OTL Extras logfile created on: 2012-12-20 08:41:02 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = J:\Ukash 64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 4,00 Gb Total Physical Memory | 3,43 Gb Available Physical Memory | 85,69% Memory free 7,99 Gb Paging File | 7,46 Gb Available in Paging File | 93,27% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 244,14 Gb Total Space | 111,81 Gb Free Space | 45,79% Space Free | Partition Type: NTFS Drive D: | 221,62 Gb Total Space | 135,55 Gb Free Space | 61,16% Space Free | Partition Type: NTFS Drive J: | 7,24 Gb Total Space | 4,15 Gb Free Space | 57,34% Space Free | Partition Type: FAT32 Computer Name: PATRYK-PC | User Name: Patryk | Logged in as Administrator. Boot Mode: SafeMode | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-1817071798-2848442691-1526699400-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) .scr [@ = AutoCADScriptFile] -- C:\Windows\notepad.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L" Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\Winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\Winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\Winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L" Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\Winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\Winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\Winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{035E1623-016A-4813-AEA4-86E21CBDE4F5}" = rport=445 | protocol=6 | dir=out | app=system | "{07B3634A-0145-4D8C-A1E8-77A22692ECA9}" = rport=139 | protocol=6 | dir=out | app=system | "{0956C9EB-6599-4D8E-9CB7-EB5960183C02}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{0E046984-D1D0-4FE0-B964-1167ADD88CC8}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{0FFEA4B4-ECEF-4B40-92A4-1E35694A1C98}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{15211734-DEAF-453A-806C-3D5D086F8D26}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{1CD7EE30-B1E0-4D66-AB09-DE58E8A987F9}" = lport=139 | protocol=6 | dir=in | app=system | "{28138569-88A5-486A-BC49-51E603FD204D}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{30BF4B6E-7416-454A-89A3-EF34092A98F4}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{4E599C7F-BCFB-42D5-B351-DF69D97EA657}" = lport=2869 | protocol=6 | dir=in | app=system | "{54F010C3-F149-42F2-BBED-0C7CCEAA53AF}" = rport=138 | protocol=17 | dir=out | app=system | "{5E0B0E54-D024-4B60-88C6-46D35D207587}" = rport=137 | protocol=17 | dir=out | app=system | "{605467FD-756E-45A6-9A73-73DE4F37D735}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{6A574541-4FCD-4AA4-A8E0-EB93BFACD65C}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{755D5867-76F7-42FF-BEF8-C15429B224AF}" = lport=445 | protocol=6 | dir=in | app=system | "{7834F2CC-52D6-45BA-805B-0B30A891C47E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{79801B71-3879-4A75-AB77-DDC86D135116}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{7DF3685C-45E1-4B42-A821-9AE222BA1353}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{9768B69E-BD02-4A18-BBE4-B92BE1B3FE54}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{A3851BE0-5A4F-4735-AE5B-502E3A28E5B3}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{AA0CE16F-EE53-4AA0-B194-D77DFE091816}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{B01024EE-6B5B-4A29-A56B-12452C74CE1F}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{B16ED67E-BE53-4994-B4E7-8B7FA64B5A92}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{B18BF450-7697-4A54-B787-E5C4E9CDBE00}" = lport=138 | protocol=17 | dir=in | app=system | "{BC0AE968-36F2-49E5-8A18-E2980B107433}" = lport=137 | protocol=17 | dir=in | app=system | "{D785036F-C33C-46BC-B1AE-8202E679B95E}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{E00FFDD7-5960-4AE0-8C97-89EE75E1E1C5}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{E0446542-1826-4883-91D7-B7AB702FDA55}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{E54F9A7A-32C4-481C-9FB5-C4DC31DF8F6E}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{F0623A01-6B10-4EC2-8F72-D579037F2764}" = rport=2869 | protocol=6 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{03B747B9-3192-4788-A6E3-DB7B9973DD38}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{08639922-FC35-4368-9873-58B4724A5957}" = protocol=6 | dir=in | app=c:\0\fifa 13\fifa 13\game\fifa13.exe | "{10049A50-ECCB-49BC-AE13-1F6EA100AB31}" = protocol=17 | dir=in | app=d:\gry\fm11\fm.exe | "{113D8C66-9E5D-4D2D-98E1-76AAA315C826}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 | "{158FCE47-65E4-4870-8CE6-4307963E84A6}" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\launcher.exe | "{2A9E912F-F5AF-436C-A8EF-38C80859A5D8}" = protocol=6 | dir=in | app=c:\windows\syswow64\muzapp.exe | "{2B77D77B-B645-4050-AF37-85E969A0F8E9}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{2CBDB092-9BCB-4B9C-8B82-17404EA8DD72}" = protocol=6 | dir=in | app=c:\program files (x86)\codemasters\dirt2\dirt2_game.exe | "{34FF62EC-4B64-4C72-A895-E3E38070C4E7}" = protocol=17 | dir=in | app=c:\program files (x86)\veoh networks\veohwebplayer\veohwebplayer.exe | "{36C55A89-22C1-4E4E-97BD-E0420C98ED50}" = protocol=17 | dir=in | app=c:\program files (x86)\giraffic\veoh_girafficwatchdog.exe | "{372E86FC-AE99-4F29-9E59-123EA2B58331}" = protocol=6 | dir=in | app=c:\program files (x86)\sports interactive\football manager 2011\fm.exe | "{38E0F7F6-A2F0-4BC5-B26E-742AFDD6FE45}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{39890898-9865-4282-AF23-5970213E37E5}" = protocol=17 | dir=in | app=c:\program files (x86)\red sky\downtango\downtango.exe | "{4109821A-AEE5-49EA-9861-7460DFBBB6B4}" = protocol=6 | dir=in | app=c:\windows\system32\spool\drivers\x64\3\hp1006mc.exe | "{4A701DEC-B4D0-4A54-B07F-367FEB205413}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{7366B2F8-EA3D-496B-AAD4-F3E9A7E1210F}" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\launcher.exe | "{81D9D624-FF46-4BAD-8181-B31619F8EE10}" = dir=out | app=c:\program files (x86)\protected search\protectedsearch.exe | "{83D072C8-D200-4BC7-820E-C130827AB666}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{84AE4A2A-2F9A-4609-966A-685394129331}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{8936C479-2748-4BD8-87EB-B544228827F0}" = protocol=17 | dir=in | app=c:\program files (x86)\giraffic\veoh_giraffic.exe | "{8BE50CCB-008E-4425-AB2D-A66A3354BDD1}" = dir=in | app=c:\program files (x86)\protected search\protectedsearch.exe | "{97D060CA-74A3-4078-A644-1B9F3785427C}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{9A143A85-A543-45CA-80FA-84F2576E6314}" = protocol=6 | dir=in | app=d:\gry\fm11\fm.exe | "{9B4328D4-E564-40DD-A09C-E5EDD28FA180}" = protocol=6 | dir=in | app=c:\program files (x86)\giraffic\veoh_girafficwatchdog.exe | "{9D6DF7CA-6611-48C7-85FB-AF755EB0E2AD}" = protocol=17 | dir=in | app=c:\windows\system32\spool\drivers\x64\3\hp1006mc.exe | "{B12A88B5-59EF-4B7C-B50A-D3FFC75F3C5D}" = protocol=6 | dir=in | app=c:\program files (x86)\veoh networks\veohwebplayer\veohwebplayer.exe | "{B8E7EC01-A0E6-4A70-B584-7F00741FB441}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{C077FE63-70D0-428A-BC8C-033FEC8A4DAE}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{C17F75CD-CDE9-4E09-8957-73EAF16BB90E}" = protocol=6 | dir=in | app=c:\program files (x86)\red sky\downtango\pyload-dist\pyloadcore.exe | "{CB5928FE-A17A-4082-8C09-3F912A4F8B7D}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{CBACF444-9422-4678-A5F7-48C7162B69A4}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{CF802AAA-479B-49C2-A820-B79B095FF2DB}" = protocol=17 | dir=in | app=c:\0\fifa 13\fifa 13\game\fifa13.exe | "{CF993E65-36D3-474D-A05A-0B282B681033}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{D35E0CD5-1E5D-4FF1-8AEA-10B61F54003F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{E53BA540-0FC1-4F38-A6B1-BD72B2DCCA9E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{E7252BA7-D30A-4F29-BC1A-F4DDA6BA4661}" = protocol=6 | dir=in | app=c:\program files (x86)\red sky\downtango\downtango.exe | "{E9E6E9F7-1E28-4FFB-A400-DC1C80819A85}" = protocol=17 | dir=in | app=c:\program files (x86)\codemasters\dirt2\dirt2_game.exe | "{EAAADB67-FFF9-4160-9DDA-BA9CCEBF78D4}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{EBF430BC-E5ED-47F2-8E4A-29C107FFF880}" = protocol=17 | dir=in | app=c:\program files (x86)\sports interactive\football manager 2011\fm.exe | "{ECFA1BA4-0F12-4205-A98B-7C762ADE546A}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{ED7DB67C-9A91-47AE-BF86-6B59B7E95E0C}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{F3FCDAB2-F2C9-45B8-A992-AB955E003FF5}" = protocol=17 | dir=in | app=c:\program files (x86)\red sky\downtango\pyload-dist\pyloadcore.exe | "{F4036A13-176C-445F-808F-6D7463CBC891}" = protocol=17 | dir=in | app=c:\windows\syswow64\muzapp.exe | "{FE4095E3-AAA8-4FAC-9793-15C352130CBF}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{FEE1B84D-B853-48ED-B814-5C7F56110BFB}" = protocol=6 | dir=in | app=c:\program files (x86)\giraffic\veoh_giraffic.exe | "TCP Query User{08C00BBF-665B-4CBA-8600-23664657BA68}D:\gry\fifa11\game\fifa.exe" = protocol=6 | dir=in | app=d:\gry\fifa11\game\fifa.exe | "TCP Query User{150044E3-6D4A-40EF-982E-872832692D74}D:\gry\fifa 12\game\fifa.exe" = protocol=6 | dir=in | app=d:\gry\fifa 12\game\fifa.exe | "TCP Query User{1FC81968-6212-4692-830E-B81BF16726D4}C:\users\patryk\desktop\volley\volley.exe" = protocol=6 | dir=in | app=c:\users\patryk\desktop\volley\volley.exe | "TCP Query User{490C9847-FFE4-4694-8862-89A7D027A4F6}C:\users\patryk\appdata\roaming\gameranger\gameranger\gameranger.exe" = protocol=6 | dir=in | app=c:\users\patryk\appdata\roaming\gameranger\gameranger\gameranger.exe | "TCP Query User{638995B0-131B-44E0-9001-2BD0B160A600}C:\program files (x86)\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe | "TCP Query User{652B655B-C676-402E-8F6C-175826ACE314}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "TCP Query User{8030799C-4D99-4075-9E48-A04B890F96C1}D:\gry\pokemon fire red\pokemon fire red pl\vbalink180b0\visualboyadvance.exe" = protocol=6 | dir=in | app=d:\gry\pokemon fire red\pokemon fire red pl\vbalink180b0\visualboyadvance.exe | "TCP Query User{81368323-4D9D-4BFB-8F95-BAFBD3092E61}C:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe | "TCP Query User{86A4FC78-449D-4FFF-B96D-9C515A508441}D:\gry\frontend.exe" = protocol=6 | dir=in | app=d:\gry\frontend.exe | "TCP Query User{A1D855C2-7159-4BB6-A013-8DE30633C5B7}D:\gry\chickeninvadersroty\ci3.exe" = protocol=6 | dir=in | app=d:\gry\chickeninvadersroty\ci3.exe | "TCP Query User{AB2CE15F-A554-4F09-9126-3AE43DECBA19}C:\program files (x86)\totalcmd\totalcmd.exe" = protocol=6 | dir=in | app=c:\program files (x86)\totalcmd\totalcmd.exe | "TCP Query User{AC432156-12BE-48B6-9550-F565FD2FE86D}C:\program files (x86)\fifa 12\game\fifa.exe" = protocol=6 | dir=in | app=c:\program files (x86)\fifa 12\game\fifa.exe | "TCP Query User{B0797B80-6781-4CA1-BB48-206C150031F8}D:\gry\fifa11\game\fifa.exe" = protocol=6 | dir=in | app=d:\gry\fifa11\game\fifa.exe | "TCP Query User{BDCF6B12-9315-4EEA-87B6-BE903D955B3F}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "TCP Query User{C31FA31B-328A-4D1F-A0B6-7D5327EC2D08}C:\program files (x86)\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\adv\sopadver.exe | "TCP Query User{D6EE95AD-60B5-4B80-9E41-D41BA1F33290}D:\gry\fifa 13\games\fifa 13\game\fifa13.exe" = protocol=6 | dir=in | app=d:\gry\fifa 13\games\fifa 13\game\fifa13.exe | "TCP Query User{E3B3DC4B-C364-460F-8554-C3CE76B43D7C}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "TCP Query User{EFB479E5-D18A-48D2-914A-15E6DD3B57FC}D:\gry\fifa 13\game\fifa13.exe" = protocol=6 | dir=in | app=d:\gry\fifa 13\game\fifa13.exe | "TCP Query User{F02D3A88-8A76-4184-85F9-A73DEB4E0452}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "UDP Query User{18C35358-0092-4996-91CB-5A4AC92B3748}D:\gry\fifa11\game\fifa.exe" = protocol=17 | dir=in | app=d:\gry\fifa11\game\fifa.exe | "UDP Query User{19433466-73B0-42D2-A696-89A525944FC5}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "UDP Query User{22E8E881-2FEE-4AA3-BCC0-3C5ECC2A617C}C:\program files (x86)\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe | "UDP Query User{2376C4C5-7F11-471D-A2AB-51C9F704CCED}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "UDP Query User{31B7EAD0-92DC-4326-B603-342834067DA4}D:\gry\fifa 13\games\fifa 13\game\fifa13.exe" = protocol=17 | dir=in | app=d:\gry\fifa 13\games\fifa 13\game\fifa13.exe | "UDP Query User{3DDBC341-E54A-48C7-86AF-F5E02B166353}C:\users\patryk\appdata\roaming\gameranger\gameranger\gameranger.exe" = protocol=17 | dir=in | app=c:\users\patryk\appdata\roaming\gameranger\gameranger\gameranger.exe | "UDP Query User{49B48A3F-EAFA-4D16-8437-152217888DF5}C:\program files (x86)\totalcmd\totalcmd.exe" = protocol=17 | dir=in | app=c:\program files (x86)\totalcmd\totalcmd.exe | "UDP Query User{56D05148-C92B-4744-9576-B0C96BE66ECE}D:\gry\fifa11\game\fifa.exe" = protocol=17 | dir=in | app=d:\gry\fifa11\game\fifa.exe | "UDP Query User{5F9CFD9E-B28E-4D4F-BE55-669DFCB20656}D:\gry\chickeninvadersroty\ci3.exe" = protocol=17 | dir=in | app=d:\gry\chickeninvadersroty\ci3.exe | "UDP Query User{7D773253-EE9D-45F1-A5F4-F9D993EE59CB}D:\gry\fifa 13\game\fifa13.exe" = protocol=17 | dir=in | app=d:\gry\fifa 13\game\fifa13.exe | "UDP Query User{9BB5B0F0-F5FC-4F8D-9BE8-460ED3E6978D}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "UDP Query User{9E35B484-316E-4B96-A003-DC121A6E1013}D:\gry\pokemon fire red\pokemon fire red pl\vbalink180b0\visualboyadvance.exe" = protocol=17 | dir=in | app=d:\gry\pokemon fire red\pokemon fire red pl\vbalink180b0\visualboyadvance.exe | "UDP Query User{A1CFF500-6360-420D-AF26-2ACE88A01078}D:\gry\frontend.exe" = protocol=17 | dir=in | app=d:\gry\frontend.exe | "UDP Query User{B1AB4D2E-5907-47E0-A84D-B5E8D0B188D1}C:\program files (x86)\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\adv\sopadver.exe | "UDP Query User{B23CC7EE-2E24-4B95-895A-0555C78E9FE0}D:\gry\fifa 12\game\fifa.exe" = protocol=17 | dir=in | app=d:\gry\fifa 12\game\fifa.exe | "UDP Query User{C0C94236-13D8-477C-84CD-53AFF27E6C28}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "UDP Query User{CEEB1E44-57A8-43FD-AC27-DDF7DF546253}C:\users\patryk\desktop\volley\volley.exe" = protocol=17 | dir=in | app=c:\users\patryk\desktop\volley\volley.exe | "UDP Query User{E47C6F7B-EEAA-46FC-89B9-030E90221A14}C:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe | "UDP Query User{F21418EC-9443-448E-9BE2-7ED7F621CA86}C:\program files (x86)\fifa 12\game\fifa.exe" = protocol=17 | dir=in | app=c:\program files (x86)\fifa 12\game\fifa.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64) "{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition) "{40BD15A3-E031-5CF1-6994-550A4C059127}" = ATI Catalyst Install Manager "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007 "{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}" = MSVC90_x64 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 306.97 "{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 306.97 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 306.97 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 306.97 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.12.0604 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.10.8 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.3.18.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones "{D7647425-7A6F-4DC6-9F9A-71148AB424CD}" = ESET NOD32 Antivirus "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F" = Windows Driver Package - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) "CCleaner" = CCleaner "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "PK-PCSU_is1" = Przyspiesz Komputer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00C5F4F4-62F9-40D7-8000-AD8A9CD0C669}" = Microsoft Games for Windows - LIVE Redistributable "{1C36647E-F5BD-43E9-BA64-5F274B7F7051}_is1" = Symulator Jazdy 2 v.1.0 "{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform "{26A24AE4-039D-4CA4-87B4-2F83216023FF}" = Java(TM) 6 Update 26 "{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}" = Microsoft Games for Windows - LIVE "{2FDD750F-49B7-40C1-9D5E-D2955BC0E2D8}" = NVIDIA PhysX "{3FEA6CD1-EA13-4CE7-A74E-A74A4A0A7B5C}" = FIFA 11 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4a505538-f48f-412e-9b69-dbac7e3149c3}_is1" = DownTango Launcher 2.1 "{52D1D62C-FEAB-4580-849E-1DB624BADBBD}" = DiRT2 "{5783F2D7-0201-0415-0002-0060B0CE6BBA}" = AutoCAD 2004 "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{644F4910-E812-49AD-93EC-86828CB81A0D}" = PC Connectivity Solution "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{7097B6F1-00D1-4C32-8376-98D0AC47A469}_is1" = Gimnazjum 2011 wersja 1.5 "{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{83A606F5-BF6F-42ED-9F33-B9F74297CDED}" = Need for Speed(TM) Hot Pursuit "{83AA2913-C123-4146-85BD-AD8F93971D39}" = BabylonObjectInstaller "{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{92606477-9366-4D3B-8AE3-6BE4B29727AB}" = League of Legends "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9C538746-C2DC-40FC-B1FB-D4EA7966ABEB}" = Skype™ 5.1 "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{A57025CC-5F2E-4D01-B387-06DB10500D43}" = Nokia Connectivity Cable Driver "{AC76BA86-7AD7-1045-7B44-A94000000001}" = Adobe Reader 9.4.0 - Polish "{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86 "{B9FA15C8-17D4-4E71-A6D9-C33E7BDA83AF}_is1" = International Volleyball 2010 "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.3.22 Game "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{FE77909E-B782-4554-A92A-4D887CEF0ACC}_is1" = ALLMediaServer "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.6 "ALLPlayer_is1" = ALLPlayer V5.X "BabylonToolbar" = Babylon toolbar on IE "BrowserCompanion" = BrowserCompanion "CdaC13Ba" = SafeCast Shared Components "CheatEngine DB Toolbar Toolbar" = CheatEngine DB Toolbar Toolbar "conduitEngine" = Conduit Engine "DAEMON Tools Lite" = DAEMON Tools Lite "DAEMON Tools Toolbar" = DAEMON Tools Toolbar "DealPly" = DealPly "DownTango" = DownTango "ENTERPRISE" = Microsoft Office Enterprise 2007 "FIFA 12 (c) EA_is1" = FIFA 12 (c) EA version 1 "FIFA 12_is1" = FIFA 12 "funmoods" = Funmoods "Gadu-Gadu 10" = Gadu-Gadu 10 "Giant Savings" = Giant Savings "Giraffic" = Veoh Giraffic Video Accelerator "InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Platform Device Manager "InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "LiveVDO plugin" = LiveVDO plugin 1.3 "MobileScoop Toolbar" = MobileScoop Toolbar "MoorHunt_is1" = MoorHunt 0.6.7.2 "Mozilla Firefox 17.0.1 (x86 pl)" = Mozilla Firefox 17.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "MySSID_is1" = Vtune 7.13 "NapiProjekt_is1" = NapiProjekt 2.0.0 (build 2151) "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "OpenAL" = OpenAL "PhotoScape" = PhotoScape "Protected Search_is1" = Protected Search 1.1 "ShopperReportsSA" = ShopperReports "SopCast" = SopCast 3.2.4 "Totalcmd" = Total Commander (Remove or Repair) "uTorrent" = µTorrent "Veoh Web Player Beta" = Veoh Web Player "vShare.tv plugin" = vShare.tv plugin 1.3 "Winamp" = Winamp (remove only) "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1817071798-2848442691-1526699400-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "GameRanger" = GameRanger "Google Chrome" = Google Chrome "PDF Reader Packages" = PDF Reader Packages [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-12-15 16:14:33 | Computer Name = Patryk-PC | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodla sie. Blad 0x80070005. Error - 2012-12-16 08:30:49 | Computer Name = Patryk-PC | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodla sie. Blad 0x80070005. Error - 2012-12-16 15:20:14 | Computer Name = Patryk-PC | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodla sie. Blad 0x80070005. Error - 2012-12-16 17:34:01 | Computer Name = Patryk-PC | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodla sie. Blad 0x80070005. Error - 2012-12-17 10:36:53 | Computer Name = Patryk-PC | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodla sie. Blad 0x80070005. Error - 2012-12-17 14:04:44 | Computer Name = Patryk-PC | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodla sie. Blad 0x80070005. Error - 2012-12-17 15:00:20 | Computer Name = Patryk-PC | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodla sie. Blad 0x80070005. Error - 2012-12-18 10:22:55 | Computer Name = Patryk-PC | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodla sie. Blad 0x80070005. Error - 2012-12-20 03:14:56 | Computer Name = Patryk-PC | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodla sie. Blad 0x80070005. Error - 2012-12-20 03:31:02 | Computer Name = Patryk-PC | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodla sie. Blad 0x80070005. [ System Events ] Error - 2012-12-20 03:33:17 | Computer Name = Patryk-PC | Source = DCOM | ID = 10005 Description = Error - 2012-12-20 03:33:17 | Computer Name = Patryk-PC | Source = DCOM | ID = 10005 Description = Error - 2012-12-20 03:33:17 | Computer Name = Patryk-PC | Source = Service Control Manager | ID = 7001 Description = Usluga Network List Service zalezy od uslugi Network Location Awareness, której nie mozna uruchomic z powodu nastepujacego bledu: %%1068 Error - 2012-12-20 03:33:18 | Computer Name = Patryk-PC | Source = DCOM | ID = 10005 Description = Error - 2012-12-20 03:33:17 | Computer Name = Patryk-PC | Source = Service Control Manager | ID = 7001 Description = Usluga Network List Service zalezy od uslugi Network Location Awareness, której nie mozna uruchomic z powodu nastepujacego bledu: %%1068 Error - 2012-12-20 03:33:17 | Computer Name = Patryk-PC | Source = Service Control Manager | ID = 7001 Description = Usluga Network List Service zalezy od uslugi Network Location Awareness, której nie mozna uruchomic z powodu nastepujacego bledu: %%1068 Error - 2012-12-20 03:33:17 | Computer Name = Patryk-PC | Source = Service Control Manager | ID = 7001 Description = Usluga Network List Service zalezy od uslugi Network Location Awareness, której nie mozna uruchomic z powodu nastepujacego bledu: %%1068 Error - 2012-12-20 03:33:17 | Computer Name = Patryk-PC | Source = Service Control Manager | ID = 7001 Description = Usluga Network List Service zalezy od uslugi Network Location Awareness, której nie mozna uruchomic z powodu nastepujacego bledu: %%1068 Error - 2012-12-20 03:33:17 | Computer Name = Patryk-PC | Source = Service Control Manager | ID = 7001 Description = Usluga Network List Service zalezy od uslugi Network Location Awareness, której nie mozna uruchomic z powodu nastepujacego bledu: %%1068 Error - 2012-12-20 03:33:17 | Computer Name = Patryk-PC | Source = Service Control Manager | ID = 7001 Description = Usluga Network List Service zalezy od uslugi Network Location Awareness, której nie mozna uruchomic z powodu nastepujacego bledu: %%1068 Error - 2012-12-20 03:33:17 | Computer Name = Patryk-PC | Source = Service Control Manager | ID = 7001 Description = Usluga Network List Service zalezy od uslugi Network Location Awareness, której nie mozna uruchomic z powodu nastepujacego bledu: %%1068 < End of report >