OTL Extras logfile created on: 04/01/2014 16:55:25 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\mlody.mlody-HP\Desktop\Skan PC 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.16428) Locale: 00000809 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd 1.75 Gb Total Physical Memory | 0.72 Gb Available Physical Memory | 41.29% Memory free 3.50 Gb Paging File | 1.24 Gb Available in Paging File | 35.39% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 289.44 Gb Total Space | 225.20 Gb Free Space | 77.81% Space Free | Partition Type: NTFS Drive D: | 8.55 Gb Total Space | 8.44 Gb Free Space | 98.74% Space Free | Partition Type: NTFS Drive F: | 14.90 Gb Total Space | 13.06 Gb Free Space | 87.62% Space Free | Partition Type: FAT32 Computer Name: MLODY-HP | User Name: mlody | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2018663396-3959975864-1223747117-1000\SOFTWARE\Classes\] .exe [@ = exefile] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{021C183A-CE95-4C1F-8756-68BEA8B55E05}" = lport=2869 | protocol=6 | dir=in | app=system | "{0659DE63-A81E-4A28-9FE3-7AC02DA1427A}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{0AE93360-F62F-4C15-9194-1C7A9EEF33CC}" = rport=445 | protocol=6 | dir=out | app=system | "{0C8ECBC7-ACD2-4264-A603-DEFF88D22F02}" = lport=139 | protocol=6 | dir=in | app=system | "{0F52AAE1-628A-438D-8985-B743AA546514}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{1A1FD7D6-8F2B-48EB-BA8D-17C2A04AFDE9}" = lport=445 | protocol=6 | dir=in | app=system | "{1B88A9F0-A37B-4355-9E29-D1E6DACEED83}" = lport=2869 | protocol=6 | dir=in | app=system | "{21E648AB-707F-4FEF-81DE-D52AF7086039}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{26307988-75DA-4953-BF3A-0FBBEDAA0EA7}" = rport=137 | protocol=17 | dir=out | app=system | "{26A65D7D-7208-4B83-8F2C-D3360C2BC8D3}" = lport=137 | protocol=17 | dir=in | app=system | "{2B0933D3-EF5E-4867-AA3A-09951A164A0F}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | "{3D4C8283-903A-4D15-A48E-B31C19521D80}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4103B1C1-2F2D-47E7-9407-13396E3FC2F8}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{453AAF8F-887E-40C1-9401-300EB3969071}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{4A28FF20-1680-496D-BEB4-D68B7AADA71C}" = lport=138 | protocol=17 | dir=in | app=system | "{4DA835AD-E65B-4C24-900D-C8C91B75302F}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{58B70F88-BE95-4A03-BBB6-21D9F4CB0FEF}" = rport=10243 | protocol=6 | dir=out | app=system | "{85229DD3-957C-448C-A67A-5B308BC9923E}" = rport=139 | protocol=6 | dir=out | app=system | "{872379F4-BE54-4090-B190-502BC0FA34D3}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{94EB8B8B-9ECD-44CE-B004-C690E9E4F164}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{A435B9C3-2747-4EB8-8E7B-045A76A00EFA}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{A6CFBFE3-4F11-4D07-B5FC-7F2AEB330B83}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{B2A0B41E-B903-4E01-9926-6AD7866F1260}" = lport=10243 | protocol=6 | dir=in | app=system | "{C707E037-C4DF-481A-BDCF-64CCA4B417DA}" = rport=2869 | protocol=6 | dir=out | app=system | "{CA6A75F5-9960-49BB-8A3C-E228BBDFE94C}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{D6FDB752-DA9C-4330-BCE0-8C8E9EF9A1DB}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{DBB45E86-6DC6-4F8D-AD05-1AE3A2211AA7}" = lport=2869 | protocol=6 | dir=in | app=system | "{DFB044A2-2E26-42EE-A398-433909A8A7B5}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{E521506C-B60F-4BAC-9BFC-B742FD49F729}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{F093E74C-4D2D-4053-BAD7-9220F2CB204F}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{FBAF2446-CF34-4ECF-8FA9-C440613B1933}" = rport=138 | protocol=17 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0084E836-78EC-4A71-96FE-75FF858FE3EE}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{065DB22D-7D81-4B01-9D6F-BC9F289B2670}" = protocol=17 | dir=in | app=c:\program files (x86)\nokia\nokia home media server\media server\twonkymedia.exe | "{0D71EDA4-519E-436C-8753-CE783BB32920}" = protocol=6 | dir=out | app=system | "{0F3617AD-C3DD-4EDC-B61F-B50F6FC63885}" = protocol=6 | dir=in | app=c:\users\mlody.mlody-hp\downloads\videoconvertersetup.exe | "{10EA5D68-F2E7-4280-8068-C3E679C99438}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{1A04CD60-BABB-4E9F-BA1A-CE71624736CF}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{1A36F739-A417-4F65-961E-81901166C708}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{1ADDBF49-3649-4360-8050-24419FD25E84}" = protocol=17 | dir=in | app=c:\users\mlody.mlody-hp\appdata\local\temp\icreinstall\facemoods.exe | "{1F7BE87B-DDE8-4A56-9288-F6775854CA6D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{229771CA-1F5E-48F2-A411-716313A8676D}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{2835E7A7-D9FD-4158-9493-F9E88F34DD36}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{33C08E25-FCEA-47ED-B841-35425E5F56A4}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{36D1EF17-6D4F-41B5-B635-6C257E0796A9}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{40E3A6F4-3FF3-4F86-9E42-37FDAF63B8F4}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 | "{4142A360-F344-4792-A41D-2EFD958B02E2}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{435A1EE1-A630-4884-81E6-B13828BFD039}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{4A44444B-CBBB-4698-88CE-99E33DF93D4E}" = protocol=6 | dir=in | app=c:\users\mlody.mlody-hp\downloads\facemoods.exe | "{5BA12F11-83C4-47D0-A4FE-FC35944C5290}" = protocol=17 | dir=in | app=c:\users\mlody.mlody-hp\downloads\videoconvertersetup.exe | "{791E64C3-B7A2-4036-8172-5D27C4235D95}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{8800DFDD-D29D-4A3D-8C06-99950A5CB3E0}" = protocol=17 | dir=in | app=c:\users\mlody.mlody-hp\downloads\facemoods.exe | "{8AFAE27B-2CE9-4E3A-BF05-21BAE5B0C7D6}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{924E0F43-9CE9-43F9-B82A-3DF6831D4443}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | "{9C2EC0F3-B8FC-40B6-9291-F5D827B2F6F9}" = protocol=17 | dir=in | app=c:\program files (x86)\easybits for kids\programs\my first browser\myfirstbrowser.exe | "{9CFFEC59-1277-4FF3-814E-91734E0552F8}" = dir=in | app=c:\program files (x86)\windows live\messenger\wlcsdk.exe | "{A0265D74-6914-409C-84BF-74B9D6B2AB13}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{B30E0A84-7CD4-4B4B-80BF-8D7EA7C636C2}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{B9F2D25D-3E83-4143-97E3-B95F455D8C31}" = protocol=6 | dir=in | app=c:\program files (x86)\nokia\nokia home media server\media server\twonkymedia.exe | "{CA7ADD41-E7B0-4471-B266-F95E9394C5C0}" = dir=in | app=c:\program files (x86)\hewlett-packard\hp support framework\resources\hpwarrantycheck\hpdevicedetection3.exe | "{D32D10FB-722A-42E7-8461-4F09FE82BFEA}" = protocol=6 | dir=in | app=c:\program files (x86)\easybits for kids\programs\my first browser\myfirstbrowser.exe | "{DF0E1AA5-1261-4D08-A50A-229610EBE1F4}" = protocol=6 | dir=in | app=c:\users\mlody.mlody-hp\appdata\local\temp\icreinstall\facemoods.exe | "{E6BBB232-9015-4151-AFFC-BE5C49EF3202}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{F1455588-E18A-4E38-BC13-DF44CD1935BA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{F4EDE6E4-232B-4B3F-8290-C2D719B0CAC9}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{F6B71AF9-B664-4F95-9149-55274FAF6699}" = protocol=17 | dir=in | app=c:\program files (x86)\nokia\nokia home media server\media server\twonkymediaserver.exe | "{FA3E1713-BC10-4FE9-9581-A314D700C912}" = protocol=6 | dir=in | app=c:\program files (x86)\nokia\nokia home media server\media server\twonkymediaserver.exe | "{FAD41B8D-83F3-4B12-8D86-3971EA7120E6}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{FCB8ED2E-9CD3-4CC8-8F0E-4FEA46FB32A4}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{FEC073CB-9D66-4D61-8EC4-1656237240BF}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "TCP Query User{18824A96-684F-44A2-9244-BDB553C98685}C:\program files (x86)\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "TCP Query User{521AE5E0-06FA-431F-B7DE-1A927D9C5C64}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe | "TCP Query User{5860C4EA-6C90-425D-A8B9-D45E67C3AB4B}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "TCP Query User{98B7B8B2-F566-44B4-B4FA-29A23996CFBD}C:\program files (x86)\logitech\vid hd\vid.exe" = protocol=6 | dir=in | app=c:\program files (x86)\logitech\vid hd\vid.exe | "TCP Query User{B4A3CD46-9B2D-4FFF-9940-40A30DEFF28A}C:\program files (x86)\logitech\vid hd\vid.exe" = protocol=6 | dir=in | app=c:\program files (x86)\logitech\vid hd\vid.exe | "TCP Query User{F0605179-B901-474B-B21F-470019D0D650}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "UDP Query User{626CD4B1-ED4C-4086-82D9-A383E52F5EF5}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "UDP Query User{7FBDD90F-A8F2-44C7-92FA-20CFB62730F6}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "UDP Query User{9E2BD3D6-DCD4-4C66-A4AE-FBAF475D98E0}C:\program files (x86)\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "UDP Query User{C6DD5818-DFB5-4B35-9E7C-1883D4750162}C:\program files (x86)\logitech\vid hd\vid.exe" = protocol=17 | dir=in | app=c:\program files (x86)\logitech\vid hd\vid.exe | "UDP Query User{CA6AE3F8-6A16-4BB4-AE51-2E743F93565D}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe | "UDP Query User{FB0F9857-53F9-426D-9C9F-3CB71A46A006}C:\program files (x86)\logitech\vid hd\vid.exe" = protocol=17 | dir=in | app=c:\program files (x86)\logitech\vid hd\vid.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64) "{138A4072-9E64-46BD-B5F9-DB2BB395391F}" = LWS VideoEffects "{1DD81E7D-0D28-4CEB-87B2-C041A4FCB215}" = Rapport "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{4D668D4F-FAA2-4726-834C-31F4614F312E}" = MSVC80_x64_v2 "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{8338783A-0968-3B85-AFC7-BAAE0A63DC50}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{948B1FD6-9F98-47EE-AABF-8697F2FD44B0}" = ccc-utility64 "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant "{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}" = Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 "{E50A5077-1654-BEAE-986B-7B7133DA7C48}" = ATI Catalyst Install Manager "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "PC-Doctor for Windows" = Hardware Diagnostic Tools [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator "{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements "{08235411-48C8-A293-8642-D9575891E7D9}" = Catalyst Control Center InstallProxy "{08548558-3EC9-BD0B-3D09-632500268F59}" = CCC Help Portuguese "{08610298-29AE-445B-B37D-EFBE05802967}" = LWS Pictures And Video "{137B2CE7-30A2-4836-0830-707F1010F517}" = CCC Help English "{15634701-BACE-4449-8B25-1567DA8C9FD3}" = CameraHelperMsi "{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}" = Microsoft Works "{1651216E-E7AD-4250-92A1-FB8ED61391C9}" = LWS Help_main "{174A3B31-4C43-43DD-866F-73C9DB887B48}" = LWS Twitter "{1DD81E7D-0D28-4CEB-87B2-C041A4FCB215}" = Rapport "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{21DF0294-6B9D-4741-AB6F-B2ABFBD2387E}" = LWS YouTube Plugin "{22139F5D-9405-455A-BDEB-658B1A4E4861}" = Catalyst Control Center - Branding "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT "{25F2A86D-E2E2-C2AD-8173-86C18632F214}" = CCC Help Chinese Traditional "{26A24AE4-039D-4CA4-87B4-2F83216022F0}" = Java(TM) 6 Update 22 "{26A24AE4-039D-4CA4-87B4-2F83216032FF}" = Java(TM) 6 Update 32 "{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 25 "{2842077A-7895-5310-4F0C-42C83501E770}" = CCC Help Thai "{2ACAB850-69A5-8090-08B7-D27CC6D8652C}" = CCC Help German "{2BAD00A4-7FD1-61C5-10C3-8275723943AD}" = CCC Help Danish "{2BF943D5-1468-589A-50E3-DD0ED6596022}" = Catalyst Control Center Graphics Full New "{3248F0A8-6813-11D6-A77B-00B0D0160050}" = Java(TM) 6 Update 5 "{34DB1D69-9FFC-7899-6F4D-22C4C15ADD54}" = CCC Help Polish "{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform "{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = erLT "{3F310D8D-AC3B-5478-5AEA-D2EF5D7437E7}" = CCC Help Swedish "{40FB8D7C-6FF8-4AF2-BC8B-0B1DB32AF04B}" = HP Advisor "{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}" = Recovery Manager "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.1 "{595007B2-E139-535C-D723-4B0442FC40F5}" = CCC Help Italian "{5A21C631-0494-7377-1E3B-99353E04F83B}" = CCC Help Japanese "{61BEA823-ECAF-49F1-8378-A59B3B8AD247}" = Microsoft Default Manager "{6412CECE-8172-4BE5-935B-6CECACD2CA87}" = Windows Live Mail "{695C04CF-CF98-FAD6-9590-6C555B2E2E79}" = CCC Help Chinese Standard "{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2 "{6F277272-77D6-1E03-B8BB-B408B26C5140}" = CCC Help Czech "{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.2.1.1 "{6F76EC3C-34B1-436E-97FB-48C58D7BEDCD}" = LWS Gallery "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{71E66D3F-A009-44AB-8784-75E2819BA4BA}" = LWS Motion Detection "{7240A994-0ED4-4841-AD3B-5E5F72850F67}" = Catalyst Control Center Graphics Previews Vista "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7C66E480-E42D-3664-B207-5CE9A706BC1F}" = Catalyst Control Center Graphics Light "{7CAAA7B2-D9EA-2416-9D63-DDBC8E669059}" = CCC Help French "{81128EE8-8EAD-4DB0-85C6-17C2CE50FF71}" = Windows Live Essentials "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{83C8FA3C-F4EA-46C4-8392-D3CE353738D6}" = LWS Launcher "{84B4C4F4-F244-6A7E-EDC6-ECD46ACAAE59}" = CCC Help Greek "{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 "{8937D274-C281-42E4-8CDB-A0B2DF979189}" = LWS Webcam Software "{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system "{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English) "{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader "{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}" = Software Version Updater "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9DAEA76B-E50F-4272-A595-0124E826553D}" = LWS WLM Plugin "{A85FD55B-891B-4314-97A5-EA96C0BD80B5}" = Windows Live Messenger "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.7) "{AF4A82A7-F453-CE12-A942-E55FAC234387}" = ccc-core-static "{B5B7E8FF-62F6-FA85-4C4A-83AAF816CE6E}" = CCC Help Spanish "{B8089767-9A45-0E84-FCDE-15698650FF17}" = CCC Help Hungarian "{B8AC1A89-FFD1-4F97-8051-E505A160F562}" = HP Odometer "{B9A03B7B-E0FF-4FB3-BA83-762E58A1B0AA}" = HP Support Information "{C2425F91-1F7B-4037-9A05-9F290184798D}" = NETGEAR WNA3100 wireless USB 2.0 adapter "{C9496C0E-BE4C-7800-900B-5E66B958AEC1}" = CCC Help Russian "{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86 "{D40EB009-0499-459c-A8AF-C9C110766215}" = Logitech Webcam Software "{DE77FE3F-A33D-499A-87AD-5FC406617B40}" = HP Update "{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update "{EB1A6595-613F-9654-E58E-0876F8B0E8F3}" = Catalyst Control Center Localization All "{EB87675F-5281-4767-A54B-31931794C23D}" = OpenOffice.org 3.3 "{EDD1E22B-249A-5ED7-BA0A-C41BAA8256ED}" = CCC Help Korean "{EE202411-2C26-49E8-9784-1BC1DBF7DE96}" = HP Support Assistant "{EED027B7-0DB6-404B-8F45-6DFEE34A0441}" = LWS Video Mask Maker "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F252C428-A4AE-C73E-031A-C451FDD660A9}" = CCC Help Norwegian "{F67EA3C6-38B0-675A-E2F9-8C343DE1C826}" = Catalyst Control Center Graphics Full Existing "{F686E613-03C4-085F-188A-9E5DC1455787}" = CCC Help Turkish "{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call "{F7F7626C-4612-BF7B-38D5-07E247973A1A}" = Catalyst Control Center Core Implementation "{F8CA8746-F561-61D7-A496-8D4C4E1F8A57}" = CCC Help Dutch "{FA8BFB25-BF48-4F8B-8859-B30810745190}" = LightScribe System Software "{FCDDC9D3-5524-9AD1-651C-467910CC1903}" = CCC Help Finnish "{FF167195-9EE4-46C0-8CD7-FBA3457E88AB}" = LWS Facebook "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "avast" = avast! Free Antivirus "EasyBits Magic Desktop" = Magic Desktop "Gadu-Gadu 10" = Gadu-Gadu 10 "IrfanView" = IrfanView (remove only) "Logitech Vid" = Logitech Vid HD "My HP Game Console" = HP Game Console "PDF Complete" = PDF Complete Special Edition "PricePeep" = PricePeep for Internet Explorer "Rapport_msi" = Rapport "Veetle TV" = Veetle TV 0.9.18 "Webexp Enhanced" = Webexp Enhanced "WildTangent hp Master Uninstall" = HP Games "WinLiveSuite_Wave3" = Windows Live Essentials "WT082124" = Blasterball 3 "WT082141" = FATE "WT082168" = Penguins! "WT082172" = Polar Bowler "WT082192" = Bejeweled 2 Deluxe "WT082200" = Chuzzle Deluxe "WT082222" = Insaniquarium Deluxe "WT082241" = Virtual Villagers - The Secret City "WT082246" = Zuma Deluxe "WT082396" = Diner Dash 2 Restaurant Rescue "WT082409" = Mahjongg Artifacts "WT082414" = Mystery P.I. - The Vegas Heist "WT082422" = Wedding Dash "WT082427" = Slingo Deluxe "WT082439" = Bus Driver "WT083492" = Agatha Christie - Death on the Nile "WT083510" = Jewel Quest Solitaire "WT083514" = Jewel Quest II "WT083521" = Dream Chronicles "WT083529" = Gem Shop "YTdetect" = Yahoo! Detect [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2018663396-3959975864-1223747117-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "GG" = GG [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 15/03/2013 22:47:15 | Computer Name = mlody-HP | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\TIS_Windows7PIM.dll". Dependent Assembly Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 18/03/2013 20:32:08 | Computer Name = mlody-HP | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\TIS_Windows7PIM.dll". Dependent Assembly Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 19/03/2013 21:25:41 | Computer Name = mlody-HP | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\TIS_Windows7PIM.dll". Dependent Assembly Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 22/03/2013 05:25:29 | Computer Name = mlody-HP | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\TIS_Windows7PIM.dll". Dependent Assembly Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 22/03/2013 05:54:16 | Computer Name = mlody-HP | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\TIS_Windows7PIM.dll". Dependent Assembly Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 22/03/2013 15:01:40 | Computer Name = mlody-HP | Source = Microsoft-Windows-LoadPerf | ID = 3002 Description = The performance counter explain text string value in the registry is not formatted correctly. The malformed string is . The first DWORD in the Data section contains the index value to the malformed string while the second and third DWORDs in the Data section contain the last valid index values. Error - 22/03/2013 16:54:09 | Computer Name = mlody-HP | Source = Microsoft-Windows-LoadPerf | ID = 3002 Description = The performance counter explain text string value in the registry is not formatted correctly. The malformed string is . The first DWORD in the Data section contains the index value to the malformed string while the second and third DWORDs in the Data section contain the last valid index values. Error - 22/03/2013 17:16:23 | Computer Name = mlody-HP | Source = Microsoft-Windows-LoadPerf | ID = 3002 Description = The performance counter explain text string value in the registry is not formatted correctly. The malformed string is . The first DWORD in the Data section contains the index value to the malformed string while the second and third DWORDs in the Data section contain the last valid index values. Error - 24/03/2013 09:55:04 | Computer Name = mlody-HP | Source = Microsoft-Windows-LoadPerf | ID = 3002 Description = The performance counter explain text string value in the registry is not formatted correctly. The malformed string is . The first DWORD in the Data section contains the index value to the malformed string while the second and third DWORDs in the Data section contain the last valid index values. Error - 26/03/2013 21:54:39 | Computer Name = mlody-HP | Source = Microsoft-Windows-LoadPerf | ID = 3002 Description = The performance counter explain text string value in the registry is not formatted correctly. The malformed string is . The first DWORD in the Data section contains the index value to the malformed string while the second and third DWORDs in the Data section contain the last valid index values. Error - 27/03/2013 10:12:09 | Computer Name = mlody-HP | Source = Application Error | ID = 1000 Description = Faulting application name: MsiExec.exe, version: 5.0.7601.17514, time stamp: 0x4ce792c4 Faulting module name: MSIE623.tmp, version: 0.0.0.0, time stamp: 0x51158210 Exception code: 0xc0000417 Fault offset: 0x00017f64 Faulting process id: 0x39c Faulting application start time: 0x01ce2af510288e2e Faulting application path: C:\Windows\syswow64\MsiExec.exe Faulting module path: C:\Windows\Installer\MSIE623.tmp Report Id: 4fcd7daa-96e8-11e2-9925-78e7d1d881e4 [ Hewlett-Packard Events ] Error - 03/08/2012 20:25:19 | Computer Name = mlody-HP | Source = HPSF.exe | ID = 4000 Description = Error - 15/09/2012 03:18:03 | Computer Name = mlody-HP | Source = HPSF.exe | ID = 4000 Description = Error - 28/09/2012 20:37:43 | Computer Name = mlody-HP | Source = HPSF.exe | ID = 4000 Description = Error - 05/10/2012 19:59:47 | Computer Name = mlody-HP | Source = hpsa_service.exe | ID = 2000 Description = Error - 05/10/2012 20:03:47 | Computer Name = mlody-HP | Source = HPSF.exe | ID = 4000 Description = Error - 05/10/2012 20:03:47 | Computer Name = mlody-HP | Source = HPSF.exe | ID = 4000 Description = Error - 05/10/2012 20:03:47 | Computer Name = mlody-HP | Source = HPSF.exe | ID = 4000 Description = Error - 05/10/2012 20:03:50 | Computer Name = mlody-HP | Source = HPSF.exe | ID = 4000 Description = Error - 12/10/2012 21:29:06 | Computer Name = mlody-HP | Source = HPSF.exe | ID = 2000 Description = HP Error ID: -2146233088 at HPSFConfigReader.ConfigHelper.loadXML() at HPSFConfigReader.ConfigHelper..ctor() at HP.SupportAssistant.Engine.Resources.ResourceTasks.LoadApplicationResources(Boolean isOnAppLoad) Message: Exception of type 'System.Exception' was thrown. StackTrace: at HPSFConfigReader.ConfigHelper.loadXML() at HPSFConfigReader.ConfigHelper..ctor() at HP.SupportAssistant.Engine.Resources.ResourceTasks.LoadApplicationResources(Boolean isOnAppLoad) Source: HPSFConfigReader Name: HPSF.exe Version: 06.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: en-US RAM: 1791 Ram Utilization: 40 TargetSite: Void loadXML() Error - 12/10/2012 21:32:52 | Computer Name = mlody-HP | Source = HPSF.exe | ID = 4000 Description = [ Media Center Events ] Error - 06/10/2012 22:46:05 | Computer Name = mlody-HP | Source = MCUpdate | ID = 0 Description = 03:46:05 - Error connecting to the internet. 03:46:05 - Unable to contact server.. Error - 06/10/2012 23:46:37 | Computer Name = mlody-HP | Source = MCUpdate | ID = 0 Description = 04:46:37 - Error connecting to the internet. 04:46:37 - Unable to contact server.. [ System Events ] Error - 01/01/2014 19:18:07 | Computer Name = mlody-HP | Source = ipnathlp | ID = 31004 Description = Error - 02/01/2014 06:58:06 | Computer Name = mlody-HP | Source = EventLog | ID = 6008 Description = The previous system shutdown at 10:51:25 on ?2014-?01-?02 was unexpected. Error - 02/01/2014 07:00:14 | Computer Name = mlody-HP | Source = ipnathlp | ID = 31004 Description = Error - 02/01/2014 07:00:59 | Computer Name = mlody-HP | Source = Service Control Manager | ID = 7000 Description = The Usługa Google Update (gupdate) service failed to start due to the following error: %%2 Error - 03/01/2014 05:32:36 | Computer Name = mlody-HP | Source = EventLog | ID = 6008 Description = The previous system shutdown at 02:35:51 on ?2014-?01-?03 was unexpected. Error - 03/01/2014 05:35:21 | Computer Name = mlody-HP | Source = Service Control Manager | ID = 7000 Description = The Usługa Google Update (gupdate) service failed to start due to the following error: %%2 Error - 03/01/2014 10:34:38 | Computer Name = mlody-HP | Source = EventLog | ID = 6008 Description = The previous system shutdown at 12:52:21 on ?2014-?01-?03 was unexpected. Error - 03/01/2014 10:37:32 | Computer Name = mlody-HP | Source = Service Control Manager | ID = 7000 Description = The Usługa Google Update (gupdate) service failed to start due to the following error: %%2 Error - 04/01/2014 03:43:32 | Computer Name = mlody-HP | Source = EventLog | ID = 6008 Description = The previous system shutdown at 01:24:21 on ?2014-?01-?04 was unexpected. Error - 04/01/2014 03:46:34 | Computer Name = mlody-HP | Source = Service Control Manager | ID = 7000 Description = The Usługa Google Update (gupdate) service failed to start due to the following error: %%2 < End of report >