OTL Extras logfile created on: 2012-06-29 14:09:36 - Run 1 OTL by OldTimer - Version 3.2.53.0 Folder = D:\ 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,19 Gb Total Physical Memory | 2,34 Gb Available Physical Memory | 73,45% Memory free 6,37 Gb Paging File | 5,52 Gb Available in Paging File | 86,69% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 39,06 Gb Total Space | 8,16 Gb Free Space | 20,90% Space Free | Partition Type: NTFS Drive D: | 426,70 Gb Total Space | 347,98 Gb Free Space | 81,55% Space Free | Partition Type: NTFS Drive E: | 2,16 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS Computer Name: ADRIAN-PC | User Name: Adrian | Logged in as Administrator. Boot Mode: SafeMode | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Bridge] -- D:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Bridge] -- D:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0950DC40-F085-47B7-81E8-7ECAFAE05122}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe | "{13F6F2E6-EF11-4E8B-86A4-B152F919F0AF}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe | "{18756EBD-3FDB-4D6F-BAE1-7E59234247D4}" = lport=57435 | protocol=6 | dir=in | name=pando media booster | "{1E80ECF4-11D3-4FA8-93A0-91CE6B843D8E}" = lport=57662 | protocol=17 | dir=in | name=pando media booster | "{256610A9-2F42-4583-B0A8-331E4CC3170A}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{289A0E08-1C5C-43FE-B3E0-CDBDDAAD333E}" = lport=137 | protocol=17 | dir=in | app=system | "{3F397E58-7EF1-47CC-8FB9-1C31D372DFD0}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{40758FD7-B680-4D78-A0BE-B06F32550844}" = lport=445 | protocol=6 | dir=in | app=system | "{54AC41E5-48C9-4003-B813-2914CF6EE0F5}" = rport=138 | protocol=17 | dir=out | app=system | "{56015BA7-76F8-4E09-9E59-58172FBE5E37}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{595BEC54-33ED-4A43-BA06-62864ED55ADC}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{5F537CFA-47E9-44A0-AD8D-18E232649EEF}" = lport=57662 | protocol=6 | dir=in | name=pando media booster | "{61A1DE6D-85BF-4A3B-902C-3990DF6568F8}" = rport=445 | protocol=6 | dir=out | app=system | "{70206867-6C71-44CB-8E1F-F5ADCABFD966}" = lport=2869 | protocol=6 | dir=in | app=system | "{749E8E62-C744-45C0-8C6C-E9EFA7D1C199}" = lport=57662 | protocol=6 | dir=in | name=pando media booster | "{7E67D29E-D498-4FE8-A330-6FE971B5795D}" = lport=138 | protocol=17 | dir=in | app=system | "{867F0C73-D121-42D8-A526-AE94E26CB7EA}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{8EDB5D0B-84A4-40BA-A735-3A32A252FAA3}" = lport=57435 | protocol=6 | dir=in | name=pando media booster | "{917316B8-485B-4676-8EA8-EDFE5FB617B5}" = rport=139 | protocol=6 | dir=out | app=system | "{92492909-38F2-4153-8BD6-56EAF33D2DBF}" = rport=10243 | protocol=6 | dir=out | app=system | "{9AD0A64F-195B-451A-946D-3EC19A339FAE}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{A03E5AFE-1D9F-4B1F-A378-4A088579D223}" = lport=57435 | protocol=17 | dir=in | name=pando media booster | "{A301F9C6-E38A-4124-B674-9FE11379940F}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{A8E31F55-6ACC-4781-B9A7-D02E32B4E99F}" = lport=10243 | protocol=6 | dir=in | app=system | "{C1CD814A-8B69-49D1-BAC2-35A3282F013F}" = lport=57435 | protocol=17 | dir=in | name=pando media booster | "{D451E13E-8BAC-4198-AB57-5DDE18D53585}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{D4EA72D2-39B3-4FF4-8FD2-80F579D10C40}" = lport=139 | protocol=6 | dir=in | app=system | "{DD8BC5F4-1FB1-4E1F-9A41-9E5F423EFFDD}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{E7679297-81BB-4367-90EC-7D898EE08642}" = rport=137 | protocol=17 | dir=out | app=system | "{ECEB4763-5F10-4324-B63F-7A47968E938F}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{FBF09286-A647-41C0-9D3A-941B1F282C0D}" = lport=57662 | protocol=17 | dir=in | name=pando media booster | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{022155C0-45F7-4518-92C6-41B2D1C8BB07}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{15267841-A265-4FBF-8C49-5C07EC638D4C}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{1593ECD1-23AB-4936-9B0D-D34B314F9826}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{16DF410A-F28C-4C48-B917-E5C5B5832351}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | "{184CA3EB-6F2C-4A05-9139-F3B94BC0B8F8}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.998\agent.exe | "{1A1874AF-D362-4B2C-AEA9-E87EE3EADD4D}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\vnee\counter-strike\hl.exe | "{1A1E9A53-9CBC-468B-AAF1-C513788E76D3}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{1A519DC4-F0F0-43CE-9EF1-7A9D6961B6FD}" = dir=in | app=d:\brickforce\brickforce.exe | "{1DBDBCC3-AF94-4D02-9052-95BDFAFA6548}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dota 2 test\dota.exe | "{1FFE53B5-F458-4552-A684-97FCB0562A08}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{2F56C2DE-722D-4062-8FDE-E4C0A2DAC55E}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\vnee\counter-strike\hl.exe | "{377A4FF5-4F8D-4671-B997-E97E3B9F75D1}" = protocol=6 | dir=in | app=d:\quake iii arena\quake3\quake3.exe | "{3970FE6D-4B8D-44B9-8821-F8B1BEAC284D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{3A7E3DA6-8DCC-434D-BF04-F869FDDEBDF3}" = protocol=6 | dir=in | app=d:\diablo 3\diablo iii\diablo iii.exe | "{3B328962-972A-4B3C-BBD5-20F814FB2085}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{41E553C3-96A3-446D-AE17-60AD5F010380}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe | "{423C34D2-9E34-4D14-81CB-22B52FD01F68}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{43A55A3F-381E-4359-9D5A-48BABD5767C9}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{4813A119-4F69-41B2-B264-839ED8A70FD7}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dota 2 test\dota.exe | "{48E9EE30-5B3E-4CE0-B0EA-B4813286A13E}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{5832C841-660D-4D04-AF73-BCDB26EECA0E}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{5E26EECC-EB0E-4264-9A3D-EDE7805B9153}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\vnee\counter-strike\hl.exe | "{5EADA520-9591-426B-9F54-4307B259595A}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe | "{604A65DE-C84F-4FCA-A99E-5E66D43F84EC}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{623B8E43-11F4-444B-9321-8C6D8DB08ED6}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dota 2 test\dota.exe | "{63B0B728-C577-482F-B649-508EF83C27B3}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{6493FB6F-834D-4D62-A56C-9995AA781BDB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{68E9D346-C205-4786-918D-FBF5B253779A}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\spiral knights\java_vm\bin\javaw.exe | "{6C2D7B6C-0FEC-4A3E-929F-1AE9D3925177}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{7304E856-5D2A-4A61-91A8-F4C6659A3840}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{74B78FAB-9400-4F05-9FED-2761A81EB52B}" = protocol=17 | dir=in | app=c:\program files (x86)\lolreplay\lolreplay.exe | "{75A33DC1-C97B-4323-83C6-AFEEB135F066}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{79C97326-B59B-440C-84E5-F34AC956AE5F}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dota 2 test\dota.exe | "{7F883406-E70C-4F15-A2C6-518C3941273A}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{80013743-2E92-478A-AF71-4E56FF67410C}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{865E45A0-D2AD-4226-83A2-2C8E36A328D2}" = protocol=6 | dir=in | app=c:\program files (x86)\lolreplay\lolreplay.exe | "{8A76BAFB-1E65-4836-9D2E-248174AF641B}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\spiral knights\java_vm\bin\javaw.exe | "{8C234EBC-413F-4200-9DD8-BEFE6862567C}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{8C9D8143-2AF1-4F04-AAE6-CD6C0E6B40E5}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{8DC32EDA-306A-41EE-A592-7591C5FF3C40}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{90599D08-C1E3-4E58-94BF-B06B78BEF229}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{93273718-D8E6-45A1-BC53-D79674BD7F5C}" = protocol=6 | dir=in | app=c:\windows\syswow64\muzapp.exe | "{99CFA7B7-C793-4724-8CD2-2D9FF64AB86C}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\vnee\counter-strike\hl.exe | "{9B3C340D-8397-4086-AC3C-5386CED27282}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{9CD13114-B1A1-4353-B67F-888802081349}" = protocol=17 | dir=in | app=c:\windows\syswow64\muzapp.exe | "{9F6D1831-D58E-4935-8187-C6B91511F832}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | "{A6BB1641-6D21-451C-970F-98607441F8B5}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.998\agent.exe | "{AEA68645-D042-4493-9DE0-EF21CBCE6913}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{AF93C20E-58DA-4A51-9A90-5486F6FC1636}" = protocol=17 | dir=in | app=d:\quake iii arena\quake3\quake3.exe | "{B4FE2E45-1F11-4973-821A-37557EA6F964}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{B8491E3E-279B-467A-B309-6D4CE8D0CC5D}" = dir=in | app=d:\brickforce\bflauncher.exe | "{B871BECA-BE8E-4EBE-81A6-EDF3D74C3946}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{BC291B58-DAFB-4443-8E67-8858C47D0482}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe | "{C02052F8-10CE-4259-AD44-C9C7F93D7C8D}" = protocol=17 | dir=in | app=d:\diablo 3\diablo iii\diablo iii.exe | "{C3D98EA4-0EE3-4211-9085-2C62EBBDE0F0}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{C88591D7-9BF6-4BA1-B356-10E92CF7D077}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{CF7DE0C6-4977-4F93-8702-268EC942A31B}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{D43707E1-9D33-49F9-8EE3-D676189202BF}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{D75A7F54-EB27-4202-B506-24B5477F4F08}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{DA2A38C5-E45E-47A6-9160-B50CF283362E}" = protocol=6 | dir=out | app=system | "{E4483D9D-1BD5-417E-BDEF-3904CE4992EF}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steam.exe | "{E98983BB-DFF1-4F37-BDCE-DB69AEBB774D}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe | "{EB30BB71-CE6B-4DCF-A4DC-BB6242E26264}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{F01637CB-7877-47BB-AE2F-D30EF80EE4A6}" = protocol=6 | dir=in | app=c:\users\adrian\appdata\roaming\dropbox\bin\dropbox.exe | "{F418244E-5629-4F39-B86A-FBFBBE0FA9A1}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{F529D337-F376-45D0-994A-3CD3610E26A6}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steam.exe | "{F9DB223F-DA01-4C0B-B571-73C2D273D676}" = protocol=17 | dir=in | app=c:\users\adrian\appdata\roaming\dropbox\bin\dropbox.exe | "TCP Query User{15F68313-B5CA-46AB-AD35-2383E50D7526}C:\users\adrian\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\adrian\appdata\roaming\dropbox\bin\dropbox.exe | "TCP Query User{AFDDC8ED-04BB-4075-BB35-3FCC137F4EA9}D:\quake iii arena\quake3\quake3.exe" = protocol=6 | dir=in | app=d:\quake iii arena\quake3\quake3.exe | "TCP Query User{C48BD33C-59A5-4F82-A31C-C269539FA2E0}D:\program files (x86)\steam\steamapps\vnee\team fortress 2\hl2.exe" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\vnee\team fortress 2\hl2.exe | "TCP Query User{E966D781-76C7-41AF-93F3-2AA7DB400C19}C:\program files (x86)\lolreplay\lolreplay.exe" = protocol=6 | dir=in | app=c:\program files (x86)\lolreplay\lolreplay.exe | "TCP Query User{F729D74C-3577-4AF2-B2F7-2B64A9CB9BB5}D:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=d:\program files (x86)\gadu-gadu 10\gg.exe | "TCP Query User{FC2EBB93-B7FC-4441-80DA-FF0221793BDD}D:\program files (x86)\steam\steamapps\rozkurwiatorek\team fortress 2\hl2.exe" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\rozkurwiatorek\team fortress 2\hl2.exe | "UDP Query User{443236AF-7632-4399-AA74-7746376BF6C6}D:\quake iii arena\quake3\quake3.exe" = protocol=17 | dir=in | app=d:\quake iii arena\quake3\quake3.exe | "UDP Query User{633353BA-4AC6-4F8C-83AD-3F55DEA5ABD7}C:\users\adrian\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\adrian\appdata\roaming\dropbox\bin\dropbox.exe | "UDP Query User{D4B0AD16-22D7-48F5-8A97-0EDE788D665C}D:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=d:\program files (x86)\gadu-gadu 10\gg.exe | "UDP Query User{DD000787-19B3-49B4-9F13-235A5A1363E0}C:\program files (x86)\lolreplay\lolreplay.exe" = protocol=17 | dir=in | app=c:\program files (x86)\lolreplay\lolreplay.exe | "UDP Query User{DDD9CB44-A732-40E0-A7FC-4A63276701E1}D:\program files (x86)\steam\steamapps\rozkurwiatorek\team fortress 2\hl2.exe" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\rozkurwiatorek\team fortress 2\hl2.exe | "UDP Query User{EA7E71CF-B88F-497F-94E6-5187B7F30132}D:\program files (x86)\steam\steamapps\vnee\team fortress 2\hl2.exe" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\vnee\team fortress 2\hl2.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1" = Core Temp version 0.99.8 "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2010 "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA 3D Vision Driver 280.26 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Control Panel 280.26 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Graphics Driver 280.26 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision Controller Driver 280.19 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX System Software 9.10.0514 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 1.4.28 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "CCleaner" = CCleaner "CPUID CPU-Z_is1" = CPUID CPU-Z 1.59 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "WinRAR archiver" = WinRAR 4.01 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86 "{1C36647E-F5BD-43E9-BA64-5F274B7F7050}_is1" = Prawo Jazdy 2010 1.1 "{1D106581-6726-4D1B-ABEC-0CA02410F24F}" = Adobe Photoshop CS6 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83216029FF}" = Java(TM) 6 Update 29 "{32364CEA-7855-4A3C-B674-53D8E9B97936}" = TuneUp Utilities 2012 "{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF010}" = Tribes Ascend Open Beta "{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}" = Smite Closed Beta "{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}" = Hi-Rez Studios Authenticate and Update Service "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F}" = SAGEM F@st 800-840 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "{789289CA-F73A-4A16-A331-54D498CE069F}" = Ventrilo "{858C79C4-73CB-4BCD-B485-B7F5A49CC211}" = ASMAX Wireless USB 715N "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{918A9082-6287-4D25-9002-5E5D5E4971CB}" = League of Legends "{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86 "{943A8D28-80D6-41DC-AE94-81FEB42041BF}" = System Requirements Lab CYRI "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A0E125E4-19BF-4240-A483-943085EA520C}" = Advanced IP Scanner "{A95A76C9-6F65-477E-83A0-9F884B6DC21B}" = TuneUp Utilities Language Pack (en-US) "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.1) "{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX "{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}" = PDF Settings CS6 "{E2494AD8-314D-44F8-B39C-4358A60DC184}" = LogMeIn Hamachi "{EE0D4117-9AEB-4021-9903-5536500CF5E8}" = Pit Pro 2011 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{FA66CFD7-0977-4C45-AACD-A8BB994B1A05}" = Quake Live Mozilla Plugin "{FE23D063-934D-4829-A0D8-00634CE79B4A}" = Adobe AIR "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "BrickForce" = BrickForce 1.4.40 "Dev-C++" = Dev-C++ 5 beta 9 release (4.9.9.2) "Diablo III" = Diablo III "EVEREST Home Edition_is1" = EVEREST Home Edition v2.20 "Gadu-Gadu 10" = Gadu-Gadu 10 "HD Tune_is1" = HD Tune 2.55 "InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "LogMeIn Hamachi" = LogMeIn Hamachi "LOLReplay" = LOLReplay "mIRC" = mIRC "muzo" = muzo 0.1 "NVIDIA StereoUSB Driver" = NVIDIA 3D Vision Controller Driver "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "PunkBusterSvc" = PunkBuster Services "RaidCall" = RaidCall "Steam App 10" = Counter-Strike "Steam App 440" = Team Fortress 2 "Steam App 570" = Dota 2 "Steam App 99900" = Spiral Knights "TuneUp Utilities 2012" = TuneUp Utilities 2012 "uTorrent" = µTorrent "WinGimp-2.0_is1" = GIMP 2.6.11 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3765997149-2655884479-1147828285-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Dropbox" = Dropbox "Google Chrome" = Google Chrome "TeamSpeak 3 Client" = TeamSpeak 3 Client [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-06-29 04:59:02 | Computer Name = Adrian-PC | Source = Application Hang | ID = 1002 Description = The program 43euyh45wsuw.exe version 0.0.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 1044 Start Time: 01cd55d496bc07e0 Termination Time: 0 Application Path: c:\users\adrian\appdata\roaming\43euyh45wsuw.exe Report Id: a5696e78-c1c8-11e1-b614-002522f0485d Error - 2012-06-29 05:17:51 | Computer Name = Adrian-PC | Source = WinMgmt | ID = 10 Description = Error - 2012-06-29 05:28:58 | Computer Name = Adrian-PC | Source = WinMgmt | ID = 10 Description = Error - 2012-06-29 05:50:57 | Computer Name = Adrian-PC | Source = WinMgmt | ID = 10 Description = Error - 2012-06-29 06:00:23 | Computer Name = Adrian-PC | Source = WinMgmt | ID = 10 Description = Error - 2012-06-29 06:15:23 | Computer Name = Adrian-PC | Source = WinMgmt | ID = 10 Description = Error - 2012-06-29 06:26:20 | Computer Name = Adrian-PC | Source = WinMgmt | ID = 10 Description = Error - 2012-06-29 06:46:02 | Computer Name = Adrian-PC | Source = WinMgmt | ID = 10 Description = Error - 2012-06-29 07:05:39 | Computer Name = Adrian-PC | Source = WinMgmt | ID = 10 Description = Error - 2012-06-29 07:16:18 | Computer Name = Adrian-PC | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 2012-06-29 08:07:33 | Computer Name = Adrian-PC | Source = Service Control Manager | ID = 7001 Description = The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error - 2012-06-29 08:07:33 | Computer Name = Adrian-PC | Source = Service Control Manager | ID = 7001 Description = The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error - 2012-06-29 08:07:33 | Computer Name = Adrian-PC | Source = DCOM | ID = 10005 Description = Error - 2012-06-29 08:07:33 | Computer Name = Adrian-PC | Source = DCOM | ID = 10005 Description = Error - 2012-06-29 08:07:34 | Computer Name = Adrian-PC | Source = Service Control Manager | ID = 7001 Description = The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error - 2012-06-29 08:07:34 | Computer Name = Adrian-PC | Source = Service Control Manager | ID = 7001 Description = The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error - 2012-06-29 08:07:34 | Computer Name = Adrian-PC | Source = Service Control Manager | ID = 7001 Description = The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error - 2012-06-29 08:07:34 | Computer Name = Adrian-PC | Source = Service Control Manager | ID = 7001 Description = The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error - 2012-06-29 08:07:34 | Computer Name = Adrian-PC | Source = Service Control Manager | ID = 7001 Description = The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error - 2012-06-29 08:07:34 | Computer Name = Adrian-PC | Source = Service Control Manager | ID = 7001 Description = The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 < End of report >