OTL Extras logfile created on: 8/31/2013 4:50:37 PM - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Windows\SysWOW64\config\systemprofile\Desktop 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16660) Locale: 00000409 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 4.00 Gb Total Physical Memory | 2.20 Gb Available Physical Memory | 55.12% Memory free 8.00 Gb Paging File | 5.97 Gb Available in Paging File | 74.69% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 149.04 Gb Total Space | 25.32 Gb Free Space | 16.99% Space Free | Partition Type: NTFS Drive D: | 134.40 Gb Total Space | 130.14 Gb Free Space | 96.84% Space Free | Partition Type: NTFS Drive E: | 7.63 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF Computer Name: EXPERT-KOMP | User Name: Expert | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- "C:\Users\TEMP\AppData\Roaming\File Scout\filescout.exe" /open "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- "C:\Users\TEMP\AppData\Roaming\File Scout\filescout.exe" /open "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "AutoUpdateDisableNotify" = 1 "AntiVirusDisableNotify" = 0 "AntiVirusOverride" = 0 "FirewallDisableNotify" = 0 "FirewallOverride" = 0 "UpdatesDisableNotify" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "AntiVirusDisableNotify" = 0 "AntiVirusOverride" = 0 "FirewallDisableNotify" = 0 "FirewallOverride" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{069A7BBD-574D-4AD0-81BA-1865F1CC03FC}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=c:\windows\system32\svchost.exe | "{128BA91A-4AF7-47F0-8A3C-30AB189EBA54}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{1328FCE0-F554-4471-99F1-543B4CAD7A35}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{1421C0CE-38A9-4007-98E4-6B5449E29C91}" = lport=137 | protocol=17 | dir=in | app=system | "{19A5E611-CEA7-453A-BD92-4B16B7041A58}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{1ED5670B-1D2A-49D9-8F5C-01ADB4B20A14}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{2675247E-99A1-4AD1-ADFD-95BFDBAA06DC}" = lport=138 | protocol=17 | dir=in | app=system | "{2C5560FF-AF2B-4BB3-8D13-365275777419}" = rport=137 | protocol=17 | dir=out | app=system | "{3405E58D-FB96-4171-8908-F053EC7FAA3D}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{359E667A-C69A-4C1E-93D3-E4E1189ED0AE}" = lport=445 | protocol=6 | dir=in | app=system | "{3CEAAAE2-7C11-47D1-814B-A1F1C2769FC9}" = rport=10243 | protocol=6 | dir=out | app=system | "{493EB720-647B-43A4-A751-B78E7F92FA3F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{5B69D147-CFEC-4439-81ED-F03D4F93DBBD}" = lport=20270 | protocol=6 | dir=in | name=bitcomet 20270 tcp | "{61E9F874-47BC-48CD-A9D0-CCC9ADF75050}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{6713AF54-E704-4706-B58F-D92741E6272B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{68FBEBAB-6D44-46C8-8CBB-B2CBC70FB8B4}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{69982955-DFFA-48B9-A5BE-A8E3618F774F}" = rport=445 | protocol=6 | dir=out | app=system | "{6E5AE2C7-676B-43A8-9B2A-A16B965C34E4}" = lport=139 | protocol=6 | dir=in | app=system | "{7684E176-8E1C-4DCB-82C3-02F8663D5793}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{7A925ECF-ABD8-4051-B06C-BD793461F269}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{81CA1301-6212-47DD-9776-5362625C4F96}" = lport=8396 | protocol=6 | dir=in | name=league of legends launcher | "{83131C0D-CEB6-42CD-8E1C-18BF224BD2A2}" = lport=10243 | protocol=6 | dir=in | app=system | "{8A2B264D-B0BA-4C4F-9350-0CAA3C5BAC48}" = lport=2869 | protocol=6 | dir=in | app=system | "{972CA430-1970-4B42-B01D-7C4260DD5A49}" = rport=138 | protocol=17 | dir=out | app=system | "{99BA77CD-E21F-431D-9339-3969FEC34C19}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{9D627B94-021F-4C3D-937B-F8DC7C8BFE84}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{B9F06E3A-382D-4F44-B35C-A1F4DD1399A5}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{C22DF63F-51BD-4A5E-899E-2F5080AFC22E}" = lport=20270 | protocol=17 | dir=in | name=bitcomet 20270 udp | "{C93FAB1B-5302-4038-A418-D09D61ED401B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{CBFDCDA3-1C2B-40C5-8F2E-7BB814416844}" = rport=139 | protocol=6 | dir=out | app=system | "{DD8087C2-F8AD-4523-9B7A-471066B7AED6}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{E6E55A7A-F5EF-41FC-A237-105BBD7AC068}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{E8F5C273-AF47-4398-B60C-F2436A59BBF5}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{ED221CB9-983F-4B82-A74E-3ED38C0EC71C}" = lport=8396 | protocol=17 | dir=in | name=league of legends launcher | "{F4E921C0-A7CB-4307-941F-C9B121C40935}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{FF20A4C6-4F3C-4A36-864D-AF4446A33892}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0025AC1C-3455-436D-BFF5-A8B9A0A52F2B}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{026A5BCF-915F-4EA8-8366-5874BD32DF9A}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{04633171-220C-40B9-93A4-F9BE989BF107}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{07B5D952-1E23-445F-A511-F927064B5F34}" = protocol=17 | dir=in | app=c:\users\expert\appdata\roaming\2k games\firaxis games\sid meier's civilization 4 complete\beyond the sword\civ4beyondsword.exe | "{0842F8F5-9977-4059-9DDA-7C2B9C1F5300}" = protocol=17 | dir=in | app=c:\program files (x86)\bitcomet\bitcomet.exe | "{08824CBC-1F95-4F9C-8669-68852DA089EA}" = protocol=17 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe | "{0BDACBD0-062D-475A-AA74-880EB9E2FA47}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{2068222F-5E72-4DFB-AC77-EEFC164E3C18}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{23D4392F-E227-4EFB-B28A-12489370E51B}" = protocol=17 | dir=in | app=c:\program files (x86)\pandasecuritytb\dtuser.exe | "{2534A7FA-0299-4F9F-873E-4049A83A5AE0}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{26AA24F9-8EE3-413F-B249-A63D760A2DCF}" = protocol=17 | dir=in | app=c:\program files (x86)\tunngle\tnglctrl.exe | "{2AEFFF0E-B282-439E-8A60-B55620046603}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1737\agent.exe | "{2B2782BB-4814-4DF0-95F2-9D238A445795}" = protocol=6 | dir=out | app=system | "{2C8D00DD-897E-468A-BDC4-4F410B6DD76D}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{33C6DCEB-FB49-4A9E-93AA-6F551F455EB4}" = protocol=6 | dir=in | app=c:\program files\bitcomet\bitcomet.exe | "{34B3B21E-BE2D-439A-A595-DD22F266E84C}" = protocol=6 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe | "{35344DB7-ADBC-41B3-AD11-90C140C146DF}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{35A1B2EE-97DB-47A7-85BB-70BAD39674E8}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{36CD4C06-52DD-4834-8874-F378C933B86B}" = protocol=6 | dir=in | app=c:\windows\syswow64\msiexec.exe | "{37A206DA-26F9-4877-A4B6-0234FFEED24B}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{3CFAC13C-729E-4146-8CF8-3A955DBD0DF0}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{42B17388-39C3-4FE9-8E39-BA84D2A4AB06}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{47433FCA-3C5C-41C0-B9E8-ECF954B66F71}" = protocol=6 | dir=in | app=c:\program files (x86)\tunngle\tunngle.exe | "{4EBA8E66-A28C-40D4-ACB8-CE397CFD60C7}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe | "{5185A83B-3298-4091-9685-21E96F7C26BA}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{52D3D913-D1A7-433B-A89A-D2BFE4AE0558}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{59BAC349-3CF9-4CBD-AC75-839B447B3747}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{5A5BD580-FE2A-4C4E-B18F-2029A7D02BDF}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{5CDFA0D3-8640-4A01-B643-B2E0B738906F}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{5E8309D6-C935-4F22-ADF8-5490CC31C26F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{6076EF6A-9C4B-4D2B-B1E9-65D01F1D9A6C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{618A6566-79BD-4AAE-A14B-8C7B626956E4}" = protocol=17 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe | "{6A89F2AC-AA72-4F1E-B499-86ADA551727B}" = protocol=6 | dir=in | app=c:\users\expert\appdata\roaming\2k games\firaxis games\sid meier's civilization 4 complete\beyond the sword\civ4beyondsword.exe | "{6B2137E3-C488-4773-9144-C656FB1D0F1A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{6DA1F69B-CFFB-4E51-A122-CCEB1BE2F27A}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{6EDAC90B-57DB-47B7-BB5F-442D4FFE85F8}" = dir=in | app=c:\program files (x86)\garena plus\room\garena_room.exe | "{70B9A74A-3322-415E-B68E-DD0E1680B851}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{75172B71-1411-4E16-BDCA-F1AA6868CDAF}" = protocol=17 | dir=in | app=c:\windows\syswow64\msiexec.exe | "{77792F99-F85B-4B12-829A-C2959FF0953B}" = protocol=6 | dir=in | app=c:\users\expert\appdata\roaming\2k games\firaxis games\sid meier's civilization 4 complete\civilization4.exe | "{78231C0E-C8CE-425C-9539-B98579435EC7}" = protocol=6 | dir=in | app=c:\nexon\combat arms eu\nmservice.exe | "{7B6A654B-A829-4E64-8BCE-FF7B3B3300EF}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{7BEF024C-18FF-4906-8868-A1884384FEF8}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{81801E02-4A2E-4C0C-B627-C764409AECD7}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{83AF319F-EDCD-4F61-A09D-C31DFFD3C799}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{84FC791F-B930-45AD-8BEA-F1AE45E5AEC5}" = protocol=6 | dir=in | app=e:\fscommand\cksocketserver.exe | "{86937E59-AA22-4A5E-819C-18203CFB5D23}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{8A2D6C2F-5906-491B-9F41-671E5118D027}" = protocol=6 | dir=in | app=c:\users\public\documents\blizzard entertainment\world of warcraft\wow-x.x.x.x-4.0.0.12911-eu-downloader.exe | "{8F51DA1F-8B0D-4869-89C0-59B30567B337}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{9330E6C3-4D26-4BB5-A2EA-04ACC9E9FDA1}" = protocol=6 | dir=in | app=c:\program files (x86)\tunngle\tnglctrl.exe | "{9FE6150C-B242-43C9-B7BC-D3DDD66C56E9}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{A5977CE4-A3E1-429B-88C9-DB6E19777E61}" = protocol=17 | dir=in | app=c:\users\expert\appdata\roaming\2k games\firaxis games\sid meier's civilization 4 complete\civilization4.exe | "{A86F5D13-BE0D-49CE-AFB4-9816BD6EA8A7}" = protocol=17 | dir=in | app=c:\users\public\documents\blizzard entertainment\world of warcraft\wow-x.x.x.x-4.0.0.12911-eu-downloader.exe | "{A9555122-C609-432C-B2FF-0D85769CB661}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{A96CD1B3-89A5-4E08-9540-510101231A64}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{AAE2B9C1-E9E0-4176-B2EE-D9480D3D7074}" = protocol=6 | dir=in | app=c:\users\expert\appdata\roaming\2k games\firaxis games\sid meier's civilization 4 complete\warlords\civ4warlords.exe | "{AD8ABD58-9228-4C51-919A-8C59145CD96D}" = protocol=17 | dir=in | app=c:\nexon\combat arms eu\nmservice.exe | "{B1E27CE2-A4C4-404D-80BB-A978A9EE6698}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{B46424A6-4D3A-46B7-9F4A-68E6C42745B6}" = protocol=17 | dir=in | app=e:\fscommand\cksocketserver.exe | "{B6E222E3-F7BD-4334-961A-840A7BD56D3E}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe | "{B7B8B2A4-B799-4C50-8F80-1F4CBD83D28C}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{BC921041-C561-4B9D-932E-D5E140837FE8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{D1A8E70C-15BD-4102-9D23-4E3AD1D0D83A}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{DE518588-4FB5-4917-86ED-4C1E6106249D}" = protocol=6 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe | "{DF78D331-14A0-4E34-8D19-CE8D59CCC761}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1737\agent.exe | "{E4933AA7-5B85-4A6D-AA3D-998FE80106C3}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{EC17385D-AA38-4220-84C3-0AF69A57666E}" = protocol=6 | dir=in | app=c:\program files (x86)\bitcomet\bitcomet.exe | "{EDD1231A-402F-4BFF-A720-2112B2872DA4}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{EFE0F36B-D5E9-45F8-B641-DC8F94F13E47}" = protocol=17 | dir=in | app=c:\users\expert\appdata\roaming\2k games\firaxis games\sid meier's civilization 4 complete\warlords\civ4warlords.exe | "{EFED7DF5-8051-4F31-9368-E3A85E560775}" = protocol=17 | dir=in | app=c:\program files (x86)\tunngle\tunngle.exe | "{F7142A45-C78A-4F19-A5AC-0B11F137300A}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{FB983BE5-E8D6-4F52-8C98-1558AFDE2892}" = protocol=17 | dir=in | app=c:\program files\bitcomet\bitcomet.exe | "{FD7CEEAD-0E0B-484D-B4F9-177AB4262548}" = protocol=6 | dir=in | app=c:\program files (x86)\pandasecuritytb\dtuser.exe | "TCP Query User{1C6A91C5-F15F-4CDB-93F8-AB733052BF73}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "TCP Query User{262F83B5-CEF7-4BE6-A020-F6AC516A2627}D:\call of duty\codmp.exe" = protocol=6 | dir=in | app=d:\call of duty\codmp.exe | "TCP Query User{3430BD39-66ED-49CF-8EE1-9BC39E4A0755}C:\program files (x86)\xfire\xfire.exe" = protocol=6 | dir=in | app=c:\program files (x86)\xfire\xfire.exe | "TCP Query User{4774DF15-798F-4A1A-A0EE-E1FE8CD21AE4}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "TCP Query User{55B152A5-69C8-40B7-99BF-45678D72ABEB}C:\program files (x86)\microsoft office\office14\groove.exe" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "TCP Query User{62C65201-9EDF-430B-BE9F-04CD00A8D8C4}C:\program files (x86)\call of duty\codmp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\call of duty\codmp.exe | "TCP Query User{661D12B8-B436-43EF-BFB5-6994E0D878C0}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "TCP Query User{85540813-786C-4F48-9F1D-ED4BC8FD6EC2}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe | "TCP Query User{C373F514-344E-48D5-A5DE-4004DCE2143A}C:\program files (x86)\1clickdownload\1clickdownloader.exe" = protocol=6 | dir=in | app=c:\program files (x86)\1clickdownload\1clickdownloader.exe | "TCP Query User{C782508E-7043-479D-9A03-1EC7CA03E98E}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "TCP Query User{D286BC07-CEE2-49D5-808C-FF3D440F505F}C:\program files (x86)\downvision\downvision.exe" = protocol=6 | dir=in | app=c:\program files (x86)\downvision\downvision.exe | "TCP Query User{D2981C63-E399-41F2-9828-131255A58B39}C:\program files (x86)\torrentsearch\easydownload.exe" = protocol=6 | dir=in | app=c:\program files (x86)\torrentsearch\easydownload.exe | "TCP Query User{D94EFB81-DD11-4648-B422-20A1D4C57BB1}C:\nexon\combat arms eu\engine.exe" = protocol=6 | dir=in | app=c:\nexon\combat arms eu\engine.exe | "TCP Query User{FD3CF5AA-4D5D-4EEC-8E01-CD96C2AF7D4A}C:\windows\syswow64\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "UDP Query User{0E515940-1F1D-4D3A-A015-8F4BCD54C0EE}D:\call of duty\codmp.exe" = protocol=17 | dir=in | app=d:\call of duty\codmp.exe | "UDP Query User{23EFFCE8-D9BE-484B-801E-510889C78CA9}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "UDP Query User{27B41B4D-8675-4541-BBBC-AF9270D2A626}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "UDP Query User{41B8965D-3BB0-4628-99CE-0562D1555067}C:\nexon\combat arms eu\engine.exe" = protocol=17 | dir=in | app=c:\nexon\combat arms eu\engine.exe | "UDP Query User{4CA3943E-16F3-410D-9EE2-EB9D58146DA0}C:\program files (x86)\microsoft office\office14\groove.exe" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "UDP Query User{5050BC3E-06BA-4B28-B699-0BEC4C6A5C05}C:\windows\syswow64\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "UDP Query User{520E6026-D037-480B-A4C5-29B6D5F7345E}C:\program files (x86)\torrentsearch\easydownload.exe" = protocol=17 | dir=in | app=c:\program files (x86)\torrentsearch\easydownload.exe | "UDP Query User{78D65422-CD4D-42F8-B946-E047DC7AFEBC}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe | "UDP Query User{7A3A39B8-524C-419B-8CB3-1521F5CF984F}C:\program files (x86)\downvision\downvision.exe" = protocol=17 | dir=in | app=c:\program files (x86)\downvision\downvision.exe | "UDP Query User{7D5058D0-3531-455F-BDA5-3FB6762AA8A5}C:\program files (x86)\xfire\xfire.exe" = protocol=17 | dir=in | app=c:\program files (x86)\xfire\xfire.exe | "UDP Query User{A56FED72-E1D8-4BB8-BF5E-DD7F19093E18}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "UDP Query User{D8D68219-04E8-4BAF-8A29-4ADCE4DBCC6B}C:\program files (x86)\1clickdownload\1clickdownloader.exe" = protocol=17 | dir=in | app=c:\program files (x86)\1clickdownload\1clickdownloader.exe | "UDP Query User{E44814C2-0B0D-47B5-BA8C-13F875C9418D}C:\program files (x86)\call of duty\codmp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\call of duty\codmp.exe | "UDP Query User{E8CD105B-B541-4F75-B78B-6D1CAA5ACBC2}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1" = Core Temp version 0.99.8 "{13F4A7F3-EABC-4261-AF6B-1317777F0755}" = Fast Boot "{26A24AE4-039D-4CA4-87B4-2F86416035FF}" = Java(TM) 6 Update 35 (64-bit) "{26A24AE4-039D-4CA4-87B4-2F86417007FF}" = Java 7 Update 7 (64-bit) "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{8338783A-0968-3B85-AFC7-BAAE0A63DC50}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2010 "{90140000-006D-0415-1000-0000000FF1CE}" = Moduł Szybka instalacja pakietu Microsoft Office 2010 "{91EFE3A1-585E-4F66-B5F6-F118F56C4C47}" = ASUS Power4Gear Hybrid "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant "{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}" = WIDCOMM Bluetooth Software "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 260.99 "{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 260.99 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 260.99 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 260.99 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.1.9.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{C4ED781C-7394-4906-AAFF-D6AB64FF7C38}" = Web Cake 3.00 "{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba "{DEE69E05-EF81-4B86-8385-BE448339227F}" = Panda Cloud Antivirus "{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}" = SRS Premium Sound Control Panel "{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "CCleaner" = CCleaner "Elantech" = ETDWare PS/2-x64 7.0.5.7_WHQL "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "TeamSpeak 3 Client" = TeamSpeak 3 Client "USB 2.0 1.3M UVC WebCam" = USB 2.0 1.3M UVC WebCam "WinRAR archiver" = Archiwizator WinRAR [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{06585B02-F20D-4AB2-9A64-86EF2AE0F8F0}" = ASUS AI Recovery "{08C8666B-C502-4AB3-B4CB-D74AC42D14FE}" = Nero BackItUp 10 Help (CHM) "{0969AF05-4FF6-4C00-9406-43599238DE0D}" = ASUS Splendid Video Enhancement Technology "{0ACC2993-2058-4BE7-9A92-9DCDAA9B3412}" = LogMeIn Hamachi "{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693}" = BrowserProtect "{16987E99-C95C-4513-9239-7B44A0A71DB5}" = Nero SoundTrax 10 Help (CHM) "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}" = ASUS LifeFrame3 "{1EAC1D02-C6AC-4FA6-9A44-96258C37C812}_is1" = World of Tanks "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1F7FB68F-52F6-46A3-B42F-38CE46295AE5}" = Nero MediaHub 10 "{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}" = Wireless Console 3 "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{237CCB62-8454-43E3-B158-3ACD0134852E}" = High-Definition Video Playback "{2436F2A8-4B7E-4B6C-AE4E-604C84AA6A4F}" = Nero Core Components 10 "{26A24AE4-039D-4CA4-87B4-2F83216033FF}" = Java(TM) 6 Update 33 "{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 25 "{277C1559-4CF7-44FF-8D07-98AA9C13AABD}" = Nero Multimedia Suite 10 "{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Atheros Client Installation Program "{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver "{329411A0-19F3-4740-874F-17400B126F27}" = Nero Vision 10 Help (CHM) "{331C520E-D8C3-4AB9-ADF7-A666A3561922}" = Alcor Micro USB Card Reader "{33643918-7957-4839-92C7-EA96CB621A98}" = Nero Express 10 Help (CHM) "{34490F4E-48D0-492E-8249-B48BECF0537C}" = Nero DiscSpeed 10 "{3B05F2FB-745B-4012-ADF2-439F36B2E70B}" = ATKOSD2 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace "{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.6 "{523B2B1B-D8DB-4B41-90FF-C4D799E2758A}" = Nero ControlCenter 10 Help (CHM) "{555868C6-49FB-484F-BB43-8980651A1B00}" = Nero BurnRights 10 Help (CHM) "{5B65EF64-1DFA-414A-8C94-7BB726158E21}" = ControlDeck "{6068A42A-C1CF-45F2-9859-5DB16287FE5D}" = msvcrt_installer "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{63AA3EAB-23BB-48B2-9AD0-44F878075604}" = Nero 10 Menu TemplatePack Basic "{64452561-169F-4A36-A2FF-B5E118EC65F5}" = ASUS SmartLogon "{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}" = Nero Update "{66049135-9659-4AAD-9169-9CCA269EBB3E}" = Nero InfoTool 10 Help (CHM) "{6DFB899F-17A2-48F0-A533-ED8D6866CF38}" = Nero Control Center 10 "{70550193-1C22-445C-8FA4-564E155DB1A7}" = Nero Express 10 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7683B745-6060-41FD-AA75-0BBB383FEAD4}" = SweetIM for Messenger 3.7 "{774C0434-9948-4DEE-A14E-69CDD316E36C}" = Internet Explorer Toolbar 4.6 by SweetPacks "{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com "{789289CA-F73A-4A16-A331-54D498CE069F}" = Ventrilo "{7A295D8F-484B-4FFB-89AB-C1FD497591FE}" = Nero WaveEditor 10 Help (CHM) "{7A5D731D-B4B3-490E-B339-75685712BAAB}" = Nero Burning ROM 10 "{7C05592D-424B-46CB-B505-E0013E8E75C9}" = ATK Hotkey "{82EF29B1-9B60-4142-A155-0599216DD053}" = LightScribe System Software "{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 "{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher "{8ECEC853-5C3D-4B10-B5C7-FF11FF724807}" = Nero Recode 10 "{8F21291E-0444-4B1D-B9F9-4370A73E346D}" = WinFlash "{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0015-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0016-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0018-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-0019-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001A-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001B-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0407-0000-0000000FF1CE}_Office14.PROPLUS_{65A2328E-FDFB-4CA3-8582-357EA6825FEA}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUS_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-001F-0415-0000-0000000FF1CE}_Office14.PROPLUS_{1D751709-BA6C-49E2-844B-4F4F20F410C9}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002A-0415-1000-0000000FF1CE}_Office14.PROPLUS_{0844B6E1-0A6F-4D81-8BCF-48F883F521FE}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-002C-0415-0000-0000000FF1CE}_Office14.PROPLUS_{6606F321-8216-466E-981E-B75A14C46894}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-0044-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-006E-0415-0000-0000000FF1CE}_Office14.PROPLUS_{6AF8887A-72F7-4FA0-ABE4-396172B64550}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00A1-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{90140000-00BA-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{918A9082-6287-4D25-9002-5E5D5E4971CB}" = League of Legends "{92E25238-61A3-4ACD-A407-3C480EEF47A7}" = Nero RescueAgent 10 Help (CHM) "{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195 "{943CFD7D-5336-47AF-9418-E02473A5A517}" = Nero BurnRights 10 "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9B6B24BE-80E7-46C4-9FA5-B167D5E0F345}" = Nero BurningROM 10 Help (CHM) "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9D48531D-2135-49FC-BC29-ACCDA5396A76}" = ASUS MultiFrame "{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.7) "{ACBE6747-6FC1-48DB-8E5D-E81EFCB1EC72}" = Hearts of Iron III Gold "{B5A5627C-0173-4DB2-ADA8-740479370F67}" = Express Gate "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX "{BB9AC6BF-71B6-42A4-9689-C17D9F44E79A}" = Brother MFL-Pro Suite MFC-215C "{C18A0418-442A-4186-AF98-D08F5054A2FC}" = Nero DiscSpeed 10 Help (CHM) "{C3273C55-E1E4-41FF-8D69-0158090DB8D8}" = Nero CoverDesigner 10 Help (CHM) "{C3580AC4-C827-4332-B935-9A282ED5BB97}" = Nero Dolby Files 10 "{D1E5870E-E3E5-4475-98A6-ADD614524ADF}" = ATK Media "{D3D54F3E-C5C3-443D-978F-87A72E5616E8}" = ATK Generic Function Service "{DB7C1D4A-08BA-4C7E-A8AA-B7F9BB372DCF}" = Nero Recode 10 Help (CHM) "{E1EE5339-5D32-458F-BAAB-B19F6301BCE2}" = Nero SoundTrax 10 "{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}" = ASUS Virtual Camera "{EDCDFAD5-DF80-4600-A493-E9DAD6810230}" = Nero WaveEditor 10 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}" = ASUS FancyStart "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable "{F467862A-D9CA-47ED-8D81-B4B3C9399272}" = Nero MediaHub 10 Help (CHM) "{F5CB822F-B365-43D1-BCC0-4FDA1A2017A7}" = Nero 10 Movie ThemePack Basic "{F6117F9C-ADB5-4590-9BE4-12C7BEC28702}" = Nero StartSmart 10 Help (CHM) "{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}" = Nero StartSmart 10 "{FA2092C5-7979-412D-A962-6485274AE1EE}" = ASUS Data Security Manager "{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}" = Visual Studio 2008 x64 Redistributables "{FE77909E-B782-4554-A92A-4D887CEF0ACC}_is1" = ALLMediaServer "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "7-Zip" = 7-Zip 9.20 "AbiWord2" = AbiWord 2.8.6 "Adobe AIR" = Adobe AIR "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 12.0 "ALLPlayer_is1" = ALLPlayer V5.X "ASUS_N_Series_Screensaver" = ASUS_N_Series_Screensaver "ASUS_N71_Screensaver" = ASUS_N71_Screensaver "AVG SafeGuard toolbar" = AVG SafeGuard toolbar "BitComet" = BitComet 1.29 "BitComet_x64" = BitComet 1.35 64-bit "Browser Defender_is1" = Browser Guard 4.0 "BSPlayerf" = BS.Player FREE "Call of Duty" = Call of Duty "Combat Arms EU" = Combat Arms EU "DealPly" = DealPly (remove only) "delta" = Delta toolbar "Delta Chrome Toolbar" = Delta Chrome Toolbar "Diablo III" = Diablo III "DivX Setup" = DivX Setup "DownVision_is1" = DownVision "ffdshow" = ffdshow (remove only) "FoxTab PDF Converter" = FoxTab PDF Converter "Gadu-Gadu 10" = Gadu-Gadu 10 "Google Chrome" = Google Chrome "im" = Garena Plus "InstallShield_{331C520E-D8C3-4AB9-ADF7-A666A3561922}" = Alcor Micro USB Card Reader "LogMeIn Hamachi" = LogMeIn Hamachi "Mozilla Firefox 23.0.1 (x86 pl)" = Mozilla Firefox 23.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NSS" = Norton Security Scan "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Office14.Click2Run" = Moduł Szybka instalacja pakietu Microsoft Office 2010 "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "Panda Universal Agent Endpoint" = Panda Cloud Antivirus "pandasecuritytb" = Panda Security Toolbar "PunkBusterSvc" = PunkBuster Services "Registry Mechanic_is1" = PC Tools Registry Mechanic 11.0 "SpeedFan" = SpeedFan (remove only) "Spyware Doctor" = PC Tools Spyware Doctor z modułem AntiVirus 9.0 "Steam App 42680" = Call of Duty: Modern Warfare 3 "Steam App 570" = Dota 2 "SubEdit-Player_is1" = SubEdit-Player "TeamSpeak 3 Client" = TeamSpeak 3 Client "Tunngle beta_is1" = Tunngle beta "Xfire" = Xfire (remove only) [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 8/30/2013 11:11:32 AM | Computer Name = Expert-Komp | Source = Microsoft-Windows-User Profiles Service | ID = 1508 Description = System Windows nie może załadować rejestru. Częstą przyczyną tego problemu jest za mała ilość pamięci lub brak wystarczających praw zabezpieczeń. SZCZEGÓŁY - Proces nie może uzyskać dostępu do pliku, ponieważ jest on używany przez inny proces. for C:\Users\Expert\ntuser.dat Error - 8/30/2013 11:11:32 AM | Computer Name = Expert-Komp | Source = Microsoft-Windows-User Profiles Service | ID = 1502 Description = System Windows nie może załadować profilu przechowywanego lokalnie. Przyczyną błędu może być brak wystarczających praw zabezpieczeń lub uszkodzony profil lokalny. SZCZEGÓŁY - Proces nie może uzyskać dostępu do pliku, ponieważ jest on używany przez inny proces. Error - 8/30/2013 11:11:32 AM | Computer Name = Expert-Komp | Source = Microsoft-Windows-User Profiles Service | ID = 1515 Description = System Windows wykonał kopię zapasową tego profilu użytkownika. System Windows automatycznie spróbuje użyć profilu z kopii zapasowej przy następnym logowaniu tego użytkownika. Error - 8/30/2013 11:11:32 AM | Computer Name = Expert-Komp | Source = Microsoft-Windows-User Profiles Service | ID = 1511 Description = System Windows nie może znaleźć profilu lokalnego i loguje użytkownika przy użyciu profilu tymczasowego. Zmiany wprowadzone w profilu zostaną utracone po wylogowaniu. Error - 8/30/2013 11:11:33 AM | Computer Name = Expert-Komp | Source = Microsoft-Windows-User Profiles Service | ID = 1508 Description = System Windows nie może załadować rejestru. Częstą przyczyną tego problemu jest za mała ilość pamięci lub brak wystarczających praw zabezpieczeń. SZCZEGÓŁY - Odmowa dostępu. for C:\Users\TEMP\ntuser.dat Error - 8/30/2013 11:11:33 AM | Computer Name = Expert-Komp | Source = Microsoft-Windows-User Profiles Service | ID = 1505 Description = System Windows nie może załadować profilu użytkownika, ale wykonał logowanie przy użyciu domyślnego profilu systemowego. SZCZEGÓŁY - Odmowa dostępu. Error - 8/30/2013 12:06:34 PM | Computer Name = Expert-Komp | Source = VSS | ID = 8193 Description = Error - 8/31/2013 10:23:56 AM | Computer Name = Expert-Komp | Source = ESENT | ID = 455 Description = Windows (3904) Windows: Wystąpił błąd -1811 podczas otwierania pliku dziennika C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS0031B.log. Error - 8/31/2013 10:23:56 AM | Computer Name = Expert-Komp | Source = Windows Search Service | ID = 9000 Description = Error - 8/31/2013 10:23:56 AM | Computer Name = Expert-Komp | Source = Windows Search Service | ID = 7040 Description = Error - 8/31/2013 10:23:56 AM | Computer Name = Expert-Komp | Source = Windows Search Service | ID = 7042 Description = Error - 8/31/2013 10:23:56 AM | Computer Name = Expert-Komp | Source = Windows Search Service | ID = 9002 Description = Error - 8/31/2013 10:23:56 AM | Computer Name = Expert-Komp | Source = Windows Search Service | ID = 3029 Description = Error - 8/31/2013 10:23:57 AM | Computer Name = Expert-Komp | Source = Windows Search Service | ID = 3029 Description = Error - 8/31/2013 10:23:57 AM | Computer Name = Expert-Komp | Source = Windows Search Service | ID = 3028 Description = Error - 8/31/2013 10:23:57 AM | Computer Name = Expert-Komp | Source = Windows Search Service | ID = 3058 Description = Error - 8/31/2013 10:23:57 AM | Computer Name = Expert-Komp | Source = Windows Search Service | ID = 7010 Description = Error - 8/31/2013 10:28:57 AM | Computer Name = Expert-Komp | Source = Microsoft-Windows-User Profiles Service | ID = 1505 Description = System Windows nie może załadować profilu użytkownika, ale wykonał logowanie przy użyciu domyślnego profilu systemowego. SZCZEGÓŁY - Odmowa dostępu. Error - 8/31/2013 10:33:57 AM | Computer Name = Expert-Komp | Source = Customer Experience Improvement Program | ID = 1008 Description = [ System Events ] Error - 8/28/2013 9:03:53 PM | Computer Name = Expert-Komp | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Client Virtualization Handler. Error - 8/28/2013 9:03:53 PM | Computer Name = Expert-Komp | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Client Virtualization Handler z powodu następującego błędu: %%1053 Error - 8/30/2013 11:11:12 AM | Computer Name = Expert-Komp | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 17:09:18 na ?2013-?08-?30 było nieoczekiwane. Error - 8/30/2013 11:11:56 AM | Computer Name = Expert-Komp | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Application Virtualization Client. Error - 8/30/2013 11:11:56 AM | Computer Name = Expert-Komp | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Application Virtualization Client z powodu następującego błędu: %%1053 Error - 8/30/2013 11:12:02 AM | Computer Name = Expert-Komp | Source = Service Control Manager | ID = 7001 Description = Usługa Client Virtualization Handler zależy od usługi Application Virtualization Client, której nie można uruchomić z powodu następującego błędu: %%1053 Error - 8/30/2013 12:06:34 PM | Computer Name = Expert-Komp | Source = VDS Basic Provider | ID = 33554433 Description = Error - 8/30/2013 12:06:34 PM | Computer Name = Expert-Komp | Source = VDS Basic Provider | ID = 33554433 Description = Error - 8/31/2013 10:23:57 AM | Computer Name = Expert-Komp | Source = Service Control Manager | ID = 7024 Description = Usługa Windows Search zakończyła działanie; wystąpił specyficzny dla niej błąd %%-1073473535. Error - 8/31/2013 10:23:57 AM | Computer Name = Expert-Komp | Source = Service Control Manager | ID = 7031 Description = Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. < End of report >