OTL Extras logfile created on: 2012-11-26 19:06:52 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Ja\Downloads Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,87 Gb Total Physical Memory | 1,22 Gb Available Physical Memory | 65,25% Memory free 3,98 Gb Paging File | 3,51 Gb Available in Paging File | 88,14% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 97,66 Gb Total Space | 46,41 Gb Free Space | 47,52% Space Free | Partition Type: NTFS Drive D: | 135,19 Gb Total Space | 22,08 Gb Free Space | 16,33% Space Free | Partition Type: NTFS Computer Name: JA-PC | User Name: Ja | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" /p %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\Winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\Winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files\Winamp\Winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0BC5D0A0-0C74-4A3B-B7BA-10D037398A1D}" = lport=10243 | protocol=6 | dir=in | app=system | "{1389E16F-E49A-4721-8F5C-8267256B7C25}" = rport=10243 | protocol=6 | dir=out | app=system | "{153CCBA6-F1B7-476F-9ABE-5B7AD7712944}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office14\outlook.exe | "{166FD2CB-EAF9-48E5-A8DC-8D10BE16BDD6}" = lport=138 | protocol=17 | dir=in | app=system | "{1B113186-87B4-419C-A4F8-9821A4E7A70B}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{3036AC1F-3429-4331-8135-DDC13020F972}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{42DE41CE-C40C-46FD-B01F-C5558C0B1EAA}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{46B3D99A-5C1D-4FD2-B1E5-34B4F0B539B2}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{4863DA65-F177-4322-87BA-D0AEB91F2D8C}" = rport=445 | protocol=6 | dir=out | app=system | "{68033FB5-154A-4C95-9815-6170A84F7170}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{748223BA-7339-44C5-AF7C-ED74CD53168B}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{76F97C09-2789-4E49-94A9-F6AD38A776D4}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{87C26491-11EE-4FD3-AF3F-0B7A67FF1717}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{92757FA6-F945-439F-A1EE-2A43393D672E}" = lport=2869 | protocol=6 | dir=in | app=system | "{9661E6EA-87E3-4062-ABB5-F1703DA0DCC5}" = lport=445 | protocol=6 | dir=in | app=system | "{98FC15B6-D846-4579-B5CE-DE295F0E19A4}" = rport=137 | protocol=17 | dir=out | app=system | "{A83CB03C-1EC5-4873-BF57-0F3CE73D4008}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{B76A00B6-A033-40BD-A5DB-1C38496FFC6B}" = lport=137 | protocol=17 | dir=in | app=system | "{BAA8EBB1-7208-4A0F-875D-C12AA180FFBA}" = lport=139 | protocol=6 | dir=in | app=system | "{BB33B1E5-9FC7-42C0-B1C5-81C1C96429EA}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{CE3845D0-F1F8-463C-B862-835D08D52FE6}" = rport=138 | protocol=17 | dir=out | app=system | "{D4E35826-92BE-44B4-A05C-4EE8D1A22D9E}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{D707BB85-0DA7-426B-A90C-09A8ED6AFAA1}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{DC680F00-1D00-4687-957C-B5B69D3B9D67}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{DD84A5A4-775C-4257-94DE-98B432152FDC}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{DF9D2BF7-BF08-445C-A78C-F9B1015AE958}" = rport=139 | protocol=6 | dir=out | app=system | "{F9FA4171-946D-464E-9053-C68FD2BCE601}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{FCE9A601-850D-4D86-9739-5FAC25B3CD18}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{03560740-9CEE-43CD-96E8-E34606266B99}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{09E9A17B-CF7E-43B6-9AA5-41287AF1620D}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\groove.exe | "{19474C39-1826-4C6E-8F73-B9D7396F5DAE}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{1D9CC5FB-737B-45B0-BB92-39CB40F07BB4}" = protocol=6 | dir=in | app=c:\program files\activision\call of duty - world at war\codwawmp.exe | "{1E1530B1-2057-4DC9-8F34-6D74589EB144}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{27F0D0AE-BD1E-46A2-B249-58BB6BB87C71}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{2E765C25-12DC-4EB9-9FAE-665A7D9D1F81}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{3AEECF17-E75D-439D-B593-630CB1A244E1}" = protocol=6 | dir=in | app=c:\program files\activision\call of duty - world at war\codwaw.exe | "{3EB050B8-CB04-4ADB-A8DF-F35344E7D664}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{46DF7823-EEBD-4A22-AD84-2F44340A4DD0}" = protocol=17 | dir=in | app=c:\program files\activision\call of duty - world at war\codwaw.exe | "{4AC04FA5-DC69-4346-A14F-1409C3C08DE6}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{62C86B7A-91C1-438D-9907-B139FBC2A24C}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | "{647F9048-DE20-4C38-9DB3-4A6454F4EA0C}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{71E312C3-74FA-4DAE-8794-244C875899DC}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\groove.exe | "{7732C52F-6C18-4347-83B9-7DEE1B270138}" = protocol=6 | dir=in | app=c:\program files\hp\hp deskjet 1050 j410 series\bin\usbsetup.exe | "{8478A8B9-11E4-4369-B34F-2239C2D39FAE}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{8709DF47-81D1-4235-AAB6-0F900D792B88}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe | "{AA2920FE-DDEF-4C30-B4E1-ACBC4AA9F59F}" = protocol=6 | dir=out | app=system | "{B7F5C440-5893-4960-8FED-E44AD314CF6C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{B990461B-F6C6-468D-90B4-AB0D6564A98A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{C4295210-91E6-43FA-9827-60BCD69468F5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{C69E9315-5796-4E4D-8198-ABB5CCB248DC}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{C9B07F73-8725-4222-A4B3-66C70AD16201}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{CA85E133-2325-4B76-9E4C-7F4A69942990}" = protocol=17 | dir=in | app=c:\program files\activision\call of duty - world at war\codwawmp.exe | "{CC827FF9-B0C1-437F-B15B-8A79E6386BD9}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\groove.exe | "{CFF1CE23-54D6-45D0-9D12-A115D1E49495}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{D0B51796-2FE1-451E-B1B4-30329A9C612C}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | "{D9C73BAB-4792-473B-BD35-A89FF44957DF}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{DDAB9016-422C-4EDE-A657-AA8E7A8EFA81}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{E71AAB52-5F33-4C71-9D25-CBF5078B5EAB}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | "{E76DF308-6947-49C3-980C-8048231DD7A1}" = protocol=17 | dir=in | app=c:\program files\hp\hp deskjet 1050 j410 series\bin\usbsetup.exe | "{F561C74F-36E8-454E-8177-855AC4A811ED}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | "{FD955F27-4EDA-4A2A-8B82-7B8F8CD15DCF}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\groove.exe | "TCP Query User{12B76975-82D9-489E-8902-D26CDE98C2D9}C:\program files\ibm\spss\statistics\20\jre\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\ibm\spss\statistics\20\jre\bin\javaw.exe | "TCP Query User{1A61C3FA-FD60-4CD0-85D5-B13630F36696}C:\program files\electronic arts\red alert 3\data\ra3_1.0.game" = protocol=6 | dir=in | app=c:\program files\electronic arts\red alert 3\data\ra3_1.0.game | "TCP Query User{2742F7EF-1300-4E96-89A8-043CFCA7ADEA}C:\program files\gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu\gg.exe | "TCP Query User{4422D100-C950-4D08-9FF3-74C830263FF6}C:\program files\activision\call of duty 2\cod2mp_s.exe" = protocol=6 | dir=in | app=c:\program files\activision\call of duty 2\cod2mp_s.exe | "TCP Query User{496063D2-7E2C-4966-ACF5-689C8BB522EC}C:\program files\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=c:\program files\sopcast\adv\sopadver.exe | "TCP Query User{6283A122-430B-431F-9C16-9DCDF895E07D}C:\program files\emule\emule.exe" = protocol=6 | dir=in | app=c:\program files\emule\emule.exe | "TCP Query User{74C316C9-A0BE-44F3-B49D-FA9384A74BD2}C:\program files\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=c:\program files\sopcast\adv\sopadver.exe | "TCP Query User{7C450E76-583A-4006-83BD-622E12B118A9}C:\program files\wolfenstein - enemy territory\et.exe" = protocol=6 | dir=in | app=c:\program files\wolfenstein - enemy territory\et.exe | "TCP Query User{8D3DD823-E25D-4B29-A0DF-BEF547AA6ECF}C:\users\ja\appdata\local\temp\588b.tmp\kmservice.exe" = protocol=6 | dir=in | app=c:\users\ja\appdata\local\temp\588b.tmp\kmservice.exe | "TCP Query User{96A26029-8075-4A7D-BC6B-15C0C5CAF22A}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe | "TCP Query User{B173C597-77CC-4534-B423-84C60B60CED9}C:\program files\activision\call of duty 2\cod2mp_s.exe" = protocol=6 | dir=in | app=c:\program files\activision\call of duty 2\cod2mp_s.exe | "TCP Query User{B998D59B-7974-46CB-B75F-4C609F32A99E}C:\program files\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files\sopcast\sopcast.exe | "TCP Query User{BE7C1588-089A-4D8F-A0AB-28EFA097BFFC}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "TCP Query User{BEC96C18-8958-45D1-BA45-7F5BDAFBBCC3}C:\program files\emule\emule.exe" = protocol=6 | dir=in | app=c:\program files\emule\emule.exe | "TCP Query User{CDDA6766-082B-44D1-A89E-4B9158D33AA4}C:\program files\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files\sopcast\sopcast.exe | "TCP Query User{E04EE2E2-9583-49C1-B732-3F3BC98C9F49}C:\program files\electronic arts\red alert 3\data\ra3_1.0.game" = protocol=6 | dir=in | app=c:\program files\electronic arts\red alert 3\data\ra3_1.0.game | "TCP Query User{F271E4D4-76E7-46A9-88B7-50EFAD36818A}C:\users\ja\desktop\emule0.49b-xtreme7.0\emule.exe" = protocol=6 | dir=in | app=c:\users\ja\desktop\emule0.49b-xtreme7.0\emule.exe | "TCP Query User{F317809A-681F-4FE0-A381-B763F4528598}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe | "UDP Query User{166E4D9D-A2A7-4432-A962-2FFE5E3FFAFF}C:\program files\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=c:\program files\sopcast\adv\sopadver.exe | "UDP Query User{16D35FD9-5552-40D5-B90D-3F02D021B089}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe | "UDP Query User{2E2310DA-2A13-4944-A666-00BD9FFE8A8E}C:\program files\emule\emule.exe" = protocol=17 | dir=in | app=c:\program files\emule\emule.exe | "UDP Query User{3982D85B-6A68-46EA-AC1E-7CA5B97F0872}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe | "UDP Query User{4F06DAF2-5084-495C-802F-B7825A53F84E}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "UDP Query User{51F64694-4398-4DCF-8DC4-A6B8B3550EEB}C:\program files\activision\call of duty 2\cod2mp_s.exe" = protocol=17 | dir=in | app=c:\program files\activision\call of duty 2\cod2mp_s.exe | "UDP Query User{55CF23A9-6548-4F8A-BBA5-C86AACE1CEA4}C:\program files\emule\emule.exe" = protocol=17 | dir=in | app=c:\program files\emule\emule.exe | "UDP Query User{587E87C1-7145-4F61-A98E-DF1D9CDD7EC9}C:\program files\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=c:\program files\sopcast\adv\sopadver.exe | "UDP Query User{6CAE5120-DB3E-48D9-9BB3-F4B7A1DA2596}C:\users\ja\appdata\local\temp\588b.tmp\kmservice.exe" = protocol=17 | dir=in | app=c:\users\ja\appdata\local\temp\588b.tmp\kmservice.exe | "UDP Query User{74DED482-7CEC-4AEF-8A9F-3226C46F9AFD}C:\program files\ibm\spss\statistics\20\jre\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\ibm\spss\statistics\20\jre\bin\javaw.exe | "UDP Query User{77C42596-9328-4A6D-9A02-5266B8344DDE}C:\program files\gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu\gg.exe | "UDP Query User{905C7B6D-E3C7-4075-85B3-B3E41A6400F7}C:\program files\electronic arts\red alert 3\data\ra3_1.0.game" = protocol=17 | dir=in | app=c:\program files\electronic arts\red alert 3\data\ra3_1.0.game | "UDP Query User{95D578A0-4BFE-414C-B714-7EE2F519F870}C:\users\ja\desktop\emule0.49b-xtreme7.0\emule.exe" = protocol=17 | dir=in | app=c:\users\ja\desktop\emule0.49b-xtreme7.0\emule.exe | "UDP Query User{98837480-B58C-4C90-9223-EF6230ACCBF9}C:\program files\electronic arts\red alert 3\data\ra3_1.0.game" = protocol=17 | dir=in | app=c:\program files\electronic arts\red alert 3\data\ra3_1.0.game | "UDP Query User{A33C80EF-7FEC-4CB4-8363-3C7B4C0271E5}C:\program files\activision\call of duty 2\cod2mp_s.exe" = protocol=17 | dir=in | app=c:\program files\activision\call of duty 2\cod2mp_s.exe | "UDP Query User{C844BD82-3868-4763-8D38-6127465D357A}C:\program files\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files\sopcast\sopcast.exe | "UDP Query User{EABD8A9E-2696-4797-8577-AEFF7384BC24}C:\program files\wolfenstein - enemy territory\et.exe" = protocol=17 | dir=in | app=c:\program files\wolfenstein - enemy territory\et.exe | "UDP Query User{EC11E279-99BC-4323-B7B3-60BD6D06D681}C:\program files\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files\sopcast\sopcast.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator "{0090A87C-3E0E-43D4-AA71-A71B06563A4A}" = Dell Support Center "{0840B4D6-7DD1-4187-8523-E6FC0007EFB7}" = Windows Live ID Sign-in Assistant "{0E64B098-8018-4256-BA23-C316A43AD9B0}" = QuickTime "{109DEFF3-0F9C-B90E-1FCF-B2D4C8D58E0A}" = ccc-utility "{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate "{1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF}" = Bing Bar "{1D5E29AD-39A9-4D0A-A8B6-46A6FCD8C995}" = Live! Cam Avatar v1.0 "{2AF8017B-E503-408F-AACE-8A335452CAD2}" = IBM SPSS Statistics 20 "{2CCBABCB-6427-4A55-B091-49864623C43F}" = Google Toolbar for Firefox "{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace "{4E5386F5-C0F6-4532-A54A-374865AEAB71}" = Cisco PEAP Module "{5673C2CA-7DC5-C89D-B05B-D609F2EE9C23}" = ccc-core-static "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{59F6A514-9813-47A3-948C-8A155460CC2A}" = RICOH R5C83x/84x Flash Media Controller Driver Ver.3.51.01 "{5C90D8CF-F12A-41C6-9007-3B651A1F0D78}" = HP Deskjet 1050 J410 series Pomoc "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{65D0C510-D7B6-4438-9FC8-E6B91115AB0D}" = Live! Cam Avatar Creator "{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6DB44D01-6AE4-101A-67AD-2C844EF5A848}" = Catalyst Control Center Graphics Full Existing "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{76F9CF97-FC4B-4E20-B363-D127C888448F}" = Cisco LEAP Module "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7B63B2922B174135AFC0E1377DD81EC2}" = DivX Codec "{86B5E5AF-3D50-4979-9C81-687C1B3C586D}" = Dell WUSB "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player "{90110415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003 "{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0015-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0016-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0018-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-0019-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001A-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001B-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0407-0000-0000000FF1CE}_Office14.PROPLUS_{65A2328E-FDFB-4CA3-8582-357EA6825FEA}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUS_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-001F-0415-0000-0000000FF1CE}_Office14.PROPLUS_{1D751709-BA6C-49E2-844B-4F4F20F410C9}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-002C-0415-0000-0000000FF1CE}_Office14.PROPLUS_{6606F321-8216-466E-981E-B75A14C46894}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-0044-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-006E-0415-0000-0000000FF1CE}_Office14.PROPLUS_{6AF8887A-72F7-4FA0-ABE4-396172B64550}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00A1-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{90140000-00BA-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{96B3C2A3-ADD6-4E63-89D3-1E3AC115D3FA}" = pdfforge Toolbar v6.0 "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = Dell Touchpad "{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}" = SigmaTel Audio "{AC76BA86-7AD7-1045-7B44-A81200000003}" = Adobe Reader 8 - Polish "{AE46ABD3-D625-467F-B5A7-8D3FFF077F0D}" = Realtek 8139 and 8139C+ Ethernet Network Card Driver for Windows Vista "{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}" = HP Update "{B13A7C41581B411290FBC0395694E2A9}" = DivX Converter "{B1665885-C05D-429D-9308-AD74D12502BD}_is1" = Przyspiesz.pl 2.1.5.0 "{B6DCC604-288E-E573-DDA7-F8E5EA95C5C5}" = Catalyst Control Center Graphics Full New "{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Web Player "{B71AAB54-8712-07EB-73C8-20C6831B7D15}" = Catalyst Control Center Core Implementation "{BF53252E-4AB2-4C7F-A0FD-6100755745E3}" = Cisco EAP-FAST Module "{C3ABE126-2BB2-4246-BFE1-6797679B3579}" = LG USB Modem driver "{C3CB6DBD-26C8-4EE9-A7DA-E04A7D1225F2}" = HP Deskjet 1050 J410 series Podstawowe oprogramowanie urządzenia "{C4972073-2BFE-475D-8441-564EA97DA161}" = QuickSet "{CD95D125-2992-4858-B3EF-5F6FB52FBAD6}" = Skype Toolbars "{CD95F661-A5C4-44F5-A6AA-ECDD91C240B7}" = WinZip 12.0 "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{CFADE4AF-C0CF-4A04-A776-741318F1658F}" = Content Transfer "{D050D7362D214723AD585B541FFB6C11}" = DivX Content Uploader "{D5ECE81A-02AC-41B1-89AB-0F4D4B958B49}" = HP Deskjet 1050 J410 series Badanie ulepszeń produktu "{D93ADCCA-3BFD-4440-836D-4E4841EBD2A8}" = Catalyst Control Center - Branding "{D98C0C51-F9BB-4EE4-B791-22BF6EE31045}" = Nero 7 Ultra Edition "{DA00D7A2-2F22-237D-70E5-02F8F43BC10C}" = Skins "{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}" = Apple Application Support "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10 "{EFF5A560-0D45-19F9-4C72-3280AC25370F}" = Catalyst Control Center Graphics Previews Vista "{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable "{F4A438FA-D546-2035-4D10-6DE7AEA3C563}" = ATI Catalyst Install Manager "{F4E1C7FA-8BF7-9842-CE03-6DCD102111E1}" = Catalyst Control Center Graphics Light "{F63A3748-B93D-4360-9AD4-B064481A5C7B}" = Narzedzie do diagnostyki modemu "{F8A10A25-D8DD-4661-9A1E-7F6DBAAA3C5E}" = inSSIDer "Adobe Flash Player ActiveX" = Adobe Flash Player ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.6 "Advanced Audio FX Engine" = Advanced Audio FX Engine "Advanced Video FX Engine" = Advanced Video FX Engine "ALLPlayer V2.4_is1" = ALLPlayer V2.4 "ALLPlayer_is1" = ALLPlayer V4.X "avast!" = avast! Antivirus "AVerMedia MCE Encoder" = AVerMedia MCE Encoder 3.2.1.62 "AVG Secure Search" = AVG Security Toolbar "Babylon" = Babylon "BabylonToolbar" = Babylon toolbar "CCleaner" = CCleaner (remove only) "CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2C06&SUBSYS_14F1000F" = Conexant HDA D330 MDC V.92 Modem "Creative OEM002" = Laptop Integrated Webcam Driver (1.03.02.0719) "Dell Support Center" = Dell Support Center "Dell Webcam Center" = Dell Webcam Center "Dell Webcam Manager" = Dell Webcam Manager "eMule" = eMule "FileZilla Client" = FileZilla Client 3.5.3 "Gadu-Gadu" = Gadu-Gadu 7.7 "Google Desktop" = Google Desktop "HP Photo Creations" = HP Photo Creations "KLiteCodecPack_is1" = K-Lite Codec Pack 4.1.7 (Full) "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Mozilla Firefox 16.0.2 (x86 pl)" = Mozilla Firefox 16.0.2 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NapiProjekt_is1" = NapiProjekt 1.0.6.9 "NSS" = Norton Security Scan "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "Power Video Converter_is1" = Power Video Converter 1.5.54 "PowerISO" = PowerISO "QuicktimeAlt_is1" = QuickTime Alternative 1.76 "RealAlt_is1" = Real Alternative 1.8.2 "Registry Mechanic_is1" = PC Tools Registry Mechanic 11.0 "save2pc Light_is1" = save2pc Light 3.42 "save2pc Pro Demo_is1" = save2pc Pro Demo 3.47 "SopCast" = SopCast 3.2.9 "Super Kulki_is1" = Super Kulki "Totalcmd" = Total Commander (Remove or Repair) "Warcraft III" = Warcraft III "Winamp" = Winamp "Winamp Toolbar for Firefox" = Winamp Toolbar for Firefox "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "9204f5692a8faf3b" = Dell System Detect "Google Chrome" = Google Chrome "Warcraft III" = Warcraft III: wszystkie elementy "Winamp Detect" = Winamp Detector Plug-in [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Antivirus Events ] Error - 2008-03-16 15:20:11 | Computer Name = Ja-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\ProgramData\SupportSoft\DellSupportCenter\SYSTEM\data\0c81c9f4-8f7b-4bf0-a94b-3a18728e2b01\s1bs.ch failed, 00000005. Error - 2012-03-20 09:52:12 | Computer Name = Ja-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\Windows\System32\conime.exe failed, 00000005. Error - 2012-09-23 15:56:32 | Computer Name = Ja-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\Users\Ja\AppData\Local\Microsoft\Feeds\Microsoft Feeds~\Microsoft at Home~.feed-ms failed, 00000005. [ Application Events ] Error - 2011-12-11 12:17:14 | Computer Name = Ja-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd wmpnetwk.exe, wersja 11.0.6001.7000, sygnatura czasowa 0x47919370, moduł powodujący błąd Indiv01.key, wersja 11.0.6000.6324, sygnatura czasowa 0x47e3b5ef, kod wyjątku 0xc0000005, przesunięcie błędu 0x001017a3, identyfikator procesu 0x168c, godzina rozpoczęcia aplikacji 0x01ccb820569355c3. Error - 2011-12-11 12:17:49 | Computer Name = Ja-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd wmpnetwk.exe, wersja 11.0.6001.7000, sygnatura czasowa 0x47919370, moduł powodujący błąd Indiv01.key, wersja 11.0.6000.6324, sygnatura czasowa 0x47e3b5ef, kod wyjątku 0xc0000005, przesunięcie błędu 0x00106a9a, identyfikator procesu 0xba8, godzina rozpoczęcia aplikacji 0x01ccb8206c785893. Error - 2011-12-11 12:18:33 | Computer Name = Ja-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd wmpnetwk.exe, wersja 11.0.6001.7000, sygnatura czasowa 0x47919370, moduł powodujący błąd Indiv01.key, wersja 11.0.6000.6324, sygnatura czasowa 0x47e3b5ef, kod wyjątku 0xc0000005, przesunięcie błędu 0x000f9dd1, identyfikator procesu 0x1710, godzina rozpoczęcia aplikacji 0x01ccb820869eae93. Error - 2011-12-12 06:04:25 | Computer Name = Ja-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd wmpnetwk.exe, wersja 11.0.6001.7000, sygnatura czasowa 0x47919370, moduł powodujący błąd Indiv01.key, wersja 11.0.6000.6324, sygnatura czasowa 0x47e3b5ef, kod wyjątku 0xc0000005, przesunięcie błędu 0x0010b234, identyfikator procesu 0x1038, godzina rozpoczęcia aplikacji 0x01ccb8b56afdb1bf. Error - 2011-12-12 06:05:07 | Computer Name = Ja-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd wmpnetwk.exe, wersja 11.0.6001.7000, sygnatura czasowa 0x47919370, moduł powodujący błąd Indiv01.key, wersja 11.0.6000.6324, sygnatura czasowa 0x47e3b5ef, kod wyjątku 0xc0000005, przesunięcie błędu 0x00107707, identyfikator procesu 0x1788, godzina rozpoczęcia aplikacji 0x01ccb8b586899acf. Error - 2011-12-12 06:05:34 | Computer Name = Ja-PC | Source = Perflib | ID = 1010 Description = Error - 2011-12-12 06:05:38 | Computer Name = Ja-PC | Source = Perflib | ID = 1008 Description = Error - 2011-12-12 06:05:46 | Computer Name = Ja-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd wmpnetwk.exe, wersja 11.0.6001.7000, sygnatura czasowa 0x47919370, moduł powodujący błąd Indiv01.key, wersja 11.0.6000.6324, sygnatura czasowa 0x47e3b5ef, kod wyjątku 0xc0000005, przesunięcie błędu 0x00107be7, identyfikator procesu 0xaa8, godzina rozpoczęcia aplikacji 0x01ccb8b59da50a5f. Error - 2011-12-12 06:06:22 | Computer Name = Ja-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd wmpnetwk.exe, wersja 11.0.6001.7000, sygnatura czasowa 0x47919370, moduł powodujący błąd Indiv01.key, wersja 11.0.6000.6324, sygnatura czasowa 0x47e3b5ef, kod wyjątku 0xc0000005, przesunięcie błędu 0x00103a08, identyfikator procesu 0xfe0, godzina rozpoczęcia aplikacji 0x01ccb8b5b2deb1ff. Error - 2011-12-12 09:31:05 | Computer Name = Ja-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd firefox.exe, wersja 1.8.20081.21709, sygnatura czasowa 0x49494210, moduł powodujący błąd firefox.exe, wersja 1.8.20081.21709, sygnatura czasowa 0x49494210, kod wyjątku 0xc0000005, przesunięcie błędu 0x00186f78, identyfikator procesu 0xe10, godzina rozpoczęcia aplikacji 0x01ccb8d0ca3d9eef. [ Broadcom Wireless LAN Events ] Error - 2012-07-11 05:13:01 | Computer Name = Ja-PC | Source = WLAN-Tray | ID = 0 Description = 11:13:01, Wed, Jul 11, 12 Error - Unable to gain access to user store [ System Events ] Error - 2009-11-11 09:56:08 | Computer Name = Ja-PC | Source = DCOM | ID = 10010 Description = Error - 2009-11-11 09:57:17 | Computer Name = Ja-PC | Source = HTTP | ID = 15016 Description = Error - 2009-11-11 09:57:43 | Computer Name = Ja-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2009-11-11 09:57:57 | Computer Name = Ja-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2009-11-11 09:57:58 | Computer Name = Ja-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2009-11-11 09:57:59 | Computer Name = Ja-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2009-11-11 09:57:59 | Computer Name = Ja-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2009-11-11 09:58:00 | Computer Name = Ja-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2009-11-11 09:58:01 | Computer Name = Ja-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2009-11-12 06:30:16 | Computer Name = Ja-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 18:24:36 na 2009-11-11 było nieoczekiwane. < End of report >