OTL Extras logfile created on: 2012-09-26 20:41:18 - Run 1 OTL by OldTimer - Version 3.2.68.0 Folder = C:\Users\MASTER\Desktop 64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 8,00 Gb Total Physical Memory | 7,27 Gb Available Physical Memory | 90,93% Memory free 15,99 Gb Paging File | 15,29 Gb Available in Paging File | 95,61% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 78,49 Gb Total Space | 36,12 Gb Free Space | 46,01% Space Free | Partition Type: NTFS Drive D: | 154,30 Gb Total Space | 134,37 Gb Free Space | 87,08% Space Free | Partition Type: NTFS Drive F: | 3,72 Gb Total Space | 2,16 Gb Free Space | 58,09% Space Free | Partition Type: FAT32 Computer Name: MASTER-KOMPUTER | User Name: MASTER | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl[@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html[@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) [HKEY_USERS\S-1-5-21-3977157202-2151577845-446372956-1000\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\SysWow64\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation) https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\SysWow64\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\SysWow64\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\SysWow64\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{171A37F2-5AF3-428B-AA18-F098A47604EC}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{281728B2-EC3F-4DF1-B382-34FF8BCE89B9}" = rport=445 | protocol=6 | dir=out | app=system | "{2A5D7AA2-A7E5-471C-A5C8-402BA5D46559}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{305D5195-B171-4F87-A40D-2959EFAD6AB8}" = lport=2869 | protocol=6 | dir=in | app=system | "{3C9FE6A5-6713-4D68-99F1-4CF9DF086058}" = lport=139 | protocol=6 | dir=in | app=system | "{40717941-CF80-4059-B3B9-B29BA96BE003}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{53432277-C888-40A1-9E8B-A3B524839BB0}" = rport=139 | protocol=6 | dir=out | app=system | "{537D5DBD-1A35-46FE-AAAC-E7EF53552284}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{5B5CDBCC-6049-411A-86CC-323597ADF388}" = rport=138 | protocol=17 | dir=out | app=system | "{63081C0A-6929-4E52-B067-48FD80A67D61}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{6C675B15-9BEE-476A-85E0-7DBDB66BCA07}" = lport=445 | protocol=6 | dir=in | app=system | "{6FB57FDF-1DD1-456B-A4D3-12741327BFA5}" = lport=138 | protocol=17 | dir=in | app=system | "{7DF84FA8-4D1D-44F1-868B-4C2B02F73373}" = rport=10243 | protocol=6 | dir=out | app=system | "{85EC2ED6-32D2-47BC-A062-384FC2809374}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office14\outlook.exe | "{99F7ED26-118D-49A9-92E2-310173A72D96}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{A59183BD-24A7-44B8-9225-937C5BAA0181}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{ABF686D2-04B3-48B2-9A99-53CCE7153F5E}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{AF83E332-9D1B-43B6-9B12-4FE6E4372BA5}" = lport=137 | protocol=17 | dir=in | app=system | "{BDEA8F82-3975-420E-B934-F283DF31ABF0}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{C8AAD853-A9BF-47DD-BB4E-6F22E02E59AC}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{DD325CFB-7BF7-41B3-81D2-09B6DE97B1AE}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{DE94A272-5D60-4E24-82C3-D93F1E97298A}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{EDA5D44D-D664-458A-AFDA-5DB24FB9022A}" = lport=10243 | protocol=6 | dir=in | app=system | "{EFE0C998-DFCD-4BD4-BB46-AED00638AF99}" = rport=137 | protocol=17 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{03849EA9-D2C6-41F9-883B-42948AA9A1E6}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{31DD35DE-FD47-4D44-A8F9-EAF0EFF841C5}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg10\avgmfapx.exe | "{41B8DBBA-50F0-4A06-8A84-A61EA5366DF9}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{470F9BD4-EAC5-4F78-907E-DD46DE50BB68}" = protocol=6 | dir=in | app=c:\users\master\appdata\local\temp\dsoclient\dlcache\app.n3app | "{60F4E918-A110-4EA1-8DFF-C0DEE54AAAA5}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{61E455F0-8E8E-46D8-86B5-E91286CAC52A}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{79120E8E-00C6-43E4-B4CB-1C844AABB3C2}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{7CCF0D8C-48E8-4DD5-B4EC-860878A413AD}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{80BBED62-1060-4102-8651-D2B17FA7036B}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{83A4ADAE-998D-4A34-89F8-E8F42425438C}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{855958EF-9493-4EE3-A0DF-FDAA48966363}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{9F63B199-7C92-4995-8797-EFE06B5029C5}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{A0D6F07D-D69B-4756-AED8-E94D4BB6D009}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{B42055EE-9AC3-4FE8-A04A-B882B36B6F63}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{B4582203-7A53-4FD0-AF69-360B85D2FAC3}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg10\avgmfapx.exe | "{B60FA580-E556-4041-A4C9-6CDB4DA2AC05}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe | "{BA579C9F-155E-42F4-8C8E-E756CAB138A3}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{C37E7A81-6503-49E5-BAB7-2378EC5796AC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{C75034FC-B4E3-4DF5-8C18-D91ED96E0000}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{CE53B3E0-9E7A-4CBA-9562-EB01B6DBB818}" = protocol=17 | dir=in | app=c:\users\master\appdata\local\temp\dsoclient\dlcache\app.n3app | "{E8B9C239-027E-4C61-BA66-C602F7BBF197}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{F3086C13-5379-4357-A178-A7F6D9D1C907}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe | "{F8BFC580-CC5D-44D0-92BF-CF057B88BE2E}" = protocol=6 | dir=out | app=system | "{F8CD8EF2-649E-48E1-933B-B918FBAB4743}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{FA7B132D-1D4F-434F-9EDF-6643936DD07F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{FD5460A5-B067-4318-A2ED-8F6E65A1A1DA}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "TCP Query User{5A629FDD-EF24-4F66-AEEE-1108E9E44DD3}D:\metin2\metin2.exe" = protocol=6 | dir=in | app=d:\metin2\metin2.exe | "TCP Query User{726494C3-AFDF-4286-B727-6F977E0F35F2}E:\cs 1.6\hl.exe" = protocol=6 | dir=in | app=e:\cs 1.6\hl.exe | "TCP Query User{7BE6993E-0282-4FE2-8662-182D4EB17239}H:\metin2\metin2.exe" = protocol=6 | dir=in | app=h:\metin2\metin2.exe | "TCP Query User{7C3B5649-FD7B-4C40-AEB0-24769633AC2B}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe | "TCP Query User{804CD85C-7469-4B1B-8208-70C6FDA0E577}D:\wot\wotlauncher.exe" = protocol=6 | dir=in | app=d:\wot\wotlauncher.exe | "TCP Query User{A22FDF92-3204-4FB0-B6D9-95D7227CBEBD}H:\gridxprime\need for speed most wanted unique\speed.exe" = protocol=6 | dir=in | app=h:\gridxprime\need for speed most wanted unique\speed.exe | "TCP Query User{A6F9892F-0487-4F81-B06E-AF9595E0C2E4}D:\dawid\worldoftanks.exe" = protocol=6 | dir=in | app=d:\dawid\worldoftanks.exe | "TCP Query User{B798274F-AB14-4F88-A33D-133BF58A722E}D:\dawid\wotlauncher.exe" = protocol=6 | dir=in | app=d:\dawid\wotlauncher.exe | "TCP Query User{D741CF2F-A750-4319-A7C7-CE74857958D2}C:\users\master\desktop\herosy 5\bin\h5_game.exe" = protocol=6 | dir=in | app=c:\users\master\desktop\herosy 5\bin\h5_game.exe | "TCP Query User{E32FDC33-DF29-4D4A-BB9B-B83D1DFA8B75}D:\wot\worldoftanks.exe" = protocol=6 | dir=in | app=d:\wot\worldoftanks.exe | "TCP Query User{EC9EE4B4-202D-482F-8532-DAF4D088C3DF}C:\users\master\desktop\patcher\metin2.bin" = protocol=6 | dir=in | app=c:\users\master\desktop\patcher\metin2.bin | "UDP Query User{0442A7D8-9A6F-4329-82B4-534FA94CD885}D:\metin2\metin2.exe" = protocol=17 | dir=in | app=d:\metin2\metin2.exe | "UDP Query User{0675F424-4FB8-494A-8795-D2CA9D9CBCF1}E:\cs 1.6\hl.exe" = protocol=17 | dir=in | app=e:\cs 1.6\hl.exe | "UDP Query User{140353CD-C44A-4C98-BAA9-7AC63C65C47C}H:\gridxprime\need for speed most wanted unique\speed.exe" = protocol=17 | dir=in | app=h:\gridxprime\need for speed most wanted unique\speed.exe | "UDP Query User{57EAFA7A-5FFB-47ED-8FF6-12DC483AF99D}D:\dawid\worldoftanks.exe" = protocol=17 | dir=in | app=d:\dawid\worldoftanks.exe | "UDP Query User{83AACF75-D364-4DCC-B30A-6360074A076A}C:\users\master\desktop\herosy 5\bin\h5_game.exe" = protocol=17 | dir=in | app=c:\users\master\desktop\herosy 5\bin\h5_game.exe | "UDP Query User{8D4D85E9-F2A3-4C34-BC56-4E5D681CDAA0}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe | "UDP Query User{9856A163-AD33-48CF-8A3B-62E8FAC4E718}D:\dawid\wotlauncher.exe" = protocol=17 | dir=in | app=d:\dawid\wotlauncher.exe | "UDP Query User{B3EA13B6-4083-43FF-8547-DDC578A8482C}H:\metin2\metin2.exe" = protocol=17 | dir=in | app=h:\metin2\metin2.exe | "UDP Query User{E990EB14-2627-4020-B33C-FCEAECBBC81A}D:\wot\wotlauncher.exe" = protocol=17 | dir=in | app=d:\wot\wotlauncher.exe | "UDP Query User{F7B3F2F8-4135-457F-B614-D8206A8E1E08}C:\users\master\desktop\patcher\metin2.bin" = protocol=17 | dir=in | app=c:\users\master\desktop\patcher\metin2.bin | "UDP Query User{FBF359FA-CDDF-4B0C-9487-7437EF78752E}D:\wot\worldoftanks.exe" = protocol=17 | dir=in | app=d:\wot\worldoftanks.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{90140000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0015-0415-1000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0016-0415-1000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0018-0415-1000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0019-0415-1000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-001A-0415-1000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001B-0415-1000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0415-1000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-002C-0415-1000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-0043-0000-1000-0000000FF1CE}" = Microsoft Office Office 32-bit Components 2010 "{90140000-0043-0415-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Polish) 2010 "{90140000-0044-0415-1000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-006E-0415-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-00A1-0415-1000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00BA-0415-1000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.11.0621 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.5.20 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.2.24.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{FB5688A1-05A2-4E9F-A5E7-872D71A6AAD6}" = DAP Plug-in for 64 Bit IE "CCleaner" = CCleaner "Defraggler" = Defraggler "KLiteCodecPack64_is1" = K-Lite Codec Pack 5.3.0 (64-bit) "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "TeamSpeak 3 Client" = TeamSpeak 3 Client "WinRAR archiver" = Archiwizator WinRAR [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{07300F01-89CA-4CF8-92BD-2A605EB83C95}" = EasySaver B9.1214.1 "{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1 "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{1EAC1D02-C6AC-4FA6-9A44-96258C37C812}_is1" = World of Tanks v.0.7.1.1 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{26A24AE4-039D-4CA4-87B4-2F83216029FF}" = Java(TM) 6 Update 29 "{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 7 "{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = Gigabyte Raid Configurer "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7F6D7FD9-648D-4DD9-BB6E-3990C675ECA4}" = NVIDIA PhysX "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver For Windows 7 "{987B04C4-B5AC-4AD6-A7E9-8D681085B850}" = AMD USB Filter Driver "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A2F991E7-DDCD-42B7-AFEC-47789A099FDC}" = Browser Configuration Utility "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{D7BF9739-8A68-4335-BBEE-37752AD9E86B}" = NEC Electronics USB 3.0 Host Controller Driver "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}" = Visual Studio 2008 x64 Redistributables "{FE23D063-934D-4829-A0D8-00634CE79B4A}" = Adobe AIR "{FF3C203A-2F19-43A2-9C7C-EC1B5A0FC873}" = Pure "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Anti Trojan Elite_is1" = Anti Trojan Elite 5.0.5 "Ashampoo Photo Commander 7_is1" = Ashampoo Photo Commander 7.10 "avast" = avast! Free Antivirus "Download Accelerator Plus (DAP)" = Download Accelerator Plus (DAP) "Drakensang Online" = Drakensang Online "Foxit Reader" = Foxit Reader "Gadu-Gadu 10" = Gadu-Gadu 10 "Google Chrome" = Google Chrome "Icy Tower_is1" = Icy Tower v1.3 "InstallShield_{D7BF9739-8A68-4335-BBEE-37752AD9E86B}" = NEC Electronics USB 3.0 Host Controller Driver "KLiteCodecPack_is1" = K-Lite Mega Codec Pack 7.9.0 "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.65.0.1400 "Mozilla Firefox 13.0.1 (x86 pl)" = Mozilla Firefox 13.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NVIDIA StereoUSB Driver" = NVIDIA 3D Vision Controller Driver "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Opera 11.62.1347" = Opera 11.62 "RealAlt_is1" = Real Alternative 2.0.2 "RocketDock_is1" = RocketDock 1.3.5 "Speed-Link SL-6612 WASP II USB" = Speed-Link SL-6612 WASP II USB "StartNow Toolbar" = StartNow Toolbar "Winamp" = Winamp [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3977157202-2151577845-446372956-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "UnityWebPlayer" = Unity Web Player "Winamp Detect" = Detektor Winampa [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-09-25 11:41:16 | Computer Name = MASTER-Komputer | Source = System Restore | ID = 8193 Description = Error - 2012-09-25 11:42:11 | Computer Name = MASTER-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: swreg.3XE, wersja: 3.0.0.0, sygnatura czasowa: 0x2a425e19 Nazwa modułu powodującego błąd: swreg.3XE, wersja: 3.0.0.0, sygnatura czasowa: 0x2a425e19 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00003cba Identyfikator procesu powodującego błąd: 0x770 Godzina uruchomienia aplikacji powodującej błąd: 0x01cd9b344b0793e0 Ścieżka aplikacji powodującej błąd: C:\ComboFix_16421C\swreg.3XE Ścieżka modułu powodującego błąd: C:\ComboFix_16421C\swreg.3XE Identyfikator raportu: 91b6b428-0727-11e2-b40e-89a9ed7ace53 Error - 2012-09-25 15:15:10 | Computer Name = MASTER-Komputer | Source = VSS | ID = 18 Description = Error - 2012-09-25 15:15:10 | Computer Name = MASTER-Komputer | Source = VSS | ID = 8193 Description = Error - 2012-09-25 15:15:10 | Computer Name = MASTER-Komputer | Source = System Restore | ID = 8193 Description = Error - 2012-09-25 15:15:58 | Computer Name = MASTER-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: grep.3XE, wersja: 0.0.0.0, sygnatura czasowa: 0x38a95b0a Nazwa modułu powodującego błąd: grep.3XE, wersja: 0.0.0.0, sygnatura czasowa: 0x38a95b0a Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00009216 Identyfikator procesu powodującego błąd: 0x704 Godzina uruchomienia aplikacji powodującej błąd: 0x01cd9b52278e02db Ścieżka aplikacji powodującej błąd: C:\ComboFix_129357C\grep.3XE Ścieżka modułu powodującego błąd: C:\ComboFix_129357C\grep.3XE Identyfikator raportu: 6ef46d18-0745-11e2-9f42-1c6f654c93d9 Error - 2012-09-25 15:16:17 | Computer Name = MASTER-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: grep.3XE, wersja: 0.0.0.0, sygnatura czasowa: 0x38a95b0a Nazwa modułu powodującego błąd: grep.3XE, wersja: 0.0.0.0, sygnatura czasowa: 0x38a95b0a Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00008e3c Identyfikator procesu powodującego błąd: 0x7bc Godzina uruchomienia aplikacji powodującej błąd: 0x01cd9b523422a8ab Ścieżka aplikacji powodującej błąd: C:\ComboFix_129357C\grep.3XE Ścieżka modułu powodującego błąd: C:\ComboFix_129357C\grep.3XE Identyfikator raportu: 7ac84372-0745-11e2-9f42-1c6f654c93d9 Error - 2012-09-25 15:19:59 | Computer Name = MASTER-Komputer | Source = VSS | ID = 18 Description = Error - 2012-09-25 15:19:59 | Computer Name = MASTER-Komputer | Source = VSS | ID = 8193 Description = Error - 2012-09-25 15:19:59 | Computer Name = MASTER-Komputer | Source = System Restore | ID = 8193 Description = [ System Events ] Error - 2012-09-25 10:29:31 | Computer Name = MASTER-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-09-25 10:29:31 | Computer Name = MASTER-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-09-25 10:32:53 | Computer Name = MASTER-Komputer | Source = Ntfs | ID = 262199 Description = Struktura systemu plików na dysku jest uszkodzona i nie nadaje się do użytku. Uruchom narzędzie chkdsk na woluminie \Device\HarddiskVolume2. Error - 2012-09-25 10:33:08 | Computer Name = MASTER-Komputer | Source = Ntfs | ID = 262199 Description = Struktura systemu plików na dysku jest uszkodzona i nie nadaje się do użytku. Uruchom narzędzie chkdsk na woluminie \Device\HarddiskVolume2. Error - 2012-09-25 10:33:44 | Computer Name = MASTER-Komputer | Source = Ntfs | ID = 262199 Description = Struktura systemu plików na dysku jest uszkodzona i nie nadaje się do użytku. Uruchom narzędzie chkdsk na woluminie \Device\HarddiskVolume2. Error - 2012-09-25 10:34:31 | Computer Name = MASTER-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-09-25 10:34:31 | Computer Name = MASTER-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-09-25 10:34:31 | Computer Name = MASTER-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-09-25 10:41:07 | Computer Name = MASTER-Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 16:35:03 na ?2012-?09-?25 było nieoczekiwane. Error - 2012-09-25 10:41:07 | Computer Name = MASTER-KOMPUTER | Source = BugCheck | ID = 1001 Description = < End of report >