OTL Extras logfile created on: 2012-07-12 10:31:29 - Run 3 OTL by OldTimer - Version 3.2.53.1 Folder = C:\Users\Mateusz\Desktop 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 4,00 Gb Total Physical Memory | 3,11 Gb Available Physical Memory | 77,74% Memory free 8,00 Gb Paging File | 7,27 Gb Available in Paging File | 90,88% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 39,06 Gb Total Space | 8,56 Gb Free Space | 21,93% Space Free | Partition Type: NTFS Drive D: | 97,65 Gb Total Space | 19,09 Gb Free Space | 19,54% Space Free | Partition Type: NTFS Drive E: | 9,77 Gb Total Space | 6,85 Gb Free Space | 70,12% Space Free | Partition Type: NTFS Drive F: | 146,48 Gb Total Space | 14,09 Gb Free Space | 9,62% Space Free | Partition Type: NTFS Drive G: | 172,79 Gb Total Space | 26,54 Gb Free Space | 15,36% Space Free | Partition Type: NTFS Computer Name: MATEUSZ-KOMP | User Name: Mateusz | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-736823792-3056351271-3879679232-1001\SOFTWARE\Classes\] .html [@ = Max3.Association.HTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "AntiVirusDisableNotify" = 0 "AntiVirusOverride" = 1 "FirewallDisableNotify" = 0 "FirewallOverride" = 1 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0624B50D-8D5A-4F36-B5CE-F6A778C5B37F}" = lport=137 | protocol=17 | dir=in | app=system | "{08EA9B82-5B99-4536-91A6-CAE90522BF16}" = lport=3389 | protocol=6 | dir=in | svc=termservice | app=%systemroot%\system32\svchost.exe | "{0AFC9392-45E2-488C-AA6B-A6C9F2109358}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{29CC2D10-AAA3-462B-BE14-F59573861629}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{36C12F04-6451-4682-A3F4-9C4ADB01292E}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{41ABA75C-9EB3-4BA8-8F3F-D73E5D1E0DB7}" = rport=138 | protocol=17 | dir=out | app=system | "{4400C013-40A8-46AB-BAEA-B24EADC70D52}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{470FABC8-0C4C-4F94-BC54-91922384B790}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{4BBF030F-679E-4E03-80C1-8088D6CF21A9}" = lport=3389 | protocol=6 | dir=in | app=system | "{5DCDC94A-3AC1-4E53-822D-EA7FC16299D1}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{5EB7883A-75AA-4A33-B43D-F790DE99E9A3}" = lport=139 | protocol=6 | dir=in | app=system | "{6328E82D-F035-4A12-ABB7-189FF18D602B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{6AE16B95-7CD9-4611-B907-E4ED27B3C2E7}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{A39609DD-197B-45B4-88B5-6C540840B069}" = lport=445 | protocol=6 | dir=in | app=system | "{A759F455-E3E8-446F-8BDF-E75A5086E437}" = lport=10243 | protocol=6 | dir=in | app=system | "{A8C94F5D-8A2A-4B17-98ED-BD7C70128596}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{AECCA72B-EBD8-4EDA-A057-13ADEF602B88}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe | "{B51D6CC9-E39B-4770-AF7C-4B317DF54469}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{B5FA02F4-AAA3-4857-9E25-B4FC483E15B1}" = rport=139 | protocol=6 | dir=out | app=system | "{C0FB4572-2553-4729-B684-F312F1D6575B}" = rport=445 | protocol=6 | dir=out | app=system | "{DD9ED565-5571-4304-B74E-EC19FC9E6321}" = lport=2869 | protocol=6 | dir=in | app=system | "{E0D3022B-25E9-4AA3-ACFA-D34DEE52CE47}" = rport=137 | protocol=17 | dir=out | app=system | "{E2043D8B-0AD1-4429-9981-8925D6DFE877}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{E66D4FF9-B814-4A67-96E7-8CBBBAC07C46}" = rport=10243 | protocol=6 | dir=out | app=system | "{E96442AB-E834-4514-8CCB-182261872628}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{F4604AC8-B907-47D4-A396-1F7055657DD2}" = lport=138 | protocol=17 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{031C405C-967F-424E-9BCD-CA6A8D234B7A}" = protocol=17 | dir=in | app=c:\program files (x86)\maxthon3\modules\mxminithunder\thundermini.exe | "{084A4153-CBFA-468E-B421-3D4C09097BB3}" = protocol=6 | dir=in | app=g:\call of duty 4 - modern warfare\iw3mp.exe | "{0933A46B-5581-4C0A-A6E3-C37CCEDC8A75}" = protocol=17 | dir=in | app=g:\pro evolution soccer 2012\pes2012.exe | "{11432EDC-783E-4EED-BD56-77A453AE5919}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{15A7813D-BDB6-44DB-877A-904D73CD101A}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{1DFC7083-D4D5-49C5-AC9E-5A40513EB4FE}" = protocol=17 | dir=in | app=c:\users\mateusz\desktop\pes2012.exe | "{1F0B0CF3-9B66-4FF2-965E-6F9B44D8BC6F}" = protocol=6 | dir=in | app=c:\users\mateusz\desktop\pes2012.exe | "{259C7614-5DA7-47E4-8636-96009511D280}" = protocol=17 | dir=in | app=c:\program files (x86)\crazyremote\crazyremoteserver.exe | "{29F6F959-2A45-44B7-A38B-BD98D220414D}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{310C963C-C941-4BA4-830A-2DDC42AC5B1A}" = protocol=17 | dir=in | app=c:\program files (x86)\maxthon3\bin\maxthon.exe | "{34AC2BDA-DBDA-435F-BA68-D83399C6DB15}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2012\avgmfapx.exe | "{3C769EC2-B186-4B3C-90ED-BBC37731C64D}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2012\avgnsa.exe | "{3D83123C-8A12-49DC-9ED6-2DAC633982EB}" = protocol=17 | dir=in | app=g:\call of duty 4 - modern warfare\iw3mp.exe | "{41CCEEB2-D25C-4BAE-9F63-C36685633382}" = protocol=17 | dir=in | app=c:\program files (x86)\crazyremote\crazyremoteserver.exe | "{44E3361E-DE11-4E7F-96BF-7064DA5749FB}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{4F7ED1C8-2D32-4F6D-BFE0-3E1B6F84E3D8}" = protocol=6 | dir=in | app=c:\program files (x86)\maxthon3\bin\mxup.exe | "{50BEF7CC-BF25-463D-ACF8-B9E5051CC5C1}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{54AE6A9C-6CF9-4197-9978-530F6D41BF82}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{562F0AD7-111F-4D32-A0B4-8916F8BBE2C0}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{565FE17D-BF01-4D32-88AF-B9FA2A4EEE6D}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2012\avgdiagex.exe | "{5856E042-C93B-4FF3-AFE6-A2EEEC359CC6}" = protocol=6 | dir=in | app=c:\program files (x86)\crazyremote\crhelper.exe | "{5C6C20CA-6F2B-4C5A-AD7F-B90FF72211F2}" = protocol=6 | dir=in | app=c:\program files (x86)\maxthon3\bin\maxthon.exe | "{5DC3EA08-B72C-4DA5-BCAD-551DFD8CA2E1}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{67E07BEB-F105-4502-B528-D829730516E8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{6A1F6FA9-0FF5-4809-83E2-64FD6AA92F11}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{6AC70A1E-827E-4B14-802F-12562469A3F8}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{72EA89A0-6BEC-483D-8691-136F34BA2A61}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{7449A357-9200-450C-8B62-66357BC59B0D}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{7482E7D2-4403-42D9-89FE-C20C044851EE}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2012\avgmfapx.exe | "{75193A07-960B-4098-9461-1957440FC0FF}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{932E0DBD-B250-4042-A31C-C6B2999244F6}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{95F97648-B535-44BE-9159-79E09BA5A5BB}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{9C00EB31-DABD-46AF-AFBA-5B0E3C401B11}" = protocol=6 | dir=in | app=c:\program files (x86)\crazyremote\crazyremote.exe | "{A5FE3670-E313-408B-B123-0DA7FEF9ECBA}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{A918A406-550F-48BA-9225-FE3A92E41F1A}" = protocol=6 | dir=in | app=g:\pro evolution soccer 2012\pes2012.exe | "{AAB44CBC-F305-4E38-95D1-38B397B4BA99}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2012\avgemca.exe | "{AB42B298-0D27-4D20-A9EC-80EA1F202039}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{ACEA1C3E-E211-47D1-BC66-5EC1EB05DE29}" = protocol=17 | dir=in | app=c:\program files (x86)\maxthon3\bin\mxup.exe | "{AEC43C9F-8C63-4AB8-B9E2-0126FE2B3703}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{B3E75C99-434C-4980-9292-7D48A3C40ABF}" = protocol=6 | dir=in | app=c:\program files (x86)\crazyremote\crazyremoteserver.exe | "{C17029D1-CC34-4AEE-89F0-B7D116ED004F}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2012\avgemca.exe | "{C2EB3F45-60AC-42EB-A26A-FF866470B388}" = protocol=6 | dir=out | app=system | "{C3FEC6EF-1F46-4392-B294-9527B0128E61}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{CE0B6AF7-AE8B-4E7B-80A9-BDF680146C08}" = protocol=6 | dir=in | app=c:\program files (x86)\crazyremote\crazyremoteserver.exe | "{DEC99730-68A1-421D-A651-B946EE8D363D}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{EC76AB20-C252-45D5-A2A1-D3AD53B21426}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2012\avgnsa.exe | "{F03E8C99-E69E-4F59-B8F1-03344B55302E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{F1CAD10C-B11E-491C-9584-171ADE04A918}" = protocol=6 | dir=in | app=c:\program files (x86)\maxthon3\modules\mxminithunder\thundermini.exe | "{F322230B-8FD8-4C81-8426-DC4FB76BB99F}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2012\avgdiagex.exe | "{F4AE3477-EE45-474A-8526-6771992297D2}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{F7385A4C-80FC-4F7A-AA98-F519DFB76AA3}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "TCP Query User{053C4FFE-5E2A-4A19-9069-04AC3677F864}G:\re-volt-full-game\re-volt\revolt.exe" = protocol=6 | dir=in | app=g:\re-volt-full-game\re-volt\revolt.exe | "TCP Query User{0FB417E6-07B8-4A19-8703-81FA0B4B7AB4}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "TCP Query User{1069702A-762E-41BA-803B-3614576EEBE7}C:\windows\syswow64\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "TCP Query User{18ADCA78-10CB-42D1-9524-94D8E909E423}G:\stronghold 3\bin\win32_release\stronghold3.exe" = protocol=6 | dir=in | app=g:\stronghold 3\bin\win32_release\stronghold3.exe | "TCP Query User{8DF09377-D824-4E0C-8D59-FAFE739C4120}G:\driver sanfrancisco\driver.exe" = protocol=6 | dir=in | app=g:\driver sanfrancisco\driver.exe | "TCP Query User{F7761952-2BC8-4E02-A83A-95E27944BE44}C:\users\mateusz\appdata\roaming\gameranger\gameranger\gameranger.exe" = protocol=6 | dir=in | app=c:\users\mateusz\appdata\roaming\gameranger\gameranger\gameranger.exe | "UDP Query User{2C9DE68F-0747-44B4-B771-8B448029859C}G:\driver sanfrancisco\driver.exe" = protocol=17 | dir=in | app=g:\driver sanfrancisco\driver.exe | "UDP Query User{43AC220A-52D9-4D8D-9444-FC2DA1255F03}C:\windows\syswow64\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "UDP Query User{8FCE9430-5BF0-44BE-853C-D69E6F9C10BE}G:\re-volt-full-game\re-volt\revolt.exe" = protocol=17 | dir=in | app=g:\re-volt-full-game\re-volt\revolt.exe | "UDP Query User{BB01348B-37DF-43D9-B420-A4DAB0257433}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "UDP Query User{CA02B2AC-69FE-4058-9350-DE78D130409B}G:\stronghold 3\bin\win32_release\stronghold3.exe" = protocol=17 | dir=in | app=g:\stronghold 3\bin\win32_release\stronghold3.exe | "UDP Query User{FD7A5712-891C-4CB0-B39A-EF7BA5C088DA}C:\users\mateusz\appdata\roaming\gameranger\gameranger\gameranger.exe" = protocol=17 | dir=in | app=c:\users\mateusz\appdata\roaming\gameranger\gameranger\gameranger.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{2CDD9D22-AD67-4588-93AD-147C979F6E7C}" = AVG 2012 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{8E5DA9A6-7A9F-3A6F-BC5C-D6CBCA6A29C7}" = Microsoft .NET Framework 4 Extended PLK Language Pack "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007 "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{D050583D-5CEC-47B1-88AA-8B328CAA8621}" = AVG 2012 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX 64-bit "AVG" = AVG 2012 "CCleaner" = CCleaner "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft .NET Framework 4 Extended PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended "WinRAR archiver" = WinRAR 4.01 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1111706F-666A-4037-7777-210328764D10}" = JavaFX 2.1.0 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83217004FF}" = Java(TM) 7 Update 4 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{50316C0A-CC2A-460A-9EA5-F486E54AC17D}_is1" = AVG PC Tuneup "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7B9CC60A-9B81-46A3-A953-76B6BF9EEC97}" = Age of Empires III "{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher "{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002A-0415-1000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch "{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{AC76BA86-7AD7-1045-7B44-A94000000001}" = Adobe Reader 9.4.6 - Polish "{CE7051A6-42D2-4C52-94BA-83A7BDB7AD19}" = Splash PRO EX "{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM) "{E737A098-F161-4B6F-AF22-86AAE34F6FBD}" = Pro Evolution Soccer 2012 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}" = Visual Studio 2008 x64 Redistributables "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Call of Duty - Modern Warfare 3_is1" = Call of Duty - Modern Warfare 3 "CWK" = CWK (Czasowy Wyłącznik Komputera) "DAEMON Tools Lite" = DAEMON Tools Lite "DivX Setup" = DivX Setup "ENTERPRISE" = Microsoft Office Enterprise 2007 "InstallShield_{7B9CC60A-9B81-46A3-A953-76B6BF9EEC97}" = Age of Empires III "InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch "InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch "InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM) "Jagged Alliance - Back in Action_is1" = Jagged Alliance - Back in Action "Maxthon3" = Maxthon 3 "SCANIA Truck Driving Simulator" = SCANIA Truck Driving Simulator 1.0.0 "Stronghold 3_is1" = Stronghold 3 Update v1.9.26498 "vShare.tv plugin" = vShare.tv plugin 1.3 "Windows 7 - Codec Pack" = Windows 7 Codec Pack 3.3.0 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-736823792-3056351271-3879679232-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "GameRanger" = GameRanger "Google Chrome" = Google Chrome [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-07-11 18:10:53 | Computer Name = Mateusz-komp | Source = WinMgmt | ID = 10 Description = Error - 2012-07-11 18:13:27 | Computer Name = Mateusz-komp | Source = WinMgmt | ID = 10 Description = Error - 2012-07-11 18:51:09 | Computer Name = Mateusz-komp | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: SplashProEx.exe, wersja: 1.11.0.0, sygnatura czasowa: 0x4e43bac3 Nazwa modułu powodującego błąd: SplashProEx.exe, wersja: 1.11.0.0, sygnatura czasowa: 0x4e43bac3 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000c54e5 Identyfikator procesu powodującego błąd: 0x7dc Godzina uruchomienia aplikacji powodującej błąd: 0x01cd5fb79eb20870 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Mirillis\Splash PRO EX\SplashProEx.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Mirillis\Splash PRO EX\SplashProEx.exe Identyfikator raportu: e7ae24f0-cbaa-11e1-8895-0019db6d24b5 Error - 2012-07-11 18:51:30 | Computer Name = Mateusz-komp | Source = WinMgmt | ID = 10 Description = Error - 2012-07-12 04:07:50 | Computer Name = Mateusz-komp | Source = WinMgmt | ID = 10 Description = Error - 2012-07-12 04:19:19 | Computer Name = Mateusz-komp | Source = VSS | ID = 18 Description = Error - 2012-07-12 04:19:19 | Computer Name = Mateusz-komp | Source = VSS | ID = 8193 Description = Error - 2012-07-12 04:19:19 | Computer Name = Mateusz-komp | Source = System Restore | ID = 8193 Description = Error - 2012-07-12 04:25:16 | Computer Name = Mateusz-komp | Source = VSS | ID = 18 Description = Error - 2012-07-12 04:25:16 | Computer Name = Mateusz-komp | Source = VSS | ID = 8193 Description = [ Media Center Events ] Error - 2012-01-07 19:22:57 | Computer Name = Mateusz-komp | Source = MCUpdate | ID = 0 Description = 00:22:57 - Błąd podczas nawiązywania połączenia z Internetem. 00:22:57 - Nie można skontaktować się z serwerem.. Error - 2012-03-02 10:10:46 | Computer Name = Mateusz-komp | Source = MCUpdate | ID = 0 Description = 15:10:44 - Nie można pobrać pakietu MCESpotlight (Błąd: Upłynął limit czasu operacji) [ System Events ] Error - 2012-02-07 05:45:04 | Computer Name = Mateusz-komp | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1. Error - 2012-02-07 05:45:06 | Computer Name = Mateusz-komp | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1. Error - 2012-02-07 10:20:42 | Computer Name = Mateusz-komp | Source = atikmdag | ID = 43029 Description = Display is not active Error - 2012-02-07 11:05:54 | Computer Name = Mateusz-komp | Source = atikmdag | ID = 43029 Description = Display is not active Error - 2012-02-07 15:51:53 | Computer Name = Mateusz-komp | Source = atikmdag | ID = 52236 Description = CPLIB :: General - Invalid Parameter Error - 2012-02-07 15:51:53 | Computer Name = Mateusz-komp | Source = atikmdag | ID = 43029 Description = Display is not active Error - 2012-02-08 03:45:53 | Computer Name = Mateusz-komp | Source = atikmdag | ID = 52236 Description = CPLIB :: General - Invalid Parameter Error - 2012-02-08 03:45:53 | Computer Name = Mateusz-komp | Source = atikmdag | ID = 43029 Description = Display is not active Error - 2012-02-08 16:01:42 | Computer Name = Mateusz-komp | Source = atikmdag | ID = 52236 Description = CPLIB :: General - Invalid Parameter Error - 2012-02-08 16:01:42 | Computer Name = Mateusz-komp | Source = atikmdag | ID = 43029 Description = Display is not active < End of report >