OTL Extras logfile created on: 2012-07-19 18:39:02 - Run 1 OTL by OldTimer - Version 3.2.54.0 Folder = C:\Users\Marioleńka\Desktop Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation Internet Explorer (Version = 7.0.6001.18000) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,99 Gb Total Physical Memory | 1,71 Gb Available Physical Memory | 57,03% Memory free 6,21 Gb Paging File | 5,04 Gb Available in Paging File | 81,25% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 111,88 Gb Total Space | 14,32 Gb Free Space | 12,80% Space Free | Partition Type: NTFS Drive D: | 111,00 Gb Total Space | 77,16 Gb Free Space | 69,51% Space Free | Partition Type: NTFS Drive F: | 3,31 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Drive G: | 488,73 Mb Total Space | 485,80 Mb Free Space | 99,40% Space Free | Partition Type: FAT Computer Name: MARIOLEŃKA-PC | User Name: Marioleńka | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l [HKEY_USERS\S-1-5-21-1141035702-2088694331-1222825941-1003\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiSpyware] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\BitTorrent\bittorrent.exe" = C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent -- (BitTorrent, Inc.) [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0B8D5850-17FD-433F-A43C-BFAF6836D6C9}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{0BEEA51F-526B-4E50-A5C5-060826E4C564}" = rport=138 | protocol=17 | dir=out | app=system | "{15E621F1-1F29-4624-9527-77E256A64496}" = lport=2869 | protocol=6 | dir=in | app=system | "{1D9F0370-F88E-4844-86FB-3ED59367EEF1}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{376C8817-D748-4D94-8BD7-227F58F6F347}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4E9B0A7C-2673-46C5-B767-4D1F122EC022}" = rport=10243 | protocol=6 | dir=out | app=system | "{501EE334-CE48-4714-AD65-443A9F4D5124}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{510182B0-8706-4513-B46F-32EDF09191FB}" = lport=445 | protocol=6 | dir=in | app=system | "{6137B4E5-348A-4D72-8501-3B42C579C83B}" = lport=10243 | protocol=6 | dir=in | app=system | "{628D2187-4C5A-450D-8F00-DB2F36DDF342}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework\v4.0.30319\smsvchost.exe | "{68905B87-A9A8-4753-B5A3-974CAD5CB5C9}" = rport=137 | protocol=17 | dir=out | app=system | "{84A25DFD-3885-4A65-BA84-069B6948FFAC}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{889E1075-CD2C-4C13-85C1-9C2BF1915F0E}" = lport=139 | protocol=6 | dir=in | app=system | "{90570CC9-4F2C-45AE-838D-6DF0177CBE00}" = rport=445 | protocol=6 | dir=out | app=system | "{91F386B6-34C1-44C6-921D-303E41514290}" = lport=137 | protocol=17 | dir=in | app=system | "{97FAD67E-CAD3-4EFD-B2E1-E7D9DE32139D}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{A24C342D-B569-4F0C-9438-3BC7418BA9BA}" = rport=139 | protocol=6 | dir=out | app=system | "{DBE3A1DC-0E2E-43F9-B83C-27F3126CD0D9}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{DF196679-7D25-49E7-9373-9446F4F3A51A}" = lport=138 | protocol=17 | dir=in | app=system | "{F9750732-9115-4F7A-819A-FB441A789DE3}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{20028F11-DBAF-4186-B693-165306943E8D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{245D92E8-5BC0-4455-8EC7-218FBCFDF87A}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{25007539-2BDB-435E-8992-49EA3E138F4B}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{2D054C98-A101-482D-81C1-9B611B4583B8}" = protocol=17 | dir=in | app=c:\program files\autodesk\data management applications\autoloader 2009\inventor 2009\autoloader.exe | "{32B329ED-5F7E-4455-8031-95B4E0897778}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{5B22B2CB-A8BA-4396-B3E5-08006004D216}" = protocol=17 | dir=in | app=c:\program files\autodesk\landxml reporting 7\reporting.exe | "{5E304F0E-D8BA-4796-A3C9-97793DD4CC61}" = protocol=17 | dir=in | app=c:\program files\sweetim\communicator\sweetpacksupdatemanager.exe | "{5E6A3165-2D74-42AC-B93C-A004731833CA}" = protocol=6 | dir=in | app=c:\program files\autodesk\vault 2009\explorer\connectivity.vault.exe | "{5F1F4608-A018-4D84-92E2-9D341B228A5D}" = protocol=6 | dir=out | app=system | "{5FE8D9D3-C0DF-44C0-851F-0E1BC64294EA}" = protocol=6 | dir=in | app=c:\program files\autodesk\autodesk design review\designreview.exe | "{64C1B932-50EF-4790-A594-11584BB24144}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{665C7918-7F5E-43FB-B375-2D0A06DD6B43}" = dir=in | app=c:\program files\cyberlink\powerdvd\powerdvd.exe | "{6C0D7E42-4D62-4B47-8C56-15038993F36D}" = protocol=17 | dir=in | app=c:\program files\autodesk\vault 2009\explorer\connectivity.vault.exe | "{7EE968DD-FE4D-4B88-9C56-55B32271D584}" = protocol=6 | dir=in | app=c:\windows\system32\msiexec.exe | "{84B9995C-A56C-4D73-87DA-34612D2B9EAD}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{A2E3D340-DADC-495E-8ED7-5CA44C7E88F6}" = protocol=17 | dir=in | app=c:\windows\system32\msiexec.exe | "{A65D0A92-C6B1-4F1C-8F80-6ABA1E3C37D1}" = protocol=17 | dir=in | app=c:\program files\dna\btdna.exe | "{AAB7C0A3-48BB-4254-A151-219F198FCF24}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{AD7054A8-6E91-467B-87F1-120FB2B35C29}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{B9EBD14B-FC2A-49D1-B970-1FCB8641025E}" = protocol=6 | dir=in | app=c:\users\marioleńka\appdata\local\akamai\netsession_win.exe | "{BBA0A5A2-70F6-4E4F-A662-9A7B3D72D00E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{BCD3E88B-9F26-4093-944D-A57FD752ABF0}" = protocol=6 | dir=in | app=c:\program files\autodesk\landxml reporting 7\reporting.exe | "{C0CB3C96-6211-4E43-962E-0AFED01F7D6C}" = protocol=6 | dir=in | app=c:\users\marioleńka\downloads\sweetimsetup.exe | "{C61D827C-D8D4-44E3-BBFC-923A606011BB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{CDEA49E6-6C45-4E66-9AAA-4F6DF56C304A}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{CF86649F-1988-437C-BDB0-303402DF4BE4}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{D3580C49-D641-4B4D-8038-56F693A31F23}" = protocol=6 | dir=in | app=c:\program files\dna\btdna.exe | "{D472EDFE-7717-4B18-8D8B-722970D102EF}" = protocol=6 | dir=in | app=c:\program files\sweetim\communicator\sweetpacksupdatemanager.exe | "{D7A477C7-6B64-42CA-B702-C5F7D88B7F46}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{D870FF2E-58CC-4084-BC89-FD14B00FC606}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{DBFA1431-59F2-40A3-95A7-14C6F86F24C2}" = protocol=17 | dir=in | app=c:\program files\autodesk\autodesk design review\designreview.exe | "{DFF7D19C-82FF-4E74-AF5A-C41F1D4D8478}" = protocol=6 | dir=in | app=c:\program files\autodesk\data management applications\autoloader 2009\inventor 2009\autoloader.exe | "{E9863485-B049-4FA4-950B-95D0CEB922DA}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{EBC19711-5F0B-4920-BE3E-55A9E06011D8}" = dir=in | app=c:\program files\cyberlink\powerdirector\pdr.exe | "{EDE6DB00-9C98-4856-880B-F15972A9D602}" = protocol=17 | dir=in | app=c:\users\marioleńka\downloads\sweetimsetup.exe | "{FE0173D2-FB31-4CB4-BB5A-FD4EAF845D1F}" = protocol=17 | dir=in | app=c:\users\marioleńka\appdata\local\akamai\netsession_win.exe | "TCP Query User{003BCB0E-A197-417A-87A5-55224210841C}C:\program files\nowe gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "TCP Query User{1C95AAC2-A412-403A-9B2F-840E50F97084}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{39164F56-9CE3-4B83-A601-E5E272D7C964}C:\program files\nowe gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "TCP Query User{3F2D03DC-5B75-4B00-9A71-CE9907E16725}C:\program files\ares\ares.exe" = protocol=6 | dir=in | app=c:\program files\ares\ares.exe | "TCP Query User{4419EFC6-6392-42FE-98F1-D5FA2644D499}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "TCP Query User{4629C051-6635-417C-9C58-F841E70D33E7}C:\program files\bearshare applications\bearshare\bearshare.exe" = protocol=6 | dir=in | app=c:\program files\bearshare applications\bearshare\bearshare.exe | "TCP Query User{5790BC77-EA76-406D-8E22-64C6E1A5C0E2}C:\users\marioleńka\documents\god\god.exe" = protocol=6 | dir=in | app=c:\users\marioleńka\documents\god\god.exe | "TCP Query User{59DBB96F-1D3D-4E46-BE87-0B669FFC84FD}C:\users\marioleńka\program files\dna\btdna.exe" = protocol=6 | dir=in | app=c:\users\marioleńka\program files\dna\btdna.exe | "TCP Query User{6FDC9182-2F84-473B-822A-18686E881642}C:\users\marioleńka\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\marioleńka\appdata\local\akamai\netsession_win.exe | "TCP Query User{7E07C376-BBD2-4886-99DF-56878C25C9CE}C:\program files\team17 software ltd\wormsforts\wf.exe" = protocol=6 | dir=in | app=c:\program files\team17 software ltd\wormsforts\wf.exe | "TCP Query User{7EB3F34B-A216-4242-8A8A-4902152E7390}C:\program files\wru\wru.exe" = protocol=6 | dir=in | app=c:\program files\wru\wru.exe | "TCP Query User{82F50D06-1EAE-4602-BA69-2FBF3C40217D}C:\program files\wru\wru.exe" = protocol=6 | dir=in | app=c:\program files\wru\wru.exe | "TCP Query User{8C63C008-7704-4B05-A21D-039E98B28534}C:\program files\bittorrent\bittorrent.exe" = protocol=6 | dir=in | app=c:\program files\bittorrent\bittorrent.exe | "TCP Query User{A40AB46C-D6EB-4807-B5A8-B1D0EF9C4613}C:\program files\ares\ares.exe" = protocol=6 | dir=in | app=c:\program files\ares\ares.exe | "TCP Query User{A503B115-3C84-40DA-B19E-091AC6AF0BCD}C:\program files\team17 software ltd\wormsforts\wf.exe" = protocol=6 | dir=in | app=c:\program files\team17 software ltd\wormsforts\wf.exe | "TCP Query User{A7A2682C-99C3-4E0D-B8FF-D7E2AA83CE9F}C:\users\marioleńka\documents\god\god.exe" = protocol=6 | dir=in | app=c:\users\marioleńka\documents\god\god.exe | "TCP Query User{CCC5A5D6-2CD7-4B5C-8268-D24DE01C32A6}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{E0003038-904C-4AD5-9CD6-40E091657A5A}C:\program files\bearshare applications\bearshare\bearshare.exe" = protocol=6 | dir=in | app=c:\program files\bearshare applications\bearshare\bearshare.exe | "TCP Query User{E49BB260-5BE9-469E-81C3-21EE38A66BC6}C:\users\marioleńka\program files\dna\btdna.exe" = protocol=6 | dir=in | app=c:\users\marioleńka\program files\dna\btdna.exe | "UDP Query User{07FE68D6-6A76-4030-91D0-FBA70C21155A}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "UDP Query User{20B6EF0C-6490-4F8C-828B-CB43A3F7A4BB}C:\program files\bittorrent\bittorrent.exe" = protocol=17 | dir=in | app=c:\program files\bittorrent\bittorrent.exe | "UDP Query User{2422E6F0-0FF0-44CD-861C-E0395F05CB49}C:\program files\bearshare applications\bearshare\bearshare.exe" = protocol=17 | dir=in | app=c:\program files\bearshare applications\bearshare\bearshare.exe | "UDP Query User{370B0654-71B1-40B6-9B38-B3922D23726B}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{3DF552DB-9718-4442-93B9-519C7F14FC62}C:\program files\nowe gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "UDP Query User{5FFBCE77-0566-42ED-BB28-B6077AF0B97A}C:\program files\ares\ares.exe" = protocol=17 | dir=in | app=c:\program files\ares\ares.exe | "UDP Query User{62B719C9-EF10-4F9B-8CAC-C6CD5E9ACCD5}C:\program files\ares\ares.exe" = protocol=17 | dir=in | app=c:\program files\ares\ares.exe | "UDP Query User{6312AD91-3E31-4090-9D89-DF563B6E22A9}C:\users\marioleńka\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\marioleńka\appdata\local\akamai\netsession_win.exe | "UDP Query User{7184FD49-547F-4E41-85B3-F950AB61011B}C:\program files\wru\wru.exe" = protocol=17 | dir=in | app=c:\program files\wru\wru.exe | "UDP Query User{7E1D43CA-8A5E-406A-B006-9889B1D56EC8}C:\users\marioleńka\program files\dna\btdna.exe" = protocol=17 | dir=in | app=c:\users\marioleńka\program files\dna\btdna.exe | "UDP Query User{867CBB59-6104-42A1-A474-C4EB5DD1E91B}C:\users\marioleńka\documents\god\god.exe" = protocol=17 | dir=in | app=c:\users\marioleńka\documents\god\god.exe | "UDP Query User{88249021-7092-4A77-AA32-9AD72BD249EB}C:\program files\nowe gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "UDP Query User{8BF5032C-3BDD-471E-9DDC-0C1A212290D7}C:\program files\wru\wru.exe" = protocol=17 | dir=in | app=c:\program files\wru\wru.exe | "UDP Query User{9417FA74-4107-4EE8-8506-99D2D9908190}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{B0172A93-2EB7-4172-8498-17E47634B13F}C:\program files\bearshare applications\bearshare\bearshare.exe" = protocol=17 | dir=in | app=c:\program files\bearshare applications\bearshare\bearshare.exe | "UDP Query User{C2D9485E-E091-4A9C-9D70-5D6B9FABACEE}C:\program files\team17 software ltd\wormsforts\wf.exe" = protocol=17 | dir=in | app=c:\program files\team17 software ltd\wormsforts\wf.exe | "UDP Query User{C4EC2CF5-F7E5-4E99-BB73-E6156BF3A234}C:\program files\team17 software ltd\wormsforts\wf.exe" = protocol=17 | dir=in | app=c:\program files\team17 software ltd\wormsforts\wf.exe | "UDP Query User{E95ADD95-77F0-4F1E-B890-9167928E3854}C:\users\marioleńka\documents\god\god.exe" = protocol=17 | dir=in | app=c:\users\marioleńka\documents\god\god.exe | "UDP Query User{F6995AE5-180B-4AEF-B4AC-41F35A0DF978}C:\users\marioleńka\program files\dna\btdna.exe" = protocol=17 | dir=in | app=c:\users\marioleńka\program files\dna\btdna.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator "{004C5DA2-2051-4D25-94BA-51CF810C91EB}" = LightScribe System Software 1.12.37.1 "{00AF10C1-44BD-4862-9D7F-24E6BA3E87FD}" = imagine digital freedom - Samsung "{03D1988F-469F-4843-8E6E-E5FE9D17889D}" = WIDCOMM Bluetooth Software 6.0.1.6300 "{04983D37-2202-4295-94A2-8B547C66133F}" = Atheros WLAN Client "{0817A2F5-F1FC-4FA0-9C40-3E12B41DDD73}_is1" = HEXelon MAX 5.03 "{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended "{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}" = Samsung Recovery Solution III "{17283B95-21A8-4996-97DA-547A48DB266F}" = Easy Display Manager "{1EE9BBA1-312F-4EC0-9DEA-A8FE22BBABAA}_is1" = 20Dollars2Surf 1.1 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite "{20C45B32-5AB6-46A4-94EF-58950CAF05E5}" = EPSON Attach To Email "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}" = EPSON Scan Assistant "{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}" = Microsoft SQL Server 2005 Express Edition (MSSMLBIZ) "{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{32D6A58F-9659-446C-BBFC-E6F2B41F24DC}" = Samsung Magic Doctor "{36BEAD11-8577-49AD-9250-E06A50AE87B0}" = Microsoft SOAP Toolkit 2.0 SP2 "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{3F7AC10A-8B56-4DB1-91F8-063957684258}" = Tango "{40BF1E83-20EB-11D8-97C5-0009C5020658}" = CyberLink Power2Go "{42EDF895-158C-484E-A7F2-42B90759F281}" = Camera RAW Plug-In for EPSON Creativity Suite "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4ac40384-37ba-421c-b14c-2ecbe4403817}" = Business Contact Manager z dodatkiem SP2 dla programu Outlook 2007 "{4BDFD2CE-6329-42E4-9801-9B3D1F10D79B}" = Adobe® Photoshop® Album Starter Edition 3.0 "{4EA8EA5D-8E46-4698-9BF7-2F2AD8E1C185}" = Easy Network Manager 3.0 "{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}" = Microsoft SQL Server Setup Support Files (English) "{5545EEE1-FA36-4F76-B6BE-5696E7F4E2D6}" = VBA (2627.01) "{5783F2D7-9000-0415-0002-0060B0CE6BBA}" = AutoCAD Civil 3D 2011 - Polski "{5783F2D7-9000-0415-1002-0060B0CE6BBA}" = Pakiet językowy programu AutoCAD Civil 3D 2011 – język polski "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites "{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD "{685707A4-911C-468D-BFC4-64A50E5E3A0C}" = Samsung Update Plus "{6F730513-8688-4C3C-90A3-6B9792CE2EF3}" = Easy Battery Manager "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK "{71A51B09-E7D3-11DB-A386-005056C00008}" = Vimicro UVC Camera "{7336143C-44FD-4AAC-B53A-158FEA08489D}" = OpenOffice.ux.pl 3.3 "{7670D32F-DAE6-4E49-8C8B-B3F08B5B1686}" = Microsoft SQL Server Native Client "{7683B745-6060-41FD-AA75-0BBB383FEAD4}" = SweetIM for Messenger 3.7 "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{774C0434-9948-4DEE-A14E-69CDD316E36C}" = Internet Explorer Toolbar 4.6 by SweetPacks "{7B4D193B-D76D-308B-8B12-5D9BB1CBCE6C}" = Microsoft Visual Basic Power Packs 3.0 "{804F1285-8CBF-408D-8CDC-D4D40003B2E4}" = PlayCamera "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8A8F8391-4C2C-4BE1-A984-CD4A5A546467}" = EPSON Easy Photo Print "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_PROHYBRIDR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_PROHYBRIDR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_PROHYBRIDR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_PROHYBRIDR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_PROHYBRIDR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_PROHYBRIDR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_PROHYBRIDR_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_PROHYBRIDR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_PROHYBRIDR_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_PROHYBRIDR_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90280415-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Professional z programem FrontPage "{90A40415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office 2003 Web Components "{91120000-0031-0000-0000-0000000FF1CE}" = Microsoft Office Professional Hybrid 2007 "{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}" = FARO LS 1.1.406.58 "{955597D8-E5E1-474D-B647-60AC44566D24}" = Play AVStation "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A939D341-5A04-4E0A-BB55-3E65B386432D}" = Składniki łączności pakietu Microsoft Office Small Business "{AC76BA86-7AD7-1045-7B44-A80000000000}" = Adobe Reader 8 - Polish "{B7A0CE06-068E-11D6-97FD-0050BACBF861}" = PowerProducer "{BA5F3E0E-8F3E-47BD-88E4-AD3EB5225F51}" = Oprogramowanie Intel(R) PROSet/Wireless WiFi "{BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}" = User Guide "{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint "{C98BBC25-490C-4F3F-81D8-5D12C11732DF}" = Panda Cloud Antivirus "{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime "{E59113EB-0285-4BFD-A37A-B79EAC6B8F4B}" = Microsoft SQL Server Compact 3.5 SP1 English "{E7084B89-69E0-46B3-A118-8F99D06988CD}" = Microsoft SQL Server VSS Writer "{EF367AA4-070B-493C-9575-85BE59D789C9}" = Easy SpeedUp Manager "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FB697452-8CA4-46B4-98B1-165C922A2EF3}" = Update Manager for SweetPacks 1.0 "{FEE5DEDD-2EE8-451B-B8E8-967146E0B569}" = Hydraflow Express Extension for AutoCAD Civil 3D 2009 "Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Agere Systems Soft Modem" = Agere Systems HDA Modem "Akamai" = Akamai NetSession Interface Service "AutoCAD Civil 3D 2011 - Polski" = AutoCAD Civil 3D 2011 - Polski "avast" = avast! Free Antivirus "Bullzip PDF Printer_is1" = Bullzip PDF Printer 7.2.0.1320 "Business Contact Manager" = Business Contact Manager z dodatkiem SP2 dla programu Outlook 2007 "Epanet PL_is1" = Epanet 2 PL "EPSON Scanner" = EPSON Scan "EPSON Stylus SX200_SX400_TX200_TX400 Przewodnik użytkownika" = EPSON Stylus SX200_SX400_TX200_TX400 Podręcznik "EPSON Stylus SX400 Series" = EPSON Stylus SX400 Series Printer Uninstall "ESBCalc6_is1" = ESBCalc v7.0.0 "Gadu-Gadu 10" = Gadu-Gadu 10 "InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5}" = EPSON Attach To Email "InstallShield_{4EA8EA5D-8E46-4698-9BF7-2F2AD8E1C185}" = Easy Network Manager 3.0 "InstallShield_{685707A4-911C-468D-BFC4-64A50E5E3A0C}" = Samsung Update Plus "InstallShield_{955597D8-E5E1-474D-B647-60AC44566D24}" = Play AVStation "KLiteCodecPack_is1" = K-Lite Codec Pack 4.2.5 (Full) "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft Report Viewer Redistributable 2008 (KB971118)" = Microsoft Report Viewer Redistributable 2005 "Microsoft SQL Server 2005" = Microsoft SQL Server 2005 "Mozilla Firefox 14.0.1 (x86 pl)" = Mozilla Firefox 14.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "netrcacm Uninstall" = RCA Digital Cable Modem "NVIDIA Drivers" = NVIDIA Drivers "Panda Cloud Antivirus" = Panda Cloud Antivirus "PROHYBRIDR" = 2007 Microsoft Office system "ProInst" = Intel PROSet Wireless "SynTPDeinstKey" = Synaptics Pointing Device Driver "WinGimp-2.0_is1" = GIMP 2.4.6 "WinRAR archiver" = WinRAR 4.10 (32-bit) "XviD MPEG4 Video Codec v1.0.3" = XviD MPEG4 Video Codec v1.0.3 (remove only) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1141035702-2088694331-1222825941-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Akamai" = Akamai NetSession Interface "FoxTab PDF Creator" = FoxTab PDF Creator "GabPath" = GabPath [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-07-19 12:25:01 | Computer Name = Marioleńka-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-07-19 12:25:01 | Computer Name = Marioleńka-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-07-19 12:25:01 | Computer Name = Marioleńka-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-07-19 12:25:01 | Computer Name = Marioleńka-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-07-19 12:25:01 | Computer Name = Marioleńka-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-07-19 12:25:01 | Computer Name = Marioleńka-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-07-19 12:25:02 | Computer Name = Marioleńka-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-07-19 12:25:02 | Computer Name = Marioleńka-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-07-19 12:25:02 | Computer Name = Marioleńka-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-07-19 12:25:02 | Computer Name = Marioleńka-PC | Source = Windows Search Service | ID = 3013 Description = [ OSession Events ] Error - 2011-01-18 12:21:00 | Computer Name = Marioleńka-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.6500.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 864 seconds with 540 seconds of active time. This session ended with a crash. Error - 2011-01-18 12:37:10 | Computer Name = Marioleńka-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.6500.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 255 seconds with 240 seconds of active time. This session ended with a crash. Error - 2012-05-07 12:09:48 | Computer Name = Marioleńka-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.6600.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 3607 seconds with 1080 seconds of active time. This session ended with a crash. Error - 2012-05-07 12:22:42 | Computer Name = Marioleńka-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.6600.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 303 seconds with 180 seconds of active time. This session ended with a crash. [ System Events ] Error - 2010-03-03 12:17:28 | Computer Name = Marioleńka-PC | Source = Service Control Manager | ID = 7026 Description = Error - 2010-03-03 12:19:43 | Computer Name = Marioleńka-PC | Source = Microsoft-Windows-LanguagePackSetup | ID = 1001 Description = Error - 2010-03-04 03:31:54 | Computer Name = Marioleńka-PC | Source = HTTP | ID = 15016 Description = Error - 2010-03-04 03:33:20 | Computer Name = Marioleńka-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2010-03-04 03:33:20 | Computer Name = Marioleńka-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2010-03-04 03:33:20 | Computer Name = Marioleńka-PC | Source = Service Control Manager | ID = 7026 Description = Error - 2010-03-04 03:35:21 | Computer Name = Marioleńka-PC | Source = Microsoft-Windows-LanguagePackSetup | ID = 1001 Description = Error - 2010-03-04 15:01:40 | Computer Name = Marioleńka-PC | Source = Dhcp | ID = 1001 Description = Komputerowi nie został przypisany adres z sieci (przez serwer DHCP) dla karty sieciowej o adresie 0021638D82B7. Wystąpił następujący błąd: %%1223. Komputer będzie dalej próbował sam uzyskać adres z serwera adresów sieciowych (DHCP). Error - 2010-03-04 15:01:41 | Computer Name = Marioleńka-PC | Source = Dhcp | ID = 1001 Description = Komputerowi nie został przypisany adres z sieci (przez serwer DHCP) dla karty sieciowej o adresie 0021638D82B7. Wystąpił następujący błąd: %%1223. Komputer będzie dalej próbował sam uzyskać adres z serwera adresów sieciowych (DHCP). Error - 2010-03-05 18:47:50 | Computer Name = Marioleńka-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 23:46:38 na 2010-03-05 było nieoczekiwane. < End of report >