OTL Extras logfile created on: 2013-11-18 21:20:25 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\PC\Downloads 64bit- Enterprise Edition (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16721) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 8,00 Gb Total Physical Memory | 6,25 Gb Available Physical Memory | 78,11% Memory free 16,00 Gb Paging File | 13,89 Gb Available in Paging File | 86,81% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 931,51 Gb Total Space | 709,91 Gb Free Space | 76,21% Space Free | Partition Type: NTFS Drive D: | 74,22 Gb Total Space | 74,12 Gb Free Space | 99,87% Space Free | Partition Type: NTFS Computer Name: RODZINAK | User Name: PC | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-3463171804-1537994893-3906066650-1003\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- "C:\Users\Natusia i Pablo\AppData\Roaming\File Scout\filescout.exe" /open "%1" Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- "C:\Users\Natusia i Pablo\AppData\Roaming\File Scout\filescout.exe" /open "%1" Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = CE 37 E6 AF FF 6A CD 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{01525266-F64C-4C6B-B1C0-2F97484A1DB4}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{09AB0B23-575B-4088-8105-A720ECA9FA36}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{0FBC2137-B20F-494B-9C99-FA7F36564A1B}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{1050B64D-B4D2-43A4-B28A-E84AD000F740}" = lport=137 | protocol=17 | dir=in | app=system | "{105F8396-0285-4BA8-B240-2AF84C6638E2}" = lport=139 | protocol=6 | dir=in | app=system | "{114D1C72-56F7-4FAE-91FA-8F0A4BD4A15C}" = lport=445 | protocol=6 | dir=in | app=system | "{165CA997-0DAC-4487-A856-6690C60E4597}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{1FB31886-8723-4110-9B79-327C9882D2F7}" = rport=139 | protocol=6 | dir=out | app=system | "{20EF897A-1330-4F6F-808B-905CBD0BE2C5}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{3EFCEE5C-FDA8-460E-91A4-3E743E357337}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{4B3B3960-877C-479F-80E2-1DEEEFFED9C0}" = lport=138 | protocol=17 | dir=in | app=system | "{50B4D559-4955-441C-B56B-4BBB3754250B}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{55B68791-17B7-471F-992B-689EC459DA87}" = rport=137 | protocol=17 | dir=out | app=system | "{78D7943A-47BC-4691-89F4-F4C7CD7A922A}" = rport=138 | protocol=17 | dir=out | app=system | "{7CFF2D0C-8204-41CD-96E3-E9BAF087BBFD}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{7EDA7D19-4E89-4B84-AFFF-DC21013DE1BB}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\dashost.exe | "{8883782E-2B4D-4DA9-A1BB-68534F68E6EE}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{9B0C21E9-DAF7-48D9-9356-3D011E26B06F}" = rport=2869 | protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{CEA324F2-CEEF-42C2-B652-82CFA7C797D1}" = rport=445 | protocol=6 | dir=out | app=system | "{D5AC8AA7-18FB-424D-831E-905DEEC20620}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{DB5A355F-7DDA-4676-9F26-D4D735767FBF}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{E25DAE47-8751-4D8E-8C60-0DBED7AD3BE5}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0662596A-0B3C-4DB3-AF19-E58917D3D968}" = protocol=17 | dir=in | app=c:\gry\thq\s.t.a.l.k.e.r. - shadow of chernobyl\bin\dedicated\xr_3da.exe | "{06DC897B-7778-473D-A302-38E25C473073}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{09301BB0-D058-4F7A-B8F1-E5D45D125367}" = dir=in | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{13F720C3-66E3-483F-B807-7931E85D0E28}" = dir=out | name=allegro.pl | "{181A2D00-05AD-4A7A-9C5E-A161F3783928}" = dir=out | name=@{microsoft.bingmaps_1.2.0.136_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{1970A316-9F54-4958-B37B-330BA6E2CBDF}" = protocol=6 | dir=in | app=c:\users\pc\appdata\roaming\bittorrent\bittorrent.exe | "{1E1FCDC3-657F-42D3-9A4E-D40DEB3DDE0F}" = dir=in | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{209D683C-BAEA-484B-9955-B247F966B945}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\natural selection 2\ns2.exe | "{22C77196-3ADE-4831-85F5-2732292B6D28}" = protocol=17 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe | "{2880A0CF-9BF0-4DAA-AD70-F4D60A1F299E}" = dir=out | name=@{microsoft.bingsports_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{2B5504D0-319C-431F-A649-7D1E8996184F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | "{2C4D3271-5E03-4285-A788-63E1761295E5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\natural selection 2\ns2.exe | "{332CD4CC-9DC2-4BD4-AB40-2BF8C220C340}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{386CEF48-0669-4794-8A68-B25D7177A142}" = dir=out | name=@{microsoft.bingmaps_1.2.0.136_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{47ADA975-E1E1-4C5F-A117-0C05CBFB3D26}" = dir=out | name=google search | "{48A5D4D0-3E29-49A3-8009-7F22A1164D69}" = dir=out | name=@{microsoft.xboxlivegames_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{4A7ABC6A-55D9-4A92-BD44-5CA728B0C4F0}" = dir=out | name=@{microsoft.bingfinance_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{4B23A020-2B01-4980-9901-00F298197E79}" = dir=in | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{502C157C-43B4-4DCA-B388-620EB8FADD51}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2\hl2.exe | "{504F0116-7583-42BE-9506-BABE627F0756}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\limbo\limbo.exe | "{532A66A5-ABA1-41BC-ADC5-53A3668DF65F}" = dir=out | name=@{microsoft.xboxlivegames_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{537E6212-1B18-4E25-9EBF-14A87FCE40B6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe | "{56CF288F-2220-40EF-ABEF-73F9224F7C2D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2\hl2.exe | "{5C0220DA-9469-4F21-BD4F-44C57872AA29}" = dir=in | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{5EE5DF69-591F-4CCE-BEF4-77137743A810}" = dir=out | name=@{microsoft.bingweather_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{6375FC1E-2005-42D9-8FFA-A8BA78A3F0B0}" = dir=out | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{64DE74E5-1629-48E1-8C5C-835168A9B49A}" = dir=out | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{652EC0B3-4985-46B7-AD40-7E131FC147C5}" = dir=in | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{6887CC59-2BAE-423B-8FF4-A3F901EC1D92}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe | "{6C6DED1B-3BFD-4958-9678-086B191819A4}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{6D0E5DE9-F437-46C4-8818-A85940145ADF}" = dir=out | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{6EA18507-A2AE-43AA-95B4-C11CF6E6D3A2}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{74D5235F-AE6B-4D85-8FC7-1DF599920EC0}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\legend of grimrock\grimrock.exe | "{784C0497-E97E-48C2-9FFE-6661E78BC430}" = protocol=17 | dir=in | app=c:\gry\thq\s.t.a.l.k.e.r. - shadow of chernobyl\bin\xr_3da.exe | "{79178DCE-F0F5-46BD-B251-C419D08BE88E}" = dir=out | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{7ABE4853-9BD7-4E94-BA2E-C13DFEBD452D}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{7D0045AF-DD1C-4462-8D6A-B39562B59337}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{849271DB-6861-4FF3-B47A-BF37A5B043D0}" = dir=in | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{85B4E3C1-08FA-43F9-83F5-735EAEAE6A66}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\bioshock\builds\release\bioshock.exe | "{86B81362-CB8F-46A1-82DC-E7CC6DADF707}" = dir=out | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{870D35F6-51F5-4FDA-9DB7-78BF6F229F6E}" = protocol=6 | dir=in | app=c:\gry\thq\s.t.a.l.k.e.r. - shadow of chernobyl\bin\xr_3da.exe | "{87236949-F7D6-43C3-969E-736B8212D9E9}" = dir=out | name=@{microsoft.zunevideo_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} | "{8E0509AB-362D-4DA0-94CA-2AA671A1D7AB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | "{90E6E998-FA6E-4EE7-968D-3783E66D82A9}" = dir=out | name=@{microsoft.bingnews_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} | "{9882439A-CFE8-40A9-9C92-A28F57D9B6BC}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\limbo\limbo.exe | "{9B910E58-F3AA-4800-A698-7354802D3339}" = dir=in | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{9ED2BC42-8DCA-462A-A48E-8711B2755C41}" = protocol=17 | dir=in | app=c:\users\pc\appdata\roaming\bittorrent\bittorrent.exe | "{A04DE3A5-D8B0-4256-A73D-1100F193C727}" = dir=out | name=@{microsoft.zunemusic_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} | "{A76FB8AE-664D-4D37-B20E-392FB59BE3FA}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{A7E0A16D-8D7B-43CF-A1D8-CE714F8C28DE}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{AD4AC519-7E93-4F07-AD76-108E013D601F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\legend of grimrock\grimrock.exe | "{B42F2DEA-9B16-4767-A9E6-C707824B6600}" = protocol=6 | dir=in | app=c:\gry\thq\s.t.a.l.k.e.r. - shadow of chernobyl\bin\dedicated\xr_3da.exe | "{C5397BDA-18E7-4FF2-9BA2-C48529F70FA1}" = dir=out | name=@{microsoft.bingweather_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{C85E7C5D-B7F5-4E60-AEBB-673BE27A5F23}" = dir=out | name=@{microsoft.bingnews_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} | "{CBDE97F0-DF4C-4366-9558-1AE5547F7B5C}" = dir=out | name=@{microsoft.bingtravel_1.2.0.145_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{D2C8F25A-B2B9-4834-9146-E4EF2A8B1C0D}" = dir=out | name=@{microsoft.zunemusic_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} | "{D6AFD5C8-F0FA-4EC6-9E97-E25F3AD1A873}" = protocol=6 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe | "{D6B9B821-289A-4018-B974-CC667477F5A2}" = dir=in | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{D6C21842-1C5B-45AB-B2C5-C52C44A4EDDB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{D7548D09-2E5F-4838-9F46-A47F61692010}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{D891B570-F50F-4B8D-8B8F-B7E897D57DE7}" = protocol=17 | dir=in | app=c:\program files (x86)\napiprojekt\napisy.exe | "{D9BF76A9-50A5-431C-BF8B-FBFEB6F33BF6}" = protocol=6 | dir=in | app=c:\program files (x86)\napiprojekt\napisy.exe | "{DCA81402-94EC-4562-A656-22E369EF248F}" = dir=out | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{DEA4D503-812B-4784-A6D8-6C8B517713B9}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\bioshock\builds\release\bioshock.exe | "{E5E2BC61-83C5-44F2-B37F-0C35756914A5}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} | "{E74AFF57-25FD-4898-93E3-E6A0E25782F0}" = dir=in | name=skype | "{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{E87CAC17-DE6B-431B-9954-D718F91B89DB}" = dir=out | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{EEBBB3B0-56B8-46CE-923B-B6B7353E855C}" = dir=out | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{F0065F79-AB8A-4ED7-89C8-AD8FF929A63C}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} | "{F1CAE34C-A25A-4170-AB64-21D7A665C5CF}" = dir=out | name=@{microsoft.zunevideo_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} | "{F7437449-BD67-4493-8056-C40D81FBF58C}" = dir=out | name=skype | "{FF10C3BF-8D0C-4769-90D5-8FCF1EAC83ED}" = dir=out | name=onet news | "TCP Query User{0ABBBF32-B757-4745-84DD-1F9142DC880D}C:\gry\borderlands\borderlands\binaries\borderlands.exe" = protocol=6 | dir=in | app=c:\gry\borderlands\borderlands\binaries\borderlands.exe | "TCP Query User{3618D2DA-8824-437D-BE5B-8864B81D134C}C:\gry\bohemia interactive\dayz standalone alpha\dayz standalone alpha\dayz.exe" = protocol=6 | dir=in | app=c:\gry\bohemia interactive\dayz standalone alpha\dayz standalone alpha\dayz.exe | "TCP Query User{4885EB87-E4F7-423A-A2B2-4FE552E619D2}C:\gry\orcs must die!\build\release\orcsmustdie.exe" = protocol=6 | dir=in | app=c:\gry\orcs must die!\build\release\orcsmustdie.exe | "TCP Query User{751984E3-3D51-4DED-94D3-3BFAB84D81F8}C:\gry\dead space\dead space.exe" = protocol=6 | dir=in | app=c:\gry\dead space\dead space.exe | "TCP Query User{BF8E178C-6F71-48E0-972B-1207405BB6AB}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "TCP Query User{FF4385C1-3FA3-4058-A343-84D67D27AD0B}C:\users\pc\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\pc\appdata\local\akamai\netsession_win.exe | "UDP Query User{1C0A6AB1-A768-489D-9A23-D2F0B5F7B7BD}C:\gry\bohemia interactive\dayz standalone alpha\dayz standalone alpha\dayz.exe" = protocol=17 | dir=in | app=c:\gry\bohemia interactive\dayz standalone alpha\dayz standalone alpha\dayz.exe | "UDP Query User{498154F2-4EBB-4E8F-ABDB-08A55D80343D}C:\users\pc\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\pc\appdata\local\akamai\netsession_win.exe | "UDP Query User{79E2C412-6049-4B71-B43E-15CA2AE1AF71}C:\gry\borderlands\borderlands\binaries\borderlands.exe" = protocol=17 | dir=in | app=c:\gry\borderlands\borderlands\binaries\borderlands.exe | "UDP Query User{858E2C97-F997-427D-830D-5D84350A612A}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "UDP Query User{96ABDC45-A214-4836-966C-86827B1C4907}C:\gry\dead space\dead space.exe" = protocol=17 | dir=in | app=c:\gry\dead space\dead space.exe | "UDP Query User{EEC73E8D-C6FF-484B-979A-EB1BA020E5EA}C:\gry\orcs must die!\build\release\orcsmustdie.exe" = protocol=17 | dir=in | app=c:\gry\orcs must die!\build\release\orcsmustdie.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 311.06 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 311.06 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 311.06 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.11.3 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "CCleaner" = CCleaner "WinRAR archiver" = WinRAR 4.20 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{0CC431A1-0CED-468B-8225-89C532274021}" = XenoBot "{26A24AE4-039D-4CA4-87B4-2F83217045FF}" = Java 7 Update 45 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4D87DC92-C328-46EC-A7B4-9C88129DC696}" = Dead Space™ "{5DE67937-45D5-45E4-923C-0B7F7EC929A7}" = League of Legends "{64467D47-FFE4-4FBC-ABBA-A0DB829A17EB}" = NVIDIA PhysX "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{929CE49F-1CA7-4CF3-A9A1-6D757443C63F}" = Microsoft Games for Windows - LIVE Redistributable "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Avast" = avast! Free Antivirus "GOM Player" = GOM Player "Google Chrome" = Google Chrome "League of Legends 3.0.1" = League of Legends "NapiProjekt_is1" = NapiProjekt (2.2.0.2399) "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Orcs Must Die!_is1" = Orcs Must Die! "S.T.A.L.K.E.R. - Shadow of Chernobyl_is1" = S.T.A.L.K.E.R. - Shadow of Chernobyl "Steam App 207170" = Legend of Grimrock "Steam App 440" = Team Fortress 2 "Steam App 48000" = LIMBO "Steam App 4920" = Natural Selection 2 "Steam App 570" = Dota 2 "Steam App 730" = Counter-Strike: Global Offensive "Steam App 7670" = BioShock "Tibia_is1" = Tibia [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3463171804-1537994893-3906066650-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Akamai" = Akamai NetSession Interface "BitTorrent" = BitTorrent "GG" = GG [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-11-18 14:51:26 | Computer Name = RodzinaK | Source = Software Protection Platform Service | ID = 8198 Description = Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=458e1bec-837a-45f6-b9d5-925ed5d299de;NotificationInterval=1440;Trigger=UserLogon;SessionId=2 Error - 2013-11-18 14:54:41 | Computer Name = RodzinaK | Source = Software Protection Platform Service | ID = 8198 Description = Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=458e1bec-837a-45f6-b9d5-925ed5d299de;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error - 2013-11-18 15:01:43 | Computer Name = RodzinaK | Source = Software Protection Platform Service | ID = 8198 Description = Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=458e1bec-837a-45f6-b9d5-925ed5d299de;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error - 2013-11-18 15:01:49 | Computer Name = RodzinaK | Source = Software Protection Platform Service | ID = 8198 Description = Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=458e1bec-837a-45f6-b9d5-925ed5d299de;NotificationInterval=1440;Trigger=NetworkAvailable Error - 2013-11-18 15:57:39 | Computer Name = RodzinaK | Source = Software Protection Platform Service | ID = 8198 Description = Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=458e1bec-837a-45f6-b9d5-925ed5d299de;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error - 2013-11-18 15:57:44 | Computer Name = RodzinaK | Source = Software Protection Platform Service | ID = 8198 Description = Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=458e1bec-837a-45f6-b9d5-925ed5d299de;NotificationInterval=1440;Trigger=NetworkAvailable Error - 2013-11-18 16:02:10 | Computer Name = RodzinaK | Source = Software Protection Platform Service | ID = 8198 Description = Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=458e1bec-837a-45f6-b9d5-925ed5d299de;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error - 2013-11-18 16:02:14 | Computer Name = RodzinaK | Source = Software Protection Platform Service | ID = 8198 Description = Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=458e1bec-837a-45f6-b9d5-925ed5d299de;NotificationInterval=1440;Trigger=NetworkAvailable Error - 2013-11-18 16:15:09 | Computer Name = RodzinaK | Source = Software Protection Platform Service | ID = 8198 Description = Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=458e1bec-837a-45f6-b9d5-925ed5d299de;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error - 2013-11-18 16:15:11 | Computer Name = RodzinaK | Source = Software Protection Platform Service | ID = 8198 Description = Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=458e1bec-837a-45f6-b9d5-925ed5d299de;NotificationInterval=1440;Trigger=NetworkAvailable [ System Events ] Error - 2013-11-18 15:57:02 | Computer Name = RodzinaK | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 20:40:39 na ?2013-?11-?18 było nieoczekiwane. Error - 2013-11-18 15:57:04 | Computer Name = RODZINAK | Source = BugCheck | ID = 1001 Description = Error - 2013-11-18 15:56:51 | Computer Name = RodzinaK | Source = Microsoft-Windows-Kernel-General | ID = 6 Description = Error - 2013-11-18 15:57:20 | Computer Name = RodzinaK | Source = Microsoft-Windows-WHEA-Logger | ID = 20 Description = Wystąpił krytyczny błąd sprzętowy. Składnik: mostek północny firmy AMD Źródło błędu: 3 Typ błędu: 2 Identyfikator kontrolera APIC procesora: 0 Widok szczegółów tego wpisu zawiera dodatkowe informacje. Error - 2013-11-18 16:01:38 | Computer Name = RodzinaK | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 20:57:02 na ?2013-?11-?18 było nieoczekiwane. Error - 2013-11-18 16:01:39 | Computer Name = RODZINAK | Source = BugCheck | ID = 1001 Description = Error - 2013-11-18 16:01:27 | Computer Name = RodzinaK | Source = Microsoft-Windows-Kernel-General | ID = 6 Description = Error - 2013-11-18 16:12:20 | Computer Name = RodzinaK | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 21:01:38 na ?2013-?11-?18 było nieoczekiwane. Error - 2013-11-18 16:12:26 | Computer Name = RODZINAK | Source = BugCheck | ID = 1001 Description = Error - 2013-11-18 16:12:09 | Computer Name = RodzinaK | Source = Microsoft-Windows-Kernel-General | ID = 6 Description = < End of report >