OTL Extras logfile created on: 2012-07-14 00:22:45 - Run 1 OTL by OldTimer - Version 3.2.54.0 Folder = E:\ Windows Vista Home Basic Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 7.0.6002.18005) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,93 Gb Total Physical Memory | 1,57 Gb Available Physical Memory | 81,08% Memory free 4,10 Gb Paging File | 3,89 Gb Available in Paging File | 94,92% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 222,88 Gb Total Space | 65,00 Gb Free Space | 29,16% Space Free | Partition Type: NTFS Drive E: | 3,71 Gb Total Space | 1,24 Gb Free Space | 33,41% Space Free | Partition Type: FAT32 Computer Name: KOMPUTER-KASIA | User Name: Kasia | Logged in as Administrator. Boot Mode: SafeMode | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{079A63CB-3865-403F-B38F-991C06451104}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{11B9DD1C-B25A-438D-B767-05B756CE9B1C}" = lport=139 | protocol=6 | dir=in | app=system | "{1A22595B-71EE-4879-8597-53DA37B5C7BB}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{1FDABAB5-A131-4AE8-B319-BFE7AB90E72E}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{23C592C0-AE8C-4189-932A-C133F293D1D8}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{30835875-4D2B-4E0C-BFBD-E8F691A3C9F4}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{3EFD12B9-0286-4AB7-BAA2-E71D54FCAA37}" = rport=138 | protocol=17 | dir=out | app=system | "{42164F6B-161C-4E4F-95B0-E7FBBE48E36A}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office12\outlook.exe | "{4959788D-29E4-4509-969F-0215882B02EA}" = rport=139 | protocol=6 | dir=out | app=system | "{5945D6DD-E040-4482-9D9E-F49F3EEABE60}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{5CE50C9C-8111-4B08-AD85-8DECCF81BF58}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{5FCCAF04-223E-4847-A851-0DBC66EB6AE1}" = lport=138 | protocol=17 | dir=in | app=system | "{62C57E64-8097-4512-BB2D-8D99234E60F9}" = lport=2869 | protocol=6 | dir=in | app=system | "{7123BD84-45FE-4B58-9A5C-62C260FAD539}" = rport=2869 | protocol=6 | dir=out | app=system | "{7A129884-427E-49E6-AC78-FBCBD8D0F2F0}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{82425CBC-9552-4C98-9B91-B20BB3C06CC0}" = lport=445 | protocol=6 | dir=in | app=system | "{951805F0-309B-4959-8D77-F895FF48C260}" = lport=49160 | protocol=6 | dir=in | name=akamai netsession interface | "{986444A7-B932-4EBB-AC44-D3138B194386}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{A66FDEED-519C-4CAF-AB90-C50A2909C0AE}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{A70AE0A4-A4C2-474B-A254-E17B0F400885}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{AD319A8A-AF0C-44E4-876C-7656ED405CFB}" = lport=137 | protocol=17 | dir=in | app=system | "{BB2C4DDB-0AD7-4221-8054-A9D974979563}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{CC4FD96E-6A2E-4326-B823-AAC4276FA998}" = rport=445 | protocol=6 | dir=out | app=system | "{CE4D77EF-5AE8-4B9B-BEC6-35429B4B385C}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{DB35A98F-72B8-4EA7-8662-83692FDFB5D9}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{DE7A831D-BED4-40DD-B84C-87B26B7A803D}" = lport=5000 | protocol=17 | dir=in | name=akamai netsession interface | "{DEDFFBA2-A989-4B35-9D73-F6788201117F}" = rport=137 | protocol=17 | dir=out | app=system | "{FB8DC6C8-1DBC-4858-B55C-A3D0CF8DE61D}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{FFA14CCE-12F6-48AC-AAC1-AD19C1D4324A}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0ED3232D-C9C5-4F9E-B267-CB9EE000EC1B}" = protocol=17 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\backupsvc.exe | "{1FCC7A7C-E25F-4AD7-95B9-4751BCE808C9}" = protocol=17 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\schedulersvc.exe | "{21532824-FCC0-400F-BAAC-10E0AF1FEF1F}" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed brotherhood\acbmp.exe | "{2895DF67-1502-4C9A-A304-64F1AF2AD9A8}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe | "{2C74C4FD-1D01-4583-8646-3BCFF2E10045}" = protocol=6 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\schedulersvc.exe | "{2D558CEF-714A-46EB-AF3B-52CD101761DB}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "{35A8788C-FF6B-4FCB-8742-6EB90687B05A}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{36A24D54-37BA-4167-BD2E-C718BF3D0DD4}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "{3AC8B3F2-E828-4D76-9B28-E39C19612335}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{3BA83590-3816-44C5-B2F1-9BFF64C836DD}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{3F6F7AA5-57BB-4A16-86A8-B95D0CCDDF5A}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{402023AB-EB8E-46F2-9F4D-00B75B5E7D10}" = protocol=6 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\client\agentsvc.exe | "{422BE0C6-9BE1-43A2-A8E6-286984E08F8D}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{49C755C4-DA2B-4AD4-9D79-CAA12E7CD3A7}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe | "{4B2D0F9C-1DC9-4F79-930A-7C4429A6996C}" = protocol=6 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\backupsvc.exe | "{4D4B55E1-08E4-406D-A247-BD4AAAA5093A}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{591ECAAF-639F-4EF9-AC7A-C61A52431573}" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe | "{77846841-7E40-4E2D-B85C-6591490B9A8D}" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed brotherhood\acbmp.exe | "{7A9A24D9-5826-46C0-A2A6-9191D657BF5B}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{7FFA882A-EA55-42A1-8501-D83C742C459A}" = protocol=6 | dir=in | app=d:\fscommand\cksocketserver.exe | "{8B0376A3-73C6-4343-BC2D-D1352498632C}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{935758F6-6475-4781-8953-7E42B0D7D463}" = protocol=6 | dir=in | app=d:\fscommand\cksocketserver.exe | "{A9EDED82-272C-4ABE-8E2B-6B7AE065B2F7}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{AF953707-67A1-4365-8572-125A4F5F0FF1}" = protocol=6 | dir=in | app=c:\program files\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{AFC2018F-7090-41CB-9AD5-61EE2459F95A}" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe | "{B007F43A-8AA2-4B01-A63C-039357F9DD66}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{B651C5F7-EA3B-48EC-8FDF-CC3EF0E92583}" = protocol=17 | dir=in | app=c:\program files\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{C380A224-6691-4203-A1BF-7BF00C2D7D4D}" = protocol=6 | dir=in | app=c:\program files\konami\pro evolution soccer 2012\pes2012.exe | "{C519D419-198C-466D-B31A-F66A5EE635CB}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 | "{C9F8C9DC-C9DE-43CC-A2F8-7956A806721A}" = protocol=17 | dir=in | app=d:\fscommand\cksocketserver.exe | "{CCE342D8-94B9-409F-8849-DF05A2A2A567}" = protocol=17 | dir=in | app=c:\program files\konami\pro evolution soccer 2012\pes2012.exe | "{DA583A55-E6B1-4E88-8327-EF2E0C83A2AA}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{E0590CFA-7480-472A-835A-98EEC85DCDC1}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{EBE06D22-1E6C-4891-9E6B-2C63D511F807}" = protocol=17 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\client\agentsvc.exe | "{F6B3112D-DA8C-4EDA-A6B0-0F6AD1335403}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{F95C60BD-377E-49E4-9802-365E45C6D231}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{FF91ED45-406F-40D3-993E-DA0654746720}" = protocol=17 | dir=in | app=d:\fscommand\cksocketserver.exe | "TCP Query User{1F5EB5A4-2862-497E-A867-81D965BEC887}C:\program files\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files\sopcast\sopcast.exe | "TCP Query User{2BD03341-F1FB-4A7C-942C-1BBFA0B594DC}C:\users\kasia\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\kasia\appdata\local\akamai\netsession_win.exe | "TCP Query User{5132B753-FCB5-4F04-B2AF-B0476E5F92E7}C:\program files\gokadcek\gokadcek.exe" = protocol=6 | dir=in | app=c:\program files\gokadcek\gokadcek.exe | "TCP Query User{51EBA9F4-93D8-479D-88A9-7820732AF2EF}C:\program files\dc++\dcplusplus.exe" = protocol=6 | dir=in | app=c:\program files\dc++\dcplusplus.exe | "TCP Query User{75D58F77-ACF4-4ACB-AA69-7D236CE26524}C:\program files\dtella@ms\dtella.exe" = protocol=6 | dir=in | app=c:\program files\dtella@ms\dtella.exe | "TCP Query User{7B1A7041-DD39-472E-9169-7AC070F178CE}C:\users\kasia\appdata\local\google\chrome\application\chrome.exe" = protocol=6 | dir=in | app=c:\users\kasia\appdata\local\google\chrome\application\chrome.exe | "TCP Query User{7D6BBCB4-29DA-4D19-81A4-63A051CF6642}C:\program files\2k sports\nba 2k10\nba2k10.exe" = protocol=6 | dir=in | app=c:\program files\2k sports\nba 2k10\nba2k10.exe | "TCP Query User{85429FC7-639A-4CFD-B5EA-A0D4456E6D74}C:\program files\2k sports\nba 2k10\nba2k10.exe" = protocol=6 | dir=in | app=c:\program files\2k sports\nba 2k10\nba2k10.exe | "TCP Query User{8B183200-2571-4C90-928B-950A4E5DDC42}C:\program files\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\java.exe | "TCP Query User{95A1F0ED-2F0F-49E5-880C-3950A6001B47}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "TCP Query User{9C13F283-124F-4E68-8075-1D5430AD4D15}C:\users\kasia\appdata\local\google\chrome\application\chrome.exe" = protocol=6 | dir=in | app=c:\users\kasia\appdata\local\google\chrome\application\chrome.exe | "TCP Query User{AFB147E7-99A5-4A8B-8B11-FB55E1396C45}C:\program files\nowe gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "TCP Query User{C797FB38-D96F-4F10-A597-E652FAA9C91C}C:\program files\nowe gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "TCP Query User{C9A64EE6-FE77-4615-988A-53EF2817DCDE}C:\program files\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe | "TCP Query User{CDB94CE6-8FFD-46A2-991E-4F4724E8D05A}C:\users\kasia\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\kasia\appdata\local\akamai\netsession_win.exe | "TCP Query User{E03AF6C8-5499-45F7-AE7D-4A9E1C00824E}C:\program files\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=c:\program files\sopcast\adv\sopadver.exe | "TCP Query User{E0D8F813-9AF0-447C-BE62-7B90D01E0BBB}C:\program files\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=c:\program files\sopcast\adv\sopadver.exe | "TCP Query User{E84B5AF1-1BF2-4CDE-AC60-444AA4169333}C:\program files\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files\sopcast\sopcast.exe | "TCP Query User{F8EF8251-F902-4CD0-9D62-F538CD8B1299}C:\program files\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe | "TCP Query User{FFE2F69F-A7C3-4600-B3EC-E893494DE697}C:\program files\ea sports\fifa 11\game\fifa.exe" = protocol=6 | dir=in | app=c:\program files\ea sports\fifa 11\game\fifa.exe | "UDP Query User{1CEAC4E0-C9FF-403B-9CCB-AD9D475AF21F}C:\program files\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe | "UDP Query User{2129EBDC-3A27-4F42-A10E-54062CE64BC9}C:\program files\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files\sopcast\sopcast.exe | "UDP Query User{229A033F-7545-474B-9927-C9FCE69AFFCC}C:\program files\dtella@ms\dtella.exe" = protocol=17 | dir=in | app=c:\program files\dtella@ms\dtella.exe | "UDP Query User{2A5AA957-0B65-450B-98B7-83510E736E52}C:\program files\dc++\dcplusplus.exe" = protocol=17 | dir=in | app=c:\program files\dc++\dcplusplus.exe | "UDP Query User{2FABA9ED-FE0D-4463-A543-1E189D4ECDFD}C:\program files\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files\sopcast\sopcast.exe | "UDP Query User{333CFA1C-3376-4087-94FD-3FD8CF33A131}C:\users\kasia\appdata\local\google\chrome\application\chrome.exe" = protocol=17 | dir=in | app=c:\users\kasia\appdata\local\google\chrome\application\chrome.exe | "UDP Query User{3A576CB7-CE35-41C7-B509-9F9D6DF5B275}C:\program files\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\java.exe | "UDP Query User{41E653CD-1637-4580-ADA4-7FFEEDBB1013}C:\program files\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe | "UDP Query User{5EC18C85-1E48-44C2-911F-BE446DA207AA}C:\program files\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=c:\program files\sopcast\adv\sopadver.exe | "UDP Query User{83440532-B470-46EA-858D-2999F3F73CE5}C:\program files\nowe gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "UDP Query User{8F88D69F-42AE-412A-BBE8-E3187B8E8B92}C:\program files\nowe gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "UDP Query User{AE7AC05E-880B-486E-B21F-30DBBCDFB2B5}C:\program files\2k sports\nba 2k10\nba2k10.exe" = protocol=17 | dir=in | app=c:\program files\2k sports\nba 2k10\nba2k10.exe | "UDP Query User{B2A4F66A-268B-4B3D-8414-7B579404701E}C:\program files\2k sports\nba 2k10\nba2k10.exe" = protocol=17 | dir=in | app=c:\program files\2k sports\nba 2k10\nba2k10.exe | "UDP Query User{C4EC4795-50F3-41E3-8F82-8827E25B7963}C:\program files\gokadcek\gokadcek.exe" = protocol=17 | dir=in | app=c:\program files\gokadcek\gokadcek.exe | "UDP Query User{C522179E-86C3-498F-97E4-67A9395CD1D5}C:\users\kasia\appdata\local\google\chrome\application\chrome.exe" = protocol=17 | dir=in | app=c:\users\kasia\appdata\local\google\chrome\application\chrome.exe | "UDP Query User{C7293FCD-A30C-422F-8EAF-A55D1A4B3CF0}C:\program files\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=c:\program files\sopcast\adv\sopadver.exe | "UDP Query User{C833148C-CF8F-4CDD-9E2C-2207DCB296E5}C:\users\kasia\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\kasia\appdata\local\akamai\netsession_win.exe | "UDP Query User{E3892CBC-601D-49FD-AB28-AD4DC1866943}C:\program files\ea sports\fifa 11\game\fifa.exe" = protocol=17 | dir=in | app=c:\program files\ea sports\fifa 11\game\fifa.exe | "UDP Query User{EDD4B244-99DF-44FE-9A5E-1968B83572D2}C:\users\kasia\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\kasia\appdata\local\akamai\netsession_win.exe | "UDP Query User{F720B1B6-56E4-4038-8C05-51254D82636B}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 "{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now Standard "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{197A3012-8C85-4FD3-AB66-9EC7E13DB92E}" = Adobe AIR "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{20471B27-D702-4FE8-8DEC-0702CC8C0A85}" = InterVideo WinDVD 8 "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8 "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{306B39C9-3AB1-4161-8567-9C7E50B41AE3}" = Microsoft Works "{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}" = Adobe Media Player "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{5545EEE1-FA36-4F76-B6BE-5696E7F4E2D6}" = VBA (2627.01) "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{5AEDCB07-25E3-4136-BE1E-BB2A2944355D}" = Game Graphic Studio "{6068A42A-C1CF-45F2-9859-5DB16287FE5D}" = msvcrt_installer "{64CB2553-C109-4132-AA51-1F421B515FD1}" = Microsoft .NET Framework 1.1 Polish Language Pack "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}" = eMachines ScreenSaver "{7F811A54-5A09-4579-90E1-C93498E230D9}" = eMachines Recovery Management "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110111700}" = Zuma Deluxe "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110113233}" = Bookworm Deluxe "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11019760}" = eMachines "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110265407}" = Bejeweled 2 Deluxe "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11029123}" = Bricks of Egypt "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110305887}" = Diner Dash "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110411970}" = Chuzzle "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111118433}" = Mystery Case Files - Huntsville "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111199750}" = Cake Mania "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111252743}" = Mahjong Escape Ancient China "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111265347}" = Luxor "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111307457}" = Galapago "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111796363}" = Mystery Solitaire - Secret Island "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112615863}" = Agatha Christie Death on the Nile "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112920767}" = Alice Greenfingers "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113080210}" = Azada "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113537610}" = Build-a-lot "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113772953}" = Amazing Adventures The Lost Tomb "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}" = Dream Day First Home "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11386547}" = Farm Frenzy "{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8169 8168 8101E 8102E Ethernet Driver "{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-0020-0415-0000-0000000FF1CE}" = Pakiet zgodności dla systemu Office 2007 "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{97B4DF0B-7499-455F-AFBA-F70F64D6D86A}" = SweetIM for Messenger 3.5 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9A346205-EA92-4406-B1AB-50379DA3F057}" = Autodesk DWF Viewer 7 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{A1194237-547A-461d-BD44-B97B1574A7DA}" = SweetIM Toolbar for Internet Explorer 4.1 "{A409B55C-DD9B-4157-86D7-FD6F4F0F2C1A}" = Angry Birds Rio "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1045-7B44-A81200000003}" = Adobe Reader 8 - Polish "{b520d3dd-56d5-4f8d-a7df-f73e347f10f6}" = Nero 9 Essentials "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{BB65C393-C76E-4F06-9B0C-2124AA8AF97B}" = Adobe Flash Player 9 ActiveX "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CB84F0F2-927B-458D-9DC5-87832E3DC653}" = GearDrvs "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{CE386A4E-D0DA-4208-8235-BCE43275C694}" = LightScribe 1.4.142.1 "{DFFE2B1F-07E0-45A9-8801-CD8514CAA876}" = Prince of Persia T2T "{E737A098-F161-4B6F-AF22-86AAE34F6FBD}" = Pro Evolution Soccer 2012 "{e8a80433-302b-4ff1-815d-fcc8eac482ff}" = Nero Installer "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.9 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F4F4F84E-804F-4E9A-84D7-C34283F0088F}" = RealUpgrade 1.0 "7-Zip" = 7-Zip 9.14 beta "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Akamai" = Akamai NetSession Interface Service "ALLPlayer_is1" = ALLPlayer V4.X "Avira AntiVir Desktop" = Avira Free Antivirus "BabylonToolbar" = Babylon toolbar on IE "BFG-Alice Greenfingers" = Alice Greenfingers "BFG-Alice Greenfingers 2" = Alice Greenfingers 2 "BFGC" = Big Fish Games: Game Manager "BFG-Cake Mania 3" = Cake Mania 3 "BFG-Cake Mania Main Street" = Cake Mania Main Street "Browsers Protector" = Browsers Protector "CCleaner" = CCleaner "com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player "ENTERPRISE" = Microsoft Office Enterprise 2007 "GOM Player" = GOM Player "Google Desktop" = Google Desktop "HDMI" = Intel(R) Graphics Media Accelerator Driver "InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now 5 "InstallShield_{20471B27-D702-4FE8-8DEC-0702CC8C0A85}" = InterVideo WinDVD 8 "InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8 "ipla" = ipla 2.3.5 "KLiteCodecPack_is1" = K-Lite Codec Pack 5.1.0 (Full) "LManager" = Launch Manager "Magic ISO Maker v5.5 (build 0281)" = Magic ISO Maker v5.5 (build 0281) "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Mistrz Klawiatury II" = Mistrz Klawiatury II "NapiProjekt_is1" = NapiProjekt 1.0.6.5 "Nowe Gadu-Gadu" = Nowe Gadu-Gadu "PunkBusterSvc" = PunkBuster Services "RealPlayer 12.0" = RealPlayer "Softonic-Eng46 Toolbar" = Softonic-Eng46 Toolbar "SopCast" = SopCast 3.2.9 "StartSearch Toolbar" = StartSearch Toolbar 1.3 "StmAdsl" = ADSL Modem "SynTPDeinstKey" = Synaptics Pointing Device Driver "uTorrent" = µTorrent "Veetle TV" = Veetle TV 0.9.18 "vShare" = vShare Plugin "vShare.tv plugin" = vShare.tv plugin 1.3 "Winamp" = Winamp "WinRAR archiver" = Archiwizator WinRAR "Zuma's Revenge!1.0" = Zuma's Revenge! [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Akamai" = Akamai NetSession Interface "Cake Mania 2 Deluxe" = Cake Mania 2 Deluxe "Game Organizer" = EasyBits GO "Google Chrome" = Google Chrome [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2010-11-23 19:00:03 | Computer Name = Komputer-Kasia | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd TuneUpUtilitiesApp32.exe, wersja 9.0.4300.11, sygnatura czasowa 0x4c176c47, moduł powodujący błąd TuneUpUtilitiesApp32.exe, wersja 9.0.4300.11, sygnatura czasowa 0x4c176c47, kod wyjątku 0xc0000417, przesunięcie błędu 0x0001e8d6, identyfikator procesu 0xd5c, godzina rozpoczęcia aplikacji 0x01cb8ae5448154a0. Error - 2010-11-24 06:33:58 | Computer Name = Komputer-Kasia | Source = WinMgmt | ID = 10 Description = Error - 2010-11-24 19:00:05 | Computer Name = Komputer-Kasia | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd TuneUpUtilitiesApp32.exe, wersja 9.0.4300.11, sygnatura czasowa 0x4c176c47, moduł powodujący błąd TuneUpUtilitiesApp32.exe, wersja 9.0.4300.11, sygnatura czasowa 0x4c176c47, kod wyjątku 0xc0000417, przesunięcie błędu 0x0001e8d6, identyfikator procesu 0xfd8, godzina rozpoczęcia aplikacji 0x01cb8bc359965e1e. Error - 2010-11-25 04:55:17 | Computer Name = Komputer-Kasia | Source = WinMgmt | ID = 10 Description = Error - 2010-11-25 05:23:45 | Computer Name = Komputer-Kasia | Source = Microsoft-Windows-CAPI2 | ID = 131083 Description = Error - 2010-11-25 05:23:45 | Computer Name = Komputer-Kasia | Source = Microsoft-Windows-CAPI2 | ID = 131083 Description = Error - 2010-11-25 06:27:33 | Computer Name = Komputer-Kasia | Source = EventSystem | ID = 4609 Description = Error - 2010-11-28 11:28:13 | Computer Name = Komputer-Kasia | Source = WinMgmt | ID = 10 Description = Error - 2010-11-28 12:00:02 | Computer Name = Komputer-Kasia | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd TuneUpUtilitiesApp32.exe, wersja 9.0.4300.11, sygnatura czasowa 0x4c176c47, moduł powodujący błąd TuneUpUtilitiesApp32.exe, wersja 9.0.4300.11, sygnatura czasowa 0x4c176c47, kod wyjątku 0xc0000417, przesunięcie błędu 0x0001e8d6, identyfikator procesu 0xbd0, godzina rozpoczęcia aplikacji 0x01cb8f10af4bba10. Error - 2010-11-28 15:37:01 | Computer Name = Komputer-Kasia | Source = WinMgmt | ID = 10 Description = [ OSession Events ] Error - 2012-05-28 13:35:57 | Computer Name = Komputer-Kasia | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1420 seconds with 600 seconds of active time. This session ended with a crash. [ System Events ] Error - 2012-07-13 18:23:09 | Computer Name = Komputer-Kasia | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-13 18:23:09 | Computer Name = Komputer-Kasia | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-13 18:23:09 | Computer Name = Komputer-Kasia | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-13 18:23:09 | Computer Name = Komputer-Kasia | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-13 18:23:09 | Computer Name = Komputer-Kasia | Source = Service Control Manager | ID = 7026 Description = Error - 2012-07-13 18:23:09 | Computer Name = Komputer-Kasia | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-13 18:23:09 | Computer Name = Komputer-Kasia | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-13 18:23:09 | Computer Name = Komputer-Kasia | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-13 18:23:09 | Computer Name = Komputer-Kasia | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-13 18:23:44 | Computer Name = Komputer-Kasia | Source = Service Control Manager | ID = 7001 Description = < End of report >