OTL Extras logfile created on: 2012-07-21 16:43:11 - Run 2 OTL by OldTimer - Version 3.2.54.0 Folder = C:\Users\TEDI\Downloads Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,99 Gb Total Physical Memory | 1,11 Gb Available Physical Memory | 55,78% Memory free 3,98 Gb Paging File | 3,25 Gb Available in Paging File | 81,69% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 50,01 Gb Total Space | 16,06 Gb Free Space | 32,13% Space Free | Partition Type: NTFS Drive D: | 97,04 Gb Total Space | 24,77 Gb Free Space | 25,53% Space Free | Partition Type: NTFS Computer Name: TEDI-KOMPUTER | User Name: TEDI | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [ChomikBox.Upload] -- "C:\Program Files\ChomikBox\\ChomikBox.exe" -u"%1" ( ) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 "UpdatesDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{098D96C2-5790-4193-BF2D-6E134ED67058}" = lport=445 | protocol=6 | dir=in | app=system | "{1902AB5B-2E1E-415E-843B-B162906BC821}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{1ABAF390-E462-4333-9799-48BB9D03B4BF}" = rport=10243 | protocol=6 | dir=out | app=system | "{299A82EF-34C1-4D07-B830-2782E8FD5B90}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{2EDA06BD-C85D-4037-8DA6-6EB278DEBFEB}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{54D39D4E-C11C-498C-B585-1419897C2934}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{56BD4101-FD0F-4081-9671-CE012852D2E4}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{6EB7AC9C-5949-4D56-9571-603D7755F696}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{756DEDD9-0A99-45C7-8C4E-FF745A76EF34}" = rport=138 | protocol=17 | dir=out | app=system | "{79634079-7A91-4769-B7F5-169A807B21F0}" = rport=137 | protocol=17 | dir=out | app=system | "{8A6242B9-A4D6-4334-A51D-8B3382785759}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office12\outlook.exe | "{9252DC29-41AF-4B7A-BB7D-35D6D8B75FC7}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{997C6857-A498-4862-A27D-43B5165685EF}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{9EE947C7-C3BC-43D3-955C-C9F17D095E40}" = rport=139 | protocol=6 | dir=out | app=system | "{A13A0A67-4560-4976-A3C7-085265EC7F4A}" = rport=445 | protocol=6 | dir=out | app=system | "{A78A0E9B-6E31-4301-8685-62F36DE00A1A}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{AB5D6C2C-2698-4D34-BABD-86C92F732842}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{B2D3D35C-51C8-467C-8A18-E3FE833F66CC}" = lport=10243 | protocol=6 | dir=in | app=system | "{C3526493-D391-47D8-9684-0351470FF068}" = lport=138 | protocol=17 | dir=in | app=system | "{CE6EE065-A170-4B16-82AF-7735FA4830DC}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{DFC4A8CE-6816-469A-AACE-F602DB2B7D06}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{E2BC9AC8-D15F-4FCB-B366-C3160FA78CB2}" = lport=137 | protocol=17 | dir=in | app=system | "{F0E53621-F6DB-474C-BF3D-3798C0B0C84E}" = lport=2869 | protocol=6 | dir=in | app=system | "{F4700C1C-95D3-4677-99D2-19CBFEFD4571}" = lport=139 | protocol=6 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{019AC164-AD59-465C-AC69-3BDA030936EB}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{06AB323A-C11C-4C01-9BBF-6AD6DAF027ED}" = protocol=17 | dir=in | app=c:\windows\system32\muzapp.exe | "{0AE878DC-DFA6-4FF0-9B93-62365B0DB49D}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{0D5FF163-4E6C-4477-8783-5B9D078E111E}" = protocol=17 | dir=in | app=c:\program files\voipdiscount.com\voipdiscount\voipdiscount.exe | "{15D16E21-C603-4ADC-919E-5E4831C8A84E}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{167BB6C6-6A3D-449D-A7B8-967D19FEF27C}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{1B999E29-603B-4612-99D6-A0BE1C96CBC2}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{206868A1-E47F-4933-B2C2-25039EE8E647}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{25316E6E-A34E-46D1-B03E-3ABDD9AC4DDF}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{26EB89C2-D475-4232-A1BC-677E7776681E}" = protocol=17 | dir=in | app=c:\program files\ivt corporation\bluesoleil\bluesoleilcs.exe | "{2851B58A-E9F2-49DE-B916-542F09DA67BA}" = protocol=6 | dir=in | app=c:\windows\system32\muzapp.exe | "{2A275235-1F3C-4269-B2DD-06A10E7F2FD0}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version7\teamviewer_service.exe | "{2DF9F443-2983-4DED-9CB6-C1D260F4EB40}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{2EAC1ADA-1B6E-4FA9-A79B-0B54A49D88E4}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{33087B4E-2E21-4312-93D5-5636997ED424}" = protocol=6 | dir=in | app=c:\program files\hp\hp deskjet 2050 j510 series\bin\usbsetup.exe | "{36EAB0B8-8FD2-46C2-9D6E-4159DA9DBFE7}" = protocol=6 | dir=in | app=c:\users\tedi\desktop\bluesoleil 6.4.240.2 exsite.pl\crack\bluesoleilcs.exe | "{3E48EE80-325B-4271-A234-9A56A4182D2E}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{438BD5FB-7A18-42AC-9ECB-13AF601DD537}" = protocol=17 | dir=in | app=c:\program files\bittorrent\bittorrent.exe | "{44BCFFEC-B391-46CC-8BF4-CC084ED1E015}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{46B9CFFE-3D3C-4AF1-9365-F7C2D2BDF1AD}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version7\teamviewer.exe | "{47EE7300-758A-46EB-B25E-7E9D4E07DD10}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{4A7FC605-0E39-4A26-9727-E561DBE5CC46}" = protocol=17 | dir=in | app=c:\program files\hp\hp deskjet 2050 j510 series\bin\usbsetup.exe | "{4EDC9D50-2F22-4D0E-B239-BD22A3DDD53B}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{4F1966AA-3716-4EA1-A360-A4C13219C980}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{4F6A4725-633A-475B-B80C-3FBD5E073D46}" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe | "{571A1B95-DCCF-4953-9ED5-978FB8CBEC4A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{592B2398-B2D1-498E-956F-81F6AD48C0E8}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{5E893ADA-7D19-4B34-97D7-94F2E8CD5169}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{5F1CE35D-46EA-4C61-B9D7-E4DACCB11569}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "{6067070E-787B-419D-A9AB-D96F6AD7EF6C}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{62F363EA-E995-48D5-8AA9-74B0D87FF84B}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version7\teamviewer.exe | "{6370F056-4CD5-46C0-AB15-5D0FF7CBFE7D}" = protocol=6 | dir=in | app=c:\program files\steam\steam.exe | "{64B3ED1A-83B5-4466-AC9B-3E0D9CB99D68}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{64F5C087-F8E0-4AD9-B59B-C39C691BA5D8}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{662FF7BB-B3A2-443D-949E-3CCC6C6D08BF}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{66619C18-60C7-4741-983A-1EA720BD1017}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{6713A597-A9B1-4069-B760-706797A72A7D}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{6A4F3F60-DED5-4A68-B6D1-4EDE897C800F}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{71EAE939-0E29-4611-8388-A1035F5DDE8C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{78F2AA4C-28D0-4C28-BEBC-D9B81EDE7948}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{7B3DC30C-C3CA-4ED4-B085-AC0BFCE651EC}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{7DD2AD11-55B7-4E7E-90E7-FA9604EDB324}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{7E5039FF-BBF4-48D4-A239-63540B306477}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{834A6453-B041-4F2D-80B8-AE09BB8AEED6}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{8D06EDB3-F8AC-4FE3-8FE7-F267B6663777}" = protocol=6 | dir=in | app=c:\program files\voipdiscount.com\voipdiscount\voipdiscount.exe | "{91DB3BAA-4E95-48EF-9BB3-2EC975532C5D}" = dir=in | app=c:\program files\skype\plugin manager\skypepm.exe | "{91E33D8B-4584-4CF9-8E25-13CF9317B2AE}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{9617CDB1-4402-402A-87B4-BE4B28EED08F}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{9842F8E5-CCCE-4D74-AC40-D0B128A79E2D}" = protocol=17 | dir=in | app=c:\program files\steam\steam.exe | "{9A29C53B-4663-482C-8D87-1FAACC2F748C}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{9F88A272-7A84-41A8-ABFD-CE0D9A871682}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version6\teamviewer.exe | "{A11EB0FA-0C9E-448C-8DD6-E55A501A02BE}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{A1EDBE16-49F1-4271-81EF-37DED3FA8ACF}" = protocol=6 | dir=in | app=c:\program files\voipdiscount.com\voipdiscount\voipdiscount.exe | "{A2C4C1FB-E392-4D2C-82E0-19DF3B77E996}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{A4BF8EF7-AFD5-4056-9739-01E9FC7411DD}" = protocol=17 | dir=in | app=c:\program files\voipdiscount.com\voipdiscount\voipdiscount.exe | "{A9B09A5D-B7F4-4FA0-A0B3-C1D19EED4785}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{AA116563-AE85-46B6-B499-1FA10BCFDCF3}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{AA9FF3A2-03FF-4742-88B2-64D6DA8F4CC3}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version6\teamviewer_service.exe | "{AF21E42A-A7AD-4B95-ABF1-5BCEB45E75A7}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{B0CA1645-5416-4A30-9D78-A4E9B24A540C}" = protocol=6 | dir=in | app=c:\program files\bittorrent\bittorrent.exe | "{B9FB4ADC-9825-4E95-9D57-EF57DC9E4F84}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{C6849A69-899F-4D90-8C27-3D969788DF63}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe | "{C6C1376B-DC6D-4128-9639-5D199A9A68ED}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{CCA5FF70-2126-4D99-AD33-36E0F177B7FA}" = protocol=6 | dir=in | app=c:\program files\ivt corporation\bluesoleil\bluesoleilcs.exe | "{CD569774-41ED-4884-9D7D-B631CF2E6578}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version7\teamviewer_service.exe | "{CEF4EC69-0D4C-48EC-A143-0677AFAFA25F}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "{CFFEC86A-E000-4153-8B10-A87C69A49A06}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version6\teamviewer_service.exe | "{D19E597A-E357-4C4C-B493-EC033D98D65D}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version6\teamviewer.exe | "{D59B5216-E328-46DA-8A38-A39F09121C1F}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{DA274A11-E02D-46B8-83AA-9797B835D952}" = protocol=6 | dir=out | app=system | "{DFEAC3AF-686D-4E39-8445-5A0FBC79451B}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{E18CF72D-86A5-4722-B516-1BD1D0C6ED7F}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{EF8069D6-85BD-47A9-B684-15A23C83F3B5}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{F090EF59-07E2-455F-8EA9-7E600DC9C757}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{F1365072-2947-4162-B29F-BDD32C928E79}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{F4CC4D48-2B54-4D0B-BDC9-772CDD82307A}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{F523A986-BD04-4021-8AEA-C717C7D067DE}" = protocol=17 | dir=in | app=c:\users\tedi\desktop\bluesoleil 6.4.240.2 exsite.pl\crack\bluesoleilcs.exe | "{F7BCF9C3-A963-4749-AC19-472AC5A66C06}" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe | "{F903C934-0B35-43B2-933F-E1D6FABC0AE3}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "TCP Query User{0232CA6A-1889-4AEE-8DC4-BC294C40E7C0}C:\totalcmd\totalcmd.exe" = protocol=6 | dir=in | app=c:\totalcmd\totalcmd.exe | "TCP Query User{6336E5C0-F743-4FA0-98DF-9BAC16F14F5E}C:\users\tedi\appdata\local\temp\rar$ex01.743\dreamboxedit2.01.00\dreamboxedit.exe" = protocol=6 | dir=in | app=c:\users\tedi\appdata\local\temp\rar$ex01.743\dreamboxedit2.01.00\dreamboxedit.exe | "TCP Query User{8703C7C1-07AC-4C1F-B0F2-4C060937A29E}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "TCP Query User{B4987DA2-32A8-4AD8-8A4C-EE736D26BD3A}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe | "TCP Query User{C12EF058-4970-493E-94EB-D9BEE9881EFC}C:\games\world_of_tanks\worldoftanks.exe" = protocol=6 | dir=in | app=c:\games\world_of_tanks\worldoftanks.exe | "TCP Query User{CA4357EF-A090-4B48-9A97-3D0A2B236398}C:\games\world_of_tanks\wotlauncher.exe" = protocol=6 | dir=in | app=c:\games\world_of_tanks\wotlauncher.exe | "UDP Query User{0FEC5377-F457-4EE7-B42F-3BF768C7D709}C:\users\tedi\appdata\local\temp\rar$ex01.743\dreamboxedit2.01.00\dreamboxedit.exe" = protocol=17 | dir=in | app=c:\users\tedi\appdata\local\temp\rar$ex01.743\dreamboxedit2.01.00\dreamboxedit.exe | "UDP Query User{19C905AF-D4F9-4E5A-8CEF-CE474A02E18E}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "UDP Query User{8DB7AF54-7311-43CF-82E2-B91FDA478A36}C:\totalcmd\totalcmd.exe" = protocol=17 | dir=in | app=c:\totalcmd\totalcmd.exe | "UDP Query User{9060E667-1111-4BAC-A126-4879F8D15F31}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe | "UDP Query User{F15D366B-FAA7-4AB4-BD2E-0212B741E5A5}C:\games\world_of_tanks\worldoftanks.exe" = protocol=17 | dir=in | app=c:\games\world_of_tanks\worldoftanks.exe | "UDP Query User{F7833BE9-5E11-43D6-AADE-1659B7F57651}C:\games\world_of_tanks\wotlauncher.exe" = protocol=17 | dir=in | app=c:\games\world_of_tanks\wotlauncher.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{26A24AE4-039D-4CA4-87B4-2F83216024FF}" = Java(TM) 6 Update 29 "{2CCBABCB-6427-4A55-B091-49864623C43F}" = Google Toolbar for Firefox "{34610DE0-3C13-42CA-8E32-01FFA38AB6E8}" = PC Connectivity Solution "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4F7B7598-88EA-4442-A54E-65EADCF06D97}" = ChomikBox "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7A3DF2E2-CF13-44FB-A93E-F71D5381DB3F}" = HP Deskjet 2050 J510 series Pomoc "{7BE15435-2D3E-4B58-867F-9C75BED0208C}" = QuickTime "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A83279FD-CA4B-4206-9535-90974DE76654}" = Apple Application Support "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AA59DDE4-B672-4621-A016-4C248204957A}" = Skype™ 5.5 "{AC76BA86-7AD7-1045-7B44-AA1000000001}" = Adobe Reader X (10.1.3) - Polish "{B0319FCD-559D-4335-ADB3-7B57C4D33DC2}" = Advanced IP Scanner "{B3B5F219-79E6-4307-8AC1-9B32BE37CD48}" = ESET NOD32 Antivirus "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{C0A871F9-D580-4404-9A69-A02CF3078C87}" = Bluesoleil 6.4.249.0 "{C3F19A5F-35A8-4FDB-A6ED-0F4CE398DA48}" = Nokia Connectivity Cable Driver "{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones "{DD2469BA-DDE0-4296-A021-501559DD96C0}" = HP Deskjet 2050 J510 series Podstawowe oprogramowanie urządzenia "{FA200000-0001-0000-0000-074957833700}" = ABBYY PDF Transformer 2.0 "504244733D18C8F63FF584AEB290E3904E791693" = Pakiet sterowników systemu Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0) "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "aigneswebsitewatcher_is1" = WebSite-Watcher 2012 (12.0) "alotToolbar" = ALOT Toolbar "Anasil 2" = Anasil 2 "Ares" = Ares 2.0.8 "AXIS Media Control Embedded" = AXIS Media Control Embedded "BitTorrent" = BitTorrent "CCleaner" = CCleaner "ENTERPRISE" = Microsoft Office Enterprise 2007 "Gadu-Gadu" = Gadu-Gadu 7.7 "HDMI" = Intel(R) Graphics Media Accelerator Driver "incredibar" = Incredibar Toolbar on IE "InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "KLiteCodecPack_is1" = K-Lite Codec Pack 8.4.0 (Full) "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Mozilla Firefox 10.0.2 (x86 pl)" = Mozilla Firefox 10.0.2 (x86 pl) "Nero8Lite_is1" = Nero 8 Lite 8.3.2.1 "NokiaFREE Unlock Codes Calculator" = NokiaFREE Unlock Codes Calculator "Opera 11.64.1403" = Opera 11.64 "TeamViewer 6" = TeamViewer 6 "TeamViewer 7" = TeamViewer 7 "TNod" = TNod User & Password Finder "Totalcmd" = Total Commander (Remove or Repair) "TVWiz" = Intel(R) TV Wizard "VoipDiscount_is1" = VoipDiscount "Winamp" = Winamp "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2128862830-845892774-329885883-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Winamp Detect" = Detektor Winampa [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-07-17 15:00:57 | Computer Name = TEDI-Komputer | Source = Outlook | ID = 35 Description = Nie można określić, czy magazyn znajduje się w zakresie przeszukiwania (błąd=0x8007043c). Error - 2012-07-17 15:00:59 | Computer Name = TEDI-Komputer | Source = Outlook | ID = 34 Description = Nie można pobrać Menedżera zakresu przeszukiwania. Błąd: 0x8007043c. Error - 2012-07-17 15:00:59 | Computer Name = TEDI-Komputer | Source = Outlook | ID = 35 Description = Nie można określić, czy magazyn znajduje się w zakresie przeszukiwania (błąd=0x8007043c). Error - 2012-07-21 09:28:48 | Computer Name = TEDI-Komputer | Source = Outlook | ID = 34 Description = Nie można pobrać Menedżera zakresu przeszukiwania. Błąd: 0x8007043c. Error - 2012-07-21 09:28:48 | Computer Name = TEDI-Komputer | Source = Outlook | ID = 35 Description = Nie można określić, czy magazyn znajduje się w zakresie przeszukiwania (błąd=0x8007043c). Error - 2012-07-21 09:28:50 | Computer Name = TEDI-Komputer | Source = Outlook | ID = 34 Description = Nie można pobrać Menedżera zakresu przeszukiwania. Błąd: 0x8007043c. Error - 2012-07-21 09:28:50 | Computer Name = TEDI-Komputer | Source = Outlook | ID = 35 Description = Nie można określić, czy magazyn znajduje się w zakresie przeszukiwania (błąd=0x8007043c). Error - 2012-07-21 10:19:10 | Computer Name = TEDI-Komputer | Source = Outlook | ID = 34 Description = Nie można pobrać Menedżera zakresu przeszukiwania. Błąd: 0x8007043c. Error - 2012-07-21 10:19:10 | Computer Name = TEDI-Komputer | Source = Outlook | ID = 35 Description = Nie można określić, czy magazyn znajduje się w zakresie przeszukiwania (błąd=0x8007043c). Error - 2012-07-21 10:19:10 | Computer Name = TEDI-Komputer | Source = Outlook | ID = 34 Description = Nie można pobrać Menedżera zakresu przeszukiwania. Błąd: 0x8007043c. [ Media Center Events ] Error - 2011-06-03 01:11:32 | Computer Name = TEDI-Komputer | Source = MCUpdate | ID = 0 Description = 07:11:32 - Błąd podczas nawiązywania połączenia z Internetem. 07:11:32 - Nie można skontaktować się z serwerem.. Error - 2011-06-03 01:12:27 | Computer Name = TEDI-Komputer | Source = MCUpdate | ID = 0 Description = 07:12:20 - Błąd podczas nawiązywania połączenia z Internetem. 07:12:20 - Nie można skontaktować się z serwerem.. Error - 2012-07-09 02:52:11 | Computer Name = TEDI-Komputer | Source = MCUpdate | ID = 0 Description = 08:52:09 - Nie można pobrać pakietu Broadband (Błąd: Połączenie podstawowe zostało zakończone: Nie można ustanowić relacji zaufania dla bezpiecznego kanału SSL/TLS.) [ OSession Events ] Error - 2012-06-04 03:10:31 | Computer Name = TEDI-Komputer | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6607.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 13 seconds with 0 seconds of active time. This session ended with a crash. [ System Events ] Error - 2012-07-21 10:34:23 | Computer Name = TEDI-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-21 10:36:29 | Computer Name = TEDI-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-21 10:36:29 | Computer Name = TEDI-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-21 10:36:29 | Computer Name = TEDI-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-21 10:41:29 | Computer Name = TEDI-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-21 10:41:29 | Computer Name = TEDI-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-21 10:41:29 | Computer Name = TEDI-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-21 10:43:37 | Computer Name = TEDI-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-21 10:43:37 | Computer Name = TEDI-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-21 10:43:37 | Computer Name = TEDI-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 < End of report >