OTL Extras logfile created on: 2013-01-13 12:50:10 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = D:\INS\antywirus\OTL Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 7.0.6002.18005) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,04 Gb Available Physical Memory | 51,90% Memory free 4,22 Gb Paging File | 3,16 Gb Available in Paging File | 74,84% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 58,59 Gb Total Space | 1,99 Gb Free Space | 3,40% Space Free | Partition Type: NTFS Drive D: | 90,45 Gb Total Space | 2,35 Gb Free Space | 2,59% Space Free | Partition Type: NTFS Computer Name: GEO-PC | User Name: Kuba | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) .url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l [HKEY_USERS\S-1-5-21-1080152283-609734007-2048292793-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) https [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [Browse with FastStone] -- "C:\Program Files\FastStone Image Viewer\FSViewer.exe" "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{01C48ADF-5105-4A1D-846C-C7344EAC38FD}" = lport=rpc | protocol=6 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{0589EEE1-895C-45CC-836C-D3F9E2C52426}" = lport=rpc | protocol=6 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{0885B61F-A31E-4DC4-AF9E-71474419D128}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{0B6FECCF-D999-4964-B8FC-A63DD7165915}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{0EF28BD1-57CB-499A-866C-80887A5E7DB1}" = lport=rpc | protocol=6 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{1627B1AF-7102-47B8-84CA-E0617752BF0B}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{178881D9-C52F-4195-B6B2-076017017A59}" = lport=137 | protocol=17 | dir=in | app=system | "{17D2A1CD-BBF5-4885-AE16-D906AFD1B10B}" = lport=rpc | protocol=6 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{2F02507B-86EB-4E2F-AD24-C7846A7CA4EE}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{3689151E-22CC-4DD8-86E9-376EE6ADC0D3}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{47214A8D-DC20-4415-AC32-03175EE3D3EA}" = lport=rpc | protocol=6 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\rpcagentsrv.exe | "{4B415E58-157E-4F7A-9E8E-7990F9AB2C62}" = lport=rpc | protocol=6 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{6547502D-8B68-490D-8BEB-C7469A93DE81}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{67777684-6792-4E4B-9485-264FEA8E527D}" = lport=rpc | protocol=6 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{6C18940A-3D45-4E66-A4E1-5F2A82C95A55}" = rport=445 | protocol=6 | dir=out | app=system | "{6C27205F-A228-4603-91AC-AF48F46BCECB}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{6F532B4C-58E4-440B-8B32-B13CBD727B2C}" = lport=138 | protocol=17 | dir=in | app=system | "{7306B9BB-8A4B-488A-8F75-26836CF7B32B}" = lport=4481 | protocol=17 | dir=in | name=blackberry desktop software wireless music sync discovery | "{7737D743-D5E4-4D17-8F12-8679761EB216}" = lport=139 | protocol=6 | dir=in | app=system | "{7E5AF922-783C-460D-8F18-07872ECB340C}" = rport=138 | protocol=17 | dir=out | app=system | "{82EC7252-FE3B-4566-B194-0ABA6C4F2D32}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{ABB6F023-6922-45EA-BA85-5F7B3E25A1BF}" = lport=rpc | protocol=6 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{B26A2D52-9F2D-4517-8B41-526C1B261196}" = lport=rpc | protocol=6 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{C884A0CF-23C8-4344-AA37-660F7CDD5F71}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{CE5FC4E3-961A-470C-A0A2-D9F3355983AA}" = lport=4482 | protocol=6 | dir=in | name=blackberry desktop software wireless music sync data transfer | "{D6384B5E-D88E-4B71-9600-50CE9D9BBCE2}" = lport=445 | protocol=6 | dir=in | app=system | "{DE64D07B-9C81-4F7A-BD56-BDEF4390070D}" = lport=rpc | protocol=6 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{DFF7D11A-7B00-4C1A-80AB-868DFE4D4D30}" = rport=139 | protocol=6 | dir=out | app=system | "{E5D02F76-122A-4D9A-AECC-AD7DA263FF0E}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{EC491DCC-0E1F-4174-8A2A-5D59FE36E266}" = lport=4482 | protocol=17 | dir=in | name=blackberry desktop software wireless music sync discovery | "{ECAB4DF5-B0EA-472F-8E7B-B269859CFB65}" = rport=137 | protocol=17 | dir=out | app=system | "{F7AD08CC-8352-4D2E-B819-A7B039798502}" = lport=rpc | protocol=6 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{F82097D4-FAD3-44F1-80D0-412C2EACAE84}" = lport=4481 | protocol=6 | dir=in | name=blackberry desktop software wireless music sync data transfer | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{04E90736-C15B-40CD-A3E1-AE054A216BF2}" = protocol=1 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{05A70F74-9ACD-46C9-B7AC-236D09B7B687}" = protocol=17 | dir=in | app=c:\program files\steam\steam.exe | "{0DEA98E2-44D7-40AC-AC37-5C187D1A2B86}" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe | "{0E50EC8D-0861-4D0D-889A-96C9424C24F8}" = protocol=1 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{1EFFF9A0-BB88-4E35-910B-8FBFA5CBE868}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{21E0E7C0-9870-4B94-A4AA-C7887CFA8B92}" = protocol=17 | dir=in | app=c:\users\kuba\appdata\local\google\google talk plugin\googletalkplugin.exe | "{222B5AFE-9291-4484-A5A7-8AA02AEB0DF1}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{3B6E931F-C23F-4A8A-9FFE-BA47287B126C}" = protocol=1 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{3CD416A0-DD9B-47AD-AC1F-F4B534D8021A}" = protocol=17 | dir=in | app=c:\program files\steam\steam.exe | "{41E5CD90-EB31-4E78-9949-F16783DCA5CB}" = protocol=1 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{46B9DE69-F5F0-4F6E-9350-65F2528BF61D}" = protocol=1 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{55833E96-F07B-4A18-8F28-99DB786DB77E}" = protocol=6 | dir=in | app=c:\users\kuba\appdata\local\google\google talk plugin\googletalkplugin.exe | "{5F825CBC-93C6-42BA-B8FE-9DBD56A6295C}" = protocol=1 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{67C0E867-4E67-47A2-9748-0FFDB31C75B2}" = protocol=1 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\rpcagentsrv.exe | "{6EB84EA7-755D-46E0-9622-F04DF5F4E0DB}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{73A90094-447E-408D-B78D-B93B78B1F226}" = protocol=1 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{7A694256-0B24-43B8-80AC-BA0818E3CADB}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{8484FCE5-864B-4461-B967-D6187CBE187B}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{8CD53819-A861-4CC2-BA74-422BA6AAD618}" = protocol=1 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{9B8A9148-9C06-4AC6-B125-4CCACB593BEA}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{BE5EC783-E686-45B0-839B-44D44CCFC851}" = protocol=6 | dir=in | app=c:\program files\research in motion\blackberry desktop\rim.desktop.exe | "{BE6A0B45-D872-4606-9BF0-3974633D3B1C}" = protocol=6 | dir=in | app=c:\program files\steam\steam.exe | "{C9F6EDDB-5A8A-4F54-A91E-DED6E42483FD}" = protocol=1 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{CC02DE4D-4B94-4739-A893-07843BF0508F}" = protocol=1 | dir=in | app=c:\program files\sisoftware\sisoftware sandra lite 2010c\wnt500x86\rpcsandrasrv.exe | "{D18650F3-11EB-4970-9636-0DF467F6AED5}" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe | "{DE30F18C-E940-45F6-8C9B-1459D67FA826}" = protocol=17 | dir=in | app=c:\program files\research in motion\blackberry desktop\rim.desktop.exe | "{ECCA1690-946C-416C-8F8A-A6AE6DF0AE56}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{F6A4DA8C-4AB7-4F2D-82AB-F271952D9609}" = protocol=6 | dir=in | app=c:\program files\steam\steam.exe | "{FE16F0AF-3C41-4DC5-8388-05582DA4D5C3}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "TCP Query User{11209C83-6002-4937-BF93-FF323C364FA0}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe | "TCP Query User{47391743-1B45-4E42-A96B-FF9C8CA38DDC}C:\program files\miranda im\miranda32.exe" = protocol=6 | dir=in | app=c:\program files\miranda im\miranda32.exe | "TCP Query User{681D9415-A2B0-4DB4-AD15-2041E5D73A24}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe | "TCP Query User{75F12BDA-A6B0-44DA-84FC-366850B50ACD}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{9ADEF799-C955-49C9-9405-F9FC15CA578D}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{A0EE42D5-7026-4983-ABD9-28EC3121E33C}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe | "TCP Query User{A45FF368-8D52-472B-80A9-A631C10AAF9E}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe | "TCP Query User{A78D40E5-C9A0-4BC1-A520-AB0502FCBE1B}C:\totalcmd\totalcmd.exe" = protocol=6 | dir=in | app=c:\totalcmd\totalcmd.exe | "TCP Query User{D6FD3E3B-B72B-478C-A575-974A957F076A}C:\users\kuba\appdata\local\google\chrome\application\chrome.exe" = protocol=6 | dir=in | app=c:\users\kuba\appdata\local\google\chrome\application\chrome.exe | "TCP Query User{FB2FCEE5-E9A5-4F1D-857E-EBB9A8465D16}C:\program files\bittyrant\azureus.exe" = protocol=6 | dir=in | app=c:\program files\bittyrant\azureus.exe | "TCP Query User{FE7888CB-5EBE-4790-8C75-5C93B33BF815}C:\program files\bittyrant\azureus.exe" = protocol=6 | dir=in | app=c:\program files\bittyrant\azureus.exe | "TCP Query User{FEAE6579-2AC0-404C-A083-E0D7CBD4D2E3}C:\unmechanical\binaries\win32\udk.exe" = protocol=6 | dir=in | app=c:\unmechanical\binaries\win32\udk.exe | "UDP Query User{00F8420E-F599-4D9E-8B1E-5835731F6AB9}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe | "UDP Query User{0D9F4EEC-ED90-4991-A728-C15BEB1D5FEE}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe | "UDP Query User{1177C91B-E1BE-4812-AA8D-F0FA99252B28}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{120F14CF-E063-40FB-ABA2-13894B5A3E53}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe | "UDP Query User{1639703C-C642-4AB7-9A1F-39C56DEE16BB}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{2DFAAED9-D177-4156-A69E-FDD14B910188}C:\users\kuba\appdata\local\google\chrome\application\chrome.exe" = protocol=17 | dir=in | app=c:\users\kuba\appdata\local\google\chrome\application\chrome.exe | "UDP Query User{39D04DEA-2EAA-4687-A3AA-4E34B742ADBE}C:\program files\bittyrant\azureus.exe" = protocol=17 | dir=in | app=c:\program files\bittyrant\azureus.exe | "UDP Query User{4D343870-3CB0-4492-A28C-8CEC95E88B12}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe | "UDP Query User{60F35593-0EBC-463A-8C02-C9A5AA85322D}C:\unmechanical\binaries\win32\udk.exe" = protocol=17 | dir=in | app=c:\unmechanical\binaries\win32\udk.exe | "UDP Query User{9177926B-320E-4F62-AA2E-7F40461BB127}C:\totalcmd\totalcmd.exe" = protocol=17 | dir=in | app=c:\totalcmd\totalcmd.exe | "UDP Query User{CB38E7D1-D881-4CFB-A965-B4EEDE39CC71}C:\program files\bittyrant\azureus.exe" = protocol=17 | dir=in | app=c:\program files\bittyrant\azureus.exe | "UDP Query User{DE3B33BA-C0FC-44B1-B5BC-F5E60E846EE3}C:\program files\miranda im\miranda32.exe" = protocol=17 | dir=in | app=c:\program files\miranda im\miranda32.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "_{63218538-4A69-497F-8455-904261B0E9E4}" = CorelDRAW Graphics Suite X3 "{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{082BDF7B-4810-4599-BF0D-E3AC44EC8524}" = Microsoft ASP.NET 2.0 AJAX Extensions 1.0 "{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended "{0CB3C535-1171-4A20-B549-E2CB5DEB9723}" = MySQL Connector/ODBC 3.51 "{0E64B098-8018-4256-BA23-C316A43AD9B0}" = QuickTime "{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1 "{12BAA98C-F8DD-4BC9-BBE6-1C8463114197}" = BlackBerry Device Software Updater "{14ECAABB-C8B9-4A09-92F7-CDF1A45B6DDE}" = Google Drive "{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}" = YTD Video Downloader 3.9.2 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83216021FF}" = Java(TM) 6 Update 29 "{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 9 "{28E82311-8616-11E1-BEB0-B8AC6F97B88E}" = Google Earth "{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{32A72502-BC2C-4C39-ACEA-BC3D463F0697}" = EN "{33286280-8617-11E1-8FF6-B8AC6F97B88E}" = Google Earth Plug-in "{3645514F-7A8F-11E1-8AC3-001676AB6D60}" = MSVCRT Redists "{399C37FB-08AF-493B-BFED-20FBD85EDF7F}" = USB Video Device "{3A6F4A31-8CFD-46B4-8385-E1F384DB121E}" = PDF-XChange Viewer "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{436E0B79-2CFB-4E5F-9380-E17C1B25D0C5}" = WIDCOMM Bluetooth Software "{43D16DA8-BF42-3C62-89D3-3AD47829DC2E}" = Google Talk Plugin "{449A16C4-83B3-426C-AA4A-00A34E80C093}" = Smart Battery "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4B311F5C-CDDE-47D8-A20B-558E40EF971C}" = Stereoscopic Player "{4E98F23B-1328-4322-A6EC-2EDC8FC3A4FE}" = FontNav "{53FA8730-CE0F-4BAA-959E-F8A3B289E98F}" = Oprogramowanie BlackBerry Device Software wer. 4.6.1 dla smartfonów BlackBerry 8520 "{5783F2D7-7009-0409-0002-0060B0CE6BBA}" = AutoCAD LT 2009 - English "{5C19E2DC-4CCF-3114-B40A-6E565987025F}" = Microsoft .NET Framework 4 Extended PLK Language Pack "{63218538-4A69-497F-8455-904261B0E9E4}" = CorelDRAW Graphics Suite X3 "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{75157F34-02C6-4831-BD66-3BC49E7A8394}" = BlackBerry Desktop Software 6.1 "{75C22B40-6D12-4439-80DC-CAB3313EADA5}" = dj_sf_software_req "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7ECD453E-0148-4E39-AE7C-C3624AB32C8C}" = Oprogramowanie BlackBerry Device Software wer. 5.0.0 dla smartfonów BlackBerry 8520 "{832662ED-99F2-4256-A192-B60CD068570C}" = Geostar6i "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8A7CAA24-7B23-410B-A7C3-F994B0944160}" = Microsoft Virtual PC 2007 "{8DE03F6E-FCD2-4497-A8FF-F6C4430618B6}" = BlackBerry App World Browser Plugin "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_HOMESTUDENTR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_HOMESTUDENTR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_HOMESTUDENTR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_HOMESTUDENTR_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_HOMESTUDENTR_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_HOMESTUDENTR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007 "{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A8D93648-9F7F-407D-915C-62044644C3DA}" = MSI to redistribute MS VS2005 CRT libraries "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86 "{B0E59B80-7A77-11E1-A6FE-F04DA23A5C58}" = Sound Forge Pro 10.0 "{B3B5F219-79E6-4307-8AC1-9B32BE37CD48}" = ESET NOD32 Antivirus "{B8B4D43C-EAA0-4EEC-B93E-D4D012316286}" = Free DWG Viewer 6.3 "{BF4742B0-7A7B-11E1-AFD0-F04DA23A5C58}" = Noise Reduction Plug-in 2.0 "{C3113E55-7BCB-4de3-8EBF-60E6CE6B2296}_is1" = SiSoftware Sandra Lite 2010c "{C94E45B0-6AA6-4FB9-9AAE-22085F631880}" = VBA "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{DC594495-C7BC-4BCB-8580-B18E24287D85}" = BDE5 "{E0C18BB0-32CA-4679-B422-9B9FA825378F}" = HP Deskjet Printer Driver Software 9.0 "{E1ABFB8E-B217-442A-AD17-93D8C8DBB65E}" = NAVIGO Copernicus - Cyfrowy Atlas Polski "{E9C18EBD-85BE-47D0-AA73-3FEDCC976B04}" = Toolbox "{EA426461-31AA-4AB3-B15D-EDD748F08394}_is1" = Moyea YouTube FLV Downloader version: 3.1.2.26 "{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}" = PL-2303 USB-to-Serial "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10 "{EEC010D0-1252-4E1D-BAD9-F1B8F414535C}" = PL-2303 Vista Driver Installer "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0F4163F-6A2D-48BA-BC36-23C33B0ECDB5}" = calibre "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F138762F-5A1F-4CF0-A5E1-1588EF6088A4}" = Wiedźmin "{F428D0FB-765D-40EB-BDD8-A1E7F5C597FA}" = Update Manager "{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}" = Vista Codec Package "{FEF06E73-A519-4510-8CF3-B66041B91D8A}" = EMSC "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Ashampoo Burning Studio 6 FREE_is1" = Ashampoo Burning Studio 6 FREE "AutoCAD LT 2009 - English" = AutoCAD LT 2009 - English "BitTyrant" = BitTyrant "BlackBerry_Desktop" = BlackBerry Desktop Software 6.1 "CCleaner" = CCleaner "C-GEO V8_is1" = C-GEO 8.0 "Complitly_is1" = Complitly "Denemo" = Denemo "Elasto Mania" = Elasto Mania "FastStone Image Viewer" = FastStone Image Viewer 4.0 "FBDBServer_2_1_is1" = Firebird 2.1.1.17910 (Win32) "FLV to WMV Convert_is1" = FLV to WMV Convert 2.7 "Foxit Reader" = Foxit Reader "Gadu-Gadu 10" = Gadu-Gadu 10 "Geostar6i" = Geostar6i "gmailbackup" = Gmail Backup "Google Chrome" = Google Chrome "HASP Device Drivers" = HASP Device Drivers "Helicon Filter_is1" = Helicon Filter 4.86.1 "HOMESTUDENTR" = Microsoft Office Home and Student 2007 "InstallShield_{449A16C4-83B3-426C-AA4A-00A34E80C093}" = Smart Battery "LinuxLive USB Creator" = LinuxLive USB Creator "Machinarium" = Machinarium "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft .NET Framework 4 Extended PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended "Miranda IM" = Miranda IM 0.8.12 "Mozilla Firefox 18.0 (x86 pl)" = Mozilla Firefox 18.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NapiProjekt_is1" = NapiProjekt 1.0.6.7 "NVIDIA Drivers" = NVIDIA Drivers "Picasa 3" = Picasa 3 "PTGui" = PTGui 6.0.1 "Recover My Files_is1" = Recover My Files "Soldat_is1" = Soldat 1.1.5 "SubEdit - Vista WMP Patch_is1" = SubEdit - Vista WMP Patch "SubEdit-Player_is1" = SubEdit-Player "SynTPDeinstKey" = Synaptics Pointing Device Driver "Tag&Rename_is1" = Tag&Rename 3.1 beta 4 "The KMPlayer" = The KMPlayer (remove only) "Totalcmd" = Total Commander (Remove or Repair) "UDK-bd65a5bd-b79b-4b87-ad9d-24cc7693c48d" = Unmechanical "uTorrent" = µTorrent "uTorrentControl_v2 Toolbar" = uTorrentControl_v2 Toolbar "VLC media player" = VLC media player 1.1.11 "Winamp" = Winamp [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1080152283-609734007-2048292793-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Google Chrome" = Google Chrome [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-11-08 19:40:16 | Computer Name = Kuba-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd WmiApSrv.exe, wersja 6.0.6002.18005, sygnatura czasowa 0x49e01c1f, moduł powodujący błąd ntdll.dll, wersja 6.0.6002.18541, sygnatura czasowa 0x4ec3e3d5, kod wyjątku 0xc0000374, przesunięcie błędu 0x000b06b7, identyfikator procesu 0xde0, godzina rozpoczęcia aplikacji 0x01cdbe0a10720e5f. Error - 2012-11-11 13:06:37 | Computer Name = Kuba-PC | Source = Perflib | ID = 1010 Description = Error - 2012-11-11 13:06:37 | Computer Name = Kuba-PC | Source = Perflib | ID = 1008 Description = Error - 2012-11-12 08:27:09 | Computer Name = Kuba-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd WmiApSrv.exe, wersja 6.0.6002.18005, sygnatura czasowa 0x49e01c1f, moduł powodujący błąd ntdll.dll, wersja 6.0.6002.18541, sygnatura czasowa 0x4ec3e3d5, kod wyjątku 0xc0000374, przesunięcie błędu 0x000b06b7, identyfikator procesu 0x19c8, godzina rozpoczęcia aplikacji 0x01cdc0d032118172. Error - 2012-11-12 18:00:12 | Computer Name = Kuba-PC | Source = Perflib | ID = 1010 Description = Error - 2012-11-12 18:00:13 | Computer Name = Kuba-PC | Source = Perflib | ID = 1008 Description = Error - 2012-11-13 18:25:36 | Computer Name = Kuba-PC | Source = Perflib | ID = 1010 Description = Error - 2012-11-13 18:25:38 | Computer Name = Kuba-PC | Source = Perflib | ID = 1008 Description = Error - 2012-11-15 04:24:42 | Computer Name = Kuba-PC | Source = Perflib | ID = 1010 Description = Error - 2012-11-15 04:24:43 | Computer Name = Kuba-PC | Source = Perflib | ID = 1008 Description = Error - 2012-11-15 08:05:50 | Computer Name = Kuba-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd WmiApSrv.exe, wersja 6.0.6002.18005, sygnatura czasowa 0x49e01c1f, moduł powodujący błąd ntdll.dll, wersja 6.0.6002.18541, sygnatura czasowa 0x4ec3e3d5, kod wyjątku 0xc0000374, przesunięcie błędu 0x000b06b7, identyfikator procesu 0xaf0, godzina rozpoczęcia aplikacji 0x01cdc328df4ac9fe. [ System Events ] Error - 2013-01-11 15:14:29 | Computer Name = GEO-PC | Source = Service Control Manager | ID = 7001 Description = Error - 2013-01-11 15:14:29 | Computer Name = GEO-PC | Source = Service Control Manager | ID = 7026 Description = Error - 2013-01-11 15:14:29 | Computer Name = GEO-PC | Source = Service Control Manager | ID = 7001 Description = Error - 2013-01-11 15:14:29 | Computer Name = GEO-PC | Source = Service Control Manager | ID = 7001 Description = Error - 2013-01-11 15:14:29 | Computer Name = GEO-PC | Source = Service Control Manager | ID = 7001 Description = Error - 2013-01-11 15:14:29 | Computer Name = GEO-PC | Source = Service Control Manager | ID = 7001 Description = Error - 2013-01-11 17:51:35 | Computer Name = GEO-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2013-01-11 17:51:35 | Computer Name = GEO-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2013-01-13 07:32:10 | Computer Name = GEO-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2013-01-13 07:32:10 | Computer Name = GEO-PC | Source = Service Control Manager | ID = 7000 Description = < End of report >