OTL Extras logfile created on: 2013-06-06 00:34:58 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Part\Desktop 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16576) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 7,87 Gb Total Physical Memory | 6,28 Gb Available Physical Memory | 79,85% Memory free 11,63 Gb Paging File | 9,98 Gb Available in Paging File | 85,81% Paging File free Paging file location(s): d:\pagefile.sys 3854 3854 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 75,00 Gb Total Space | 19,05 Gb Free Space | 25,40% Space Free | Partition Type: NTFS Drive D: | 3,81 Gb Total Space | 0,00 Gb Free Space | 0,03% Space Free | Partition Type: NTFS Drive F: | 330,30 Gb Total Space | 43,13 Gb Free Space | 13,06% Space Free | Partition Type: NTFS Computer Name: PART-LAPTOP | User Name: Part | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2165405877-3821843396-3701388017-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Directory [Przeglądaj w XnView] -- "C:\Program Files (x86)\XnView\xnview.exe" "%1" (XnView, http://www.xnview.com) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.EnqueueAndPlay] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "\\QUEUE" "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Directory [Przeglądaj w XnView] -- "C:\Program Files (x86)\XnView\xnview.exe" "%1" (XnView, http://www.xnview.com) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.EnqueueAndPlay] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "\\QUEUE" "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{093D4E4F-1C62-4F82-A37C-9F40205C0F35}" = lport=138 | protocol=17 | dir=in | app=system | "{232ED281-7B5F-44BD-8AD0-DC3C6E8E23E9}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{27305CA7-A869-417D-899E-DC1FDD24D79B}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{36C9FD08-3987-4275-87CB-F1885EE9BC78}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{487D55D6-7A43-4D0D-8BB5-12B72722F90F}" = lport=58440 | protocol=17 | dir=in | name=pando media booster | "{50C2BCB4-72BB-42AE-84D3-963CE716E344}" = rport=10243 | protocol=6 | dir=out | app=system | "{6C605BC8-8AB1-4CB6-A478-84923EF2A560}" = rport=445 | protocol=6 | dir=out | app=system | "{7A1B8008-720D-466A-8FE6-3652CE8693D8}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{7AD94812-95AF-407F-ADA3-A058ADC75EAD}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{7F05426C-9FB6-4CD0-8DBA-728C8B25E407}" = rport=138 | protocol=17 | dir=out | app=system | "{83BCD349-81FE-428D-96C9-25410EE87529}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{86159B0F-C3B2-491C-AB47-BB8707C002B7}" = lport=139 | protocol=6 | dir=in | app=system | "{8C0C1468-318C-4613-8AD2-4EB38D6E77F9}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{9429028B-B980-44ED-B32B-19DF587F1FB1}" = rport=139 | protocol=6 | dir=out | app=system | "{9668486E-215F-40F3-8ABB-E8B30F096198}" = lport=445 | protocol=6 | dir=in | app=system | "{AB47A323-85FE-4F77-BF89-FA083A241CBF}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{AF1457B2-646D-478F-A794-0BC3BBE90822}" = lport=2869 | protocol=6 | dir=in | app=system | "{C1587B6B-8F17-465A-B9C9-EA1E174F35BE}" = lport=10243 | protocol=6 | dir=in | app=system | "{C8AEB44D-5357-41E3-9824-F914B03FFFEA}" = rport=137 | protocol=17 | dir=out | app=system | "{D456FDAE-68B4-4AA8-B392-318613A487C7}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{D7EDF6ED-FAB9-4C7F-B399-F122492D8E67}" = lport=58440 | protocol=17 | dir=in | name=pando media booster | "{EF5E9BDC-CFC5-451E-AEFC-8E1486EF2278}" = lport=58440 | protocol=6 | dir=in | name=pando media booster | "{F701C69F-94B4-4EBB-8B66-BE9289CAFA00}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{FB625594-88DD-4D8B-A350-C659908A1B49}" = lport=58440 | protocol=6 | dir=in | name=pando media booster | "{FDCC0A36-CAEB-45A2-B2D3-E30DF62966DC}" = lport=137 | protocol=17 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{00B1D299-21CD-4599-B80A-43E90961E1B2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{05A229B1-3D4E-4359-8ECE-A6ACFDFB86C4}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{07607AC2-4C8D-4F57-A4FD-A9B92728D5FB}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{1377FA70-75EC-496D-B42E-C8A46B84761B}" = protocol=6 | dir=in | app=c:\program files\k2t\wtw\wtw.exe | "{155DA90C-03B2-4467-9415-B4495D9C907C}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\lost - zagubieni\detection\launcher.exe | "{34BD31BE-D685-4ED4-BF71-7C8D4DEBF462}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{3783EB88-69E4-44C0-8A30-C6B9B52566DA}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{3A722970-AC65-451F-B334-3656F5A6D2CE}" = dir=in | app=c:\users\part\appdata\local\facebook\video\skype\facebookvideocalling.exe | "{42AD70A7-F6A5-4F74-96C4-23180182B2ED}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{437C75DA-073D-4748-9F3A-546C8070FE9A}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{491C9FE9-0892-4BB7-9B29-34BFC81C13A5}" = protocol=6 | dir=in | app=c:\users\part\appdata\local\google\google talk plugin\googletalkplugin.exe | "{4B502C33-92E3-4B87-A544-9DFF34C55C43}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{5808D290-FC7A-4BFF-92EC-6882E77B323C}" = protocol=17 | dir=in | app=c:\program files (x86)\pandora.tv\panservice\pandoraservice.exe | "{5993B3F4-5223-4078-A96F-CF27CEF8062F}" = protocol=6 | dir=out | app=system | "{5DB05CDE-D5D6-4868-A8E6-C281B6239B68}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\lost - zagubieni\yeti_final_win32.exe | "{601767E9-305D-4EF2-9443-53A8DE4FC655}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{60F4463C-7555-47AB-9B94-90514FAD3C2B}" = protocol=17 | dir=in | app=c:\program files\k2t\wtw\wtw.exe | "{67675121-29E8-4D51-B00E-3E2210D1968B}" = protocol=17 | dir=in | app=c:\users\part\appdata\local\google\google talk plugin\googletalkplugin.exe | "{6BE50A36-055F-4F04-A4A8-47B235A20A2B}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\lost - zagubieni\yeti_final_win32.exe | "{6CF3C777-1F44-41EB-B6A9-76277D6F8AA2}" = protocol=17 | dir=in | app=c:\program files\k2t\wtw\wtw.exe | "{6FF09759-DC41-444F-B59E-70B55DDC1B1D}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{7437921B-24BE-41E9-8D5A-2C6E3AA45C16}" = protocol=6 | dir=in | app=c:\users\part\appdata\local\google\google talk plugin\googletalkplugin.exe | "{75E5B022-388B-4DA3-BFDE-4869624391C2}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\lost - zagubieni\detection\launcher.exe | "{75EDD625-81B9-4F98-9BF9-154F20B247AE}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{77CF5C34-FC55-4FDE-9575-FC3E969B4E37}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2\portal2.exe | "{78AFD748-F61A-40BB-AF3D-AF4C9712009D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{7B17BD85-7590-48E4-BAFA-0458B4604AE0}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{7E929699-C8A4-4084-B2DF-00BFF6211E55}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{86D14A36-92F4-4012-B431-2F85A56C4B63}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{8B360619-CDD9-4F74-9523-9153C6BDC85E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{901C9C42-ABC1-4AA6-96CB-14F00C8282E0}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{91AF4AE6-76E7-493C-ABA1-ADB8889F1E38}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{9F7BFBEA-284C-48B5-8D4A-675A3369ADA7}" = protocol=6 | dir=in | app=c:\program files (x86)\sony ericsson\update engine\sony ericsson update engine.exe | "{A323488C-F5AD-4E0F-B364-0D449B515D9A}" = protocol=17 | dir=in | app=c:\users\part\appdata\local\google\google talk plugin\googletalkplugin.exe | "{B4AF5F2B-F494-4596-8D79-5E48B80C3F1A}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\lost - zagubieni\gu.exe | "{B6E4AD41-8CEB-4627-A2D8-B92DC1B9F606}" = protocol=17 | dir=in | app=c:\program files (x86)\sony ericsson\update engine\sony ericsson update engine.exe | "{C779CDDE-31F1-4ECF-90A1-27C16C2A679A}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{D35F94A8-4119-45B0-82D8-6677A33A8773}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{D5D8BD5D-A990-422F-BC2F-475E0D0A2B53}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{D6AFCE5B-CBD2-4B77-A07D-E160E12905BF}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\lost - zagubieni\gu.exe | "{D883B4EC-E06D-4A1E-880E-98067DE01605}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{D9FD7A07-FBB3-4D7B-B521-68FFC2A3EEC3}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{DC306352-9E84-4471-961D-DD8F6C218168}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{DEC633EE-A73B-4C32-AC26-397BA1A43095}" = protocol=6 | dir=in | app=c:\program files\k2t\wtw\wtw.exe | "{DF4BA03A-3DE5-46B4-A6E6-01146D764C87}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{E0211DE7-B2AE-48C7-8078-66EE05A9390A}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{E25A566F-D29C-4674-B3E8-EF9F08ABCBFB}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2\portal2.exe | "{E93BA039-6027-4228-820D-47EA47EC4CC9}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{F901A1C2-7F05-444A-965A-4E19DFC33E97}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{F9E0A6F6-5308-4664-A78D-EB530465EC4C}" = protocol=6 | dir=in | app=c:\program files (x86)\pandora.tv\panservice\pandoraservice.exe | "TCP Query User{83F085A5-DA71-4F12-8A0D-7806F9C32415}C:\xampp\mysql\bin\mysqld.exe" = protocol=6 | dir=in | app=c:\xampp\mysql\bin\mysqld.exe | "TCP Query User{B223AFD3-2787-4564-A964-95EA4429FFCF}C:\users\part\desktop\!pulpit\ksop - wersja wykonywalna\ksop.exe" = protocol=6 | dir=in | app=c:\users\part\desktop\!pulpit\ksop - wersja wykonywalna\ksop.exe | "TCP Query User{DCF28CA4-FDF7-4D82-AAEF-E50C41B103E5}C:\soldat\soldat.exe" = protocol=6 | dir=in | app=c:\soldat\soldat.exe | "TCP Query User{EE381A57-FA63-4372-B707-2CAC40E11B23}C:\xampp\apache\bin\httpd.exe" = protocol=6 | dir=in | app=c:\xampp\apache\bin\httpd.exe | "UDP Query User{6F8B0807-A701-4C2E-AF99-821A638ED33D}C:\soldat\soldat.exe" = protocol=17 | dir=in | app=c:\soldat\soldat.exe | "UDP Query User{AB82B6DA-4099-42C9-A786-4F49AF430C22}C:\xampp\apache\bin\httpd.exe" = protocol=17 | dir=in | app=c:\xampp\apache\bin\httpd.exe | "UDP Query User{B18A5156-9666-4312-9B63-7AA1ED63B25E}C:\xampp\mysql\bin\mysqld.exe" = protocol=17 | dir=in | app=c:\xampp\mysql\bin\mysqld.exe | "UDP Query User{D4B54C61-FDAD-485B-8239-A99FCB8113F1}C:\users\part\desktop\!pulpit\ksop - wersja wykonywalna\ksop.exe" = protocol=17 | dir=in | app=c:\users\part\desktop\!pulpit\ksop - wersja wykonywalna\ksop.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64) "{1DF5019A-68B5-4ba1-8E59-E185C7B7FF11}" = Komunikator WTW 0.9.0.3202 "{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{87CF757E-C1F1-4D22-865C-00C6950B5258}" = Quickset64 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}" = WIDCOMM Bluetooth Software "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 "{B821CDAA-34DE-46FD-87C9-E6EE7158DB5D}" = Microsoft Image Composite Editor "{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "26DF6674D7C1C08AE6A9F0AB0F04558F369FF15F" = Windows Driver Package - Broadcom Bluetooth (12/01/2009 6.2.0.9411) "3BA80AB4C7E9F8497C115C844953A3D4BEB84D21" = Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) "6B6B5E96843E55CF5CF8C7E45FB457F1FE642FF1" = Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) "Bullzip PDF Printer_is1" = Bullzip PDF Printer 9.0.0.1437 "CCleaner" = CCleaner "DW WLAN Card Utility" = DW WLAN Card Utility "GIMP-2_is1" = GIMP 2.8.2 "Icaros_is1" = Icaros 2.0.0 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Mp3 Cover Downloader_is1" = Creevity Mp3 Cover Downloader "NVIDIA Drivers" = NVIDIA Drivers "Puran Defrag Free Edition_is1" = Puran Defrag Free Edition 7.3 "SynTPDeinstKey" = Dell Touchpad "WinRAR archiver" = WinRAR 4.01 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{127BEFB3-24B2-4B44-8E99-AD22C2A5A8ED}" = Full Tilt Poker.Eu "{1E5FF5FF-EE4B-4CDE-94F5-F211C9F6D7C2}_is1" = Tomb Raider Legenda wersja 1.2 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83216039FF}" = Java(TM) 6 Update 39 "{26A24AE4-039D-4CA4-87B4-2F83217017FF}" = Java 7 Update 21 "{2702B8FC-6003-4AC6-ADBC-EC65746D800A}" = Lost Via Domus "{2ADE2157-7A5E-122C-B51D-EB8A01B15943}" = DeepBurner v1.9.0.228 "{2B818257-E6C7-4841-8C29-C5C9A982BCE5}" = RICOH Media Driver ver.2.07.01.02 "{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.3 "{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module "{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{87434D51-51DB-4109-B68F-A829ECDCF380}" = AccelerometerP11 "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver For Windows 7 "{91B9368F-6C6F-3DB5-9CBA-6CAD56035B26}" = Google Talk Plugin "{95FC26FB-19FD-4A96-BBB1-B1062E8648F5}" = AGEIA PhysX v7.11.13 "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{9A00D1BA-D03A-44E5-AF28-86A1F377DF61}" = The Sims Makin' Magic "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AB67580-257C-45FF-B8F4-C8C30682091A}_is1" = SIW version 2011.10.29 "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{B92C5909-1D37-4C51-8397-A28BB28E5DC3}" = Facebook Video Calling 1.2.0.287 "{C268B5E1-A5DA-11DF-A289-005056C00008}" = Paragon Backup & Recovery™ 2013 Free "{D64833F8-860D-4216-8EDC-DD08AD68C0B5}" = LibreOffice 3.4 "{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}" = Intel(R) Turbo Boost Technology Driver "{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio "{EA561FC0-A965-11E2-94D3-B8AC6F98CCE3}" = Google Earth Plug-in "{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module "{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}" = Sony PC Companion 2.10.155 "7-Zip" = 7-Zip 9.20 "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "AutoHotkey" = AutoHotkey 1.0.48.05 "avast" = avast! Free Antivirus "CDex" = CDex - Open Source Digital Audio CD Extractor "GamersFirst LIVE!" = GamersFirst LIVE! "GamersFirst War Rock" = War Rock "Google Chrome" = Google Chrome "HD Tune Pro_is1" = HD Tune Pro 5.00 "Mozilla Firefox 21.0 (x86 pl)" = Mozilla Firefox 21.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Mp3tag" = Mp3tag v2.49b "NapiProjekt_is1" = NapiProjekt 2.0.0 (build 2151) "Notepad++" = Notepad++ "PokerStars.eu" = PokerStars.eu "Soldat_is1" = Soldat 1.6.3 "Steam App 620" = Portal 2 "Stellarium_is1" = Stellarium 0.11.2 "SumatraPDF" = SumatraPDF "The KMPlayer" = The KMPlayer (remove only) "Totalcmd" = Total Commander (Remove or Repair) "Update Engine" = Sony Ericsson Update Engine "uTorrent" = µTorrent "VLC media player" = VLC media player 1.1.11 "Winamp" = Winamp "WinMerge_is1" = WinMerge 2.12.4 "XnView Shell Extension_is1" = XnView Shell Extension 3.1.0 (64bits) "XnView_is1" = XnView 1.98.5 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2165405877-3821843396-3701388017-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Winamp Detect" = Detektor Winampa [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-06-03 19:25:56 | Computer Name = part-laptop | Source = ESENT | ID = 455 Description = Windows (3744) Windows: Wystąpił błąd -1811 podczas otwierania pliku dziennika C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS00005.log. Error - 2013-06-03 19:25:56 | Computer Name = part-laptop | Source = Windows Search Service | ID = 9000 Description = Error - 2013-06-03 19:25:56 | Computer Name = part-laptop | Source = Windows Search Service | ID = 7040 Description = Error - 2013-06-03 19:25:56 | Computer Name = part-laptop | Source = Windows Search Service | ID = 7042 Description = Error - 2013-06-03 19:25:56 | Computer Name = part-laptop | Source = Windows Search Service | ID = 9002 Description = Error - 2013-06-03 19:25:56 | Computer Name = part-laptop | Source = Windows Search Service | ID = 3029 Description = Error - 2013-06-03 19:25:56 | Computer Name = part-laptop | Source = Windows Search Service | ID = 3029 Description = Error - 2013-06-03 19:25:56 | Computer Name = part-laptop | Source = Windows Search Service | ID = 3028 Description = Error - 2013-06-03 19:25:56 | Computer Name = part-laptop | Source = Windows Search Service | ID = 3058 Description = Error - 2013-06-03 19:25:56 | Computer Name = part-laptop | Source = Windows Search Service | ID = 7010 Description = [ Broadcom Wireless LAN Events ] Error - 2013-03-05 15:39:17 | Computer Name = part-laptop | Source = WLAN-Tray | ID = 0 Description = 20:39:12, Tue, Mar 05, 13 Error - Unable to gain access to user store [ System Events ] Error - 2013-05-28 12:01:40 | Computer Name = part-laptop | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi rixdpcie z powodu następującego błędu: %%1058 Error - 2013-05-28 12:09:34 | Computer Name = part-laptop | Source = Service Control Manager | ID = 7022 Description = Usługa Windows Update zawiesiła się podczas uruchamiania. Error - 2013-05-29 12:39:20 | Computer Name = part-laptop | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi rixdpcie z powodu następującego błędu: %%1058 Error - 2013-06-03 19:25:31 | Computer Name = part-laptop | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi rixdpcie z powodu następującego błędu: %%1058 Error - 2013-06-03 19:25:56 | Computer Name = part-laptop | Source = Service Control Manager | ID = 7024 Description = Usługa Windows Search zakończyła działanie; wystąpił specyficzny dla niej błąd %%-1073473535. Error - 2013-06-03 19:25:56 | Computer Name = part-laptop | Source = Service Control Manager | ID = 7031 Description = Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-06-04 07:58:33 | Computer Name = part-laptop | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi rixdpcie z powodu następującego błędu: %%1058 Error - 2013-06-04 12:43:43 | Computer Name = part-laptop | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi rixdpcie z powodu następującego błędu: %%1058 Error - 2013-06-05 12:14:35 | Computer Name = part-laptop | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi rixdpcie z powodu następującego błędu: %%1058 Error - 2013-06-05 18:25:27 | Computer Name = part-laptop | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi rixdpcie z powodu następującego błędu: %%1058 < End of report >