OTL Extras logfile created on: 2012-12-06 21:55:58 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Chudy\Desktop 64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 4,00 Gb Total Physical Memory | 2,61 Gb Available Physical Memory | 65,26% Memory free 8,00 Gb Paging File | 6,47 Gb Available in Paging File | 80,94% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 29,19 Gb Total Space | 8,90 Gb Free Space | 30,48% Space Free | Partition Type: NTFS Drive D: | 97,65 Gb Total Space | 75,79 Gb Free Space | 77,61% Space Free | Partition Type: NTFS Drive E: | 105,93 Gb Total Space | 67,85 Gb Free Space | 64,05% Space Free | Partition Type: NTFS Drive G: | 100,00 Mb Total Space | 71,88 Mb Free Space | 71,88% Space Free | Partition Type: NTFS Drive H: | 148,95 Gb Total Space | 61,09 Gb Free Space | 41,02% Space Free | Partition Type: NTFS Computer Name: CHUDY-KOMPUTER | User Name: Chudy | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- Reg Error: Key error. File not found .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- Reg Error: Key error. File not found [HKEY_USERS\S-1-5-21-3932450512-3292090998-1446638044-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- D:\Programy\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- "D:\Programy\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [open] -- Reg Error: Key error. htmlfile [opennew] -- Reg Error: Key error. htmlfile [print] -- "D:\Programy\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation) http [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -nohome https [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -nohome inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- D:\Programy\MICROS~1\Office12\ONENOTE.EXE "%L" (Microsoft Corporation) Directory [Winamp.Bookmark] -- "D:\Programy\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "D:\Programy\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "D:\Programy\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- Reg Error: Key error. CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Key error. [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- "D:\Programy\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [open] -- Reg Error: Key error. htmlfile [opennew] -- Reg Error: Key error. htmlfile [print] -- "D:\Programy\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation) http [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -nohome https [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -nohome inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- D:\Programy\MICROS~1\Office12\ONENOTE.EXE "%L" (Microsoft Corporation) Directory [Winamp.Bookmark] -- "D:\Programy\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "D:\Programy\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "D:\Programy\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- Reg Error: Key error. CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Key error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{083B1D0C-F6AC-4EC0-968B-1281FC5ED8CC}" = rport=138 | protocol=17 | dir=out | app=system | "{0A6AF648-0D88-4CC9-8477-331E4EB9C421}" = rport=139 | protocol=6 | dir=out | app=system | "{136A7963-77AC-46A2-9049-C92768C4F6E8}" = rport=137 | protocol=17 | dir=out | app=system | "{1A8F080D-0434-4D60-B666-4952BABD329C}" = lport=138 | protocol=17 | dir=in | app=system | "{20A36546-FB08-4ADC-9FCF-8EEF7735E52C}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{2F87FC8C-6D2D-43EB-B303-5AD52C9B1947}" = lport=6004 | protocol=17 | dir=in | app=d:\programy\microsoft office\office12\outlook.exe | "{3BECC22A-65D2-4A3D-9853-7F6E55ED11DA}" = lport=2869 | protocol=6 | dir=in | app=system | "{45D0B97A-827B-454D-A19A-E044D0E18A10}" = lport=139 | protocol=6 | dir=in | app=system | "{57FC800C-E7F8-48B4-BF94-6341ECD8CE42}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{5988108E-8649-4C07-B4D6-15249268B22D}" = rport=10243 | protocol=6 | dir=out | app=system | "{74244568-E075-4447-B5D6-042DF091F69C}" = lport=1542 | protocol=6 | dir=in | name=realtek wps tcp prot | "{76D3AAB9-E3AF-402C-8799-BA438865AB0A}" = rport=445 | protocol=6 | dir=out | app=system | "{7C83A99F-BD90-49A1-BD1E-B2C88AAFB7BF}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{85F414A8-CA2B-4305-9E5B-B6CD94839F08}" = lport=53 | protocol=17 | dir=in | name=realtek ap udp prot | "{86201B58-8CFD-4BEC-B694-CE9F45085384}" = lport=445 | protocol=6 | dir=in | app=system | "{8A483305-9001-4433-A75B-DE9E4A471CA9}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{8EA57A4E-5C71-4DCF-8F66-6C37BA717F02}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{9159618B-72EF-41E2-9C2D-E5A38636D56A}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{95648C98-53EF-45B0-9159-8AF697BA93FC}" = lport=1542 | protocol=17 | dir=in | name=realtek wps udp prot | "{9F10EBAF-3825-4562-9188-DBB1A8BD87E0}" = lport=10243 | protocol=6 | dir=in | app=system | "{A0DA7476-9B79-4402-88F8-9DDE20353D4C}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{A859D788-BA65-4A66-BC47-6AD51BA2C72A}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{ABDD24E7-1462-4212-8C35-4F97D55BF7D9}" = lport=137 | protocol=17 | dir=in | app=system | "{D4C8D15E-F593-4B09-BAD4-29CF551D493D}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{E2AD0BA2-7E59-4DBF-9393-069F1913235C}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{17897799-D21F-473B-9BAF-1D09D189B271}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{1B6B71E2-A47D-4875-A3EE-53F08A3C77C0}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{1E92019F-8900-4F06-BC54-02462A7C8310}" = protocol=6 | dir=in | app=d:\gry\valve\steam\steam.exe | "{2366B1AA-E9F1-4669-93C0-B204A89AC2B7}" = protocol=17 | dir=in | app=d:\programy\microsoft office\office12\onenote.exe | "{31F07AB2-6E62-4712-8154-2E421151E42C}" = protocol=6 | dir=in | app=d:\programy\opera\pluginwrapper\opera_plugin_wrapper.exe | "{3FA4D43F-78DB-40C9-A7F9-CC9FBDD81080}" = protocol=6 | dir=in | app=d:\gry\valve\steam\steamapps\fire_frendly\counter-strike\hl.exe | "{419EB7B1-AE80-48A5-B336-7B67C2FB9542}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{41A87E9E-9C08-4C5A-A3D4-4539637D9469}" = protocol=6 | dir=in | app=d:\programy\utorrent\utorrent.exe | "{4356C107-55E0-41F7-A255-9DDDECD7BF0A}" = protocol=17 | dir=in | app=d:\gry\valve\steam\steamapps\fire_frendly\counter-strike\hl.exe | "{4EE0880B-0D61-46B5-9ED6-F9FA0DB3F97D}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{50864255-8A93-489F-B59F-5A37506A5F64}" = protocol=6 | dir=in | app=d:\programy\microsoft office\office12\groove.exe | "{52D5E8F1-2B41-420D-9AD0-1E86829B475F}" = protocol=6 | dir=out | app=system | "{55318DB6-C5D0-45AB-BAAB-307F7992CA0D}" = protocol=6 | dir=in | app=d:\gry\valve\steam\steamapps\fire_frendly\condition zero\hl.exe | "{596786B3-96AC-414B-84CD-63089239E5E5}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{6B61DA04-AF74-4ED3-9DE2-DC9A138765BA}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{6BBF7A9E-D34B-469A-A662-51E844248A36}" = protocol=17 | dir=in | app=c:\program files (x86)\realtek\11n usb wireless lan utility\rtwlan.exe | "{79069CA8-EC00-4531-A81F-1A09C457D211}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{85B231B2-7D0E-4F64-B41F-FFA759C57880}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{88EBF6A7-A9FC-408A-809D-4CC88221DBE2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{8F621746-809A-4969-A8EE-C10780786BBF}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{936A52C0-CFE9-4D2C-BC55-8DEAA401C942}" = protocol=6 | dir=in | app=d:\programy\opera\opera.exe | "{93FCF4F9-76B9-48E9-A88A-9492F6FAE3CC}" = protocol=17 | dir=in | app=d:\programy\opera\pluginwrapper\opera_plugin_wrapper.exe | "{9473FC86-2F61-4D22-90B8-20E503B55A84}" = protocol=6 | dir=in | app=c:\program files (x86)\realtek\11n usb wireless lan utility\rtwlan.exe | "{94CF3029-8A88-4903-9440-14D24FA08ACC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{95026F02-5702-44A5-8C13-E6033F2FE738}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{991DE24D-2AA5-4297-B77D-1339ED05BC2E}" = protocol=17 | dir=in | app=d:\programy\microsoft office\office12\groove.exe | "{9C3D302C-35D6-411F-B467-71B3A241E1DB}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{A58EECFA-188B-4D5E-B094-FC78F38F9935}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{B359F1F3-B82E-4937-84A2-AABB4E273C9E}" = dir=in | app=c:\users\chudy\appdata\local\facebook\video\skype\facebookvideocalling.exe | "{B91828CB-D1C5-43D7-99D3-15C4B91CAA5C}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{C9C55857-508D-42C5-9B31-728200340492}" = protocol=17 | dir=in | app=d:\gry\valve\steam\steam.exe | "{D02B678C-144F-449C-8C1F-D7E541DC7A69}" = protocol=17 | dir=in | app=d:\programy\utorrent\utorrent.exe | "{D914CEB7-4043-438A-A41E-19F950824350}" = protocol=17 | dir=in | app=d:\gry\valve\steam\steamapps\fire_frendly\condition zero\hl.exe | "{E537B820-2F59-4F2F-90EF-488AC9325275}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{F6BE0BE2-09B0-420D-B623-5BAEF32140F2}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{F969724F-4CE3-471C-91A4-F5DFEC8FDB9A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{FA025575-4063-4AA3-83E5-2125EDBD96AB}" = protocol=6 | dir=in | app=d:\programy\microsoft office\office12\onenote.exe | "{FB8435D0-5651-4D53-B35F-F292F84C516A}" = protocol=17 | dir=in | app=d:\programy\opera\opera.exe | "TCP Query User{112A6F2A-9427-40BC-B38F-F097EB003ED2}C:\program files (x86)\java\jre7\bin\java.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\java.exe | "TCP Query User{232D402D-429C-4DF7-9B04-19B89AD1AE4F}D:\programy\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=d:\programy\gadu-gadu 10\gg.exe | "TCP Query User{38EEF9DD-578A-4A11-A78C-CE57B38CBF9F}C:\program files (x86)\tlen7\tlen7.exe" = protocol=6 | dir=in | app=c:\program files (x86)\tlen7\tlen7.exe | "TCP Query User{3FA00C52-534B-4FAA-88DD-B04D605CF207}C:\program files (x86)\allmediaserver\mediaserver.exe" = protocol=6 | dir=in | app=c:\program files (x86)\allmediaserver\mediaserver.exe | "TCP Query User{6687546A-E09D-43ED-BD60-28AF6B68C1CD}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "TCP Query User{89A02163-58D5-4E1E-A852-1612040B6564}D:\programy\mirc\mirc.exe" = protocol=6 | dir=in | app=d:\programy\mirc\mirc.exe | "TCP Query User{B06B87F6-FAF8-4F6C-9A5C-F2280F9F156F}D:\programy\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=d:\programy\gadu-gadu 10\gg.exe | "TCP Query User{BFEC56CB-86F3-43C3-8EA4-7420D21C0BE8}D:\programy\winamp\winamp.exe" = protocol=6 | dir=in | app=d:\programy\winamp\winamp.exe | "TCP Query User{E6AAE694-F5B8-4B62-BB02-E794CBA1F3DE}D:\programy\mirc\mirc.exe" = protocol=6 | dir=in | app=d:\programy\mirc\mirc.exe | "TCP Query User{FFF88ABC-2226-403D-BD67-5EF3339395B2}D:\gry\valve\steam\steamapps\fire_frendly\condition zero deleted scenes\hl.exe" = protocol=6 | dir=in | app=d:\gry\valve\steam\steamapps\fire_frendly\condition zero deleted scenes\hl.exe | "UDP Query User{0597BF9C-2FF5-41E7-8BFC-5CD7FC9E5306}D:\programy\winamp\winamp.exe" = protocol=17 | dir=in | app=d:\programy\winamp\winamp.exe | "UDP Query User{07E43076-431A-4B7D-96E1-D3B89B5BBF1C}D:\programy\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=d:\programy\gadu-gadu 10\gg.exe | "UDP Query User{15A9E31B-1FEE-42E2-886F-F88CD1E680C1}D:\gry\valve\steam\steamapps\fire_frendly\condition zero deleted scenes\hl.exe" = protocol=17 | dir=in | app=d:\gry\valve\steam\steamapps\fire_frendly\condition zero deleted scenes\hl.exe | "UDP Query User{4BB29A16-98AA-440C-A16C-D45EAB3DF329}C:\program files (x86)\allmediaserver\mediaserver.exe" = protocol=17 | dir=in | app=c:\program files (x86)\allmediaserver\mediaserver.exe | "UDP Query User{546C9C15-7963-4662-B47D-54C0F4D74820}D:\programy\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=d:\programy\gadu-gadu 10\gg.exe | "UDP Query User{641F663C-F295-4742-B8F9-7A6FFDC1E0BC}C:\program files (x86)\java\jre7\bin\java.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\java.exe | "UDP Query User{6CFEB8D2-96BB-4622-B01E-CC7B94F3F0F3}C:\program files (x86)\tlen7\tlen7.exe" = protocol=17 | dir=in | app=c:\program files (x86)\tlen7\tlen7.exe | "UDP Query User{76CD3DED-43C2-433A-82F7-6E2A85A8C659}D:\programy\mirc\mirc.exe" = protocol=17 | dir=in | app=d:\programy\mirc\mirc.exe | "UDP Query User{9B4B20E7-C7CF-4FFC-9C4E-3E48433ECDE4}D:\programy\mirc\mirc.exe" = protocol=17 | dir=in | app=d:\programy\mirc\mirc.exe | "UDP Query User{B10F78AF-430C-46C3-8C47-C9EC0526BCC9}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{26A24AE4-039D-4CA4-87B4-2F86417007FF}" = Java 7 Update 7 (64-bit) "{2A911F4F-4D4A-D6C6-59F8-78894CDADB12}" = AMD Fuel "{3D5135B6-1FF5-ABC2-9CD7-C309064EB56A}" = AMD Media Foundation Decoders "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime "{5DFAC3C9-B2FD-E15E-5FA1-A2676F4BB07A}" = ccc-utility64 "{64A3A4F4-B792-11D6-A78A-00B0D0170070}" = Java SE Development Kit 7 Update 7 (64-bit) "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007 "{C1AA0149-F7D1-8D18-37E8-3DD4A5326B64}" = AMD Catalyst Install Manager "{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 "{DC16F23B-5A91-15E5-CB42-299925689860}" = AMD Accelerated Video Transcoding "{F9288828-6A63-D770-FA71-99D60CC8EED1}" = AMD Drag and Drop Transcoding "CPUID HWMonitor_is1" = CPUID HWMonitor 1.20 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{02C1D5C6-E758-0CE0-911D-0260AEE1EFC7}" = CCC Help English "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam(TM) "{10819FDB-BDDA-80F1-4EAF-1D8916C114E4}" = AMD VISION Engine Control Center "{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser "{1CE75322-B65F-6BB8-B503-D7D967160919}" = CCC Help Thai "{1E48A3E8-9A1C-B5DE-B2EF-CA740BBCA6A5}" = CCC Help Czech "{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 9 "{2D57FB4E-6277-4A6D-8739-304C38051B89}" = Jitbit Macro Recorder LITE "{31957600-31D0-FE19-4235-B85B4C768FC3}" = CCC Help Italian "{31A559C1-9E4D-423B-9DD3-34A6C5398752}" = HTC BMP USB Driver "{37361C5C-B767-B01C-0661-F430C4C0B61B}" = CCC Help Spanish "{38D451A9-A844-8652-5A42-70825EC90B25}" = CCC Help Greek "{47FA2C44-D148-4DBC-AF60-B91934AA4842}" = Adobe AIR "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4B35F00C-E63D-40DC-9839-DF15A33EAC46}" = Grand Theft Auto Vice City "{4DF8ACB2-0F93-ECED-EE9B-355548333562}" = CCC Help Chinese Traditional "{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module "{53FA9A9F-3C19-4D43-AD6B-DEF365D469BA}" = Camtasia Studio 7 "{60C6FE80-AB40-10F7-0106-752620AB4339}" = CCC Help Russian "{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module "{6D6664A9-3342-4948-9B7E-034EFE366F0F}" = HTC Driver Installer "{80F895CC-D64F-6A32-354D-099AB1AAF001}" = CCC Help Japanese "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8A1EC1FE-3224-29CB-F7A7-4EF245A1ED8C}" = CCC Help Hungarian "{8D4E81BC-F137-FDC0-F33F-1DC907362F87}" = CCC Help French "{8DD8B5D0-DAEF-871E-FD91-FFD411A86E1E}" = CCC Help Norwegian "{8E4E59D9-0F68-09A6-A2B3-05010F8D1843}" = CCC Help Finnish "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{93F9EDEC-77CD-67A2-B328-09FFE6CEB72E}" = CCC Help German "{943A8D28-80D6-41DC-AE94-81FEB42041BF}" = System Requirements Lab CYRI "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9A4E726E-5414-65E1-1772-2C1F5320BEE3}" = CCC Help Portuguese "{9C049499-055C-4a0c-A916-1D12314F45EB}" = REALTEK Wireless LAN Driver and Utility "{9FD6F1A8-5550-46AF-8509-271DF0E768B5}" = Dual-Core Optimizer "{A0C597A7-3BD9-9066-6293-E3107E1DB32D}" = CCC Help Korean "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{AC76BA86-7AD7-1045-7B44-AA1000000001}" = Adobe Reader X (10.1.4) - Polish "{B8E30929-A479-8D58-FE6B-264FAF3F05D3}" = CCC Help Danish "{B92C5909-1D37-4C51-8397-A28BB28E5DC3}" = Facebook Video Calling 1.2.0.287 "{BD929149-9035-153F-7E1E-96E30D26341B}" = CCC Help Turkish "{BECBB896-7789-174F-DD95-106F3B3E9A4C}" = Catalyst Control Center InstallProxy "{CB462448-5967-5FE5-2C77-A2C921EACCAA}" = CCC Help Swedish "{D2277ED3-1AAD-762B-F6E6-8D172FF7D29E}" = Catalyst Control Center Graphics Previews Common "{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}" = GTA San Andreas "{DD6959D3-EC84-56DC-4642-7DC9B05E8D4A}" = CCC Help Dutch "{DF5A03CC-D5AA-43D8-B948-D9903F2AF94A}" = Counter-Strike(TM) "{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding "{E908333A-8345-359F-B229-1F439C221B34}" = CCC Help Polish "{EB834284-080E-109C-17A2-237D563B098C}" = Catalyst Control Center Localization All "{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F14E8360-454B-592E-38C8-4F66E7C51AAB}" = CCC Help Chinese Standard "{FE77909E-B782-4554-A92A-4D887CEF0ACC}_is1" = ALLMediaServer "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Adobe AIR" = Adobe AIR "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "ALLPlayer_is1" = ALLPlayer V5.X "Avira AntiVir Desktop" = Avira Free Antivirus "DAEMON Tools Lite" = DAEMON Tools Lite "ENTERPRISE" = Microsoft Office Enterprise 2007 "Gadu-Gadu 10" = Gadu-Gadu 10 "KLiteCodecPack_is1" = K-Lite Codec Pack 9.0.2 (Full) "mIRC" = mIRC "Mozilla Firefox 16.0.2 (x86 pl)" = Mozilla Firefox 16.0.2 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Opera 12.11.1661" = Opera 12.11 "Picasa 3" = Picasa 3 "PLAY ONLINE" = PLAY ONLINE "uTorrent" = µTorrent "Winamp" = Winamp "WinRAR archiver" = Archiwizator WinRAR "Xilisoft Video Converter Ultimate" = Xilisoft Video Converter Ultimate [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3932450512-3292090998-1446638044-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Advanced PDF Password Recovery" = Advanced PDF Password Recovery "UnityWebPlayer" = Unity Web Player [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-12-06 05:43:55 | Computer Name = Chudy-Komputer | Source = Software Protection Platform Service | ID = 8198 Description = Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error - 2012-12-06 05:43:55 | Computer Name = Chudy-Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error - 2012-12-06 05:55:36 | Computer Name = Chudy-Komputer | Source = Software Protection Platform Service | ID = 8198 Description = Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error - 2012-12-06 05:55:36 | Computer Name = Chudy-Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error - 2012-12-06 06:15:32 | Computer Name = Chudy-Komputer | Source = Software Protection Platform Service | ID = 8198 Description = Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error - 2012-12-06 06:15:33 | Computer Name = Chudy-Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error - 2012-12-06 08:38:08 | Computer Name = Chudy-Komputer | Source = Software Protection Platform Service | ID = 8198 Description = Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error - 2012-12-06 08:38:08 | Computer Name = Chudy-Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error - 2012-12-06 16:30:17 | Computer Name = Chudy-Komputer | Source = Software Protection Platform Service | ID = 8198 Description = Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error - 2012-12-06 16:30:17 | Computer Name = Chudy-Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. [ System Events ] Error - 2012-11-26 16:29:12 | Computer Name = Chudy-Komputer | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2012-11-27 03:28:22 | Computer Name = Chudy-Komputer | Source = Microsoft-Windows-WLAN-AutoConfig | ID = 10000 Description = Uruchomienie modułu rozszerzalności sieci WLAN nie powiodło się. Ścieżka modułu: C:\Windows\system32\Rtlihvs.dll Kod błędu: 126 Error - 2012-11-27 04:55:57 | Computer Name = Chudy-Komputer | Source = Microsoft-Windows-WLAN-AutoConfig | ID = 10000 Description = Uruchomienie modułu rozszerzalności sieci WLAN nie powiodło się. Ścieżka modułu: C:\Windows\system32\Rtlihvs.dll Kod błędu: 126 Error - 2012-11-27 11:01:12 | Computer Name = Chudy-Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 15:59:50 na ?2012-?11-?27 było nieoczekiwane. Error - 2012-11-27 11:01:15 | Computer Name = Chudy-Komputer | Source = Microsoft-Windows-WLAN-AutoConfig | ID = 10000 Description = Uruchomienie modułu rozszerzalności sieci WLAN nie powiodło się. Ścieżka modułu: C:\Windows\system32\Rtlihvs.dll Kod błędu: 126 Error - 2012-11-27 14:48:51 | Computer Name = Chudy-Komputer | Source = Microsoft-Windows-WLAN-AutoConfig | ID = 10000 Description = Uruchomienie modułu rozszerzalności sieci WLAN nie powiodło się. Ścieżka modułu: C:\Windows\system32\Rtlihvs.dll Kod błędu: 126 Error - 2012-11-27 14:54:27 | Computer Name = Chudy-Komputer | Source = Microsoft-Windows-WLAN-AutoConfig | ID = 10000 Description = Uruchomienie modułu rozszerzalności sieci WLAN nie powiodło się. Ścieżka modułu: C:\Windows\system32\Rtlihvs.dll Kod błędu: 126 Error - 2012-11-27 14:55:21 | Computer Name = Chudy-Komputer | Source = Microsoft-Windows-WLAN-AutoConfig | ID = 10000 Description = Uruchomienie modułu rozszerzalności sieci WLAN nie powiodło się. Ścieżka modułu: C:\Windows\system32\Rtlihvs.dll Kod błędu: 126 Error - 2012-11-27 14:55:30 | Computer Name = Chudy-Komputer | Source = Microsoft-Windows-WLAN-AutoConfig | ID = 10000 Description = Uruchomienie modułu rozszerzalności sieci WLAN nie powiodło się. Ścieżka modułu: C:\Windows\system32\Rtlihvs.dll Kod błędu: 126 Error - 2012-11-27 17:57:11 | Computer Name = Chudy-Komputer | Source = Disk | ID = 262151 Description = W urządzeniu \Device\Harddisk6\DR6 wystąpił zły blok. < End of report >