OTL Extras logfile created on: 2012-08-13 18:15:31 - Run 1 OTL by OldTimer - Version 3.2.57.0 Folder = C:\Users\Ukasz\Desktop 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3.99 Gb Total Physical Memory | 2.61 Gb Available Physical Memory | 65.38% Memory free 7.98 Gb Paging File | 6.46 Gb Available in Paging File | 80.89% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 150.00 Gb Total Space | 118.55 Gb Free Space | 79.03% Space Free | Partition Type: NTFS Drive D: | 315.66 Gb Total Space | 222.53 Gb Free Space | 70.49% Space Free | Partition Type: NTFS Drive F: | 151.60 Gb Total Space | 26.10 Gb Free Space | 17.21% Space Free | Partition Type: NTFS Drive G: | 146.48 Gb Total Space | 52.61 Gb Free Space | 35.92% Space Free | Partition Type: exFAT Computer Name: UKASZ | User Name: Ukasz | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{04382B37-9A62-4B3F-94D7-4074F10729AE}" = rport=445 | protocol=6 | dir=out | app=system | "{28231722-9C03-45D1-89DD-94F82474EF1D}" = lport=445 | protocol=6 | dir=in | app=system | "{38CA20F8-A19B-43AD-952D-B5D1CA03D61D}" = rport=10243 | protocol=6 | dir=out | app=system | "{42719656-5295-4C2C-86E9-7EE8B94CCAD7}" = lport=10243 | protocol=6 | dir=in | app=system | "{44FE26BD-9182-4D50-83CC-D2CA53993B82}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{5659C17F-E6AC-4807-9A82-99A9A2DFC0EE}" = lport=138 | protocol=17 | dir=in | app=system | "{63EA5299-FBCA-4B4E-AA04-985A020D234C}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{6ABD0E91-BB31-4A40-82DF-E81DACE95305}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{737E57A3-0391-4076-B160-E58D907A6E82}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{73B1409C-D81F-407A-9B8D-2E38C4445121}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{7BA57E60-208E-435C-838D-90C52CAEED5A}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{81300424-F18E-4786-B080-F1C9E046BC20}" = rport=138 | protocol=17 | dir=out | app=system | "{81499C69-EDAE-4718-BC3C-F341E5FE89BC}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{8F5E2541-F6DE-473B-80E6-15AF9CEE9650}" = lport=137 | protocol=17 | dir=in | app=system | "{9013D5E9-90AE-4A83-8182-CCEB61CAF271}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{91616CBB-BC9E-4577-932D-F6F2B84953A9}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{9F685879-D91C-4B87-A60B-EBE90438B6F4}" = rport=139 | protocol=6 | dir=out | app=system | "{AF67CE43-E5EE-4929-A71A-3633C744FABB}" = rport=137 | protocol=17 | dir=out | app=system | "{B746D864-8D86-4359-922F-3A15D85357CE}" = lport=139 | protocol=6 | dir=in | app=system | "{C29C5036-976A-414A-849A-B2AE0741DBFB}" = lport=2869 | protocol=6 | dir=in | app=system | "{FC71BC23-3786-4FED-B355-04E05BFA634D}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0E1D334C-7F62-4CF7-A12B-0EECAD08BDD7}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{175456F9-37D1-4069-BA12-74871F8535DC}" = protocol=6 | dir=in | app=d:\programy\proxy switcher standard\proxyswitcher.exe | "{18B43CAA-B765-41EF-8862-6A71DD98B247}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{23983773-BD94-41EC-A14A-C12DC194D98A}" = protocol=17 | dir=in | app=d:\gry\battlefield 3\bf3.exe | "{263DD08B-7B32-409B-BC1E-D8BAA02A8B03}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{291212BB-B677-40BB-88AA-D314AC0111B9}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{3094EB40-DBCE-41B1-AB01-E9E6BA2CD234}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{33DBF9E4-7E32-49DA-AEC8-7FE7E935D141}" = protocol=6 | dir=out | app=system | "{3FB2735F-0146-44A9-8B52-EF5F9371E60A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{5590BD5D-D199-41E2-BE85-DF851075EA42}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{5D1C9FA1-8968-4F3E-B810-D3C18FB01A11}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{69F4C4E4-DEE2-4859-B404-8E6969F772AB}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{6EC05F31-7CF5-4544-9EE3-D0984C3FF097}" = protocol=6 | dir=in | app=d:\gry\battlefield 3\bf3.exe | "{7621C3D5-E254-4D48-82E2-5ACD8EE92B15}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{76B0F4BB-0609-424C-A088-18572FBF4316}" = protocol=17 | dir=in | app=d:\programy\proxy switcher standard\proxyswitcher.exe | "{7AFEE022-C712-4B8C-938D-E91C4B3A72F9}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{7B420C80-EA89-4618-B518-1A165AA16089}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{7CC85DF6-60E0-4767-A9BF-13826EBA4C6F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{7CD07406-735C-4B74-B764-9BB84F689FF2}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{80B54DDA-73A0-45B2-A95E-D55F9A5ABBCB}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{82940E5D-2507-4C0F-9822-D403084FE847}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{950ED6C9-623D-4074-A848-C1C7DD437BD4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{9C69B134-C5D0-4582-86CA-8A385CF58B2D}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{9EA99324-F8FB-4D02-9F74-4D15A9009FCE}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{A35F8E24-10FB-4502-97F1-9B50E27A6CC9}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{AB93F56B-A275-4F49-9AA8-C13F3B71268D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{ABBA676B-3A21-41AF-AC9F-1040878DD7CF}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{BD52559E-A699-47B8-B617-48CA7C5A7D04}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{C981DECC-1C6B-41B0-83B2-7C8E117A9DEB}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{CB8ED033-F2A7-47AA-B9CE-BFB5F3DD6FE4}" = dir=in | app=d:\programy\skype\phone\skype.exe | "{CBB60710-67A8-416F-BF47-3675DDB19D7B}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{CF0B0FF8-B23F-4D7A-84F9-63956F27488E}" = protocol=6 | dir=in | app=d:\programy\proxy switcher standard\proxyswitcher.exe | "{D030B9BA-07D4-4CB8-ABC1-E6EB1420E5E0}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{D4DD4CF4-1C97-41DA-8927-2526D9CB4209}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{E446261C-4FB6-46C9-98A7-78764BB8A803}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{F100F2D7-1111-461D-A065-09110AA348C0}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{F51BE56E-783F-4038-BCA6-553E4D96E7CA}" = protocol=17 | dir=in | app=d:\programy\proxy switcher standard\proxyswitcher.exe | "TCP Query User{247A15E4-2086-40EB-BAFA-AA7CD68EEF71}D:\gry\world of tanks - beta testy 0.7.5\wotlauncher.exe" = protocol=6 | dir=in | app=d:\gry\world of tanks - beta testy 0.7.5\wotlauncher.exe | "TCP Query User{3561F1FE-B1DD-4119-A80F-ED54F55CDF08}D:\gry\virtualmt2\metin2.bin" = protocol=6 | dir=in | app=d:\gry\virtualmt2\metin2.bin | "TCP Query User{3664AE6A-EE67-4E30-9495-3A0FA16E423E}C:\program files (x86)\java\jre7\bin\java.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\java.exe | "TCP Query User{380A6CE5-271C-4789-8434-D78780E99423}D:\gry\world of tanks\worldoftanks.exe" = protocol=6 | dir=in | app=d:\gry\world of tanks\worldoftanks.exe | "TCP Query User{AA5E1D30-C516-485A-A29D-0A319C4E8D20}D:\gry\virtualmt2\virtualmt2 (bez patchera).exe" = protocol=6 | dir=in | app=d:\gry\virtualmt2\virtualmt2 (bez patchera).exe | "TCP Query User{CABB91E0-5924-4F87-84F6-9F178E25A105}D:\gry\world of tanks\wotlauncher.exe" = protocol=6 | dir=in | app=d:\gry\world of tanks\wotlauncher.exe | "TCP Query User{CBEFB469-BA71-43E2-98DE-D6A49E69ACF5}D:\gry\world of tanks - beta testy 0.7.5\worldoftanks.exe" = protocol=6 | dir=in | app=d:\gry\world of tanks - beta testy 0.7.5\worldoftanks.exe | "TCP Query User{D16A210B-4C1C-42E4-87A4-2DB2083AD1FE}D:\programy\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=d:\programy\gadu-gadu 10\gg.exe | "UDP Query User{1AB94FC2-7B51-4256-AB31-FC0A2ADA9CDB}C:\program files (x86)\java\jre7\bin\java.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\java.exe | "UDP Query User{8383462F-2019-4641-B311-390DBF6715CE}D:\gry\virtualmt2\virtualmt2 (bez patchera).exe" = protocol=17 | dir=in | app=d:\gry\virtualmt2\virtualmt2 (bez patchera).exe | "UDP Query User{95565629-561F-4A41-93BE-39688998A804}D:\gry\world of tanks\wotlauncher.exe" = protocol=17 | dir=in | app=d:\gry\world of tanks\wotlauncher.exe | "UDP Query User{A7203477-D5E3-4694-80E8-305D8D843369}D:\gry\world of tanks\worldoftanks.exe" = protocol=17 | dir=in | app=d:\gry\world of tanks\worldoftanks.exe | "UDP Query User{B58AEFB8-B0E5-4398-9798-2BB1A78F1D91}D:\gry\virtualmt2\metin2.bin" = protocol=17 | dir=in | app=d:\gry\virtualmt2\metin2.bin | "UDP Query User{B6AD2188-CB3D-42F0-A60A-C55CB5879867}D:\gry\world of tanks - beta testy 0.7.5\worldoftanks.exe" = protocol=17 | dir=in | app=d:\gry\world of tanks - beta testy 0.7.5\worldoftanks.exe | "UDP Query User{E495CED6-0B2E-4CE7-98F9-7FB12AB4012E}D:\gry\world of tanks - beta testy 0.7.5\wotlauncher.exe" = protocol=17 | dir=in | app=d:\gry\world of tanks - beta testy 0.7.5\wotlauncher.exe | "UDP Query User{FC983057-B633-4B28-A25A-DB441D1CD886}D:\programy\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=d:\programy\gadu-gadu 10\gg.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 301.42 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 301.42 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 301.42 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 301.42 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.12.0213 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.8.15 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "WinRAR archiver" = WinRAR 4.20 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{009E5DF2-3F97-480B-89DA-F2D5E672E14A}_is1" = Live Update 5 "{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1 "{1EAC1D02-C6AC-4FA6-9A44-96258C37C812}_is1" = World of Tanks v.0.7.4 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83217005FF}" = Java(TM) 7 Update 5 "{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = JMicron JMB36X Driver "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{56DD3770-2EF5-42D0-BA5A-A8135E9D4A9E}" = USB Dual Vibration Joystick "{64BFBE7A-886C-4CA2-A9B4-0C2B5A5942BC}" = Battlefield 3™ "{65CB4C08-C47B-4A7E-A6A4-50C06ADA5FC6}" = Adobe AIR "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{887868A2-D6DE-3255-AA92-AA0B5A59B874}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{950FE13D-337A-4B4C-BD30-E95EC93484A3}" = Overwolf "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{B35D74AE-A323-E232-1E11-4C8D961FDA24}" = Dailymotion Mass Uploader "{DA909E62-3B45-4BA1-8B58-FCAEBA4BCEC9}" = NVIDIA PhysX "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F86B5FF0-E0C0-41AA-9FD3-5E9090FED323}" = Mumble 1.2.3 "Adobe AIR" = Adobe AIR "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "avast" = avast! Free Antivirus "Battlelog Web Plugins" = Battlelog Web Plugins "C9(Continent of the Ninth Seal)_is1" = C9 "com.dailymotion.massuploader" = Dailymotion Mass Uploader "DMX5_is1" = DriverMax 6 "ESN Sonar-0.70.4" = ESN Sonar "Freemake Audio Converter_is1" = Freemake Audio Converter wersja 1.1.0 "Freemake Video Converter_is1" = Freemake Video Converter wersja 3.1.0 "Freemake Video Downloader_is1" = Freemake Video Downloader "Gadu-Gadu 10" = Gadu-Gadu 10 "JDownloader" = JDownloader "MoorHunt_is1" = MoorHunt 0.6.7.2 "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Open Codecs" = Xiph.Org Open Codecs 0.85.17777 "Origin" = Origin "ProxySwitcher Standard_is1" = ProxySwitcher Standard "PunkBusterSvc" = PunkBuster Services "Virtualmt2" = Virtualmt2 "WinPcapInst" = WinPcap 4.1.2 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1216016141-926670997-1382420289-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{8DC910CD-8EE3-4ffc-A4EB-9B02701059C4}" = Battlefield Heroes (Ukasz) "Google Chrome" = Google Chrome [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1216016141-926670997-1382420289-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Google Chrome" = Google Chrome [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-08-11 06:44:52 | Computer Name = Ukasz | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2012-08-11 07:40:07 | Computer Name = Ukasz | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2012-08-12 07:09:54 | Computer Name = Ukasz | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2012-08-12 11:34:36 | Computer Name = Ukasz | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: BFHeroes.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x5007bbc9 Nazwa modułu powodującego błąd: pbcl.dll_unloaded, wersja: 0.0.0.0, sygnatura czasowa: 0x4cf7ee21 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0b640e1c Identyfikator procesu powodującego błąd: 0x178 Godzina uruchomienia aplikacji powodującej błąd: 0x01cd7891e0ecc8a0 Ścieżka aplikacji powodującej błąd: D:\Gry\Battlefield Heroes\BFHeroes.exe Ścieżka modułu powodującego błąd: pbcl.dll Identyfikator raportu: 385e182e-e493-11e1-9bb9-406186344a70 Error - 2012-08-12 13:08:27 | Computer Name = Ukasz | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: BFHeroes.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x5007bbc9 Nazwa modułu powodującego błąd: pbcl.dll_unloaded, wersja: 0.0.0.0, sygnatura czasowa: 0x4cf7ee21 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0b830e1c Identyfikator procesu powodującego błąd: 0x1014 Godzina uruchomienia aplikacji powodującej błąd: 0x01cd78a88176c6a3 Ścieżka aplikacji powodującej błąd: D:\Gry\Battlefield Heroes\BFHeroes.exe Ścieżka modułu powodującego błąd: pbcl.dll Identyfikator raportu: 54a5b752-e4a0-11e1-9bb9-406186344a70 Error - 2012-08-12 14:41:06 | Computer Name = Ukasz | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: BFHeroes.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x5007bbc9 Nazwa modułu powodującego błąd: pbcl.dll_unloaded, wersja: 0.0.0.0, sygnatura czasowa: 0x4cf7ee21 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0f300e1c Identyfikator procesu powodującego błąd: 0x1078 Godzina uruchomienia aplikacji powodującej błąd: 0x01cd78b54861303c Ścieżka aplikacji powodującej błąd: D:\Gry\Battlefield Heroes\BFHeroes.exe Ścieżka modułu powodującego błąd: pbcl.dll Identyfikator raportu: 4611f231-e4ad-11e1-9bb9-406186344a70 Error - 2012-08-12 19:08:43 | Computer Name = Ukasz | Source = Application Hang | ID = 1002 Description = Program VirtualMT2.exe w wersji 1.0.0.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: d00 Godzina rozpoczęcia: 01cd78df47c755b0 Godzina zakończenia: 3 Ścieżka aplikacji: D:\Gry\VirtualMT2\VirtualMT2.exe Identyfikator raportu: a5af248c-e4d2-11e1-a032-406186344a70 Error - 2012-08-12 19:11:54 | Computer Name = Ukasz | Source = Application Hang | ID = 1002 Description = Program VirtualMT2.exe w wersji 1.0.0.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 25c Godzina rozpoczęcia: 01cd78dfabd5499d Godzina zakończenia: 4 Ścieżka aplikacji: D:\Gry\VirtualMT2\VirtualMT2.exe Identyfikator raportu: 18b47dd2-e4d3-11e1-a032-406186344a70 Error - 2012-08-12 20:18:16 | Computer Name = Ukasz | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2012-08-13 11:52:14 | Computer Name = Ukasz | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: BFHeroes.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x5007bbc9 Nazwa modułu powodującego błąd: pbcl.dll_unloaded, wersja: 0.0.0.0, sygnatura czasowa: 0x4cf7ee21 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x09640e1c Identyfikator procesu powodującego błąd: 0x1344 Godzina uruchomienia aplikacji powodującej błąd: 0x01cd7969c095b06a Ścieżka aplikacji powodującej błąd: D:\Gry\Battlefield Heroes\BFHeroes.exe Ścieżka modułu powodującego błąd: pbcl.dll Identyfikator raportu: d9a8f687-e55e-11e1-8d31-406186344a70 [ System Events ] Error - 2012-08-13 09:59:19 | Computer Name = Ukasz | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR4. Error - 2012-08-13 09:59:20 | Computer Name = Ukasz | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR4. Error - 2012-08-13 09:59:20 | Computer Name = Ukasz | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR4. Error - 2012-08-13 10:19:16 | Computer Name = Ukasz | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 16:18:04 na ?2012-?08-?13 było nieoczekiwane. Error - 2012-08-13 10:19:19 | Computer Name = Ukasz | Source = BugCheck | ID = 1001 Description = Error - 2012-08-13 12:02:00 | Computer Name = Ukasz | Source = Service Control Manager | ID = 7030 Description = Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error - 2012-08-13 12:03:17 | Computer Name = Ukasz | Source = Application Popup | ID = 1060 Description = Ładowanie sterownika \??\C:\ComboFix\catchme.sys zostało zablokowane z powodu niezgodności z tym systemem. Skontaktuj się z dostawcą oprogramowania w celu uzyskania zgodnej wersji sterownika. Error - 2012-08-13 12:03:41 | Computer Name = Ukasz | Source = Service Control Manager | ID = 7030 Description = Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error - 2012-08-13 12:03:46 | Computer Name = Ukasz | Source = Service Control Manager | ID = 7030 Description = Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error - 2012-08-13 12:05:18 | Computer Name = Ukasz | Source = Service Control Manager | ID = 7023 Description = Usługa Windows Defender zakończyła działanie; wystąpił następujący błąd: %%126 < End of report >