OTL Extras logfile created on: 2012-07-22 19:05:49 - Run 1 OTL by OldTimer - Version 3.2.54.0 Folder = c:\ Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000415 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd 1,87 Gb Total Physical Memory | 1,13 Gb Available Physical Memory | 60,46% Memory free 3,72 Gb Paging File | 3,21 Gb Available in Paging File | 86,47% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 143,05 Gb Total Space | 96,50 Gb Free Space | 67,46% Space Free | Partition Type: NTFS Computer Name: S21210903231146 | User Name: SG0212109 | NOT logged in as Administrator. Cannot determine boot mode. | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* .url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l [HKEY_USERS\S-1-5-21-117609710-2025429265-725345543-1170613\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* exefile [open] -- "%1" %* htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" /p %1 (Microsoft Corporation) InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "FirewallDisableNotify" = 0 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr] "Start" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService] "Start" = 2 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\RemoteAdminSettings] "Enabled" = 1 "RemoteAddresses" = * [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\Services] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\Services\FileAndPrint] "Enabled" = 1 "RemoteAddresses" = * [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\Services\RemoteDesktop] "Enabled" = 1 "RemoteAddresses" = * [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile\RemoteAdminSettings] "Enabled" = 1 "RemoteAddresses" = 151.193.220.0/24,10.16.62.30,10.136.85.82 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile\Services] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile\Services\FileAndPrint] "Enabled" = 1 "RemoteAddresses" = 151.193.220.0/24,10.16.62.30,10.136.85.82 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile\Services\RemoteDesktop] "Enabled" = 1 "RemoteAddresses" = 151.193.220.0/24,10.16.62.30,10.136.85.82 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 "DisableNotifications" = 0 "DisableUnicastResponsesToMulticastBroadcast" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List] "3389:TCP" = 3389:TCP:*:Disabled:@xpsp2res.dll,-22009 "4104:UDP" = 4104:UDP:*:Enabled:UAM-SS-4104 "4725:UDP" = 4725:UDP:*:Enabled:USD-SS-4725 "4721:TCP" = 4721:TCP:*:Enabled:USD-SS-4721 "8222:TCP" = 8222:TCP:*:Enabled:USD-SS-8222 "8230:TCP" = 8230:TCP:*:Enabled:USD-SS-8230 "4105:TCP" = 4105:TCP:*:Enabled:UAM-SS-4105 "139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004 "445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005 "137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001 "138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002 "2568:TCP" = 2568:TCP:*:Enabled:SMS Client Health Tools "35423:TCP" = 35423:TCP:*:Enabled:DCS Inbound [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 "DisableNotifications" = 0 "DisableUnicastResponsesToMulticastBroadcast" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] "3389:TCP" = 3389:TCP:*:Disabled:@xpsp2res.dll,-22009 "139:TCP" = 139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004 "445:TCP" = 445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005 "137:UDP" = 137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001 "138:UDP" = 138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002 "4104:UDP" = 4104:UDP:*:Enabled:UAM-SS-4104 "4725:UDP" = 4725:UDP:*:Enabled:USD-SS-4725 "4721:TCP" = 4721:TCP:*:Enabled:USD-SS-4721 "8222:TCP" = 8222:TCP:*:Enabled:USD-SS-8222 "8230:TCP" = 8230:TCP:*:Enabled:USD-SS-8230 "4105:TCP" = 4105:TCP:*:Enabled:UAM-SS-4105 "35423:TCP" = 35423:TCP:*:Enabled:DCS Inbound [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "C:\TNGSD\BIN\TRIGGAG.exe" = C:\TNGSD\BIN\TRIGGAG.exe:*:Enabled:USD-Trigger "C:\tngam\agents\AMAGENT.EXE" = C:\tngam\agents\AMAGENT.EXE:*:Enabled:UAM40-Agent "C:\Program Files\SkillSoft\jre\bin\javaw.exe" = C:\Program Files\SkillSoft\jre\bin\javaw.exe:*:Enabled:javaw -- () "C:\Program Files\Microsoft Office\Live Meeting 8\Console\PWConsole.exe" = C:\Program Files\Microsoft Office\Live Meeting 8\Console\PWConsole.exe:*:Enabled:Microsoft Office Live Meeting 2007 -- (Microsoft Corporation) "C:\Program Files\Microsoft Office Communicator\communicator.exe" = C:\Program Files\Microsoft Office Communicator\communicator.exe:*:Enabled:Communicator -- (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\TNGSD\BIN\TRIGGAG.exe" = C:\TNGSD\BIN\TRIGGAG.exe:*:Enabled:USD-Trigger "C:\tngam\agents\AMAGENT.EXE" = C:\tngam\agents\AMAGENT.EXE:*:Enabled:UAM40-Agent "C:\Program Files\Nortel Networks\Extranet.exe" = C:\Program Files\Nortel Networks\Extranet.exe:*:Enabled:Contivity VPN Client "C:\Program Files\SkillSoft\jre\bin\javaw.exe" = C:\Program Files\SkillSoft\jre\bin\javaw.exe:*:Enabled:javaw -- () "\SkillSoft\jre\bin\javaw.exe" = \SkillSoft\jre\bin\javaw.exe:*:Enabled:javaw "C:\Program Files\Symantec AntiVirus\Smc.exe" = C:\Program Files\Symantec AntiVirus\Smc.exe:*:Enabled:SMC Service -- (Symantec Corporation) "C:\Program Files\Symantec AntiVirus\SNAC.EXE" = C:\Program Files\Symantec AntiVirus\SNAC.EXE:*:Enabled:SNAC Service -- (Symantec Corporation) "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" = C:\Program Files\Common Files\Symantec Shared\ccApp.exe:*:Enabled:Symantec Email -- (Symantec Corporation) "C:\Program Files\Cisco Systems\Cisco IP Communicator\communicatork9.exe" = C:\Program Files\Cisco Systems\Cisco IP Communicator\communicatork9.exe:*:Enabled:Cisco IP Communicator -- (Cisco Systems, Inc.) "C:\Program Files\NetMeeting\conf.exe" = C:\Program Files\NetMeeting\conf.exe:*:Enabled:Windows® NetMeeting® -- (Microsoft Corporation) "C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software) "C:\Program Files\totalcmd\TOTALCMD.EXE" = C:\Program Files\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit -- (Ghisler Software GmbH) "C:\Program Files\Microsoft Office\Live Meeting 8\Console\PWConsole.exe" = C:\Program Files\Microsoft Office\Live Meeting 8\Console\PWConsole.exe:*:Enabled:Microsoft Office Live Meeting 2007 -- (Microsoft Corporation) "C:\home\python32\pythonw.exe" = C:\home\python32\pythonw.exe:*:Enabled:pythonw -- () "C:\Program Files\Mozilla Firefox\firefox.exe" = C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox -- (Mozilla Corporation) "C:\Program Files\Miranda IM\miranda32.exe" = C:\Program Files\Miranda IM\miranda32.exe:*:Enabled:Miranda IM -- ( ) "C:\Program Files\Microsoft Office Communicator\communicator.exe" = C:\Program Files\Microsoft Office Communicator\communicator.exe:*:Enabled:Communicator -- (Microsoft Corporation) "C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe" = C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe:*:Enabled:WebKit -- (Apple Inc.) "C:\Program Files\SopCast\adv\SopAdver.exe" = C:\Program Files\SopCast\adv\SopAdver.exe:*:Enabled:SopCast Adver "C:\Program Files\SopCast\SopCast.exe" = C:\Program Files\SopCast\SopCast.exe:*:Enabled:SopCast Main Application "C:\home\Games\Dragon Age Origins - Diamond Edition\bin_ship\daorigins.exe" = C:\home\Games\Dragon Age Origins - Diamond Edition\bin_ship\daorigins.exe:*:Enabled:Dragon Age: Origins "C:\Documents and Settings\sg0212109\Application Data\Wuala\Roaming\Wuala.exe" = C:\Documents and Settings\sg0212109\Application Data\Wuala\Roaming\Wuala.exe:*:Enabled:Wuala -- (LaCie) "C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe" = C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe:*:Enabled:Opera Internet Browser - Plugin wrapper -- (Opera Software) [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator "{03F7DFF0-A406-4F1A-9E37-F75E6D614ABC}" = Microsoft Time Zone "{0473EEB3-45A2-45A4-8D8C-6DFF9F0FEE2E}" = iPassConnect "{08E81ABD-79F7-49C2-881F-FD6CB0975693}" = Roxio Creator Data "{0D1CBBB9-F4A8-45B6-95E7-202BA61D7AF4}" = Microsoft Office Communicator 2007 R2 "{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}" = LightScribe System Software 1.14.17.1 "{1083438C-15C1-49D7-B201-6C568A8F2201}" = PointSec_Detect "{13702021-43FB-480C-912F-D9B74A538288}" = OpenProj "{183F7597-A48E-4B0D-8FFC-B363FEF2EC5A}" = Desktop Configuration Update Service v5.2 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1F54DAFA-9261-4A62-B59D-6C9F26B48FE4}" = Roxio Creator Tools "{2609EDF1-34C4-4B03-B634-55F3B3BC4931}" = Configuration Manager Client "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{2A2D474F-7542-4BB8-B15E-3E2E0C17BC46}" = Commack "{2EFCC193-D915-4CCB-9201-31773A27BC06}" = Symantec Endpoint Protection "{30A2A953-DEB1-466A-B660-F4399C7C6B9D}" = Roxio MyDVD "{31B33270-24D7-4307-84F2-A3288636B83A}" = Check Point Endpoint Security - Full Disk Encryption "{34D2AB40-150D-475D-AE32-BD23FB5EE355}" = HP Quick Launch Buttons "{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{38E0C491-5230-4373-B62E-F1A6E94B1045}" = Nero 7 Premium "{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX "{47FA2C44-D148-4DBC-AF60-B91934AA4842}" = Adobe AIR "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{533AD610-A9C1-11DD-AD8B-0800200C9A66}" = Sabre OADP (SPM) and SV32 Installer v9.0.0 "{537BF16E-7412-448C-95D8-846E85A1D817}" = Roxio Creator Business "{5A3B2909-0CF3-4F8A-95AB-0A00222DCAA3}" = Softerra LDAP Browser 4.5 "{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}" = Skype™ 3.8 "{5D97A4A7-C274-4B63-86D9-07A33435F505}" = InterVideo DVD Check "{5ED3AC8B-72BB-42D7-A6F7-AC618168630D}" = Cisco IP Communicator "{5FB32305-C861-4578-AD6F-FEFE194C9E05}" = Automated Liveupdate Download "{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3 "{69333A04-5134-40A5-A055-9166A7AA1EC8}" = "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6A3F9D74-BB80-4451-8CA1-4B3A857F1359}" = Obsługa programów Apple "{721ABC3B-5F12-4332-9C0C-C11424EF666C}" = WIMGAPI "{73A4F29F-31AC-4EBD-AA1B-0CC5F18C8F83}" = Roxio Creator Audio "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{84814E6B-2581-46EC-926A-823BD1C670F6}" = HP Integrated Module with Bluetooth wireless technology "{856E12C6-6203-4164-832C-92E77624329B}" = DNS Change "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8D337F77-BE7F-41A2-A7CB-D5A63FD7049B}" = Sonic CinePlayer Decoder Pack "{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 12 "{90120000-0012-0000-0000-0000000FF1CE}" = Microsoft Office Standard 2007 "{90120000-0012-0000-0000-0000000FF1CE}_STANDARD_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0012-0000-0000-0000000FF1CE}_STANDARD_{14E0E63C-CE60-459D-BF93-14E2331EF163}" = "{90120000-0012-0000-0000-0000000FF1CE}_STANDARD_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581) "{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007 "{90120000-0016-0409-0000-0000000FF1CE}_STANDARD_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007 "{90120000-0018-0409-0000-0000000FF1CE}_STANDARD_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007 "{90120000-001A-0409-0000-0000000FF1CE}_STANDARD_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007 "{90120000-001B-0409-0000-0000000FF1CE}_STANDARD_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_STANDARD_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-040C-0000-0000000FF1CE}_STANDARD_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007 "{90120000-001F-0C0A-0000-0000000FF1CE}_STANDARD_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007 "{90120000-003B-0000-0000-0000000FF1CE}" = Microsoft Office Project Professional 2007 "{90120000-003B-0000-0000-0000000FF1CE}_PRJPRO_{17B5F334-DEA2-493B-8CAA-01C0D6210B2F}" = "{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007 "{90120000-006E-0409-0000-0000000FF1CE}_STANDARD_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00B4-0409-0000-0000000FF1CE}" = Microsoft Office Project MUI (English) 2007 "{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007 "{90120000-0115-0409-0000-0000000FF1CE}_STANDARD_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90140000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 14 "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0409-0000-0000000FF1CE}_Office14.VISIO_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010 "{90140000-001F-040C-0000-0000000FF1CE}_Office14.VISIO_{46298F6A-1E7E-4D4A-B5F5-106A4F0E48C6}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010 "{90140000-001F-0C0A-0000-0000000FF1CE}_Office14.VISIO_{DEA87BE2-FFCC-4F33-9946-FCBE55A1E998}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010 "{90140000-002C-0409-0000-0000000FF1CE}_Office14.VISIO_{7CA93DF4-8902-449E-A42E-4C5923CFBDE3}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0054-0409-0000-0000000FF1CE}" = Microsoft Office Visio MUI (English) 2010 "{90140000-0054-0409-0000-0000000FF1CE}_Office14.VISIO_{CDC4310F-8189-485F-B47D-D972217CE173}" = Microsoft Office 2010 Language Pack Service Pack 1 (SP1) "{90140000-0057-0000-0000-0000000FF1CE}" = Microsoft Office Visio 2010 "{90140000-0057-0000-0000-0000000FF1CE}_Office14.VISIO_{01D8AE4B-A04D-47E5-81BF-E3F98B81B8C3}" = Microsoft Visio 2010 Service Pack 1 (SP1) "{90140000-0057-0000-0000-0000000FF1CE}_Office14.VISIO_{E9582966-3F9E-4EE6-877E-DDA898098670}" = "{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010 "{90140000-006E-0409-0000-0000000FF1CE}_Office14.VISIO_{4560037C-E356-444A-A015-D21F487D809E}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010 "{90140000-0115-0409-0000-0000000FF1CE}_Office14.VISIO_{4560037C-E356-444A-A015-D21F487D809E}" = Microsoft Office 2010 Service Pack 1 (SP1) "{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}" = InterVideo WinDVD "{9F57DB08-26D6-11D6-8AA5-0000E22DA3A0}" = EPSON Scan Tool "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{AB6FFA58-F491-11D3-8951-000000015799}" = iPassConnect 3.60 "{AC76BA86-7AD7-1033-7B44-A95000000001}" = Adobe Reader 9.5.1 "{b2042d5e-986d-44ec-aee3-afe4108ccc93}" = Python 3.2 "{B6A26DE5-F2B5-4D58-9570-4FC760E00FCD}" = Roxio Creator Copy "{C0847D30-4B8A-11E0-98C0-80E2DED72085}" = HP Virtual Rooms Client Launcher Plugin "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{C301D681-00D3-4597-8446-3DE54FE20F1A}" = TortoiseSVN 1.6.11.20210 (32 bit) "{C8B274C3-3E4D-433D-BA0D-C27EB834AEA6}" = Microsoft Conferencing Add-in for Microsoft Office Outlook "{C9E14402-3631-4182-B377-6B0DFB1C0339}" = QuickTime "{CA97CC85-FAF9-4316-9284-0F6CFA67B867}" = calibre "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CD95F661-A5C4-44F5-A6AA-ECDD91C240B6}" = WinZip 11.2 "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D64833F8-860D-4216-8EDC-DD08AD68C0B5}" = LibreOffice 3.4 "{D7759E67-3FAE-4F23-A8E0-22B5A116754A}" = 0067_SAV10-1_ScanLock_R1 "{D7EC8A27-CDA2-46AE-8A26-4104A04FA5BE}" = 32 Bit HP CIO Components Installer "{DAE4E3BE-78F3-FB72-9DD3-EF690FC96D01}" = e-Deklaracje Desktop "{DD63D620-BEFC-4D46-AAC2-5086689D09B0}" = IronPort Plug-in for Microsoft Outlook "{E09B48B5-E141-427A-AB0C-D3605127224A}" = Microsoft SQL Server Desktop Engine "{EA710A0A-BF5D-433C-8EB5-D17DC54CC298}" = Microsoft Office Live Meeting 2007 "{EBFEEB3F-3E3B-4725-A4E0-376144CE4F76}" = Citrix XenApp Web Plugin "{EC588AFB-E9FD-4C5B-9521-790FF5F0FDB7}" = ADONIS Community Edition 2.0 (English) "{EC877639-07AB-495C-BFD1-D63AF9140810}" = Roxio Activation Module "{ED439A64-F018-4DD4-8BA5-328D85AB09AB}" = Roxio Creator Business v10 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F18DB86D-BC16-4E01-BCCE-63F62B931D82}" = InterVideo Register Manager "{F1D7AC58-554A-4A58-B784-B61558B1449A}" = QLBCASL "{F2498378-DB5D-45D2-8C86-46D0C7B2CCC1}" = HP 3D DriveGuard "{FBD7F56C-5AED-4BF8-8E4C-43FD1B4FBB0A}" = Nortel VPN Client "{FECEF9D2-9D3D-449B-9EA4-CFA775C99464}" = AuthenTec Fingerprint System "ActiveTouchMeetingClient" = Cisco WebEx Meetings "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe SVG Viewer" = Adobe SVG Viewer 3.0 "Agere Systems Soft Modem" = Agere Systems HDA Modem "ATI Display Driver" = ATI Display Driver "Audiograbber" = Audiograbber 1.83 SE "Audiograbber-Lame" = Audiograbber MP3 Plugin "e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1" = e-Deklaracje Desktop "HDMI" = Intel(R) Graphics Media Accelerator Driver "IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs "ie7" = Windows Internet Explorer 7 "LiveUpdate" = LiveUpdate 3.3 (Symantec Corporation) "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Miranda IM" = Miranda IM 0.10.0 "Mozilla Firefox 14.0.1 (x86 es-ES)" = Mozilla Firefox 14.0.1 (x86 es-ES) "MozillaMaintenanceService" = Mozilla Maintenance Service "MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP "NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs "Notepad++" = Notepad++ "Office14.VISIO" = Microsoft Visio Professional 2010 "Opera 12.00.1467" = Opera 12.00 "PRJPRO" = Microsoft Office Project Professional 2007 "PyQt GPL v4.8.3 for Python v3.2 (x86)" = PyQt GPL v4.8.3 for Python v3.2 (x86) "PyScripter_is1" = PyScripter 2.4.1 "Quest Installer" = Quest Installer "RDC" = RDC "Skillsoft Course Manager" = Skillsoft Course Manager v6.4.96 "SMPlayer" = SMPlayer 0.6.8 "STANDARD" = Microsoft Office Standard 2007 "Starcraft" = Starcraft "SynTPDeinstKey" = Synaptics Pointing Device Driver "Totalcmd" = Total Commander (Remove or Repair) "TreePadLite4" = TreePad Lite 4.3 "TrueCrypt" = TrueCrypt "Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5 "Wdf01007" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.7 "Winamp" = Winamp "Windows Media Format Runtime" = Windows Media Format 11 runtime "Windows Media Player" = Windows Media Player 11 "Windows XP Service Pack" = Windows XP Service Pack 3 "WMFDist11" = Windows Media Format 11 runtime "wmp11" = Windows Media Player 11 "Wuala CBFS" = Wuala CBFS "Wuala OverlayIcons" = Wuala OverlayIcons "Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-117609710-2025429265-725345543-1170613\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "GanttProject 2.0.10" = GanttProject 2.0.10 "Google Chrome" = Google Chrome "GoToMeeting" = GoToMeeting 5.1.0.880 "Wuala" = Wuala [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-07-22 11:54:21 | Computer Name = S21210903231146 | Source = Userenv | ID = 1054 Description = Windows cannot obtain the domain controller name for your computer network. (The specified domain either does not exist or could not be contacted. ). Group Policy processing aborted. Error - 2012-07-22 11:54:25 | Computer Name = S21210903231146 | Source = UserInit | ID = 1000 Description = Could not execute the following script login.EXE. The system cannot find the file specified. . Error - 2012-07-22 11:55:32 | Computer Name = S21210903231146 | Source = AutoEnrollment | ID = 15 Description = Automatic certificate enrollment for GLOBAL\SG0212109 failed to contact the active directory (0x8007054b). The specified domain either does not exist or could not be contacted. Enrollment will not be performed. Error - 2012-07-22 11:58:47 | Computer Name = S21210903231146 | Source = Userenv | ID = 1054 Description = Windows cannot obtain the domain controller name for your computer network. (The specified domain either does not exist or could not be contacted. ). Group Policy processing aborted. Error - 2012-07-22 11:59:01 | Computer Name = S21210903231146 | Source = MsiInstaller | ID = 1008 Description = The installation of C:\WINDOWS\Installer\b6438b.msi is not permitted due to an error in software restriction policy processing. The object cannot be trusted. Error - 2012-07-22 11:59:31 | Computer Name = S21210903231146 | Source = Userenv | ID = 1054 Description = Windows cannot obtain the domain controller name for your computer network. (The specified domain either does not exist or could not be contacted. ). Group Policy processing aborted. Error - 2012-07-22 11:59:37 | Computer Name = S21210903231146 | Source = UserInit | ID = 1000 Description = Could not execute the following script login.EXE. The system cannot find the file specified. . Error - 2012-07-22 12:14:45 | Computer Name = S21210903231146 | Source = SescLU | ID = 13 Description = LiveUpdate returned a non-critical error. Available content updates may have failed to install. Error - 2012-07-22 12:57:26 | Computer Name = S21210903231146 | Source = crypt32 | ID = 131083 Description = Failed extract of third-party root list from auto update cab at: with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. Error - 2012-07-22 12:57:26 | Computer Name = S21210903231146 | Source = crypt32 | ID = 131083 Description = Failed extract of third-party root list from auto update cab at: with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. [ OSession Events ] Error - 2011-04-20 07:48:08 | Computer Name = S21210903231146 | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6535.5005, Microsoft Office Version: 12.0.6425.1000. This session lasted 17434 seconds with 4500 seconds of active time. This session ended with a crash. Error - 2011-05-17 09:12:13 | Computer Name = S21210903231146 | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6504.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 65 seconds with 60 seconds of active time. This session ended with a crash. Error - 2011-05-20 12:45:57 | Computer Name = S21210903231146 | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6535.5005, Microsoft Office Version: 12.0.6425.1000. This session lasted 1908 seconds with 1320 seconds of active time. This session ended with a crash. Error - 2011-08-17 07:47:32 | Computer Name = S21210903231146 | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6535.5005, Microsoft Office Version: 12.0.6425.1000. This session lasted 15671 seconds with 4740 seconds of active time. This session ended with a crash. Error - 2011-09-27 09:33:03 | Computer Name = S21210903231146 | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6535.5005, Microsoft Office Version: 12.0.6425.1000. This session lasted 38585 seconds with 6900 seconds of active time. This session ended with a crash. Error - 2011-10-20 11:15:27 | Computer Name = S21210903231146 | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6535.5005, Microsoft Office Version: 12.0.6425.1000. This session lasted 20275 seconds with 4020 seconds of active time. This session ended with a crash. Error - 2012-01-03 06:45:33 | Computer Name = S21210903231146 | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6535.5005, Microsoft Office Version: 12.0.6425.1000. This session lasted 9537 seconds with 2700 seconds of active time. This session ended with a crash. Error - 2012-02-23 11:19:08 | Computer Name = S21210903231146 | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6535.5005, Microsoft Office Version: 12.0.6425.1000. This session lasted 74 seconds with 0 seconds of active time. This session ended with a crash. Error - 2012-07-05 04:31:02 | Computer Name = S21210903231146 | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6539.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 2550 seconds with 540 seconds of active time. This session ended with a crash. [ System Events ] Error - 2012-07-22 13:09:43 | Computer Name = S21210903231146 | Source = Service Control Manager | ID = 7000 Description = The SYMTDI service failed to start due to the following error: %%31 Error - 2012-07-22 13:09:53 | Computer Name = S21210903231146 | Source = Service Control Manager | ID = 7000 Description = The SYMTDI service failed to start due to the following error: %%31 Error - 2012-07-22 13:09:53 | Computer Name = S21210903231146 | Source = Service Control Manager | ID = 7000 Description = The SYMTDI service failed to start due to the following error: %%31 Error - 2012-07-22 13:09:53 | Computer Name = S21210903231146 | Source = Service Control Manager | ID = 7000 Description = The SYMTDI service failed to start due to the following error: %%31 Error - 2012-07-22 13:10:03 | Computer Name = S21210903231146 | Source = Service Control Manager | ID = 7000 Description = The SYMTDI service failed to start due to the following error: %%31 Error - 2012-07-22 13:10:03 | Computer Name = S21210903231146 | Source = Service Control Manager | ID = 7000 Description = The SYMTDI service failed to start due to the following error: %%31 Error - 2012-07-22 13:10:03 | Computer Name = S21210903231146 | Source = Service Control Manager | ID = 7000 Description = The SYMTDI service failed to start due to the following error: %%31 Error - 2012-07-22 13:10:13 | Computer Name = S21210903231146 | Source = Service Control Manager | ID = 7000 Description = The SYMTDI service failed to start due to the following error: %%31 Error - 2012-07-22 13:10:13 | Computer Name = S21210903231146 | Source = Service Control Manager | ID = 7000 Description = The SYMTDI service failed to start due to the following error: %%31 Error - 2012-07-22 13:10:13 | Computer Name = S21210903231146 | Source = Service Control Manager | ID = 7000 Description = The SYMTDI service failed to start due to the following error: %%31 < End of report >