OTL Extras logfile created on: 2013-06-11 21:53:39 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\uzytkownik\Downloads 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16576) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 7,91 Gb Total Physical Memory | 5,29 Gb Available Physical Memory | 66,86% Memory free 15,81 Gb Paging File | 12,93 Gb Available in Paging File | 81,77% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 343,28 Gb Total Space | 161,29 Gb Free Space | 46,98% Space Free | Partition Type: NTFS Computer Name: ITE-VOSTRO-GR1 | User Name: uzytkownik | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) .ini[@ = Notepad++_file] -- C:\Program Files (x86)\Notepad++\notepad++.exe (Don HO don.h@free.fr) .url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation) .txt[@ = Notepad++_file] -- C:\Program Files (x86)\Notepad++\notepad++.exe (Don HO don.h@free.fr) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) .ini [@ = Notepad++_file] -- C:\Program Files (x86)\Notepad++\notepad++.exe (Don HO don.h@free.fr) .txt [@ = Notepad++_file] -- C:\Program Files (x86)\Notepad++\notepad++.exe (Don HO don.h@free.fr) [HKEY_USERS\S-1-5-21-5604814-1096987149-2402934779-2229\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -osint -url "%1" (Mozilla Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -osint -url "%1" (Mozilla Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe" = C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe:*:Enabled:Logitech Harmony Remote Software 7 -- () "C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe" = C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe:*:Enabled:Logitech Harmony Remote Software 7 -- () [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe" = C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe:*:Enabled:Logitech Harmony Remote Software 7 -- () "C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe" = C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe:*:Enabled:Logitech Harmony Remote Software 7 -- () [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0715A5C9-03AC-4362-898B-CCCCC20F9F11}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{131EF560-85AC-4040-8E45-808BE29A2CAC}" = lport=445 | protocol=6 | dir=in | app=system | "{13E217BB-4BE4-43A2-9412-09EC3E96DB44}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{2158BC6A-E7AF-422E-97F6-72BDDC56D716}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{3E5CD81D-DE25-4561-914E-EC3FEB25576A}" = lport=2869 | protocol=6 | dir=in | app=system | "{440634AD-20C8-44A0-9E73-D5147131BDD4}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{488BE9E3-B52C-46E6-AD51-8EB4AC2C8D86}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{5350D01D-3F96-4C8A-ACFE-2811CC9B16EE}" = rport=10243 | protocol=6 | dir=out | app=system | "{5ADCA565-2418-478B-8134-D40A80E81EC1}" = rport=138 | protocol=17 | dir=out | app=system | "{61BA949C-C45B-4571-9F78-CA09F39786DF}" = rport=445 | protocol=6 | dir=out | app=system | "{68769E38-EF96-4A35-AF87-E1DA78FDA7E8}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{6CA023F1-B4A7-49F2-89BB-A42D6D81CD2B}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{71412040-417D-4976-BB89-C13EAFD4F778}" = rport=139 | protocol=6 | dir=out | app=system | "{756477B6-2163-4B78-BE54-DE7045E081A7}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{86D70305-33AB-4023-8769-7A971F6B2942}" = lport=139 | protocol=6 | dir=in | app=system | "{8ABE1499-A4EA-4BA1-976D-2ED38A1F89C2}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{A09CBA4F-6893-4DC2-A33F-EEDC1E8309D7}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{A74DEC4B-172E-4617-9BCC-D2662FD3C697}" = lport=138 | protocol=17 | dir=in | app=system | "{A78BA949-59BC-47C3-82AB-963D45BEC1CE}" = lport=10243 | protocol=6 | dir=in | app=system | "{B19EFC25-CC89-4E08-AB82-9D84B7910C35}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe | "{CA9A4102-C0F3-40F1-A10B-044CD59233E1}" = lport=61116 | protocol=6 | dir=in | name=aktualizacja programu trend micro client/server security agent | "{EA0BE46C-8A9D-4E43-86FB-D36CBF7C8C12}" = lport=61117 | protocol=17 | dir=in | name=nadajnik programu trend micro client/server security agent | "{ECFF5BF5-8E39-4769-A88D-5C7987148F66}" = rport=137 | protocol=17 | dir=out | app=system | "{F49F35A7-C85D-49A6-B9A0-6C746D78B260}" = lport=137 | protocol=17 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{03B382D9-5035-4C1B-A0AD-1AFB0DF0D431}" = protocol=17 | dir=in | app=c:\program files\vmware\vmware view\client\bin\wswc.exe | "{0B35BDD1-C0E3-4814-9B5C-874DB7435F27}" = dir=in | app=c:\program files (x86)\intel corporation\intel widi\widiapp.exe | "{0C930D4B-B506-4830-9F72-0CBD1AE2DB88}" = protocol=6 | dir=in | app=c:\program files\vmware\vmware view\client\bin\wswc.exe | "{0F07D63D-A2E1-47E2-9689-8CE637C84C51}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{0F8AAE7C-EB3B-491F-B20D-675260586E6F}" = dir=in | app=c:\users\uzytkownik\appdata\roaming\ryelip\xityiz.exe | "{112C9946-284E-44A4-A921-E9D54F8FB1D5}" = protocol=6 | dir=out | app=system | "{1A759AD0-C097-4EB1-AF2B-CEE35271721D}" = protocol=6 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe | "{1F8A4019-E54D-47C6-94F5-4F9C2D5DCB8B}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe | "{1FB451C8-E3F4-4ECA-B8B0-7D67CB249A7A}" = protocol=6 | dir=in | app=c:\program files (x86)\totalcmd\totalcmd.exe | "{24631C38-F160-4276-9613-D6882E3E9AFD}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{260E97B8-52DF-483D-9B66-C237A65DBC37}" = protocol=17 | dir=in | app=c:\program files\vmware\vmware view\client\bin\wswc.exe | "{316F7B14-7F6A-4CDC-8D4B-9A396CD14381}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office15\ucmapi.exe | "{40FFE4EB-550D-4F42-B1A3-4B1043E26858}" = protocol=17 | dir=in | app=c:\program files\vmware\vmware view\client\bin\vmware-remotemks.exe | "{4107E7D6-4994-4EFA-AA22-8ED24341E5D7}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{43D9BD50-2C4D-4228-9611-5F851C8B1039}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{446EBB71-EA32-4E29-9183-35827D5D4250}" = protocol=17 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe | "{45FC0403-160E-4436-AA8D-287D330124BE}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{5C1DF18A-0730-491B-94BC-FCDC59C43659}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{5ED8EE45-DCA8-4131-8614-B9E5F2BB653C}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office15\lync.exe | "{63FE7492-F898-4DAB-A448-5661164C886D}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{647E8CBA-78A4-4346-B31F-E1C46A21AB86}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{64EBA140-F60C-4497-9DE9-2B53F47356C0}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{654F89D0-6BE2-47B7-AF80-1B2BA1EF6139}" = dir=in | app=c:\program files (x86)\vmware\vmware workstation\vmware-authd.exe | "{670F733A-B28B-4878-A92C-811FA06ABC97}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office15\ucmapi.exe | "{6B41D541-C2F4-4703-B240-A25B8F51E012}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{6BD6243D-F11E-4FA9-B26C-ED36188A41C3}" = dir=in | app=c:\program files (x86)\vmware\vmware workstation\vmware-authd.exe | "{6E7CFA7E-961F-4FFE-9B73-F69A57521699}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe | "{70C32737-FECA-418D-AFBB-2BE25BE008EF}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe | "{71A52D58-98A4-4A10-B2EB-37859DB4DE0F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{73E81375-B1F0-4D97-94F3-E0732EE9992C}" = protocol=6 | dir=in | app=c:\program files\vmware\vmware view\client\bin\vmware-remotemks.exe | "{748BEE8C-AEBA-4BEB-BD1C-B23CCE9FEE67}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.998\agent.exe | "{8057F5FB-5908-4934-B3DC-E8C0FCB2A217}" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe | "{82C88EF3-2E30-4990-86AA-D538D2A49D62}" = dir=in | app=c:\program files (x86)\vmware\vmware workstation\vmware-hostd.exe | "{880F7E78-7A30-4180-9BC7-034D3BDC324F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{88AFD8DF-7C1E-49CE-9FED-8FCB3B3B82C2}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{98BF0010-51B2-4003-A085-D7EC5C832D50}" = protocol=17 | dir=in | app=c:\program files\vmware\vmware view\client\bin\wswc.exe | "{99A2E575-19F3-4904-9F66-043850BD2AEF}" = protocol=17 | dir=in | app=c:\program files\vmware\vmware view\client\bin\vmware-remotemks.exe | "{9EDF5F55-CEEE-4AA6-AE30-F4DC27B41511}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe | "{9F0DF715-04C8-4C0F-AFA7-0DC2DE99E797}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{A0213B5D-A1D2-429F-ADDB-FBE3E4CD0362}" = protocol=6 | dir=in | app=c:\program files\vmware\vmware view\client\bin\wswc.exe | "{A237C6BD-B28E-4F24-8D7A-F0EC03216706}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | "{A36CAA4B-D7F4-4909-BD48-8E16CFD3E6B2}" = protocol=17 | dir=in | app=c:\program files (x86)\totalcmd\totalcmd.exe | "{AA5A2AA9-1A81-4E9A-A3A8-372862C69AC9}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{AC6FEEAB-C0B8-42AE-86C2-4193BDA996E7}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{ACC5D35A-6394-44B0-BB1C-96B7E499AE27}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.998\agent.exe | "{B57EC676-C07F-4AF9-B6E3-5CFC361A64A7}" = protocol=6 | dir=in | app=c:\program files\vmware\vmware view\client\bin\vmware-remotemks.exe | "{B7A6DF69-AD43-48D8-ABD0-2CFD2DD24A00}" = protocol=6 | dir=in | app=c:\program files\vmware\vmware view\client\bin\wswc.exe | "{BDF4E5B1-676F-47FD-9D29-6ACD962F1A89}" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe | "{C6E150D8-8C03-49C0-91C7-39BC0B9FFE1A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{CE621F53-08C7-40F1-9D00-76019D5D5350}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{CEC9EF4F-8D6E-4149-904D-678D06A9B614}" = dir=in | app=c:\program files (x86)\vmware\vmware workstation\vmware-hostd.exe | "{D45A9E5B-E344-408E-A230-22F1BD9E9A4C}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{D4E5E8F0-4C7F-4F0E-91B5-B1181759FBB3}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{E2071F48-ED89-4FE0-AC96-A427FC379A96}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{E6712A10-84D0-445D-A4F7-C4D7D06D75B6}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office15\lync.exe | "{E74942A1-020C-4882-B21F-AAC27683D36E}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{F06F34D6-E79C-4164-A804-C7D8D272AAB1}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | "{F1808FF3-2178-4E30-A123-8CF55FAC8A4B}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe | "{F690E797-6139-4FF8-933E-84C116ADC095}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{FA24B218-77CF-47F9-B28A-A19D025B2AD8}" = protocol=6 | dir=in | app=c:\program files\vmware\vmware view\client\bin\vmware-remotemks.exe | "{FDDB26AF-3FBC-4A6F-A96F-17CF3EC3DE81}" = protocol=17 | dir=in | app=c:\program files\vmware\vmware view\client\bin\vmware-remotemks.exe | "TCP Query User{1B6C5D5E-4CBF-4008-A5A8-70E4D34002D1}C:\program files (x86)\emc\inittool\inittool.exe" = protocol=6 | dir=in | app=c:\program files (x86)\emc\inittool\inittool.exe | "TCP Query User{43C34E0F-8474-4E4B-AA57-E63A4FC1D233}C:\program files (x86)\totalcmd\totalcmd.exe" = protocol=6 | dir=in | app=c:\program files (x86)\totalcmd\totalcmd.exe | "TCP Query User{50A0411B-B663-4FAC-84A0-14C6AB72D32C}C:\program files (x86)\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe | "TCP Query User{9E4298DF-E6FC-4AEE-9775-E83FEAEEDB1D}C:\windows\system32\mmc.exe" = protocol=6 | dir=in | app=c:\windows\system32\mmc.exe | "UDP Query User{BD20F0B1-4B63-4BD7-8FEB-28CDFA38E2EA}C:\program files (x86)\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe | "UDP Query User{C092DBE7-26FE-4CCC-93DF-A6F6BCD0B930}C:\program files (x86)\totalcmd\totalcmd.exe" = protocol=17 | dir=in | app=c:\program files (x86)\totalcmd\totalcmd.exe | "UDP Query User{D9B85D45-B8D3-4A93-8B5E-6DAB22E665AB}C:\program files (x86)\emc\inittool\inittool.exe" = protocol=17 | dir=in | app=c:\program files (x86)\emc\inittool\inittool.exe | "UDP Query User{E086BD6F-0CD1-4845-B0B0-CFD59F24FF1C}C:\windows\system32\mmc.exe" = protocol=17 | dir=in | app=c:\windows\system32\mmc.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0090A87C-3E0E-43D4-AA71-A71B06563A4A}" = Dell Support Center "{0446A460-E8E8-4387-9D1F-4BE9C9824F7B}" = Microsoft Antimalware Service PL-PL Language Pack "{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64) "{0D94F75A-0EA6-4951-B3AF-B145FA9E05C6}" = VMware Workstation "{1AA39F1E-0098-41f9-9DDC-9CB7B47C9441}" = VMware View Client "{25FBDA9A-E868-4B3B-B9FF-D923818511A1}" = Oprogramowanie Intel(R) PROSet/Wireless WiFi "{26A24AE4-039D-4CA4-87B4-2F86416027FF}" = Java(TM) 6 Update 27 (64-bit) "{26A24AE4-039D-4CA4-87B4-2F86417021FF}" = Java 7 Update 21 (64-bit) "{28EF7372-9087-4AC3-9B9F-D9751FCDF830}" = Intel(R) Wireless Display "{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1" = MPC-HC 1.6.7.7114 (9eb64ec) (64-bit) "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{4D668D4F-FAA2-4726-834C-31F4614F312E}" = MSVC80_x64_v2 "{529125EF-E3AC-4B74-97E6-F688A7C0F1C0}" = Paint.NET v3.5.10 "{56BAC4EE-B1DA-42A7-ACA5-7A353F2ED1DA}" = Validity Sensors DDK "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{680EDA59-9266-44B4-949E-0C24F65DFF82}" = Microsoft_VC100_CRT_SP1_x64 "{7CE8BE79-ABC3-4B2C-9543-28ED2B0A9EA8}" = Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{87CF757E-C1F1-4D22-865C-00C6950B5258}" = Quickset64 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}" = Dell Edoc Viewer "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2010 "{90150000-002A-0000-1000-0000000FF1CE}" = Microsoft Office 64-bit Components 2013 "{90150000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2013 "{90150000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2013 "{A370C527-EF4A-4172-B1F6-310C121BAB02}" = Microsoft Forefront Endpoint Protection 2010 Server Management "{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}" = MSVC90_x64 "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B0A5A6EE-F8BA-48B1-BB32-BAC17E96C2B4}" = Microsoft Visual J# 2.0 Redistributable Package - SE (x64) "{B2BF9645-C1A5-4511-A51C-74965744A46B}" = Microsoft Endpoint Protection Management Components "{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}" = Intel(R) Turbo Boost Technology Monitor 2.0 "{C0C2D40A-1231-46FA-8F02-B45E6BF2036A}" = DigitalPersona Fingerprint Software 5.20 "{D954C6C2-544B-4091-A47F-11E77162883E}" = Microsoft Security Client "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "{FCAB9F73-BF5D-4E3D-92E7-B0F35C568F20}" = Microsoft Security Client PL-PL Language Pack "62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F" = Pakiet sterowników systemu Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) "CCleaner" = CCleaner "CNXT_AUDIO_HDA" = Conexant SmartAudio HD "Defraggler" = Defraggler "Dell Support Center" = Dell Support Center "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft Security Client" = Microsoft Forefront Endpoint Protection "Microsoft Visual J# 2.0 Redistributable Package - SE (x64)" = Microsoft Visual J# 2.0 Redistributable Package - SE (x64) "ProInst" = Intel PROSet Wireless "Shrew Soft VPN Client" = Shrew Soft VPN Client "sp6" = Logitech SetPoint 6.32 "SynTPDeinstKey" = Dell Touchpad "WhoCrashed_is1" = WhoCrashed 3.03 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator "{003BFBBD-6C67-419E-A24D-0DCAFC3A5249}" = tools-freebsd "{04805AB6-F757-496A-8D56-37A0FC5FF6F3}" = VMware vSphere Client 5.0 "{09DC364B-A77A-49A0-972B-E43F0DACC5E3}" = VMware vSphere Client 5.1 "{173A2B7F-535A-4403-A454-B41531EF0D7F}" = Remote Desktop Connection Manager "{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 "{197597A7-AD33-4898-9D8E-73066818B464}" = tools-netware "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{23EEC842-57ED-4055-A056-9D4185DFB1AA}" = Dell Mobile Broadband Manager "{25680C01-6753-4FE9-A891-7857F26457C1}" = Intel(R) WiDi "{26A24AE4-039D-4CA4-87B4-2F83216020F0}" = Java(TM) 6 Update 20 "{26A24AE4-039D-4CA4-87B4-2F83216035FF}" = Java(TM) 6 Update 35 "{26A24AE4-039D-4CA4-87B4-2F83217017FF}" = Java 7 Update 21 "{31A559C1-9E4D-423B-9DD3-34A6C5398752}" = HTC BMP USB Driver "{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology "{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = eReg "{47FA2C44-D148-4DBC-AF60-B91934AA4842}" = Adobe AIR "{48339529-841D-4588-89FC-D44BBD094CE0}" = Unisphere VNX Client "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.3 "{5C6F884D-680C-448B-B4C9-22296EE1B206}" = Logitech Harmony Remote Software 7 "{5DB849D6-9392-4FB7-9ABB-87ED433152E5}" = LG United Mobile Drivers "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{6274B649-EF60-4D09-BBEE-136BF5D99495}" = Unisphere Storage System Initialization "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2 "{6D6664A9-3342-4948-9B7E-034EFE366F0F}" = HTC Driver Installer "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP "{80F19EAA-44C4-47C2-AE87-1C7628E858D6}" = Logitech Harmony Remote Software 7 "{8471021C-F529-43DE-84DF-3612E10F58C4}" = Remote Control USB Driver "{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 "{87434D51-51DB-4109-B68F-A829ECDCF380}" = AccelerometerP11 "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{90140000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0015-0415-0000-0000000FF1CE}_Office14.PROPLUSR_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0016-0415-0000-0000000FF1CE}_Office14.PROPLUSR_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0018-0415-0000-0000000FF1CE}_Office14.PROPLUSR_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-0019-0415-0000-0000000FF1CE}_Office14.PROPLUSR_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001A-0415-0000-0000000FF1CE}_Office14.PROPLUSR_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001B-0415-0000-0000000FF1CE}_Office14.PROPLUSR_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0407-0000-0000000FF1CE}_Office14.PROPLUSR_{65A2328E-FDFB-4CA3-8582-357EA6825FEA}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0407-0000-0000000FF1CE}_Office14.VISIOR_{65A2328E-FDFB-4CA3-8582-357EA6825FEA}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUSR_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0409-0000-0000000FF1CE}_Office14.VISIOR_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-001F-0415-0000-0000000FF1CE}_Office14.PROPLUSR_{1D751709-BA6C-49E2-844B-4F4F20F410C9}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0415-0000-0000000FF1CE}_Office14.VISIOR_{1D751709-BA6C-49E2-844B-4F4F20F410C9}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002A-0000-1000-0000000FF1CE}_Office14.VISIOR_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002A-0415-1000-0000000FF1CE}_Office14.VISIOR_{0844B6E1-0A6F-4D81-8BCF-48F883F521FE}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-002C-0415-0000-0000000FF1CE}_Office14.VISIOR_{6606F321-8216-466E-981E-B75A14C46894}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-0044-0415-0000-0000000FF1CE}_Office14.PROPLUSR_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0054-0415-0000-0000000FF1CE}" = Microsoft Office Visio MUI (Polish) 2010 "{90140000-0054-0415-0000-0000000FF1CE}_Office14.VISIOR_{45B7EB13-4213-41E0-ACB2-A5FF74F87171}" = Microsoft Office 2010 Language Pack Service Pack 1 (SP1) "{90140000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-006E-0415-0000-0000000FF1CE}_Office14.PROPLUSR_{6AF8887A-72F7-4FA0-ABE4-396172B64550}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-006E-0415-0000-0000000FF1CE}_Office14.VISIOR_{6AF8887A-72F7-4FA0-ABE4-396172B64550}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00A1-0415-0000-0000000FF1CE}_Office14.PROPLUSR_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{90140000-00BA-0415-0000-0000000FF1CE}_Office14.PROPLUSR_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90150000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - English "{90150000-001F-040C-0000-0000000FF1CE}" = Outils de vérification linguistique 2013 de Microsoft Office - Français "{90150000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - Español "{90150000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2013 "{90150000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2013 "{90150000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2013 "{90150000-012B-0409-0000-0000000FF1CE}" = Microsoft Lync MUI (English) 2013 "{90150000-012D-0000-0000-0000000FF1CE}" = Microsoft LyncEntry 2013 "{91140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1) "{91140000-0057-0000-0000-0000000FF1CE}" = Microsoft Office Visio 2010 "{91140000-0057-0000-0000-0000000FF1CE}_Office14.VISIOR_{01D8AE4B-A04D-47E5-81BF-E3F98B81B8C3}" = Microsoft Visio 2010 Service Pack 1 (SP1) "{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader "{98613C99-1399-416C-A07C-1EE1C585D872}" = SeaTools for Windows "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9D583F01-A973-4B04-90BD-FB7886779090}" = Dell Wireless HSPA Mini-Card Drivers "{A0B433B1-941D-46F5-AE59-286263534232}" = VMware vSphere Client 4.1 "{AB1C87CB-1807-4CF0-B4C2-CEE14C18CDB4}" = tools-solaris "{AB77DFDE-9949-4AEF-B180-BE322C3E65D0}" = HTC Sync "{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.03) "{AC7EE5F1-0DE4-4256-8E43-92B73C8E6019}" = LG Bluetooth Drivers "{AE0F62A7-A1A2-407F-9F4C-48939BD9AD8D}" = tools-winPre2k "{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86 "{B04A0E2F-1E4C-4E61-B18E-3B2BD6779CA7}" = Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych "{B1EB7FFF-6E44-43D8-869D-B78E44CD3E0F}" = TI USB3 Host Driver "{BA77F9D2-CD35-41EB-9BC9-769879DFF8A6}" = PC Connectivity Solution "{BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}" = User Guide "{BB7E543F-9684-4E04-A49C-1E66B92DB2DF}" = VNX Installation Assistant 7.1.55.3 "{BF537DAB-B201-4B2A-A832-F86551139F00}" = Unisphere Service Manager "{C40698F9-A861-4531-9F8C-FA7F8961375B}" = VMware vSphere Client 4.0 "{CA1DC67A-A059-45D7-A2CF-F99D15876B6B}" = VMware vCenter Update Manager Client 4.1 Update 1 "{D102611A-6466-4101-A51D-51069303AC65}" = tools-linux "{E3B64CC5-C011-40C0-92BC-7316CD5E5688}" = Microsoft_VC100_CRT_SP1_x86 "{E9C450A0-4606-11E0-9207-0800200C9A66}" = HP Virtual Room Client Launcher Plugin "{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}" = PL-2303 USB-to-Serial "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F0E8C9FD-990F-48A8-9B3B-835DB0DACD26}" = VMware vSphere Update Manager Client 5.0 "{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center "{FBB52829-8248-4D6C-9FCC-DA5C73437923}" = VMware WSX "{FFD9383C-01D5-4897-A954-43AF599AED30}" = tools-windows "7-Zip" = 7-Zip 9.20 "ActiveTouchMeetingClient" = Cisco WebEx Meetings "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 12.0 "Advanced Audio FX Engine" = Advanced Audio FX Engine "Dell Webcam Central" = Dell Webcam Central "Diablo III" = Diablo III "ESET Online Scanner" = ESET Online Scanner v3 "HTPE3" = HyperTerminal Private Edition v6.3 "InstallShield_{B1EB7FFF-6E44-43D8-869D-B78E44CD3E0F}" = TI USB 3.0 Host Controller Driver "LG PC Suite IV" = LG PC Suite IV "Mozilla Firefox 21.0 (x86 pl)" = Mozilla Firefox 21.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Nmap" = Nmap 6.01 "Notepad++" = Notepad++ "Office14.PROPLUSR" = Microsoft Office Professional Plus 2010 "Office14.VISIOR" = Microsoft Visio Professional 2010 "Office15.LYNCENTRY" = Microsoft Lync Basic 2013 "OpenAL" = OpenAL "ProInst" = Intel PROSet Wireless "TeamViewer 8" = TeamViewer 8 "Totalcmd" = Total Commander (Remove or Repair) "TrueCrypt" = TrueCrypt "Unisphere Service Manager" = Unisphere Service Manager "Unisphere Storage System Initialization" = Unisphere Storage System Initialization "Unisphere Storage System Initialization Wizard" = Unisphere Storage System Initialization Wizard 1.1.33.10041 "Unisphere VNX Client" = Unisphere VNX Client "VMware_Workstation" = VMware Workstation "WinPcapInst" = WinPcap 4.1.2 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-5604814-1096987149-2402934779-2229\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "GoToMeeting" = GoToMeeting 5.4.0.1082 [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-06-10 08:13:42 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: WINWORD.EXE, wersja: 14.0.6129.5000, sygnatura czasowa: 0x5082f354 Nazwa modułu powodującego błąd: MSVCR90.dll, wersja: 9.0.30729.6161, sygnatura czasowa: 0x4dace5b9 Kod wyjątku: 0xc0000417 Przesunięcie błędu: 0x000320f0 Identyfikator procesu powodującego błąd: 0x26fc Godzina uruchomienia aplikacji powodującej błąd: 0x01ce65aee470c361 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Microsoft Office\Office14\WINWORD.EXE Ścieżka modułu powodującego błąd: C:\windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll Identyfikator raportu: 307a718a-d1c7-11e2-8262-4c80934b1e3b Error - 2013-06-10 11:21:37 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: iked.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4c9fc835 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.17725, sygnatura czasowa: 0x4ec4aa8e Kod wyjątku: 0xc0000374 Przesunięcie błędu: 0x00000000000c40f2 Identyfikator procesu powodującego błąd: 0x9bc Godzina uruchomienia aplikacji powodującej błąd: 0x01ce5ddf0e7261cb Ścieżka aplikacji powodującej błąd: C:\Program Files\ShrewSoft\VPN Client\iked.exe Ścieżka modułu powodującego błąd: C:\windows\SYSTEM32\ntdll.dll Identyfikator raportu: 70f77ef0-d1e1-11e2-8262-4c80934b1e3b Error - 2013-06-11 04:27:25 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: dtpd.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4c7f525b Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.17725, sygnatura czasowa: 0x4ec4aa8e Kod wyjątku: 0xc0000374 Przesunięcie błędu: 0x00000000000c40f2 Identyfikator procesu powodującego błąd: 0x954 Godzina uruchomienia aplikacji powodującej błąd: 0x01ce5ddf0e289723 Ścieżka aplikacji powodującej błąd: C:\Program Files\ShrewSoft\VPN Client\dtpd.exe Ścieżka modułu powodującego błąd: C:\windows\SYSTEM32\ntdll.dll Identyfikator raportu: be158fa0-d270-11e2-8262-4c80934b1e3b Error - 2013-06-11 04:27:32 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: iked.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4c9fc835 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.17725, sygnatura czasowa: 0x4ec4aa8e Kod wyjątku: 0xc0000374 Przesunięcie błędu: 0x00000000000c40f2 Identyfikator procesu powodującego błąd: 0x4dc Godzina uruchomienia aplikacji powodującej błąd: 0x01ce65ee32cba34f Ścieżka aplikacji powodującej błąd: C:\Program Files\ShrewSoft\VPN Client\iked.exe Ścieżka modułu powodującego błąd: C:\windows\SYSTEM32\ntdll.dll Identyfikator raportu: c26e30cb-d270-11e2-8262-4c80934b1e3b Error - 2013-06-11 04:29:22 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: dtpd.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4c7f525b Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.17725, sygnatura czasowa: 0x4ec4aa8e Kod wyjątku: 0xc0000374 Przesunięcie błędu: 0x00000000000c40f2 Identyfikator procesu powodującego błąd: 0x2704 Godzina uruchomienia aplikacji powodującej błąd: 0x01ce667d7ee865b8 Ścieżka aplikacji powodującej błąd: C:\Program Files\ShrewSoft\VPN Client\dtpd.exe Ścieżka modułu powodującego błąd: C:\windows\SYSTEM32\ntdll.dll Identyfikator raportu: 03dad475-d271-11e2-8262-4c80934b1e3b Error - 2013-06-11 04:29:30 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: iked.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4c9fc835 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.17725, sygnatura czasowa: 0x4ec4aa8e Kod wyjątku: 0xc0000374 Przesunięcie błędu: 0x00000000000c40f2 Identyfikator procesu powodującego błąd: 0x60ec Godzina uruchomienia aplikacji powodującej błąd: 0x01ce667d84f5039c Ścieżka aplikacji powodującej błąd: C:\Program Files\ShrewSoft\VPN Client\iked.exe Ścieżka modułu powodującego błąd: C:\windows\SYSTEM32\ntdll.dll Identyfikator raportu: 08a8818f-d271-11e2-8262-4c80934b1e3b Error - 2013-06-11 04:35:11 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = WinMgmt | ID = 10 Description = Error - 2013-06-11 06:50:38 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = SideBySide | ID = 16842832 Description = Nie można wygenerować kontekstu aktywacji dla „c:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe”. Błąd w pliku manifestu lub w pliku zasad „” w wierszu . Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Składnik 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error - 2013-06-11 14:08:17 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = WinMgmt | ID = 10 Description = Error - 2013-06-11 14:59:30 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = WinMgmt | ID = 10 Description = [ Dell Events ] Error - 2011-12-15 14:08:11 | Computer Name = a-Komputer | Source = DataSafe | ID = 17 Description = Proces został przerwany przed zakończeniem. [ System Events ] Error - 2013-06-11 14:52:05 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = Application Popup | ID = 1060 Description = Ładowanie sterownika \??\C:\ComboFix\catchme.sys zostało zablokowane z powodu niezgodności z tym systemem. Skontaktuj się z dostawcą oprogramowania w celu uzyskania zgodnej wersji sterownika. Error - 2013-06-11 14:54:46 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = Service Control Manager | ID = 7030 Description = Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error - 2013-06-11 14:54:55 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = Service Control Manager | ID = 7030 Description = Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error - 2013-06-11 14:55:08 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = Ntfs | ID = 262281 Description = Domyślny menedżer zasobów transakcji w woluminie P: napotkał błąd niepowtarzający operacji i nie można go uruchomić. Dane zawierają kod błędu. Error - 2013-06-11 14:56:16 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = volsnap | ID = 393241 Description = Kopie w tle woluminu C: zostały usunięte, ponieważ nie można było powiększyć magazynu kopii w tle. Rozważ zmniejszenie obciążenia We/Wy w systemie lub wybierz wolumin magazynu kopii w tle, który nie jest kopiowany w tle. Error - 2013-06-11 14:59:25 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = NETLOGON | ID = 5719 Description = Ten komputer nie może skonfigurować zabezpieczonej sesji z kontrolerem domeny w domenie domena z następującego powodu: %%1311 To może powodować problemy z uwierzytelnianiem. Upewnij się, że ten komputer jest podłączony do sieci. Jeżeli problem się nie rozwiąże, skontaktuj się z administratorem domeny. INFORMACJE DODATKOWE Jeżeli ten komputer jest kontrolerem domeny dla określonej domeny, konfiguruje zabezpieczoną sesję z emulatorem podstawowego kontrolera domeny w określonej domenie. W przeciwnym przypadku komputer może skonfigurować zabezpieczoną sesję z dowolnym kontrolerem domeny w określonej domenie. Error - 2013-06-11 15:00:11 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = Microsoft-Windows-GroupPolicy | ID = 1129 Description = Przetwarzanie zasad grupy nie powiodło się z powodu braku łączności sieciowej z kontrolerem domeny. To może być stan przejściowy. Po połączeniu komputera z kontrolerem domeny i pomyślnym przetworzeniu zasad grupy powinien zostać wygenerowany komunikat o powodzeniu. Jeśli komunikat o powodzeniu nie zostanie wyświetlony w ciągu kilku godzin, skontaktuj się z administratorem. Error - 2013-06-11 15:00:13 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = Microsoft-Windows-GroupPolicy | ID = 1129 Description = Przetwarzanie zasad grupy nie powiodło się z powodu braku łączności sieciowej z kontrolerem domeny. To może być stan przejściowy. Po połączeniu komputera z kontrolerem domeny i pomyślnym przetworzeniu zasad grupy powinien zostać wygenerowany komunikat o powodzeniu. Jeśli komunikat o powodzeniu nie zostanie wyświetlony w ciągu kilku godzin, skontaktuj się z administratorem. Error - 2013-06-11 15:01:32 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Usługa buforowania czcionek platformy Windows Presentation Foundation, wersja 3.0.0.0 z powodu następującego błędu: %%31 Error - 2013-06-11 15:03:05 | Computer Name = ITE-VOSTRO-GR1.domena.pl | Source = TermService | ID = 1067 Description = < End of report >