OTL Extras logfile created on: 2012-07-23 18:20:06 - Run 1 OTL by OldTimer - Version 3.2.54.0 Folder = C:\Users\Magda\Desktop 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,92 Gb Total Physical Memory | 2,51 Gb Available Physical Memory | 64,21% Memory free 7,83 Gb Paging File | 6,29 Gb Available in Paging File | 80,31% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 284,91 Gb Total Space | 194,53 Gb Free Space | 68,28% Space Free | Partition Type: NTFS Drive Q: | 11,72 Gb Total Space | 2,83 Gb Free Space | 24,14% Space Free | Partition Type: NTFS Computer Name: MAGDA-THINK | User Name: Magda | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) [HKEY_USERS\S-1-5-21-118677824-2391955829-406473549-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Browse with FastStone] -- "C:\Program Files (x86)\FastStone Image Viewer\FSViewer.exe" "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~3\Office12\ONENOTE.EXE "%L" Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Browse with FastStone] -- "C:\Program Files (x86)\FastStone Image Viewer\FSViewer.exe" "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~3\Office12\ONENOTE.EXE "%L" Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{031747DE-0CC5-4C91-896A-8CE56F871CB9}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{068883DA-B3F6-45E2-97DF-BDBF98B5CBBA}" = rport=10243 | protocol=6 | dir=out | app=system | "{06B208C0-94EC-4E4A-BF98-4F2CD3FCFB78}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{090C3DEA-3264-4F15-AD56-B5A85F3E0B66}" = rport=445 | protocol=6 | dir=out | app=system | "{0C4B9B45-E1B8-41C9-A66A-297CBE761F52}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{0E19E327-AE53-4C81-B6BA-EC779D8B2BAF}" = lport=137 | protocol=17 | dir=in | app=system | "{0FF14B58-CADB-492C-BB64-8BA956E8471D}" = lport=445 | protocol=6 | dir=in | app=system | "{122E5289-7BD0-47CC-9661-90F431604A70}" = lport=2869 | protocol=6 | dir=in | app=system | "{2BF32B70-4420-47DC-99FB-68FB028DD493}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe | "{3A029FC2-35DE-4CF7-97F6-75909429D8B6}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{3BFE381D-55B9-4736-A002-36F634E8070F}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{434D7243-4D7D-41F5-BD70-FE8499346F45}" = lport=138 | protocol=17 | dir=in | app=system | "{46802C41-897F-4FA1-A487-20E9933D97DF}" = rport=139 | protocol=6 | dir=out | app=system | "{4872FE43-8B20-44E9-908C-858E281A2596}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{516A5D9D-427A-40F7-A28E-A5D3E51886BF}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{51B9D254-F714-4617-B162-4DB320C3C445}" = lport=2869 | protocol=6 | dir=in | app=system | "{65694E82-0739-4853-89F1-8E44A65AA932}" = rport=2869 | protocol=6 | dir=out | app=system | "{75F1C28F-3D01-4C85-955D-553A5EC7A91F}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe | "{78E3C590-1179-4B1D-9213-D3EA814EB4D2}" = rport=137 | protocol=17 | dir=out | app=system | "{7BCCB1E2-F9DE-4DC9-ADDB-9977D1A98A77}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{850C7C01-ED99-4190-80A0-8B0157674B83}" = rport=138 | protocol=17 | dir=out | app=system | "{8A678E0B-5728-420C-9540-6D750A289C15}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{91EBA972-B475-4B50-A389-D6F597B98B8E}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{9EE0F456-C0FA-43E2-BA72-A5E2B52D985F}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{A0E93F67-6979-4022-A98A-45BFE5630B6F}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{B1E540B4-1021-4F1C-8CD3-50581E20E1C5}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{B22E2021-FAA4-4EBA-9959-91BED391EADC}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{BEF51F35-1D8F-48B0-8A1D-EAF5BACDCCB6}" = lport=139 | protocol=6 | dir=in | app=system | "{CBE47777-CF23-4F1F-A46E-A7214F1157E2}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{D576FBA0-DB95-4D1B-863B-A91403CD76B2}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{D8417C21-F369-463D-B3AE-1C9ADBB64618}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{DBAAA38D-5D76-4149-8DB1-70BB6E95699F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{E1216257-0C32-4971-8F24-660647A4373B}" = lport=10243 | protocol=6 | dir=in | app=system | "{E3957ACB-2C6C-4A57-A97E-1A1627083240}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{FC47DCF4-6939-4547-BC75-B8A68E61C2FD}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{10A0A5AC-91A2-4B17-86BF-175B50DC9E0A}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{1196F2EE-8B66-4867-ABC9-2290AC33F0FB}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{1D2C0F2B-95F1-4682-9EDA-0EEB9591E39A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{23E579E2-7F97-405B-A3F5-BFC130AB9D23}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{2416E88F-DF21-483A-88EB-5BA99D6799CA}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{28BFC0CF-49A4-46D9-879D-60E9CF6189BA}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{2A2C02BE-D2E9-46B1-A157-251248F31BEA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{344ECF97-22B2-4EE5-A5AF-203EA47821A1}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 | "{3F72AE75-B5B5-4F4A-8E7C-7DB60C11EF4C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{54C0257B-EFE4-4F32-BC5A-53B769D90A6F}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{54C2153E-D409-403B-9099-AEC0767CB617}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{54DFBEDE-9611-44C0-8635-3E07C6D59A79}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{5A1E7AD2-8CF9-4134-9E18-E51C10567AAC}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{64E3C6DD-0276-4F99-8258-04952EF2E269}" = protocol=17 | dir=in | app=c:\users\magda\appdata\roaming\dropbox\bin\dropbox.exe | "{7573F9EE-D474-4496-A3D4-5428B711699D}" = protocol=6 | dir=out | app=system | "{7BCC36CC-4BEC-488B-A45E-E8FC87256A47}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{81E136BB-A5F5-43E4-AC3D-CAB701D3637B}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{84FCD705-A112-49AA-8FC0-BC3379F955F5}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{856E4ED0-8EE2-4D4A-8A44-BFFB322918A4}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{A975F41E-A22E-4487-8994-B49FA45DAD86}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe | "{B29E895A-EC83-48B5-AA3E-E253DA502A5B}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{BA3DCC64-687F-41E9-BBC5-C0E7D0B73595}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{C4875067-85EF-4C08-8BC5-2C5BC88EB40D}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{C539EBE2-056F-43A8-BC17-545F07D40229}" = protocol=6 | dir=in | app=c:\users\magda\appdata\roaming\dropbox\bin\dropbox.exe | "{C9B38A47-E640-4931-8E48-77C4FCC4D1A0}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{CF410C39-66DA-4A50-AD8C-E21B63A73357}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{E1AAAB0D-14A6-4723-B7C9-FF406AADC4A3}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{E3D70877-1E83-4D97-9FC3-D69424B5F4AE}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe | "{EB2ECDB0-A712-4D32-B3D2-7D9F2CD57E92}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{F2C08C84-CB27-4641-B910-C3D0D17C9F7C}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{FCB6A4D4-DF63-44B7-9E42-9139B8B60CEC}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{FD024349-F4E7-4D9D-873A-CDF67EB1AD86}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "TCP Query User{B51874C6-B07B-44DB-A5A0-656DB9D90FA0}C:\users\magda\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\magda\appdata\roaming\dropbox\bin\dropbox.exe | "UDP Query User{6E65319B-E592-49F0-B451-D3CD548E2969}C:\users\magda\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\magda\appdata\roaming\dropbox\bin\dropbox.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant "{2426E29F-9E8C-4C0B-97FC-0DB690C1ED98}" = Windows Live Remote Client Resources "{25FBDA9A-E868-4B3B-B9FF-D923818511A1}" = Oprogramowanie Intel(R) PROSet/Wireless WiFi "{39969C3E-B297-41E5-9A7B-E252B504B21B}" = Lenovo SimpleTap "{39A04221-294E-4D90-A0F2-CCB1EF15CB56}" = Lenovo Patch Utility 64 bit "{46A84694-59EC-48F0-964C-7E76E9F8A2ED}" = ThinkVantage Active Protection System "{480F28F0-8BCE-404A-A52E-0DBB7D1CE2EF}" = Windows Live Remote Service Resources "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{57DD35E9-D9BB-4089-BB05-EF933C586CB3}" = Broadcom InConcert Maestro "{5E2652DF-743F-482B-A593-C95F431A5769}" = RapidBoot "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}" = Microsoft Visual C++ 2005 Redistributable (x64) "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{88C6A6D9-324C-46E8-BA87-563D14021442}_is1" = ThinkVantage Communications Utility "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007 "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{C6C9D5F7-630C-4125-8C4E-94AF77C1896E}" = ThinkPad Bluetooth with Enhanced Data Rate Software "{D07A61E5-A59C-433C-BCBD-22025FA2287B}" = Windows Live Language Selector "{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter "{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 "{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client "{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service "{E224B44B-B5EB-4af3-A80A-A255358E241A}_is1" = ThinkVantage AutoLock "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "01E3B64834B04ABAC85D8E1D3EBDC567D83AD29B" = Pakiet sterowników systemu Windows - Lenovo 1.64.00.00 (07/28/2011 1.64.00.00) "95D0E47871170F0763151CFD697BBAB47A5794F7" = Pakiet sterowników systemu Windows - Intel (iaStor) hdc (04/26/2011 10.5.0.1026) "CNXT_AUDIO_HDA" = Conexant HD Audio "DDD8A532E361E9A878EBEF69C338B306810DF059" = Pakiet sterowników systemu Windows - Synaptics (SynTP) Mouse (05/19/2011 15.3.8.0) "DisableAMTPopup" = Disable AMT Profile Synchronization Pop-up for Windows XP/Vista/7 "EnablePS" = Registry Patch to Enable Maximum Power Saving on WiFi Adapters for Windows 7 "LENOVO.SMIIF" = Lenovo System Interface Driver "LenovoAutoScrollUtility" = Lenovo Auto Scroll Utility "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "OnScreenDisplay" = On Screen Display "PC-Doctor for Windows" = Lenovo ThinkVantage Toolbox "Power Management Driver" = ThinkPad Power Management Driver "ProInst" = Intel PROSet Wireless "SynTPDeinstKey" = ThinkPad UltraNav Driver "WinRAR archiver" = WinRAR 4.11 (64-bitowy) "ZoneAlarm LTD Toolbar" = ZoneAlarm LTD Toolbar [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{02E89EFC-7B07-4D5A-AA03-9EC0902914EE}" = VC 9.0 Runtime "{0654EA5D-308A-4196-882B-5C09744A5D81}" = Windows Live Photo Common "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer "{0C1931EB-8339-4837-8BEC-75029BF42734}" = Windows Live UX Platform Language Pack "{105CFC7C-6992-11D5-BD9D-000102C10FD8}" = Lizardtech DjVu Control "{13F59938-C595-479C-B479-F171AB9AF64F}" = Lenovo User Guide "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{24E92E7A-6848-4747-A3EA-3AAC0576BE52}" = Lenovo Patch Utility "{25C64847-B900-48AD-A164-1B4F9B774650}" = System Update "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{26E3C07C-7FF7-4362-9E99-9E49E383CF16}" = Windows Live Writer Resources "{2C7E8AA1-9C03-4606-BF34-5D99D07964DA}" = Windows Live Messenger "{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery "{4925C0C2-E4E2-456B-9791-0F228BDDC428}" = Facebook Messenger 2.1.4570.0 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{50DC5136-21E8-48BC-97E5-1AD055F6B0B6}" = Create Recovery Media "{64376910-1860-4CEF-8B34-AA5D205FC5F1}" = Poczta usługi Windows Live "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{6707C034-ED6B-4B6A-B21F-969B3606FBDE}" = Lenovo Registration "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7A9D47BA-6D50-4087-866F-0800D8B89383}" = Podstawowe programy Windows Live "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform "{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002A-0415-1000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{91A29166-4E1B-4664-B70B-4C4A3B6B3372}" = Lenovo Screen Reading Optimizer "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail "{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer "{AC76BA86-7AD7-1045-7B44-A94000000001}" = Adobe Reader 9.4.0 - Polish "{AF87A1A6-F5A7-464C-92ED-D2D5FB33AE1A}" = The Bat! (Ekspert / Pro) v3.99 "{B04A0E2F-1E4C-4E61-B18E-3B2BD6779CA7}" = Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych "{B2CA6F37-1602-4823-81B5-0384B6888AA6}" = Integrated Camera Driver Installer Package Ver.1.1.0.1147 "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{BF35168D-F6F9-4202-BA87-86B5E3C9BF7A}" = Windows Live Mesh "{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader "{CB3F59BB-7858-41A1-A7EA-4B8A6FC7D431}" = Galeria fotografii usługi Windows Live "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64 "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform "{D9313DEC-F4B0-430A-8565-63F8450D2D42}" = ZoneAlarm Security "{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}" = ThinkPad Power Manager "{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E55E0C35-AC3C-4683-BA2F-834348577B80}" = Windows Live Writer "{E8DBC0AE-4A2D-4859-84E9-C50C3EBA4DB0}" = ZoneAlarm Firewall "{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.8 "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F2672232-FF17-4DC9-8F24-A1E1829FE086}" = BisonCam Twain Pro "{F761359C-9CED-45AE-9A51-9D6605CD55C4}" = Evernote v. 4.2.3 "{F80E5450-3EF3-4270-B26C-6AC53BEC5E76}" = Windows Live Movie Maker "{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center "{FD331A3B-F7A5-4C31-B8D4-DF413C85AF7A}" = Message Center Plus "{FD4EC278-C1B1-4496-99ED-C0BE1B0AA521}" = Lenovo Warranty Information "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "ENTERPRISE" = Microsoft Office Enterprise 2007 "Eusing Free Registry Cleaner" = Eusing Free Registry Cleaner "FastStone Image Viewer" = FastStone Image Viewer 4.6 "FileZilla Client" = FileZilla Client 3.5.3 "Google Chrome" = Google Chrome "iPlus manager_is1" = iPlus manager 2.2 "Lenovo Welcome_is1" = Lenovo Welcome "Mozilla Firefox 14.0.1 (x86 pl)" = Mozilla Firefox 14.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "ProInst" = Intel PROSet Wireless "WinLiveSuite" = Podstawowe programy Windows Live "ZoneAlarm Free" = ZoneAlarm Free "ZoneAlarm Security Toolbar" = ZoneAlarm Security Toolbar [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-118677824-2391955829-406473549-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Dropbox" = Dropbox [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-07-10 15:39:54 | Computer Name = Magda-THINK | Source = Windows Search Service | ID = 7040 Description = Usługa wyszukiwania wykryła uszkodzone pliki danych w indeksie {id=4700}. Usługa podejmie próbę automatycznego rozwiązania tego problemu przez odbudowanie indeksu. Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Error - 2012-07-10 15:39:54 | Computer Name = Magda-THINK | Source = Windows Search Service | ID = 7042 Description = Usługa Windows Search jest zatrzymywana, ponieważ wystąpił problem z indeksatorem: The catalog is corrupt. Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Error - 2012-07-10 15:39:54 | Computer Name = Magda-THINK | Source = Windows Search Service | ID = 9002 Description = Usługa Windows Search nie może załadować informacji z magazynu właściwości. Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Baza danych indeksów zawartości jest uszkodzona. (HRESULT : 0xc0041800) (0xc0041800) Error - 2012-07-10 15:39:54 | Computer Name = Magda-THINK | Source = Windows Search Service | ID = 3029 Description = Nie można zainicjować dodatku typu plug-in w . Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Error - 2012-07-10 15:39:56 | Computer Name = Magda-THINK | Source = Windows Search Service | ID = 3029 Description = Nie można zainicjować dodatku typu plug-in w . Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Nie można odnaleźć elementu. (HRESULT : 0x80070490) (0x80070490) Error - 2012-07-10 15:39:56 | Computer Name = Magda-THINK | Source = Windows Search Service | ID = 3028 Description = Nie można zainicjować obiektu programu zbierającego. Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Error - 2012-07-10 15:39:56 | Computer Name = Magda-THINK | Source = Windows Search Service | ID = 3058 Description = Nie można zainicjować aplikacji. Kontekst: aplikacja Windows Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Error - 2012-07-10 15:39:56 | Computer Name = Magda-THINK | Source = Windows Search Service | ID = 7010 Description = Nie można zainicjować indeksu. Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Error - 2012-07-10 18:33:47 | Computer Name = Magda-THINK | Source = WinMgmt | ID = 10 Description = Error - 2012-07-11 03:37:17 | Computer Name = Magda-THINK | Source = WinMgmt | ID = 10 Description = [ Lenovo-Lenovo Patch Utility/Admin Events ] Error - 2012-02-22 08:50:52 | Computer Name = Magda-THINK | Source = Lenovo Patch Utility | ID = 2 Description = Can not grant access to Everyone: Nie można przetłumaczyć niektórych lub żadnych odwołań do tożsamości. Error - 2012-02-22 08:50:55 | Computer Name = Magda-THINK | Source = Lenovo Patch Utility | ID = 1 Description = HttpFileDownloader failed to download the file "http://download.lenovo.com/ibmdl/pub/pc/pccbbs/lpupatches/x64//PM.manifest.xml". Error message: Nie można rozpoznać nazwy zdalnej: 'download.lenovo.com' Error - 2012-02-22 08:50:55 | Computer Name = Magda-THINK | Source = Lenovo Patch Utility | ID = 1 Description = Connection failure while downloading manifest file http://download.lenovo.com/ibmdl/pub/pc/pccbbs/lpupatches/x64//PM.manifest.xml. Error - 2012-02-22 08:50:55 | Computer Name = Magda-THINK | Source = Lenovo Patch Utility | ID = 2 Description = Failed to connect to the server. Error message: Zgłoszono wyjątek typu 'Lenovo.LenovoPatchUtility.Exceptions.ConnectionFailureException'. [ Lenovo-Message Center Plus/Admin Events ] Error - 2012-04-07 17:05:13 | Computer Name = Magda-THINK | Source = Lenovo-Message Center Plus/Admin | ID = 2 Description = Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. -> Exception message: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. [ OSession Events ] Error - 2012-07-12 21:53:46 | Computer Name = Magda-THINK | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 17964 seconds with 15540 seconds of active time. This session ended with a crash. [ System Events ] Error - 2012-05-20 19:54:29 | Computer Name = Magda-THINK | Source = ipnathlp | ID = 31004 Description = Error - 2012-05-20 19:54:31 | Computer Name = Magda-THINK | Source = ipnathlp | ID = 31004 Description = Error - 2012-05-21 02:48:39 | Computer Name = Magda-THINK | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error - 2012-05-21 02:55:07 | Computer Name = Magda-THINK | Source = bowser | ID = 8003 Description = Przeglądarka główna odebrała anons serwera z komputera BEATAGALEZYKA. Komputer ten zachowuje się tak, jakby był przeglądarką główną dla domeny w transporcie NetBT_Tcpip_{E41ACF61-4AD8-4D49-B70D-340EC463DB57}. Przeglądarka główna właśnie jest zatrzymywana albo wymuszany jest wybór. Error - 2012-05-21 06:48:26 | Computer Name = Magda-THINK | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error - 2012-05-21 06:53:48 | Computer Name = Magda-THINK | Source = ipnathlp | ID = 31004 Description = Error - 2012-05-21 06:53:52 | Computer Name = Magda-THINK | Source = ipnathlp | ID = 31004 Description = Error - 2012-05-21 08:46:57 | Computer Name = Magda-THINK | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error - 2012-05-21 08:48:28 | Computer Name = Magda-THINK | Source = ipnathlp | ID = 31004 Description = Error - 2012-05-21 11:04:56 | Computer Name = Magda-THINK | Source = ipnathlp | ID = 31004 Description = < End of report >