OTL Extras logfile created on: 2012-06-09 18:33:51 - Run 1 OTL by OldTimer - Version 3.2.48.0 Folder = C:\Users\Domek\Pobrane 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 6,00 Gb Total Physical Memory | 4,51 Gb Available Physical Memory | 75,12% Memory free 11,99 Gb Paging File | 10,03 Gb Available in Paging File | 83,64% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 232,78 Gb Total Space | 178,67 Gb Free Space | 76,76% Space Free | Partition Type: NTFS Drive D: | 37,25 Gb Total Space | 32,61 Gb Free Space | 87,54% Space Free | Partition Type: NTFS Drive E: | 116,44 Gb Total Space | 51,73 Gb Free Space | 44,43% Space Free | Partition Type: NTFS Drive F: | 116,44 Gb Total Space | 19,89 Gb Free Space | 17,08% Space Free | Partition Type: NTFS Drive G: | 37,27 Gb Total Space | 27,41 Gb Free Space | 73,55% Space Free | Partition Type: NTFS Computer Name: DOMEK-KOMPUTER | User Name: Domek | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl[@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-1275766051-4289838869-1569619932-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\SysWow64\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\SysWow64\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{02FAB43D-6FB0-4127-A6DC-1695899E761F}" = lport=59278 | protocol=6 | dir=out | app=c:\windows\system32\svchost.exe | "{043B323E-1EB8-48D4-BC6C-19921E0FAF27}" = lport=5223 | protocol=6 | dir=out | app=c:\windows\system32\svchost.exe | "{073233FA-1634-44D9-9D78-FB2219E061A3}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{100DFBBB-30B8-478E-B86F-BE2D159ECDA7}" = lport=1900 | protocol=17 | dir=in | app=c:\windows\system32\svchost.exe | "{117D0A60-22C1-4041-B321-3F82891B0024}" = lport=5000 | protocol=17 | dir=in | app=c:\program files (x86)\connectify\connectifynetservices.exe | "{15D37F1C-52C2-4F31-88FA-EBEDFC12ED8F}" = lport=3074 | protocol=17 | dir=in | app=c:\windows\system32\svchost.exe | "{192DD5D0-EC94-4EEA-A5BA-97FEAA9123A1}" = lport=3478 | protocol=17 | dir=out | app=c:\windows\system32\svchost.exe | "{1ADDE8FC-5608-46D0-9B1C-8CCA81E7F1FE}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{1C209076-8765-46DD-B311-5605E3C148C0}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{1D6AB8C8-FFE4-47ED-8108-0D284E61609A}" = rport=2869 | protocol=6 | dir=out | app=system | "{22BD630F-88CC-493D-9886-16BFAE0A05BD}" = lport=2987 | protocol=6 | dir=in | app=c:\program files (x86)\connectify\connectify.exe | "{27181C9F-508C-45C1-A523-10E83910F38F}" = lport=3074 | protocol=17 | dir=out | app=c:\windows\system32\svchost.exe | "{345B6129-820A-46E2-9B05-960EF3E003D4}" = lport=59278 | protocol=6 | dir=in | app=c:\windows\system32\svchost.exe | "{381D6C44-E7D8-4364-B411-3EDB15E7AB20}" = rport=1900 | protocol=17 | dir=out | app=c:\windows\system32\svchost.exe | "{3CE71E2E-2B89-494E-9255-4FAD9E039C85}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{4CB36C05-DAA9-4550-AB6F-7EBBA86EFEB0}" = lport=3479 | protocol=17 | dir=in | app=c:\windows\system32\svchost.exe | "{50043C89-2B5B-41E5-B008-8FC8402B3E65}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{571EFF41-5ACB-4189-B68E-7F9628473F54}" = lport=3479 | protocol=17 | dir=out | app=c:\windows\system32\svchost.exe | "{5B418816-48E3-4821-B85E-5F1C9DB583BA}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{5BCE4C3C-7A4A-4A27-A952-3EA522C77500}" = lport=67 | protocol=17 | dir=in | app=c:\program files (x86)\connectify\connectifynetservices.exe | "{60B6B4C3-4678-4E8E-8CAF-B2B52BB10C9D}" = lport=5432 | protocol=6 | dir=in | name=postgres | "{63222327-A7B5-4B2E-8F17-62715B141C26}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{64A2BB75-C630-47BF-902D-8BE228442AED}" = lport=547 | protocol=17 | dir=in | app=c:\windows\system32\svchost.exe | "{6A9BE15C-B631-43D0-A1B3-DE3162B6B6E4}" = lport=137 | protocol=17 | dir=in | app=system | "{6C44333D-9CA5-4D1D-B36D-25F3F05B08C9}" = rport=445 | protocol=6 | dir=out | app=system | "{6DB676D8-8DD5-4088-80BD-D2A0C4EC6AC4}" = lport=3074 | protocol=6 | dir=out | app=c:\windows\system32\svchost.exe | "{73AA107A-0161-4FAF-86FC-C793E9AEABF0}" = lport=1303 | protocol=17 | dir=in | app=c:\program files (x86)\connectify\connectifynetservices.exe | "{798775D8-99E1-4F0F-B100-D19CD2FED5C8}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{80377182-B608-4F7D-8D59-B867713FE873}" = lport=139 | protocol=6 | dir=in | app=system | "{82BB733B-89D2-46D9-BDAA-5DCEBBA5E398}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{84CA769D-A3D4-412E-A01E-5C9567D65738}" = lport=53 | protocol=17 | dir=in | app=c:\program files (x86)\connectify\connectifynetservices.exe | "{85CA4544-A511-4346-AB1A-73C1F610E6F0}" = lport=88 | protocol=17 | dir=out | app=c:\windows\system32\svchost.exe | "{87009284-D3A1-4311-9B0F-86153D01E6BE}" = lport=1900 | protocol=17 | dir=in | app=c:\program files (x86)\connectify\connectifynetservices.exe | "{87CA2063-41F4-4BA9-9612-29CE5A389E9E}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{88225411-00C2-4453-B704-30C52BBF391C}" = lport=2869 | protocol=6 | dir=in | app=system | "{8B81BE65-24D0-4955-8A28-3E0F6DDCE6BD}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{8B9122CA-C2D2-495E-8D9E-0B5F71E1B588}" = rport=10243 | protocol=6 | dir=out | app=system | "{8D751391-02B6-4EB4-BB82-91B0F1DA5B1D}" = lport=88 | protocol=17 | dir=in | app=c:\windows\system32\svchost.exe | "{90EA1A3E-066F-42A7-A0AC-0EAFDF5FE218}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{926B82FA-74CE-4B69-855E-5D018A4ECE36}" = rport=2869 | protocol=6 | dir=out | app=system | "{965D6713-F62C-47E1-A419-6593A6E5109F}" = lport=3658 | protocol=17 | dir=in | app=c:\windows\system32\svchost.exe | "{99E173E5-C192-4F65-B8E1-7366AF7D172C}" = rport=138 | protocol=17 | dir=out | app=system | "{9F3C1575-6FA5-40A8-840E-077622364E5A}" = lport=2869 | protocol=6 | dir=in | app=system | "{A0E67F18-8D07-4DBA-AC17-F5F6C8C7F205}" = lport=10243 | protocol=6 | dir=in | app=system | "{AA05EED7-BFDA-41CA-ABB1-CD0C39D9D423}" = lport=5000 | protocol=6 | dir=in | app=c:\program files (x86)\connectify\connectifynetservices.exe | "{AACEE0A7-95FC-4601-8E73-DE750932CA15}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{B1376DDE-3EA3-4C6D-9417-5B0A6DC59326}" = lport=445 | protocol=6 | dir=in | app=system | "{BEA24575-79D0-4D13-BE8E-8CF5FDCD400F}" = lport=2869 | protocol=6 | dir=in | app=system | "{C1CEF648-6A46-45C8-B247-2236E42A1D94}" = lport=138 | protocol=17 | dir=in | app=system | "{C2C451BE-1840-4E4F-8936-B053D2079ED8}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{CA1B0BEE-484E-4A20-84D9-066D76F08D4C}" = lport=68 | protocol=17 | dir=in | app=c:\program files (x86)\connectify\connectifynetservices.exe | "{CCCD768D-08AD-4CE0-A20C-A58D96BCBB9A}" = lport=3074 | protocol=6 | dir=in | app=c:\windows\system32\svchost.exe | "{D039DD42-4181-4038-9F68-9923206F5F1F}" = rport=137 | protocol=17 | dir=out | app=system | "{D0B59B9F-7390-41DB-A5AC-393B7B50EBC8}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{DA2CB259-7962-43C6-8BFB-5C631FCF20C0}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{DB677A47-B5FE-493E-A91B-EA256F86DDFB}" = lport=5223 | protocol=6 | dir=in | app=c:\windows\system32\svchost.exe | "{E0954CAC-CD4C-4DA1-84B4-A6AD21ACC5CB}" = lport=3478 | protocol=17 | dir=in | app=c:\windows\system32\svchost.exe | "{E3250E75-AFCD-4B11-9913-B811DA4E1C50}" = rport=139 | protocol=6 | dir=out | app=system | "{EE0C82B2-936B-44B3-8E26-7F75FFE49C5A}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{F561A85E-93ED-44F3-AE9C-F2503B8FD60B}" = lport=3658 | protocol=17 | dir=out | app=c:\windows\system32\svchost.exe | "{FC3F0314-3DE2-44A3-A91D-BC28A4EB7EE3}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{FDBD8843-CA13-4D2B-8CFE-71921FE9E4C9}" = lport=1317 | protocol=17 | dir=in | app=c:\program files (x86)\connectify\connectifynetservices.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{03077DBB-26C4-4820-94F5-A03535214656}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{085925F6-816F-4500-B14E-3BEB2CC09BB0}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{0BD5E262-4C44-4385-9BAE-20BF2CA89A0E}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{0DCB8E39-1F85-41D0-89D6-1D03BCDE3C18}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{101B8873-BA0D-4DBD-BD22-CCB375FDE58E}" = protocol=58 | dir=in | name=internet connection sharing (router solicitation-in) | "{1B44FDB4-3FC7-49DB-970A-6FEBBF3A3DF2}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{204D7BA2-D535-4215-9F8C-89D80ABA14C5}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{251CEBBC-B7A8-4BB2-8F29-387049FB9FB6}" = dir=out | app=c:\windows\system32\svchost.exe | "{2A0BF330-B929-4A70-856B-FB1375D63910}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{380B7529-0957-4BFE-B812-252E7808438C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{3BF85B7E-CE0A-4113-84F6-C568B6D0AAB0}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{422BBD69-65A0-453B-B0D9-76B73EDF9520}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{47426330-18E8-4456-91EF-6A80B9679FE5}" = dir=in | app=c:\program files (x86)\connectify\connectifyd.exe | "{4F2E10A1-6945-4C1E-80BD-585CA20C3B61}" = protocol=6 | dir=out | app=c:\windows\system32\svchost.exe | "{611B05C0-0B3C-400A-A66D-91CFD3A0B65C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{613C0757-0516-4487-A5F2-EFC0DAB1CBDE}" = protocol=1 | dir=in | name=icmp - in | "{74E2B26C-1939-4ECF-B14F-512179A61770}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{763561CC-1FBB-45FC-A032-F15456C8AA11}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{8B291D6A-D2FE-4C5C-8E81-4E4B12A3436B}" = protocol=6 | dir=out | app=system | "{8C2DA732-8F97-47B3-BE22-15E79DD83CB8}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{8FD82118-C079-4672-9DFE-76DECBC03FA0}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 | "{96C93D3B-F512-4A99-8B35-B7B674F88809}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{9A6A1CF6-538C-4900-BD74-ACAF512F242A}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{9D129784-476A-4F8B-88DC-061D45965838}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{A02A9673-D6EE-4129-8069-7FAD82600C79}" = dir=in | app=c:\program files (x86)\connectify\connectifynetservices.exe | "{ADA55C53-4222-4C46-976D-0B43D89DEEAA}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{B9B1B11B-B6D8-47E2-9090-5B99CAAF9F0A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{CE8B0F0F-E092-4F73-B6CE-809292D6E8E9}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{D2E5500F-DD05-4209-8B2F-7625A2EC2207}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{E00AF9D8-AE1E-4028-BC5D-DB32FC8618C9}" = protocol=58 | dir=in | app=system | "{E0523E1B-26E2-47A8-9142-542D0C667785}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{E2E2B395-643F-42E8-8A65-BB89AA5F6354}" = dir=out | app=c:\program files (x86)\connectify\connectifynetservices.exe | "{E6793769-08A9-4FAF-B3BF-A8F13B72BB87}" = dir=out | app=c:\program files (x86)\connectify\connectifyd.exe | "{EFC3892E-4F67-443E-AEF0-B411E5F62CBE}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 | "{F8B99E31-1C2A-4408-BFC3-24E4704FBA3C}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "TCP Query User{5F6F3D1A-8023-4337-9A1D-CB117024D77A}C:\program files (x86)\connectify\connectify.exe" = protocol=6 | dir=in | app=c:\program files (x86)\connectify\connectify.exe | "UDP Query User{198B548D-BAE5-4390-AC5A-447F9C590269}C:\program files (x86)\connectify\connectify.exe" = protocol=17 | dir=in | app=c:\program files (x86)\connectify\connectify.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{027E5FAB-1476-4C59-AAB4-32EF28520399}" = Windows Live Language Selector "{0CC4F67D-D41D-8C1A-C605-39154DDEAC63}" = AMD Fuel "{119B2F5A-2A06-DB96-FF28-992EC2A10BDF}" = AMD Accelerated Video Transcoding "{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant "{2E8D6204-D656-8355-1ED3-2988AC52EB0F}" = ccc-utility64 "{3ABFAF33-D6EE-9348-CE96-AF51E9D6D2FF}" = AMD Drag and Drop Transcoding "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{63CE6C32-1EB3-4C51-89FC-9FD96A661A9C}" = AMD Media Foundation Decoders "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{9CF5E9B6-75C1-6899-00CD-82ACA9ACB664}" = AMD Catalyst Install Manager "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter "{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX 64-bit "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin 64-bit "Connectify" = Connectify "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "WinRAR archiver" = WinRAR 4.11 (64-bitowy) "x64 Components_is1" = x64 Components v3.6.5 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{03D4C700-2BFE-43E0-A0B4-9512B43C5B9F}" = Catalyst Control Center - Branding "{0654EA5D-308A-4196-882B-5C09744A5D81}" = Windows Live Photo Common "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer "{0C1931EB-8339-4837-8BEC-75029BF42734}" = Windows Live UX Platform Language Pack "{19D614EB-D62A-AEE7-2391-E74126601D59}" = CCC Help Italian "{1C373820-B9C8-0F7F-8F84-FC1B76A85F27}" = CCC Help Portuguese "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions "{26E3C07C-7FF7-4362-9E99-9E49E383CF16}" = Windows Live Writer Resources "{2D35BC33-7D08-D529-DF91-8A15FBF2600E}" = CCC Help Polish "{337788D1-43D1-9A0F-9787-DD00DB512D41}" = Catalyst Control Center Localization All "{3BD98AAF-61B5-46E0-A6C8-593C242C7C48}" = TP-LINK Wireless Client Utility "{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis "{4725833D-4325-5C34-57D4-1FE23E5AE578}" = CCC Help Chinese Standard "{4DC37F33-7AEC-A4CB-56B1-69A402828763}" = CCC Help Japanese "{5449FB4F-1802-4D5B-A6D8-087DB1142147}" = Realtek HDMI Audio Driver for ATI "{5710DAC2-8F2A-503C-CFC2-A973ADE0EA4C}" = CCC Help Czech "{5C763682-4C40-86DA-9C46-31924D7D2C34}" = CCC Help Thai "{60E5022D-FA4B-C6A2-1E80-B46EC39096F3}" = CCC Help Chinese Traditional "{60F34FDF-267C-408F-290E-EC90D841C8CB}" = CCC Help German "{64376910-1860-4CEF-8B34-AA5D205FC5F1}" = Poczta usługi Windows Live "{66B79AE1-C6E2-B958-689C-D0812DE86BAB}" = CCC Help Greek "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE "{6B39BE0F-0F5E-A8FA-33E4-8481AE39D96C}" = CCC Help Russian "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7A9D47BA-6D50-4087-866F-0800D8B89383}" = Podstawowe programy Windows Live "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{8C0CAA7A-3272-4991-A808-2C7559DE3409}" = Win7codecs "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8E19F2AF-7145-51DE-E395-7729A9374973}" = Catalyst Control Center Graphics Previews Common "{91CB5B8B-4EC8-DBA1-A88D-99FD480567B0}" = CCC Help English "{924FBAC4-60D2-7981-3C3E-979DF9CBB346}" = CCC Help Finnish "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail "{9DC939DC-B7A4-D0E2-C582-A442DF1B3EBE}" = CCC Help Spanish "{A1BD938B-F006-6E6D-70B2-47E1DD56F7DE}" = CCC Help Swedish "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer "{BABF7852-C2DD-6A8A-9956-101720C715C7}" = CCC Help Turkish "{BB7C2A56-9706-43B8-5A8C-210AF5816106}" = CCC Help French "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform "{CFC2CB60-5654-05A7-4D30-C661800A3A92}" = CCC Help Korean "{D04CE005-D1D2-80F3-84C8-B3524FCD39C3}" = CCC Help Norwegian "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64 "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform "{D544AE4C-4152-225B-A897-6756C8986B14}" = AMD VISION Engine Control Center "{D81E9069-3CCC-4405-3751-71E4AFEACC52}" = CCC Help Hungarian "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E22F239F-953C-4C6C-8CAC-2CE1C26CCB2D}" = Double Vibration Controller 3 "{E93FF166-DF14-2537-8FB4-96BB5810A96C}" = CCC Help Danish "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FA9827E1-8A8E-C176-4923-0840A67ED4DE}" = CCC Help Dutch "GOM Player" = GOM Player "HoldemManager" = Holdem Manager "LiveVDO plugin" = LiveVDO plugin 1.3 "Mozilla Firefox 13.0 (x86 pl)" = Mozilla Firefox 13.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NapiProjekt_is1" = NapiProjekt (2.0.0.2151) "NIS" = Norton Internet Security "PokerStars.eu" = PokerStars.eu "PostgreSQL 8.4" = PostgreSQL 8.4 "uTorrent" = µTorrent "WinLiveSuite" = Podstawowe programy Windows Live [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-06-09 04:34:16 | Computer Name = Domek-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2012-06-09 05:00:57 | Computer Name = Domek-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: Fuel.Service.exe, wersja: 1.0.0.0, sygnatura czasowa: 0x4f7e4d8c Nazwa modułu powodującego błąd: Device.dll, wersja: 4.1.0.0, sygnatura czasowa: 0x4f55e10b Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000000033c1 Identyfikator procesu powodującego błąd: 0x700 Godzina uruchomienia aplikacji powodującej błąd: 0x01cd461a6d514258 Ścieżka aplikacji powodującej błąd: C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe Ścieżka modułu powodującego błąd: C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll Identyfikator raportu: a008dab5-b211-11e1-abb7-00046170cceb Error - 2012-06-09 05:02:08 | Computer Name = Domek-Komputer | Source = PostgreSQL | ID = 0 Description = 2012-06-09 11:02:08 CESTFATAL: the database system is starting up Error - 2012-06-09 05:02:09 | Computer Name = Domek-Komputer | Source = PostgreSQL | ID = 0 Description = 2012-06-09 11:02:09 CESTFATAL: the database system is starting up Error - 2012-06-09 05:03:35 | Computer Name = Domek-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2012-06-09 06:57:28 | Computer Name = Domek-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: Fuel.Service.exe, wersja: 1.0.0.0, sygnatura czasowa: 0x4f7e4d8c Nazwa modułu powodującego błąd: Device.dll, wersja: 4.1.0.0, sygnatura czasowa: 0x4f55e10b Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000000033c1 Identyfikator procesu powodującego błąd: 0x6f8 Godzina uruchomienia aplikacji powodującej błąd: 0x01cd461e8566c49c Ścieżka aplikacji powodującej błąd: C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe Ścieżka modułu powodującego błąd: C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll Identyfikator raportu: e71679b2-b221-11e1-abaa-00046170cceb Error - 2012-06-09 07:00:01 | Computer Name = Domek-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2012-06-09 07:01:43 | Computer Name = Domek-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: Fuel.Service.exe, wersja: 1.0.0.0, sygnatura czasowa: 0x4f7e4d8c Nazwa modułu powodującego błąd: Device.dll, wersja: 4.1.0.0, sygnatura czasowa: 0x4f55e10b Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000000033c1 Identyfikator procesu powodującego błąd: 0x6dc Godzina uruchomienia aplikacji powodującej błąd: 0x01cd462ec7d662c0 Ścieżka aplikacji powodującej błąd: C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe Ścieżka modułu powodującego błąd: C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll Identyfikator raportu: 7eeebb07-b222-11e1-8206-00046170cceb Error - 2012-06-09 07:02:44 | Computer Name = Domek-Komputer | Source = PostgreSQL | ID = 0 Description = 2012-06-09 13:02:44 CESTFATAL: the database system is starting up Error - 2012-06-09 07:04:15 | Computer Name = Domek-Komputer | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 2012-06-09 09:10:40 | Computer Name = Domek-Komputer | Source = ipnathlp | ID = 34001 Description = Error - 2012-06-09 09:48:22 | Computer Name = Domek-Komputer | Source = ipnathlp | ID = 34001 Description = Error - 2012-06-09 10:00:29 | Computer Name = Domek-Komputer | Source = ipnathlp | ID = 34001 Description = Error - 2012-06-09 10:38:11 | Computer Name = Domek-Komputer | Source = ipnathlp | ID = 34001 Description = Error - 2012-06-09 10:50:18 | Computer Name = Domek-Komputer | Source = ipnathlp | ID = 34001 Description = Error - 2012-06-09 11:28:00 | Computer Name = Domek-Komputer | Source = ipnathlp | ID = 34001 Description = Error - 2012-06-09 11:28:53 | Computer Name = Domek-Komputer | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2012-06-09 11:40:07 | Computer Name = Domek-Komputer | Source = ipnathlp | ID = 34001 Description = Error - 2012-06-09 12:17:49 | Computer Name = Domek-Komputer | Source = ipnathlp | ID = 34001 Description = Error - 2012-06-09 12:29:56 | Computer Name = Domek-Komputer | Source = ipnathlp | ID = 34001 Description = < End of report >