OTL Extras logfile created on: 2012-10-21 15:01:16 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Peter\Downloads 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 6,00 Gb Total Physical Memory | 4,07 Gb Available Physical Memory | 67,88% Memory free 12,00 Gb Paging File | 9,81 Gb Available in Paging File | 81,79% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 79,06 Gb Total Space | 36,79 Gb Free Space | 46,53% Space Free | Partition Type: NTFS Drive D: | 219,03 Gb Total Space | 83,91 Gb Free Space | 38,31% Space Free | Partition Type: NTFS Computer Name: PETER- | User Name: Peter | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2332865543-1693368133-1967832736-1001\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- "D:\Office\Office14\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NAPI-PROJEKT\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NAPI-PROJEKT\napisy.exe" "%1" -pobierz_ang () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- "D:\Office\Office14\msohtmed.exe" %1 (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NAPI-PROJEKT\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NAPI-PROJEKT\napisy.exe" "%1" -pobierz_ang () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files (x86)\OrangeBS\BEWInternet-PL-IEW\Connectivity\ConnectivityManager.exe" = C:\Program Files (x86)\OrangeBS\BEWInternet-PL-IEW\Connectivity\ConnectivityManager.exe:*:enabled:CSS -- (France Telecom SA) "C:\Users\Peter\AppData\Local\Temp\scvhost.exe" = C:\Users\Peter\AppData\Local\Temp\scvhost.exe:*:Enabled:Windows Messanger "C:\Users\Peter\AppData\Roaming\act.exe" = C:\Users\Peter\AppData\Roaming\act.exe:*:Enabled:Windows Messanger -- (Microsoft Corporation) "C:\Program Files (x86)\OrangeBS\BEWInternet-PL-IEW\Connectivity\ConnectivityManager.exe" = C:\Program Files (x86)\OrangeBS\BEWInternet-PL-IEW\Connectivity\ConnectivityManager.exe:*:enabled:CSS -- (France Telecom SA) "C:\Users\Peter\AppData\Local\Temp\scvhost.exe" = C:\Users\Peter\AppData\Local\Temp\scvhost.exe:*:Enabled:Windows Messanger "C:\Users\Peter\AppData\Roaming\act.exe" = C:\Users\Peter\AppData\Roaming\act.exe:*:Enabled:Windows Messanger -- (Microsoft Corporation) [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{00240D24-12DF-4F95-834F-DF8B31DA4048}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe | "{117A2E56-D3D2-48A9-8706-F60B9A418021}" = rport=10243 | protocol=6 | dir=out | app=system | "{3AAC1018-2766-44B1-B561-A17DBD5E0F19}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{49D460F1-B7A8-40E2-A915-F996C3B49A3E}" = lport=10243 | protocol=6 | dir=in | app=system | "{5CAC12C3-25F2-4740-9FE8-DC7060DB0111}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{730C501E-F52F-4075-B43E-25EB963408B3}" = lport=49169 | protocol=6 | dir=in | name=akamai netsession interface | "{9D6E8DEA-8214-4FCE-BE73-9DB58C50C142}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{A9BF6C5C-EF24-49D6-804E-7EC02265449B}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{D203357C-E46C-48E7-8301-B8635A99580E}" = lport=5432 | protocol=6 | dir=in | name=postgres | "{D80B07A2-FF06-486C-8A9B-FF76827A3AC1}" = lport=2869 | protocol=6 | dir=in | app=system | "{E36BD7BB-4F47-4E08-8E6C-AE3136DAA417}" = lport=6004 | protocol=17 | dir=in | app=d:\office\office14\outlook.exe | "{EA130BA9-82FB-4475-B92D-9895C3E64A38}" = lport=5000 | protocol=17 | dir=in | name=akamai netsession interface | "{F0FC6744-CD27-473F-BF33-BB5F1AB35DB3}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{F1A3758E-1732-46E9-A69C-D55C2BFE470A}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0460E156-D79C-4988-8173-F995F75F41F1}" = protocol=6 | dir=in | app=e:\steam\steamapps\kulej94\counter-strike\hl.exe | "{0FBA7E9A-7D4A-4E04-9858-AD12D9FC7B54}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{118600D2-9710-474E-AABA-962FEE4C4815}" = protocol=6 | dir=in | app=e:\program files (x86)\microsoft office\office14\groove.exe | "{190F0DE9-F02A-4D5E-8BC8-E9B294E6F414}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{1ABBEC39-8498-4B71-8B74-74925A8A5493}" = protocol=17 | dir=in | app=e:\steam\steamapps\common\amd driver updater, vista and 7, 64 bit\setup.exe | "{1E2CCFB3-C64B-4BFC-98BB-173B8712CAEF}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer.exe | "{214193B2-0925-4F20-8FD6-8E7ED44D9C82}" = protocol=6 | dir=in | app=c:\program files (x86)\bittorrent\bittorrent.exe | "{2263E6F4-8A42-45BD-A690-8EE77DA7EBF2}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{29158326-9FA1-4CB8-878D-C756F8039B6E}" = protocol=6 | dir=out | app=system | "{29FF404D-47DD-42AC-B6EB-25C037EE81DD}" = protocol=17 | dir=in | app=c:\program files (x86)\skype\plugin manager\skypepm.exe | "{3A604538-781C-475C-9B6A-C5F3B4D6AFDA}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | "{3A7A0D08-61D0-47DB-879F-8508053E360F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{3BD98AB8-86CD-4A6C-BF5A-D37BF897FA59}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{3DA9C5E2-9014-48DD-A973-EFAAC4FD4B7B}" = protocol=17 | dir=in | app=c:\program files (x86)\rayv\rayv\rayv.exe | "{3E75154E-F020-4754-8771-C87548792F06}" = protocol=6 | dir=in | app=h:\steam\steamapps\common\amd driver updater, vista and 7, 64 bit\setup.exe | "{3F4FDF5F-D589-4E7F-A705-A8DDF5CFC47E}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer_service.exe | "{3F5A19D4-027D-48DF-8139-D599B98EE8CA}" = dir=in | app=c:\users\peter\appdata\local\facebook\video\skype\facebookvideocalling.exe | "{3FC477E3-55FF-4F9A-8A7D-3476AE4F2CD1}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{421C8100-784F-4BFC-B975-F3D4A27F8ADB}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{4492E24E-5273-43B0-BE80-71A0F4BE072D}" = protocol=6 | dir=in | app=c:\program files (x86)\rayv\rayv\rayv.exe | "{46D4B5EC-50B6-4BFB-96D5-16CFCEA1F97F}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{47A66BF4-9501-46CD-85F5-8F91B48D29BC}" = protocol=17 | dir=in | app=c:\program files (x86)\rayv\rayv\rayv.dll | "{4968EF1A-7806-4E7D-A24C-92A1BB68DB61}" = protocol=6 | dir=in | app=c:\program files (x86)\sony ericsson\update service\update service.exe | "{4999A7ED-8AF9-4940-8C56-BF1083EA6D79}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{535BDA5E-2F59-419E-842F-8E5E5F5CAF16}" = protocol=17 | dir=in | app=d:\battlefield\bfbc2updater.exe | "{53DF37B1-1772-415A-929C-6F19E472BBDF}" = protocol=17 | dir=in | app=c:\program files (x86)\sony ericsson\update service\update service.exe | "{57B0E36D-E741-4E8C-A74D-43BD460ABAAA}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{679BAEA3-9F71-4CC0-A658-7595FB7473C8}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{69106D94-DFA0-4863-A892-55B52833E529}" = protocol=17 | dir=in | app=c:\program files (x86)\gamespy arcade\aphex.exe | "{6AFA2F99-ABFC-497D-95CD-BCC7C51294AE}" = protocol=6 | dir=in | app=c:\program files (x86)\rayv\rayv\rayv.exe | "{6DD73C45-0FC9-492E-B7BA-028038121C50}" = protocol=6 | dir=in | app=h:\steam\steamapps\elsheikhpe\counter-strike\hl.exe | "{73815A9C-936B-40D9-919E-773F0AA88A7C}" = protocol=17 | dir=in | app=e:\steam\steam.exe | "{77EA49F2-18D2-4263-8CF9-19F59BCBF974}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version6\teamviewer_service.exe | "{79442104-5F36-4901-8103-CBA87A4DC5EE}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{7CC8130A-DC7C-4075-92FC-344669FB54DA}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{7CF6E3B4-13A6-443D-9850-6E89BE9653B0}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{81434849-8535-4164-BC64-C9062287F49C}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{81F7BEC2-9E24-4940-BE21-F3C8F674B99D}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{885AD2AB-C12F-4ACD-B521-46C8D6FA57ED}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{8A0126CD-CDA6-426D-A5C0-E3E1FB5F00C9}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{8EFD0FD8-FC28-42E6-908A-FA5F197E8FD6}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{939E5EC0-5B07-4B67-9685-E7F681B07479}" = protocol=17 | dir=in | app=c:\users\peter\appdata\local\akamai\netsession_win.exe | "{9FAA9FC5-1EE4-419A-B9BD-51236DEFD9D1}" = protocol=17 | dir=in | app=h:\steam\steamapps\common\amd driver updater, vista and 7, 64 bit\setup.exe | "{A0A1188F-24AB-4ED4-BA41-FE9DD27134C7}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer.exe | "{A4C112EA-3679-460F-9FE1-E035989FF711}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{AE8E07FB-A34C-4E18-B92F-0CECDF62C5B7}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version6\teamviewer_service.exe | "{B4449593-1D06-4C08-8189-61453A9350AC}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{B4BB628E-D439-4EFE-A90A-A8F83EF1D57D}" = protocol=6 | dir=in | app=d:\office\office14\onenote.exe | "{B59A0DA9-42FB-4B57-BCEE-EE389DC29841}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version6\teamviewer.exe | "{B6E7C74C-5346-48D5-B0C9-4DAE3E4FA8B6}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{B84E390B-40F3-4D40-BF00-E67187BAAF4E}" = protocol=17 | dir=in | app=c:\program files (x86)\rayv\rayv\rayv.dll | "{BA12C311-1159-40EC-ACCD-E816564A2500}" = protocol=6 | dir=in | app=c:\program files (x86)\rayv\rayv\rayv.dll | "{BBFB5F0F-768B-499D-96E2-4BAC1AB60CA4}" = protocol=6 | dir=in | app=d:\battlefield\bfbc2updater.exe | "{BC72C464-7599-4A4C-A427-A1E1F0849851}" = dir=in | app=c:\program files (x86)\skype\plugin manager\skypepm.exe | "{BD5F6813-40F8-484A-8953-5F3AE2D80D0C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{BE32C283-AD2C-45D0-9AFD-A3350E0497CB}" = protocol=17 | dir=in | app=c:\program files (x86)\rayv\rayv\rayv.exe | "{BEFD4FA3-7422-4CF3-AFF7-8D3E1F7E4028}" = protocol=17 | dir=in | app=e:\steam\steamapps\kulej94\counter-strike\hl.exe | "{BF831DC9-5FF0-4908-BDA3-00226AE63E25}" = protocol=17 | dir=in | app=d:\office\office14\groove.exe | "{C6B8E1AF-0397-41D9-A145-9514C40857DD}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{CB7921B3-69AE-4E36-AFC8-696C2255A5C1}" = protocol=6 | dir=in | app=c:\users\peter\appdata\local\akamai\netsession_win.exe | "{CBEB7015-B0C0-4F78-A612-BC9D98E1FD4F}" = protocol=6 | dir=in | app=c:\program files (x86)\gamespy arcade\aphex.exe | "{D40FB2D2-3E4A-4600-B2B5-800A14C2FB1D}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version6\teamviewer.exe | "{D4333901-F8CD-4C5D-AD93-89EE86F1A308}" = protocol=6 | dir=in | app=e:\steam\steamapps\common\amd driver updater, vista and 7, 64 bit\setup.exe | "{D8D9E815-AAAE-4C8D-BA4A-AA4878C7CA5B}" = protocol=17 | dir=in | app=h:\steam\steamapps\elsheikhpe\counter-strike\hl.exe | "{E013B679-AF6D-445C-9B68-772A820F4045}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer_service.exe | "{E094548E-E3BC-4B2F-BAD2-121663B78833}" = protocol=6 | dir=in | app=e:\steam\steamapps\elsheikhpe\counter-strike\hl.exe | "{E1D2CBCC-080D-4BC9-B5B1-EE4E6D55E2EB}" = protocol=17 | dir=in | app=e:\steam\steamapps\elsheikhpe\counter-strike\hl.exe | "{E2E20882-F0C7-4AC2-877D-8A6F517E9D68}" = protocol=6 | dir=in | app=c:\program files (x86)\skype\plugin manager\skypepm.exe | "{E6C3D62A-2FAA-42FB-B92D-AC384838241D}" = protocol=6 | dir=in | app=e:\steam\steam.exe | "{EA7B655A-45EB-4B7C-AF77-24E35EA82ABD}" = protocol=6 | dir=in | app=c:\program files (x86)\rayv\rayv\rayv.dll | "{EB3FFC3B-3314-4FEA-949A-C6A9FEBDFA0D}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{F2BC8C0F-BE8A-4FA3-8449-ED2114FFB38F}" = protocol=17 | dir=in | app=c:\program files (x86)\bittorrent\bittorrent.exe | "{FE0EC6A1-2B60-46A8-B92E-D6FF95177F23}" = protocol=17 | dir=in | app=d:\office\office14\onenote.exe | "{FF8314E0-8155-40B2-A9F3-C5087180243D}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{FFCB7E24-B609-43E0-986C-05E75A845BF9}" = protocol=6 | dir=in | app=d:\office\office14\groove.exe | "TCP Query User{09D3B08A-0434-4181-960E-799ECDC0400B}C:\program files (x86)\tlen7\tlen7.exe" = protocol=6 | dir=in | app=c:\program files (x86)\tlen7\tlen7.exe | "TCP Query User{52754E59-BF9E-4582-8072-F8FF185ACA6C}C:\program files (x86)\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\adv\sopadver.exe | "TCP Query User{57862A97-3DFA-40C1-A3F4-44B924A37F3B}C:\program files (x86)\tlen.pl\tlen.exe" = protocol=6 | dir=in | app=c:\program files (x86)\tlen.pl\tlen.exe | "TCP Query User{6025D2E5-3194-4D65-9987-A67C7E7D758C}C:\program files (x86)\tlen7\tlen7.exe" = protocol=6 | dir=in | app=c:\program files (x86)\tlen7\tlen7.exe | "TCP Query User{6C36C047-EDF1-4D68-9E4F-E8340725172E}H:\heroes\heroes3.exe" = protocol=6 | dir=in | app=h:\heroes\heroes3.exe | "TCP Query User{9899362A-98FF-4884-83D9-4DE8EF7CE89E}C:\program files (x86)\mirc\mirc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mirc\mirc.exe | "TCP Query User{C37D6BD4-57F9-4A5B-A61C-D894C64BD9AF}C:\program files (x86)\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\plugin\geplugin.exe | "TCP Query User{C7AF6B59-10A3-4C6E-9FB7-43F57518683E}D:\program files (x86)\starcraft brood war by monikon\starcraft.exe" = protocol=6 | dir=in | app=d:\program files (x86)\starcraft brood war by monikon\starcraft.exe | "TCP Query User{CE66DB30-464C-436D-88EA-D9B804777738}C:\windows\syswow64\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "TCP Query User{E7E49601-97E5-46EB-94FC-0FAAE1C3FECC}C:\program files (x86)\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe | "TCP Query User{E9C8448D-1794-4B4B-BAA4-2BFD4ADDBE6D}C:\program files (x86)\pokerstrategy.com\pokerstrategy.com equilator\equilator.exe" = protocol=6 | dir=in | app=c:\program files (x86)\pokerstrategy.com\pokerstrategy.com equilator\equilator.exe | "TCP Query User{EE00C1AF-94D2-439F-A109-E284EE5E8F04}D:\program files (x86)\starcraft brood war by monikon\starcraft.exe" = protocol=6 | dir=in | app=d:\program files (x86)\starcraft brood war by monikon\starcraft.exe | "TCP Query User{F0B0DC36-FE43-428C-B64A-132962FC43A7}E:\stronghold crusader\stronghold crusader.exe" = protocol=6 | dir=in | app=e:\stronghold crusader\stronghold crusader.exe | "TCP Query User{F82D3602-C24E-4065-831E-FD2E8466F1D7}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "TCP Query User{F9BCB7BD-CE8F-48B3-A567-2E44D9E56D23}C:\users\peter\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\peter\appdata\local\akamai\netsession_win.exe | "UDP Query User{031D1FF6-5CE9-4387-A196-078F82E70CEB}C:\program files (x86)\tlen.pl\tlen.exe" = protocol=17 | dir=in | app=c:\program files (x86)\tlen.pl\tlen.exe | "UDP Query User{0A59377C-F870-4B2D-9B88-BD7D3855AFDB}H:\heroes\heroes3.exe" = protocol=17 | dir=in | app=h:\heroes\heroes3.exe | "UDP Query User{1F990EF7-B26A-434E-800B-A8E4CC05A8B2}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "UDP Query User{3C81055B-67C8-49BC-930B-A16A48217BE2}C:\windows\syswow64\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "UDP Query User{64C36AB4-D779-4EC9-BE5A-C54E2E8D2211}C:\program files (x86)\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\plugin\geplugin.exe | "UDP Query User{705E1FDA-977E-47CB-9F68-262E591B5AB3}C:\program files (x86)\pokerstrategy.com\pokerstrategy.com equilator\equilator.exe" = protocol=17 | dir=in | app=c:\program files (x86)\pokerstrategy.com\pokerstrategy.com equilator\equilator.exe | "UDP Query User{7F7B0ED7-A33D-4C67-8AE8-0A2624E590F2}D:\program files (x86)\starcraft brood war by monikon\starcraft.exe" = protocol=17 | dir=in | app=d:\program files (x86)\starcraft brood war by monikon\starcraft.exe | "UDP Query User{9D93AE28-A686-4588-A4AF-54484050E8BC}E:\stronghold crusader\stronghold crusader.exe" = protocol=17 | dir=in | app=e:\stronghold crusader\stronghold crusader.exe | "UDP Query User{BE60CAF2-4AA7-49C8-A8D5-C90EE673EB3D}D:\program files (x86)\starcraft brood war by monikon\starcraft.exe" = protocol=17 | dir=in | app=d:\program files (x86)\starcraft brood war by monikon\starcraft.exe | "UDP Query User{C51BE967-689B-401B-B29A-B2EB9F6DA902}C:\program files (x86)\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe | "UDP Query User{CC7DC9DC-BA06-4A1F-BC40-28C72235CFDD}C:\program files (x86)\mirc\mirc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mirc\mirc.exe | "UDP Query User{CCF247F8-313E-4469-BE5C-8A0CB8112B21}C:\program files (x86)\tlen7\tlen7.exe" = protocol=17 | dir=in | app=c:\program files (x86)\tlen7\tlen7.exe | "UDP Query User{D6BC5F51-C282-4692-AE08-9A5CE11FFE65}C:\program files (x86)\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\adv\sopadver.exe | "UDP Query User{E82D0D88-1CF4-4248-9FDB-1919FC51D5E7}C:\program files (x86)\tlen7\tlen7.exe" = protocol=17 | dir=in | app=c:\program files (x86)\tlen7\tlen7.exe | "UDP Query User{F6F49712-6022-4482-A2ED-5800F7BB479C}C:\users\peter\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\peter\appdata\local\akamai\netsession_win.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1" = Core Temp 1.0 RC3 "{251481E4-723F-492F-F5C1-3424FB2EF44E}" = AMD Drag and Drop Transcoding "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{6A76BEAF-6D1F-4273-A79B-DA8410A2E56B}" = Apple Mobile Device Support "{6C2E334F-37F5-C312-53BA-1482F9A6FD4D}" = ccc-utility64 "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour "{81D00339-968D-15D1-3499-8431658E896F}" = AMD Catalyst Install Manager "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{8338783A-0968-3B85-AFC7-BAAE0A63DC50}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{90140000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{7BC9B5EB-125A-4E9B-97E1-8D85B5E960B8}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0015-0415-1000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0015-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0016-0415-1000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0016-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0018-0415-1000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0018-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0019-0415-1000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-0019-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001A-0415-1000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001A-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001B-0415-1000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001B-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0407-1000-0000000FF1CE}_Office14.PROPLUS_{70A3169E-288F-454F-A08D-20DF66639B50}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0409-1000-0000000FF1CE}_Office14.PROPLUS_{0242505C-4E90-407F-9299-B5B275F50D86}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0415-1000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-001F-0415-1000-0000000FF1CE}_Office14.PROPLUS_{329A3D98-9583-4B84-B18B-498E7AB65C43}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002C-0415-1000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-002C-0415-1000-0000000FF1CE}_Office14.PROPLUS_{BFEB53FA-3044-47FD-BB50-9DCBBEED79EF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0043-0000-1000-0000000FF1CE}" = Microsoft Office Office 32-bit Components 2010 "{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUS_{E8B6D35B-0B6F-4DCE-9493-859BF3809A7F}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0043-0415-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Polish) 2010 "{90140000-0043-0415-1000-0000000FF1CE}_Office14.PROPLUS_{FF5F6090-64DF-4BF6-BADD-71A64FDA70D2}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0044-0415-1000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-0044-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-006E-0415-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-006E-0415-1000-0000000FF1CE}_Office14.PROPLUS_{3A96ABFF-5202-47B1-B5A2-DDE76563AF61}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00A1-0415-1000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00A1-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00BA-0415-1000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{90140000-00BA-0415-1000-0000000FF1CE}_Office14.PROPLUS_{E363E2E9-6AE1-4B10-94B6-015819AE201D}" = Microsoft Office 2010 Service Pack 1 (SP1) "{9387E5ED-7D5D-A744-6BDC-8F6CB26DE09A}" = AMD Fuel "{BABA4667-CF82-B330-A8E5-6E8A09B2D911}" = AMD Accelerated Video Transcoding "{DA2737A4-B639-96F4-1CC2-30D2919EE1FB}" = AMD Steady Video Plug-In "{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 "{E6F5D8BE-0B00-6DD9-18F9-D4045798FCBE}" = AMD Media Foundation Decoders "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "67167A3F28325130D0AD538001458884E89C08E5" = Pakiet sterowników systemu Windows - AnyDATA.NET (adusbser) Ports (07/08/2009 2.0.6.7) "83D39BE44B3A8ED033DBBBC4F867EBAFB1FAC98F" = Pakiet sterowników systemu Windows - AnyDATA.NET (adusbser) Modem (07/08/2009 2.0.6.7) "CPUID CPU-Z_is1" = CPUID CPU-Z 1.61.3 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "NVIDIA Drivers" = NVIDIA Drivers "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "PostgreSQL 9.0" = PostgreSQL 9.0 "TeamSpeak 3 Client" = TeamSpeak 3 Client "WinRAR archiver" = Archiwizator WinRAR [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0141D498-16DA-4221-A529-1D7A64BE8B05}" = OpenOffice.org 3.3 "{01496C89-6117-AD97-3CB3-98AF2026070C}" = CCC Help German "{045A9539-37B6-464D-94F9-E4ADFA856903}" = PokerStrategy.com Equilator "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{0486991B-63F4-5106-06CE-404D7BA55041}" = CCC Help Italian "{09561E30-7523-462F-AF8C-BDEFF04CEFCB}" = TableNinja "{0B82D6C6-9ECC-4710-97AB-5CE482E72852}_is1" = TableScan Turbo RC4 build 12 "{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}" = PlayStation(R)Store "{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1 "{122ADF8C-DDA1-480C-9936-C88F2825B265}" = Apple Application Support "{12FEC00C-027C-4A34-9AAB-562EDA43DC18}_is1" = MiniTool Partition Wizard Home Edition 5.2 "{177A3BC5-ECD3-BFF1-4D87-C4B417924DF2}" = CCC Help Russian "{19D368B2-5601-007B-A296-535706E00D97}" = CCC Help English "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 20 "{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 7 "{278FA289-F502-D888-A3BA-5FA10308AAAD}" = CCC Help Danish "{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = eReg "{44F77218-4BBD-1B74-88B7-FC302868F2B3}" = CCC Help Japanese "{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis "{489BC3B4-AEF9-E14A-11BC-B70FDE9D543D}" = CCC Help Chinese Traditional "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4A85AE1B-9727-261D-9EAF-07C1AECCF977}" = CCC Help Turkish "{4C454033-8240-425E-A170-1C648FCB74FD}" = PokerStrategy.com Equilab "{502699FF-F586-54B1-91E8-E85D9FAE0D6D}" = CCC Help Greek "{53EF1C4D-0705-98F2-1889-A69BBF9F03F3}" = CCC Help Thai "{548A4EF3-BD97-0813-B469-E1E2FC9DE487}" = CCC Help Korean "{55533224-CAD0-39B5-6297-E1B2D1D8F176}" = AMD VISION Engine Control Center "{560985FB-4B76-4121-9189-7A2CDC7886D6}" = Kaspersky Internet Security 2013 "{56582EEA-3AEF-4D84-8B9D-C87A3CD9250F}" = GetDataBack for NTFS "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{587178E7-B1DF-494E-9838-FA4DD36E873C}" = ASUSUpdate "{590828E0-9BA6-3E4D-8491-A1D9CC3EB8CE}" = CCC Help French "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{6563FAF5-84F9-0A35-C032-182EBC4C3BDB}" = CCC Help Finnish "{66bc69b8-9403-48fa-ac82-951706e8d4a6}" = Nero 9 Lite "{6D0C6BE4-F674-43D2-96BC-3509345108C9}_is1" = PokerStove version 1.23 "{6D46F639-5F2F-90F3-4B60-EB2EF264B82E}" = CCC Help Spanish "{70210CF8-CAB1-8FEB-D964-C33AFE18730B}" = CCC Help Czech "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7748AC8C-18E3-43BB-959B-088FAEA16FB2}" = Nero StartSmart "{789289CA-F73A-4A16-A331-54D498CE069F}" = Ventrilo "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7A181D43-86AE-4362-91BF-5C01A19653D7}_is1" = MiniTool Partition Wizard Professional Edition 6.0 "{7CAC6A44-C3DE-4153-ACA6-7524602C789E}" = Facebook Video Calling 1.2.0.159 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 "{8B1AEC85-4507-28BD-F3BA-4A5D732752E7}" = CCC Help Hungarian "{8B743AA0-53B2-11D2-808A-00600895FB43}" = Heroes of Might and Magic III - Złota Edycja "{8C5ACED4-34D3-23BB-F90E-2F90420321BC}" = Catalyst Control Center Localization All "{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}" = TomTom HOME Visual Studio Merge Modules "{9017CEAF-BE5A-4F73-8A0E-C87E26971E55}" = TomTom HOME "{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9E1BAB75-EB78-440D-94C0-A3857BE2E733}" = System Requirements Lab "{A3DAD349-E48E-AE45-3F26-7B80A4FFCD26}" = Catalyst Control Center InstallProxy "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.4) "{ACD4EA05-E1FF-4D1A-9C7C-5192C7BD84E5}" = CardRunnersEV "{B0B1A8A5-4711-BB6C-DD59-9794AD928368}" = CCC Help Dutch "{B2EC4A38-B545-4A00-8214-13FE0E915E6D}" = Advertising Center "{B33D2348-2938-1A03-0CD3-E6F7101244E0}" = CCC Help Polish "{B52D7A21-03E5-4C0C-82FA-FD8EB4C92149}" = AxessManager "{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}" = PlayStation(R)Network Downloader "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{B7C8D838-9C3A-1177-B80A-E3C512FD8AF5}" = CCC Help Swedish "{BD5CA0DA-71AD-43DA-B19E-6EEE0C9ADC9A}" = Nero ControlCenter "{BEE64C14-BEF1-4610-8A68-A16EAA47B882}" = Futuremark SystemInfo "{BEWINTERNET-PL-IEW}.UninstallSuite" = Orange Free "{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3 "{C0E8FE43-C35B-451D-B35F-D4BD056D70E7}" = Camtasia Studio 7 "{C81A2FE0-3574-00A9-CED4-BDAA334CBE8E}" = Nero Online Upgrade "{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86 "{D4C9692E-4EFA-4DA0-8B7F-9439466D9E31}" = Full Tilt Poker "{DDCB737A-EEC8-3815-42DA-69011A55E3E5}" = Catalyst Control Center Graphics Previews Common "{E170E984-6B20-79C2-1E9F-0256EC5ADFB4}" = CCC Help Chinese Standard "{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime "{E6DA58C0-4EC5-4F5E-B73E-2F22ED30ACFC}" = Razer Krait "{E866E52C-1F56-4CCF-0071-CA915F8CFEDA}" = CCC Help Norwegian "{E8A80433-302B-4FF1-815D-FCC8EAC482FF}" = Nero Installer "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F5D245CC-C332-1E8E-CCB1-75E0C3C4D6F1}" = CCC Help Portuguese "{FEF19B15-9DC0-FBCF-4728-AE02501CAD62}" = Media Go Video Playback Engine 1.48.109.10100 "ActiveSMART_2_6_is1" = ActiveSMART "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.6 "Akamai" = Akamai NetSession Interface Service "Applian FLV Player2.0.24" = Applian FLV Player "AVG Secure Search" = AVG Security Toolbar "BitTorrent" = BitTorrent "Bridge_Base_Online" = Bridge Base Online "Budzik_is1" = Budzik 1.04 "Bytescout XLS Viewer_is1" = $APPNAME> 2.31 "ClocX" = ClocX (1.5b2) "Counter-Strike 1.6" = Counter-Strike 1.6 "Death Rally" = Death Rally for Windows "DivX Setup" = DivX Setup "DVD Decrypter" = DVD Decrypter (Remove Only) "EASEUS Partition Master Professional Edition_is1" = EASEUS Partition Master 7.0.1 Professional "EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v5.50 "FamilyKeyLogger" = Family Keylogger v2.83 (remove only) "FeedReader_is1" = FeedReader "FLVPlayer" = FLV Player 1.3.3 "foobar2000" = foobar2000 v1.1.8 "ForceBindIP" = ForceBindIP "Foxit PDF Editor" = Foxit PDF Editor "Fraps" = Fraps "Free PDF to Word Doc Converter_is1" = Free PDF to Word Doc Converter v1.1 "Gadu-Gadu 10" = Gadu-Gadu 10 "GameSpy Arcade" = GameSpy Arcade "HD Tune Pro_is1" = HD Tune Pro 4.61 "HijackThis" = HijackThis 2.0.2 "HoldemManager" = Holdem Manager "HoldemManager2" = Holdem Manager 2 "ICCup Launcher_is1" = ICCup Launcher "ImgBurn" = ImgBurn "InstallShield_{045A9539-37B6-464D-94F9-E4ADFA856903}" = PokerStrategy.com Equilator "InstallWIX_{560985FB-4B76-4121-9189-7A2CDC7886D6}" = Kaspersky Internet Security 2013 "ipla" = ipla 2.3.5 "IrfanView" = IrfanView (remove only) "KLiteCodecPack_is1" = K-Lite Codec Pack 8.4.0 (Full) "MiniStumbler" = MiniStumbler 0.4.0 (remove only) "Miranda IM" = Miranda IM-PL (odinstaluj) "mIRC" = mIRC "Mozilla Firefox 16.0.1 (x86 pl)" = Mozilla Firefox 16.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NapiProjekt_is1" = NapiProjekt (2.0.0.2151) "Network Stumbler" = Network Stumbler 0.4.0 (remove only) "OpenAL" = OpenAL "Pamela" = Pamela Pro 4.8 "PhotoME_is1" = PhotoME "Pidgin" = Pidgin "Poker Heaven" = Poker Heaven "PokerStars" = PokerStars "QuickStores-Toolbar_is1" = QuickStores-Toolbar 1.1.0 "R-Studio 5.0NSIS" = R-Studio 5.0 "screenSHU" = screenSHU - the fastest screen capture ever. "SequoiaView" = SequoiaView "SopCast" = SopCast 3.2.9 "SpeedFan" = SpeedFan (remove only) "StarCraft Brood War by Monikon 1.16.1" = StarCraft Brood War by Monikon 1.16.1 "Steam App 10" = Counter-Strike "SystemRequirementsLab" = System Requirements Lab "Teamspeak 2 RC2_is1" = TeamSpeak 2 RC2 "TeamSpeak 3 Client" = TeamSpeak 3 Client "TeamViewer 7" = TeamViewer 7 "TextMaker Viewer" = TextMaker Viewer "UltraISO_is1" = UltraISO Premium V9.53 "Unlocker" = Unlocker 1.9.1 "Update Service" = Sony Ericsson Update Service "V9Software" = Deinstalator Strony V9 "Veetle TV" = Veetle TV 0.9.18 "vShare.tv plugin" = vShare.tv plugin 1.3 "Youtube Downloader HD_is1" = Youtube Downloader HD v. 2.6 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2332865543-1693368133-1967832736-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Akamai" = Akamai NetSession Interface "Flux" = F.lux "HHLoader" = HHLoader "JoinMe" = join.me "Tlen.pl" = Tlen.pl [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-10-17 23:28:11 | Computer Name = Peter- | Source = PostgreSQL | ID = 0 Description = 2012-10-18 05:28:11 CEST ERROR: tuple concurrently updated 2012-10-18 05:28:11 CEST STATEMENT: drop table if exists notecaddy_notes; drop table if exists readsettings; drop table if exists notecaddy_metrics; drop table if exists notecaddy_scatter; CREATE TABLE notecaddy_scatter ( player_id integer NOT NULL, data text, CONSTRAINT ncs PRIMARY KEY (player_id) ); CREATE TABLE notecaddy_metrics(data text); CREATE TABLE readsettings ( lastid bigint, lasttournament bigint, databaseversion text, lastomahacash bigint, lastomahatournament bigint ) WITH ( OIDS=FALSE ); ALTER TABLE readsettings OWNER TO postgres; insert into readsettings values(0,0,'12',0,0); DROP SEQUENCE IF EXISTS note_id_seq; CREATE SEQUENCE note_id_seq INCREMENT 1 MINVALUE 1 MAXVALUE 9223372036854775807 START 999999 CACHE 1; ALTER TABLE note_id_seq OWNER TO postgres; DROP TABLE IF EXISTS notecaddy_data; CREATE TABLE notecaddy_data ( player_id integer NOT NULL, data text, CONSTRAINT ncd PRIMARY KEY (player_id) ); ALTER TABLE notecaddy_data OWNER TO postgres; DROP TABLE IF EXISTS notecaddy_history; DROP TABLE IF EXISTS notecaddy_held; Error - 2012-10-17 23:28:11 | Computer Name = Peter- | Source = PostgreSQL | ID = 0 Description = 2012-10-18 05:28:11 CEST ERROR: relation "readsettings" already exists 2012-10-18 05:28:11 CEST STATEMENT: CREATE TABLE readsettings ( lastid bigint, lasttournament bigint, databaseversion text, lastomahacash bigint, lastomahatournament bigint ) WITH ( OIDS=FALSE ); ALTER TABLE readsettings OWNER TO postgres; insert into readsettings values(0,0,'12',0,0); Error - 2012-10-17 23:28:11 | Computer Name = Peter- | Source = PostgreSQL | ID = 0 Description = 2012-10-18 05:28:11 CEST ERROR: relation "notecaddy_data" already exists 2012-10-18 05:28:11 CEST STATEMENT: CREATE TABLE notecaddy_data ( player_id integer NOT NULL, data text, CONSTRAINT ncd PRIMARY KEY (player_id) ); ALTER TABLE notecaddy_data OWNER TO postgres; Error - 2012-10-17 23:28:11 | Computer Name = Peter- | Source = PostgreSQL | ID = 0 Description = 2012-10-18 05:28:11 CEST ERROR: relation "readsettings" already exists 2012-10-18 05:28:11 CEST STATEMENT: CREATE TABLE readsettings ( lastid bigint, lasttournament bigint, databaseversion text, lastomahacash bigint, lastomahatournament bigint ) WITH ( OIDS=FALSE ); ALTER TABLE readsettings OWNER TO postgres; insert into readsettings values(0,0,'12',0,0); Error - 2012-10-17 23:28:11 | Computer Name = Peter- | Source = PostgreSQL | ID = 0 Description = 2012-10-18 05:28:11 CEST ERROR: relation "notecaddy_data" already exists 2012-10-18 05:28:11 CEST STATEMENT: CREATE TABLE notecaddy_data ( player_id integer NOT NULL, data text, CONSTRAINT ncd PRIMARY KEY (player_id) ); ALTER TABLE notecaddy_data OWNER TO postgres; Error - 2012-10-17 23:28:23 | Computer Name = Peter- | Source = Application Hang | ID = 1002 Description = Program HoldemManager.exe w wersji 2.0.0.7318 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 1530 Godzina rozpoczęcia: 01cdace0779e8e40 Godzina zakończenia: 25 Ścieżka aplikacji: D:\Holdem Manager 2\HoldemManager.exe Identyfikator raportu: d0bd1191-18d3-11e2-8b3e-0023544fd11f Error - 2012-10-18 00:00:42 | Computer Name = Peter- | Source = PostgreSQL | ID = 0 Description = 2012-10-18 06:00:42 CEST FATAL: terminating connection due to administrator command 2012-10-18 06:00:42 CEST STATEMENT: SELECT h.handhistory_id AS pokerhand_id, h.handhistory, (case when g.pokergametype_id = 0 then 'nl' when g.pokergametype_id = 1 then 'nl' when g.pokergametype_id = 2 then 'fl' else 'nl' end) as GameType, 'cash' as tabletype, g.istourney, (case when g.pokergametype_id IN (3,4,5,9,10,11,13,14,15,16,17,18,19,25,26,29) then true else false end) as IsOmaha, g.pokergametype_id, h.TourneyNumber FROM handhistories h INNER JOIN gametypes g on g.gametype_id = h.gametype_id WHERE handhistory_id > 0 ORDER BY handhistory_id Error - 2012-10-18 00:00:42 | Computer Name = Peter- | Source = PostgreSQL | ID = 0 Description = 2012-10-18 06:00:42 CEST FATAL: canceling statement due to user request Error - 2012-10-19 10:09:09 | Computer Name = Peter- | Source = Google Update | ID = 20 Description = Error - 2012-10-20 01:44:27 | Computer Name = Peter- | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: HudFuncsApp.exe, wersja: 1.0.0.1, sygnatura czasowa: 0x502d19eb Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.17725, sygnatura czasowa: 0x4ec49b8f Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00033d40 Identyfikator procesu powodującego błąd: 0x17b8 Godzina uruchomienia aplikacji powodującej błąd: 0x01cdae7f2db71fe0 Ścieżka aplikacji powodującej błąd: D:\Holdem Manager 2\HudFuncsApp.exe Ścieżka modułu powodującego błąd: C:\Windows\SysWOW64\ntdll.dll Identyfikator raportu: 35af3cd0-1a79-11e2-b79b-0023544fd11f [ Media Center Events ] Error - 2010-04-07 09:10:24 | Computer Name = Peter- | Source = MCUpdate | ID = 0 Description = 15:10:24 - Błąd podczas nawiązywania połączenia z Internetem. 15:10:24 - Nie można skontaktować się z serwerem.. Error - 2010-04-07 09:10:58 | Computer Name = Peter- | Source = MCUpdate | ID = 0 Description = 15:10:54 - Błąd podczas nawiązywania połączenia z Internetem. 15:10:54 - Nie można skontaktować się z serwerem.. Error - 2010-04-07 10:11:45 | Computer Name = Peter- | Source = MCUpdate | ID = 0 Description = 16:11:45 - Błąd podczas nawiązywania połączenia z Internetem. 16:11:45 - Nie można skontaktować się z serwerem.. Error - 2010-04-07 10:12:15 | Computer Name = Peter- | Source = MCUpdate | ID = 0 Description = 16:12:14 - Błąd podczas nawiązywania połączenia z Internetem. 16:12:14 - Nie można skontaktować się z serwerem.. Error - 2010-04-07 11:12:57 | Computer Name = Peter- | Source = MCUpdate | ID = 0 Description = 17:12:57 - Błąd podczas nawiązywania połączenia z Internetem. 17:12:57 - Nie można skontaktować się z serwerem.. Error - 2010-04-07 11:13:28 | Computer Name = Peter- | Source = MCUpdate | ID = 0 Description = 17:13:27 - Błąd podczas nawiązywania połączenia z Internetem. 17:13:27 - Nie można skontaktować się z serwerem.. Error - 2010-04-07 12:16:43 | Computer Name = Peter- | Source = MCUpdate | ID = 0 Description = 18:16:43 - Błąd podczas nawiązywania połączenia z Internetem. 18:16:43 - Nie można skontaktować się z serwerem.. Error - 2010-04-07 12:17:13 | Computer Name = Peter- | Source = MCUpdate | ID = 0 Description = 18:17:12 - Błąd podczas nawiązywania połączenia z Internetem. 18:17:12 - Nie można skontaktować się z serwerem.. [ System Events ] Error - 2012-10-21 08:26:51 | Computer Name = Peter- | Source = Service Control Manager | ID = 7031 Description = Usługa KMService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2012-10-21 08:29:56 | Computer Name = Peter- | Source = Service Control Manager | ID = 7031 Description = Usługa KMService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2012-10-21 08:31:41 | Computer Name = Peter- | Source = Service Control Manager | ID = 7030 Description = Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error - 2012-10-21 08:32:17 | Computer Name = Peter- | Source = Service Control Manager | ID = 7031 Description = Usługa KMService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2012-10-21 08:33:25 | Computer Name = Peter- | Source = Application Popup | ID = 1060 Description = Ładowanie sterownika \??\C:\ComboFix\catchme.sys zostało zablokowane z powodu niezgodności z tym systemem. Skontaktuj się z dostawcą oprogramowania w celu uzyskania zgodnej wersji sterownika. Error - 2012-10-21 08:33:55 | Computer Name = Peter- | Source = Service Control Manager | ID = 7030 Description = Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error - 2012-10-21 08:53:13 | Computer Name = Peter- | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi AODDriver4.1 z powodu następującego błędu: %%2 Error - 2012-10-21 08:53:34 | Computer Name = Peter- | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: is3srv szkg5 UimBus Uim_IM Error - 2012-10-21 08:53:35 | Computer Name = Peter- | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi AODDriver4.1 z powodu następującego błędu: %%2 Error - 2012-10-21 08:55:36 | Computer Name = Peter- | Source = WMPNetworkSvc | ID = 866300 Description = < End of report >