OTL Extras logfile created on: 2012-12-09 14:50:29 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = M:\ Windows Vista Home Basic Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,99 Gb Total Physical Memory | 1,54 Gb Available Physical Memory | 51,43% Memory free 6,18 Gb Paging File | 3,94 Gb Available in Paging File | 63,67% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 111,39 Gb Total Space | 19,65 Gb Free Space | 17,64% Space Free | Partition Type: NTFS Drive D: | 14,65 Gb Total Space | 7,49 Gb Free Space | 51,10% Space Free | Partition Type: NTFS Drive E: | 2,82 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS Drive F: | 53,40 Gb Total Space | 2,88 Gb Free Space | 5,39% Space Free | Partition Type: NTFS Drive G: | 53,40 Gb Total Space | 5,42 Gb Free Space | 10,15% Space Free | Partition Type: NTFS Drive I: | 36,39 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Drive K: | 29,27 Gb Total Space | 0,05 Gb Free Space | 0,18% Space Free | Partition Type: FAT32 Drive L: | 1,81 Gb Total Space | 0,45 Gb Free Space | 24,63% Space Free | Partition Type: FAT Drive M: | 29,27 Gb Total Space | 4,19 Gb Free Space | 14,31% Space Free | Partition Type: FAT32 Drive N: | 298,09 Gb Total Space | 0,09 Gb Free Space | 0,03% Space Free | Partition Type: NTFS Computer Name: MARIUSZ-PC | User Name: Mariusz | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2590639626-3621608400-1005715495-1000\SOFTWARE\Classes\] .html [@ = TorchHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{043BDF45-1348-4FD3-BCB5-F20AA8526A77}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{45E1937B-5F89-4C88-99D4-AF93086F2E3E}" = rport=137 | protocol=17 | dir=out | app=system | "{4B9FF15B-43B9-467B-9BF7-42E939ACFA46}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{4BB9317D-862E-4D13-80C0-9525BAC263E5}" = rport=139 | protocol=6 | dir=out | app=system | "{9757AC76-C172-4555-81ED-E7C88F522EEB}" = rport=445 | protocol=6 | dir=out | app=system | "{9C35BEF5-930B-426B-97E1-1F8DA9E64A84}" = lport=139 | protocol=6 | dir=in | app=system | "{A25870E8-648B-47BE-B0E3-9382D72A30B5}" = lport=138 | protocol=17 | dir=in | app=system | "{AD7D1114-4A4D-4D00-A67F-D519011B1A4B}" = rport=138 | protocol=17 | dir=out | app=system | "{BD1FA8F2-511A-4146-B220-A52773DB1269}" = lport=137 | protocol=17 | dir=in | app=system | "{D7B17AB9-DBC2-44E2-9A30-B2A7D5873E2B}" = lport=445 | protocol=6 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{16ECE9DB-AACB-4DE2-8D20-C29AB75274DE}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{2B62063E-B636-4239-BBDB-3A4E5FF9FE68}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{2C0EBC21-4E26-421C-9DAB-1AB34BF499A1}" = protocol=6 | dir=in | app=c:\program files\electronic arts\crytek\crysis\bin32\crysis.exe | "{302EF82F-9819-4101-9190-435F19B6877E}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{42049A84-169D-4556-9B33-AD8EAFDC9063}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe | "{43529BC1-CC2D-4F12-8BBC-0A8854ED0356}" = protocol=6 | dir=in | app=c:\program files\search results toolbar\datamngr\srtool~1\dtuser.exe | "{4BEA1022-77D4-444A-909C-7953CECF6B93}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe | "{551F450E-DE22-43D3-B80A-B62D62D0177F}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{5F6F936E-EE8D-47A9-8A9F-96A9224BC771}" = protocol=17 | dir=in | app=c:\program files\search results toolbar\datamngr\srtool~1\dtuser.exe | "{6661D2B1-FC34-4C96-A9AB-3A01D43DD6B1}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe | "{6F6C18C5-1733-41D3-82E5-FC95408945A0}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{78E32C3C-07D7-4B20-9D98-7E748139C506}" = dir=in | app=c:\users\mariusz\appdata\local\torch\plugins\torrent\torchtorrent.exe | "{79619545-B51E-4880-B399-4CB0AF9C0429}" = dir=in | app=c:\program files\cyberlink\powerdvd dx\powerdvd.exe | "{855BADCD-9CA7-4861-B80A-ED2D4BFB91D6}" = dir=in | app=c:\program files\cyberlink\powerdvd dx\pdvddxsrv.exe | "{871AEDCD-9675-4B81-8D17-D519525BAEC1}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{872CBC8C-C8F0-441E-9A4D-EBAAAC9A9C43}" = protocol=6 | dir=in | app=c:\program files\capcom\devil may cry 4\dmc4launcher.exe | "{8941E3CA-645B-4148-829A-F79574E306A3}" = protocol=6 | dir=in | app=c:\program files\electronic arts\crytek\crysis\bin32\crysisdedicatedserver.exe | "{89D12D8E-60EB-4EC4-AD74-5A4CA871A3A7}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{8D3540B7-B238-4FD1-8BCD-D23615924D0D}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe | "{972CA1D9-EE4C-4539-BEEF-68A57C0AFE73}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{9F7785A8-1FE9-4908-96EB-5F452D4FD775}" = protocol=17 | dir=in | app=c:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe | "{AF30A971-84F9-4A6A-B8A4-78415A1992D5}" = protocol=17 | dir=in | app=c:\program files\electronic arts\crytek\crysis\bin32\crysis.exe | "{BDB6FB24-F4FA-4F87-BA40-AB41C16BC227}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{C33F8CF2-7A40-4BDA-9A7E-769B04215729}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{C5D5EF1A-07D8-42EA-A779-B3D838291AFB}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe | "{C881860D-E4FD-4C9D-B871-717862BF650E}" = protocol=6 | dir=in | app=c:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe | "{CC55A49F-BF1B-4C29-8177-87A893EEBF0C}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{D0DF051B-5857-49C6-9B69-D58722A19EBF}" = protocol=17 | dir=in | app=c:\program files\capcom\devil may cry 4\dmc4launcher.exe | "{DA9C9D6F-FA7D-45A5-A4E3-896899428E0A}" = protocol=17 | dir=in | app=c:\program files\electronic arts\crytek\crysis\bin32\crysisdedicatedserver.exe | "{FCADD6E6-9F5C-4D26-B2FC-44B2A51D8801}" = dir=in | app=c:\users\mariusz\appdata\local\facebook\video\skype\facebookvideocalling.exe | "TCP Query User{3223C22A-2CD6-40D1-BBC4-12E0D3272E4C}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{44FD84E0-10A8-4C5C-8D0E-4C28695AB0AB}K:\mag-patriot\gry-instalki\racer free car simulation - gra (instalka)\racer\racer.exe" = protocol=6 | dir=in | app=k:\mag-patriot\gry-instalki\racer free car simulation - gra (instalka)\racer\racer.exe | "TCP Query User{60AF25C2-E23F-41EF-B663-6B3976799F20}K:\mag-patriot\gry-instalki\racer free car simulation - gra (instalka)\racer086\racer.exe" = protocol=6 | dir=in | app=k:\mag-patriot\gry-instalki\racer free car simulation - gra (instalka)\racer086\racer.exe | "TCP Query User{6FD8299C-21EC-423B-9B98-8CA1BAB8738E}K:\mag-patriot\gry-instalki\racer free car simulation - gra (instalka)\racer\racer_nocg.exe" = protocol=6 | dir=in | app=k:\mag-patriot\gry-instalki\racer free car simulation - gra (instalka)\racer\racer_nocg.exe | "TCP Query User{71098B1B-D297-4878-9223-24F4BBFDC833}C:\program files\elcomsoft\distributed password recovery\esdprs.exe" = protocol=6 | dir=in | app=c:\program files\elcomsoft\distributed password recovery\esdprs.exe | "TCP Query User{8E7F5CA8-E0F6-404F-A7CC-93DFF42C9796}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "TCP Query User{99189ED6-EEED-41F6-BCD0-2710F8011681}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{9BE28133-AB0C-4D82-ACBE-57FB08CCF3EF}E:\setup\data\codwawmp.exe" = protocol=6 | dir=in | app=e:\setup\data\codwawmp.exe | "TCP Query User{A8C9E217-E816-42F4-8E25-4F0FE337492F}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe | "TCP Query User{EBDCABC1-533B-4DF4-A969-9B07CF716AEA}C:\program files\empire interactive\strangelite\starship troopers\stgame.exe" = protocol=6 | dir=in | app=c:\program files\empire interactive\strangelite\starship troopers\stgame.exe | "TCP Query User{FEA5AEE2-7406-4BA4-8DDC-EB7F6D7D8724}K:\mag-patriot\gry-instalki\racer free car simulation - gra (instalka)\racer\racer_nocg.exe" = protocol=6 | dir=in | app=k:\mag-patriot\gry-instalki\racer free car simulation - gra (instalka)\racer\racer_nocg.exe | "UDP Query User{0234A5D6-DDD3-4361-BC2A-4895FD4D7191}C:\program files\elcomsoft\distributed password recovery\esdprs.exe" = protocol=17 | dir=in | app=c:\program files\elcomsoft\distributed password recovery\esdprs.exe | "UDP Query User{18EAC0B4-9297-4DA4-B3E7-A34C9012E67D}K:\mag-patriot\gry-instalki\racer free car simulation - gra (instalka)\racer086\racer.exe" = protocol=17 | dir=in | app=k:\mag-patriot\gry-instalki\racer free car simulation - gra (instalka)\racer086\racer.exe | "UDP Query User{1A53E4B3-B9FD-4007-A59D-6C57F366B404}K:\mag-patriot\gry-instalki\racer free car simulation - gra (instalka)\racer\racer_nocg.exe" = protocol=17 | dir=in | app=k:\mag-patriot\gry-instalki\racer free car simulation - gra (instalka)\racer\racer_nocg.exe | "UDP Query User{1BCFB9CA-2B81-418B-9F1A-B41B73A4F1CB}E:\setup\data\codwawmp.exe" = protocol=17 | dir=in | app=e:\setup\data\codwawmp.exe | "UDP Query User{5E626C8B-ECF9-40B6-A37E-B2DBBFC0A353}K:\mag-patriot\gry-instalki\racer free car simulation - gra (instalka)\racer\racer_nocg.exe" = protocol=17 | dir=in | app=k:\mag-patriot\gry-instalki\racer free car simulation - gra (instalka)\racer\racer_nocg.exe | "UDP Query User{777C76BB-E7E9-4E31-846A-A1807D4C961A}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe | "UDP Query User{A3EC8D77-9450-48B6-ABEC-7F914BF1281F}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "UDP Query User{AADB349F-17C7-41C0-B91B-3F3136526DCB}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{C9DCC7D0-8A9F-42A9-92D3-1E44F51B9134}K:\mag-patriot\gry-instalki\racer free car simulation - gra (instalka)\racer\racer.exe" = protocol=17 | dir=in | app=k:\mag-patriot\gry-instalki\racer free car simulation - gra (instalka)\racer\racer.exe | "UDP Query User{CC6A1BBF-EA24-4533-B23E-1EAEB8CE36DF}C:\program files\empire interactive\strangelite\starship troopers\stgame.exe" = protocol=17 | dir=in | app=c:\program files\empire interactive\strangelite\starship troopers\stgame.exe | "UDP Query User{DCEF225A-3B55-494F-83CD-DED5C642B1F2}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 "{055EE59D-217B-43A7-ABFF-507B966405D8}" = ATI Catalyst Control Center "{08E81ABD-79F7-49C2-881F-FD6CB0975693}" = Roxio Creator Data "{09760D42-E223-42AD-8C3E-55B47D0DDAC3}" = Roxio Creator DE "{0CE69E03-1021-EB74-0836-C706CADC213A}" = Catalyst Control Center Localization Korean "{0E5FDD1D-DCE8-4F9D-9BFD-4E4CF89811E2}" = iCloud "{0E64B098-8018-4256-BA23-C316A43AD9B0}" = QuickTime "{15F7FA6D-8FC5-08FD-2727-8AE6811A2A0D}" = CCC Help Russian "{180BEABD-453E-4047-96B4-4F86EE605589}" = CCC Help Danish "{181A0114-24D5-9E74-0138-4C8C27ED3EAC}" = Catalyst Control Center Graphics Light "{1C36647E-F5BD-43E9-BA64-5F274B7F7051}_is1" = Symulator Jazdy 2 v.1.0 "{1E5196FA-47EF-F0C7-847B-960F3349E9B5}" = CCC Help Finnish "{1F54DAFA-9261-4A62-B59D-6C9F26B48FE4}" = Roxio Creator Tools "{2094F083-B28B-AFFD-4075-49E803BE17B7}" = CCC Help Italian "{2116C03A-7111-9669-8009-9FD7F5AABA20}" = Catalyst Control Center Graphics Full New "{23467AA2-058A-1064-40C5-E0E0533C2D7D}" = Catalyst Control Center Localization French "{24D7346D-D4B4-45E8-98EA-75EC14B42DD8}" = Adobe ExtendScript Toolkit 2 "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{26B29DE2-7759-F8BB-FB10-98142B343C8C}" = CCC Help Korean "{2934DCB0-F8EE-11E0-A4A5-B8AC6F97B88E}" = Google Earth Plug-in "{2FB28284-51D3-C991-3940-694B1B629F2B}" = Catalyst Control Center Localization German "{30465B6C-B53F-49A1-9EBA-A3F187AD502E}" = Roxio Update Manager "{306B39C9-3AB1-4161-8567-9C7E50B41AE3}" = Microsoft Works "{3138EAD3-700B-4A10-B617-B3F8096EE30D}" = Dell Edoc Viewer "{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{3248F0A8-6813-11D6-A77B-00B0D0150100}" = J2SE Runtime Environment 5.0 Update 10 "{375943E2-B268-4AD7-B7A4-0FD90E9C2AC7}" = Skype™ 4.0 "{3945F4B5-0FAD-38E3-B39B-2F497550C847}" = CCC Help French "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{3F6107B9-D211-EBCC-EA41-BD2FAC156A23}" = Catalyst Control Center Localization Japanese "{3FD8C713-B1D5-D973-5351-50A918C02749}" = Catalyst Control Center Core Implementation "{415B2719-AD3A-4944-B404-C472DB6085B3}" = Cisco EAP-FAST Module "{43D16DA8-BF42-3C62-89D3-3AD47829DC2E}" = Google Talk Plugin "{45235788-142C-44BE-8A4D-DDE9A84492E5}" = AGEIA PhysX v7.09.13 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4DFF1415-4C29-44A8-BFD4-2BCE249C4991}" = SpPhones "{560F47F7-EB23-44B1-AAFC-667F1CD8FE5C}" = Sp5 "{586DD9D2-09B2-D1DB-AD2A-95194A771C49}" = CCC Help Dutch "{63EC2120-1742-4625-AA47-C6A8AEC9C64C}" = Obsługa programów Apple "{64C1FA9A-FA94-4B6E-B3E4-8573738E4AD1}" = Adobe Setup "{65D0C510-D7B6-4438-9FC8-E6B91115AB0D}" = Live! Cam Avatar Creator "{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3 "{669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E}" = Cisco PEAP Module "{66ED8E01-C915-41F5-B33E-C5C31F27B885}" = USB Network Driver "{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6C16A05F-C202-578A-108C-AFA4D9167CCC}" = Catalyst Control Center Localization Spanish "{6C3959C6-943E-44B3-BAAD-570B04B134E5}" = SpCommon "{6C6D7326-770A-812B-B104-442F71A826F8}" = Catalyst Control Center Localization Russian "{6D4AC5A4-4CF9-4F90-8111-B9B53CE257BF}" = Adobe Color Common Settings "{6EA1C352-4D16-5A9F-7751-D7AE08AA7F63}" = Catalyst Control Center Localization Chinese Traditional "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{72085899-3540-2F67-F5C7-46FF826A235F}" = CCC Help German "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{73A4F29F-31AC-4EBD-AA1B-0CC5F18C8F83}" = Roxio Creator Audio "{74622EDD-7879-3185-976D-A6098420D889}" = CCC Help Portuguese "{7505BBE5-CB0C-5027-1228-15CC7C26C4C3}" = CCC Help English "{76C4BA9A-BFA5-151D-8A39-AA0E74041F83}" = Catalyst Control Center Localization Danish "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{77A5C01F-E04C-9616-2E3D-D78CF889712B}" = Catalyst Control Center Graphics Full Existing "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour "{79D34E3B-8826-170B-8B3D-A9CD9C2D28F5}" = ccc-core-static "{7CDF0744-7A0D-961B-3695-49756E822FC4}" = Catalyst Control Center Localization Swedish "{8247BD1D-C258-DBEE-3225-B9F0214763AB}" = CCC Help Japanese "{83770D14-21B9-44B3-8689-F7B523F94560}" = Cisco LEAP Module "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 "{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar "{87717500-AED3-B339-842A-BE3B62F600E0}" = ccc-utility "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90120000-0020-0415-0000-0000000FF1CE}" = Pakiet zgodności dla systemu Office 2007 "{92491D2C-D9E9-5FDD-64CD-82D5688872A9}" = Catalyst Control Center Localization Italian "{9370105C-71BB-4FF9-A85B-36D79B95457A}_is1" = ALLConverter PRO 1.0 "{95120000-00AF-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (Polish) "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9EF77B2D-FF26-9237-BBAB-127110FD65CC}" = Catalyst Control Center Localization Portuguese "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1045-7B44-AA1000000001}" = Adobe Reader X (10.1.4) - Polish "{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9 "{AC76BA86-7AD7-5760-0000-900000000003}" = Japanese Fonts Support For Adobe Reader 9 "{ACB08AF2-DFE9-C179-8BC9-E3209F3EBC28}" = CCC Help Chinese Traditional "{B3C02EC1-A7B0-4987-9A43-8789426AAA7D}" = Adobe Setup "{B6A26DE5-F2B5-4D58-9570-4FC760E00FCD}" = Roxio Creator Copy "{B7607FC8-72AD-486D-B6B7-A402D5876309}" = PerfectDisk 11 Professional "{B92C5909-1D37-4C51-8397-A28BB28E5DC3}" = Facebook Video Calling 1.2.0.287 "{BB5F88FC-5D66-9316-0E48-E411941A8A74}" = Catalyst Control Center Graphics Previews Vista "{BEE64C14-BEF1-4610-8A68-A16EAA47B882}" = Futuremark SystemInfo "{C17280C4-8BF2-946A-9C51-EEB2CD216D89}" = Catalyst Control Center Graphics Previews Common "{C2F8CA82-2BD9-4513-B2D1-08A47914C1DA}_is1" = Uniblue DriverScanner "{C4972073-2BFE-475D-8441-564EA97DA161}" = QuickSet "{C5D85C24-A56B-6954-77F1-B25A4B4E7B52}" = CCC Help Spanish "{C8C5CE76-860E-B5FA-27EA-C52C74DDBD2D}" = Catalyst Control Center Localization Finnish "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86 "{CDCFA0B9-06DA-C47E-2CF1-37C5F25DF753}" = Catalyst Control Center InstallProxy "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D071B7C5-07A2-D000-05B8-2DE6A63249D9}" = Catalyst Control Center Localization Norwegian "{D2D3882A-3624-2963-EA08-27589DBCEF8A}" = CCC Help Norwegian "{D2D3D146-67BC-43D0-9015-2E7BAC2E032B}" = OpenOffice.org 3.1 "{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}" = GTA San Andreas "{D61776D6-17D8-42F1-A936-4EE66EB1F11D}" = jAlbum "{E415C943-37E5-473F-8BAE-043C56734124}" = Sp5TTInt "{E481DB0E-52F2-4EE0-9BDA-9EE173FA6EA2}" = Catalyst Control Center - Branding "{E8E8C42E-E817-C7DA-1A81-BFD8388B4014}" = CCC Help Swedish "{ED439A64-F018-4DD4-8BA5-328D85AB09AB}" = Roxio Creator DE "{EFD537AE-0530-8887-DC9C-433E113547D7}" = Catalyst Control Center Localization Chinese Standard "{F081ED08-77AE-8019-D554-904EF4F88FC1}" = CCC Help Chinese Standard "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F133ACD4-CFCF-BADD-4AC5-9408E2E7FD74}" = Catalyst Control Center Localization Dutch "{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}" = Vista Codec Package "{FB56BF24-6AB9-AC55-5B7A-D3657D2F4A38}" = Skins "{FD4B33E1-24AE-4535-AA7B-162B30FB57CD}" = Sp5Intl "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe_3e054d2218e7aa282c2369d939e58ff" = Adobe ExtendScript Toolkit 2 "Adobe_6c8e2cb4fd241c55406016127a6ab2e" = Adobe Color Common Settings "Advanced Audio FX Engine" = Advanced Audio FX Engine "Advanced SystemCare 5_is1" = Advanced SystemCare 5 "Adwokat Domowy_is1" = Adwokat Domowy 2008 "ALLPlayer_is1" = ALLPlayer V4.X "avast!" = avast! Antivirus "AVS DVDMenu Editor_is1" = AVS DVDMenu Editor 1.2.1.19 "AVS Video Tools 5_is1" = AVS Video Tools 5.6 "BabylonToolbar" = Babylon toolbar on IE "Broadcom 802.11 Application" = Dell Wireless WLAN Card Utility "conduitEngine" = Conduit Engine "Creative OA008" = Integrated Webcam Driver (1.02.02.0106) "Dell Webcam Central" = Dell Webcam Central "DT2" = Deutsch Translator 2 "EasyLanguage_is1" = EasyLanguage "ET3" = English Translator 3 "eTeacher 5_is1" = eTeacher 5 "Euro Truck Simulator_is1" = Euro Truck Simulator "FormatFactory" = FormatFactory 2.70 "FreeCommander_is1" = FreeCommander 2009.02 "free-downloads.net Toolbar" = free-downloads.net Toolbar "Gadu-Gadu 10" = Gadu-Gadu 10 "Game Booster_is1" = Game Booster 3 "ilividtoolbarguid" = Search-Results Toolbar "ipla" = ipla 2.4 "IVONA - syntezator mowy, wersja rehabilitacyjna" = IVONA - syntezator mowy, wersja rehabilitacyjna "IVONA ControlCenter" = IVONA ControlCenter "Jalbum_0" = Jalbum 8.1 "KLiteCodecPack_is1" = K-Lite Codec Pack 6.2.0 (Basic) "LHTTSENG" = L&H TTS3000 British English "Lingoes Translator_is1" = Lingoes 2.7.1 "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "MK2009_is1" = Mistrz Klawiatury 2009 "Mozilla Firefox (3.5.19)" = Mozilla Firefox (3.5.19) "MSTTS" = Microsoft Text-to-Speech Engine 4.0 (English) "OpenAL" = OpenAL "Picasa 3" = Picasa 3 "pkslow_60_demo_is1" = Profesor Klaus Słownictwo 6.0 Demo "PLAY ONLINE" = PLAY ONLINE "PunkBusterSvc" = PunkBuster Services "San Andreas Mod Installer1.1" = San Andreas Mod Installer "Smart Defrag 2_is1" = Smart Defrag 2 "Softonic_Deutsch_FF Toolbar" = Softonic Deutsch FF Toolbar "SynTPDeinstKey" = Dell Touchpad "The KMPlayer" = The KMPlayer (remove only) "tv_enua" = Lernout & Hauspie TruVoice American English TTS Engine "VirtuallyJenna-025.002" = VirtuallyJenna-025.002 "VLC media player" = VideoLAN VLC media player 0.8.6e "Winamp" = Winamp "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2590639626-3621608400-1005715495-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk" = Google Talk (remove only) "{79A765E1-C399-405B-85AF-466F52E918B0}" = Ask Toolbar Updater "Torch" = Torch "Winamp Detect" = Detektor Winampa [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Antivirus Events ] Error - 2011-12-09 16:09:22 | Computer Name = Mariusz-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of I:\Photos\Eve\16d1cfc1ab.jpeg failed, 00000079. Error - 2011-12-09 16:10:21 | Computer Name = Mariusz-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of I:\Photos\Eve\33925574d7.jpeg failed, 00000079. Error - 2012-03-28 14:48:40 | Computer Name = Mariusz-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\Users\Mariusz\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\SuggestedSites.dat failed, 00000005. Error - 2012-04-09 17:36:16 | Computer Name = Mariusz-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\Users\Mariusz\AppData\Local\Temp\ggQN5876.html failed, 00000005. Error - 2012-05-08 10:10:36 | Computer Name = Mariusz-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\Users\Mariusz\AppData\Local\Temp\ggne5084.html failed, 00000005. Error - 2012-05-09 18:43:52 | Computer Name = Mariusz-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of E:\IMG_0112.JPG failed, 00000015. Error - 2012-08-27 17:31:31 | Computer Name = Mariusz-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\Users\Mariusz\AppData\Local\Temp\ggKk5408.html failed, 00000005. Error - 2012-09-02 19:53:38 | Computer Name = Mariusz-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\Windows\System32\conime.exe failed, 00000005. Error - 2012-11-16 18:38:09 | Computer Name = Mariusz-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\Users\Mariusz\AppData\Roaming\Mozilla\Firefox\Profiles\13tvrxgo.default\webappsstore.sqlite failed, 00000005. Error - 2012-11-26 09:04:09 | Computer Name = Mariusz-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of E:\Kasprzak Monika - Kołobrzeg\Wakacje 2010 Szczecin i Kołobrzeg\pierwszy dzień nad morzem.JPG failed, 00000015. [ Application Events ] Error - 2012-12-08 16:15:30 | Computer Name = Mariusz-PC | Source = LoadPerf | ID = 3002 Description = Error - 2012-12-08 22:44:49 | Computer Name = Mariusz-PC | Source = WinMgmt | ID = 10 Description = Error - 2012-12-08 22:46:23 | Computer Name = Mariusz-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd rundll32.exe, wersja 6.0.6000.16386, sygnatura czasowa 0x4549b0e1, moduł powodujący błąd USER32.dll, wersja 6.0.6002.18541, sygnatura czasowa 0x4ec3e3d5, kod wyjątku 0xc0000142, przesunięcie błędu 0x00009f5d, identyfikator procesu 0xd34, godzina rozpoczęcia aplikacji 0x01cdd5b75fa2bc88. Error - 2012-12-08 23:01:39 | Computer Name = Mariusz-PC | Source = System Restore | ID = 8193 Description = Error - 2012-12-08 23:01:46 | Computer Name = Mariusz-PC | Source = System Restore | ID = 8193 Description = Error - 2012-12-08 23:54:27 | Computer Name = Mariusz-PC | Source = WinMgmt | ID = 10 Description = Error - 2012-12-09 00:34:18 | Computer Name = Mariusz-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd pev.3XE, wersja 0.0.0.0, sygnatura czasowa 0x4e06cfe8, moduł powodujący błąd unknown, wersja 0.0.0.0, sygnatura czasowa 0x00000000, kod wyjątku 0xc0000005, przesunięcie błędu 0x00000000, identyfikator procesu 0x92c, godzina rozpoczęcia aplikacji 0x01cdd5c653771597. Error - 2012-12-09 01:02:10 | Computer Name = Mariusz-PC | Source = WinMgmt | ID = 10 Description = Error - 2012-12-09 01:48:51 | Computer Name = Mariusz-PC | Source = EventSystem | ID = 4621 Description = Error - 2012-12-09 08:39:05 | Computer Name = Mariusz-PC | Source = WinMgmt | ID = 10 Description = [ Broadcom Wireless LAN Events ] Error - 2012-10-07 09:28:25 | Computer Name = Mariusz-PC | Source = WLAN-Tray | ID = 0 Description = 15:28:25, Sun, Oct 07, 12 Error - Unable to get current user admin status Error - 2012-10-09 13:31:03 | Computer Name = Mariusz-PC | Source = WLAN-Tray | ID = 0 Description = 19:31:03, Tue, Oct 09, 12 Error - Unable to get current user admin status Error - 2012-12-08 16:01:19 | Computer Name = Mariusz-PC | Source = WLAN-Tray | ID = 0 Description = 21:00:50, Sat, Dec 08, 12 Error - Unable to get current user admin status Error - 2012-12-09 08:39:28 | Computer Name = Mariusz-PC | Source = WLAN-Tray | ID = 0 Description = 13:39:28, Sun, Dec 09, 12 Error - Unable to get current user admin status [ System Events ] Error - 2012-12-09 00:08:21 | Computer Name = Mariusz-PC | Source = Service Control Manager | ID = 7034 Description = Error - 2012-12-09 00:20:54 | Computer Name = Mariusz-PC | Source = Service Control Manager | ID = 7034 Description = Error - 2012-12-09 00:21:01 | Computer Name = Mariusz-PC | Source = Service Control Manager | ID = 7030 Description = Error - 2012-12-09 00:42:14 | Computer Name = Mariusz-PC | Source = Service Control Manager | ID = 7030 Description = Error - 2012-12-09 00:50:12 | Computer Name = Mariusz-PC | Source = Service Control Manager | ID = 7030 Description = Error - 2012-12-09 00:51:12 | Computer Name = Mariusz-PC | Source = Service Control Manager | ID = 7030 Description = Error - 2012-12-09 01:02:12 | Computer Name = Mariusz-PC | Source = Service Control Manager | ID = 7009 Description = Error - 2012-12-09 01:02:12 | Computer Name = Mariusz-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2012-12-09 08:39:06 | Computer Name = Mariusz-PC | Source = Service Control Manager | ID = 7009 Description = Error - 2012-12-09 08:39:06 | Computer Name = Mariusz-PC | Source = Service Control Manager | ID = 7000 Description = < End of report >