OTL Extras logfile created on: 2010-09-26 18:48:37 - Run 1 OTL by OldTimer - Version Folder = C:\Users\test\Desktop Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18943) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 61,00% Memory free 6,00 Gb Paging File | 5,00 Gb Available in Paging File | 82,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 50,00 Gb Total Space | 22,77 Gb Free Space | 45,54% Space Free | Partition Type: NTFS Drive D: | 136,31 Gb Total Space | 50,13 Gb Free Space | 36,78% Space Free | Partition Type: NTFS E: Drive not present or media not loaded Drive F: | 25,12 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: USER-PC Current User Name: test Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-1330676278-1091689823-3525029055-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [HKEY_USERS\S-1-5-21-1330676278-1091689823-3525029055-1001\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- "C:\Program Files\Microsoft Office\OFFICE11\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- "C:\Program Files\Microsoft Office\OFFICE11\msohtmed.exe" /p %1 (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [ACDBrowse] -- "C:\Program Files\ACD Systems\ACDSee\8.0.Pro\ACDSee8Pro.exe" "%1" (ACD Systems Ltd.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0766E563-5F22-4E69-AE9A-F947E2796F78}" = lport=3540 | protocol=17 | dir=in | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe | "{080C6E2E-B842-424F-8DDF-BACF3DF9B046}" = lport=445 | protocol=6 | dir=in | app=system | "{09644B79-74C9-4AAC-BC8B-7C8CB02B7EFB}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{1E193490-EAE5-4036-8413-7F4A76B2E2A5}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{25E50178-BB03-470C-9A27-C952DF7A72D9}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\p2phost.exe | "{2F05FA6E-FDE6-420D-B60C-51992B8ACDAF}" = rport=10243 | protocol=6 | dir=out | app=system | "{2FD30A5E-5862-4C80-858F-F6067C7B3B1A}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{31D00DB9-7CFD-4895-A8F1-B1B1080B6DB4}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{378FF3DF-AE72-4513-B026-30E4AB2C2734}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{3A1DAB5D-A6E6-43DC-B0B1-AD7375DD9325}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\p2phost.exe | "{55171AF5-C697-4943-9946-E83AD1907409}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{63CC7A8F-75A9-48C2-8C1D-AFD4285B2814}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{68598EF3-AFC2-48BA-A7E7-B6E264AE27C7}" = lport=139 | protocol=6 | dir=in | app=system | "{71842CF4-5F7A-488B-AE21-3AAF79592795}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\p2phost.exe | "{7EBD44AC-CA95-4AAF-AB2E-BD3E8E690B2F}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{7EE81082-4577-4C80-92AC-DE7A1C0677B1}" = lport=2869 | protocol=6 | dir=in | app=system | "{8279AD67-6063-4A1E-A660-9411036EC35D}" = rport=138 | protocol=17 | dir=out | app=system | "{82E5C897-5235-42B4-B160-AF605303E6E4}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\p2phost.exe | "{89824A2E-AC86-44AA-953C-010ADADBD8B1}" = rport=3540 | protocol=17 | dir=out | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe | "{9C0E9A56-DE9B-4A2E-B7E2-3EFE00CFCE53}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{A4243922-0A41-4163-B4B5-F8DAFF27468D}" = lport=137 | protocol=17 | dir=in | app=system | "{A50A35C1-3745-491E-A48F-B00B886252FE}" = rport=3540 | protocol=17 | dir=out | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe | "{A8B52B3F-7D0F-4D09-B06C-D4F8CF2CF5AF}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{AB9143C0-2434-471E-994B-06BF59BC55B2}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{AFB22D12-D4A9-4BB2-8572-B02A2EBBE8EA}" = lport=138 | protocol=17 | dir=in | app=system | "{B052BDF1-EF3B-433B-BDE2-ADDEE72F70B8}" = lport=10243 | protocol=6 | dir=in | app=system | "{C399CC4D-DCE7-4E4A-BC22-D5AFC0061714}" = lport=3540 | protocol=17 | dir=in | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe | "{C3C77DB3-13CC-44D7-B2A8-94CBD5D91721}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{D088005F-BBB8-4D1A-B0D5-D1024A6C99A1}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{D5AC6DEB-C0D5-4F16-8A08-56E60D08423E}" = rport=445 | protocol=6 | dir=out | app=system | "{D62618A8-281A-44AB-B29C-59C68F15E2A9}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{D8699682-A908-4576-BB83-734882699B26}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{DE045338-180D-4B72-B4B4-0A5983617995}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{E602C72C-021A-4285-972A-F63DFAF2D4B7}" = rport=139 | protocol=6 | dir=out | app=system | "{EAB35D83-FE5A-4C51-9ECB-9D361FDD22D1}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{F1A5110F-823B-4C2E-8EF6-93F2C795DDFA}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{F5FBE5A5-21A6-441F-8061-D45A52FA0DFE}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{FCCEA30B-5453-4279-B203-47A07EC286AE}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{FFC4BE21-7372-428A-AFAC-621F409196A5}" = rport=137 | protocol=17 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{00EA2B89-E713-4554-921D-3ADB8525E599}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{0E8C2BFE-BCB4-4BAD-BF13-B7B7655DE7F3}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{1A5092F0-1ECB-4042-9294-3BB6FD012F34}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{26CD556C-B635-4833-AD71-6CF3A383D77C}" = dir=in | app=c:\program files\hp\quickplay\qp.exe | "{27A5892E-C3DD-4260-9A71-BBF4DE9F6A8E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{2899FA65-778A-428E-9C59-7C754428DC9E}" = protocol=6 | dir=out | app=system | "{3152D8C5-AE54-4F6F-9449-24D90A4A8DD1}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{4655FA1E-6923-4C19-A690-A99B37F78346}" = protocol=58 | dir=in | app=system | "{4AC31428-0858-4756-8C9A-0CD29CCE6B0C}" = dir=in | app=c:\program files\cyberlink\powerdvd\powerdvd.exe | "{4E6B1F85-2750-4844-95E5-61B646B58374}" = dir=in | app=c:\program files\hp\quickplay\qpservice.exe | "{4E873566-E40F-43EA-BFF2-853775BB695E}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{4FA207EF-10F4-4AED-8D7E-1C9B4D6E099B}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{5205A452-6D71-4713-8096-1D2194DB9086}" = protocol=6 | dir=in | app=%systemroot%\system32\p2phost.exe | "{5BA1782D-C80F-4333-901F-363FA58CB375}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{679829D9-F29C-42D5-A62A-70805CDE921A}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{753E63D2-EF66-400A-BF4E-2ED9D0C5F791}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{7E8E0F60-1037-4A24-9AF9-B63165141535}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{8D7A49D8-B734-48EF-89D6-075581640A4C}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{973CD769-CC3C-47DA-979D-945302FF999E}" = protocol=6 | dir=in | app=c:\program files\3 mobile broadband\3connect\wilog.exe | "{98293D19-D3F6-414C-9C1E-1378D8CDE0B2}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{A683E352-8CC5-43B2-89FC-95799E48A464}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{AB395F14-5D56-4935-B5E6-7F3E55965D18}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version5\teamviewer.exe | "{AC14D654-AC8D-40BC-B4D2-750AC62E0803}" = protocol=6 | dir=out | app=%systemroot%\system32\p2phost.exe | "{B30D95FD-15FD-430A-8285-788EAAC1459B}" = protocol=6 | dir=out | app=%systemroot%\system32\p2phost.exe | "{B45741FE-C9C0-487E-AE71-233FD8B9C5D7}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{CA0872BE-E275-4706-B844-62426A6AE035}" = protocol=17 | dir=in | app=c:\program files\3 mobile broadband\3connect\wilog.exe | "{D551437B-461D-478E-BDF6-3FCC50B43994}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-203 | "{DB208B87-AE3A-4648-BCEB-D07C62623387}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{EF3C5AE9-2B62-4645-9235-04FB2C6CDB90}" = protocol=6 | dir=in | app=%systemroot%\system32\p2phost.exe | "{F1A992C3-34C9-44F9-939C-D9B71F316F9F}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version5\teamviewer.exe | "{F7E8251E-2B13-431C-AC7F-B1BE03B1E283}" = dir=in | app=c:\program files\skype\phone\skype.exe | "TCP Query User{18371B6D-BF4D-4AE2-ADD7-9DBD1D367162}D:\simtractor 3.5\simtractor.exe" = protocol=6 | dir=in | app=d:\simtractor 3.5\simtractor.exe | "TCP Query User{1B529647-39D3-46B2-8121-36C88417768A}C:\program files\team17 software ltd\wormsforts\wf.exe" = protocol=6 | dir=in | app=c:\program files\team17 software ltd\wormsforts\wf.exe | "TCP Query User{254FFA40-D036-4ED2-B3F9-F0204BB490BC}C:\program files\tlen.pl\tlen.exe" = protocol=6 | dir=in | app=c:\program files\tlen.pl\tlen.exe | "TCP Query User{687CEBDC-5F81-401D-8BC6-CDB7251A167E}D:\simtractor 3.5\simtractor.exe" = protocol=6 | dir=in | app=d:\simtractor 3.5\simtractor.exe | "TCP Query User{7EBFE342-362D-4CDA-ABD4-B91FE83D3E99}C:\program files\tlen.pl\tlen.exe" = protocol=6 | dir=in | app=c:\program files\tlen.pl\tlen.exe | "TCP Query User{895FD56A-3757-4F2F-AFE3-CED8AF94DB3A}C:\program files\team17 software ltd\wormsforts\wf.exe" = protocol=6 | dir=in | app=c:\program files\team17 software ltd\wormsforts\wf.exe | "TCP Query User{8C3A0C53-B6DC-4060-990B-61B8531EBA3A}C:\program files\gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu\gg.exe | "TCP Query User{C99E64FE-F08F-41E0-A3C7-C4311E1B62B9}C:\program files\ares\ares.exe" = protocol=6 | dir=in | app=c:\program files\ares\ares.exe | "TCP Query User{DB992267-5797-4459-B8E3-E25354D6B09C}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "TCP Query User{E3292818-9F7C-43A0-8CD4-EA8C088BE828}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "TCP Query User{F1ABA7CF-A8A4-40B2-AC4D-4F38F4320BB1}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "TCP Query User{FE605501-CC11-4D81-ABE3-0C19FF591225}C:\program files\ares\ares.exe" = protocol=6 | dir=in | app=c:\program files\ares\ares.exe | "UDP Query User{0258889C-6239-4A29-82E2-D6533C0C13E0}C:\program files\ares\ares.exe" = protocol=17 | dir=in | app=c:\program files\ares\ares.exe | "UDP Query User{2685DFA6-7377-4501-862A-090006FBB544}C:\program files\ares\ares.exe" = protocol=17 | dir=in | app=c:\program files\ares\ares.exe | "UDP Query User{29A324CB-9D76-49CB-A631-B6F08FCE69EA}C:\program files\team17 software ltd\wormsforts\wf.exe" = protocol=17 | dir=in | app=c:\program files\team17 software ltd\wormsforts\wf.exe | "UDP Query User{52E0B608-550A-4D81-9794-B19C1FE1BCCC}C:\program files\gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu\gg.exe | "UDP Query User{67458E17-3FB1-4AC3-8D39-83EBFC425542}D:\simtractor 3.5\simtractor.exe" = protocol=17 | dir=in | app=d:\simtractor 3.5\simtractor.exe | "UDP Query User{76EF10BE-8984-4FE0-B61A-781FB934859E}D:\simtractor 3.5\simtractor.exe" = protocol=17 | dir=in | app=d:\simtractor 3.5\simtractor.exe | "UDP Query User{7C9324B7-8FE5-4263-81B3-76D682DCC731}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "UDP Query User{9F0DAF2B-7FFB-43AD-B94F-397871EDFE67}C:\program files\team17 software ltd\wormsforts\wf.exe" = protocol=17 | dir=in | app=c:\program files\team17 software ltd\wormsforts\wf.exe | "UDP Query User{B9946030-A0EB-40C8-B740-84B63ED28A03}C:\program files\tlen.pl\tlen.exe" = protocol=17 | dir=in | app=c:\program files\tlen.pl\tlen.exe | "UDP Query User{CA65216C-C204-423A-8B6F-A2AD1DF92FB0}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "UDP Query User{E464D662-1ED1-4C5A-9AB8-3A698CDBBAE3}C:\program files\tlen.pl\tlen.exe" = protocol=17 | dir=in | app=c:\program files\tlen.pl\tlen.exe | "UDP Query User{F1BA82F1-58E9-4218-B717-CF4484F05265}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{03D1988F-469F-4843-8E6E-E5FE9D17889D}" = HP Integrated Module with Bluetooth wireless technology "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{1E0D8F69-A6AB-4934-9B2D-159D9F97BA4A}" = ParetoLogic DriverCure "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{34D2AB40-150D-475D-AE32-BD23FB5EE355}" = HP Quick Launch Buttons 6.40 H2 "{3F92ABBB-6BBF-11D5-B229-002078017FBF}" = NetWaiting "{415B2719-AD3A-4944-B404-C472DB6085B3}" = Cisco EAP-FAST Module "{45D707E9-F3C4-11D9-A373-0050BAE317E1}" = HP QuickPlay 3.6 "{59F6A514-9813-47A3-948C-8A155460CC2A}" = RICOH R5C83x/84x Flash Media Controller Driver Ver.3.51.01 "{63D08574-EC96-44F1-8973-8BA847C2BB22}" = Moorhuhn Kart XS (PL) "{669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E}" = Cisco PEAP Module "{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{83770D14-21B9-44B3-8689-F7B523F94560}" = Cisco LEAP Module "{90120415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Standard Edition 2003 "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{A182077A-8D6B-4194-B48A-B4DC37C69907}" = RealSpeak Solo for UK English Emily "{A899DA1F-D626-401C-8651-F2921E3B4CB3}" = 3Connect "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1045-7B44-A90000000001}" = Adobe Reader 9 - Polish "{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy "{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Atheros Driver Installation Program "{C82185E8-C27B-4EF4-2007-3333BC2C2B6D}" = Microsoft AutoRoute 2007 "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.2 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F99F74B4-972B-4B06-B893-6B3B0DB0128B}" = ACDSee Pro "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Advanced SystemCare 3_is1" = Advanced SystemCare 3 "ALLPlayer_is1" = ALLPlayer V4.X "ArenaWars_is1" = ArenaWars "avast!" = avast! Antivirus "Captain Zoox & Pingy" = Captain Zoox & Pingy "Children of the Nile" = Children of the Nile "CNXT_MODEM_HDA_HSF" = HDAUDIO Soft Data Fax Modem with SmartCP "DAEMON Tools Toolbar" = DAEMON Tools Toolbar "De_Blob_EN" = De Blob (alleen verwijderen) "ffdshow_is1" = ffdshow [rev 1650] [2007-11-28] "Gadu-Gadu" = Gadu-Gadu 7.7 "GameSpy Arcade" = GameSpy Arcade "Google Chrome" = Google Chrome "Huawei Modems" = Huawei modem "InstallShield_{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "McDonald's Dragons " = McDonald's Dragons "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Mozilla Firefox (3.6.10)" = Mozilla Firefox (3.6.10) "Multimedialny słownik ortograficzny_is1" = 6.0.2r34 "Nawigator Mapa Europy_is1" = Nawigator Mapa Europy "Nero8Lite_is1" = Nero 8 Lite "NVIDIA Drivers" = NVIDIA Drivers "PCNavigator8_is1" = PC Navigator 8 8.0.36-1 "QuicktimeAlt_is1" = QuickTime Alternative 1.81 "RealAlt_is1" = Real Alternative 1.52 "Revo Uninstaller" = Revo Uninstaller 1.80 "SlingMedia.QPSlingPlayer_is1" = QuickPlay SlingPlayer 0.4.6 "TeamViewer 5" = TeamViewer 5 "The KMPlayer" = The KMPlayer (remove only) "Tlen.pl" = Tlen.pl "Totalcmd" = Total Commander (Remove or Repair) "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Antivirus Events ] Error - 2010-03-17 11:33:25 | Computer Name = User-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\Windows\System32\conime.exe failed, 00000005. Error - 2010-03-23 10:26:30 | Computer Name = User-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\Windows\System32\conime.exe failed, 00000005. Error - 2010-03-23 10:26:30 | Computer Name = User-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\Windows\System32\conime.exe failed, 00000005. Error - 2010-07-26 01:18:02 | Computer Name = User-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\Windows\System32\WerFault.exe failed, 00000005. Error - 2010-09-23 12:42:32 | Computer Name = User-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\Program Files\Tlen.pl\borlndmm.dll failed, 00000005. [ Application Events ] Error - 2010-01-31 16:51:06 | Computer Name = User-PC | Source = Google Update | ID = 20 Description = Error - 2010-02-01 05:49:29 | Computer Name = User-PC | Source = WinMgmt | ID = 10 Description = Error - 2010-02-01 05:51:05 | Computer Name = User-PC | Source = Google Update | ID = 20 Description = Error - 2010-02-01 06:51:06 | Computer Name = User-PC | Source = Google Update | ID = 20 Description = Error - 2010-02-01 07:51:06 | Computer Name = User-PC | Source = Google Update | ID = 20 Description = Error - 2010-02-01 08:51:07 | Computer Name = User-PC | Source = Google Update | ID = 20 Description = Error - 2010-02-01 09:51:06 | Computer Name = User-PC | Source = Google Update | ID = 20 Description = Error - 2010-02-01 10:51:06 | Computer Name = User-PC | Source = Google Update | ID = 20 Description = Error - 2010-02-01 11:51:07 | Computer Name = User-PC | Source = Google Update | ID = 20 Description = Error - 2010-02-01 16:55:17 | Computer Name = User-PC | Source = WinMgmt | ID = 10 Description = [ Media Center Events ] Error - 2010-06-16 16:26:49 | Computer Name = User-PC | Source = Media Center Guide | ID = 0 Description = Informacje o zdarzeniu: ERROR: SqmApiWrapper.TimerRecord failed; Win32 GetLastError returned 10000105 Proces: DefaultDomain Nazwa obiektu: Media Center Guide [ System Events ] Error - 2008-11-29 17:50:11 | Computer Name = User-PC | Source = DCOM | ID = 10016 Description = Error - 2008-11-30 09:33:54 | Computer Name = User-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 23:54:42 na 2008-11-29 było nieoczekiwane. Error - 2008-11-30 09:33:58 | Computer Name = User-PC | Source = HTTP | ID = 15016 Description = Error - 2008-11-30 09:34:22 | Computer Name = User-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2008-11-30 11:17:59 | Computer Name = User-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 15:28:46 na 2008-11-30 było nieoczekiwane. Error - 2008-11-30 11:18:03 | Computer Name = User-PC | Source = HTTP | ID = 15016 Description = Error - 2008-11-30 11:18:29 | Computer Name = User-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2008-11-30 11:35:32 | Computer Name = User-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 16:33:50 na 2008-11-30 było nieoczekiwane. Error - 2008-11-30 11:35:36 | Computer Name = User-PC | Source = HTTP | ID = 15016 Description = Error - 2008-11-30 11:36:01 | Computer Name = User-PC | Source = Service Control Manager | ID = 7000 Description = < End of report >