OTL Extras logfile created on: 2013-01-17 16:07:36 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Wojtek\Downloads 64bit- Professional (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 7,96 Gb Total Physical Memory | 4,74 Gb Available Physical Memory | 59,58% Memory free 15,92 Gb Paging File | 12,58 Gb Available in Paging File | 79,02% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 244,89 Gb Total Space | 162,60 Gb Free Space | 66,40% Space Free | Partition Type: NTFS Drive D: | 507,81 Gb Total Space | 41,78 Gb Free Space | 8,23% Space Free | Partition Type: NTFS Drive E: | 178,71 Gb Total Space | 52,75 Gb Free Space | 29,52% Space Free | Partition Type: NTFS Computer Name: WOJTEK-KOMPUTER | User Name: Wojtek | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-156478651-2123461653-1374542072-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Programy\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- "C:\Programy\Microsoft Office\Office14\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- "C:\Programy\Microsoft Office\Office14\msohtmed.exe" /p %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- "C:\Programy\Microsoft Office\Office14\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- "C:\Programy\Microsoft Office\Office14\msohtmed.exe" /p %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0DF75E72-9590-44F1-8946-62036B5E2CFC}" = lport=6004 | protocol=17 | dir=in | app=c:\programy\microsoft office\office14\outlook.exe | "{0ECC58E2-9109-4479-A95A-08922673B6AD}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{0ECF64A0-491C-433D-8A85-F5FA329CA7A6}" = lport=137 | protocol=17 | dir=in | app=system | "{1D4869A2-B04F-473B-ABFA-CC2F32EEEA66}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{20CEB3EB-EAE6-48DA-83AC-4B496F7FB36C}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{211E3711-5585-4990-A67F-78AEFD0AE7C3}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{25C06669-8FBD-4936-A6AA-E0BCFADD5672}" = rport=445 | protocol=6 | dir=out | app=system | "{314F554D-6454-4691-ACD8-61E7C9038AC9}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{3CE4DD6D-F302-4CE0-A7B9-7818265B0463}" = rport=138 | protocol=17 | dir=out | app=system | "{4BECDF80-9D93-4EFC-8678-A74345E54898}" = rport=139 | protocol=6 | dir=out | app=system | "{543CF027-5E1B-40D2-B515-01544B7D23A6}" = lport=138 | protocol=17 | dir=in | app=system | "{66B621F1-010F-47D2-B456-EEA210F596BA}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{67D560BD-1B4E-45D8-9CBA-E33E7A986A6D}" = rport=10243 | protocol=6 | dir=out | app=system | "{6A149DF8-1004-46CA-BC6B-CF6FB0F6C209}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{7A089BA9-1674-4BB0-B753-AA35AC320FFF}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{7D9D7ADE-CC53-4AAB-BBE7-1CEA545BAAD3}" = rport=137 | protocol=17 | dir=out | app=system | "{AEB469BB-A8B1-4AB4-B212-2FBFECA0B7D8}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{C0C54510-8DA2-4C2E-A141-22F412AEEE20}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{E667B809-A114-45FB-B5CB-D8D50C2EBE98}" = lport=10243 | protocol=6 | dir=in | app=system | "{EC28B89B-B07D-4611-9D6F-710474B2556A}" = lport=445 | protocol=6 | dir=in | app=system | "{EFBA2AC8-FE90-43B4-A497-59837A48AF51}" = lport=2869 | protocol=6 | dir=in | app=system | "{FB39DD8D-01A2-4827-96D3-9ED26ACA7FD9}" = lport=139 | protocol=6 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{03C227AC-B164-4299-B707-F8A79BE2ECE9}" = protocol=17 | dir=in | app=c:\users\wojtek\downloads\crossfire_downloader.exe | "{0917D844-43C3-4157-BADA-81301BB37A67}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{0B552C03-E7E4-41DB-8649-3B3517317977}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{0C3253D1-C533-4E0D-A065-F7A988D0BDFE}" = protocol=17 | dir=in | app=c:\programy\steam\steam.exe | "{0D9F788C-6AF8-4A2D-AB8B-2F773EF9D470}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{0F83BC02-6261-4AEC-A234-053D91AEAA52}" = protocol=17 | dir=in | app=d:\gry\mbot osiris\wojtek151-attacker\mbot_vsro110.exe | "{14E8E747-2F2E-4ABD-A9B1-CE98A981416B}" = protocol=17 | dir=in | app=c:\program files\hp\hp deskjet 1050 j410 series\bin\usbsetup.exe | "{22D55231-4DA9-48A0-83EC-75BA1D2F00B2}" = protocol=6 | dir=in | app=c:\users\wojtek\downloads\crossfire_downloader.exe | "{29E798F2-6A4D-4015-821F-AFF17F3CE7FE}" = protocol=6 | dir=in | app=c:\programy\utorrent\utorrent.exe | "{2E8776DD-DE70-49D7-AFDC-602B4633E279}" = protocol=17 | dir=in | app=d:\gry\hamachi\hamachi.exe | "{343BD837-5BD9-4491-B339-EBEE303D7A2B}" = protocol=17 | dir=in | app=c:\programy\utorrent\utorrent.exe | "{3637434C-5419-4458-B143-02C3F5D7EF3D}" = protocol=58 | dir=in | app=system | "{416441B5-C4DD-493D-9EE1-C61093360624}" = protocol=6 | dir=in | app=d:\gry\mbot osiris\wojtek151-attacker\mbot_vsro110.exe | "{44EB1782-0604-41E6-A2C5-FF3492B61207}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{4653D584-6A27-42A4-92DF-D1646E9C2484}" = protocol=6 | dir=in | app=c:\programdata\electronic arts\need for speed world new\data\nfsw.exe | "{46EC7E75-5731-4D00-AA4E-8213BBDFB1F7}" = protocol=6 | dir=in | app=c:\programy\microsoft office\office14\groove.exe | "{4A53B7C4-DE08-446A-89B5-B6C583CD561E}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{51C934AE-0787-4333-AAC7-F07C17F249A1}" = protocol=17 | dir=in | app=d:\gry\fifa 13\game\fifa13.exe | "{53F6F796-D65B-4B94-9B87-47D9212F30E7}" = protocol=6 | dir=in | app=d:\gry\fifa 13\game\fifa13.exe | "{544BEED0-291C-4218-ACCA-838BBAB8E481}" = protocol=6 | dir=in | app=d:\gry\motogp 08\launcher.exe | "{57765324-40FD-4CB7-A4FF-DFE7DD6A302C}" = protocol=17 | dir=in | app=d:\gry\steam\steam.exe | "{582C7B99-2C71-4F83-B789-9EF1EFAA1EDA}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{5DD6858D-4634-4711-912B-A409BC017906}" = protocol=6 | dir=out | app=system | "{6F97C704-4965-489F-A3FC-98E8FB26AE86}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{86E07014-1598-44ED-A5F4-A88C8622A9FC}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 | "{8E9CD14B-D375-4708-B9B0-0B1F62FD4A18}" = protocol=6 | dir=in | app=c:\programy\microsoft office\office14\onenote.exe | "{8FCBAF4E-B236-4980-9FE1-9040E9687E7B}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{900CF255-67F5-4487-8F9E-274ECCADB63F}" = protocol=17 | dir=in | app=c:\programy\microsoft office\office14\groove.exe | "{9AF59AAF-2AD5-45CF-B806-F20A0B2EA614}" = protocol=6 | dir=in | app=d:\gry\hamachi\hamachi.exe | "{9CB61742-F875-46A8-887E-40236C5C793A}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{9E439F91-00D8-4E58-835F-2A55E1D19F7D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{ABEA6A13-CF68-4563-9D72-C39140EEAAB0}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{B25879CE-B186-421D-A433-4C649FACAE37}" = protocol=17 | dir=in | app=c:\programy\microsoft office\office14\onenote.exe | "{B7A4903D-C988-4EF7-B244-D00488D81385}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{C66CA902-5BEC-4352-819A-95713D8751E0}" = protocol=6 | dir=in | app=c:\program files\hp\hp deskjet 1050 j410 series\bin\usbsetup.exe | "{C77F9119-2664-47B3-9BD2-E4FD66F763A6}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{CB362B84-F21B-4C81-B600-7DF2E180E297}" = protocol=17 | dir=in | app=d:\gry\motogp 08\launcher.exe | "{CDB2A61A-808D-463A-AF84-3EF45DB82DC9}" = protocol=6 | dir=in | app=d:\gry\steam\steam.exe | "{CDCB2F0E-CE39-4F58-99C6-EC6D390907F9}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{CFD0EFFD-1C74-47F8-B565-ED7697B23681}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{D15808AC-1C05-48CC-82CD-0949FD5739E4}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{D59A6E61-5D8A-4E30-8A74-CC1E7584A45F}" = protocol=17 | dir=in | app=c:\programdata\electronic arts\need for speed world new\data\nfsw.exe | "{DC328583-C153-4682-AC8B-CEC256DE6D06}" = protocol=17 | dir=in | app=d:\gry\steam\steamapps\common\just cause 2\justcause2.exe | "{E7E8EFE0-B052-4733-8688-9FB54F18CF1C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{F254EBE2-9D5F-4011-BD0B-63A0D89E44F3}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{F34CD502-699B-4DED-A1CA-A2577E8790C4}" = protocol=6 | dir=in | app=c:\programy\steam\steam.exe | "{F7A92178-23B9-4F92-B97F-EC23AE83640E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{FCB86E67-FCFA-4118-B681-B1E8CD2CE535}" = protocol=6 | dir=in | app=d:\gry\steam\steamapps\common\just cause 2\justcause2.exe | "TCP Query User{1025EA21-B5F1-446C-ADC9-58492024C75E}D:\gry\mbot osiris\wojoz151\mbot_vsro110.exe" = protocol=6 | dir=in | app=d:\gry\mbot osiris\wojoz151\mbot_vsro110.exe | "TCP Query User{10A7D4F9-BD60-4A52-B4B8-8A5EC8317AC0}C:\windows.old\users\pc\downloads\fuse-o-mat\fuse-o-mat - release\phconnector\phconnector.exe" = protocol=6 | dir=in | app=c:\windows.old\users\pc\downloads\fuse-o-mat\fuse-o-mat - release\phconnector\phconnector.exe | "TCP Query User{19489CBB-9EF7-4E64-B361-186622A784B2}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe | "TCP Query User{19499581-A4CA-4AA8-9AE5-C304A012DC17}D:\gry\mbot osiris\wojtek130496\mbot_vsro110.exe" = protocol=6 | dir=in | app=d:\gry\mbot osiris\wojtek130496\mbot_vsro110.exe | "TCP Query User{366808F3-A162-4C7C-BC5A-C43FFAF5EA7B}D:\gry\mbot osiris\sebek252511\mbot_vsro110.exe" = protocol=6 | dir=in | app=d:\gry\mbot osiris\sebek252511\mbot_vsro110.exe | "TCP Query User{3E301DFB-4855-436E-A8AD-F63D96784A8C}C:\programdata\electronic arts\need for speed world new\data\nfsw.exe" = protocol=6 | dir=in | app=c:\programdata\electronic arts\need for speed world new\data\nfsw.exe | "TCP Query User{4F04CE07-3708-4764-853D-F9567C8050F1}D:\gry\mbot osiris\wojtek151-attacker\mbot_vsro110.exe" = protocol=6 | dir=in | app=d:\gry\mbot osiris\wojtek151-attacker\mbot_vsro110.exe | "TCP Query User{62EBD19A-1991-4DFF-AB5A-64357590EB7A}D:\gry\mbot osiris\onyxa\mbot_vsro110.exe" = protocol=6 | dir=in | app=d:\gry\mbot osiris\onyxa\mbot_vsro110.exe | "TCP Query User{71B57159-B427-48D1-81E9-59BAC131D2E3}D:\gry\mbot osiris\wojoz96\mbot_vsro110.exe" = protocol=6 | dir=in | app=d:\gry\mbot osiris\wojoz96\mbot_vsro110.exe | "TCP Query User{7CFC09E2-9929-4B5C-9E38-D6DCDB806DBF}D:\gry\mbot osiris\bower1304\mbot_vsro110.exe" = protocol=6 | dir=in | app=d:\gry\mbot osiris\bower1304\mbot_vsro110.exe | "TCP Query User{8BEF6603-B1B8-4FB0-A0B9-65652FA9CC11}D:\gry\motogp2\motogp2.exe" = protocol=6 | dir=in | app=d:\gry\motogp2\motogp2.exe | "TCP Query User{8F53D33F-A2F7-46E8-85B0-881D263DDBB4}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "TCP Query User{98C6DD93-7B58-4619-B306-B505B0EB4504}D:\gry\test drive unlimited\testdriveunlimited.exe" = protocol=6 | dir=in | app=d:\gry\test drive unlimited\testdriveunlimited.exe | "TCP Query User{AA6465AE-0DC0-4945-A541-2E6B6AEB9AE5}D:\gry\mbot osiris\karlito5432\mbot_vsro110.exe" = protocol=6 | dir=in | app=d:\gry\mbot osiris\karlito5432\mbot_vsro110.exe | "TCP Query User{B2C6ADF0-D22F-4DF9-A335-237948316B06}C:\windows\system32\java.exe" = protocol=6 | dir=in | app=c:\windows\system32\java.exe | "TCP Query User{B3F57327-5FC4-47D4-B6BC-DBA4DD2DC6DE}C:\programdata\electronic arts\need for speed world\data\nfsw.exe" = protocol=6 | dir=in | app=c:\programdata\electronic arts\need for speed world\data\nfsw.exe | "TCP Query User{B9032C3A-F442-4AB2-8D43-D7A2259FFBF3}D:\gry\fifa 12\game\fifa.exe" = protocol=6 | dir=in | app=d:\gry\fifa 12\game\fifa.exe | "TCP Query User{C4EE7EBE-43B2-460B-AD74-F28ABCD40CF2}C:\programy files\nowe gadu-gadu2\gg.exe" = protocol=6 | dir=in | app=c:\programy files\nowe gadu-gadu2\gg.exe | "TCP Query User{C5C1B044-5923-481E-8FD1-5139EF43E86C}D:\gry\shift 2 unleashed\shift2u.exe" = protocol=6 | dir=in | app=d:\gry\shift 2 unleashed\shift2u.exe | "TCP Query User{D50E0900-8E57-4EA8-9B57-FCFF212624BA}D:\gry\need for speed most wanted\nfs13.exe" = protocol=6 | dir=in | app=d:\gry\need for speed most wanted\nfs13.exe | "TCP Query User{E1291821-7223-4331-8553-1B68C0132E87}C:\programy\ares\ares.exe" = protocol=6 | dir=in | app=c:\programy\ares\ares.exe | "TCP Query User{E3F8CF05-7F79-448A-A97B-CA8BAF094A0C}D:\gry\mbot osiris\wojtek96\mbot_vsro110.exe" = protocol=6 | dir=in | app=d:\gry\mbot osiris\wojtek96\mbot_vsro110.exe | "TCP Query User{F1641B24-67EF-49AB-A7C1-AC87ACFA5A2A}D:\gry\mbot osiris\shawa\mbot_vsro110.exe" = protocol=6 | dir=in | app=d:\gry\mbot osiris\shawa\mbot_vsro110.exe | "TCP Query User{F18861E9-6558-44A2-8131-3E1F6E6A0932}D:\gry\mbot osiris\wojtek151\mbot_vsro110.exe" = protocol=6 | dir=in | app=d:\gry\mbot osiris\wojtek151\mbot_vsro110.exe | "UDP Query User{0F59FA76-7E19-4A19-A04F-C1D1E1F34E6B}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "UDP Query User{1D8C7A42-3F32-41E4-8A4E-4DC7FBE21F7E}D:\gry\mbot osiris\wojtek130496\mbot_vsro110.exe" = protocol=17 | dir=in | app=d:\gry\mbot osiris\wojtek130496\mbot_vsro110.exe | "UDP Query User{24437BDE-86E6-48FA-AC98-2290E7162404}C:\programy files\nowe gadu-gadu2\gg.exe" = protocol=17 | dir=in | app=c:\programy files\nowe gadu-gadu2\gg.exe | "UDP Query User{3059DF42-F204-4D67-BD93-081F2E1782FD}C:\windows\system32\java.exe" = protocol=17 | dir=in | app=c:\windows\system32\java.exe | "UDP Query User{3E391C31-8A57-47D9-9C97-9A276A618122}D:\gry\mbot osiris\wojoz96\mbot_vsro110.exe" = protocol=17 | dir=in | app=d:\gry\mbot osiris\wojoz96\mbot_vsro110.exe | "UDP Query User{4458EEAB-F147-4375-9CDD-053A4E830584}C:\programdata\electronic arts\need for speed world new\data\nfsw.exe" = protocol=17 | dir=in | app=c:\programdata\electronic arts\need for speed world new\data\nfsw.exe | "UDP Query User{4AF7D095-CC08-420E-ABC3-7A9A6A724E91}D:\gry\shift 2 unleashed\shift2u.exe" = protocol=17 | dir=in | app=d:\gry\shift 2 unleashed\shift2u.exe | "UDP Query User{51BB8630-779A-4C0F-ABE5-DC7734502A4C}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe | "UDP Query User{52CD48F0-A001-4389-8690-4EB40E543741}D:\gry\mbot osiris\wojtek151\mbot_vsro110.exe" = protocol=17 | dir=in | app=d:\gry\mbot osiris\wojtek151\mbot_vsro110.exe | "UDP Query User{645E8C99-698D-4A70-9962-1B95C2636B66}D:\gry\mbot osiris\wojtek96\mbot_vsro110.exe" = protocol=17 | dir=in | app=d:\gry\mbot osiris\wojtek96\mbot_vsro110.exe | "UDP Query User{8B5A23E8-7DEC-419B-BCD5-57A1ABE29D7A}D:\gry\mbot osiris\sebek252511\mbot_vsro110.exe" = protocol=17 | dir=in | app=d:\gry\mbot osiris\sebek252511\mbot_vsro110.exe | "UDP Query User{8DF030B3-0931-4F59-A6E7-B1DCDF5BB07C}D:\gry\mbot osiris\wojtek151-attacker\mbot_vsro110.exe" = protocol=17 | dir=in | app=d:\gry\mbot osiris\wojtek151-attacker\mbot_vsro110.exe | "UDP Query User{A0A51BDD-C04E-4B6F-9E4B-D407F0BBED09}D:\gry\mbot osiris\wojoz151\mbot_vsro110.exe" = protocol=17 | dir=in | app=d:\gry\mbot osiris\wojoz151\mbot_vsro110.exe | "UDP Query User{B16DBD96-BA33-43EB-8FF4-CBD73BA33595}D:\gry\mbot osiris\karlito5432\mbot_vsro110.exe" = protocol=17 | dir=in | app=d:\gry\mbot osiris\karlito5432\mbot_vsro110.exe | "UDP Query User{B2BCD735-5AAA-4CC6-9B09-7F3ADD60A31F}C:\programdata\electronic arts\need for speed world\data\nfsw.exe" = protocol=17 | dir=in | app=c:\programdata\electronic arts\need for speed world\data\nfsw.exe | "UDP Query User{B973FE14-0CD3-4FD8-ADC0-212C0641CA4F}D:\gry\mbot osiris\bower1304\mbot_vsro110.exe" = protocol=17 | dir=in | app=d:\gry\mbot osiris\bower1304\mbot_vsro110.exe | "UDP Query User{BBA28E1C-FD54-4191-A532-599910FC8CEE}D:\gry\mbot osiris\shawa\mbot_vsro110.exe" = protocol=17 | dir=in | app=d:\gry\mbot osiris\shawa\mbot_vsro110.exe | "UDP Query User{BC5BF505-F828-4F58-8091-3269687319DD}C:\programy\ares\ares.exe" = protocol=17 | dir=in | app=c:\programy\ares\ares.exe | "UDP Query User{BE237262-47AF-4BA9-A28A-DA1367606788}C:\windows.old\users\pc\downloads\fuse-o-mat\fuse-o-mat - release\phconnector\phconnector.exe" = protocol=17 | dir=in | app=c:\windows.old\users\pc\downloads\fuse-o-mat\fuse-o-mat - release\phconnector\phconnector.exe | "UDP Query User{C0A296AF-CC0D-4579-89A7-B6258C1B8109}D:\gry\mbot osiris\onyxa\mbot_vsro110.exe" = protocol=17 | dir=in | app=d:\gry\mbot osiris\onyxa\mbot_vsro110.exe | "UDP Query User{D005CF9A-9154-468F-9B63-21A23F4C74A3}D:\gry\test drive unlimited\testdriveunlimited.exe" = protocol=17 | dir=in | app=d:\gry\test drive unlimited\testdriveunlimited.exe | "UDP Query User{D35C7EBE-ED37-4E23-AF1A-10D070E83EDE}D:\gry\motogp2\motogp2.exe" = protocol=17 | dir=in | app=d:\gry\motogp2\motogp2.exe | "UDP Query User{EAE7BB39-57F5-4762-9E0B-A007B34F9555}D:\gry\fifa 12\game\fifa.exe" = protocol=17 | dir=in | app=d:\gry\fifa 12\game\fifa.exe | "UDP Query User{FD3BDE7A-425D-432A-A2AE-A9354721DFF0}D:\gry\need for speed most wanted\nfs13.exe" = protocol=17 | dir=in | app=d:\gry\need for speed most wanted\nfs13.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0DCAB5DD-CC69-271A-CF03-F2BD6B60BD8A}" = AMD Media Foundation Decoders "{1AFC919D-751B-A5D7-B17D-7C0067A65D2E}" = AMD Drag and Drop Transcoding "{26A24AE4-039D-4CA4-87B4-2F86417010FF}" = Java 7 Update 10 (64-bit) "{46DA7FD9-8BC1-7BA8-98D1-27F46647871B}" = AMD Catalyst Install Manager "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime "{504184A2-1B0E-5D93-603A-517E93E7EDB3}" = AMD Accelerated Video Transcoding "{57580625-C673-7FEA-8791-E84B7AAF5069}" = ccc-utility64 "{6199B534-A1B6-46ED-873B-97B0ECF8F81E}" = Intel® Trusted Connect Service Client "{64A3A4F4-B792-11D6-A78A-00B0D0170100}" = Java SE Development Kit 7 Update 10 (64-bit) "{713CDBCF-4352-4AB8-A288-90CEE3F3A8D1}" = HP Deskjet 1050 J410 series Badanie ulepszeń produktu "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{8E5DA9A6-7A9F-3A6F-BC5C-D6CBCA6A29C7}" = Microsoft .NET Framework 4 Extended PLK Language Pack "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2010 "{90140000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2010 "{90140000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{B2BF224C-9818-4942-BF11-8929859E53AE}" = HP Deskjet 1050 J410 series Podstawowe oprogramowanie urządzenia "{DA2737A4-B639-96F4-1CC2-30D2919EE1FB}" = AMD Steady Video Plug-In "{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "GIMP-2_is1" = GIMP 2.8.2 "KLiteCodecPack64_is1" = K-Lite Codec Pack 9.3.0 (64-bit) "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft .NET Framework 4 Extended PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended "TeamSpeak 3 Client" = TeamSpeak 3 Client "WinRAR archiver" = WinRAR 4.20 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{08234a0d-cf39-4dca-99f0-0c5cb496da81}" = Bing Bar "{0CFC5EE9-1E99-4B01-8B0B-70BB4B502732}" = Bluetooth Radar "{0F7A6FD0-87F5-FB5D-973C-CF604DE1BC6B}" = CCC Help Polish "{1A9BE3D6-4D53-2C9D-B77D-562D85936B91}" = CCC Help Norwegian "{1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1" = Euro Truck Simulator 2 "{1CAC7A41-583B-4483-9FA5-3E5465AFF8C2}" = Microsoft Default Manager "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{210DFA65-F805-1A2B-4F83-8E27279AE385}" = Catalyst Control Center Graphics Previews Common "{240C3DDD-C5E9-4029-9DF7-95650D040CF2}" = Intel(R) USB 3.0 eXtensible Host Controller Driver "{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 9 "{29822CAD-C76A-0BEE-55F5-AAA524DA814F}" = CCC Help Greek "{2b692846-09b2-4a10-b470-318024f47ed0}" = Nero 9 Essentials "{2F881B56-CBDF-4EC6-A8D2-6412A879C66A}_is1" = AMR Player 1.3 "{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver "{3A1293DF-7D09-BB0F-9576-EC47EE4A9362}" = CCC Help Italian "{3DECD372-76A1-4483-BF10-B547790A3261}" = ON_OFF Charge B11.1102.1 "{457D7505-D665-4F95-91C3-ECB8C56E9ACA}" = Easy Tune 6 B12.0402.1 "{47416F0B-6589-591E-C6F8-4235D2230B14}" = Catalyst Control Center InstallProxy "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4D43D635-6FDA-4fa5-AA9B-23CF73D058EA}" = Nero StartSmart OEM "{5449FB4F-1802-4D5B-A6D8-087DB1142147}" = Realtek HDMI Audio Driver for ATI "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{58D4FB3A-98E9-4B9B-B01E-7F005AEFE019}" = USB2.0 PC CAMERA "{5C90D8CF-F12A-41C6-9007-3B651A1F0D78}" = HP Deskjet 1050 J410 series Pomoc "{623B8278-8CAD-45C1-B844-58B687C07805}" = Bing Bar Platform "{625FC7D1-656D-1BEC-F86F-3EACAFDAA8FE}" = CCC Help English "{64467D47-FFE4-4FBC-ABBA-A0DB829A17EB}" = NVIDIA PhysX "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7351EEF8-9D6C-5F46-5A19-F2C7456CE132}" = CCC Help German "{7748ac8c-18e3-43bb-959b-088faea16fb2}" = Nero StartSmart "{7A2A107B-9695-423F-9462-8F17C178BD35}" = TP-LINK Wireless Client Utility "{7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1" = Need For Speed™ World "{7F172E34-4107-8964-6AEA-5051FFD265FF}" = CCC Help Portuguese "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{86095E92-1959-8364-920E-82E81F64F8FB}" = Catalyst Control Center "{86CE1746-9EFF-3C9C-8755-81EA8903AC34}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 "{8866BCB3-3818-4C66-83BC-92006B5EFE50}" = ArcSoft Magic-i Visual Effects 2 "{89D05F35-933A-89C0-B935-C92BEE4229BD}" = CCC Help French "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010 "{90140000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010 "{90140000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010 "{90140000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2010 "{90140000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010 "{90140000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010 "{90140000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010 "{90140000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010 "{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010 "{90140000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2010 "{90140000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010 "{90140000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010 "{90140000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2010 "{90140000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010 "{90140000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2010 "{928B06E4-DDAA-476A-926A-641620326327}" = Microsoft Search Enhancement Pack "{959E4378-CCA1-E4E4-2425-793DA92E8D95}" = CCC Help Czech "{96BB3C67-4EB4-9757-E0C2-C0D2FE9053B1}" = CCC Help Turkish "{974F4B73-2017-E174-9070-3F58F01B341F}" = CCC Help Danish "{98E20A18-3C29-86FA-50B4-918C2B34A082}" = CCC Help Hungarian "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9E2E5EB3-DC6E-9277-E9DB-13175E7DDA39}" = CCC Help Dutch "{A29E18C2-7AB1-4b6b-848C-5D5E2C85F0C0}" = FIFA 13 "{AAACC0A5-4382-04D0-C75E-0669C7B949B6}" = CCC Help Japanese "{AC76BA86-7AD7-1045-7B44-AA1000000001}" = Adobe Reader X (10.1.4) - Polish "{ACEF4078-9B86-2455-E18D-34D52D37D9D5}" = CCC Help Chinese Standard "{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}" = HP Update "{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}" = @BIOS "{b2ec4a38-b545-4a00-8214-13fe0e915e6d}" = Advertising Center "{B37DAFA5-717D-41F8-BDFB-3A4B68C0B3A1}" = The Sims™ 3 Nie z tego świata "{B55FB422-B803-11F5-5582-B3666EA1B9AC}" = Catalyst Control Center Localization All "{B69F28DF-CBB1-41B7-008A-210E4D0518FC}" = Harry Potter i Zakon Feniksa™ "{B8010864-15F8-613B-20EF-AC35B14B3E0D}" = CCC Help Russian "{BBF0A67B-5DBA-452F-9D2E-6F168BC226E4}" = Need for Speed™ SHIFT "{bd5ca0da-71ad-43da-b19e-6eee0c9adc9a}" = Nero ControlCenter "{BDA825AD-D60B-4935-9590-B0F1AC2E0D22}" = MotoGP 08 "{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3 "{C1342411-5A98-DE8A-5629-D0C518E1C280}" = CCC Help Finnish "{C75FAD21-EC08-42F3-92D6-C9C0AB355345}" = AutoGreen B12.0206.1 "{D08B4177-5160-6B66-8934-2F9012134D61}" = CCC Help Thai "{D34A6029-FB1A-9EA8-A938-5393F82A3A00}" = CCC Help Korean "{dba84796-8503-4ff0-af57-1747dd9a166d}" = Nero Online Upgrade "{E2B086BD-75A9-45D1-A675-151624B259A1}" = Splashtop Connect for IE "{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding "{E3A09D13-4D40-3CF8-7D32-8BD55F8D1533}" = CCC Help Spanish "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime "{e8a80433-302b-4ff1-815d-fcc8eac482ff}" = Nero Installer "{E8C37E27-5205-4C8A-BECB-B00533045AAE}" = SHIFT 2 UNLEASHED™ "{EA17F4FC-FDBF-4CF8-A529-2D983132D053}" = Skype™ 6.0 "{EF25F71D-F3E8-42A3-8B5A-DBF83C4B942F}" = Splashtop Connect for Firefox "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F2C35491-9323-3AE7-6023-6B4128045153}" = CCC Help Swedish "{FC66A32F-1A57-AC5C-4F12-DAC2F4CB77A0}" = CCC Help Chinese Traditional "{FE77909E-B782-4554-A92A-4D887CEF0ACC}_is1" = ALLMediaServer "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "ALL YouTube Downloader_is1" = ALL YouTube Downloader "ALLPlayer_is1" = ALLPlayer V5.X "Ares" = Ares 2.1.8 "avast" = avast! Free Antivirus "AVG Secure Search" = AVG Security Toolbar "Cross Fire_is1" = Cross Fire En "DAEMON Tools Lite" = DAEMON Tools Lite "DVD Decrypter" = DVD Decrypter (Remove Only) "Fraps" = Fraps "Hamachi" = Hamachi 1.0.3.0 "HP Photo Creations" = HP Photo Creations "InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}" = Easy Tune 6 B12.0402.1 "InstallShield_{C75FAD21-EC08-42F3-92D6-C9C0AB355345}" = AutoGreen B12.0206.1 "MotoGP2_is1" = MotoGP2 "Mozilla Firefox 17.0 (x86 pl)" = Mozilla Firefox 17.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "MX vs ATV Reflex_is1" = MX vs ATV Reflex "NapiProjekt_is1" = NapiProjekt 2.0.0 (build 2151) "Need for Speed Most Wanted_is1" = Need for Speed Most Wanted "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "RealAlt_is1" = Real Alternative 2.0.2 "Recordzilla_is1" = Recordzilla v1.3 "SpeedFan" = SpeedFan (remove only) "Startup Delayer" = Startup Delayer v3.0 (build 326) "Steam App 8190" = Just Cause 2 "Supertintin Skype Video Call Recorder_is1" = Supertintin 1.2.0.13 "UltraISO_is1" = UltraISO Premium V9.53 "uTorrent" = µTorrent "Wesoła Szkoła 1_is1" = Wesoła Szkoła 1 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-156478651-2123461653-1374542072-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "GG" = GG "Google Chrome" = Google Chrome "Mozilla Firefox 18.0 (x86 pl)" = Mozilla Firefox 18.0 (x86 pl) [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-01-13 09:12:23 | Computer Name = Wojtek-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: sro_client.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4e311cb6 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bdb3b Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00034230 Identyfikator procesu powodującego błąd: 0xe54 Godzina uruchomienia aplikacji powodującej błąd: 0x01cdf18a1346d6ac Ścieżka aplikacji powodującej błąd: D:\Gry\OsirisClient\sro_client.exe Ścieżka modułu powodującego błąd: C:\Windows\SysWOW64\ntdll.dll Identyfikator raportu: ddc2e970-5d82-11e2-957c-902b343636c5 Error - 2013-01-13 09:19:34 | Computer Name = Wojtek-Komputer | Source = Application Hang | ID = 1002 Description = Program sro_client.exe w wersji 0.0.0.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 1758 Godzina rozpoczęcia: 01cdf17ed93bf13c Godzina zakończenia: 20 Ścieżka aplikacji: d:\gry\osirisclient\sro_client.exe Identyfikator raportu: de0396ff-5d83-11e2-957c-902b343636c5 Error - 2013-01-13 09:59:55 | Computer Name = Wojtek-Komputer | Source = Application Hang | ID = 1002 Description = Program sro_client.exe w wersji 0.0.0.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 14d8 Godzina rozpoczęcia: 01cdf190197843fe Godzina zakończenia: 40 Ścieżka aplikacji: d:\gry\osirisclient\sro_client.exe Identyfikator raportu: 80da68a2-5d89-11e2-957c-902b343636c5 Error - 2013-01-13 13:08:17 | Computer Name = Wojtek-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: GUI.exe, wersja: 1.0.0.1, sygnatura czasowa: 0x4f0fc8d2 Nazwa modułu powodującego błąd: HM.dll, wersja: 1.0.0.1, sygnatura czasowa: 0x4f4ecd84 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000067d3 Identyfikator procesu powodującego błąd: 0xc98 Godzina uruchomienia aplikacji powodującej błąd: 0x01cdf16aaf78e8e3 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\GIGABYTE\ET6\GUI.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\GIGABYTE\ET6\HM.dll Identyfikator raportu: d22c1af2-5da3-11e2-957c-902b343636c5 Error - 2013-01-14 12:02:45 | Computer Name = Wojtek-Komputer | Source = .NET Runtime | ID = 1026 Description = Error - 2013-01-14 12:02:47 | Computer Name = Wojtek-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: Blue Radar.exe, wersja: 2.2.0.0, sygnatura czasowa: 0x4bd2d750 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bdbdf Kod wyjątku: 0xe0434352 Przesunięcie błędu: 0x0000b727 Identyfikator procesu powodującego błąd: 0xd94 Godzina uruchomienia aplikacji powodującej błąd: 0x01cdf2708c8e1474 Ścieżka aplikacji powodującej błąd: C:\Programy\Bluetooth Radar\Blue Radar.exe Ścieżka modułu powodującego błąd: C:\Windows\syswow64\KERNELBASE.dll Identyfikator raportu: d63c1148-5e63-11e2-9644-902b343636c5 Error - 2013-01-14 14:51:15 | Computer Name = Wojtek-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: sro_client.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4e311cb6 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bdb3b Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000335f2 Identyfikator procesu powodującego błąd: 0xf14 Godzina uruchomienia aplikacji powodującej błąd: 0x01cdf269f87b2fc4 Ścieżka aplikacji powodującej błąd: D:\Gry\OsirisClient\sro_client.exe Ścieżka modułu powodującego błąd: C:\Windows\SysWOW64\ntdll.dll Identyfikator raportu: 5f07d87f-5e7b-11e2-9644-902b343636c5 Error - 2013-01-15 13:19:24 | Computer Name = Wojtek-Komputer | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "c:\Programy\microsoft office\Office12\MSACCESS.EXE.Manifest". Nie można odnaleźć zestawu zależnego AceDAO,language="*",processorArchitecture="X86",type="win32",version="12.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-01-15 17:47:42 | Computer Name = Wojtek-Komputer | Source = Application Hang | ID = 1002 Description = Program sro_client.exe w wersji 0.0.0.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 122c Godzina rozpoczęcia: 01cdf3694e6e1108 Godzina zakończenia: 282 Ścieżka aplikacji: d:\gry\osirisclient\sro_client.exe Identyfikator raportu: 2ecd006e-5f5d-11e2-883c-0015833d0a57 Error - 2013-01-16 18:17:13 | Computer Name = Wojtek-Komputer | Source = Application Hang | ID = 1002 Description = Program gimp-2.8.exe w wersji 2.8.2.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 1894 Godzina rozpoczęcia: 01cdf4365547728b Godzina zakończenia: 2 Ścieżka aplikacji: C:\Program Files\GIMP 2\bin\gimp-2.8.exe Identyfikator raportu: 785536b6-602a-11e2-9861-0015833d0a57 [ System Events ] Error - 2012-12-10 01:01:44 | Computer Name = Wojtek-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi lirsgt z powodu następującego błędu: %%577 Error - 2012-12-10 10:39:45 | Computer Name = Wojtek-Komputer | Source = Microsoft-Windows-WLAN-AutoConfig | ID = 10000 Description = Uruchomienie modułu rozszerzalności sieci WLAN nie powiodło się. Ścieżka modułu: C:\Windows\system32\athExt.dll Kod błędu: 126 Error - 2012-12-10 10:39:50 | Computer Name = Wojtek-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi atksgt z powodu następującego błędu: %%577 Error - 2012-12-10 10:39:51 | Computer Name = Wojtek-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi lirsgt z powodu następującego błędu: %%577 Error - 2012-12-10 11:38:46 | Computer Name = Wojtek-Komputer | Source = Microsoft-Windows-WLAN-AutoConfig | ID = 10000 Description = Uruchomienie modułu rozszerzalności sieci WLAN nie powiodło się. Ścieżka modułu: C:\Windows\system32\athExt.dll Kod błędu: 126 Error - 2012-12-10 11:38:53 | Computer Name = Wojtek-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi atksgt z powodu następującego błędu: %%577 Error - 2012-12-10 11:38:55 | Computer Name = Wojtek-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi lirsgt z powodu następującego błędu: %%577 Error - 2012-12-11 00:48:50 | Computer Name = Wojtek-Komputer | Source = Microsoft-Windows-WLAN-AutoConfig | ID = 10000 Description = Uruchomienie modułu rozszerzalności sieci WLAN nie powiodło się. Ścieżka modułu: C:\Windows\system32\athExt.dll Kod błędu: 126 Error - 2012-12-11 00:48:57 | Computer Name = Wojtek-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi atksgt z powodu następującego błędu: %%577 Error - 2012-12-11 00:48:57 | Computer Name = Wojtek-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi lirsgt z powodu następującego błędu: %%577 < End of report >