OTL Extras logfile created on: 2010-08-26 07:24:17 - Run 1 OTL by OldTimer - Version 3.2.10.0 Folder = C:\Documents and Settings\rareparts\Pulpit\malware Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 895,00 Mb Total Physical Memory | 264,00 Mb Available Physical Memory | 29,00% Memory free 2,00 Gb Paging File | 2,00 Gb Available in Paging File | 73,00% Paging File free Paging file location(s): C:\pagefile.sys 1344 2688 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 101,26 Gb Total Space | 59,06 Gb Free Space | 58,33% Space Free | Partition Type: NTFS D: Drive not present or media not loaded Drive E: | 10,53 Gb Total Space | 0,22 Gb Free Space | 2,06% Space Free | Partition Type: NTFS F: Drive not present or media not loaded Drive G: | 465,65 Gb Total Space | 393,34 Gb Free Space | 84,47% Space Free | Partition Type: FAT32 H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: UBUBUUK Current User Name: rareparts Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation) https [open] -- "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "AntiVirusOverride" = 1 "FirewallOverride" = 1 "UacDisableNotify" = 1 "AntiVirusDisableNotify" = 1 "FirewallDisableNotify" = 1 "UpdatesDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 1 "AntiVirusDisableNotify" = 1 "FirewallDisableNotify" = 1 "FirewallOverride" = 1 "UpdatesDisableNotify" = 1 "UacDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 "DisableNotifications" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] "25716:TCP" = 25716:TCP:*:Enabled:BitComet 25716 TCP "25716:UDP" = 25716:UDP:*:Enabled:BitComet 25716 UDP [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "C:\Program Files\CheckPoint\SecuRemote\bin\SR_Service.exe" = C:\Program Files\CheckPoint\SecuRemote\bin\SR_Service.exe:*:Enabled:VPN-1 SecuRemote/SecureClient service -- (Check Point Software Technologies) "C:\Program Files\CheckPoint\SecuRemote\bin\SR_GUI.exe" = C:\Program Files\CheckPoint\SecuRemote\bin\SR_GUI.exe:*:Enabled:VPN-1 SecuRemote/SecureClient application -- (Check Point Software Technologies) "C:\Program Files\CheckPoint\SecuRemote\bin\scc.exe" = C:\Program Files\CheckPoint\SecuRemote\bin\scc.exe:*:Enabled:VPN-1 SecuRemote/SecureClient command line -- (Check Point Software Technologies) "C:\Program Files\CheckPoint\SecuRemote\bin\SR_SDS.exe" = C:\Program Files\CheckPoint\SecuRemote\bin\SR_SDS.exe:*:Enabled:VPN-1 SecuRemote/SecureClient SDS agent -- (Check Point Software Technologies) "C:\Program Files\CheckPoint\SecuRemote\bin\SR_Diagnostics.exe" = C:\Program Files\CheckPoint\SecuRemote\bin\SR_Diagnostics.exe:*:Enabled:VPN-1 SecuRemote/SecureClient diagnostics -- File not found [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" = C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook -- (Microsoft Corporation) "C:\WINDOWS\SMINST\Scheduler.exe" = C:\WINDOWS\SMINST\Scheduler.exe:*:Enabled:Scheduler -- () "C:\Program Files\CheckPoint\SecuRemote\bin\SR_Service.exe" = C:\Program Files\CheckPoint\SecuRemote\bin\SR_Service.exe:*:Enabled:VPN-1 SecuRemote/SecureClient service -- (Check Point Software Technologies) "C:\Program Files\CheckPoint\SecuRemote\bin\SR_GUI.exe" = C:\Program Files\CheckPoint\SecuRemote\bin\SR_GUI.exe:*:Enabled:VPN-1 SecuRemote/SecureClient application -- (Check Point Software Technologies) "C:\Program Files\CheckPoint\SecuRemote\bin\scc.exe" = C:\Program Files\CheckPoint\SecuRemote\bin\scc.exe:*:Enabled:VPN-1 SecuRemote/SecureClient command line -- (Check Point Software Technologies) "C:\Program Files\CheckPoint\SecuRemote\bin\SR_SDS.exe" = C:\Program Files\CheckPoint\SecuRemote\bin\SR_SDS.exe:*:Enabled:VPN-1 SecuRemote/SecureClient SDS agent -- (Check Point Software Technologies) "C:\Program Files\CheckPoint\SecuRemote\bin\SR_Diagnostics.exe" = C:\Program Files\CheckPoint\SecuRemote\bin\SR_Diagnostics.exe:*:Enabled:VPN-1 SecuRemote/SecureClient diagnostics -- File not found "C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe" = C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe:*:Enabled:KTF MUSIC AoD Server -- File not found "C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe" = C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe:*:Enabled:KTF MUSIC VoD Server -- File not found "C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.) "G:\EXPLORER.EXE" = G:\EXPLORER.EXE:*:Enabled:ipsec -- File not found "C:\Program Files\Hewlett-Packard\IAM\bin\asghost.exe" = C:\Program Files\Hewlett-Packard\IAM\bin\asghost.exe:*:Enabled:ipsec -- (Cognizance Corporation) "C:\WINDOWS\Explorer.EXE" = C:\WINDOWS\Explorer.EXE:*:Enabled:ipsec -- (Microsoft Corporation) "C:\WINDOWS\system32\EXPLORER.EXE" = C:\WINDOWS\system32\EXPLORER.EXE:*:Enabled:ipsec -- File not found "C:\Program Files\totalcmd\TOTALCMD.EXE" = C:\Program Files\totalcmd\TOTALCMD.EXE:*:Enabled:ipsec -- (C. Ghisler & Co.) "G:\Downloads\ProcessExplorer\procexp.exe" = G:\Downloads\ProcessExplorer\procexp.exe:*:Enabled:ipsec -- (Sysinternals - www.sysinternals.com) "C:\Program Files\BitComet\BitComet.exe" = C:\Program Files\BitComet\BitComet.exe:*:Enabled:ipsec -- (www.BitComet.com) "C:\Program Files\Lavasoft\Ad-Aware\Ad-Aware.exe" = C:\Program Files\Lavasoft\Ad-Aware\Ad-Aware.exe:*:Enabled:ipsec -- (Lavasoft) "C:\WINDOWS\Sminst\Recguard.exe" = C:\WINDOWS\Sminst\Recguard.exe:*:Enabled:ipsec -- () "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" = C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe:*:Enabled:ipsec -- (Adobe Systems Incorporated) "C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe" = C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe:*:Enabled:ipsec -- (Lavasoft) "C:\Program Files\Autorun Eater\oldmcdonald.exe" = C:\Program Files\Autorun Eater\oldmcdonald.exe:*:Enabled:ipsec -- (Old McDonald's Farm) "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" = C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe:*:Enabled:ipsec -- () "C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe" = C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe:*:Enabled:ipsec -- (Broadcom Corporation.) "C:\Program Files\Creative\Sound Blaster Audigy 2\Feature Mode Utility\CTAPR.exe" = C:\Program Files\Creative\Sound Blaster Audigy 2\Feature Mode Utility\CTAPR.exe:*:Enabled:ipsec -- (Creative Technology Ltd) "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" = C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe:*:Enabled:ipsec -- (SUPERAntiSpyware.com) "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" = C:\Program Files\Analog Devices\SoundMAX\Smax4.exe:*:Enabled:ipsec -- (Analog Devices, Inc.) "C:\WINDOWS\Creator\Remind_XP.exe" = C:\WINDOWS\Creator\Remind_XP.exe:*:Enabled:ipsec -- () "C:\Program Files\Creative\Sound Blaster Audigy 2\Surround Mixer\CTSysVol.exe" = C:\Program Files\Creative\Sound Blaster Audigy 2\Surround Mixer\CTSysVol.exe:*:Enabled:ipsec -- (Creative Technology Ltd) "C:\Program Files\Autorun Eater\billy.exe" = C:\Program Files\Autorun Eater\billy.exe:*:Enabled:ipsec -- (Old McDonald's Farm) "C:\Program Files\Creative\Sound Blaster Audigy 2\Feature Mode Utility\CTModUtl.exe" = C:\Program Files\Creative\Sound Blaster Audigy 2\Feature Mode Utility\CTModUtl.exe:*:Enabled:ipsec -- () "C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe" = C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe:*:Enabled:ipsec -- (Lavasoft) [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{02892741-0201-BCB5-C2EC-1ACC90606E0A}" = Catalyst Control Center Localization Dutch "{036FD544-AED6-3F33-856D-A2292D0CF471}" = Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - PLK "{0394CDC8-FABD-4ed8-B104-03393876DFDF}" = Roxio Creator Tools "{055EE59D-217B-43A7-ABFF-507B966405D8}" = ATI Catalyst Control Center "{07DEF940-7355-50C9-298F-38E8CE0EBDCA}" = Catalyst Control Center Graphics Light "{082702D5-5DD8-4600-BCE5-48B15174687F}" = HP Doc Viewer "{08AE3CD6-E065-37AA-D2B3-07051D45286F}" = CCC Help Russian "{09258F12-48E7-B18E-C414-1F48C215685F}" = ccc-core-static "{0B7BBC67-FFB4-3743-E3F8-03D1AF729B70}" = Catalyst Control Center Graphics Full New "{0D397393-9B50-4c52-84D5-77E344289F87}" = Roxio Creator Data "{1293BBC6-2E1F-995B-4229-1ADA86E747D2}" = Catalyst Control Center Localization French "{1B587B24-9BCF-4374-9B5B-E40F48A8720F}" = Sound Blaster Audigy 2 "{1EDE8D45-7214-D099-53E7-749C1997329E}" = Catalyst Control Center Localization Chinese Standard "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{26A24AE4-039D-4CA4-87B4-2F83216011FF}" = Java(TM) 6 Update 17 "{272A7F68-5DB1-0929-8FBF-B458D450FE14}" = Catalyst Control Center Localization Japanese "{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}" = QuickTime "{2DB165DC-DDB4-403F-B985-19F3EC7D0357}" = HP ProtectTools Security Manager "{2FBAC41E-9400-9975-78F4-B4EFBE1FD8E2}" = Catalyst Control Center Localization German "{3110F6EA-EE42-C9C0-A177-860D75EDE636}" = Catalyst Control Center Localization Korean "{3248F0A8-6813-11D6-A77B-00B0D0160000}" = Java(TM) SE Runtime Environment 6 "{3248F0A8-6813-11D6-A77B-00B0D0160030}" = Java(TM) 6 Update 3 "{3248F0A8-6813-11D6-A77B-00B0D0160040}" = Java(TM) 6 Update 4 "{3248F0A8-6813-11D6-A77B-00B0D0160050}" = Java(TM) 6 Update 5 "{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java(TM) 6 Update 7 "{33C65B6A-5D73-4E3E-A1F9-127C27BD3F72}" = Roxio MyDVD Basic v9 "{34D2AB40-150D-475D-AE32-BD23FB5EE355}" = HP Quick Launch Buttons 6.20 F2 "{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0}" = Sonic Activation Module "{3912A629-0020-0005-3131-2FBA74D4DF0A}" = InterVideo WinDVD "{3BE480ED-E17A-431A-981C-5C2EDDBCD3BF}" = Macromedia Flash MX "{3CCAD2EF-CFF2-4637-82AA-AABF370282D3}" = ccCommon "{3F92730A-794E-01FC-4EBC-766F4DCE5D67}" = CCC Help English "{3F9F7336-6DF8-476F-ABF6-C70A17FAF619}" = Instalator Menedżera Kopii Zapasowej i Odzyskiwania HP "{426C7CC1-5AC3-4758-A40C-6446F2CEA8C9}" = ccc-Branding "{429E92A4-159F-4AEC-85A1-D693E1E4274D}" = HP 3D DriveGuard "{435D2D09-D775-FDA4-2610-EE044A8270E8}" = CCC Help Italian "{47471E78-EFA2-D9A2-7D01-5B0D3931D140}" = CCC Help Hungarian "{48185814-A224-447A-81DA-71BD20580E1B}" = Norton Internet Security "{4843B611-8FCB-4428-8C23-31D0A5EAE164}" = Norton Confidential Browser Component "{4bb16f8a-9cbd-4c6c-a82b-6304f886a0ac}" = Check Point VPN-1 SecuRemote/SecureClient NGX R60 HFA2 "{4DBB9521-29F6-CE3D-FFE1-ADA665A0FB38}" = Catalyst Control Center Localization Chinese Traditional "{521F72F4-FFE4-4959-AA88-EED06125211F}" = HP Notebook Accessories Product Tour "{5310C7A5-A385-6E26-66E9-C0F0CA5A7E45}" = BeatportDownloader "{53388D9F-0B31-B16D-2591-431837C84F8B}" = Catalyst Control Center Localization Finnish "{541BFB68-41E7-1FB7-9718-27C46ED7B754}" = Catalyst Control Center Localization Portuguese "{553255F3-78FD-40F1-A6F8-6882140265FE}" = Apple Application Support "{572B04AD-8812-ABDD-E78D-761D413F8D53}" = Catalyst Control Center Localization Norwegian "{5AA2CD16-706F-41f3-87C5-2B5A031F2B3B}" = Norton Internet Security "{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}" = Skype™ 3.6 "{5D97A4A7-C274-4B63-86D9-07A33435F505}" = InterVideo DVD Check "{5ECB3A3C-980B-4D12-9724-25DCB07A1F47}" = iTunes "{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048}" = Roxio Creator Copy "{64CB2553-C109-4132-AA51-1F421B515FD1}" = Microsoft .NET Framework 1.1 Polish Language Pack "{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites "{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3 "{69333A04-5134-40A5-A055-9166A7AA1EC8}" = "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update "{6A1E7380-BE8C-A1F8-B94F-1D79A4C28985}" = CCC Help Japanese "{6BE58A52-CB03-E69E-FE6A-5E500C2A6D05}" = CCC Help Chinese Traditional "{6CE339FE-4FCB-CBCC-704C-092A044FA724}" = CCC Help Chinese Standard "{70465DF9-5077-73E9-81F8-B7955DF74130}" = CCC Help Czech "{70CEFEBA-F757-4DBE-8A21-027C326137CE}" = Application Installer 4.00.B14 "{73B591D7-32EF-9C1A-E2A9-D119390CBEF3}" = CCC Help German "{7669846A-8FE4-55CC-D2FD-7D8FB015450E}" = CCC Help Swedish "{77772678-817F-4401-9301-ED1D01A8DA56}" = SPBBC 32bit "{778AA054-858E-3997-AA10-F9B378AB1DEF}" = Catalyst Control Center Localization Russian "{7C77393F-8237-3825-A88A-AFAF3C69C072}" = Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - PLK "{7FD8231E-3991-48D7-A2C8-2C42A7075FB1}" = HP User Guide Bluetooth Addendum 0062 "{81242661-5588-E2AC-65FF-06CEF7527D61}" = Catalyst Control Center Localization Polish "{830D8CBD-C668-49e2-A969-C2C2106332E0}" = Norton AntiVirus "{83FFCFC7-88C6-41c6-8752-958A45325C82}" = Roxio Creator Audio "{84814E6B-2581-46EC-926A-823BD1C670F6}" = HP Integrated Module with Bluetooth wireless technology "{8A253629-0511-4854-8B4E-46E57E66005C}" = Bonjour "{8B787193-FCDD-4B21-A110-102089D323B9}" = OpenOffice.org 2.4 "{8C6027FD-53DC-446D-BB75-CACD7028A134}" = HP Update "{8E9C9687-4EA2-9459-DE69-4CE1414DB265}" = Catalyst Control Center Localization Hungarian "{90120000-0010-0415-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (Polish) 12 "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{91120000-0031-0000-0000-0000000FF1CE}" = Microsoft Office Professional Hybrid 2007 "{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}" = InterVideo WinDVD "{93A94664-6CB9-54E2-D2E2-0FC894F457CD}" = CCC Help Dutch "{941E6A4B-0B43-0875-2024-4F1A0FCE9293}" = CCC Help Danish "{9A129ABC-A53A-4209-A21E-D5DEDFB7CCA8}" = Norton Protection Center "{9A80B505-F97E-7813-A7DA-594CC6E20448}" = Catalyst Control Center Graphics Full Existing "{9DE1BE03-AFE2-4CDB-BFEB-D06D736CD01A}" = Apple Mobile Device Support "{9FB73888-C6F3-7687-DEA1-66AFAE237A7D}" = CCC Help Norwegian "{A05BE20E-6510-44BC-95ED-6E6D730407D3}" = Vplayer "{A2393A48-80FF-4E6C-A2D0-E5E087645420}" = YoGen Vocoder 1.3.0 "{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{A93C4E94-1005-489D-BEAA-B873C1AA6CFC}" = HP Help and Support "{AB105D15-5224-890B-7B28-1A4086C09F47}" = Catalyst Control Center Localization Greek "{AB232CC2-7F49-2F07-8979-EF16498603BF}" = Catalyst Control Center Localization Swedish "{AC76BA86-7AD7-1033-7B44-A81300000003}" = Adobe Reader 8.1.3 "{AC76BA86-7AD7-5676-5A64-810000000003}" = Adobe Reader Extended Language Support Font Pack "{AF7E85DC-317C-47F5-810E-B82EE093A612}" = Samsung New PC Studio USB Driver Installer "{B7C61755-DB48-4003-948F-3D34DB8EAF69}" = MSRedist "{B84C847D-F708-EFC4-A7F4-16C0A407B0C3}" = CCC Help French "{BE41F3D2-FC73-4C3E-A2C2-5D2B08A5B2D0}" = Credential Manager for HP ProtectTools "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{C4F9000B-677C-DBE0-8213-C47E04F098C1}" = Catalyst Control Center Core Implementation "{C74D0FA0-1D49-464F-A707-B427EE3385C1}" = HP BIOS Configuration for ProtectTools "{C8B0680B-CDAE-4809-9F91-387B6DE00F7C}" = Roxio Creator Basic v9 "{C9EA192F-AEC6-18B1-D641-8ADF9F892260}" = CCC Help Turkish "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CB8CDB72-8323-E26C-1FCB-C5497EA451A6}" = Catalyst Control Center Localization Spanish "{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D2D52856-B412-9CEE-C10D-BA5C6F2DDD6E}" = Catalyst Control Center Localization Danish "{D32067CD-7409-4792-BFA0-1469BCD8F0C8}" = HP Wireless Assistant "{D353CC51-430D-4C6F-9B7E-52003DA1E05A}" = Norton Confidential Web Protection Component "{D3F2542C-0962-1313-CA4F-942E37889349}" = Catalyst Control Center Localization Czech "{D97215A1-196F-E4BA-B531-4E1AF9393E69}" = ccc-utility "{D9B4D7EE-481C-4C36-86AB-A8F7417725FF}" = LightScribe 1.6.43.1 "{DB518BA6-CB74-4EB6-9ABD-880B6D6E1F38}" = HpSdpAppCoreApp "{DBA4DB9D-EE51-4944-A419-98AB1F1249C8}" = LiveUpdate Notice (Symantec Corporation) "{DBEA1034-5882-4A88-8033-81C4EF0CFA29}" = Google Toolbar for Internet Explorer "{DC5437E1-6C27-E514-5DD3-CDB9E516AF16}" = Catalyst Control Center Localization Thai "{DC8CF830-12C4-2AFF-1DB6-09A47CEBFEAB}" = Catalyst Control Center Localization Italian "{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware "{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1" = AusLogics Disk Defrag "{E1201237-AE20-F128-DA8E-47859AE55889}" = CCC Help Finnish "{E25AA53F-6878-4C64-8130-EB8D678DF303}" = HP User Guides 0064 "{E3EFA461-EB83-4C3B-9C47-2C1D58A01555}" = Norton Internet Security "{E5055AA9-4B1B-414D-85C0-6AFEA2D85054}" = Microsoft Press Training Kit Exam Prep Suite 70-528 "{E574C0AC-550B-68A4-4D89-B1940C536229}" = CCC Help Polish "{E5EE9939-259F-4DE2-8023-5C49E16A4F43}" = Norton Internet Security "{E6451EF8-8ACB-7640-2DE3-AEF23DF02BFA}" = CCC Help Thai "{E9339644-F92D-96C5-7AB7-384818825698}" = Catalyst Control Center Localization Turkish "{EE52FA1D-A4F9-02A5-5C4A-00B1D15CCF26}" = CCC Help Portuguese "{EE9D54F6-EA22-6160-9C4F-45331E9104B6}" = CCC Help Greek "{EEA1220D-9772-F11B-0110-AA5680DCEEDE}" = CCC Help Korean "{EFB21DE7-8C19-4A88-BB28-A766E16493BC}" = Adobe Photoshop CS "{EFB5B3B5-A280-4E25-BE1C-634EEFE32C1B}" = AppCore "{F038A1D2-675D-490A-B6E9-7E0FA74E17EF}" = SymNet "{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX "{F18DB86D-BC16-4E01-BCCE-63F62B931D82}" = InterVideo Register Manager "{F31E509D-3597-324E-83CF-0C160B2320F0}" = Microsoft .NET Framework 3.5 Language Pack - plk "{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729) "{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01 "{F4DB525F-A986-4249-B98B-42A8066251CA}" = AV "{F5E9DFDA-A7CF-44E5-BC91-8D2B7BBEF3F1}" = Symantec Real Time Storage Protection Component "{F9A859AB-09BC-F1B4-83C1-F70C462AD066}" = CCC Help Spanish "{FC906D5C-91F9-4DA4-A765-6DCBB669F317}" = Sony Ericsson PC Suite "6194C28A8F62DD817EA1B918E6E46E806A21B452" = Pakiet sterowników systemu Windows - MobileTop (sshpmdm) Modem (02/23/2007 2.5.0.0) "65B6FE5418CE28F4D72543FB2D964C3CEC83F161" = Pakiet sterowników systemu Windows - MobileTop (sshpusb) USB (02/23/2007 2.5.0.0) "6A1545AE87FC8D98ACA7539CE7AA69DF2A5C7E1C" = Pakiet sterowników systemu Windows - Advanced Micro Devices (AmdK8) Processor (05/27/2006 1.3.2.0) "Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites "Ad-Aware" = Ad-Aware "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Shockwave Player" = Adobe Shockwave Player "Advanced Port Scanner v1.3" = Advanced Port Scanner v1.3 "Agere Systems Soft Modem" = Agere Systems HDA Modem "ATI Display Driver" = ATI Display Driver "AudioConSole" = Creative Audio Console "Autorun Eater_is1" = Autorun Eater v2.5 "BitComet" = BitComet 1.04 "Canon Camera WIA Driver PowerShot A40" = Canon PowerShot A40 WIA Driver "Cool Edit Pro 2.1" = Cool Edit Pro 2.1 "Corel Applications" = Corel Applications "Creative Live! Cam Center" = Creative Live! Cam Center "Creative Software AutoUpdate" = Creative Software AutoUpdate "Creative VF0330" = Creative WebCam Vista/Live! Cam Chat Driver (1.11.01.00) "Creative WebCam Vista User's Guide English" = Creative WebCam Vista User's Guide (English) "DC++" = DC++ 0.750 "Easy Thumbnails_is1" = Easy Thumbnails (Remove only) "FormularzeVZM_is1" = Formularze VZM-1 podatki.pl "Gadu-Gadu" = Gadu-Gadu 7.7 "hp deskjet 940c series" = hp deskjet 940c series (Tylko usuń) "hp deskjet 940c series_Driver" = hp deskjet 940c series "HTMLKit_is1" = HTML-Kit "IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs "ie7" = Windows Internet Explorer 7 "InstallShield_{AF7E85DC-317C-47F5-810E-B82EE093A612}" = Samsung New PC Studio USB Driver Installer "KLiteCodecPack_is1" = K-Lite Codec Pack 3.7.5 Full "LastFM_is1" = Last.fm 1.5.4.24567 "Live 7.0.3" = Live 7.0.3 "LiveUpdate" = LiveUpdate 3.2 (Symantec Corporation) "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "MegauploadToolbar" = Megaupload Toolbar "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Microsoft .NET Framework 3.5 Language Pack - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Monkey's Audio_is1" = Monkey's Audio "Mozilla ActiveX Control v1.7.12" = Mozilla ActiveX Control v1.7.12 "Mozilla Firefox (3.6.8)" = Mozilla Firefox (3.6.8) "MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP "Native Instruments Traktor DJ Studio 3" = Native Instruments Traktor DJ Studio 3 "NetworkActiv Port Scanner 4.0" = NetworkActiv Port Scanner 4.0 "NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs "OpenVPN" = OpenVPN 2.1.1 "PCFriendly" = PCFriendly "PDF Complete" = PDF Complete "Picasa 3" = Picasa 3 "PQI Ur-Fortress_is1" = PQI Ur-Fortress 1.0 "PROHYBRIDR" = 2007 Microsoft Office system "Renoise 1.9.1_is1" = Renoise 1.9.1 "Restorer2000 Professional" = Restorer2000 Professional "SAMSUNG Mobile Composite Device" = SAMSUNG Mobile Composite Device Software "SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set "Samsung Mobile phone USB driver" = Samsung Mobile phone USB driver Software "SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software "SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software "SHOUTcastDSP" = SHOUTcast Source DSP 1.9.0 (remove only) "SkanerOnline" = Skaner on-line mks_vir "SMPlayer_is1" = SMPlayer 0.6.6 "Soulseek" = SoulSeek Client 156c "SymSetup.{5AA2CD16-706F-41f3-87C5-2B5A031F2B3B}" = Norton Internet Security (Symantec Corporation) "SynTPDeinstKey" = Synaptics Pointing Device Driver "SysInfo" = Creative System Information "Totalcmd" = Total Commander (Remove or Repair) "WGA" = Windows Genuine Advantage Validation Tool "WIC" = Windows Imaging Component "Winamp" = Winamp "Windows Media Format Runtime" = Windows Media Format 11 runtime "Windows Media Player" = Windows Media Player 11 "WinHTTrack Website Copier_is1" = WinHTTrack Website Copier 3.43-9C "WinMerge_is1" = WinMerge 2.12.4 "WinPcapInst" = WinPcap 4.1.1 "WinRAR archiver" = WinRAR archiver "Wireshark" = Wireshark 1.2.7 "Wisdom-soft Set up ScreenHunter 5.1 Free" = Wisdom-soft Set up ScreenHunter 5.1 Free "WMFDist11" = Windows Media Format 11 runtime "wmp11" = Windows Media Player 11 "Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0 "XpsEPSC" = XML Paper Specification Shared Components Pack 1.0 "XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-717867700-2598028207-901696456-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "c357973863f40392" = M3U-2-Traktor [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2010-08-25 16:36:17 | Computer Name = UBUBUUK | Source = Automatic LiveUpdate Scheduler | ID = 101 Description = Poziom informacji: error Zainicjowanie podsystemu COM nie powiodło się. Kod błędu: 0x80070422 Error - 2010-08-25 17:42:38 | Computer Name = UBUBUUK | Source = Automatic LiveUpdate Scheduler | ID = 101 Description = Poziom informacji: error Zainicjowanie podsystemu COM nie powiodło się. Kod błędu: 0x80070422 Error - 2010-08-25 17:46:05 | Computer Name = UBUBUUK | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca iexplore.exe, wersja 7.0.6000.17055, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2010-08-25 19:07:30 | Computer Name = UBUBUUK | Source = Userenv | ID = 1081 Description = System Windows nie może spersonifikować użytkownika. (Nieprawidłowe dojście. ). Przetwarzanie zasad grupy zostało przerwane. Error - 2010-08-25 21:01:32 | Computer Name = UBUBUUK | Source = Userenv | ID = 1081 Description = System Windows nie może spersonifikować użytkownika. (Nieprawidłowe dojście. ). Przetwarzanie zasad grupy zostało przerwane. Error - 2010-08-25 21:18:44 | Computer Name = UBUBUUK | Source = Automatic LiveUpdate Scheduler | ID = 101 Description = Poziom informacji: error Zainicjowanie podsystemu COM nie powiodło się. Kod błędu: 0x80070422 Error - 2010-08-25 22:58:33 | Computer Name = UBUBUUK | Source = Userenv | ID = 1081 Description = System Windows nie może spersonifikować użytkownika. (Nieprawidłowe dojście. ). Przetwarzanie zasad grupy zostało przerwane. Error - 2010-08-26 00:16:41 | Computer Name = UBUBUUK | Source = EventSystem | ID = 4609 Description = Podczas wewnętrznego przetwarzania system zdarzeń modelu COM+ wykrył zły kod powrotu. HRESULT to 800706BB z w wierszu 44 z d:\comxp_sp2\com\com1x\src\events\tier1\eventsystemobj.cpp. Skontaktuj się z Pomocą techniczną firmy Microsoft i zgłoś ten błą Error - 2010-08-26 01:18:58 | Computer Name = UBUBUUK | Source = .NET Runtime 2.0 Error Reporting | ID = 1000 Description = Faulting application mom.exe, version 2.0.0.0, stamp 451d2648, faulting module mscorwks.dll, version 2.0.50727.3603, stamp 4a7cd88e, debug? 0, fault address 0x00097d9a. Error - 2010-08-26 01:20:16 | Computer Name = UBUBUUK | Source = Automatic LiveUpdate Scheduler | ID = 101 Description = Poziom informacji: error Zainicjowanie podsystemu COM nie powiodło się. Kod błędu: 0x80070422 [ Credential Manager Events ] Error - 2007-12-26 19:05:40 | Computer Name = UBUBUUK | Source = AuthWiz | ID = 100796068 Description = The submitted credentials were rejected. User: rareparts@UBUBUUK Credentials: Fingerprints Error: (0xC5161001) The fingerprints provided do not match. [ System Events ] Error - 2010-08-25 23:28:41 | Computer Name = UBUBUUK | Source = Srv | ID = 2019 Description = Serwer nie mógł przydzielić pamięci z puli niestronicowanej, ponieważ pula ta była pusta. Error - 2010-08-25 23:40:41 | Computer Name = UBUBUUK | Source = Srv | ID = 2019 Description = Serwer nie mógł przydzielić pamięci z puli niestronicowanej, ponieważ pula ta była pusta. Error - 2010-08-25 23:41:29 | Computer Name = UBUBUUK | Source = sr | ID = 1 Description = Filtr Przywracania systemu napotkał nieoczekiwany błąd '0xC000009A' podczas przetwarzania pliku 'keygen.exe' w woluminie 'HarddiskVolume1'. W rezultacie zostało zatrzymane monitorowanie woluminu. Error - 2010-08-25 23:52:41 | Computer Name = UBUBUUK | Source = Srv | ID = 2019 Description = Serwer nie mógł przydzielić pamięci z puli niestronicowanej, ponieważ pula ta była pusta. Error - 2010-08-26 00:04:41 | Computer Name = UBUBUUK | Source = Srv | ID = 2019 Description = Serwer nie mógł przydzielić pamięci z puli niestronicowanej, ponieważ pula ta była pusta. Error - 2010-08-26 01:19:06 | Computer Name = UBUBUUK | Source = DCOM | ID = 10010 Description = Serwer {0590AEC3-61EF-4C31-AAED-734A4E619247} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error - 2010-08-26 01:19:17 | Computer Name = UBUBUUK | Source = System Error | ID = 1003 Description = Kod błędu 1000007e, parametr 1 c0000005, parametr 2 edd5c98e, parametr 3 f7a37914, parametr 4 f7a37610. Error - 2010-08-26 01:20:16 | Computer Name = UBUBUUK | Source = DCOM | ID = 10005 Description = Model DCOM odebrał błąd „%1058” podczas próby uruchomienia usługi LiveUpdate z argumentami „” w celu uruchomienia serwera: {03E0E6C2-363B-11D3-B536-00902771A435} Error - 2010-08-26 01:20:19 | Computer Name = UBUBUUK | Source = DCOM | ID = 10005 Description = Model DCOM odebrał błąd „%1058” podczas próby uruchomienia usługi LiveUpdate z argumentami „” w celu uruchomienia serwera: {03E0E6C2-363B-11D3-B536-00902771A435} Error - 2010-08-26 01:20:25 | Computer Name = UBUBUUK | Source = Service Control Manager | ID = 7023 Description = Usługa Przeglądarka komputera zakończyła działanie; wystąpił następujący błąd: %%1460 < End of report >