OTL Extras logfile created on: 11/09/2012 14:30:24 - Run 1 OTL by OldTimer - Version 3.2.61.3 Folder = C:\Users\admin\Downloads 64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000809 | Country: Wielka Brytania | Language: ENG | Date Format: dd/MM/yyyy 5.75 Gb Total Physical Memory | 3.89 Gb Available Physical Memory | 67.66% Memory free 109.15 Gb Paging File | 107.18 Gb Available in Paging File | 98.19% Paging File free Paging file location(s): c:\pagefile.sys 0 0h:\pagefile.sy [Binary data over 200 bytes] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 68.26 Gb Total Space | 10.14 Gb Free Space | 14.86% Space Free | Partition Type: NTFS Drive D: | 310.50 Gb Total Space | 21.34 Gb Free Space | 6.87% Space Free | Partition Type: NTFS Drive E: | 198.73 Gb Total Space | 64.39 Gb Free Space | 32.40% Space Free | Partition Type: NTFS Drive F: | 198.67 Gb Total Space | 144.38 Gb Free Space | 72.67% Space Free | Partition Type: NTFS Drive G: | 310.50 Gb Total Space | 249.55 Gb Free Space | 80.37% Space Free | Partition Type: NTFS Drive H: | 310.50 Gb Total Space | 180.92 Gb Free Space | 58.27% Space Free | Partition Type: NTFS Computer Name: ADMIN-KOMPUTER | User Name: admin | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) [HKEY_USERS\S-1-5-21-3690817028-2233715112-3189557289-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Browse with &IrfanView] -- "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- E:\PROGRA~1\MICROS~1\Office12\ONENOTE.EXE "%L" (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\Winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\Winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\Winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Browse with &IrfanView] -- "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- E:\PROGRA~1\MICROS~1\Office12\ONENOTE.EXE "%L" (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\Winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\Winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\Winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "C:\Windows\SysWOW64\wmptb64.exe" = C:\Windows\SysWOW64\wmptb64.exe:*:Enabled:Windows Media Protocal "C:\Windows\SysWOW64\wmptb64.exe" = C:\Windows\SysWOW64\wmptb64.exe:*:Enabled:Windows Media Protocal [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe" = C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3 -- (Trend Media Corporation Limited) "C:\Windows\SysWOW64\wmptb64.exe" = C:\Windows\SysWOW64\wmptb64.exe:*:Enabled:Windows Media Protocal "C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe" = C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3 -- (Trend Media Corporation Limited) "C:\Windows\SysWOW64\wmptb64.exe" = C:\Windows\SysWOW64\wmptb64.exe:*:Enabled:Windows Media Protocal [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{23DD736D-2882-4076-8BF9-8A1ADCC90723}" = lport=5678 | protocol=6 | dir=in | app=%systemroot%\windowsmobile\wmdhost.exe | "{267F0AF1-57E9-4EE7-804A-4B4DB7C7E1C9}" = lport=6004 | protocol=17 | dir=in | app=e:\program files (x86)\microsoft office\office12\outlook.exe | "{5B955B90-2F9C-48EF-A00F-1E2A7003E845}" = lport=990 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{7C157491-BE9F-472C-9036-CE37C96148E6}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe | "{95F1E683-1D3C-4F93-9A4A-3BCEEB489161}" = lport=26675 | protocol=6 | dir=in | name=@%systemroot%\windowsmobile\wmdcbase.exe,-4006 | "{A6C21179-43D1-4AD3-BD43-B8D92D677053}" = lport=5721 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{B2F7474D-B2A6-4630-87C4-3DC362D4454C}" = lport=999 | protocol=6 | dir=in | app=%systemroot%\windowsmobile\wmdhost.exe | "{BE757E0F-2685-4F9D-B21C-B5E59324EC1C}" = lport=58467 | protocol=17 | dir=in | name=pando media booster | "{ECE99375-6F77-4B17-B9BB-4F2134738D81}" = lport=58467 | protocol=6 | dir=in | name=pando media booster | "{FCCD61C1-5C6A-4C09-ADB8-252EBBEA5907}" = rport=5679 | protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{08A2AA75-BFCF-46F4-941F-B1F09072BA0A}" = protocol=17 | dir=in | app=e:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe | "{0A8B6325-6404-4AFE-8916-FE1ADBFAAA4D}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{0D8F3BF3-97E4-458F-BCBF-F525FE277686}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1225\agent.exe | "{10AC6CD6-B188-4584-A77C-BE13452D2C59}" = protocol=6 | dir=in | app=e:\program files (x86)\microsoft office\office12\groove.exe | "{16CCB133-3C75-458E-9B7A-9717224F5973}" = protocol=6 | dir=in | app=c:\program files (x86)\adawaretb\dtuser.exe | "{19C30D4B-BC45-4155-BFF9-553B8B54E8CA}" = protocol=17 | dir=in | app=e:\program files (x86)\firefly studios\stronghold legends\strongholdlegends.exe | "{1A126635-DA09-4B72-AD94-22FAA5D5F032}" = protocol=6 | dir=in | app=e:\program files (x86)\firefly studios\stronghold 2\stronghold2.exe | "{1FA8F5FB-8EB0-4C9D-8BC3-19D5BD13607C}" = protocol=6 | dir=in | app=e:\program files (x86)\firefly studios\stronghold legends\strongholdlegends.exe | "{260FBADF-E08D-4650-8B7B-36E6EE801F6C}" = protocol=17 | dir=in | app=e:\starcraft ii\gry\starcraft ii.exe | "{3138BA7A-6AFD-4D94-81F8-2FFF18C70702}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{37DDC1DE-7B80-40C1-B833-FBE72CF37B37}" = protocol=17 | dir=in | app=c:\windows\syswow64\svchost.exe | "{43052868-E9B8-41F6-8A86-E7127B193A79}" = protocol=6 | dir=in | app=c:\users\admin\downloads\utorrent.exe | "{434A6E1A-7DCD-4911-97F4-8E629975FD51}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{473108BC-E7A0-4350-B3B0-24C879993053}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | "{4A674071-C49C-418B-83B4-E801E15CDD02}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.998\agent.exe | "{55820326-EC4F-441D-8B82-940FC4D3CE13}" = protocol=6 | dir=in | app=e:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe | "{601EF155-8C80-46C6-89C1-AECD8FCFD8B4}" = protocol=6 | dir=in | app=c:\program files (x86)\maxthon3\bin\maxthon.exe | "{68135918-5C8B-4AAD-92F1-F92EA93F3090}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.998\agent.exe | "{6B3C2BEC-0BFB-406A-ADB5-98284D821C6A}" = protocol=6 | dir=in | app=e:\program files (x86)\microsoft office\office12\onenote.exe | "{6FAAF6A5-88A7-4403-ABD6-45885024A32E}" = protocol=17 | dir=in | app=c:\users\admin\downloads\utorrent.exe | "{7093D698-09AC-40C8-93ED-DDD7C7738813}" = protocol=17 | dir=in | app=c:\program files (x86)\adawaretb\dtuser.exe | "{7A7A9886-2DBA-40F2-8B06-43A78A58FAEE}" = protocol=17 | dir=in | app=c:\program files (x86)\maxthon3\bin\maxthon.exe | "{82FBEAEC-2E35-4C89-9216-BBAC40C366E3}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | "{85801EB7-335F-46CB-9537-019471F51318}" = protocol=6 | dir=in | app=e:\program files (x86)\kalypso\tropico 3\tropico3.exe | "{8B54518B-992F-48C5-88DB-8C7A320BE316}" = protocol=17 | dir=in | app=d:\program files (x86)\reality pump\two worlds ii\twoworlds2.exe | "{8E304403-809A-47DD-A172-C887486B2CEA}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{930088AC-BF7C-4DC3-9D60-C8FF044469EE}" = protocol=6 | dir=in | app=c:\windows\syswow64\svchost.exe | "{950B5D00-70E9-4E16-9635-E350C2ABE24C}" = protocol=6 | dir=in | app=d:\program files (x86)\reality pump\two worlds ii\twoworlds2.exe | "{96E6E691-0A30-4737-8F9C-49D65792E7A3}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{A0910133-2156-4E5F-8CB7-6FA97431EFA0}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{A23A87A7-73BC-43A3-9561-0C86879540D8}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1225\agent.exe | "{A440590C-AB7B-489F-9240-4CB4139A797D}" = protocol=6 | dir=in | app=e:\diablo iii\diablo iii.exe | "{AE7E3519-DF4E-4C05-A361-A6DE141F19AA}" = protocol=17 | dir=in | app=e:\program files (x86)\microsoft office\office12\groove.exe | "{B0073D52-1691-43BD-8E5E-23C4E50473EF}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{BA63E986-3671-4CAD-8E51-8DB4F59D18D9}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{C1271906-81E3-439A-8485-8D21A0828577}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{C8D284E2-743F-4E13-9DCF-7AF36FC3ED8E}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{CC1B8A55-4D40-49A4-B181-DE6268387EA2}" = protocol=17 | dir=in | app=e:\program files (x86)\kalypso\tropico 3\tropico3.exe | "{CDD0DBA9-8D7A-4C9E-B677-91DDF63E2F18}" = protocol=17 | dir=in | app=c:\program files (x86)\maxthon3\bin\maxthon.exe | "{D1A5A35C-9193-46F0-9562-BEF321C34060}" = dir=in | app=e:\program files (x86)\namco bandai games\darksouls\darksouls.exe | "{D34819F4-A5E7-423D-A45A-B83EC8647FB0}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{D3A4B685-03FB-49A1-9378-07C7E3674CCA}" = protocol=17 | dir=in | app=e:\program files (x86)\firefly studios\stronghold 2\stronghold2.exe | "{D8E1707A-F0E4-438B-AD68-B3D02B0C3E1A}" = protocol=17 | dir=in | app=e:\diablo iii\diablo iii.exe | "{DA707DB9-8851-4A1A-9C0E-37D393050224}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{E742B2BA-6BA8-46B5-BA1C-E7217FD4C08C}" = protocol=6 | dir=in | app=e:\starcraft ii\gry\starcraft ii.exe | "{E7DC6475-AA57-4D4A-8FA5-13DF2C00F819}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{E94BA514-8F83-454F-818A-BB7B69F85359}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 | "{EEA47450-AC58-4F74-BC47-02BAC3AB4B80}" = protocol=58 | dir=in | app=system | "{F6B479F4-695F-4C5B-B0D2-F46F89444832}" = protocol=17 | dir=in | app=e:\program files (x86)\microsoft office\office12\onenote.exe | "{FA7EEE4F-847C-4D87-907B-CD1E30639A64}" = protocol=6 | dir=in | app=c:\program files (x86)\maxthon3\bin\maxthon.exe | "TCP Query User{055DFC0C-0B34-4BF7-92F4-9C72E24B95A9}E:\torchlight 2 beta\surprise.exe" = protocol=6 | dir=in | app=e:\torchlight 2 beta\surprise.exe | "TCP Query User{06CC787C-034D-4B02-A86D-41F3D16766E2}C:\program files (x86)\flashget network\flashget 3\flashget3.exe" = protocol=6 | dir=in | app=c:\program files (x86)\flashget network\flashget 3\flashget3.exe | "TCP Query User{07CC56CA-6165-41BB-9FB3-A34C22E4D133}E:\program files (x86)\thq\warhammer 40,000 antologia\w40k.exe" = protocol=6 | dir=in | app=e:\program files (x86)\thq\warhammer 40,000 antologia\w40k.exe | "TCP Query User{152FE64E-78E6-411A-B2C9-61AB0FFB0A45}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe | "TCP Query User{178C2AC4-87E5-457C-B643-C348FE0680C8}F:\games\need for speed the run\need for speed the run.exe" = protocol=6 | dir=in | app=f:\games\need for speed the run\need for speed the run.exe | "TCP Query User{24F2A284-1BCE-4094-84E1-B6BB95AFF495}D:\games\world_of_tanks\wotlauncher.exe" = protocol=6 | dir=in | app=d:\games\world_of_tanks\wotlauncher.exe | "TCP Query User{35D58957-D0DE-472E-8924-5C7E9538CDB6}E:\krater public test\krater.exe" = protocol=6 | dir=in | app=e:\krater public test\krater.exe | "TCP Query User{3610113E-0039-43AB-92E5-2A6355D4A435}C:\windows\syswow64\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "TCP Query User{3870EA2B-1553-48C8-9F5E-41D7E5FA0F5F}E:\sierra\empire earth\empire earth.exe" = protocol=6 | dir=in | app=e:\sierra\empire earth\empire earth.exe | "TCP Query User{38C1DB43-6A37-4B59-823A-D0AA6972B692}C:\users\admin\downloads\utorrent.exe" = protocol=6 | dir=in | app=c:\users\admin\downloads\utorrent.exe | "TCP Query User{39991C09-5E12-4ED0-965E-F1C2C1925150}E:\program files (x86)\kingdoms of amalur reckoning\reckoning.exe" = protocol=6 | dir=in | app=e:\program files (x86)\kingdoms of amalur reckoning\reckoning.exe | "TCP Query User{46A94438-CB34-4426-832E-3F58AC76AB94}C:\windows\syswow64\svchost.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\svchost.exe | "TCP Query User{4C04288B-B134-4F47-9D46-3A04E87E0FA3}E:\starcraft ii\gry\versions\base21029\sc2.exe" = protocol=6 | dir=in | app=e:\starcraft ii\gry\versions\base21029\sc2.exe | "TCP Query User{56757856-C49D-42B1-A41A-7CDA449FE9AE}E:\program files (x86)\thechineseroom\dear esther\dearesther.exe" = protocol=6 | dir=in | app=e:\program files (x86)\thechineseroom\dear esther\dearesther.exe | "TCP Query User{58C5A195-093B-42B5-BC34-30D0E9890B20}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "TCP Query User{729D0AFF-EE15-4CE3-9FE1-D443A01E2F48}E:\torchlight 2 beta\tl2.beta.launcher.exe" = protocol=6 | dir=in | app=e:\torchlight 2 beta\tl2.beta.launcher.exe | "TCP Query User{781A5145-70BA-406B-BAA1-4CB41BF87CBF}D:\users tor\knightsandmerchants\kam_1024.exe" = protocol=6 | dir=in | app=d:\users tor\knightsandmerchants\kam_1024.exe | "TCP Query User{8702F8F1-9EA2-4B4D-B552-3805074DA2A0}E:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe" = protocol=6 | dir=in | app=e:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe | "TCP Query User{89201854-062F-4F0E-9D8F-6CF3BA80347A}C:\program files\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre7\bin\javaw.exe | "TCP Query User{B289B5B4-6C54-4EB1-B7E5-81806C9B99E7}E:\program files (x86)\firefly studios\stronghold 3\bin\win32_release\stronghold3.exe" = protocol=6 | dir=in | app=e:\program files (x86)\firefly studios\stronghold 3\bin\win32_release\stronghold3.exe | "TCP Query User{D39CAFE8-3D3D-4BAB-869D-3F1CD957050A}D:\games\world_of_tanks\worldoftanks.exe" = protocol=6 | dir=in | app=d:\games\world_of_tanks\worldoftanks.exe | "TCP Query User{D78427F4-7F4F-44EF-9994-C37936087825}E:\program files (x86)\sixteen tons entertainment\emergency 4\em4.exe" = protocol=6 | dir=in | app=e:\program files (x86)\sixteen tons entertainment\emergency 4\em4.exe | "TCP Query User{D7D78623-F3A6-4179-B624-1E5516060B00}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "TCP Query User{E15A6A0D-7506-4309-A447-FF001632323F}C:\program files (x86)\common files\comodo\rgtdj.exe" = protocol=6 | dir=in | app=c:\program files (x86)\common files\comodo\rgtdj.exe | "TCP Query User{E1AAF14A-8D2E-4BC2-9FF9-9EFD1C210BBA}E:\diablo iii\diablo iii.exe" = protocol=6 | dir=in | app=e:\diablo iii\diablo iii.exe | "TCP Query User{E63D1E51-DCE3-4E53-BD37-062D5B10D73A}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "TCP Query User{EDB4CEDE-BB67-4F35-AB7D-7C248F49F373}C:\program files (x86)\1clickdownload\1clickdownloader.exe" = protocol=6 | dir=in | app=c:\program files (x86)\1clickdownload\1clickdownloader.exe | "TCP Query User{EF0C3067-E55B-4DCC-9FFF-FBB231E73AA9}G:\ee1\empire earth\empire earth.exe" = protocol=6 | dir=in | app=g:\ee1\empire earth\empire earth.exe | "TCP Query User{FD08288B-E1A4-4BF9-8A50-F4E99CFBDFD5}E:\program files (x86)\soldiers - ludzie honoru\soldiers.exe" = protocol=6 | dir=in | app=e:\program files (x86)\soldiers - ludzie honoru\soldiers.exe | "TCP Query User{FE71CEB1-D647-40CB-9F01-DCACF09BD10C}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe | "UDP Query User{02B82A0A-4066-41C1-86C5-E3596692C2B5}E:\program files (x86)\thq\warhammer 40,000 antologia\w40k.exe" = protocol=17 | dir=in | app=e:\program files (x86)\thq\warhammer 40,000 antologia\w40k.exe | "UDP Query User{09886006-E41A-4592-A671-05A446154C32}D:\games\world_of_tanks\worldoftanks.exe" = protocol=17 | dir=in | app=d:\games\world_of_tanks\worldoftanks.exe | "UDP Query User{39D11922-54A2-4293-820E-47099357A5F7}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "UDP Query User{3A880BD6-594F-44EB-85BC-FC2F3C0781BE}G:\ee1\empire earth\empire earth.exe" = protocol=17 | dir=in | app=g:\ee1\empire earth\empire earth.exe | "UDP Query User{4122BCD8-CECC-4B92-80DC-6C0B07DDE1A2}E:\torchlight 2 beta\tl2.beta.launcher.exe" = protocol=17 | dir=in | app=e:\torchlight 2 beta\tl2.beta.launcher.exe | "UDP Query User{42888007-3A0C-4754-BA28-6BFE3AD6804C}C:\program files (x86)\1clickdownload\1clickdownloader.exe" = protocol=17 | dir=in | app=c:\program files (x86)\1clickdownload\1clickdownloader.exe | "UDP Query User{44A09034-F763-4E83-AF51-252FDE1D24ED}E:\program files (x86)\sixteen tons entertainment\emergency 4\em4.exe" = protocol=17 | dir=in | app=e:\program files (x86)\sixteen tons entertainment\emergency 4\em4.exe | "UDP Query User{4A8B263A-0164-4117-9CDA-39D10744EAA7}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "UDP Query User{59592792-18C6-4136-9C02-510803F4BC51}E:\starcraft ii\gry\versions\base21029\sc2.exe" = protocol=17 | dir=in | app=e:\starcraft ii\gry\versions\base21029\sc2.exe | "UDP Query User{5B23D3E8-73FB-4BAE-96D6-9A605FB97CC4}E:\program files (x86)\soldiers - ludzie honoru\soldiers.exe" = protocol=17 | dir=in | app=e:\program files (x86)\soldiers - ludzie honoru\soldiers.exe | "UDP Query User{6331EBA8-67AB-4BF1-89D5-05286706B10E}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe | "UDP Query User{6B3C8DBA-E04C-4A0B-8D34-0F94D5109A8B}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "UDP Query User{6D323230-4C95-4F0D-979F-6F348D874101}E:\diablo iii\diablo iii.exe" = protocol=17 | dir=in | app=e:\diablo iii\diablo iii.exe | "UDP Query User{79D76CE7-6D3E-40A7-8CE8-57D9E19656BB}E:\program files (x86)\firefly studios\stronghold 3\bin\win32_release\stronghold3.exe" = protocol=17 | dir=in | app=e:\program files (x86)\firefly studios\stronghold 3\bin\win32_release\stronghold3.exe | "UDP Query User{7E9F0D36-0D1D-4AC9-8BF0-828D63B6A6B8}E:\program files (x86)\thechineseroom\dear esther\dearesther.exe" = protocol=17 | dir=in | app=e:\program files (x86)\thechineseroom\dear esther\dearesther.exe | "UDP Query User{818AB929-2DEC-4999-97FD-93A966941A19}C:\program files\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre7\bin\javaw.exe | "UDP Query User{82364A23-E697-4CC2-A618-F1CE72DE9FE6}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe | "UDP Query User{83490177-CBEA-44C9-9462-C3A9FDC5A867}C:\program files (x86)\common files\comodo\rgtdj.exe" = protocol=17 | dir=in | app=c:\program files (x86)\common files\comodo\rgtdj.exe | "UDP Query User{86EF9662-B5D4-42CD-88BB-016B3E3EED1D}E:\program files (x86)\kingdoms of amalur reckoning\reckoning.exe" = protocol=17 | dir=in | app=e:\program files (x86)\kingdoms of amalur reckoning\reckoning.exe | "UDP Query User{8E7A982C-8BC8-456D-A788-E63F8362CAA6}C:\users\admin\downloads\utorrent.exe" = protocol=17 | dir=in | app=c:\users\admin\downloads\utorrent.exe | "UDP Query User{9579C2A9-9CAB-4244-B44B-EEDEB8230B3D}E:\sierra\empire earth\empire earth.exe" = protocol=17 | dir=in | app=e:\sierra\empire earth\empire earth.exe | "UDP Query User{9DD390FF-F2EF-4349-B0EC-267A3707C80A}C:\windows\syswow64\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "UDP Query User{A30877EB-7440-483C-B750-05EA9D2151CE}C:\program files (x86)\flashget network\flashget 3\flashget3.exe" = protocol=17 | dir=in | app=c:\program files (x86)\flashget network\flashget 3\flashget3.exe | "UDP Query User{A4406ACE-ED74-4214-B3E7-D74C14923173}E:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe" = protocol=17 | dir=in | app=e:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe | "UDP Query User{A8C82E11-B4C1-4D10-B93A-DE633A189BEE}F:\games\need for speed the run\need for speed the run.exe" = protocol=17 | dir=in | app=f:\games\need for speed the run\need for speed the run.exe | "UDP Query User{ADAB763E-1CDD-47D0-9560-ADE2CBD36E4C}C:\windows\syswow64\svchost.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\svchost.exe | "UDP Query User{B353C289-0835-441A-9C30-4D9E0B80A49C}E:\torchlight 2 beta\surprise.exe" = protocol=17 | dir=in | app=e:\torchlight 2 beta\surprise.exe | "UDP Query User{C736A292-6F94-4178-9221-FC60C3512468}D:\users tor\knightsandmerchants\kam_1024.exe" = protocol=17 | dir=in | app=d:\users tor\knightsandmerchants\kam_1024.exe | "UDP Query User{D3A97D6B-A454-49F3-8DA7-254EAE942024}D:\games\world_of_tanks\wotlauncher.exe" = protocol=17 | dir=in | app=d:\games\world_of_tanks\wotlauncher.exe | "UDP Query User{D56895CD-DB9C-43E6-A99C-CF4032D8ABAD}E:\krater public test\krater.exe" = protocol=17 | dir=in | app=e:\krater public test\krater.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0826F9E4-787E-481D-83E0-BC6A57B056D5}" = Microsoft SQL Server VSS Writer "{26A24AE4-039D-4CA4-87B4-2F86417004FF}" = Java(TM) 7 Update 4 (64-bit) "{2F14965D-567B-4E59-ADEB-0A2CC1E3ADDF}" = Sql Server Customer Experience Improvement Program "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime "{5340A3B5-3853-4745-BED2-DD9FF5371331}" = Microsoft SQL Server 2008 Common Files "{5F92DAD2-FD95-DD12-50DF-A6F66C7E67C8}" = AMD Drag and Drop Transcoding "{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}" = Centrum obsługi urządzeń z systemem Windows Mobile "{669A82E0-43E2-4645-8A2E-1A3DE78F8312}" = Adobe Photoshop Lightroom 4 64-bit "{680D2E55-6FCC-4695-8741-3EA13DE4C898}" = ESET NOD32 Antivirus "{6B93C483-BCF0-4FE1-AC6A-A5D38E52EAE6}" = Diskeeper 12 "{7ACE202B-1B01-4B43-B6AE-03D66D621CDE}" = Microsoft SQL Server 2008 RsFx Driver "{893F27E6-D6BE-4B9F-80E6-0ADA694A31A8}" = Microsoft SQL Server 2008 Common Files "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007 "{94D70749-4281-39AC-AD90-B56A0E0A402E}" = Microsoft Visual C++ 2010 x64 Runtime - 10.0.30319 "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant "{9E3B2120-0BD8-9865-0387-E9BAC2A53AD3}" = ccc-utility64 "{ABE286AE-C65D-B7DE-C8D1-DF79584169B4}" = AMD Fuel "{B40EE88B-400A-4266-A17B-E3DE64E94431}" = Microsoft SQL Server 2008 Setup Support Files "{BBDE8A3D-64A2-43A6-95F3-C27B87DF7AC1}" = Microsoft SQL Server 2008 Native Client "{BCA26999-EC22-3007-BB79-638913079C9A}" = Microsoft Visual Studio 2010 Express Prerequisites x64 - ENU "{BE882A12-5A45-3DFF-9FD0-306DE65EB8A5}" = AMD Catalyst Install Manager "{CC8BA866-16A7-4667-BA0C-C494A1E7B2BF}" = Microsoft SQL Server 2008 Database Engine Shared "{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}" = Microsoft SQL Server Compact 3.5 SP2 x64 ENU "{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 "{DF167CE3-60E7-44EA-99EC-2507C51F37AE}" = Microsoft SQL Server 2008 Database Engine Shared "{EF393943-0CCE-9CD9-6181-96DF4E4428EF}" = AMD Media Foundation Decoders "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "{FA7394B8-CE65-4F9E-AC99-F372AD365424}" = Microsoft SQL Server 2008 Database Engine Services "{FBD367D1-642F-47CF-B79B-9BE48FB34007}" = Microsoft SQL Server 2008 Database Engine Services "{FCADA26A-5672-31DD-BF0E-BA76ECF9B02D}" = Microsoft Help Viewer 1.0 "HP LaserJet Professional P1100-P1560-P1600 Series" = HP LaserJet Professional P1100-P1560-P1600 Series "Jade Empire: Edycja Specjalna [RePack by Rihiters]_is1" = Jade Empire "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft Help Viewer 1.0" = Microsoft Help Viewer 1.0 "Microsoft SQL Server 10" = Microsoft SQL Server 2008 (64-bit) "Microsoft SQL Server 10 Release" = Microsoft SQL Server 2008 (64-bit) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0D97F8D1-2102-53D2-5633-C992D6086801}" = CCC Help Chinese Traditional "{0EA00EA7-42C0-ED9C-9110-2C04B8EDBA66}" = CCC Help Italian "{0EB86B70-91FF-39BF-633C-785DF2218CC6}" = CCC Help French "{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1 "{112C23F2-C036-4D40-BED4-0CB47BF5555C}" = Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU "{129FC9F8-206B-4C29-9B45-8D53B10EC6C7}" = xVideoServiceThief "{14DD7530-CCD2-3798-B37D-3839ED6A441C}" = Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools "{1686C07D-C2BB-A8B2-C5ED-32C4EE1A3E62}" = CCC Help Spanish "{16D2C649-CBA8-44EE-B730-12584667D487}" = Stronghold 2 "{18B6A9F8-25BC-5978-6B42-A50FA2CABC18}" = CCC Help English "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 "{19BB1AF9-981C-4539-9113-D2F88F031C1D}" = GeekBuddy "{1B1790DC-37C3-48EE-ADFA-04D6D0BC10B4}" = OrganAssist Version 2.5.11 "{1EAC1D02-C6AC-4FA6-9A44-96258C37C812}_is1" = World of Tanks "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{2447500B-22D7-47BD-9B13-1A927F43A267}" = Empire Earth "{26A24AE4-039D-4CA4-87B4-2F83216014F0}" = Java(TM) 6 Update 14 "{26A24AE4-039D-4CA4-87B4-2F83216022F0}" = Java(TM) 6 Update 22 "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{26A24AE4-039D-4CA4-87B4-2F83217005FF}" = Java(TM) 7 Update 5 "{28E82311-8616-11E1-BEB0-B8AC6F97B88E}" = Google Earth "{298C6691-46B2-2065-0DD7-1E7B3B669A47}" = CCC Help Finnish "{2A2F3AE8-246A-4252-BB26-1BEB45627074}" = Microsoft SQL Server System CLR Types "{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}" = Microsoft XNA Framework Redistributable 4.0 "{2D6572D5-8D77-48F7-852D-ECD624068ABB}_is1" = GrandOrgue 0.2.0.1 "{2ECA81CA-D932-4AD3-AD59-BF5CCF099C83}" = Catalyst Control Center - Branding "{35CB6715-41F8-4F99-8881-6FC75BF054B0}" = Oblivion "{3A9FC03D-C685-4831-94CF-4EDFD3749497}" = Microsoft SQL Server Compact 3.5 SP2 ENU "{400C5445-1AE8-1A41-CAC6-AB114341F65D}" = CCC Help Swedish "{448B1C6D-02C2-7681-66B2-624E58B25375}" = CCC Help Turkish "{45435AE1-52E6-4E7F-81EF-D72DDA2F51D5}" = Świadectwa Optivum "{46EB9D45-FC1A-2635-1693-176E6FA1C672}" = CCC Help Portuguese "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace "{4E4D0FA1-F880-4CCB-999A-501000008200}" = Dark Souls Prepare to Die Edition "{4E968D9C-21A7-4915-B698-F7AEB913541D}" = Microsoft SQL Server 2008 R2 Management Objects "{59F24743-2EA1-3A45-B8C2-6E0E1E078FA8}" = Microsoft Visual C# 2010 Express - ENU "{651F43AA-3F06-9277-6F1B-8E8155017463}" = CCC Help Polish "{66A405D2-BA14-4594-BF36-B3B544F0754E}" = Stronghold Legends "{68DE32E1-292B-6A02-6A53-935BFAE70C99}" = CCC Help Chinese Standard "{6C9C70B9-4FDC-4D47-915B-84C4CE91C704}_is1" = Recolored 1.1.0 "{6CA1CD8C-2D65-491E-9467-00A3ACA4A0A9}" = Tropico 3 "{74C267D0-FC2A-4AFE-90C0-F95AA2507300}" = Warlords Battlecry III "{818212BA-7F8C-DDF9-64BE-F6D0B6F46D29}" = CCC Help German "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{84F4542C-ED64-28AC-49B3-1A9BAB395AB4}" = CCC Help Hungarian "{875F9A42-D47B-43E6-BA68-29D1895188D5}_is1" = Dynamic Auto-Painter 2.5.3 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8AF5EA22-17DC-46E0-ABA3-F30A7D288DD0}" = The Settlers - Dziedzictwo Królów "{8E9976D2-E563-43DE-A51F-5AEBC38D1F08}" = Ad-Aware "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{918A9082-6287-4D25-9002-5E5D5E4971CB}" = League of Legends "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9C41195F-11B3-8EEC-6634-7183BE6CB1B1}" = CCC Help Japanese "{9E859D40-E587-11D5-BA55-00C0CA129740}" = Zax "{A33A89D0-2F48-FD1C-A243-9073EE0592E0}" = Catalyst Control Center InstallProxy "{A66FB6C7-B689-AFD5-21BA-7CAF8E44E6E6}" = Catalyst Control Center Graphics Previews Common "{A7E19604-93AF-4611-8C9F-CE509C2B286E}_is1" = VDownloader 3.9.1154 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1045-7B44-A81200000003}" = Adobe Reader 8 - Polish "{AE136F7F-7DC6-600F-9DF9-BFA0DF516135}" = Catalyst Control Center Localization All "{B4CF00AE-2622-7BC6-24EC-4E5A0A8C9135}" = CCC Help Czech "{B7E38540-E355-3503-AFD7-635B2F2F76E1}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974 "{B8ABD8C7-991E-4A70-B5A3-20C6FC680680}" = LogMeIn Hamachi "{BAE1C0A8-634D-CFF1-0E0C-893092427D34}" = CCC Help Danish "{C2DEC505-79A9-E952-32B0-31B67B83E231}" = CCC Help Korean "{C2FB14FB-DF6B-287D-BDC3-C7BEC86F539E}" = AMD VISION Engine Control Center "{C3C9EB3D-24FA-4462-B784-0EC6AAFCD2DD}" = Fable - The Lost Chapters "{C688457E-03FD-4941-923B-A27F4D42A7DD}" = Microsoft SQL Server 2008 Browser "{CB094682-A525-4A92-9E8C-89D8B4251C20}" = Myst IV - Revelation Demo "{CCEFAE22-4D01-0084-D1CA-AC14AA743A97}" = CCC Help Greek "{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}" = Microsoft .NET Framework 4 Multi-Targeting Pack "{DE460826-5E72-2357-154F-E376F9926008}" = CCC Help Norwegian "{DEA314C4-0929-4250-BC92-98E4C105F28D}" = NVIDIA PhysX "{DF315348-721C-40B8-BAE2-58C6C7D935A2}" = Empire Earth II "{E21FFD29-D231-3BD3-6941-15710E44BED4}" = CCC Help Dutch "{E3E313C7-0AE2-7F44-52E8-528D4EDC74B2}" = CCC Help Thai "{E52D32A0-0005-11D7-928D-000ACD006A23}" = The Elder Scrolls III - Morrowind Złota Edycja "{E7910DFA-1BCF-4864-8182-EB97B1A63B82}" = Icewind Dale 2 "{EB87675F-5281-4767-A54B-31931794C23D}" = OpenOffice.org 3.3 "{EC1EAFD6-E027-424D-A012-8CCA50022587}_is1" = Dungeon Lords CE "{F138762F-5A1F-4CF0-A5E1-1588EF6088A4}" = Wiedźmin Edycja Rozszerzona "{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable "{F2B02345-93D0-42EC-922A-33481CE9A6E1}" = Warhammer 40,000 Antologia "{F9929777-7B6E-F53D-3105-1C06E5120CA1}" = CCC Help Russian "{FDB2EB0C-1803-4367-B2F1-9B76C0CD4486}" = Emergency 4 "{FF39FC01-819B-42E4-AE49-1968AF12DDD4}" = Dawn of War - Dark Crusade "4F6D5E84-5826-4394-9F40-3A9A19165651_is1" = Pandora Service "7 Gates The Path to Zamolxes 1.00" = 7 Gates The Path to Zamolxes 1.00 "AbiWord2" = AbiWord 2.8.6 "adawaretb" = Ad-Aware Security Toolbar "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Age of Wonders Magia Cienia" = Age of Wonders Magia Cienia "ALLPlayer V3.0_is1" = ALLPlayer V3.X "Any Video Converter Professional_is1" = Any Video Converter Professional 3.2.5 "Astraware GTS Racing Challenge" = GTS Racing Challenge v1.03.13 for Pocket PC "Atlantis Trilogy Pack 1.00" = Atlantis Trilogy Pack 1.00 "Autopano Giga" = Autopano Giga "Azangara_is1" = Azangara version 1.31 "BabylonToolbar" = Babylon toolbar on IE "CDisplay_is1" = CDisplay 1.8 "Civilization.V.GOTY.incl.Gods.and.Kings_is1" = Civilization.V.GOTY.incl.Gods.and.Kings "Comodo Dragon" = Comodo Dragon "Cultures2" = Cultures 2 - Bramy Asgardu "DaggerfallSetup_is1" = Daggerfall (DaggerfallSetup 2.4a) "DevalVR for Netscape" = DevalVR plugin for Netscape and compatible browsers "Diablo II" = Diablo II "Diablo III" = Diablo III "Dungeon Keeper II" = Dungeon Keeper 2 "Dynamic-Photo HDR 5_is1" = Dynamic-Photo HDR 5 "Earth 2160" = Earth 2160 "Empire Earth II Gold Edition_is1" = Empire Earth II Gold Edition "ENTERPRISE" = Microsoft Office Enterprise 2007 "e-Śpiewnik_is1" = e-Śpiewnik 2.0 "FlashGet3.7" = FlashGet3.7 "Flower of Immortality 1.00" = Flower of Immortality 1.00 "Foxit Reader_is1" = Foxit Reader 5.1 "Free Solitaire" = Free Solitaire "Garden Composer 3D" = Garden Composer 3D "GFWL_{4E4D0FA1-F880-4CCB-999A-501000008200}" = Dark Souls Prepare to Die Edition "Glary Utilities_is1" = Glary Utilities Pro 2.43.0.1419 "Google Chrome" = Google Chrome "Google Earth6.1.0.5001" = Google Earth "HaaliMkx" = Haali Media Splitter "Hauptwerk" = Hauptwerk "Inkscape" = Inkscape 0.48.3.1 "InstallShield_{C3C9EB3D-24FA-4462-B784-0EC6AAFCD2DD}" = Fable - The Lost Chapters "IrfanView" = IrfanView (remove only) "Jewel Quest Mysteries The Oracle of Ur Collectors Edition 1.00" = Jewel Quest Mysteries The Oracle of Ur Collectors Edition 1.00 "Kingdoms of Amalur Reckoning_is1" = Kingdoms of Amalur Reckoning "Legends of Might and Magic First Look" = Legends of Might and Magic(tm) First Look "LogMeIn Hamachi" = LogMeIn Hamachi "MagicDisc 2.7.106" = MagicDisc 2.7.106 "Maxthon3" = Maxthon 3 "Microsoft Visual C# 2010 Express - ENU" = Microsoft Visual C# 2010 Express - ENU "Midi Monitor_is1" = Midi Monitor 2 "Mount&Blade Warband" = Mount&Blade Warband "Mozilla Firefox 15.0.1 (x86 pl)" = Mozilla Firefox 15.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Odkurzacz 13.0_is1" = Odkurzacz "Panzer Elite Action" = Panzer Elite Action "Pharaoh" = Faraon "Picasa 3" = Picasa 3 "Pidgin" = Pidgin "Polanie II" = Polanie II "RealAlt_is1" = Real Alternative 2.0.2 "Risen 2_is1" = Risen 2 "Small Town Terrors Livingston 1.00" = Small Town Terrors Livingston 1.00 "Smart Defrag 2_is1" = Smart Defrag 2 "Sniper Elite V2_is1" = Sniper Elite V2 "Soldiers - Ludzie Honoru_is1" = Soldiers - Ludzie Honoru "SpeedConnect Internet Accelerator v.8.0_is1" = SpeedConnect Internet Accelerator v.8.0 "StarCraft II" = StarCraft II "Stronghold 3_is1" = Stronghold 3 "The KMPlayer" = The KMPlayer (remove only) "The Witcher 2 - Assassins of Kings Enhanced Edition_is1" = The Witcher 2 - Assassins of Kings Enhanced Edition "Torchlight 2 Beta_is1" = Torchlight 2 Beta "Totalcmd" = Total Commander (Remove or Repair) "uTorrent" = µTorrent "uTorrentControl2 Toolbar" = uTorrentControl2 Toolbar "Warcraft III" = Warcraft III "Winamp" = Winamp (remove only) "WinPcapInst" = WinPcap 4.1.1 "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3690817028-2233715112-3189557289-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{79A765E1-C399-405B-85AF-466F52E918B0}" = KMPlayer Toolbar Updater "FlashGet3.7.0.1156" = FlashGet3.7.0.1156 "Polska lokalizacja Lightroom 4" = Polska lokalizacja Lightroom 4 "Warcraft III" = Warcraft III: wszystkie elementy [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 10/09/2012 16:54:54 | Computer Name = admin-Komputer | Source = Software Protection Platform Service | ID = 8198 Description = Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error - 10/09/2012 16:54:54 | Computer Name = admin-Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error - 10/09/2012 17:48:28 | Computer Name = admin-Komputer | Source = Software Protection Platform Service | ID = 8198 Description = Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error - 10/09/2012 17:48:28 | Computer Name = admin-Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error - 11/09/2012 01:07:25 | Computer Name = admin-Komputer | Source = Software Protection Platform Service | ID = 8198 Description = Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error - 11/09/2012 01:07:25 | Computer Name = admin-Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error - 11/09/2012 05:09:39 | Computer Name = admin-Komputer | Source = Software Protection Platform Service | ID = 8198 Description = Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error - 11/09/2012 05:09:39 | Computer Name = admin-Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error - 11/09/2012 08:16:22 | Computer Name = admin-Komputer | Source = Software Protection Platform Service | ID = 8198 Description = Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error - 11/09/2012 08:16:25 | Computer Name = admin-Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error - 11/09/2012 08:17:24 | Computer Name = admin-Komputer | Source = Application Hang | ID = 1002 Description = Program Flashget3.exe w wersji 3.7.0.1156 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: a90 Godzina rozpoczęcia: 01cd90174f830d6a Godzina zakończenia: 11790 Ścieżka aplikacji: C:\Program Files (x86)\FlashGet Network\FlashGet 3\Flashget3.exe Identyfikator raportu: 9711822f-fc0a-11e1-991d-4061862a0053 [ System Events ] Error - 11/09/2012 05:09:39 | Computer Name = admin-Komputer | Source = NETLOGON | ID = 3095 Description = Ten komputer jest skonfigurowany jako członek grupy roboczej, a nie domeny. W tej konfiguracji usługa Netlogon nie musi być uruchamiana. Error - 11/09/2012 05:09:44 | Computer Name = admin-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa SQL Server (SQLEXPRESS) zależy od usługi Netlogon, której nie można uruchomić z powodu następującego błędu: %%0 Error - 11/09/2012 05:09:44 | Computer Name = admin-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi PandoraService z powodu następującego błędu: %%2 Error - 11/09/2012 05:10:08 | Computer Name = admin-Komputer | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: CFRMD Error - 11/09/2012 08:16:11 | Computer Name = admin-Komputer | Source = Application Popup | ID = 1060 Description = Ładowanie sterownika \SystemRoot\system32\DRIVERS\CFRMD.sys zostało zablokowane z powodu niezgodności z tym systemem. Skontaktuj się z dostawcą oprogramowania w celu uzyskania zgodnej wersji sterownika. Error - 11/09/2012 08:16:22 | Computer Name = admin-Komputer | Source = NETLOGON | ID = 3095 Description = Ten komputer jest skonfigurowany jako członek grupy roboczej, a nie domeny. W tej konfiguracji usługa Netlogon nie musi być uruchamiana. Error - 11/09/2012 08:16:26 | Computer Name = admin-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa SQL Server (SQLEXPRESS) zależy od usługi Netlogon, której nie można uruchomić z powodu następującego błędu: %%0 Error - 11/09/2012 08:16:27 | Computer Name = admin-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi PandoraService z powodu następującego błędu: %%2 Error - 11/09/2012 08:16:30 | Computer Name = admin-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi TightVNC Server z powodu następującego błędu: %%2 Error - 11/09/2012 08:16:54 | Computer Name = admin-Komputer | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: CFRMD < End of report >