OTL Extras logfile created on: 2012-07-06 12:44:02 - Run 1 OTL by OldTimer - Version 3.2.53.1 Folder = C:\Users\a\Downloads 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 4,00 Gb Total Physical Memory | 3,30 Gb Available Physical Memory | 82,56% Memory free 8,00 Gb Paging File | 7,34 Gb Available in Paging File | 91,84% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 48,83 Gb Total Space | 2,00 Gb Free Space | 4,09% Space Free | Partition Type: NTFS Drive D: | 195,32 Gb Total Space | 18,42 Gb Free Space | 9,43% Space Free | Partition Type: NTFS Drive E: | 221,61 Gb Total Space | 38,69 Gb Free Space | 17,46% Space Free | Partition Type: NTFS Computer Name: A-KOMPUTER | User Name: a | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software) [HKEY_USERS\S-1-5-21-3787494026-4283661288-4156441255-1000\SOFTWARE\Classes\] .html [@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- "C:\Windows\system32\rundll32.exe" "C:\Windows\system32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{15C72912-8E33-475A-B409-B822D36A8F84}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{200B5701-AC6D-4ABB-9118-C386F1FB0CF7}" = lport=138 | protocol=17 | dir=in | app=system | "{25DC1620-043C-4E94-A6FE-74387F2BB3CD}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{423387A7-BD87-4FF6-9502-C95186C1BD27}" = rport=139 | protocol=6 | dir=out | app=system | "{4FF21246-8008-41B3-A11E-F0DA0E11349C}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{55557647-1A14-4B72-8240-68FBFB67C60E}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office14\outlook.exe | "{5A1B3750-6CEC-4506-A31E-B716946B2855}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{627898C5-8F0F-43FC-850B-35AC7A9FCFAE}" = lport=2869 | protocol=6 | dir=in | app=system | "{6865EBD8-2C30-409B-8C17-20362A7EE189}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{6C63B96E-EB82-46E1-9C4F-AD887E7714F6}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{6D393F1E-D65D-4DD6-886D-5ECDD2C085DC}" = rport=445 | protocol=6 | dir=out | app=system | "{746A516B-458D-4AD3-9D99-B527876026B9}" = lport=445 | protocol=6 | dir=in | app=system | "{94376BCF-D17A-4C3D-BFE9-27B9FB1CD8B4}" = rport=137 | protocol=17 | dir=out | app=system | "{97F8EB04-BBF9-475E-95B4-E631B8F74E52}" = lport=139 | protocol=6 | dir=in | app=system | "{9D74A7A2-9DD3-4A98-A1C0-66FCB577E81F}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{A054D066-8015-4FE1-B8FA-310A41799E4F}" = rport=10243 | protocol=6 | dir=out | app=system | "{A4BC328E-ECC7-47D2-BB43-251A4B635692}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{A6A7EA7D-AA0D-4C33-91AF-E94A2AF5FDCA}" = rport=138 | protocol=17 | dir=out | app=system | "{AF73223F-8A67-414E-9B1B-1027A1C18021}" = lport=137 | protocol=17 | dir=in | app=system | "{C0A50F8E-DA56-421D-82D6-28F79367B30F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{CA9ABC70-3BFD-4A89-87B1-66B3CA970EED}" = lport=10243 | protocol=6 | dir=in | app=system | "{E740BC4C-7A15-4708-8155-6F5BE43F737C}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{03BB1982-314D-4DFA-9A99-8D9ED43A1A61}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe | "{090CA2C3-A474-41D4-9E13-CDAFE11FD4EF}" = protocol=17 | dir=in | app=e:\starcraft ii\starcraft ii.exe | "{1209BE1A-904D-4BEE-91E7-501782771C81}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{12D574FA-7694-447D-9E78-278A71995A6A}" = protocol=17 | dir=in | app=e:\starcraft ii\versions\base15405\sc2.exe | "{1814B5C2-A15B-46A1-B532-0BFDE92A67BA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{18FDD5D7-1CDF-48EC-AC49-491EE3262884}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{20466C9D-D5DC-4975-AA5D-63280539142A}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{246F3741-E31A-4250-9149-4D5044310B90}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{2577C5CC-01D9-421B-8C44-8613AF6DDD1C}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{276370D8-EB9C-4D6F-82D1-5DF0BA8623FB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{2B46EFCA-B3E7-4C41-BC17-4FC0AE87E82F}" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed\assassinscreed_dx9.exe | "{2F01CEA4-1127-4295-B9DD-8EE23DE49317}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\groove.exe | "{33981D6A-4C4A-487E-A8FB-5C4A4AC493A2}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{36655076-8EC5-42DC-B58D-2A4B4A196F68}" = protocol=58 | dir=in | app=system | "{38C0CF77-3CCD-45E5-BC78-3A917A362CA2}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | "{44F6CD2F-F085-4F66-82A1-7DE762AE2D91}" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed\assassinscreed_dx9.exe | "{4A446858-3197-44E2-A0F6-AA271AE8066B}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{519E801B-D963-4A88-9C69-71730E94AEBF}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{564FBFC9-AE22-4D4E-A9A5-AFEFF27B0DCC}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{5C1EBBD6-FC86-4042-B3B2-D34C40907AC1}" = protocol=6 | dir=in | app=e:\starcraft ii\starcraft ii.exe | "{61EEA14D-FB4E-48F5-A16C-60C177C80CA3}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 | "{645075A6-F1BA-4B46-9483-9D3726367A28}" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed\assassinscreed_launcher.exe | "{68122F34-5BCF-4CFF-9A6A-6A4F8F30D3BF}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{6CD25B36-262F-4FD3-B91B-44926FD1A600}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{6D0073ED-98EF-4F2C-905C-4EB06E0B2DAA}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe | "{6DEDB8BE-6B2C-457F-9EB1-DB2914144D35}" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed\assassinscreed_dx10.exe | "{97F7A89A-74B5-4447-99D7-D11649319E43}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{9FE4FF9E-553E-4FEE-9F22-CDA8FD9F0E63}" = protocol=6 | dir=in | app=e:\starcraft ii\versions\base15405\sc2.exe | "{A2894BE0-13FB-4D34-9AFF-598AD9BDDEA7}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{A7C9CFCA-EC73-455B-9C64-FE9754D8E138}" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed\assassinscreed_launcher.exe | "{A836347A-4656-43FE-BFFE-7FD49F81C600}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{AB117D0E-252C-4BEA-89A1-8A1D7CDFC003}" = protocol=17 | dir=in | app=e:\program files (x86)\diablo iii\diablo iii.exe | "{AC69E1C2-523A-4B98-92BF-67BEBEE7E3BF}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\groove.exe | "{B7A581F5-F096-4CF7-978E-3F8CB0CF7B62}" = protocol=6 | dir=out | app=system | "{B9540578-7DD3-4BD2-98C9-84738E9B36B8}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{C0A4F42A-0106-4C6B-84F3-B30F8E06D9C0}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{C17B983A-1CDE-49D4-B394-941BB6A423AD}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\pluginwrapper\opera_plugin_wrapper.exe | "{CD44A860-F915-4160-839A-A620CBC5A6FB}" = protocol=6 | dir=in | app=e:\program files (x86)\diablo iii\diablo iii.exe | "{D101263D-D37F-4122-B67F-88C7274F7069}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{DE97A4F3-64F5-4B59-B4EE-5B3F201C0895}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{EB40006C-827C-403A-BD56-FC81E07700C4}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | "{EBCE0B15-69F8-45CE-9EC8-3919433E4536}" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed\assassinscreed_dx10.exe | "{F2D66C1C-083E-4F4A-AEA8-58F85847E4B8}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{F947B96C-14C8-43D2-BA06-01278C89B420}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\pluginwrapper\opera_plugin_wrapper.exe | "TCP Query User{0B0423CC-126B-4009-97CC-C1B2B4C6B8B8}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "TCP Query User{1395FE88-46FF-4EE3-962A-191693BC02F6}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "TCP Query User{1F04A0E5-4801-4541-8E13-192ED3C424F0}E:\games\world_of_tanks\wotlauncher.exe" = protocol=6 | dir=in | app=e:\games\world_of_tanks\wotlauncher.exe | "TCP Query User{29EAEEFF-FCC1-4E6D-BF0B-FDA48D3E58B1}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | "TCP Query User{2CC77C05-2FBC-4BA3-84AD-26249EB8E98F}E:\racer086\racer086\racer.exe" = protocol=6 | dir=in | app=e:\racer086\racer086\racer.exe | "TCP Query User{69F0696B-0077-41EE-9490-C9BFA71E5840}E:\games\world_of_tanks\worldoftanks.exe" = protocol=6 | dir=in | app=e:\games\world_of_tanks\worldoftanks.exe | "TCP Query User{8A5F971F-464F-4462-89C7-4C22D0BB73AC}E:\starcraft ii\versions\base15405\sc2.exe" = protocol=6 | dir=in | app=e:\starcraft ii\versions\base15405\sc2.exe | "TCP Query User{941368A5-7924-4675-931B-C3C601038E42}C:\program files (x86)\opera\opera.exe" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe | "TCP Query User{B2BF053F-7CFA-45E1-B64E-C62095062BDA}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe | "TCP Query User{D9E9B6F4-2884-44F9-B231-310DFA77AACE}E:\games\world_of_tanks\wotlauncher.exe" = protocol=6 | dir=in | app=e:\games\world_of_tanks\wotlauncher.exe | "TCP Query User{E76661A2-708F-4363-8DB2-871B9398F72F}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe | "TCP Query User{FDE1BE63-8E48-4473-B1BE-381370E71521}C:\programdata\battle.net\agent\agent.976\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.976\agent.exe | "UDP Query User{1DBEACC2-735D-432B-AD27-5868F2A137F7}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "UDP Query User{1E5E7010-835C-4DB4-BD93-2C56EF21D74E}E:\games\world_of_tanks\wotlauncher.exe" = protocol=17 | dir=in | app=e:\games\world_of_tanks\wotlauncher.exe | "UDP Query User{2FD7AFF5-D4F1-4326-ADF2-01C05F6B27D3}C:\program files (x86)\opera\opera.exe" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe | "UDP Query User{38B793FA-9143-4248-BB3C-AD47FBF4BA38}E:\racer086\racer086\racer.exe" = protocol=17 | dir=in | app=e:\racer086\racer086\racer.exe | "UDP Query User{5E478605-089A-4D52-AC1B-4609B6604CDD}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe | "UDP Query User{74DD5C9E-F88E-4665-BC32-7294B9590939}E:\games\world_of_tanks\worldoftanks.exe" = protocol=17 | dir=in | app=e:\games\world_of_tanks\worldoftanks.exe | "UDP Query User{8C0FAC4C-2E89-4357-BA3E-88F972CF5460}C:\programdata\battle.net\agent\agent.976\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.976\agent.exe | "UDP Query User{98381357-AFBC-410A-ADEB-4E156313961B}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe | "UDP Query User{9C372CA7-D6FB-4AC7-93CB-74F72CED9E42}E:\games\world_of_tanks\wotlauncher.exe" = protocol=17 | dir=in | app=e:\games\world_of_tanks\wotlauncher.exe | "UDP Query User{B4EB9AC1-60BB-458B-A3C3-427429ECC029}E:\starcraft ii\versions\base15405\sc2.exe" = protocol=17 | dir=in | app=e:\starcraft ii\versions\base15405\sc2.exe | "UDP Query User{D484180B-82D7-4046-83D3-8F8080269978}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "UDP Query User{FA66649A-EF23-43A1-882A-E2590D0B7290}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition) "{90140000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{7BC9B5EB-125A-4E9B-97E1-8D85B5E960B8}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0015-0415-1000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0015-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0016-0415-1000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0016-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0018-0415-1000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0018-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0019-0415-1000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-0019-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001A-0415-1000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001A-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001B-0415-1000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001B-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0407-1000-0000000FF1CE}_Office14.PROPLUS_{70A3169E-288F-454F-A08D-20DF66639B50}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0409-1000-0000000FF1CE}_Office14.PROPLUS_{0242505C-4E90-407F-9299-B5B275F50D86}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0415-1000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-001F-0415-1000-0000000FF1CE}_Office14.PROPLUS_{329A3D98-9583-4B84-B18B-498E7AB65C43}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002C-0415-1000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-002C-0415-1000-0000000FF1CE}_Office14.PROPLUS_{BFEB53FA-3044-47FD-BB50-9DCBBEED79EF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0043-0000-1000-0000000FF1CE}" = Microsoft Office Office 32-bit Components 2010 "{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUS_{E8B6D35B-0B6F-4DCE-9493-859BF3809A7F}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0043-0415-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Polish) 2010 "{90140000-0043-0415-1000-0000000FF1CE}_Office14.PROPLUS_{FF5F6090-64DF-4BF6-BADD-71A64FDA70D2}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0044-0415-1000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-0044-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-006E-0415-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-006E-0415-1000-0000000FF1CE}_Office14.PROPLUS_{3A96ABFF-5202-47B1-B5A2-DDE76563AF61}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00A1-0415-1000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00A1-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00BA-0415-1000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{90140000-00BA-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.11.0621 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.5.20 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "CCleaner" = CCleaner "ffdshow64_is1" = ffdshow x64 v1.1.3982 [2011-09-15] "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{06F80017-8F98-4C94-B868-52358569FC32}" = Command & Conquer Generals "{114701EA-4449-4699-8960-9B63636CCD8E}" = BDE "{1EAC1D02-C6AC-4FA6-9A44-96258C37C812}_is1" = World of Tanks v.0.6.4 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83216025FF}" = Java(TM) 6 Update 25 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace "{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime "{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}" = Google Earth "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{7F6D7FD9-648D-4DD9-BB6E-3990C675ECA4}" = NVIDIA PhysX "{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8CFA9151-6404-409A-AF22-4632D04582FD}" = Assassin's Creed "{9527A496-5DF9-412A-ADC7-168BA5379CA6}" = Microsoft Flight Simulator X "{974C4B12-4D02-4879-85E0-61C95CC63E9E}" = Fallout 3 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1045-7B44-A94000000001}" = Adobe Reader 9.4.0 - Polish "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{EE6097DD-05F4-4178-9719-D3170BF098E8}" = Apple Application Support "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.8 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F3EA4B0D-C656-478B-8F1E-EAFAEC1920F0}" = Document Express DjVu Plug-in "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "AIMP3" = AIMP3 "Bejeweled 31.0.8.6128" = Bejeweled 3 "Diablo III" = Diablo III "ESET Online Scanner" = ESET Online Scanner v3 "EVEREST Home Edition_is1" = EVEREST Home Edition v2.20 "Gadu-Gadu 10" = Gadu-Gadu 10 "Game Booster_is1" = Game Booster 3 "GameDesire-Pool & Snooker" = GameDesire-Pool & Snooker "Google Chrome" = Google Chrome "InstallShield_{06F80017-8F98-4C94-B868-52358569FC32}" = Command & Conquer Generals "InstallShield_{9527A496-5DF9-412A-ADC7-168BA5379CA6}" = Microsoft Flight Simulator X "Mozilla Firefox 13.0.1 (x86 pl)" = Mozilla Firefox 13.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "OpenTTD" = OpenTTD 1.1.1 "Opera 12.00.1467" = Opera 12.00 "OziExplorer 3.95_is1" = OziExplorer 3.95 "RivaTuner" = RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition "StarCraft II" = StarCraft II "SuperMemo UX - Angielski. No problem!+ 1" = SuperMemo UX - Angielski. No problem!+ 1 "uTorrent" = µTorrent [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3787494026-4283661288-4156441255-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "BankBrowser" = BankBrowser [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-07-06 05:34:38 | Computer Name = a-Komputer | Source = SideBySide | ID = 16842832 Description = Nie można wygenerować kontekstu aktywacji dla „C:\Users\a\Downloads\esetsmartinstaller_plk.exe”. Błąd w pliku manifestu lub w pliku zasad „” w wierszu . Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Składnik 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error - 2012-07-06 05:48:18 | Computer Name = a-Komputer | Source = Windows Search Service | ID = 9000 Description = Error - 2012-07-06 05:48:19 | Computer Name = a-Komputer | Source = Windows Search Service | ID = 7040 Description = Error - 2012-07-06 05:48:19 | Computer Name = a-Komputer | Source = Windows Search Service | ID = 9002 Description = Error - 2012-07-06 05:48:19 | Computer Name = a-Komputer | Source = Windows Search Service | ID = 3029 Description = Error - 2012-07-06 05:48:20 | Computer Name = a-Komputer | Source = Windows Search Service | ID = 3029 Description = Error - 2012-07-06 05:48:20 | Computer Name = a-Komputer | Source = Windows Search Service | ID = 3028 Description = Error - 2012-07-06 05:48:20 | Computer Name = a-Komputer | Source = Windows Search Service | ID = 3058 Description = Error - 2012-07-06 05:48:20 | Computer Name = a-Komputer | Source = Windows Search Service | ID = 7010 Description = Error - 2012-07-06 05:48:20 | Computer Name = a-Komputer | Source = Windows Search Service | ID = 7042 Description = Error - 2012-07-06 05:56:47 | Computer Name = a-Komputer | Source = SideBySide | ID = 16842832 Description = Nie można wygenerować kontekstu aktywacji dla „C:\Users\a\Downloads\esetsmartinstaller_plk.exe”. Błąd w pliku manifestu lub w pliku zasad „” w wierszu . Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Składnik 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. [ System Events ] Error - 2012-07-06 06:38:14 | Computer Name = a-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-06 06:40:20 | Computer Name = a-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-06 06:40:20 | Computer Name = a-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-06 06:40:20 | Computer Name = a-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-06 06:45:20 | Computer Name = a-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-06 06:45:20 | Computer Name = a-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-06 06:45:20 | Computer Name = a-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-06 06:47:28 | Computer Name = a-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-06 06:47:28 | Computer Name = a-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-06 06:47:28 | Computer Name = a-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 < End of report >