OTL Extras logfile created on: 2013-12-05 12:52:06 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Krzysztof\Downloads 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.16438) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 7,89 Gb Total Physical Memory | 5,71 Gb Available Physical Memory | 72,42% Memory free 15,89 Gb Paging File | 13,71 Gb Available in Paging File | 86,31% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86) Drive C: | 186,01 Gb Total Space | 141,88 Gb Free Space | 76,27% Space Free | Partition Type: NTFS Drive D: | 258,51 Gb Total Space | 251,54 Gb Free Space | 97,30% Space Free | Partition Type: NTFS Computer Name: KRZYSIO | User Name: Krzysztof | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [print] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "D:\Programy\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "D:\Programy\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "D:\Programy\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "D:\Programy\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = [binary data] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = Reg Error: Unknown registry data type -- File not found [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{03A3B5F8-0464-4021-93DA-CFCF51A04B87}" = dir=out | name=windows_ie_ac_001 | "{04EF98FF-0CCD-4B14-BBAC-0552F6DB09B2}" = dir=out | name=taptiles | "{08D8E417-9E5B-41B3-A7D9-495EE6C8381E}" = dir=in | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{128C4695-5566-42B5-8423-1B4E284D25BA}" = dir=in | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{1292A2E6-E39B-4872-9D8D-1B4CCC02DA85}" = dir=out | name=skype | "{13FFBBD4-68AB-466A-A1E7-3DC57A0EE112}" = dir=out | name=@{microsoft.bingfinance_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{146AB34E-7706-4315-8C41-CAF329CF386E}" = dir=out | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{14810E7F-F292-4B13-8182-94A25E5ED83B}" = dir=in | name=microsoft solitaire collection | "{1671174F-834C-4326-94DA-9688B014FF30}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} | "{1733DBA9-CD0A-45BB-942E-D29F6631F7FE}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} | "{18251812-B545-4108-8C7F-C49AFEB6EDA0}" = dir=out | name=juniper networks junos pulse | "{1870C6A1-9CAF-43B4-95BC-D3338DA775F9}" = dir=out | name=taptiles | "{19C628EC-D591-4433-AEE3-5CA469C96CC3}" = dir=out | name=windows_ie_ac_001 | "{1A6DC102-B477-449E-AA1E-8439689F1DF5}" = dir=out | name=@{microsoft.bingsports_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{1D9E5374-4896-48C4-91F5-446FF927577C}" = dir=out | name=@{microsoft.bingsports_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{25164BA5-B4E3-4DC9-82F1-537503ABDC0E}" = dir=out | name=@{microsoft.bingweather_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{2A75A4CE-CDD8-4332-B42A-AF5721523555}" = dir=in | name=juniper networks junos pulse | "{2A7AC57B-67AE-41F0-BDED-279156D3829A}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{2CA76C8D-6DC9-43E9-B328-DFA60C42EFC3}" = dir=out | name=@{microsoft.bingmaps_1.2.0.136_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{2CFB625B-69F8-40F4-9EE7-19C333C77837}" = dir=out | name=@{microsoft.bingweather_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{2E491912-ABDB-44B6-9AA4-90025D50EA25}" = dir=out | name=@{microsoft.zunevideo_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} | "{2E68710D-C865-4314-A545-6916A9314AB3}" = dir=out | name=@{microsoft.zunemusic_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} | "{2FAB5BCC-80DE-4130-9637-6CB6EBE61463}" = dir=out | name=@{microsoft.bingtravel_3.0.1.202_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{2FCA33AE-B16E-4C69-9DC6-5C79D9672ADB}" = dir=out | name=fresh paint | "{412C18AC-0EB4-4E33-9B0A-D409BD5099D0}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9600.20278_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} | "{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn | "{4452D5EE-45A6-4D8C-88CB-FC6ACA308711}" = dir=out | name=@{microsoft.zunemusic_2.2.214.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{46D2017C-1340-43E3-B7EA-F692D2FB5890}" = dir=out | name=adera | "{492CC834-F3AB-48F1-B916-5612E6CC8918}" = dir=out | name=windows_ie_ac_001 | "{4B4322E2-E638-429B-A1AD-BBEA4AD0BBF2}" = protocol=17 | dir=in | app=d:\programy\napiprojekt\napisy.exe | "{4CEC3462-B593-4103-956F-90D5C387BAFF}" = dir=out | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{4DDD83F7-3944-4416-9B25-107365D64561}" = dir=out | name=@{microsoft.bingnews_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} | "{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{54C33A27-47B4-4149-8D32-94380E388420}" = dir=in | name=skype | "{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect | "{5C4D4976-6E18-4A8F-B051-01EEAE8B5A54}" = dir=out | name=@{microsoft.bingfinance_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{5DC22533-2760-4981-888B-D038D6871478}" = dir=out | name=f5 vpn | "{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect | "{5FC9FB6A-135A-4E3F-923C-BB2F5880A928}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | "{61492274-DE36-4582-8E21-5B813FFFC341}" = dir=in | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{6634F0F6-87EE-4678-9E8D-ED8FC0ADE02C}" = dir=out | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{683290CA-ECD3-4A9F-A7DF-4B562D5B4126}" = dir=in | name=check point vpn | "{69D85541-1DD8-40BC-9E07-DBB4B4F07518}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{75973929-A06C-4431-A8D9-408653530B02}" = protocol=6 | dir=in | app=d:\gry\lol\lol.launcher.exe | "{775A0066-BC97-4B0C-B0B8-ABA5749A1847}" = dir=out | name=@{microsoft.zunevideo_2.2.214.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{7CB3FDE6-750D-412E-AA55-9DB1D50BF677}" = dir=out | name=microsoft solitaire collection | "{7CCD7700-91F2-4C70-9295-9F2A63878DC2}" = dir=out | name=microsoft solitaire collection | "{7F2737BE-3F0E-49C2-86B9-E6FFDC095CF4}" = dir=out | name=windows_ie_ac_001 | "{7F311451-F915-4A6B-B537-7DA90D162745}" = dir=out | name=@{microsoft.bingweather_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{7F5C8227-989C-4051-965C-C4F43C2FAC23}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.1.201_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} | "{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{81D7B855-941F-4A2A-A9CB-46C7D9519BE5}" = dir=out | name=@{microsoft.xboxlivegames_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{83805A3C-E602-4C08-A52E-99EDD7B5854A}" = protocol=17 | dir=in | app=c:\users\krzysztof\appdata\roaming\utorrent\utorrent.exe | "{83B9BDD5-D210-4715-AB86-C19EF221ABDD}" = dir=out | name=@{microsoft.bingnews_3.0.1.205_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/apptitle} | "{867D921A-7733-4B2A-95CD-E725C8A2A4CA}" = dir=in | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{8C29D0AE-F950-4D51-854C-2F28A5F907FD}" = dir=in | name=f5 vpn | "{8DA2C965-4A89-45FD-86C8-955F14EB4316}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20279_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{936F58BD-9530-4766-9FF6-49CDDF00BBF1}" = dir=in | name=skype | "{93EA01F0-9CEB-4717-AF71-C5543838152A}" = dir=in | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{95C3D228-7434-4C4B-A1B6-C8B98F3C7F86}" = dir=out | name=@{microsoft.bingsports_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{9B6A8BB1-C2F4-4883-BABF-8DC61CDFD9E8}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe | "{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{9E46B157-1ABE-445D-A4F2-2E2C0335657B}" = dir=out | name=@{microsoft.zunemusic_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} | "{9ED50CCB-05FD-456A-B6A9-8BA46168CCC9}" = dir=out | name=@{microsoft.zunevideo_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} | "{9F080749-9500-4A2B-909F-D32C74A0483D}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{A249CFBE-725F-4B37-957D-95E8024023A1}" = protocol=6 | dir=in | app=d:\programy\napiprojekt\napisy.exe | "{A577A432-10EB-43BB-BF00-D58AF074068C}" = dir=out | name=@{microsoft.bingtravel_1.2.0.145_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{AAC70DC9-10EB-41C6-8BB7-BA7D6F57E4B6}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9600.20278_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} | "{AB07B857-EBCC-4F9C-92A9-AE15E2ADA5B5}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20279_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{B0472F0A-F96B-4DD5-8349-7899221DB495}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{B09A2A01-012B-49B1-A820-DB03C6AE2872}" = dir=out | name=check point vpn | "{B3B33C06-16E3-425A-A873-763BCA27431D}" = protocol=17 | dir=in | app=d:\gry\lol\lol.launcher.exe | "{B7DEEA56-18E8-450E-9FDD-8E66A567A4C6}" = dir=out | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{BA9009DD-3C32-40C8-86EF-3A2E3ECD18F6}" = dir=out | name=sonicwall mobile connect | "{BE7FB4C0-A727-41F7-8E7B-4CB08FA75294}" = dir=in | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{C2DF505F-8616-4E03-BF10-099B1B29EC38}" = dir=out | name=@{microsoft.bingmaps_1.2.0.136_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{C9A3F168-F6D0-4880-B485-CD15A9A5F1C1}" = dir=out | name=@{microsoft.bingtravel_1.2.0.145_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{D031EBDA-2697-4511-B52F-7786F7723ED1}" = dir=out | name=skype | "{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn | "{D7D2DF3C-9A42-44F9-9400-964AB216A249}" = protocol=6 | dir=in | app=c:\users\krzysztof\appdata\roaming\utorrent\utorrent.exe | "{DAF5D8E4-6F21-49AC-B14C-E83DDF5474B8}" = dir=out | name=@{microsoft.xboxlivegames_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn | "{DE14E295-C5AA-4792-9DF4-99971AF39F78}" = dir=out | name=@{microsoft.bingmaps_2.0.2210.2401_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{DF4676F8-0894-4544-BEA4-E33F4FA00969}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{DFDFB9A2-B4EC-4089-A2F8-1BF038FC5D3D}" = dir=out | name=@{microsoft.bingfinance_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{E0A1BC33-B708-4600-8787-A5E233027526}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe | "{E4749A5A-880E-4D65-A5B7-36D58FAC8F90}" = dir=out | name=@{microsoft.bingnews_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} | "{E63E4CA5-021C-41E7-9871-9ED75E9E866D}" = dir=in | name=taptiles | "{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{E93C9FA1-C81E-4670-B541-6F3A0BCC5EED}" = dir=out | name=wordament | "{EA1AA4AB-BEA6-4B04-BBBA-AE7F3C165DB7}" = protocol=6 | dir=in | app=c:\programdata\esafe\egdpsvc.exe | "{EA6F63CF-31DF-45D2-8463-75B907560A94}" = dir=out | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{EC1488F2-B24E-4FFC-918E-4CC9DA6778BD}" = dir=out | name=wordament | "{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn | "{EE636B7F-E068-4F7D-A44A-6D905EB2AE82}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | "{EECE6D99-7B13-408D-9FD7-951099FAFD68}" = dir=out | name=windows_ie_ac_001 | "{F1885862-ED0D-4AF0-AA89-84FBAA0AE98E}" = dir=in | name=sonicwall mobile connect | "{F2866B3E-F165-4F73-B9AC-ED063C359F53}" = dir=out | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{F2D13E77-D2C3-44CB-99A9-C9648FDBC7F8}" = dir=out | name=adera | "{F2F453D4-0FD5-40C6-AC74-BA27EDAC818E}" = dir=out | name=fresh paint | "{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client | "{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client | "TCP Query User{07F55DF9-8431-482B-99F7-749E282452D4}D:\gry\hl.exe" = protocol=6 | dir=in | app=d:\gry\hl.exe | "TCP Query User{319EAF7B-2A5F-4EAE-952F-F0421756C6DC}D:\gry\cstrike.exe" = protocol=6 | dir=in | app=d:\gry\cstrike.exe | "TCP Query User{6ED70752-1C80-4A94-9174-6ABA073DAC41}D:\gry\cs\counter-strike 1.6\hl.exe" = protocol=6 | dir=in | app=d:\gry\cs\counter-strike 1.6\hl.exe | "TCP Query User{DF089A69-98C9-485E-8E44-18008084E9A2}C:\users\slawomir\appdata\roaming\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\users\slawomir\appdata\roaming\utorrent\utorrent.exe | "UDP Query User{160F0695-6362-4CC6-97B2-55E5DAA86DA6}D:\gry\cs\counter-strike 1.6\hl.exe" = protocol=17 | dir=in | app=d:\gry\cs\counter-strike 1.6\hl.exe | "UDP Query User{186723FC-0EF8-4A0C-B6A0-A5713E09F948}D:\gry\hl.exe" = protocol=17 | dir=in | app=d:\gry\hl.exe | "UDP Query User{6982FA73-4C69-4785-B735-249127E70BDA}D:\gry\cstrike.exe" = protocol=17 | dir=in | app=d:\gry\cstrike.exe | "UDP Query User{EE83F403-8412-41BE-9EE0-0285B4E8E96B}C:\users\slawomir\appdata\roaming\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\users\slawomir\appdata\roaming\utorrent\utorrent.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{26A24AE4-039D-4CA4-87B4-2F86417040FF}" = Java 7 Update 40 (64-bit) "{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64) "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}" = ASUS Power4Gear Hybrid "{EF79C448-6946-4D71-8134-03407888C054}" = Shared C Run-time for x64 "{F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}" = Intel® Trusted Connect Service Client "C01F56FBD9B141017E63E2A1A141E59934D4DC67" = Pakiet sterowników systemu Windows - ASUS (ATP) Mouse (10/29/2012 1.0.0.148) "MyPC Backup" = MyPC Backup "WinRAR archiver" = WinRAR 4.20 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0969AF05-4FF6-4C00-9406-43599238DE0D}" = ASUS Splendid Video Enhancement Technology "{26A24AE4-039D-4CA4-87B4-2F83217040FF}" = Java 7 Update 45 "{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Qualcomm Atheros Client Installation Program "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4D3286A6-F6AB-498A-82A4-E4F040529F3D}" = ASUS Smart Gesture "{52E225FC-FCB4-41F7-837B-6E37FB05BD7B}" = Adobe AIR "{53C63F43-B827-42D9-8886-4698D91EA33B}" = System Requirements Lab for Intel "{5DE67937-45D5-45E4-923C-0B7F7EC929A7}" = League of Legends "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{8F21291E-0444-4B1D-B9F9-4370A73E346D}" = WinFlash "{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office "{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}" = ASUS USB Charger Plus "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}" = ATK Package "{AC76BA86-7AD7-FFFF-7B44-AA0000000001}" = Adobe Reader X MUI "{AD492C53-49D3-30A1-837C-16E039DEC8C9}" = Google Chrome "{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}" = ASUS Live Update "{FCB3772C-B7D0-4933-B1A9-3707EBACC573}" = Intel(R) SDK for OpenCL - CPU Only Runtime Package "7-Zip" = 7-Zip 9.20 "a2zLyrics-1" = a2zLyrics-1 "Adobe AIR" = Adobe AIR "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Babylon Chrome Toolbar" = Babylon Chrome Toolbar "BabylonToolbar" = Babylon toolbar "bi_uninstaller" = Bundled software uninstaller "Bonanza Deals" = Bonanza Deals (remove only) "Counter-Strike 1.6" = Counter-Strike 1.6 v23 "delta" = Delta toolbar "Delta Chrome Toolbar" = Delta Chrome Toolbar "FilesFrog Update Checker" = FilesFrog Update Checker "KLiteCodecPack_is1" = K-Lite Codec Pack 10.0.5 Full "League of Legends 3.0.1" = League of Legends "NapiProjekt_is1" = NapiProjekt (2.2.0.2399) "Opera 18.0.1284.49" = Opera Stable 18.0.1284.49 "searchgol" = searchgol toolbar "Search-Gol Chrome Toolbar" = Search-Gol Chrome Toolbar "VLC media player" = VLC media player 2.1.0 "WsysControl" = Wsys Control 10.2.1.2652 "YU2010_is1" = Your Uninstaller! 7 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2139804757-2743755002-1485905433-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-12-04 17:51:52 | Computer Name = Krzysio | Source = Software Protection Platform Service | ID = 16385 Description = Nie można zaplanować restartu usługi ochrony oprogramowania o 2113-11-10T21:51:52Z. Kod błędu: 0x80040154. Error - 2013-12-04 17:52:22 | Computer Name = Krzysio | Source = Software Protection Platform Service | ID = 16385 Description = Nie można zaplanować restartu usługi ochrony oprogramowania o 2113-11-10T21:52:22Z. Kod błędu: 0x80040154. Error - 2013-12-04 17:52:52 | Computer Name = Krzysio | Source = Software Protection Platform Service | ID = 16385 Description = Nie można zaplanować restartu usługi ochrony oprogramowania o 2113-11-10T21:52:52Z. Kod błędu: 0x80040154. Error - 2013-12-04 17:53:22 | Computer Name = Krzysio | Source = Software Protection Platform Service | ID = 16385 Description = Nie można zaplanować restartu usługi ochrony oprogramowania o 2113-11-10T21:53:22Z. Kod błędu: 0x80040154. Error - 2013-12-04 17:53:52 | Computer Name = Krzysio | Source = Software Protection Platform Service | ID = 16385 Description = Nie można zaplanować restartu usługi ochrony oprogramowania o 2113-11-10T21:53:52Z. Kod błędu: 0x80040154. Error - 2013-12-04 17:54:22 | Computer Name = Krzysio | Source = Software Protection Platform Service | ID = 16385 Description = Nie można zaplanować restartu usługi ochrony oprogramowania o 2113-11-10T21:54:22Z. Kod błędu: 0x80040154. Error - 2013-12-04 17:54:52 | Computer Name = Krzysio | Source = Software Protection Platform Service | ID = 16385 Description = Nie można zaplanować restartu usługi ochrony oprogramowania o 2113-11-10T21:54:52Z. Kod błędu: 0x80040154. Error - 2013-12-04 17:55:22 | Computer Name = Krzysio | Source = Software Protection Platform Service | ID = 16385 Description = Nie można zaplanować restartu usługi ochrony oprogramowania o 2113-11-10T21:55:22Z. Kod błędu: 0x80040154. Error - 2013-12-04 17:55:52 | Computer Name = Krzysio | Source = Software Protection Platform Service | ID = 16385 Description = Nie można zaplanować restartu usługi ochrony oprogramowania o 2113-11-10T21:55:52Z. Kod błędu: 0x80040154. Error - 2013-12-04 17:56:22 | Computer Name = Krzysio | Source = Software Protection Platform Service | ID = 16385 Description = Nie można zaplanować restartu usługi ochrony oprogramowania o 2113-11-10T21:56:22Z. Kod błędu: 0x80040154. [ System Events ] Error - 2013-11-17 11:41:25 | Computer Name = Krzysio | Source = Schannel | ID = 36888 Description = Wygenerowano alert krytyczny, który został wysłany do zdalnego punktu końcowego. W efekcie połączenie może zostać zakończone. Kod błędu krytycznego zdefiniowany przez protokół TLS to 10. Kod stanu błędu SChannel w systemie Windows to 10. Error - 2013-11-17 11:41:26 | Computer Name = Krzysio | Source = Schannel | ID = 36888 Description = Wygenerowano alert krytyczny, który został wysłany do zdalnego punktu końcowego. W efekcie połączenie może zostać zakończone. Kod błędu krytycznego zdefiniowany przez protokół TLS to 10. Kod stanu błędu SChannel w systemie Windows to 10. Error - 2013-11-17 11:41:26 | Computer Name = Krzysio | Source = Schannel | ID = 36888 Description = Wygenerowano alert krytyczny, który został wysłany do zdalnego punktu końcowego. W efekcie połączenie może zostać zakończone. Kod błędu krytycznego zdefiniowany przez protokół TLS to 10. Kod stanu błędu SChannel w systemie Windows to 10. Error - 2013-11-17 11:41:27 | Computer Name = Krzysio | Source = Schannel | ID = 36888 Description = Wygenerowano alert krytyczny, który został wysłany do zdalnego punktu końcowego. W efekcie połączenie może zostać zakończone. Kod błędu krytycznego zdefiniowany przez protokół TLS to 10. Kod stanu błędu SChannel w systemie Windows to 10. Error - 2013-11-17 11:41:27 | Computer Name = Krzysio | Source = Schannel | ID = 36888 Description = Wygenerowano alert krytyczny, który został wysłany do zdalnego punktu końcowego. W efekcie połączenie może zostać zakończone. Kod błędu krytycznego zdefiniowany przez protokół TLS to 10. Kod stanu błędu SChannel w systemie Windows to 10. Error - 2013-11-17 11:41:33 | Computer Name = Krzysio | Source = Schannel | ID = 36888 Description = Wygenerowano alert krytyczny, który został wysłany do zdalnego punktu końcowego. W efekcie połączenie może zostać zakończone. Kod błędu krytycznego zdefiniowany przez protokół TLS to 10. Kod stanu błędu SChannel w systemie Windows to 10. Error - 2013-11-17 11:41:33 | Computer Name = Krzysio | Source = Schannel | ID = 36888 Description = Wygenerowano alert krytyczny, który został wysłany do zdalnego punktu końcowego. W efekcie połączenie może zostać zakończone. Kod błędu krytycznego zdefiniowany przez protokół TLS to 10. Kod stanu błędu SChannel w systemie Windows to 10. Error - 2013-11-17 11:41:34 | Computer Name = Krzysio | Source = Schannel | ID = 36888 Description = Wygenerowano alert krytyczny, który został wysłany do zdalnego punktu końcowego. W efekcie połączenie może zostać zakończone. Kod błędu krytycznego zdefiniowany przez protokół TLS to 10. Kod stanu błędu SChannel w systemie Windows to 10. Error - 2013-11-17 11:41:34 | Computer Name = Krzysio | Source = Schannel | ID = 36888 Description = Wygenerowano alert krytyczny, który został wysłany do zdalnego punktu końcowego. W efekcie połączenie może zostać zakończone. Kod błędu krytycznego zdefiniowany przez protokół TLS to 10. Kod stanu błędu SChannel w systemie Windows to 10. Error - 2013-11-17 11:41:35 | Computer Name = Krzysio | Source = Schannel | ID = 36888 Description = Wygenerowano alert krytyczny, który został wysłany do zdalnego punktu końcowego. W efekcie połączenie może zostać zakończone. Kod błędu krytycznego zdefiniowany przez protokół TLS to 10. Kod stanu błędu SChannel w systemie Windows to 10. < End of report >