OTL Extras logfile created on: 2012-07-18 14:04:46 - Run 1 OTL by OldTimer - Version 3.2.54.0 Folder = C:\Users\Jaro\Downloads 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,98 Gb Total Physical Memory | 3,14 Gb Available Physical Memory | 78,93% Memory free 7,95 Gb Paging File | 7,14 Gb Available in Paging File | 89,78% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 244,04 Gb Total Space | 102,99 Gb Free Space | 42,20% Space Free | Partition Type: NTFS Drive D: | 488,28 Gb Total Space | 58,50 Gb Free Space | 11,98% Space Free | Partition Type: NTFS Drive E: | 193,36 Gb Total Space | 30,91 Gb Free Space | 15,98% Space Free | Partition Type: NTFS Computer Name: JARO-KOMPUTER | User Name: Jaro | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "D:\Programy\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "D:\Programy\Napi projekt\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "D:\Programy\Napi projekt\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Directory [PlayWithVLC] -- "D:\Programy\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "D:\Programy\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "D:\Programy\Napi projekt\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "D:\Programy\Napi projekt\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Directory [PlayWithVLC] -- "D:\Programy\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{2169FD07-A5C2-45C7-897E-27DA8BD95272}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{21895851-2156-4681-B571-3DD4D8DD40BB}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{29C82AAC-B87D-4C3F-820A-CD43C88DF527}" = lport=10243 | protocol=6 | dir=in | app=system | "{2B5B3608-F2F9-46F8-8FA2-F60612C330BB}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{3123378A-A6AE-4773-8E85-831F2CD1A07E}" = rport=10243 | protocol=6 | dir=out | app=system | "{3743B762-CD1F-4B80-87F4-6C9D417D0137}" = rport=139 | protocol=6 | dir=out | app=system | "{405917A6-BFAC-4E16-BBCB-3F0E041DDA5C}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4155A43A-9285-4B3C-B87C-F9D0BEB79BDA}" = rport=445 | protocol=6 | dir=out | app=system | "{459A3BC7-65EE-4B18-AE6B-7F03888610B3}" = lport=445 | protocol=6 | dir=in | app=system | "{46CCB17C-5C0B-42D9-8B47-84BB69E37F96}" = rport=137 | protocol=17 | dir=out | app=system | "{5D135FBE-D497-4147-B476-FF6617CC734A}" = lport=138 | protocol=17 | dir=in | app=system | "{5F3DCEAC-5BD5-4F46-A59C-FFCDD043E1AF}" = rport=138 | protocol=17 | dir=out | app=system | "{63EF5CBD-B0A8-4B5A-9118-1C53CC1AF5F2}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{681B8BDD-02A5-4349-BDCD-E5122808A158}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{71DAD960-7159-409C-9B1F-56D330789DC5}" = lport=139 | protocol=6 | dir=in | app=system | "{865C90AD-D609-4112-8E21-57431A7E2DFE}" = lport=137 | protocol=17 | dir=in | app=system | "{AFC26D38-9799-4DBD-9090-B4D1A60BB626}" = lport=2869 | protocol=6 | dir=in | app=system | "{BAB4ED02-E420-46A5-8965-C76FC6FB4B88}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{C0B7EBE6-9C39-4433-A041-7FF0D276EE6B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{C5741FF5-8218-43D4-9CB5-536E65119775}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{C9BDB0B4-B11C-43A1-B19A-15ACE2D65C22}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{D3CD5345-E636-4FF1-ABA1-F8F8CFEACBBF}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office14\outlook.exe | "{E22C573C-ADEB-496E-B96F-E05E49B8449C}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{F72E147B-ACC3-4A74-8C3A-0E3DAD9AB254}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0D1FF56B-F2FB-4C7C-BED2-703EB304199B}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{0FCB19E8-E07F-4F11-ABA7-48CD34465F1A}" = protocol=17 | dir=in | app=d:\utorrent\utorrent.exe | "{1112014C-D4F0-4494-A2DA-0FF1BCF17A1A}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{1ADB3DD5-AF3B-4D8C-B8A1-66373EF119AA}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | "{1BA84041-A4BC-43CB-A164-7219208A6781}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{2172898D-2325-4C9B-9815-5962775E3333}" = protocol=6 | dir=in | app=d:\gry\assasin creed ii\assassinscreediigame.exe | "{25F46C37-EC9A-4DE0-AB7D-01E49A9CFBC1}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{272D5841-8916-49BE-9982-24682A5364C1}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{2775891D-010F-4333-ABE3-F64E09F67B6B}" = dir=in | app=d:\programy\itunes\itunes.exe | "{2BBB3A5B-B538-4E8D-92B7-2BAC889EF4BE}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{2CC0A4C6-4EFB-4C85-A50D-FE910EB7292B}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{30AF1F2F-7734-47B5-82F5-73C2052310AB}" = protocol=17 | dir=in | app=d:\programy\ventrillo\ventrilo.exe | "{31C2E13F-D4E1-4C90-92BE-34361A24803D}" = protocol=17 | dir=in | app=d:\gry\assasin creed ii\assassinscreediigame.exe | "{34A20EDA-1811-4214-9D69-24B735619B47}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{4628209C-AB86-46F4-A1CB-0DC26CD98D58}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{48F3ED49-F96E-481F-99F6-07C39D6BF818}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{4A179020-F0E0-43CF-90D3-22735AD64E3E}" = protocol=17 | dir=in | app=d:\gry\assasin creed ii\uplaybrowser.exe | "{4E2B0A1B-F670-4064-B265-6D90A3C07CB2}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{52EF4997-A9A7-478B-BC03-A93A59C3F156}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\groove.exe | "{53E5C608-E744-41D9-B1DC-659FD652498C}" = protocol=17 | dir=in | app=d:\gry\assasin creed ii\assassinscreedii.exe | "{564F8B8F-FE58-4510-8597-C34E9BE551B0}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{5735B3C1-3F16-4434-B7BD-2660CAD9A178}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{57E69DBE-A100-43B8-9936-EB3CB0ED7130}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{5A90AEB1-2FCE-4CE5-A02F-D6840AFE0D3F}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{5F9DCA2B-81C5-4C36-A9DE-2116DAA0E509}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{605EBD1D-F9C7-42C4-AD1E-3D8F9257DE6A}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{60844FC9-08FB-4471-A329-C6886CB71231}" = dir=in | app=c:\users\jaro\appdata\local\facebook\video\skype\facebookvideocalling.exe | "{6C420DC7-B874-4CEC-9FBE-99AE64C4C79A}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{7E5D2408-2206-45E7-90E3-71ED06657A43}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{8285D04C-2D5E-4B1C-BE47-751EC40ACB23}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{83D9C8F4-BD87-4D4A-A7FA-9739E12E915A}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{87E70134-A12B-4BC7-9E64-B98C23CD0A80}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{89E113A0-ADDB-4B32-866B-A8D99CF4B46A}" = protocol=6 | dir=in | app=d:\gry\assasin creed ii\assassinscreedii.exe | "{8B423F56-3997-4E9D-B089-F73CA9183AFC}" = protocol=17 | dir=in | app=c:\program files (x86)\rockstar games\grand theft auto iv\launchgtaiv.exe | "{8D591ED4-8AD2-467A-B517-A79E41A4DE81}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{91AD8F08-45F0-4978-AED5-B5718FBD51B8}" = protocol=6 | dir=in | app=d:\utorrent\utorrent.exe | "{96382FB3-FCBA-4167-9275-6BDF60CDCB51}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | "{975D3992-7FF2-455A-8870-5185A11B373C}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | "{99031DB0-D978-4460-9E4D-84C7403E736E}" = protocol=6 | dir=in | app=c:\program files (x86)\rockstar games\grand theft auto iv\launchgtaiv.exe | "{9CD51ED8-C8F0-467B-901D-F5D90EF0769E}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe | "{A860AB4F-8A1E-4D16-80EC-7CEDC2D7C70C}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{A937ECD4-B385-430B-8D71-C006A1C59659}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{AA4B7EFF-1F67-4675-B942-77B9131592FE}" = protocol=6 | dir=in | app=d:\gry\assasin creed ii\uplaybrowser.exe | "{AA4D6CC7-76C9-4BD0-BBCD-867D5D6DFEC3}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{B223DCA6-DCA5-46F6-B9AF-1229819E1E8B}" = protocol=6 | dir=out | app=system | "{BC3A4A7A-11E7-40CD-B7FC-151681C6899D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{C217CBBC-DCA1-4545-9C67-32B5A9B1BB28}" = protocol=17 | dir=in | app=d:\gry\max payne 3\maxpayne3.exe | "{C92EBBB5-CEF0-4995-B261-C96EC09AEDC2}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\groove.exe | "{D2401382-AD93-4F47-942B-9008A9285697}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{DB95EDFA-912E-47E1-B33E-3983B5026AE0}" = protocol=6 | dir=in | app=d:\programy\ventrillo\ventrilo.exe | "{DFC6E701-C7A2-4C60-913E-5EE7D30D0CC6}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{E60AF931-C45D-468C-AEB9-EB77852A7F44}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{E8E3EAFC-038F-4207-BB47-253555FB6159}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe | "{F49BB4BA-A411-4D58-ABF6-9FDBAE5C4356}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{F8BFD142-3CCA-433F-A399-8931AA3EE13E}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{FE31832F-8261-4C8C-A4DC-F82CAB0FCCAD}" = protocol=6 | dir=in | app=d:\gry\max payne 3\maxpayne3.exe | "TCP Query User{056D3A57-8E6C-4307-8F1F-21221D7F2155}D:\gry\wiedzmin 2\the witcher 2 enhanced edition\bin\witcher2.exe" = protocol=6 | dir=in | app=d:\gry\wiedzmin 2\the witcher 2 enhanced edition\bin\witcher2.exe | "TCP Query User{32BBA26F-ED61-4FAC-A105-4A0DCF01F9DC}D:\gry\assasin creed ii\assassin's creed ii\server.exe" = protocol=6 | dir=in | app=d:\gry\assasin creed ii\assassin's creed ii\server.exe | "TCP Query User{3D5ABBD2-42B7-4104-A967-8C023EB9DF6E}C:\program files (x86)\origin games\battlefield 3\bf3.exe" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe | "TCP Query User{3FF5D6FA-DC4C-4C28-8E3F-AED8BD6607B0}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "TCP Query User{559F0426-318B-4E38-B140-36121E485007}C:\users\jaro\desktop\batman - arkham city\binaries\win32\batmanac.exe" = protocol=6 | dir=in | app=c:\users\jaro\desktop\batman - arkham city\binaries\win32\batmanac.exe | "TCP Query User{6CE71395-5837-49F6-80D4-16DFEBC33B0D}D:\gry\fifa\fifa 12\game\fifa.exe" = protocol=6 | dir=in | app=d:\gry\fifa\fifa 12\game\fifa.exe | "TCP Query User{8451FCA8-95AC-48E5-8A2D-52E9C10D66A3}D:\gry\nfstr\need for speed the run\need for speed the run.exe" = protocol=6 | dir=in | app=d:\gry\nfstr\need for speed the run\need for speed the run.exe | "TCP Query User{89F61107-27FA-4C19-8AB3-3C29A8CD0D1C}D:\programy\aqq\wapster aqq\aqq.exe" = protocol=6 | dir=in | app=d:\programy\aqq\wapster aqq\aqq.exe | "TCP Query User{8BE435F1-284D-4E01-A610-2B9BE8CDA8DB}C:\users\jaro\desktop\batman - arkham city\binaries\win32\batmanac.exe" = protocol=6 | dir=in | app=c:\users\jaro\desktop\batman - arkham city\binaries\win32\batmanac.exe | "TCP Query User{927EF193-0B9B-453D-A62F-1E00BE27DB9B}C:\program files (x86)\rockstar games\max payne 3\maxpayne3.exe" = protocol=6 | dir=in | app=c:\program files (x86)\rockstar games\max payne 3\maxpayne3.exe | "TCP Query User{B69AEE42-B384-49B3-A072-F194B848D140}C:\program files (x86)\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe | "TCP Query User{D16160BD-7C5B-48FA-8E6B-203F71BE17C3}D:\gry\fifa\fifa 12\game\fifa.exe" = protocol=6 | dir=in | app=d:\gry\fifa\fifa 12\game\fifa.exe | "TCP Query User{DB30B99B-B5D5-4B68-98DC-3FB9694E6170}D:\programy\aqq\wapster aqq\aqq.exe" = protocol=6 | dir=in | app=d:\programy\aqq\wapster aqq\aqq.exe | "TCP Query User{E02FEF70-0B47-4965-8649-7F367377E516}D:\programy\java\bin\javaw.exe" = protocol=6 | dir=in | app=d:\programy\java\bin\javaw.exe | "UDP Query User{06185249-2B18-4EB3-B48D-DFE647C5176A}D:\programy\aqq\wapster aqq\aqq.exe" = protocol=17 | dir=in | app=d:\programy\aqq\wapster aqq\aqq.exe | "UDP Query User{06EE457D-CE75-4438-A177-58DE9CC19BDC}C:\users\jaro\desktop\batman - arkham city\binaries\win32\batmanac.exe" = protocol=17 | dir=in | app=c:\users\jaro\desktop\batman - arkham city\binaries\win32\batmanac.exe | "UDP Query User{1450B187-114F-43D3-9DB9-89FA1B064424}C:\users\jaro\desktop\batman - arkham city\binaries\win32\batmanac.exe" = protocol=17 | dir=in | app=c:\users\jaro\desktop\batman - arkham city\binaries\win32\batmanac.exe | "UDP Query User{31452FFF-BCBE-497C-AD8B-CC6BCFE8D98F}D:\gry\fifa\fifa 12\game\fifa.exe" = protocol=17 | dir=in | app=d:\gry\fifa\fifa 12\game\fifa.exe | "UDP Query User{542B3604-173C-4AFB-8599-D68647E5FC8B}D:\programy\aqq\wapster aqq\aqq.exe" = protocol=17 | dir=in | app=d:\programy\aqq\wapster aqq\aqq.exe | "UDP Query User{5905F25C-A3E1-4AE5-9482-6D79BBA2CDDB}D:\gry\assasin creed ii\assassin's creed ii\server.exe" = protocol=17 | dir=in | app=d:\gry\assasin creed ii\assassin's creed ii\server.exe | "UDP Query User{5F1CBEB2-D0FD-43BF-941E-E3651515191D}C:\program files (x86)\rockstar games\max payne 3\maxpayne3.exe" = protocol=17 | dir=in | app=c:\program files (x86)\rockstar games\max payne 3\maxpayne3.exe | "UDP Query User{61B5AA30-83A3-42C5-8CD0-C99471565BF4}D:\gry\wiedzmin 2\the witcher 2 enhanced edition\bin\witcher2.exe" = protocol=17 | dir=in | app=d:\gry\wiedzmin 2\the witcher 2 enhanced edition\bin\witcher2.exe | "UDP Query User{A8E7E7FB-3127-4946-8B37-6DFF6F7A4CF9}C:\program files (x86)\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe | "UDP Query User{B08E787C-08EA-4431-B630-7BDBE2592770}C:\program files (x86)\origin games\battlefield 3\bf3.exe" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe | "UDP Query User{B5B5DF65-A82D-487D-8A9F-16C6D7EAC48B}D:\gry\nfstr\need for speed the run\need for speed the run.exe" = protocol=17 | dir=in | app=d:\gry\nfstr\need for speed the run\need for speed the run.exe | "UDP Query User{E358CF80-84B6-4CA4-A809-E41996DBAEAB}D:\gry\fifa\fifa 12\game\fifa.exe" = protocol=17 | dir=in | app=d:\gry\fifa\fifa 12\game\fifa.exe | "UDP Query User{F005701C-C297-40A5-B1BC-1A38431FDE43}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "UDP Query User{F264CAEF-1692-4D99-9F35-C28525600688}D:\programy\java\bin\javaw.exe" = protocol=17 | dir=in | app=d:\programy\java\bin\javaw.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{230D1595-57DA-4933-8C4E-375797EBB7E1}" = Bluetooth Win7 Suite (64) "{6CFB1B20-ECAE-488F-9FFB-6AD420882E71}" = iTunes "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour "{75104836-CAC7-444E-A39E-3F54151942F5}" = Apple Mobile Device Support "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{90140000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0015-0415-1000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0016-0415-1000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0018-0415-1000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0019-0415-1000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-001A-0415-1000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001B-0415-1000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0415-1000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-002C-0415-1000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-0043-0000-1000-0000000FF1CE}" = Microsoft Office Office 32-bit Components 2010 "{90140000-0043-0415-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Polish) 2010 "{90140000-0044-0415-1000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-006E-0415-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-00A1-0415-1000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00BA-0415-1000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 301.42 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 301.42 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 301.42 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 301.42 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.12.0213 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.8.15 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.3.16.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{BCCC97EE-E162-448C-8847-59718FF29B04}" = Intel(R) Network Connections 15.6.25.0 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "EPSON Printer and Utilities" = Oprogramowanie drukarki EPSON "GIMP-2_is1" = GIMP 2.8.0 "HitmanPro36" = HitmanPro 3.6 "KLiteCodecPack64_is1" = K-Lite Codec Pack 5.4.0 (64-bit) "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "PROSetDX" = Intel(R) Network Connections 15.6.25.0 "WinRAR archiver" = WinRAR 4.01 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{08B3869E-D282-424C-9AFC-870E04A4BA14}" = Rockstar Games Social Club "{1AA94747-3BF6-4237-9E1A-7B3067738FE1}" = Max Payne 3 "{26A24AE4-039D-4CA4-87B4-2F83216033FF}" = Java(TM) 6 Update 33 "{2864C41B-EF2D-4640-95A2-526276524519}" = Borland C++Builder 6 "{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = JMicron JMB36X Driver "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace "{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver "{579BA58C-F33D-4970-9953-B94B43768AC3}" = Grand Theft Auto IV "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{675DD1E6-637A-4F0E-B6DE-26F45CC26092}_is1" = AC2 server emulator 0.44 by Dormine "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™ "{789289CA-F73A-4A16-A331-54D498CE069F}" = Ventrilo Client "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7CAC6A44-C3DE-4153-ACA6-7524602C789E}" = Facebook Video Calling 1.2.0.159 "{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}" = Assassin's Creed II "{85A9C830-7FA6-4C8C-A1B9-14C8D423B2A4}" = Advanced Office Password Recovery "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver For Windows 7 "{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9FD6F1A8-5550-46AF-8509-271DF0E768B5}" = Dual-Core Optimizer "{A83279FD-CA4B-4206-9535-90974DE76654}" = Apple Application Support "{AC76BA86-7AD7-1045-7B44-A95000000001}" = Adobe Reader 9.5.0 - Polish "{D793423B-FF18-4A54-B9C9-75B3396BAAC4}" = Browser Configuration Utility "{DA909E62-3B45-4BA1-8B58-FCAEBA4BCEC9}" = NVIDIA PhysX "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F138762F-5A1F-4CF0-A5E1-1588EF6088A4}" = Wiedźmin Edycja Rozszerzona "{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable "5513-1208-7298-9440" = JDownloader 0.9 "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "AQQ" = WapSter AQQ "Battlelog Web Plugins" = Battlelog Web Plugins "DAEMON Tools Lite" = DAEMON Tools Lite "EPSON Scanner" = EPSON Scan "ESN Sonar-0.70.4" = ESN Sonar "FIFA 12 (c) EA_is1" = FIFA 12 (c) EA version 1 "Fraps" = Fraps "InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver "JDownloader" = JDownloader "Łatka polonizacyjna GTA IV v1.0" = Łatka polonizacyjna GTA IV v1.0 "MagniDriver" = marvell 91xx console driver "Mozilla Firefox 12.0 (x86 pl)" = Mozilla Firefox 12.0 (x86 pl) "Mozilla Firefox 8.0.1 (x86 pl)" = Mozilla Firefox 8.0.1 (x86 pl) "NapiProjekt_is1" = NapiProjekt 2.0.0 (build 1836) "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Origin" = Origin "PokerStars.eu" = PokerStars.eu "Polipo" = Polipo 1.0.4.1 "Privoxy" = Privoxy (remove only) "PunkBusterSvc" = PunkBuster Services "Rockstar Games Social Club" = Rockstar Games Social Club "searchya" = SearchYa Toolbar on IE and Chrome "The Witcher 2 - Assassins of Kings Enhanced Edition_is1" = The Witcher 2 - Assassins of Kings Enhanced Edition "Tor" = Tor 0.2.2.35 "uTorrent" = µTorrent "Vidalia" = Vidalia 0.2.17 "VLC media player" = VLC media player 1.1.11 [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Google Chrome" = Google Chrome [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-07-16 12:47:17 | Computer Name = Jaro-Komputer | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 7005 Error - 2012-07-16 12:47:17 | Computer Name = Jaro-Komputer | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 7005 Error - 2012-07-16 12:47:18 | Computer Name = Jaro-Komputer | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 2012-07-16 12:47:18 | Computer Name = Jaro-Komputer | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 8003 Error - 2012-07-16 12:47:18 | Computer Name = Jaro-Komputer | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 8003 Error - 2012-07-16 12:47:19 | Computer Name = Jaro-Komputer | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 2012-07-16 12:47:19 | Computer Name = Jaro-Komputer | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 9001 Error - 2012-07-16 12:47:19 | Computer Name = Jaro-Komputer | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 9001 Error - 2012-07-17 16:04:30 | Computer Name = Jaro-Komputer | Source = SideBySide | ID = 16842815 Description = Nie można wygenerować kontekstu aktywacji dla "d:\Programy\Aqq\wapster aqq\System\DelZip179.dll". Błąd w pliku manifestu lub w pliku zasad "d:\Programy\Aqq\wapster aqq\System\DelZip179.dll" w wierszu 8. Wartość "*" atrybutu "language" elementu "assemblyIdentity" jest nieprawidłowa. Error - 2012-07-18 07:23:05 | Computer Name = Jaro-Komputer | Source = Google Update | ID = 20 Description = [ System Events ] Error - 2012-06-03 07:35:36 | Computer Name = Jaro-Komputer | Source = BugCheck | ID = 1001 Description = Error - 2012-06-03 08:21:13 | Computer Name = Jaro-Komputer | Source = Service Control Manager | ID = 7034 Description = Usługa NVIDIA Stereoscopic 3D Driver Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2012-06-03 08:21:15 | Computer Name = Jaro-Komputer | Source = Service Control Manager | ID = 7031 Description = Usługa Apple Mobile Device niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2012-06-03 08:21:15 | Computer Name = Jaro-Komputer | Source = Service Control Manager | ID = 7034 Description = Usługa Browser Configuration Utility Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2012-06-03 08:21:16 | Computer Name = Jaro-Komputer | Source = Service Control Manager | ID = 7031 Description = Usługa KMService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2012-06-03 08:21:16 | Computer Name = Jaro-Komputer | Source = Service Control Manager | ID = 7034 Description = Usługa PnkBstrA niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2012-06-03 08:21:16 | Computer Name = Jaro-Komputer | Source = Service Control Manager | ID = 7034 Description = Usługa NVIDIA Update Service Daemon niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2012-06-03 08:25:05 | Computer Name = Jaro-Komputer | Source = DCOM | ID = 10016 Description = Error - 2012-06-03 08:26:47 | Computer Name = Jaro-Komputer | Source = Service Control Manager | ID = 7023 Description = Usługa Serwer zakończyła działanie; wystąpił następujący błąd: %%14 Error - 2012-06-04 13:17:27 | Computer Name = Jaro-Komputer | Source = BTHUSB | ID = 327696 Description = Uwierzytelnianie wzajemne między lokalnym adapterem Bluetooth a urządzeniem o adresie adaptera Bluetooth (ac:93:2f:c7:3e:25) nie powiodło się. < End of report >