OTL Extras logfile created on: 2013-07-12 11:22:57 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Gigi\Desktop\Nowy folder (4) 64bit- Enterprise Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 1,74 Gb Available Physical Memory | 58,07% Memory free 6,00 Gb Paging File | 4,45 Gb Available in Paging File | 74,21% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 97,56 Gb Total Space | 32,24 Gb Free Space | 33,05% Space Free | Partition Type: NTFS Drive D: | 135,22 Gb Total Space | 133,84 Gb Free Space | 98,98% Space Free | Partition Type: NTFS Drive E: | 5,16 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Computer Name: GIGI-KOMPUTER | User Name: Gigi | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-3574983524-1031855739-1646550541-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htafile [open] -- "%1" %* inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L" Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htafile [open] -- "%1" %* inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L" Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0F4F5937-037C-4E86-BE1C-2C878897C86E}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{1131C1CE-30CD-4563-A94E-CC7D02AD903C}" = lport=7850 | protocol=6 | dir=in | name=war thunder | "{26918E5F-0AA0-4F62-9EE0-6B5ED242544B}" = lport=6881 | protocol=6 | dir=in | name=war thunder | "{2709FE4D-3E94-473B-80AE-2C66F90A635F}" = lport=3478 | protocol=17 | dir=in | name=war thunder | "{2D4DC53C-944F-4C20-86E7-68E3BCFE44FE}" = lport=58004 | protocol=6 | dir=in | name=pando media booster | "{2EDE863F-2E44-4422-A21C-D19695B2FC0C}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{3E56FEB9-4AFF-479C-BEAA-403C51F055D4}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{5C3CB5CB-28AB-4192-8DB9-CBCC50D27290}" = lport=56503 | protocol=17 | dir=in | name=pando media booster | "{618E76EF-A8DB-4028-A10B-04DEF7427016}" = lport=58004 | protocol=17 | dir=in | name=pando media booster | "{63F58865-3092-4BD0-933B-C6FECFC76DE5}" = lport=27022 | protocol=6 | dir=in | name=war thunder | "{66315298-07CE-4700-A970-906FD32C2594}" = rport=137 | protocol=17 | dir=out | app=system | "{716576C6-2CA2-418E-A35B-40D9C16EA4EC}" = lport=445 | protocol=6 | dir=in | app=system | "{73E1066C-E733-4495-89C8-8C76023D55A7}" = lport=8090 | protocol=6 | dir=in | name=war thunder | "{785A259B-6F6C-4FAB-A948-D15BBD69E040}" = lport=137 | protocol=17 | dir=in | app=system | "{788038E0-5C79-4AB1-B3A9-2FD9F47D275E}" = lport=56503 | protocol=6 | dir=in | name=pando media booster | "{7E0FD429-4A63-4B71-A8D4-F4DB554FF979}" = lport=20443 | protocol=6 | dir=in | name=war thunder | "{88799B65-039C-462C-87AE-4A4A81161562}" = lport=80 | protocol=6 | dir=in | name=war thunder | "{8C049B6E-0620-4F86-960A-B25CBAB4B53B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{8CF0D369-516E-4557-99B3-5D625018617B}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{8ECB7CCD-F073-43E9-94E7-849D5E5B3E0A}" = rport=10243 | protocol=6 | dir=out | app=system | "{9CAE4D54-4B25-4CF3-8D16-1FD17F1EB300}" = rport=139 | protocol=6 | dir=out | app=system | "{A1B6D01D-A7DC-4C30-99C1-A9FCC8F2131C}" = lport=138 | protocol=17 | dir=in | app=system | "{A9E3F71D-9ECE-4846-9937-30904702B299}" = lport=58004 | protocol=17 | dir=in | name=pando media booster | "{AD604CB8-56BD-4379-A3B7-61EE9A85783B}" = lport=56503 | protocol=17 | dir=in | name=pando media booster | "{B083A4B9-6320-4ED1-9BB0-AB9DC3C07899}" = lport=58004 | protocol=6 | dir=in | name=pando media booster | "{B543A132-F07B-4714-98C3-F453AE343D00}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe | "{B5A968C2-53E3-4B3C-8DC2-67680EE5B237}" = lport=56503 | protocol=6 | dir=in | name=pando media booster | "{B6F7EB2D-F261-4B87-8E70-3227CB107EE2}" = lport=33333 | protocol=6 | dir=in | name=war thunder | "{BE2C5B67-5FA6-41F1-95FD-A8967213DB19}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{C0A7A891-15D5-4EBA-9065-0052034C6369}" = lport=10243 | protocol=6 | dir=in | app=system | "{C16D49E0-0528-4DF8-A848-5DE699538C92}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{C47CB8E7-7A55-4635-8E67-ACE150723C98}" = lport=2869 | protocol=6 | dir=in | app=system | "{D4AE0686-EA19-499D-B233-6C0E94FC7729}" = rport=138 | protocol=17 | dir=out | app=system | "{D67AD260-6C3B-4D0C-961B-5EF36BE341FC}" = lport=443 | protocol=6 | dir=in | name=war thunder | "{D694378A-6737-4AFC-A0C9-4C50DCECC73E}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{DFBA0DB5-D5D4-4072-A91D-FDF3C412560B}" = lport=20010 | protocol=17 | dir=in | name=war thunder | "{E783CCEF-872B-4F49-8142-4B2964788255}" = rport=445 | protocol=6 | dir=out | app=system | "{E7F9A56D-CD1A-4708-8005-DB49165044D5}" = lport=139 | protocol=6 | dir=in | app=system | "{FB498098-6DEB-44B7-90DB-E0EE5CFDAE11}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{FCC54EFC-547F-4183-A8A2-05DC02B2219B}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{01C59CED-F2E5-4FF3-AFCF-537A4B9B9593}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{0D91200F-0B8F-4941-AA0F-B8DADF57169A}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{10520A70-6D77-4B2D-9E49-0D64F09026A1}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{13198BE9-9566-4AF3-AD08-88000D3B1176}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{144105C8-F5B8-4D58-BB25-4FF8492CF146}" = protocol=17 | dir=in | app=c:\program files (x86)\gas powered games\supreme commander\bin\supremecommander.exe | "{1561C18D-3D5C-4B04-978F-799373B37AEF}" = protocol=6 | dir=in | app=c:\users\gigi\appdata\roaming\utorrent\utorrent.exe | "{1786CFC1-8BCB-4A2C-B520-78E6EA213074}" = protocol=17 | dir=in | app=c:\program files (x86)\war thunder\launcher.exe | "{192AA510-0660-4152-9A0B-E6FF08EC0A07}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{289DCD9D-6F10-4D7F-A7C4-63C940CDAD88}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{2E8A711B-447C-4A36-AA2A-B8D628A175E2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{3B912D98-E120-41C4-8442-450F36F5A757}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{3CC05082-882E-4466-A2C0-88E7F372FFBC}" = protocol=17 | dir=in | app=c:\users\gigi\appdata\roaming\utorrent\utorrent.exe | "{3FCF762A-87D7-4EDB-81AD-D2C800C39DB8}" = protocol=6 | dir=out | app=system | "{42A44651-ADD5-468A-8E92-F4A9E9E7D32C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{4AA6C443-A3DF-4A7F-952B-439882FFB4F2}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{4B13C0E9-BAE5-473E-930C-8ADFAAB65353}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{4B27A391-4C3C-4FCC-92FA-B1568079352D}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{52DA0763-7E26-4E98-97B1-F6DBC0424A32}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{53FFDC85-7DCC-4EAD-B599-C48CE74D73F1}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{7BBC2142-9D41-4B8A-8317-9E40682111FB}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{7FC88C45-8110-48C4-A48B-7A2449141EBA}" = protocol=17 | dir=in | app=c:\windows\syswow64\muzapp.exe | "{8B122539-839D-4D77-B250-DA39E617814C}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{8BA52A75-F50C-4085-80FA-E33B3979A945}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{8CA8CD30-230B-46B5-88EE-ADA77CAD3F72}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{90E7AE94-7854-4A01-A0C5-30486F7A4414}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{92C4E490-5023-4045-82E7-766B73D360CC}" = protocol=6 | dir=in | app=c:\windows\syswow64\muzapp.exe | "{98E1926C-5E5F-4D61-81C6-875E6D6520E8}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{9C26D6ED-3268-49C1-88F8-49FB8DAC2E61}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{A0763F9B-4259-4638-B17D-7F1B08CBB0B6}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{A22AF14C-F67F-470A-88FA-19DAB7A00018}" = protocol=6 | dir=in | app=c:\program files (x86)\gas powered games\supreme commander\bin\supremecommander.exe | "{A4797D6E-D965-49F6-9875-9FFC23E8AAC4}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{AE105312-5107-457E-B567-D124244E55CC}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{B594D65F-8715-4043-A114-1FFB5A2EB608}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{CC8570BD-D297-48CC-8470-707305C90659}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{CEDFE5F8-DBC0-4DFA-9F6E-417DF576AE48}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{D47226D6-1D7A-491C-A2A8-14FB851B649F}" = protocol=6 | dir=in | app=c:\program files (x86)\war thunder\launcher.exe | "{EC6863D6-BFB6-442C-9188-CFC0B8FF95FF}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{F03CBD66-0CA3-4087-8CD7-149B6900A17A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{F4C0D924-728D-4691-9521-23271341253F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{F717538C-04D4-4D90-8598-E266FC7E1800}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "TCP Query User{1AD6BD0A-0CA2-4AA4-A0FE-169E98142A59}C:\program files (x86)\nowy folder\hl.exe" = protocol=6 | dir=in | app=c:\program files (x86)\nowy folder\hl.exe | "TCP Query User{35ED656A-3A78-4E3C-896D-624EDB6D110A}C:\program files\java\jre8\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre8\bin\javaw.exe | "TCP Query User{3804BC45-EA4F-4BE9-AF23-A49A6A677E66}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe | "TCP Query User{668CC7E9-C8E1-4FFD-9491-0A7E981D4642}C:\program files (x86)\forged alliance forever\faforever.exe" = protocol=6 | dir=in | app=c:\program files (x86)\forged alliance forever\faforever.exe | "TCP Query User{6A77212F-ECC2-40D7-9391-099E03B74915}C:\program files (x86)\java\jre7\bin\java.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\java.exe | "TCP Query User{6C863F15-7619-48D2-8F98-D8D3A9E6BCB3}C:\totalcmd\totalcmd64.exe" = protocol=6 | dir=in | app=c:\totalcmd\totalcmd64.exe | "TCP Query User{6D40F0A8-ADDC-4726-8001-BA98E6F16276}C:\users\gigi\downloads\utorrent.exe" = protocol=6 | dir=in | app=c:\users\gigi\downloads\utorrent.exe | "TCP Query User{9EF9C67E-DFBB-4C97-B042-C5EFD1C0F329}C:\users\gigi\downloads\utorrent.exe" = protocol=6 | dir=in | app=c:\users\gigi\downloads\utorrent.exe | "TCP Query User{A23D1B59-E9D5-4F3E-8415-0858AFFF9DC1}C:\program files (x86)\gas powered games\gpgnet\gpg.multiplayer.client.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gas powered games\gpgnet\gpg.multiplayer.client.exe | "TCP Query User{B6D5364F-4E29-49F6-A1A6-C3332B1566FE}C:\program files\java\jre8\launch4j-tmp\minecraftzyczu.exe" = protocol=6 | dir=in | app=c:\program files\java\jre8\launch4j-tmp\minecraftzyczu.exe | "TCP Query User{B992259D-B12D-4E45-A6E4-5289CF3F5182}C:\program files\counter strike 1.6\hl.exe" = protocol=6 | dir=in | app=c:\program files\counter strike 1.6\hl.exe | "TCP Query User{C725C708-19BE-4885-9E37-01BF7B929894}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "TCP Query User{D3FB24B2-6C33-4DB7-9539-50C8AB8C5FDA}C:\program files (x86)\rockstar games\gta san andreas\gta_sa.exe" = protocol=6 | dir=in | app=c:\program files (x86)\rockstar games\gta san andreas\gta_sa.exe | "UDP Query User{0FB13737-9380-4463-B107-FED87D9C014F}C:\users\gigi\downloads\utorrent.exe" = protocol=17 | dir=in | app=c:\users\gigi\downloads\utorrent.exe | "UDP Query User{1308E32C-1BBD-4207-BE81-2D6BED8F77C3}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "UDP Query User{31CECE3C-8390-4817-A0AF-A3FF33D1D504}C:\program files\counter strike 1.6\hl.exe" = protocol=17 | dir=in | app=c:\program files\counter strike 1.6\hl.exe | "UDP Query User{71B9DE24-3C72-4F96-AA16-250EA295F6AB}C:\users\gigi\downloads\utorrent.exe" = protocol=17 | dir=in | app=c:\users\gigi\downloads\utorrent.exe | "UDP Query User{78F70426-B5C5-47DA-A9A1-4980A6E90AA2}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe | "UDP Query User{A754CBC7-6577-4A51-B4BB-E1F6529E5239}C:\program files\java\jre8\launch4j-tmp\minecraftzyczu.exe" = protocol=17 | dir=in | app=c:\program files\java\jre8\launch4j-tmp\minecraftzyczu.exe | "UDP Query User{BA813946-1FE5-4CCB-8C17-629208BD4C41}C:\program files\java\jre8\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre8\bin\javaw.exe | "UDP Query User{C6B3FFBB-7B6A-472C-BBC5-3FA547D0D57C}C:\totalcmd\totalcmd64.exe" = protocol=17 | dir=in | app=c:\totalcmd\totalcmd64.exe | "UDP Query User{CE6A5CD0-1AEB-4563-838C-08D60A160C45}C:\program files (x86)\nowy folder\hl.exe" = protocol=17 | dir=in | app=c:\program files (x86)\nowy folder\hl.exe | "UDP Query User{E479E56F-1321-421A-B78E-35078F66A217}C:\program files (x86)\rockstar games\gta san andreas\gta_sa.exe" = protocol=17 | dir=in | app=c:\program files (x86)\rockstar games\gta san andreas\gta_sa.exe | "UDP Query User{EA396921-240B-4D8E-8278-F579E1E1114F}C:\program files (x86)\gas powered games\gpgnet\gpg.multiplayer.client.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gas powered games\gpgnet\gpg.multiplayer.client.exe | "UDP Query User{F971BB7D-43B7-4B56-972D-F57436FC6010}C:\program files (x86)\java\jre7\bin\java.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\java.exe | "UDP Query User{FFA24F5F-B478-4010-A731-9AE4BA957C84}C:\program files (x86)\forged alliance forever\faforever.exe" = protocol=17 | dir=in | app=c:\program files (x86)\forged alliance forever\faforever.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{26A24AE4-039D-4CA4-87B4-2F86418000FF}" = Java 8 (64-bit) "{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1" = Revo Uninstaller Pro 3.0.5 "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5 RC "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 320.18 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 320.18 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 320.18 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 1.5 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 320.18 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.12.1031 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 4.11.9 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones "{E6F5B546-C708-3CB3-953D-20AA7C6DD48C}" = Microsoft .NET Framework 4.5 RC "Totalcmd64" = Total Commander 64-bit (Remove or Repair) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1" = Media Player Classic - Home Cinema v. 1.3.1249.0 "{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 25 "{3F3A5785-81E3-4065-B643-B4933790AE1E}" = Camtasia Studio 8 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.5 "{4e7c3936-7c06-4ef0-928b-c5d92f372578}_is1" = Craften Terminal 3.3.4897.28268 "{6D0B6984-BAA2-477D-9C7C-F7E9DB3C5C57}_is1" = Counter Strike 1.6 wersja CS 1.6 "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{80832F20-7027-4B59-BC62-95740EC7F094}" = Supreme Commander (TM) "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}" = NVIDIA PhysX "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{92606477-9366-4D3B-8AE3-6BE4B29727AB}" = League of Legends "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{AC76BA86-7AD7-1045-7B44-A95000000001}" = Adobe Reader 9.5.5 - Polish "{C194D333-B84A-4BB7-B35E-060732D98DC4}" = GPGNet "{C662EBAD-0606-414B-8D1A-B0D4C435D78A}" = Forged Alliance Forever "{C779648B-410E-4BBA-B75B-5815BCEFE71D}" = Safari "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{D6CD26FD-CD7F-4C86-96A3-EEBFABE5FE47}" = Kies "{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1" = War Thunder Launcher 1.0.1.246 "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "avast" = avast! Free Antivirus "Counter-Strike 1.6" = Counter-Strike 1.6 v48 "ENTERPRISE" = Microsoft Office Enterprise 2007 "ESET Online Scanner" = ESET Online Scanner v3 "InstallShield_{D6CD26FD-CD7F-4C86-96A3-EEBFABE5FE47}" = Kies "iSafe" = iSafe "Mirillis Action!" = Action! "Mozilla Firefox 15.0.1 (x86 pl)" = Mozilla Firefox 15.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "MTA:SA 1.3" = MTA:SA v1.3.3 "Notepad++" = Notepad++ "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Odkurzacz 13.3_is1" = Odkurzacz "screenSHU" = screenSHU - the fastest screen capture ever. "StarBurn_is1" = StarBurn Version 15.0 (Build 0x20130418) "uTorrent" = µTorrent "Windows 7 - Codec Pack" = Windows 7 Codec Pack 4.0.6 "WinRAR archiver" = WinRAR 4.20 (32-bitowy) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3574983524-1031855739-1646550541-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Mozilla Firefox 22.0 (x86 pl)" = Mozilla Firefox 22.0 (x86 pl) "Samsung New PC Studio Packages" = Samsung New PC Studio Packages [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3574983524-1031855739-1646550541-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Samsung New PC Studio Packages" = Samsung New PC Studio Packages [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-07-10 13:22:58 | Computer Name = Gigi-Komputer | Source = VSS | ID = 8194 Description = Error - 2013-07-10 14:04:51 | Computer Name = Gigi-Komputer | Source = SideBySide | ID = 16842832 Description = Nie można wygenerować kontekstu aktywacji dla „C:\Users\Gigi\Desktop\NOD.exe”. Błąd w pliku manifestu lub w pliku zasad „” w wierszu . Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest. Składnik 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest. Error - 2013-07-11 03:35:22 | Computer Name = Gigi-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: firefox.exe, wersja: 22.0.0.4917, sygnatura czasowa: 0x51c06b1b Nazwa modułu powodującego błąd: xul.dll, wersja: 22.0.0.4917, sygnatura czasowa: 0x51c06a5b Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00173668 Identyfikator procesu powodującego błąd: 0xd74 Godzina uruchomienia aplikacji powodującej błąd: 0x01ce7e08ffa6d1e0 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Mozilla Firefox\firefox.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Mozilla Firefox\xul.dll Identyfikator raportu: 71348550-e9fc-11e2-b326-001d7d5b49cd Error - 2013-07-11 05:54:02 | Computer Name = Gigi-Komputer | Source = SideBySide | ID = 16842832 Description = Nie można wygenerować kontekstu aktywacji dla „C:\Users\Gigi\Downloads\SoftonicDownloader_dla_java-8-jre-preview-64.exe”. Błąd w pliku manifestu lub w pliku zasad „” w wierszu . Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest. Składnik 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest. Error - 2013-07-11 09:48:54 | Computer Name = Gigi-Komputer | Source = VSS | ID = 8194 Description = Error - 2013-07-12 04:41:25 | Computer Name = Gigi-Komputer | Source = Software Protection Platform Service | ID = 8193 Description = Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu: 0x800706B5 Error - 2013-07-12 04:45:42 | Computer Name = Gigi-Komputer | Source = VSS | ID = 13 Description = Error - 2013-07-12 04:45:42 | Computer Name = Gigi-Komputer | Source = VSS | ID = 8193 Description = Error - 2013-07-12 04:45:42 | Computer Name = Gigi-Komputer | Source = VSS | ID = 13 Description = Error - 2013-07-12 04:45:42 | Computer Name = Gigi-Komputer | Source = VSS | ID = 8193 Description = [ System Events ] Error - 2013-07-12 05:32:19 | Computer Name = Gigi-Komputer | Source = Service Control Manager | ID = 7031 Description = Usługa Konstruktor punktów końcowych audio systemu Windows niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-07-12 05:32:19 | Computer Name = Gigi-Komputer | Source = Service Control Manager | ID = 7031 Description = Usługa Pliki trybu offline niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 300000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-07-12 05:32:19 | Computer Name = Gigi-Komputer | Source = Service Control Manager | ID = 7031 Description = Usługa Usługa nasłuchująca grup domowych niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-07-12 05:32:19 | Computer Name = Gigi-Komputer | Source = Service Control Manager | ID = 7031 Description = Usługa Połączenia sieciowe niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 100 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-07-12 05:32:19 | Computer Name = Gigi-Komputer | Source = Service Control Manager | ID = 7031 Description = Usługa Usługa Asystent zgodności programów niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-07-12 05:32:19 | Computer Name = Gigi-Komputer | Source = Service Control Manager | ID = 7031 Description = Usługa Wstępne ładowanie do pamięci niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-07-12 05:32:19 | Computer Name = Gigi-Komputer | Source = Service Control Manager | ID = 7031 Description = Usługa Klient śledzenia łączy rozproszonych niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 300000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-07-12 05:32:19 | Computer Name = Gigi-Komputer | Source = Service Control Manager | ID = 7031 Description = Usługa Menedżer sesji Menedżera okien pulpitu niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-07-12 05:32:19 | Computer Name = Gigi-Komputer | Source = Service Control Manager | ID = 7031 Description = Usługa Usługa modułu wyliczającego urządzenia przenośne niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 300000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-07-12 05:32:19 | Computer Name = Gigi-Komputer | Source = Service Control Manager | ID = 7031 Description = Usługa Windows Driver Foundation — User-mode Driver Framework niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. < End of report >