OTL Extras logfile created on: 2012-07-12 23:47:00 - Run 1 OTL by OldTimer - Version 3.2.54.0 Folder = D:\płyty\201102 Enterprise Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,32 Gb Available Physical Memory | 77,32% Memory free 5,99 Gb Paging File | 5,40 Gb Available in Paging File | 90,10% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 28,84 Gb Total Space | 1,46 Gb Free Space | 5,08% Space Free | Partition Type: NTFS Drive D: | 110,35 Gb Total Space | 11,08 Gb Free Space | 10,04% Space Free | Partition Type: NTFS Drive J: | 698,46 Gb Total Space | 150,70 Gb Free Space | 21,58% Space Free | Partition Type: FAT32 Computer Name: MAXIWYMIATACZ | User Name: Bartek | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 14 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [ChomikBox.Upload] -- "C:\Program Files\ChomikBox\\ChomikBox.exe" -u"%1" ( ) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{00BE93AD-E0B0-4B93-AE94-97125606C843}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{04AA3926-3BA3-4916-B743-BCFCB420EBAA}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{068AE7A5-6082-4E7D-AAC6-8983343ED95E}" = lport=5678 | protocol=6 | dir=in | app=%systemroot%\windowsmobile\wmdhost.exe | "{0EE2F094-E1A1-45A6-9834-7A931AE1A1A8}" = lport=999 | protocol=6 | dir=in | app=%systemroot%\windowsmobile\wmdhost.exe | "{235A4D1B-B933-40D0-960B-76D7E3E85041}" = lport=139 | protocol=6 | dir=in | app=system | "{3330BA64-732A-4F02-8200-24DD49D5AFA1}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{34C6D9BF-B1E9-4F5A-B1D2-2E3BD1EB20BB}" = lport=990 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{36003530-8824-43D7-B98D-2842886AD4C6}" = rport=5679 | protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{39402D1C-45AF-45AE-9656-8D615079A0B8}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{3CECA361-B805-48FB-A04B-49BA3B5D49B0}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{433F40C6-0488-41DC-8B74-C4D1D90D2958}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{4C1FCEE4-8D37-4F76-9D32-E5BC2DD092C8}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{4D8E532B-C75A-4C6D-88BF-9CD85B59FBC3}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{4FE7ABA7-EB5C-4875-B81E-CAEA54DEB9F4}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{562EC4EF-E52B-46D1-A860-30E875058B76}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{5D969302-C0D2-4724-B290-4FB23889E41B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{609F9F14-2ABE-473D-ADDC-7BF6446DCF0F}" = rport=445 | protocol=6 | dir=out | app=system | "{82556092-08E3-4D12-9E10-3BDF55B15D28}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{84825340-987E-4CE0-965D-4FC0978F9CEA}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{84A15ED8-1891-47D1-8EF2-0C8E0DC7FA5F}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{85FE6773-9946-4556-BD6F-2524C1DBD0D9}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{88E71699-64C2-4A66-AE4C-4E4759A6F92F}" = lport=2869 | protocol=6 | dir=in | app=system | "{8A464891-8874-498A-9461-8D1DCF06D3EA}" = lport=26675 | protocol=6 | dir=in | name=@%systemroot%\windowsmobile\wmdcbase.exe,-4006 | "{8ED58005-666F-4BD2-89CC-975583FC2370}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{9DF3D502-F5E2-4FE0-BF45-6EFFF2587164}" = lport=5721 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{A596FAF4-88F9-4B9B-8ECF-7C51922FDFF5}" = rport=138 | protocol=17 | dir=out | app=system | "{AF63F237-4B64-43D6-ACE1-1785108D9A94}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{B4187EE1-B8CA-4ABD-A4C2-32BEB88A91C9}" = lport=138 | protocol=17 | dir=in | app=system | "{B50BAA1F-B534-4563-AA60-39A19389F432}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{B740ADA5-2A84-424F-A438-D27E890B24A5}" = lport=137 | protocol=17 | dir=in | app=system | "{D6FC7F8E-02A6-4436-BC60-FA7465937C71}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{D88B673A-B5CE-43F0-88FF-3D92F886E1B2}" = rport=10243 | protocol=6 | dir=out | app=system | "{D8AF0FEE-50F0-44A6-B4C0-E6B45C1917CE}" = lport=10243 | protocol=6 | dir=in | app=system | "{DFB8BD02-E558-4039-94D2-4FB9017F1E2F}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{E5FA0CD3-F9B6-454D-B6DE-7CB8E8083F1D}" = rport=137 | protocol=17 | dir=out | app=system | "{E9BE2C58-4B6D-49BF-9613-17467F60CFE8}" = rport=139 | protocol=6 | dir=out | app=system | "{F024570A-530F-4985-B1C1-8FAA4AC09DA8}" = lport=445 | protocol=6 | dir=in | app=system | "{F7002A43-9C9C-4821-8C0F-BCB48B2F3362}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{FAE0E448-3654-4521-AE92-CD020E65663E}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{007E3ACB-C6D6-4FFA-8593-190326BFCBBA}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{012BF70B-7EA5-4E77-B132-B40F7F0E80F6}" = protocol=6 | dir=in | app=c:\program files\cyanide\gamecenter\gamecenter.exe | "{053B4BB3-4D50-46CD-B98D-F3F6FE4687A4}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{05A281DD-F7DF-4FF1-8505-432BE735E278}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{05AC6652-7D9E-4012-BC9F-C23907A96D03}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{0E96AEA1-FA50-4C2A-A6E4-BF9ADC1AA79A}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{110901FF-163A-40A3-913A-AA3DF21A2C2F}" = protocol=6 | dir=in | app=c:\users\bartek\appdata\local\temp\7zs7010\hpdiagnosticcoreui.exe | "{1186CE9D-C4A5-413D-8455-53C15D82F912}" = protocol=6 | dir=in | app=c:\users\bartek\appdata\roaming\dropbox\bin\dropbox.exe | "{1542E858-2C52-4924-A899-6CE47C345516}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{1E06AC38-3CEF-414F-85F5-35E9BCEBF90B}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{1FC2EA99-0FCD-4CB3-9E5A-A47D90F38D4B}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{2395270E-8D7E-4B16-BEA1-E5916BDEFB82}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{24A421D5-6992-4C96-9AE8-A5B3F37DC4EF}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{25B9F5BF-B7F7-4205-992F-F0EF70BFB210}" = protocol=6 | dir=out | app=system | "{26BF6237-17F7-4D3C-AAE6-7368551B2C86}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{28F0D397-B658-4F7A-91C6-37F22796FEF0}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{30B234CE-47BE-4092-B851-F71297FA6362}" = dir=in | app=c:\program files\nokia\nokia ovi suite\nokiaovisuite.exe | "{3D84CE5C-8DE2-49DB-B393-9915BFDC027A}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{42DCD902-3298-4F0D-BEC4-856384B163AA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{432AB7BC-0D20-47E2-B342-430B95B73EFB}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{46E8656B-83FB-4664-BED9-72194CC30282}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{479F3252-C7BD-4902-ADA3-2C644492BC38}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{4B28F8E3-05AF-4B8D-950E-B94A6F547B18}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{5660A074-D995-4EEA-9894-ACFA3FE7B0F4}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{60DB069C-886D-454A-96A9-14361D325855}" = protocol=17 | dir=in | app=c:\windows\system32\muzapp.exe | "{62EE382C-1F54-4351-8A34-301733BD9A67}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{66B8F3E0-07BA-4E20-A319-991B656E8578}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{6ABF5735-5A9A-4DFC-9D25-253BD0B70A69}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{6AC7C5FB-AF90-4027-95A9-32F2276A32A5}" = protocol=17 | dir=in | app=c:\users\bartek\appdata\local\temp\7zs7010\hpdiagnosticcoreui.exe | "{6FEDB2C1-966C-425E-9D49-E88A98816947}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{6FFCA336-7F00-452C-9B6E-23F67CE4844C}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{726F3AF0-5237-4D67-9821-EC8DEADF094F}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{73708352-9B8F-4699-9E3C-E895618CABE4}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{79144BA4-8323-41A6-B256-995F30750AD5}" = protocol=17 | dir=in | app=c:\program files\cyanide\gamecenter\gamecenter.exe | "{7EE02F8F-49E3-4B81-8FE8-4A78944A4D26}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{81D6A457-4A02-4340-ABB3-2975976C5917}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{82194D65-6594-4A00-B200-4D24418DECB1}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{8597AFB3-8E0C-4DE7-A526-60EDBA4C1A28}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{8E978490-6510-4A3E-8E30-7A937EA4AE80}" = protocol=6 | dir=in | app=c:\windows\system32\muzapp.exe | "{8EDE2694-0115-46C3-A680-C6825DE2090D}" = dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe | "{92102A4C-CA50-427C-A9E3-DE389EB4B739}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{93F2946C-1A5C-4FFA-B887-F80082E296DD}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe | "{979CCF51-9354-45F3-9F4A-5182D599818C}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{9A29F5EB-223C-45AF-9515-6702C7FEFAA3}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{9F5D7F39-2B3B-46AB-90D3-EDF1E183CEDB}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{9F64ACD8-3A36-4C2A-A339-B03140DD399A}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{9FC2FE2C-93BC-4238-90BD-BF95288766D4}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{A2A29D94-1EE7-46B5-AF35-902B131B4136}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{A2BCA28F-AD1B-40B7-B80D-8CC9A37E759C}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{A7E71D06-B77C-4639-A042-7D9959E1D930}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe | "{A9F59647-0EE7-40CA-BBE4-295A72B1C0DB}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{AA7452BC-A304-472C-A433-0803177EC1DF}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{AE42B7D4-8E1E-43D9-9645-A57EFC4E3266}" = protocol=17 | dir=in | app=c:\users\bartek\appdata\roaming\dropbox\bin\dropbox.exe | "{AFCB3EC0-8C78-4B8D-BD38-F7BD39F965C3}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{B8FDD607-3122-4FEF-B17E-B6DF286A2EC5}" = protocol=6 | dir=in | app=c:\users\bartek\appdata\local\google\google talk plugin\googletalkplugin.exe | "{BA885D54-C972-4A72-A786-100AB756D038}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{BC50E368-F185-42CC-A372-3522A968FCB2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{BCAC4F97-68F8-4642-89EB-690EA47BD890}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{C0BC3AA8-E3EF-4D46-96D2-97A595C66E19}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{C10314E7-FDAB-4689-93AE-E2D0959419B4}" = protocol=17 | dir=in | app=c:\users\bartek\appdata\local\temp\7zipsfx.000\cf_downloader.exe | "{C12D8BAF-2D26-41EF-9E7F-68C0CE9D631B}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{C326136C-E43E-47AA-9B6F-D85F0186CAD8}" = dir=in | app=c:\program files\windows live\contacts\wlcomm.exe | "{C3B79AD8-C326-42B0-AE6C-1CD620B036B7}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{C9D771AC-0064-444D-912C-FEADD0DC3C44}" = dir=in | app=c:\program files\itunes\itunes.exe | "{CA87B5D4-CF86-4722-A6D5-2CFE8CCF6CBC}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{CCCF8EC9-6DE3-4A4D-8B04-2733C3C9BA59}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{D6AF35BF-A31E-4FD4-B21E-CEE250585E0F}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{D6F0F53B-1FE4-487C-BA9D-CA8851AD814A}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{DCB6BB7B-188B-4D29-98D4-28515875DE5E}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{DE05267C-4E26-4C14-BC61-DFF74429271F}" = protocol=6 | dir=in | app=c:\users\bartek\appdata\local\temp\7zipsfx.000\cf_downloader.exe | "{E18B4345-CD63-4DF6-AF12-E96670883312}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{E2ED7D91-F314-4AE3-9A36-02682316761A}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{F1445B4F-CCFB-4A9C-8374-4A59C9580160}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{F66F7933-D14D-47B8-9050-0B6EF161A362}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{F9F748BC-57BD-4FFE-B78F-ECB831C73AD8}" = protocol=17 | dir=in | app=c:\users\bartek\appdata\local\google\google talk plugin\googletalkplugin.exe | "{FCDCBB56-8DB5-41C8-AB9E-326EF17DA6CE}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{FD60B66B-9DB7-42C9-B689-F42FD6311410}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{FE33AED6-A436-4949-87E1-DEB27B03A17C}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{FEAAFE9F-3DA2-433C-B02A-321054C98438}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "TCP Query User{1D8CE75A-5130-4A69-9C88-11AF99F8811F}C:\users\bartek\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\bartek\appdata\roaming\dropbox\bin\dropbox.exe | "TCP Query User{207E6FAB-A37E-4EFB-9187-C8FEFF6447EF}C:\program files\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe | "TCP Query User{620F7F24-2C29-49F9-A3AE-8F95A3CD9C65}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe | "TCP Query User{71778511-6613-44A3-A62B-6E94210C8451}D:\gry\coj\coj.exe" = protocol=6 | dir=in | app=d:\gry\coj\coj.exe | "TCP Query User{7A63214C-E36B-47B3-822A-777E2E5352F2}E:\easysetupassistant\easysetupassistant.exe" = protocol=6 | dir=in | app=e:\easysetupassistant\easysetupassistant.exe | "TCP Query User{89D1BB5E-8434-4A28-9871-3F23BF1CE32A}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{921CFC93-AD0C-4954-90F6-504F87C94AA9}D:\gry\ut\unrealtournament\system\unrealtournament.exe" = protocol=6 | dir=in | app=d:\gry\ut\unrealtournament\system\unrealtournament.exe | "TCP Query User{F5C2331A-BFE0-47A7-9F00-A7DD9DB1CFED}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "TCP Query User{FA2D59D5-83D2-4551-8AC7-EEFFD5D9EC01}D:\gry\nfsu\speed2.exe" = protocol=6 | dir=in | app=d:\gry\nfsu\speed2.exe | "UDP Query User{0521654A-0071-48DA-8BD1-294D54B9A4AC}D:\gry\ut\unrealtournament\system\unrealtournament.exe" = protocol=17 | dir=in | app=d:\gry\ut\unrealtournament\system\unrealtournament.exe | "UDP Query User{24727553-40BA-4093-BC69-E9AEBEC1804F}E:\easysetupassistant\easysetupassistant.exe" = protocol=17 | dir=in | app=e:\easysetupassistant\easysetupassistant.exe | "UDP Query User{26A9AA2F-1196-4E05-A8D4-748823A3E782}D:\gry\coj\coj.exe" = protocol=17 | dir=in | app=d:\gry\coj\coj.exe | "UDP Query User{3BBEACA0-F695-4193-BCAD-161AA12B5F77}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe | "UDP Query User{5D7FBBC8-8E53-4DEA-A3B5-DDF0B2415CBB}D:\gry\nfsu\speed2.exe" = protocol=17 | dir=in | app=d:\gry\nfsu\speed2.exe | "UDP Query User{69CACCF5-BE77-4D7E-91AF-2B3B7A2DED65}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{A3F06D72-ED3F-48F6-9443-A8032CDD6203}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "UDP Query User{E77FEEC9-2191-4C5D-BF4C-3E4C1F9ACEEB}C:\program files\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe | "UDP Query User{F614727C-149A-4839-BE6A-8FBD6044BD13}C:\users\bartek\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\bartek\appdata\roaming\dropbox\bin\dropbox.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator "{08F8A05F-C6FD-4A1C-96DA-4B48AACA7F35}_is1" = Incomedia WebSite X5 v9 - Smart "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer "{12EE0B2A-84C6-494E-A7AC-6771E898F6A0}_is1" = HD2 Toolkit wersja 4.2 "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 "{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker "{1E76EB6E-E390-11DF-95DB-005056C00008}" = MSVCRT Redists "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{2934DCB0-F8EE-11E0-A4A5-B8AC6F97B88E}" = Google Earth Plug-in "{2987EE84-C4EE-4FF5-8160-32DE00D6ABC6}" = GTA2 "{2A697B53-0DE3-42DA-B41D-C3F804B1C538}" = iTunes "{2A981294-F14C-4F0F-9627-D793270922F8}" = Bonjour "{2DC94AFD-A6E2-4AB4-9132-4A3F8E07B386}" = Apple Application Support "{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery "{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{45DF6D99-666D-41FA-8D62-0E183B6240F3}" = PC Connectivity Solution "{45F4941E-5E77-11DF-A71D-005056C00008}" = Paragon Partition Manager™ 11 Free Edition "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime "{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack "{644CEC11-C3D3-4F8D-A935-74F1EEF38209}" = ESET NOD32 Antivirus "{64CAA486-3CA5-4C81-8DAE-5D7D18E1956C}" = ChomikBox "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{749A1EDD-16C2-4C63-B013-D38F0F953973}" = OviMPlatform "{8112C6B3-91E1-4560-8AB9-876DADFA37C5}" = Ovi Desktop Sync Engine "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8DC910CD-8EE3-4ffc-A4EB-9B02701059C4}" = Battlefield Heroes "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{90110415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003 "{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system "{904CCF62-818D-4675-BC76-D37EB399F917}" = Centrum obsługi urządzeń z systemem Windows Mobile "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{975C3A93-2491-3D44-A071-F6CBF153E46D}" = Google Talk Plugin "{9B260944-746E-4966-8918-0F9636930456}" = ArcSoft MediaImpression for Kodak "{A3BC1DBD-64D6-4EBC-0091-24C811662D40}" = Madden NFL 08 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common "{AC76BA86-7AD7-1033-7B44-A95000000001}" = Adobe Reader 9.5.1 "{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86 "{B3DAF54F-DB25-4586-9EF1-96D24BB14088}" = Windows Movie Maker 2.6 "{B539E69D-DD59-457D-A926-CF01ACA6D04C}" = Microsoft Image Composite Editor "{B8B4446F-87E1-4423-A47A-16832C24A199}" = Nokia Ovi Suite "{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update "{C6150D8A-86ED-41D3-87BB-F3BB51B0B77F}" = Windows Live ID Sign-in Assistant "{CACAEB5F-174D-4C7C-AC56-A33289A807CA}" = Apple Mobile Device Support "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform "{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform "{DC35AABA-EA0A-41C1-8462-F60A201DFF9B}" = Noise Reduction Plug-in 2.0i "{DEA314C4-0929-4250-BC92-98E4C105F28D}" = NVIDIA PhysX "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E7044E25-3038-4A76-9064-344AC038043E}" = Centrum obsługi urządzeń z systemem Windows Mobile — aktualizacja sterowników "{EBE030DD-D404-4D92-85E9-8C3624820808}_is1" = Light Image Resizer 4.0.6.1 "{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}" = Sony Ericsson PC Companion 1.60.13 "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F1FDAA01-988C-423F-AC12-0D8F333943FD}" = Nokia Connectivity Cable Driver "{F761359C-9CED-45AE-9A51-9D6605CD55C4}" = Evernote v. 4.4.1 "{FCFE894A-36B3-4A61-A04A-D99519C54DB6}" = Photosynth 2.0110.0317.1042 "{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials "504244733D18C8F63FF584AEB290E3904E791693" = Pakiet sterowników systemu Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0) "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.5 "Apocalypse Motor Racers_is1" = Apocalypse Motor Racers "Ashampoo Photo Commander 8_is1" = Ashampoo Photo Commander 8 v.8.5.0 "Batch Watermark Creator_is1" = Batch Watermark Creator 6.1.1 "Free Screen Video Recorder_is1" = Free Screen Video Recorder version 2.5.22.508 "Gadwin PrintScreen" = Gadwin PrintScreen "Inter@ktywny szybki kurs hiszpanskiego" = Inter@ktywny szybki kurs hiszpanskiego "KLiteCodecPack_is1" = K-Lite Codec Pack 6.3.0 (Standard) "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Mozilla Firefox 12.0 (x86 pl)" = Mozilla Firefox 12.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Mystery Of Nostradamus_is1" = Mystery Of Nostradamus "Nokia Ovi Suite" = Nokia Ovi Suite "PhotoScape" = PhotoScape "Project IGI" = Project IGI "PunkBusterSvc" = PunkBuster Services "WinLiveSuite" = Windows Live Essentials "WinRAR archiver" = Archiwizator WinRAR "winscp3_is1" = WinSCP 4.2.8 "ZTE Remote NDIS_is1" = ZTE Remote NDIS Device [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Google Chrome" = Google Chrome "UnityWebPlayer" = Unity Web Player [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-06-30 17:39:47 | Computer Name = Maxiwymiatacz | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files\sony ericsson\sony ericsson pc companion\Drivers\DPInst64.exe". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2012-07-01 18:32:38 | Computer Name = Maxiwymiatacz | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files\sony ericsson\sony ericsson pc companion\Drivers\DPInst64.exe". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2012-07-05 18:33:58 | Computer Name = Maxiwymiatacz | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files\sony ericsson\sony ericsson pc companion\Drivers\DPInst64.exe". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2012-07-08 07:22:59 | Computer Name = Maxiwymiatacz | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files\sony ericsson\sony ericsson pc companion\Drivers\DPInst64.exe". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2012-07-11 17:47:01 | Computer Name = Maxiwymiatacz | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files\sony ericsson\sony ericsson pc companion\Drivers\DPInst64.exe". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2012-07-11 18:31:35 | Computer Name = Maxiwymiatacz | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files\sony ericsson\sony ericsson pc companion\Drivers\DPInst64.exe". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2012-07-12 03:56:08 | Computer Name = Maxiwymiatacz | Source = Wininit | ID = 1015 Description = Błąd krytycznego procesu systemowego C:\Windows\system32\lsass.exe z kodem stanu 1. Komputer musi być ponownie uruchomiony. Error - 2012-07-12 04:28:38 | Computer Name = Maxiwymiatacz | Source = VSS | ID = 18 Description = Error - 2012-07-12 04:28:38 | Computer Name = Maxiwymiatacz | Source = VSS | ID = 8193 Description = Error - 2012-07-12 04:28:39 | Computer Name = Maxiwymiatacz | Source = System Restore | ID = 8193 Description = [ System Events ] Error - 2012-07-12 17:43:05 | Computer Name = Maxiwymiatacz | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-12 17:45:13 | Computer Name = Maxiwymiatacz | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-12 17:45:13 | Computer Name = Maxiwymiatacz | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-12 17:45:13 | Computer Name = Maxiwymiatacz | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-12 17:50:13 | Computer Name = Maxiwymiatacz | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-12 17:50:13 | Computer Name = Maxiwymiatacz | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-12 17:50:13 | Computer Name = Maxiwymiatacz | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-12 17:52:19 | Computer Name = Maxiwymiatacz | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-12 17:52:19 | Computer Name = Maxiwymiatacz | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-12 17:52:19 | Computer Name = Maxiwymiatacz | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 < End of report >