherboard resources                             5.2.3790.3959
      Motherboard resources                             5.2.3790.3959
      Motherboard resources                             5.2.3790.3959
      Motherboard resources                             5.2.3790.3959
      Numeric data processor                            5.2.3790.3959
      PCI bus                                           5.2.3790.3959
      Plug and Play Software Device Enumerator          5.2.3790.3959
      Programmable interrupt controller                 5.2.3790.3959
      System board                                      5.2.3790.3959
      System board                                      5.2.3790.3959
      System CMOS/real time clock                       5.2.3790.3959
      System speaker                                    5.2.3790.3959
      System timer                                      5.2.3790.3959
      Terminal Server Device Redirector                 5.2.3790.3959
      Terminal Server Keyboard Driver                   5.2.3790.3959
      Terminal Server Mouse Driver                      5.2.3790.3959
      Volume Manager                                    5.2.3790.3959

    Universal Serial Bus controllers:
      Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3A9.0.0.1005
      Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3C9.0.0.1005
      Intel(R) ICH10 Family USB Universal Host Controller - 3A349.0.0.1005
      Intel(R) ICH10 Family USB Universal Host Controller - 3A359.0.0.1005
      Intel(R) ICH10 Family USB Universal Host Controller - 3A369.0.0.1005
      Intel(R) ICH10 Family USB Universal Host Controller - 3A379.0.0.1005
      Intel(R) ICH10 Family USB Universal Host Controller - 3A389.0.0.1005
      Intel(R) ICH10 Family USB Universal Host Controller - 3A399.0.0.1005
      USB Mass Storage Device                           5.2.3790.1830
      USB Mass Storage Device                           5.2.3790.1830
      USB Root Hub                                      5.2.3790.1830
      USB Root Hub                                      5.2.3790.1830
      USB Root Hub                                      5.2.3790.1830
      USB Root Hub                                      5.2.3790.1830
      USB Root Hub                                      5.2.3790.1830
      USB Root Hub                                      5.2.3790.1830
      USB Root Hub                                      5.2.3790.1830
      USB Root Hub                                      5.2.3790.1830

  [ Computer / ACPI Multiprocessor x64-based PC ]

     :
                                        ACPI Multiprocessor x64-based PC
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          hal.inf
       ID                                     acpiapic_mp

  [ Disk drives / JetFlash TS2GJF150 USB Device ]

     :
                                        JetFlash TS2GJF150 USB Device
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          disk.inf
       ID                                     USBSTOR\DiskJetFlashTS2GJF150_______8.07

  [ Disk drives / Kingston DataTraveler 2.0 USB Device ]

     :
                                        Kingston DataTraveler 2.0 USB Device
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          disk.inf
       ID                                     USBSTOR\DiskKingstonDataTraveler_2.01.04

  [ Disk drives / WDC WD1200JS-22MHB0 ]

     :
                                        WDC WD1200JS-22MHB0
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          disk.inf
       ID                                     IDE\DiskWDC_WD1200JS-22MHB0_____________________02.01C03
                                     0

  [ Display adapters / NVIDIA GeForce GTX 260 ]

     :
                                        NVIDIA GeForce GTX 260
                                            27.09.2009
                                          6.14.11.9107
                                       NVIDIA
      INF-                                          oem20.inf
       ID                                     PCI\VEN_10DE&DEV_05E2&SUBSYS_00000000&REV_A1
                                     PCI bus 1, device 0, function 0
      PCI-                                    nVIDIA GeForce GTX 260 Video Adapter

     :
      IRQ                                               16
                                                  000A0000-000BFFFF
                                                  D0000000-DFFFFFFF
                                                  FA000000-FBFFFFFF
                                                  FD000000-FDFFFFFF
                                                    03B0-03BB
                                                    03C0-03DF
                                                    CC00-CC7F

  [ DVD/CD-ROM drives / _NEC DVD_RW ND-3540A SCSI CdRom Device ]

     :
                                        _NEC DVD_RW ND-3540A SCSI CdRom Device
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          cdrom.inf
       ID                                     SCSI\CdRom_NEC____DVD_RW_ND-3540A_1.01
                                     Bus Number 0, Target ID 0, LUN 0

  [ DVD/CD-ROM drives / GTQRWDC IZW9QNOLI SCSI CdRom Device ]

     :
                                        GTQRWDC IZW9QNOLI SCSI CdRom Device
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          cdrom.inf
       ID                                     SCSI\CdRomGTQRWDC_IZW9QNOLI_______3.5Z
                                     Bus Number 0, Target ID 0, LUN 0

  [ Floppy disk controllers / Standard floppy disk controller ]

     :
                                        Standard floppy disk controller
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          fdc.inf
       ID                                     ACPI\PNP0700
      PnP-                                    Floppy Disk Controller

     :
      DMA                                               02
      IRQ                                               06
                                                    03F0-03F5
                                                    03F7-03F7

  [ Floppy disk drives / Floppy disk drive ]

     :
                                        Floppy disk drive
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          flpydisk.inf
       ID                                     FDC\GENERIC_FLOPPY_DRIVE

  [ IDE ATA/ATAPI controllers / Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26 ]

     :
                                        Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
                                            25.02.2008
                                          9.0.0.1005
                                       Intel
      INF-                                          oem3.inf
       ID                                     PCI\VEN_8086&DEV_3A26&SUBSYS_82D41043&REV_00
                                     PCI bus 0, device 31, function 5
      PCI-                                    Intel 82801JB ICH10 - 2-port SATA Controller

     :
      IRQ                                               19
                                                    A400-A40F
                                                    A480-A48F
                                                    A800-A803
                                                    A880-A887
                                                    AC00-AC03
                                                    B000-B007

  [ IDE ATA/ATAPI controllers / Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20 ]

     :
                                        Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20
                                            25.02.2008
                                          9.0.0.1005
                                       Intel
      INF-                                          oem3.inf
       ID                                     PCI\VEN_8086&DEV_3A20&SUBSYS_82D41043&REV_00
                                     PCI bus 0, device 31, function 2
      PCI-                                    Intel 82801JB ICH10 - 4-port SATA Controller

     :
      IRQ                                               19
                                                    9400-940F
                                                    9480-948F
                                                    9800-9803
                                                    9880-9887
                                                    9C00-9C03
                                                    A000-A007

  [ IDE ATA/ATAPI controllers / Primary IDE Channel ]

     :
                                        Primary IDE Channel
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          mshdc.inf
       ID                                     Intel-3a26
                                     Primary Channel

  [ IDE ATA/ATAPI controllers / Primary IDE Channel ]

     :
                                        Primary IDE Channel
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          mshdc.inf
       ID                                     Intel-3a20
                                     Primary Channel

  [ IDE ATA/ATAPI controllers / Secondary IDE Channel ]

     :
                                        Secondary IDE Channel
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          mshdc.inf
       ID                                     Intel-3a26
                                     Secondary Channel

  [ IDE ATA/ATAPI controllers / Secondary IDE Channel ]

     :
                                        Secondary IDE Channel
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          mshdc.inf
       ID                                     Intel-3a20
                                     Secondary Channel

  [ IEEE 1394 Bus host controllers / AGERE OHCI Compliant IEEE 1394 Host Controller ]

     :
                                        AGERE OHCI Compliant IEEE 1394 Host Controller
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          1394.inf
       ID                                     PCI\VEN_11C1&DEV_5811&SUBSYS_00000000&REV_70
                                     PCI bus 5, device 3, function 0
      PCI-                                    AT&T/Lucent IEEE1394 FireWire Controller

     :
      IRQ                                               19
                                                  FEBFF000-FEBFFFFF

  [ Keyboards / Standard 101/102-Key or Microsoft Natural PS/2 Keyboard ]

     :
                                        Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          keyboard.inf
       ID                                     ACPI\PNP0303
      PnP-                                    101/102-Key or MS Natural Keyboard

     :
      IRQ                                               01
                                                    0060-0060
                                                    0064-0064

  [ Mice and other pointing devices / Microsoft PS/2 Mouse ]

     :
                                        Microsoft PS/2 Mouse
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          msmouse.inf
       ID                                     ACPI\PNP0F03
      PnP-                                    Microsoft PS/2 Port Mouse

     :
      IRQ                                               12

  [ Monitors / FLATRON 795FT PLUS/SUPER ]

     :
                                        FLATRON 795FT PLUS/SUPER
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          monitor5.inf
       ID                                     Monitor\GSM42DD
                                                 LG Flatron 795FT Plus

  [ Network adapters / 1394 Net Adapter ]

     :
                                        1394 Net Adapter
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          net1394.inf
       ID                                     V1394\NIC1394

  [ Network adapters / Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller - Packet Scheduler Miniport ]

     :
                                        Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller - Packet Scheduler Miniport
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          netpsa.inf
       ID                                     ms_pschedmp

  [ Network adapters / Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller ]

     :
                                        Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller
                                            26.06.2008
                                          1.0.0.27
                                       Atheros
      INF-                                          oem7.inf
       ID                                     PCI\VEN_1969&DEV_1026&SUBSYS_82261043&REV_B0
                                     PCI bus 2, device 0, function 0
      PCI-                                    Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller

     :
      IRQ                                               17
                                                  FE9C0000-FE9FFFFF
                                                    DC00-DC7F

  [ Network adapters / Direct Parallel ]

     :
                                        Direct Parallel
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          netrasa.inf
       ID                                     ms_ptiminiport

  [ Network adapters / WAN Miniport (IP) - Packet Scheduler Miniport ]

     :
                                        WAN Miniport (IP) - Packet Scheduler Miniport
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          netpsa.inf
       ID                                     ms_pschedmp

  [ Network adapters / WAN Miniport (IP) ]

     :
                                        WAN Miniport (IP)
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          netrasa.inf
       ID                                     ms_ndiswanip

  [ Network adapters / WAN Miniport (L2TP) ]

     :
                                        WAN Miniport (L2TP)
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          netrasa.inf
       ID                                     ms_l2tpminiport

  [ Network adapters / WAN Miniport (PPPOE) ]

     :
                                        WAN Miniport (PPPOE)
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          netrasa.inf
       ID                                     ms_pppoeminiport

  [ Network adapters / WAN Miniport (PPTP) ]

     :
                                        WAN Miniport (PPTP)
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          netrasa.inf
       ID                                     ms_pptpminiport

  [ Non-Plug and Play Drivers / 1394 ARP Client Protocol ]

     :
                                        1394 ARP Client Protocol

  [ Non-Plug and Play Drivers / AFD ]

     :
                                        AFD

  [ Non-Plug and Play Drivers / AsIO ]

     :
                                        AsIO

  [ Non-Plug and Play Drivers / Beep ]

     :
                                        Beep

  [ Non-Plug and Play Drivers / Cardex ]

     :
                                        Cardex

  [ Non-Plug and Play Drivers / CdaC15BA ]

     :
                                        CdaC15BA

  [ Non-Plug and Play Drivers / CdaD10BA ]

     :
                                        CdaD10BA

  [ Non-Plug and Play Drivers / CRC Disk Filter Driver ]

     :
                                        CRC Disk Filter Driver

  [ Non-Plug and Play Drivers / dmboot ]

     :
                                        dmboot

  [ Non-Plug and Play Drivers / dmload ]

     :
                                        dmload

  [ Non-Plug and Play Drivers / ehdrv ]

     :
                                        ehdrv

  [ Non-Plug and Play Drivers / EIO_XP ]

     :
                                        EIO_XP

  [ Non-Plug and Play Drivers / epfwtdir ]

     :
                                        epfwtdir

  [ Non-Plug and Play Drivers / Fips ]

     :
                                        Fips

  [ Non-Plug and Play Drivers / Generic Packet Classifier ]

     :
                                        Generic Packet Classifier

  [ Non-Plug and Play Drivers / HTTP ]

     :
                                        HTTP

  [ Non-Plug and Play Drivers / IP Network Address Translator ]

     :
                                        IP Network Address Translator

  [ Non-Plug and Play Drivers / IPSEC driver ]

     :
                                        IPSEC driver

  [ Non-Plug and Play Drivers / ksecdd ]

     :
                                        ksecdd

  [ Non-Plug and Play Drivers / mnmdd ]

     :
                                        mnmdd

  [ Non-Plug and Play Drivers / mountmgr ]

     :
                                        mountmgr

  [ Non-Plug and Play Drivers / NDIS System Driver ]

     :
                                        NDIS System Driver

  [ Non-Plug and Play Drivers / NDIS Usermode I/O Protocol ]

     :
                                        NDIS Usermode I/O Protocol

  [ Non-Plug and Play Drivers / NDProxy ]

     :
                                        NDProxy

  [ Non-Plug and Play Drivers / NetBios over Tcpip ]

     :
                                        NetBios over Tcpip

  [ Non-Plug and Play Drivers / Null ]

     :
                                        Null

  [ Non-Plug and Play Drivers / Partition Manager ]

     :
                                        Partition Manager

  [ Non-Plug and Play Drivers / RDPCDD ]

     :
                                        RDPCDD

  [ Non-Plug and Play Drivers / Remote Access Auto Connection Driver ]

     :
                                        Remote Access Auto Connection Driver

  [ Non-Plug and Play Drivers / Remote Access IP ARP Driver ]

     :
                                        Remote Access IP ARP Driver

  [ Non-Plug and Play Drivers / Remote Access NDIS TAPI Driver ]

     :
                                        Remote Access NDIS TAPI Driver

  [ Non-Plug and Play Drivers / Security Driver ]

     :
                                        Security Driver

  [ Non-Plug and Play Drivers / sptd ]

     :
                                        sptd

  [ Non-Plug and Play Drivers / SSPORT ]

     :
                                        SSPORT

  [ Non-Plug and Play Drivers / Storage volumes ]

     :
                                        Storage volumes

  [ Non-Plug and Play Drivers / TCP/IP Protocol Driver ]

     :
                                        TCP/IP Protocol Driver

  [ Non-Plug and Play Drivers / VGA Display Controller. ]

     :
                                        VGA Display Controller.

  [ Non-Plug and Play Drivers / Windows Socket 2.0 Non-IFS Service Provider Support Environment ]

     :
                                        Windows Socket 2.0 Non-IFS Service Provider Support Environment

  [ Ports (COM & LPT) / Communications Port (COM1) ]

     :
                                        Communications Port (COM1)
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          msports.inf
       ID                                     ACPI\PNP0501
      PnP-                                    16550A-compatible UART Serial Port

     :
      IRQ                                               04
                                                    03F8-03FF

  [ Processors / Intel(R) Core(TM)2 Duo CPU     E8400  @ 3.00GHz ]

     :
                                        Intel(R) Core(TM)2 Duo CPU     E8400  @ 3.00GHz
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          cpu.inf
       ID                                     ACPI\GenuineIntel_-_EM64T_Family_6_Model_23

  [ Processors / Intel(R) Core(TM)2 Duo CPU     E8400  @ 3.00GHz ]

     :
                                        Intel(R) Core(TM)2 Duo CPU     E8400  @ 3.00GHz
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          cpu.inf
       ID                                     ACPI\GenuineIntel_-_EM64T_Family_6_Model_23

  [ SCSI and RAID controllers / A64FS6YR IDE Controller ]

     :
                                        A64FS6YR IDE Controller
       ID                                     ACPI\PNPA000
      PnP-                                    Adaptec 154x-compatible Controller

     :
      IRQ                                               09
                                                    FFE0-FFEF

  [ SCSI and RAID controllers / Marvell 61xx RAID Controller ]

     :
                                        Marvell 61xx RAID Controller
                                            23.06.2008
                                          1.2.0.57
                                       Marvell Inc.
      INF-                                          oem8.inf
       ID                                     PCI\VEN_11AB&DEV_6121&SUBSYS_82E01043&REV_B2
                                     PCI bus 3, device 0, function 0
      PCI-                                    Marvell 88SE6121 Serial ATA II Host Controller

     :
      IRQ                                               16
                                                  FEAFFC00-FEAFFFFF
                                                    E400-E40F
                                                    E480-E483
                                                    E800-E807
                                                    E880-E883
                                                    EC00-EC07

  [ Sound, video and game controllers / Audio Codecs ]

     :
                                        Audio Codecs
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          wave.inf
       ID                                     MS_MMACM

  [ Sound, video and game controllers / Legacy Audio Drivers ]

     :
                                        Legacy Audio Drivers
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          wave.inf
       ID                                     MS_MMDRV

  [ Sound, video and game controllers / Legacy Video Capture Devices ]

     :
                                        Legacy Video Capture Devices
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          wave.inf
       ID                                     MS_MMVCD

  [ Sound, video and game controllers / Media Control Devices ]

     :
                                        Media Control Devices
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          wave.inf
       ID                                     MS_MMMCI

  [ Sound, video and game controllers / Microsoft Kernel System Audio Device ]

     :
                                        Microsoft Kernel System Audio Device
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          wdmaudio.inf
       ID                                     SW\{a7c7a5b0-5af3-11d1-9ced-00a024bf0407}

  [ Sound, video and game controllers / Microsoft Kernel Wave Audio Mixer ]

     :
                                        Microsoft Kernel Wave Audio Mixer
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          wdmaudio.inf
       ID                                     SW\{b7eafdc0-a680-11d0-96d8-00aa0051e51d}

  [ Sound, video and game controllers / Microsoft WINMM WDM Audio Compatibility Driver ]

     :
                                        Microsoft WINMM WDM Audio Compatibility Driver
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          wdmaudio.inf
       ID                                     SW\{cd171de3-69e5-11d2-b56d-0000f8754380}

  [ Sound, video and game controllers / Realtek High Definition Audio ]

     :
                                        Realtek High Definition Audio
                                            20.05.2008
                                          5.10.0.5628
                                       Realtek Semiconductor Corp.
      INF-                                          oem6.inf
       ID                                     HDAUDIO\FUNC_01&VEN_10EC&DEV_0888&SUBSYS_104382FE&REV_1001
                                     Internal High Definition Audio Bus

  [ Sound, video and game controllers / Video Codecs ]

     :
                                        Video Codecs
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          wave.inf
       ID                                     MS_MMVID

  [ Storage volumes / Generic volume ]

     :
                                        Generic volume
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          volume.inf
       ID                                     STORAGE\Volume

  [ Storage volumes / Generic volume ]

     :
                                        Generic volume
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          volume.inf
       ID                                     STORAGE\Volume

  [ Storage volumes / Generic volume ]

     :
                                        Generic volume
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          volume.inf
       ID                                     STORAGE\Volume

  [ Storage volumes / Generic volume ]

     :
                                        Generic volume
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          volume.inf
       ID                                     STORAGE\Volume

  [ System devices / ACPI Fixed Feature Button ]

     :
                                        ACPI Fixed Feature Button
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\FixedButton

  [ System devices / ACPI Power Button ]

     :
                                        ACPI Power Button
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0C0C
      PnP-                                    Power Button

  [ System devices / ATK0110 ACPI UTILITY ]

     :
                                        ATK0110 ACPI UTILITY
                                            21.01.2008
                                          1043.5.0.0
                                       ATK
      INF-                                          oem0.inf
       ID                                     ACPI\ATK0110
      PnP-                                    Asus ATK-110 ACPI Utility

  [ System devices / Direct memory access controller ]

     :
                                        Direct memory access controller
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0200
      PnP-                                    DMA Controller

     :
      DMA                                               04
                                                    0000-000F
                                                    0081-0083
                                                    0087-0087
                                                    0089-008B
                                                    008F-008F
                                                    00C0-00DF

  [ System devices / Extended IO Bus ]

     :
                                        Extended IO Bus
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0A06
      PnP-                                    Extended IO Bus

  [ System devices / High precision event timer ]

     :
                                        High precision event timer
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0103
      PnP-                                    High Precision Event Timer

     :
                                                  FED00000-FED003FF

  [ System devices / Intel(R) 4 Series Chipset PCI Express Root Port - 2E21 ]

     :
                                        Intel(R) 4 Series Chipset PCI Express Root Port - 2E21
                                            27.05.2008
                                          9.0.0.1009
                                       Intel
      INF-                                          oem1.inf
       ID                                     PCI\VEN_8086&DEV_2E21&SUBSYS_00000000&REV_03
                                     PCI bus 0, device 1, function 0
      PCI-                                    Intel G43/G45/P43/P45 Chipset - Primary PCI Express x16 Root [A-3]

     :
      IRQ                                               16
                                                  000A0000-000BFFFF
                                                  D0000000-DFFFFFFF
                                                  FA000000-FE8FFFFF
                                                    03B0-03BB
                                                    03C0-03DF
                                                    C000-CFFF

  [ System devices / Intel(R) 4 Series Chipset Processor to I/O Controller - 2E20 ]

     :
                                        Intel(R) 4 Series Chipset Processor to I/O Controller - 2E20
                                            27.05.2008
                                          9.0.0.1009
                                       Intel
      INF-                                          oem1.inf
       ID                                     PCI\VEN_8086&DEV_2E20&SUBSYS_00000000&REV_03
                                     PCI bus 0, device 0, function 0
      PCI-                                    Intel G43/G45/P43/P45 Chipset - Memory Controller Hub [A-3]

  [ System devices / Intel(R) 82801 PCI Bridge - 244E ]

     :
                                        Intel(R) 82801 PCI Bridge - 244E
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     PCI\VEN_8086&DEV_244E&SUBSYS_00000000&REV_90
                                     PCI bus 0, device 30, function 0
      PCI-                                    Intel 82801JB I/O Controller Hub 10 (ICH10) [A-0]

  [ System devices / Intel(R) 82802 Firmware Hub Device ]

     :
                                        Intel(R) 82802 Firmware Hub Device
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\INT0800
      PnP-                                    Intel Flash EEPROM

     :
                                                  FFB00000-FFBFFFFF
                                                  FFF00000-FFFFFFFF

  [ System devices / Intel(R) ICH10 Family PCI Express Root Port 1 - 3A40 ]

     :
                                        Intel(R) ICH10 Family PCI Express Root Port 1 - 3A40
                                            27.05.2008
                                          9.0.0.1009
                                       Intel
      INF-                                          oem2.inf
       ID                                     PCI\VEN_8086&DEV_3A40&SUBSYS_00000000&REV_00
                                     PCI bus 0, device 28, function 0
      PCI-                                    Intel 82801JB ICH10 - PCI Express Root Port 1

     :
      IRQ                                               17
                                                  F8F00000-F8FFFFFF

  [ System devices / Intel(R) ICH10 Family PCI Express Root Port 5 - 3A48 ]

     :
                                        Intel(R) ICH10 Family PCI Express Root Port 5 - 3A48
                                            27.05.2008
                                          9.0.0.1009
                                       Intel
      INF-                                          oem2.inf
       ID                                     PCI\VEN_8086&DEV_3A48&SUBSYS_00000000&REV_00
                                     PCI bus 0, device 28, function 4
      PCI-                                    Intel 82801JB ICH10 - PCI Express Root Port 5

     :
      IRQ                                               17
                                                  FEA00000-FEAFFFFF
                                                    E000-EFFF

  [ System devices / Intel(R) ICH10 Family PCI Express Root Port 6 - 3A4A ]

     :
                                        Intel(R) ICH10 Family PCI Express Root Port 6 - 3A4A
                                            27.05.2008
                                          9.0.0.1009
                                       Intel
      INF-                                          oem2.inf
       ID                                     PCI\VEN_8086&DEV_3A4A&SUBSYS_00000000&REV_00
                                     PCI bus 0, device 28, function 5
      PCI-                                    Intel 82801JB ICH10 - PCI Express Root Port 6

     :
      IRQ                                               16
                                                  FE900000-FE9FFFFF
                                                    D000-DFFF

  [ System devices / Intel(R) ICH10 Family SMBus Controller - 3A30 ]

     :
                                        Intel(R) ICH10 Family SMBus Controller - 3A30
                                            25.02.2008
                                          9.0.0.1005
                                       Intel
      INF-                                          oem4.inf
       ID                                     PCI\VEN_8086&DEV_3A30&SUBSYS_82D41043&REV_00
                                     PCI bus 0, device 31, function 3
      PCI-                                    Intel 82801JB ICH10 - SMBus Controller

     :
      IRQ                                               15
                                                  F9FFF400-F9FFF4FF
                                                    0400-041F

  [ System devices / Intel(R) ICH10R LPC Interface Controller - 3A16 ]

     :
                                        Intel(R) ICH10R LPC Interface Controller - 3A16
                                            27.05.2008
                                          9.0.0.1009
                                       Intel
      INF-                                          oem2.inf
       ID                                     PCI\VEN_8086&DEV_3A16&SUBSYS_00000000&REV_00
                                     PCI bus 0, device 31, function 0
      PCI-                                    Intel 82801JB ICH10R - LPC Bridge

  [ System devices / Logical Disk Manager ]

     :
                                        Logical Disk Manager
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ROOT\DMIO

  [ System devices / Marvell Virtual Device ]

     :
                                        Marvell Virtual Device
                                            10.06.2008
                                          1.2.0.57
                                       Marvell Inc.
      INF-                                          oem9.inf
       ID                                     SCSI\ArrayMARVELL_Virtual_Device__1.00
                                     Bus Number 0, Target ID 20, LUN 0

  [ System devices / Microcode Update Device ]

     :
                                        Microcode Update Device
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     root\update

  [ System devices / Microsoft ACPI-Compliant System ]

     :
                                        Microsoft ACPI-Compliant System
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          acpi.inf
       ID                                     ACPI_HAL\PNP0C08
      PnP-                                    ACPI Driver/BIOS

     :
      IRQ                                               09

  [ System devices / Microsoft System Management BIOS Driver ]

     :
                                        Microsoft System Management BIOS Driver
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     root\mssmbios

  [ System devices / Microsoft UAA Bus Driver for High Definition Audio ]

     :
                                        Microsoft UAA Bus Driver for High Definition Audio
                                            05.03.2004
                                          5.10.0.5010
                                       Microsoft
      INF-                                          oem17.inf
       ID                                     PCI\VEN_8086&DEV_3A3E&SUBSYS_82FE1043&REV_00
                                     PCI bus 0, device 27, function 0
      PCI-                                    Intel 82801JB ICH10 - High Definition Audio Controller

     :
      IRQ                                               22
                                                  F9FF8000-F9FFBFFF

  [ System devices / Motherboard resources ]

     :
                                        Motherboard resources
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0C02
      PnP-                                    Motherboard Resources

     :
                                                  E0000000-EFFFFFFF

  [ System devices / Motherboard resources ]

     :
                                        Motherboard resources
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0C02
      PnP-                                    Motherboard Resources

     :
                                                  FFC00000-FFEFFFFF

  [ System devices / Motherboard resources ]

     :
                                        Motherboard resources
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0C02
      PnP-                                    Motherboard Resources

     :
                                                    0290-029F

  [ System devices / Motherboard resources ]

     :
                                        Motherboard resources
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0C02
      PnP-                                    Motherboard Resources

     :
                                                  FED08000-FED08FFF
                                                  FED1C000-FED1FFFF
                                                  FED20000-FED3FFFF
                                                  FED50000-FED8FFFF
                                                    0010-001F
                                                    0022-003F
                                                    0044-004D
                                                    0050-005F
                                                    0062-0063
                                                    0065-006F
                                                    0072-007F
                                                    0080-0080
                                                    0084-0086
                                                    0088-0088
                                                    008C-008E
                                                    0090-009F
                                                    00A2-00BF
                                                    00E0-00EF
                                                    04D0-04D1
                                                    0500-057F
                                                    0800-087F

  [ System devices / Motherboard resources ]

     :
                                        Motherboard resources
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0C02
      PnP-                                    Motherboard Resources

     :
                                                  FEC00000-FEC00FFF
                                                  FEE00000-FEE00FFF

  [ System devices / Numeric data processor ]

     :
                                        Numeric data processor
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0C04
      PnP-                                    Numeric Data Processor

     :
      IRQ                                               13
                                                    00F0-00FF

  [ System devices / PCI bus ]

     :
                                        PCI bus
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0A08
      PnP-                                    ACPI Three-wire Device Bus

     :
                                                  000A0000-000BFFFF
                                                  000D0000-000DFFFF
                                                  D0000000-DFFFFFFF
                                                  F0000000-FFFFFFFF
                                                    0000-0CF7
                                                    0D00-FFFF

  [ System devices / Plug and Play Software Device Enumerator ]

     :
                                        Plug and Play Software Device Enumerator
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     root\swenum

  [ System devices / Programmable interrupt controller ]

     :
                                        Programmable interrupt controller
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0000
      PnP-                                    Programmable Interrupt Controller

     :
                                                    0020-0021
                                                    00A0-00A1

  [ System devices / System board ]

     :
                                        System board
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0C01
      PnP-                                    System Board Extension

     :
                                                  00000000-0009FFFF
                                                  000C0000-000CFFFF
                                                  000E0000-000FFFFF
                                                  00100000-CFFFFFFF
                                                  E0000000-FFFFFFFF

  [ System devices / System board ]

     :
                                        System board
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0C01
      PnP-                                    System Board Extension

     :
                                                  FED14000-FED19FFF

  [ System devices / System CMOS/real time clock ]

     :
                                        System CMOS/real time clock
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0B00
      PnP-                                    Real-Time Clock

     :
      IRQ                                               08
                                                    0070-0071

  [ System devices / System speaker ]

     :
                                        System speaker
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0800
      PnP-                                    PC Speaker

     :
                                                    0061-0061

  [ System devices / System timer ]

     :
                                        System timer
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0100
      PnP-                                    System Timer

     :
      IRQ                                               00
                                                    0040-0043

  [ System devices / Terminal Server Device Redirector ]

     :
                                        Terminal Server Device Redirector
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ROOT\RDPDR

  [ System devices / Terminal Server Keyboard Driver ]

     :
                                        Terminal Server Keyboard Driver
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ROOT\RDP_KBD

  [ System devices / Terminal Server Mouse Driver ]

     :
                                        Terminal Server Mouse Driver
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ROOT\RDP_MOU

  [ System devices / Volume Manager ]

     :
                                        Volume Manager
                                            01.10.2002
                                          5.2.3790.3959
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ROOT\FTDISK

  [ Universal Serial Bus controllers / Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3A ]

     :
                                        Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3A
                                            25.02.2008
                                          9.0.0.1005
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_3A3A&SUBSYS_82D41043&REV_00
                                     PCI bus 0, device 29, function 7
      PCI-                                    Intel 82801JB ICH10 - USB2 Enhanced Host Controller

     :
      IRQ                                               23
                                                  F9FFF800-F9FFFBFF

  [ Universal Serial Bus controllers / Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3C ]

     :
                                        Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3C
                                            25.02.2008
                                          9.0.0.1005
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_3A3C&SUBSYS_82D41043&REV_00
                                     PCI bus 0, device 26, function 7
      PCI-                                    Intel 82801JB ICH10 - USB2 Enhanced Host Controller

     :
      IRQ                                               18
                                                  F9FFFC00-F9FFFFFF

  [ Universal Serial Bus controllers / Intel(R) ICH10 Family USB Universal Host Controller - 3A34 ]

     :
                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A34
                                            25.02.2008
                                          9.0.0.1005
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_3A34&SUBSYS_82D41043&REV_00
                                     PCI bus 0, device 29, function 0
      PCI-                                    Intel 82801JB ICH10 - USB Universal Host Controller

     :
      IRQ                                               23
                                                    B080-B09F

  [ Universal Serial Bus controllers / Intel(R) ICH10 Family USB Universal Host Controller - 3A35 ]

     :
                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A35
                                            25.02.2008
                                          9.0.0.1005
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_3A35&SUBSYS_82D41043&REV_00
                                     PCI bus 0, device 29, function 1
      PCI-                                    Intel 82801JB ICH10 - USB Universal Host Controller

     :
      IRQ                                               19
                                                    B400-B41F

  [ Universal Serial Bus controllers / Intel(R) ICH10 Family USB Universal Host Controller - 3A36 ]

     :
                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A36
                                            25.02.2008
                                          9.0.0.1005
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_3A36&SUBSYS_82D41043&REV_00
                                     PCI bus 0, device 29, function 2
      PCI-                                    Intel 82801JB ICH10 - USB Universal Host Controller

     :
      IRQ                                               18
                                                    B480-B49F

  [ Universal Serial Bus controllers / Intel(R) ICH10 Family USB Universal Host Controller - 3A37 ]

     :
                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A37
                                            25.02.2008
                                          9.0.0.1005
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_3A37&SUBSYS_82D41043&REV_00
                                     PCI bus 0, device 26, function 0
      PCI-                                    Intel 82801JB ICH10 - USB Universal Host Controller

     :
      IRQ                                               16
                                                    B800-B81F

  [ Universal Serial Bus controllers / Intel(R) ICH10 Family USB Universal Host Controller - 3A38 ]

     :
                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A38
                                            25.02.2008
                                          9.0.0.1005
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_3A38&SUBSYS_82D41043&REV_00
                                     PCI bus 0, device 26, function 1
      PCI-                                    Intel 82801JB ICH10 - USB Universal Host Controller

     :
      IRQ                                               21
                                                    B880-B89F

  [ Universal Serial Bus controllers / Intel(R) ICH10 Family USB Universal Host Controller - 3A39 ]

     :
                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A39
                                            25.02.2008
                                          9.0.0.1005
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_3A39&SUBSYS_82D41043&REV_00
                                     PCI bus 0, device 26, function 2
      PCI-                                    Intel 82801JB ICH10 - USB Universal Host Controller

     :
      IRQ                                               18
                                                    BC00-BC1F

  [ Universal Serial Bus controllers / USB Mass Storage Device ]

     :
                                        USB Mass Storage Device
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          usbstor.inf
       ID                                     USB\Vid_0930&Pid_6532&Rev_0100
                                     DataTraveler 2.0

  [ Universal Serial Bus controllers / USB Mass Storage Device ]

     :
                                        USB Mass Storage Device
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          usbstor.inf
       ID                                     USB\Vid_058f&Pid_6387&Rev_0141
                                     Mass Storage Device

  [ Universal Serial Bus controllers / USB Root Hub ]

     :
                                        USB Root Hub
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB&VID8086&PID3A36&REV0000

  [ Universal Serial Bus controllers / USB Root Hub ]

     :
                                        USB Root Hub
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB&VID8086&PID3A39&REV0000

  [ Universal Serial Bus controllers / USB Root Hub ]

     :
                                        USB Root Hub
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB&VID8086&PID3A35&REV0000

  [ Universal Serial Bus controllers / USB Root Hub ]

     :
                                        USB Root Hub
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB&VID8086&PID3A38&REV0000

  [ Universal Serial Bus controllers / USB Root Hub ]

     :
                                        USB Root Hub
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB&VID8086&PID3A34&REV0000

  [ Universal Serial Bus controllers / USB Root Hub ]

     :
                                        USB Root Hub
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB&VID8086&PID3A37&REV0000

  [ Universal Serial Bus controllers / USB Root Hub ]

     :
                                        USB Root Hub
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB20&VID8086&PID3A3A&REV0000

  [ Universal Serial Bus controllers / USB Root Hub ]

     :
                                        USB Root Hub
                                            01.10.2002
                                          5.2.3790.1830
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB20&VID8086&PID3A3C&REV0000


--------[   ]---------------------------------------------------------------------------------------

     PCI:
       5,  3,  0                   AT&T/Lucent IEEE1394 FireWire Controller
       2,  0,  0                   Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller
       0,  30,  0                  Intel 82801JB I/O Controller Hub 10 (ICH10) [A-0]
       0,  31,  5                  Intel 82801JB ICH10 - 2-port SATA Controller
       0,  31,  2                  Intel 82801JB ICH10 - 4-port SATA Controller
       0,  27,  0                  Intel 82801JB ICH10 - High Definition Audio Controller
       0,  28,  0                  Intel 82801JB ICH10 - PCI Express Root Port 1
       0,  28,  4                  Intel 82801JB ICH10 - PCI Express Root Port 5
       0,  28,  5                  Intel 82801JB ICH10 - PCI Express Root Port 6
       0,  31,  3                  Intel 82801JB ICH10 - SMBus Controller
       0,  26,  0                  Intel 82801JB ICH10 - USB Universal Host Controller
       0,  26,  1                  Intel 82801JB ICH10 - USB Universal Host Controller
       0,  26,  2                  Intel 82801JB ICH10 - USB Universal Host Controller
       0,  29,  0                  Intel 82801JB ICH10 - USB Universal Host Controller
       0,  29,  1                  Intel 82801JB ICH10 - USB Universal Host Controller
       0,  29,  2                  Intel 82801JB ICH10 - USB Universal Host Controller
       0,  26,  7                  Intel 82801JB ICH10 - USB2 Enhanced Host Controller
       0,  29,  7                  Intel 82801JB ICH10 - USB2 Enhanced Host Controller
       0,  31,  0                  Intel 82801JB ICH10R - LPC Bridge
       0,  0,  0                   Intel G43/G45/P43/P45 Chipset - Memory Controller Hub [A-3]
       0,  1,  0                   Intel G43/G45/P43/P45 Chipset - Primary PCI Express x16 Root [A-3]
       3,  0,  0                   Marvell 88SE6121 Serial ATA II Host Controller
       1,  0,  0                   nVIDIA GeForce GTX 260 Video Adapter

     PnP:
      PNP0303                                           101/102-Key or MS Natural Keyboard
      PNP0501                                           16550A-compatible UART Serial Port
      PNP0C08                                           ACPI Driver/BIOS
      FIXEDBUTTON                                       ACPI Fixed Feature Button
      PNP0A08                                           ACPI Three-wire Device Bus
      PNPA000                                           Adaptec 154x-compatible Controller
      ATK0110                                           Asus ATK-110 ACPI Utility
      PNP0200                                           DMA Controller
      PNP0A06                                           Extended IO Bus
      PNP0700                                           Floppy Disk Controller
      PNP0103                                           High Precision Event Timer
      INT0800                                           Intel Flash EEPROM
      GENUINEINTEL_-_EM64T_FAMILY_6_MODEL_23            Intel(R) Core(TM)2 Duo CPU     E8400  @ 3.00GHz
      GENUINEINTEL_-_EM64T_FAMILY_6_MODEL_23            Intel(R) Core(TM)2 Duo CPU     E8400  @ 3.00GHz
      PNP0F03                                           Microsoft PS/2 Port Mouse
      PNP0C02                                           Motherboard Resources
      PNP0C02                                           Motherboard Resources
      PNP0C02                                           Motherboard Resources
      PNP0C02                                           Motherboard Resources
      PNP0C02                                           Motherboard Resources
      PNP0C04                                           Numeric Data Processor
      PNP0800                                           PC Speaker
      PNP0C0C                                           Power Button
      PNP0000                                           Programmable Interrupt Controller
      PNP0B00                                           Real-Time Clock
      PNP0C01                                           System Board Extension
      PNP0C01                                           System Board Extension
      PNP0100                                           System Timer

     USB:
      058F 6387                                         USB Mass Storage Device
      0930 6532                                         USB Mass Storage Device

    :
      COM1                                              Communications Port (COM1)


--------[  PCI ]----------------------------------------------------------------------------------------------

  [ AT&T/Lucent IEEE1394 FireWire Controller ]

     :
                                      AT&T/Lucent IEEE1394 FireWire Controller
                                                 PCI
       /  /                        5 / 3 / 0
      ID                                      11C1-5811
                               1043-8294
                                         0C00 (FireWire Controller)
                                                  70
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller ]

     :
                                      Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller
                                                 PCI Express 1.0 x1
       /  /                        2 / 0 / 0
      ID                                      1969-1026
                               1043-8226
                                         0200 (Ethernet Controller)
                                                  B0
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB I/O Controller Hub 10 (ICH10) [A-0] ]

     :
                                      Intel 82801JB I/O Controller Hub 10 (ICH10) [A-0]
                                                 PCI
       /  /                        0 / 30 / 0
      ID                                      8086-244E
                               0000-0000
                                         0604 (PCI/PCI Bridge)
                                                  90
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - 2-port SATA Controller ]

     :
                                      Intel 82801JB ICH10 - 2-port SATA Controller
                                                 PCI
       /  /                        0 / 31 / 5
      ID                                      8086-3A26
                               1043-82D4
                                         0101 (IDE Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                    
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - 4-port SATA Controller ]

     :
                                      Intel 82801JB ICH10 - 4-port SATA Controller
                                                 PCI
       /  /                        0 / 31 / 2
      ID                                      8086-3A20
                               1043-82D4
                                         0101 (IDE Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                    
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - High Definition Audio Controller ]

     :
                                      Intel 82801JB ICH10 - High Definition Audio Controller
                                                 PCI Express 1.0
       /  /                        0 / 27 / 0
      ID                                      8086-3A3E
                               1043-82FE
                                         0403 (High Definition Audio)
                                                  00
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - PCI Express Root Port 1 ]

     :
                                      Intel 82801JB ICH10 - PCI Express Root Port 1
                                                 PCI
       /  /                        0 / 28 / 0
      ID                                      8086-3A40
                               0000-0000
                                         0604 (PCI/PCI Bridge)
                                                  00
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - PCI Express Root Port 5 ]

     :
                                      Intel 82801JB ICH10 - PCI Express Root Port 5
                                                 PCI
       /  /                        0 / 28 / 4
      ID                                      8086-3A48
                               0000-0000
                                         0604 (PCI/PCI Bridge)
                                                  00
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - PCI Express Root Port 6 ]

     :
                                      Intel 82801JB ICH10 - PCI Express Root Port 6
                                                 PCI
       /  /                        0 / 28 / 5
      ID                                      8086-3A4A
                               0000-0000
                                         0604 (PCI/PCI Bridge)
                                                  00
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - SMBus Controller ]

     :
                                      Intel 82801JB ICH10 - SMBus Controller
                                                 PCI
       /  /                        0 / 31 / 3
      ID                                      8086-3A30
                               1043-82D4
                                         0C05 (SMBus Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - USB Universal Host Controller ]

     :
                                      Intel 82801JB ICH10 - USB Universal Host Controller
                                                 PCI
       /  /                        0 / 26 / 0
      ID                                      8086-3A37
                               1043-82D4
                                         0C03 (USB Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - USB Universal Host Controller ]

     :
                                      Intel 82801JB ICH10 - USB Universal Host Controller
                                                 PCI
       /  /                        0 / 26 / 1
      ID                                      8086-3A38
                               1043-82D4
                                         0C03 (USB Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - USB Universal Host Controller ]

     :
                                      Intel 82801JB ICH10 - USB Universal Host Controller
                                                 PCI
       /  /                        0 / 26 / 2
      ID                                      8086-3A39
                               1043-82D4
                                         0C03 (USB Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - USB Universal Host Controller ]

     :
                                      Intel 82801JB ICH10 - USB Universal Host Controller
                                                 PCI
       /  /                        0 / 29 / 0
      ID                                      8086-3A34
                               1043-82D4
                                         0C03 (USB Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - USB Universal Host Controller ]

     :
                                      Intel 82801JB ICH10 - USB Universal Host Controller
                                                 PCI
       /  /                        0 / 29 / 1
      ID                                      8086-3A35
                               1043-82D4
                                         0C03 (USB Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - USB Universal Host Controller ]

     :
                                      Intel 82801JB ICH10 - USB Universal Host Controller
                                                 PCI
       /  /                        0 / 29 / 2
      ID                                      8086-3A36
                               1043-82D4
                                         0C03 (USB Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - USB2 Enhanced Host Controller ]

     :
                                      Intel 82801JB ICH10 - USB2 Enhanced Host Controller
                                                 PCI
       /  /                        0 / 26 / 7
      ID                                      8086-3A3C
                               1043-82D4
                                         0C03 (USB Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - USB2 Enhanced Host Controller ]

     :
                                      Intel 82801JB ICH10 - USB2 Enhanced Host Controller
                                                 PCI
       /  /                        0 / 29 / 7
      ID                                      8086-3A3A
                               1043-82D4
                                         0C03 (USB Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10R - LPC Bridge ]

     :
                                      Intel 82801JB ICH10R - LPC Bridge
                                                 PCI
       /  /                        0 / 31 / 0
      ID                                      8086-3A16
                               1043-82D4
                                         0601 (PCI/ISA Bridge)
                                                  00
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel G43/G45/P43/P45 Chipset - Memory Controller Hub [A-3] ]

     :
                                      Intel G43/G45/P43/P45 Chipset - Memory Controller Hub [A-3]
                                                 PCI
       /  /                        0 / 0 / 0
      ID                                      8086-2E20
                               1043-82D3
                                         0600 (Host/PCI Bridge)
                                                  03
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel G43/G45/P43/P45 Chipset - Primary PCI Express x16 Root [A-3] ]

     :
                                      Intel G43/G45/P43/P45 Chipset - Primary PCI Express x16 Root [A-3]
                                                 PCI
       /  /                        0 / 1 / 0
      ID                                      8086-2E21
                               0000-0000
                                         0604 (PCI/PCI Bridge)
                                                  03
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Marvell 88SE6121 Serial ATA II Host Controller ]

     :
                                      Marvell 88SE6121 Serial ATA II Host Controller
                                                 PCI Express 1.0 x1
       /  /                        3 / 0 / 0
      ID                                      11AB-6121
                               1043-82E0
                                         0101 (IDE Controller)
                                                  B2
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ nVIDIA GeForce GTX 260 Video Adapter ]

     :
                                      nVIDIA GeForce GTX 260 Video Adapter
                                                 PCI Express 2.0 x16
       /  /                        1 / 0 / 0
      ID                                      10DE-05E2
                               0000-0000
                                         0300 (VGA Display Controller)
                                                  A1
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     


--------[  USB ]----------------------------------------------------------------------------------------------

  [ USB Mass Storage Device (Mass Storage Device) ]

     :
                                      USB Mass Storage Device
      ID                                      058F-6387
                                         08 / 06 (Mass Storage)
                                      50
                                           JetFlash
                                                 Mass Storage Device
                                           J3U3D0UO
        USB                         2.00
                                         High  (USB 2.0)

  [ USB Mass Storage Device (DataTraveler 2.0) ]

     :
                                      USB Mass Storage Device
      ID                                      0930-6532
                                         08 / 06 (Mass Storage)
                                      50
                                           Kingston
                                                 DataTraveler 2.0
                                           0BF07350B1E37971
        USB                         2.00
                                         High  (USB 2.0)


--------[   ]-------------------------------------------------------------------------------------------

    DMA 02                               Standard floppy disk controller
    DMA 04                               Direct memory access controller
    IRQ 00                               System timer
    IRQ 01                               Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
    IRQ 04                               Communications Port (COM1)
    IRQ 06                               Standard floppy disk controller
    IRQ 08                               System CMOS/real time clock
    IRQ 09                                        A64FS6YR IDE Controller
    IRQ 09                                        Microsoft ACPI-Compliant System
    IRQ 12                               Microsoft PS/2 Mouse
    IRQ 13                               Numeric data processor
    IRQ 15                                        Intel(R) ICH10 Family SMBus Controller - 3A30
    IRQ 16                                        Marvell 61xx RAID Controller
    IRQ 16                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A37
    IRQ 16                                        Intel(R) 4 Series Chipset PCI Express Root Port - 2E21
    IRQ 16                                        Intel(R) ICH10 Family PCI Express Root Port 6 - 3A4A
    IRQ 16                                        NVIDIA GeForce GTX 260
    IRQ 17                                        Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller
    IRQ 17                                        Intel(R) ICH10 Family PCI Express Root Port 1 - 3A40
    IRQ 17                                        Intel(R) ICH10 Family PCI Express Root Port 5 - 3A48
    IRQ 18                                        Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3C
    IRQ 18                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A36
    IRQ 18                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A39
    IRQ 19                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A35
    IRQ 19                                        Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
    IRQ 19                                        Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20
    IRQ 19                                        AGERE OHCI Compliant IEEE 1394 Host Controller
    IRQ 21                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A38
    IRQ 22                                        Microsoft UAA Bus Driver for High Definition Audio
    IRQ 23                                        Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3A
    IRQ 23                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A34
     00000000-0009FFFF             System board
     000A0000-000BFFFF                      PCI bus
     000A0000-000BFFFF                      NVIDIA GeForce GTX 260
     000A0000-000BFFFF               Intel(R) 4 Series Chipset PCI Express Root Port - 2E21
     000C0000-000CFFFF             System board
     000D0000-000DFFFF                      PCI bus
     000E0000-000FFFFF             System board
     00100000-CFFFFFFF             System board
     D0000000-DFFFFFFF             Intel(R) 4 Series Chipset PCI Express Root Port - 2E21
     D0000000-DFFFFFFF             NVIDIA GeForce GTX 260
     D0000000-DFFFFFFF                      PCI bus
     E0000000-EFFFFFFF             Motherboard resources
     E0000000-FFFFFFFF             System board
     F0000000-FFFFFFFF                      PCI bus
     F8F00000-F8FFFFFF             Intel(R) ICH10 Family PCI Express Root Port 1 - 3A40
     F9FF8000-F9FFBFFF             Microsoft UAA Bus Driver for High Definition Audio
     F9FFF400-F9FFF4FF               Intel(R) ICH10 Family SMBus Controller - 3A30
     F9FFF800-F9FFFBFF             Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3A
     F9FFFC00-F9FFFFFF             Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3C
     FA000000-FBFFFFFF             NVIDIA GeForce GTX 260
     FA000000-FE8FFFFF             Intel(R) 4 Series Chipset PCI Express Root Port - 2E21
     FD000000-FDFFFFFF             NVIDIA GeForce GTX 260
     FE900000-FE9FFFFF             Intel(R) ICH10 Family PCI Express Root Port 6 - 3A4A
     FE9C0000-FE9FFFFF             Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller
     FEA00000-FEAFFFFF             Intel(R) ICH10 Family PCI Express Root Port 5 - 3A48
     FEAFFC00-FEAFFFFF             Marvell 61xx RAID Controller
     FEBFF000-FEBFFFFF             AGERE OHCI Compliant IEEE 1394 Host Controller
     FEC00000-FEC00FFF             Motherboard resources
     FED00000-FED003FF             High precision event timer
     FED08000-FED08FFF             Motherboard resources
     FED14000-FED19FFF             System board
     FED1C000-FED1FFFF             Motherboard resources
     FED20000-FED3FFFF             Motherboard resources
     FED50000-FED8FFFF             Motherboard resources
     FEE00000-FEE00FFF             Motherboard resources
     FFB00000-FFBFFFFF             Intel(R) 82802 Firmware Hub Device
     FFC00000-FFEFFFFF             Motherboard resources
     FFF00000-FFFFFFFF             Intel(R) 82802 Firmware Hub Device
     0000-000F                       Direct memory access controller
     0000-0CF7                                PCI bus
     0010-001F                       Motherboard resources
     0020-0021                       Programmable interrupt controller
     0022-003F                       Motherboard resources
     0040-0043                       System timer
     0044-004D                       Motherboard resources
     0050-005F                       Motherboard resources
     0060-0060                       Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
     0061-0061                       System speaker
     0062-0063                       Motherboard resources
     0064-0064                       Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
     0065-006F                       Motherboard resources
     0070-0071                       System CMOS/real time clock
     0072-007F                       Motherboard resources
     0080-0080                       Motherboard resources
     0081-0083                       Direct memory access controller
     0084-0086                       Motherboard resources
     0087-0087                       Direct memory access controller
     0088-0088                       Motherboard resources
     0089-008B                       Direct memory access controller
     008C-008E                       Motherboard resources
     008F-008F                       Direct memory access controller
     0090-009F                       Motherboard resources
     00A0-00A1                       Programmable interrupt controller
     00A2-00BF                       Motherboard resources
     00C0-00DF                       Direct memory access controller
     00E0-00EF                       Motherboard resources
     00F0-00FF                       Numeric data processor
     0290-029F                       Motherboard resources
     03B0-03BB                                NVIDIA GeForce GTX 260
     03B0-03BB                         Intel(R) 4 Series Chipset PCI Express Root Port - 2E21
     03C0-03DF                                NVIDIA GeForce GTX 260
     03C0-03DF                         Intel(R) 4 Series Chipset PCI Express Root Port - 2E21
     03F0-03F5                       Standard floppy disk controller
     03F7-03F7                       Standard floppy disk controller
     03F8-03FF                       Communications Port (COM1)
     0400-041F                         Intel(R) ICH10 Family SMBus Controller - 3A30
     04D0-04D1                       Motherboard resources
     0500-057F                       Motherboard resources
     0800-087F                       Motherboard resources
     0D00-FFFF                                PCI bus
     9400-940F                       Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20
     9480-948F                       Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20
     9800-9803                       Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20
     9880-9887                       Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20
     9C00-9C03                       Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20
     A000-A007                       Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20
     A400-A40F                       Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
     A480-A48F                       Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
     A800-A803                       Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
     A880-A887                       Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
     AC00-AC03                       Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
     B000-B007                       Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
     B080-B09F                       Intel(R) ICH10 Family USB Universal Host Controller - 3A34
     B400-B41F                       Intel(R) ICH10 Family USB Universal Host Controller - 3A35
     B480-B49F                       Intel(R) ICH10 Family USB Universal Host Controller - 3A36
     B800-B81F                       Intel(R) ICH10 Family USB Universal Host Controller - 3A37
     B880-B89F                       Intel(R) ICH10 Family USB Universal Host Controller - 3A38
     BC00-BC1F                       Intel(R) ICH10 Family USB Universal Host Controller - 3A39
     C000-CFFF                       Intel(R) 4 Series Chipset PCI Express Root Port - 2E21
     CC00-CC7F                       NVIDIA GeForce GTX 260
     D000-DFFF                       Intel(R) ICH10 Family PCI Express Root Port 6 - 3A4A
     DC00-DC7F                       Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller
     E000-EFFF                       Intel(R) ICH10 Family PCI Express Root Port 5 - 3A48
     E400-E40F                       Marvell 61xx RAID Controller
     E480-E483                       Marvell 61xx RAID Controller
     E800-E807                       Marvell 61xx RAID Controller
     E880-E883                       Marvell 61xx RAID Controller
     EC00-EC07                       Marvell 61xx RAID Controller
     FFE0-FFEF                       A64FS6YR IDE Controller


--------[  ]--------------------------------------------------------------------------------------------------------

  [ Standard 101/102-Key or Microsoft Natural PS/2 Keyboard ]

     :
                                      Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
                                           IBM enhanced (101- or 102-key) keyboard
                                     US
        ANSI                             1251 - Cyrillic (Windows)
        OEM                              866 - Cyrillic (DOS)
                                         1
                                         31

  [ Microsoft PS/2 Mouse ]

     :
                                            Microsoft PS/2 Mouse
                                         3
                                              
                                         1
                                     500 msec
       X / Y                                       6 / 10
                                 3

     :
                               
      ''                                
                
                                            
                   
                                              
      Sonar                                             

     :
                                                   Microsoft Corporation
                                     http://www.microsoft.com/products
                                       http://www.microsoft.com/downloads
                                     http://driveragent.com?ref=59


--------[  ]----------------------------------------------------------------------------------------------------

  [ Samsung SCX-4200 Series ( ) ]

     :
                                             Samsung SCX-4200 Series
                                      
                                  
                                            USB001
                                         Samsung SCX-4200 Series (v5.00)
                                           Samsung SCX-4200 Series
                                         WinPrint
                                     
                                             17:00 - 17:00
                                               1
                                 0
                                                  

     :
                                              
                                          600 dpi Color

     :
                                                   Samsung
                                     http://www.samsung.com/us/consumer/type/type.do?group=printersmultifunction&type=printersmultifunction
                                     http://driveragent.com?ref=59


--------[  ]------------------------------------------------------------------------------------------------

    Alcmtr                             Registry\Common\Run      ALCMTR.EXE 
    AlcoholAutomount                   Registry\User\Run        C:\Program Files (x86)\Alcohol Soft\Alcohol 120\axcmd.exe /automount
    AlcWzrd                            Registry\Common\Run      ALCWZRD.EXE 
    CTFMON.EXE                         Registry\User\Run        C:\WINDOWS\system32\ctfmon.exe 
    Download Master                    Registry\User\Run        C:\Program Files (x86)\Download Master\dmaster.exe -autorun
    egui                               Registry\Common\Run      C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe /hide /waitservice
    farstone                           Registry\Common\Run      NULL 
    GrooveMonitor                      Registry\Common\Run      C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe 
    IMEKRMIG6.1                        Registry\Common\Run      C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE 
    IMJPMIG8.1                         Registry\Common\Run      C:\WINDOWS\IME (x86)\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
    IMJPMIG8.1                         Registry\Common\Run      C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
    NvCplDaemon                        Registry\Common\Run      RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    NvMediaCenter                      Registry\Common\Run      RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    nwiz                               Registry\Common\Run      C:\Program Files\NVIDIA Corporation\nView\nwiz.exe /install
    PHIME2002A                         Registry\Common\Run      C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
    PHIME2002ASync                     Registry\Common\Run      C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
    RTHDCPL                            Registry\Common\Run      RTHDCPL.EXE 
    Samsung PanelMgr                   Registry\Common\Run      C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe /autorun
    Six Engine                         Registry\Common\Run      C:\Program Files\ASUS\Six Engine\SixEngine.exe -r
    SkyTel                             Registry\Common\Run      SkyTel.EXE 
    SoundMan                           Registry\Common\Run      SOUNDMAN.EXE 
    TBPanel                            Registry\User\Run        C:\Program Files (x86)\Vtune\TBPanel.exe /A


--------[   ]-------------------------------------------------------------------------------------

    Torrent                                                                                     1.8.2    568.0 
    Torrent                                                                                     1.8.2    568.0 
    7BL                                                                                             
    Adobe Flash Player 10 ActiveX                                                           10.0.32.18  
    Adobe Flash Player 10 Plugin                                                            10.0.22.87  
    Artmoney 7.31 Pro Rus (   GL & Alexforum.ws)                                           
    Atheros Communications Inc.(R) AR8121/AR8113/AR8114 Gigabit/Fast Ethernet Driver [english (united states)]          1.0.0.27  
    Autodesk DWF Viewer                                                                            6.5  
    Borland Delphi 7                                                                               7.0  
    CheckIt Diagnostics                                                                            7.0  
    DirectX10 GFR                                                                                  1.6  
    Download Master version 5.5.14.1175                                                    5.5.14.1175  
    EPU-6 Engine                                                                               1.00.16  
    ESET NOD32 Antivirus [russian]                                                           4.0.468.0     49.5 
    FLV Player 2.0, build 24                                                             2.0, build 24  
    Guitar Pro 5.2                                                                                      
    Hotfix for Windows XP (KB970653-v3)                                                              3  
    IntelliMover                                                                                        
    Light Alloy 3.1                                                                                3.1  
    Macromedia Flash Player 8                                                                        8  
    marvell 61xx                                                                              1.2.0.57  
    Microsoft Games for Windows - LIVE Redistributable                                        3.0.17.0  
    Microsoft Games for Windows - LIVE                                                        3.0.86.0  
    Microsoft Office Access MUI (Russian) 2007 [russian]                              12.0.4518.1022 - Office 2007 Retail  
    Microsoft Office Enterprise 2007                                                  12.0.4518.1014 - Office 2007 Retail  
    Microsoft Office Enterprise 2007                                                  12.0.4518.1014 - Office 2007 Retail  
    Microsoft Office Excel MUI (Russian) 2007 [russian]                               12.0.4518.1022 - Office 2007 Retail  
    Microsoft Office Groove MUI (Russian) 2007 [russian]                              12.0.4518.1022 - Office 2007 Retail  
    Microsoft Office InfoPath MUI (Russian) 2007 [russian]                            12.0.4518.1022 - Office 2007 Retail  
    Microsoft Office Office 64-bit Components 2007                                    12.0.4518.1014 - Office 2007 Retail  
    Microsoft Office OneNote MUI (Russian) 2007 [russian]                             12.0.4518.1022 - Office 2007 Retail  
    Microsoft Office Outlook MUI (Russian) 2007 [russian]                             12.0.4518.1022 - Office 2007 Retail  
    Microsoft Office PowerPoint MUI (Russian) 2007 [russian]                          12.0.4518.1022 - Office 2007 Retail  
    Microsoft Office Proof (English) 2007                                             12.0.4518.1014 - Office 2007 Retail  
    Microsoft Office Proof (German) 2007 [german (germany)]                           12.0.4518.1014 - Office 2007 Retail  
    Microsoft Office Proof (Russian) 2007 [russian]                                   12.0.4518.1022 - Office 2007 Retail  
    Microsoft Office Proof (Ukrainian) 2007 [ukrainian]                               12.0.4518.1022 - Office 2007 Retail  
    Microsoft Office Proofing (Russian) 2007 [russian]                                12.0.4518.1022 - Office 2007 Retail  
    Microsoft Office Publisher MUI (Russian) 2007 [russian]                           12.0.4518.1022 - Office 2007 Retail  
    Microsoft Office Shared 64-bit MUI (Russian) 2007 [russian]                       12.0.4518.1022 - Office 2007 Retail  
    Microsoft Office Shared MUI (Russian) 2007 [russian]                              12.0.4518.1022 - Office 2007 Retail  
    Microsoft Office Word MUI (Russian) 2007 [russian]                                12.0.4518.1022 - Office 2007 Retail  
    Microsoft Software Update for Web Folders  (Russian) 12 [russian]                   12.0.4518.1022  
    Microsoft Visual C++ 2005 Redistributable                                                8.0.56336  
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17                             9.0.30729  
    Microsoft Windows Russian User Interface Pack                                            1.0.705.0    131.9 
    Mozilla Firefox (3.5.5)                                                                 3.5.5 (ru)  
    MSN                                                                                                 
    MSXML 4.0 SP2 (KB954430)                                                               4.20.9870.0  
    Naruto The Way of the Ninja 2.0                                                                2.0  
    NFSpeed-Shift                                                                        NFSpeed-Shift  
    NVIDIA Drivers                                                                                1.10   1298.7 
    NVIDIA nView Desktop Manager                                                                125.24  
    NVIDIA PhysX                                                                             9.09.0814  
    Power MP3 Cutter Joiner 1.11                                                                        
    QIP 2005 8095                                                                                 8095      5.7 
    QIP 2005 8095                                                                                 8095      5.7 
    Readiris Pro 10                                                                                     
    Realtek High Definition Audio Driver [ ()]                                5.10.0.5628  
    Resident Evil 5                                                                                     
    Samsung SCX-4200 Series                                                                             
    Security Update for Windows Media Player 6.4 (KB925398)                                             
    Security Update for Windows x64 (KB956572)                                                       1  
    Security Update for Windows XP (KB923561)                                                        1  
    Security Update for Windows XP (KB923789)                                                           
    Security Update for Windows XP (KB924667-v2)                                                     2  
    Security Update for Windows XP (KB925902)                                                        1  
    Security Update for Windows XP (KB929123)                                                        1  
    Security Update for Windows XP (KB930178)                                                        1  
    Security Update for Windows XP (KB931261)                                                        1  
    Security Update for Windows XP (KB932168)                                                        1  
    Security Update for Windows XP (KB938127)                                                        1  
    Security Update for Windows XP (KB941569)                                                        1  
    Security Update for Windows XP (KB943055)                                                        1  
    Security Update for Windows XP (KB943460)                                                        1  
    Security Update for Windows XP (KB944338-v2)                                                     2  
    Security Update for Windows XP (KB944653)                                                        1  
    Security Update for Windows XP (KB945553)                                                        1  
    Security Update for Windows XP (KB946026)                                                        1  
    Security Update for Windows XP (KB946648)                                                        1  
    Security Update for Windows XP (KB950762)                                                        1  
    Security Update for Windows XP (KB950974)                                                        1  
    Security Update for Windows XP (KB951066)                                                        1  
    Security Update for Windows XP (KB951376)                                                        1  
    Security Update for Windows XP (KB951748)                                                        1  
    Security Update for Windows XP (KB952004)                                                        1  
    Security Update for Windows XP (KB952069)                                                        1  
    Security Update for Windows XP (KB952954)                                                        1  
    Security Update for Windows XP (KB954155)                                                        1  
    Security Update for Windows XP (KB955069)                                                        1  
    Security Update for Windows XP (KB956802)                                                        1  
    Security Update for Windows XP (KB956803)                                                        1  
    Security Update for Windows XP (KB956844)                                                        1  
    Security Update for Windows XP (KB957097)                                                        1  
    Security Update for Windows XP (KB958469)                                                        1  
    Security Update for Windows XP (KB958644)                                                        1  
    Security Update for Windows XP (KB958687)                                                        1  
    Security Update for Windows XP (KB958869)                                                        1  
    Security Update for Windows XP (KB959426)                                                        1  
    Security Update for Windows XP (KB960225)                                                        1  
    Security Update for Windows XP (KB960803)                                                        1  
    Security Update for Windows XP (KB960859)                                                        1  
    Security Update for Windows XP (KB961371-v2)                                                     2  
    Security Update for Windows XP (KB961501)                                                        1  
    Security Update for Windows XP (KB968537)                                                        1  
    Security Update for Windows XP (KB968816)                                                        1  
    Security Update for Windows XP (KB969059)                                                        1  
    Security Update for Windows XP (KB970238)                                                        1  
    Security Update for Windows XP (KB971032)                                                        1  
    Security Update for Windows XP (KB971486)                                                        1  
    Security Update for Windows XP (KB971557)                                                        1  
    Security Update for Windows XP (KB971633)                                                        1  
    Security Update for Windows XP (KB971657)                                                        1  
    Security Update for Windows XP (KB971961)                                                        1  
    Security Update for Windows XP (KB973354)                                                        1  
    Security Update for Windows XP (KB973507)                                                        1  
    Security Update for Windows XP (KB973525)                                                        1  
    Security Update for Windows XP (KB973540)                                                        1  
    Security Update for Windows XP (KB973869)                                                        1  
    Security Update for Windows XP (KB974112)                                                        1  
    Security Update for Windows XP (KB974455)                                                        1  
    Security Update for Windows XP (KB974571)                                                        1  
    Security Update for Windows XP (KB975025)                                                        1  
    Security Update for Windows XP (KB975467)                                                        1  
    SmarThru 4                                                                                          
    TMAgent                                                                                             
    Update for Windows XP (KB927891)                                                                 5  
    Update for Windows XP (KB936357)                                                                 1  
    Update for Windows XP (KB967715)                                                                 1  
    Update for Windows XP (KB968389)                                                                 1  
    Update for Windows XP (KB973815)                                                                 1  
    Update for Windows XP (KB976749)                                                                 1  
    VLC media player 1.0.0                                                                       1.0.0  
    Vtune 7.3                                                                                           
    Yahoo! Toolbar                                                                                      
     WinRAR                                                                                    
      FieryAds                                                                         
      . 01.11.2009 [russian]                                        42.0.0  
         CMedia                                                        
     3.0.4.2 [russian]                                                                 3.0.4.2  
     .                                                                          
     II                                                                                             


--------[  ]----------------------------------------------------------------------------------------------------

    Borland Delphi 7.0.4.453                                                6AMD-PKG68E-DB8PP7-9SFE / 3QH-9QW
    Microsoft Internet Explorer 6.0.3790.1830                               VCFQD-V9FX9-46WVH-K3CD4-4J3JM
    Microsoft Office Enterprise 2007                                        WQW7C-CW2BB-6628V-RM9DW-CWMK3
    Microsoft Windows XP Professional x64 Edition                           VCFQD-V9FX9-46WVH-K3CD4-4J3JM


--------[   ]-------------------------------------------------------------------------------------------------

    323               H.323 Internet Telephony                                         text/h323
    386               Virtual device driver                                            
    7Z                 WinRAR                                                     
    A52               VLC media file (.a52)                                            
    AAC               VLC media file (.aac)                                            
    AC3               VLC media file (.ac3)                                            
    ACA               Microsoft Agent Character File (HTTP format)                     
    ACCDA             Microsoft Office Access Add-in                                   application/msaccess
    ACCDB             Microsoft Office Access 2007                           application/msaccess
    ACCDC             Microsoft Office Access Signed Package                           application/msaccess
    ACCDE             Microsoft Office Access ACCDE Database                           application/msaccess
    ACCDR             Microsoft Office Access Runtime Application                      application/msaccess
    ACCDT             Microsoft Office Access Template                                 application/msaccess
    ACCDU             Microsoft Office Access Add-in Data                              
    ACE                WinRAR                                                     
    ACF               Microsoft Agent Character File (HTTP format)                     
    ACL               AutoCorrect List File                                            
    ACS               Microsoft Agent Character File                                   
    ADE               Microsoft Office Access Project Extension                        application/msaccess
    ADN               Microsoft Office Access Blank Project Template                   
    ADP               Microsoft Office Access Project                                  application/msaccess
    AIF               AIFF Format Sound                                                audio/aiff
    AIFC              AIFF Format Sound                                                audio/aiff
    AIFF              AIFF Format Sound                                                audio/aiff
    ANI               Animated Cursor                                                  
    ARJ                WinRAR                                                     
    ASA               ASA File                                                         
    ASF               VLC media file (.asf)                                            video/x-ms-asf
    ASP               ASP File                                                         
    ASX               VLC media file (.asx)                                            video/x-ms-asf
    AU                AU Format Sound                                                  audio/basic
    AVI               VLC media file (.avi)                                            video/avi
    AW                Answer Wizard File                                               
    BAT               Windows Batch File                                               
    BFC               Briefcase                                                        
    BIN               VLC media file (.bin)                                            
    BKF               Microsoft Backup File                                            
    BLG               BLG File                                                         
    BMP               Bitmap Image                                                     image/bmp
    BPG               Borland Project Group                                            
    BSP               BSP File                                                         
    BZ                 WinRAR                                                     
    BZ2                WinRAR                                                     
    CAB                WinRAR                                                     
    CAT               Security Catalog                                                 application/vnd.ms-pki.seccat
    CDA               CD Audio Track                                                   
    CDF               Channel File                                                     application/x-cdf
    CDX               CDX File                                                         
    CER               Security Certificate                                             application/x-x509-ca-cert
    CHK               Recovered File Fragments                                         
    CHM               Compiled HTML Help file                                          
    CLP               Clipboard Clip                                                   
    CMD               Windows Command Script                                           
    CNF               SpeedDial                                                        
    COM               Application                                                      
    CPL               Control Panel extension                                          
    CRL               Certificate Revocation List                                      application/pkix-crl
    CRT               Security Certificate                                             application/x-x509-ca-cert
    CRTX               Microsoft Office Chart                                    
    CSS               Cascading Style Sheet Document                                   text/css
    CSV                Microsoft Office Excel                                        
    CUE               VLC media file (.cue)                                            
    CUR               Cursor                                                           
    DB                Data Base File                                                   
    DEM               DEM File                                                         
    DER               Security Certificate                                             application/x-x509-ca-cert
    DESKLINK          DESKLINK File                                                    
    DET               Office Data File                                                 
    DFM               Delphi Form                                                      
    DIB               Bitmap Image                                                     image/bmp
    DIC               Text Document                                                    
    DIVX              VLC media file (.divx)                                           
    DJV               DJV File                                                         
    DJVU              DJVU File                                                        
    DLL               Application Extension                                            application/x-msdownload
    DMF               DMF File                                                         
    DMFR              DMFR File                                                        
    DOC                Microsoft Office Word 97 - 2003                         application/msword
    DOCHTML            Microsoft Word   HTML                           
    DOCM               Microsoft Office Word                application/vnd.ms-word.document.macroEnabled.12
    DOCMHTML          DOCMHTML File                                                    
    DOCX               Microsoft Office Word                                   application/vnd.openxmlformats-officedocument.wordprocessingml.document
    DOCXML             Microsoft Word   XML                            
    DOT                Microsoft Office Word 97 - 2003                           application/msword
    DOTHTML            Microsoft Word   HTML                             
    DOTM              Microsoft Office Word Macro-Enabled Template                     application/vnd.ms-word.template.macroEnabled.12
    DOTX               Microsoft Office Word                                     application/vnd.openxmlformats-officedocument.wordprocessingml.template
    DPK               Delphi Package                                                   
    DPR               Delphi Project                                                   
    DQY               Microsoft Office Excel ODBC Query files                          
    DRV               Device driver                                                    
    DSN               Microsoft OLE DB Provider for ODBC Drivers                       
    DTS               VLC media file (.dts)                                            
    DUN               Dialup Networking File                                           
    DV                VLC media file (.dv)                                             
    DVR-MS            Microsoft Recorded TV Show                                       
    DWF               DWF File                                                         Model/vnd.dwf
    ELM               Microsoft Office Themes File                                     
    EMF               EMF File                                                         
    EML               Outlook Express Mail Message                                     message/rfc822
    EMPTYBINARYREGISTRY  URL:OneNote Protocol                                             
    EPF               Exchange Certificate File                                        
    EXC               Text Document                                                    
    EXE               Application                                                      application/x-msdownload
    FAD               Office Data File                                                 
    FDM               Microsoft Office Outlook Form Definition                         
    FLAC              VLC media file (.flac)                                           
    FLV               FLV File                                                         
    FND               Saved Search                                                     
    FON               Font file                                                        
    GCSX                 Microsoft Office SmartArt                  
    GFS                 Microsoft Office Groove                           
    GIF               GIF Image                                                        image/gif
    GLK                Microsoft Office Groove                                    
    GLOX                Microsoft Office SmartArt                          
    GP3               Guitar Pro 3 Tablature                                           
    GP4               Guitar Pro 4 Tablature                                           
    GP5               Guitar Pro 5 Tablature                                           
    GQSX              -  Microsoft Office SmartArt                 
    GRA                Microsoft Graph                                        
    GRP               Microsoft Program Group                                          
    GRV                Microsoft Office Groove                                     application/vnd.groove-injector
    GSA                  Microsoft Office Groove                    
    GTA                 Microsoft Office Groove                       
    GTP               Guitar Pro Tablature                                             
    GXF               VLC media file (.gxf)                                            
    GZ                 WinRAR                                                     
    HLP               Help File                                                        
    HOL               Microsoft Office Outlook Holidays                                
    HTA               HTML Application                                                 application/hta
    HTM               HTML Document                                                    text/html
    HTML              HTML Document                                                    text/html
    HTT               HyperText Template                                               text/webviewhtml
    HXA               Microsoft Help Attribute Definition File                         application/xml
    HXC               Microsoft Help Collection Definition File                        application/xml
    HXD               Microsoft Help Validator File                                    application/octet-stream
    HXE               Microsoft Help Samples Definition File                           application/xml
    HXF               Microsoft Help Include File                                      application/xml
    HXH               Microsoft Help Merged Hierarchy File                             application/octet-stream
    HXI               Microsoft Help Compiled Index File                               application/octet-stream
    HXK               Microsoft Help Index File                                        application/xml
    HXQ               Microsoft Help Merged Query Index File                           application/octet-stream
    HXR               Microsoft Help Merged Attribute Index File                       application/octet-stream
    HXS               Microsoft Help Compiled Storage File                             application/octet-stream
    HXT               Microsoft Help Table of Contents File                            application/xml
    HXV               Microsoft Help Virtual Topic Definition File                     application/xml
    HXW               Microsoft Help Attribute Definition File                         application/octet-stream
    IBC               InterConnect Bizcard File                                        
    ICC               ICC Profile                                                      
    ICM               ICC Profile                                                      
    ICO               Icon                                                             image/x-icon
    ICS               iCalendar File                                                   
    IFLV"             IFLV" File                                                       
    IFLV              IFLV File                                                        
    III               Intel IPhone Compatible                                          application/x-iphone
    INF               Setup Information                                                
    INFOPATHXML       Microsoft Office InfoPath Form                                   application/ms-infopath.xml
    INI               Configuration Settings                                           
    INS               Internet Communication Settings                                  application/x-internet-signup
    IQY               Microsoft Office Excel Web Query File                            text/x-ms-iqy
    ISO                WinRAR                                                     
    ISP               Internet Communication Settings                                  application/x-internet-signup
    ITS               Internet Document Set                                            
    JAR                WinRAR                                                     
    JFIF              JPEG Image                                                       image/jpeg
    JOB               Task Scheduler Task Object                                       
    JOD               Microsoft.Jet.OLEDB.4.0                                          
    JPE               JPEG Image                                                       image/jpeg
    JPEG              JPEG Image                                                       image/jpeg
    JPG               JPEG Image                                                       image/jpeg
    JS                JScript Script File                                              
    JSE               JScript Encoded Script File                                      
    KEY               Registration Entries                                             
    KML               KML File                                                         
    KMZ               KMZ File                                                         
    LACCDB            Microsoft Office Access Record-Locking Information               
    LAP               Light Alloy Playlist                                             
    LDB               Microsoft Office Access Record-Locking Information               
    LEX               Dictionary File                                                  
    LHA                WinRAR                                                     
    LNK               Shortcut                                                         
    LOG               Text Document                                                    
    LWV               Microsoft Linguistically Enhanced Sound File                     
    LZH                WinRAR                                                     
    M1V               VLC media file (.m1v)                                            video/mpeg
    M2TS              VLC media file (.m2ts)                                           
    M2V               VLC media file (.m2v)                                            
    M3U               VLC media file (.m3u)                                            audio/x-mpegurl
    M4A               VLC media file (.m4a)                                            
    M4P               VLC media file (.m4p)                                            
    M4V               VLC media file (.m4v)                                            
    MAD               Microsoft Office Access Module Shortcut                          
    MAF               Microsoft Office Access Form Shortcut                            
    MAG               Microsoft Office Access Diagram Shortcut                         
    MAM               Microsoft Office Access Macro Shortcut                           
    MAPIMAIL          MAPIMAIL File                                                    
    MAQ               Microsoft Office Access Query Shortcut                           
    MAR               Microsoft Office Access Report Shortcut                          
    MAS               Microsoft Office Access Stored Procedure Shortcut                
    MAT               Microsoft Office Access Table Shortcut                           
    MAU               MAU File                                                         
    MAV               Microsoft Office Access View Shortcut                            
    MAW               Microsoft Office Access Data Access Page Shortcut                
    MDA               Microsoft Office Access Add-in                                   application/msaccess
    MDB               Microsoft Office Access Database                                 application/msaccess
    MDBHTML           Microsoft Office Access HTML Document                            
    MDE               Microsoft Office Access MDE Database                             application/msaccess
    MDF               MDF File                                                         
    MDN               Microsoft Office Access Blank Database Template                  
    MDS               MDS File                                                         
    MDT               Microsoft Office Access Add-in Data                              
    MDW               Microsoft Office Access Workgroup Information                    
    MFP               Macromedia Flash Paper                                           application/x-shockwave-flash
    MGC               Media Catalog File                                               
    MHT               MHTML Document                                                   message/rfc822
    MHTML             MHTML Document                                                   message/rfc822
    MID               MIDI Sequence                                                    audio/mid
    MIDI              MIDI Sequence                                                    audio/mid
    MKA               VLC media file (.mka)                                            
    MKV               VLC media file (.mkv)                                            
    MML               Media Catalog File                                               
    MMM               Media Clip                                                       
    MMW               Media Catalog File                                               
    MOD               VLC media file (.mod)                                            
    MOV               VLC media file (.mov)                                            
    MP1               VLC media file (.mp1)                                            
    MP2               VLC media file (.mp2)                                            video/mpeg
    MP2V              Movie Clip                                                       video/mpeg
    MP3               VLC media file (.mp3)                                            audio/mpeg
    MP4               VLC media file (.mp4)                                            
    MPA               Movie Clip                                                       video/mpeg
    MPE               Movie Clip                                                       video/mpeg
    MPEG              VLC media file (.mpeg)                                           video/mpeg
    MPEG1             VLC media file (.mpeg1)                                          
    MPEG2             VLC media file (.mpeg2)                                          
    MPEG4             VLC media file (.mpeg4)                                          
    MPF               Clip Organizer Media Package File                                application/vnd.ms-mediapackage
    MPG               VLC media file (.mpg)                                            video/mpeg
    MPV2              Movie Clip                                                       video/mpeg
    MSC               Microsoft Common Console Document                                
    MSG                Outlook                                                  
    MSI               Windows Installer Package                                        
    MSP               Windows Installer Patch                                          
    MSRCINCIDENT      MSRCINCIDENT File                                                
    MSSTYLES          Windows Visual Style File                                        
    MTS               VLC media file (.mts)                                            
    MXF               VLC media file (.mxf)                                            
    MYDOCS            MyDocs Drop Target                                               
    NICK              Office Data File                                                 
    NK2               Office Data File                                                 
    NMW               Microsoft Netmeeting T126 Compatible Whiteboard Document         application/nmwb
    NUV               VLC media file (.nuv)                                            
    NWS               Outlook Express News Message                                     message/rfc822
    OCX               ActiveX Control                                                  
    ODC               Microsoft Office Data Connection                                 text/x-ms-odc
    ODCCUBEFILE       ODCCUBEFILE File                                                 
    ODCDATABASEFILE   ODCDATABASEFILE File                                             
    ODCNEWFILE        ODCNEWFILE File                                                  
    ODCTABLEFILE      ODCTABLEFILE File                                                
    OFS               OFS File                                                         
    OFT               Outlook Item Template                                            
    OGA               VLC media file (.oga)                                            
    OGG               VLC media file (.ogg)                                            
    OGM               VLC media file (.ogm)                                            
    OGV               VLC media file (.ogv)                                            
    OGX               VLC media file (.ogx)                                            
    OLS               Microsoft Office List Shortcut                                   application/vnd.ms-publisher
    OMA               VLC media file (.oma)                                            
    ONE                Microsoft Office OneNote                                  application/msonenote
    ONEPKG            Microsoft Office OneNote Single File Package                     application/msonenote
    ONETOC            Microsoft Office OneNote 2003 Table Of Contents                  
    ONETOC2           Microsoft Office OneNote Table Of Contents                       
    OPC               Microsoft Clean-up Wizard File                                   
    OQY               Microsoft Office Excel OLAP Query File                           
    OST               Microsoft Office Outlook Offline Folders                         
    OTF               OpenType Font file                                               
    OTM               Outlook VBA Project File                                         
    P10               Certificate Request                                              application/pkcs10
    P12               Personal Information Exchange                                    application/x-pkcs12
    P7B               PKCS #7 Certificates                                             application/x-pkcs7-certificates
    P7C               Digital ID File                                                  application/pkcs7-mime
    P7M               PKCS #7 MIME Message                                             application/pkcs7-mime
    P7R               PKCS #7 Certificates                                             application/x-pkcs7-certreqresp
    P7S               PKCS #7 Signature                                                application/pkcs7-signature
    PAB               Office Data File                                                 
    PAS               Delphi Source File                                               
    PBK               Dial-Up Phonebook                                                
    PCB               PCB File                                                         
    PFM               Type 1 Font file                                                 
    PFX               Personal Information Exchange                                    application/x-pkcs12
    PIF               Shortcut to Program                                              
    PIP               Microsoft Office Settings File                                   
    PKO               Public Key Security Object                                       application/vnd.ms-pki.pko
    PLS               VLC media file (.pls)                                            
    PMA               PMA File                                                         
    PMC               PMC File                                                         
    PML               PML File                                                         
    PMR               PMR File                                                         
    PMW               PMW File                                                         
    PNF               Precompiled Setup Information                                    
    PNG               PNG Image                                                        image/png
    POT                Microsoft Office PowerPoint 97-2003                       application/vnd.ms-powerpoint
    POTHTML           Microsoft Office PowerPoint HTML Template                        
    POTM                Microsoft Office PowerPoint     application/vnd.ms-powerpoint.template.macroEnabled.12
    POTX               Microsoft Office PowerPoint                               application/vnd.openxmlformats-officedocument.presentationml.template
    PPA               Microsoft Office PowerPoint 97-2003 Addin                        application/vnd.ms-powerpoint
    PPAM              Microsoft Office PowerPoint Addin                                application/vnd.ms-powerpoint.addin.macroEnabled.12
    PPS               Microsoft Office PowerPoint 97-2003 Slide Show                   application/vnd.ms-powerpoint
    PPSM              Microsoft Office PowerPoint Macro-Enabled Slide Show             application/vnd.ms-powerpoint.slideshow.macroEnabled.12
    PPSX                Microsoft Office PowerPoint                        application/vnd.openxmlformats-officedocument.presentationml.slideshow
    PPT                Microsoft Office PowerPoint 97-2003                  application/vnd.ms-powerpoint
    PPTHTML           Microsoft Office PowerPoint HTML Document                        
    PPTM               Microsoft Office PowerPoint       application/vnd.ms-powerpoint.presentation.macroEnabled.12
    PPTMHTML          PPTMHTML File                                                    
    PPTX               Microsoft Office PowerPoint                          application/vnd.openxmlformats-officedocument.presentationml.presentation
    PPTXML            Microsoft Office PowerPoint XML Presentation                     
    PRF               PICS Rules File                                                  application/pics-rules
    PST               Microsoft Office Outlook Personal Folders                        
    PSW               Password Backup                                                  
    PUB                Microsoft Office Publisher                              application/vnd.ms-publisher
    PUBHTML           PUBHTML File                                                     
    PUBMHTML          PUBMHTML File                                                    
    PWZ               Microsoft PowerPoint Wizard                                      application/vnd.ms-powerpoint
    QDS               Directory Query                                                  
    R00                WinRAR                                                     
    R01                WinRAR                                                     
    R02                WinRAR                                                     
    R03                WinRAR                                                     
    R04                WinRAR                                                     
    R05                WinRAR                                                     
    R06                WinRAR                                                     
    R07                WinRAR                                                     
    R08                WinRAR                                                     
    R09                WinRAR                                                     
    R10                WinRAR                                                     
    R11                WinRAR                                                     
    R12                WinRAR                                                     
    R13                WinRAR                                                     
    R14                WinRAR                                                     
    R15                WinRAR                                                     
    R16                WinRAR                                                     
    R17                WinRAR                                                     
    R18                WinRAR                                                     
    R19                WinRAR                                                     
    R20                WinRAR                                                     
    R21                WinRAR                                                     
    R22                WinRAR                                                     
    R23                WinRAR                                                     
    R24                WinRAR                                                     
    R25                WinRAR                                                     
    R26                WinRAR                                                     
    R27                WinRAR                                                     
    R28                WinRAR                                                     
    R29                WinRAR                                                     
    RAR                WinRAR                                                     
    RAT               Rating System File                                               application/rat-file
    REG               Registration Entries                                             
    RELS              XML Document                                                     
    REV                RAR                                         
    RMI               MIDI Sequence                                                    audio/mid
    RMVB              VLC media file (.rmvb)                                           
    RNK               Dial-Up Shortcut                                                 
    RQY               Microsoft Office Excel OLE DB Query files                        text/x-ms-rqy
    RTF               Rich Text Format                                                 application/msword
    RWZ               Office Data File                                                 
    SAV               SAV File                                                         
    SCF               Windows Explorer Command                                         
    SCP               Text Document                                                    
    SCR               Screen Saver                                                     
    SCT               Windows Script Component                                         text/scriptlet
    SDB               Appfix Package                                                   
    SHB               Shortcut into a document                                         
    SHS               Scrap object                                                     
    SHTML             SHTML File                                                       text/html
    SLDM               Microsoft Office PowerPoint             application/vnd.ms-powerpoint.slide.macroEnabled.12
    SLDX               Microsoft Office PowerPoint                                application/vnd.openxmlformats-officedocument.presentationml.slide
    SLK                  Microsoft Office Excel SLK                 application/vnd.ms-excel
    SND               AU Format Sound                                                  audio/basic
    SPC               PKCS #7 Certificates                                             application/x-pkcs7-certificates
    SPL               Shockwave Flash Object                                           application/futuresplash
    SPX               VLC media file (.spx)                                            
    SST               Microsoft Serialized Certificate Store                           application/vnd.ms-pki.certstore
    STL               Certificate Trust List                                           application/vnd.ms-pki.stl
    SWF               Shockwave Flash Object                                           application/x-shockwave-flash
    SYS               System file                                                      
    TAR                WinRAR                                                     
    TAZ                WinRAR                                                     
    TBZ                WinRAR                                                     
    TBZ2               WinRAR                                                     
    TGZ                WinRAR                                                     
    THEME             Windows Theme File                                               
    THMX              Microsoft Office Theme                                           application/vnd.ms-officetheme
    TIF               TIF File                                                         image/tiff
    TIFF              TIFF File                                                        image/tiff
    TS                VLC media file (.ts)                                             
    TTC               TrueType Collection Font file                                    
    TTF               TrueType Font file                                               
    TVP                nView NVIDIA                                             
    TXT               Text Document                                                    text/plain
    UDL               Microsoft Data Link                                              
    ULS               Internet Location Service                                        text/iuls
    URL               Internet Shortcut                                                
    UU                 WinRAR                                                     
    UUE                WinRAR                                                     
    UXDC              UXDC File                                                        
    VBE               VBScript Encoded Script File                                     
    VBS               VBScript Script File                                             
    VCF               vCard File                                                       text/x-vcard
    VCG                VCard Microsoft Office Groove                           application/vnd.groove-vcard
    VCS               vCalendar File                                                   
    VDX               Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VLC               VLC media file (.vlc)                                            
    VOB               VLC media file (.vob)                                            
    VSD               Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VSS               Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VST               VST File                                                         application/vnd.ms-visio.viewer
    VSX               Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VTX               Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VXD               Virtual device driver                                            
    WAB               Address Book File                                                
    WAV               VLC media file (.wav)                                            audio/wav
    WAX               Windows Media Audio shortcut                                     audio/x-ms-wax
    WBK               Microsoft Word Backup Document                                   application/msword
    WEBPNP            Webpnp                                                           
    WHT               Microsoft NetMeeting Old Whiteboard Document                     
    WIZ                Microsoft Word                                            application/msword
    WIZHTML           Microsoft Office Access HTML Template                            
    WLL               WLL File                                                         
    WM                Windows Media Audio/Video file                                   video/x-ms-wm
    WMA               VLC media file (.wma)                                            audio/x-ms-wma
    WMD               Windows Media Player Download Package                            application/x-ms-wmd
    WMDB              Windows Media Library                                            
    WMF               WMF File                                                         
    WMS               Windows Media Player Skin File                                   
    WMV               VLC media file (.wmv)                                            video/x-ms-wmv
    WMX               Windows Media Audio/Video playlist                               video/x-ms-wmx
    WMZ               Windows Media Player Skin Package                                application/x-ms-wmz
    WPL               Windows Media playlist                                           application/vnd.ms-wpl
    WRI               Write Document                                                   
    WSC               Windows Script Component                                         text/scriptlet
    WSF               Windows Script File                                              
    WSH               Windows Script Host Settings File                                
    WTF               WTF File                                                         
    WTX               Text Document                                                    
    WV                VLC media file (.wv)                                             
    WVX               Windows Media Audio/Video playlist                               video/x-ms-wvx
    XEVGENXML         XEVGENXML File                                                   
    XFM               XFM File                                                         
    XHT               XHT File                                                         application/xhtml+xml
    XHTML             XHTML File                                                       application/xhtml+xml
    XLA                Microsoft Office Excel                                application/vnd.ms-excel
    XLAM               Microsoft Office Excel                                application/vnd.ms-excel.addin.macroEnabled.12
    XLK                 Microsoft Office Excel                           application/vnd.ms-excel
    XLL                Microsoft Office Excel XLL                            application/vnd.ms-excel
    XLM                Microsoft Office Excel 4.0                                application/vnd.ms-excel
    XLS                Microsoft Office Excel 97-2003                              application/vnd.ms-excel
    XLSB                Microsoft Office Excel                             application/vnd.ms-excel.sheet.binary.macroEnabled.12
    XLSHTML            Microsoft Office Excel   HTML                   
    XLSM               Microsoft Office Excel                   application/vnd.ms-excel.sheet.macroEnabled.12
    XLSMHTML          XLSMHTML File                                                    
    XLSX               Microsoft Office Excel                                      application/vnd.openxmlformats-officedocument.spreadsheetml.sheet
    XLT                Microsoft Office Excel                                    application/vnd.ms-excel
    XLTHTML            Microsoft Office Excel   HTML                     
    XLTM               Microsoft Office Excel                 application/vnd.ms-excel.template.macroEnabled.12
    XLTX               Microsoft Office Excel                                    application/vnd.openxmlformats-officedocument.spreadsheetml.template
    XLW                 Microsoft Office Excel                           application/vnd.ms-excel
    XLXML             Microsoft Office Excel XML Worksheet                             
    XM                VLC media file (.xm)                                             
    XML               XML Document                                                     text/xml
    XSF                  Microsoft Office InfoPath                 
    XSL               XSL Stylesheet                                                   text/xml
    XSN                 Microsoft Office InfoPath                           
    XSPF              VLC media file (.xspf)                                           
    XST               Microsoft Office Outlook Personal Folders                        
    XTP               Microsoft Office InfoPath Template Part File                     
    XXE                WinRAR                                                     
    Z                  WinRAR                                                     
    ZAP               Software Installation Settings                                   
    ZFSENDTOTARGET    Compressed (zipped) Folder SendTo Target                         
    ZIP                ZIP - WinRAR                                               


--------[  Windows ]----------------------------------------------------------------------------------------

      :
                                              Microsoft Windows XP Professional x64 Edition
                                       Service Pack 2
      Winlogon Shell                                    Explorer.exe
          (UAC)   
                                   

       (DEP, NX, EDB):
                                        
                                        
       ( )                       
       ( )                        


--------[  Windows ]------------------------------------------------------------------------------------------

    (Automatic Update)                                                                Download:Automatic, Install:Scheduled  Every Day 17:00
    Hotfix for Windows XP (KB970653-v3)                                                           27.10.2009
    Q147222                                                                           HotFix                
    Security Update for Windows Media Player 6.4 (KB925398)                                       
    Security Update for Windows XP (KB923561)                                                     27.10.2009
    Security Update for Windows XP (KB924667-v2)                                                  27.10.2009
    Security Update for Windows XP (KB925902)                                                     27.10.2009
    Security Update for Windows XP (KB929123)                                                     27.10.2009
    Security Update for Windows XP (KB930178)                                                     27.10.2009
    Security Update for Windows XP (KB931261)                                                     27.10.2009
    Security Update for Windows XP (KB932168)                                                     27.10.2009
    Security Update for Windows XP (KB938127)                                                     27.10.2009
    Security Update for Windows XP (KB941569)                                                     27.10.2009
    Security Update for Windows XP (KB943055)                                                     27.10.2009
    Security Update for Windows XP (KB943460)                                                     29.10.2009
    Security Update for Windows XP (KB944338-v2)                                                  27.10.2009
    Security Update for Windows XP (KB944653)                                                     27.10.2009
    Security Update for Windows XP (KB945553)                                                     27.10.2009
    Security Update for Windows XP (KB946026)                                                     27.10.2009
    Security Update for Windows XP (KB946648)                                                     27.10.2009
    Security Update for Windows XP (KB950762)                                                     27.10.2009
    Security Update for Windows XP (KB950974)                                                     27.10.2009
    Security Update for Windows XP (KB951066)                                                     27.10.2009
    Security Update for Windows XP (KB951376)                                                     27.10.2009
    Security Update for Windows XP (KB951748)                                                     27.10.2009
    Security Update for Windows XP (KB952004)                                                     27.10.2009
    Security Update for Windows XP (KB952069)                                                     27.10.2009
    Security Update for Windows XP (KB952954)                                                     27.10.2009
    Security Update for Windows XP (KB954155)                                                     27.10.2009
    Security Update for Windows XP (KB955069)                                                     27.10.2009
    Security Update for Windows XP (KB956802)                                                     27.10.2009
    Security Update for Windows XP (KB956803)                                                     27.10.2009
    Security Update for Windows XP (KB956844)                                                     27.10.2009
    Security Update for Windows XP (KB957097)                                                     27.10.2009
    Security Update for Windows XP (KB958469)                                                     27.10.2009
    Security Update for Windows XP (KB958644)                                                     27.10.2009
    Security Update for Windows XP (KB958687)                                                     27.10.2009
    Security Update for Windows XP (KB958869)                                                     27.10.2009
    Security Update for Windows XP (KB959426)                                                     27.10.2009
    Security Update for Windows XP (KB960225)                                                     27.10.2009
    Security Update for Windows XP (KB960803)                                                     27.10.2009
    Security Update for Windows XP (KB960859)                                                     27.10.2009
    Security Update for Windows XP (KB961371-v2)                                                  27.10.2009
    Security Update for Windows XP (KB961501)                                                     27.10.2009
    Security Update for Windows XP (KB968537)                                                     27.10.2009
    Security Update for Windows XP (KB968816)                                                     27.10.2009
    Security Update for Windows XP (KB969059)                                                     27.10.2009
    Security Update for Windows XP (KB970238)                                                     27.10.2009
    Security Update for Windows XP (KB971032)                                                     27.10.2009
    Security Update for Windows XP (KB971486)                                                     27.10.2009
    Security Update for Windows XP (KB971557)                                                     27.10.2009
    Security Update for Windows XP (KB971633)                                                     27.10.2009
    Security Update for Windows XP (KB971657)                                                     27.10.2009
    Security Update for Windows XP (KB971961)                                                     27.10.2009
    Security Update for Windows XP (KB973354)                                                     27.10.2009
    Security Update for Windows XP (KB973507)                                                     27.10.2009
    Security Update for Windows XP (KB973525)                                                     27.10.2009
    Security Update for Windows XP (KB973540)                                                     27.10.2009
    Security Update for Windows XP (KB973869)                                                     27.10.2009
    Security Update for Windows XP (KB974112)                                                     27.10.2009
    Security Update for Windows XP (KB974455)                                                     27.10.2009
    Security Update for Windows XP (KB974571)                                                     27.10.2009
    Security Update for Windows XP (KB975025)                                                     27.10.2009
    Security Update for Windows XP (KB975467)                                                     27.10.2009
    Update for Windows XP (KB927891)                                                              27.10.2009
    Update for Windows XP (KB936357)                                                              27.10.2009
    Update for Windows XP (KB967715)                                                              29.10.2009
    Update for Windows XP (KB968389)                                                              27.10.2009
    Update for Windows XP (KB973815)                                                              27.10.2009
    Update for Windows XP (KB976749)                                                              03.11.2009


--------[  ]---------------------------------------------------------------------------------------------------

    NOD32                                                4.0.468.0                                08.11.2009         ?


--------[  ]--------------------------------------------------------------------------------------------------

     Windows                               5.2.3790.3959  


--------[   ]--------------------------------------------------------------------------------------

     :
                                    Pacific Standard Time
                            (GMT-08:00) Pacific Time (US & Canada)
                               First Sunday of November 2:00:00
                                    2nd Sunday of March 2:00:00

    :
       (.)                                      
       (.)                                      Russian
       (ISO 639)                                    ru

    /:
       (.)                                    
       (.)                                    Russia
       (ISO 3166)                                 RU
                                               7

     :
        (.)                          
        (.)                          Russian Ruble
         (.)                   .
         (ISO 4217)                RUR
                                      123456789,00.
                         -123456789,00.

    :
                                           H:mm:ss
                                       dd.MM.yyyy
                                        d MMMM yyyy '.'
                                       123456789,00
                          -123456789,00
                                            first; second; third
                                               0123456789

     :
                                       / 
                                           / 
                                              / 
                                           / 
                                            / 
                                            / 
                                        / 

    :
                                             / 
                                            / 
                                              / 
                                             / 
                                                / 
                                               / 
                                               / 
                                            / 
                                           / 
                                            / 
                                             / 
                                            / 

    :
                                            Gregorian (localized)
                                 A4
                                        


--------[  ]---------------------------------------------------------------------------------------------------

    ALLUSERSPROFILE           C:\Documents and Settings\All Users
    APPDATA                   C:\Documents and Settings\Administrator\Application Data
    CLIENTNAME                Console
    CommonProgramFiles(x86)   C:\Program Files (x86)\Common Files
    CommonProgramFiles        C:\Program Files (x86)\Common Files
    CommonProgramW6432        C:\Program Files\Common Files
    COMPUTERNAME              RAZINKIN-7C1358
    ComSpec                   C:\WINDOWS\system32\cmd.exe
    FP_NO_HOST_CHECK          NO
    HOMEDRIVE                 C:
    HOMEPATH                  \Documents and Settings\Administrator
    LOGONSERVER               \\RAZINKIN-7C1358
    NUMBER_OF_PROCESSORS      2
    OS                        Windows_NT
    Path                      C:\Program Files (x86)\Borland\Delphi7\Bin;C:\Program Files (x86)\Borland\Delphi7\Projects\Bpl\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
    PATHEXT                   .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
    PROCESSOR_ARCHITECTURE    x86
    PROCESSOR_ARCHITEW6432    AMD64
    PROCESSOR_IDENTIFIER      EM64T Family 6 Model 23 Stepping 10, GenuineIntel
    PROCESSOR_LEVEL           6
    PROCESSOR_REVISION        170a
    ProgramFiles(x86)         C:\Program Files (x86)
    ProgramFiles              C:\Program Files (x86)
    ProgramW6432              C:\Program Files
    SESSIONNAME               Console
    SystemDrive               C:
    SystemRoot                C:\WINDOWS
    TEMP                      C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp
    TMP                       C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp
    USERDOMAIN                RAZINKIN-7C1358
    USERNAME                  Administrator
    USERPROFILE               C:\Documents and Settings\Administrator
    windir                    C:\WINDOWS


--------[   ]-------------------------------------------------------------------------------------------

    BDE Administrator                         Configures the Borland Database Engine
    CheckIt Diagnostics                       Diagnose your system
    NVIDIA PhysX                              PhysX Properties
    Realtek HD Sound Effect Manager           Realtek HD Audio Control Panel
    Speech                                    Change settings for text-to-speech and for speech recognition (if installed).
    Text Services and Input Languag           Customizes settings for text input of languages
                                          Microsoft Office Outlook


--------[  ]-----------------------------------------------------------------------------------------------------

    C:            0         0   10 %  
    D:      3700          1   10 %  


--------[   ]---------------------------------------------------------------------------------------------

  [ msdos.sys ]


  [ boot.ini ]

    [boot loader]
    timeout=30
    default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
    [operating systems]
    multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Windows XP Professional x64 Edition" /noexecute=optin /fastdetect

  [ system.ini ]

    [driver32]
    [386enh]
    woafont=app866.FON
    CGA40WOA.FON=CGA40866.FON
    CGA80WOA.FON=CGA80866.FON
    EGA40WOA.FON=EGA40866.FON
    EGA80WOA.FON=EGA80866.FON

  [ win.ini ]

    [Mail]
    MAPI=1
    CMCDLLNAME32=mapi32.dll
    CMC=1
    MAPIX=1
    MAPIXVER=1.0.0.1
    OLEMessaging=1
    [MCI Extensions.BAK]
    aif=MPEGVideo
    aifc=MPEGVideo
    aiff=MPEGVideo
    asf=MPEGVideo
    asx=MPEGVideo
    au=MPEGVideo
    m1v=MPEGVideo
    m3u=MPEGVideo
    mp2=MPEGVideo
    mp2v=MPEGVideo
    mp3=MPEGVideo
    mpa=MPEGVideo
    mpe=MPEGVideo
    mpeg=MPEGVideo
    mpg=MPEGVideo
    mpv2=MPEGVideo
    snd=MPEGVideo
    wax=MPEGVideo
    wm=MPEGVideo
    wma=MPEGVideo
    wmv=MPEGVideo
    wmx=MPEGVideo
    wpl=MPEGVideo
    wvx=MPEGVideo
    [MSUCE]
    Advanced=0
    CodePage=Unicode
    Font=Arial
    [SciCalc]
    layout=0

  [ hosts ]

    

  [ lmhosts.sam ]

    
    
    
    


--------[   ]---------------------------------------------------------------------------------------------

    AppData                      C:\Documents and Settings\Administrator\Application Data
    Cache                        C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
    CD Burning                   C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\CD Burning
    Common Administrative Tools  C:\Documents and Settings\All Users\Start Menu\Programs\Administrative Tools
    Common AppData               C:\Documents and Settings\All Users\Application Data
    Common Desktop               C:\Documents and Settings\All Users\Desktop
    Common Documents             C:\Documents and Settings\All Users\Documents
    Common Favorites             C:\Documents and Settings\All Users\Favorites
    Common Files (x86)           C:\Program Files (x86)\Common Files
    Common Files                 C:\Program Files (x86)\Common Files
    Common Music                 C:\Documents and Settings\All Users\Documents\My Music
    Common Pictures              C:\Documents and Settings\All Users\Documents\My Pictures
    Common Programs              C:\Documents and Settings\All Users\Start Menu\Programs
    Common Start Menu            C:\Documents and Settings\All Users\Start Menu
    Common Startup               C:\Documents and Settings\All Users\Start Menu\Programs\Startup
    Common Templates             C:\Documents and Settings\All Users\Templates
    Common Video                 C:\Documents and Settings\All Users\Documents\My Videos
    Cookies                      C:\Documents and Settings\Administrator\Cookies
    Desktop                      C:\Documents and Settings\Administrator\Desktop
    Device                       C:\WINDOWS\inf
    Favorites                    C:\Documents and Settings\Administrator\Favorites
    Fonts                        C:\WINDOWS\Fonts
    History                      C:\Documents and Settings\Administrator\Local Settings\History
    Local AppData                C:\Documents and Settings\Administrator\Local Settings\Application Data
    My Documents                 C:\Documents and Settings\Administrator\My Documents
    My Music                     C:\Documents and Settings\Administrator\My Documents\My Music
    My Pictures                  C:\Documents and Settings\Administrator\My Documents\My Pictures
    My Video                     C:\Documents and Settings\Administrator\My Documents\My Videos
    NetHood                      C:\Documents and Settings\Administrator\NetHood
    PrintHood                    C:\Documents and Settings\Administrator\PrintHood
    Profile                      C:\Documents and Settings\Administrator
    Program Files (x86)          C:\Program Files (x86)
    Program Files                C:\Program Files (x86)
    Programs                     C:\Documents and Settings\Administrator\Start Menu\Programs
    Recent                       C:\Documents and Settings\Administrator\Recent
    Resources                    C:\WINDOWS\resources
    SendTo                       C:\Documents and Settings\Administrator\SendTo
    Start Menu                   C:\Documents and Settings\Administrator\Start Menu
    Startup                      C:\Documents and Settings\Administrator\Start Menu\Programs\Startup
    System (x86)                 C:\WINDOWS\system32
    System                       C:\WINDOWS\system32
    Temp                         C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\
    Templates                    C:\Documents and Settings\Administrator\Templates
    Wallpaper                    C:\WINDOWS\Web\Wallpaper
    Windows                      C:\WINDOWS


--------[   ]-------------------------------------------------------------------------------------------

                     2009-10-11 00:15:16                                  LoadPerf                        1001: Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully.  The Record Data contains the new values of the system Last Counter and  Last Help registry entries.  
                     2009-10-11 00:15:16                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 02:18:36                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 02:18:39                                  SecurityCenter                  
                     2009-10-11 02:22:45                                  LoadPerf                        1001: Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully.  The Record Data contains the new values of the system Last Counter and  Last Help registry entries.  
                     2009-10-11 02:22:45                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 02:26:59                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 02:27:02                                  SecurityCenter                  
                     2009-10-11 02:29:58                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 02:30:01                                  SecurityCenter                  
                     2009-10-11 02:32:17                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 02:32:20                                  SecurityCenter                  
                     2009-10-11 02:37:20                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 02:37:23                                  SecurityCenter                  
             1          2009-10-11 02:37:28                                  ESENT                           100: svchost (740) The database engine 5.02.3790.3959 started.  
                     2009-10-11 02:41:05                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 02:41:08                                  SecurityCenter                  
                     2009-10-11 02:45:01                                  LoadPerf                        1001: Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully.  The Record Data contains the new values of the system Last Counter and  Last Help registry entries.  
                     2009-10-11 02:45:02                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 02:45:09                                  LoadPerf                        1001: Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully.  The Record Data contains the new values of the system Last Counter and  Last Help registry entries.  
                     2009-10-11 02:45:09                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 02:52:12                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 02:52:17                                  SecurityCenter                  
                     2009-10-11 02:56:40                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 02:56:47                                  SecurityCenter                  
                     2009-10-11 03:01:03                                  LoadPerf                        1001: Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully.  The Record Data contains the new values of the system Last Counter and  Last Help registry entries.  
                     2009-10-11 03:01:04                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 03:05:38                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 03:05:45                                  SecurityCenter                  
                     2009-10-11 03:10:02                                  LoadPerf                        1001: Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully.  The Record Data contains the new values of the system Last Counter and  Last Help registry entries.  
                     2009-10-11 03:10:02                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 03:12:16                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 03:12:23                                  SecurityCenter                  
                         2009-10-11 03:16:21                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-11 03:16:21                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-11 03:16:21                                  LoadPerf                        3011: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The  Error code is the first DWORD in Data section.  
                     2009-10-11 03:16:25                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 03:22:26                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 03:22:34                                  SecurityCenter                  
                         2009-10-11 03:24:21                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-11 03:24:21                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-11 03:24:21                                  LoadPerf                        3011: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The  Error code is the first DWORD in Data section.  
                     2009-10-11 03:24:24                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                         2009-10-11 03:26:41                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-11 03:26:41                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-11 03:26:41                                  LoadPerf                        3011: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The  Error code is the first DWORD in Data section.  
                     2009-10-11 03:26:44                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
             1          2009-10-11 04:51:04                                  ESENT                           100: svchost (608) The database engine 5.02.3790.3959 started.  
                     2009-10-11 04:53:59                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 04:54:06                                  SecurityCenter                  
                         2009-10-11 04:58:16                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-11 04:58:16                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-11 04:58:16                                  LoadPerf                        3011: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The  Error code is the first DWORD in Data section.  
                     2009-10-11 04:58:19                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 12:00:18                                  LoadPerf                        1000: Performance counters for the IPSec (IPSEC driver) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 12:00:30                                  LoadPerf                        1000: Performance counters for the PSched (QoS Packet Scheduler) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 12:00:44                                  LoadPerf                        1000: Performance counters for the RemoteAccess (Routing and Remote Access) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 12:02:33                                  LoadPerf                        1000: Performance counters for the TermService (Terminal Services) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 12:02:36                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 12:02:36                                  LoadPerf                        1001: Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully.  The Record Data contains the new values of the system Last Counter and  Last Help registry entries.  
                     2009-10-11 12:02:36                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                       2009-10-11 12:02:39  SYSTEM                          WinMgmt                         63: 
                       2009-10-11 12:02:39  SYSTEM                          WinMgmt                         63: 
                       2009-10-11 12:02:39  SYSTEM                          WinMgmt                         63: 
                     2009-10-11 12:02:43                                  LoadPerf                        1000: Performance counters for the MSDTC (MSDTC) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 12:02:45                                  LoadPerf                        1002: Performance counters for the MSDTC (Distributed Transaction Coordinator) service are already in Performance  Registry, no need to re-install again.  
             1          2009-10-11 12:02:47                                  MSDTC                           4104: The Microsoft Distributed Transaction Coordinator service was successfully installed.
             2          2009-10-11 12:02:49                                  MSDTC                           4193: MS DTC started with the following settings (OFF = 0 and ON = 1):      Security Configuration:        Network Administration of Transactions = 0,        Network Clients = 0,        Inbound Distributed Transactions using Native MSDTC Protocol = 0,        Outbound Distributed Transactions using Native MSDTC Protocol = 0,        Transaction Internet Protocol (TIP) = 0,        XA Transactions = 0     Filtering Duplicate events = 1
                     2009-10-11 12:02:59                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 12:03:10                                  LoadPerf                        1000: Performance counters for the ContentIndex (ContentIndex) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 12:03:10                                  LoadPerf                        1000: Performance counters for the ContentFilter (ContentFilter) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 12:03:10                                  LoadPerf                        1000: Performance counters for the ISAPISearch (ISAPISearch) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 12:04:46                                  LoadPerf                        1002: Performance counters for the IPSec (IPSEC driver) service are already in Performance  Registry, no need to re-install again.  
                       2009-10-11 12:04:56  SYSTEM                          WinMgmt                         5603: A provider, Rsop Planning Mode Provider, has been registered in the WMI namespace, root\RSOP, but did not specify the HostingModel property.  This provider will be run using the LocalSystem account.  This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests.  Ensure that provider has been reviewed for security behavior and update the HostingModel property of the provider registration to an account with the least privileges possible for the required functionality.        
                       2009-10-11 12:04:56  SYSTEM                          WinMgmt                         5603: A provider, Rsop Planning Mode Provider, has been registered in the WMI namespace, root\RSOP, but did not specify the HostingModel property.  This provider will be run using the LocalSystem account.  This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests.  Ensure that provider has been reviewed for security behavior and update the HostingModel property of the provider registration to an account with the least privileges possible for the required functionality.        
                     2009-10-11 12:04:57                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 12:05:39                                  WmdmPmSN                        100: The WmdmPmSN service was installed.  
                       2009-10-11 12:08:25                                  LoadPerf                        3006: Unable to read the performance counter strings of the 019 language ID.  The Win32 status returned by the call is the first DWORD in Data section.  
                     2009-10-11 12:08:51  SYSTEM                          MsiInstaller                    11707: Product: Microsoft Windows Russian User Interface Pack -- Installation operation completed successfully.  
                     2009-10-11 12:08:57                                  SceCli                          1500: Security configuration was backed up to C:\WINDOWS\security\templates\setup security.inf.  
                     2009-10-11 12:12:56                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
             1          2009-10-11 12:12:59                                  ESENT                           100: svchost (748) The database engine 5.02.3790.3959 started.  
                     2009-10-11 12:13:02                                  SecurityCenter                  
                     2009-10-11 12:14:09                                  LoadPerf                        1001: Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully.  The Record Data contains the new values of the system Last Counter and  Last Help registry entries.  
                     2009-10-11 12:14:09                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 12:17:50                                  LoadPerf                        1001: Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully.  The Record Data contains the new values of the system Last Counter and  Last Help registry entries.  
                     2009-10-11 12:17:50                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
             1          2009-10-11 12:18:47                                  ESENT                           101: svchost (748) The database engine stopped.  
             1          2009-10-11 12:20:15                                  ESENT                           100: svchost (748) The database engine 5.02.3790.3959 started.  
             1          2009-10-11 12:25:15                                  ESENT                           101: svchost (748) The database engine stopped.  
                     2009-10-11 12:29:00                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 12:29:06                                  SecurityCenter                  
             1          2009-10-11 12:29:14                                  ESENT                           100: svchost (700) The database engine 5.02.3790.3959 started.  
                     2009-10-11 12:31:20                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 12:31:26                                  SecurityCenter                  
             1          2009-10-11 12:31:52                                  ESENT                           100: svchost (700) The database engine 5.02.3790.3959 started.  
                     2009-10-11 12:33:28                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 12:33:34                                  SecurityCenter                  
             1          2009-10-11 12:33:34                                  ESENT                           100: svchost (744) The database engine 5.02.3790.3959 started.  
                     2009-10-11 12:35:10                                  LoadPerf                        1001: Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully.  The Record Data contains the new values of the system Last Counter and  Last Help registry entries.  
                     2009-10-11 12:35:10                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 12:38:57                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 12:39:00                                  SecurityCenter                  
             1          2009-10-11 12:39:01                                  ESENT                           100: svchost (736) The database engine 5.02.3790.3959 started.  
                     2009-10-11 12:43:18                                  LoadPerf                        1001: Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully.  The Record Data contains the new values of the system Last Counter and  Last Help registry entries.  
                     2009-10-11 12:43:18                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-11 12:46:22  Administrator                   MsiInstaller                    11707: Product: NVIDIA PhysX --    .  
                     2009-10-11 12:49:09                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 12:49:13                                  SecurityCenter                  
             1          2009-10-11 12:49:18                                  ESENT                           100: svchost (744) The database engine 5.02.3790.3959 started.  
                     2009-10-11 12:59:14                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-11 12:59:17                                  SecurityCenter                  
                     2009-10-11 13:03:19                                  LoadPerf                        1001: Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully.  The Record Data contains the new values of the system Last Counter and  Last Help registry entries.  
                     2009-10-11 13:03:19                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                         2009-10-11 13:07:45  Administrator                   MsiInstaller                    1013: Product: ESET NOD32 Antivirus -- This installation package is intended for 32-bit operating systems. Please use an installation package for 64-bit operating systems.  
                     2009-10-11 13:07:49  Administrator                   MsiInstaller                    11708: Product: ESET NOD32 Antivirus -- Installation failed.  
                         2009-10-11 13:07:58  Administrator                   MsiInstaller                    1013: Product: ESET NOD32 Antivirus -- This installation package is intended for 32-bit operating systems. Please use an installation package for 64-bit operating systems.  
                     2009-10-11 13:07:59  Administrator                   MsiInstaller                    11708: Product: ESET NOD32 Antivirus -- Installation failed.  
                         2009-10-11 13:08:10  Administrator                   MsiInstaller                    1013: Product: ESET NOD32 Antivirus -- This installation package is intended for 32-bit operating systems. Please use an installation package for 64-bit operating systems.  
                     2009-10-11 13:08:13  Administrator                   MsiInstaller                    11708: Product: ESET NOD32 Antivirus -- Installation failed.  
                 101        2009-10-11 20:20:03                                  Application Hang                1002: Hanging application lacd_client.exe, version 1.7.13.203, hang module hungapp, version 0.0.0.0, hang address 0x00000000.  
                     2009-10-11 20:25:47  Administrator                   MsiInstaller                    11707: Product: Microsoft .NET Framework 3.5 -- Installation completed successfully.  
                     2009-10-12 13:23:40                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-12 13:23:48                                  SecurityCenter                  
                         2009-10-12 13:27:46                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-12 13:27:46                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-12 13:27:46                                  LoadPerf                        3011: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The  Error code is the first DWORD in Data section.  
                     2009-10-12 13:27:49                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                 101        2009-10-12 14:26:28                                  Application Hang                1002: Hanging application firefox.exe, version 1.9.1.3523, hang module hungapp, version 0.0.0.0, hang address 0x00000000.  
                     2009-10-12 16:40:30                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-12 16:40:37                                  SecurityCenter                  
                         2009-10-12 16:44:35                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-12 16:44:35                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-12 16:44:35                                  LoadPerf                        3011: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The  Error code is the first DWORD in Data section.  
                     2009-10-12 16:44:38                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                 101        2009-10-12 19:49:07                                  Application Hang                1002: Hanging application firefox.exe, version 1.9.1.3523, hang module hungapp, version 0.0.0.0, hang address 0x00000000.  
                     2009-10-12 19:49:23  Administrator                   MsiInstaller                    11707: Product: Naruto The Way of the Ninja 2.0 -- Installation completed successfully.  
                 101        2009-10-12 20:03:35                                  Application Hang                1002: Hanging application firefox.exe, version 1.9.1.3523, hang module hungapp, version 0.0.0.0, hang address 0x00000000.  
                     2009-10-12 21:01:49                                  Wow64 Emulation Layer           1109: The program or feature "\??\D:\GAMES\Horde The north wind\NORWIND.EXE" cannot start or run due to incompatibility with 64-bit versions of Windows. Please contact the software vendor to ask if a 64-bit Windows compatible version is available.  
                     2009-10-12 21:10:52                                  Wow64 Emulation Layer           1109: The program or feature "\??\D:\GAMES\Horde The north wind\NORWIND.EXE" cannot start or run due to incompatibility with 64-bit versions of Windows. Please contact the software vendor to ask if a 64-bit Windows compatible version is available.  
                     2009-10-12 21:13:00                                  Wow64 Emulation Layer           1109: The program or feature "\??\D:\GAMES\hA\NORWIND.EXE" cannot start or run due to incompatibility with 64-bit versions of Windows. Please contact the software vendor to ask if a 64-bit Windows compatible version is available.  
                 101        2009-10-12 21:30:22                                  Application Hang                1002: Hanging application dmaster.exe, version 5.5.14.1175, hang module hungapp, version 0.0.0.0, hang address 0x00000000.  
                     2009-10-12 21:34:09                                  Wow64 Emulation Layer           1109: The program or feature "\??\D:\GAMES\hA\NORWIND.EXE" cannot start or run due to incompatibility with 64-bit versions of Windows. Please contact the software vendor to ask if a 64-bit Windows compatible version is available.  
                     2009-10-12 21:44:06                                  Wow64 Emulation Layer           1109: The program or feature "\??\D:\GAMES\hA\NORWIND.EXE" cannot start or run due to incompatibility with 64-bit versions of Windows. Please contact the software vendor to ask if a 64-bit Windows compatible version is available.  
                     2009-10-13 12:34:39                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-13 12:34:47                                  SecurityCenter                  
                         2009-10-13 12:38:45                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-13 12:38:45                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-13 12:38:45                                  LoadPerf                        3011: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The  Error code is the first DWORD in Data section.  
                     2009-10-13 12:38:48                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                     2009-10-13 16:04:28                                  EventSystem                     4625: The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.  
                     2009-10-13 16:04:37                                  SecurityCenter                  
                         2009-10-13 16:08:46                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-13 16:08:46                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-13 16:08:46                                  LoadPerf                        3011: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The  Error code is the first DWORD in Data section.  
                     2009-10-13 16:08:50                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                         2009-10-13 16:28:16                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-13 16:28:16                                  LoadPerf                        3012: The performance strings in the Performance registry value is corrupted when  process Performance extension counter provider. BaseIndex value from Performance  registry is the first DWORD in Data section, LastCounter value is the second  DWORD in Data section, and LastHelp value is the third DWORD in Data section.  
                         2009-10-13 16:28:16                                  LoadPerf                        3011: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The  Error code is the first DWORD in Data section.  
                     2009-10-13 16:28:19                                  LoadPerf                        1000: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully.  The Record Data contains the new index values assigned  to this service.  
                 101        2009-10-13 18:29:17                                  Application Hang                1002: Hanging application dmaster.exe, version 5.5.14.1175, hang module hungapp, version 0.0.0.0, hang address 0x00000000.  
                 101        2009-10-13 21:26:00                                  Application Hang                1002: Hanging application firefox.exe, version 1.9.1.3523, hang module hungapp, version 0.0.0.0, hang address 0x00000000.  
                 101        2009-10-14 09:51:37                                  Application Hang                1002: Hanging application firefox.exe, version 1.9.1.3523, hang module hungapp, version 0.0.0.0, hang address 0x00000000.  
                 101        2009-10-14 10:19:28                                  Application Hang                1002: Hanging application FLVPlayer.exe, version 0.0.0.0, hang module hungapp, version 0.0.0.0, hang address 0x00000000.  
                         2009-10-14 12:41:19                                  Application Error               1000: Faulting application horde2.exe, version 0.0.0.0, faulting module horde2.exe, version 0.0.0.0, fault address 0x0002f9da.  
                 101        2009-10-14 12:41:38                                  Application Hang                1002: Hanging application horde2.exe, version 0.0.0.0, hang module hungapp, version 0.0.0.0, hang address 0x00000000.  
                         2009-10-14 15:29:15                                  Application Error               1000: Faulting application horde2.exe, version 0.0.0.0, faulting module horde2.exe, version 0.0.0.0, fault address 0x0002f9da.  
      Audit Success   2          2009-10-11 02:17:33  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE122)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:17:33  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE122)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:17:33  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE122)     Logon Type: 2    
      Audit Success   2          2009-10-11 02:17:33  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE144)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 02:17:33  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE144)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:17:33  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:17:33  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:17:33  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:17:33  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:17:33  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:17:33  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 02:17:33  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 02:17:33  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 02:17:33  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 02:18:36  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x34C29)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:22:58  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe144)    
      Audit Success   2          2009-10-11 02:23:30  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe144)    
      Audit Success   1          2009-10-11 02:23:33                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-11 02:25:53  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE009)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:25:53  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE009)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:25:53  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE009)     Logon Type: 2    
      Audit Success   2          2009-10-11 02:25:53  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE02C)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 02:25:53  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE02C)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:25:53  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:25:53  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:25:53  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:25:53  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:25:53  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:25:53  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 02:25:53  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 02:25:53  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 02:25:53  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 02:26:59  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3571B)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:27:45  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe02c)    
      Audit Success   2          2009-10-11 02:27:47  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE02C)     Logon Type: 2    
      Audit Success   1          2009-10-11 02:27:49                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-11 02:28:53  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xDE4E)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:28:53  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xDE4E)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:28:53  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xDE4E)     Logon Type: 2    
      Audit Success   2          2009-10-11 02:28:53  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xDE72)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 02:28:53  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xDE72)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:28:53  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:28:53  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:28:53  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:28:53  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:28:53  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:28:53  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 02:28:53  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 02:28:53  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 02:28:53  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 02:29:58  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3303E)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:29:59  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xde72)    
      Audit Success   1          2009-10-11 02:30:08                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-11 02:31:13  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE014)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:31:13  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE014)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:31:13  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE014)     Logon Type: 2    
      Audit Success   2          2009-10-11 02:31:13  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE038)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 02:31:13  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE038)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:31:13  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:31:13  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:31:13  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:31:13  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:31:13  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:31:13  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 02:31:13  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 02:31:13  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 02:31:13  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 02:32:17  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x30377)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:35:11  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe038)    
      Audit Success   2          2009-10-11 02:35:13  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE038)     Logon Type: 2    
      Audit Success   1          2009-10-11 02:35:15                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-11 02:36:16  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE142)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:36:16  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE142)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:36:16  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE142)     Logon Type: 2    
      Audit Success   2          2009-10-11 02:36:16  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE166)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 02:36:16  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE166)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:36:16  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:36:16  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:36:16  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:36:16  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:36:16  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:36:16  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 02:36:16  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 02:36:16  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 02:36:16  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 02:37:20  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x39756)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:38:06  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe166)    
      Audit Success   2          2009-10-11 02:38:56  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE166)     Logon Type: 2    
      Audit Success   1          2009-10-11 02:38:58                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-11 02:39:59  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE16A)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:39:59  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE16A)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:39:59  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE16A)     Logon Type: 2    
      Audit Success   2          2009-10-11 02:39:59  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE192)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 02:39:59  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE192)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:39:59  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:39:59  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:39:59  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:39:59  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:39:59  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:39:59  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 02:39:59  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 02:39:59  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 02:39:59  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 02:41:05  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x33EE3)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:51:07  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE12F)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:51:07  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE12F)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:51:07  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE12F)     Logon Type: 2    
      Audit Success   2          2009-10-11 02:51:07  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE153)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 02:51:07  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE153)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:51:07  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:51:07  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:51:07  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:51:07  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:51:07  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:51:07  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 02:51:07  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 02:51:07  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 02:51:07  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 02:51:21  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe153)    
      Audit Success   2          2009-10-11 02:52:12  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x33262)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   1          2009-10-11 02:52:24                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-11 02:55:35  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE078)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:55:35  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE078)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:55:35  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE078)     Logon Type: 2    
      Audit Success   2          2009-10-11 02:55:35  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE09C)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 02:55:35  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE09C)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:55:35  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:55:35  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:55:35  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:55:35  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 02:55:35  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 02:55:35  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 02:55:35  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 02:55:35  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 02:55:35  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 02:56:40  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x36E23)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 03:04:34  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE081)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 03:04:34  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE081)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 03:04:34  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE081)     Logon Type: 2    
      Audit Success   2          2009-10-11 03:04:34  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE0A5)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 03:04:34  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE0A5)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 03:04:34  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 03:04:34  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 03:04:34  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 03:04:34  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 03:04:34  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 03:04:34  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 03:04:34  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 03:04:34  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 03:04:34  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 03:05:38  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x36A95)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 03:11:11  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE143)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 03:11:11  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE143)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 03:11:11  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE143)     Logon Type: 2    
      Audit Success   2          2009-10-11 03:11:11  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE167)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 03:11:11  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE167)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 03:11:11  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 03:11:11  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 03:11:11  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 03:11:11  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 03:11:11  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 03:11:11  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 03:11:11  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 03:11:11  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 03:11:11  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 03:12:16  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3108B)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 03:19:17  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe167)    
      Audit Success   1          2009-10-11 03:19:24                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-11 03:21:21  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE086)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 03:21:21  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE086)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 03:21:21  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE086)     Logon Type: 2    
      Audit Success   2          2009-10-11 03:21:21  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE0A9)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 03:21:21  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE0A9)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 03:21:21  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 03:21:21  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 03:21:21  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 03:21:21  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 03:21:21  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 03:21:21  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 03:21:21  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 03:21:21  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 03:21:21  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 03:22:27  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x36461)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 04:04:33  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe0a9)    
      Audit Success   2          2009-10-11 04:08:10  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe0a9)    
      Audit Success   2          2009-10-11 04:50:52  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe0a9)    
      Audit Success   1          2009-10-11 04:50:59                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   6          2009-10-11 04:51:57  SYSTEM                          Security                        612: Audit Policy Change:    New Policy:     Success Failure         +     - Logon/Logoff         -     - Object Access         -     - Privilege Use         -     - Account Management         -     - Policy Change         -     - System         -     - Detailed Tracking         -     - Directory Service Access         +     - Account Logon      Changed By:       User Name: MACHINENAME$       Domain Name:        Logon ID: (0x0,0x3E7)  
      Audit Success   2          2009-10-11 04:52:54  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE077)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 388     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 04:52:54  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE077)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 04:52:54  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE077)     Logon Type: 2    
      Audit Success   2          2009-10-11 04:52:54  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE09B)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 388     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 04:52:54  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE09B)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 04:52:54  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 436     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 04:52:54  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 04:52:54  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 436     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 04:52:54  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 04:52:54  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 04:52:54  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 388    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 04:52:54  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 388    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 04:52:54  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 04:52:54  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 04:53:59  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x355C6)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 05:15:36  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xBA88B)     Logon Type: 2     Logon Process: seclogon     Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: Administrator     Caller Domain: RAZINKIN-7C1358     Caller Logon ID: (0x0,0xE09B)     Caller Process ID: 748     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 05:15:36  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xBA88B)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   9          2009-10-11 05:15:36  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 05:15:47  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xBA88B)     Logon Type: 2    
      Audit Success   2          2009-10-11 12:00:20  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: MACHINENAME$     Caller Domain:      Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 284     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:00:20  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name:      Domain:       Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:00:20  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: MACHINENAME$     Caller Domain:      Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 284     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:00:20  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name:      Domain:       Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   1          2009-10-11 12:11:30                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-11 12:12:51  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:12:51  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:12:51  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:12:51  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:12:51  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:12:57  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x10141)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:13:04  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x23823)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 336     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:13:04  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x23823)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:13:04  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x23A7F)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 336     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 12:13:04  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x23A7F)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:13:04  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x23823)     Logon Type: 2    
      Audit Success   2          2009-10-11 12:13:04  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 336    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 12:13:04  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 336    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 12:13:04  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 12:13:04  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 12:25:42  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x23a7f)    
      Audit Success   2          2009-10-11 12:25:43  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x23A7F)     Logon Type: 2    
      Audit Success   1          2009-10-11 12:25:45                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-11 12:28:59  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xC0E8)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 340     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:28:59  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xC0E8)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:28:59  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xC1F5)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 340     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 12:28:59  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xC1F5)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:28:59  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xC0E8)     Logon Type: 2    
      Audit Success   2          2009-10-11 12:28:59  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 388     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:28:59  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:28:59  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 388     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:28:59  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:28:59  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:28:59  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 340    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 12:28:59  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 340    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 12:28:59  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 12:28:59  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 12:29:01  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x10F60)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:30:18  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xc1f5)    
      Audit Success   2          2009-10-11 12:30:20  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xC1F5)     Logon Type: 2    
      Audit Success   1          2009-10-11 12:30:22                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-11 12:31:19  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xC201)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 340     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:31:19  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xC201)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:31:19  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xC22A)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 340     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 12:31:19  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xC22A)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:31:19  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xC201)     Logon Type: 2    
      Audit Success   2          2009-10-11 12:31:19  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 388     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:31:19  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:31:19  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 388     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:31:19  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:31:19  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:31:19  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 340    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 12:31:19  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 340    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 12:31:19  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 12:31:19  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 12:31:22  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x12127)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:32:22  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xc22a)    
      Audit Success   2          2009-10-11 12:32:25  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xC22A)     Logon Type: 2    
      Audit Success   1          2009-10-11 12:32:27                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-11 12:33:27  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xCF99)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 388     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:33:27  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xCF99)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:33:27  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xCFD8)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 388     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 12:33:27  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xCFD8)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:33:27  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xCF99)     Logon Type: 2    
      Audit Success   2          2009-10-11 12:33:27  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 436     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:33:27  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:33:27  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 436     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:33:27  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:33:27  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:33:27  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 388    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 12:33:27  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 388    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 12:33:27  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 12:33:27  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 12:33:29  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x120D6)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:36:40  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xcfd8)    
      Audit Success   2          2009-10-11 12:36:42  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xCFD8)     Logon Type: 2    
      Audit Success   1          2009-10-11 12:36:44                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-11 12:37:53  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xDCD2)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:37:53  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xDCD2)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:37:53  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xDCD2)     Logon Type: 2    
      Audit Success   2          2009-10-11 12:37:53  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xDCF6)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 12:37:53  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xDCF6)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:37:53  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:37:53  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:37:53  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:37:53  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:37:53  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:37:53  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 12:37:53  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 12:37:53  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 12:37:53  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 12:38:57  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x1580F)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:46:59  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xdcf6)    
      Audit Success   1          2009-10-11 12:47:02                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-11 12:48:06  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE1CF)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 392     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:48:06  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE1CF)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:48:06  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE1CF)     Logon Type: 2    
      Audit Success   2          2009-10-11 12:48:06  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE1F3)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 392     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 12:48:06  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE1F3)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:48:06  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:48:06  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 440     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:48:06  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 440     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:48:06  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:48:06  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 392    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 12:48:06  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 392    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   2          2009-10-11 12:48:06  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   9          2009-10-11 12:48:06  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 12:48:06  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 12:49:09  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x30A25)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:51:35  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe1f3)    
      Audit Success   1          2009-10-11 12:51:39                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-11 12:58:09  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE21A)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 392     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:58:09  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE21A)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:58:09  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE21A)     Logon Type: 2    
      Audit Success   2          2009-10-11 12:58:09  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE23E)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 392     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-11 12:58:09  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE23E)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:58:09  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 440     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:58:09  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:58:09  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 440     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:58:09  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-11 12:58:09  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 12:58:09  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 392    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-11 12:58:09  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 392    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-11 12:58:09  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-11 12:58:09  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-11 12:59:14  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x30761)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-11 23:22:18  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe09b)    
      Audit Success   1          2009-10-11 23:22:27                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-12 13:22:35  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 436     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-12 13:22:35  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-12 13:22:35  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 436     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-12 13:22:35  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-12 13:22:35  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-12 13:22:37  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE4DB)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 388     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-12 13:22:37  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name:      Domain:       Logon ID:  (0x0,0xE4DB)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-12 13:22:37  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 388    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-12 13:22:37  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-12 13:23:41  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3637E)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-12 16:38:01  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe4db)    
      Audit Success   1          2009-10-12 16:38:08                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-12 16:39:24  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE09F)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-12 16:39:24  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE09F)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-12 16:39:24  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE09F)     Logon Type: 2    
      Audit Success   2          2009-10-12 16:39:24  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE0C3)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-12 16:39:24  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE0C3)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-12 16:39:24  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-12 16:39:24  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-12 16:39:24  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-12 16:39:24  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-12 16:39:24  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-12 16:39:24  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-12 16:39:24  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-12 16:39:24  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-12 16:39:24  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-12 16:40:31  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x36248)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-13 00:21:21  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe0c3)    
      Audit Success   1          2009-10-13 00:21:28                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-13 12:33:34  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE060)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-13 12:33:34  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE060)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-13 12:33:34  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE060)     Logon Type: 2    
      Audit Success   2          2009-10-13 12:33:34  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE084)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-13 12:33:34  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE084)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-13 12:33:34  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-13 12:33:34  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-13 12:33:34  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-13 12:33:34  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-13 12:33:34  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-13 12:33:34  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-13 12:33:34  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-13 12:33:34  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-13 12:33:34  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-13 12:34:40  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x37FE3)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-13 12:52:18  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe084)    
      Audit Success   2          2009-10-13 12:52:27  ANONYMOUS LOGON                 Security                        538: User Logoff:     User Name: ANONYMOUS LOGON     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x37FE3)     Logon Type: 3    
      Audit Success   1          2009-10-13 12:52:28                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-13 16:03:24  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE0F4)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-13 16:03:24  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE0F4)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-13 16:03:24  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE0F4)     Logon Type: 2    
      Audit Success   2          2009-10-13 16:03:24  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE115)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-13 16:03:24  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE115)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-13 16:03:24  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-13 16:03:24  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-13 16:03:24  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-13 16:03:24  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-13 16:03:24  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-13 16:03:24  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-13 16:03:24  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-13 16:03:24  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-13 16:03:24  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-13 16:04:29  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3F71A)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-17 13:16:44  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe115)    
      Audit Success   1          2009-10-17 13:16:55                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-17 13:17:48  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE084)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-17 13:17:48  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE084)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-17 13:17:48  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE084)     Logon Type: 2    
      Audit Success   2          2009-10-17 13:17:48  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE0A8)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-17 13:17:48  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE0A8)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-17 13:17:48  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-17 13:17:48  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-17 13:17:48  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-17 13:17:48  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-17 13:17:48  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-17 13:17:48  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-17 13:17:48  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-17 13:17:48  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-17 13:17:48  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-17 13:18:52  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x38722)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-18 22:37:24  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe0a8)    
      Audit Success   1          2009-10-18 22:37:34                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-18 23:58:58  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE102)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-18 23:58:58  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE102)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-18 23:58:58  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE102)     Logon Type: 2    
      Audit Success   2          2009-10-18 23:58:58  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE126)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-18 23:58:58  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE126)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-18 23:58:58  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-18 23:58:58  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-18 23:58:58  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-18 23:58:58  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-18 23:58:58  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-18 23:58:58  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-18 23:58:58  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-18 23:58:58  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-18 23:58:58  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-19 00:00:03  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x369CC)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-19 09:22:18  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xD1146)     Logon Type: 2     Logon Process: Advapi       Authentication Package: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-19 09:22:18  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xD1146)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-19 09:22:18  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xD1146)     Logon Type: 2    
      Audit Success   2          2009-10-19 09:22:18  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   9          2009-10-19 09:22:18  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-19 09:23:05  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xD3660)     Logon Type: 2     Logon Process: Advapi       Authentication Package: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-19 09:23:05  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name:      Domain:       Logon ID:  (0x0,0xD3660)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-19 09:23:05  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xD3660)     Logon Type: 2    
      Audit Success   2          2009-10-19 09:23:05  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   9          2009-10-19 09:23:05  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-19 09:38:03  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe126)    
      Audit Success   2          2009-10-19 09:38:13  ANONYMOUS LOGON                 Security                        538: User Logoff:     User Name: ANONYMOUS LOGON     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x369CC)     Logon Type: 3    
      Audit Success   1          2009-10-19 09:38:14                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-19 10:23:55  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE119)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-19 10:23:55  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE119)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-19 10:23:55  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE119)     Logon Type: 2    
      Audit Success   2          2009-10-19 10:23:55  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE13D)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-19 10:23:55  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE13D)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-19 10:23:55  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-19 10:23:55  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-19 10:23:55  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-19 10:23:55  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-19 10:23:55  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-19 10:23:55  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-19 10:23:55  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-19 10:23:55  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-19 10:23:55  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-19 10:25:02  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x35B63)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-19 11:55:24  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x628C4)     Logon Type: 2     Logon Process: Advapi       Authentication Package: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-19 11:55:24  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x628C4)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-19 11:55:24  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x628C4)     Logon Type: 2    
      Audit Success   2          2009-10-19 11:55:24  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   9          2009-10-19 11:55:24  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-19 11:59:42  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x6743F)     Logon Type: 2     Logon Process: Advapi       Authentication Package: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-19 11:59:42  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name:      Domain:       Logon ID:  (0x0,0x6743F)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-19 11:59:42  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x6743F)     Logon Type: 2    
      Audit Success   2          2009-10-19 11:59:42  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   9          2009-10-19 11:59:42  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-19 19:17:44  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1C0DA1)     Logon Type: 2     Logon Process: Advapi       Authentication Package: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-19 19:17:44  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1C0DA1)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-19 19:17:44  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1C0DA1)     Logon Type: 2    
      Audit Success   2          2009-10-19 19:17:44  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   9          2009-10-19 19:17:44  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-19 19:18:09  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1C3961)     Logon Type: 2     Logon Process: Advapi       Authentication Package: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-19 19:18:09  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name:      Domain:       Logon ID:  (0x0,0x1C3961)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-19 19:18:09  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1C3961)     Logon Type: 2    
      Audit Success   2          2009-10-19 19:18:09  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   9          2009-10-19 19:18:09  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-19 19:18:18  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe13d)    
      Audit Success   1          2009-10-19 19:18:24                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-19 19:51:17  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE260)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-19 19:51:17  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE260)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-19 19:51:17  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE260)     Logon Type: 2    
      Audit Success   2          2009-10-19 19:51:17  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE284)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-19 19:51:17  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE284)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-19 19:51:17  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-19 19:51:17  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-19 19:51:17  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-19 19:51:17  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-19 19:51:17  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-19 19:51:17  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-19 19:51:17  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-19 19:51:17  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-19 19:51:17  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-19 19:52:20  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x39CC1)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-19 23:45:24  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe284)    
      Audit Success   2          2009-10-19 23:45:32  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE284)     Logon Type: 2    
      Audit Success   1          2009-10-19 23:45:34                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-20 09:10:05  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE25D)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-20 09:10:05  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE25D)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-20 09:10:05  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE25D)     Logon Type: 2    
      Audit Success   2          2009-10-20 09:10:05  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE281)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-20 09:10:05  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE281)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-20 09:10:05  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-20 09:10:05  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-20 09:10:05  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-20 09:10:05  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-20 09:10:05  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-20 09:10:05  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-20 09:10:05  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-20 09:10:05  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-20 09:10:05  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-20 09:11:10  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x35ADB)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-20 09:29:54  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe281)    
      Audit Success   2          2009-10-20 09:30:03  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE281)     Logon Type: 2    
      Audit Success   2          2009-10-20 09:30:04  ANONYMOUS LOGON                 Security                        538: User Logoff:     User Name: ANONYMOUS LOGON     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x35ADB)     Logon Type: 3    
      Audit Success   1          2009-10-20 09:30:05                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-20 09:45:25  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE263)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-20 09:45:25  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE263)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-20 09:45:25  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE263)     Logon Type: 2    
      Audit Success   2          2009-10-20 09:45:25  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE287)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-20 09:45:25  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE287)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-20 09:45:25  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-20 09:45:25  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-20 09:45:25  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-20 09:45:25  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-20 09:45:25  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-20 09:45:25  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-20 09:45:25  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-20 09:45:25  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-20 09:45:25  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-20 09:46:28  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x36AD1)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-20 11:01:57  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE333)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-20 11:01:57  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE333)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-20 11:01:57  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE333)     Logon Type: 2    
      Audit Success   2          2009-10-20 11:01:57  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE357)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 384     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-20 11:01:57  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE357)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-20 11:01:57  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-20 11:01:57  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-20 11:01:57  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-20 11:01:57  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-20 11:01:57  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-20 11:01:57  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-20 11:01:57  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 384    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-20 11:01:57  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-20 11:01:57  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-20 11:03:02  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x34F9B)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-20 23:45:07  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe357)    
      Audit Success   1          2009-10-20 23:45:17                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-21 08:29:39  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE0EE)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 388     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-21 08:29:39  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE0EE)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-21 08:29:39  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE0EE)     Logon Type: 2    
      Audit Success   2          2009-10-21 08:29:39  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE112)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 388     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-21 08:29:39  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE112)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-21 08:29:39  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 436     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-21 08:29:39  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-21 08:29:39  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 436     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-21 08:29:39  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-21 08:29:39  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-21 08:29:39  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 388    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-21 08:29:39  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 388    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-21 08:29:39  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-21 08:29:39  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-21 08:30:47  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x39A0F)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-21 08:34:24  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe112)    
      Audit Success   1          2009-10-21 08:34:32                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-21 17:47:15  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE0FD)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 388     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-21 17:47:15  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE0FD)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-21 17:47:15  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE0FD)     Logon Type: 2    
      Audit Success   2          2009-10-21 17:47:15  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE120)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 388     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-21 17:47:15  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE120)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-21 17:47:15  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 436     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-21 17:47:15  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-21 17:47:15  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 436     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-21 17:47:15  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-21 17:47:15  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-21 17:47:15  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 388    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-21 17:47:15  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 388    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-21 17:47:15  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-21 17:47:15  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-21 17:48:20  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x33E67)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-22 23:36:06  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe120)    
      Audit Success   1          2009-10-22 23:36:16                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-23 17:26:11  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE487)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 408     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-23 17:26:11  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE487)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-23 17:26:11  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE487)     Logon Type: 2    
      Audit Success   2          2009-10-23 17:26:11  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE4AA)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 408     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-23 17:26:11  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE4AA)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-23 17:26:11  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 456     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-23 17:26:11  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-23 17:26:11  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 456     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-23 17:26:11  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-23 17:26:11  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-23 17:26:11  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 408    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-23 17:26:11  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 408    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-23 17:26:11  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-23 17:26:11  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-23 17:27:19  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3763B)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-23 17:27:55  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x3C481)     Logon Type: 2     Logon Process: Advapi       Authentication Package: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 408     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-23 17:27:55  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name:      Domain:       Logon ID:  (0x0,0x3C481)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-23 17:27:55  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x3C481)     Logon Type: 2    
      Audit Success   2          2009-10-23 17:27:55  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 408    Source Network Address: -    Source Port: -    
      Audit Success   9          2009-10-23 17:27:55  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-23 17:28:31  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x4BB6A)     Logon Type: 2     Logon Process: Advapi       Authentication Package: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 408     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-23 17:28:31  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name:      Domain:       Logon ID:  (0x0,0x4BB6A)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-23 17:28:31  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x4BB6A)     Logon Type: 2    
      Audit Success   2          2009-10-23 17:28:31  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 408    Source Network Address: -    Source Port: -    
      Audit Success   9          2009-10-23 17:28:31  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-24 05:48:55  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe4aa)    
      Audit Success   1          2009-10-24 05:49:08                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-24 05:50:13  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE4E5)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 420     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 05:50:13  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE4E5)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 05:50:13  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE4E5)     Logon Type: 2    
      Audit Success   2          2009-10-24 05:50:13  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE50C)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 420     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-24 05:50:13  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE50C)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 05:50:13  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 468     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 05:50:13  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 05:50:13  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 468     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 05:50:13  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 05:50:13  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 05:50:13  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 420    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-24 05:50:13  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 420    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-24 05:50:13  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-24 05:50:13  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-24 05:51:20  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x2EB7C)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 09:58:30  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe50c)    
      Audit Success   1          2009-10-24 09:58:39                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-24 10:18:27  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9AE)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 10:18:27  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE9AE)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 10:18:27  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9AE)     Logon Type: 2    
      Audit Success   2          2009-10-24 10:18:27  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9D5)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-24 10:18:27  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9D5)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 10:18:27  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 10:18:27  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 10:18:27  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 10:18:27  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 10:18:27  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 10:18:27  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-24 10:18:27  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-24 10:18:27  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-24 10:18:27  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-24 10:19:32  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3C937)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 10:22:35  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEA8C)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 10:22:35  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEA8C)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 10:22:35  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEA8C)     Logon Type: 2    
      Audit Success   2          2009-10-24 10:22:35  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEAB2)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-24 10:22:35  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEAB2)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 10:22:35  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 10:22:35  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 10:22:35  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 10:22:35  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 10:22:35  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 10:22:35  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-24 10:22:35  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-24 10:22:35  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-24 10:22:35  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-24 10:23:40  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x366DA)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 10:55:49  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xeab2)    
      Audit Success   1          2009-10-24 10:55:59                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-24 20:18:34  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9CE)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 20:18:34  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE9CE)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 20:18:34  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9CE)     Logon Type: 2    
      Audit Success   2          2009-10-24 20:18:34  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9F4)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-24 20:18:34  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9F4)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 20:18:34  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 20:18:34  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 20:18:34  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 20:18:34  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 20:18:34  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 20:18:34  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-24 20:18:34  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-24 20:18:34  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-24 20:18:34  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-24 20:19:39  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3CD9A)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 21:15:45  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEAA7)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 21:15:45  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEAA7)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 21:15:45  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEAA7)     Logon Type: 2    
      Audit Success   2          2009-10-24 21:15:45  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEACE)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-24 21:15:45  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEACE)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 21:15:45  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 21:15:45  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 21:15:45  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 21:15:45  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-24 21:15:45  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-24 21:15:45  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-24 21:15:45  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-24 21:15:45  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-24 21:15:45  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-24 21:16:52  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3739A)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 00:07:54  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xeace)    
      Audit Success   1          2009-10-25 00:08:03                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-25 02:46:03  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9D4)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 02:46:03  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE9D4)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 02:46:03  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9D4)     Logon Type: 2    
      Audit Success   2          2009-10-25 02:46:03  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9FB)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-25 02:46:03  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9FB)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 02:46:03  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 02:46:03  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 02:46:03  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 02:46:03  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 02:46:03  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 02:46:03  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-25 02:46:03  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-25 02:46:03  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-25 02:46:03  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-25 02:47:09  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3728F)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 05:32:27  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9C3)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 05:32:27  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE9C3)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 05:32:27  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9C3)     Logon Type: 2    
      Audit Success   2          2009-10-25 05:32:27  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9EA)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-25 05:32:27  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9EA)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 05:32:27  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 05:32:27  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 05:32:27  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 05:32:27  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 05:32:27  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 05:32:27  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-25 05:32:27  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-25 05:32:27  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-25 05:32:27  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-25 05:33:34  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x36CAF)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 06:55:33  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE90F)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 06:55:33  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE90F)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 06:55:33  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE90F)     Logon Type: 2    
      Audit Success   2          2009-10-25 06:55:33  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE935)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-25 06:55:33  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE935)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 06:55:33  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 06:55:33  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 06:55:33  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 06:55:33  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 06:55:33  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 06:55:33  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-25 06:55:33  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-25 06:55:33  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-25 06:55:33  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-25 06:56:39  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x37B04)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 07:28:15  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9C2)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 07:28:15  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE9C2)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 07:28:15  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9C2)     Logon Type: 2    
      Audit Success   2          2009-10-25 07:28:15  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9E9)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-25 07:28:15  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9E9)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 07:28:15  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 07:28:15  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 07:28:15  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 07:28:15  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 07:28:15  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 07:28:15  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-25 07:28:15  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-25 07:28:15  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-25 07:28:15  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-25 07:29:21  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x36538)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 20:00:34  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9B8)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 20:00:34  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE9B8)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 20:00:34  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9B8)     Logon Type: 2    
      Audit Success   2          2009-10-25 20:00:34  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9DF)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-25 20:00:34  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9DF)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 20:00:34  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 20:00:34  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 20:00:34  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 20:00:34  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 20:00:34  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 20:00:34  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-25 20:00:34  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-25 20:00:34  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-25 20:00:34  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-25 20:01:40  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x36D68)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 20:21:58  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE97E)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 20:21:58  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE97E)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 20:21:58  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE97E)     Logon Type: 2    
      Audit Success   2          2009-10-25 20:21:58  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9A1)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-25 20:21:58  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9A1)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 20:21:58  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 20:21:58  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 20:21:58  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 20:21:58  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 20:21:58  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 20:21:58  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-25 20:21:58  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-25 20:21:58  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-25 20:21:58  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-25 20:23:05  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x365C9)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 20:59:09  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9A4)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 20:59:09  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE9A4)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 20:59:09  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9A4)     Logon Type: 2    
      Audit Success   2          2009-10-25 20:59:09  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9CB)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-25 20:59:09  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9CB)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 20:59:09  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 20:59:09  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 20:59:09  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 20:59:09  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-25 20:59:09  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 20:59:09  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-25 20:59:09  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-25 20:59:09  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-25 20:59:09  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-25 21:00:18  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x38DF3)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-25 21:22:05  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe9cb)    
      Audit Success   2          2009-10-25 21:22:12  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9CB)     Logon Type: 2    
      Audit Success   1          2009-10-25 21:22:14                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-26 12:57:43  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE8DE)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 12:57:43  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE8DE)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 12:57:43  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE8DE)     Logon Type: 2    
      Audit Success   2          2009-10-26 12:57:43  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE904)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-26 12:57:43  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE904)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 12:57:43  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 12:57:43  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 12:57:43  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 12:57:43  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 12:57:43  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 12:57:43  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-26 12:57:43  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-26 12:57:43  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-26 12:57:43  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-26 12:58:50  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x367F3)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 13:46:35  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xe904)    
      Audit Success   2          2009-10-26 13:46:46  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE904)     Logon Type: 2    
      Audit Success   1          2009-10-26 13:46:48                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-26 13:49:08  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEA03)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 13:49:08  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEA03)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 13:49:08  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEA03)     Logon Type: 2    
      Audit Success   2          2009-10-26 13:49:08  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEA29)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-26 13:49:08  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEA29)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 13:49:08  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 13:49:08  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 13:49:08  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 13:49:08  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 13:49:08  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 13:49:08  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-26 13:49:08  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-26 13:49:08  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-26 13:49:08  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-26 13:50:14  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3691C)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 13:51:42  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9F5)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 13:51:42  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE9F5)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 13:51:42  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9F5)     Logon Type: 2    
      Audit Success   2          2009-10-26 13:51:42  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEA19)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-26 13:51:42  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEA19)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 13:51:42  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 13:51:42  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 13:51:42  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 13:51:42  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 13:51:42  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 13:51:42  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-26 13:51:42  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-26 13:51:42  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-26 13:51:42  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-26 13:52:50  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x38120)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 16:45:27  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEA6D)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 16:45:27  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEA6D)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 16:45:27  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEA6D)     Logon Type: 2    
      Audit Success   2          2009-10-26 16:45:27  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEA94)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-26 16:45:27  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEA94)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 16:45:27  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 16:45:27  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 16:45:27  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 16:45:27  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 16:45:27  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 16:45:27  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-26 16:45:27  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-26 16:45:27  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-26 16:45:27  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-26 16:46:36  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x38674)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   1          2009-10-26 16:46:59                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-26 17:49:52  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9B5)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 17:49:52  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE9B5)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 17:49:52  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9B5)     Logon Type: 2    
      Audit Success   2          2009-10-26 17:49:52  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9DC)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-26 17:49:52  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9DC)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 17:49:52  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 17:49:52  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 17:49:52  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 17:49:52  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 17:49:52  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 17:49:52  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-26 17:49:52  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-26 17:49:52  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-26 17:49:52  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-26 17:50:58  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x37E63)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 23:11:30  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEC27)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 23:11:30  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEC27)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 23:11:30  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEC27)     Logon Type: 2    
      Audit Success   2          2009-10-26 23:11:30  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEC4A)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-26 23:11:30  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEC4A)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 23:11:30  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 23:11:30  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 23:11:30  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 23:11:30  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-26 23:11:30  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 23:11:30  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-26 23:11:30  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-26 23:11:30  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-26 23:11:30  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-26 23:12:35  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3BCD3)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-26 23:21:52  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xec4a)    
      Audit Success   2          2009-10-26 23:22:00  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEC4A)     Logon Type: 2    
      Audit Success   1          2009-10-26 23:22:04                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-27 06:03:04  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9AA)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 06:03:04  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE9AA)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 06:03:04  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9AA)     Logon Type: 2    
      Audit Success   2          2009-10-27 06:03:04  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9D1)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-27 06:03:04  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9D1)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 06:03:04  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 06:03:04  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 06:03:04  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 06:03:04  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 06:03:04  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 06:03:04  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-27 06:03:04  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-27 06:03:04  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-27 06:03:04  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-27 06:04:11  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x36B3D)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   1          2009-10-27 08:23:41                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-27 08:25:08  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE999)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 08:25:08  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xE999)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 08:25:08  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE999)     Logon Type: 2    
      Audit Success   2          2009-10-27 08:25:08  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9C0)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-27 08:25:08  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xE9C0)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 08:25:08  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 08:25:08  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 08:25:08  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 08:25:08  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 08:25:08  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 08:25:08  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-27 08:25:08  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-27 08:25:08  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-27 08:25:08  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-27 08:26:14  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3FBB1)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 08:51:52  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEA9A)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 08:51:52  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEA9A)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 08:51:52  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEA9A)     Logon Type: 2    
      Audit Success   2          2009-10-27 08:51:52  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEABD)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-27 08:51:52  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEABD)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 08:51:52  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 08:51:52  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 08:51:52  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 08:51:52  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 08:51:52  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 08:51:52  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-27 08:51:52  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-27 08:51:52  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-27 08:51:52  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-27 08:52:59  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x36F13)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 09:34:58  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xeabd)    
      Audit Success   1          2009-10-27 09:39:42                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-27 13:08:21  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xED12)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 13:08:21  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xED12)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 13:08:21  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xED34)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-27 13:08:21  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xED34)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 13:08:21  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xED12)     Logon Type: 2    
      Audit Success   2          2009-10-27 13:08:21  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 13:08:21  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 13:08:21  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 13:08:21  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 13:08:21  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 13:08:21  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-27 13:08:21  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-27 13:08:21  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-27 13:08:21  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-27 13:09:29  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x36768)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 18:55:02  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB25)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 18:55:02  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEB25)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 18:55:02  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB4C)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-27 18:55:02  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB4C)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 18:55:02  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB25)     Logon Type: 2    
      Audit Success   2          2009-10-27 18:55:02  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 18:55:02  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 18:55:02  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 18:55:02  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-27 18:55:02  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 18:55:02  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-27 18:55:02  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-27 18:55:02  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-27 18:55:02  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-27 18:56:06  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x37ED1)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-27 23:04:51  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xeb4c)    
      Audit Success   1          2009-10-27 23:07:12                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-28 15:17:19  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEBFE)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 15:17:19  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEBFE)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 15:17:19  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEBFE)     Logon Type: 2    
      Audit Success   2          2009-10-28 15:17:19  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEC20)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-28 15:17:19  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEC20)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 15:17:19  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 15:17:19  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 15:17:19  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 15:17:19  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 15:17:19  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 15:17:19  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-28 15:17:19  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-28 15:17:19  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-28 15:17:19  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-28 15:18:24  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x37C40)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 16:01:38  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB30)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 16:01:38  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEB30)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 16:01:38  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB30)     Logon Type: 2    
      Audit Success   2          2009-10-28 16:01:38  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB55)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-28 16:01:38  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB55)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 16:01:38  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 16:01:38  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 16:01:38  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 16:01:38  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 16:01:38  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   2          2009-10-28 16:01:38  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 16:01:38  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   9          2009-10-28 16:01:38  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-28 16:01:38  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-28 16:02:46  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x35B9D)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 21:06:08  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xeb55)    
      Audit Success   1          2009-10-28 21:06:14                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-28 21:07:59  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEAA9)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 21:07:59  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEAA9)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 21:07:59  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEAA9)     Logon Type: 2    
      Audit Success   2          2009-10-28 21:07:59  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEACE)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-28 21:07:59  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEACE)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 21:07:59  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 21:07:59  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 21:07:59  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 21:07:59  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 21:07:59  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 21:07:59  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-28 21:07:59  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-28 21:07:59  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-28 21:07:59  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-28 21:09:05  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x39BDD)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 21:09:51  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xeace)    
      Audit Success   2          2009-10-28 21:10:03  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEACE)     Logon Type: 2    
      Audit Success   1          2009-10-28 21:10:05                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-28 21:12:11  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB01)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 21:12:11  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEB01)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 21:12:11  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB01)     Logon Type: 2    
      Audit Success   2          2009-10-28 21:12:11  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB28)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-28 21:12:11  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB28)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 21:12:11  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 21:12:11  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 21:12:11  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 21:12:11  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 21:12:11  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 21:12:11  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-28 21:12:11  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-28 21:12:11  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-28 21:12:11  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-28 21:13:15  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x36F7F)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 21:45:49  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEAE5)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 21:45:49  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEAE5)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 21:45:49  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEAE5)     Logon Type: 2    
      Audit Success   2          2009-10-28 21:45:49  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB08)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-28 21:45:49  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB08)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 21:45:49  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 21:45:49  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 21:45:49  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 21:45:49  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-28 21:45:49  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-28 21:45:49  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-28 21:45:49  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-28 21:45:49  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-28 21:45:49  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-28 21:46:59  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3665C)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 00:19:43  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xeb08)    
      Audit Success   2          2009-10-29 00:19:52  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB08)     Logon Type: 2    
      Audit Success   1          2009-10-29 00:20:37                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-29 08:35:27  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB25)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 08:35:27  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEB25)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 08:35:27  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB25)     Logon Type: 2    
      Audit Success   2          2009-10-29 08:35:27  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB48)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-29 08:35:27  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB48)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 08:35:27  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 08:35:27  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 08:35:27  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 08:35:27  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 08:35:27  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 08:35:27  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-29 08:35:27  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-29 08:35:27  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-29 08:35:27  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-29 08:36:34  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x36C3B)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 09:15:57  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xeb48)    
      Audit Success   1          2009-10-29 09:16:23                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-29 11:34:41  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB44)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 11:34:41  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEB44)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 11:34:41  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB44)     Logon Type: 2    
      Audit Success   2          2009-10-29 11:34:41  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB6B)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-29 11:34:41  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB6B)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 11:34:41  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 11:34:41  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 11:34:41  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 11:34:41  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 11:34:41  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 11:34:41  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-29 11:34:41  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-29 11:34:41  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-29 11:34:41  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-29 11:35:50  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x37520)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 11:47:03  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xeb6b)    
      Audit Success   2          2009-10-29 11:47:11  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB6B)     Logon Type: 2    
      Audit Success   1          2009-10-29 11:47:36                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-29 14:25:16  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB06)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 14:25:16  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEB06)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 14:25:16  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB06)     Logon Type: 2    
      Audit Success   2          2009-10-29 14:25:16  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB2D)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-29 14:25:16  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB2D)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 14:25:16  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 14:25:16  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 14:25:16  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 14:25:16  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 14:25:16  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 14:25:16  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-29 14:25:16  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-29 14:25:16  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-29 14:25:16  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-29 14:26:22  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x37FCD)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 14:30:24  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xeb2d)    
      Audit Success   1          2009-10-29 14:30:33                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-29 14:35:04  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEAD2)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 14:35:04  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEAD2)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 14:35:04  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEAD2)     Logon Type: 2    
      Audit Success   2          2009-10-29 14:35:04  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEAF8)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-29 14:35:04  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEAF8)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 14:35:04  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 14:35:04  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 14:35:04  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 14:35:04  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 14:35:04  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 14:35:04  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-29 14:35:04  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-29 14:35:04  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-29 14:35:04  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-29 14:36:10  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x36D7A)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 19:33:07  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB75)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 19:33:07  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEB75)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 19:33:07  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB75)     Logon Type: 2    
      Audit Success   2          2009-10-29 19:33:07  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB98)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-29 19:33:07  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB98)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 19:33:07  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 19:33:07  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 19:33:07  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 19:33:07  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-29 19:33:07  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 19:33:07  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-29 19:33:07  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-29 19:33:07  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-29 19:33:07  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-29 19:34:14  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x36727)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-29 22:57:23  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xeb98)    
      Audit Success   1          2009-10-29 22:58:09                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-30 07:59:50  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEBB0)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-30 07:59:50  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEBB0)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-30 07:59:50  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEBB0)     Logon Type: 2    
      Audit Success   2          2009-10-30 07:59:50  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEBD7)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-30 07:59:50  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEBD7)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-30 07:59:50  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-30 07:59:50  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-30 07:59:50  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-30 07:59:50  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-30 07:59:50  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-30 07:59:50  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-30 07:59:50  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-30 07:59:50  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-30 07:59:50  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-30 08:00:58  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x38627)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-30 13:14:58  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xebd7)    
      Audit Success   2          2009-10-30 13:15:04  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEBD7)     Logon Type: 2    
      Audit Success   1          2009-10-30 13:15:17                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-30 14:58:24  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB80)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-30 14:58:24  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEB80)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-30 14:58:24  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB80)     Logon Type: 2    
      Audit Success   2          2009-10-30 14:58:24  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEBA7)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-30 14:58:24  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEBA7)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-30 14:58:24  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-30 14:58:24  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-30 14:58:24  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-30 14:58:24  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-30 14:58:24  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-30 14:58:24  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-30 14:58:24  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-30 14:58:24  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-30 14:58:24  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-30 14:59:30  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x36AB8)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-30 20:02:11  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEC49)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-30 20:02:11  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEC49)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-30 20:02:11  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEC49)     Logon Type: 2    
      Audit Success   2          2009-10-30 20:02:11  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEC6E)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-30 20:02:11  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEC6E)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-30 20:02:11  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-30 20:02:11  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-30 20:02:11  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-30 20:02:11  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-30 20:02:11  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-30 20:02:11  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-30 20:02:11  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-30 20:02:11  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-30 20:02:11  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-30 20:03:20  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3AB2B)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-30 23:54:43  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xec6e)    
      Audit Success   1          2009-10-30 23:55:05                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-10-31 00:44:14  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEBCF)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 00:44:14  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEBCF)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 00:44:14  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEBCF)     Logon Type: 2    
      Audit Success   2          2009-10-31 00:44:14  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEBF6)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-31 00:44:14  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEBF6)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 00:44:14  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 00:44:14  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 00:44:14  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 00:44:14  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 00:44:14  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 00:44:14  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-31 00:44:14  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-31 00:44:14  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-31 00:44:14  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-31 00:45:26  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3B046)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 05:37:00  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xECBE)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 05:37:00  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xECBE)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 05:37:00  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xECBE)     Logon Type: 2    
      Audit Success   2          2009-10-31 05:37:00  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xECE5)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-31 05:37:00  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xECE5)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 05:37:00  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 05:37:00  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 05:37:00  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 05:37:00  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 05:37:00  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 05:37:00  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-31 05:37:00  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-31 05:37:00  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-31 05:37:00  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-31 05:38:04  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3C51F)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 06:38:59  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEF88)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 06:38:59  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEF88)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 06:38:59  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEF88)     Logon Type: 2    
      Audit Success   2          2009-10-31 06:38:59  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEFAE)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-31 06:38:59  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEFAE)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 06:38:59  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 06:38:59  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 06:38:59  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 06:38:59  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 06:38:59  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 06:38:59  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-31 06:38:59  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-31 06:38:59  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-31 06:38:59  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-31 06:40:03  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x38DA6)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 11:02:45  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB95)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 11:02:45  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xEB95)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 11:02:45  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEB95)     Logon Type: 2    
      Audit Success   2          2009-10-31 11:02:45  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEBBC)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-31 11:02:45  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xEBBC)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 11:02:45  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 11:02:45  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 11:02:45  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 11:02:45  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 11:02:45  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 11:02:45  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-31 11:02:45  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-31 11:02:45  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-31 11:02:45  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-31 11:03:50  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x37D53)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 11:32:34  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF588)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 11:32:34  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xF588)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 11:32:34  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF588)     Logon Type: 2    
      Audit Success   2          2009-10-31 11:32:34  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF5AF)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-31 11:32:34  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF5AF)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 11:32:34  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 11:32:34  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 11:32:34  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 11:32:34  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 11:32:34  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 11:32:34  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-31 11:32:34  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-31 11:32:34  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-31 11:32:34  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-31 11:33:42  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x39BC4)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 21:47:37  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF588)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 21:47:37  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xF588)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 21:47:37  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF588)     Logon Type: 2    
      Audit Success   2          2009-10-31 21:47:37  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF5AE)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-31 21:47:37  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF5AE)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 21:47:37  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 21:47:37  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 21:47:37  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 21:47:37  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 21:47:37  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 21:47:37  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-31 21:47:37  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-31 21:47:37  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-31 21:47:37  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-31 21:48:43  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x391EC)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 22:26:57  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF59C)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 22:26:57  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xF59C)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 22:26:57  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF59C)     Logon Type: 2    
      Audit Success   2          2009-10-31 22:26:57  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF5C3)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-31 22:26:57  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF5C3)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 22:26:57  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 22:26:57  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 22:26:57  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 22:26:57  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 22:26:57  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 22:26:57  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-31 22:26:57  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-31 22:26:57  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-31 22:26:57  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-31 22:28:04  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x39AC7)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 22:54:20  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF5B5)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 22:54:20  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xF5B5)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 22:54:20  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF5B5)     Logon Type: 2    
      Audit Success   2          2009-10-31 22:54:20  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF5DC)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-31 22:54:20  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF5DC)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 22:54:20  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 22:54:20  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 22:54:20  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 22:54:20  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 22:54:20  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 22:54:20  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-31 22:54:20  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-31 22:54:20  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-31 22:54:20  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-31 22:55:28  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x39233)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 23:19:34  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF65E)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 436     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 23:19:34  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xF65E)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 23:19:34  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF65E)     Logon Type: 2    
      Audit Success   2          2009-10-31 23:19:34  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF685)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 436     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-10-31 23:19:34  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xF685)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 23:19:34  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 484     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 23:19:34  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 23:19:34  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 484     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 23:19:34  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-10-31 23:19:34  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-10-31 23:19:34  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 436    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-10-31 23:19:34  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 436    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-10-31 23:19:34  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-10-31 23:19:34  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-10-31 23:20:38  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3AA2F)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 00:28:58  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xf685)    
      Audit Success   1          2009-11-01 00:29:08                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-11-01 00:30:01  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10D6C)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 00:30:01  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x10D6C)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 00:30:01  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10D6C)     Logon Type: 2    
      Audit Success   2          2009-11-01 00:30:01  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10D8F)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-01 00:30:01  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10D8F)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 00:30:01  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 00:30:01  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 00:30:01  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 00:30:01  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 00:30:01  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 00:30:01  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-01 00:30:01  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-01 00:30:01  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-01 00:30:01  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-01 00:31:09  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x37214)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 01:09:53  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10d8f)    
      Audit Success   1          2009-11-01 01:10:02                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-11-01 01:10:56  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xFEFE)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 01:10:56  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xFEFE)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 01:10:56  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xFEFE)     Logon Type: 2    
      Audit Success   2          2009-11-01 01:10:56  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xFF21)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-01 01:10:56  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xFF21)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 01:10:56  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 01:10:56  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 01:10:56  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 01:10:56  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 01:10:56  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 01:10:56  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-01 01:10:56  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-01 01:10:56  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-01 01:10:56  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-01 01:12:04  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3D9EF)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 01:51:27  ANONYMOUS LOGON                 Security                        538: User Logoff:     User Name: ANONYMOUS LOGON     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3D9EF)     Logon Type: 3    
      Audit Success   2          2009-11-01 02:01:01  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xff21)    
      Audit Success   1          2009-11-01 02:01:08                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-11-01 02:13:15  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x101FF)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 02:13:15  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x101FF)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 02:13:15  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x101FF)     Logon Type: 2    
      Audit Success   2          2009-11-01 02:13:15  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10225)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-01 02:13:15  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10225)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 02:13:15  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 02:13:15  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 02:13:15  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 02:13:15  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 02:13:15  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 02:13:15  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-01 02:13:15  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-01 02:13:15  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-01 02:13:15  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-01 02:14:23  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x349FB)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 02:18:08  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10225)    
      Audit Success   1          2009-11-01 02:19:29                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-11-01 02:38:51  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x101D7)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 02:38:51  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x101D7)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 02:38:51  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x101D7)     Logon Type: 2    
      Audit Success   2          2009-11-01 02:38:51  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x101FD)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-01 02:38:51  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x101FD)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 02:38:51  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 02:38:51  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 02:38:51  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 02:38:51  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 02:38:51  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 02:38:51  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-01 02:38:51  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-01 02:38:51  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-01 02:38:51  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-01 02:39:58  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x34312)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 03:12:01  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xFF6D)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 03:12:01  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xFF6D)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 03:12:01  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xFF6D)     Logon Type: 2    
      Audit Success   2          2009-11-01 03:12:01  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xFF90)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-01 03:12:01  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xFF90)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 03:12:01  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 03:12:01  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 03:12:01  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 03:12:01  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 03:12:01  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 03:12:01  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-01 03:12:01  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-01 03:12:01  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-01 03:12:01  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-01 03:13:06  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x33B4D)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 07:04:58  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10044)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 07:04:58  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x10044)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 07:04:58  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10044)     Logon Type: 2    
      Audit Success   2          2009-11-01 07:04:58  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1006B)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-01 07:04:58  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1006B)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 07:04:58  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 07:04:58  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 07:04:58  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 07:04:58  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 07:04:58  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 07:04:58  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-01 07:04:58  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-01 07:04:58  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-01 07:04:58  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-01 07:06:04  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x35405)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 10:10:49  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x102A9)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 10:10:49  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x102A9)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 10:10:49  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x102A9)     Logon Type: 2    
      Audit Success   2          2009-11-01 10:10:49  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x102CF)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-01 10:10:49  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x102CF)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 10:10:49  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 10:10:49  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 10:10:49  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 10:10:49  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-01 10:10:49  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-01 10:10:49  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-01 10:10:49  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-01 10:10:49  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-01 10:10:49  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-01 10:11:57  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x33A78)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-02 06:34:26  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10286)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-02 06:34:26  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x10286)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-02 06:34:26  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10286)     Logon Type: 2    
      Audit Success   2          2009-11-02 06:34:26  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x102A8)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-02 06:34:26  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x102A8)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-02 06:34:26  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-02 06:34:26  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-02 06:34:26  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-02 06:34:26  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-02 06:34:26  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-02 06:34:26  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-02 06:34:26  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-02 06:34:26  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-02 06:34:26  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-02 06:35:31  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x37333)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-02 06:48:47  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1026D)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-02 06:48:47  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x1026D)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-02 06:48:47  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1026D)     Logon Type: 2    
      Audit Success   2          2009-11-02 06:48:47  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10294)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-02 06:48:47  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10294)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-02 06:48:47  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-02 06:48:47  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-02 06:48:47  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-02 06:48:47  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-02 06:48:47  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-02 06:48:47  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-02 06:48:47  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-02 06:48:47  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-02 06:48:47  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-02 06:49:56  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x356AB)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 03:38:36  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10294)    
      Audit Success   1          2009-11-03 03:38:45                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-11-03 03:40:03  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xFF91)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 03:40:03  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xFF91)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 03:40:03  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xFF91)     Logon Type: 2    
      Audit Success   2          2009-11-03 03:40:03  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xFFB4)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-03 03:40:03  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xFFB4)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 03:40:03  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 03:40:03  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 03:40:03  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 03:40:03  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 03:40:03  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 03:40:03  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-03 03:40:03  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-03 03:40:03  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-03 03:40:03  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-03 03:41:10  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x35C7D)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 07:09:11  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10677)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 07:09:11  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x10677)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 07:09:11  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10677)     Logon Type: 2    
      Audit Success   2          2009-11-03 07:09:11  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1069A)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-03 07:09:11  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1069A)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 07:09:11  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 07:09:11  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 07:09:11  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 07:09:11  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 07:09:11  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 07:09:11  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-03 07:09:11  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-03 07:09:11  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-03 07:09:11  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-03 07:10:16  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x34BC2)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 13:19:12  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10346)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 13:19:12  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x10346)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 13:19:12  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10346)     Logon Type: 2    
      Audit Success   2          2009-11-03 13:19:12  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10368)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-03 13:19:12  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10368)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 13:19:12  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 13:19:12  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 13:19:12  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 13:19:12  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 13:19:12  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 13:19:12  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-03 13:19:12  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-03 13:19:12  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-03 13:19:12  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-03 13:20:17  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x384FD)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 15:11:51  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10368)    
      Audit Success   1          2009-11-03 15:12:13                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-11-03 16:32:00  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xFEB3)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 16:32:00  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0xFEB3)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 16:32:00  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xFEB3)     Logon Type: 2    
      Audit Success   2          2009-11-03 16:32:00  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xFED5)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-03 16:32:00  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0xFED5)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 16:32:00  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 16:32:00  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 16:32:00  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 16:32:00  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 16:32:00  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 16:32:00  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-03 16:32:00  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-03 16:32:00  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-03 16:32:00  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-03 16:33:07  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x387D7)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 22:51:43  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10137)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 22:51:43  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x10137)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 22:51:43  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10137)     Logon Type: 2    
      Audit Success   2          2009-11-03 22:51:43  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10159)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-03 22:51:43  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10159)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 22:51:43  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 22:51:43  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 22:51:43  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 22:51:43  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 22:51:43  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 22:51:43  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-03 22:51:43  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-03 22:51:43  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-03 22:51:43  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-03 22:52:52  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x40DBF)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 22:53:20  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10159)    
      Audit Success   1          2009-11-03 22:53:40                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-11-03 22:54:45  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10C01)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 22:54:45  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x10C01)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 22:54:45  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10C01)     Logon Type: 2    
      Audit Success   2          2009-11-03 22:54:45  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10C27)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-03 22:54:45  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10C27)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 22:54:45  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 22:54:45  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 22:54:45  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 22:54:45  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 22:54:45  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 22:54:45  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-03 22:54:45  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-03 22:54:45  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-03 22:54:45  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-03 22:55:50  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x34566)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 22:59:01  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10CF0)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 22:59:01  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x10CF0)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 22:59:01  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10CF0)     Logon Type: 2    
      Audit Success   2          2009-11-03 22:59:01  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10D17)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-03 22:59:01  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10D17)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 22:59:01  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 22:59:01  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 22:59:01  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 22:59:01  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-03 22:59:01  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-03 22:59:01  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-03 22:59:01  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-03 22:59:01  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-03 22:59:01  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-03 23:00:09  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x33DDF)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-04 00:14:31  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10CF0)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 444     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-04 00:14:31  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x10CF0)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-04 00:14:31  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10CF0)     Logon Type: 2    
      Audit Success   2          2009-11-04 00:14:31  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10D16)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 444     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-04 00:14:31  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10D16)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-04 00:14:31  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 492     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-04 00:14:31  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-04 00:14:31  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 492     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-04 00:14:31  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-04 00:14:31  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-04 00:14:31  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 444    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-04 00:14:31  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 444    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-04 00:14:31  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-04 00:14:31  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-04 00:15:38  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x34612)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-04 18:19:22  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10CD6)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 436     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-04 18:19:22  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x10CD6)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-04 18:19:22  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10CD6)     Logon Type: 2    
      Audit Success   2          2009-11-04 18:19:22  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10CFD)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 436     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-04 18:19:22  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10CFD)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-04 18:19:22  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 484     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-04 18:19:22  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-04 18:19:22  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 484     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-04 18:19:22  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-04 18:19:22  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-04 18:19:22  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 436    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-04 18:19:22  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 436    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-04 18:19:22  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-04 18:19:22  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-04 18:20:30  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x34454)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-05 16:51:34  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10D44)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-05 16:51:34  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x10D44)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-05 16:51:34  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10D44)     Logon Type: 2    
      Audit Success   2          2009-11-05 16:51:34  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10D67)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-05 16:51:34  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10D67)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-05 16:51:34  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-05 16:51:34  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-05 16:51:34  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-05 16:51:34  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-05 16:51:34  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-05 16:51:34  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-05 16:51:34  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-05 16:51:34  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-05 16:51:34  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-05 16:52:42  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x36DEE)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-05 17:00:13  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10CE8)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-05 17:00:13  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x10CE8)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-05 17:00:13  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10CE8)     Logon Type: 2    
      Audit Success   2          2009-11-05 17:00:13  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10D0F)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 432     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-05 17:00:13  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10D0F)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-05 17:00:13  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-05 17:00:13  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-05 17:00:13  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 480     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-05 17:00:13  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-05 17:00:13  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-05 17:00:13  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-05 17:00:13  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 432    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-05 17:00:13  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-05 17:00:13  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-05 17:01:18  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x33FEE)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-06 17:00:10  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10FE7)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 436     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-06 17:00:10  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x10FE7)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-06 17:00:10  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10FE7)     Logon Type: 2    
      Audit Success   2          2009-11-06 17:00:10  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x11009)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 436     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-06 17:00:10  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x11009)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-06 17:00:10  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 484     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-06 17:00:10  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-06 17:00:10  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 484     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-06 17:00:10  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-06 17:00:10  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-06 17:00:10  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 436    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-06 17:00:10  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 436    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-06 17:00:10  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-06 17:00:10  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-06 17:01:17  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x34D87)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-06 18:00:26  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1017A)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-06 18:00:26  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x1017A)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-06 18:00:26  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1017A)     Logon Type: 2    
      Audit Success   2          2009-11-06 18:00:26  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1019C)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-06 18:00:26  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1019C)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-06 18:00:26  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-06 18:00:26  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-06 18:00:26  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-06 18:00:26  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-06 18:00:26  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-06 18:00:26  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-06 18:00:26  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-06 18:00:26  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-06 18:00:26  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-06 18:01:36  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x3A263)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-06 18:50:31  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x103F9)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-06 18:50:31  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x103F9)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-06 18:50:31  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x103F9)     Logon Type: 2    
      Audit Success   2          2009-11-06 18:50:31  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10420)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-06 18:50:31  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10420)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-06 18:50:31  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-06 18:50:31  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-06 18:50:31  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-06 18:50:31  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-06 18:50:31  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-06 18:50:31  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-06 18:50:31  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-06 18:50:31  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-06 18:50:31  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-06 18:51:41  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x35B61)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-07 03:20:47  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10420)    
      Audit Success   1          2009-11-07 03:21:07                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-11-07 10:56:19  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1033F)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-07 10:56:19  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x1033F)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-07 10:56:19  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1033F)     Logon Type: 2    
      Audit Success   2          2009-11-07 10:56:19  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10365)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-07 10:56:19  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10365)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-07 10:56:19  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-07 10:56:19  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-07 10:56:19  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-07 10:56:19  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-07 10:56:19  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-07 10:56:19  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-07 10:56:19  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-07 10:56:19  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-07 10:56:19  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-07 10:57:23  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x34370)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-08 14:11:14  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10365)    
      Audit Success   1          2009-11-08 14:11:38                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-11-09 00:22:38  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x103A6)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 00:22:38  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x103A6)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-09 00:22:38  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x103A6)     Logon Type: 2    
      Audit Success   2          2009-11-09 00:22:38  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x103CD)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 428     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-09 00:22:38  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x103CD)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-09 00:22:38  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 00:22:38  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-09 00:22:38  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 476     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 00:22:38  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-09 00:22:38  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 00:22:38  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-09 00:22:38  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 428    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-09 00:22:38  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-09 00:22:38  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-09 00:23:45  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x361DE)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 02:19:39  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x103cd)    
      Audit Success   1          2009-11-09 02:19:59                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-11-09 03:56:56  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10E7F)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 03:56:56  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x10E7F)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-09 03:56:56  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10E7F)     Logon Type: 2    
      Audit Success   2          2009-11-09 03:56:56  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10EBD)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-09 03:56:56  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10EBD)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-09 03:56:56  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x12BB2)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 03:56:56  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 03:56:56  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-09 03:56:56  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 03:56:56  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-09 03:56:56  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 03:56:56  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-09 03:56:56  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-09 03:56:56  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-09 03:56:56  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-09 06:29:18  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x10ebd)    
      Audit Success   1          2009-11-09 06:29:26                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-11-09 06:30:39  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x11502)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 06:30:39  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x11502)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-09 06:30:39  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x11502)     Logon Type: 2    
      Audit Success   2          2009-11-09 06:30:39  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1253E)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-09 06:30:39  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1253E)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-09 06:30:39  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x15A30)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 06:30:39  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 06:30:39  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-09 06:30:39  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 06:30:39  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-09 06:30:39  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 06:30:39  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-09 06:30:39  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-09 06:30:39  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-09 06:30:39  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   2          2009-11-09 06:36:19  Administrator                   Security                        551: User initiated logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1253e)    
      Audit Success   2          2009-11-09 06:36:23  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1253E)     Logon Type: 2    
      Audit Success   1          2009-11-09 06:36:33                                  SECURITY                        513: Windows is shutting down.  All logon sessions will be terminated by this shutdown.  
      Audit Success   2          2009-11-09 21:46:35  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1B172)     Logon Type: 2     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 21:46:35  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: -     Domain:  -     Logon ID:  (0x0,0x1B172)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-09 21:46:35  Administrator                   Security                        538: User Logoff:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1B172)     Logon Type: 2    
      Audit Success   2          2009-11-09 21:46:35  Administrator                   Security                        528: Successful Logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1B19B)     Logon Type: 2     Logon Process: User32       Authentication Package: Negotiate     Workstation Name: RAZINKIN-7C1358     Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 424     Transited Services: -     Source Network Address: 127.0.0.1     Source Port: 0    
      Audit Success   2          2009-11-09 21:46:35  Administrator                   Security                        576: Special privileges assigned to new logon:     User Name: Administrator     Domain:  RAZINKIN-7C1358     Logon ID:  (0x0,0x1B19B)     Privileges: SeSecurityPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeTakeOwnershipPrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeLoadDriverPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-09 21:46:35  ANONYMOUS LOGON                 Security                        540: Successful Network Logon:     User Name:      Domain:       Logon ID:  (0x0,0x1241C)     Logon Type: 3     Logon Process: NtLmSsp      Authentication Package: NTLM     Workstation Name:      Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: -     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 21:46:35  LOCAL SERVICE                   Security                        528: Successful Logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 21:46:35  LOCAL SERVICE                   Security                        576: Special privileges assigned to new logon:     User Name: LOCAL SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E5)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-09 21:46:35  NETWORK SERVICE                 Security                        528: Successful Logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Logon Type: 5     Logon Process: Advapi       Authentication Package: Negotiate     Workstation Name:      Logon GUID: -     Caller User Name: RAZINKIN-7C1358$     Caller Domain: ADMIN     Caller Logon ID: (0x0,0x3E7)     Caller Process ID: 472     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 21:46:35  NETWORK SERVICE                 Security                        576: Special privileges assigned to new logon:     User Name: NETWORK SERVICE     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E4)     Privileges: SeAuditPrivilege     SeAssignPrimaryTokenPrivilege     SeImpersonatePrivilege  
      Audit Success   2          2009-11-09 21:46:35  SYSTEM                          Security                        528: Successful Logon:     User Name: SYSTEM     Domain:  NT AUTHORITY     Logon ID:  (0x0,0x3E7)     Logon Type: 0     Logon Process: -     Authentication Package: -     Workstation Name: -     Logon GUID: -     Caller User Name: -     Caller Domain: -     Caller Logon ID: -     Caller Process ID: 4294967300     Transited Services: -     Source Network Address: -     Source Port: -    
      Audit Success   2          2009-11-09 21:46:35  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: -    Source Port: -    
      Audit Success   2          2009-11-09 21:46:35  SYSTEM                          Security                        552: Logon attempt using explicit credentials:    Logged on user:     User Name: RAZINKIN-7C1358$     Domain:  ADMIN     Logon ID:  (0x0,0x3E7)     Logon GUID: -    User whose credentials were used:     Target User Name: Administrator     Target Domain: RAZINKIN-7C1358     Target Logon GUID: -      Target Server Name: localhost    Target Server Info: localhost    Caller Process ID: 424    Source Network Address: 127.0.0.1    Source Port: 0    
      Audit Success   9          2009-11-09 21:46:35  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
      Audit Success   9          2009-11-09 21:46:35  Administrator                   Security                        680: Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    Logon account: Administrator    Source Workstation: RAZINKIN-7C1358    Error Code: 0x0    
                        2009-10-11 00:10:08                                  W32Time                         35: The time service is now synchronizing the system time with the time  source time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                          2009-10-11 00:10:08                                  W32Time                         52: The time service has set the time with offset -46797 seconds.  
                        2009-10-11 00:13:17                                  Service Control Manager         7036: The Performance Logs and Alerts service entered the running state.  
                        2009-10-11 00:13:17                                  Service Control Manager         7036: The Performance Logs and Alerts service entered the stopped state.  
                        2009-10-11 00:13:17                                  Service Control Manager         7036: The Performance Logs and Alerts service entered the running state.  
                        2009-10-11 00:13:17                                  Service Control Manager         7036: The Performance Logs and Alerts service entered the stopped state.  
                        2009-10-11 00:13:17  Administrator                   Service Control Manager         7035: The Performance Logs and Alerts service was successfully sent a start control.  
                        2009-10-11 00:13:17  Administrator                   Service Control Manager         7035: The Performance Logs and Alerts service was successfully sent a start control.  
                        2009-10-11 00:13:22                                  Virtual Disk Service            3: C:\WINDOWS\System32\vds.exe
                        2009-10-11 00:13:22                                  Service Control Manager         7036: The Virtual Disk Service service entered the running state.  
                        2009-10-11 00:13:22                                  Service Control Manager         7036: The Logical Disk Manager Administrative Service service entered the running state.  
                        2009-10-11 00:13:22  SYSTEM                          Service Control Manager         7035: The Virtual Disk Service service was successfully sent a start control.  
                        2009-10-11 00:13:22  SYSTEM                          Service Control Manager         7035: The Logical Disk Manager Administrative Service service was successfully sent a start control.  
                        2009-10-11 00:13:23  SYSTEM                          Service Control Manager         7035: The Removable Storage service was successfully sent a start control.  
                        2009-10-11 00:13:24                                  Removable Storage Service       83: C:\WINDOWS\System32\ntmsevt
                          2009-10-11 00:13:24                                  Removable Storage Service       93: C:\WINDOWS\System32\ntmsevt
                        2009-10-11 00:13:25                                  Service Control Manager         7036: The Removable Storage service entered the running state.  
                        2009-10-11 00:13:29                                  Virtual Disk Service            4: C:\WINDOWS\System32\vds.exe
                        2009-10-11 00:13:29                                  Service Control Manager         7036: The Virtual Disk Service service entered the stopped state.  
                        2009-10-11 00:13:29                                  Service Control Manager         7036: The Logical Disk Manager Administrative Service service entered the stopped state.  
                        2009-10-11 00:13:59                                  Removable Storage Service       98: C:\WINDOWS\System32\ntmsevt
                        2009-10-11 00:13:59                                  Service Control Manager         7036: The Removable Storage service entered the stopped state.  
                        2009-10-11 00:18:15                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-10-11 02:17:20                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 02:17:28                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 02:17:28                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 02:17:28                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-11 02:18:30                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-11 02:18:36                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-11 02:18:36                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-11 02:18:39  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 02:18:39  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 02:18:40                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-11 02:18:41                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-11 02:18:41                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 02:18:41                                  Service Control Manager         7036: The Performance Logs and Alerts service entered the stopped state.  
                        2009-10-11 02:18:41                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 02:18:41                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 02:18:41                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-11 02:18:41                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 02:18:41  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-11 02:18:41  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-11 02:18:41  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 02:18:41  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 02:18:41  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 02:18:41  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 02:18:43                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-11 02:18:43                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 02:18:47                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 02:23:33                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-11 02:25:41                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 02:25:48                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 02:25:48                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 02:25:48                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-11 02:26:53                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-11 02:26:59                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-11 02:26:59                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-11 02:27:02                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-11 02:27:02  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 02:27:02  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 02:27:03                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-11 02:27:03                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 02:27:03                                  Service Control Manager         7036: The Performance Logs and Alerts service entered the stopped state.  
                        2009-10-11 02:27:03                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 02:27:03                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 02:27:03                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-11 02:27:03                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 02:27:03  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-11 02:27:03  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-11 02:27:03  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 02:27:03  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 02:27:03  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 02:27:03  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 02:27:04                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-11 02:27:05                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 02:27:09                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 02:27:49                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-11 02:28:41                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 02:28:49                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 02:28:49                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 02:28:49                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-11 02:29:52                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-11 02:29:58                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-11 02:29:58                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-11 02:30:01  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 02:30:01  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 02:30:02                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-11 02:30:03                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-11 02:30:03                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 02:30:03                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 02:30:03                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 02:30:03                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 02:30:03                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-11 02:30:03  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-11 02:30:03  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-11 02:30:03  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 02:30:03  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 02:30:03  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 02:30:03  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 02:30:04                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-11 02:30:04                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 02:30:08                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-11 02:31:01                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 02:31:09                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 02:31:09                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 02:31:09                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-11 02:32:11                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-11 02:32:17                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-11 02:32:17                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-11 02:32:20  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 02:32:20  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 02:32:21                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-11 02:32:21                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-11 02:32:21                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 02:32:21                                  Service Control Manager         7036: The Performance Logs and Alerts service entered the stopped state.  
                        2009-10-11 02:32:21                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 02:32:21                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 02:32:21                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-11 02:32:21                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 02:32:21  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-11 02:32:21  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-11 02:32:21  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 02:32:21  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 02:32:21  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 02:32:21  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 02:32:23                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-11 02:32:23                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 02:32:27                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 02:32:44                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 02:32:44  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 02:32:50                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 02:33:30                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-11 02:33:30  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-11 02:34:12                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 02:34:12  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 02:34:14  Administrator                   Service Control Manager         7035: The Asushwio service was successfully sent a start control.  
                        2009-10-11 02:34:18                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 02:35:15                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-11 02:36:04                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 02:36:11                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 02:36:11                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 02:36:11                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-11 02:37:14                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-11 02:37:20                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-11 02:37:20                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-11 02:37:23                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-11 02:37:23  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 02:37:23  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 02:37:24                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-11 02:37:24                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 02:37:24                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 02:37:24                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 02:37:24                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-11 02:37:24                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 02:37:24  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-11 02:37:24  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-11 02:37:24  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 02:37:24  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 02:37:24  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 02:37:24  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 02:37:25                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-11 02:37:26                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 02:37:30                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 02:38:58                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-11 02:39:48                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 02:39:54                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 02:39:54                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 02:39:54                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-11 02:40:59                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-11 02:41:05                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-11 02:41:05                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-11 02:41:08                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-11 02:41:08  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 02:41:08  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 02:41:09                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-11 02:41:09                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 02:41:09                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 02:41:09                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 02:41:09                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-11 02:41:09  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-11 02:41:09  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 02:41:09  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 02:41:09  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 02:41:11                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-11 02:41:12                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 02:41:15                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                            2009-10-11 02:41:23                                  W32Time                         29: The time provider NtpClient is configured to acquire time from one or more  time sources, however none of the sources are currently accessible.   No attempt to contact a source will be made for 1 minutes.  NtpClient has no source of accurate time.   
                        2009-10-11 02:41:23                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-11 02:41:25                                  W32Time                         37: The time provider NtpClient is currently receiving valid time data from time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                        2009-10-11 02:41:40                                  W32Time                         35: The time service is now synchronizing the system time with the time  source time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                        2009-10-11 02:44:54                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-11 02:50:55                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 02:51:02                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 02:51:02                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 02:51:02                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-11 02:52:06                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-11 02:52:12  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 02:52:12  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-10-11 02:52:12                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-11 02:52:12                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-11 02:52:16                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-11 02:52:19                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-11 02:52:19                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 02:52:19                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 02:52:19                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 02:52:19                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 02:52:19                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-11 02:52:19                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-11 02:52:19  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 02:52:19  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 02:52:19  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 02:52:19  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 02:52:19  SYSTEM                          Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-11 02:52:20                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 02:52:24                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-11 02:55:24                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 02:55:31                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 02:55:31                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 02:55:31                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-11 02:56:33                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-11 02:56:39                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-11 02:56:40  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 02:56:40  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-10-11 02:56:40                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-11 02:56:43                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-11 02:56:50                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-11 02:56:50                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 02:56:50                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 02:56:50                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 02:56:50                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-11 02:56:50                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 02:56:50                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-11 02:56:50                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 02:56:50                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 02:56:50  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-11 02:56:50  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-11 02:56:50  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 02:56:50  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 02:56:50  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 02:56:50  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 03:04:22                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 03:04:29                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 03:04:29                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 03:04:29                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-11 03:05:32                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-11 03:05:38  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 03:05:38  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-10-11 03:05:38                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-11 03:05:38                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-11 03:05:42                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-11 03:05:49                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-11 03:05:49                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 03:05:49                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 03:05:49                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 03:05:49                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-11 03:05:49                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 03:05:49                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-11 03:05:49                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 03:05:49                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 03:05:49  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-11 03:05:49  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-11 03:05:49  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 03:05:49  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 03:05:49  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 03:05:49  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 03:10:59                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 03:11:06                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 03:11:06                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 03:11:06                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-11 03:12:10                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-11 03:12:16                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-11 03:12:16                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-11 03:12:19  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 03:12:19  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 03:12:20                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-11 03:12:25                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-11 03:12:25                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 03:12:25                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 03:12:25                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 03:12:25                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-11 03:12:25                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 03:12:25                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-11 03:12:25                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 03:12:25  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-11 03:12:25  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-11 03:12:25  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 03:12:25  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 03:12:25  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 03:12:25  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 03:12:26                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 03:19:24                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-11 03:21:10                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 03:21:16                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 03:21:16                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 03:21:16                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-11 03:22:20                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-11 03:22:26                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-11 03:22:27                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-11 03:22:30                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-11 03:22:30  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 03:22:30  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 03:22:35                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-11 03:22:35                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 03:22:35                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 03:22:35                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 03:22:35                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-11 03:22:35                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 03:22:35                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-11 03:22:35                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 03:22:35  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-11 03:22:35  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-11 03:22:35  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 03:22:35  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 03:22:35  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 03:22:35  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 03:22:37                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                            2009-10-11 03:22:46                                  W32Time                         29: The time provider NtpClient is configured to acquire time from one or more  time sources, however none of the sources are currently accessible.   No attempt to contact a source will be made for 1 minutes.  NtpClient has no source of accurate time.   
                        2009-10-11 03:22:46                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-11 03:22:48                                  W32Time                         37: The time provider NtpClient is currently receiving valid time data from time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                        2009-10-11 03:23:02                                  W32Time                         35: The time service is now synchronizing the system time with the time  source time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                            2009-10-11 03:23:12                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-11 03:23:12                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                            2009-10-11 03:23:13                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-11 03:23:20                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-11 03:23:20                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-11 03:23:20                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                            2009-10-11 03:23:28                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-11 03:23:28                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-11 03:23:28                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                            2009-10-11 03:24:25                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-11 03:24:25                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-11 03:24:25                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                            2009-10-11 03:26:20                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-11 03:26:20                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-11 03:26:20                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                        2009-10-11 03:33:42  Administrator                   Service Control Manager         7035: The Asushwio service was successfully sent a start control.  
                            2009-10-11 03:34:16                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-11 03:34:16                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                            2009-10-11 03:34:17                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-11 03:37:37                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-11 03:37:37                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-11 03:37:37                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                            2009-10-11 03:37:57                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-11 03:37:57                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                            2009-10-11 03:37:58                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-11 03:38:24                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-11 03:38:24                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-11 03:38:24                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                        2009-10-11 04:50:40                                  Serial                          2: 
                        2009-10-11 04:50:53                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 04:50:53                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 04:50:53                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-10-11 04:50:53                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-11 04:50:59                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-11 04:52:04                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: ROOT\DMIO\0000     Vetoing device: Root\dmio\0000     Vetoing service name: Driver\dmio     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-10-11 04:52:10                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: STORAGE\VOLUME\1&30A96598&0&SIGNATUREEB2DEB2DOFFSET7E00LENGTH431301C00     Vetoing device: STORAGE\Volume\1&30a96598&0&SignatureEB2DEB2DOffset7E00Length431301C00     Vetoing service name: FileSystem\Ntfs     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-10-11 04:52:12                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: ACPI\FIXEDBUTTON\2&DABA3FF&0     Vetoing device: ACPI\FixedButton\2&daba3ff&0     Vetoing service name: Driver\ACPI     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-10-11 04:52:12                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: ACPI\PNP0C0C\AA     Vetoing device: ACPI\PNP0C0C\aa     Vetoing service name: Driver\ACPI     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-10-11 04:52:19                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: PCI\VEN_8086&DEV_3A16&SUBSYS_00000000&REV_00\3&11583659&0&F8     Vetoing device: ACPI\PNP0F03\4&2bc541ba&0     Vetoing service name: Driver\i8042prt     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-10-11 04:52:20                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: PCI\VEN_8086&DEV_3A26&SUBSYS_82D41043&REV_00\3&11583659&0&FD     Vetoing device: IDE\DiskWDC_WD1200JS-22MHB0_____________________02.01C03\5&1841a32e&0&0.0.0     Vetoing service name: Driver\Disk     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-10-11 04:52:34                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: PCIIDE\IDECHANNEL\4&3189A216&0&1     Vetoing device: IDE\DiskWDC_WD1200JS-22MHB0_____________________02.01C03\5&1841a32e&0&0.0.0     Vetoing service name: Driver\Disk     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-10-11 04:52:44                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 04:52:50                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 04:52:50                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 04:52:50                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-10-11 04:53:00                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: ACPI\PNP0F03\4&2BC541BA&0     Vetoing device: ACPI\PNP0F03\4&2bc541ba&0     Vetoing service name: Driver\i8042prt     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-10-11 04:53:07                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: ACPI\PNP0B00\4&2BC541BA&0     Vetoing device: ACPI\PNP0B00\4&2bc541ba&0     Vetoing service name: Driver\ACPI     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-10-11 04:53:11                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: ACPI\PNP0303\4&2BC541BA&0     Vetoing device: ACPI\PNP0303\4&2bc541ba&0     Vetoing service name: Driver\i8042prt     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-10-11 04:53:16                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: IDE\DISKWDC_WD1200JS-22MHB0_____________________02.01C03\5&1841A32E&0&0.0.0     Vetoing device: IDE\DiskWDC_WD1200JS-22MHB0_____________________02.01C03\5&1841a32e&0&0.0.0     Vetoing service name: Driver\Disk     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                          2009-10-11 04:53:53                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-11 04:53:59                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-11 04:53:59                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-11 04:54:02  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 04:54:02  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 04:54:08                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-11 04:54:08                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 04:54:08                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 04:54:08                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 04:54:08                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-11 04:54:08                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 04:54:08                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-11 04:54:08                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 04:54:08  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-11 04:54:08  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-11 04:54:08  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 04:54:08  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 04:54:08  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 04:54:08  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 04:54:09                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 04:54:28                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                            2009-10-11 04:55:03                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-11 04:55:03                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-11 04:55:03                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                            2009-10-11 04:56:01                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-11 04:56:01                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-11 04:56:01                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                            2009-10-11 04:56:24                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-11 04:56:24                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-11 04:56:24                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                        2009-10-11 05:10:55                                  Service Control Manager         7036: The Computer Browser service entered the running state.  
                        2009-10-11 05:10:55  SYSTEM                          Service Control Manager         7035: The Computer Browser service was successfully sent a start control.  
                            2009-10-11 05:14:10                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-11 05:14:10                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-11 05:14:10                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                            2009-10-11 05:15:42                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-11 05:15:42                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-11 05:15:42                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                        2009-10-11 12:00:13                                  EventLog                        6011: The NetBIOS name and DNS host name of this machine have been changed from MACHINENAME to RAZINKIN-7C1358.  
                        2009-10-11 12:00:20                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 12:01:27                                  Workstation                     3261: This computer has been successfully joined to workgroup 'ADMIN'.  
                        2009-10-11 12:04:16                                  HTTP                            15007: Reservation for namespace identified by URL prefix http://*:2869/ was successfully added.  
                        2009-10-11 12:08:42  SYSTEM                          Regional and Language Options   0: User Interface Language 0419 is installed successfully.  
                        2009-10-11 12:11:27                                  Setup                           60054: Setup successfully installed Windows build 3790.
                        2009-10-11 12:11:28  SYSTEM                          USER32                          1074: The process winlogon.exe has initiated the restart of computer RAZINKIN-7C1358 on behalf of user NT AUTHORITY\SYSTEM for the following reason: Operating System: Upgrade (Planned)    Reason Code: 0x80020003    Shutdown Type: restart    Comment: Windows setup has completed, and the computer must restart.  
                        2009-10-11 12:11:30                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-11 12:12:28                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 12:12:47                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 12:12:47                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 12:12:49                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-10-11 12:12:56                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-11 12:12:56                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-11 12:13:00  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 12:13:00  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-10-11 12:13:01                                  SRService                       115: C:\WINDOWS\system32\srsvc.dll
                        2009-10-11 12:13:08                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 12:13:08                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 12:13:08                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 12:13:08                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 12:13:08  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 12:13:08  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 12:13:08  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 12:13:20                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-10-11 12:13:20  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-10-11 12:13:23                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 12:13:23  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 12:13:29                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 12:14:27                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 12:14:27  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 12:14:33                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 12:20:07                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 12:20:07  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 12:20:09  Administrator                   Service Control Manager         7035: The Asushwio service was successfully sent a start control.  
                        2009-10-11 12:20:14                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 12:21:00                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: PCI\VEN_8086&DEV_2E21&SUBSYS_00000000&REV_03\3&11583659&0&08     Vetoing device: PCI\VEN_10DE&DEV_05E2&SUBSYS_00000000&REV_A1\4&399d3c6a&0&0008     Vetoing service name: Driver\vga     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-10-11 12:21:04                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: PCI\VEN_8086&DEV_3A48&SUBSYS_00000000&REV_00\3&11583659&0&E4     Vetoing device: IDE\CdRom_NEC_DVD_RW_ND-3540A____________________1.01____\6&36bd720&0&0.1.0     Vetoing service name: FileSystem\Cdfs     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-10-11 12:21:07                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: PCI\VEN_8086&DEV_3A16&SUBSYS_00000000&REV_00\3&11583659&0&F8     Vetoing device: ACPI\PNP0F03\4&2bc541ba&0     Vetoing service name: Driver\i8042prt     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-10-11 12:21:11                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: PCI\VEN_8086&DEV_3A26&SUBSYS_82D41043&REV_00\3&11583659&0&FD     Vetoing device: IDE\DiskWDC_WD1200JS-22MHB0_____________________02.01C03\5&1841a32e&0&0.0.0     Vetoing service name: Driver\Disk     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-10-11 12:23:21                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-10-11 12:25:45                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-11 12:28:39                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 12:28:56                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 12:28:56                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 12:28:56                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-10-11 12:28:59                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-11 12:29:00  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 12:29:00  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-10-11 12:29:00                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                        2009-10-11 12:29:16                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 12:29:16                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 12:29:16                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 12:29:16                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 12:29:16                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 12:29:16  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 12:29:16  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 12:29:16  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 12:29:16  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 12:29:18                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 12:30:22                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-11 12:30:59                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 12:31:16                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 12:31:16                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 12:31:17                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-10-11 12:31:20                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-11 12:31:20                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-11 12:31:21  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 12:31:21  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-10-11 12:31:32                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 12:31:32                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 12:31:32                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 12:31:32                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 12:31:32                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 12:31:32  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 12:31:32  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 12:31:32  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 12:31:32  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 12:31:38                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                          2009-10-11 12:32:26                                  Windows File Protection         64008: The protected system file c:\windows\system32\drivers\mspclock.sys could not be verified as valid because Windows  File Protection is terminating.  Use the SFC utility to verify the integrity of the file at a later time.  
                          2009-10-11 12:32:26                                  Windows File Protection         64008: The protected system file c:\windows\system32\drivers\mspqm.sys could not be verified as valid because Windows  File Protection is terminating.  Use the SFC utility to verify the integrity of the file at a later time.  
                          2009-10-11 12:32:26                                  Windows File Protection         64008: The protected system file c:\windows\system32\drivers\mskssrv.sys could not be verified as valid because Windows  File Protection is terminating.  Use the SFC utility to verify the integrity of the file at a later time.  
                          2009-10-11 12:32:26                                  Windows File Protection         64008: The protected system file c:\windows\system32\drivers\sysaudio.sys could not be verified as valid because Windows  File Protection is terminating.  Use the SFC utility to verify the integrity of the file at a later time.  
                          2009-10-11 12:32:26                                  Windows File Protection         64008: The protected system file c:\windows\system32\drivers\kmixer.sys could not be verified as valid because Windows  File Protection is terminating.  Use the SFC utility to verify the integrity of the file at a later time.  
                        2009-10-11 12:32:27                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-11 12:33:06                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 12:33:24                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 12:33:24                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 12:33:24                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-10-11 12:33:27                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-11 12:33:28  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 12:33:28  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-10-11 12:33:28                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                        2009-10-11 12:33:38                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 12:33:38                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 12:33:38                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 12:33:38                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 12:33:38  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 12:33:38  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 12:33:38  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 12:33:52                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 12:33:52  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 12:33:58                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 12:34:09                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-11 12:34:09  NETWORK SERVICE                 Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                            2009-10-11 12:34:10  NETWORK SERVICE                 DCOM                            10016: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID   {BA126AD1-2166-11D1-B1D0-00805FC1270E}   to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20).  This security permission can be modified using the Component Services administrative tool.  
                        2009-10-11 12:34:10                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-11 12:34:28                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: PCI\VEN_11AB&DEV_6121&SUBSYS_82E01043&REV_B2\4&34EBACD6&0&00E4     Vetoing device: IDE\CdRom_NEC_DVD_RW_ND-3540A____________________1.01____\6&36bd720&0&0.1.0     Vetoing service name: FileSystem\Cdfs     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                            2009-10-11 12:35:12                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-11 12:35:12                                  W32Time                         29: The time provider NtpClient is configured to acquire time from one or more  time sources, however none of the sources are currently accessible.   No attempt to contact a source will be made for 15 minutes.  NtpClient has no source of accurate time.   
                          2009-10-11 12:35:12                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-11 12:36:35  Administrator                   Service Control Manager         7035: The ASInsHelp service was successfully sent a start control.  
                        2009-10-11 12:36:38  Administrator                   Service Control Manager         7035: The AsIO service was successfully sent a start control.  
                        2009-10-11 12:36:44                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-11 12:37:37                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 12:37:49                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 12:37:49                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 12:37:49                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-11 12:38:51                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-11 12:38:57                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                        2009-10-11 12:38:57                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-11 12:38:57                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-11 12:39:00  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 12:39:00  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-10-11 12:39:01                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 12:39:01                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 12:39:01                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 12:39:01                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 12:39:01  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 12:39:01  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 12:39:01  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 12:39:15                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 12:39:15  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 12:39:24                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 12:42:00                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 12:42:00  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 12:42:06                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 12:42:36                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 12:42:36  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 12:42:42                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 12:46:02                                  Service Control Manager         7036: The NVIDIA Display Driver Service service entered the stopped state.  
                        2009-10-11 12:46:02  Administrator                   Service Control Manager         7035: The NVIDIA Display Driver Service service was successfully sent a start control.  
                        2009-10-11 12:46:03                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: PCI\VEN_10DE&DEV_05E2&SUBSYS_00000000&REV_A1\4&399D3C6A&0&0008     Vetoing device: PCI\VEN_10DE&DEV_05E2&SUBSYS_00000000&REV_A1\4&399d3c6a&0&0008     Vetoing service name: Driver\vga     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-10-11 12:46:04  Administrator                   Service Control Manager         7040: The start type of the nv service was changed from system start to demand start.  
                        2009-10-11 12:46:13                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-10-11 12:46:13  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-10-11 12:46:59                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-10-11 12:47:02                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-11 12:47:50                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 12:48:02                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 12:48:02                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 12:48:02                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-11 12:49:03                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-11 12:49:09                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-11 12:49:12  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 12:49:12  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-10-11 12:49:12                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-11 12:49:13                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-11 12:49:14                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-11 12:49:14                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 12:49:14  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 12:49:14  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 12:49:16                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 12:49:16                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 12:49:16                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 12:49:16  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-11 12:49:16  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 12:49:16  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 12:49:18                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 12:49:22                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-11 12:51:39                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-11 12:57:54                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-11 12:58:04                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-11 12:58:04                                  EventLog                        6005: The Event log service was started.  
                        2009-10-11 12:58:05                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-11 12:59:08                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-11 12:59:14                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-11 12:59:14                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-11 12:59:17                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-11 12:59:17  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 12:59:17  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-11 12:59:20                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-11 12:59:20                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-11 12:59:20                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-11 12:59:20                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-11 12:59:20                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-11 12:59:20                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-11 12:59:20  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-11 12:59:20  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-11 12:59:20  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-11 12:59:20  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-11 12:59:20  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-11 12:59:29                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                            2009-10-11 13:01:16                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-10-11 13:01:22                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-10-11 13:01:29                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-10-11 13:01:35                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-10-11 13:01:42                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                        2009-10-11 13:07:41                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-10-11 13:07:41  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-10-11 13:09:09                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-11 13:09:09                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-11 13:09:09  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                            2009-10-11 13:10:04                                  W32Time                         29: The time provider NtpClient is configured to acquire time from one or more  time sources, however none of the sources are currently accessible.   No attempt to contact a source will be made for 1 minutes.  NtpClient has no source of accurate time.   
                        2009-10-11 13:10:04                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-11 13:10:06                                  W32Time                         37: The time provider NtpClient is currently receiving valid time data from time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                            2009-10-11 18:36:32                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-11 18:36:32                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-11 18:36:32                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                            2009-10-11 18:40:10                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-11 18:40:10                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-11 18:40:10                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                            2009-10-11 20:20:48                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-11 20:20:48                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-11 20:20:48                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                            2009-10-11 20:21:33                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-11 20:21:33                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-11 20:21:33                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                            2009-10-11 20:22:06                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-11 20:22:06                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-11 20:22:06                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                            2009-10-11 20:24:08                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-11 20:24:08                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-11 20:24:08                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                        2009-10-11 20:25:18                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-10-11 20:25:18  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-10-11 20:35:47                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-10-11 23:22:26                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-11 23:22:27                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-12 13:22:25                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-12 13:22:31                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-12 13:22:31                                  EventLog                        6005: The Event log service was started.  
                        2009-10-12 13:22:31                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-12 13:23:34                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-12 13:23:40                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-12 13:23:41                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-12 13:23:44  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-12 13:23:44  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-12 13:23:49                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-12 13:23:49                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-12 13:23:49                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-12 13:23:49                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-12 13:23:49                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-12 13:23:49                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-12 13:23:49                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-12 13:23:49                                  Service Control Manager         7036: The Computer Browser service entered the stopped state.  
                        2009-10-12 13:23:49  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-12 13:23:49  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-12 13:23:49  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-12 13:23:49  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-12 13:23:49  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-12 13:23:49  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-12 13:23:51                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-12 13:24:01                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                          2009-10-12 13:46:22                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-12 16:37:25                                  Service Control Manager         7036: The Computer Browser service entered the running state.  
                        2009-10-12 16:37:25  SYSTEM                          Service Control Manager         7035: The Computer Browser service was successfully sent a start control.  
                        2009-10-12 16:38:06                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-12 16:38:08                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-12 16:39:13                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-12 16:39:19                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-12 16:39:19                                  EventLog                        6005: The Event log service was started.  
                        2009-10-12 16:39:19                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-12 16:40:22                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-12 16:40:29                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-12 16:40:30                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-12 16:40:39                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-12 16:40:39                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-12 16:40:39                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-12 16:40:39                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-12 16:40:39                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-12 16:40:39                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-12 16:40:39                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-12 16:40:39  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-12 16:40:39  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-12 16:40:39  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-12 16:40:39  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-12 16:40:39  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-12 16:40:39  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-12 16:40:41                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-12 16:41:03                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                            2009-10-12 16:41:17                                  Application Popup               1060: \??\D:\GAMES\WoW LK\laPP.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-12 16:41:17                                  Service Control Manager         7000: The LostAngel's protect driver service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-12 16:41:17                                  Application Popup               26: Application popup:  : \??\D:\GAMES\WoW LK\laPP.sys failed to load  
                        2009-10-12 19:48:18                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-10-12 19:48:18  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                          2009-10-12 19:50:59                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-12 19:59:23                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-10-12 21:33:58                                  Application Popup               26: Application popup: dosbox.exe - Application Error : The exception unknown software exception (0xc0000005) occurred in the application at location 0x6ac874f0.   Click on OK to terminate the program  
                        2009-10-12 21:41:02                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-12 21:41:02  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-12 21:41:08                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-12 21:45:26                                  Application Popup               26: Application popup: dosbox.exe - Application Error : The exception unknown software exception (0xc0000005) occurred in the application at location 0x6ac874f0.   Click on OK to terminate the program  
                        2009-10-13 00:21:23                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-13 00:21:28                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-13 12:33:22                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-13 12:33:29                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-13 12:33:29                                  EventLog                        6005: The Event log service was started.  
                        2009-10-13 12:33:29                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-13 12:34:33                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-13 12:34:39                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-13 12:34:39                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-13 12:34:40  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-13 12:34:40  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-13 12:34:49                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-13 12:34:49                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-13 12:34:49                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-13 12:34:49                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-13 12:34:49                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-13 12:34:49                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-13 12:34:49                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-13 12:34:49  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-13 12:34:49  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-13 12:34:49  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-13 12:34:49  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-13 12:34:49  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-13 12:34:49  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-13 12:34:50                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-13 12:34:56                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-13 12:52:26                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-13 12:52:28                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-13 16:03:13                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-13 16:03:19                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-13 16:03:19                                  EventLog                        6005: The Event log service was started.  
                        2009-10-13 16:03:19                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-13 16:04:22                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-13 16:04:28                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-13 16:04:29  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-13 16:04:29  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-10-13 16:04:29                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-13 16:04:39                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                        2009-10-13 16:04:39                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-13 16:04:39                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-13 16:04:39                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-13 16:04:39                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-13 16:04:39                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-13 16:04:39                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-13 16:04:39  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-13 16:04:39  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-13 16:04:39  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-13 16:04:39  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-13 16:04:39  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-13 16:04:39  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-13 16:04:40                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-13 16:27:10                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-13 19:39:56                                  Application Popup               26: Application popup: dosbox.exe - Application Error : The exception unknown software exception (0xc0000005) occurred in the application at location 0x6ac874f0.   Click on OK to terminate the program  
                        2009-10-13 19:41:24                                  Application Popup               26: Application popup: dosbox.exe - Application Error : The exception unknown software exception (0xc0000005) occurred in the application at location 0x6ac874f0.   Click on OK to terminate the program  
                        2009-10-14 11:00:00                                  EventLog                        6013: The system uptime is 68233 seconds.  
                        2009-10-14 12:37:21                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-14 12:37:21  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-14 12:37:27                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-14 12:37:38                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-14 12:37:38  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-14 12:37:45                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-14 12:51:10                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-14 12:51:10  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-14 12:51:17                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-14 12:51:33                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-14 12:51:33  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-14 12:51:39                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-14 12:51:50                                  Service Control Manager         7036: The Windows Image Acquisition (WIA) service entered the stopped state.  
                        2009-10-14 12:51:50  Administrator                   Service Control Manager         7035: The Windows Image Acquisition (WIA) service was successfully sent a stop control.  
                            2009-10-14 12:51:51                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-14 12:51:59  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-14 12:51:59  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-10-14 12:51:59                                  Service Control Manager         7036: The Windows Image Acquisition (WIA) service entered the running state.  
                        2009-10-14 12:51:59  Administrator                   Service Control Manager         7035: The Windows Image Acquisition (WIA) service was successfully sent a start control.  
                        2009-10-14 12:52:01  Administrator                   Service Control Manager         7035: The SSPORT service was successfully sent a start control.  
                          2009-10-14 12:52:56  SYSTEM                          Print                           20: 
                            2009-10-14 12:54:09                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                          2009-10-14 15:25:21                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                          2009-10-14 16:04:29                                  W32Time                         36: The time service has not synchronized the system time for 86400 seconds   because none of the time service providers provided a usable time   stamp. The time service is no longer synchronized and cannot provide   the time to other clients or update the system clock. Monitor the   system events displayed in the Event  Viewer to make sure that a more   serious problem does not exist.   
                        2009-10-14 16:27:13                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-14 16:27:14                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                          2009-10-14 22:43:40                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-15 11:00:00                                  EventLog                        6013: The system uptime is 154633 seconds.  
                        2009-10-15 16:27:16                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-15 16:27:17                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-16 11:00:00                                  EventLog                        6013: The system uptime is 241033 seconds.  
                        2009-10-16 16:27:18                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-16 16:27:21                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                          2009-10-16 21:31:40                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                          2009-10-17 00:07:54                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-17 11:00:00                                  EventLog                        6013: The system uptime is 327433 seconds.  
                        2009-10-17 13:16:53                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-17 13:16:55                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-17 13:17:36                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-17 13:17:43                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-17 13:17:43                                  EventLog                        6005: The Event log service was started.  
                        2009-10-17 13:17:43                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-17 13:18:45                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-17 13:18:51                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-17 13:18:52                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-17 13:18:56  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-17 13:18:56  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-17 13:19:08                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-17 13:19:08                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-17 13:19:08                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-17 13:19:08                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-17 13:19:08                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-17 13:19:08                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-17 13:19:08                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-17 13:19:08                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-17 13:19:08                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-17 13:19:08  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-17 13:19:08  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-17 13:19:08  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-17 13:19:08  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-17 13:19:08  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-17 13:19:08  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-17 13:19:23                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-17 14:21:50                                  W32Time                         35: The time service is now synchronizing the system time with the time  source time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                          2009-10-17 14:21:50                                  W32Time                         52: The time service has set the time with offset -46790 seconds.  
                        2009-10-17 22:00:10                                  EventLog                        6013: The system uptime is 78172 seconds.  
                          2009-10-17 23:05:24                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                          2009-10-17 23:19:45                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-18 00:19:34                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-18 00:19:36                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-18 03:21:40                                  W32Time                         37: The time provider NtpClient is currently receiving valid time data from time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                          2009-10-18 18:17:30                                  W32Time                         36: The time service has not synchronized the system time for 86400 seconds   because none of the time service providers provided a usable time   stamp. The time service is no longer synchronized and cannot provide   the time to other clients or update the system clock. Monitor the   system events displayed in the Event  Viewer to make sure that a more   serious problem does not exist.   
                        2009-10-18 22:37:32                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-18 22:37:34                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-18 23:58:44                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-18 23:58:53                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-18 23:58:53                                  EventLog                        6005: The Event log service was started.  
                        2009-10-18 23:58:53                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-18 23:59:55                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-19 00:00:02                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-19 00:00:02                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-19 00:00:06  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-19 00:00:06  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-19 00:00:16                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-19 00:00:16                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-19 00:00:16                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-19 00:00:16                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-19 00:00:16                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-19 00:00:16                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-19 00:00:16                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-19 00:00:16                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-19 00:00:16                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-19 00:00:16  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-19 00:00:16  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-19 00:00:16  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-19 00:00:16  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-19 00:00:16  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-19 00:00:16  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-19 00:00:34                                  Tcpip                           4201: The system detected that network adapter \DEVICE\TCPIP_{FE59D339-B258-47DB-B507-C94F333856C7} was connected to the network,  and has initiated normal operation over the network adapter.  
                        2009-10-19 00:00:59                                  Tcpip                           4201: The system detected that network adapter \DEVICE\TCPIP_{FE59D339-B258-47DB-B507-C94F333856C7} was connected to the network,  and has initiated normal operation over the network adapter.  
                        2009-10-19 00:01:19                                  Tcpip                           4201: The system detected that network adapter \DEVICE\TCPIP_{FE59D339-B258-47DB-B507-C94F333856C7} was connected to the network,  and has initiated normal operation over the network adapter.  
                        2009-10-19 00:02:28                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-19 00:49:20                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-19 09:22:14                                  Tcpip                           4201: The system detected that network adapter \DEVICE\TCPIP_{FE59D339-B258-47DB-B507-C94F333856C7} was connected to the network,  and has initiated normal operation over the network adapter.  
                        2009-10-19 09:22:33                                  Service Control Manager         7036: The Windows Image Acquisition (WIA) service entered the running state.  
                        2009-10-19 09:24:01                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-19 09:38:12                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-19 09:38:14                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-19 10:23:43                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-19 10:23:51                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-19 10:23:51                                  EventLog                        6005: The Event log service was started.  
                        2009-10-19 10:23:51                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-19 10:24:54                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-19 10:25:01                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-19 10:25:01                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-19 10:25:05  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-19 10:25:05  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-19 10:25:13                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-19 10:25:13                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-19 10:25:13                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-19 10:25:13                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-19 10:25:13                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-19 10:25:13                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-19 10:25:13                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-19 10:25:13                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-19 10:25:13                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-19 10:25:13  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-19 10:25:13  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-19 10:25:13  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-19 10:25:13  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-19 10:25:13  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-19 10:25:13  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-19 10:25:31                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-19 10:50:21                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-19 11:55:16                                  EventLog                        6013: The system uptime is 1628 seconds.  
                        2009-10-19 11:55:20                                  Tcpip                           4201: The system detected that network adapter \DEVICE\TCPIP_{FE59D339-B258-47DB-B507-C94F333856C7} was connected to the network,  and has initiated normal operation over the network adapter.  
                        2009-10-19 11:55:39                                  Service Control Manager         7036: The Windows Image Acquisition (WIA) service entered the running state.  
                        2009-10-19 13:26:44                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-19 14:19:14                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-19 14:19:56                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                          2009-10-19 14:58:55                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                          2009-10-19 15:16:42                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-19 15:52:49                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-19 18:10:53                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                          2009-10-19 19:03:41                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-19 19:14:04                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-19 19:17:40                                  Tcpip                           4201: The system detected that network adapter \DEVICE\TCPIP_{FE59D339-B258-47DB-B507-C94F333856C7} was connected to the network,  and has initiated normal operation over the network adapter.  
                        2009-10-19 19:17:59                                  Service Control Manager         7036: The Windows Image Acquisition (WIA) service entered the running state.  
                        2009-10-19 19:18:24                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-19 19:51:06                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-19 19:51:13                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-19 19:51:13                                  EventLog                        6005: The Event log service was started.  
                        2009-10-19 19:51:13                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-19 19:52:13                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-19 19:52:19                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-19 19:52:20                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-19 19:52:24  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-19 19:52:24  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-19 19:52:30                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-19 19:52:30                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-19 19:52:30                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-19 19:52:30                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-19 19:52:30                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-19 19:52:30                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-19 19:52:30                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-19 19:52:30                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-19 19:52:30  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-19 19:52:30  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-19 19:52:30  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-19 19:52:30  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-19 19:52:30  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-19 19:52:30  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-19 19:52:31                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-19 19:54:42                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                          2009-10-19 19:55:22                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-19 23:45:32                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-19 23:45:34                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-20 09:09:53                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-20 09:10:00                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-20 09:10:00                                  EventLog                        6005: The Event log service was started.  
                        2009-10-20 09:10:00                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-20 09:11:02                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-20 09:11:08                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-20 09:11:09                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-20 09:11:13  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-20 09:11:13  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-20 09:11:20                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-20 09:11:20                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-20 09:11:20                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-20 09:11:20                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-20 09:11:20                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-20 09:11:20                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-20 09:11:20                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-20 09:11:20                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-20 09:11:20  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-20 09:11:20  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-20 09:11:20  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-20 09:11:20  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-20 09:11:20  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-20 09:11:20  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-20 09:11:21                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-20 09:11:31                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-20 09:30:03                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-20 09:30:05                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-20 09:45:14                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-20 09:45:20                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-20 09:45:20                                  EventLog                        6005: The Event log service was started.  
                        2009-10-20 09:45:21                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-20 09:46:21                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-20 09:46:27                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-20 09:46:28                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-20 09:46:32  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-20 09:46:32  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-20 09:46:40                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-20 09:46:40                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-20 09:46:40                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-20 09:46:40                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-20 09:46:40                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-20 09:46:40                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-20 09:46:40                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-20 09:46:40                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-20 09:46:40                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-20 09:46:40  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-20 09:46:40  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-20 09:46:40  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-20 09:46:40  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-20 09:46:40  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-20 09:46:40  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-20 09:46:46                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                          2009-10-20 10:24:57                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-20 11:01:46                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-20 11:01:53                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-20 11:01:53                                  EventLog                        6005: The Event log service was started.  
                        2009-10-20 11:01:53                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-20 11:02:54                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-20 11:03:00                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-20 11:03:01                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-20 11:03:05  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-20 11:03:05  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-20 11:03:12                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-20 11:03:12                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-20 11:03:12                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-20 11:03:12                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-20 11:03:12                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-20 11:03:12                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-20 11:03:12                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-20 11:03:12                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-20 11:03:12                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-20 11:03:12  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-20 11:03:12  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-20 11:03:12  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-20 11:03:12  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-20 11:03:12  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-20 11:03:12  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-20 11:30:11                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                          2009-10-20 23:27:02                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                          2009-10-20 23:44:51                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-20 23:45:15                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-20 23:45:17                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-21 08:29:27                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-21 08:29:35                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-21 08:29:35                                  EventLog                        6005: The Event log service was started.  
                        2009-10-21 08:29:35                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-21 08:30:39                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-21 08:30:46                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-21 08:30:46                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-21 08:30:50  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-21 08:30:50  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-21 08:30:59                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-21 08:30:59                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-21 08:30:59                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-21 08:30:59                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-21 08:30:59                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-21 08:30:59                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-21 08:30:59                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-21 08:30:59                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-21 08:30:59                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-21 08:30:59  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-21 08:30:59  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-21 08:30:59  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-21 08:30:59  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-21 08:30:59  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-21 08:30:59  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-21 08:34:32                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-21 17:47:03                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-21 17:47:11                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-21 17:47:11                                  EventLog                        6005: The Event log service was started.  
                        2009-10-21 17:47:11                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-21 17:48:12                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-21 17:48:19                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-21 17:48:19                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-21 17:48:24  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-21 17:48:24  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-21 17:48:31                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-21 17:48:31                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-21 17:48:31                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-21 17:48:31                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-21 17:48:31                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-21 17:48:31                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-21 17:48:31                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-21 17:48:31                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-21 17:48:31                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-21 17:48:31  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-21 17:48:31  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-21 17:48:31  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-21 17:48:31  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-21 17:48:31  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-21 17:48:31  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-21 20:41:05                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                          2009-10-21 23:09:26                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-22 11:00:00                                  EventLog                        6013: The system uptime is 62002 seconds.  
                        2009-10-22 13:47:00                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-10-22 13:47:00  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-10-22 13:57:00                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                          2009-10-22 17:48:24                                  W32Time                         36: The time service has not synchronized the system time for 86400 seconds   because none of the time service providers provided a usable time   stamp. The time service is no longer synchronized and cannot provide   the time to other clients or update the system clock. Monitor the   system events displayed in the Event  Viewer to make sure that a more   serious problem does not exist.   
                        2009-10-22 20:41:08                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-22 20:41:09                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-22 23:06:26                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-10-22 23:06:26  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-10-22 23:07:39  SYSTEM                          Service Control Manager         7035: The ehdrv service was successfully sent a start control.  
                        2009-10-22 23:07:41  SYSTEM                          Service Control Manager         7035: The epfwtdir service was successfully sent a start control.  
                        2009-10-22 23:07:42  SYSTEM                          Service Control Manager         7035: The ESET Service service was successfully sent a start control.  
                        2009-10-22 23:07:44                                  Service Control Manager         7036: The ESET Service service entered the running state.  
                        2009-10-22 23:07:45  SYSTEM                          Service Control Manager         7035: The eamon service was successfully sent a start control.  
                        2009-10-22 23:17:49                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-10-22 23:36:14                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-22 23:36:16                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-23 17:25:59                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-23 17:26:07                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-23 17:26:07                                  EventLog                        6005: The Event log service was started.  
                        2009-10-23 17:26:07                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-23 17:27:08                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-23 17:27:15                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-23 17:27:18                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                        2009-10-23 17:27:47                                  Tcpip                           4201: The system detected that network adapter \DEVICE\TCPIP_{FE59D339-B258-47DB-B507-C94F333856C7} was connected to the network,  and has initiated normal operation over the network adapter.  
                            2009-10-23 17:27:59                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-23 17:27:59                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-23 17:28:11  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-23 17:28:11  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-10-23 17:28:12                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-23 17:28:12                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-23 17:28:12                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-23 17:28:12  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-23 17:28:12  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-23 17:28:12  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-23 17:28:12  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-23 17:28:12  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-23 17:28:13                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-23 17:28:15                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-23 17:28:15  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-23 17:28:18                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-23 17:28:19                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-23 20:03:35                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                          2009-10-23 20:07:40                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-24 01:21:50                                  W32Time                         35: The time service is now synchronizing the system time with the time  source time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.232.182:123).  
                          2009-10-24 01:21:50                                  W32Time                         52: The time service has set the time with offset -46790 seconds.  
                        2009-10-24 05:04:52                                  Application Popup               26: Application popup: dosbox.exe - Application Error : The exception unknown software exception (0xc0000005) occurred in the application at location 0x6ac874f0.   Click on OK to terminate the program  
                          2009-10-24 05:35:48                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-24 05:49:06                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-24 05:49:08                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-24 05:50:01                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-24 05:50:09                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-24 05:50:09                                  EventLog                        6005: The Event log service was started.  
                        2009-10-24 05:50:09                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-24 05:51:12                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-24 05:51:18                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-24 05:51:20                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-24 05:51:25  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-24 05:51:25  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-24 05:51:33                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-24 05:51:33                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-24 05:51:33                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-24 05:51:33                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-24 05:51:33  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-24 05:51:33  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-24 05:51:34                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-24 05:51:34  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-24 05:51:34  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-24 05:51:35                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-24 05:51:35  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-24 05:51:37                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-24 05:51:38                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-24 05:51:38  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-24 05:51:41                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-24 06:46:51                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-10-24 06:46:51  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-10-24 06:47:20                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-10-24 06:47:20  Administrator                   Service Control Manager         7035: The Windows Installer service was successfully sent a stop control.  
                        2009-10-24 06:47:23                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-10-24 06:47:23  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-10-24 06:47:44                                  Service Control Manager         7036: The Background Intelligent Transfer Service service entered the running state.  
                        2009-10-24 06:47:44  SYSTEM                          Service Control Manager         7035: The Background Intelligent Transfer Service service was successfully sent a start control.  
                        2009-10-24 06:47:44  SYSTEM                          Service Control Manager         7040: The start type of the Background Intelligent Transfer Service service was changed from demand start to auto start.  
                        2009-10-24 06:47:44  SYSTEM                          Service Control Manager         7040: The start type of the Background Intelligent Transfer Service service was changed from auto start to demand start.  
                        2009-10-24 06:47:45                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-24 06:47:45  Administrator                   Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-24 06:47:45  SYSTEM                          Service Control Manager         7040: The start type of the Background Intelligent Transfer Service service was changed from demand start to auto start.  
                        2009-10-24 07:00:26                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-10-24 07:07:15                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-24 07:07:15                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-24 07:07:15                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-24 08:50:19                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-24 08:53:45                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-24 09:58:39                                  EventLog                        6006: The Event log service was stopped.  
                          2009-10-24 10:04:13                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-24 10:18:15                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-24 10:18:22                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-24 10:18:22                                  EventLog                        6005: The Event log service was started.  
                        2009-10-24 10:18:23                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-24 10:19:24                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-24 10:19:30                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-24 10:19:32                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-24 10:19:37  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-24 10:19:37  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-24 10:19:37  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-24 10:19:37  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-10-24 10:22:23                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-24 10:22:30                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-24 10:22:30                                  EventLog                        6005: The Event log service was started.  
                        2009-10-24 10:22:30                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-24 10:23:31                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-24 10:23:38                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-24 10:23:39                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-24 10:23:44  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-24 10:23:44  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-24 10:23:44  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-24 10:23:44  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-24 10:23:58                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-24 10:23:58                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-24 10:23:58                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-24 10:23:58                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-24 10:23:58                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-24 10:23:58                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-24 10:23:58                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-24 10:23:58                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-24 10:23:58                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-24 10:23:58  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-24 10:23:58  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-24 10:23:58  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-24 10:23:58  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-24 10:23:58  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-24 10:23:58  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-24 10:24:50                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                          2009-10-24 10:33:05                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                          2009-10-24 10:33:52                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-24 10:55:58                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-24 10:55:59                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-24 11:00:00                                  EventLog                        6013: The system uptime is 63245 seconds.  
                          2009-10-24 11:32:33                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-24 14:21:40                                  W32Time                         37: The time provider NtpClient is currently receiving valid time data from time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.232.182:123).  
                        2009-10-24 20:18:22                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-24 20:18:29                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-24 20:18:29                                  EventLog                        6005: The Event log service was started.  
                        2009-10-24 20:18:29                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-24 20:19:31                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-24 20:19:37                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-24 20:19:39                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-24 20:19:44  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-24 20:19:44  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-24 20:19:44  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-24 20:19:44  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-24 20:19:59                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-24 20:19:59                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-24 20:19:59                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-24 20:19:59                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-24 20:19:59                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-24 20:19:59                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-24 20:19:59                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-24 20:19:59                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-24 20:19:59                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-24 20:19:59  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-24 20:19:59  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-24 20:19:59  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-24 20:19:59  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-24 20:19:59  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-24 20:19:59  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-24 20:20:02                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-24 21:15:33                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-24 21:15:40                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-24 21:15:40                                  EventLog                        6005: The Event log service was started.  
                        2009-10-24 21:15:40                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-24 21:16:44                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-24 21:16:50                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-24 21:16:52                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-24 21:16:57  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-24 21:16:57  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-24 21:16:57  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-24 21:16:57  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-24 21:17:09                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-24 21:17:09                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-24 21:17:09                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-24 21:17:09                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-24 21:17:09                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-24 21:17:09                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-24 21:17:09                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-24 21:17:09                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-24 21:17:09                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-24 21:17:09  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-24 21:17:09  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-24 21:17:09  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-24 21:17:09  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-24 21:17:09  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-24 21:17:09  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-24 21:17:17                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-25 00:08:01                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-25 00:08:03                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-25 02:45:51                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-25 02:45:59                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-25 02:45:59                                  EventLog                        6005: The Event log service was started.  
                        2009-10-25 02:45:59                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-25 02:47:01                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-25 02:47:07                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-25 02:47:09                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-25 02:47:12  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 02:47:12  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 02:47:12  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 02:47:12  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 02:47:33                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-25 02:47:33                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-25 02:47:33                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-25 02:47:33                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-25 02:47:33                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-25 02:47:33                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-25 02:47:33                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-25 02:47:33                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-25 02:47:33                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-25 02:47:33  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-25 02:47:33  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-25 02:47:33  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-25 02:47:33  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-25 02:47:33  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-25 02:47:33  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-25 02:47:43                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-25 05:32:15                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-25 05:32:23                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-25 05:32:23                                  EventLog                        6005: The Event log service was started.  
                        2009-10-25 05:32:23                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-25 05:33:26                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-25 05:33:32                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-25 05:33:34                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-25 05:33:39  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 05:33:39  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 05:33:39  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 05:33:39  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 05:33:51                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-25 05:33:51                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-25 05:33:51                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-25 05:33:51                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-25 05:33:51                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-25 05:33:51                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-25 05:33:51                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-25 05:33:51                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-25 05:33:51                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-25 05:33:51  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-25 05:33:51  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-25 05:33:51  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-25 05:33:51  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-25 05:33:51  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-25 05:33:51  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-25 05:34:32                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-25 06:55:22                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-25 06:55:29                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-25 06:55:29                                  EventLog                        6005: The Event log service was started.  
                        2009-10-25 06:55:29                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-25 06:56:31                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-25 06:56:37                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-25 06:56:39                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-25 06:56:44  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 06:56:44  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 06:56:44  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 06:56:44  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 06:56:58                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-25 06:56:58                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-25 06:56:58                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-25 06:56:58                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-25 06:56:58                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-25 06:56:58                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-25 06:56:58                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-25 06:56:58                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-25 06:56:58                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-25 06:56:58  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-25 06:56:58  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-25 06:56:58  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-25 06:56:58  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-25 06:56:58  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-25 06:56:58  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-25 06:57:56                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-25 06:57:56  Administrator                   Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-25 07:14:26                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-25 07:14:26                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-25 07:14:26                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-25 07:28:04                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-25 07:28:11                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-25 07:28:11                                  EventLog                        6005: The Event log service was started.  
                        2009-10-25 07:28:11                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-25 07:29:13                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-25 07:29:19                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-25 07:29:21                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-25 07:29:26  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 07:29:26  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 07:29:26  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 07:29:26  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 07:29:37                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-25 07:29:37                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-25 07:29:37                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-25 07:29:37                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-25 07:29:37                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-25 07:29:37                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-25 07:29:37                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-25 07:29:37                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-25 07:29:37                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-25 07:29:37  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-25 07:29:37  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-25 07:29:37  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-25 07:29:37  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-25 07:29:37  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-25 07:29:37  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-25 07:29:56                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-25 07:29:56  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-25 07:31:58                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-25 19:46:24                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-25 19:46:24                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-25 19:46:24                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-25 20:00:23                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-25 20:00:30                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-25 20:00:30                                  EventLog                        6005: The Event log service was started.  
                        2009-10-25 20:00:30                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-25 20:01:32                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-25 20:01:38                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-25 20:01:40                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-25 20:01:45  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 20:01:45  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 20:01:45  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 20:01:45  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 20:02:03                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-25 20:02:03                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-25 20:02:03                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-25 20:02:03                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-25 20:02:03                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-25 20:02:03                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-25 20:02:03                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-25 20:02:03                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-25 20:02:03                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-25 20:02:03  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-25 20:02:03  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-25 20:02:03  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-25 20:02:03  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-25 20:02:03  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-25 20:02:03  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-25 20:02:31                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-25 20:02:31  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-25 20:03:56                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-25 20:19:01                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-25 20:19:01                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-25 20:19:02                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-25 20:21:46                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-25 20:21:54                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-25 20:21:54                                  EventLog                        6005: The Event log service was started.  
                        2009-10-25 20:21:54                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-10-25 20:21:55                                  Save Dump                       1001: The computer has rebooted from a bugcheck.  The bugcheck was:  0x00000050 (0xffffffffffffffe4, 0x0000000000000000, 0xfffff80001019062, 0x0000000000000000).  A dump was saved in: C:\WINDOWS\Minidump\Mini102509-01.dmp.  
                          2009-10-25 20:22:56                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-25 20:23:03                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-25 20:23:04                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-25 20:23:08  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 20:23:08  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 20:23:08  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 20:23:08  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 20:23:23                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-25 20:23:23                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-25 20:23:23                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-25 20:23:23                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-25 20:23:23                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-25 20:23:23                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-25 20:23:23                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-25 20:23:23                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-25 20:23:23                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-25 20:23:23  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-25 20:23:23  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-25 20:23:23  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-25 20:23:23  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-25 20:23:23  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-25 20:23:23  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-25 20:24:16                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-25 20:58:57                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-25 20:59:04                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-25 20:59:04                                  EventLog                        6005: The Event log service was started.  
                        2009-10-25 20:59:04                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-25 21:00:09                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-25 21:00:15                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-25 21:00:17  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 21:00:17  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 21:00:17  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-25 21:00:17  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-10-25 21:00:17                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-25 21:00:32                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-25 21:00:32                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-25 21:00:32                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-25 21:00:32                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-25 21:00:32                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-25 21:00:32                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-25 21:00:32                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-25 21:00:32                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-25 21:00:32                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-25 21:00:32  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-25 21:00:32  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-25 21:00:32  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-25 21:00:32  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-25 21:00:32  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-25 21:00:32  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-25 21:00:56                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-25 21:22:12                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-25 21:22:14                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-26 12:57:32                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-26 12:57:38                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-26 12:57:38                                  EventLog                        6005: The Event log service was started.  
                        2009-10-26 12:57:39                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-26 12:58:42                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-26 12:58:48                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-26 12:58:50                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-26 12:58:54  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 12:58:54  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 12:58:54  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 12:58:54  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 12:59:07                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-26 12:59:07                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-26 12:59:07                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-26 12:59:07                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-26 12:59:07                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-26 12:59:07                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-26 12:59:07                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-26 12:59:07                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-26 12:59:07                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-26 12:59:07  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-26 12:59:07  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-26 12:59:07  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-26 12:59:07  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-26 12:59:07  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-26 12:59:07  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-26 12:59:41                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-26 12:59:41  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-26 13:03:47                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-26 13:16:10                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-26 13:16:10                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-26 13:16:11                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-26 13:44:36                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-10-26 13:44:36  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-10-26 13:45:20  Administrator                   Service Control Manager         7035: The EIO_XP service was successfully sent a start control.  
                        2009-10-26 13:45:30  Administrator                   Service Control Manager         7035: The cpuz132 service was successfully sent a start control.  
                        2009-10-26 13:46:37                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-10-26 13:46:46                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-26 13:46:48                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-26 13:48:56                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-26 13:49:03                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-26 13:49:03                                  EventLog                        6005: The Event log service was started.  
                        2009-10-26 13:49:03                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-26 13:50:06                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-26 13:50:12                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-26 13:50:14                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-26 13:50:18  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 13:50:18  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 13:50:18  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 13:50:18  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 13:50:27                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-26 13:50:27                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-26 13:50:27                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-26 13:50:27                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-26 13:50:27                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-26 13:50:27                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-26 13:50:27                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-26 13:50:27                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-26 13:50:27                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-26 13:50:27  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-26 13:50:27  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-26 13:50:27  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-26 13:50:27  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-26 13:50:27  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-26 13:50:27  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-26 13:51:31                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-26 13:51:38                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-26 13:51:38                                  EventLog                        6005: The Event log service was started.  
                        2009-10-26 13:51:38                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-10-26 13:51:39                                  Save Dump                       1001: The computer has rebooted from a bugcheck.  The bugcheck was:  0x0000000a (0xfffff800014151d1, 0x0000000000000002, 0x0000000000000000, 0xfffff8000104f306).  A dump was saved in: C:\WINDOWS\Minidump\Mini102609-01.dmp.  
                          2009-10-26 13:52:41                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-26 13:52:47                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-26 13:52:53  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 13:52:53  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 13:52:53  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 13:52:53  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-10-26 13:52:53                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-26 13:53:07                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-26 13:53:07                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                        2009-10-26 13:53:07                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-26 13:53:07                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-26 13:53:07                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-26 13:53:07                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-26 13:53:07                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-26 13:53:07                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-26 13:53:07                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-26 13:53:07  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-26 13:53:07  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-26 13:53:07  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-26 13:53:07  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-26 13:53:07  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-26 13:53:07  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-26 13:53:22                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                            2009-10-26 14:37:40                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-26 14:37:40                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-26 14:37:40                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-26 14:37:40                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-26 14:37:40                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-26 14:37:40                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-26 14:53:06                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-10-26 14:53:06  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-10-26 15:03:20                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-10-26 16:45:15                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-26 16:45:23                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-26 16:45:23                                  EventLog                        6005: The Event log service was started.  
                        2009-10-26 16:45:23                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-26 16:46:27                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-26 16:46:33                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-26 16:46:33                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-26 16:46:34                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-26 16:46:35                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-26 16:46:35                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-26 16:46:35                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-26 16:46:40  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 16:46:40  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 16:46:40  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 16:46:40  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 16:46:51                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-26 16:46:51                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-26 16:46:51                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-26 16:46:51                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-26 16:46:51                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-26 16:46:51                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-26 16:46:51                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-26 16:46:51                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-26 16:46:51                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-26 16:46:51                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-26 16:46:51                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-26 16:46:51  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-26 16:46:51  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-26 16:46:51  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-26 16:46:51  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-26 16:46:51  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-26 16:46:51  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-26 16:46:59                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-26 17:49:40                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-26 17:49:48                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-26 17:49:48                                  EventLog                        6005: The Event log service was started.  
                        2009-10-26 17:49:48                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-26 17:50:50                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-26 17:50:56                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-26 17:50:56                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-26 17:50:56                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-26 17:50:57                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-26 17:50:57                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-26 17:50:58                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-26 17:51:02  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 17:51:03  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 17:51:03  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 17:51:03  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 17:51:13                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-26 17:51:13                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-26 17:51:13                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-26 17:51:13                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-26 17:51:13                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-26 17:51:13                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-26 17:51:13                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-26 17:51:13                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-26 17:51:13                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-26 17:51:13                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-26 17:51:13                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-26 17:51:13  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-26 17:51:13  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-26 17:51:13  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-26 17:51:13  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-26 17:51:13  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-26 17:51:13  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-26 17:52:15                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-26 17:59:48                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-26 17:59:48  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-26 18:05:09                                  Service Control Manager         7036: The Automatic Updates service entered the running state.  
                8          2009-10-26 18:05:14                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Automatic Updates  
                8          2009-10-26 18:11:20                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687)  
                8          2009-10-26 18:13:30                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261)  
                8          2009-10-26 18:14:57                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657)  
                8          2009-10-26 18:17:06                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974)  
                8          2009-10-26 18:18:43                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961)  
                8          2009-10-26 18:20:13                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803)  
                        2009-10-26 18:23:48                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-26 18:23:48                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-26 18:23:48                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                8          2009-10-26 18:50:15                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398)  
                8          2009-10-26 18:51:57                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112)  
                8          2009-10-26 19:03:10                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653)  
                8          2009-10-26 19:20:13                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225)  
                8          2009-10-26 19:22:51                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644)  
                8          2009-10-26 19:29:33                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557)  
                8          2009-10-26 19:31:26                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954)  
                        2009-10-26 19:34:23                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-26 19:34:23  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-26 19:45:45                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                        2009-10-26 19:50:53                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-26 19:50:53                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-26 19:50:53                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                8          2009-10-26 19:52:07                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 19:55:54                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 20:03:29                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 20:05:16                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 20:06:56                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 20:09:08                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 20:15:50                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 20:22:57                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 20:24:41                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 20:31:12                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 20:37:56                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 20:44:18                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                        2009-10-26 20:45:27                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-26 20:45:27  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-26 20:51:46                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 20:53:27                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 20:56:41                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 20:57:43                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 20:58:55                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 21:00:02                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                        2009-10-26 21:01:57                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-26 21:01:57                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-26 21:01:57                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                8          2009-10-26 21:04:43                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 21:06:09                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 21:06:18                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 21:09:11                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 21:10:17                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 21:16:42                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 21:18:06                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 21:24:04                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 21:27:11                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 21:27:53                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 21:32:15                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 21:33:15                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 21:34:12                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 21:40:24                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windows XP x64 Edition (KB952954) -     
                8          2009-10-26 21:45:28                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows XP x64 Edition (KB971557) -      Windo  
                8          2009-10-26 21:49:16                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -     Windows XP x64 Edition (KB968537) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows XP x64 Edition (KB958644) -     Windows   
                        2009-10-26 21:52:31                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-26 21:52:31  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-26 21:57:28                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -     Windows XP x64 Edition (KB968537) -     Windows XP x64 Edition (KB923561) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -      Windows XP x64 Edition (KB944653) -     Windows XP x64 Edition (KB960225) -      Windows   
                8          2009-10-26 21:58:47                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -     Windows XP x64 Edition (KB968537) -     Windows XP x64 Edition (KB923561) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -     Windows XP x64 Edition (KB971633) -      Windows XP x64 Edition (KB944653) -     Windows XP   
                        2009-10-26 22:09:01                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-26 22:09:01                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-26 22:09:01                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                8          2009-10-26 22:10:50                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -     Windows XP x64 Edition (KB968537) -     Windows XP x64 Edition (KB923561) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -     Windows XP x64 Edition (KB971633) -      Windows XP x64 Edition (KB944653) -     Windows XP   
                8          2009-10-26 22:13:34                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -     Windows XP x64 Edition (KB968537) -     Windows XP x64 Edition (KB923561) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -     Windows XP x64 Edition (KB971633) -      Windows XP x64 Edition (KB944653) -     Windows XP   
                8          2009-10-26 22:22:23                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -     Windows XP x64 Edition (KB968537) -     Windows XP x64 Edition (KB923561) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -     Windows XP x64 Edition (KB971633) -      Windows XP x64 Edition (KB944653) -     Windows XP   
                8          2009-10-26 22:46:08                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -     Windows XP x64 Edition (KB968537) -     Windows XP x64 Edition (KB923561) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -     Windows XP x64 Edition (KB971633) -      Windows XP x64 Edition (KB944653) -     Windows XP   
                8          2009-10-26 22:49:23                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -     Windows XP x64 Edition (KB968537) -     Windows XP x64 Edition (KB923561) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -     Windows XP x64 Edition (KB971633) -      Windows XP x64 Edition (KB944653) -     Windows XP   
                8          2009-10-26 22:51:34                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -     Windows XP x64 Edition (KB968537) -     Windows XP x64 Edition (KB923561) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -     Windows XP x64 Edition (KB971633) -      Windows XP x64 Edition (KB944653) -     Windows XP   
                8          2009-10-26 23:07:52                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -     Windows XP x64 Edition (KB968537) -     Windows XP x64 Edition (KB923561) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -     Windows XP x64 Edition (KB971633) -      Windows XP x64 Edition (KB944653) -     Windows XP   
                8          2009-10-26 23:07:52                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -     Windows XP x64 Edition (KB968537) -     Windows XP x64 Edition (KB923561) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -     Windows XP x64 Edition (KB971633) -      Windows XP x64 Edition (KB944653) -     Windows XP   
                        2009-10-26 23:11:18                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-26 23:11:25                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-26 23:11:25                                  EventLog                        6005: The Event log service was started.  
                        2009-10-26 23:11:25                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-10-26 23:11:26                                  Save Dump                       1001: The computer has rebooted from a bugcheck.  The bugcheck was:  0x0000001e (0xffffffff80000003, 0xfffffadf90245a90, 0x0000000000000000, 0x0000000000000001).  A dump was saved in: C:\WINDOWS\Minidump\Mini102609-02.dmp.  
                          2009-10-26 23:12:27                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-26 23:12:33                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-26 23:12:33                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-26 23:12:33                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-26 23:12:34                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-26 23:12:34                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-26 23:12:35                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-26 23:12:40  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 23:12:40  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 23:12:40  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 23:12:40  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-26 23:12:53                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-26 23:12:53                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-26 23:12:53                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-26 23:12:53                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-26 23:12:53                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-26 23:12:53                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-26 23:12:53                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-26 23:12:53                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-26 23:12:53                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-26 23:12:53                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-26 23:12:53                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-26 23:12:53  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-26 23:12:53  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-26 23:12:53  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-26 23:12:53  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-26 23:12:53  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-26 23:12:54  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-26 23:13:34                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-26 23:13:34  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-26 23:13:45                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -     Windows XP x64 Edition (KB968537) -     Windows XP x64 Edition (KB923561) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -     Windows XP x64 Edition (KB971633) -      Windows XP x64 Edition (KB944653) -     Windows XP   
                        2009-10-26 23:13:49                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                          2009-10-26 23:20:20                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-26 23:22:00                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-26 23:22:04                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-27 06:02:53                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-27 06:03:00                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-27 06:03:00                                  EventLog                        6005: The Event log service was started.  
                        2009-10-27 06:03:00                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-27 06:04:03                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-27 06:04:09                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-27 06:04:09                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-27 06:04:09                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-27 06:04:10                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-27 06:04:10                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-27 06:04:11                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-27 06:04:16  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 06:04:16  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 06:04:16  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 06:04:16  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 06:04:30                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-27 06:04:30                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-27 06:04:30                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-27 06:04:30                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-27 06:04:30                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-27 06:04:30                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-27 06:04:30                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-27 06:04:30                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-27 06:04:30                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-27 06:04:30                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-27 06:04:30                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-27 06:04:30  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-27 06:04:30  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-27 06:04:30  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-27 06:04:30  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-27 06:04:30  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-27 06:04:30  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-27 06:05:07                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 06:05:07  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-27 06:05:18                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -     Windows XP x64 Edition (KB968537) -     Windows XP x64 Edition (KB923561) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -     Windows XP x64 Edition (KB971633) -      Windows XP x64 Edition (KB944653) -     Windows XP   
                        2009-10-27 06:21:37                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 06:21:37                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 06:21:37                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 06:25:28                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 06:25:28  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 06:41:58                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 06:41:58                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 06:41:58                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 06:45:32                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 06:45:32  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 07:02:02                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 07:02:02                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 07:02:02                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 07:05:37                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 07:05:37  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 07:22:07                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 07:22:07                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 07:22:07                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 07:25:41                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 07:25:41  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 07:42:11                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 07:42:11                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 07:42:11                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 07:45:45                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 07:45:45  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 08:02:15                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 08:02:15                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 08:02:15                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 08:05:18                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 08:05:18  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 08:21:48                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 08:21:48                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 08:21:48                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 08:23:41                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-27 08:24:56                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-27 08:25:03                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-27 08:25:03                                  EventLog                        6005: The Event log service was started.  
                        2009-10-27 08:25:03                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-27 08:26:06                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-27 08:26:12                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-27 08:26:12                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-27 08:26:12                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-27 08:26:13                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-27 08:26:13                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-27 08:26:14                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-27 08:26:17  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 08:26:17  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 08:26:17  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 08:26:17  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 08:26:31                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-27 08:26:31                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-27 08:26:31                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-27 08:26:31                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-27 08:26:31                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-27 08:26:31                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-27 08:26:31                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-27 08:26:31                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-27 08:26:31                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-27 08:26:31                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-27 08:26:31                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-27 08:26:31  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-27 08:26:31  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-27 08:26:31  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-27 08:26:31  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-27 08:26:31  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-27 08:26:31  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-27 08:27:09                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 08:27:09  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 08:27:18                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                8          2009-10-27 08:27:20                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -     Windows XP x64 Edition (KB968537) -     Windows XP x64 Edition (KB923561) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -     Windows XP x64 Edition (KB971633) -      Windows XP x64 Edition (KB944653) -     Windows XP   
                8          2009-10-27 08:33:14                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -     Windows XP x64 Edition (KB968537) -     Windows XP x64 Edition (KB923561) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -     Windows XP x64 Edition (KB971633) -      Windows XP x64 Edition (KB944653) -     Windows XP   
                8          2009-10-27 08:36:14                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -     Windows XP x64 Edition (KB968537) -     Windows XP x64 Edition (KB923561) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -     Windows XP x64 Edition (KB971633) -      Windows XP x64 Edition (KB944653) -     Windows XP   
                        2009-10-27 08:43:39                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 08:43:39                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 08:43:39                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 08:51:40                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-27 08:51:48                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-27 08:51:48                                  EventLog                        6005: The Event log service was started.  
                        2009-10-27 08:51:48                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-10-27 08:51:49                                  Save Dump                       1001: The computer has rebooted from a bugcheck.  The bugcheck was:  0x00000024 (0x000000000019033d, 0xfffffadf90c32270, 0xfffffadf90c31c80, 0xfffffadf8ff53441).  A dump was saved in: C:\WINDOWS\Minidump\Mini102709-01.dmp.  
                          2009-10-27 08:52:51                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-27 08:52:57                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-27 08:52:57                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-27 08:52:57                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-27 08:52:58                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-27 08:52:58                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-27 08:52:58                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-27 08:53:03  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 08:53:03  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 08:53:03  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 08:53:03  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 08:53:14                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-27 08:53:14                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-27 08:53:14                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-27 08:53:14                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-27 08:53:14                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-27 08:53:14                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-27 08:53:14                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-27 08:53:14                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-27 08:53:14                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-27 08:53:14                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-27 08:53:14                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-27 08:53:14  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-27 08:53:14  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-27 08:53:14  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-27 08:53:14  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-27 08:53:14  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-27 08:53:14  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-27 08:53:54                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 08:53:54  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-27 08:54:05                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?27 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB958687) -      Windows XP x64 Edition (KB931261) -     Windows XP x64 Edition (KB971657) -      Windows XP x64 Edition (KB950974) -     Jscript 5.6  Windows XP x64 Edition (KB971961) -     Windows XP x64 Edition (KB960803) -   Windows XP x64 Edition (KB968389) -     Windows XP x64 Edition (KB968537) -     Windows XP x64 Edition (KB923561) -      Windows Media 6.4 (KB925398) -     Windows XP x64 Edition (KB974112) -     Windows XP x64 Edition (KB971633) -      Windows XP x64 Edition (KB944653) -     Windows XP   
                        2009-10-27 09:03:00                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                          2009-10-27 09:03:27                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-27 09:23:53                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 09:23:53                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 09:23:54                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 09:35:06                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-27 09:35:22  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:35:22                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB958687)  
                        2009-10-27 09:35:25  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:35:25                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB931261)  
                        2009-10-27 09:35:28  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:35:28                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB971657)  
                        2009-10-27 09:35:31  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:35:32                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB950974)  
                        2009-10-27 09:35:35  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:35:35                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Jscript 5.6 for Windows XP x64 Edition (KB971961)  
                        2009-10-27 09:35:37  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:35:37                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB960803)  
                        2009-10-27 09:35:43  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                        2009-10-27 09:35:47  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:35:48                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Update for Windows XP x64 Edition (KB968389)  
                        2009-10-27 09:35:51  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:35:52                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB968537)  
                        2009-10-27 09:35:57  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:35:57                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB923561)  
                        2009-10-27 09:36:12  SYSTEM                          WindowsMedia                    4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:36:12                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows Media Player 6.4 (KB925398)  
                        2009-10-27 09:36:15  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:36:15                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB974112)  
                        2009-10-27 09:36:19  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:36:19                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB971633)  
                        2009-10-27 09:36:22  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:36:23                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB944653)  
                        2009-10-27 09:36:31  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:36:31                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB958469)  
                        2009-10-27 09:36:35  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:36:35                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB959426)  
                        2009-10-27 09:36:38  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:36:39                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB960225)  
                        2009-10-27 09:36:42  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:36:43                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB958644)  
                        2009-10-27 09:36:46  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:36:46                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB971557)  
                        2009-10-27 09:36:49  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:36:50                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB952954)  
                        2009-10-27 09:36:54  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:36:54                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB955069)  
                        2009-10-27 09:36:58  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:36:58                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Outlook Express for Windows XP x64 Edition (KB951066)  
                        2009-10-27 09:37:01  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:37:02                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB930178)  
                        2009-10-27 09:37:05  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:37:06                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for 32-bit Windows Media Format Runtime 9.5 for Windows XP x64 Edition (KB968816)  
                        2009-10-27 09:37:09  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:37:09                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB957097)  
                        2009-10-27 09:37:12  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:37:13                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB951376)  
                        2009-10-27 09:37:15  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:37:16                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB950762)  
                        2009-10-27 09:37:19  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:37:19                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB961501)  
                        2009-10-27 09:37:23  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:37:23                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB960859)  
                        2009-10-27 09:37:28  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:37:28                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB952069)  
                        2009-10-27 09:37:31  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:37:32                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for 32-bit Windows Media Format Runtime 9.5 for Windows XP x64 Edition (KB954155)  
                        2009-10-27 09:37:35  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:37:35                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB946026)  
                        2009-10-27 09:37:43  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:37:43                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB971032)  
                        2009-10-27 09:37:47  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:37:47                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB973815)  
                        2009-10-27 09:37:52  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:37:52                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB973354)  
                        2009-10-27 09:37:56  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:37:56                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB932168)  
                        2009-10-27 09:37:58                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-10-27 09:37:58  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                8          2009-10-27 09:38:00                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Microsoft XML Core Services 4.0 Service Pack 2 for x64-based Systems (KB954430)  
                        2009-10-27 09:38:04  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:38:04                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Cumulative Security Update for ActiveX Killbits for Windows XP x64 Edition (KB973525)  
                        2009-10-27 09:38:09  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:38:10                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB945553)  
                        2009-10-27 09:38:13  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:38:13                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB956802)  
                        2009-10-27 09:38:18  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:38:18                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB970238)  
                        2009-10-27 09:38:21  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:38:22                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB974571)  
                        2009-10-27 09:38:25  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:38:26                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB956803)  
                        2009-10-27 09:38:29  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:38:29                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB956844)  
                        2009-10-27 09:38:34  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:38:34                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB969059)  
                        2009-10-27 09:38:37  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:38:38                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB975025)  
                8          2009-10-27 09:38:41                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Microsoft Corporation - Other Hardware - Microsoft UAA Bus Driver for High Definition Audio  
                        2009-10-27 09:38:46  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:38:47                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB943055)  
                        2009-10-27 09:38:51  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:38:51                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB961371)  
                        2009-10-27 09:38:55  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:38:55                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Update for Windows XP x64 Edition (KB936357)  
                        2009-10-27 09:38:58  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:38:59                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB946648)  
                        2009-10-27 09:39:02  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:39:02                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB924667)  
                        2009-10-27 09:39:06  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:39:06                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Update for Windows XP x64 Edition (KB970653)  
                        2009-10-27 09:39:09  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:39:09                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB958869)  
                8          2009-10-27 09:39:15                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Flash Player (KB923789)  
                        2009-10-27 09:39:19  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:39:20                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB938127)  
                        2009-10-27 09:39:24  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:39:24                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB973507)  
                        2009-10-27 09:39:28  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:39:28                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB973869)  
                        2009-10-27 09:39:32  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:39:33                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB944338)  
                        2009-10-27 09:39:36  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 09:39:36                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB941569)  
                        2009-10-27 09:39:42                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-27 13:08:04                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-27 13:08:17                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-27 13:08:17                                  EventLog                        6005: The Event log service was started.  
                        2009-10-27 13:08:17                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-27 13:09:20                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-27 13:09:26                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-27 13:09:26                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                            2009-10-27 13:09:27                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-27 13:09:27                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-27 13:09:27                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-27 13:09:29                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-27 13:09:33  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 13:09:33  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 13:09:33  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 13:09:33  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 13:09:55                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-27 13:09:55                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-27 13:09:55                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-27 13:09:55                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-27 13:09:55                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-27 13:09:55                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-27 13:09:55                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-27 13:09:55                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-27 13:09:55                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-27 13:09:55                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-27 13:09:55                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-27 13:09:55  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-27 13:09:55  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-27 13:09:55  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-27 13:09:55  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-27 13:09:55  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-27 13:09:55  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-27 13:10:24                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 13:10:24  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 13:26:54                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 13:26:54                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 13:26:54                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 13:31:02                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 13:31:02  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 13:47:32                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 13:47:32                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 13:47:32                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 13:51:06                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 13:51:06  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 14:10:36                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 14:10:36                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 14:10:36                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 14:11:10                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 14:11:10  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 14:27:40                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 14:27:40                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 14:27:40                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 14:31:14                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 14:31:14  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 14:47:44                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 14:47:44                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 14:47:44                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 14:51:19                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 14:51:19  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 15:07:48                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 15:07:48                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 15:07:49                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 15:10:51                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 15:10:51  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 18:54:49                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-27 18:54:57                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-27 18:54:57                                  EventLog                        6005: The Event log service was started.  
                        2009-10-27 18:54:57                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-27 18:55:57                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-27 18:56:04                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-27 18:56:04                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-27 18:56:04                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-27 18:56:05                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-27 18:56:05                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-27 18:56:06                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-27 18:56:11  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 18:56:11  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 18:56:11  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 18:56:11  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-27 18:56:27                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-27 18:56:27                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-27 18:56:27                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-27 18:56:27                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-27 18:56:27                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-27 18:56:27                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-27 18:56:27                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-27 18:56:27                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-27 18:56:27                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-27 18:56:27                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-27 18:56:27                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-27 18:56:27  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-27 18:56:27  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-27 18:56:27  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-27 18:56:27  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-27 18:56:27  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-27 18:56:27  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-27 18:57:01                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 18:57:01  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 19:13:31                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 19:13:31                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 19:13:31                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 19:17:26                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 19:17:26  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 19:33:56                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 19:33:56                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 19:33:56                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 19:37:30                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 19:37:30  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 19:54:00                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 19:54:00                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 19:54:00                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 19:57:34                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 19:57:34  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 20:14:04                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 20:14:04                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 20:14:04                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 20:17:38                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 20:17:38  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 20:34:08                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 20:34:08                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 20:34:08                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 20:36:24                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-27 20:37:19                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 20:37:19  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                          2009-10-27 20:37:39                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                8          2009-10-27 20:43:43                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?28 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB973540)  
                8          2009-10-27 20:48:46                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?28 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB973540) -    Windows XP x64 Edition (KB927891)  
                        2009-10-27 20:53:49                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 20:53:49                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 20:53:49                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                8          2009-10-27 20:54:30                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?28 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB973540) -    Windows XP x64 Edition (KB927891) -      Windows XP x64 Edition (KB951748)  
                8          2009-10-27 21:09:45                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?28 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB973540) -     Windows XP x64 Edition (KB971486) -    Windows XP x64 Edition (KB927891) -      Windows XP x64 Edition (KB951748)  
                8          2009-10-27 21:31:52                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?28 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB973540) -     Windows XP x64 Edition (KB971486) -    Windows XP x64 Edition (KB927891) -      Windows XP x64 Edition (KB951748) -     Windows XP x64 Edition (KB952004)  
                8          2009-10-27 21:36:45                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?28 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB973540) -     Windows XP x64 Edition (KB971486) -    Windows XP x64 Edition (KB927891) -      Windows XP x64 Edition (KB951748) -     Windows XP x64 Edition (KB952004) -      Outlook Express   Windows XP x64 Edition (KB929123)  
                8          2009-10-27 22:01:16                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?28 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB973540) -     Windows XP x64 Edition (KB971486) -    Windows XP x64 Edition (KB927891) -      Windows XP x64 Edition (KB951748) -      Windows XP x64 Edition (KB925902) -     Windows XP x64 Edition (KB952004) -      Outlook Express   Windows XP x64 Edition (KB929123)  
                        2009-10-27 22:12:13                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 22:12:13  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-27 22:19:21                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?28 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB973540) -     Windows XP x64 Edition (KB971486) -    Windows XP x64 Edition (KB927891) -       Internet Explorer 6   Windows XP x64 Edition (KB974455) -      Windows XP x64 Edition (KB951748) -      Windows XP x64 Edition (KB925902) -     Windows XP x64 Edition (KB952004) -      Outlook Express   Windows XP x64 Edition (KB929123)  
                        2009-10-27 22:28:43                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-27 22:28:43                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-27 22:28:43                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-27 23:04:59                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-27 23:05:14                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-27 23:05:14  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-27 23:05:28  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 23:05:35                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB973540)  
                        2009-10-27 23:05:40  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 23:05:43                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB971486)  
                        2009-10-27 23:05:48  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 23:05:55                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Update for Windows XP x64 Edition (KB927891)  
                        2009-10-27 23:06:13  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 23:06:20                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Cumulative Security Update for Internet Explorer 6 for Windows XP x64 Edition (KB974455)  
                        2009-10-27 23:06:26  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 23:06:33                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB951748)  
                        2009-10-27 23:06:38  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 23:06:45                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB925902)  
                        2009-10-27 23:06:52  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 23:06:59                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB952004)  
                        2009-10-27 23:07:04  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-27 23:07:07                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Cumulative Security Update for Outlook Express for Windows XP x64 Edition (KB929123)  
                        2009-10-27 23:07:12                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-28 15:17:05                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-28 15:17:14                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-28 15:17:14                                  EventLog                        6005: The Event log service was started.  
                        2009-10-28 15:17:14                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-28 15:18:15                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-28 15:18:21                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-28 15:18:21                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-28 15:18:22                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-28 15:18:23                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-28 15:18:23                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-28 15:18:24                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-28 15:18:30  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 15:18:30  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 15:18:30  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 15:18:30  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 15:18:46                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-28 15:18:46                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-28 15:18:46                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-28 15:18:46                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-28 15:18:46                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-28 15:18:46                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-28 15:18:46                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-28 15:18:46                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-28 15:18:46                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-28 15:18:46                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-28 15:18:46                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-28 15:18:46  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-28 15:18:46  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-28 15:18:46  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-28 15:18:46  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-28 15:18:46  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-28 15:18:46  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-28 15:19:20                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-28 15:19:20  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-28 15:19:25                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                8          2009-10-28 15:32:33                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?28 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-10-28 15:35:50                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-28 15:35:50                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-28 15:35:50                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                8          2009-10-28 15:45:46                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?28 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572) -      Windows XP x64 Edition (KB943460)  
                        2009-10-28 16:01:25                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-28 16:01:34                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-28 16:01:34                                  EventLog                        6005: The Event log service was started.  
                        2009-10-28 16:01:34                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-10-28 16:01:34                                  Save Dump                       1001: The computer has rebooted from a bugcheck.  The bugcheck was:  0x000000d1 (0x0000001388e53f00, 0x0000000000000002, 0x0000000000000001, 0xfffffadf8e0bc458).  A dump was saved in: C:\WINDOWS\Minidump\Mini102809-01.dmp.  
                          2009-10-28 16:02:38                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-28 16:02:44                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-28 16:02:44                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-28 16:02:44                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-28 16:02:45                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-28 16:02:45                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-28 16:02:46                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-28 16:02:50  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 16:02:50  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 16:02:50  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 16:02:50  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 16:03:05                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-28 16:03:05                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-28 16:03:05                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-28 16:03:05                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-28 16:03:05                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-28 16:03:05                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-28 16:03:05                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-28 16:03:05                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-28 16:03:05                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-28 16:03:05                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-28 16:03:05                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-28 16:03:05  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-28 16:03:05  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-28 16:03:05  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-28 16:03:05  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-28 16:03:05  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-28 16:03:05  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-28 16:03:29                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-28 16:03:29  Administrator                   Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-28 16:03:52                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?28 ? ?2009 ?. at 17:04:  -     Windows XP x64 Edition (KB956572) -      Windows XP x64 Edition (KB943460)  
                8          2009-10-28 16:04:52                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?29 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                8          2009-10-28 16:04:52                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?29 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572) -      Windows XP x64 Edition (KB943460)  
                        2009-10-28 16:19:59                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-28 16:19:59                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-28 16:19:59                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-28 18:04:43                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-28 18:04:43  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-28 18:08:30                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?29 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572) -      Windows XP x64 Edition (KB943460)  
                        2009-10-28 18:21:12                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-28 18:21:12                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-28 18:21:13                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-28 20:04:54                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-28 20:04:54  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-28 20:12:26                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-28 20:12:26  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-28 20:12:32                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-28 20:13:18                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-28 20:13:18  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-28 20:13:24                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                            2009-10-28 20:18:18                                  Service Control Manager         7009: Timeout (30000 milliseconds) waiting for the crd service to connect.  
                            2009-10-28 20:18:18                                  Service Control Manager         7000: The crd service failed to start due to the following error:   The service did not respond to the start or control request in a timely fashion.    
                        2009-10-28 20:21:24                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-28 20:21:24                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-28 20:21:24                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-28 20:34:10                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-28 20:34:10  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-28 20:34:16                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-28 20:35:14                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-28 20:35:14  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-28 20:35:20                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                            2009-10-28 20:44:27                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                        2009-10-28 21:01:30                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-28 21:01:30  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-28 21:01:36                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-28 21:01:52                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-28 21:01:52  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-28 21:01:58                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-28 21:06:14                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-28 21:07:47                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-28 21:07:54                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-28 21:07:54                                  EventLog                        6005: The Event log service was started.  
                        2009-10-28 21:07:54                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-28 21:08:56                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-28 21:09:02                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-28 21:09:02                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-28 21:09:02                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-28 21:09:04                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-28 21:09:04                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-28 21:09:04                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-28 21:09:09  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 21:09:09  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 21:09:09  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 21:09:09  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 21:09:25                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-28 21:09:25                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-28 21:09:25                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-28 21:09:25                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-28 21:09:25                                  Service Control Manager         7026: The following boot-start or system-start driver(s) failed to load:   VVBackd5  
                        2009-10-28 21:09:25                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-28 21:09:25                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-28 21:09:25                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-28 21:09:25                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-28 21:09:25                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-28 21:09:25                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-28 21:09:25                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-28 21:09:25  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-28 21:09:25  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-28 21:09:25  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-28 21:09:25  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-28 21:09:25  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-28 21:09:25  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-28 21:09:31                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: STORAGE\VOLUME\1&30A96598&0&SIGNATUREEB2DEB2DOFFSET7E00LENGTH4124D1E00     Vetoing device: STORAGE\Volume\1&30a96598&0&SignatureEB2DEB2DOffset7E00Length4124D1E00     Vetoing service name: FileSystem\Ntfs     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-10-28 21:09:42                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-28 21:09:59                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-28 21:09:59  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-28 21:10:03                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-28 21:10:05                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-28 21:11:59                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-28 21:12:07                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-28 21:12:07                                  EventLog                        6005: The Event log service was started.  
                        2009-10-28 21:12:07                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-28 21:13:06                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-28 21:13:13                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-28 21:13:13                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-28 21:13:13                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-28 21:13:14                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-28 21:13:14                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-28 21:13:15                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-28 21:13:18  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 21:13:18  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 21:13:18  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 21:13:18  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 21:13:34                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-28 21:13:34                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-28 21:13:34                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-28 21:13:34                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-28 21:13:34                                  Service Control Manager         7026: The following boot-start or system-start driver(s) failed to load:   VVBackd5  
                        2009-10-28 21:13:34                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-28 21:13:34                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-28 21:13:34                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-28 21:13:34                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-28 21:13:34                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-28 21:13:34                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-28 21:13:34                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-28 21:13:34  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-28 21:13:34  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-28 21:13:34  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-28 21:13:34  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-28 21:13:34  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-28 21:13:34  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-28 21:14:10                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-28 21:14:10  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-28 21:14:21                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?29 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572) -      Windows XP x64 Edition (KB943460)  
                        2009-10-28 21:17:31                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-28 21:17:31  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-28 21:17:37                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-28 21:18:55                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-28 21:18:57                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-28 21:18:57  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-28 21:19:04                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-28 21:21:09                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-10-28 21:21:09  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                            2009-10-28 21:21:16                                  Application Popup               1060: \??\C:\WINDOWS\SysWow64\drivers\SIODRV.SYS has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-28 21:21:16                                  Service Control Manager         7000: The SIODRV service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-28 21:21:43                                  Application Popup               1060: \??\C:\WINDOWS\SysWow64\drivers\SIODRV.SYS has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-28 21:21:43                                  Service Control Manager         7000: The SIODRV service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-28 21:31:47                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-10-28 21:35:10                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-28 21:35:10                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-28 21:35:10                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-28 21:45:37                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-28 21:45:45                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-28 21:45:45                                  EventLog                        6005: The Event log service was started.  
                        2009-10-28 21:45:45                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-10-28 21:45:46                                  Save Dump                       1001: The computer has rebooted from a bugcheck.  The bugcheck was:  0x0000000a (0xfffff800014141d1, 0x0000000000000002, 0x0000000000000000, 0xfffff8000104f236).  A dump was saved in: C:\WINDOWS\Minidump\Mini102809-02.dmp.  
                          2009-10-28 21:46:50                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-28 21:46:56                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-28 21:46:56                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-28 21:46:56                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-28 21:46:58                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-28 21:46:58                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-28 21:46:58                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-28 21:47:02  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 21:47:02  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 21:47:02  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 21:47:02  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-28 21:47:14                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-28 21:47:14                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-28 21:47:14                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-28 21:47:14                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-28 21:47:14                                  Service Control Manager         7026: The following boot-start or system-start driver(s) failed to load:   VVBackd5  
                        2009-10-28 21:47:14                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-28 21:47:14                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-28 21:47:14                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-28 21:47:14                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-28 21:47:14                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-28 21:47:14                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-28 21:47:14                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-28 21:47:14  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-28 21:47:14  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-28 21:47:14  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-28 21:47:14  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-28 21:47:14  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-28 21:47:15  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-28 21:47:51                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-28 21:47:52                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-28 21:47:52  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-28 21:47:56                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?29 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572) -      Windows XP x64 Edition (KB943460)  
                        2009-10-28 22:04:22                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-28 22:04:22                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-28 22:04:22                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-28 22:19:20                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-28 22:19:20  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-28 22:35:50                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-28 22:35:50                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-28 22:35:50                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-28 23:31:54                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-28 23:31:54  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-28 23:32:09                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-28 23:32:09  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-28 23:32:15                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-28 23:48:24                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-28 23:48:24                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-28 23:48:24                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-29 00:19:52                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                    8          2009-10-29 00:20:02                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                        2009-10-29 00:20:06                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-29 00:20:06  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-29 00:20:26  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-29 00:20:32                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Security Update for Windows XP x64 Edition (KB943460)  
                        2009-10-29 00:20:37                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-29 08:35:18                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-29 08:35:23                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-29 08:35:23                                  EventLog                        6005: The Event log service was started.  
                        2009-10-29 08:35:23                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-29 08:36:25                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-29 08:36:32                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-29 08:36:32                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-29 08:36:32                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-29 08:36:33                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-29 08:36:33                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-29 08:36:34                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-29 08:36:38  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-29 08:36:38  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-29 08:36:53                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-29 08:36:53                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-29 08:36:53                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-29 08:36:53                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-29 08:36:53                                  Service Control Manager         7026: The following boot-start or system-start driver(s) failed to load:   VVBackd5  
                        2009-10-29 08:36:53                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-29 08:36:53                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-29 08:36:53                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-29 08:36:53                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-29 08:36:53                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-29 08:36:53                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-29 08:36:53                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-29 08:36:53  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-29 08:36:53  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-29 08:36:53  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-29 08:36:53  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-29 08:36:53  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-29 08:36:53  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-29 08:37:28                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-29 08:37:28  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-29 08:38:07                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?29 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-10-29 08:38:56                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-29 08:55:28                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-29 08:55:28                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-29 08:55:28                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-29 09:16:06                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                    8          2009-10-29 09:16:18                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                        2009-10-29 09:16:23                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-29 11:34:33                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-29 11:34:36                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-29 11:34:36                                  EventLog                        6005: The Event log service was started.  
                        2009-10-29 11:34:37                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-29 11:35:41                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-29 11:35:47                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-29 11:35:47                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-29 11:35:48                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-29 11:35:49                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-29 11:35:49                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-29 11:35:50                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-29 11:35:53  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-29 11:35:53  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-29 11:36:10                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-29 11:36:10                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-29 11:36:10                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-29 11:36:10                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-29 11:36:10                                  Service Control Manager         7026: The following boot-start or system-start driver(s) failed to load:   VVBackd5  
                        2009-10-29 11:36:10                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-29 11:36:10                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-29 11:36:10                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-29 11:36:10                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-29 11:36:10                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-29 11:36:10                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-29 11:36:10                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-29 11:36:10  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-29 11:36:10  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-29 11:36:10  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-29 11:36:10  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-29 11:36:10  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-29 11:36:10  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-29 11:36:18                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-29 11:36:31                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-29 11:36:31  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-29 11:37:16                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?29 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-10-29 11:47:11                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                    8          2009-10-29 11:47:31                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                        2009-10-29 11:47:36                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-29 14:25:08                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-29 14:25:11                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-29 14:25:11                                  EventLog                        6005: The Event log service was started.  
                        2009-10-29 14:25:11                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-29 14:26:13                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-29 14:26:19                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-29 14:26:19                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-29 14:26:19                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-29 14:26:21                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-10-29 14:26:21  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-29 14:26:21  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-10-29 14:26:21                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-29 14:26:21                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-29 14:26:43                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-29 14:26:43                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-29 14:26:43                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-29 14:26:43                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-29 14:26:43                                  Service Control Manager         7026: The following boot-start or system-start driver(s) failed to load:   VVBackd5  
                        2009-10-29 14:26:43                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-29 14:26:43                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-29 14:26:43                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-29 14:26:43                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-29 14:26:43                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-29 14:26:43                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-29 14:26:43                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-29 14:26:43  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-29 14:26:43  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-29 14:26:43  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-29 14:26:43  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-29 14:26:43  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-29 14:26:43  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-29 14:27:14                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-29 14:27:14  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-29 14:28:14                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?29 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-10-29 14:30:33                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-29 14:34:56                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-29 14:34:59                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-29 14:34:59                                  EventLog                        6005: The Event log service was started.  
                        2009-10-29 14:34:59                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-29 14:36:01                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-29 14:36:07                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-29 14:36:07                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-29 14:36:07                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-29 14:36:08                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-29 14:36:08                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-29 14:36:09                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-29 14:36:14  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-29 14:36:14  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-29 14:36:28                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-29 14:36:28                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-29 14:36:28                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-29 14:36:28                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-29 14:36:28                                  Service Control Manager         7026: The following boot-start or system-start driver(s) failed to load:   VVBackd5  
                        2009-10-29 14:36:28                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-29 14:36:28                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-29 14:36:28                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-29 14:36:28                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-29 14:36:28                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-29 14:36:28                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-29 14:36:28                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-29 14:36:28  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-29 14:36:28  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-29 14:36:28  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-29 14:36:28  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-29 14:36:28  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-29 14:36:28  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-29 14:37:03                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-29 14:37:03  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-29 14:37:14                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?29 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-10-29 14:53:33                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-29 14:53:33                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-29 14:53:33                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-29 15:12:21                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-29 15:12:43                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-29 15:12:43  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                          2009-10-29 15:17:39                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-29 15:29:13                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-29 15:29:13                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-29 15:29:13                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                    8          2009-10-29 16:00:28                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                8          2009-10-29 16:00:33                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?30 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                8          2009-10-29 16:28:01                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?30 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572) -   Windows XP x64 Edition (KB967715)  
                8          2009-10-29 16:39:19                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?30 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572) -   Windows XP x64 Edition (KB967715)  
                        2009-10-29 19:10:00                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-29 19:28:14                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-29 19:28:14  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-29 19:32:59                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-29 19:33:02                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-29 19:33:02                                  EventLog                        6005: The Event log service was started.  
                        2009-10-29 19:33:03                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-10-29 19:33:04                                  Save Dump                       1001: The computer has rebooted from a bugcheck.  The bugcheck was:  0x00000024 (0x000000000019033d, 0xfffffadf8ae77d00, 0xfffffadf8ae77710, 0xfffff8000080d543).  A dump was saved in: C:\WINDOWS\Minidump\Mini102909-01.dmp.  
                          2009-10-29 19:34:06                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-29 19:34:12                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-29 19:34:12                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-29 19:34:12                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-29 19:34:13                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-29 19:34:13                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-29 19:34:14                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-29 19:34:20  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-29 19:34:20  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-29 19:34:34                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-29 19:34:34                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-29 19:34:34                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-29 19:34:34                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-29 19:34:34                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-29 19:34:34                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-29 19:34:34                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-29 19:34:34                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-29 19:34:34                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-29 19:34:34                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-29 19:34:34                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-29 19:34:34  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-29 19:34:34  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-29 19:34:34  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-29 19:34:34  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-29 19:34:34  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-29 19:34:34  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                8          2009-10-29 19:35:13                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?30 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572) -   Windows XP x64 Edition (KB967715)  
                        2009-10-29 20:02:27                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: STORAGE\REMOVABLEMEDIA\7&124C1FCC&0&RM     Vetoing device: STORAGE\RemovableMedia\7&124c1fcc&0&RM     Vetoing service name: FileSystem\Fastfat     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-10-29 21:00:16                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-29 21:00:16  Administrator                   Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-29 21:16:46                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-29 21:16:46                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-29 21:16:46                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-29 22:24:33                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-29 22:24:33  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-29 22:24:39                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                            2009-10-29 22:25:06                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-10-29 22:25:08                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-10-29 22:25:17                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-10-29 22:25:41                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                    8          2009-10-29 22:57:38                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                        2009-10-29 22:58:02  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                8          2009-10-29 22:58:03                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Update for Windows XP x64 Edition (KB967715)  
                        2009-10-29 22:58:09                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-30 07:59:42                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-30 07:59:46                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-30 07:59:46                                  EventLog                        6005: The Event log service was started.  
                        2009-10-30 07:59:46                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-30 08:00:49                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-30 08:00:55                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-30 08:00:55                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-30 08:00:55                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-30 08:00:56                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-30 08:00:56                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-30 08:00:57                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-30 08:01:02  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-30 08:01:02  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-30 08:01:02  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-30 08:01:02  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-30 08:01:16                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-30 08:01:16                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-30 08:01:16                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-30 08:01:16                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-30 08:01:16                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-30 08:01:16                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-30 08:01:16                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-30 08:01:16                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-30 08:01:16                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-30 08:01:16                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-30 08:01:16                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-30 08:01:16  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-30 08:01:16  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-30 08:01:16  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-30 08:01:16  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-30 08:01:16  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-30 08:01:16  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-30 08:01:55                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-30 08:01:55  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-30 08:02:39                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?30 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-10-30 08:18:25                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-30 08:18:25                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-30 08:18:25                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-30 11:00:00                                  EventLog                        6013: The system uptime is 10846 seconds.  
                        2009-10-30 13:02:40                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-30 13:02:40  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                    8          2009-10-30 13:15:11                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                        2009-10-30 13:15:17                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-30 14:58:16                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-30 14:58:20                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-30 14:58:20                                  EventLog                        6005: The Event log service was started.  
                        2009-10-30 14:58:20                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-30 14:59:22                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-30 14:59:28                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-30 14:59:28                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-30 14:59:28                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-30 14:59:29                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-30 14:59:29                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-30 14:59:30                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-30 14:59:35  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-30 14:59:35  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-30 14:59:35  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-30 14:59:35  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-30 14:59:49                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-30 14:59:49                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-30 14:59:49                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-30 14:59:49                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-30 14:59:49                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-30 14:59:49                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-30 14:59:49                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-30 14:59:49                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-30 14:59:49                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-30 14:59:49                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-30 14:59:49                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-30 14:59:49  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-30 14:59:49  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-30 14:59:49  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-30 14:59:49  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-30 14:59:49  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-30 14:59:49  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-30 15:00:29                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-30 15:00:29  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-30 15:00:51                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?30 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-10-30 15:16:58                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-30 15:16:58                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-30 15:16:59                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-30 16:00:19                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-30 16:00:19  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                    8          2009-10-30 16:00:33                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                8          2009-10-30 16:00:38                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?31 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-10-30 16:16:49                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-30 16:16:49                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-30 16:16:49                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-30 16:33:26                                  Tcpip                           4202: The system detected that network adapter \DEVICE\TCPIP_{FE59D339-B258-47DB-B507-C94F333856C7} was disconnected from the network,  and the adapter's network configuration has been released. If the network  adapter was not disconnected, this may indicate that it has malfunctioned.  Please contact your vendor for updated drivers.  
                        2009-10-30 16:33:26                                  BROWSER                         8033: The browser has forced an election on network \Device\NetBT_Tcpip_{FE59D339-B258-47DB-B507-C94F333856C7} because a master browser was stopped.  
                        2009-10-30 16:33:41                                  Tcpip                           4201: The system detected that network adapter \DEVICE\TCPIP_{FE59D339-B258-47DB-B507-C94F333856C7} was connected to the network,  and has initiated normal operation over the network adapter.  
                          2009-10-30 16:34:45                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                        2009-10-30 16:55:09                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-30 16:55:34                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-30 16:55:34  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-30 17:12:04                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-30 17:12:04                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-30 17:12:04                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-30 18:03:07                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-30 18:03:07  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-30 18:19:37                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-30 18:19:37                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-30 18:19:37                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-30 20:02:04                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-30 20:02:07                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-30 20:02:07                                  EventLog                        6005: The Event log service was started.  
                        2009-10-30 20:02:07                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-10-30 20:02:08                                  Save Dump                       1001: The computer has rebooted from a bugcheck.  The bugcheck was:  0x0000003b (0x00000000c0000005, 0xfffff97fff087440, 0xfffffadf8bab6a70, 0x0000000000000000).  A dump was saved in: C:\WINDOWS\Minidump\Mini103009-01.dmp.  
                          2009-10-30 20:03:11                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-30 20:03:17                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-30 20:03:17                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-30 20:03:17                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-30 20:03:18                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-30 20:03:18                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-30 20:03:19                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-30 20:03:23  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-30 20:03:23  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-30 20:03:23  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-30 20:03:23  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-30 20:03:34                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-30 20:03:34                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-30 20:03:34                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-30 20:03:34                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-30 20:03:34                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-30 20:03:34                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-30 20:03:34                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-30 20:03:34                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-30 20:03:34                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-30 20:03:34                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-30 20:03:34                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-30 20:03:34  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-30 20:03:34  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-30 20:03:34  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-30 20:03:34  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-30 20:03:34  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-30 20:03:34  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                8          2009-10-30 20:04:16                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?31 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-10-30 20:07:50                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-30 20:08:24                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-30 20:08:24  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                          2009-10-30 20:13:50                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-30 20:24:54                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-30 20:24:54                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-30 20:24:55                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-30 23:54:51                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                    8          2009-10-30 23:55:00                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                        2009-10-30 23:55:05                                  EventLog                        6006: The Event log service was stopped.  
                        2009-10-31 00:18:08                                  W32Time                         35: The time service is now synchronizing the system time with the time  source time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                          2009-10-31 00:18:08                                  W32Time                         52: The time service has set the time with offset -43193 seconds.  
                        2009-10-31 00:44:06                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-31 00:44:10                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-31 00:44:10                                  EventLog                        6005: The Event log service was started.  
                        2009-10-31 00:44:10                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-31 00:45:13                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-31 00:45:20                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 00:45:20                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-31 00:45:21                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-31 00:45:24                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 00:45:24                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-31 00:45:26                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-31 00:45:30  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 00:45:30  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 00:45:30  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 00:45:30  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 00:45:41                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-31 00:45:41                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-31 00:45:41                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-31 00:45:41                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-31 00:45:41                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-31 00:45:41                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-31 00:45:41                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-31 00:45:41                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-31 00:45:41                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-31 00:45:41                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-31 00:45:41                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-31 00:45:41  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-31 00:45:41  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-31 00:45:41  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-31 00:45:41  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-31 00:45:41  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-31 00:45:41  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-31 00:46:14                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                8          2009-10-31 00:46:22                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?31 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-10-31 01:18:43                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-31 01:18:43  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-31 01:21:41                                  W32Time                         37: The time provider NtpClient is currently receiving valid time data from time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                        2009-10-31 01:21:41                                  W32Time                         35: The time service is now synchronizing the system time with the time  source time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                        2009-10-31 01:35:12                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-31 01:35:12                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-31 01:35:13                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                          2009-10-31 02:30:31                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-31 03:13:19                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-10-31 03:13:19  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-10-31 03:26:51                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                          2009-10-31 03:28:28                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-10-31 03:35:42                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-10-31 03:35:42  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-10-31 03:49:47                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-10-31 05:09:53                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-10-31 05:09:53  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-10-31 05:20:00                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-10-31 05:36:50                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-31 05:36:56                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-31 05:36:56                                  EventLog                        6005: The Event log service was started.  
                        2009-10-31 05:36:56                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-31 05:37:56                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-31 05:38:02                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 05:38:02                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-31 05:38:02                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-31 05:38:03                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 05:38:03                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-31 05:38:04                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-31 05:38:08                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-31 05:38:08  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 05:38:08  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 05:38:08  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 05:38:08  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 05:38:23                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-31 05:38:23                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-31 05:38:23                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-31 05:38:23                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-31 05:38:23                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-31 05:38:23                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-31 05:38:23                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-31 05:38:23                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-31 05:38:23                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-31 05:38:23                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-31 05:38:23                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-31 05:38:23  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-31 05:38:23  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-31 05:38:23  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-31 05:38:23  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-31 05:38:23  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-31 05:38:23  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                8          2009-10-31 05:39:01                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?31 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                            2009-10-31 05:53:08                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 30  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-31 06:23:08                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 60  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                        2009-10-31 06:38:50                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-31 06:38:54                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-31 06:38:54                                  EventLog                        6005: The Event log service was started.  
                        2009-10-31 06:38:54                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-10-31 06:38:55                                  Save Dump                       1001: The computer has rebooted from a bugcheck.  The bugcheck was:  0x000000d1 (0x000000002445bc00, 0x0000000000000002, 0x0000000000000001, 0xfffffadf8fea35c4).  A dump was saved in: C:\WINDOWS\Minidump\Mini103109-01.dmp.  
                          2009-10-31 06:39:55                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-31 06:40:01                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 06:40:01                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-31 06:40:02                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-31 06:40:03                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 06:40:03                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-31 06:40:03                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-31 06:40:07                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-31 06:40:08  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 06:40:08  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 06:40:08  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 06:40:08  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 06:40:18                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-31 06:40:18                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-31 06:40:18                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-31 06:40:18                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-31 06:40:18                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-31 06:40:18                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-31 06:40:18                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-31 06:40:18                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-31 06:40:18                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-31 06:40:18                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-31 06:40:18                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-31 06:40:18  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-31 06:40:18  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-31 06:40:18  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-31 06:40:18  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-31 06:40:18  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-31 06:40:18  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                8          2009-10-31 06:41:01                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?31 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                            2009-10-31 06:55:07                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 30  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-31 07:25:07                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 60  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-31 08:25:07                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 120  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-31 10:25:08                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 240  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-31 10:47:51                                  W32Time                         29: The time provider NtpClient is configured to acquire time from one or more  time sources, however none of the sources are currently accessible.   No attempt to contact a source will be made for 1 minutes.  NtpClient has no source of accurate time.   
                        2009-10-31 10:47:51                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                            2009-10-31 10:48:02                                  W32Time                         29: The time provider NtpClient is configured to acquire time from one or more  time sources, however none of the sources are currently accessible.   No attempt to contact a source will be made for 1 minutes.  NtpClient has no source of accurate time.   
                        2009-10-31 10:48:02                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-31 10:48:10                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                            2009-10-31 10:50:05                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-31 10:50:05                                  W32Time                         29: The time provider NtpClient is configured to acquire time from one or more  time sources, however none of the sources are currently accessible.   No attempt to contact a source will be made for 15 minutes.  NtpClient has no source of accurate time.   
                        2009-10-31 10:50:05                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-10-31 11:00:00                                  EventLog                        6013: The system uptime is 15699 seconds.  
                        2009-10-31 11:02:38                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-31 11:02:41                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-31 11:02:41                                  EventLog                        6005: The Event log service was started.  
                        2009-10-31 11:02:41                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-31 11:03:42                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-31 11:03:48                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 11:03:48                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-31 11:03:48                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-31 11:03:49                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 11:03:49                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-31 11:03:50                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-31 11:03:53  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 11:03:54                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-31 11:03:54  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 11:03:54  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 11:03:54  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 11:04:08                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-31 11:04:08                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-31 11:04:08                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-31 11:04:08                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-31 11:04:08                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-31 11:04:08                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-31 11:04:08                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-31 11:04:08                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-31 11:04:08                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-31 11:04:08                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-31 11:04:08                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-31 11:04:08  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-31 11:04:08  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-31 11:04:08  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-31 11:04:08  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-31 11:04:08  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-31 11:04:08  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-31 11:04:20                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-31 11:04:20  Administrator                   Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                            2009-10-31 11:05:05                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 30  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                8          2009-10-31 11:05:13                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?31 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                            2009-10-31 11:18:54                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 30  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                        2009-10-31 11:22:20                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-31 11:22:20                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-31 11:22:20                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-31 11:32:26                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-31 11:32:30                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-31 11:32:30                                  EventLog                        6005: The Event log service was started.  
                        2009-10-31 11:32:30                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-31 11:33:34                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-31 11:33:40                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 11:33:40                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-31 11:33:40                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-31 11:33:41                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 11:33:41                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-31 11:33:42                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-31 11:33:46                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-31 11:33:47  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 11:33:47  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 11:33:47  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 11:33:47  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 11:33:59                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-31 11:33:59                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-31 11:33:59                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-31 11:33:59                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-31 11:33:59                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-31 11:33:59                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-31 11:33:59                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-31 11:33:59                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-31 11:33:59                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-31 11:33:59                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-31 11:33:59                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-31 11:33:59  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-31 11:33:59  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-31 11:33:59  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-31 11:33:59  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-31 11:33:59  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-31 11:33:59  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                            2009-10-31 11:34:08                                  W32Time                         29: The time provider NtpClient is configured to acquire time from one or more  time sources, however none of the sources are currently accessible.   No attempt to contact a source will be made for 1 minutes.  NtpClient has no source of accurate time.   
                        2009-10-31 11:34:08                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                8          2009-10-31 11:34:40                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?31 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                            2009-10-31 11:34:49                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-31 11:34:49                                  W32Time                         29: The time provider NtpClient is configured to acquire time from one or more  time sources, however none of the sources are currently accessible.   No attempt to contact a source will be made for 15 minutes.  NtpClient has no source of accurate time.   
                        2009-10-31 11:34:49                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                            2009-10-31 11:34:57                                  W32Time                         29: The time provider NtpClient is configured to acquire time from one or more  time sources, however none of the sources are currently accessible.   No attempt to contact a source will be made for 1 minutes.  NtpClient has no source of accurate time.   
                        2009-10-31 11:34:57                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                            2009-10-31 11:48:54                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 60  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                        2009-10-31 12:06:48                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-31 12:06:48  Administrator                   Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-31 12:07:53                                  Application Popup               26: Application popup: RE5DX9.exe - Fatal Application Exit : inflate: incorrect data check : -3    
                            2009-10-31 12:18:00                                  W32Time                         29: The time provider NtpClient is configured to acquire time from one or more  time sources, however none of the sources are currently accessible.   No attempt to contact a source will be made for 1 minutes.  NtpClient has no source of accurate time.   
                        2009-10-31 12:18:00                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-31 12:18:02                                  W32Time                         37: The time provider NtpClient is currently receiving valid time data from time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                        2009-10-31 21:47:28                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-31 21:47:32                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-31 21:47:32                                  EventLog                        6005: The Event log service was started.  
                        2009-10-31 21:47:32                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-31 21:48:35                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-31 21:48:41                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 21:48:41                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                            2009-10-31 21:48:42                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 21:48:42                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-31 21:48:42                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-31 21:48:43                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-31 21:48:48                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-31 21:48:48  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 21:48:48  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 21:48:48  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 21:48:48  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 21:49:00                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-31 21:49:00                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-31 21:49:00                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-31 21:49:00                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-31 21:49:00                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-31 21:49:00                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-31 21:49:00                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-31 21:49:00                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-31 21:49:00                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-31 21:49:00                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-31 21:49:00                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-31 21:49:00  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-31 21:49:00  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-31 21:49:00  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-31 21:49:00  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-31 21:49:00  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-31 21:49:00  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-10-31 21:49:36                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-31 21:49:36  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-10-31 21:50:03                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?31 ? ?2009 ?. at 22:49:  -     Windows XP x64 Edition (KB956572)  
                    8          2009-10-31 21:50:14                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                8          2009-10-31 21:50:35                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?1 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                            2009-10-31 21:55:35                                  W32Time                         29: The time provider NtpClient is configured to acquire time from one or more  time sources, however none of the sources are currently accessible.   No attempt to contact a source will be made for 1 minutes.  NtpClient has no source of accurate time.   
                        2009-10-31 21:55:35                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-31 21:55:37                                  W32Time                         37: The time provider NtpClient is currently receiving valid time data from time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                        2009-10-31 21:55:37                                  W32Time                         35: The time service is now synchronizing the system time with the time  source time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                        2009-10-31 22:12:06                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-31 22:12:06                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-31 22:12:06                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-31 22:26:48                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-31 22:26:52                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-31 22:26:52                                  EventLog                        6005: The Event log service was started.  
                        2009-10-31 22:26:53                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-31 22:27:56                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-31 22:28:02                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 22:28:02                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                            2009-10-31 22:28:03                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 22:28:03                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-10-31 22:28:03                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-31 22:28:04                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-31 22:28:08                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-31 22:28:09  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 22:28:09  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 22:28:09  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 22:28:09  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 22:28:21                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-31 22:28:21                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-31 22:28:21                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-31 22:28:21                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-31 22:28:21                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-31 22:28:21                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-31 22:28:21                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-31 22:28:21                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-31 22:28:21                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-31 22:28:21                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-31 22:28:21                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-31 22:28:21  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-31 22:28:21  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-31 22:28:21  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-31 22:28:21  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-31 22:28:21  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-31 22:28:21  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                8          2009-10-31 22:29:01                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?1 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                            2009-10-31 22:33:46                                  W32Time                         29: The time provider NtpClient is configured to acquire time from one or more  time sources, however none of the sources are currently accessible.   No attempt to contact a source will be made for 1 minutes.  NtpClient has no source of accurate time.   
                        2009-10-31 22:33:46                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-31 22:33:48                                  W32Time                         37: The time provider NtpClient is currently receiving valid time data from time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                        2009-10-31 22:33:48                                  W32Time                         35: The time service is now synchronizing the system time with the time  source time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                        2009-10-31 22:39:37                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-10-31 22:39:37  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-10-31 22:49:18                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-31 22:49:18  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-31 22:50:15                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-10-31 22:54:11                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-31 22:54:15                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-31 22:54:15                                  EventLog                        6005: The Event log service was started.  
                        2009-10-31 22:54:15                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-31 22:55:20                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-31 22:55:26                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 22:55:26                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-31 22:55:26                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-31 22:55:27                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 22:55:27                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-31 22:55:28                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-31 22:55:33                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-31 22:55:33  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 22:55:33  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 22:55:33  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 22:55:33  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 22:55:44                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-31 22:55:44                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-31 22:55:44                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-31 22:55:44                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-31 22:55:44                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-31 22:55:44                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-31 22:55:44                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-31 22:55:44                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-31 22:55:44                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-31 22:55:44                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-31 22:55:44                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-31 22:55:44  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-31 22:55:44  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-31 22:55:44  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-31 22:55:44  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-31 22:55:44  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-31 22:55:44  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                8          2009-10-31 22:56:25                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?1 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                            2009-10-31 22:56:26                                  W32Time                         29: The time provider NtpClient is configured to acquire time from one or more  time sources, however none of the sources are currently accessible.   No attempt to contact a source will be made for 1 minutes.  NtpClient has no source of accurate time.   
                        2009-10-31 22:56:26                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-31 22:56:28                                  W32Time                         37: The time provider NtpClient is currently receiving valid time data from time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                        2009-10-31 22:56:28                                  W32Time                         35: The time service is now synchronizing the system time with the time  source time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                        2009-10-31 22:56:44                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-31 22:56:44  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-10-31 23:13:14                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-10-31 23:13:14                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-10-31 23:13:14                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-10-31 23:19:25                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-10-31 23:19:29                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-10-31 23:19:29                                  EventLog                        6005: The Event log service was started.  
                        2009-10-31 23:19:29                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-10-31 23:20:30                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-10-31 23:20:36                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 23:20:36                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-10-31 23:20:36                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-10-31 23:20:37                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-10-31 23:20:37                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-10-31 23:20:38                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-10-31 23:20:41  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 23:20:41  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 23:20:41  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 23:20:41  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-10-31 23:20:42                                  W32Time                         17: Time Provider NtpClient: An error occurred during DNS lookup of the manually  configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15  minutes.  The error was: A socket operation was attempted to an unreachable host. (0x80072751)  
                            2009-10-31 23:20:55                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-10-31 23:20:55                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-10-31 23:20:55                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-10-31 23:20:55                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-10-31 23:20:55                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-10-31 23:20:55                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-10-31 23:20:55                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-10-31 23:20:55                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-10-31 23:20:55                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-10-31 23:20:55                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-10-31 23:20:55                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-10-31 23:20:55  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-10-31 23:20:55  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-10-31 23:20:55  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-10-31 23:20:55  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-10-31 23:20:55  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-10-31 23:20:55  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                            2009-10-31 23:21:04                                  W32Time                         29: The time provider NtpClient is configured to acquire time from one or more  time sources, however none of the sources are currently accessible.   No attempt to contact a source will be made for 1 minutes.  NtpClient has no source of accurate time.   
                        2009-10-31 23:21:04                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-10-31 23:21:06                                  W32Time                         37: The time provider NtpClient is currently receiving valid time data from time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                        2009-10-31 23:21:14                                  W32Time                         35: The time service is now synchronizing the system time with the time  source time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                8          2009-10-31 23:21:35                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?1 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-10-31 23:49:55                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-10-31 23:49:55  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-01 00:06:25                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-01 00:06:25                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-01 00:06:25                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-01 00:10:16                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-01 00:10:16  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-01 00:10:23                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-01 00:10:33                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-01 00:10:33  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-01 00:10:40                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-01 00:26:55                                  Service Control Manager         7036: The NVIDIA Display Driver Service service entered the stopped state.  
                        2009-11-01 00:26:55  Administrator                   Service Control Manager         7035: The NVIDIA Display Driver Service service was successfully sent a stop control.  
                        2009-11-01 00:27:18  Administrator                   Service Control Manager         7040: The start type of the nv service was changed from demand start to system start.  
                        2009-11-01 00:27:19                                  PlugPlayManager                 271: The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below.       Vetoed device: PCI\VEN_10DE&DEV_05E2&SUBSYS_00000000&REV_A1\4&399D3C6A&0&0008     Vetoing device: PCI\VEN_10DE&DEV_05E2&SUBSYS_00000000&REV_A1\4&399d3c6a&0&0008     Vetoing service name: Driver\nv     Veto type 6: PNP_VetoDevice       When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation.      User Action    Restart your computer.  
                        2009-11-01 00:27:19  Administrator                   Service Control Manager         7040: The start type of the nv service was changed from system start to demand start.  
                        2009-11-01 00:27:44                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-11-01 00:27:44  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-11-01 00:28:08                                  Service Control Manager         7036: The NVIDIA Display Driver Service service entered the running state.  
                        2009-11-01 00:28:08  Administrator                   Service Control Manager         7035: The NVIDIA Display Driver Service service was successfully sent a start control.  
                        2009-11-01 00:28:58                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-11-01 00:29:06                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-11-01 00:29:08                                  EventLog                        6006: The Event log service was stopped.  
                        2009-11-01 00:29:50                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-01 00:29:57                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-01 00:29:57                                  EventLog                        6005: The Event log service was started.  
                        2009-11-01 00:29:57                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-01 00:31:00                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-01 00:31:07                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-01 00:31:07                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-01 00:31:07                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-01 00:31:08                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-01 00:31:08                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-01 00:31:08                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-01 00:31:09  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-01 00:31:09  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-01 00:31:27                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-01 00:31:27                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-01 00:31:27                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-01 00:31:27                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-01 00:31:27                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-01 00:31:27                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-01 00:31:27                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-01 00:31:27                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-01 00:31:27                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-01 00:31:27                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-01 00:31:27                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-01 00:31:27  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-01 00:31:27  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-01 00:31:27  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-01 00:31:27  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-01 00:31:27  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-01 00:31:27  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                8          2009-11-01 00:32:05                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?1 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-01 00:33:27                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-11-01 00:33:34                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-01 00:33:34  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-01 00:50:04                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-01 00:50:04                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-01 00:50:04                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-01 01:10:01                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-11-01 01:10:02                                  EventLog                        6006: The Event log service was stopped.  
                        2009-11-01 01:10:47                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-01 01:10:52                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-01 01:10:52                                  EventLog                        6005: The Event log service was started.  
                        2009-11-01 01:10:52                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-11-01 01:11:36                                  Application Popup               26: Application popup: AssassinsCreed_Dx10.exe - Unable To Locate Component : This application has failed to start because GrooveUtil.DLL was not found. Re-installing the application may fix this problem.   
                          2009-11-01 01:11:55                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-01 01:12:02                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-01 01:12:02                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-01 01:12:02                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-01 01:12:03                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-01 01:12:03                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-01 01:12:03                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-01 01:12:04  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-01 01:12:04  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-01 01:12:34                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-01 01:12:34                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-01 01:12:34                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-01 01:12:34                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-01 01:12:34                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-01 01:12:34                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-01 01:12:34                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-01 01:12:34                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-01 01:12:34                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-01 01:12:34                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-01 01:12:34                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-01 01:12:34  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-01 01:12:34  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-01 01:12:34  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-01 01:12:34  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-01 01:12:34  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-01 01:12:34  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                8          2009-11-01 01:13:00                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?1 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-01 01:17:14                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-11-01 01:51:16                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-01 01:51:16  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-01 01:52:27                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-11-01 01:59:21                                  Service Control Manager         7036: The Network Connections service entered the running state.  
                        2009-11-01 01:59:21                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-01 01:59:21                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-01 01:59:21  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-01 01:59:21  SYSTEM                          Service Control Manager         7035: The Network Connections service was successfully sent a start control.  
                        2009-11-01 02:01:08                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the stopped state.  
                        2009-11-01 02:01:08                                  EventLog                        6006: The Event log service was stopped.  
                        2009-11-01 02:13:07                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-01 02:13:11                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-01 02:13:11                                  EventLog                        6005: The Event log service was started.  
                        2009-11-01 02:13:11                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-01 02:14:14                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-01 02:14:20                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-01 02:14:20                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                            2009-11-01 02:14:21                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-01 02:14:21                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-11-01 02:14:21                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-01 02:14:22                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-01 02:14:26  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-01 02:14:26  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-01 02:14:38                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-01 02:14:38                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-01 02:14:38                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-01 02:14:38                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-01 02:14:38                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-01 02:14:38                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-01 02:14:38                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-01 02:14:38                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-01 02:14:38                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-01 02:14:38                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-01 02:14:38                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-01 02:14:38  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-01 02:14:38  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-01 02:14:38  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-01 02:14:38  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-01 02:14:38  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-01 02:14:38  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-01 02:14:52                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-11-01 02:15:17                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-01 02:15:17  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-11-01 02:15:34                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?1 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-01 02:19:12                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                    8          2009-11-01 02:19:24                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                        2009-11-01 02:19:29                                  EventLog                        6006: The Event log service was stopped.  
                        2009-11-01 02:38:42                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-01 02:38:46                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-01 02:38:46                                  EventLog                        6005: The Event log service was started.  
                        2009-11-01 02:38:46                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-01 02:39:49                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-01 02:39:55                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-01 02:39:55                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-01 02:39:56                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-01 02:39:57                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-01 02:39:57                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-01 02:39:57                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-01 02:40:02  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-01 02:40:02  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-01 02:40:15                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-01 02:40:15                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-01 02:40:15                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-01 02:40:15                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-01 02:40:15                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-01 02:40:15                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-01 02:40:15                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-01 02:40:15                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-01 02:40:15                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-01 02:40:15                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-01 02:40:15                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-01 02:40:15  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-01 02:40:15  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-01 02:40:15  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-01 02:40:15  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-01 02:40:15  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-01 02:40:15  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-01 02:41:05                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-01 02:41:05  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-11-01 02:41:30                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?1 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-01 03:06:35                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-01 03:06:35                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-01 03:06:35                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-01 03:11:53                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-01 03:11:57                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-01 03:11:57                                  EventLog                        6005: The Event log service was started.  
                        2009-11-01 03:11:57                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-01 03:12:57                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-01 03:13:03                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-01 03:13:03                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-01 03:13:03                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-01 03:13:04                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-01 03:13:04                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-01 03:13:05                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-01 03:13:10  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-01 03:13:10  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-01 03:13:21                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-01 03:13:21                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-01 03:13:21                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-01 03:13:21                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-01 03:13:21                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-01 03:13:21                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-01 03:13:21                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-01 03:13:21                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-01 03:13:21                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-01 03:13:21                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-01 03:13:21  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-01 03:13:21  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-01 03:13:21  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-01 03:13:21  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-01 03:13:21  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-01 03:13:21  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-01 03:13:22                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-01 03:13:34                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                8          2009-11-01 03:14:02                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?1 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-01 03:30:57                                  Application Popup               26: Application popup: AssassinsCreed_Dx10.exe - Unable To Locate Component : This application has failed to start because GrooveUtil.DLL was not found. Re-installing the application may fix this problem.   
                        2009-11-01 03:52:20                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-01 03:52:20  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-01 04:08:49                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-01 04:08:49                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-01 04:08:50                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-01 07:04:50                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-01 07:04:54                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-01 07:04:54                                  EventLog                        6005: The Event log service was started.  
                        2009-11-01 07:04:54                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-01 07:05:55                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-01 07:06:01                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-01 07:06:01                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-01 07:06:01                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-01 07:06:02                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-01 07:06:02                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-01 07:06:03                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-01 07:06:07  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-01 07:06:07  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-01 07:06:19                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-01 07:06:19                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-01 07:06:19                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-01 07:06:19                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-01 07:06:19                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-01 07:06:19                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-01 07:06:19                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-01 07:06:19                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-01 07:06:19  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-01 07:06:19  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-01 07:06:19  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-01 07:06:20  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-01 07:06:21                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-01 07:06:21  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-01 07:06:22                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-01 07:06:26                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-01 07:06:42                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-11-01 07:06:56                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-01 07:06:56  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-11-01 07:07:19                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?1 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                    8          2009-11-01 07:08:30                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                8          2009-11-01 07:09:25                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Windows Malicious Software Removal Tool x64 - October 2009 (KB890830)  
                        2009-11-01 07:23:26                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-01 07:23:26                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-01 07:23:26                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                8          2009-11-01 07:58:58                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?1 ? ?2009 ?. at 17:00:  -        Internet Explorer 8  Windows XP x64 Edition (KB974455)  
                    8          2009-11-01 08:01:58                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x80070643: Internet Explorer 8 for Windows XP x64 Edition.  
                8          2009-11-01 08:01:58                                  Windows Update Agent            21: Restart Required: To complete the installation of the following updates, the computer must be restarted. Until this computer has been restarted, Windows cannot search for or download new updates:  -     Windows XP x64 Edition (KB956572) -      Windows x64,  2009 . (KB890830) -  Internet Explorer 8  Windows XP x64 Edition  
                        2009-11-01 10:10:41                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-01 10:10:45                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-01 10:10:45                                  EventLog                        6005: The Event log service was started.  
                        2009-11-01 10:10:45                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-01 10:11:48                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-01 10:11:54                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-01 10:11:54                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-01 10:11:54                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-01 10:11:55                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-01 10:11:55                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-01 10:11:56                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-01 10:12:00  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-01 10:12:01  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-01 10:12:12                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-01 10:12:12                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-01 10:12:12                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-01 10:12:12                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-01 10:12:12                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-01 10:12:12                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-01 10:12:12                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-01 10:12:12                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-01 10:12:12                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-01 10:12:12                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-01 10:12:12                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-01 10:12:12  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-01 10:12:12  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-01 10:12:12  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-01 10:12:12  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-01 10:12:12  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-01 10:12:12  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                8          2009-11-01 10:12:52                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?1 ? ?2009 ?. at 17:00:  -        Internet Explorer 8  Windows XP x64 Edition (KB974455)  
                        2009-11-01 10:14:18                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-11-01 10:14:33                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-01 10:14:33  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-01 10:31:03                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-01 10:31:03                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-01 10:31:03                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                          2009-11-01 11:49:16                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-01 12:00:00                                  EventLog                        6013: The system uptime is 6579 seconds.  
                          2009-11-02 01:17:24                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                          2009-11-02 01:53:27                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                          2009-11-02 03:42:08                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-02 04:48:03                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-02 04:48:03  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-11-02 04:48:32                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?2 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                8          2009-11-02 04:48:32                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?2 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-02 05:04:33                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-02 05:04:33                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-02 05:04:33                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                          2009-11-02 06:24:46                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-02 06:34:18                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-02 06:34:22                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-02 06:34:22                                  EventLog                        6005: The Event log service was started.  
                        2009-11-02 06:34:22                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-02 06:35:22                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-02 06:35:28                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-02 06:35:28                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-02 06:35:28                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-02 06:35:30                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-02 06:35:30                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-02 06:35:30                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-02 06:35:35  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-02 06:35:35  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-02 06:35:49                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-02 06:35:49                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-02 06:35:49                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-02 06:35:49                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-02 06:35:49                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-02 06:35:49                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-02 06:35:49                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-02 06:35:49                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-02 06:35:49                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-02 06:35:49                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-02 06:35:49                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-02 06:35:49  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-02 06:35:49  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-02 06:35:49  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-02 06:35:49  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-02 06:35:49  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-02 06:35:49  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                8          2009-11-02 06:36:27                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?2 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-02 06:48:39                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-02 06:48:43                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-02 06:48:43                                  EventLog                        6005: The Event log service was started.  
                        2009-11-02 06:48:43                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-02 06:49:47                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-02 06:49:53                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-02 06:49:53                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                            2009-11-02 06:49:54                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-02 06:49:54                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-11-02 06:49:54                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-02 06:49:55                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-02 06:49:59  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-02 06:49:59  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-02 06:50:09                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-02 06:50:09                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-02 06:50:09                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-02 06:50:09                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-02 06:50:09                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-02 06:50:09                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-02 06:50:09                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-02 06:50:09                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-02 06:50:09                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-02 06:50:09                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-02 06:50:09                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-02 06:50:09  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-02 06:50:09  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-02 06:50:09  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-02 06:50:09  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-02 06:50:09  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-02 06:50:09  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-02 06:50:31                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                8          2009-11-02 06:50:59                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?2 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-02 06:51:07                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-02 06:51:07  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-02 07:07:37                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-02 07:07:37                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-02 07:07:37                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-02 10:52:04                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-11-02 10:52:04  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                            2009-11-02 10:55:33                                  sr                              1: 
                        2009-11-02 11:05:48                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-11-02 11:07:49                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-11-02 11:07:49  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-11-02 11:18:06                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-11-02 12:00:00                                  EventLog                        6013: The system uptime is 18701 seconds.  
                          2009-11-02 13:55:29                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-02 17:00:22                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-02 17:00:22  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                    8          2009-11-02 17:00:29                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                        2009-11-02 17:16:52                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-02 17:16:52                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-02 17:16:52                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-02 18:55:28                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-02 18:55:28  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-02 19:11:58                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-02 19:11:58                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-02 19:11:58                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-02 20:05:36                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-02 20:05:36  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-02 20:22:06                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-02 20:22:06                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-02 20:22:06                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-02 21:59:43                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-02 21:59:43  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-11-02 22:00:00                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?3 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-02 22:16:13                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-02 22:16:13                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-02 22:16:13                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-03 01:18:50                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-03 01:18:50  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                          2009-11-03 01:26:22                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-03 01:38:20                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-03 01:38:20                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-03 01:38:20                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-03 02:46:13                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-03 02:46:13  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-03 03:02:43                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-03 03:02:43                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-03 03:02:43                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-03 03:36:35                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-11-03 03:36:36                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-03 03:36:36  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-03 03:38:45                                  EventLog                        6006: The Event log service was stopped.  
                        2009-11-03 03:39:54                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-03 03:39:59                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-03 03:39:59                                  EventLog                        6005: The Event log service was started.  
                        2009-11-03 03:39:59                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-03 03:41:01                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-03 03:41:08                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-03 03:41:08                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-03 03:41:08                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-03 03:41:09                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-03 03:41:09                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-03 03:41:09                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-03 03:41:14  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 03:41:14  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 03:41:25                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-03 03:41:25                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-03 03:41:25                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-03 03:41:25                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-03 03:41:25                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-03 03:41:25                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-03 03:41:25                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 03:41:25                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-03 03:41:25                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-03 03:41:25                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-03 03:41:25                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 03:41:25  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-03 03:41:25  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-03 03:41:25  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-03 03:41:25  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 03:41:25  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-03 03:41:25  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-03 03:42:02                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-03 03:42:02  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-11-03 03:42:13                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?3 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-03 03:42:31                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                          2009-11-03 03:43:04                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                8          2009-11-03 03:50:07                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?3 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572) - Update for Internet Explorer 6 for Windows XP x64 Edition (KB976749)  
                        2009-11-03 03:58:32                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-03 03:58:32                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-03 03:58:32                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-03 04:09:59                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 04:09:59  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 04:10:06                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 04:10:13                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 04:10:13  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 04:10:19                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 04:11:04                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 04:11:04  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 04:11:15                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 04:13:07                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 04:13:07  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 04:13:13                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 04:13:41                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 04:13:41  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 04:13:47                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 04:15:36                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 04:15:36  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 04:15:42                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                            2009-11-03 04:15:46                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:15:48                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:15:50                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:15:52                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:15:54                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:15:55                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:15:57                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:15:59                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:00                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:02                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:04                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:06                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:08                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:10                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:11                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:13                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:15                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:17                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:18                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:19                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:21                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:23                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:24                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:25                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:27                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:28                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:29                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:30                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:31                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:33                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:16:34                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                        2009-11-03 04:17:13                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 04:17:13  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 04:17:19                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 04:19:25                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 04:19:25  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 04:19:31                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 04:20:47                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 04:20:47  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 04:20:53                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 04:33:12                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 04:33:12  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 04:33:18                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 04:33:39                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 04:33:39  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 04:33:45                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                          2009-11-03 04:37:53                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-03 04:39:33                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 04:39:33  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 04:39:39                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 04:39:42                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 04:39:42  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 04:39:48                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 04:40:54                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 04:40:54  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 04:41:00                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 04:41:10                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 04:41:10  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 04:50:19                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                            2009-11-03 04:50:51                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:50:58                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                          2009-11-03 04:51:03                                  Cdrom                           51: An error was detected on device \Device\CdRom0 during a paging operation.  
                        2009-11-03 04:51:11                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 04:51:11  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 04:51:17                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                            2009-11-03 04:51:35                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:51:41                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:51:48                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:51:54                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:52:01                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:52:07                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                            2009-11-03 04:52:14                                  Cdrom                           7: The device, \Device\CdRom0, has a bad block.  
                          2009-11-03 04:52:19                                  Cdrom                           51: An error was detected on device \Device\CdRom0 during a paging operation.  
                        2009-11-03 04:52:35                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 04:52:35  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 04:52:42                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                          2009-11-03 06:43:28                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-03 07:09:02                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-03 07:09:06                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-03 07:09:06                                  EventLog                        6005: The Event log service was started.  
                        2009-11-03 07:09:06                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-03 07:10:07                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-03 07:10:13                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-03 07:10:13                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-03 07:10:13                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-03 07:10:14                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-03 07:10:14                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-03 07:10:15                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-03 07:10:20  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 07:10:20  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 07:10:20  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 07:10:20  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 07:10:33                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-03 07:10:33                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-03 07:10:33                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-03 07:10:33                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-03 07:10:33                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-03 07:10:33                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-03 07:10:33                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-03 07:10:33                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 07:10:33                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-03 07:10:33                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-03 07:10:33                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 07:10:33  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-03 07:10:33  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-03 07:10:33  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-03 07:10:33  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 07:10:33  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-03 07:10:33  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                8          2009-11-03 07:11:12                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?3 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572) - Update for Internet Explorer 6 for Windows XP x64 Edition (KB976749)  
                        2009-11-03 07:11:19                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                          2009-11-03 07:11:38                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-03 07:12:02                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-03 07:12:02  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-03 07:28:32                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-03 07:28:32                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-03 07:28:32                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                          2009-11-03 10:09:07                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-03 10:12:08                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 10:12:08  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 10:12:14                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 10:12:38                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 10:12:38  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 10:12:44                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                          2009-11-03 10:36:28                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                    8          2009-11-03 11:21:32                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                    8          2009-11-03 11:22:42                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x80070643: Internet Explorer 8 for Windows XP x64 Edition.  
                        2009-11-03 11:22:42                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-03 11:22:42  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-11-03 11:22:42                                  Windows Update Agent            21: Restart Required: To complete the installation of the following updates, the computer must be restarted. Until this computer has been restarted, Windows cannot search for or download new updates:  -     Windows XP x64 Edition (KB956572) -  Internet Explorer 8  Windows XP x64 Edition  
                8          2009-11-03 11:22:54                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?3 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                          2009-11-03 11:22:55                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-03 11:39:12                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-03 11:39:12                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-03 11:39:12                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-03 12:00:00                                  EventLog                        6013: The system uptime is 17478 seconds.  
                          2009-11-03 12:50:09                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-03 13:19:03                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-03 13:19:08                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-03 13:19:08                                  EventLog                        6005: The Event log service was started.  
                        2009-11-03 13:19:08                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-03 13:20:08                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-03 13:20:14                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-03 13:20:14                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-03 13:20:14                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-03 13:20:15                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-03 13:20:15                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-03 13:20:16                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-03 13:20:20  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 13:20:20  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 13:20:33                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-03 13:20:33                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-03 13:20:33                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-03 13:20:33                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-03 13:20:33                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-03 13:20:33                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-03 13:20:33                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 13:20:33                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-03 13:20:33                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-03 13:20:33                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-03 13:20:33                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 13:20:33  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-03 13:20:33  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-03 13:20:33  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-03 13:20:33  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 13:20:33  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-03 13:20:33  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-03 13:21:10                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-03 13:21:10  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-11-03 13:21:37                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?3 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-03 13:35:53                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-11-03 13:51:10                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-03 13:51:10                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-03 13:51:10                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                          2009-11-03 14:39:28                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-03 15:12:00                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                    8          2009-11-03 15:12:09                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                        2009-11-03 15:12:13                                  EventLog                        6006: The Event log service was stopped.  
                        2009-11-03 16:31:51                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-03 16:31:55                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-03 16:31:55                                  EventLog                        6005: The Event log service was started.  
                        2009-11-03 16:31:55                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-03 16:32:58                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-03 16:33:04                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-03 16:33:04                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-03 16:33:04                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-03 16:33:05                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-03 16:33:05                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-03 16:33:06                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-03 16:33:07  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 16:33:07  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 16:33:21                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-03 16:33:21                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-03 16:33:21                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-03 16:33:21                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-03 16:33:21                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-03 16:33:21                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-03 16:33:21                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 16:33:21                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-03 16:33:21                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-03 16:33:21                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-03 16:33:21                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 16:33:21  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-03 16:33:21  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-03 16:33:21  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-03 16:33:21  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 16:33:21  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-03 16:33:21  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-03 16:34:03                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-03 16:34:03  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-11-03 16:34:25                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?3 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-03 16:37:58                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-11-03 16:53:33                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-03 16:53:33                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-03 16:53:33                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                    8          2009-11-03 17:00:22                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                    8          2009-11-03 17:00:25                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                8          2009-11-03 17:00:30                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?4 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-03 17:00:40  SYSTEM                          NtServicePack                   4377: C:\WINDOWS\System32\spmsg.dll
                        2009-11-03 17:00:43                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-03 17:00:43  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-11-03 17:00:51                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Update for Internet Explorer 6 for Windows XP x64 Edition (KB976749)  
                8          2009-11-03 17:00:56                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?4 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                          2009-11-03 17:06:03                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-03 17:17:12                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-03 17:17:12                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-03 17:17:13                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                          2009-11-03 18:04:36                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-03 18:21:37                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-03 18:21:37  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-03 18:38:07                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-03 18:38:07                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-03 18:38:07                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-03 18:38:26                                  Service Control Manager         7036: The Automatic Updates service entered the running state.  
                8          2009-11-03 18:38:30                                  Windows Update Agent            19: Installation Successful: Windows successfully installed the following update: Automatic Updates  
                        2009-11-03 18:39:11                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-03 18:39:11  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-11-03 18:40:27                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?4 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-03 18:55:41                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-03 18:55:41                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-03 18:55:41                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-03 20:13:58                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-03 20:13:58  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-03 20:30:28                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-03 20:30:28                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-03 20:30:28                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-03 22:13:52                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 22:13:52  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 22:13:58                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                          2009-11-03 22:15:21                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-03 22:51:30                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-03 22:51:38                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-03 22:51:38                                  EventLog                        6005: The Event log service was started.  
                        2009-11-03 22:51:38                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                            2009-11-03 22:52:00                                  sptd                            4: Driver detected an internal error in its data structures for .  
                            2009-11-03 22:52:24                                  sptd                            4: Driver detected an internal error in its data structures for .  
                          2009-11-03 22:52:41                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-03 22:52:47                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-03 22:52:47                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                            2009-11-03 22:52:48                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-03 22:52:48                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-11-03 22:52:48                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-03 22:52:49                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-03 22:52:55  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 22:52:55  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 22:52:55  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 22:52:55  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 22:53:05                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-03 22:53:05                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-03 22:53:05                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-03 22:53:05                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-03 22:53:05                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-03 22:53:05                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-03 22:53:05  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-03 22:53:05  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-03 22:53:06  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 22:53:08                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-03 22:53:08                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-03 22:53:08                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 22:53:08  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-03 22:53:08  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-03 22:53:09  Administrator                   Service Control Manager         7035: The KDS-PvO Environment Driver (pe3alcnb) service was successfully sent a start control.  
                        2009-11-03 22:53:10                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-03 22:53:10  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-03 22:53:15                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 22:53:24                                  Application Popup               26: Application popup: obshaga.exe - DLL Initialization Failed : The application failed to initialize because the window station is shutting down.   
                        2009-11-03 22:53:40                                  EventLog                        6006: The Event log service was stopped.  
                            2009-11-03 22:54:31                                  ps7alcnb                        
                            2009-11-03 22:54:31                                  ps7alcnb                        
                            2009-11-03 22:54:31                                  ps7alcnb                        
                            2009-11-03 22:54:31                                  ps7alcnb                        
                            2009-11-03 22:54:31                                  ps7alcnb                        
                            2009-11-03 22:54:31                                  ps7alcnb                        
                            2009-11-03 22:54:31                                  ps7alcnb                        
                            2009-11-03 22:54:31                                  ps7alcnb                        
                            2009-11-03 22:54:31                                  ps7alcnb                        
                            2009-11-03 22:54:32                                  ps7alcnb                        
                            2009-11-03 22:54:32                                  ps7alcnb                        
                            2009-11-03 22:54:32                                  ps7alcnb                        
                            2009-11-03 22:54:32                                  ps7alcnb                        
                            2009-11-03 22:54:32                                  ps7alcnb                        
                            2009-11-03 22:54:32                                  ps7alcnb                        
                            2009-11-03 22:54:32                                  ps7alcnb                        
                        2009-11-03 22:54:33                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-03 22:54:41                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-03 22:54:41                                  EventLog                        6005: The Event log service was started.  
                        2009-11-03 22:54:41                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-03 22:55:42                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-03 22:55:48                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-03 22:55:48                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-03 22:55:48                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-03 22:55:49                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-03 22:55:49                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-03 22:55:49                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-03 22:55:54  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 22:55:54  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 22:55:54  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 22:55:54  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 22:56:05                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-03 22:56:05                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-03 22:56:05                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-03 22:56:05                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-03 22:56:05                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-03 22:56:05                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-03 22:56:05                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-03 22:56:05                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 22:56:05                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-03 22:56:05                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-03 22:56:05  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-03 22:56:05  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-03 22:56:05  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-03 22:56:05  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 22:56:05  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-03 22:56:08                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-03 22:56:08  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-03 22:56:21                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-11-03 22:56:39                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-03 22:56:39  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-11-03 22:57:32                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?4 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                            2009-11-03 22:58:46                                  ps7alcnb                        
                            2009-11-03 22:58:46                                  ps7alcnb                        
                            2009-11-03 22:58:46                                  ps7alcnb                        
                            2009-11-03 22:58:46                                  ps7alcnb                        
                            2009-11-03 22:58:46                                  ps7alcnb                        
                            2009-11-03 22:58:46                                  ps7alcnb                        
                            2009-11-03 22:58:46                                  ps7alcnb                        
                            2009-11-03 22:58:46                                  ps7alcnb                        
                            2009-11-03 22:58:46                                  ps7alcnb                        
                            2009-11-03 22:58:47                                  ps7alcnb                        
                            2009-11-03 22:58:47                                  ps7alcnb                        
                            2009-11-03 22:58:47                                  ps7alcnb                        
                            2009-11-03 22:58:47                                  ps7alcnb                        
                            2009-11-03 22:58:48                                  ps7alcnb                        
                            2009-11-03 22:58:48                                  ps7alcnb                        
                            2009-11-03 22:58:48                                  ps7alcnb                        
                        2009-11-03 22:58:49                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-03 22:58:57                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-03 22:58:57                                  EventLog                        6005: The Event log service was started.  
                        2009-11-03 22:58:57                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-11-03 22:58:58                                  Save Dump                       1001: The computer has rebooted from a bugcheck.  The bugcheck was:  0x00000024 (0x000000000019033d, 0xfffffadf90c70870, 0xfffffadf90c70280, 0xfffffadf8feb4ec0).  A dump was saved in: C:\WINDOWS\Minidump\Mini110309-01.dmp.  
                          2009-11-03 23:00:01                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-03 23:00:07                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-03 23:00:07                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-03 23:00:07                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-03 23:00:08                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-03 23:00:08                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-03 23:00:08                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-03 23:00:13  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 23:00:13  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 23:00:13  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 23:00:13  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-03 23:00:20                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-03 23:00:20                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-03 23:00:20                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-03 23:00:20                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-03 23:00:20                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-03 23:00:20                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-03 23:00:20                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-03 23:00:20                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-03 23:00:20                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-03 23:00:20                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-03 23:00:20  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-03 23:00:20  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-03 23:00:20  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-03 23:00:20  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-03 23:00:20  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-03 23:00:20  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-03 23:00:24                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                8          2009-11-03 23:01:08                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?4 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-03 23:01:17                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-11-03 23:34:27                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-03 23:34:27  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-03 23:50:57                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-03 23:50:57                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-03 23:50:57                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                            2009-11-04 00:14:17                                  ps7alcnb                        
                            2009-11-04 00:14:17                                  ps7alcnb                        
                            2009-11-04 00:14:17                                  ps7alcnb                        
                            2009-11-04 00:14:17                                  ps7alcnb                        
                            2009-11-04 00:14:17                                  ps7alcnb                        
                            2009-11-04 00:14:17                                  ps7alcnb                        
                            2009-11-04 00:14:17                                  ps7alcnb                        
                            2009-11-04 00:14:17                                  ps7alcnb                        
                            2009-11-04 00:14:17                                  ps7alcnb                        
                            2009-11-04 00:14:18                                  ps7alcnb                        
                            2009-11-04 00:14:18                                  ps7alcnb                        
                            2009-11-04 00:14:18                                  ps7alcnb                        
                            2009-11-04 00:14:18                                  ps7alcnb                        
                            2009-11-04 00:14:19                                  ps7alcnb                        
                            2009-11-04 00:14:19                                  ps7alcnb                        
                            2009-11-04 00:14:19                                  ps7alcnb                        
                        2009-11-04 00:14:19                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-04 00:14:27                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-04 00:14:27                                  EventLog                        6005: The Event log service was started.  
                        2009-11-04 00:14:27                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-04 00:15:30                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-04 00:15:36                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-04 00:15:36                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-04 00:15:36                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-04 00:15:37                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-04 00:15:37                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-04 00:15:38                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-04 00:15:43  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-04 00:15:43  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-04 00:15:43  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-04 00:15:43  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-04 00:15:55                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-04 00:15:55                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-04 00:15:55                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-04 00:15:55                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-04 00:15:55                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-04 00:15:55                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-04 00:15:55                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-04 00:15:55                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-04 00:15:55                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-04 00:15:55                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-04 00:15:55                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-04 00:15:55  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-04 00:15:55  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-04 00:15:55  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-04 00:15:55  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-04 00:15:55  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-04 00:15:55  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                            2009-11-04 00:16:19                                  WMIxWDM                         122: 
                            2009-11-04 00:16:19                                  WMIxWDM                         122: 
                            2009-11-04 00:16:19                                  WMIxWDM                         122: 
                8          2009-11-04 00:16:36                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?4 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-04 00:35:48                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-11-04 00:35:53                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-04 00:35:53  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-04 00:52:23                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-04 00:52:23                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-04 00:52:23                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                          2009-11-04 02:57:08                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                          2009-11-04 03:17:09                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                          2009-11-04 03:45:56                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-04 12:00:00                                  EventLog                        6013: The system uptime is 42369 seconds.  
                        2009-11-04 12:25:08                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-04 12:25:08  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-04 12:41:38                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-04 12:41:38                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-04 12:41:38                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                          2009-11-04 15:34:09                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-04 17:00:22                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-04 17:00:22  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                    8          2009-11-04 17:00:46                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                8          2009-11-04 17:00:51                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?5 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-04 17:16:52                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-04 17:16:52                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-04 17:16:52                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                            2009-11-04 18:19:07                                  ps7alcnb                        
                            2009-11-04 18:19:07                                  ps7alcnb                        
                            2009-11-04 18:19:07                                  ps7alcnb                        
                            2009-11-04 18:19:07                                  ps7alcnb                        
                            2009-11-04 18:19:07                                  ps7alcnb                        
                            2009-11-04 18:19:07                                  ps7alcnb                        
                            2009-11-04 18:19:07                                  ps7alcnb                        
                            2009-11-04 18:19:07                                  ps7alcnb                        
                            2009-11-04 18:19:07                                  ps7alcnb                        
                            2009-11-04 18:19:08                                  ps7alcnb                        
                            2009-11-04 18:19:08                                  ps7alcnb                        
                            2009-11-04 18:19:08                                  ps7alcnb                        
                            2009-11-04 18:19:08                                  ps7alcnb                        
                            2009-11-04 18:19:09                                  ps7alcnb                        
                            2009-11-04 18:19:09                                  ps7alcnb                        
                            2009-11-04 18:19:09                                  ps7alcnb                        
                        2009-11-04 18:19:09                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-04 18:19:18                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-04 18:19:18                                  EventLog                        6005: The Event log service was started.  
                        2009-11-04 18:19:18                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-11-04 18:19:19                                  Save Dump                       1001: The computer has rebooted from a bugcheck.  The bugcheck was:  0x0000000a (0xfffffadfc46895c8, 0x0000000000000002, 0x0000000000000000, 0xfffff800008099ba).  A dump was saved in: C:\WINDOWS\Minidump\Mini110409-01.dmp.  
                          2009-11-04 18:20:21                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-04 18:20:28                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-04 18:20:28                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-04 18:20:28                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-04 18:20:29                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-04 18:20:29                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-04 18:20:29                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-04 18:20:34  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-04 18:20:34  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-04 18:20:34  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-04 18:20:34  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-04 18:20:42                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-04 18:20:42                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-04 18:20:42                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-04 18:20:42                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-04 18:20:42                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-04 18:20:42                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-04 18:20:42                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-04 18:20:42                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-04 18:20:42                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-04 18:20:42                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-04 18:20:42  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-04 18:20:42  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-04 18:20:42  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-04 18:20:42  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-04 18:20:42  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-04 18:20:42  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-04 18:20:45                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                8          2009-11-04 18:21:28                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?5 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-04 19:23:34                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-11-04 19:23:44                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-04 19:23:44  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-04 19:40:14                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-04 19:40:14                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-04 19:40:15                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                          2009-11-04 20:17:54                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-04 20:24:08  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-11-04 20:24:10                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-11-04 20:35:33                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                          2009-11-04 21:12:47                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                          2009-11-04 22:00:58                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                          2009-11-04 23:00:50                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-05 07:41:26                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-05 07:41:26  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-05 07:57:56                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-05 07:57:56                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-05 07:57:56                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-05 16:50:26                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-05 16:50:26                                  EventLog                        6005: The Event log service was started.  
                        2009-11-05 16:50:26                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                            2009-11-05 16:51:19                                  ps7alcnb                        
                            2009-11-05 16:51:19                                  ps7alcnb                        
                            2009-11-05 16:51:19                                  ps7alcnb                        
                            2009-11-05 16:51:19                                  ps7alcnb                        
                            2009-11-05 16:51:19                                  ps7alcnb                        
                            2009-11-05 16:51:19                                  ps7alcnb                        
                            2009-11-05 16:51:19                                  ps7alcnb                        
                            2009-11-05 16:51:19                                  ps7alcnb                        
                            2009-11-05 16:51:19                                  ps7alcnb                        
                            2009-11-05 16:51:20                                  ps7alcnb                        
                            2009-11-05 16:51:20                                  ps7alcnb                        
                            2009-11-05 16:51:20                                  ps7alcnb                        
                            2009-11-05 16:51:20                                  ps7alcnb                        
                            2009-11-05 16:51:21                                  ps7alcnb                        
                            2009-11-05 16:51:21                                  ps7alcnb                        
                            2009-11-05 16:51:21                                  ps7alcnb                        
                        2009-11-05 16:51:22                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-05 16:51:30                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-05 16:51:30                                  EventLog                        6005: The Event log service was started.  
                        2009-11-05 16:51:30                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-05 16:52:34                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-05 16:52:40                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-05 16:52:40                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-05 16:52:40                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-05 16:52:41                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-05 16:52:41                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-05 16:52:41                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-05 16:52:45  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-05 16:52:45  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-05 16:52:45  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-05 16:52:45  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-05 16:53:03                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-05 16:53:03                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-05 16:53:03                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-05 16:53:03                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-05 16:53:03                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-05 16:53:03                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-05 16:53:03                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-05 16:53:03                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-05 16:53:03                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-05 16:53:03                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-05 16:53:03  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-05 16:53:03  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-05 16:53:03  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-05 16:53:03  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-05 16:53:03  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-05 16:53:04                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-05 16:53:04  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                8          2009-11-05 16:53:42                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?5 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                            2009-11-05 16:59:58                                  ps7alcnb                        
                            2009-11-05 16:59:58                                  ps7alcnb                        
                            2009-11-05 16:59:58                                  ps7alcnb                        
                            2009-11-05 16:59:58                                  ps7alcnb                        
                            2009-11-05 16:59:58                                  ps7alcnb                        
                            2009-11-05 16:59:58                                  ps7alcnb                        
                            2009-11-05 16:59:58                                  ps7alcnb                        
                            2009-11-05 16:59:58                                  ps7alcnb                        
                            2009-11-05 16:59:58                                  ps7alcnb                        
                            2009-11-05 16:59:59                                  ps7alcnb                        
                            2009-11-05 16:59:59                                  ps7alcnb                        
                            2009-11-05 16:59:59                                  ps7alcnb                        
                            2009-11-05 17:00:00                                  ps7alcnb                        
                            2009-11-05 17:00:00                                  ps7alcnb                        
                            2009-11-05 17:00:00                                  ps7alcnb                        
                            2009-11-05 17:00:00                                  ps7alcnb                        
                        2009-11-05 17:00:01                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-05 17:00:09                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-05 17:00:09                                  EventLog                        6005: The Event log service was started.  
                        2009-11-05 17:00:09                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-11-05 17:00:10                                  Save Dump                       1001: The computer has rebooted from a bugcheck.  The bugcheck was:  0x000000d1 (0x0000000000000008, 0x0000000000000002, 0x0000000000000000, 0xfffffadf90045dbf).  A dump was saved in: C:\WINDOWS\Minidump\Mini110509-01.dmp.  
                          2009-11-05 17:01:10                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-05 17:01:16                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-05 17:01:16                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-05 17:01:16                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-05 17:01:17                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-05 17:01:17                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-05 17:01:18                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-05 17:01:21  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-05 17:01:21  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-05 17:01:21  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-05 17:01:21  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-05 17:01:32                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-05 17:01:32                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-05 17:01:32                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-05 17:01:32                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-05 17:01:32                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-05 17:01:32                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-05 17:01:32                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-05 17:01:32                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-05 17:01:32                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-05 17:01:32  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-05 17:01:32  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-05 17:01:32  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-05 17:01:32  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-05 17:01:32  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-05 17:01:33                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-05 17:01:34                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-05 17:01:36  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                8          2009-11-05 17:02:18                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?5 ? ?2009 ?. at 17:02:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-05 17:02:48                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-05 17:02:48  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                    8          2009-11-05 17:03:09                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                8          2009-11-05 17:03:14                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?6 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-05 17:19:18                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-05 17:19:18                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-05 17:19:18                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-05 17:19:38                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-11-05 17:19:54                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-05 17:19:54  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-05 17:36:24                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-05 17:36:24                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-05 17:36:24                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                          2009-11-05 18:19:12                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                          2009-11-05 20:35:49                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                          2009-11-06 01:01:46                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-06 04:39:46                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-06 04:39:46  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-06 04:56:16                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-06 04:56:16                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-06 04:56:16                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-06 07:45:27                                  SRService                       107: C:\WINDOWS\system32\srsvc.dll
                        2009-11-06 08:03:06                                  SRService                       108: C:\WINDOWS\system32\srsvc.dll
                            2009-11-06 11:52:35                                  sr                              1: 
                        2009-11-06 11:52:35                                  SRService                       107: C:\WINDOWS\system32\srsvc.dll
                        2009-11-06 11:52:35                                  SRService                       107: C:\WINDOWS\system32\srsvc.dll
                        2009-11-06 12:00:00                                  EventLog                        6013: The system uptime is 68429 seconds.  
                            2009-11-06 13:07:46                                  sptd                            4: Driver detected an internal error in its data structures for .  
                            2009-11-06 13:08:18                                  sptd                            4: Driver detected an internal error in its data structures for .  
                        2009-11-06 13:44:12                                  SRService                       108: C:\WINDOWS\system32\srsvc.dll
                            2009-11-06 16:59:55                                  ps7alcnb                        
                            2009-11-06 16:59:55                                  ps7alcnb                        
                            2009-11-06 16:59:55                                  ps7alcnb                        
                            2009-11-06 16:59:55                                  ps7alcnb                        
                            2009-11-06 16:59:55                                  ps7alcnb                        
                            2009-11-06 16:59:55                                  ps7alcnb                        
                            2009-11-06 16:59:55                                  ps7alcnb                        
                            2009-11-06 16:59:55                                  ps7alcnb                        
                            2009-11-06 16:59:55                                  ps7alcnb                        
                            2009-11-06 16:59:56                                  ps7alcnb                        
                            2009-11-06 16:59:56                                  ps7alcnb                        
                            2009-11-06 16:59:56                                  ps7alcnb                        
                            2009-11-06 16:59:56                                  ps7alcnb                        
                            2009-11-06 16:59:57                                  ps7alcnb                        
                            2009-11-06 16:59:57                                  ps7alcnb                        
                            2009-11-06 16:59:57                                  ps7alcnb                        
                        2009-11-06 16:59:57                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-06 17:00:05                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-06 17:00:05                                  EventLog                        6005: The Event log service was started.  
                        2009-11-06 17:00:05                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-06 17:01:09                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-06 17:01:16                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-06 17:01:16                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-06 17:01:16                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-06 17:01:17                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-06 17:01:17                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-06 17:01:17                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-06 17:01:21  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-06 17:01:21  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-06 17:01:21  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-06 17:01:21  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-06 17:01:33                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-06 17:01:33                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-06 17:01:33                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-06 17:01:33                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-06 17:01:33                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-06 17:01:33                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-06 17:01:33                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-06 17:01:33                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-06 17:01:33                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-06 17:01:33                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-06 17:01:33  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-06 17:01:33  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-06 17:01:33  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-06 17:01:33  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-06 17:01:33  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-06 17:01:33  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-06 17:01:34                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                8          2009-11-06 17:02:17                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?6 ? ?2009 ?. at 17:02:  -     Windows XP x64 Edition (KB956572)  
                    8          2009-11-06 17:02:49                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                        2009-11-06 17:02:49                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-06 17:02:49  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-11-06 17:03:11                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?7 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-06 17:19:19                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-06 17:19:19                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-06 17:19:19                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-06 17:50:36                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-11-06 17:50:54                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-06 17:50:54  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-06 17:57:45                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                        2009-11-06 18:00:14                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-06 18:00:22                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-06 18:00:22                                  EventLog                        6005: The Event log service was started.  
                        2009-11-06 18:00:22                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-06 18:01:27                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-06 18:01:33                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-06 18:01:33                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-06 18:01:33                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-06 18:01:34                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-06 18:01:34                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                            2009-11-06 18:01:35  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-06 18:01:35  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-06 18:01:35  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-06 18:01:35  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-11-06 18:01:35                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-06 18:01:40                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-06 18:01:40                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-06 18:01:40                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-06 18:01:40                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-06 18:01:42                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-06 18:01:42                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-06 18:01:42                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-06 18:01:42  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-06 18:01:42  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-06 18:01:42  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-06 18:01:42  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-06 18:01:42  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-06 18:01:43                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-06 18:01:45                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-06 18:01:45                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-06 18:01:45  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-06 18:01:48                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                8          2009-11-06 18:02:33                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?7 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-06 18:50:09                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-06 18:50:27                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-06 18:50:27                                  EventLog                        6005: The Event log service was started.  
                        2009-11-06 18:50:27                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-06 18:51:32                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-06 18:51:38                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-06 18:51:38                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-06 18:51:38                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-06 18:51:39                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-06 18:51:39                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                            2009-11-06 18:51:40  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-06 18:51:40  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-06 18:51:40  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-06 18:51:40  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-11-06 18:51:40                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-06 18:51:54                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-06 18:51:54                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-06 18:51:54                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-06 18:51:54                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-06 18:51:54                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-06 18:51:54                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-06 18:51:54                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-06 18:51:54                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-06 18:51:54                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-06 18:51:54                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-06 18:51:54                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-06 18:51:54  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-06 18:51:54  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-06 18:51:54  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-06 18:51:54  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-06 18:51:54  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-06 18:51:54  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-06 18:52:05                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-11-06 18:52:29                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-06 18:52:29  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-11-06 18:52:46                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?7 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-06 19:08:59                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-06 19:08:59                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-06 19:08:59                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-06 23:28:09                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-06 23:28:09  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-06 23:44:39                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-06 23:44:39                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-06 23:44:39                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-07 03:20:55                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                    8          2009-11-07 03:21:03                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                        2009-11-07 03:21:07                                  EventLog                        6006: The Event log service was stopped.  
                        2009-11-07 10:55:47                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-07 10:56:15                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-07 10:56:15                                  EventLog                        6005: The Event log service was started.  
                        2009-11-07 10:56:15                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-07 10:57:15                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-07 10:57:21                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-07 10:57:21                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-07 10:57:21                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-07 10:57:23                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-11-07 10:57:23  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-07 10:57:23  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-07 10:57:23  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-07 10:57:23  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-11-07 10:57:23                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-07 10:57:23                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-07 10:57:39                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-07 10:57:39                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-07 10:57:39                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-07 10:57:39                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-07 10:57:39                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-07 10:57:39                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-07 10:57:39                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-07 10:57:39                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-07 10:57:39                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-07 10:57:39                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-07 10:57:39                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-07 10:57:39  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-07 10:57:39  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-07 10:57:39  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-07 10:57:39  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-07 10:57:39  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-07 10:57:39  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-07 10:58:23                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-07 10:58:23  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-11-07 10:58:45                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?7 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-07 11:01:29                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-11-07 11:04:32                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-11-07 11:04:32  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-11-07 11:14:45                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-11-07 11:17:53                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-07 11:17:53                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-07 11:17:54                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-07 12:00:00                                  EventLog                        6013: The system uptime is 3881 seconds.  
                        2009-11-07 17:00:20                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-07 17:00:20  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                    8          2009-11-07 17:00:27                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                8          2009-11-07 17:00:32                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?8 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-07 17:16:50                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-07 17:16:50                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-07 17:16:50                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-07 19:48:44                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-07 19:48:44  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-07 20:05:14                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-07 20:05:14                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-07 20:05:14                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                          2009-11-07 20:26:03                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-07 22:45:21                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-07 22:45:21  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-07 22:45:27                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-07 22:45:49                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-07 22:45:49  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-07 22:45:55                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-07 22:46:00                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-11-07 22:46:00  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-11-07 23:00:05                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-07 23:00:05  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-07 23:00:11                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-07 23:00:31                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-07 23:00:31  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-07 23:00:37                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-07 23:06:11                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-07 23:06:11  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-07 23:06:17                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-07 23:06:36                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-07 23:06:36  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-07 23:06:42                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-07 23:15:48                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-07 23:15:48  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-07 23:15:54                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-07 23:16:19                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-07 23:16:19  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-07 23:16:25                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-07 23:20:00                                  W32Time                         37: The time provider NtpClient is currently receiving valid time data from time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                        2009-11-08 10:20:10                                  W32Time                         35: The time service is now synchronizing the system time with the time  source time.windows.com (ntp.m|0x1|10.2.3.3:123->207.46.197.32:123).  
                          2009-11-08 10:20:10                                  W32Time                         52: The time service has set the time with offset 39610 seconds.  
                          2009-11-08 10:24:35                                  Tcpip                           4226: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.  
                        2009-11-08 10:33:54                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-11-08 11:20:44                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-08 11:20:44  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-08 11:37:14                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-08 11:37:14                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-08 11:37:14                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-08 12:19:59                                  Service Control Manager         7036: The Windows Installer service entered the running state.  
                        2009-11-08 12:19:59  SYSTEM                          Service Control Manager         7035: The Windows Installer service was successfully sent a start control.  
                        2009-11-08 12:21:12                                  Service Control Manager         7036: The Application Management service entered the running state.  
                        2009-11-08 12:21:12  Administrator                   Service Control Manager         7035: The Application Management service was successfully sent a start control.  
                        2009-11-08 12:31:12                                  Service Control Manager         7036: The Windows Installer service entered the stopped state.  
                        2009-11-08 14:11:24                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                    8          2009-11-08 14:11:32                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                        2009-11-08 14:11:38                                  EventLog                        6006: The Event log service was stopped.  
                        2009-11-09 00:22:25                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-09 00:22:33                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-09 00:22:33                                  EventLog                        6005: The Event log service was started.  
                        2009-11-09 00:22:33                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                          2009-11-09 00:23:37                                  Dhcp                            1007: Your computer has automatically configured the IP address for the Network  Card with network address 002215F0EE81.  The IP address being used is 169.254.190.5.  
                            2009-11-09 00:23:43                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-09 00:23:43                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-09 00:23:43                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                            2009-11-09 00:23:44                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-09 00:23:44                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-09 00:23:45                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-09 00:23:48  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-09 00:23:48  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-09 00:23:59                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-09 00:23:59                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-09 00:23:59                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-09 00:23:59                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-09 00:23:59                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-09 00:23:59                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-09 00:23:59                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-09 00:23:59                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-09 00:23:59                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-09 00:23:59                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-09 00:23:59                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                        2009-11-09 00:23:59  Administrator                   Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-09 00:23:59  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-09 00:23:59  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-09 00:23:59  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-09 00:23:59  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-09 00:23:59  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-09 00:24:45                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-09 00:24:45  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                8          2009-11-09 00:25:40                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?9 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-09 00:41:15                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-09 00:41:15                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-09 00:41:15                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-09 01:21:14                                  RemoteAccess                    20158: The user Feb09qooer successfully established a connection to Broadband Connection using the device PPPoE5-0.  
                        2009-11-09 01:21:38                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.  
                        2009-11-09 01:21:38  SYSTEM                          Service Control Manager         7035: The WinHTTP Web Proxy Auto-Discovery Service service was successfully sent a start control.  
                        2009-11-09 01:38:08                                  WinHttpAutoProxySvc             12503: The WinHTTP Web Proxy Auto-Discovery Service has been idle for 15 minutes, it will be shut down.  
                        2009-11-09 01:38:08                                  WinHttpAutoProxySvc             12517: The WinHTTP Web Proxy Auto-Discovery Service suspended operation.  
                        2009-11-09 01:38:08                                  Service Control Manager         7036: The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.  
                        2009-11-09 02:19:46                                  RemoteAccess                    20159: The connection to Broadband Connection made by user Feb09qooer using device PPPoE5-0 was disconnected.  
                    8          2009-11-09 02:19:54                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                        2009-11-09 02:19:59                                  EventLog                        6006: The Event log service was stopped.  
                        2009-11-09 03:56:42                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                            2009-11-09 03:56:52                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-09 03:56:52                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-09 03:56:52                                  EventLog                        6005: The Event log service was started.  
                        2009-11-09 03:56:52                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                        2009-11-09 03:56:52                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-11-09 03:56:52                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                            2009-11-09 03:56:53                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-09 03:56:53                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-09 03:56:54                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-09 03:56:56  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-09 03:56:56  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-09 03:57:01                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-09 03:57:01                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-09 03:57:01                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-09 03:57:01                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-09 03:57:02                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-09 03:57:02  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-09 03:57:02  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-09 03:57:03                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-09 03:57:04                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-09 03:57:04  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-09 03:57:06                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-09 03:57:06  SYSTEM                          Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-09 03:57:13  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-09 03:57:15                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-09 03:57:20                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-09 03:57:20  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                    102        2009-11-09 03:57:27                                  System Error                    1003: Error code 000000000000001e, parameter1 ffffffff80000003, parameter2 fffffadf90245a90, parameter3 0000000000000000, parameter4 0000000000000001.  
                        2009-11-09 03:57:27                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                    102        2009-11-09 03:57:32                                  System Error                    1003: Error code 0000000000000024, parameter1 000000000019033d, parameter2 fffffadf90c32270, parameter3 fffffadf90c31c80, parameter4 fffffadf8ff53441.  
                    102        2009-11-09 03:57:34                                  System Error                    1003: Error code 00000000000000d1, parameter1 0000001388e53f00, parameter2 0000000000000002, parameter3 0000000000000001, parameter4 fffffadf8e0bc458.  
                    102        2009-11-09 03:57:41                                  System Error                    1003: Error code 000000000000000a, parameter1 fffff800014141d1, parameter2 0000000000000002, parameter3 0000000000000000, parameter4 fffff8000104f236.  
                    102        2009-11-09 03:57:43                                  System Error                    1003: Error code 0000000000000024, parameter1 000000000019033d, parameter2 fffffadf8ae77d00, parameter3 fffffadf8ae77710, parameter4 fffff8000080d543.  
                    102        2009-11-09 03:57:52                                  System Error                    1003: Error code 000000000000003b, parameter1 00000000c0000005, parameter2 fffff97fff087440, parameter3 fffffadf8bab6a70, parameter4 0000000000000000.  
                    102        2009-11-09 03:57:54                                  System Error                    1003: Error code 00000000000000d1, parameter1 000000002445bc00, parameter2 0000000000000002, parameter3 0000000000000001, parameter4 fffffadf8fea35c4.  
                    102        2009-11-09 03:57:55                                  System Error                    1003: Error code 0000000000000024, parameter1 000000000019033d, parameter2 fffffadf90c70870, parameter3 fffffadf90c70280, parameter4 fffffadf8feb4ec0.  
                    102        2009-11-09 03:57:56                                  System Error                    1003: Error code 000000000000000a, parameter1 fffffadfc46895c8, parameter2 0000000000000002, parameter3 0000000000000000, parameter4 fffff800008099ba.  
                    102        2009-11-09 03:57:58                                  System Error                    1003: Error code 00000000000000d1, parameter1 0000000000000008, parameter2 0000000000000002, parameter3 0000000000000000, parameter4 fffffadf90045dbf.  
                8          2009-11-09 03:58:03                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?9 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-09 03:58:15                                  Service Control Manager         7036: The Alerter service entered the running state.  
                        2009-11-09 03:58:15  Administrator                   Service Control Manager         7040: The start type of the Alerter service was changed from disabled to auto start.  
                        2009-11-09 03:58:15  Administrator                   Service Control Manager         7035: The Alerter service was successfully sent a start control.  
                        2009-11-09 04:02:44  Administrator                   Service Control Manager         7040: The start type of the Windows Socket 2.0 Non-IFS Service Provider Support Environment service was changed from system start to disabled.  
                        2009-11-09 06:29:26                                  EventLog                        6006: The Event log service was stopped.  
                        2009-11-09 06:30:25                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-09 06:30:34                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-09 06:30:34                                  EventLog                        6005: The Event log service was started.  
                        2009-11-09 06:30:34                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                            2009-11-09 06:30:35                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-09 06:30:35                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-11-09 06:30:35                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                            2009-11-09 06:30:36                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                        2009-11-09 06:30:36                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-09 06:30:36                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-09 06:30:38  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-09 06:30:38  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-09 06:30:38  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-09 06:30:38  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-09 06:30:43                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-09 06:30:43                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-09 06:30:43                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-09 06:30:43                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-09 06:30:44                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-09 06:30:44                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-09 06:30:44  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-09 06:30:44  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-09 06:30:46                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-09 06:30:46  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-09 06:30:49                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-09 06:30:49  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-09 06:30:49  SYSTEM                          Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-09 06:30:53                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-09 06:31:00                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-09 06:31:00  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-09 06:31:06                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                8          2009-11-09 06:31:33                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?9 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                    8          2009-11-09 06:32:08                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                    8          2009-11-09 06:32:22                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x80070643: Internet Explorer 8 for Windows XP x64 Edition.  
                8          2009-11-09 06:36:21                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?9 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                    8          2009-11-09 06:36:28                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                        2009-11-09 06:36:33                                  EventLog                        6006: The Event log service was stopped.  
                        2009-11-09 21:46:21                                  IPSec                           4295: The IPSec Driver is starting in Bypass mode. No IPSec security is being applied  while this computer starts up. IPSec policies, if they have been assigned, will  be applied to this computer after the IPSec services start.  
                        2009-11-09 21:46:30                                  EventLog                        6009: Microsoft (R) Windows (R) 5.02. 3790 Service Pack 2 Multiprocessor Free.  
                        2009-11-09 21:46:30                                  EventLog                        6005: The Event log service was started.  
                        2009-11-09 21:46:30                                  DCOM                            10026: The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog.   
                            2009-11-09 21:46:31                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-11-09 21:46:31                                  Application Popup               1060: \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys has been blocked from loading due to incompatibility with this system. Please contact your software  vendor for a compatible version of the driver.  
                            2009-11-09 21:46:31  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-09 21:46:31  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                        2009-11-09 21:46:31                                  AeLookupSvc                     3: The Application Experience Lookup service started successfully.  
                        2009-11-09 21:46:31                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\BCMNTIO.sys failed to load  
                        2009-11-09 21:46:31                                  Application Popup               26: Application popup:  : \??\C:\PROGRA~2\CheckIt\DIAGNO~1\MAPMEM.sys failed to load  
                        2009-11-09 21:46:31                                  IPSec                           4294: The IPSec driver has entered Secure mode. IPSec policies, if they have been  configured, are now being applied to this computer.  
                            2009-11-09 21:46:32  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-09 21:46:32  LOCAL SERVICE                   DCOM                            10016: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID   {555F3418-D99E-4E51-800A-6E89CFD8B1D7}   to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19).  This security permission can be modified using the Component Services administrative tool.  
                            2009-11-09 21:46:34                                  Service Control Manager         7000: The TBPanel service failed to start due to the following error:   The system cannot find the file specified.    
                            2009-11-09 21:46:34                                  Service Control Manager         7000: The BCMNTIO service failed to start due to the following error:   This driver has been blocked from loading    
                            2009-11-09 21:46:34                                  Service Control Manager         7000: The DgiVecp service failed to start due to the following error:   The system cannot find the device specified.    
                            2009-11-09 21:46:34                                  Service Control Manager         7000: The MAPMEM service failed to start due to the following error:   This driver has been blocked from loading    
                        2009-11-09 21:46:34                                  Service Control Manager         7036: The Network Location Awareness (NLA) service entered the running state.  
                        2009-11-09 21:46:34                                  Service Control Manager         7036: The Application Layer Gateway Service service entered the running state.  
                        2009-11-09 21:46:34                                  Service Control Manager         7036: The Telephony service entered the running state.  
                        2009-11-09 21:46:34                                  Service Control Manager         7036: The Terminal Services service entered the running state.  
                        2009-11-09 21:46:34  SYSTEM                          Service Control Manager         7035: The Network Location Awareness (NLA) service was successfully sent a start control.  
                        2009-11-09 21:46:34  SYSTEM                          Service Control Manager         7035: The Application Layer Gateway Service service was successfully sent a start control.  
                        2009-11-09 21:46:34  SYSTEM                          Service Control Manager         7035: The Remote Access Connection Manager service was successfully sent a start control.  
                        2009-11-09 21:46:34  SYSTEM                          Service Control Manager         7035: The Terminal Services service was successfully sent a start control.  
                        2009-11-09 21:46:35                                  Service Control Manager         7036: The Remote Access Connection Manager service entered the running state.  
                        2009-11-09 21:46:36  Administrator                   Service Control Manager         7035: The Cardex service was successfully sent a start control.  
                        2009-11-09 21:46:45                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the running state.  
                        2009-11-09 21:46:45  SYSTEM                          Service Control Manager         7035: The IMAPI CD-Burning COM Service service was successfully sent a start control.  
                        2009-11-09 21:46:52                                  Service Control Manager         7036: The IMAPI CD-Burning COM Service service entered the stopped state.  
                8          2009-11-09 21:47:35                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?9 ? ?2009 ?. at 21:47:  -     Windows XP x64 Edition (KB956572)  
                    8          2009-11-09 21:47:55                                  Windows Update Agent            20: Installation Failure: Windows failed to install the following update with error 0x8007f0da: Security Update for Windows XP x64 Edition (KB956572).  
                8          2009-11-09 21:47:55                                  Windows Update Agent            18: Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?10 ? ?2009 ?. at 17:00:  -     Windows XP x64 Edition (KB956572)  
                        2009-11-09 22:06:45  Administrator                   Service Control Manager         7035: The Lavalys EVEREST Kernel Driver service was successfully sent a start control.  


--------[   ]-------------------------------------------------------------------------------------------------------

      :
      Borland Database Engine                           5.2.0.2
      Borland InterBase Client                          -
      Easysoft ODBC-InterBase 6                         -
      Easysoft ODBC-InterBase 7                         -
      Firebird Client                                   -
      Jet Engine                                        4.00.9505.0
      MDAC                                              2.82.3959.0 (srv03_sp2_rtm.070216-1710)
      ODBC                                              3.526.3959.0 (srv03_sp2_rtm.070216-1710)
      MySQL Connector/ODBC                              -
      Oracle Client                                     -
      PsqlODBC                                          -
      Sybase ASE ODBC                                   -

     :
      Borland InterBase Server                          -
      Firebird Server                                   -
      Microsoft SQL Server                              -
      Microsoft SQL Server Compact Edition              -
      Microsoft SQL Server Express Edition              -
      MySQL Server                                      -
      Oracle Server                                     -
      PostgreSQL Server                                 -
      Sybase SQL Server                                 -


--------[  BDE ]------------------------------------------------------------------------------------------------

    DB2                           4.0         sqldb2v5.dll     5.2.0.2
    DBASE                           4.0                          
    FOXPRO                          4.0                          
    INFORMIX                      4.0         sqlinf9.dll      5.2.0.2
    INTRBASE                      4.0         sqlint32.dll     5.2.0.2
    MSACCESS                      1.0         idda3532.dll     5.2.0.2
    MSSQL                         4.0         sqlmss32.dll     5.2.0.2
    ORACLE                        4.0         sqlora8.dll      5.2.0.2
    PARADOX                         4.0                          
    SYBASE                        4.0         sqlssc32.dll     5.2.0.2


--------[  ODBC ]-----------------------------------------------------------------------------------------------

    Driver da Microsoft para arquivos texto (*.txt; *.csv)      odbcjt32.dll        4.0.6305.0            *.,*.asc,*.csv,*.tab,*.txt,*.csv
    Driver do Microsoft Access (*.mdb)                          odbcjt32.dll        4.0.6305.0            *.mdb
    Driver do Microsoft dBase (*.dbf)                           odbcjt32.dll        4.0.6305.0            *.dbf,*.ndx,*.mdx
    Driver do Microsoft Excel(*.xls)                            odbcjt32.dll        4.0.6305.0            *.xls
    Driver do Microsoft Paradox (*.db )                         odbcjt32.dll        4.0.6305.0            *.db
    Driver para o Microsoft Visual FoxPro                       vfpodbc.dll         1.0.2.0               *.dbf,*.cdx,*.idx,*.fpt
    Microsoft Access dBASE Driver (*.dbf, *.ndx, *.mdx)         aceodbc.dll         12.0.4518.1014        *.dbf, *.ndx, *.mdx
    Microsoft Access Driver (*.mdb)                             odbcjt32.dll        4.0.6305.0            *.mdb
    Microsoft Access Driver (*.mdb, *.accdb)                    aceodbc.dll         12.0.4518.1014        *.mdb,*.accdb
    Microsoft Access Paradox Driver (*.db)                      aceodbc.dll         12.0.4518.1014        *.mdb,*.accdb
    Microsoft Access Text Driver (*.txt, *.csv)                 aceodbc.dll         12.0.4518.1014        *.txt, *.csv
    Microsoft Access-Treiber (*.mdb)                            odbcjt32.dll        4.0.6305.0            *.mdb
    Microsoft dBase Driver (*.dbf)                              odbcjt32.dll        4.0.6305.0            *.dbf,*.ndx,*.mdx
    Microsoft dBase VFP Driver (*.dbf)                          vfpodbc.dll         1.0.2.0               *.dbf,*.cdx,*.idx,*.fpt
    Microsoft dBase-Treiber (*.dbf)                             odbcjt32.dll        4.0.6305.0            *.dbf,*.ndx,*.mdx
    Microsoft Excel Driver (*.xls)                              odbcjt32.dll        4.0.6305.0            *.xls
    Microsoft Excel Driver (*.xls, *.xlsx, *.xlsm, *.xlsb)      aceodbc.dll         12.0.4518.1014        *.xls,*.xlsx, *.xlsb
    Microsoft Excel-Treiber (*.xls)                             odbcjt32.dll        4.0.6305.0            *.xls
    Microsoft FoxPro VFP Driver (*.dbf)                         vfpodbc.dll         1.0.2.0               *.dbf,*.cdx,*.idx,*.fpt
    Microsoft ODBC for Oracle                                   msorcl32.dll        2.576.3959.0 (srv03_sp2_rtm.070216-1710)  
    Microsoft Paradox Driver (*.db )                            odbcjt32.dll        4.0.6305.0            *.db
    Microsoft Paradox-Treiber (*.db )                           odbcjt32.dll        4.0.6305.0            *.db
    Microsoft Text Driver (*.txt; *.csv)                        odbcjt32.dll        4.0.6305.0            *.,*.asc,*.csv,*.tab,*.txt,*.csv
    Microsoft Text-Treiber (*.txt; *.csv)                       odbcjt32.dll        4.0.6305.0            *.,*.asc,*.csv,*.tab,*.txt,*.csv
    Microsoft Visual FoxPro Driver                              vfpodbc.dll         1.0.2.0               *.dbf,*.cdx,*.idx,*.fpt
    Microsoft Visual FoxPro-Treiber                             vfpodbc.dll         1.0.2.0               *.dbf,*.cdx,*.idx,*.fpt
    SQL Server                                                  sqlsrv32.dll        2000.086.3959.00 (srv03_sp2_rtm.070216-1710)  


--------[   ODBC ]---------------------------------------------------------------------------------------

    dBASE Files                   Microsoft Access dBASE Driver (*.dbf, *.ndx, *.mdx)           aceodbc.dll
    Excel Files                   Microsoft Excel Driver (*.xls, *.xlsx, *.xlsm, *.xlsb)        aceodbc.dll
    MS Access Database            Microsoft Access Driver (*.mdb, *.accdb)                      aceodbc.dll


--------[    ]--------------------------------------------------------------------------------------------

    Core i7 Extreme 965     3333   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1            14045 /
    Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1             8889 /
    Pentium EE 955          3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11                 8025 /
    P4EE                    3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15                 7895 /
    Core 2 Duo E8400        3078   Asus P5QC                                                               P45                   Dual DDR3-1368        9-9-9-24 CR2             7871 /
    Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2             7667 /
    Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2             7174 /
    Core 2 Duo E6700        2666   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2             6924 /
    Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15                 6717 /
    Athlon64 X2 4000+       2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2             6264 /
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2             5987 /
    Core 2 Duo P8400        2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15                 5850 /
    Opteron 2378            2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1             5029 /
    Phenom X4 9500          2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2             5019 /
    Celeron 420             1600   Intel DQ965CO                                                           Q965 Int.             Dual DDR2-667         5-5-5-15                 4960 /
    Core 2 Duo T5600        1833   Asus F3000Jc Notebook                                                   i945PM                Dual DDR2-667         5-5-5-15                 4594 /
    Xeon                    3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7                4585 /
    P4EE                    3466   ASRock 775Dual-880Pro                                                   PT880Pro              Dual DDR2-400         3-3-3-8 CR2              4352 /
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11                 4012 /
    Core Duo T2500          2000   Asus N4L-VM DH                                                          i945GT Int.           Dual DDR2-667         5-5-5-15                 3976 /
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1              3938 /
    Xeon                    3066   Asus PCH-DL                                                             i875P + PAT           Dual DDR333           2-2-2-5                  3806 /
    Pentium M 730           1600   AOpen i915Ga-HFS                                                        i915G Int.            Dual DDR2-533         4-4-4-12                 3654 /
    Atom 230                1600   Intel D945GCLF                                                          i945GC                DDR2-533 SDRAM        4-4-4-12                 3540 /
    Xeon E5462              2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15                 3540 /
    Opteron 240             1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1              3529 /
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-12 CR2             3515 /
    P4                      2400   Abit SI7                                                                SiSR658               Dual PC1066 RDRAM     -                        3408 /
    Xeon 5140               2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15                 3348 /
    Xeon L5320              1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12                 3155 /
    P4                      2800   MSI 848P Neo-S                                                          i848P                 DDR400 SDRAM          2.5-3-3-8                2983 /
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2             2832 /
    Celeron                 2000   Gigabyte GA-8TRS350MT                                                   RS350 Int.            Dual DDR400           2-2-4-6 CR1              2769 /
    P4                      1600   Abit TH7II                                                              i850                  Dual PC800 RDRAM      -                        2754 /
    Opteron HE 2344         1700   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1             2737 /
    Celeron 215             1333   Intel D201GLY                                                           SiS662 Int.           DDR2-533              5-4-4-12                 2693 /
    Celeron M 320           1300   DFI 855GME-MGF                                                          i855GME Int.          DDR333 SDRAM          2.5-3-3-7                2435 /
    Duron                   1600   Biostar M7VIQ                                                           KM266 Int.            DDR266 SDRAM          2.5-2-2-6 CR2             1601 /
    Efficeon 8600           1000   ECS 532 Notebook                                                        Efficeon              DDR266 SDRAM                                   1540 /
    Athlon                  1400   PCChips M817LMR                                                         MAGiK1                DDR266 SDRAM          2-3-3-7                  1302 /
    Duron                    600   Abit KG7-Lite                                                           AMD-760               DDR200R SDRAM         2-2-2-5                  1134 /
    C7                      1500   VIA EPIA EN                                                             CN700 Int.            DDR2-533 SDRAM        4-4-4-12 CR2             1061 /
    Celeron                 1700   Asus P4B                                                                i845                  PC133 SDRAM           3-3-3-6                  1051 /
    PIII-E                   733   Tyan Thunder 2500                                                       ServerSet3HE          PC133R SDRAM          3-3-3-6                  1046 /
    PIII-S                  1266   MSI Pro266TD Master-LR                                                  ApolloPro266TD        DDR266 SDRAM          2-3-3-6 CR2              1041 /
    AthlonXP 1600+          1400   Acorp 7KMM1                                                             KM133A Int.           PC133 SDRAM           3-3-3-6                   954 /
    Crusoe 5800             1000   ECS A530 DeskNote                                                       Crusoe                DDR266 SDRAM                                    841 /
    Athlon                   750   Epox EP-7KXA                                                            KX133                 PC133 SDRAM           3-3-3-6                   767 /
    C3                      1333   VIA EPIA SP                                                             CN400 Int.            DDR400 SDRAM          3-3-3-8 CR2               690 /
    C3                       800   VIA EPIA                                                                PLE133 Int.           PC133 SDRAM           3-3-3-6                   635 /
    PIII                     500   Epox KP6-BS                                                             i440BX                PC100R SDRAM          3-3-3-?                   620 /
    PIII                     450   Asus P3C-S                                                              i820                  PC600 RDRAM           -                         524 /
    PII                      333   Intel DK440LX                                                           i440LX                PC66 SDRAM            3-2-2-?                   371 /
    Celeron                  266   Epox P2-100B                                                            ApolloPro             PC66 SDRAM            3-2-2-5                   360 /
    K6-III                   400   Epox EP-MVP3G-M                                                         MVP3                  PC100 SDRAM           2-2-2-5                   262 /
    PentiumPro               200   Compaq ProLiant 800                                                     i440FX                Dual EDO              -                         258 /
    Pentium                  166   Asus TX97-X                                                             i430TX                PC66 SDRAM            2-2-3-4                   228 /
    MediaGXm                 233   ALD NPC6836                                                             Cx5520                PC60 SDRAM            3-3-3-6                   222 /
    PentiumMMX               200   Gigabyte GA-586DX                                                       i430HX                Dual EDO              -                         188 /
    K5 PR166                 116   Asus P5A                                                                ALADDiN5              PC66 SDRAM            2-2-2-6                   167 /
    K6-2                     333   Amptron PM-9100LMR                                                      SiS5597 Ext.          PC66 SDRAM            3-3-3-6                   150 /
    Celeron                  700   PCChips M758LT                                                          SiS630ET Int.         PC100 SDRAM           3-3-3-6                   117 /


--------[    ]---------------------------------------------------------------------------------------------

    Core i7 Extreme 965     3333   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1            12038 /
    Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1             8814 /
    Core 2 Duo E8400        3078   Asus P5QC                                                               P45                   Dual DDR3-1368        9-9-9-24 CR2             7228 /
    Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2             7086 /
    Xeon E5462              2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15                 6712 /
    Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2             5915 /
    Pentium EE 955          3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11                 5636 /
    P4EE                    3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15                 5618 /
    Core 2 Duo P8400        2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15                 5522 /
    Athlon64 X2 4000+       2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2             5484 /
    P4EE                    3466   ASRock 775Dual-880Pro                                                   PT880Pro              Dual DDR2-400         3-3-3-8 CR2              5378 /
    Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15                 4853 /
    Core 2 Duo E6700        2666   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2             4842 /
    Xeon                    3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7                4199 /
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2             4083 /
    Opteron 2378            2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1             3940 /
    Phenom X4 9500          2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2             3861 /
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1              3824 /
    Celeron 420             1600   Intel DQ965CO                                                           Q965 Int.             Dual DDR2-667         5-5-5-15                 3584 /
    Core Duo T2500          2000   Asus N4L-VM DH                                                          i945GT Int.           Dual DDR2-667         5-5-5-15                 3410 /
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-12 CR2             3160 /
    P4                      2800   MSI 848P Neo-S                                                          i848P                 DDR400 SDRAM          2.5-3-3-8                3112 /
    Core 2 Duo T5600        1833   Asus F3000Jc Notebook                                                   i945PM                Dual DDR2-667         5-5-5-15                 3007 /
    Xeon                    3066   Asus PCH-DL                                                             i875P + PAT           Dual DDR333           2-2-2-5                  2840 /
    P4                      2400   Abit SI7                                                                SiSR658               Dual PC1066 RDRAM     -                        2838 /
    Pentium M 730           1600   AOpen i915Ga-HFS                                                        i915G Int.            Dual DDR2-533         4-4-4-12                 2834 /
    Atom 230                1600   Intel D945GCLF                                                          i945GC                DDR2-533 SDRAM        4-4-4-12                 2832 /
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11                 2785 /
    Xeon 5140               2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15                 2487 /
    Xeon L5320              1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12                 2315 /
    Opteron 240             1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1              2287 /
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2             2267 /
    Opteron HE 2344         1700   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1             2208 /
    Celeron                 2000   Gigabyte GA-8TRS350MT                                                   RS350 Int.            Dual DDR400           2-2-4-6 CR1              2148 /
    Celeron M 320           1300   DFI 855GME-MGF                                                          i855GME Int.          DDR333 SDRAM          2.5-3-3-7                2128 /
    P4                      1600   Abit TH7II                                                              i850                  Dual PC800 RDRAM      -                        2127 /
    C7                      1500   VIA EPIA EN                                                             CN700 Int.            DDR2-533 SDRAM        4-4-4-12 CR2             2067 /
    Celeron 215             1333   Intel D201GLY                                                           SiS662 Int.           DDR2-533              5-4-4-12                 1876 /
    Duron                   1600   Biostar M7VIQ                                                           KM266 Int.            DDR266 SDRAM          2.5-2-2-6 CR2             1571 /
    Athlon                  1400   PCChips M817LMR                                                         MAGiK1                DDR266 SDRAM          2-3-3-7                  1332 /
    Duron                    600   Abit KG7-Lite                                                           AMD-760               DDR200R SDRAM         2-2-2-5                  1204 /
    C3                      1333   VIA EPIA SP                                                             CN400 Int.            DDR400 SDRAM          3-3-3-8 CR2              1057 /
    PIII-S                  1266   MSI Pro266TD Master-LR                                                  ApolloPro266TD        DDR266 SDRAM          2-3-3-6 CR2              1054 /
    Celeron                 1700   Asus P4B                                                                i845                  PC133 SDRAM           3-3-3-6                  1049 /
    Athlon                   750   Epox EP-7KXA                                                            KX133                 PC133 SDRAM           3-3-3-6                  1034 /
    AthlonXP 1600+          1400   Acorp 7KMM1                                                             KM133A Int.           PC133 SDRAM           3-3-3-6                   952 /
    PIII-E                   733   Tyan Thunder 2500                                                       ServerSet3HE          PC133R SDRAM          3-3-3-6                   848 /
    PIII                     500   Epox KP6-BS                                                             i440BX                PC100R SDRAM          3-3-3-?                   781 /
    PIII                     450   Asus P3C-S                                                              i820                  PC600 RDRAM           -                         761 /
    Pentium                  166   Asus TX97-X                                                             i430TX                PC66 SDRAM            2-2-3-4                   692 /
    PentiumMMX               200   Gigabyte GA-586DX                                                       i430HX                Dual EDO              -                         690 /
    MediaGXm                 233   ALD NPC6836                                                             Cx5520                PC60 SDRAM            3-3-3-6                   588 /
    Efficeon 8600           1000   ECS 532 Notebook                                                        Efficeon              DDR266 SDRAM                                    549 /
    K5 PR166                 116   Asus P5A                                                                ALADDiN5              PC66 SDRAM            2-2-2-6                   500 /
    Crusoe 5800             1000   ECS A530 DeskNote                                                       Crusoe                DDR266 SDRAM                                    355 /
    C3                       800   VIA EPIA                                                                PLE133 Int.           PC133 SDRAM           3-3-3-6                   250 /
    PII                      333   Intel DK440LX                                                           i440LX                PC66 SDRAM            3-2-2-?                   177 /
    Celeron                  700   PCChips M758LT                                                          SiS630ET Int.         PC100 SDRAM           3-3-3-6                   171 /
    Celeron                  266   Epox P2-100B                                                            ApolloPro             PC66 SDRAM            3-2-2-5                   139 /
    K6-III                   400   Epox EP-MVP3G-M                                                         MVP3                  PC100 SDRAM           2-2-2-5                   128 /
    PentiumPro               200   Compaq ProLiant 800                                                     i440FX                Dual EDO              -                          87 /
    K6-2                     333   Amptron PM-9100LMR                                                      SiS5597 Ext.          PC66 SDRAM            3-3-3-6                    77 /


--------[    ]----------------------------------------------------------------------------------------

    Core i7 Extreme 965     3333   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1            14153 /
    Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2             8444 /
    Core 2 Duo E8400        3078   Asus P5QC                                                               P45                   Dual DDR3-1368        9-9-9-24 CR2             7470 /
    Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1             7241 /
    Opteron 2378            2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1             6833 /
    Athlon64 X2 4000+       2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2             6567 /
    Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2             6225 /
    Pentium EE 955          3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11                 6206 /
    P4EE                    3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15                 6135 /
    Xeon E5462              2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15                 5470 /
    Phenom X4 9500          2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2             5429 /
    Core 2 Duo E6700        2666   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2             5362 /
    Core 2 Duo P8400        2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15                 5146 /
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2             4653 /
    Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15                 4627 /
    Xeon                    3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7                4149 /
    Celeron 420             1600   Intel DQ965CO                                                           Q965 Int.             Dual DDR2-667         5-5-5-15                 4018 /
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1              3714 /
    Opteron HE 2344         1700   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1             3373 /
    P4EE                    3466   ASRock 775Dual-880Pro                                                   PT880Pro              Dual DDR2-400         3-3-3-8 CR2              3179 /
    Core 2 Duo T5600        1833   Asus F3000Jc Notebook                                                   i945PM                Dual DDR2-667         5-5-5-15                 3172 /
    Xeon                    3066   Asus PCH-DL                                                             i875P + PAT           Dual DDR333           2-2-2-5                  3161 /
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11                 3144 /
    Core Duo T2500          2000   Asus N4L-VM DH                                                          i945GT Int.           Dual DDR2-667         5-5-5-15                 3103 /
    Xeon 5140               2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15                 3000 /
    Xeon L5320              1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12                 2905 /
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-12 CR2             2850 /
    P4                      2800   MSI 848P Neo-S                                                          i848P                 DDR400 SDRAM          2.5-3-3-8                2645 /
    P4                      2400   Abit SI7                                                                SiSR658               Dual PC1066 RDRAM     -                        2542 /
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2             2511 /
    Pentium M 730           1600   AOpen i915Ga-HFS                                                        i915G Int.            Dual DDR2-533         4-4-4-12                 2459 /
    Atom 230                1600   Intel D945GCLF                                                          i945GC                DDR2-533 SDRAM        4-4-4-12                 2397 /
    Opteron 240             1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1              2386 /
    P4                      1600   Abit TH7II                                                              i850                  Dual PC800 RDRAM      -                        2211 /
    Celeron                 2000   Gigabyte GA-8TRS350MT                                                   RS350 Int.            Dual DDR400           2-2-4-6 CR1              2023 /
    Celeron 215             1333   Intel D201GLY                                                           SiS662 Int.           DDR2-533              5-4-4-12                 1963 /
    Celeron M 320           1300   DFI 855GME-MGF                                                          i855GME Int.          DDR333 SDRAM          2.5-3-3-7                1729 /
    Duron                   1600   Biostar M7VIQ                                                           KM266 Int.            DDR266 SDRAM          2.5-2-2-6 CR2             1571 /
    C7                      1500   VIA EPIA EN                                                             CN700 Int.            DDR2-533 SDRAM        4-4-4-12 CR2             1394 /
    Athlon                  1400   PCChips M817LMR                                                         MAGiK1                DDR266 SDRAM          2-3-3-7                  1255 /
    Duron                    600   Abit KG7-Lite                                                           AMD-760               DDR200R SDRAM         2-2-2-5                  1184 /
    AthlonXP 1600+          1400   Acorp 7KMM1                                                             KM133A Int.           PC133 SDRAM           3-3-3-6                   950 /
    PIII-S                  1266   MSI Pro266TD Master-LR                                                  ApolloPro266TD        DDR266 SDRAM          2-3-3-6 CR2               907 /
    Celeron                 1700   Asus P4B                                                                i845                  PC133 SDRAM           3-3-3-6                   886 /
    PIII-E                   733   Tyan Thunder 2500                                                       ServerSet3HE          PC133R SDRAM          3-3-3-6                   865 /
    C3                      1333   VIA EPIA SP                                                             CN400 Int.            DDR400 SDRAM          3-3-3-8 CR2               784 /
    Efficeon 8600           1000   ECS 532 Notebook                                                        Efficeon              DDR266 SDRAM                                    623 /
    Athlon                   750   Epox EP-7KXA                                                            KX133                 PC133 SDRAM           3-3-3-6                   574 /
    PIII                     500   Epox KP6-BS                                                             i440BX                PC100R SDRAM          3-3-3-?                   526 /
    PIII                     450   Asus P3C-S                                                              i820                  PC600 RDRAM           -                         504 /
    Crusoe 5800             1000   ECS A530 DeskNote                                                       Crusoe                DDR266 SDRAM                                    476 /
    C3                       800   VIA EPIA                                                                PLE133 Int.           PC133 SDRAM           3-3-3-6                   311 /
    PII                      333   Intel DK440LX                                                           i440LX                PC66 SDRAM            3-2-2-?                   245 /
    Pentium                  166   Asus TX97-X                                                             i430TX                PC66 SDRAM            2-2-3-4                   182 /
    PentiumMMX               200   Gigabyte GA-586DX                                                       i430HX                Dual EDO              -                         181 /
    K6-III                   400   Epox EP-MVP3G-M                                                         MVP3                  PC100 SDRAM           2-2-2-5                   164 /
    Celeron                  266   Epox P2-100B                                                            ApolloPro             PC66 SDRAM            3-2-2-5                   142 /
    Celeron                  700   PCChips M758LT                                                          SiS630ET Int.         PC100 SDRAM           3-3-3-6                   133 /
    PentiumPro               200   Compaq ProLiant 800                                                     i440FX                Dual EDO              -                         111 /
    K6-2                     333   Amptron PM-9100LMR                                                      SiS5597 Ext.          PC66 SDRAM            3-3-3-6                   100 /
    MediaGXm                 233   ALD NPC6836                                                             Cx5520                PC60 SDRAM            3-3-3-6                    83 /
    K5 PR166                 116   Asus P5A                                                                ALADDiN5              PC66 SDRAM            2-2-2-6                    81 /


--------[   ]---------------------------------------------------------------------------------------------

    Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1       47.2 ns
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2       55.2 ns
    Core i7 Extreme 965     3333   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1       59.3 ns
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2       59.8 ns
    Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2       61.3 ns
    Athlon64 X2 4000+       2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2       62.1 ns
    Core 2 Duo E8400        3078   Asus P5QC                                                               P45                   Dual DDR3-1368        9-9-9-24 CR2       67.5 ns
    Core 2 Duo E6700        2666   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2       69.3 ns
    Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15           70.9 ns
    Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2       74.7 ns
    Pentium EE 955          3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11           80.3 ns
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1        80.4 ns
    Core 2 Duo P8400        2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15           85.0 ns
    P4EE                    3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15           85.3 ns
    Pentium M 730           1600   AOpen i915Ga-HFS                                                        i915G Int.            Dual DDR2-533         4-4-4-12           90.1 ns
    Celeron 420             1600   Intel DQ965CO                                                           Q965 Int.             Dual DDR2-667         5-5-5-15           91.8 ns
    Opteron 2378            2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1       95.3 ns
    Celeron M 320           1300   DFI 855GME-MGF                                                          i855GME Int.          DDR333 SDRAM          2.5-3-3-7          95.8 ns
    Opteron 240             1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1        97.9 ns
    Core Duo T2500          2000   Asus N4L-VM DH                                                          i945GT Int.           Dual DDR2-667         5-5-5-15           99.6 ns
    Atom 230                1600   Intel D945GCLF                                                          i945GC                DDR2-533 SDRAM        4-4-4-12          103.5 ns
    Xeon                    3066   Asus PCH-DL                                                             i875P + PAT           Dual DDR333           2-2-2-5           106.0 ns
    PIII-S                  1266   MSI Pro266TD Master-LR                                                  ApolloPro266TD        DDR266 SDRAM          2-3-3-6 CR2       108.1 ns
    Xeon 5140               2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15          109.0 ns
    Xeon E5462              2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15          110.6 ns
    Phenom X4 9500          2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2      112.6 ns
    P4                      2800   MSI 848P Neo-S                                                          i848P                 DDR400 SDRAM          2.5-3-3-8         112.8 ns
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-12 CR2      113.4 ns
    Core 2 Duo T5600        1833   Asus F3000Jc Notebook                                                   i945PM                Dual DDR2-667         5-5-5-15          113.7 ns
    PIII-E                   733   Tyan Thunder 2500                                                       ServerSet3HE          PC133R SDRAM          3-3-3-6           117.7 ns
    P4EE                    3466   ASRock 775Dual-880Pro                                                   PT880Pro              Dual DDR2-400         3-3-3-8 CR2       124.8 ns
    Crusoe 5800             1000   ECS A530 DeskNote                                                       Crusoe                DDR266 SDRAM                            125.5 ns
    Xeon L5320              1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12          126.1 ns
    K6-III                   400   Epox EP-MVP3G-M                                                         MVP3                  PC100 SDRAM           2-2-2-5           139.2 ns
    Xeon                    3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7         145.2 ns
    P4                      2400   Abit SI7                                                                SiSR658               Dual PC1066 RDRAM     -                 147.1 ns
    C7                      1500   VIA EPIA EN                                                             CN700 Int.            DDR2-533 SDRAM        4-4-4-12 CR2      147.2 ns
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11          147.8 ns
    C3                       800   VIA EPIA                                                                PLE133 Int.           PC133 SDRAM           3-3-3-6           154.8 ns
    C3                      1333   VIA EPIA SP                                                             CN400 Int.            DDR400 SDRAM          3-3-3-8 CR2       156.0 ns
    Celeron                 1700   Asus P4B                                                                i845                  PC133 SDRAM           3-3-3-6           159.7 ns
    Celeron                 2000   Gigabyte GA-8TRS350MT                                                   RS350 Int.            Dual DDR400           2-2-4-6 CR1       161.4 ns
    MediaGXm                 233   ALD NPC6836                                                             Cx5520                PC60 SDRAM            3-3-3-6           162.2 ns
    P4                      1600   Abit TH7II                                                              i850                  Dual PC800 RDRAM      -                 162.9 ns
    Efficeon 8600           1000   ECS 532 Notebook                                                        Efficeon              DDR266 SDRAM                            163.2 ns
    Duron                   1600   Biostar M7VIQ                                                           KM266 Int.            DDR266 SDRAM          2.5-2-2-6 CR2      163.8 ns
    Celeron 215             1333   Intel D201GLY                                                           SiS662 Int.           DDR2-533              5-4-4-12          166.2 ns
    PIII                     500   Epox KP6-BS                                                             i440BX                PC100R SDRAM          3-3-3-?           166.3 ns
    PentiumMMX               200   Gigabyte GA-586DX                                                       i430HX                Dual EDO              -                 167.2 ns
    AthlonXP 1600+          1400   Acorp 7KMM1                                                             KM133A Int.           PC133 SDRAM           3-3-3-6           170.6 ns
    Athlon                  1400   PCChips M817LMR                                                         MAGiK1                DDR266 SDRAM          2-3-3-7           175.7 ns
    Duron                    600   Abit KG7-Lite                                                           AMD-760               DDR200R SDRAM         2-2-2-5           183.8 ns
    K6-2                     333   Amptron PM-9100LMR                                                      SiS5597 Ext.          PC66 SDRAM            3-3-3-6           201.8 ns
    Opteron HE 2344         1700   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1      205.3 ns
    Athlon                   750   Epox EP-7KXA                                                            KX133                 PC133 SDRAM           3-3-3-6           207.1 ns
    PIII                     450   Asus P3C-S                                                              i820                  PC600 RDRAM           -                 215.2 ns
    PentiumPro               200   Compaq ProLiant 800                                                     i440FX                Dual EDO              -                 233.6 ns
    Pentium                  166   Asus TX97-X                                                             i430TX                PC66 SDRAM            2-2-3-4           234.9 ns
    PII                      333   Intel DK440LX                                                           i440LX                PC66 SDRAM            3-2-2-?           248.9 ns
    K5 PR166                 116   Asus P5A                                                                ALADDiN5              PC66 SDRAM            2-2-2-6           266.1 ns
    Celeron                  700   PCChips M758LT                                                          SiS630ET Int.         PC100 SDRAM           3-3-3-6           275.6 ns
    Celeron                  266   Epox P2-100B                                                            ApolloPro             PC66 SDRAM            3-2-2-5           317.4 ns


--------[ CPU Queen ]---------------------------------------------------------------------------------------------------

    4x Core i7 Extreme 965 HT    3333   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1         30786
    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15             30472
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1         22769
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2         21421
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12             20452
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15             19166
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2         18636
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15             16729
    8x Opteron HE 2344      1700   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1         16146
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2         13693
    2x Core 2 Duo E8400     3078   Asus P5QC                                                               P45                   Dual DDR3-1368        9-9-9-24 CR2         13050
    2x Core 2 Duo E6700     2666   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2         11406
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1         11169
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15              9578
    2x Core Duo T2500       2000   Asus N4L-VM DH                                                          i945GT Int.           Dual DDR2-667         5-5-5-15              7793
    2x Core 2 Duo T5600     1833   Asus F3000Jc Notebook                                                   i945PM                Dual DDR2-667         5-5-5-15              7717
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2          7280
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11              7098
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7             6953
    2x Xeon                 3066   Asus PCH-DL                                                             i875P + PAT           Dual DDR333           2-2-2-5               6188
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1           4863
    2x PIII-S               1266   MSI Pro266TD Master-LR                                                  ApolloPro266TD        DDR266 SDRAM          2-3-3-6 CR2           4857
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15              4210
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1           3851
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC                DDR2-533 SDRAM        4-4-4-12              3779
    P4EE                    3466   ASRock 775Dual-880Pro                                                   PT880Pro              Dual DDR2-400         3-3-3-8 CR2           3516
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2          3497
    Celeron 420             1600   Intel DQ965CO                                                           Q965 Int.             Dual DDR2-667         5-5-5-15              3375
    Pentium M 730           1600   AOpen i915Ga-HFS                                                        i915G Int.            Dual DDR2-533         4-4-4-12              3124
    2x PIII-E                733   Tyan Thunder 2500                                                       ServerSet3HE          PC133R SDRAM          3-3-3-6               2811
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2          2808
    P4                      2800   MSI 848P Neo-S                                                          i848P                 DDR400 SDRAM          2.5-3-3-8             2804
    Celeron 215             1333   Intel D201GLY                                                           SiS662 Int.           DDR2-533              5-4-4-12              2607
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-12 CR2          2583
    Celeron M 320           1300   DFI 855GME-MGF                                                          i855GME Int.          DDR333 SDRAM          2.5-3-3-7             2544
    Duron                   1600   Biostar M7VIQ                                                           KM266 Int.            DDR266 SDRAM          2.5-2-2-6 CR2          2537
    P4                      2400   Abit SI7                                                                SiSR658               Dual PC1066 RDRAM     -                     2434
    Athlon                  1400   PCChips M817LMR                                                         MAGiK1                DDR266 SDRAM          2-3-3-7               2218
    AthlonXP 1600+          1400   Acorp 7KMM1                                                             KM133A Int.           PC133 SDRAM           3-3-3-6               2210
    Celeron                 2000   Gigabyte GA-8TRS350MT                                                   RS350 Int.            Dual DDR400           2-2-4-6 CR1           2031
    2x PIII                  500   Epox KP6-BS                                                             i440BX                PC100R SDRAM          3-3-3-?               1927
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11              1900
    Celeron                 1700   Asus P4B                                                                i845                  PC133 SDRAM           3-3-3-6               1723
    P4                      1600   Abit TH7II                                                              i850                  Dual PC800 RDRAM      -                     1624
    C7                      1500   VIA EPIA EN                                                             CN700 Int.            DDR2-533 SDRAM        4-4-4-12 CR2          1560
    Efficeon 8600           1000   ECS 532 Notebook                                                        Efficeon              DDR266 SDRAM                                1461
    Celeron                  700   PCChips M758LT                                                          SiS630ET Int.         PC100 SDRAM           3-3-3-6               1349
    Athlon                   750   Epox EP-7KXA                                                            KX133                 PC133 SDRAM           3-3-3-6               1188
    2x PII                   333   Intel DK440LX                                                           i440LX                PC66 SDRAM            3-2-2-?               1145
    C3                      1333   VIA EPIA SP                                                             CN400 Int.            DDR400 SDRAM          3-3-3-8 CR2           1099
    Duron                    600   Abit KG7-Lite                                                           AMD-760               DDR200R SDRAM         2-2-2-5                953
    Crusoe 5800             1000   ECS A530 DeskNote                                                       Crusoe                DDR266 SDRAM                                 885
    PIII                     450   Asus P3C-S                                                              i820                  PC600 RDRAM           -                      873
    K6-III                   400   Epox EP-MVP3G-M                                                         MVP3                  PC100 SDRAM           2-2-2-5                814
    K6-2                     333   Amptron PM-9100LMR                                                      SiS5597 Ext.          PC66 SDRAM            3-3-3-6                696
    2x PentiumMMX            200   Gigabyte GA-586DX                                                       i430HX                Dual EDO              -                      664
    C3                       800   VIA EPIA                                                                PLE133 Int.           PC133 SDRAM           3-3-3-6                575
    2x PentiumPro            200   Compaq ProLiant 800                                                     i440FX                Dual EDO              -                      534
    Celeron                  266   Epox P2-100B                                                            ApolloPro             PC66 SDRAM            3-2-2-5                459
    Pentium                  166   Asus TX97-X                                                             i430TX                PC66 SDRAM            2-2-3-4                232
    K5 PR166                 116   Asus P5A                                                                ALADDiN5              PC66 SDRAM            2-2-2-6                200
    MediaGXm                 233   ALD NPC6836                                                             Cx5520                PC60 SDRAM            3-3-3-6                185


--------[ CPU PhotoWorxx ]----------------------------------------------------------------------------------------------

    4x Core i7 Extreme 965 HT    3333   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1                 35393
    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15                     25575
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2                 19168
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2                 17431
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1                 15896
    2x Core 2 Duo E8400     3078   Asus P5QC                                                               P45                   Dual DDR3-1368        9-9-9-24 CR2                 15690
    2x Core 2 Duo E6700     2666   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2                 11922
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15                     11706
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12                      9621
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15                      8626
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1                  7653
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15                      7534
    8x Opteron HE 2344      1700   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1                  6622
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2                  6532
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2                  6419
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11                      6058
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1                   5645
    2x Core Duo T2500       2000   Asus N4L-VM DH                                                          i945GT Int.           Dual DDR2-667         5-5-5-15                      5053
    2x Core 2 Duo T5600     1833   Asus F3000Jc Notebook                                                   i945PM                Dual DDR2-667         5-5-5-15                      5027
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15                      4621
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7                     4031
    Celeron 420             1600   Intel DQ965CO                                                           Q965 Int.             Dual DDR2-667         5-5-5-15                      3844
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2                  3724
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1                   3406
    2x Xeon                 3066   Asus PCH-DL                                                             i875P + PAT           Dual DDR333           2-2-2-5                       3339
    Pentium M 730           1600   AOpen i915Ga-HFS                                                        i915G Int.            Dual DDR2-533         4-4-4-12                      2801
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2                  2780
    P4EE                    3466   ASRock 775Dual-880Pro                                                   PT880Pro              Dual DDR2-400         3-3-3-8 CR2                   2424
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11                      2262
    Celeron 215             1333   Intel D201GLY                                                           SiS662 Int.           DDR2-533              5-4-4-12                      2198
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC                DDR2-533 SDRAM        4-4-4-12                      2163
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-12 CR2                  1975
    P4                      2800   MSI 848P Neo-S                                                          i848P                 DDR400 SDRAM          2.5-3-3-8                     1967
    P4                      2400   Abit SI7                                                                SiSR658               Dual PC1066 RDRAM     -                             1883
    Celeron M 320           1300   DFI 855GME-MGF                                                          i855GME Int.          DDR333 SDRAM          2.5-3-3-7                     1854
    Celeron                 2000   Gigabyte GA-8TRS350MT                                                   RS350 Int.            Dual DDR400           2-2-4-6 CR1                   1599
    Duron                   1600   Biostar M7VIQ                                                           KM266 Int.            DDR266 SDRAM          2.5-2-2-6 CR2                  1413
    P4                      1600   Abit TH7II                                                              i850                  Dual PC800 RDRAM      -                             1385
    2x PIII-S               1266   MSI Pro266TD Master-LR                                                  ApolloPro266TD        DDR266 SDRAM          2-3-3-6 CR2                   1299
    C7                      1500   VIA EPIA EN                                                             CN700 Int.            DDR2-533 SDRAM        4-4-4-12 CR2                  1219
    2x PIII-E                733   Tyan Thunder 2500                                                       ServerSet3HE          PC133R SDRAM          3-3-3-6                       1138
    Efficeon 8600           1000   ECS 532 Notebook                                                        Efficeon              DDR266 SDRAM                                        1119
    Celeron                 1700   Asus P4B                                                                i845                  PC133 SDRAM           3-3-3-6                       1070
    AthlonXP 1600+          1400   Acorp 7KMM1                                                             KM133A Int.           PC133 SDRAM           3-3-3-6                        959
    Athlon                  1400   PCChips M817LMR                                                         MAGiK1                DDR266 SDRAM          2-3-3-7                        853
    2x PIII                  500   Epox KP6-BS                                                             i440BX                PC100R SDRAM          3-3-3-?                        839
    C3                      1333   VIA EPIA SP                                                             CN400 Int.            DDR400 SDRAM          3-3-3-8 CR2                    670
    Duron                    600   Abit KG7-Lite                                                           AMD-760               DDR200R SDRAM         2-2-2-5                        667
    Athlon                   750   Epox EP-7KXA                                                            KX133                 PC133 SDRAM           3-3-3-6                        598
    Crusoe 5800             1000   ECS A530 DeskNote                                                       Crusoe                DDR266 SDRAM                                         536
    2x PII                   333   Intel DK440LX                                                           i440LX                PC66 SDRAM            3-2-2-?                        531
    PIII                     450   Asus P3C-S                                                              i820                  PC600 RDRAM           -                              530
    K6-III                   400   Epox EP-MVP3G-M                                                         MVP3                  PC100 SDRAM           2-2-2-5                        357
    C3                       800   VIA EPIA                                                                PLE133 Int.           PC133 SDRAM           3-3-3-6                        353
    2x PentiumPro            200   Compaq ProLiant 800                                                     i440FX                Dual EDO              -                              327
    Celeron                  266   Epox P2-100B                                                            ApolloPro             PC66 SDRAM            3-2-2-5                        297
    Celeron                  700   PCChips M758LT                                                          SiS630ET Int.         PC100 SDRAM           3-3-3-6                        270
    K6-2                     333   Amptron PM-9100LMR                                                      SiS5597 Ext.          PC66 SDRAM            3-3-3-6                        254
    K5 PR166                 116   Asus P5A                                                                ALADDiN5              PC66 SDRAM            2-2-2-6                        173
    Pentium                  166   Asus TX97-X                                                             i430TX                PC66 SDRAM            2-2-3-4                        148
    MediaGXm                 233   ALD NPC6836                                                             Cx5520                PC60 SDRAM            3-3-3-6                        147
    2x PentiumMMX            200   Gigabyte GA-586DX                                                       i430HX                Dual EDO              -                              142


--------[ CPU ZLib ]----------------------------------------------------------------------------------------------------

    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15               139481 /
    4x Core i7 Extreme 965 HT    3333   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1           112330 /
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1           104213 /
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12                95887 /
    8x Opteron HE 2344      1700   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1            88845 /
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2            80081 /
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2            77167 /
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15                69756 /
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15                60995 /
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2            58396 /
    2x Core 2 Duo E8400     3078   Asus P5QC                                                               P45                   Dual DDR3-1368        9-9-9-24 CR2            39984 /
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1            38059 /
    2x Core 2 Duo E6700     2666   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2            35355 /
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11                29844 /
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15                29223 /
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7               29177 /
    2x Xeon                 3066   Asus PCH-DL                                                             i875P + PAT           Dual DDR333           2-2-2-5                 25040 /
    2x Core 2 Duo T5600     1833   Asus F3000Jc Notebook                                                   i945PM                Dual DDR2-667         5-5-5-15                23969 /
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2            23852 /
    2x Core Duo T2500       2000   Asus N4L-VM DH                                                          i945GT Int.           Dual DDR2-667         5-5-5-15                23789 /
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15                16146 /
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1             15860 /
    2x PIII-S               1266   MSI Pro266TD Master-LR                                                  ApolloPro266TD        DDR266 SDRAM          2-3-3-6 CR2             14669 /
    P4EE                    3466   ASRock 775Dual-880Pro                                                   PT880Pro              Dual DDR2-400         3-3-3-8 CR2             14095 /
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1             12635 /
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2            11824 /
    P4                      2800   MSI 848P Neo-S                                                          i848P                 DDR400 SDRAM          2.5-3-3-8               11343 /
    Celeron 420             1600   Intel DQ965CO                                                           Q965 Int.             Dual DDR2-667         5-5-5-15                10485 /
    Pentium M 730           1600   AOpen i915Ga-HFS                                                        i915G Int.            Dual DDR2-533         4-4-4-12                 9871 /
    P4                      2400   Abit SI7                                                                SiSR658               Dual PC1066 RDRAM     -                        9775 /
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11                 9261 /
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC                DDR2-533 SDRAM        4-4-4-12                 8404 /
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2             8152 /
    Celeron M 320           1300   DFI 855GME-MGF                                                          i855GME Int.          DDR333 SDRAM          2.5-3-3-7                8110 /
    Celeron 215             1333   Intel D201GLY                                                           SiS662 Int.           DDR2-533              5-4-4-12                 7935 /
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-12 CR2             7799 /
    AthlonXP 1600+          1400   Acorp 7KMM1                                                             KM133A Int.           PC133 SDRAM           3-3-3-6                  7435 /
    2x PIII-E                733   Tyan Thunder 2500                                                       ServerSet3HE          PC133R SDRAM          3-3-3-6                  7379 /
    Athlon                  1400   PCChips M817LMR                                                         MAGiK1                DDR266 SDRAM          2-3-3-7                  7343 /
    P4                      1600   Abit TH7II                                                              i850                  Dual PC800 RDRAM      -                        6339 /
    Efficeon 8600           1000   ECS 532 Notebook                                                        Efficeon              DDR266 SDRAM                                   5321 /
    2x PIII                  500   Epox KP6-BS                                                             i440BX                PC100R SDRAM          3-3-3-?                  4826 /
    Celeron                 2000   Gigabyte GA-8TRS350MT                                                   RS350 Int.            Dual DDR400           2-2-4-6 CR1              4407 /
    C7                      1500   VIA EPIA EN                                                             CN700 Int.            DDR2-533 SDRAM        4-4-4-12 CR2             4140 /
    Crusoe 5800             1000   ECS A530 DeskNote                                                       Crusoe                DDR266 SDRAM                                   4002 /
    Duron                   1600   Biostar M7VIQ                                                           KM266 Int.            DDR266 SDRAM          2.5-2-2-6 CR2             3786 /
    Athlon                   750   Epox EP-7KXA                                                            KX133                 PC133 SDRAM           3-3-3-6                  3586 /
    Celeron                 1700   Asus P4B                                                                i845                  PC133 SDRAM           3-3-3-6                  3484 /
    2x PII                   333   Intel DK440LX                                                           i440LX                PC66 SDRAM            3-2-2-?                  3070 /
    Duron                    600   Abit KG7-Lite                                                           AMD-760               DDR200R SDRAM         2-2-2-5                  2288 /
    C3                      1333   VIA EPIA SP                                                             CN400 Int.            DDR400 SDRAM          3-3-3-8 CR2              2280 /
    PIII                     450   Asus P3C-S                                                              i820                  PC600 RDRAM           -                        2195 /
    2x PentiumPro            200   Compaq ProLiant 800                                                     i440FX                Dual EDO              -                        2102 /
    K6-III                   400   Epox EP-MVP3G-M                                                         MVP3                  PC100 SDRAM           2-2-2-5                  1986 /
    C3                       800   VIA EPIA                                                                PLE133 Int.           PC133 SDRAM           3-3-3-6                  1465 /
    Celeron                  700   PCChips M758LT                                                          SiS630ET Int.         PC100 SDRAM           3-3-3-6                  1299 /
    2x PentiumMMX            200   Gigabyte GA-586DX                                                       i430HX                Dual EDO              -                        1054 /
    K6-2                     333   Amptron PM-9100LMR                                                      SiS5597 Ext.          PC66 SDRAM            3-3-3-6                   774 /
    Celeron                  266   Epox P2-100B                                                            ApolloPro             PC66 SDRAM            3-2-2-5                   656 /
    Pentium                  166   Asus TX97-X                                                             i430TX                PC66 SDRAM            2-2-3-4                   497 /
    K5 PR166                 116   Asus P5A                                                                ALADDiN5              PC66 SDRAM            2-2-2-6                   474 /
    MediaGXm                 233   ALD NPC6836                                                             Cx5520                PC60 SDRAM            3-3-3-6                   412 /


--------[ CPU AES ]-----------------------------------------------------------------------------------------------------

    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-12 CR2         42295
    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15             41625
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1         32424
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12             27698
    4x Core i7 Extreme 965 HT    3333   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1         26703
    8x Opteron HE 2344      1700   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1         22599
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2         22435
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2         21658
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15             19896
    C7                      1500   VIA EPIA EN                                                             CN700 Int.            DDR2-533 SDRAM        4-4-4-12 CR2         17358
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15             17320
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2         14802
    2x Core 2 Duo E8400     3078   Asus P5QC                                                               P45                   Dual DDR3-1368        9-9-9-24 CR2         11488
    2x Core 2 Duo E6700     2666   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2          9969
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11              8970
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7             8740
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15              8443
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1          8339
    2x Core Duo T2500       2000   Asus N4L-VM DH                                                          i945GT Int.           Dual DDR2-667         5-5-5-15              7109
    2x Core 2 Duo T5600     1833   Asus F3000Jc Notebook                                                   i945PM                Dual DDR2-667         5-5-5-15              6778
    C3                      1333   VIA EPIA SP                                                             CN400 Int.            DDR400 SDRAM          3-3-3-8 CR2           6771
    2x Xeon                 3066   Asus PCH-DL                                                             i875P + PAT           Dual DDR333           2-2-2-5               6366
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2          5444
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15              4811
    2x PIII-S               1266   MSI Pro266TD Master-LR                                                  ApolloPro266TD        DDR266 SDRAM          2-3-3-6 CR2           3985
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1           3608
    P4EE                    3466   ASRock 775Dual-880Pro                                                   PT880Pro              Dual DDR2-400         3-3-3-8 CR2           3576
    Celeron 420             1600   Intel DQ965CO                                                           Q965 Int.             Dual DDR2-667         5-5-5-15              2935
    P4                      2800   MSI 848P Neo-S                                                          i848P                 DDR400 SDRAM          2.5-3-3-8             2906
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1           2851
    Pentium M 730           1600   AOpen i915Ga-HFS                                                        i915G Int.            Dual DDR2-533         4-4-4-12              2842
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2          2603
    Celeron 215             1333   Intel D201GLY                                                           SiS662 Int.           DDR2-533              5-4-4-12              2378
    Celeron M 320           1300   DFI 855GME-MGF                                                          i855GME Int.          DDR333 SDRAM          2.5-3-3-7             2291
    P4                      2400   Abit SI7                                                                SiSR658               Dual PC1066 RDRAM     -                     2284
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11              2114
    2x PIII-E                733   Tyan Thunder 2500                                                       ServerSet3HE          PC133R SDRAM          3-3-3-6               2105
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2          2089
    Duron                   1600   Biostar M7VIQ                                                           KM266 Int.            DDR266 SDRAM          2.5-2-2-6 CR2          2031
    Celeron                 2000   Gigabyte GA-8TRS350MT                                                   RS350 Int.            Dual DDR400           2-2-4-6 CR1           1920
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC                DDR2-533 SDRAM        4-4-4-12              1845
    AthlonXP 1600+          1400   Acorp 7KMM1                                                             KM133A Int.           PC133 SDRAM           3-3-3-6               1770
    Efficeon 8600           1000   ECS 532 Notebook                                                        Efficeon              DDR266 SDRAM                                1762
    Celeron                 1700   Asus P4B                                                                i845                  PC133 SDRAM           3-3-3-6               1579
    Athlon                  1400   PCChips M817LMR                                                         MAGiK1                DDR266 SDRAM          2-3-3-7               1539
    P4                      1600   Abit TH7II                                                              i850                  Dual PC800 RDRAM      -                     1475
    2x PIII                  500   Epox KP6-BS                                                             i440BX                PC100R SDRAM          3-3-3-?               1466
    Crusoe 5800             1000   ECS A530 DeskNote                                                       Crusoe                DDR266 SDRAM                                1177
    2x PII                   333   Intel DK440LX                                                           i440LX                PC66 SDRAM            3-2-2-?                984
    Celeron                  700   PCChips M758LT                                                          SiS630ET Int.         PC100 SDRAM           3-3-3-6                909
    Athlon                   750   Epox EP-7KXA                                                            KX133                 PC133 SDRAM           3-3-3-6                857
    Duron                    600   Abit KG7-Lite                                                           AMD-760               DDR200R SDRAM         2-2-2-5                727
    PIII                     450   Asus P3C-S                                                              i820                  PC600 RDRAM           -                      682
    2x PentiumPro            200   Compaq ProLiant 800                                                     i440FX                Dual EDO              -                      599
    K6-III                   400   Epox EP-MVP3G-M                                                         MVP3                  PC100 SDRAM           2-2-2-5                447
    Celeron                  266   Epox P2-100B                                                            ApolloPro             PC66 SDRAM            3-2-2-5                401
    C3                       800   VIA EPIA                                                                PLE133 Int.           PC133 SDRAM           3-3-3-6                393
    K6-2                     333   Amptron PM-9100LMR                                                      SiS5597 Ext.          PC66 SDRAM            3-3-3-6                348
    2x PentiumMMX            200   Gigabyte GA-586DX                                                       i430HX                Dual EDO              -                      313
    K5 PR166                 116   Asus P5A                                                                ALADDiN5              PC66 SDRAM            2-2-2-6                171
    MediaGXm                 233   ALD NPC6836                                                             Cx5520                PC60 SDRAM            3-3-3-6                112
    Pentium                  166   Asus TX97-X                                                             i430TX                PC66 SDRAM            2-2-3-4                107


--------[ FPU Julia ]---------------------------------------------------------------------------------------------------

    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15             19454
    4x Core i7 Extreme 965 HT    3333   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1         14403
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12             13144
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1         12276
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2         10970
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15              9820
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15              8584
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2          8046
    8x Opteron HE 2344      1700   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1          7904
    2x Core 2 Duo E8400     3078   Asus P5QC                                                               P45                   Dual DDR3-1368        9-9-9-24 CR2          5716
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2          5329
    2x Core 2 Duo E6700     2666   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2          5005
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15              4188
    2x Core 2 Duo T5600     1833   Asus F3000Jc Notebook                                                   i945PM                Dual DDR2-667         5-5-5-15              3403
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11              2709
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7             2640
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1          2586
    2x Xeon                 3066   Asus PCH-DL                                                             i875P + PAT           Dual DDR333           2-2-2-5               2063
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2          1776
    2x Core Duo T2500       2000   Asus N4L-VM DH                                                          i945GT Int.           Dual DDR2-667         5-5-5-15              1635
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15              1461
    Celeron 420             1600   Intel DQ965CO                                                           Q965 Int.             Dual DDR2-667         5-5-5-15              1395
    P4EE                    3466   ASRock 775Dual-880Pro                                                   PT880Pro              Dual DDR2-400         3-3-3-8 CR2           1242
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1           1104
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-12 CR2           990
    P4                      2800   MSI 848P Neo-S                                                          i848P                 DDR400 SDRAM          2.5-3-3-8              922
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1            900
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2           854
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11               823
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC                DDR2-533 SDRAM        4-4-4-12               785
    P4                      2400   Abit SI7                                                                SiSR658               Dual PC1066 RDRAM     -                      779
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2           683
    Celeron                 2000   Gigabyte GA-8TRS350MT                                                   RS350 Int.            Dual DDR400           2-2-4-6 CR1            648
    Pentium M 730           1600   AOpen i915Ga-HFS                                                        i915G Int.            Dual DDR2-533         4-4-4-12               645
    2x PIII-S               1266   MSI Pro266TD Master-LR                                                  ApolloPro266TD        DDR266 SDRAM          2-3-3-6 CR2            617
    Celeron 215             1333   Intel D201GLY                                                           SiS662 Int.           DDR2-533              5-4-4-12               538
    Duron                   1600   Biostar M7VIQ                                                           KM266 Int.            DDR266 SDRAM          2.5-2-2-6 CR2           534
    P4                      1600   Abit TH7II                                                              i850                  Dual PC800 RDRAM      -                      514
    Celeron                 1700   Asus P4B                                                                i845                  PC133 SDRAM           3-3-3-6                495
    Celeron M 320           1300   DFI 855GME-MGF                                                          i855GME Int.          DDR333 SDRAM          2.5-3-3-7              474
    AthlonXP 1600+          1400   Acorp 7KMM1                                                             KM133A Int.           PC133 SDRAM           3-3-3-6                440
    Athlon                  1400   PCChips M817LMR                                                         MAGiK1                DDR266 SDRAM          2-3-3-7                398
    2x PIII-E                733   Tyan Thunder 2500                                                       ServerSet3HE          PC133R SDRAM          3-3-3-6                363
    Efficeon 8600           1000   ECS 532 Notebook                                                        Efficeon              DDR266 SDRAM                                 309
    C7                      1500   VIA EPIA EN                                                             CN700 Int.            DDR2-533 SDRAM        4-4-4-12 CR2           273
    2x PIII                  500   Epox KP6-BS                                                             i440BX                PC100R SDRAM          3-3-3-?                261
    Athlon                   750   Epox EP-7KXA                                                            KX133                 PC133 SDRAM           3-3-3-6                227
    Duron                    600   Abit KG7-Lite                                                           AMD-760               DDR200R SDRAM         2-2-2-5                193
    C3                      1333   VIA EPIA SP                                                             CN400 Int.            DDR400 SDRAM          3-3-3-8 CR2            168
    PIII                     450   Asus P3C-S                                                              i820                  PC600 RDRAM           -                      121
    Celeron                  700   PCChips M758LT                                                          SiS630ET Int.         PC100 SDRAM           3-3-3-6                110
    2x PII                   333   Intel DK440LX                                                           i440LX                PC66 SDRAM            3-2-2-?                100
    C3                       800   VIA EPIA                                                                PLE133 Int.           PC133 SDRAM           3-3-3-6                 78
    Crusoe 5800             1000   ECS A530 DeskNote                                                       Crusoe                DDR266 SDRAM                                  73
    K6-III                   400   Epox EP-MVP3G-M                                                         MVP3                  PC100 SDRAM           2-2-2-5                 62
    2x PentiumPro            200   Compaq ProLiant 800                                                     i440FX                Dual EDO              -                       56
    K6-2                     333   Amptron PM-9100LMR                                                      SiS5597 Ext.          PC66 SDRAM            3-3-3-6                 47
    2x PentiumMMX            200   Gigabyte GA-586DX                                                       i430HX                Dual EDO              -                       39
    Celeron                  266   Epox P2-100B                                                            ApolloPro             PC66 SDRAM            3-2-2-5                 39
    Pentium                  166   Asus TX97-X                                                             i430TX                PC66 SDRAM            2-2-3-4                 16
    K5 PR166                 116   Asus P5A                                                                ALADDiN5              PC66 SDRAM            2-2-2-6                 11
    MediaGXm                 233   ALD NPC6836                                                             Cx5520                PC60 SDRAM            3-3-3-6                  6


--------[ FPU Mandel ]--------------------------------------------------------------------------------------------------

    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15              9771
    4x Core i7 Extreme 965 HT    3333   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1          7825
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1          7655
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12              6449
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2          5567
    8x Opteron HE 2344      1700   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1          5494
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2          5051
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15              4870
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15              4254
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2          3749
    2x Core 2 Duo E8400     3078   Asus P5QC                                                               P45                   Dual DDR3-1368        9-9-9-24 CR2          2930
    2x Core 2 Duo E6700     2666   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2          2492
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15              2150
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11              1771
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7             1739
    2x Core 2 Duo T5600     1833   Asus F3000Jc Notebook                                                   i945PM                Dual DDR2-667         5-5-5-15              1698
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1          1544
    2x Xeon                 3066   Asus PCH-DL                                                             i875P + PAT           Dual DDR333           2-2-2-5               1489
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2          1005
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15               970
    P4EE                    3466   ASRock 775Dual-880Pro                                                   PT880Pro              Dual DDR2-400         3-3-3-8 CR2            847
    2x Core Duo T2500       2000   Asus N4L-VM DH                                                          i945GT Int.           Dual DDR2-667         5-5-5-15               764
    Celeron 420             1600   Intel DQ965CO                                                           Q965 Int.             Dual DDR2-667         5-5-5-15               745
    P4                      2800   MSI 848P Neo-S                                                          i848P                 DDR400 SDRAM          2.5-3-3-8              683
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1            674
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11               636
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-12 CR2           607
    P4                      2400   Abit SI7                                                                SiSR658               Dual PC1066 RDRAM     -                      590
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1            526
    Celeron                 2000   Gigabyte GA-8TRS350MT                                                   RS350 Int.            Dual DDR400           2-2-4-6 CR1            494
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2           486
    Celeron                 1700   Asus P4B                                                                i845                  PC133 SDRAM           3-3-3-6                412
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2           389
    P4                      1600   Abit TH7II                                                              i850                  Dual PC800 RDRAM      -                      388
    2x PIII-S               1266   MSI Pro266TD Master-LR                                                  ApolloPro266TD        DDR266 SDRAM          2-3-3-6 CR2            340
    Pentium M 730           1600   AOpen i915Ga-HFS                                                        i915G Int.            Dual DDR2-533         4-4-4-12               300
    Celeron 215             1333   Intel D201GLY                                                           SiS662 Int.           DDR2-533              5-4-4-12               257
    Celeron M 320           1300   DFI 855GME-MGF                                                          i855GME Int.          DDR333 SDRAM          2.5-3-3-7              252
    Duron                   1600   Biostar M7VIQ                                                           KM266 Int.            DDR266 SDRAM          2.5-2-2-6 CR2           222
    2x PIII-E                733   Tyan Thunder 2500                                                       ServerSet3HE          PC133R SDRAM          3-3-3-6                197
    Efficeon 8600           1000   ECS 532 Notebook                                                        Efficeon              DDR266 SDRAM                                 194
    AthlonXP 1600+          1400   Acorp 7KMM1                                                             KM133A Int.           PC133 SDRAM           3-3-3-6                192
    Athlon                  1400   PCChips M817LMR                                                         MAGiK1                DDR266 SDRAM          2-3-3-7                191
    C7                      1500   VIA EPIA EN                                                             CN700 Int.            DDR2-533 SDRAM        4-4-4-12 CR2           145
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC                DDR2-533 SDRAM        4-4-4-12               143
    2x PIII                  500   Epox KP6-BS                                                             i440BX                PC100R SDRAM          3-3-3-?                135
    Athlon                   750   Epox EP-7KXA                                                            KX133                 PC133 SDRAM           3-3-3-6                105
    2x PII                   333   Intel DK440LX                                                           i440LX                PC66 SDRAM            3-2-2-?                 91
    Celeron                  700   PCChips M758LT                                                          SiS630ET Int.         PC100 SDRAM           3-3-3-6                 87
    Duron                    600   Abit KG7-Lite                                                           AMD-760               DDR200R SDRAM         2-2-2-5                 85
    C3                      1333   VIA EPIA SP                                                             CN400 Int.            DDR400 SDRAM          3-3-3-8 CR2             80
    Crusoe 5800             1000   ECS A530 DeskNote                                                       Crusoe                DDR266 SDRAM                                  71
    PIII                     450   Asus P3C-S                                                              i820                  PC600 RDRAM           -                       61
    2x PentiumPro            200   Compaq ProLiant 800                                                     i440FX                Dual EDO              -                       53
    2x PentiumMMX            200   Gigabyte GA-586DX                                                       i430HX                Dual EDO              -                       45
    Celeron                  266   Epox P2-100B                                                            ApolloPro             PC66 SDRAM            3-2-2-5                 37
    C3                       800   VIA EPIA                                                                PLE133 Int.           PC133 SDRAM           3-3-3-6                 31
    K6-III                   400   Epox EP-MVP3G-M                                                         MVP3                  PC100 SDRAM           2-2-2-5                 28
    K6-2                     333   Amptron PM-9100LMR                                                      SiS5597 Ext.          PC66 SDRAM            3-3-3-6                 23
    Pentium                  166   Asus TX97-X                                                             i430TX                PC66 SDRAM            2-2-3-4                 19
    K5 PR166                 116   Asus P5A                                                                ALADDiN5              PC66 SDRAM            2-2-2-6                  9
    MediaGXm                 233   ALD NPC6836                                                             Cx5520                PC60 SDRAM            3-3-3-6                  6


--------[ FPU SinJulia ]------------------------------------------------------------------------------------------------

    4x Core i7 Extreme 965 HT    3333   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1          6254
    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15              5546
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1          4237
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12              3484
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2          2981
    8x Opteron HE 2344      1700   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1          2970
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2          2619
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15              2497
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15              2178
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2          1922
    2x Core 2 Duo E8400     3078   Asus P5QC                                                               P45                   Dual DDR3-1368        9-9-9-24 CR2          1529
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1          1429
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11              1289
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7             1264
    2x Core 2 Duo E6700     2666   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2          1248
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15              1122
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2           934
    2x Core Duo T2500       2000   Asus N4L-VM DH                                                          i945GT Int.           Dual DDR2-667         5-5-5-15               911
    2x Xeon                 3066   Asus PCH-DL                                                             i875P + PAT           Dual DDR333           2-2-2-5                867
    2x Core 2 Duo T5600     1833   Asus F3000Jc Notebook                                                   i945PM                Dual DDR2-667         5-5-5-15               848
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15               693
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1            623
    2x PIII-S               1266   MSI Pro266TD Master-LR                                                  ApolloPro266TD        DDR266 SDRAM          2-3-3-6 CR2            586
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1            492
    P4EE                    3466   ASRock 775Dual-880Pro                                                   PT880Pro              Dual DDR2-400         3-3-3-8 CR2            487
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2           447
    P4                      2800   MSI 848P Neo-S                                                          i848P                 DDR400 SDRAM          2.5-3-3-8              394
    Celeron 420             1600   Intel DQ965CO                                                           Q965 Int.             Dual DDR2-667         5-5-5-15               369
    Pentium M 730           1600   AOpen i915Ga-HFS                                                        i915G Int.            Dual DDR2-533         4-4-4-12               362
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2           358
    Duron                   1600   Biostar M7VIQ                                                           KM266 Int.            DDR266 SDRAM          2.5-2-2-6 CR2           353
    P4                      2400   Abit SI7                                                                SiSR658               Dual PC1066 RDRAM     -                      340
    2x PIII-E                733   Tyan Thunder 2500                                                       ServerSet3HE          PC133R SDRAM          3-3-3-6                325
    AthlonXP 1600+          1400   Acorp 7KMM1                                                             KM133A Int.           PC133 SDRAM           3-3-3-6                308
    Athlon                  1400   PCChips M817LMR                                                         MAGiK1                DDR266 SDRAM          2-3-3-7                304
    Celeron 215             1333   Intel D201GLY                                                           SiS662 Int.           DDR2-533              5-4-4-12               304
    Celeron M 320           1300   DFI 855GME-MGF                                                          i855GME Int.          DDR333 SDRAM          2.5-3-3-7              297
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC                DDR2-533 SDRAM        4-4-4-12               285
    Celeron                 2000   Gigabyte GA-8TRS350MT                                                   RS350 Int.            Dual DDR400           2-2-4-6 CR1            284
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11               270
    Celeron                 1700   Asus P4B                                                                i845                  PC133 SDRAM           3-3-3-6                247
    P4                      1600   Abit TH7II                                                              i850                  Dual PC800 RDRAM      -                      231
    2x PIII                  500   Epox KP6-BS                                                             i440BX                PC100R SDRAM          3-3-3-?                227
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-12 CR2           185
    Athlon                   750   Epox EP-7KXA                                                            KX133                 PC133 SDRAM           3-3-3-6                163
    Celeron                  700   PCChips M758LT                                                          SiS630ET Int.         PC100 SDRAM           3-3-3-6                155
    2x PII                   333   Intel DK440LX                                                           i440LX                PC66 SDRAM            3-2-2-?                151
    Efficeon 8600           1000   ECS 532 Notebook                                                        Efficeon              DDR266 SDRAM                                 140
    Duron                    600   Abit KG7-Lite                                                           AMD-760               DDR200R SDRAM         2-2-2-5                131
    PIII                     450   Asus P3C-S                                                              i820                  PC600 RDRAM           -                      103
    2x PentiumPro            200   Compaq ProLiant 800                                                     i440FX                Dual EDO              -                       91
    2x PentiumMMX            200   Gigabyte GA-586DX                                                       i430HX                Dual EDO              -                       90
    Crusoe 5800             1000   ECS A530 DeskNote                                                       Crusoe                DDR266 SDRAM                                  77
    K6-III                   400   Epox EP-MVP3G-M                                                         MVP3                  PC100 SDRAM           2-2-2-5                 68
    C7                      1500   VIA EPIA EN                                                             CN700 Int.            DDR2-533 SDRAM        4-4-4-12 CR2            64
    Celeron                  266   Epox P2-100B                                                            ApolloPro             PC66 SDRAM            3-2-2-5                 61
    K6-2                     333   Amptron PM-9100LMR                                                      SiS5597 Ext.          PC66 SDRAM            3-3-3-6                 56
    C3                      1333   VIA EPIA SP                                                             CN400 Int.            DDR400 SDRAM          3-3-3-8 CR2             49
    Pentium                  166   Asus TX97-X                                                             i430TX                PC66 SDRAM            2-2-3-4                 37
    C3                       800   VIA EPIA                                                                PLE133 Int.           PC133 SDRAM           3-3-3-6                 30
    MediaGXm                 233   ALD NPC6836                                                             Cx5520                PC60 SDRAM            3-3-3-6                 24
    K5 PR166                 116   Asus P5A                                                                ALADDiN5              PC66 SDRAM            2-2-2-6                  8


--------[ Debug - PCI ]-------------------------------------------------------------------------------------------------

    B00 D00 F00:  Intel G43/G45/P43/P45 Chipset - Memory Controller Hub [A-3]
                  
      Offset 000:  86 80 20 2E  06 00 90 20  03 00 00 06  00 00 00 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  43 10 D3 82 
      Offset 030:  00 00 00 00  E0 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  01 90 D1 FE  00 00 00 00  01 40 D1 FE  00 00 00 00 
      Offset 050:  00 00 00 00  03 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  01 00 00 E0  00 00 00 00  01 80 D1 FE  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  01 08 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  10 11 11 01  00 33 33 00  40 00 4B 00  00 1A 38 00 
      Offset 0A0:  40 00 00 13  00 00 00 D0  00 00 00 D0  00 00 00 D0 
      Offset 0B0:  00 D0 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  03 03 00 00  60 66 66 13  00 00 00 4B 
      Offset 0E0:  09 00 0C 81  20 45 37 8C  D2 4D 0B 80  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  A6 0F 03 00  00 00 00 00 

    B00 D01 F00:  Intel G43/G45/P43/P45 Chipset - Primary PCI Express x16 Root [A-3]
                  
      Offset 000:  86 80 21 2E  07 01 10 00  03 00 04 06  08 00 01 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 01 01 00  C0 C0 00 00 
      Offset 020:  00 FA 80 FE  01 D0 F1 DF  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  88 00 00 00  00 00 00 00  10 01 1A 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 02 
      Offset 080:  01 90 03 C8  08 00 00 00  0D 80 00 00  43 10 D3 82 
      Offset 090:  05 A0 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  10 00 42 01  00 80 00 00  00 00 00 00  02 45 21 02 
      Offset 0B0:  00 00 02 51  80 25 00 00  00 00 48 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  02 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 01 00  03 41 3F 80  90 0F 03 00  00 F0 00 F0 

    B00 D1A F00:  Intel 82801JB ICH10 - USB Universal Host Controller
                  
      Offset 000:  86 80 37 3A  05 00 90 02  00 00 03 0C  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  01 B8 00 00  00 00 00 00  00 00 00 00  43 10 D4 82 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  10 01 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  09 00 06 20  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  10 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 2F 00 00  00 00 00 00  00 00 01 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1A F01:  Intel 82801JB ICH10 - USB Universal Host Controller
                  
      Offset 000:  86 80 38 3A  05 00 90 02  00 00 03 0C  00 00 00 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  81 B8 00 00  00 00 00 00  00 00 00 00  43 10 D4 82 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  15 02 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  09 00 06 20  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  10 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 2F 00 00  00 00 00 00  00 00 01 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1A F02:  Intel 82801JB ICH10 - USB Universal Host Controller
                  
      Offset 000:  86 80 39 3A  05 00 90 02  00 00 03 0C  00 00 00 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  01 BC 00 00  00 00 00 00  00 00 00 00  43 10 D4 82 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  12 03 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  09 00 06 20  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  10 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 2F 00 00  00 00 00 00  00 00 01 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1A F07:  Intel 82801JB ICH10 - USB2 Enhanced Host Controller
                  
      Offset 000:  86 80 3C 3A  06 00 90 02  00 20 03 0C  00 00 00 00 
      Offset 010:  00 FC FF F9  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  43 10 D4 82 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  12 03 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  01 58 C2 C9  00 00 00 00  0A 98 A0 20  00 00 00 00 
      Offset 060:  20 20 FF 01  00 00 00 00  01 00 00 00  00 20 00 C0 
      Offset 070:  00 00 CF 0F  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  01 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  09 00 06 20  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 AA FF 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  86 85 40 00  86 0F 00 00  0A 13 02 20 

    B00 D1B F00:  Intel 82801JB ICH10 - High Definition Audio Controller
                  
      Offset 000:  86 80 3E 3A  06 00 10 00  00 00 03 04  08 00 00 00 
      Offset 010:  04 80 FF F9  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  43 10 FE 82 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  16 01 00 00 
      Offset 040:  01 00 00 07  07 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  01 60 42 C8  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  05 70 80 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  10 00 91 00  00 00 00 10  00 08 10 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 04 00 01  00 00 00 00  31 00 A3 02  00 00 00 00 
      Offset 0D0:  61 00 A3 02  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1C F00:  Intel 82801JB ICH10 - PCI Express Root Port 1
                  
      Offset 000:  86 80 40 3A  07 01 10 00  00 00 04 06  08 00 81 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 04 04 00  F0 00 00 20 
      Offset 020:  F0 FF 00 00  F1 F8 F1 F8  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  11 01 06 00 
      Offset 040:  10 80 41 01  00 80 00 00  00 00 10 00  11 2C 11 01 
      Offset 050:  40 00 01 10  60 05 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  05 90 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  0D A0 00 00  43 10 D4 82  00 00 00 00  00 00 00 00 
      Offset 0A0:  01 00 02 C8  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 11 08  00 00 00 00 
      Offset 0E0:  00 00 C7 00  06 07 08 00  30 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1C F04:  Intel 82801JB ICH10 - PCI Express Root Port 5
                  
      Offset 000:  86 80 48 3A  07 01 10 00  00 00 04 06  08 00 81 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 03 03 00  E0 E0 00 00 
      Offset 020:  A0 FE A0 FE  F1 FF 01 00  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  11 01 06 00 
      Offset 040:  10 80 41 01  00 80 00 00  01 00 10 00  11 2C 11 05 
      Offset 050:  40 00 11 30  60 05 00 00  00 00 48 01  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  05 90 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  0D A0 00 00  43 10 D4 82  00 00 00 00  00 00 00 00 
      Offset 0A0:  01 00 02 C8  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 11 08  00 00 00 00 
      Offset 0E0:  00 00 C7 00  06 07 08 00  30 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1C F05:  Intel 82801JB ICH10 - PCI Express Root Port 6
                  
      Offset 000:  86 80 4A 3A  07 01 10 00  00 00 04 06  08 00 81 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 02 02 00  D0 D0 00 00 
      Offset 020:  90 FE 90 FE  F1 FF 01 00  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  10 02 06 00 
      Offset 040:  10 80 41 01  00 80 00 00  00 00 10 00  11 2C 11 06 
      Offset 050:  40 00 11 30  60 05 00 00  00 00 48 01  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  05 90 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  0D A0 00 00  43 10 D4 82  00 00 00 00  00 00 00 00 
      Offset 0A0:  01 00 02 C8  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 11 08  00 00 00 00 
      Offset 0E0:  00 00 C7 00  06 07 08 00  30 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1D F00:  Intel 82801JB ICH10 - USB Universal Host Controller
                  
      Offset 000:  86 80 34 3A  05 00 90 02  00 00 03 0C  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  81 B0 00 00  00 00 00 00  00 00 00 00  43 10 D4 82 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  17 01 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  09 00 06 20  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  10 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 27 00 00  00 00 00 00  00 00 01 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1D F01:  Intel 82801JB ICH10 - USB Universal Host Controller
                  
      Offset 000:  86 80 35 3A  05 00 90 02  00 00 03 0C  00 00 00 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  01 B4 00 00  00 00 00 00  00 00 00 00  43 10 D4 82 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  13 02 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  09 00 06 20  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  10 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 27 00 00  00 00 00 00  00 00 01 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1D F02:  Intel 82801JB ICH10 - USB Universal Host Controller
                  
      Offset 000:  86 80 36 3A  05 00 90 02  00 00 03 0C  00 00 00 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  81 B4 00 00  00 00 00 00  00 00 00 00  43 10 D4 82 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  12 03 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  09 00 06 20  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  10 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 27 00 00  00 00 00 00  00 00 01 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1D F07:  Intel 82801JB ICH10 - USB2 Enhanced Host Controller
                  
      Offset 000:  86 80 3A 3A  06 00 90 02  00 20 03 0C  00 00 00 00 
      Offset 010:  00 F8 FF F9  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  43 10 D4 82 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  17 01 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  01 58 C2 C9  00 00 00 00  0A 98 A0 20  00 00 00 00 
      Offset 060:  20 20 FF 01  00 00 00 00  01 00 00 00  00 20 00 C0 
      Offset 070:  00 00 DF 0F  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  01 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  09 00 06 20  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 AA FF 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  86 85 40 00  86 0F 00 00  0A 13 02 20 

    B00 D1E F00:  Intel 82801JB I/O Controller Hub 10 (ICH10) [A-0]
                  
      Offset 000:  86 80 4E 24  07 01 10 00  90 01 04 06  00 00 01 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 05 05 20  F0 00 80 22 
      Offset 020:  B0 FE B0 FE  F1 FF 01 00  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  FF 00 02 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 12 00 00 
      Offset 050:  0D 00 00 00  43 10 D4 82  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1F F00:  Intel 82801JB ICH10R - LPC Bridge
                  
      Offset 000:  86 80 16 3A  07 00 10 02  00 00 01 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  43 10 D4 82 
      Offset 030:  00 00 00 00  E0 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  01 08 00 00  80 00 00 00  01 05 00 00  10 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  8A 8B 8F 85  D0 00 00 00  80 8E 83 87  F8 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 0F 34  95 02 00 00  00 00 00 00  01 47 1C 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  A0 06 00 00  39 00 01 00  13 1C 0A 24  00 03 00 00 
      Offset 0B0:  00 00 F0 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  33 22 11 00  67 45 00 00  C0 C0 00 00  00 00 00 00 
      Offset 0E0:  09 00 0C 10  01 00 C4 02  64 02 00 00  00 00 00 00 
      Offset 0F0:  01 C0 D1 FE  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1F F02:  Intel 82801JB ICH10 - 4-port SATA Controller
                  
      Offset 000:  86 80 20 3A  07 00 B0 02  00 8F 01 01  00 00 00 00 
      Offset 010:  01 A0 00 00  01 9C 00 00  81 98 00 00  01 98 00 00 
      Offset 020:  81 94 00 00  01 94 00 00  00 00 00 00  43 10 D4 82 
      Offset 030:  00 00 00 00  70 00 00 00  00 00 00 00  13 02 00 00 
      Offset 040:  00 80 00 80  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  01 B0 03 00  08 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  05 70 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 0F 80  93 01 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  09 00 06 20  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  05 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1F F03:  Intel 82801JB ICH10 - SMBus Controller
                  
      Offset 000:  86 80 30 3A  03 00 80 02  00 00 05 0C  00 00 00 00 
      Offset 010:  04 F4 FF F9  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  01 04 00 00  00 00 00 00  00 00 00 00  43 10 D4 82 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  0F 03 00 00 
      Offset 040:  01 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  03 04 04 00  00 00 08 08  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  04 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1F F05:  Intel 82801JB ICH10 - 2-port SATA Controller
                  
      Offset 000:  86 80 26 3A  07 00 B0 02  00 85 01 01  00 00 00 00 
      Offset 010:  01 B0 00 00  01 AC 00 00  81 A8 00 00  01 A8 00 00 
      Offset 020:  81 A4 00 00  01 A4 00 00  00 00 00 00  43 10 D4 82 
      Offset 030:  00 00 00 00  70 00 00 00  00 00 00 00  13 02 00 00 
      Offset 040:  00 80 07 A3  00 00 00 00  04 00 00 01  00 00 00 00 
      Offset 050:  00 00 00 00  C0 40 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  01 B0 03 00  08 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  05 70 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 03 02  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  09 00 06 20  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B01 D00 F00:  nVIDIA GeForce GTX 260 Video Adapter
                  
      Offset 000:  DE 10 E2 05  07 00 10 00  A1 00 00 03  08 00 00 00 
      Offset 010:  00 00 00 FD  0C 00 00 D0  00 00 00 00  04 00 00 FA 
      Offset 020:  00 00 00 00  01 CC 00 00  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  60 00 00 00  00 00 00 00  10 01 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  01 00 00 00  01 00 00 00  CE D6 23 00  00 00 00 00 
      Offset 060:  01 68 03 00  08 00 00 00  05 78 80 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  10 00 02 00  E0 84 2C 01 
      Offset 080:  10 29 00 00  02 2D 00 00  08 00 02 01  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  10 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B02 D00 F00:  Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller
                  
      Offset 000:  69 19 26 10  07 00 10 00  B0 00 00 02  08 00 00 00 
      Offset 010:  04 00 9C FE  00 00 00 00  01 DC 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  43 10 26 82 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  11 01 00 00 
      Offset 040:  01 48 02 C0  00 00 00 00  05 58 80 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  10 00 01 00  85 7F 28 00 
      Offset 060:  00 20 1A 00  11 F4 03 00  00 00 11 10  03 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  69 19 26 10  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B03 D00 F00:  Marvell 88SE6121 Serial ATA II Host Controller
                  
      Offset 000:  AB 11 21 61  07 00 10 00  B2 8F 01 01  08 00 00 00 
      Offset 010:  01 EC 00 00  81 E8 00 00  01 E8 00 00  81 E4 00 00 
      Offset 020:  01 E4 00 00  00 FC AF FE  00 00 00 00  43 10 E0 82 
      Offset 030:  00 00 00 00  48 00 00 00  00 00 00 00  10 01 00 00 
      Offset 040:  24 C9 C0 00  1F 80 00 00  01 50 02 5A  00 20 00 13 
      Offset 050:  05 E0 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  D0 C4 21 40  B0 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  10 00 11 00  C0 0F 0C 00  00 24 08 00  11 A4 03 00 
      Offset 0F0:  00 00 11 10  00 00 00 00  00 00 00 00  00 00 00 00 

    B05 D03 F00:  AT&T/Lucent IEEE1394 FireWire Controller
                  
      Offset 000:  C1 11 11 58  16 00 90 02  70 10 00 0C  08 40 00 00 
      Offset 010:  00 F0 BF FE  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  43 10 94 82 
      Offset 030:  00 00 00 00  44 00 00 00  00 00 00 00  13 01 0C 18 
      Offset 040:  00 00 00 00  01 00 02 7E  00 80 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 8C 1E 00  6A 39 79 01  00 00 00 00  00 00 00 00 
      Offset 080:  00 8C 1E 00  6A 39 79 01  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    PCI-8086-2E20:  Intel 3-series/4-series/32xx MCHBAR
                  
      Offset 100:  00 00 00 00  00 10 00 00  00 08 00 08  00 00 00 00 
      Offset 110:  45 2C 00 00  42 9A 01 DC  88 10 7E 81  00 08 7D 00 
      Offset 120:  5F 7F 8D 50  07 E0 3B 40  05 1F 80 00  10 98 00 5C 
      Offset 130:  A2 FF A9 9F  00 3C A6 29  24 51 B2 40  A2 92 92 40 
      Offset 140:  21 48 12 01  9C 27 2A 01  21 48 93 01  9C 27 B3 01 
      Offset 150:  00 00 00 00  00 00 00 00  00 00 00 00  61 18 C5 06 
      Offset 160:  99 09 00 00  2D 23 2A 24  00 00 00 00  00 00 00 00 
      Offset 170:  00 00 00 00  FF 73 00 00  35 01 00 00  00 FF FF FF 
      Offset 180:  04 0D C8 00  FF FF FF FF  1B 5F 0F 0F  01 00 00 00 
      Offset 190:  00 00 01 0F  33 00 00 00  AA AA AA 22  1A 34 00 00 
      Offset 1A0:  01 58 55 00  40 00 00 00  04 00 BB F9  FF C0 E9 40 
      Offset 1B0:  00 03 00 00  C0 01 00 00  00 00 00 00  02 04 06 08 
      Offset 1C0:  20 01 00 00  00 80 00 00  02 00 00 00  00 00 00 00 
      Offset 1D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 1E0:  01 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 1F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 200:  00 00 00 00  10 00 20 00  00 00 86 86  00 00 00 00 
      Offset 210:  3F 00 7F FF  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 220:  17 11 00 58  00 02 28 0C  02 00 00 00  00 00 00 00 
      Offset 230:  00 00 00 00  00 00 00 00  00 16 00 00  CB 9F 00 00 
      Offset 240:  06 11 00 01  10 23 05 00  33 68 C9 0E  00 43 4B 00 
      Offset 250:  5D 05 4A 34  89 05 7A 94  49 07 13 4A  14 18 A5 15 
      Offset 260:  01 3E C7 0B  FF 00 0F 13  4A 50 D4 CF  37 5F 25 03 
      Offset 270:  00 0E 55 01  01 87 08 00  81 18 14 88  41 00 04 48 
      Offset 280:  00 00 00 00  00 00 00 00  00 02 04 08  10 20 40 FF 
      Offset 290:  1C 09 F2 04  84 00 00 00  00 00 00 00  78 07 00 00 
      Offset 2A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 2B0:  00 00 00 00  00 00 00 00  00 18 06 00  70 70 70 00 
      Offset 2C0:  F0 C5 0C 48  7C 01 00 00  00 00 00 00  00 00 00 00 
      Offset 2D0:  00 31 28 FF  00 36 45 40  00 00 00 00  00 00 00 00 
      Offset 2E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 2F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    PCI-8086-2E20:  Intel 3-series/4-series/32xx MCHBAR
                  
      Offset 500:  0B 0B 0B 0B  62 62 62 62  53 53 53 53  54 54 54 54 
      Offset 510:  27 27 27 27  59 59 59 59  00 00 00 00  03 03 03 03 
      Offset 520:  35 35 35 35  68 68 68 68  69 69 69 69  2B 2B 2B 2B 
      Offset 530:  60 60 60 60  34 34 34 34  26 26 26 26  29 29 29 29 
      Offset 540:  77 77 00 00  77 77 00 00  77 77 00 00  77 77 00 00 
      Offset 550:  77 77 00 00  77 77 00 00  77 77 00 00  77 77 00 00 
      Offset 560:  7A 00 00 00  7C 00 00 00  74 00 00 00  77 00 00 00 
      Offset 570:  7D 00 00 00  72 00 00 00  76 00 00 00  79 00 00 00 
      Offset 580:  14 02 30 00  22 22 34 34  00 00 00 00  53 FD 00 00 
      Offset 590:  55 A9 38 1E  08 00 00 80  00 00 00 00  33 F3 F1 00 
      Offset 5A0:  D0 0C 00 00  C6 8C 01 00  C6 8C 01 00  C6 8C 01 00 
      Offset 5B0:  C6 8C 01 00  10 20 00 00  10 20 00 00  10 20 00 00 
      Offset 5C0:  10 20 00 00  07 18 00 00  A9 52 55 02  A9 52 55 02 
      Offset 5D0:  A9 52 55 02  A9 52 55 02  0F 70 00 00  80 3F 00 00 
      Offset 5E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 5F0:  FC 07 00 00  00 00 00 00  00 00 54 55  00 00 30 33 
      Offset 600:  00 00 00 00  10 00 20 00  00 00 86 86  00 00 00 00 
      Offset 610:  64 37 C8 78  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 620:  17 11 00 58  00 02 28 0C  02 00 00 00  00 00 00 04 
      Offset 630:  00 00 00 00  00 00 00 00  00 16 00 00  CB 9F 00 00 
      Offset 640:  06 11 00 01  10 23 25 00  33 68 C9 0E  00 43 4B 00 
      Offset 650:  5D 05 4A 34  89 05 7A 94  49 07 13 4A  14 18 A5 15 
      Offset 660:  01 3E C7 0B  FF 00 0F 13  4A 50 D4 CF  37 5F 25 03 
      Offset 670:  00 0E 55 01  01 87 08 00  81 18 14 88  41 00 04 48 
      Offset 680:  00 00 00 00  00 00 00 00  00 02 04 08  10 20 40 FF 
      Offset 690:  1C 09 F2 04  84 00 00 00  00 00 00 00  78 07 00 00 
      Offset 6A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 6B0:  00 00 00 00  00 00 00 00  00 18 06 00  70 70 70 01 
      Offset 6C0:  A0 14 20 36  02 00 00 00  00 00 00 00  00 00 00 00 
      Offset 6D0:  00 00 1D FF  00 00 00 00  00 00 00 00  04 02 01 08 
      Offset 6E0:  00 00 00 00  04 02 01 08  00 00 00 00  04 02 01 08 
      Offset 6F0:  00 00 00 00  04 02 01 08  00 00 00 00  00 00 00 00 

    PCI-8086-2E20:  Intel 3-series/4-series/32xx MCHBAR
                  
      Offset 900:  68 68 68 68  6B 6B 6B 6B  20 20 20 20  22 22 22 22 
      Offset 910:  26 26 26 26  47 47 47 47  08 08 08 08  5B 5B 5B 5B 
      Offset 920:  13 13 13 13  56 56 56 56  07 07 07 07  29 29 29 29 
      Offset 930:  00 00 00 00  22 22 22 22  62 62 62 62  66 66 66 66 
      Offset 940:  77 77 00 00  77 77 00 00  77 77 00 00  77 77 00 00 
      Offset 950:  77 77 00 00  77 77 00 00  77 77 00 00  77 77 00 00 
      Offset 960:  77 00 00 00  75 00 00 00  7B 00 00 00  71 00 00 00 
      Offset 970:  77 00 00 00  78 00 00 00  76 00 00 00  71 00 00 00 
      Offset 980:  14 02 30 00  22 22 34 34  00 00 00 00  D9 4F 00 00 
      Offset 990:  55 A9 18 1E  08 00 00 80  00 00 00 00  33 C3 F1 00 
      Offset 9A0:  D0 0C 00 00  0C 1C 01 00  0C 1C 01 00  0C 1C 01 00 
      Offset 9B0:  0C 1C 01 00  71 E2 00 00  71 E2 00 00  71 E2 00 00 
      Offset 9C0:  71 E2 00 00  07 18 00 00  A5 02 55 02  A5 02 55 02 
      Offset 9D0:  A5 02 55 02  A5 02 55 02  0F 70 00 00  00 3F 00 00 
      Offset 9E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 9F0:  FC 03 00 00  00 00 00 00  00 00 55 A5  00 00 30 33 


--------[ Debug - Video BIOS ]------------------------------------------------------------------------------------------

    C000:0000  U.o.K7400.L.w.VIDEO ..........IBM VGA Compatible......z.03/31/09
    C000:0040  ..................5..................."..F.M..T.PMIDl.o.......
    C000:0080  .....3.x....................,.J!.....@..........................
    C000:00C0  ...... ...@..........@.... ........A................... .......
    C000:0100  .......|....L.........0.........P.......................`.......
    C000:0140  ..............................................................
    C000:0180  ....HWEANVIDIA GeForce GTX 260 VGA BIOS.........................
    C000:01C0  .........................Version 62.00.49.00.0P ...Copyright (C)
    C000:0200   1996-2008 NVIDIA Corp........VC....BIOS-P/N@N4741:0............
    C000:0240  .......Chip Rev   ..............................................
    C000:0280  ............PCIR............o.......HYB$..BIT......E2...0.B...4.
    C000:02C0  C...P.D...^.A...b.I...e.L...w.M...y.N.....P.....S.....T.....U...
    C000:0300  ..V.....c.....x.....d.....i.0.........`...g..........I.b........
    C000:0340  ..........\\ ..............M..x.....>.T.Z.r.2.P.T.v.k...v....D.
    C000:0380  S.'.......................B......P.....(.....#$.#G..,....z.P....
    C000:03C0  ..........I.b...aS2.....01/02/09............................;.z.


--------[ Debug - Unknown ]---------------------------------------------------------------------------------------------

    Optical         GTQRWDC IZW9QNOLI SCSI CdRom Device


------------------------------------------------------------------------------------------------------------------------

The names of actual companies and products mentioned herein may be the trademarks of their respective owners.
