OTL Extras logfile created on: 25/07/2012 8:17:33 AM - Run 5 OTL by OldTimer - Version 3.2.54.1 Folder = C:\Users\admin\Desktop\walka 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000409 | Country: Stany Zjednoczone | Language: ENU | Date Format: dd/MM/yyyy 15.98 Gb Total Physical Memory | 13.86 Gb Available Physical Memory | 86.72% Memory free 31.96 Gb Paging File | 29.67 Gb Available in Paging File | 92.83% Paging File free Paging file location(s): e:\pagefile.sys 0 0 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 111.69 Gb Total Space | 19.78 Gb Free Space | 17.71% Space Free | Partition Type: NTFS Drive E: | 931.51 Gb Total Space | 906.83 Gb Free Space | 97.35% Space Free | Partition Type: NTFS Computer Name: ADMIN-KOMPUTER | User Name: admin | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- "C:\Adobe\Adobe GoLive CS2\GoLive.exe" "%1" (Adobe Systems Incorporated) htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- "C:\Adobe\Adobe GoLive CS2\GoLive.exe" "%1" (Adobe Systems Incorporated) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{12FFECE0-A797-4F9F-9BA4-ACFCB64454EE}" = lport=445 | protocol=6 | dir=in | app=system | "{1C5B9FA7-5E4B-4BA3-A652-B97566F4FE6B}" = rport=445 | protocol=6 | dir=out | app=system | "{2ADA7316-EF2A-4FED-911F-A1D778EA8825}" = rport=138 | protocol=17 | dir=out | app=system | "{3DA08121-0D23-4C3E-A9EE-AC6A0C7F20ED}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{3FBF8412-E953-4994-B0A6-592000F2EC3F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{445C5A20-F545-4E35-B303-B62D5E81B95D}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{491296DF-D5C7-46B9-A481-D301E6F16FFB}" = lport=139 | protocol=6 | dir=in | app=system | "{512825B9-F35C-4CEC-A0CF-7683E817ED72}" = rport=139 | protocol=6 | dir=out | app=system | "{7F147910-14A8-4EC9-B229-E3FA87710110}" = rport=137 | protocol=17 | dir=out | app=system | "{A261879D-308D-42BA-B641-8341B6368AD1}" = lport=24654 | protocol=17 | dir=in | name=enfocus port | "{D8154F0F-9FDE-4986-9768-AA3A976CBB29}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{E51CCC95-0C75-41DB-8EC2-F5E8F3C11A4A}" = lport=138 | protocol=17 | dir=in | app=system | "{F5E23BB6-AD0E-4392-BCD1-89041805DD61}" = lport=137 | protocol=17 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{5D6B5755-F063-49C7-B96A-7AB8A2E3BE7E}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{8A9B9080-3B2E-49C2-9F9A-66FA3D8628B9}" = protocol=6 | dir=in | app=c:\adobe\adobe version cue cs2\bin\versioncuecs2.exe | "{AD2D741D-F7A0-4E72-AD87-81D9CA64031D}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{C9A7C958-FF12-496D-8820-1DC83D7F9849}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{D45A26CC-663D-46FB-8E45-708D031E9B47}" = protocol=17 | dir=in | app=c:\adobe\adobe version cue cs2\bin\versioncuecs2.exe | "{F9455527-9CCA-4F58-B323-DF6CE2543C2F}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "TCP Query User{076855C2-20F4-45DF-AACE-5632CAC4D12E}C:\totalcmd\totalcmd.exe" = protocol=6 | dir=in | app=c:\totalcmd\totalcmd.exe | "TCP Query User{19DA1699-7B16-4D36-98E2-8645A42DAD97}C:\users\admin\desktop\trueflowclient\system\jre\bin\javaw.exe" = protocol=6 | dir=in | app=c:\users\admin\desktop\trueflowclient\system\jre\bin\javaw.exe | "TCP Query User{1B80FCC9-A4E5-4278-8733-AC4E1056C2E1}C:\program files (x86)\adobe\acrobat 7.0\acrobat\acrobat.exe" = protocol=6 | dir=in | app=c:\program files (x86)\adobe\acrobat 7.0\acrobat\acrobat.exe | "TCP Query User{3BD46151-6E13-4E82-B738-2500B2086657}C:\users\admin\desktop\pulpit z dnia 22_05_12\trueflowclient\system\jre\bin\javaw.exe" = protocol=6 | dir=in | app=c:\users\admin\desktop\pulpit z dnia 22_05_12\trueflowclient\system\jre\bin\javaw.exe | "TCP Query User{6AB80234-B0AF-4257-BFDB-FBD9DC16AE1F}D:\windows utilities\installer64\installationmanager.exe" = protocol=6 | dir=in | app=d:\windows utilities\installer64\installationmanager.exe | "UDP Query User{3AC4D666-7FC1-40B8-A6C6-B172E7C8D798}C:\users\admin\desktop\trueflowclient\system\jre\bin\javaw.exe" = protocol=17 | dir=in | app=c:\users\admin\desktop\trueflowclient\system\jre\bin\javaw.exe | "UDP Query User{7AC6337C-CD65-4A35-A6F4-19CBD8DA4877}C:\users\admin\desktop\pulpit z dnia 22_05_12\trueflowclient\system\jre\bin\javaw.exe" = protocol=17 | dir=in | app=c:\users\admin\desktop\pulpit z dnia 22_05_12\trueflowclient\system\jre\bin\javaw.exe | "UDP Query User{85C74F20-41EA-4317-8771-16BEDFBE5CF4}C:\totalcmd\totalcmd.exe" = protocol=17 | dir=in | app=c:\totalcmd\totalcmd.exe | "UDP Query User{C9D7AFD5-3DC8-431B-86FC-061A43528B11}D:\windows utilities\installer64\installationmanager.exe" = protocol=17 | dir=in | app=d:\windows utilities\installer64\installationmanager.exe | "UDP Query User{D6A9DBDA-7F32-45B8-AF79-4E38AFE4C414}C:\program files (x86)\adobe\acrobat 7.0\acrobat\acrobat.exe" = protocol=17 | dir=in | app=c:\program files (x86)\adobe\acrobat 7.0\acrobat\acrobat.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{680D2E55-6FCC-4695-8741-3EA13DE4C898}" = ESET NOD32 Antivirus "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 275.33 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 275.33 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.3.5 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0134A1A1-C283-4A47-91A1-92F19F960372}" = Adobe Creative Suite 2 "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{07A540AB-D785-11D5-8E89-0090275862A0}" = Corel Graphics Suite 11 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{236BB7C4-4419-42FD-0415-1E257A25E34D}" = Adobe Photoshop CS2 "{26A24AE4-039D-4CA4-87B4-2F83216022FF}" = Java(TM) 6 Update 22 "{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology "{44AD5510-AD14-4B1F-8D26-44EC45779D55}" = Enfocus PitStop Professional "{46548E80-0409-0000-7E8A-45000F855001}" = Adobe GoLive CS2 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{5545EEE1-FA36-4F76-B6BE-5696E7F4E2D6}" = VBA (2627.01) "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{786C5747-1437-443D-B06E-79A00FE45110}" = Adobe Stock Photos 1.0 "{7F4C8163-F259-49A0-A018-2857A90578BC}" = Adobe InDesign CS2 "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{8EDBA74D-0686-4C99-BFDD-F894678E5101}" = Adobe Common File Installer "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-1033-C740-7760-000000000002}" = Adobe Acrobat 7.0 Professional - Czech, Polish, Greek "{AC76BA86-7AD7-1045-7B44-A70000000000}" = Adobe Reader 7.0 - Polish "{ADBE46EE-54E0-4610-B436-D7E93D829100}" = Adobe Version Cue CS2 "{B2F5D08C-7E79-4FCD-AAF4-57AD35FF0601}" = Adobe Illustrator CS2 "{B74D4E10-6884-0000-0000-000000000101}" = Adobe Bridge 1.0 "{B7759541-2C14-48A1-ADC9-D0AB5C00B84A}" = FlatWorker SE Ver.8.01 "{C49DAA9C-5BA8-459A-8244-E57B69DF0F04}" = Suite Specific "{D52ECEBC-9B20-41A5-81C4-A62DE2367419}" = Adobe Creative Suite "{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}" = Asmedia ASM104x USB 3.0 Host Controller Driver "{E9787678-1033-0000-8E67-000000000001}" = Adobe Help Center 1.0 "{EB87675F-5281-4767-A54B-31931794C23D}" = OpenOffice.org 3.3 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe SVG Viewer" = Adobe SVG Viewer 3.0 "EPSON Scanner" = EPSON Scan "Google Chrome" = Google Chrome "Gordon's Gate Flash Driver" = Gordon's Gate Flash Driver 2.2.0.5 "InstallShield_{07A540AB-D785-11D5-8E89-0090275862A0}" = CorelDRAW Graphics Suite 11 "InterBase 6 Client Open Edition - 6.0.2.0" = InterBase 6 Client Open Edition - 6.0.2.0 "MagniDriver" = marvell 91xx driver "McAfee Security Scan" = McAfee Security Scan Plus "Mozilla Firefox 14.0.1 (x86 pl)" = Mozilla Firefox 14.0.1 (x86 pl) "Mozilla Thunderbird 14.0 (x86 pl)" = Mozilla Thunderbird 14.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Totalcmd" = Total Commander (Remove or Repair) "WinRAR archiver" = WinRAR 4.01 (32-bitowy) "Xerox_Support_Centre" = Xerox Support Centre [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 24/07/2012 1:41:33 PM | Computer Name = admin-Komputer | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie mozna usunac z pamieci ciagów licznika wydajnosci dla uslugi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod bledu. Error - 24/07/2012 2:02:29 PM | Computer Name = admin-Komputer | Source = VSS | ID = 18 Description = Error - 24/07/2012 2:02:29 PM | Computer Name = admin-Komputer | Source = VSS | ID = 8193 Description = Error - 24/07/2012 2:02:29 PM | Computer Name = admin-Komputer | Source = System Restore | ID = 8193 Description = Error - 24/07/2012 2:15:33 PM | Computer Name = admin-Komputer | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciagi wydajnosci w wartosci rejestru wydajnosci sa uszkodzone, kiedy proces wykonuje nastepujaca operacje na dostawcy licznika rozszerzen: Performance. Wartosc BaseIndex z rejestru wydajnosci to pierwszy wpis DWORD w sekcji danych Data, wartosc LastCounter to drugi wpis DWORD, a wartosc LastHelp to trzeci wpis DWORD w sekcji Data. Error - 24/07/2012 2:15:33 PM | Computer Name = admin-Komputer | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciagi wydajnosci w wartosci rejestru wydajnosci sa uszkodzone, kiedy proces wykonuje nastepujaca operacje na dostawcy licznika rozszerzen: Performance. Wartosc BaseIndex z rejestru wydajnosci to pierwszy wpis DWORD w sekcji danych Data, wartosc LastCounter to drugi wpis DWORD, a wartosc LastHelp to trzeci wpis DWORD w sekcji Data. Error - 24/07/2012 2:15:33 PM | Computer Name = admin-Komputer | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie mozna usunac z pamieci ciagów licznika wydajnosci dla uslugi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod bledu. Error - 25/07/2012 2:07:32 AM | Computer Name = admin-Komputer | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciagi wydajnosci w wartosci rejestru wydajnosci sa uszkodzone, kiedy proces wykonuje nastepujaca operacje na dostawcy licznika rozszerzen: Performance. Wartosc BaseIndex z rejestru wydajnosci to pierwszy wpis DWORD w sekcji danych Data, wartosc LastCounter to drugi wpis DWORD, a wartosc LastHelp to trzeci wpis DWORD w sekcji Data. Error - 25/07/2012 2:07:32 AM | Computer Name = admin-Komputer | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciagi wydajnosci w wartosci rejestru wydajnosci sa uszkodzone, kiedy proces wykonuje nastepujaca operacje na dostawcy licznika rozszerzen: Performance. Wartosc BaseIndex z rejestru wydajnosci to pierwszy wpis DWORD w sekcji danych Data, wartosc LastCounter to drugi wpis DWORD, a wartosc LastHelp to trzeci wpis DWORD w sekcji Data. Error - 25/07/2012 2:07:32 AM | Computer Name = admin-Komputer | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie mozna usunac z pamieci ciagów licznika wydajnosci dla uslugi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod bledu. [ System Events ] Error - 24/07/2012 1:58:23 PM | Computer Name = admin-Komputer | Source = Service Control Manager | ID = 7001 Description = Usluga Przegladarka komputera zalezy od uslugi Serwer, której nie mozna uruchomic z powodu nastepujacego bledu: %%1068 Error - 24/07/2012 2:02:29 PM | Computer Name = admin-Komputer | Source = DCOM | ID = 10005 Description = Error - 24/07/2012 2:03:41 PM | Computer Name = admin-Komputer | Source = Service Control Manager | ID = 7030 Description = Usluga PEVSystemStart jest oznaczona jako usluga interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalac na uslugi interakcyjne, dlatego ta usluga moze nie dzialac wlasciwie. Error - 24/07/2012 2:04:17 PM | Computer Name = admin-Komputer | Source = Application Popup | ID = 1060 Description = Ladowanie sterownika \??\C:\ComboFix\catchme.sys zostalo zablokowane z powodu niezgodnosci z tym systemem. Skontaktuj sie z dostawca oprogramowania w celu uzyskania zgodnej wersji sterownika. Error - 24/07/2012 2:04:28 PM | Computer Name = admin-Komputer | Source = Service Control Manager | ID = 7030 Description = Usluga PEVSystemStart jest oznaczona jako usluga interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalac na uslugi interakcyjne, dlatego ta usluga moze nie dzialac wlasciwie. Error - 24/07/2012 2:05:04 PM | Computer Name = admin-Komputer | Source = Service Control Manager | ID = 7023 Description = Usluga Windows Defender zakonczyla dzialanie; wystapil nastepujacy blad: %%126 Error - 24/07/2012 2:05:44 PM | Computer Name = admin-Komputer | Source = Service Control Manager | ID = 7023 Description = Usluga Wstepne ladowanie do pamieci zakonczyla dzialanie; wystapil nastepujacy blad: %%2 Error - 24/07/2012 2:09:19 PM | Computer Name = admin-Komputer | Source = Service Control Manager | ID = 7023 Description = Usluga Wstepne ladowanie do pamieci zakonczyla dzialanie; wystapil nastepujacy blad: %%2 Error - 24/07/2012 2:09:35 PM | Computer Name = admin-Komputer | Source = Service Control Manager | ID = 7030 Description = Usluga ESET Service jest oznaczona jako usluga interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalac na uslugi interakcyjne, dlatego ta usluga moze nie dzialac wlasciwie. Error - 25/07/2012 2:01:40 AM | Computer Name = admin-Komputer | Source = Service Control Manager | ID = 7023 Description = Usluga Wstepne ladowanie do pamieci zakonczyla dzialanie; wystapil nastepujacy blad: %%2 < End of report >