OTL Extras logfile created on: 2012-07-07 16:57:13 - Run 1 OTL by OldTimer - Version 3.2.53.1 Folder = C:\Users\Wojtek\Desktop 64bit- Professional (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,98 Gb Total Physical Memory | 3,43 Gb Available Physical Memory | 86,03% Memory free 7,96 Gb Paging File | 7,42 Gb Available in Paging File | 93,11% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 49,90 Gb Total Space | 4,17 Gb Free Space | 8,37% Space Free | Partition Type: NTFS Drive D: | 207,88 Gb Total Space | 21,00 Gb Free Space | 10,10% Space Free | Partition Type: NTFS Drive E: | 207,88 Gb Total Space | 4,73 Gb Free Space | 2,27% Space Free | Partition Type: NTFS Drive G: | 3,72 Gb Total Space | 3,44 Gb Free Space | 92,46% Space Free | Partition Type: FAT32 Computer Name: WOJTEK-KOMPUTER | User Name: Wojtek | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-241298349-3269669532-2685158662-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- D:\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "D:\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "D:\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "D:\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "D:\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{086F33DE-32C8-431E-BFE8-6051C3647077}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{0BF469D1-61A3-470D-BFBA-74192D326F72}" = lport=137 | protocol=17 | dir=in | app=system | "{0D1883CF-0D65-44EE-8FC2-CEEFA6483041}" = rport=138 | protocol=17 | dir=out | app=system | "{11B2F214-E336-4E38-BDEE-CDD1CE79B747}" = lport=58475 | protocol=6 | dir=in | name=pando media booster | "{181AC1FB-2DE6-4CEE-92A0-7BFEBDE40D69}" = lport=58475 | protocol=17 | dir=in | name=pando media booster | "{1BA07EFF-76FC-4544-B0DF-0214006367D8}" = lport=445 | protocol=6 | dir=in | app=system | "{27C3FA76-9D2E-42D0-9F09-3B528CBA3516}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe | "{2DDCDF2B-9068-48E1-80E1-46A8437D8BD7}" = lport=58475 | protocol=17 | dir=in | name=pando media booster | "{455D5AA7-EA1A-4727-8581-38A240E48C98}" = rport=10243 | protocol=6 | dir=out | app=system | "{49A88B7C-CA2C-442E-AAE1-5213433A86AA}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{61C98C85-AF12-488C-810D-E5CCC9D0F2E6}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{7D2B35A7-C156-46EB-97B2-4404FE2B67A9}" = lport=138 | protocol=17 | dir=in | app=system | "{8494931E-C0B2-4703-A89C-8C97239E0A46}" = lport=10243 | protocol=6 | dir=in | app=system | "{8EF35FC5-B650-47A4-8B4F-75FCAD31B4C0}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{9DAEF3DD-D830-4431-ADB7-457074F53162}" = lport=58475 | protocol=6 | dir=in | name=pando media booster | "{9FC9C1BB-F7D9-4EA3-B2B6-0CF1F231E026}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{BC60F602-7C91-4A04-8753-7A818B5D0A21}" = lport=2869 | protocol=6 | dir=in | app=system | "{C4409D27-13E3-4950-8C1D-A394994CB20A}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{C8CCE5DA-BED3-4D1A-B2DC-A1D1266E623B}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{CB0A9D6C-2D54-4BC4-8C2F-1D475CD150A2}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{D329214A-CFEA-4F95-923A-F42C65400C69}" = rport=139 | protocol=6 | dir=out | app=system | "{E9F77C00-03BD-4C0E-B26B-0D10EC6BEF07}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{EA52EA7B-9F4B-4BDE-B931-75FA4413A1B7}" = rport=445 | protocol=6 | dir=out | app=system | "{EC5FB020-2C74-40C7-943B-F68851460B79}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{EEF0A0A1-39B9-4C3E-85EE-51210454A720}" = lport=139 | protocol=6 | dir=in | app=system | "{F2032E26-9EFE-4120-A09C-32F6F16D1600}" = rport=137 | protocol=17 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{016C059B-523E-43F8-ACC6-9CAD779F6022}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\stronghold kingdoms\strongholdkingdoms.exe | "{04DA983A-40CE-46DF-BAE6-1F13DA3B5C26}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{066B07A3-00ED-4817-B2BB-460DC81D5D6B}" = protocol=6 | dir=in | app=d:\vindictus eu\en-eu\nmservice.exe | "{0823004F-14B7-4A7C-8326-40742AA87C3A}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{090036CC-469C-44D6-9AC2-B05C75CCE861}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{09076809-22BB-46F1-A701-52DE9507E273}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{165C222F-20E3-4D50-920A-CBED563638E0}" = protocol=17 | dir=in | app=d:\vindictus eu\en-eu\nmservice.exe | "{16C4068B-70F9-4B63-AA43-43C7AF05542E}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{1E141341-5F6A-4106-AF42-8F3A45FBF18C}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{2231896F-E073-4237-8CBA-A93F226DCF1B}" = protocol=17 | dir=in | app=d:\origin games\mass effect 3 demo\binaries\win32\masseffect3demo.exe | "{2A146E56-6D43-4A64-A6CC-F64B69283DBB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{31A54B59-578B-43E2-9676-3DD0ACCCB07B}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{3B65CE32-B0E5-43D9-B127-1719C4C1F7F7}" = protocol=17 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe | "{3E6204C0-AC17-428D-89AB-35216A6D30CD}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{3F369943-4513-4D1E-B858-9BD46934365F}" = protocol=6 | dir=in | app=d:\origin games\battlefield 3\bf3.exe | "{421D9F91-2431-475A-A788-1992C6394ACA}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{45AB0077-175C-4EC1-8EAF-54580BF942BF}" = protocol=6 | dir=in | app=d:\steam\steam.exe | "{4DE092C0-0130-47A2-A5DC-B60024ACA08A}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{52D0DC25-C8CC-488C-B946-86B9D5BEE059}" = protocol=17 | dir=in | app=d:\steam\steam.exe | "{56F92104-5174-4842-9870-F6637A94A32E}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{57627614-6E47-4077-BA10-40A27C6FA4BD}" = protocol=17 | dir=in | app=d:\sega\virtua tennis 4\vt4.exe | "{5851E076-C7F7-4448-96FF-A46AD8896729}" = protocol=17 | dir=in | app=d:\utorrent\utorrent.exe | "{6665EDBE-073D-4A62-A27F-F6EFC1B7D58F}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{6D14667C-0667-47FC-8963-AD782F80A31D}" = protocol=6 | dir=out | app=system | "{6E9064F4-7BEB-4A14-AF00-42DBA77EB9B5}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{72D6313D-4EF7-4C84-A364-148AE7287947}" = protocol=17 | dir=in | app=d:\origin games\battlefield 3\bf3.exe | "{744366BB-381B-415C-A23C-BF76AD1A5084}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{7C40DC09-BA53-4D63-97DE-C6892EE42576}" = protocol=6 | dir=in | app=d:\utorrent\utorrent.exe | "{81A1B4C4-574C-4D96-AA14-0EDCE1B6B919}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{83B49879-7021-4C56-85F5-B41A70A06776}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{8483A4C9-558E-4661-9C37-ADDA26706DF7}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{86F58188-C64C-4361-A629-1DF1FD6875FA}" = protocol=6 | dir=in | app=d:\origin games\mass effect 3 demo\binaries\win32\masseffect3demo.exe | "{8A555886-5265-4D9C-B514-139F1B4D0A72}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{8ACFBBBA-372C-4BEE-AEBE-1FA827B09180}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{8B3718D3-2115-40E1-82E6-7CD58525CAB8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{8FE138F2-1C4A-48B2-A352-E99D841ACB4E}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{95AEAA40-2C4F-4A04-A2D2-37D63AF2E7D4}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{A57A6E3E-3022-452C-AE3F-B72EA662734D}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{A75260EB-2AFC-441D-AC7B-F6119CBD9572}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{A7F99366-6121-4FD5-B31A-FC5EF9FA8B0B}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{AF2B0247-2AB5-40B7-86BA-A6ED9A4B2A75}" = protocol=6 | dir=in | app=d:\sega\virtua tennis 4\vt4.exe | "{B5D1047F-5D32-4015-947D-88808BABD076}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{B9F8EB7E-AFB1-4C5E-989B-5769AC14CFAC}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\stronghold kingdoms\strongholdkingdoms.exe | "{BA70E62A-F3A1-4873-9759-CA6D5B20A8B6}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{C1582620-BB51-48B3-893F-E8F9EA4725E9}" = protocol=6 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe | "{C7874F2D-C1B5-46B4-8935-99A29F0F77EA}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{C7DFC3A6-92A3-4977-89D2-FCBD7DC9D6EF}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{CD03BA85-96D0-4726-8F12-7332CABF5A65}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{D05893C3-673C-4E56-B4BA-37DF69242714}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{D4BF3B64-E5DE-42CE-82EE-BB24B5DA6E55}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{ED669348-6DCE-478B-9CEE-D605B2F8D1F8}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{EE000E4D-EFDA-4643-B71B-5287542FC236}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{EF9E800D-4C05-4CC3-A418-B4E20934BF80}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "TCP Query User{115A1726-D574-4FBD-9244-69F1A3AB93F6}D:\rock of ages\binaries\win32\roa.exe" = protocol=6 | dir=in | app=d:\rock of ages\binaries\win32\roa.exe | "TCP Query User{1C72445E-B169-44EB-939E-0BA1B9C6EA5C}D:\nba 2k12\nba2k12.exe" = protocol=6 | dir=in | app=d:\nba 2k12\nba2k12.exe | "TCP Query User{35ABA363-8DE4-465C-8D1B-3DF116EDD7A3}D:\wiedźmin 2\bin\witcher2.exe" = protocol=6 | dir=in | app=d:\wiedźmin 2\bin\witcher2.exe | "TCP Query User{4E5A7F7A-C2EA-43D6-A4FF-C326A360C6CD}D:\world_of_tanks\wotlauncher.exe" = protocol=6 | dir=in | app=d:\world_of_tanks\wotlauncher.exe | "TCP Query User{57D51B22-5FA0-40A5-ACC9-C2CB9632F332}C:\users\wojtek\appdata\roaming\gameranger\gameranger\gameranger.exe" = protocol=6 | dir=in | app=c:\users\wojtek\appdata\roaming\gameranger\gameranger\gameranger.exe | "TCP Query User{7498FD82-B873-4A5A-A743-CB056CC8985A}D:\tmnationsforever\tmforever.exe" = protocol=6 | dir=in | app=d:\tmnationsforever\tmforever.exe | "TCP Query User{7F2F4882-2328-4B6B-989C-C4B0F12978F1}D:\kag2d\kag.exe" = protocol=6 | dir=in | app=d:\kag2d\kag.exe | "TCP Query User{99B2C339-1F6F-4576-A51B-DD0FFD4EC3A4}D:\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=d:\sopcast\adv\sopadver.exe | "TCP Query User{9B23FEB5-724E-4F95-B146-3BBB4FCF8739}D:\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=d:\gadu-gadu 10\gg.exe | "TCP Query User{AF8358D1-2E85-4353-8743-E7F79990C268}D:\fifa 12\game\fifa.exe" = protocol=6 | dir=in | app=d:\fifa 12\game\fifa.exe | "TCP Query User{CBD855C1-3F95-4E62-BEF6-84F15A263EBB}D:\world_of_tanks\worldoftanks.exe" = protocol=6 | dir=in | app=d:\world_of_tanks\worldoftanks.exe | "TCP Query User{CFACD8D0-B2D9-4348-88EB-33CBAA6F4225}D:\nfss2\shift2u.exe" = protocol=6 | dir=in | app=d:\nfss2\shift2u.exe | "TCP Query User{DD8E19DE-7AD9-411A-9718-EAF2B6398CD1}D:\beat hazard ultra\beathazard.exe" = protocol=6 | dir=in | app=d:\beat hazard ultra\beathazard.exe | "TCP Query User{DE80E613-EFB9-4CA6-A4D4-74D5E2C76225}D:\sopcast\sopcast.exe" = protocol=6 | dir=in | app=d:\sopcast\sopcast.exe | "UDP Query User{0615F75E-6876-4ACE-93B4-73B034453CF1}D:\nba 2k12\nba2k12.exe" = protocol=17 | dir=in | app=d:\nba 2k12\nba2k12.exe | "UDP Query User{40F9B51C-50C3-466D-96EE-266CEE02E6E5}D:\wiedźmin 2\bin\witcher2.exe" = protocol=17 | dir=in | app=d:\wiedźmin 2\bin\witcher2.exe | "UDP Query User{62880A92-1524-4AE2-A397-B02138D32C4D}D:\world_of_tanks\worldoftanks.exe" = protocol=17 | dir=in | app=d:\world_of_tanks\worldoftanks.exe | "UDP Query User{677B306B-9778-4A79-8880-EBCA379950B7}C:\users\wojtek\appdata\roaming\gameranger\gameranger\gameranger.exe" = protocol=17 | dir=in | app=c:\users\wojtek\appdata\roaming\gameranger\gameranger\gameranger.exe | "UDP Query User{80AD37A1-93D5-4F7A-BD14-7F8932A1E235}D:\kag2d\kag.exe" = protocol=17 | dir=in | app=d:\kag2d\kag.exe | "UDP Query User{97BC8906-8905-4330-A069-B4928A0EC857}D:\nfss2\shift2u.exe" = protocol=17 | dir=in | app=d:\nfss2\shift2u.exe | "UDP Query User{BF21D6A6-2AFC-43EE-AE12-25A3E10D1B6F}D:\rock of ages\binaries\win32\roa.exe" = protocol=17 | dir=in | app=d:\rock of ages\binaries\win32\roa.exe | "UDP Query User{C6DD44F9-DB14-491B-8EBE-694AABB5FE2B}D:\world_of_tanks\wotlauncher.exe" = protocol=17 | dir=in | app=d:\world_of_tanks\wotlauncher.exe | "UDP Query User{C74C35A9-0404-4837-B9DC-18C87ACD4289}D:\beat hazard ultra\beathazard.exe" = protocol=17 | dir=in | app=d:\beat hazard ultra\beathazard.exe | "UDP Query User{EDBD5433-FF15-4402-A39B-79942FAEAE58}D:\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=d:\gadu-gadu 10\gg.exe | "UDP Query User{F4DE5E31-9B12-43C6-9CE6-A9C387886B6C}D:\fifa 12\game\fifa.exe" = protocol=17 | dir=in | app=d:\fifa 12\game\fifa.exe | "UDP Query User{FA5E4191-1B0C-4A2D-A0E3-9F39C83942D8}D:\sopcast\sopcast.exe" = protocol=17 | dir=in | app=d:\sopcast\sopcast.exe | "UDP Query User{FB275C94-C6CC-4E6C-86BF-2718A4B89E56}D:\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=d:\sopcast\adv\sopadver.exe | "UDP Query User{FCB8204A-F37A-4250-BC77-92B8142E17DB}D:\tmnationsforever\tmforever.exe" = protocol=17 | dir=in | app=d:\tmnationsforever\tmforever.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{8E5DA9A6-7A9F-3A6F-BC5C-D6CBCA6A29C7}" = Microsoft .NET Framework 4 Extended PLK Language Pack "{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 296.10 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 296.10 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 296.10 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 296.10 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.12.0213 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.7.11 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.3.12.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}" = Nokia Connectivity Cable Driver "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX 64-bit "CCleaner" = CCleaner "Defraggler" = Defraggler "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft .NET Framework 4 Extended PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended "Speccy" = Speccy "TeamSpeak 3 Client" = TeamSpeak 3 Client "WheelMouse" = 2X-Office 7.80 "WinRAR archiver" = WinRAR 4.01 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0141D498-16DA-4221-A529-1D7A64BE8B05}" = OpenOffice.org 3.3 "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{0A3A9522-EFA2-4C56-9138-101692C2A130}" = System Requirements Lab "{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1 "{1EAC1D02-C6AC-4FA6-9A44-96258C37C812}_is1" = World of Tanks v.0.6.4 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1F77C418-2C90-459C-BD33-B56A4182B9FA}" = System Requirements Lab CYRI "{2436F2A8-4B7E-4B6C-AE4E-604C84AA6A4F}" = Nero Core Components 10 "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{289AC7E0-0AEE-4a7b-913C-709D9803D23E}" = Nexon Game Manager "{2B673C6F-BDEA-48AE-AB59-7479BF04EF6E}" = Nail'd "{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}" = Microsoft XNA Framework Redistributable 4.0 "{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF010}" = Tribes Ascend "{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}" = Smite Closed Beta "{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}" = Hi-Rez Studios Authenticate and Update Service "{3FEA6CD1-EA13-4CE7-A74E-A74A4A0A7B5C}" = WERSJA DEMONSTRACYJNA FIFA 12 "{434D0FA0-1558-4D8E-AC3D-BD1000008200}" = DiRT 3 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace "{523B2B1B-D8DB-4B41-90FF-C4D799E2758A}" = Nero ControlCenter 10 Help (CHM) "{53450FA2-E900-456E-9715-501000008200}" = Virtua Tennis 4™ "{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver "{5454085C-840F-4070-8FAA-441000028301}" = BioShock 2 "{5454085C-840F-4070-8FAA-441000028302}" = BioShock 2 "{555868C6-49FB-484F-BB43-8980651A1B00}" = Nero BurnRights 10 Help (CHM) "{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}" = Google Earth "{5E6D0052-1048-4A10-89D1-9A1B660AD541}_is1" = Anomaly Warzone Earth version Repack by FKMETAL333 "{5F8E2CBB-949D-4175-AC98-5ADE7F6C9697}" = NCsoft Launcher "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{64BFBE7A-886C-4CA2-A9B4-0C2B5A5942BC}" = Battlefield 3™ "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{65356EEA-6ABF-437B-A7C7-5AAA0C6086F2}_is1" = Minecraft Auto wersja 1.0 "{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}" = Nero Update "{65CB4C08-C47B-4A7E-A6A4-50C06ADA5FC6}" = Adobe AIR "{6DFB899F-17A2-48F0-A533-ED8D6866CF38}" = Nero Control Center 10 "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{75D84EF7-0D8C-4e70-B3FA-7B42A5D4E0EB}" = Mass Effect 2 "{789289CA-F73A-4A16-A331-54D498CE069F}" = Ventrilo "{7A5D731D-B4B3-490E-B339-75685712BAAB}" = Nero Burning ROM 10 "{7FB413C8-3CAD-49F7-A67C-6EFEB4B04050}" = LogMeIn Hamachi "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8C9DDCAA-91E1-4DAA-BC65-68BD80546B98}}_is1" = PIT-OPP 2011 "{918A9082-6287-4D25-9002-5E5D5E4971CB}" = League of Legends "{943CFD7D-5336-47AF-9418-E02473A5A517}" = Nero BurnRights 10 "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9B6B24BE-80E7-46C4-9FA5-B167D5E0F345}" = Nero BurningROM 10 Help (CHM) "{a0fe116e-9a8a-466f-aee0-625cb7c207e3}" = Microsoft Visual C++ 2005 Redistributable - KB2467175 "{A1683CA7-4850-4A21-982B-C6D853C79AF7}" = Demo Mass Effect™ 3 "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1045-7B44-A95000000001}" = Adobe Reader 9.5.1 - Polish "{BE4BA698-8533-4F77-9559-C7F3F78C0B05}" = Assassin's Creed Brotherhood "{BEE64C14-BEF1-4610-8A68-A16EAA47B882}" = Futuremark SystemInfo "{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86 "{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.4.8 Game "{DA909E62-3B45-4BA1-8B58-FCAEBA4BCEC9}" = NVIDIA PhysX "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.9 "{F0A209B7-7F85-4BDD-8F1F-B98EEAD9E04B}" = Wiedźmin 2 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable "{FE83F463-7E61-4B18-9FA0-B94B90A0B6B9}" = Nero Burning ROM 10 "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "18 WoS Extreme Trucker 2" = 18 WoS Extreme Trucker 2 (v.1.0) "1ClickDownload" = 1ClickDownload "Adobe AIR" = Adobe AIR "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.6 "Afterburner" = MSI Afterburner 2.1.0 "AV Voice Changer Software DIAMOND 6.0" = AV Voice Changer Software DIAMOND 6.0 "avast" = avast! Free Antivirus "BabylonToolbar" = Babylon toolbar on IE "BandiMPEG1" = Bandisoft MPEG-1 Decoder "Battlelog Web Plugins" = Battlelog Web Plugins "Brickshooter Egypt" = Brickshooter Egypt "Butterfly Escape_is1" = Butterfly Escape 1.0 "CamStudio" = CamStudio "Cheat Engine 6.1_is1" = Cheat Engine 6.1 "Diamond Drop 2" = Diamond Drop 2 "Doctris" = Doctris "ESN Sonar-0.70.4" = ESN Sonar "EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v5.50 "Fallout New Vegas_is1" = Fallout New Vegas "FIFA 12 (c) EA_is1" = FIFA 12 (c) EA version 1 "Football Manager 2012_is1" = Football Manager 2012 "Fraps" = Fraps (remove only) "Gadu-Gadu 10" = Gadu-Gadu 10 "GFWL_{434D0FA0-1558-4D8E-AC3D-BD1000008200}" = DiRT 3 "GFWL_{53450FA2-E900-456E-9715-501000008200}" = Virtua Tennis 4™ "Handball 12_is1" = 1.0 "InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver "King Arthur's Gold (Alpha)_is1" = KAG 0.90A "LogMeIn Hamachi" = LogMeIn Hamachi "Luxor 2_is1" = Luxor 2 en "Mozilla Firefox 13.0.1 (x86 pl)" = Mozilla Firefox 13.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "MultiplayerMinecraft.pl 1.2.5" = MultiplayerMinecraft.pl 1.2.5 "MySSID_is1" = Vtune 7.13 "NBA 2K12_is1" = NBA 2K12 "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "OnLive" = OnLive "OpenAL" = OpenAL "Origin" = Origin "Plants vs. Zombies" = Plants vs. Zombies "PowerISO" = PowerISO "PunkBusterSvc" = PunkBuster Services "Sniper Elite V2_is1" = Sniper Elite V2 "SopCast" = SopCast 3.2.4 "SpeedFan" = SpeedFan (remove only) "Steam App 440" = Team Fortress 2 "Steam App 47410" = Stronghold Kingdoms "Super-Charger_is1" = Super-Charger "SystemRequirementsLab" = System Requirements Lab "Tetpic 4000(v2.6 Full Version)" = Tetpic 4000(v2.6 Full Version) "The Treasures Of Montezuma 3" = The Treasures Of Montezuma 3 "TmNationsForever_is1" = TmNationsForever "UltraDefrag" = Ultra Defragmenter "uTorrent" = µTorrent "Video Player1.0" = Video Player "Vindictus EU" = Vindictus EU "VLC media player" = VLC media player 1.1.10 "World of Warcraft" = World of Warcraft "Xfire" = Xfire (remove only) "Zuma Deluxe RA" = Zuma Deluxe RA "Zuma's Revenge!1.0" = Zuma's Revenge! [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-241298349-3269669532-2685158662-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "GameRanger" = GameRanger "T-Mobile Ekstraklasa Patch" = T-Mobile Ekstraklasa Patch "UnityWebPlayer" = Unity Web Player [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-07-07 08:19:58 | Computer Name = Wojtek-Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error - 2012-07-07 08:21:26 | Computer Name = Wojtek-Komputer | Source = Software Protection Platform Service | ID = 8198 Description = Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error - 2012-07-07 08:21:27 | Computer Name = Wojtek-Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error - 2012-07-07 10:38:20 | Computer Name = Wojtek-Komputer | Source = Software Protection Platform Service | ID = 8198 Description = Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error - 2012-07-07 10:38:20 | Computer Name = Wojtek-Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error - 2012-07-07 10:38:41 | Computer Name = Wojtek-Komputer | Source = SideBySide | ID = 16842811 Description = Nie można wygenerować kontekstu aktywacji dla "D:\Overwolf\Overwolf.exe". Błąd w pliku manifestu lub w pliku zasad "D:\Overwolf\Overwolf.exe.Config" w wierszu 0. Nieprawidłowa składnia XML. Error - 2012-07-07 10:42:42 | Computer Name = Wojtek-Komputer | Source = Software Protection Platform Service | ID = 8198 Description = Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error - 2012-07-07 10:42:42 | Computer Name = Wojtek-Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error - 2012-07-07 10:56:10 | Computer Name = Wojtek-Komputer | Source = Software Protection Platform Service | ID = 8198 Description = Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error - 2012-07-07 10:56:10 | Computer Name = Wojtek-Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. [ System Events ] Error - 2012-07-07 10:56:10 | Computer Name = Wojtek-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-07 10:56:19 | Computer Name = Wojtek-Komputer | Source = DCOM | ID = 10005 Description = Error - 2012-07-07 10:56:21 | Computer Name = Wojtek-Komputer | Source = DCOM | ID = 10005 Description = Error - 2012-07-07 10:56:21 | Computer Name = Wojtek-Komputer | Source = DCOM | ID = 10005 Description = Error - 2012-07-07 10:56:21 | Computer Name = Wojtek-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-07 10:56:21 | Computer Name = Wojtek-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-07 10:56:21 | Computer Name = Wojtek-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-07 10:56:21 | Computer Name = Wojtek-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-07 10:56:21 | Computer Name = Wojtek-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-07 10:56:21 | Computer Name = Wojtek-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 < End of report >