OTL Extras logfile created on: 2013-09-20 18:50:46 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Maszek\Desktop 64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 4,00 Gb Total Physical Memory | 2,72 Gb Available Physical Memory | 67,95% Memory free 7,99 Gb Paging File | 6,59 Gb Available in Paging File | 82,50% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 74,52 Gb Total Space | 11,83 Gb Free Space | 15,87% Space Free | Partition Type: NTFS Drive D: | 36,39 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Computer Name: MASZEK-PC | User Name: Maszek | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2665012282-804337892-550135643-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{38AA1884-7B17-46EF-AB07-04481F7BDA5E}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{56668B18-F7C8-4452-94E6-A8396B1E562A}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{910E9C5E-17A2-42ED-B7D7-215FDD4FA9D3}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{BCDF7699-42A3-4566-9113-C248FB58D999}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe | "{F9039478-BF6C-47C5-A950-074754B73E6C}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0934D206-2E22-44AF-AB10-607C357C5D44}" = protocol=17 | dir=in | app=c:\program files (x86)\raptr\raptr.exe | "{09DBB034-F365-4C6F-B39E-D1A245A289D7}" = dir=in | app=c:\program files (x86)\dragon's prophet\dp_x64.exe | "{1E823E41-03E8-4D11-82E2-8C545772A1F5}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{290E9E15-5B98-49D2-A9E2-35F2230EC24F}" = protocol=17 | dir=in | app=c:\program files (x86)\raptr\raptr_im.exe | "{2D240EA0-F307-4603-B6B4-1E9D90BD0BD9}" = protocol=17 | dir=in | app=c:\games\amnesia - a machine for pigs\aamfp.exe | "{487F09D2-CBA1-4E63-B2CF-9CC0AC3B2169}" = protocol=17 | dir=in | app=c:\windows\syswow64\muzapp.exe | "{6C1BF7AD-85AC-4795-A8EB-D9CAA4D8D392}" = protocol=6 | dir=in | app=c:\windows\syswow64\muzapp.exe | "{7FE305EC-4B70-4D7C-BB06-A197E96E81DF}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{991B74E3-18D8-4ECD-98F4-02339A761E5C}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe | "{9B71260B-015A-4676-ACF2-5F08A6856219}" = dir=out | app=c:\program files (x86)\dragon's prophet\launcher.exe | "{9CA41C88-E409-497C-9A63-70A49FB4CF32}" = dir=out | app=c:\program files (x86)\dragon's prophet\dp_x86.exe | "{A11497AB-8AB8-4704-86E9-50C1C08E2B30}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{A4B2357F-E2CF-45D2-B516-EF91F685F488}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe | "{B046F54C-3C3F-4924-A668-50FD4E8A5F1C}" = dir=in | app=c:\program files (x86)\dragon's prophet\dp_x86.exe | "{B436347A-AEF0-4527-AF47-F6AB984707F9}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\pluginwrapper\opera_plugin_wrapper.exe | "{BD54F34B-5439-4780-A9AB-8F3DB7236730}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\pluginwrapper\opera_plugin_wrapper.exe | "{C0663EAA-AAA2-429E-B750-AA7182BE5976}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{D986FBF8-D5A8-4AC3-A988-23FEF332CD22}" = dir=out | app=c:\program files (x86)\dragon's prophet\dp_x64.exe | "{DCD16B1A-5E5B-43F5-BDF9-CCCD8ADB6A30}" = protocol=6 | dir=in | app=c:\games\amnesia - a machine for pigs\aamfp.exe | "{DF22F296-09D4-4641-ABA9-4262D6F2E73D}" = protocol=6 | dir=in | app=c:\program files (x86)\raptr\raptr_im.exe | "{EC9F58FD-225D-4855-AF48-8F8E4F40B3CB}" = protocol=6 | dir=in | app=c:\program files (x86)\raptr\raptr.exe | "{F6BA8C84-4628-47B1-9D45-9C9BB377C920}" = dir=in | app=c:\program files (x86)\dragon's prophet\launcher.exe | "TCP Query User{1A5862B4-1BA9-4083-ACEC-A13B9E587A50}C:\users\maszek\appdata\local\temp\gw2.exe" = protocol=6 | dir=in | app=c:\users\maszek\appdata\local\temp\gw2.exe | "TCP Query User{253ACCC3-D082-42A8-AC1D-04956227ED08}C:\users\maszek\appdata\roaming\ubisoft\mmdoc-pdclive\launcher.exe" = protocol=6 | dir=in | app=c:\users\maszek\appdata\roaming\ubisoft\mmdoc-pdclive\launcher.exe | "TCP Query User{4BBB5598-83BF-40FE-BA89-18720AADAF09}C:\program files (x86)\star vault\mortal online\mortal online launcher.exe" = protocol=6 | dir=in | app=c:\program files (x86)\star vault\mortal online\mortal online launcher.exe | "TCP Query User{55E1BDC3-BBB0-4D0B-80E7-46304CEADFB8}C:\simcityofflineserver\start.exe" = protocol=6 | dir=in | app=c:\simcityofflineserver\start.exe | "TCP Query User{6904A922-8785-487F-ADB2-9C29D8EBF1D3}C:\simcityofflineserver\apache\httpd.exe" = protocol=6 | dir=in | app=c:\simcityofflineserver\apache\httpd.exe | "TCP Query User{7CD63DB9-0831-4F9C-B2DE-8AFB71A96E25}C:\users\maszek\desktop\the elder scrolls v skyrim\the elder scrolls v skyrim\creationkit.exe" = protocol=6 | dir=in | app=c:\users\maszek\desktop\the elder scrolls v skyrim\the elder scrolls v skyrim\creationkit.exe | "TCP Query User{87118934-0939-468E-BF45-AD2787E0B11F}C:\program files (x86)\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "TCP Query User{9D6C3270-F0FD-4A05-B9AB-43BFB7894D01}C:\users\public\sony online entertainment\installed games\planetside 2 psg\planetside2.exe" = protocol=6 | dir=in | app=c:\users\public\sony online entertainment\installed games\planetside 2 psg\planetside2.exe | "TCP Query User{A428B4F6-829A-4D30-B5F4-0FE4A081676A}C:\windows\syswow64\svchost.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\svchost.exe | "TCP Query User{A6B5FFBA-6407-453B-8914-E317CBB1D130}C:\users\maszek\appdata\roaming\ubisoft\mmdoc-pdclive\gamedata\game.exe" = protocol=6 | dir=in | app=c:\users\maszek\appdata\roaming\ubisoft\mmdoc-pdclive\gamedata\game.exe | "TCP Query User{A6DB967D-A8B3-4753-A32F-869FB177D99B}C:\users\public\games\cryptic studios\neverwinter\live\gameclient.exe" = protocol=6 | dir=in | app=c:\users\public\games\cryptic studios\neverwinter\live\gameclient.exe | "TCP Query User{B2E40D78-984F-46E2-AC5A-D931DBDB3931}C:\program files (x86)\godus\godus.exe" = protocol=6 | dir=in | app=c:\program files (x86)\godus\godus.exe | "TCP Query User{C5B28468-D73B-479B-8849-5A6A65AEE1E0}C:\program files (x86)\tera\tera-launcher.exe" = protocol=6 | dir=in | app=c:\program files (x86)\tera\tera-launcher.exe | "TCP Query User{C8DD96FF-8FE8-4E9B-B7F1-2F9A03104B04}C:\users\maszek\downloads\neverwinter_nw.1.20130416a.3.exe" = protocol=6 | dir=in | app=c:\users\maszek\downloads\neverwinter_nw.1.20130416a.3.exe | "TCP Query User{CA21E218-D9A0-4F30-8D06-A3D81F1778ED}C:\program files (x86)\total war rome ii\rome2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\total war rome ii\rome2.exe | "TCP Query User{CCEB65E1-80B6-40A1-9092-CDBE51A9FA51}C:\program files (x86)\farcry 3\bin\farcry3.exe" = protocol=6 | dir=in | app=c:\program files (x86)\farcry 3\bin\farcry3.exe | "TCP Query User{D1164921-096D-4C87-84AD-4563C355C76D}C:\r.g. catalyst\saints row iv\saintsrowiv.exe" = protocol=6 | dir=in | app=c:\r.g. catalyst\saints row iv\saintsrowiv.exe | "TCP Query User{DA03AF85-964B-48F9-B783-25333B81D211}C:\program files (x86)\guild wars 2\gw2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\guild wars 2\gw2.exe | "TCP Query User{DAA8492F-8FBD-4D6C-90E9-C9E20DD0524E}C:\program files (x86)\impire\impire.exe" = protocol=6 | dir=in | app=c:\program files (x86)\impire\impire.exe | "TCP Query User{DFD79281-60B7-4E86-8EAB-67F9C33E5211}C:\program files (x86)\prototype 2\prototype2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\prototype 2\prototype2.exe | "TCP Query User{E913BFB2-1A53-4FA7-9618-853C1723A51D}C:\users\maszek\downloads\the elder scrolls v skyrim\the elder scrolls v skyrim\creationkit.exe" = protocol=6 | dir=in | app=c:\users\maszek\downloads\the elder scrolls v skyrim\the elder scrolls v skyrim\creationkit.exe | "TCP Query User{ECF2F61F-2FE2-4BD9-A56A-80C9634B9F18}C:\program files (x86)\steam\steamapps\common\age of empires online\spartan.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\age of empires online\spartan.exe | "TCP Query User{F9A6F868-0FCB-405C-B86B-BA7AC4927A64}C:\program files (x86)\orcs must die 2\build\release\orcsmustdie2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\orcs must die 2\build\release\orcsmustdie2.exe | "UDP Query User{00058FAB-3088-4E5F-9323-5CE5D71BB90D}C:\users\public\sony online entertainment\installed games\planetside 2 psg\planetside2.exe" = protocol=17 | dir=in | app=c:\users\public\sony online entertainment\installed games\planetside 2 psg\planetside2.exe | "UDP Query User{0391ECEC-A756-4FBC-A6DE-04DA590F0908}C:\users\public\games\cryptic studios\neverwinter\live\gameclient.exe" = protocol=17 | dir=in | app=c:\users\public\games\cryptic studios\neverwinter\live\gameclient.exe | "UDP Query User{0507ED67-F44B-4CF2-BBFF-A648ED64524B}C:\users\maszek\downloads\neverwinter_nw.1.20130416a.3.exe" = protocol=17 | dir=in | app=c:\users\maszek\downloads\neverwinter_nw.1.20130416a.3.exe | "UDP Query User{18643F42-5FD3-41C8-AA4B-A7EEAB52002E}C:\simcityofflineserver\apache\httpd.exe" = protocol=17 | dir=in | app=c:\simcityofflineserver\apache\httpd.exe | "UDP Query User{20DE7D49-E62D-4EC7-8F63-3C9E4C75FCC5}C:\simcityofflineserver\start.exe" = protocol=17 | dir=in | app=c:\simcityofflineserver\start.exe | "UDP Query User{4B33588B-2CA5-4ED5-859D-F9A40F4B485A}C:\users\maszek\desktop\the elder scrolls v skyrim\the elder scrolls v skyrim\creationkit.exe" = protocol=17 | dir=in | app=c:\users\maszek\desktop\the elder scrolls v skyrim\the elder scrolls v skyrim\creationkit.exe | "UDP Query User{52BE7E47-3265-4BB5-9654-932B7569767F}C:\program files (x86)\impire\impire.exe" = protocol=17 | dir=in | app=c:\program files (x86)\impire\impire.exe | "UDP Query User{637E22E6-449D-4DF3-B1BE-39186CEED0FC}C:\program files (x86)\star vault\mortal online\mortal online launcher.exe" = protocol=17 | dir=in | app=c:\program files (x86)\star vault\mortal online\mortal online launcher.exe | "UDP Query User{67D0A97F-E59D-4ADC-81A5-40C5480EE6D6}C:\users\maszek\appdata\local\temp\gw2.exe" = protocol=17 | dir=in | app=c:\users\maszek\appdata\local\temp\gw2.exe | "UDP Query User{6AB07F03-6601-4FF3-AD86-503BBB00808E}C:\program files (x86)\prototype 2\prototype2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\prototype 2\prototype2.exe | "UDP Query User{76CAFF88-A830-49CB-B351-2B7D4E377BB8}C:\program files (x86)\godus\godus.exe" = protocol=17 | dir=in | app=c:\program files (x86)\godus\godus.exe | "UDP Query User{8BD15BD4-4626-4DEE-B976-EAB69C7F098E}C:\program files (x86)\total war rome ii\rome2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\total war rome ii\rome2.exe | "UDP Query User{9B1FC6D1-0029-4133-8CCD-8E9F30F17015}C:\program files (x86)\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "UDP Query User{A4EDC5BE-3529-482B-B480-16C9BA7FC976}C:\users\maszek\downloads\the elder scrolls v skyrim\the elder scrolls v skyrim\creationkit.exe" = protocol=17 | dir=in | app=c:\users\maszek\downloads\the elder scrolls v skyrim\the elder scrolls v skyrim\creationkit.exe | "UDP Query User{C312EABC-46FD-45DE-AF40-FDB3AA62456D}C:\r.g. catalyst\saints row iv\saintsrowiv.exe" = protocol=17 | dir=in | app=c:\r.g. catalyst\saints row iv\saintsrowiv.exe | "UDP Query User{C91B77CE-06D2-49AF-AA05-58A4BFBA9185}C:\users\maszek\appdata\roaming\ubisoft\mmdoc-pdclive\launcher.exe" = protocol=17 | dir=in | app=c:\users\maszek\appdata\roaming\ubisoft\mmdoc-pdclive\launcher.exe | "UDP Query User{D4F6A1B1-22BF-429A-A7BA-AD2703A79065}C:\users\maszek\appdata\roaming\ubisoft\mmdoc-pdclive\gamedata\game.exe" = protocol=17 | dir=in | app=c:\users\maszek\appdata\roaming\ubisoft\mmdoc-pdclive\gamedata\game.exe | "UDP Query User{D6B1440F-6F12-476D-AF11-BB81739EE631}C:\program files (x86)\orcs must die 2\build\release\orcsmustdie2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\orcs must die 2\build\release\orcsmustdie2.exe | "UDP Query User{E00EF970-0A03-43C2-AAE2-F0EA624D0C60}C:\program files (x86)\steam\steamapps\common\age of empires online\spartan.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\age of empires online\spartan.exe | "UDP Query User{E5376FDB-3D21-4014-9FD9-FF0D83945FA9}C:\windows\syswow64\svchost.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\svchost.exe | "UDP Query User{F462C088-522C-4550-B0D7-563E7468FA4E}C:\program files (x86)\farcry 3\bin\farcry3.exe" = protocol=17 | dir=in | app=c:\program files (x86)\farcry 3\bin\farcry3.exe | "UDP Query User{FD9474A4-C65D-49CB-BFC0-FBF136C9FF7D}C:\program files (x86)\guild wars 2\gw2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\guild wars 2\gw2.exe | "UDP Query User{FFC96DBA-520E-477C-95C8-F19655D5A99F}C:\program files (x86)\tera\tera-launcher.exe" = protocol=17 | dir=in | app=c:\program files (x86)\tera\tera-launcher.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{8E5DA9A6-7A9F-3A6F-BC5C-D6CBCA6A29C7}" = Microsoft .NET Framework 4 Extended PLK Language Pack "{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 326.80 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 326.80 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 326.80 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 1.6 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 326.80 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.13.0725 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 7.2.17 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.3.26.4 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.2 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "DriverAgent.exe" = DriverAgent by eSupport.com "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft .NET Framework 4 Extended PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended "WinRAR archiver" = WinRAR 4.20 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{07300F01-89CA-4CF8-92BD-2A605EB83C95}" = EasySaver B9.1214.1 "{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1 "{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1 "{26A24AE4-039D-4CA4-87B4-2F83217009FF}" = Java 7 Update 9 "{3B983EFD-6E37-4AD9-9A7D-8C83E61674F7}" = Splashtop Connect IE "{3DECD372-76A1-4483-BF10-B547790A3261}" = ON_OFF Charge B11.1102.1 "{45D49CA7-D7D8-4659-B35A-EBD98C30AF28}" = Splashtop Connect for Firefox "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace "{5594692B-326D-4DA9-8E3D-0607C00EFBE2}_is1" = "Amnesia - A Machine for Pigs" "{62D82EC1-0D3A-DF54-8E3E-07E1337A5311}" = savensharre "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7B5AA67E-FEA0-40BB-BAB5-CA56645A589C}" = NVIDIA PhysX "{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{90850415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Word Viewer 2003 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{AC76BA86-7AD7-1045-7B44-A95000000001}" = Adobe Reader 9.5.0 - Polish "{C670DCAE-E392-AA32-6F42-143C7FC4BDFD}" = Searchh-NewTTaab "{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}" = Microsoft XNA Framework Redistributable 4.0 Refresh "{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}" = Etron USB3.0 Host Controller "{E3B9C5A9-BD7A-4B56-B754-FAEA7DD6FA88}" = Far Cry 3 "{E5F05232-96B6-4552-A480-785A60A94B21}" = System Requirements Lab CYRI "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Afterburner" = MSI Afterburner 2.3.1 "Fraps" = Fraps "Mozilla Firefox 23.0.1 (x86 pl)" = Mozilla Firefox 23.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NapiProjekt_is1" = NapiProjekt (2.1.0.2287) "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "PhotoScape" = PhotoScape "PLAY ONLINE" = PLAY ONLINE "RXVyb3BhVW5pdmVyc2FsaXNJVg==_is1" = Europa Universalis IV "SP_4e24eecb" = Search Assistant WebSearch 1.74 "SP_703c874a" = SaveShare 1.74 "TeamSpeak 3 Client" = TeamSpeak 3 Client "Uplay" = Uplay "uTorrent" = µTorrent "VG90YWxXYXJST01FSUk=_is1" = Total War ROME II "VLC media player" = VLC media player 2.0.3 "Winamp" = Winamp [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2665012282-804337892-550135643-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "MyFreeCodec" = MyFreeCodec "UnityWebPlayer" = Unity Web Player "Winamp Detect" = Detektor Winampa [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-09-18 23:17:27 | Computer Name = Maszek-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Error - 2013-09-19 00:04:52 | Computer Name = Maszek-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2013-09-19 00:04:52 | Computer Name = Maszek-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2013-09-19 00:04:52 | Computer Name = Maszek-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Error - 2013-09-19 01:28:50 | Computer Name = Maszek-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2013-09-19 01:28:50 | Computer Name = Maszek-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2013-09-19 01:28:50 | Computer Name = Maszek-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Error - 2013-09-19 04:19:22 | Computer Name = Maszek-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2013-09-19 04:19:22 | Computer Name = Maszek-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2013-09-19 04:19:22 | Computer Name = Maszek-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. [ System Events ] Error - 2013-09-20 12:10:01 | Computer Name = Maszek-PC | Source = Service Control Manager | ID = 7034 Description = Usługa User Profile Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 3. Error - 2013-09-20 12:10:01 | Computer Name = Maszek-PC | Source = Service Control Manager | ID = 7034 Description = Usługa Remote Access Connection Manager niespodziewanie zakończyła pracę. Wystąpiło to razy: 3. Error - 2013-09-20 12:10:01 | Computer Name = Maszek-PC | Source = Service Control Manager | ID = 7034 Description = Usługa Task Scheduler niespodziewanie zakończyła pracę. Wystąpiło to razy: 3. Error - 2013-09-20 12:10:01 | Computer Name = Maszek-PC | Source = Service Control Manager | ID = 7034 Description = Usługa Secondary Logon niespodziewanie zakończyła pracę. Wystąpiło to razy: 3. Error - 2013-09-20 12:10:01 | Computer Name = Maszek-PC | Source = Service Control Manager | ID = 7034 Description = Usługa System Event Notification Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 3. Error - 2013-09-20 12:10:01 | Computer Name = Maszek-PC | Source = Service Control Manager | ID = 7034 Description = Usługa Shell Hardware Detection niespodziewanie zakończyła pracę. Wystąpiło to razy: 3. Error - 2013-09-20 12:10:01 | Computer Name = Maszek-PC | Source = Service Control Manager | ID = 7034 Description = Usługa Themes niespodziewanie zakończyła pracę. Wystąpiło to razy: 3. Error - 2013-09-20 12:10:01 | Computer Name = Maszek-PC | Source = Service Control Manager | ID = 7034 Description = Usługa Windows Management Instrumentation niespodziewanie zakończyła pracę. Wystąpiło to razy: 3. Error - 2013-09-20 12:41:27 | Computer Name = Maszek-PC | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą PLAY ONLINE. OUC. Error - 2013-09-20 12:41:27 | Computer Name = Maszek-PC | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi PLAY ONLINE. OUC z powodu następującego błędu: %%1053 < End of report >