OTL Extras logfile created on: 2013-10-29 19:41:47 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\kyzio\Desktop 64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 8,00 Gb Total Physical Memory | 6,98 Gb Available Physical Memory | 87,30% Memory free 16,00 Gb Paging File | 14,99 Gb Available in Paging File | 93,74% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 45,74 Gb Total Space | 7,01 Gb Free Space | 15,33% Space Free | Partition Type: NTFS Drive D: | 419,92 Gb Total Space | 202,73 Gb Free Space | 48,28% Space Free | Partition Type: NTFS Computer Name: KYZIO-PC | User Name: kyzio | Logged in as Administrator. Boot Mode: SafeMode | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-1596186787-2504432631-3930319091-1000\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{04D237AB-C8BD-4802-8FF8-86F11A009B1C}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{05E09E27-2E27-4E2D-945D-B890EAC32042}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{19089553-EA0A-45F1-BC9D-C5D35E001CA6}" = lport=445 | protocol=6 | dir=in | app=system | "{20222BB6-5B93-464F-9FD4-1849D226789D}" = lport=138 | protocol=17 | dir=in | app=system | "{21BCEDF5-F5CB-46EB-9A50-52957AD52331}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{24C78402-995D-4467-9366-DA6A57514790}" = rport=445 | protocol=6 | dir=out | app=system | "{2F05A4C4-A80F-4BD1-AEF1-6583073B4DB8}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{3445FC77-840A-48C8-B984-C929FC2B4097}" = rport=137 | protocol=17 | dir=out | app=system | "{4116B4FC-0B13-430D-B01C-8B7BF4314C8B}" = rport=137 | protocol=17 | dir=out | app=system | "{42B8A67E-1105-4670-A6C5-8A94E5D6EB18}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{42E1AE34-040D-4A89-A42D-621E71EF77AF}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4C5FF959-2D4B-4EEF-B9F6-2AA78C364762}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{5BB3CF1A-4460-41FB-AD29-FCC4C6A84A13}" = lport=2869 | protocol=6 | dir=in | app=system | "{5D0857A3-0E29-4001-8606-EFE35A5AD270}" = lport=139 | protocol=6 | dir=in | app=system | "{61D453BB-4007-4BC6-BC08-101ECFCA203A}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{646D330F-9E01-43A8-B7D0-735011364D22}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{6C179686-5629-493A-B9EC-91ABDD215FD9}" = rport=138 | protocol=17 | dir=out | app=system | "{6E5E8205-F525-410A-92B3-B5253419693F}" = lport=138 | protocol=17 | dir=in | app=system | "{755928A7-F09E-4036-9021-D083A089F2B6}" = rport=139 | protocol=6 | dir=out | app=system | "{830D9A9D-214E-47C7-BF28-0157FB87D064}" = lport=445 | protocol=6 | dir=in | app=system | "{860A7F13-D3D7-4B8A-830D-39844D308A45}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{9611CAD2-A283-4FE6-8EE7-4922C698071D}" = rport=445 | protocol=6 | dir=out | app=system | "{A6A0846E-AB68-414D-B7C4-524A99ABBA1E}" = rport=139 | protocol=6 | dir=out | app=system | "{AE8A83A5-42F0-41E5-8A15-A90D723A9F48}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{B02F0F38-8F8C-49A2-9BD3-7DCCDCD5FF16}" = lport=137 | protocol=17 | dir=in | app=system | "{B2B37CE2-C87E-4CF3-BB9C-1A496AD83D87}" = lport=10243 | protocol=6 | dir=in | app=system | "{B4D42E0F-5AA2-441B-84DB-98706BB2D914}" = rport=138 | protocol=17 | dir=out | app=system | "{BE241961-1D08-4BEF-969F-46990BEF81A7}" = lport=139 | protocol=6 | dir=in | app=system | "{C76D9E40-1347-4CBE-A8C9-720330F41A01}" = rport=10243 | protocol=6 | dir=out | app=system | "{D117F3B4-D65D-452F-9E69-626B6576B89B}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{E1EA028B-32D8-436F-B914-A1749DD1F239}" = lport=137 | protocol=17 | dir=in | app=system | "{E517939E-FEDE-4480-98FC-76177929445F}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{E8B74648-905D-498E-94AF-B557B4EA01EC}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{F676337A-BF22-4E7A-9B15-03F9A92FFC5D}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{FF1FD608-8B41-4807-81B7-4FEA05B169EE}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{000B29FF-EDDA-49EC-B671-3DA9F852C158}" = protocol=17 | dir=in | app=c:\program files (x86)\tunngle\tnglctrl.exe | "{0426C365-1006-4DC3-8F31-08E70F701352}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{049B06CD-D375-48CC-A136-EDE82A2A9FB7}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{08FF08CB-566D-40E4-91D2-6A0324F2639A}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe | "{15FC5601-A2EE-4C31-9629-9F2FC405157F}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{1624C286-F54D-4E7C-90A2-FA6425133813}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe | "{172EA696-7C85-48DF-ABF4-4108836024F4}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{177DF4E2-659F-4E43-84FC-E462261F2944}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{1AE8EC67-3956-4C15-A0AB-310F63EF0AAA}" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\assassin's creed iii\ac3sp.exe | "{2A5A1B7E-8E03-4165-99FE-079225639CAF}" = protocol=6 | dir=in | app=d:\inst origin\medal of honor warfighter\mohw.exe | "{2B97F95B-BD04-4981-9B24-1A8B7901BE78}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{2C85E962-4487-41A6-B1C6-EAE803BC8719}" = protocol=17 | dir=in | app=d:\steam\steam.exe | "{38380D8C-94FE-4615-9A74-BD22635AE428}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{3D78D5FE-F12A-48F2-BA62-7FB0D19FD32A}" = protocol=6 | dir=in | app=c:\program files (x86)\tunngle\tnglctrl.exe | "{3F1FECD3-2A7A-48CF-8797-AF9BE453E6EC}" = protocol=6 | dir=in | app=d:\inst origin\battlefield 4 beta\bf4.exe | "{4ABB7A1F-F7F0-47CB-8A51-C43D3800B35F}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{5097EF05-C662-4862-B205-6C54B351BE94}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{54EB5658-A7E9-4EFE-8478-F65A6D57AD32}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe | "{5678A756-B262-43B2-88A5-DFBDDED7E66E}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{5680674C-E067-4709-AFF0-41B1D3C674C4}" = protocol=6 | dir=in | app=c:\program files (x86)\relevantknowledge\rlvknlg.exe | "{5750668E-72ED-428B-9F8F-F73F24C86FC8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{5B8D6325-84CC-4FBC-8800-06D94FC1B61B}" = protocol=6 | dir=in | app=d:\inst origin\battlefield 3\bf3.exe | "{5CB021F6-41A1-4853-A372-06BF4D404838}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{5E802045-CBEE-47D6-BFA6-BED17E66CC69}" = protocol=17 | dir=in | app=d:\inst origin\battlefield 3\bf3.exe | "{6A8E2FBE-DCFE-4F1B-A65E-2E05FB58AD9E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{7069AD78-49F5-4287-9CF3-BF31FF67C57A}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{71220319-02BD-413F-B7E1-8DDCBC69F984}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{7A72E34B-59DB-43EC-A543-B9F02ACE7FDD}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{7C325EE0-C388-414D-A2C2-5137E263D8B6}" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\assassin's creed iii\ac3mp.exe | "{7E798C8D-7825-4879-9526-5411C4722470}" = protocol=6 | dir=in | app=d:\inst origin\battlefield 4\bf4.exe | "{834198DF-246D-4D43-A624-B4F7D7E31651}" = protocol=17 | dir=in | app=d:\inst origin\medal of honor warfighter\mohw.exe | "{8E078038-F7DA-40D5-958B-B12B6FDDCC06}" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\assassin's creed iii\assassinscreed3.exe | "{9072D699-048F-4F97-AC47-08B9F784EEF8}" = protocol=17 | dir=in | app=d:\inst origin\battlefield 4\bf4_x86.exe | "{923F1FA9-097C-4EED-999D-EC2E86ED71B8}" = protocol=17 | dir=in | app=d:\inst origin\battlefield 4 beta\bf4.exe | "{969C921E-8F8F-485C-834B-FE8131862338}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{982338D5-FEC3-4AA5-9CCD-B52CB1B4EB12}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe | "{9EF81DA5-EC24-45D4-AD66-51FEE8E8CD0F}" = protocol=17 | dir=in | app=c:\program files (x86)\relevantknowledge\rlvknlg.exe | "{A586E0F3-B67B-4B11-AE9C-1F4B24721790}" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\assassin's creed iii\ac3mp.exe | "{B71288F6-56AC-4A90-8859-C1AD08D15E52}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{BB24033D-D95C-4382-85BF-A9623D57D524}" = protocol=6 | dir=in | app=c:\programdata\esafe\egdpsvc.exe | "{BB25B364-35BC-4963-8D6A-8E2BA26CA72A}" = protocol=6 | dir=in | app=d:\steam\steam.exe | "{C0D3C94B-AE2E-470E-A631-C2A0231AA4CA}" = protocol=6 | dir=in | app=d:\inst origin\battlefield 4\bf4_x86.exe | "{C30867F5-C1E5-42F0-B002-F87F56161944}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{C8389E10-72B0-45CD-8EDD-86EA730E41C6}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{C8EC418C-9321-456A-A95C-3FACD2821F3A}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{CC0D7C28-C150-41A3-930F-64FB1AA31318}" = protocol=17 | dir=in | app=d:\utorrent\utorrent.exe | "{CDEC170E-1BB3-4970-ACFF-3ABFF4EC89C0}" = protocol=6 | dir=out | app=system | "{D8194337-DE62-4C80-BB94-19B18689F59F}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{DC676F84-4873-4A6C-9185-F5229688C2E5}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{DFFA0DFE-35E5-4FAC-BAA2-617ADCE98943}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{E2F8ECDC-65EF-4478-B687-11AB37A7B99B}" = protocol=17 | dir=in | app=d:\inst origin\battlefield 4\bf4.exe | "{E4CC252C-79B2-4AD1-A73B-CAF04D7D99D6}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{E5580E46-C5D6-4C1C-A80A-0B7E632F59D9}" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\assassin's creed iii\assassinscreed3.exe | "{E7196540-66AB-4BA9-9879-A912696C91D6}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{E87AC887-BA9A-499C-9EE4-59F98DD9BAF6}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{EA5B81C5-192B-4EEC-943A-F3B20FF4B16B}" = protocol=6 | dir=in | app=d:\utorrent\utorrent.exe | "{F2D6BD08-3345-49C4-A9FD-68139E110E8E}" = protocol=17 | dir=in | app=c:\program files (x86)\tunngle\tunngle.exe | "{F67616C5-9C53-42D6-B2CA-4D333DD63EA8}" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\assassin's creed iii\ac3sp.exe | "{F7644A51-C45C-4F1D-BAF6-2B8216455F6D}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{FD532006-12E0-47F0-93E5-FBCCF7D01250}" = protocol=6 | dir=in | app=c:\program files (x86)\tunngle\tunngle.exe | "TCP Query User{074EE743-17FD-4270-ADD9-3436FF49F7CA}D:\program files\virtualmt2\metin2.bin" = protocol=6 | dir=in | app=d:\program files\virtualmt2\metin2.bin | "TCP Query User{16AABE5D-488C-4FA5-8725-80400AB3EE57}C:\users\kyzio\desktop\virtualmt2\metin2mod_2011sf.exe" = protocol=6 | dir=in | app=c:\users\kyzio\desktop\virtualmt2\metin2mod_2011sf.exe | "TCP Query User{36BFA7B2-2CBA-4D42-BE26-FB05F66C5BE4}D:\program files\virtualmt2\virtualmt2 (bez patchera).exe" = protocol=6 | dir=in | app=d:\program files\virtualmt2\virtualmt2 (bez patchera).exe | "TCP Query User{8973DD0E-FF88-4BE4-8F01-F9A4C13626BD}D:\games\world_of_tanks\worldoftanks.exe" = protocol=6 | dir=in | app=d:\games\world_of_tanks\worldoftanks.exe | "TCP Query User{A5EA4B2F-97EE-4F29-80BA-04129208424C}D:\games\world_of_tanks\wotlauncher.exe" = protocol=6 | dir=in | app=d:\games\world_of_tanks\wotlauncher.exe | "TCP Query User{CA0A469C-6209-4DD2-99F7-5493D4AC1059}D:\program files\virtualmt2\virtualmt2 (bez patchera).exe" = protocol=6 | dir=in | app=d:\program files\virtualmt2\virtualmt2 (bez patchera).exe | "TCP Query User{CD0495BC-1063-4507-B93C-F5410C4DCB0F}D:\company of heroes\reliccoh.exe" = protocol=6 | dir=in | app=d:\company of heroes\reliccoh.exe | "TCP Query User{D0A8A721-9CB6-429B-A085-A6264F159BE1}D:\program files (x86)\company of heroes 2\reliccoh2.exe" = protocol=6 | dir=in | app=d:\program files (x86)\company of heroes 2\reliccoh2.exe | "TCP Query User{F641AC06-CAF7-4620-934E-9FDD5247FC44}D:\program files (x86)\company of heroes 2\reliccoh2.exe" = protocol=6 | dir=in | app=d:\program files (x86)\company of heroes 2\reliccoh2.exe | "UDP Query User{481AFE6A-8447-4F21-835D-E0E01DC6EA8E}D:\games\world_of_tanks\worldoftanks.exe" = protocol=17 | dir=in | app=d:\games\world_of_tanks\worldoftanks.exe | "UDP Query User{62530DA2-2140-41CE-AE7C-C5C20E9F02E6}D:\program files (x86)\company of heroes 2\reliccoh2.exe" = protocol=17 | dir=in | app=d:\program files (x86)\company of heroes 2\reliccoh2.exe | "UDP Query User{66DBAA37-FDFE-4AA0-A325-3AAD327D7D31}D:\program files\virtualmt2\virtualmt2 (bez patchera).exe" = protocol=17 | dir=in | app=d:\program files\virtualmt2\virtualmt2 (bez patchera).exe | "UDP Query User{6CCF6D78-002B-4186-896D-DD02729EB5A6}D:\program files\virtualmt2\metin2.bin" = protocol=17 | dir=in | app=d:\program files\virtualmt2\metin2.bin | "UDP Query User{7152D1C8-BC59-40DC-ADA3-3B24900A1CF2}D:\program files\virtualmt2\virtualmt2 (bez patchera).exe" = protocol=17 | dir=in | app=d:\program files\virtualmt2\virtualmt2 (bez patchera).exe | "UDP Query User{A686ACFE-36AD-4ADA-8251-4127F2DF6840}C:\users\kyzio\desktop\virtualmt2\metin2mod_2011sf.exe" = protocol=17 | dir=in | app=c:\users\kyzio\desktop\virtualmt2\metin2mod_2011sf.exe | "UDP Query User{C472EB62-1B33-4293-8F71-A9C614B68157}D:\company of heroes\reliccoh.exe" = protocol=17 | dir=in | app=d:\company of heroes\reliccoh.exe | "UDP Query User{DA1CB28D-F029-47B2-8E86-E02361AB9CA0}D:\program files (x86)\company of heroes 2\reliccoh2.exe" = protocol=17 | dir=in | app=d:\program files (x86)\company of heroes 2\reliccoh2.exe | "UDP Query User{EB58F46B-02E5-4416-9267-80C45872A3EB}D:\games\world_of_tanks\wotlauncher.exe" = protocol=17 | dir=in | app=d:\games\world_of_tanks\wotlauncher.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0122EDA0-52FC-4EC2-9A31-A2A757A7D40E}" = BF3 Settings Editor "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{26A24AE4-039D-4CA4-87B4-2F86417021FF}" = Java 7 Update 21 (64-bit) "{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{764384C5-BCA9-307C-9AAC-FD443662686A}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 331.40 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 331.40 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 331.40 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 331.40 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.13.0725 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.3.26.4 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "Blender" = Blender "C-Media Oxygen HD Audio Driver" = ASUS Xonar DX Audio Driver "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "TeamSpeak 3 Client" = TeamSpeak 3 Client "WinRAR archiver" = WinRAR 4.20 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}" = Razer Synapse 2.0 "{1040143F-FEFB-4B90-8E51-E47D40E14C4E}" = Medal of Honor™ Warfighter "{18192D3F-5537-4560-AD89-D695F72AF91D}" = OpenOffice.org 3.4.1 "{1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1" = Euro Truck Simulator 2 "{1EAC1D02-C6AC-4FA6-9A44-96258C37C812}_is1" = World of Tanks v.0.8.0 "{1EAC1D02-C6AC-4FA6-9A44-96258C37C812CT}_is1" = World of Tanks - Common Test "{1EAC1D02-C6AC-4FA6-9A44-96258C37C813EU}_is1" = World of Warplanes "{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 25 "{434D452D-5637-006A-76A7-A758B70C0300}" = Ask Toolbar "{46E1B1F2-A279-4356-9B17-029F9CC72EAE}" = Brother MFL-Pro Suite DCP-7030 "{48615A7B-F026-4F62-A3F1-49001B8E21CB}" = Overwolf "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{6006089C-84B5-4F18-8113-D96792AED0DE}_is1" = ChrisPC Free Anonymous Proxy 4.20 "{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™ "{79361740-EAE3-11E2-9911-B8AC6F98CCE3}" = Google Earth Plug-in "{7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1" = Need For Speed™ World "{7B5AA67E-FEA0-40BB-BAB5-CA56645A589C}" = NVIDIA PhysX "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver For Windows 7 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9D15E813-0C26-41E7-ABC5-3EB06FF1B3CF}" = Assassin's Creed(R) III v1.02 "{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{ABADE36E-EC37-413B-8179-B432AD3FACE7}" = Battlefield 4™ "{AC76BA86-7AD7-1045-7B44-AB0000000001}" = Adobe Reader XI (11.0.05) - Polish "{CFAB3721-549D-4827-A4E8-7F90192114AB}" = Battlefield 4™ Beta "{d08d9f98-1c78-4704-87e6-368b0023d831}" = RelevantKnowledge "{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}" = GTA San Andreas "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "a2zLyrics-16" = a2zLyrics-16 "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Afterburner" = MSI Afterburner 2.3.1 "Battlelog Web Plugins" = Battlelog Web Plugins "bi_uninstaller" = Bundled software uninstaller "Bridge Project_is1" = Bridge Project "DAEMON Tools Lite" = DAEMON Tools Lite "dosearches Browser Protecter" = dosearches Browser Protecter "DreamMail 4.6" = DreamMail 4.6 "ESN Sonar-0.70.4" = ESN Sonar "Google Chrome" = Google Chrome "Hide IP NG_is1" = Hide IP NG 1.84 "Minecraft Cracked" = Minecraft Cracked "Mozilla Firefox 24.0 (x86 pl)" = Mozilla Firefox 24.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Optimizer Pro_is1" = Optimizer Pro v3.2 "Origin" = Origin "PAYDAY 2_is1" = PAYDAY 2 "PC Tools Firewall Plus" = PC Tools Firewall Plus 7.0 "PrecisionX" = EVGA Precision X 4.2.1 "PunkBusterSvc" = PunkBuster Services "PuTTY_is1" = PuTTY version 0.63 "Steam App 570" = Dota 2 "TeamViewer 8" = TeamViewer 8 "Tunngle beta_is1" = Tunngle beta "Uplay" = Uplay "uTorrent" = µTorrent "Virtualmt2" = Virtualmt2 "winscp3_is1" = WinSCP 5.1.7 "WsysControl" = Wsys Control 10.2.1.2652 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1596186787-2504432631-3930319091-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "AppsHat Mobile Apps" = AppsHat Mobile Apps [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-10-15 14:50:58 | Computer Name = kyzio-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2013/10/15 20:50:58.143]: [00003916]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2013-10-15 14:50:59 | Computer Name = kyzio-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2013/10/15 20:50:59.643]: [00003916]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2013-10-15 14:51:01 | Computer Name = kyzio-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2013/10/15 20:51:01.144]: [00003916]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2013-10-15 14:51:02 | Computer Name = kyzio-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2013/10/15 20:51:02.644]: [00003916]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2013-10-15 14:51:04 | Computer Name = kyzio-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2013/10/15 20:51:04.144]: [00003916]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2013-10-15 14:51:05 | Computer Name = kyzio-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2013/10/15 20:51:05.644]: [00003916]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2013-10-15 14:51:07 | Computer Name = kyzio-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2013/10/15 20:51:07.144]: [00003916]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2013-10-15 14:51:08 | Computer Name = kyzio-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2013/10/15 20:51:08.644]: [00003916]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2013-10-15 14:51:10 | Computer Name = kyzio-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2013/10/15 20:51:10.144]: [00003916]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2013-10-15 14:51:11 | Computer Name = kyzio-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2013/10/15 20:51:11.644]: [00003916]: lperrcode->api = 1 , lperrcode->code = 2 [ System Events ] Error - 2013-10-29 14:39:21 | Computer Name = kyzio-PC | Source = DCOM | ID = 10005 Description = Error - 2013-10-29 14:39:21 | Computer Name = kyzio-PC | Source = Service Control Manager | ID = 7001 Description = Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji w sieci, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2013-10-29 14:39:21 | Computer Name = kyzio-PC | Source = Service Control Manager | ID = 7001 Description = Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji w sieci, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2013-10-29 14:39:24 | Computer Name = kyzio-PC | Source = Service Control Manager | ID = 7001 Description = Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji w sieci, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2013-10-29 14:39:24 | Computer Name = kyzio-PC | Source = Service Control Manager | ID = 7001 Description = Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji w sieci, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2013-10-29 14:39:24 | Computer Name = kyzio-PC | Source = Service Control Manager | ID = 7001 Description = Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji w sieci, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2013-10-29 14:39:24 | Computer Name = kyzio-PC | Source = Service Control Manager | ID = 7001 Description = Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji w sieci, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2013-10-29 14:39:24 | Computer Name = kyzio-PC | Source = Service Control Manager | ID = 7001 Description = Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji w sieci, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2013-10-29 14:39:24 | Computer Name = kyzio-PC | Source = Service Control Manager | ID = 7001 Description = Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji w sieci, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2013-10-29 14:39:47 | Computer Name = kyzio-PC | Source = DCOM | ID = 10005 Description = < End of report >