OTL Extras logfile created on: 2012-08-02 22:20:56 - Run 1 OTL by OldTimer - Version 3.2.55.0 Folder = C:\Users\wlasciciel\Desktop\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,98 Gb Total Physical Memory | 2,70 Gb Available Physical Memory | 67,76% Memory free 7,97 Gb Paging File | 6,93 Gb Available in Paging File | 87,06% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 175,78 Gb Total Space | 40,46 Gb Free Space | 23,02% Space Free | Partition Type: NTFS Drive D: | 377,82 Gb Total Space | 39,42 Gb Free Space | 10,43% Space Free | Partition Type: NTFS Drive E: | 377,82 Gb Total Space | 279,47 Gb Free Space | 73,97% Space Free | Partition Type: NTFS Computer Name: PC | User Name: wlasciciel | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Bridge] -- E:\flash\Adobe Bridge CS5.1\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L" Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\Winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\Winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\Winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Bridge] -- E:\flash\Adobe Bridge CS5.1\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L" Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\Winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\Winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\Winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] "DisableMonitoring" = 1 "" = [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0A9894EA-32D2-4D26-8614-00A3E73AD5C7}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{1E98CE3D-2B34-45D7-8C49-6236E77DA5E0}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{21F0FF65-AE9D-4B84-9434-D3333C5FFA89}" = rport=137 | protocol=17 | dir=out | app=system | "{367950F9-A58A-4220-BEAC-43F1ED30B0AB}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{3DD4BCB6-6E29-4E70-AED3-EF8958419D0F}" = lport=445 | protocol=6 | dir=in | app=system | "{4BA59E76-AC76-4071-9E1B-A37234021E8B}" = rport=445 | protocol=6 | dir=out | app=system | "{54599903-E075-407E-8F32-1E3A78117574}" = lport=137 | protocol=17 | dir=in | app=system | "{597A87A5-D533-400A-80AB-1EA0A05BA841}" = lport=138 | protocol=17 | dir=in | app=system | "{62063E45-AE37-4C4D-9CA0-77B70A69CAD1}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe | "{66301B7C-6655-4B86-B81A-1FEE12A12274}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{6925128B-4269-46DD-89E8-2A202C36E238}" = lport=139 | protocol=6 | dir=in | app=system | "{6D88EA50-B1FE-463B-A495-63621090DAA7}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{6EE7B91A-8500-4FB5-8135-30AFC808C099}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{92AA28FE-2321-489D-AF8D-5BBA9167E404}" = rport=138 | protocol=17 | dir=out | app=system | "{A016C170-63D3-4A01-A457-B644586E526A}" = rport=10243 | protocol=6 | dir=out | app=system | "{B0EBE222-AB6A-4CCC-8147-2920A67E86D5}" = rport=139 | protocol=6 | dir=out | app=system | "{B84822B7-50E0-49A5-9E22-D233DF1FD846}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{BB4B6BB2-E0A1-4E67-89FD-0C6723C38CBA}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{D1641078-0D31-43CF-A58D-C28C25A293B5}" = lport=10243 | protocol=6 | dir=in | app=system | "{D68988B3-0B95-4EB7-9AEE-627408A8EE21}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{E7754AB8-0A4B-4A15-896E-F096148E78DA}" = lport=2869 | protocol=6 | dir=in | app=system | "{F8F06C18-0A95-4265-8DE0-66FA565F59B3}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{000A98E1-9835-43F0-A5D6-3608C916AB75}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\prince of persia\prince of persia.exe | "{03021158-E8D7-4CC5-93CD-91B011E0BC86}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{0FB0BC66-A3D9-4510-A0CA-0D346543418A}" = protocol=17 | dir=in | app=e:\server.exe | "{10F9798B-A8A6-44F0-BF18-F3E4C2F7B997}" = protocol=6 | dir=in | app=c:\program files (x86)\2k games\bioshock 2\sp\builds\binaries\bioshock2.exe | "{1102FF0A-2DFE-4794-A692-8B230347AD1C}" = protocol=6 | dir=out | app=system | "{1D5DD7CF-7D31-4752-A582-2458D5FF7260}" = protocol=17 | dir=in | app=e:\program files\ubisoft\prince of persia the forgotten sands\gamesettings.exe | "{1FBB8C4B-7AAB-484C-92F9-1D68CF547635}" = protocol=6 | dir=in | app=e:\3d max9\3dsmax.exe | "{20B90080-269E-4DB5-BD80-54FF7D78234B}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{216CC789-5B3F-4F59-8CE7-57B74F847834}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{21907145-D017-4695-93C1-CCB45CF0E627}" = protocol=6 | dir=in | app=e:\program files\ubisoft\prince of persia the forgotten sands\prince of persia.exe | "{221DB311-006C-400E-BFF0-EDF15CEB58F6}" = protocol=6 | dir=in | app=e:\server.exe | "{3110A738-A65F-4E2A-89D8-28C416022B33}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{32DCD973-F294-4702-9916-BEF4F6538669}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{371125C1-FA7E-4966-93E6-EEAF972FAF58}" = protocol=17 | dir=in | app=e:\monitor.exe | "{38C7152E-C1F1-4619-82F3-AE5B55EA3806}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{3D583135-7157-40FA-8468-835558076692}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd\powerdvd.exe | "{3DC55401-0245-44AA-8F8A-8874CE9DA7C1}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\prince of persia\princeofpersia_launcher.exe | "{3EC3EBF9-490A-4F9C-A66C-810F56DC026B}" = protocol=6 | dir=in | app=e:\program files (x86)\bitcomposer games\s.t.a.l.k.e.r. - call of pripyat\bin\dedicated\xrengine.exe | "{48080439-EE4E-443A-B80F-D0DA27C5BE1A}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{4A2F629A-A64A-4266-A774-A84149A17A65}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{4A5B1359-D378-4072-B2BF-24C5EADC78D8}" = protocol=17 | dir=in | app=e:\program files\ubisoft\prince of persia the forgotten sands\gu.exe | "{4D4C25C6-717A-4609-A500-C23EBE4F571F}" = protocol=6 | dir=in | app=c:\program files (x86)\mass effect 2\binaries\masseffect2.exe | "{4DD33276-C395-4C39-9F0E-53A2FB73B444}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{501BC57B-53CE-45CB-96EE-3657C725FF17}" = protocol=6 | dir=in | app=e:\manager.exe | "{640D19FA-306C-40B7-9C01-E2516E59C333}" = protocol=17 | dir=in | app=e:\manager.exe | "{66633EE6-1B6F-4E03-B5F0-1BA36970310B}" = protocol=6 | dir=in | app=e:\torrent\utorrent.exe | "{799BF292-2870-4432-9364-FECAA9A7D41B}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{7A3404DA-47FD-4046-8DD1-C62879A6A7A0}" = protocol=6 | dir=in | app=c:\program files (x86)\2k games\bioshock 2\mp\builds\binaries\bioshock2.exe | "{7BA329BE-E0D7-479E-8D35-DF188F9ED0BF}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{830B1DD6-338C-4153-A76C-EF60F6872D42}" = protocol=17 | dir=in | app=e:\program files\ubisoft\prince of persia the forgotten sands\prince of persia.exe | "{94D09073-481A-40BF-9C19-1B8B5B9A31F5}" = protocol=17 | dir=in | app=e:\3d max9\3dsmax.exe | "{96C79E08-8CD1-4ADA-B207-35CD076A76FA}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\prince of persia\princeofpersia_launcher.exe | "{99D4B15B-A824-43F4-8685-1FA59D89983D}" = protocol=17 | dir=in | app=e:\program files (x86)\bitcomposer games\s.t.a.l.k.e.r. - call of pripyat\bin\xrengine.exe | "{9ABC65C7-7A75-475A-AC9C-38EE6B8E17F2}" = protocol=17 | dir=in | app=c:\program files (x86)\2k games\bioshock 2\mp\builds\binaries\bioshock2.exe | "{9B29FA65-14B3-4146-B004-ED74BDDF0DEB}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{A045628E-831A-4EE4-A20F-59E4A477FBE8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{A2406811-C910-486D-9636-05F98022D0F0}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{A29FDA5D-5DB4-4EC8-BE31-51AC300965BF}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{AF0E1E62-CFB2-4E3A-8BE8-34DCA0C90830}" = protocol=6 | dir=in | app=e:\program files (x86)\bitcomposer games\s.t.a.l.k.e.r. - call of pripyat\bin\xrengine.exe | "{B1C00887-E8E4-4211-B5AB-970DFEC918EE}" = protocol=17 | dir=in | app=e:\program files (x86)\bitcomposer games\s.t.a.l.k.e.r. - call of pripyat\bin\dedicated\xrengine.exe | "{BDCFACC1-9AC0-49F4-8B82-25B4A994B2C1}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{C101FE85-912A-4BA3-A44B-34DAA384AE3A}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{C274192F-D556-4B48-9B19-F5DCF66B0B68}" = protocol=17 | dir=in | app=e:\torrent\utorrent.exe | "{C4B11083-77F2-4C4A-8C60-2F88AA5AD127}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{CB0878F2-AA0F-4F6C-BAC8-3914EB95B7C3}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{CCAB34B6-4543-4736-805C-882048D45A43}" = protocol=17 | dir=in | app=c:\program files (x86)\2k games\bioshock 2\sp\builds\binaries\bioshock2.exe | "{CF8D69D3-E40D-4081-9E8D-665553AC303D}" = protocol=6 | dir=in | app=e:\program files\ubisoft\prince of persia the forgotten sands\gamesettings.exe | "{D184EE1C-DE98-4044-9731-8C3196928D63}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{D48B603C-283B-4DB5-A011-3FAF9E731313}" = protocol=6 | dir=in | app=e:\program files\ubisoft\prince of persia the forgotten sands\gu.exe | "{D536F79A-4EEA-4423-B284-4F806278F714}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{D892ABBB-4C6E-4445-8704-7CD609FB61EB}" = protocol=6 | dir=in | app=c:\program files (x86)\mass effect 2\masseffect2launcher.exe | "{DC6CFB9C-A328-4D16-8271-DF30393C4192}" = protocol=17 | dir=in | app=e:\program files\ubisoft\prince of persia the forgotten sands\uplaybrowser.exe | "{E3454B85-0DF9-493D-8CD2-B7A3AD833568}" = protocol=17 | dir=in | app=c:\program files (x86)\mass effect 2\binaries\masseffect2.exe | "{E756E1D1-94E9-4185-9DB0-5701AB8C2F03}" = protocol=6 | dir=in | app=e:\monitor.exe | "{E7B1E263-8560-4824-A651-3AF91D4B2ECE}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{E9F4E7FE-A7E4-4B60-801C-D7D4AC543CED}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{EA30FEDC-C385-467F-B36F-7988A19D2BAB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{EB800554-E103-4994-855C-339590D2AB47}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\prince of persia\prince of persia.exe | "{EEC03021-93FA-4377-8A21-3853DC9F2C78}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{F70D2341-7B50-4EB6-9015-A68D0A4964D7}" = protocol=6 | dir=in | app=e:\program files\ubisoft\prince of persia the forgotten sands\uplaybrowser.exe | "{F85EFF72-90D4-4B5A-8605-10FFD40706BB}" = protocol=17 | dir=in | app=c:\program files (x86)\mass effect 2\masseffect2launcher.exe | "{FB2E1DF4-61B2-49B7-85E4-76395ECF0C11}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{FD687345-9650-4FE8-BEAF-8DE9B534C4F3}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "TCP Query User{90387373-7C07-4F51-8275-52CF7E04A494}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "TCP Query User{CC0AAE1A-802F-4D02-A61F-6A86A6D0397E}C:\program files (x86)\ea games\alice madness returns\alice1\bin\alice.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ea games\alice madness returns\alice1\bin\alice.exe | "TCP Query User{D55FF0D6-689E-47C8-899C-03C1CE3F920F}C:\program files (x86)\ea games\alice madness returns\alice2\binaries\win32\alicemadnessreturns.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ea games\alice madness returns\alice2\binaries\win32\alicemadnessreturns.exe | "UDP Query User{36814CFB-221F-451F-BC77-0A7D71A48A89}C:\program files (x86)\ea games\alice madness returns\alice2\binaries\win32\alicemadnessreturns.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ea games\alice madness returns\alice2\binaries\win32\alicemadnessreturns.exe | "UDP Query User{62B3DF4B-88A7-42C7-9B5B-A9C7E1151F0D}C:\program files (x86)\ea games\alice madness returns\alice1\bin\alice.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ea games\alice madness returns\alice1\bin\alice.exe | "UDP Query User{882AA39A-15A1-450C-9BB7-C143E0DAE2FB}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{13CA4073-A66B-4F07-9491-B933018E63D2}_is1" = Moyea SWF to Video Converter Pro version 3.12.0.0 "{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64 "{8ED5BF38-B9BF-4F2D-AF42-9037574A254F}_is1" = Moyea Free Flash Downloader version 1.3.0.0 "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007 "{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64 "{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64 "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 261.01 "{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 261.01 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 261.01 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.10.0514 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.1.9.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{C616FD4F-11F5-11E0-A38F-0013D3D69929}" = Vegas Pro 10.0 (64-bit) "{C9608300-11F5-11E0-A64B-0013D3D69929}" = MSVCRT Redists "{D4E5A687-797D-44B1-8F96-4FD7A24166A9}" = DEVIL MAY CRY 4 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0046FA01-C5B9-4985-BACB-398DC480FC05}" = Adobe Photoshop CS3 "{00BD992A-D4C7-447D-8AA1-60B5759EA30D}" = SILENT HILL 4 "{00C5F4F4-62F9-40D7-8000-AD8A9CD0C669}" = Microsoft Games for Windows - LIVE Redistributable "{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86 "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{04AF207D-9A77-465A-8B76-991F6AB66245}" = Adobe Help Viewer CS3 "{05D30DBE-4EF3-477E-BCB0-8B5E3D9580AD}" = The Suffering "{08B32819-6EEF-4057-AEDA-5AB681A36A23}" = Adobe Bridge Start Meeting "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86 "{0B973521-269F-11E1-8ED3-F04DA23A5C58}" = MSVCRT Redists "{0C180787-F8C8-42FD-A9D3-689BA44BEAAF}" = Corel Painter Essentials 3 "{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86 "{105CFC7C-6992-11D5-BD9D-000102C10FD8}" = Lizardtech DjVu Control "{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}" = Adobe WinSoft Linguistics Plugin "{23767F5D-A80C-4264-B8EA-ED4085FC332A}" = Adobe Illustrator CS5.1 "{23E445D5-FD83-4C50-A211-EB26A2975317}" = Adobe Flash Professional CS5.5 "{266725C1-716F-43AC-BBFB-4201131ED656}" = EasySetPackage "{26A24AE4-039D-4CA4-87B4-2F83216032FF}" = Java(TM) 6 Update 32 "{29E5EA97-5F74-4A57-B8B2-D4F169117183}" = Adobe Stock Photos CS3 "{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}" = Microsoft Games for Windows - LIVE "{32A72502-BC2C-4C39-ACEA-BC3D463F0697}" = EN "{3521BDBD-D453-5D9F-AA55-44B75D214629}" = Adobe Community Help "{3D347E6D-5A03-4342-B5BA-6A771885F379}" = Backburner "{406FB8A4-F539-48A9-809C-F94706F9C9F6}_is1" = S.T.A.L.K.E.R. - Call of Pripyat [v1.6.02] "{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4A8B461A-9336-4CF9-98F4-14DD38E673F0}" = BioShock 2 "{4E98F23B-1328-4322-A6EC-2EDC8FC3A4FE}" = FontNav "{51846830-E7B2-4218-8968-B77F0FF475B8}" = Adobe Color EU Extra Settings "{5454085C-840F-4070-8FAA-441000028301}" = BioShock 2 "{54793AA1-5001-42F4-ABB6-C364617C6078}" = Adobe Linguistics CS3 "{5D6D977D-412E-4B19-9986-5C13EB00B22F}" = OpticSlim 2400+ "{60DDDF33-E158-4603-BDF8-5E434BAC0DC9}" = The Suffering - Zniewolony "{63218538-4A69-497F-8455-904261B0E9E4}" = CorelDRAW Graphics Suite X3 "{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86 "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD "{6ABE0BEE-D572-4FE8-B434-9E72A289431B}" = Adobe Fonts All "{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}" = Adobe Asset Services CS3 "{7032B400-11EC-11E0-A9BF-0013D3D69929}" = MSVCRT Redists "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{75D84EF7-0D8C-4e70-B3FA-7B42A5D4E0EB}" = Mass Effect 2 "{7C11154F-3539-4CB5-979D-EF7913473E53}" = Prince of Persia "{802771A9-A856-4A41-ACF7-1450E523C923}" = Adobe XMP Panels CS3 "{8236D2E9-2528-4C5C-ABA3-E0B8B657A297}" = BlackSite Area 51 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher "{8A96EA3C-7FDD-4B98-872E-1A20572BED61}_is1" = Dead Space 2 "{8C453F13-6877-4D34-8816-009ABDE306DB}" = Prince of Persia The Sands of Time "{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}" = Adobe Device Central CS3 "{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}" = Adobe Type Support "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90176341-0A8B-4CCC-A78D-F862228A6B95}" = Adobe Anchor Service CS3 "{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86 "{9370105C-71BB-4FF9-A85B-36D79B95457A}_is1" = ALLConverter PRO 1.1 "{943B6738-4801-4982-90EC-0442EF7AEB16}" = Kaspersky Anti-Virus 2010 "{95655ED4-7CA5-46DF-907F-7144877A32E5}" = Adobe Color NA Recommended Settings "{974C4B12-4D02-4879-85E0-61C95CC63E9E}" = Fallout 3 "{9C9824D9-9000-4373-A6A5-D0E5D4831394}" = Adobe Bridge CS3 "{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}" = Adobe CMaps "{A2D81E70-2A98-4A08-A628-94388B063C5E}" = Adobe Color - Photoshop Specific "{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5 "{AAF4238F-7C29-451D-9925-C753271A5728}" = Microsoft Visual C++ Run Time Lib Setup "{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}" = PDF Settings "{AC76BA86-7AD7-1045-7B44-A94000000001}" = Adobe Reader 9.4.0 - Polish "{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}" = Adobe Camera Raw 4.0 "{B3DAF54F-DB25-4586-9EF1-96D24BB14088}" = Windows Movie Maker 2.6 "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86 "{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}" = Adobe Default Language CS3 "{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX "{BE9A67F1-BDD3-4259-9F5C-2EFCE6B3A6C5}" = Clive Barker's Jericho "{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}" = Adobe ExtendScript Toolkit 2 "{C94E45B0-6AA6-4FB9-9AAE-22085F631880}" = VBA "{CDE4863D-B196-4DB5-81CF-F449F8EC7C3D}_is1" = Singularity Spolszczenie by O22y "{D0DFF92A-492E-4C40-B862-A74A173C25C5}" = Adobe Version Cue CS3 Client "{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86 "{D1BB4446-AE9C-4256-9A7F-4D46604D2462}" = Adobe Setup "{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}" = Adobe PDF Library Files "{D4E5A687-797D-44B1-8F96-4FD7A24166A9}" = DEVIL MAY CRY 4 "{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86 "{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}" = Adobe Color Common Settings "{DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029}" = Adobe Color JA Extra Settings "{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}" = Etron USB3.0 Host Controller "{E69AE897-9E0B-485C-8552-7841F48D42D8}" = Adobe Update Manager CS3 "{E96D4088-AAC5-437F-9E39-EC0E387897B4}" = Autodesk 3ds Max 9 32-bit "{EAEAAF8C-8E86-4CAC-AC08-1A33EDCA34AC}" = Prince of Persia The Forgotten Sands™ "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F428D0FB-765D-40EB-BDD8-A1E7F5C597FA}" = Update Manager "{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.5 "Adobe_2ac78060bc5856b0c1cf873bb919b58" = Adobe Photoshop CS3 "Alice: Madness Returns_is1" = Alice: Madness Returns "ALLPlayer_is1" = ALLPlayer V4.X "Audacity_is1" = Audacity 1.2.6 "Blood Omen 2" = Blood Omen 2 "chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help "CyberLink PowerDVD_is1" = PowerDVD 7 "DAEMON Tools Lite" = DAEMON Tools Lite "ENTERPRISE" = Microsoft Office Enterprise 2007 "Fallout New Vegas_is1" = Fallout New Vegas "FBX Plugin 2006.08 for Max 9.0" = FBX Plugin 2006.08 for Max 9.0 "foobar2000" = foobar2000 v1.1.6 "Fraps" = Fraps (remove only) "Gadu-Gadu 10" = Gadu-Gadu 10 "Gadwin PrintScreen" = Gadwin PrintScreen "Guitar Pro 5_is1" = Guitar Pro 5.0 "InstallShield_{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD Ultra "InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}" = Etron USB3.0 Host Controller "InstallWIX_{943B6738-4801-4982-90EC-0442EF7AEB16}" = Kaspersky Anti-Virus 2010 "iWisoft Flash SWF to Video Converter_is1" = iWisoft Flash SWF to Video Converter 3.4 "KLiteCodecPack_is1" = K-Lite Mega Codec Pack 7.1.0 "McAfee Security Scan" = McAfee Security Scan Plus "Metro 2033_is1" = Metro 2033 "MFZ0CODEC" = MFZ0 codec (Remove Only) "Mozilla Firefox 14.0.1 (x86 pl)" = Mozilla Firefox 14.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NapiProjekt_is1" = NapiProjekt 1.0.6.9 "Nero8Lite_is1" = Nero 8 Lite 8.3.2.1 "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Pen Tablet Driver" = Bamboo "Photodex Presenter" = Photodex Presenter "ProShow Gold" = ProShow Gold "Rage_is1" = Rage "SkanerOnline" = Skaner on-line mks_vir "SubEdit-Player_is1" = SubEdit-Player "uTorrent" = µTorrent "VueScan" = VueScan "Winamp" = Winamp (remove only) "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Advanced Archive Password Recovery" = Advanced Archive Password Recovery [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-07-27 20:51:36 | Computer Name = PC | Source = SideBySide | ID = 16842832 Description = Nie można wygenerować kontekstu aktywacji dla „c:\program files (x86)\Nero\nero toolkit\nero discspeed\DiscSpeed.exe”. Błąd w pliku manifestu lub w pliku zasad „” w wierszu . Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Składnik 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error - 2012-07-31 04:35:14 | Computer Name = PC | Source = WinMgmt | ID = 10 Description = Error - 2012-07-31 07:23:08 | Computer Name = PC | Source = WinMgmt | ID = 10 Description = Error - 2012-07-31 16:12:03 | Computer Name = PC | Source = WinMgmt | ID = 10 Description = Error - 2012-08-01 07:58:08 | Computer Name = PC | Source = WinMgmt | ID = 10 Description = Error - 2012-08-01 10:28:45 | Computer Name = PC | Source = WinMgmt | ID = 10 Description = Error - 2012-08-02 03:04:38 | Computer Name = PC | Source = WinMgmt | ID = 10 Description = Error - 2012-08-02 03:21:39 | Computer Name = PC | Source = SideBySide | ID = 16842832 Description = Nie można wygenerować kontekstu aktywacji dla „c:\program files (x86)\Nero\nero toolkit\nero discspeed\DiscSpeed.exe”. Błąd w pliku manifestu lub w pliku zasad „” w wierszu . Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Składnik 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error - 2012-08-02 10:02:29 | Computer Name = PC | Source = WinMgmt | ID = 10 Description = Error - 2012-08-02 14:47:24 | Computer Name = PC | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 2012-08-02 15:01:28 | Computer Name = PC | Source = DCOM | ID = 10005 Description = Error - 2012-08-02 15:01:28 | Computer Name = PC | Source = DCOM | ID = 10005 Description = Error - 2012-08-02 15:01:29 | Computer Name = PC | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-08-02 15:01:29 | Computer Name = PC | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-08-02 15:01:29 | Computer Name = PC | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-08-02 15:18:48 | Computer Name = PC | Source = DCOM | ID = 10005 Description = Error - 2012-08-02 15:18:48 | Computer Name = PC | Source = DCOM | ID = 10005 Description = Error - 2012-08-02 15:59:23 | Computer Name = PC | Source = DCOM | ID = 10005 Description = Error - 2012-08-02 16:02:21 | Computer Name = PC | Source = Service Control Manager | ID = 7030 Description = Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error - 2012-08-02 16:03:48 | Computer Name = PC | Source = Service Control Manager | ID = 7030 Description = Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. < End of report >