OTL Extras logfile created on: 2012-07-10 19:21:23 - Run 1 OTL by OldTimer - Version 3.2.53.1 Folder = C:\Users\Tyska\Desktop Enterprise Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1023,37 Mb Total Physical Memory | 520,75 Mb Available Physical Memory | 50,89% Memory free 2,00 Gb Paging File | 1,10 Gb Available in Paging File | 55,20% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 40,00 Gb Total Space | 11,85 Gb Free Space | 29,63% Space Free | Partition Type: NTFS Drive D: | 70,00 Gb Total Space | 41,52 Gb Free Space | 59,31% Space Free | Partition Type: NTFS Drive E: | 20,51 Gb Total Space | 7,69 Gb Free Space | 37,48% Space Free | Partition Type: NTFS Drive F: | 50,00 Gb Total Space | 27,26 Gb Free Space | 54,53% Space Free | Partition Type: NTFS Drive G: | 98,05 Gb Total Space | 6,79 Gb Free Space | 6,92% Space Free | Partition Type: NTFS Computer Name: DZIECIAKI-PC | User Name: Tyska | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [ChomikBox.Upload] -- "C:\Program Files\ChomikBox\\ChomikBox.exe" -u"%1" ( ) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{1DB5CF6A-F584-49CD-9401-6AEFE918BDD5}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{2595DA74-9C05-410F-A791-8C64E892FE68}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{2B4C5B10-D7FB-4071-BD17-2E5BADA6C6EB}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{30063207-A8F2-45DB-BA45-EFEC47A1E86D}" = lport=2869 | protocol=6 | dir=in | name=tcp 2869 | "{3590021D-0465-4E58-9B80-541B1944FB3B}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{418D0CEB-1163-4FB2-9407-A6B202F11B32}" = lport=1900 | protocol=17 | dir=in | name=udp 1900 | "{4A417B46-3966-491B-BEFA-8F85127D27D9}" = lport=139 | protocol=6 | dir=in | app=system | "{4F6F7174-79B3-417C-9B89-2CC83BDC2569}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{525463DF-73CF-48F1-AE73-D22101A3719A}" = rport=139 | protocol=6 | dir=out | app=system | "{5A1AA067-EF43-4318-9C1A-0236AA38251B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{635A9D67-FBA3-4483-BF52-5E2A01AFD529}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{6539A966-8430-4C66-AEDF-4C41FB86A667}" = lport=2869 | protocol=6 | dir=in | app=system | "{6F5124ED-0CDB-4F38-B902-D20CEFD36EA0}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{707F1619-3CE4-4980-A7E2-A9FDD3AB4259}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{761DC63D-0EB4-4D54-91EC-90A4B43B7B33}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{789FC33E-EE9A-4932-8C18-6CE1FF5CEE2F}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{7F87A483-6C9E-4390-AE0A-6AA95A8B9CCA}" = rport=138 | protocol=17 | dir=out | app=system | "{8F36BB02-6F49-4792-9204-371AF24D7509}" = lport=10243 | protocol=6 | dir=in | app=system | "{9CE8C04D-FBE7-477C-BD99-8C64204B2C09}" = lport=137 | protocol=17 | dir=in | app=system | "{B10F1434-7DED-4E1D-8050-56E950C0A9E5}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{B6206067-518C-49B6-B2AE-09C7883476F3}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{CBFCB68A-E847-45E0-8AD1-A6718B85C4AE}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{CD40F158-E323-43AE-8391-251E7E6E2070}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{CECD7697-E341-468F-B9FF-AEEC86A360C6}" = rport=445 | protocol=6 | dir=out | app=system | "{D02C7A9B-9E3D-4E0B-AE00-E6E986F329AB}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{DA1202E0-17ED-4596-82AB-D5A6039EBEAB}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{DF4D97CC-4996-4B23-BB0A-67CD06C1E64E}" = rport=10243 | protocol=6 | dir=out | app=system | "{E77CA1DA-12F0-427A-8FEB-76ACC610FFCD}" = lport=138 | protocol=17 | dir=in | app=system | "{E78470DA-343E-4793-8B80-5259C59CF881}" = rport=137 | protocol=17 | dir=out | app=system | "{EA01651D-273D-410E-957E-774C5660B8C5}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{F1033063-0393-4FD0-B7B4-FFC73E903EEE}" = lport=445 | protocol=6 | dir=in | app=system | "{F175CE32-CCC6-4985-9988-533B529DB0A2}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{F974FCF7-AAFF-45F2-BD67-25302C8863B1}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{03A23675-2E7A-40CA-BAD2-5EB78621289B}" = protocol=17 | dir=in | app=g:\nowy folder\steam\steam.exe | "{075072B2-E5E3-4A2D-AC5F-93FD35CEB527}" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe | "{1654B78A-602A-452F-8D49-FFC37585CFB7}" = protocol=17 | dir=in | app=g:\program files\steam\steamapps\common\ava\reactor.exe | "{1D106FAB-507B-4D9A-84A1-235D642D32C9}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{1D24A17C-A33F-4BBB-8564-7AF01701F0F8}" = dir=in | app=c:\program files\pando networks\media booster\pmb.exe | "{1D677EF9-43F4-4EE8-BB0C-F40C6BC2B3EA}" = protocol=17 | dir=in | app=g:\program files\steam\steamapps\common\apb reloaded\launcher\apblauncher.exe | "{20F075E5-5D8B-4419-A76A-6619F147110E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{22FE8C8E-4283-425A-A2C8-E1A749BBF0C8}" = dir=in | app=c:\program files\nokia\nokia suite\nokiasuite.exe | "{24097A7E-04DE-404A-A55F-02A2BB19EE18}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{34AE4F00-F74B-4BF7-988E-AC314F846256}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{3A5D8B6E-3B85-4021-82F3-D59C44B3409F}" = protocol=6 | dir=in | app=g:\program files\steam\steamapps\common\apb reloaded\binaries\apb.exe | "{3D023E84-0F79-4BA0-BCE4-9683E85FBD18}" = protocol=1 | dir=in | name=hlsw icmp | "{3D672D66-5FE8-4126-8AA5-28983871AA05}" = protocol=17 | dir=in | app=c:\program files\opera\pluginwrapper\opera_plugin_wrapper.exe | "{429E2806-FC95-49AC-8797-E7E7A7C9DA21}" = protocol=6 | dir=in | app=c:\program files\opera\pluginwrapper\opera_plugin_wrapper.exe | "{43CCAEBA-BB1E-4A3B-97AB-553664E5B380}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{4425CF6E-3E24-449C-8B76-E8C33D3A04FC}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{4561C69F-9A01-411E-B081-3594DD638491}" = dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe | "{45E703AE-7284-4A64-A853-460E1678BDB6}" = protocol=6 | dir=in | app=c:\program files\epson software\event manager\eeventmanager.exe | "{4F5E20EC-4593-4C68-8F7E-9A592E4CA3EC}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{50283166-4A21-4FAC-A36E-AFAA979A1FF8}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe | "{51255110-3F3D-42DF-B262-EE12F3F4BE81}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{521C6BF2-8C06-49F6-99B4-0F9C65C0D5B0}" = protocol=17 | dir=in | app=c:\program files\itunes\itunes.exe | "{5457C903-1692-4F93-B9D8-E46761BE8FF0}" = protocol=6 | dir=out | app=system | "{566BE5ED-3ECD-4712-AC72-D26BE3A2E447}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | "{577216ED-F3CD-40CE-BF47-6A801B31645A}" = protocol=6 | dir=in | app=g:\program files\steam\steamapps\common\apb reloaded\binaries\vivoxvoiceservice.exe | "{58273004-C1D9-4776-954D-7F2DE9EB4233}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{5A331FC6-36D2-41F2-9ADD-ACC7EB254C72}" = dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe | "{5B58934B-338D-4A58-9E1B-164B31A70863}" = protocol=17 | dir=in | app=g:\program files\steam\steamapps\ziomalkrzys\counter-strike source\hl2.exe | "{5C36A09A-5419-4047-AC92-EEC3F97B326B}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{671EB92D-6607-4749-9E78-47EFDB909FD9}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{72078E54-2DC3-4FFB-9AE1-380A43FD5855}" = protocol=17 | dir=in | app=g:\program files\steam\steamapps\common\apb reloaded\binaries\vivoxvoiceservice.exe | "{7CF78A68-A18A-41F9-830D-8BC91D74FF40}" = protocol=6 | dir=in | app=g:\program files\steam\steamapps\common\ava\reactor.exe | "{850D8228-4914-4868-BBFC-CD2ECBD8099D}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{853BB2F7-214D-486A-BFBE-ABCF192A3CCD}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{94A02D5F-74B4-49B9-8B67-741249582B75}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{9E30CD69-69D5-415B-A8A0-353F14F7A13F}" = protocol=17 | dir=in | app=c:\program files\epson software\event manager\eeventmanager.exe | "{9FDC7E08-E5AD-4EFD-B96E-1ECE9CD8BC07}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{A6C94E0B-6D11-47AA-9F6D-D24CF98FF67B}" = dir=in | app=c:\program files\nokia\nokia suite\nokiasuite.exe | "{B28AA57D-1923-44A4-8B35-500E29B5AC6C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{BA6717ED-023E-45CC-B2B8-AF5FA6258A3E}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe | "{BAC7CC67-B210-4B69-AF4B-F6A0564C719B}" = protocol=6 | dir=in | app=g:\program files\steam\steamapps\common\apb reloaded\launcher\apblauncher.exe | "{BE26F4A4-B66B-45EB-9207-A892F8F5CDD0}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{C168D4CB-56FD-4E5A-9B9F-856EB4D7DB7A}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{C6154BE2-475A-4CE2-B17E-1C05FD79E1BF}" = protocol=17 | dir=in | app=g:\program files\steam\steamapps\common\apb reloaded\binaries\apb.exe | "{CD799A4C-8BFE-4E56-B532-06DDA1A03E24}" = protocol=6 | dir=in | app=g:\nowy folder\steam\steam.exe | "{CEBA5221-F0C3-40C6-8572-B0A2A6296EBE}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe | "{D5C08A2A-0CC4-4EA9-BE83-1C73BAC42709}" = protocol=6 | dir=in | app=g:\program files\steam\steamapps\ziomalkrzys\counter-strike source\hl2.exe | "{DEF32622-BC67-411F-B037-8523AEB132B0}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{E11F84F7-51DD-42CD-966E-4D0A6BC9E338}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | "{EAEAF51F-DA85-4B1B-8D0A-5B1F4461C5E2}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | "{EB37AEC5-2189-4813-9880-DE82174E8CB7}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{F213AA85-05CF-41C6-911E-CA2298866A62}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{FD0710C9-288A-4B4B-9299-5848E0E6A5C8}" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe | "{FE084351-36B5-40E2-B0D7-C54CBA9623D9}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | "TCP Query User{02FA79C3-FFF9-4146-BA64-CCE39448D18D}C:\program files\opera\opera.exe" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe | "TCP Query User{25238F91-CD71-4338-A460-90A43555072F}C:\windows\explorer.exe" = protocol=6 | dir=in | app=c:\windows\explorer.exe | "TCP Query User{3607F28B-5CDA-412E-85C6-5E4C2A5F1862}C:\windows\system32\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\system32\dplaysvr.exe | "TCP Query User{36B2DF9D-5896-4FFD-BE7A-BB8E3F79ECA2}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{5101AA13-6B55-451C-9D89-EBEB218BB2D2}C:\program files\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\java.exe | "TCP Query User{53DB8BA2-FC40-47A9-95F4-2A45FE3357AC}C:\windows\explorer.exe" = protocol=6 | dir=in | app=c:\windows\explorer.exe | "TCP Query User{549C25A0-C22C-4805-9BF5-C7661A4D521D}G:\program files\steam\steamapps\ziomalkrzys\team fortress 2\hl2.exe" = protocol=6 | dir=in | app=g:\program files\steam\steamapps\ziomalkrzys\team fortress 2\hl2.exe | "TCP Query User{6E6A4DAD-9AC6-4C48-A918-86C1A8851E5C}G:\programdata\electronic arts\need for speed world\data\nfsw.exe" = protocol=6 | dir=in | app=g:\programdata\electronic arts\need for speed world\data\nfsw.exe | "TCP Query User{9A6C5D7A-7E0C-4B99-899B-CA0CFC8239D6}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "TCP Query User{BFB2F4E3-180D-4D89-970B-DEBD6B73077C}C:\totalcmd\totalcmd.exe" = protocol=6 | dir=in | app=c:\totalcmd\totalcmd.exe | "TCP Query User{D5C998EB-B027-49BC-AC0F-54AFB15D4E85}C:\program files\hlsw\hlsw.exe" = protocol=6 | dir=in | app=c:\program files\hlsw\hlsw.exe | "TCP Query User{DB9C7FD9-E647-433F-88FA-BA33DAF82191}C:\program files\electronic arts\eadm\core.exe" = protocol=6 | dir=in | app=c:\program files\electronic arts\eadm\core.exe | "TCP Query User{E2C5C09B-8711-40E7-A565-1D210BD5C840}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{F1AD0C52-5B20-47A4-9B13-27645ED90606}C:\program files\wapster\wapster aqq\aqq.exe" = protocol=6 | dir=in | app=c:\program files\wapster\wapster aqq\aqq.exe | "TCP Query User{F2DE1F53-7F53-4C5E-883F-7EB75AF18001}C:\program files\epson software\event manager\eeventmanager.exe" = protocol=6 | dir=in | app=c:\program files\epson software\event manager\eeventmanager.exe | "TCP Query User{F4C72770-0F52-4A84-AB45-5C1B2CCB358F}G:\eggsucker\eggsucker.exe" = protocol=6 | dir=in | app=g:\eggsucker\eggsucker.exe | "TCP Query User{FEB28464-6C58-4827-81CD-25474C133F3E}C:\program files\wapster\wapster aqq\aqq.exe" = protocol=6 | dir=in | app=c:\program files\wapster\wapster aqq\aqq.exe | "UDP Query User{05EA5722-3674-488C-A9D1-F3A153313DFA}G:\programdata\electronic arts\need for speed world\data\nfsw.exe" = protocol=17 | dir=in | app=g:\programdata\electronic arts\need for speed world\data\nfsw.exe | "UDP Query User{250BD83A-34B0-417C-A87A-18536BC1BF3C}G:\program files\steam\steamapps\ziomalkrzys\team fortress 2\hl2.exe" = protocol=17 | dir=in | app=g:\program files\steam\steamapps\ziomalkrzys\team fortress 2\hl2.exe | "UDP Query User{2AFA8FE9-2BBC-4BEF-BF52-EC8971E3300B}G:\eggsucker\eggsucker.exe" = protocol=17 | dir=in | app=g:\eggsucker\eggsucker.exe | "UDP Query User{39D03E51-60A8-40BC-817D-4DFCD24EC8DB}C:\program files\wapster\wapster aqq\aqq.exe" = protocol=17 | dir=in | app=c:\program files\wapster\wapster aqq\aqq.exe | "UDP Query User{5690EB68-2ACB-41C9-A60B-55F76FD49B77}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{5DFAB709-9168-45AE-80D7-3E614CADF320}C:\program files\wapster\wapster aqq\aqq.exe" = protocol=17 | dir=in | app=c:\program files\wapster\wapster aqq\aqq.exe | "UDP Query User{649F5E44-5986-47C8-B7EE-8EFAA46C2776}C:\program files\hlsw\hlsw.exe" = protocol=17 | dir=in | app=c:\program files\hlsw\hlsw.exe | "UDP Query User{6FC787C5-AA9C-43A6-97D1-832456108712}C:\totalcmd\totalcmd.exe" = protocol=17 | dir=in | app=c:\totalcmd\totalcmd.exe | "UDP Query User{89FE70B8-20DB-4CCF-B475-E9838C4FE899}C:\windows\explorer.exe" = protocol=17 | dir=in | app=c:\windows\explorer.exe | "UDP Query User{94B1C3A2-ACDE-4759-94B7-30DBAF6A5B30}C:\program files\opera\opera.exe" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe | "UDP Query User{A1ADF526-8D4E-4324-B846-306060251E43}C:\program files\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\java.exe | "UDP Query User{A1FC4D6D-B27A-4A64-92F4-6335A9585415}C:\windows\explorer.exe" = protocol=17 | dir=in | app=c:\windows\explorer.exe | "UDP Query User{AA986A98-63E0-459B-8472-79DF6443404C}C:\program files\epson software\event manager\eeventmanager.exe" = protocol=17 | dir=in | app=c:\program files\epson software\event manager\eeventmanager.exe | "UDP Query User{BB0D1F38-F269-4292-8486-69E53BBD0F4E}C:\program files\electronic arts\eadm\core.exe" = protocol=17 | dir=in | app=c:\program files\electronic arts\eadm\core.exe | "UDP Query User{C5120CC5-44F3-444F-AC6B-C729731C00B3}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "UDP Query User{E60886B8-276D-4E54-96B7-726ED922E11A}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{EA024C76-4134-424C-972B-05A00B7EFDE9}C:\windows\system32\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\system32\dplaysvr.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour "{19A492A0-888F-44A0-9B21-D91700763F62}" = Catalyst Control Center - Branding "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{216AB108-2AE1-4130-B3D5-20B2C4C80F8F}" = QuickTime "{26A24AE4-039D-4CA4-87B4-2F83216018FF}" = Java(TM) 6 Update 18 "{2EA2DE09-5DCF-2B9E-E933-375EF0EDF768}" = Catalyst Control Center "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{3E8DE1A6-B365-4FF6-B917-2892A34990E8}" = LG USB Modem Drivers "{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}" = SmartSound Quicktracks Plugin "{5ED9E38C-9A96-49D8-89B3-92E278003FCF}" = TRS2006 "{5EFCBB42-36AB-4FF9-B90C-E78C7B9EE7B3}" = iTunes "{5F89F3D0-0482-9F06-2022-A55B10CE9780}" = Catalyst Control Center InstallProxy "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update "{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{72263053-50D1-4598-9502-51ED64E54C51}" = Borland Delphi 7 "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{73079C4E-ADEE-FFB1-D6B5-B373FCA87093}" = CCC Help English "{7964AE02-9127-42C0-A917-2CE4CD4EFE3B}" = Nokia Suite "{7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1" = Need For Speed™ World "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8590B5B5-14E5-433C-90EA-07B448F220FF}_is1" = Symulator Pojazdów Specjalnych "{88F9C978-2839-4ED8-82D9-BDAEED0DA604}" = Pit Pro 2011 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8A17C27D-0325-400C-8AA9-DAA6B16CBD74}" = Epson Event Manager "{90110415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003 "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A02D7029-C4EF-44C1-9FD4-C0D3CA518113}" = Epson Easy Photo Print 2 "{A25FF1C0-80B6-4B8B-A551-DC525697A408}" = AMD APP SDK Runtime "{A57025CC-5F2E-4D01-B387-06DB10500D43}" = Nokia Connectivity Cable Driver "{AC76BA86-7AD7-1033-7B44-A94000000001}" = Adobe Reader 9.4.6 "{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86 "{AFA20D47-69C3-4030-8DF8-D37466E70F13}" = Apple Mobile Device Support "{B2D55EB8-32C5-4B43-9006-9E97DECBA178}" = Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3 "{C15D6939-280D-39A6-41B5-253D2A935525}" = AMD Catalyst Install Manager "{C2157D30-298B-11D7-BF3B-00079500A37A}" = Genius SlimStar 310/311 Hotkey driver "{C49F8E1C-0BAE-4836-A670-AE76BA32BE90}" = ChomikBox "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{DA5B2BDC-F654-4A88-A669-4D34BC7846A1}" = PC Connectivity Solution "{E3B64CC5-C011-40C0-92BC-7316CD5E5688}" = Microsoft_VC100_CRT_SP1_x86 "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime "{EBE030DD-D404-4D92-85E9-8C3624820808}_is1" = Light Image Resizer 4.1.0.2 "{EC9E0980-A5A8-83DC-0E03-AA628E54137D}" = Catalyst Control Center Graphics Previews Common "{ED62428A-E91F-3B08-ED49-230B8AD7DD67}" = AMD Fuel "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.9 "{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F9000000-0018-0000-0000-074957833700}" = ABBYY FineReader 9.0 Sprint "{FFBBB135-E8A2-3982-6C8F-995608BCA87D}" = ccc-utility "504244733D18C8F63FF584AEB290E3904E791693" = Windows Driver Package - Nokia pccsmcfd (08/22/2008 7.0.0.0) "7-Zip" = 7-Zip 9.20 "ABBYY FineReader 9.0 Sprint" = ABBYY FineReader 9.0 Sprint "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Air Traffic Control Demo_is1" = Air Traffic Control Demo "Any Video Converter_is1" = Any Video Converter 3.3.1 "AQQ" = WapSter AQQ "Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus "Blender" = Blender "Bullzip PDF Printer_is1" = Bullzip PDF Printer 7.2.0.1320 "CCleaner" = CCleaner "DAEMON Tools Lite" = DAEMON Tools Lite "DAEMON Tools Toolbar" = DAEMON Tools Toolbar "DealPly" = DealPly "Delta Force Helikopter w Ogniu_is1" = Delta Force Helikopter w Ogniu z dodatkiem Team Sabre "Dev-C++" = Dev-C++ 5 beta 9 release (4.9.9.2) "Dream Pinball 3D_is1" = Dream Pinball 3D "Dziobas Rar Player_is1" = Dziobas Rar Player 0.009.52 "EADM" = EA Download Manager "EPSON Scanner" = EPSON Scan "EPSON SX130 Series" = EPSON SX130 Series Printer Uninstall "EPSON SX130 Series Useg" = Przewodnik użytkownika EPSON SX130 Series "FOX Edit_is1" = FOX Edit "Gadu-Gadu 10" = Gadu-Gadu 10 "GamersFirst LIVE!" = GamersFirst LIVE! "HLSW_is1" = HLSW v1.4.0.2 "InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}" = SmartSound Quicktracks Plugin "InterBase" = InterBase 6.5 "ipla" = ipla 2.3.5 "JDownloader" = JDownloader "LG Internet Kit" = LG Internet Kit "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.61.0.1400 "McAfee Security Scan" = McAfee Security Scan Plus "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Miranda IM" = Miranda IM 0.9.34 "Mozilla Firefox 13.0.1 (x86 pl)" = Mozilla Firefox 13.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NapiProjekt_is1" = NapiProjekt 1.0.6.9 "Nokia Suite" = Nokia Suite "NVIDIA Drivers" = NVIDIA Drivers "Nvu_is1" = Nvu 1.0 "Opera 12.00.1467" = Opera 12.00 "Picasa 3" = Picasa 3 "PunkBusterSvc" = PunkBuster Services "Recuva" = Recuva "Sanny Builder 3_is1" = Sanny Builder 3.04 "Softonic" = Softonic toolbar on IE "SpeedFan" = SpeedFan (remove only) "Steam App 102700" = Alliance of Valiant Arms "Steam App 113400" = APB Reloaded "Totalcmd" = Total Commander (Remove or Repair) "Winamp" = Winamp "WinGimp-2.0_is1" = GIMP 2.6.12 "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-06-26 20:25:49 | Computer Name = Dzieciaki-PC | Source = SideBySide | ID = 16842815 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files\WapSter\wapster aqq\System\DelZip179.dll". Błąd w pliku manifestu lub w pliku zasad "c:\program files\WapSter\wapster aqq\System\DelZip179.dll" w wierszu 8. Wartość "*" atrybutu "language" elementu "assemblyIdentity" jest nieprawidłowa. Error - 2012-06-27 18:48:12 | Computer Name = Dzieciaki-PC | Source = SideBySide | ID = 16842815 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files\WapSter\wapster aqq\System\DelZip179.dll". Błąd w pliku manifestu lub w pliku zasad "c:\program files\WapSter\wapster aqq\System\DelZip179.dll" w wierszu 8. Wartość "*" atrybutu "language" elementu "assemblyIdentity" jest nieprawidłowa. Error - 2012-06-29 20:31:21 | Computer Name = Dzieciaki-PC | Source = SideBySide | ID = 16842815 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files\WapSter\wapster aqq\System\DelZip179.dll". Błąd w pliku manifestu lub w pliku zasad "c:\program files\WapSter\wapster aqq\System\DelZip179.dll" w wierszu 8. Wartość "*" atrybutu "language" elementu "assemblyIdentity" jest nieprawidłowa. Error - 2012-07-01 21:07:19 | Computer Name = Dzieciaki-PC | Source = SideBySide | ID = 16842815 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files\WapSter\wapster aqq\System\DelZip179.dll". Błąd w pliku manifestu lub w pliku zasad "c:\program files\WapSter\wapster aqq\System\DelZip179.dll" w wierszu 8. Wartość "*" atrybutu "language" elementu "assemblyIdentity" jest nieprawidłowa. Error - 2012-07-04 04:50:19 | Computer Name = Dzieciaki-PC | Source = SideBySide | ID = 16842815 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files\WapSter\wapster aqq\System\DelZip179.dll". Błąd w pliku manifestu lub w pliku zasad "c:\program files\WapSter\wapster aqq\System\DelZip179.dll" w wierszu 8. Wartość "*" atrybutu "language" elementu "assemblyIdentity" jest nieprawidłowa. Error - 2012-07-06 06:53:28 | Computer Name = Dzieciaki-PC | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: DFBHD.EXE, wersja: 0.0.0.0, sygnatura czasowa: 0x4005ae76 Nazwa modułu powodującego błąd: DFBHD.EXE, wersja: 0.0.0.0, sygnatura czasowa: 0x4005ae76 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00014481 Identyfikator procesu powodującego błąd: 0x740 Godzina uruchomienia aplikacji powodującej błąd: 0x01cd5b64a92c2440 Ścieżka aplikacji powodującej błąd: G:\Program Files\Delta Force Helikopter w Ogniu\DFBHD.EXE Ścieżka modułu powodującego błąd: G:\Program Files\Delta Force Helikopter w Ogniu\DFBHD.EXE Identyfikator raportu: d0b1b470-c758-11e1-92bc-e8c2ba731bc4 Error - 2012-07-06 10:32:22 | Computer Name = Dzieciaki-PC | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: DFBHD.EXE, wersja: 0.0.0.0, sygnatura czasowa: 0x4005ae76 Nazwa modułu powodującego błąd: DFBHD.EXE, wersja: 0.0.0.0, sygnatura czasowa: 0x4005ae76 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00014481 Identyfikator procesu powodującego błąd: 0x3b0 Godzina uruchomienia aplikacji powodującej błąd: 0x01cd5b83638505f0 Ścieżka aplikacji powodującej błąd: G:\Program Files\Delta Force Helikopter w Ogniu\DFBHD.EXE Ścieżka modułu powodującego błąd: G:\Program Files\Delta Force Helikopter w Ogniu\DFBHD.EXE Identyfikator raportu: 659a6370-c777-11e1-b721-e74a77b2e08d Error - 2012-07-07 03:25:47 | Computer Name = Dzieciaki-PC | Source = Application Hang | ID = 1002 Description = Program opera.exe w wersji 12.0.1467.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 420 Godzina rozpoczęcia: 01cd5c09b5551ec0 Godzina zakończenia: 7 Ścieżka aplikacji: C:\Program Files\Opera\opera.exe Identyfikator raportu: f67ba421-c804-11e1-9830-82aeb741d14b Error - 2012-07-08 19:00:44 | Computer Name = Dzieciaki-PC | Source = SideBySide | ID = 16842815 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files\WapSter\wapster aqq\System\DelZip179.dll". Błąd w pliku manifestu lub w pliku zasad "c:\program files\WapSter\wapster aqq\System\DelZip179.dll" w wierszu 8. Wartość "*" atrybutu "language" elementu "assemblyIdentity" jest nieprawidłowa. Error - 2012-07-09 17:54:10 | Computer Name = Dzieciaki-PC | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: Explorer.EXE, wersja: 6.1.7601.17567, sygnatura czasowa: 0x4d6727a7 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000a Identyfikator procesu powodującego błąd: 0x6cc Godzina uruchomienia aplikacji powodującej błąd: 0x01cd5e1d4c9b8700 Ścieżka aplikacji powodującej błąd: C:\Windows\Explorer.EXE Ścieżka modułu powodującego błąd: unknown Identyfikator raportu: 9c8d8f60-ca10-11e1-b860-001d601acc63 [ System Events ] Error - 2012-03-23 11:01:50 | Computer Name = Dzieciaki-PC | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Diagnostic Service Host z powodu następującego błędu: %%1069 Error - 2012-03-23 11:01:50 | Computer Name = Dzieciaki-PC | Source = Service Control Manager | ID = 7038 Description = Usługa WdiServiceHost nie może zalogować się jako NT AUTHORITY\LocalService za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu: %%1352 Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC). Error - 2012-03-23 11:01:50 | Computer Name = Dzieciaki-PC | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Diagnostic Service Host z powodu następującego błędu: %%1069 Error - 2012-03-23 11:01:50 | Computer Name = Dzieciaki-PC | Source = Service Control Manager | ID = 7038 Description = Usługa WdiServiceHost nie może zalogować się jako NT AUTHORITY\LocalService za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu: %%50 Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC). Error - 2012-03-23 11:01:50 | Computer Name = Dzieciaki-PC | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Diagnostic Service Host z powodu następującego błędu: %%1069 Error - 2012-03-23 11:01:50 | Computer Name = Dzieciaki-PC | Source = Service Control Manager | ID = 7023 Description = Usługa Diagnostic System Host zakończyła działanie; wystąpił następujący błąd: %%1052 Error - 2012-03-24 15:51:52 | Computer Name = Dzieciaki-PC | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Steam Client Service. Error - 2012-03-24 15:51:52 | Computer Name = Dzieciaki-PC | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Steam Client Service z powodu następującego błędu: %%1053 Error - 2012-03-26 16:37:07 | Computer Name = Dzieciaki-PC | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2012-03-28 10:01:18 | Computer Name = Dzieciaki-PC | Source = DCOM | ID = 10010 Description = < End of report >