OTL Extras logfile created on: 2012-07-11 01:03:57 - Run 1 OTL by OldTimer - Version 3.2.53.1 Folder = C:\Users\Igor\Desktop Windows Vista Home Basic Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,54 Gb Available Physical Memory | 77,15% Memory free 4,23 Gb Paging File | 3,93 Gb Available in Paging File | 92,96% Paging File free Paging file location(s): ?:\pagefile.sys %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 148,59 Gb Total Space | 23,13 Gb Free Space | 15,57% Space Free | Partition Type: NTFS Drive E: | 12,00 Gb Total Space | 1,87 Gb Free Space | 15,60% Space Free | Partition Type: NTFS Computer Name: IGOR-PC | User Name: Igor | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [HKEY_USERS\S-1-5-21-3983036958-3341595712-1777954350-1000\SOFTWARE\Classes\] .html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) http [open] -- Reg Error: Key error. https [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\S-1-5-21-3983036958-3341595712-1777954350-1000] "EnableNotifications" = 0 "EnableNotificationsRef" = 1 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{05D46CCA-C92F-4C46-A388-979A0F52D4BB}" = lport=445 | protocol=6 | dir=in | app=system | "{08E50D76-AC74-4CC6-B604-2FE036FFA9F1}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{08FCED2B-DE29-45B7-811A-6F0442B7776A}" = lport=10243 | protocol=6 | dir=in | app=system | "{0989B23D-94C7-4B8B-97E7-BFFFEC925ED6}" = lport=138 | protocol=17 | dir=in | app=system | "{26D332E8-9E92-49A0-A50A-902E43A08D6F}" = rport=445 | protocol=6 | dir=out | app=system | "{3A0F9215-3FDC-43E8-BF28-BBFD90FB26F8}" = lport=2869 | protocol=6 | dir=in | app=system | "{3D0D0B24-645F-4239-A172-A4F761CAA317}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{407C6AD1-BD6C-4A7F-8C35-4A84C90001AC}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{47E0C214-3A13-4E7B-99EE-7E1D7335B9D6}" = lport=139 | protocol=6 | dir=in | app=system | "{564C10AD-0D53-4BD6-88AB-343AE2CBEF26}" = lport=137 | protocol=17 | dir=in | app=system | "{56FB67A4-EA83-4568-9CFA-1DEF8742B912}" = rport=137 | protocol=17 | dir=out | app=system | "{5D2EC6E5-CB3F-4548-A640-F1A371BC2378}" = rport=10243 | protocol=6 | dir=out | app=system | "{696AA360-A399-4D5E-9C78-D5789BE63AAC}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{78837BD2-45A6-4241-8A1E-9E980C39A385}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{78F6580E-191E-4C83-98F5-8C02959D3C5D}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{7A22799A-EF8F-4DD1-ADBA-78ADE93B2C00}" = rport=138 | protocol=17 | dir=out | app=system | "{81177231-1443-4651-AA01-3FA8AF55FC4F}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{8F13C912-9182-48B6-B0A3-B2A96DE7FAA3}" = rport=139 | protocol=6 | dir=out | app=system | "{93355D88-C0B4-4BBD-9340-62C276494345}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office12\outlook.exe | "{A6A30520-0EF1-42E1-8D07-93B5BC8E526D}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{AE6C5542-47A5-47CF-BDDB-E4D2C9DC98FD}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{AF93AA87-4984-48EE-AC0D-6D3F11213139}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{B0029DF7-5597-4FA7-8C0B-7774EFEBFB6A}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{B63EC006-C5CA-4F05-BF67-76B778B41814}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{B6F95A8D-102B-4411-B821-2F88947567ED}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{D959A6FE-25CC-4345-884E-B2189A5F0EEF}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{DDA0441B-F4E2-49AB-AA5D-4763AFFAC517}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{EFAF03DE-86FB-4A12-98AF-9F002DBB62EB}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{14387F85-7BEC-49AE-AD62-D74FE660A592}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{181A0ACA-D4DD-4908-A481-60411F3A98E7}" = protocol=6 | dir=in | app=c:\program files\orb networks\orb\bin\xmltv.exe | "{183A9403-D263-4A48-B1AB-09A0353C89E3}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{1AD02CCD-24B8-48F2-8395-B0FB54A7C4CB}" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe | "{2053F37F-B046-4228-BFA6-83B434401EE7}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{2C293587-F92F-46C0-A8DE-2412C9AD8338}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{2F09D65C-679C-43A1-A0BD-406DD1C0B5C6}" = protocol=6 | dir=in | app=c:\windows\system32\muzapp.exe | "{34070AFC-9BD4-4EE0-9EAC-9335FEA5E33A}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{3890FB0F-A76F-43D3-BF5B-558FF75815F9}" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe | "{394687FC-89A1-4F76-8285-7A2620DB90D9}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{3AF39281-DAEB-4B75-87BB-C967655FCFCB}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{3B568A68-0F80-41A9-B539-DA74BEA52660}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{3E44E30F-9968-4AB7-B7C2-13BB592D1A03}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{3EA91780-31F3-49B3-8747-1514E982F6DB}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{4A17C031-AE32-4052-BD0F-96935C0D4384}" = protocol=17 | dir=in | app=c:\program files\orb networks\orb\bin\xmltv.exe | "{6300792E-0225-41B4-931D-EAA1872BA7DB}" = protocol=17 | dir=in | app=c:\program files\bearshare applications\bearshare\bearshare.exe | "{65E542CE-5092-4AEE-908C-1E8A5ED6E232}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{7379D2AE-38D8-4287-8D0C-E8270767DB0F}" = protocol=6 | dir=out | app=system | "{7D43CFBC-2A41-45AD-99D5-5F25C9DCACA4}" = protocol=17 | dir=in | app=c:\program files\bearshare applications\bearshare\bearshare.exe | "{7DD4CD54-0121-42C7-A85D-E691EC9ED5E3}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{7E534B28-539D-44F1-884C-DCCB2E2F207B}" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe | "{7FC7A0A8-9DEB-48D4-9FF8-27EF3351DFB0}" = protocol=6 | dir=in | app=c:\program files\bearshare applications\bearshare\bearshare.exe | "{8227BA7E-14F3-4746-A402-31FCD828FE47}" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe | "{837D35A4-9CB5-4EC4-B77A-5B9170AAB3FC}" = protocol=17 | dir=in | app=c:\program files\orb networks\orb\bin\orbchannelscan.exe | "{847861E1-001E-4E42-8003-9BB2E5E74E3A}" = protocol=6 | dir=in | app=f:\fscommand\cksocketserver.exe | "{86AA163A-80E6-4F58-84AD-47B6C313CA7C}" = protocol=17 | dir=in | app=c:\program files\ivt corporation\bluesoleil\bluesoleil.exe | "{8817D4AF-EBD4-4CF7-A417-0C0FF3A5F0EE}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{8A2A4024-94B3-48F4-A6A5-59CF92FF52FC}" = protocol=17 | dir=in | app=c:\program files\orb networks\orb\bin\orb.exe | "{8CC6FCD7-4909-4AAE-BCDC-9090C01569F9}" = protocol=6 | dir=in | app=c:\program files\alwil software\avast4\ashavast.exe | "{90E9B1CB-30A2-46E2-948D-A19FEEE9381D}" = protocol=6 | dir=in | app=c:\program files\nokia\nokia home media server\media server\twonkymedia.exe | "{97DB87FD-BED9-4067-AE97-557AAE182C6C}" = protocol=6 | dir=in | app=c:\program files\orb networks\orb\bin\orb.exe | "{99D3D922-F93A-4B38-95C0-B41FB24A18B4}" = protocol=17 | dir=in | app=c:\program files\orb networks\orb\bin\orbstreamerclient.exe | "{9CD8CBE6-720E-462E-A1AD-E1C89B67BCBF}" = protocol=17 | dir=in | app=c:\program files\alwil software\avast4\ashavast.exe | "{9DFD702E-E12D-4C04-8F54-1907286ED330}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{A2A9B1D6-864F-4C30-ADC2-8B921D40D5E3}" = protocol=6 | dir=in | app=c:\program files\opera\pluginwrapper\opera_plugin_wrapper.exe | "{A385109F-A718-47A3-B0C7-0B20E4A948DF}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "{A493AA74-1011-4FA5-B5FB-7F4465E80027}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{A9FE3FB2-47A8-4DB5-8CA0-0AABBCB571E8}" = protocol=6 | dir=in | app=c:\program files\ivt corporation\bluesoleil\bluesoleil.exe | "{AE919755-1085-43B4-92AE-B0B39A72989B}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "{B18F9887-5D19-43D0-94C8-62B578F25884}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{B2EEC000-9B31-420D-A9E8-BCA643FA3AFF}" = protocol=17 | dir=in | app=c:\program files\nokia\nokia home media server\media server\twonkymedia.exe | "{B3747F45-4DEE-4D0A-9E92-74D5A4383BD4}" = protocol=17 | dir=in | app=f:\fscommand\cksocketserver.exe | "{B3EC978D-2115-4B5E-979D-BD23F66EF1C0}" = protocol=17 | dir=in | app=c:\program files\orb networks\orb\bin\orbtray.exe | "{BB67005F-B5CC-428B-B0F6-E153DF0EFB8B}" = protocol=6 | dir=in | app=f:\fscommand\cksocketserver.exe | "{BB9A022B-C3A8-46D3-9073-C1BAE427BC53}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{BC5E507E-85BB-4E35-AF64-753DA0A39D5B}" = protocol=6 | dir=in | app=c:\program files\orb networks\orb\bin\orbtray.exe | "{BD8B1FCB-E727-4856-860D-88FFD4070380}" = protocol=6 | dir=in | app=c:\program files\orb networks\orb\bin\orbstreamerclient.exe | "{C3D1F61C-0887-45BB-B8A1-08F77442C206}" = protocol=17 | dir=in | app=f:\fscommand\cksocketserver.exe | "{D3B64086-C72E-4FA6-B8B2-C4E418DEEBB7}" = protocol=17 | dir=in | app=c:\windows\system32\muzapp.exe | "{E313D5FB-F70B-4C4A-A5FA-BDCC53889947}" = protocol=17 | dir=in | app=c:\program files\opera\pluginwrapper\opera_plugin_wrapper.exe | "{E883219B-A6AB-4B31-8274-F97B908AC903}" = protocol=6 | dir=in | app=c:\program files\bearshare applications\bearshare\bearshare.exe | "{E9A6BA59-ABCF-481C-8216-AD488A0212D9}" = protocol=17 | dir=in | app=c:\program files\nokia\nokia home media server\media server\twonkymediaserver.exe | "{ED5DEE21-553E-4477-BE23-EF9DBE09EC4C}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{F2F393D9-10A5-4A2F-9D22-22D5863574DC}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{F4EAD862-0863-41AA-B6C5-3E741E35AB17}" = protocol=6 | dir=in | app=c:\program files\nokia\nokia home media server\media server\twonkymediaserver.exe | "{F7867D74-0B11-4FBF-85CD-9112B9921E53}" = protocol=6 | dir=in | app=c:\program files\orb networks\orb\bin\orbchannelscan.exe | "TCP Query User{035CE250-98AE-444F-9C67-B48D2265E501}C:\program files\nokia\nokia software updater\nsu_ui_client.exe" = protocol=6 | dir=in | app=c:\program files\nokia\nokia software updater\nsu_ui_client.exe | "TCP Query User{04B8F65A-70BE-4AC4-AF10-E6129EA25B95}C:\users\igor\documents\god\god.exe" = protocol=6 | dir=in | app=c:\users\igor\documents\god\god.exe | "TCP Query User{1B43B0B6-6D20-49E0-946E-27112814C713}C:\program files\videolan\vlc\vlc.exe" = protocol=6 | dir=in | app=c:\program files\videolan\vlc\vlc.exe | "TCP Query User{413A3C82-21F0-4E35-9CD6-0EE0A6066D3E}C:\program files\gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu\gg.exe | "TCP Query User{4659C1BA-4A1B-4408-A9F2-4453A37547C3}C:\program files\nokia\nokia software updater\nsu_ui_client.exe" = protocol=6 | dir=in | app=c:\program files\nokia\nokia software updater\nsu_ui_client.exe | "TCP Query User{58C4864A-588B-46B1-8D61-DDF262071C99}C:\program files\bearshare applications\bearshare\bearshare.exe" = protocol=6 | dir=in | app=c:\program files\bearshare applications\bearshare\bearshare.exe | "TCP Query User{5AFEBF5E-A49B-4202-8F9A-F5228491CD55}C:\program files\opera\opera.exe" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe | "TCP Query User{762A73A6-E3A1-416F-B4DD-5F02E63E4984}C:\program files\opera\opera.exe" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe | "TCP Query User{7E69EA74-EF02-4745-A9B2-5E31AC7A8FE0}C:\program files\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=6 | dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe | "TCP Query User{99D1831E-DE6E-4FD6-91A1-C426F1A11C6C}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{9A26C00D-51D3-4675-AFAE-F9046A9A8BFE}C:\program files\nokia\nokia ovi suite\nokiaovisuite.exe" = protocol=6 | dir=in | app=c:\program files\nokia\nokia ovi suite\nokiaovisuite.exe | "TCP Query User{A76D64FD-F136-4A70-B0A0-FCAFD837C8D7}C:\program files\gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu\gg.exe | "TCP Query User{A8952C18-AFDC-47C2-A0E3-89C953508D6E}C:\users\igor\documents\ściągnięcia\utorrent.exe" = protocol=6 | dir=in | app=c:\users\igor\documents\ściągnięcia\utorrent.exe | "TCP Query User{AB1C30A3-C583-46A1-9B4F-968A0E60DAFF}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "TCP Query User{AF6D3857-43F8-4683-BC3D-72A5E600268F}C:\users\igor\appdata\local\temp\cprogram filesopera\operaupgrader.exe" = protocol=6 | dir=in | app=c:\users\igor\appdata\local\temp\cprogram filesopera\operaupgrader.exe | "TCP Query User{C48691F6-2188-45C1-B185-24E805BBE9E7}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe | "TCP Query User{E09CAE2B-1235-4CDB-8979-E573FE36D3A4}C:\users\igor\documents\god\god.exe" = protocol=6 | dir=in | app=c:\users\igor\documents\god\god.exe | "TCP Query User{E19FFD71-9C98-406E-867D-91A96AE6BADE}C:\program files\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=6 | dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe | "TCP Query User{ECC826EB-0C9E-4BF3-BC79-886D5DDF2CF7}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe | "TCP Query User{F38AAA74-5BA8-472C-8E4A-B07F459E1DA5}C:\program files\bearshare\bearshare.exe" = protocol=6 | dir=in | app=c:\program files\bearshare\bearshare.exe | "TCP Query User{FAE79559-9AE3-4DBF-9B28-0B368A8E01F6}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{FD2AB084-96EA-4B37-AE9C-86A5500F0E94}C:\program files\java\jre6\launch4j-tmp\frd.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\launch4j-tmp\frd.exe | "UDP Query User{0204F307-C35D-471A-8C7B-AF9DD843A094}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe | "UDP Query User{0994C12F-B38F-47F3-8F53-99006628C8F4}C:\program files\videolan\vlc\vlc.exe" = protocol=17 | dir=in | app=c:\program files\videolan\vlc\vlc.exe | "UDP Query User{21ADD3FC-A5C2-4C2C-A9BA-045FB33CF64D}C:\program files\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=17 | dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe | "UDP Query User{2ACE350D-8765-446B-90BE-6B373385C273}C:\program files\nokia\nokia software updater\nsu_ui_client.exe" = protocol=17 | dir=in | app=c:\program files\nokia\nokia software updater\nsu_ui_client.exe | "UDP Query User{30C2107C-CCA4-4DC1-B532-6FFE0B077A44}C:\program files\gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu\gg.exe | "UDP Query User{3FDA2EF2-5D6F-44A7-B551-535E62A8FFA6}C:\program files\nokia\nokia software updater\nsu_ui_client.exe" = protocol=17 | dir=in | app=c:\program files\nokia\nokia software updater\nsu_ui_client.exe | "UDP Query User{4A3603FE-60AD-4348-B12C-0637B2F65F34}C:\program files\gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu\gg.exe | "UDP Query User{55EE0E22-83E6-4F1A-994A-6B12CCE9DA5A}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{5CBC341F-1D11-4C64-9757-AEF226EFB5E4}C:\program files\opera\opera.exe" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe | "UDP Query User{60F07B2F-1474-4178-A411-0A321C292770}C:\program files\bearshare\bearshare.exe" = protocol=17 | dir=in | app=c:\program files\bearshare\bearshare.exe | "UDP Query User{627E0C6F-2978-4C87-8C48-E94A9A84F61B}C:\users\igor\appdata\local\temp\cprogram filesopera\operaupgrader.exe" = protocol=17 | dir=in | app=c:\users\igor\appdata\local\temp\cprogram filesopera\operaupgrader.exe | "UDP Query User{67DA2605-59FC-4049-92A0-CA14C49B1A79}C:\users\igor\documents\god\god.exe" = protocol=17 | dir=in | app=c:\users\igor\documents\god\god.exe | "UDP Query User{7043B76B-F3B5-44CC-8FC3-A1398025A6C5}C:\program files\bearshare applications\bearshare\bearshare.exe" = protocol=17 | dir=in | app=c:\program files\bearshare applications\bearshare\bearshare.exe | "UDP Query User{7A3EF60A-D8A6-44F1-939F-63BE042AE875}C:\program files\nokia\nokia ovi suite\nokiaovisuite.exe" = protocol=17 | dir=in | app=c:\program files\nokia\nokia ovi suite\nokiaovisuite.exe | "UDP Query User{85B9608B-DE3D-4236-AA15-4EACD506C850}C:\program files\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=17 | dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe | "UDP Query User{8DEAAB40-A3E6-4272-AB85-286114AA817C}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{93B100C0-080A-47E0-BD23-BB4053F02600}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "UDP Query User{A419CEBC-2203-4B2C-A939-BA619382DCE2}C:\users\igor\documents\god\god.exe" = protocol=17 | dir=in | app=c:\users\igor\documents\god\god.exe | "UDP Query User{ADA14D9A-776F-4E7E-A10E-9A1AFF9061C6}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe | "UDP Query User{B0A2A486-D219-4816-BA26-B6A025699680}C:\users\igor\documents\ściągnięcia\utorrent.exe" = protocol=17 | dir=in | app=c:\users\igor\documents\ściągnięcia\utorrent.exe | "UDP Query User{C54D40BA-E94E-4FDF-A60A-C7E201820E18}C:\program files\opera\opera.exe" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe | "UDP Query User{EE486C34-0D9E-4F3C-8E3B-0DC00C7D41F5}C:\program files\java\jre6\launch4j-tmp\frd.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\launch4j-tmp\frd.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1CD220E7-1512-A5E1-327F-9607587B75AD}" = Catalyst Control Center Graphics Light "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{212748BB-0DA5-46DE-82A1-403736DC9F27}" = MSVC80_x86 "{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java(TM) 6 Update 17 "{2ADE2157-7A5E-122C-B51D-EB8A01B15943}" = DeepBurner v1.9.0.228 "{3E5948BC-A071-3C35-7DC4-31F5F293F35B}" = Catalyst Control Center Graphics Full New "{42798BEA-57E2-E434-8635-5D43FDD0430E}" = HydraVision "{462F002C-0A03-6C5F-3475-228396D8F2AB}" = ccc-core-static "{4A57592C-FF92-4083-97A9-92783BD5AFB4}" = WebCam "{4AA68A73-DB9C-439D-9481-981C82BD008B}" = Nokia Connectivity Cable Driver "{553C904F-57A2-4113-888E-BA0C3D1C69C0}" = Microsoft VC9 runtime libraries "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{5F624839-947D-46EA-BD63-FD847C1AC6F1}" = BearShare "{6068A42A-C1CF-45F2-9859-5DB16287FE5D}" = msvcrt_installer "{6BB19E5E-2AD7-B464-3B80-FB0CD8C504FB}" = Catalyst Control Center Graphics Full Existing "{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7748AC8C-18E3-43BB-959B-088FAEA16FB2}" = Nero StartSmart "{7C379BEF-4E12-3224-B2E8-513363B99181}" = ccc-utility "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{92D1CEBC-7C72-4ECF-BFC6-C131EF3FE6A7}" = Nokia Suite "{960EED1D-8F37-9EF5-C2F2-19C19983658B}" = Catalyst Control Center Core Implementation "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{A2AA4204-C05A-4013-888A-AD153139297F}" = PC Connectivity Solution "{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AA59DDE4-B672-4621-A016-4C248204957A}" = Skype™ 5.6 "{ABC80104-036E-6193-566F-4308420A4005}" = Catalyst Control Center Graphics Previews Vista "{AC76BA86-7AD7-1045-7B44-A95000000001}" = Adobe Reader 9.5.1 - Polish "{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86 "{B2EC4A38-B545-4A00-8214-13FE0E915E6D}" = Advertising Center "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86 "{CCFBBEAF-7806-4564-5F64-92A973DEAF07}" = ATI Catalyst Install Manager "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones "{DEE7AE5E-A8D1-05CF-5383-E5DC68486A54}" = Skins "{E3B64CC5-C011-40C0-92BC-7316CD5E5688}" = Microsoft_VC100_CRT_SP1_x86 "{E8A80433-302B-4FF1-815D-FCC8EAC482FF}" = Nero Installer "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}" = Vista Codec Package "{FCED9B62-34FF-4C15-8A23-F65221F7874D}" = ITECIR Driver "{FFFF6D5C-E2F1-4B40-BC89-8923312E89EB}}_is1" = ACE Mega CoDecS Pack "2ADF4484850200A062B66ED19240994480D85943" = Pakiet sterowników systemu Windows - ITE Tech.Inc. (itecir) HIDClass (01/05/2007 5.0.0003.2) "504244733D18C8F63FF584AEB290E3904E791693" = Pakiet sterowników systemu Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0) "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.5 "avast" = avast! Free Antivirus "BearShare" = BearShare "eMusic Promotion" = 50 FREE MP3s +1 Free Audiobook! "ENTERPRISE" = Microsoft Office Enterprise 2007 "ffdshow_is1" = ffdshow [rev 3154] [2009-12-09] "Gadu-Gadu 10" = Gadu-Gadu 10 "ipla" = ipla 2.3.5 "KLiteCodecPack_is1" = K-Lite Codec Pack 6.2.0 (Basic) "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "NapiProjekt_is1" = NapiProjekt 1.0.6.7 "Nokia Suite" = Nokia Suite "Opera 12.00.1467" = Opera 12.00 "Rzeźnik MPEGów 1.1.991_is1" = Rzeźnik MPEGów 1.1.991 "SMSERIAL" = Motorola SM56 Speakerphone Modem "Unlocker" = Unlocker 1.8.8 "uTorrent" = µTorrent "Vividas Player Plugin_is1" = Vividas Player Plugin v4.0 "VLC media player" = VLC media player 2.0.1 "Winamp" = Winamp "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3983036958-3341595712-1777954350-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Winamp Detect" = Detektor Winampa [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-07-10 18:20:07 | Computer Name = Igor-PC | Source = EventSystem | ID = 4609 Description = Error - 2012-07-10 18:31:41 | Computer Name = Igor-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd Explorer.EXE, wersja 6.0.6002.18005, sygnatura czasowa 0x49e01da5, moduł powodujący błąd lameacm.acm, wersja 0.0.9.0, sygnatura czasowa 0x407974be, kod wyjątku 0xc0000094, przesunięcie błędu 0x00003e3b, identyfikator procesu 0x508, godzina rozpoczęcia aplikacji 0x01cd5eebbd7da49d. Error - 2012-07-10 18:31:55 | Computer Name = Igor-PC | Source = EventSystem | ID = 4609 Description = Error - 2012-07-10 18:37:43 | Computer Name = Igor-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd Explorer.EXE, wersja 6.0.6002.18005, sygnatura czasowa 0x49e01da5, moduł powodujący błąd lameacm.acm, wersja 0.0.9.0, sygnatura czasowa 0x407974be, kod wyjątku 0xc0000094, przesunięcie błędu 0x00003e3b, identyfikator procesu 0x5d0, godzina rozpoczęcia aplikacji 0x01cd5eec966f4578. Error - 2012-07-10 18:37:58 | Computer Name = Igor-PC | Source = EventSystem | ID = 4609 Description = Error - 2012-07-10 18:38:13 | Computer Name = Igor-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd helppane.exe, wersja 6.0.6001.18000, sygnatura czasowa 0x4791945e, moduł powodujący błąd lameacm.acm, wersja 0.0.9.0, sygnatura czasowa 0x407974be, kod wyjątku 0xc0000094, przesunięcie błędu 0x00003e3b, identyfikator procesu 0x7e8, godzina rozpoczęcia aplikacji 0x01cd5eeca7f8a057. Error - 2012-07-10 18:38:49 | Computer Name = Igor-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd Explorer.EXE, wersja 6.0.6002.18005, sygnatura czasowa 0x49e01da5, moduł powodujący błąd lameacm.acm, wersja 0.0.9.0, sygnatura czasowa 0x407974be, kod wyjątku 0xc0000094, przesunięcie błędu 0x00003e3b, identyfikator procesu 0x718, godzina rozpoczęcia aplikacji 0x01cd5eeca41a6457. Error - 2012-07-10 18:39:01 | Computer Name = Igor-PC | Source = EventSystem | ID = 4609 Description = Error - 2012-07-10 18:41:49 | Computer Name = Igor-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd explorer.exe, wersja 6.0.6002.18005, sygnatura czasowa 0x49e01da5, moduł powodujący błąd lameacm.acm, wersja 0.0.9.0, sygnatura czasowa 0x407974be, kod wyjątku 0xc0000094, przesunięcie błędu 0x00003e3b, identyfikator procesu 0x7a0, godzina rozpoczęcia aplikacji 0x01cd5eecca626137. Error - 2012-07-10 18:42:02 | Computer Name = Igor-PC | Source = EventSystem | ID = 4609 Description = [ System Events ] Error - 2012-07-10 18:32:29 | Computer Name = Igor-PC | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-10 18:32:29 | Computer Name = Igor-PC | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-10 18:32:29 | Computer Name = Igor-PC | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-10 18:32:29 | Computer Name = Igor-PC | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-10 18:34:14 | Computer Name = Igor-PC | Source = DCOM | ID = 10005 Description = Error - 2012-07-10 18:37:34 | Computer Name = Igor-PC | Source = DCOM | ID = 10005 Description = Error - 2012-07-10 18:37:58 | Computer Name = Igor-PC | Source = DCOM | ID = 10005 Description = Error - 2012-07-10 18:38:00 | Computer Name = Igor-PC | Source = DCOM | ID = 10005 Description = Error - 2012-07-10 18:38:30 | Computer Name = Igor-PC | Source = Service Control Manager | ID = 7026 Description = Error - 2012-07-10 18:39:52 | Computer Name = Igor-PC | Source = Service Control Manager | ID = 7001 Description = < End of report >