OTL Extras logfile created on: 2014-02-06 11:34:07 - Run 3 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Kuba\Documents\Aplikacje-skroty 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 4,00 Gb Total Physical Memory | 2,70 Gb Available Physical Memory | 67,44% Memory free 8,00 Gb Paging File | 6,24 Gb Available in Paging File | 78,08% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 131,84 Gb Total Space | 65,41 Gb Free Space | 49,62% Space Free | Partition Type: NTFS Drive D: | 126,95 Gb Total Space | 77,14 Gb Free Space | 60,76% Space Free | Partition Type: NTFS Drive E: | 206,87 Gb Total Space | 120,29 Gb Free Space | 58,15% Space Free | Partition Type: NTFS Computer Name: KUBA1 | User Name: Kuba | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L" Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L" Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0264270B-DE01-45F5-86DA-B89E0DB74CA4}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{1012056D-8BD5-4E85-AE10-1333C22D0717}" = lport=20443 | protocol=6 | dir=in | name=war thunder | "{18D9C5B7-C99D-4BEC-88D3-ABDAC5EE33CC}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{1FA4BC80-AAD5-4F4D-921A-0DE1DF95C99E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{246E54D3-9B2C-4A30-AF2A-93986734F578}" = rport=138 | protocol=17 | dir=out | app=system | "{247C8DCA-7D80-4C29-BDD1-7F737DAD9DDD}" = lport=10243 | protocol=6 | dir=in | app=system | "{2B90BBE0-E548-4B8B-BB75-0969D2DA8C0F}" = lport=7850 | protocol=6 | dir=in | name=war thunder | "{32306E2B-AB64-47B7-BB85-F1BA93BBCEBF}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{35D1FE00-D7F0-4440-B716-F19BFB1A9CBE}" = lport=137 | protocol=17 | dir=in | app=system | "{368BAF22-92A5-4431-94CF-B1E43B7901A1}" = lport=80 | protocol=6 | dir=in | name=war thunder | "{3A627586-27AC-444C-9683-684ED08FD1B9}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{3B97976B-84AA-4854-B1E4-06197FAF0761}" = lport=445 | protocol=6 | dir=in | app=system | "{4DD18983-B8E8-4AA7-A7E1-5A78BE3C093F}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{537F3051-EAC7-4188-A734-0A87183D363E}" = lport=8090 | protocol=6 | dir=in | name=war thunder | "{5442EFD7-4A03-4D84-B756-715F100633DF}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{57FCB21B-2FE0-4CF8-ACAE-CA84CCAFBB3F}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{6D876199-244B-460A-932D-98B5764153D3}" = lport=6881 | protocol=6 | dir=in | name=war thunder | "{701F2EC2-B21E-4BB0-A55A-9ACB72DF72B7}" = rport=10243 | protocol=6 | dir=out | app=system | "{70308E33-0FB6-4E89-9AAA-18A69AC8FEF7}" = rport=139 | protocol=6 | dir=out | app=system | "{73B6E62F-8B33-4444-8A7B-D7BFEF5355F9}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{84AE2BE2-6ADB-45B5-9C3C-E9604AB555F2}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{86588669-559F-4540-B38B-47567E46AB72}" = lport=138 | protocol=17 | dir=in | app=system | "{942E9737-21BF-4C08-B433-071AA18790FC}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{973770A3-4A49-45D1-AB33-CD7D1429DF54}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{985C8DE2-E712-4F98-957D-B7753B1677D7}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{988039C2-515D-46D6-9CD5-1AF76380BD4B}" = lport=2869 | protocol=6 | dir=in | app=system | "{9EDEE742-39F3-4580-802E-DFADA6D97028}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{A4496EED-C8FF-4CD2-8B55-E785FC198F9C}" = lport=57077 | protocol=17 | dir=in | name=pando media booster | "{A4DFC2FF-14CB-438B-B949-3FB8B961A7CF}" = lport=443 | protocol=6 | dir=in | name=war thunder | "{A5085DE0-BB80-4717-8C7D-455EB18D9543}" = lport=57077 | protocol=6 | dir=in | name=pando media booster | "{A6BCA5B6-700C-4CEF-AFD9-118B8DF26D88}" = rport=445 | protocol=6 | dir=out | app=system | "{A82B72DC-342F-4557-A14A-C18AB251BDF5}" = rport=137 | protocol=17 | dir=out | app=system | "{A9C16552-13FD-44B7-96F4-E24219C0A77C}" = lport=27022 | protocol=6 | dir=in | name=war thunder | "{ACD9D278-BC65-46BF-AF32-2858F3DAAB28}" = lport=3478 | protocol=17 | dir=in | name=war thunder | "{AF6CB339-D35C-4F49-83F4-52ABC37E574B}" = lport=33333 | protocol=6 | dir=in | name=war thunder | "{B473A285-E332-4FDC-AEC2-E84EF8B628EE}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{B4E9AF74-7210-44CA-BDCC-B57CC9F4A753}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{BD68B2E8-CA87-4701-85A6-33A767C20A6A}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{C3C1CAA4-EA80-4DB3-B1C0-B659455DE0F2}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe | "{C672B729-4CDD-406E-ADD9-E2634C5201C8}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{C6B9E84A-23B8-447C-98FD-165AA11E08DA}" = lport=57077 | protocol=17 | dir=in | name=pando media booster | "{C9DE1C34-88F6-45C5-89A8-91499A8FAD37}" = lport=57077 | protocol=6 | dir=in | name=pando media booster | "{CED3A230-051E-497D-A80A-77CA562BB2D5}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{D68566A8-531C-49D1-9449-742DF5C59197}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{E2AC1D0C-9425-4EFA-A7C5-D0D12AB360DE}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{E9CD7C0D-31E8-434F-A0FF-18F01DEA5AA3}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{EA191401-5AD5-406D-A4C2-E7BCACEEC446}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{EF9D5D38-4D45-44B9-A937-1BA25FA441C4}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{F116E3A6-3709-49D2-8F71-E5A2A705C9DC}" = lport=139 | protocol=6 | dir=in | app=system | "{FE609EA5-1775-41A2-8F49-8A703918482B}" = lport=20010 | protocol=17 | dir=in | name=war thunder | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0E01F1EF-4F69-4479-BDFB-CCB7DEB79A55}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{0F02632E-1189-4CC1-ADB9-54ADB8E5B6B6}" = protocol=17 | dir=in | app=d:\gry\cs 1.6\steamapps\common\half-life\hl.exe | "{1785F647-F347-4FA1-B4F3-78CED3E80401}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{19B47463-9B37-42BC-B30B-672E6E81406A}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{1EF31FCB-32BE-437E-A885-CBB643F17572}" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "{22B027F7-635D-40C0-819B-23741279DF87}" = protocol=6 | dir=in | app=c:\program files (x86)\napiprojekt\napisy.exe | "{28386951-2FDF-46D0-B01A-34A9A0BE5EE5}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{2BF0C26F-4CDA-4690-B6B6-D52D8AD29E86}" = dir=in | app=c:\program files (x86)\avg\avg9\avgam.exe | "{2BF76960-60FF-4991-A1C8-486250B00F1F}" = protocol=17 | dir=in | app=d:\gry\cs 1.6\steam.exe | "{334C7C87-6E8C-464D-A293-090E15FF9CE5}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{3B12B9A7-3530-42C0-AAAC-FD90F25FCC70}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{3B72FF6B-1565-41FA-AAE0-148DE2E1AE76}" = protocol=17 | dir=in | app=c:\program files (x86)\napiprojekt\napisy.exe | "{405A3AE9-580B-491E-9942-DB6D08D875A6}" = dir=in | app=c:\program files (x86)\avg\avg9\avgupd.exe | "{417C8B80-8547-4459-AB6C-24094584FF65}" = dir=in | app=c:\program files (x86)\avg\avg9\avgdiagex.exe | "{4DDF5A0A-B32D-49E4-B0C5-0F9B3E9BE45C}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{5579E394-5C33-4946-A3C3-66A0752638F6}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{58B2AB20-3DBF-4E60-97F6-7DEF39422125}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{5D005B36-32B4-4554-9F00-427A5DE41AF2}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{633A939E-4A92-48C9-B083-A1FFC1ADB29D}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{64CD7C97-D22B-4E8F-B919-54AF3EDE3155}" = protocol=6 | dir=in | app=d:\gry\cs 1.6\steamapps\common\half-life\hl.exe | "{664F921F-7D18-4FCD-8F1C-7EB9639D923E}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{6685167E-C2A1-4E1F-B337-90D6E4EF6B72}" = dir=in | app=c:\program files (x86)\avg\avg9\avgnsa.exe | "{6EEDB7E4-C3A5-4912-9388-4F11716FF02E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{753DE8DC-CD32-4E9B-A74E-147119C89D66}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{7AC30624-08D9-4AF2-A4A9-B5DA0997F644}" = protocol=6 | dir=in | app=c:\users\kuba\appdata\roaming\utorrent\utorrent.exe | "{83C6A908-0FC1-45AC-8253-177A03D49024}" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "{86F83063-3284-495C-87D2-733EF4110B85}" = protocol=17 | dir=in | app=c:\users\kuba\appdata\roaming\utorrent\utorrent.exe | "{8D1A1A7C-EA16-4BA5-9F8E-29B8819445C9}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{8F9FC3B0-CCC4-4128-B7EA-ACB08BA79996}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{91497F98-3F4B-4E37-AF63-52E6C6879E43}" = protocol=6 | dir=out | app=system | "{91E85587-7BE8-448F-96F7-6E07637FCF79}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{993A0E9B-2B71-4DDB-99A1-D1154937E6B0}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{9F6B6BBA-8AB7-46FB-A28B-E8A84BCF7CF5}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{B088C4D6-D21E-4387-B87D-1A25688562BE}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{C3D08A35-C14A-4673-8832-4C24107C9C72}" = dir=in | app=c:\program files (x86)\avg\avg9\avgemc.exe | "{D04C290F-D26F-4143-9926-D2C0E763875C}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{DC671CD0-8BF6-4D85-8E4C-917730170D2A}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{DFCF7133-6521-45B0-8C87-4752EE66292D}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{E4204484-5107-4B2D-9AD1-B94142266063}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{E47888E8-EAC7-4C4C-9E58-C5FFF0AFC0F7}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{E5BF4B7A-5CA6-4211-A213-00832F9CDCC2}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{E67CE6DE-A8A8-4F5B-86A4-FED139B49204}" = protocol=6 | dir=in | app=d:\gry\cs 1.6\steam.exe | "{F9DC2D2A-B08C-450B-BE5F-DE0B513A4AB8}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "TCP Query User{4CB7E8F6-DD23-440C-A16C-000D4C9B0FF2}D:\gry\total war rome ii\rome2.exe" = protocol=6 | dir=in | app=d:\gry\total war rome ii\rome2.exe | "TCP Query User{D3399CA3-7DC7-47A8-89EC-1D36EDFEBF3C}D:\gry\cod 2\cod2mp_s.exe" = protocol=6 | dir=in | app=d:\gry\cod 2\cod2mp_s.exe | "UDP Query User{1943C00D-BF91-49CB-A688-11292199F742}D:\gry\cod 2\cod2mp_s.exe" = protocol=17 | dir=in | app=d:\gry\cod 2\cod2mp_s.exe | "UDP Query User{3F561781-0C5E-4770-AE59-2F98A7FEAB4F}D:\gry\total war rome ii\rome2.exe" = protocol=17 | dir=in | app=d:\gry\total war rome ii\rome2.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "_{B16BB34E-B7BF-47DF-8658-BEABCF40CD6A}" = Corel Graphics - Windows Shell Extension "_{BDBFAC49-8877-472F-876B-75ADB7DBC955}" = CorelDRAW Graphics Suite X6 (64-Bit) "{0CEA94E0-E6F4-4F2D-AA98-D0EFD6833754}" = Corel Graphics - Windows Shell Extension 32 Bit "{10762393-1B90-4AC2-AF1A-4C0C04AE303F}" = CorelDRAW Graphics Suite X6 - VBA (x64) "{1967EF95-E00B-4669-8B1C-A589BE8BF24F}" = CorelDRAW Graphics Suite X6 - Capture (x64) "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{1E3A578C-0A7D-4820-990F-B7545C0B2303}" = CorelDRAW Graphics Suite X6 - VSTA (x64) "{27AE72A4-B217-4CDC-B82B-3311E9D7460E}" = CorelDRAW Graphics Suite X6 - Draw (x64) "{2C72B5E4-AA34-4F1A-8C7E-468530F9F6A3}" = CorelDRAW Graphics Suite X6 - Photozoom Plugin (x64) "{35869A6C-BA31-4F23-B52D-BC1B1E41EC1B}" = CorelDRAW Graphics Suite X6 - Common (x64) "{3933C06C-8239-432B-87FC-F2BDC5B49A10}" = CorelDRAW Graphics Suite X6 - FontNav (x64) "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{4F5C2F9B-9FE1-4C4D-8B2D-B74CAD82BAEB}" = CorelDRAW Graphics Suite X6 - PL (x64) "{6099F026-0A98-4D40-9B3D-ED2123A8CBD0}" = CorelDRAW Graphics Suite X6 - Redist (x64) "{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64) "{7386B5FA-8715-481D-821F-7785110506DF}" = CorelDRAW Graphics Suite X6 - Custom Data (x64) "{7B79AE44-9B76-4815-84E5-ACAC3F0F0278}" = CorelDRAW Graphics Suite X6 - VideoBrowser (x64) "{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1 "{8E5DA9A6-7A9F-3A6F-BC5C-D6CBCA6A29C7}" = Microsoft .NET Framework 4 Extended PLK Language Pack "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007 "{90120064-0070-0000-0000-4000000FF1CE}" = Microsoft Visual Basic for Applications 7.1 (x64) "{90F60409-7000-11D3-8CFE-0150048383C9}" = Microsoft Visual Basic for Applications 7.1 (x64) English "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1 "{96AAAB95-AEBE-437A-B7CA-37C7BE13FFE9}" = CorelDRAW Graphics Suite X6 - Connect (x64) "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B16BB34E-B7BF-47DF-8658-BEABCF40CD6A}" = Corel Graphics - Windows Shell Extension "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 332.21 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 332.21 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 332.21 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 1.8.1 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 332.21 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.13.0725 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 10.11.15 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamC" = GeForce Experience NvStream Client Components "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.3.30.1 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 10.11.15 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.19 "{B6DF7031-2843-44FD-9CAB-DECAB4257456}" = CorelDRAW Graphics Suite X6 - IPM "{BDBFAC49-8877-472F-876B-75ADB7DBC955}" = CorelDRAW Graphics Suite X6 - Setup Files (x64) "{CCE7423E-1D84-4CD3-9E32-220EC9358D97}" = CorelDRAW Graphics Suite X6 (x64) "{D7C2687D-924E-4485-B367-C7D95CBF8DDD}" = CorelDRAW Graphics Suite X6 - PHOTO-PAINT (x64) "{DDE82E3D-20C4-48E1-AE1D-B1F10E42CA44}" = CorelDRAW Graphics Suite X6 - Writing Tools (x64) "{E699230D-4B5E-411E-9F45-FF50789B18DD}" = CorelDRAW Graphics Suite X6 - Filters (x64) "CCleaner" = CCleaner "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended "WinRAR archiver" = WinRAR 4.20 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam(TM) "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86 "{1A1FA4C1-2701-401C-8CE1-FDDE45304FF5}" = ASUS nVidia Driver "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 51 "{287EAC0F-6C96-4712-97A6-958510872CBB}" = Utility "{299C0434-4F4E-341F-A916-4E07AEB35E79}" = Microsoft Visual Studio Tools for Applications 2.0 Runtime "{2BD5C305-1B27-4D41-B690-7A61172D2FEB}" = Macromedia Flash 8 "{2FDBBCEA-62DB-45F4-B6E5-0E1FB2A1F29D}" = Visual C++ 8.0 Runtime Setup Package (x64) "{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = Gigabyte Raid Configurer "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{5546CDB5-2CE2-498B-B059-5B3BF81FC41F}" = Macromedia Extension Manager "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{5DE67937-45D5-45E4-923C-0B7F7EC929A7}" = League of Legends "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7B5AA67E-FEA0-40BB-BAB5-CA56645A589C}" = NVIDIA PhysX "{809D7E6D-915D-4EAD-821F-E13D93F37161}" = ASUS Smart Doctor "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{8BF2C401-02CE-424D-BC26-6C4F9FB446B6}" = Macromedia Flash 8 Video Encoder "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002A-0415-1000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86 "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}" = Microsoft Visual Studio Tools for Applications 2.0 - ENU "{AC76BA86-7AD7-1045-7B44-AB0000000001}" = Adobe Reader XI (11.0.06) - Polish "{AF37176A-78CA-545B-34EF-8B6A21514DD1}" = Adobe Help Manager "{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}" = PDF Settings CS6 "{CF097717-F174-4144-954A-FBC4BF301045}" = Nero 7 Ultra Edition "{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty(R) 2 "{D2437C5C-2D8C-40D2-8059-689AD7239FA3}" = Intel(R) C++ Redistributables for Windows* on Intel(R) 64 "{DF5A03CC-D5AA-43D8-B948-D9903F2AF94A}" = Counter-Strike(TM) "{EFBE6DD5-B224-96E5-72B9-68D328CB12A6}" = Adobe Widget Browser "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{FE23D063-934D-4829-A0D8-00634CE79B4A}" = Adobe AIR "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Adobe AIR" = Adobe AIR "AVG9Uninstall" = AVG 9.0 "chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Help Manager "com.adobe.WidgetBrowser" = Adobe Widget Browser "DAEMON Tools Lite" = DAEMON Tools Lite "ENTERPRISE" = Microsoft Office Enterprise 2007 "Europa Universalis IV_is1" = Europa Universalis IV "Eusing Free Registry Cleaner" = Eusing Free Registry Cleaner "HD Tune_is1" = HD Tune 2.55 "InstallShield_{809D7E6D-915D-4EAD-821F-E13D93F37161}" = ASUS Smart Doctor "InstallShield_{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty(R) 2 "KLiteCodecPack_is1" = K-Lite Codec Pack 10.0.0 Full "League of Legends 3.0.1" = League of Legends "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.75.0.1300 "Mozilla Firefox 26.0 (x86 pl)" = Mozilla Firefox 26.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NapiProjekt_is1" = NapiProjekt (2.1.1.2314) "Notepad++" = Notepad++ "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "SubtitleEdit_is1" = Subtitle Edit 3.3.8 "Syberia_is1" = Syberia "VG90YWxXYXJST01FSUk=_is1" = Total War ROME II "Winamp" = Winamp [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3554188659-4125365456-1988714816-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "uTorrent" = µTorrent "Winamp Detect" = Detektor Winampa [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-12-29 04:11:37 | Computer Name = Kuba1 | Source = NvStreamSvc | ID = 131073 Description = Error - 2013-12-29 04:11:37 | Computer Name = Kuba1 | Source = NvStreamSvc | ID = 131073 Description = Error - 2013-12-29 14:31:56 | Computer Name = Kuba1 | Source = NvStreamSvc | ID = 131073 Description = Error - 2013-12-29 14:31:56 | Computer Name = Kuba1 | Source = NvStreamSvc | ID = 131073 Description = Error - 2013-12-30 04:18:48 | Computer Name = Kuba1 | Source = NvStreamSvc | ID = 131073 Description = Error - 2013-12-30 04:18:48 | Computer Name = Kuba1 | Source = NvStreamSvc | ID = 131073 Description = Error - 2013-12-30 09:35:58 | Computer Name = Kuba1 | Source = NvStreamSvc | ID = 131073 Description = Error - 2013-12-30 09:35:58 | Computer Name = Kuba1 | Source = NvStreamSvc | ID = 131073 Description = Error - 2013-12-31 05:12:05 | Computer Name = Kuba1 | Source = NvStreamSvc | ID = 131073 Description = Error - 2013-12-31 05:12:05 | Computer Name = Kuba1 | Source = NvStreamSvc | ID = 131073 Description = [ System Events ] Error - 2013-12-05 03:57:58 | Computer Name = Kuba1 | Source = BROWSER | ID = 8032 Description = Error - 2013-12-05 11:38:29 | Computer Name = Kuba1 | Source = BROWSER | ID = 8032 Description = Error - 2013-12-06 04:14:09 | Computer Name = Kuba1 | Source = BROWSER | ID = 8032 Description = Error - 2013-12-06 04:48:59 | Computer Name = Kuba1 | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 09:47:26 na ?2013-?12-?06 było nieoczekiwane. Error - 2013-12-09 05:06:46 | Computer Name = Kuba1 | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 10:03:03 na ?2013-?12-?09 było nieoczekiwane. Error - 2013-12-09 06:21:55 | Computer Name = Kuba1 | Source = BROWSER | ID = 8032 Description = Error - 2013-12-10 04:20:25 | Computer Name = Kuba1 | Source = BROWSER | ID = 8032 Description = Error - 2013-12-13 12:50:45 | Computer Name = Kuba1 | Source = BROWSER | ID = 8032 Description = Error - 2013-12-14 06:18:35 | Computer Name = Kuba1 | Source = BROWSER | ID = 8032 Description = Error - 2013-12-16 14:21:11 | Computer Name = Kuba1 | Source = nvlddmkm | ID = 11141134 Description = < End of report >