OTL Extras logfile created on: 2013-08-31 20:11:40 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Shiroi\Downloads Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 1,32 Gb Available Physical Memory | 44,11% Memory free 6,00 Gb Paging File | 3,63 Gb Available in Paging File | 60,56% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 97,77 Gb Total Space | 44,45 Gb Free Space | 45,46% Space Free | Partition Type: NTFS Drive D: | 139,28 Gb Total Space | 5,91 Gb Free Space | 4,24% Space Free | Partition Type: NTFS Drive E: | 51,27 Gb Total Space | 5,46 Gb Free Space | 10,65% Space Free | Partition Type: NTFS Drive J: | 28,88 Gb Total Space | 7,15 Gb Free Space | 24,77% Space Free | Partition Type: FAT32 Computer Name: WHITEWOLF | User Name: Shiroi | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) [HKEY_USERS\S-1-5-21-3826527395-1284744147-897355739-1001\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Programy\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) https [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Programy\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Programy\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon -- (Safer-Networking Ltd.) "C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.) "C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.) "C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.) [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{18056135-C0ED-4665-A38A-A002FEC48384}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{22E9AA4B-286C-4341-9208-4FE53FF1D7B6}" = lport=137 | protocol=17 | dir=in | app=system | "{25BC3BA3-15FC-4140-ABE9-282C301672BE}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{28290C72-5890-473C-8276-344FA6C14AE8}" = lport=138 | protocol=17 | dir=in | app=system | "{33F65E46-ED77-4582-9E0F-8BC399445661}" = rport=10243 | protocol=6 | dir=out | app=system | "{3C762AC7-102E-402A-B997-9BE79283FD82}" = rport=445 | protocol=6 | dir=out | app=system | "{4485AC57-1B38-43AD-9763-FF00234662ED}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{457B3C99-A13C-48C2-A3E8-BBA761AFBB08}" = lport=139 | protocol=6 | dir=in | app=system | "{516065D2-436E-4172-9FEB-1932A74EC212}" = lport=2869 | protocol=6 | dir=in | app=system | "{556E0706-AE00-4529-AF98-74C4801C0D38}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{5DAEB8C9-6E38-4F64-85E6-3094530623B6}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{63562E49-47CD-4510-9B54-8A865603AEF3}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{660837C7-DB82-4E3B-A70E-2B97118DACB8}" = rport=137 | protocol=17 | dir=out | app=system | "{6735BC96-D24C-43C3-ADAA-892225A15339}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{77CA3AD4-8F82-4AD5-9BC5-4B705C772497}" = lport=445 | protocol=6 | dir=in | app=system | "{81BE4A98-9380-41D0-B8FB-2C7877AED4B7}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{85B4FB3A-5EA8-426D-9740-A63EE2C3CAEF}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{9210BE5F-5BC8-4ADE-88BC-3279DB54016D}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{A1FF3140-9005-44DB-B5B3-D51E24584EC6}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{A5A774CA-14DF-4C99-A31F-7BD1E1857284}" = rport=139 | protocol=6 | dir=out | app=system | "{D97F07BE-0C01-4844-B05B-48293231EB95}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{DCBD1C12-5065-4579-9364-CF0E62EA660E}" = rport=138 | protocol=17 | dir=out | app=system | "{FF511F24-0D5B-425D-95A8-7D5C5D600B51}" = lport=10243 | protocol=6 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0B44C489-BBCD-4C9D-A093-FCC6D144C32C}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqpsapp.exe | "{0CFD133F-3512-4B93-BBB8-88E626C5563C}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqsudi.exe | "{10D4D73C-0C91-494D-A374-DC6E94DE36FB}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{14C2A65B-A84B-4932-B4BC-31F01BD84EE8}" = protocol=6 | dir=in | app=c:\program files\raptr\raptr_im.exe | "{2D9EFD95-CF47-48D3-96CA-EF8B758D9DBF}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqcopy2.exe | "{30B8D2E3-1B1E-46B3-9242-D4A184CAC084}" = protocol=17 | dir=in | app=c:\programy\autodesk\3ds max 2012\mentalimages\satellite\raysat_3dsmax2012_32server.exe | "{3587F14E-687E-443C-819A-D433DD95547B}" = dir=in | app=c:\program files\hp\digital imaging\smart web printing\smartwebprintexe.exe | "{3DACCFBB-715D-4724-9E17-D1DF175E8C1E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{3E6411E5-985C-4856-9A85-FE57A17C688D}" = dir=in | app=c:\program files\hp\digital imaging\bin\hposid01.exe | "{3ECD6F11-2646-4527-9DA4-4EFA7C7A7F56}" = dir=in | app=c:\program files\common files\hp\digital imaging\bin\hpqphotocrm.exe | "{4025971D-D468-4BBB-86EE-F5297011FF45}" = protocol=17 | dir=in | app=c:\program files\autodesk\backburner\manager.exe | "{4268EE76-9356-4CB3-BE59-A8D06E4BD31A}" = protocol=6 | dir=out | app=system | "{44D1C15D-C37E-49E0-81AD-8EA4203A08E4}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{458CFC2C-5ADF-46E9-A802-A4F9BF63C0F2}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqkygrp.exe | "{46F17688-BA7C-4071-9DAD-57B0A026BBED}" = protocol=6 | dir=in | app=c:\program files\autodesk\backburner\monitor.exe | "{4B7768E9-DA29-4750-B978-C7F8F29ABC74}" = protocol=6 | dir=in | app=c:\program files\autodesk\backburner\server.exe | "{4C684732-8FC8-4707-9318-6A7015AFAD78}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{557A4191-26FC-46AA-AA51-DDB920615700}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpiscnapp.exe | "{5C353B6B-0030-429E-8F83-AB8F83E25587}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqusgh.exe | "{5D0F9F9E-69B6-4601-BF87-C3EFEF2F401D}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqste08.exe | "{5D3F8C6F-B402-4F69-BB8D-425B153B61B5}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqnrs08.exe | "{5FD26AA9-2E5C-432B-BE5A-1DF8A8F21590}" = protocol=17 | dir=in | app=d:\games\steam\steamapps\common\dawn of war ii - retribution\dow2.exe | "{703D6EA0-691B-4222-9086-CA4C11F3DD18}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{746CB0A5-3AEC-44C6-9DA2-86961DFC1F9A}" = protocol=17 | dir=in | app=c:\program files\autodesk\backburner\monitor.exe | "{75B79A19-20CB-41BA-A3D8-42E22DF01400}" = protocol=6 | dir=in | app=c:\program files\raptr\raptr_im.exe | "{76419470-BF21-4C61-8D0B-184C2C45F18B}" = protocol=6 | dir=in | app=c:\programy\autodesk\3ds max 2012\mentalimages\satellite\raysat_3dsmax2012_32server.exe | "{770E1664-2794-437A-91CD-20C39A49AF1B}" = protocol=17 | dir=in | app=c:\program files\raptr\raptr.exe | "{78B226D6-CC11-4C06-B9B9-C5DBEEB18F74}" = protocol=6 | dir=in | app=c:\programy\autodesk\3ds max 2012\mentalimages\satellite\raysat_3dsmax2012_32.exe | "{7AFFCC50-E578-4356-87FD-EEC2C794D59A}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqtra08.exe | "{7E99A20A-1E65-4D83-904C-55185CC9C638}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{84BEBE50-CA3E-4D67-B077-7D7622699D0B}" = protocol=17 | dir=in | app=c:\program files\raptr\raptr_im.exe | "{8CD4216A-96CC-44F6-BFA2-5CE1F705D681}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{8E84F6CE-0D69-4DCC-BFAC-567B94554E24}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{97FA9F37-D496-485C-961F-830C7CAC859F}" = protocol=6 | dir=in | app=c:\program files\autodesk\backburner\manager.exe | "{9C6579F4-8AA2-4685-B50E-0A576009365B}" = protocol=17 | dir=in | app=c:\users\shiroi\appdata\roaming\bittorrent\bittorrent.exe | "{9CDB3395-1EC4-4C12-9EFC-A4B669F511C4}" = dir=in | app=c:\program files\hp\hp software update\hpwucli.exe | "{9EBD305E-3392-4B7C-89C9-B9D4B09FB58C}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{9F723956-EE74-48FF-8BFB-182758745F1F}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqusgm.exe | "{A1C89F64-E3A5-4717-BB03-C34A02057324}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqgplgtupl.exe | "{A3485DA2-F902-4B1D-A85E-9F5F30441C3A}" = protocol=17 | dir=in | app=c:\programy\autodesk\3ds max 2012\mentalimages\satellite\raysat_3dsmax2012_32.exe | "{AE210C04-CC97-430D-99A1-431C1D1FF00F}" = protocol=17 | dir=in | app=c:\program files\autodesk\backburner\server.exe | "{AFEC1230-56D4-4A76-9297-535D3DE66F82}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqgpc01.exe | "{B184A57E-D476-4D5B-ADDA-7B3FB2AFF797}" = protocol=6 | dir=in | app=d:\games\steam\steam.exe | "{BA79D934-F46F-457F-96D9-0A785D4A941E}" = protocol=17 | dir=in | app=c:\program files\raptr\raptr.exe | "{BC4F7B2F-62A1-4BD2-9450-2BD22ABA4883}" = protocol=6 | dir=in | app=c:\program files\raptr\raptr.exe | "{C001E33D-7350-4044-B601-38AFF330AA71}" = protocol=17 | dir=in | app=d:\games\steam\steam.exe | "{C22A97B6-2209-4913-B374-5905A383DA4C}" = protocol=6 | dir=in | app=c:\programy\autodesk\3ds max 2012\3dsmax.exe | "{C52F514E-2A4C-43F8-A5C5-7085B4FF00BD}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{C59CE019-DC65-41CC-9772-B747A95DAFDD}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpfccopy.exe | "{C78892F0-960A-4DBD-AD0A-493D2DF51C7A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{C9210AAF-B2F2-4D17-BDE7-F0C6209F46D9}" = protocol=17 | dir=in | app=c:\programy\autodesk\3ds max 2012\3dsmax.exe | "{D26F4E2C-764D-49B4-A787-F94CEF1838C7}" = protocol=6 | dir=in | app=c:\program files\raptr\raptr.exe | "{D2B11F80-6BED-42BA-A882-BEF79E40BAA1}" = protocol=17 | dir=in | app=c:\program files\raptr\raptr_im.exe | "{D631D223-FE84-484B-B3A8-7C17B56045DF}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqpse.exe | "{D9769237-4DCE-4861-9D53-1EBCFAA22179}" = protocol=6 | dir=in | app=d:\games\steam\steamapps\common\dawn of war ii - retribution\dow2.exe | "{E17E063D-AA5C-46ED-A7E5-2C3F0600E608}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{E334851D-B129-45DB-89BA-6F2DF13F2E41}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{E6A12C1C-182E-451C-A984-FCE731B4D41E}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{E8447B30-C3DA-4C1B-82F6-5E6EAA79CBC4}" = protocol=6 | dir=in | app=c:\users\shiroi\appdata\roaming\bittorrent\bittorrent.exe | "{F0E7971B-4204-48F0-8B46-2ABA79DBFB29}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{FB8CF654-1927-4760-B72F-613E4F882749}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{FDD3205E-F193-486D-9D87-B43E547EA109}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "TCP Query User{0EA6EEE2-C753-47EA-8057-A3833768480D}D:\games\warcraft iii\war3.exe" = protocol=6 | dir=in | app=d:\games\warcraft iii\war3.exe | "TCP Query User{351428E7-4349-4184-9985-E9AD94E63E19}D:\games\gw2\gw2.exe" = protocol=6 | dir=in | app=d:\games\gw2\gw2.exe | "TCP Query User{3A75FA48-6A84-493D-9D40-071E57375455}C:\programy\xfire2\xfire.exe" = protocol=6 | dir=in | app=c:\programy\xfire2\xfire.exe | "TCP Query User{57947457-716D-4D5A-AB78-F17C63719145}C:\programy\wapster\wapster aqq\aqq.exe" = protocol=6 | dir=in | app=c:\programy\wapster\wapster aqq\aqq.exe | "TCP Query User{5C5B7B2F-4C4B-462F-9AD7-3228C29742BC}C:\mmdoctest\game.exe" = protocol=6 | dir=in | app=c:\mmdoctest\game.exe | "TCP Query User{A96B7B45-15DC-4414-A516-6EA78D83C60E}C:\windows\explorer.exe" = protocol=6 | dir=in | app=c:\windows\explorer.exe | "TCP Query User{B66399E6-8E53-492C-9FA7-BB5AE95F2129}D:\games\cryptic studios\neverwinter\live\gameclient.exe" = protocol=6 | dir=in | app=d:\games\cryptic studios\neverwinter\live\gameclient.exe | "TCP Query User{C47625B6-7265-4A43-A196-55BE079624D2}D:\games\ubisoft\mmdoc-pdclive\launcher.exe" = protocol=6 | dir=in | app=d:\games\ubisoft\mmdoc-pdclive\launcher.exe | "TCP Query User{CA90FB42-1FDB-4599-A03B-83A01E1520CB}C:\programy\nowy folder\bin\javaw.exe" = protocol=6 | dir=in | app=c:\programy\nowy folder\bin\javaw.exe | "UDP Query User{02908292-5D8A-49B5-B551-8136578F46F6}D:\games\cryptic studios\neverwinter\live\gameclient.exe" = protocol=17 | dir=in | app=d:\games\cryptic studios\neverwinter\live\gameclient.exe | "UDP Query User{030E77D4-A89A-4546-906D-7CDF21059EB7}D:\games\gw2\gw2.exe" = protocol=17 | dir=in | app=d:\games\gw2\gw2.exe | "UDP Query User{41DB87B7-B76C-4DDA-A2A3-49FFF84D0031}D:\games\ubisoft\mmdoc-pdclive\launcher.exe" = protocol=17 | dir=in | app=d:\games\ubisoft\mmdoc-pdclive\launcher.exe | "UDP Query User{420BEBF9-1469-4305-BE1A-12DB29F6B767}C:\programy\nowy folder\bin\javaw.exe" = protocol=17 | dir=in | app=c:\programy\nowy folder\bin\javaw.exe | "UDP Query User{5C743033-B67C-4C92-BB6D-181CCE8E705D}C:\windows\explorer.exe" = protocol=17 | dir=in | app=c:\windows\explorer.exe | "UDP Query User{A4A0FCAC-460A-438A-8F9B-AE5834740F5D}D:\games\warcraft iii\war3.exe" = protocol=17 | dir=in | app=d:\games\warcraft iii\war3.exe | "UDP Query User{B1AEF758-95A3-46C8-977C-7F8C29403D60}C:\mmdoctest\game.exe" = protocol=17 | dir=in | app=c:\mmdoctest\game.exe | "UDP Query User{D4358BFE-A6D7-42B5-AAC8-647F18181FE2}C:\programy\wapster\wapster aqq\aqq.exe" = protocol=17 | dir=in | app=c:\programy\wapster\wapster aqq\aqq.exe | "UDP Query User{D91362F9-2620-45D9-BA7F-53B47AC44596}C:\programy\xfire2\xfire.exe" = protocol=17 | dir=in | app=c:\programy\xfire2\xfire.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended "{0EF5BEA9-B9D3-46d7-8958-FB69A0BAEACC}" = Status "{0F367CA3-3B2F-43F9-A44A-25A8EE69E45D}" = Scan "{175F0111-2968-4935-8F70-33108C6A4DE3}" = MarketResearch "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 "{1EC71BFB-01A3-4239-B6AF-B1AE656B15C0}" = TrayApp "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{2640314A-2D9A-4F58-B501-DB109CD9DBA2}" = DJ_AIO_ProductContext "{26A24AE4-039D-4CA4-87B4-2F83217021FF}" = Java 7 Update 21 "{2A9A40C7-6670-4D5F-8F41-D12E2E08B48B}" = Star Wars(TM): Knights of the Old Republic (TM) "{2EEA7AA4-C203-4b90-A34F-19FB7EF1C81C}" = BufferChm "{2FF8C687-DB7D-4adc-A5DC-57983EC25046}" = DeviceDiscovery "{32DACAC3-6538-405D-915E-8F2D026F199C}" = DJ_AIO_Software_min "{33cc8e60-d6db-45be-9276-b6698187688a}" = F2100 "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{3C92B2E6-380D-4fef-B4DF-4A3B4B669771}" = Copy "{3D347E6D-5A03-4342-B5BA-6A771885F379}" = Autodesk Backburner 2012.0.0 "{43ADAE00-A4ED-4379-A76D-A1FF5D9D334A}_is1" = Xfire 2.0 "{43CDF946-F5D9-4292-B006-BA0D92013021}" = WebReg "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4A70EF07-7F88-4434-BB61-D1DE8AE93DD4}" = SolutionCenter "{4E7C28C7-D5DA-4E9F-A1CA-60490B54AE35}" = UnloadSupport "{63FF21C9-A810-464F-B60A-3111747B1A6D}" = GPBaseService2 "{65420DC9-306E-4371-905F-F4DC3B418E52}" = Autodesk Material Library Base Resolution Image Library 2012 "{681B698F-C997-42C3-B184-B489C6CA24C9}" = HPPhotoSmartDiscLabelContent1 "{6B2FFB21-AC88-45C3-9A7D-4BB3E744EC91}" = HPSSupply "{6BBA26E9-AB03-4FE7-831A-3535584CA002}" = Toolbox "{7059BDA7-E1DB-442C-B7A1-6144596720A4}" = HP Update "{73AA9B92-5E10-4515-89F8-49A3BDD71B8E}" = jAlbum "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8F0837C2-EE09-4903-88F3-1976FE7FFF4E}" = Autodesk Material Library 2012 "{90120000-0015-0000-0000-0000000FF1CE}" = Microsoft Office Access 2007 "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00B2-0415-0000-0000000FF1CE}" = Dodatek Zapisywanie jako PDF lub XPS firmy Microsoft dla programów pakietu Microsoft Office 2007 "{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007 "{92127AF5-FDD8-4ADF-BC40-C356C9EE0B7D}" = 32 Bit HP CIO Components Installer "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9B6754B3-8E30-46E2-AC63-42472970C40D}_is1" = WebHat Web Gallery 1.5 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A80CEA4E-74C1-4F9F-806B-E1D9AFC01768}" = inSSIDer 3 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.03) "{AD99B476-6FB7-4985-A3C3-E40595A7E6DE}" = DJ_AIO_Software "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 296.10 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 296.10 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 296.10 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.12.0213 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.3.12.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1" = Spybot - Search & Destroy "{B5751715-EC10-43D9-8C95-62E1368433EF}" = Autodesk Material Library Medium Resolution Image Library 2012 "{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}" = Destinations "{C1920D73-7374-49d9-8C37-58A6E49078A5}" = F2100_Help "{C43326F5-F135-4551-8270-7F7ABA0462E1}" = HPProductAssistant "{CAE4213F-F797-439D-BD9E-79B71D115BE3}" = HPPhotoGadget "{D79113E7-274C-470B-BD46-01B10219DF6A}" = HPPhotosmartEssential "{D86B0E2E-DF9A-441C-AF77-8D1A0FF00FA6}" = AIO_Scan "{DA909E62-3B45-4BA1-8B58-FCAEBA4BCEC9}" = NVIDIA PhysX "{DBDD570E-0952-475F-9453-AB88F3DD5659}" = Python 2.7.5 "{DC635845-46D3-404B-BCB1-FC4A91091AFA}" = SmartWebPrinting "{E6083921-A185-0409-B058-ACB1DB615AD9}" = Autodesk 3ds Max 2012 32-bit - English "{EB773820-0871-46A8-9B96-F2B04F8B34F0}" = HP Deskjet All-In-One Driver Software 13.0 Rel. 1 "{F77ED0CD-2E5E-4FC7-82E0-BB7D461E739F}" = LibreOffice 4.0.3.3 "{FEC02973-0781-49C7-9F04-28DA9BAF0372}" = Composite 2012 "5513-1208-7298-9440" = JDownloader 0.9 "Access" = Microsoft Office Access 2007 "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "AQQ" = WapSter AQQ "Autodesk 3ds Max 2012 32-bit - English" = Autodesk 3ds Max 2012 32-bit - English "Autodesk FBX Plug-in 2012.0 - 3ds Max 2012" = Autodesk FBX Plug-in 2012.0 - 3ds Max 2012 "avast" = avast! Free Antivirus "BitTorrent" = BitTorrent "blueconnect" = blueconnect "CCleaner" = CCleaner "foobar2000" = foobar2000 v1.2.6 "GIMP-2_is1" = GIMP 2.8.2 "Google Chrome" = Google Chrome "HOMESTUDENTR" = Microsoft Office Home and Student 2007 "HP Imaging Device Functions" = HP Imaging Device Functions 13.0 "HP Photosmart Essential" = HP Photosmart Essential 3.5 "HP Smart Web Printing" = HP Smart Web Printing 4.51 "HP Solution Center & Imaging Support Tools" = HP Solution Center 13.0 "HPExtendedCapabilities" = HP Customer Participation Program 13.0 "kED_is1" = kED 2.1.4.0 "LastFM_is1" = Last.fm Scrobbler 2.1.35 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Mozilla Firefox 20.0.1 (x86 pl)" = Mozilla Firefox 20.0.1 (x86 pl) "Mp3tag" = Mp3tag v2.55a "Notepad++" = Notepad++ "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "QWdlIG9mIEVtcGlyZXMgSUkgSEQgKGMpIE1pY3Jvc29mdCBTdHVkaW9z_is1" = Age of Empires II HD (c) Microsoft Studios version 1 "Raptr" = Raptr "Razer Game Booster_is1" = Razer Game Booster "Samsung ML-1640 Series" = Samsung ML-1640 Series "Shop for HP Supplies" = Shop for HP Supplies "SynTPDeinstKey" = Synaptics Pointing Device Driver "Throne of Darkness" = Throne of Darkness "VLC media player" = VLC media player 2.0.3 "Warcraft III" = Warcraft III "WinRAR archiver" = WinRAR 4.20 (32-bitowy) "XfireCodec" = Xfire Codec (remove only) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3826527395-1284744147-897355739-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "CodeBlocks" = CodeBlocks "Mozilla Firefox 23.0.1 (x86 pl)" = Mozilla Firefox 23.0.1 (x86 pl) "RIFT" = RIFT "Warcraft III" = Warcraft III: wszystkie elementy [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-08-20 15:15:46 | Computer Name = whitewolf | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Programy\Autodesk\Composite 2012\python\lib\distutils\command\wininst-8_d.exe". Nie można odnaleźć zestawu zależnego Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-08-22 15:32:24 | Computer Name = whitewolf | Source = WinMgmt | ID = 10 Description = Error - 2013-08-25 12:57:13 | Computer Name = whitewolf | Source = WinMgmt | ID = 10 Description = Error - 2013-08-25 15:14:10 | Computer Name = whitewolf | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Programy\Autodesk\Composite 2012\python\lib\distutils\command\wininst-8_d.exe". Nie można odnaleźć zestawu zależnego Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-08-26 13:56:53 | Computer Name = whitewolf | Source = WinMgmt | ID = 10 Description = Error - 2013-08-28 18:38:51 | Computer Name = whitewolf | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: firefox.exe, wersja: 23.0.1.4974, sygnatura czasowa: 0x520bc252 Nazwa modułu powodującego błąd: xul.dll, wersja: 23.0.1.4974, sygnatura czasowa: 0x520bc166 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0017af08 Identyfikator procesu powodującego błąd: 0xd60 Godzina uruchomienia aplikacji powodującej błąd: 0x01cea43f084b35f3 Ścieżka aplikacji powodującej błąd: C:\Programy\Mozilla Firefox\firefox.exe Ścieżka modułu powodującego błąd: C:\Programy\Mozilla Firefox\xul.dll Identyfikator raportu: 9c0f189e-1032-11e3-adcd-0015affd4fa4 Error - 2013-08-30 07:11:13 | Computer Name = whitewolf | Source = WinMgmt | ID = 10 Description = Error - 2013-08-31 07:54:52 | Computer Name = whitewolf | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: hpqtra08.exe, wersja: 130.0.422.0, sygnatura czasowa: 0x4ab683ef Nazwa modułu powodującego błąd: HpqSRTA.dll, wersja: 12.0.0.223, sygnatura czasowa: 0x488054ee Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0002275f Identyfikator procesu powodującego błąd: 0x8e4 Godzina uruchomienia aplikacji powodującej błąd: 0x01cea5719b023812 Ścieżka aplikacji powodującej błąd: C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe Ścieżka modułu powodującego błąd: C:\Program Files\HP\Digital Imaging\bin\HpqSRTA.dll Identyfikator raportu: 24fd6c50-1234-11e3-9981-0015affd4fa4 Error - 2013-08-31 07:54:58 | Computer Name = whitewolf | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: hpqtra08.exe, wersja: 130.0.422.0, sygnatura czasowa: 0x4ab683ef Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.17514, sygnatura czasowa: 0x4ce7b96e Kod wyjątku: 0xc0000374 Przesunięcie błędu: 0x000c37b7 Identyfikator procesu powodującego błąd: 0x8e4 Godzina uruchomienia aplikacji powodującej błąd: 0x01cea5719b023812 Ścieżka aplikacji powodującej błąd: C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe Ścieżka modułu powodującego błąd: C:\Windows\SYSTEM32\ntdll.dll Identyfikator raportu: 285e9900-1234-11e3-9981-0015affd4fa4 Error - 2013-08-31 11:39:15 | Computer Name = whitewolf | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Programy\Autodesk\Composite 2012\python\lib\distutils\command\wininst-8_d.exe". Nie można odnaleźć zestawu zależnego Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. [ OSession Events ] Error - 2013-05-10 04:41:08 | Computer Name = whitewolf | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 313 seconds with 180 seconds of active time. This session ended with a crash. [ System Events ] Error - 2013-08-22 15:32:08 | Computer Name = whitewolf | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi DgiVecp z powodu następującego błędu: %%20 Error - 2013-08-25 12:56:22 | Computer Name = whitewolf | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi DgiVecp z powodu następującego błędu: %%20 Error - 2013-08-25 15:43:59 | Computer Name = whitewolf | Source = Microsoft-Windows-HAL | ID = 12 Description = Oprogramowanie układowe platformy spowodowało uszkodzenie pamięci podczas poprzedniego przejścia do innego trybu zasilania systemu. Sprawdź dostępność zaktualizowanego oprogramowania układowego przeznaczonego do tego systemu. Error - 2013-08-26 13:56:24 | Computer Name = whitewolf | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi DgiVecp z powodu następującego błędu: %%20 Error - 2013-08-26 14:13:52 | Computer Name = whitewolf | Source = Microsoft-Windows-HAL | ID = 12 Description = Oprogramowanie układowe platformy spowodowało uszkodzenie pamięci podczas poprzedniego przejścia do innego trybu zasilania systemu. Sprawdź dostępność zaktualizowanego oprogramowania układowego przeznaczonego do tego systemu. Error - 2013-08-30 07:10:55 | Computer Name = whitewolf | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi DgiVecp z powodu następującego błędu: %%20 Error - 2013-08-30 07:51:38 | Computer Name = whitewolf | Source = Microsoft-Windows-HAL | ID = 12 Description = Oprogramowanie układowe platformy spowodowało uszkodzenie pamięci podczas poprzedniego przejścia do innego trybu zasilania systemu. Sprawdź dostępność zaktualizowanego oprogramowania układowego przeznaczonego do tego systemu. Error - 2013-08-31 07:46:54 | Computer Name = whitewolf | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR4. Error - 2013-08-31 07:46:56 | Computer Name = whitewolf | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR4. Error - 2013-08-31 07:46:56 | Computer Name = whitewolf | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR4. < End of report >