OTL Extras logfile created on: 2013-08-23 09:44:12 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Dawid\Desktop 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16660) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 6,00 Gb Total Physical Memory | 4,41 Gb Available Physical Memory | 73,44% Memory free 12,00 Gb Paging File | 10,36 Gb Available in Paging File | 86,35% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 70,00 Gb Total Space | 29,33 Gb Free Space | 41,90% Space Free | Partition Type: NTFS Drive D: | 861,41 Gb Total Space | 799,26 Gb Free Space | 92,79% Space Free | Partition Type: NTFS Computer Name: KOMPUTER | User Name: Dawid | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2428475161-3953419923-4234922757-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- D:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- "D:\Program Files\Microsoft Office\Office15\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "D:\Program Files\Microsoft Office\Office15\msohtmed.exe" /p %1 (Microsoft Corporation) http [open] -- Reg Error: Key error. https [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "D:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "D:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- "D:\Program Files\Microsoft Office\Office15\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "D:\Program Files\Microsoft Office\Office15\msohtmed.exe" /p %1 (Microsoft Corporation) http [open] -- Reg Error: Key error. https [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "D:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "D:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{F5BB8BFD-1435-4A70-B8AE-749EA468D5CB}" = lport=6004 | protocol=17 | dir=in | app=d:\program files\microsoft office\office15\outlook.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{07F961BF-071C-4230-80D6-8522B2947C90}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | "{11C6BEA9-094B-4B00-9C8E-FB5283AE560B}" = protocol=17 | dir=in | app=c:\users\dawid\appdata\roaming\bittorrent\bittorrent.exe | "{1440B33C-724F-44F2-9834-0228179DDD34}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqtra08.exe | "{163B2E80-7813-4AA8-86A7-B9A7371E812D}" = protocol=6 | dir=in | app=d:\program files (x86)\napiprojekt\napisy.exe | "{1714D832-D77B-4A9D-888D-0268F69A4451}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpzwiz01.exe | "{197BA463-7EC8-4471-BA2B-FF288A17B0BB}" = protocol=17 | dir=in | app=d:\program files (x86)\napiprojekt\napisy.exe | "{1B03274C-D3F3-46BB-897C-5F2DA2F306EC}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgm.exe | "{23CDCEAA-853F-4B9F-B431-94D657C97223}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqste08.exe | "{2425AAED-0962-4524-A453-656E23F3DD2D}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqsudi.exe | "{26CF4549-1BF8-4E68-B095-07C13C7ECE00}" = dir=in | app=c:\program files (x86)\hp\hp software update\hpwucli.exe | "{2B112646-4EC0-4CA7-A6E5-C0A6B2B1B71F}" = protocol=6 | dir=in | app=c:\users\dawid\appdata\roaming\bittorrent\bittorrent.exe | "{2E65DACF-F67C-4290-8603-34D8B45BC7B7}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steam.exe | "{2F988B1F-1A46-4A3C-8201-87866A098430}" = protocol=6 | dir=in | app=d:\program files (x86)\winamp\winamp.exe | "{3852C1DF-6942-43FE-8770-FE3F78F70E66}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\wormsrevolution\wormsrevolution.exe | "{3D8B70FE-26F0-4091-808E-38E143E4DE2B}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\torchlight ii\modlauncher.exe | "{4593D00C-C537-4F9E-9F14-94731DE24455}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgpc01.exe | "{560DC350-C867-4CB4-980B-78828649C007}" = protocol=17 | dir=in | app=d:\program files\microsoft office\office15\ucmapi.exe | "{5A724939-C9C7-49FF-AE02-A7DF7836EB07}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqfxt08.exe | "{5F06B119-C8E9-4C49-BC12-AE0A1C18ED74}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{617F8B52-7CD1-4766-8468-3DB857866665}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{63FA5AF5-E917-4583-8150-545566687FBB}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqkygrp.exe | "{6477E41B-A3A9-49E2-9F9D-BCBA27C17DA7}" = protocol=6 | dir=in | app=d:\gry\might & magic heroes vi\might & magic heroes vi.exe | "{65326497-402D-421D-8795-FDE0DDEB1982}" = protocol=17 | dir=in | app=d:\program files\microsoft office\office15\lync.exe | "{66B06EC3-5AFF-4AF8-A80E-93BB7002291F}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{66D8102A-8104-4890-9EB5-D8B62D1D17D4}" = protocol=17 | dir=in | app=c:\users\dawid\appdata\local\temp\7zs409c\hpdiagnosticcoreui.exe | "{68450014-662E-458C-8BCC-C76C428681C9}" = protocol=17 | dir=in | app=d:\program files (x86)\winamp\winamp.exe | "{6EA4E89E-D5C4-4536-BF16-2FB4E2F74D46}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposfx08.exe | "{6ED745CB-2D90-4A63-9C7C-2DFB48C8D619}" = dir=in | app=c:\program files (x86)\hp\digital imaging\smart web printing\smartwebprintexe.exe | "{72FD0768-4158-474D-86A8-8C80694556FC}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpiscnapp.exe | "{79841B13-67D2-4976-8404-20B49794CCC0}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{84575550-F3C2-4D23-89F6-0859E8305F28}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steam.exe | "{86033634-0286-4512-A8B5-03029B4A4773}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgh.exe | "{8A2E5B34-33F5-41DD-BA25-57068B53DC02}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposid01.exe | "{8BD1F92C-36C0-4B0F-8404-D4D9B8AA5414}" = protocol=6 | dir=in | app=c:\users\dawid\appdata\roaming\dropbox\bin\dropbox.exe | "{8C03CD88-09F4-4FF0-A2FD-447095E75BC0}" = protocol=17 | dir=in | app=d:\gry\need for speed(tm) most wanted\nfs13.exe | "{938CB342-1916-4197-B3B6-5AFFB8D25274}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{9778DC11-63CC-42EA-BE42-5301D3F642E8}" = protocol=6 | dir=in | app=d:\gry\need for speed(tm) most wanted\nfs13.exe | "{9B479CAC-5406-4FF8-8C34-9D9FE440922E}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{9EA12E6B-F00C-462B-9BCE-8FB0AD32FDE4}" = protocol=17 | dir=in | app=d:\program files\k2t\wtw\wtw.exe | "{A0A49857-DA2F-4614-BFA5-620B0ED0AE17}" = protocol=6 | dir=in | app=d:\program files\microsoft office\office15\ucmapi.exe | "{AC0CECCD-6154-4AAD-8A2E-B3DCF7BC48D3}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{AD0F8FBE-AA28-44BC-9D56-1EEF0A97AA6D}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\torchlight ii\modlauncher.exe | "{AE77BA76-3586-4879-AD67-9293574FC13B}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{AEEDC425-1A38-4675-A7AF-02AC417BD5C5}" = protocol=6 | dir=in | app=d:\program files\k2t\wtw\wtw.exe | "{B7D9E13A-717A-495C-86E6-0FAA81EF570E}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpfccopy.exe | "{B845A4FD-4A56-4A34-883C-C0BEFDF9CC62}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\wormsrevolution\wormsrevolution.exe | "{BB1B881E-F766-486A-87CE-013386ABF32B}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpoews01.exe | "{BC11311E-A4CE-4C65-8F78-5DDDE2F037FF}" = protocol=17 | dir=in | app=d:\gry\might & magic heroes vi\might & magic heroes vi.exe | "{BEA2BF90-A306-412D-9262-D694651A4795}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{BF216E1F-CD36-498C-BAAB-8840E6F64B9F}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqnrs08.exe | "{BF6E4AFD-7C27-44A8-B77F-E196D10554E0}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgplgtupl.exe | "{C635A97B-CF0A-42C6-B30B-0865D9F061A5}" = protocol=6 | dir=in | app=c:\users\dawid\appdata\local\temp\7zs409c\hpdiagnosticcoreui.exe | "{C6870758-C084-4DBE-B745-D65000CDAFEB}" = protocol=17 | dir=in | app=c:\users\dawid\appdata\roaming\dropbox\bin\dropbox.exe | "{CD5AC304-F718-4473-8F59-912D5DAF1A5E}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpofxs08.exe | "{CD6B971B-F47B-4592-9606-B0AA4C133881}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqpsapp.exe | "{CF66DE0F-F87D-4B0D-AE69-6B5F4E8458C6}" = dir=in | app=c:\program files (x86)\common files\hp\digital imaging\bin\hpqphotocrm.exe | "{D6A88BCE-AE01-45EC-9195-003D1E5ED08C}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{E1ECAF94-F9DE-4F64-AA5F-60CD471C35C7}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{E5BCB553-4E35-40D7-ABE7-9AF9543F7DDD}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqpse.exe | "{E7DBE802-1248-43D4-A288-B011EEB0A666}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqcopy2.exe | "{EDD23C71-EC3C-4283-9FF8-C8089CDC453D}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{EF4DEBAA-67AE-4E84-8C44-EE3B01C08124}" = dir=in | app=d:\program files (x86)\itunes\itunes.exe | "{F34C8951-DE9C-4CFD-93CF-552AC8633573}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{F3D2FE91-182D-4CEA-86D2-D50E4E6C1C21}" = protocol=6 | dir=in | app=d:\program files\microsoft office\office15\lync.exe | "{F482BDA7-FE2B-4C98-A9DC-B98D9A5DAFA7}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpofxm08.exe | "{F9712623-CCA1-418D-9EB8-E3202A8B8412}" = protocol=6 | dir=in | app=c:\programdata\esafe\egdpsvc.exe | "{FF789638-8CCF-4A98-8325-73CB700AD073}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "TCP Query User{320333E7-09F7-42D0-A10D-24ED062CC76B}C:\users\dawid\appdata\local\apps\2.0\btlqr617.xhx\a859nrln.c7w\laun...app_59711684aa47878d_0001.0021_75874090487f0510\launcher.exe" = protocol=6 | dir=in | app=c:\users\dawid\appdata\local\apps\2.0\btlqr617.xhx\a859nrln.c7w\laun...app_59711684aa47878d_0001.0021_75874090487f0510\launcher.exe | "TCP Query User{A80CA8C6-DD97-474C-A3DF-1C86A5EEDD9A}C:\users\dawid\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\dawid\appdata\roaming\spotify\spotify.exe | "TCP Query User{AAB32F05-6887-4151-B818-948F8AC7DFAD}C:\users\dawid\appdata\local\temp\kmsnano\qemu-system-i386.exe" = protocol=6 | dir=in | app=c:\users\dawid\appdata\local\temp\kmsnano\qemu-system-i386.exe | "TCP Query User{CD099836-1A6A-47DF-A762-9D62165783DA}D:\gry\ghost recon online\pdc-live\ghostrecononline.exe" = protocol=6 | dir=in | app=d:\gry\ghost recon online\pdc-live\ghostrecononline.exe | "UDP Query User{80B4551B-F095-48AF-AB6B-58F27CF36CEE}C:\users\dawid\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\dawid\appdata\roaming\spotify\spotify.exe | "UDP Query User{BA50677C-3DBB-44AE-9E57-CA96C2EDBC58}C:\users\dawid\appdata\local\apps\2.0\btlqr617.xhx\a859nrln.c7w\laun...app_59711684aa47878d_0001.0021_75874090487f0510\launcher.exe" = protocol=17 | dir=in | app=c:\users\dawid\appdata\local\apps\2.0\btlqr617.xhx\a859nrln.c7w\laun...app_59711684aa47878d_0001.0021_75874090487f0510\launcher.exe | "UDP Query User{C4512C2E-A40F-4433-824C-632595F26542}C:\users\dawid\appdata\local\temp\kmsnano\qemu-system-i386.exe" = protocol=17 | dir=in | app=c:\users\dawid\appdata\local\temp\kmsnano\qemu-system-i386.exe | "UDP Query User{EC6A24AA-1C1D-4C3B-A5D5-876672F66C2A}D:\gry\ghost recon online\pdc-live\ghostrecononline.exe" = protocol=17 | dir=in | app=d:\gry\ghost recon online\pdc-live\ghostrecononline.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{05EFBF37-0E52-4579-875C-7EEF0DFB4FCB}" = Network64 "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{1DF5019A-68B5-4ba1-8E59-E185C7B7FF11}" = Komunikator WTW 0.9.14.3742 "{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition) "{2F72F540-1F60-4266-9506-952B21D6640D}" = Apple Mobile Device Support "{427174C0-096E-40D9-9684-9C109BEE2CBF}" = iTunes "{55D55008-E5F6-47D6-B16F-B2A40D4D145F}" = 64 Bit HP CIO Components Installer "{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}" = Centrum obsługi urządzeń z systemem Windows Mobile "{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}" = Network64 "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{8E5DA9A6-7A9F-3A6F-BC5C-D6CBCA6A29C7}" = Microsoft .NET Framework 4 Extended PLK Language Pack "{90150000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2013 "{90150000-0015-0415-1000-0000000FF1CE}" = Microsoft Access MUI (Polish) 2013 "{90150000-0016-0415-1000-0000000FF1CE}" = Microsoft Excel MUI (Polish) 2013 "{90150000-0018-0415-1000-0000000FF1CE}" = Microsoft PowerPoint MUI (Polish) 2013 "{90150000-0019-0415-1000-0000000FF1CE}" = Microsoft Publisher MUI (Polish) 2013 "{90150000-001A-0415-1000-0000000FF1CE}" = Microsoft Outlook MUI (Polish) 2013 "{90150000-001B-0415-1000-0000000FF1CE}" = Microsoft Word MUI (Polish) 2013 "{90150000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Korrekturhilfen 2013 - Deutsch "{90150000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - English "{90150000-001F-0415-1000-0000000FF1CE}" = Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski "{90150000-002C-0415-1000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2013 "{90150000-0044-0415-1000-0000000FF1CE}" = Microsoft InfoPath MUI (Polish) 2013 "{90150000-006E-0415-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2013 "{90150000-0090-0415-1000-0000000FF1CE}" = Microsoft DCF MUI (Polish) 2013 "{90150000-00A1-0415-1000-0000000FF1CE}" = Microsoft OneNote MUI (Polish) 2013 "{90150000-00BA-0415-1000-0000000FF1CE}" = Microsoft Groove MUI (Polish) 2013 "{90150000-00C1-0000-1000-0000000FF1CE}" = Microsoft Office 32-bit Components 2013 "{90150000-00C1-0415-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Polish) 2013 "{90150000-00E1-0415-1000-0000000FF1CE}" = Microsoft Office OSM MUI (Polish) 2013 "{90150000-00E2-0415-1000-0000000FF1CE}" = Microsoft Office OSM UX MUI (Polish) 2013 "{90150000-012B-0415-1000-0000000FF1CE}" = Microsoft Lync MUI (Polish) 2013 "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 320.18 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 320.18 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 320.18 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 1.5 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 320.18 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.12.1031 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 4.11.9 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{B61ED343-0B14-4241-999C-490CB1A20DA4}" = HP Photosmart Officejet and Deskjet All-In-One Driver Software 13.0 Rel. B "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "HP Imaging Device Functions" = HP Imaging Device Functions 13.0 "HP Photosmart Essential" = HP Photosmart Essential 3.5 "HP Smart Web Printing" = HP Smart Web Printing 4.51 "HP Solution Center & Imaging Support Tools" = HP Solution Center 13.0 "HPExtendedCapabilities" = HP Customer Participation Program 13.0 "HPOCR" = OCR Software by I.R.I.S. 13.0 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft .NET Framework 4 Extended PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended "Office15.PROPLUS" = Microsoft Office Professional Plus 2013 "Shop for HP Supplies" = Shop for HP Supplies [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{06A1D88C-E102-4527-AF70-29FFD7AF215A}" = Scan "{0EF5BEA9-B9D3-46d7-8958-FB69A0BAEACC}" = Status "{104066F4-5897-4067-85D3-4C88B67CCF75}" = AIO_Scan "{175F0111-2968-4935-8F70-33108C6A4DE3}" = MarketResearch "{1EC71BFB-01A3-4239-B6AF-B1AE656B15C0}" = TrayApp "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 25 "{2E87F4AB-99BF-421C-AF7B-365A9C08549A}" = F300 "{2EEA7AA4-C203-4b90-A34F-19FB7EF1C81C}" = BufferChm "{2FF8C687-DB7D-4adc-A5DC-57983EC25046}" = DeviceDiscovery "{319D91C6-3D44-436C-9F79-36C0D22372DC}" = TP-LINK Wireless Configuration Utility "{3C92B2E6-380D-4fef-B4DF-4A3B4B669771}" = Copy "{43CDF946-F5D9-4292-B006-BA0D92013021}" = WebReg "{440B915A-0C85-45DB-92AE-75AE14704A64}" = Fax "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4A70EF07-7F88-4434-BB61-D1DE8AE93DD4}" = SolutionCenter "{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.6 "{4E7C28C7-D5DA-4E9F-A1CA-60490B54AE35}" = UnloadSupport "{55BD137D-5AC1-4BC4-9C08-DDCDC88A1B47}" = GIGABYTE Sim "{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}" = Obsługa programów Apple "{5E6D6161-5509-4f55-9372-1E01792F843A}" = F300_Help "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{62FE0726-9652-4CD2-9F09-C769D8699C21}" = TL-WN822N/TL-WN821N Driver "{63FF21C9-A810-464F-B60A-3111747B1A6D}" = GPBaseService2 "{681B698F-C997-42C3-B184-B489C6CA24C9}" = HPPhotoSmartDiscLabelContent1 "{6B2FFB21-AC88-45C3-9A7D-4BB3E744EC91}" = HPSSupply "{6BBA26E9-AB03-4FE7-831A-3535584CA002}" = Toolbox "{7059BDA7-E1DB-442C-B7A1-6144596720A4}" = HP Update "{745D37C2-26F4-4B65-BA13-F9840EBFA75B}" = Might & Magic Heroes VI - Shades of Darkness "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE}" = HPDiagnosticAlert "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}" = NVIDIA PhysX "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9B362566-EC1B-4700-BB9C-EC661BDE2175}" = DocProc "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9F6B13E2-B93F-4203-9BD4-5DC18C9F9DEB}" = AIO_CDB_Software "{AC76BA86-7AD7-1045-7B44-AB0000000001}" = Adobe Reader XI (11.0.03) - Polish "{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}" = Destinations "{C43326F5-F135-4551-8270-7F7ABA0462E1}" = HPProductAssistant "{CAE4213F-F797-439D-BD9E-79B71D115BE3}" = HPPhotoGadget "{D79113E7-274C-470B-BD46-01B10219DF6A}" = HPPhotosmartEssential "{DC635845-46D3-404B-BCB1-FC4A91091AFA}" = SmartWebPrinting "{E7112940-5F8E-4918-B9FE-251F2F8DC81F}" = AIO_CDB_ProductContext "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F6AC5364-2FB7-437a-811A-D645F22AA6AC}" = F300Trb "{FB0127F3-985B-44CE-AE29-378CAF60B361}" = Need for Speed™ Most Wanted "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 12.0 "avast" = avast! Free Antivirus "BurnAware Free_is1" = BurnAware Free 6.4 "Combined Community Codec Pack_is1" = Combined Community Codec Pack 2013-05-30 "DAEMON Tools Lite" = DAEMON Tools Lite "IrfanView" = IrfanView (remove only) "LastFM_is1" = Last.fm Scrobbler 2.1.35 "MoorHunt_is1" = MoorHunt 0.8.0.66 BETA "Mozilla Firefox 23.0.1 (x86 pl)" = Mozilla Firefox 23.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NapiProjekt_is1" = NapiProjekt (2.1.1.2314) "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Origin" = Origin "PunkBusterSvc" = PunkBuster Services "Steam App 200170" = Worms Revolution "Steam App 200710" = Torchlight II "Uplay" = Uplay "Winamp" = Winamp "WinZipper" = WinZipper [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2428475161-3953419923-4234922757-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "BitTorrent" = BitTorrent "d8be6c3f847d7d92" = Ghost Recon Online (EU) "Dropbox" = Dropbox "Spotify" = Spotify "Winamp Detect" = Detektor Winampa [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-08-20 08:54:05 | Computer Name = Komputer | Source = WinMgmt | ID = 10 Description = Error - 2013-08-21 04:09:32 | Computer Name = Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. Error - 2013-08-21 04:11:13 | Computer Name = Komputer | Source = WinMgmt | ID = 10 Description = Error - 2013-08-21 04:19:40 | Computer Name = Komputer | Source = Office 2013 Licensing Service | ID = 0 Description = Error - 2013-08-22 05:02:46 | Computer Name = Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. Error - 2013-08-22 05:04:26 | Computer Name = Komputer | Source = WinMgmt | ID = 10 Description = Error - 2013-08-22 05:12:50 | Computer Name = Komputer | Source = Office 2013 Licensing Service | ID = 0 Description = Error - 2013-08-23 02:32:06 | Computer Name = Komputer | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. Error - 2013-08-23 02:33:46 | Computer Name = Komputer | Source = WinMgmt | ID = 10 Description = Error - 2013-08-23 02:42:12 | Computer Name = Komputer | Source = Office 2013 Licensing Service | ID = 0 Description = [ System Events ] Error - 2013-08-12 04:37:48 | Computer Name = Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Windows Search z powodu następującego błędu: %%1053 Error - 2013-08-12 04:37:48 | Computer Name = Komputer | Source = DCOM | ID = 10005 Description = Error - 2013-08-19 05:07:24 | Computer Name = Komputer | Source = DCOM | ID = 10001 Description = Error - 2013-08-20 04:26:54 | Computer Name = Komputer | Source = Service Control Manager | ID = 7022 Description = Usługa Wsys Service zawiesiła się podczas uruchamiania. Error - 2013-08-20 07:26:23 | Computer Name = Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 13:24:33 na ?2013-?08-?20 było nieoczekiwane. Error - 2013-08-20 07:27:54 | Computer Name = Komputer | Source = Service Control Manager | ID = 7022 Description = Usługa Wsys Service zawiesiła się podczas uruchamiania. Error - 2013-08-20 08:53:46 | Computer Name = Komputer | Source = Service Control Manager | ID = 7022 Description = Usługa Wsys Service zawiesiła się podczas uruchamiania. Error - 2013-08-21 04:10:59 | Computer Name = Komputer | Source = Service Control Manager | ID = 7022 Description = Usługa Wsys Service zawiesiła się podczas uruchamiania. Error - 2013-08-22 05:04:08 | Computer Name = Komputer | Source = Service Control Manager | ID = 7022 Description = Usługa Wsys Service zawiesiła się podczas uruchamiania. Error - 2013-08-23 02:33:30 | Computer Name = Komputer | Source = Service Control Manager | ID = 7022 Description = Usługa Wsys Service zawiesiła się podczas uruchamiania. < End of report >