OTL Extras logfile created on: 2014-03-31 14:50:35 - Run 2 OTL by OldTimer - Version 3.2.54.0 Folder = F:\docs\trojan 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.16521) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 7,98 Gb Total Physical Memory | 4,66 Gb Available Physical Memory | 58,38% Memory free 15,96 Gb Paging File | 12,04 Gb Available in Paging File | 75,40% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 300,00 Gb Total Space | 7,77 Gb Free Space | 2,59% Space Free | Partition Type: NTFS Drive D: | 165,66 Gb Total Space | 29,57 Gb Free Space | 17,85% Space Free | Partition Type: NTFS Drive F: | 243,49 Mb Total Space | 188,60 Mb Free Space | 77,46% Space Free | Partition Type: FAT Computer Name: RC-X | User Name: RC | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Play_with_TriDef_Media_Player] -- "C:\Program Files (x86)\TriDef 3D\TriDef\TriDefMediaPlayer\TriDefMediaPlayer.exe" "%1" (DDD Group Plc.) Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Play_with_TriDef_Media_Player] -- "C:\Program Files (x86)\TriDef 3D\TriDef\TriDefMediaPlayer\TriDefMediaPlayer.exe" "%1" (DDD Group Plc.) Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 "DefaultOutboundAction" = 0 "DefaultInboundAction" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files (x86)\TriDef 3D\TriDef\TriDefMediaPlayer\TriDefMediaPlayer.exe" = C:\Program Files (x86)\TriDef 3D\TriDef\TriDefMediaPlayer\TriDefMediaPlayer.exe:*:Enabled:TriDef 3D Media Player -- (DDD Group Plc.) "C:\Program Files (x86)\TriDef 3D\TriDef\TriDefMediaPlayer\TriDefMediaPlayer.exe" = C:\Program Files (x86)\TriDef 3D\TriDef\TriDefMediaPlayer\TriDefMediaPlayer.exe:*:Enabled:TriDef 3D Media Player -- (DDD Group Plc.) [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{01613B37-51EC-4072-8867-8683FC4248EC}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{0353D9A5-E9B1-42F8-85E6-6C1DA177CB07}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{0C2B6A58-0182-43F5-A820-9ABDB80138CC}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{175D3DEA-9756-4B51-BD7F-7EFBA7FC814E}" = rport=445 | protocol=6 | dir=out | app=system | "{1C4EF6D2-AA27-47C1-9B74-514ED26B2E9E}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office14\outlook.exe | "{1C7E502C-5B18-404E-9725-6FF6AC4EEAAE}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{25A3B23E-F0CE-46E7-B02E-181C4F0929DB}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{2CFA9D4C-3E29-4282-8A03-D2645F539371}" = lport=138 | protocol=17 | dir=in | app=system | "{3262BB8D-7C1F-4367-9FE2-5106E3C588B5}" = rport=1701 | protocol=17 | dir=out | app=system | "{35A17CC5-0E00-4592-B9AB-063AD54F85DF}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{3F58B967-884F-479D-A060-43B1CA1917CC}" = lport=139 | protocol=6 | dir=in | app=system | "{472725E0-CC71-4900-BDB9-02FEB197F25C}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{49DD74C5-09A6-4CFA-B8C0-1F83A99BC0EA}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{508A6E78-271F-4E12-B197-A6E719AFB731}" = rport=138 | protocol=17 | dir=out | app=system | "{5D32CD37-EB76-425F-9CA0-43E1078DE383}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{650DF055-8D61-4FFC-A974-E3F596D680B6}" = lport=10243 | protocol=6 | dir=in | app=system | "{6918944D-14CE-40BA-8F30-CE4AE52D9F2E}" = lport=1701 | protocol=17 | dir=in | app=system | "{6E1DBC92-1ED5-4AEA-8DEF-58093BAF3B33}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{7C742E27-2730-4ACD-AA07-299BB355B4F7}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{83A46719-CBBE-435A-B852-314190EFDE8E}" = lport=445 | protocol=6 | dir=in | app=system | "{83E35F9C-A101-481C-B931-C8322A636FB8}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{8C5B2EB4-BC21-488A-A28D-482F90E0ED98}" = rport=137 | protocol=17 | dir=out | app=system | "{8F6B28EA-C538-42EA-B4A3-24C71111CC2E}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{A367D346-3401-4783-A0C2-F38809AA5B21}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{A50A3849-0122-4489-BEB3-54BCD4CC7185}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{AE6E5FCF-0642-4EEB-90DB-9309A572ADDA}" = lport=2869 | protocol=6 | dir=in | app=system | "{BA4988E2-D7A6-4A7A-B76C-305D6D054697}" = lport=137 | protocol=17 | dir=in | app=system | "{BD1E82E6-8E5B-44BD-AF23-52B401A2A348}" = lport=1723 | protocol=6 | dir=in | app=system | "{C2B11110-D6A6-4D3B-856C-0E550F680DFB}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{CBF6C81A-8340-4749-B86C-9B02AA82E100}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{CC5B1A27-499F-43F6-B2EC-E104F1591598}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{DA036FBC-42B3-42C0-BC96-AB7E4920F1BD}" = rport=10243 | protocol=6 | dir=out | app=system | "{DC26BE9A-D122-44AD-A36F-4510364257C6}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{E59DB56C-3BBF-4128-BE3D-87BEFC3BD573}" = rport=1723 | protocol=6 | dir=out | app=system | "{F9B5C473-6F3B-45FB-9962-97AC189C8347}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{FFC083B5-C1EE-464B-BBF3-CD4D41AB2369}" = rport=139 | protocol=6 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{032ECECD-ECEB-42FF-9736-513A4ED06FF2}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{03E08DA0-6B56-469E-A4EA-4F9313743A3D}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\ordersupplies.exe | "{0514AF5F-5491-4178-8DFB-46C0D963FA76}" = protocol=17 | dir=in | app=c:\gry\ubisoft\assassin's creed\assassinscreed_dx9.exe | "{095E7899-6894-4697-8F84-EE029545325D}" = protocol=6 | dir=in | app=c:\program files\k2t\wtw\wtw.exe | "{0A24EEFA-93A8-4B2D-9AF6-777A5065D481}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\ids.application.exe | "{0B70C68F-0587-498A-A3BB-6CA0F7544F90}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2737\agent.exe | "{0C722482-01E7-49D3-8AC1-A4C575701591}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{159499B3-42A6-46D2-B43F-83A5D99C0773}" = protocol=6 | dir=in | app=c:\program files\common files\common desktop agent\cdasrv.exe | "{173D1532-F3B7-4D9F-AC95-5A336690B7F6}" = protocol=17 | dir=in | app=c:\gry\battle.net\battle.net.exe | "{1ACB20E9-3F4C-4C95-B55A-11AE2746E0ED}" = protocol=17 | dir=in | app=c:\program files\k2t\wtw\wtw.exe | "{1D08EC30-2A7E-475A-9254-DDD71FDCC3A4}" = protocol=6 | dir=in | app=c:\program files (x86)\pandora.tv\panservice\pandoraservice.exe | "{2717719F-4DC4-4974-B150-FE9737A1227F}" = protocol=17 | dir=in | app=c:\gry\diablo iii\diablo iii.exe | "{28A65CA7-93A4-4C95-84E9-C19F602BBB52}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\idsalert.exe | "{29D0E710-F918-4C27-A7B0-B02BD933AF9E}" = protocol=17 | dir=in | app=c:\program files\common files\common desktop agent\cdasrv.exe | "{2A22D1F3-DF8F-41E1-BE8C-81FE40E9ED2A}" = protocol=6 | dir=in | app=c:\program files (x86)\pandora.tv\panservice\pandoraservice.exe | "{2C1B1697-BC84-44DF-B05F-AEFC74A13F09}" = protocol=17 | dir=in | app=c:\program files (x86)\pandora.tv\panservice\pandoraservice.exe | "{2C8E3682-5882-4301-9256-93B12AAD401B}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{326C4C66-D43B-4DB5-A43B-1D265BC7A4D4}" = protocol=6 | dir=in | app=c:\gry\ubisoft\assassin's creed\assassinscreed_dx10.exe | "{34A5D1A0-AAEC-4F56-BEE8-32C536EBD8F9}" = protocol=6 | dir=in | app=c:\program files\k2t\wtw\wtw.exe | "{360DD6A2-2B8F-4C35-834A-CB2B533EF5B0}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{3D47FFF5-767B-40EA-8B56-AD5E684F5D83}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{4005DD8F-91A4-4047-9978-6F155FD9EB9E}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe | "{4042F2A7-FE6F-4C51-BE4B-E9D217BDB6CB}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\cdas2pc\cdas2pc.exe | "{415990D1-4BE2-4009-9D52-68A0EE574BF0}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{44938246-C259-41E0-ACD2-77E9C5C38A32}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1737\agent.exe | "{48B09B7D-AA57-47D5-9315-A9736519A9E6}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2717\agent.exe | "{48C8EC37-BDC5-46C6-8614-CF65A00CC076}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{49FBB1CF-D999-4C1A-87CB-1DE2203F2DD1}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1267\agent.exe | "{52E22B42-560C-41C1-98CC-89E28A2E5449}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{5311BEA9-6096-4D0C-BFC7-E0B84C1AC40A}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe | "{57263C13-13A0-4763-89F3-FDC545DA8D9D}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{5887C1BA-1F46-423E-A661-26F09B21FC5C}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | "{5CE31E93-260E-4CBD-A152-58EB80FA7873}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1737\agent.exe | "{5F123565-FFD1-4196-B71A-F89F37E5F40A}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | "{603789F3-345B-4A0F-9B4C-8EC87F30A758}" = protocol=6 | dir=in | app=c:\gry\battle.net\battle.net.exe | "{65381D3B-3C2E-42DE-B914-7BAB66FEF609}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\ids.application.exe | "{66B775DC-2133-4DAA-83C5-F7689AF9E1B6}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{687DC418-9F2D-4092-ADBF-6F06A1A85218}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1225\agent.exe | "{6C280914-8419-4399-AEC4-FE83A7FA2110}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\groove.exe | "{6E550A68-72A9-42A2-A14F-735958041BB3}" = protocol=17 | dir=in | app=c:\gry\starcraft ii\starcraft ii.exe | "{6F57EFDA-72D4-4250-9D65-4B67D7A2D33C}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{6FBFFBC5-F4C7-4A68-8C3A-51F3C9D66AAA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{75023CAB-09FB-468F-BE79-E46D42245B01}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{7A7B6641-F5CA-4B1D-94C7-DD4C213C6000}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{7AF6CEE9-A5AA-46D0-9E32-EE4A4C3BB4DB}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{7EB5B8CA-31E6-4BC9-B08A-3F3A091140C9}" = dir=out | app=%systemdrive%\gry\rockstar games\grand theft auto iv\launchgtaiv.exe | "{81E2C9D4-127A-4014-A01B-6A182E7E8FB7}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2689\agent.exe | "{84F5D112-FC80-4578-AC7F-9E935D47BBBE}" = protocol=17 | dir=in | app=c:\gry\starcraft ii\starcraft ii.exe | "{875DE0C7-36AA-4AA1-AF65-D245A02DECCC}" = protocol=17 | dir=in | app=c:\gry\ubisoft\assassin's creed\assassinscreed_launcher.exe | "{8A4E305A-92E4-4A2F-A41A-D61FE2D6F1E1}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{8B61D842-8C05-433A-A3BF-ED263C919E57}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{8B6B5A0B-FBDD-4130-944B-97B06CD9C2B6}" = protocol=17 | dir=in | app=c:\program files\k2t\wtw\wtw.exe | "{8CE3BE57-0623-4BA2-B076-2206BF68EEFD}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe | "{8E379AB9-0A57-4DAC-B0C7-CA1AAB81A87F}" = dir=out | app=%systemdrive%\gry\ubisoft\assassinscreed_dx9.exe | "{9313FC8E-7081-4642-AC59-C6391D956083}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{95B3ED9C-B396-4490-A026-DD24F914DEE8}" = protocol=6 | dir=in | app=c:\gry\starcraft ii\starcraft ii.exe | "{96F0D4C6-1D33-4EA9-BF7A-C2360E9BF1BD}" = dir=out | app=%systemdrive%\gry\ubisoft\assassinscreed_dx10.exe | "{9CFEF877-0E5C-47D0-94FF-00AAD1D070C2}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1267\agent.exe | "{9D27ECD6-608D-4BC8-ABE9-2F3FC1C27E01}" = dir=in | app=%programfiles% (portable)\radiosure_pro\radiosure_pro.exe | "{A5B6C21D-090A-4514-AA08-20669BE6864C}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{A88B9C0D-084F-483E-8BDF-0175A13D85E1}" = protocol=17 | dir=in | app=c:\program files (x86)\pandora.tv\panservice\pandoraservice.exe | "{AB3825A2-50B9-409C-927A-599A9B2668C8}" = protocol=6 | dir=out | app=system | "{AB7C50DF-B506-4D97-8848-3D5562CFA57D}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\idsalert.exe | "{AE2A5349-21A2-4B95-A8F1-D7C8B8B25770}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\groove.exe | "{AF89CE6A-721F-4286-B777-161A890D5E3C}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2689\agent.exe | "{B1B3447C-5D7A-4601-8860-3C05B40F8005}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe | "{BF605813-08C7-4F75-B0C6-9A16E0B3CF8F}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{C355C4ED-7E34-4E78-80F1-9391EFF35247}" = protocol=47 | dir=in | app=system | "{C3D481D5-E3EB-4B62-8855-A8134230454A}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{C4001EE0-F422-45AB-AFD1-8A66BC0870C9}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2006\agent.exe | "{C721B47A-BCBA-4344-9700-3DB32A4C4739}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\ordersupplies.exe | "{C75A15FC-00EB-4D04-94BE-96525151ECF0}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2006\agent.exe | "{C85C3AA6-E9DA-4904-B784-E3CF7A3A65FD}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{C8E72B48-1B80-4A12-B935-6B22C83A19E8}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{C9B0F301-689E-45B9-930B-7B226D83F50A}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{CAD986EB-E6EF-4A7E-80DE-5E77886DCACA}" = protocol=47 | dir=out | app=system | "{CAF1B4CE-F826-4D8F-B9D4-096FD3A6555C}" = protocol=6 | dir=in | app=c:\gry\ubisoft\assassin's creed\assassinscreed_launcher.exe | "{CC258248-CDB7-4245-B773-8D222DECA622}" = dir=out | app=%systemdrive%\gry\fifa 14\fifa 14 ultimate edition\game\fifa14.exe | "{CC9C5D55-1C37-47AC-AAD5-D8D0D3630815}" = protocol=6 | dir=in | app=c:\gry\starcraft ii\starcraft ii.exe | "{CCD57EA6-CC23-4C40-9686-EAF3FB91128D}" = protocol=6 | dir=in | app=c:\gry\diablo iii\diablo iii.exe | "{D35B7478-28DE-41CB-BC2E-617A8405794F}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\cdas2pc\cdas2pc.exe | "{D526E270-D3F9-4BB2-80DB-99BC0BA84C22}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2753\agent.exe | "{D8C52308-A033-454E-8B8F-0C1BA5B0E68D}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2753\agent.exe | "{DB8D4FBC-032B-4BDF-AAF8-F9D4B665E0C0}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{DC54C179-A30A-442B-9242-4C6B031B1349}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{DCC550C5-FBE3-4F89-A0D0-11BA9C909B49}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{DEA7576C-E233-4D20-9FDC-280F1A6D6CEB}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{E3D43372-B686-4DBB-9575-DD1E89B20E8E}" = protocol=17 | dir=in | app=c:\gry\ubisoft\assassin's creed\assassinscreed_dx10.exe | "{E9C699D6-2F73-4184-80C7-12DFBFE72D7F}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1225\agent.exe | "{EBE0F1EB-2644-4CC5-A74D-9BD5D1021FCD}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2717\agent.exe | "{F6295F50-CD7E-4DE5-8635-DC1BC1D16BE4}" = dir=out | app=%programfiles% (portable)\radiosure_pro\radiosure_pro.exe | "{F665F15B-97D8-4560-A584-221F818A1B33}" = protocol=6 | dir=in | app=c:\gry\ubisoft\assassin's creed\assassinscreed_dx9.exe | "{F73CBE6B-79F6-40A2-899D-41FFBDF1370C}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2737\agent.exe | "{F8D1BFBD-A541-45AF-8BB4-52D5F0646A96}" = dir=out | app=%systemdrive%\gry\fifa 14\fifa 14 ultimate edition\game\fifa14v3.exe | "{FDADFC63-E248-4F94-A1F7-5F1D5F8E8DE4}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "TCP Query User{01EA91EB-4A63-4DFA-AB20-AE440D406637}C:\gry\renegade ops\renegadeops.exe" = protocol=6 | dir=in | app=c:\gry\renegade ops\renegadeops.exe | "TCP Query User{081BC01B-F41F-4402-AFA4-A578E3B150ED}C:\program files (x86)\opera\opera.exe" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe | "TCP Query User{145B18E5-F5D3-49FF-9CE5-7B240C51B2E4}C:\program files (x86)\java\jre6\launch4j-tmp\frd.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\launch4j-tmp\frd.exe | "TCP Query User{23AE349B-88A0-40FA-A175-DF6F4FFF1916}E:\easysetupassistant\easysetupassistant.exe" = protocol=6 | dir=in | app=e:\easysetupassistant\easysetupassistant.exe | "TCP Query User{5453FC3E-B4D1-4F20-8907-C0FD31B33D80}C:\program files (portable)\radiosure_pro\appdata\radiosure.exe" = protocol=6 | dir=in | app=c:\program files (portable)\radiosure_pro\appdata\radiosure.exe | "TCP Query User{54F67339-F0D0-4C1E-95F7-071B0DF45275}C:\program files (portable)\screamer radio v0.4.4\screamer.exe" = protocol=6 | dir=in | app=c:\program files (portable)\screamer radio v0.4.4\screamer.exe | "TCP Query User{5FE8FA29-E7F4-4905-AABA-A58E70A76C45}C:\program files\java\jre7\launch4j-tmp\frd.exe" = protocol=6 | dir=in | app=c:\program files\java\jre7\launch4j-tmp\frd.exe | "TCP Query User{65CA42B4-7F54-4BF0-8865-DFC67762801E}C:\gry\tmnationsforever\tmforever.exe" = protocol=6 | dir=in | app=c:\gry\tmnationsforever\tmforever.exe | "TCP Query User{9CE49D54-3D42-4F19-AFC5-7B1A39C51573}C:\users\rc\appdata\local\temp\141.tmp\kmservice.exe" = protocol=6 | dir=in | app=c:\users\rc\appdata\local\temp\141.tmp\kmservice.exe | "TCP Query User{A3FDF72F-1409-483C-8DD5-AEDA840D17AB}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "TCP Query User{A96DE827-00B6-42E4-9AFF-468FD36CD11A}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe" = protocol=6 | dir=in | app=c:\windows\microsoft.net\framework\v2.0.50727\vbc.exe | "TCP Query User{BC1595D4-914D-4C6F-950D-C1640C6A3D1A}C:\gry\mortal kombat complete edition\mkke.exe" = protocol=6 | dir=in | app=c:\gry\mortal kombat complete edition\mkke.exe | "TCP Query User{C2CFA7E9-A4A3-4C7D-BEE5-15697A0AEA87}C:\program files (x86)\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe | "TCP Query User{C43E81D9-B2DE-4B02-81CD-0670FC65875F}C:\users\rc\appdata\roaming\yvga\islu.exe" = protocol=6 | dir=in | app=c:\users\rc\appdata\roaming\yvga\islu.exe | "TCP Query User{DDB7783C-AE54-4C9E-8371-2A9B5B824C2C}C:\program files (x86)\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe | "TCP Query User{F059D066-E3E5-40EE-BA52-5D8E2A38374A}C:\gry\fifa 14 demo\game\fifa14_demo.exe" = protocol=6 | dir=in | app=c:\gry\fifa 14 demo\game\fifa14_demo.exe | "TCP Query User{F8454EC4-6833-4950-AEE9-072F1FE4408F}C:\program files (x86)\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "UDP Query User{047808E3-2DFD-448A-8061-7129C138738F}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "UDP Query User{069D9F5A-EFF0-4380-BCAE-22619184CCE2}C:\program files (portable)\screamer radio v0.4.4\screamer.exe" = protocol=17 | dir=in | app=c:\program files (portable)\screamer radio v0.4.4\screamer.exe | "UDP Query User{074D01A6-0E36-45A7-B998-341E5849C8EF}C:\program files (x86)\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "UDP Query User{0DDA60D2-D196-4E39-A907-66FC1F98020D}C:\gry\tmnationsforever\tmforever.exe" = protocol=17 | dir=in | app=c:\gry\tmnationsforever\tmforever.exe | "UDP Query User{24923B54-4682-4F4F-AF13-4C8012835028}C:\users\rc\appdata\roaming\yvga\islu.exe" = protocol=17 | dir=in | app=c:\users\rc\appdata\roaming\yvga\islu.exe | "UDP Query User{375A618D-F104-4FFB-811D-70AFC1D700D5}C:\gry\renegade ops\renegadeops.exe" = protocol=17 | dir=in | app=c:\gry\renegade ops\renegadeops.exe | "UDP Query User{52549FED-D783-4841-914B-D70F69041BC6}C:\users\rc\appdata\local\temp\141.tmp\kmservice.exe" = protocol=17 | dir=in | app=c:\users\rc\appdata\local\temp\141.tmp\kmservice.exe | "UDP Query User{692A6025-C835-4245-AE11-45BDBBA85FAA}C:\gry\mortal kombat complete edition\mkke.exe" = protocol=17 | dir=in | app=c:\gry\mortal kombat complete edition\mkke.exe | "UDP Query User{76FE3766-79CE-445E-AFEC-06B11A6E6FEB}C:\program files\java\jre7\launch4j-tmp\frd.exe" = protocol=17 | dir=in | app=c:\program files\java\jre7\launch4j-tmp\frd.exe | "UDP Query User{81619090-AACD-4C76-911D-D25AAAA7368B}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe" = protocol=17 | dir=in | app=c:\windows\microsoft.net\framework\v2.0.50727\vbc.exe | "UDP Query User{9D1921A1-6EFA-4484-A090-303A2309D943}C:\program files (x86)\opera\opera.exe" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe | "UDP Query User{A1A7BC06-9DFB-49C5-93A1-5BE12CF40E63}E:\easysetupassistant\easysetupassistant.exe" = protocol=17 | dir=in | app=e:\easysetupassistant\easysetupassistant.exe | "UDP Query User{A5A702E4-201C-4467-96BD-E76CA9FE9CB8}C:\program files (x86)\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe | "UDP Query User{C5607BDE-F449-4183-AAA0-95A0FB8F8D15}C:\gry\fifa 14 demo\game\fifa14_demo.exe" = protocol=17 | dir=in | app=c:\gry\fifa 14 demo\game\fifa14_demo.exe | "UDP Query User{D30B60EB-AB80-4749-8100-79061E957FFE}C:\program files (portable)\radiosure_pro\appdata\radiosure.exe" = protocol=17 | dir=in | app=c:\program files (portable)\radiosure_pro\appdata\radiosure.exe | "UDP Query User{EF5DDFD0-91B1-415E-B084-CB64D17860B4}C:\program files (x86)\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe | "UDP Query User{EF5FB5CC-CD8D-4BEE-9744-BC642F88B9FC}C:\program files (x86)\java\jre6\launch4j-tmp\frd.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\launch4j-tmp\frd.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{031A0E14-0413-4C97-9772-2639B782F46F}" = Common Desktop Agent "{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64) "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{1DF5019A-68B5-4ba1-8E59-E185C7B7FF11}" = Komunikator WTW 0.9.10.3377 "{26A24AE4-039D-4CA4-87B4-2F86417010FF}" = Java 7 Update 10 (64-bit) "{35B226DA-E3F6-21FD-31AB-0046C6E87043}" = ATI Problem Report Wizard "{45F1F774-38B4-3CC3-BAAF-051E6D19E48E}" = Microsoft .NET Framework 4.5.1 (PLK) "{4975DE61-6BF6-B9BC-1FDE-C04C5EC78E4C}" = AMD Media Foundation Decoders "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime "{563F041C-DFDB-437B-A1E8-E141E0906076}" = Microsoft IntelliPoint 8.0 "{5E03A267-415E-5383-FA8F-3CE4145663B9}" = AMD Catalyst Install Manager "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{698EDD46-FC0B-926F-54DF-23B6BB20EDFC}" = AMD Drag and Drop Transcoding "{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1 "{89EE4A30-080F-2C95-6F78-C98D18FBD74D}" = AMD Accelerated Video Transcoding "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90140000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0015-0415-1000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0016-0415-1000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0018-0415-1000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0019-0415-1000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-001A-0415-1000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001B-0415-1000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0415-1000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-002C-0415-1000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-0043-0000-1000-0000000FF1CE}" = Microsoft Office Office 32-bit Components 2010 "{90140000-0043-0415-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Polish) 2010 "{90140000-0044-0415-1000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-006E-0415-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-00A1-0415-1000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00BA-0415-1000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Microsoft .NET Framework 4.5.1 (Polski) "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{9CF11D16-ECEB-90A5-A028-CA9E068D848B}" = ccc-utility64 "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B45B5123-C009-F8B4-FE93-45B42C8A786F}" = ATI AVIVO64 Codecs "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX 64-bit "ASRock App Charger_is1" = ASRock App Charger v1.0.4 "CCleaner" = CCleaner "CDisplayEx_is1" = CDisplayEx 1.9.15 "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "UDK-97bb0ee7-1883-43ec-b891-f76cd468d2c2" = My Game Long Name "WinRAR archiver" = WinRAR 4.01 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR "{017F8447-2A1D-0DDB-B5D7-CA2BFACE2886}" = CCC Help French "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{054E9A1C-3EA2-C657-E787-FD8DCF5C3D3B}" = CCC Help Czech "{1DE2BD51-0300-772D-5E18-F337D95D5687}" = CCC Help German "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{224E8FEB-5C1F-077F-6FC5-602AC1AE644D}" = CCC Help Danish "{26A24AE4-039D-4CA4-87B4-2F83216037FF}" = Java(TM) 6 Update 37 "{26A24AE4-039D-4CA4-87B4-2F83217051FF}" = Java 7 Update 51 "{275E9C49-C72F-D754-DEB7-77F10A9C00D8}" = CCC Help Japanese "{30049739-BE95-6591-B504-E6D7057D49CC}" = CCC Help Spanish "{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver "{3F1EB155-F96E-EB7B-2EF2-7375490E0FA9}" = CCC Help English "{47EA4DDF-FD99-46B3-846C-9F3F315268AD}" = ICM Trainer "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4B023D7B-9E67-795D-FB31-B5E1F6DCA451}" = CCC Help Italian "{5454083B-1308-4485-BF17-1110000D8301}" = Grand Theft Auto IV "{55F6C486-8C75-2A72-DAFE-CE78A624C9F7}" = CCC Help Russian "{5AF23993-7152-1620-E43F-1B4542FB4F84}" = CCC Help Thai "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{63326924-3CAF-C858-3A8F-8598C87019D7}" = Catalyst Control Center "{63822E89-11AA-F8EC-D433-F72A85799EC0}" = CCC Help Greek "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{66361420-4905-AEB8-17AE-172FDD164A7E}" = CCC Help Polish "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{769F2A4B-84A3-9486-ADD2-9E5AB4B4E1E3}" = Catalyst Control Center InstallProxy "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com "{8773DD1C-5FB2-95B5-5A93-0EFEAC900A4D}" = CCC Help Norwegian "{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher "{8CCBB0BF-9CC1-1A65-BB93-56012A460EE6}" = CCC Help Portuguese "{8CFA9151-6404-409A-AF22-4632D04582FD}" = Assassin's Creed "{8FB1B528-E260-451E-9B55-E9152F94B80B}" = Microsoft Games for Windows - LIVE Redistributable "{943A8D28-80D6-41DC-AE94-81FEB42041BF}" = System Requirements Lab CYRI "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A0A3CE05-96CB-52E9-434E-074F3BB7807E}" = CCC Help Turkish "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A9C64319-932F-D02B-B14C-FFFC3EC49E77}" = CCC Help Chinese Standard "{AC76BA86-7AD7-1045-7B44-AA1000000001}" = Adobe Reader X (10.1.9) - Polish "{B80BE2E3-EA77-53D4-7A56-C53D452E6D50}" = HydraVision "{C09DB932-7619-7B56-30E3-C0454811D6D7}" = CCC Help Korean "{C22A4697-BD77-ACB1-744F-1FD0A0BFF798}" = CCC Help Swedish "{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.4.11 Game "{D4B457B2-260F-C561-CA87-703BD3B724CA}" = Catalyst Control Center Graphics Previews Common "{D6CDB506-297D-AE70-0EF6-DE5185F961BE}" = CCC Help Chinese Traditional "{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}" = Etron USB3.0 Host Controller "{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding "{ECFD508E-68A2-91B2-46DD-1D03D783D94B}" = Catalyst Control Center Localization All "{EDE361D5-35A5-DA7D-3462-C3DABD24029B}" = CCC Help Hungarian "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F1E7DD6A-AE2D-D706-BEB3-937F76CA6AE9}" = CCC Help Finnish "{F3D9AC82-30F4-4BB9-B9AB-8697637568C1}" = Sound Blaster X-Fi MB "{F56F54DD-BCB2-1221-2CB7-E983A5CF9D15}" = CCC Help Dutch "{F97E3841-CA9D-4964-9D64-26066241D26F}" = Microsoft Games for Windows - LIVE "4F6D5E84-5826-4394-9F40-3A9A19165651_is1" = Pandora Service "Adobe AIR" = Adobe AIR "Adobe Flash Player Plugin" = Adobe Flash Player 12 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.6 "ASRock eXtreme Tuner_is1" = ASRock eXtreme Tuner v0.1.72 "ASRock InstantBoot_is1" = ASRock InstantBoot v1.26 "Audacity_is1" = Audacity 2.0.3 "BackgammonMasters_is1" = BackgammonMasters Client "BandiMPEG1" = Bandisoft MPEG-1 Decoder "Battle.net" = Battle.net "com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com "Diablo III" = Diablo III "dictator_is1" = dictator 0.9.6 "Dont Starve_is1" = Dont Starve version 1.0 "experience-lge-mon-lite-bundle" = TriDef 3D Games (LG 3D Monitor/TV) 1.6.6 "Freemake Video Converter_is1" = Freemake Video Converter wersja 4.1.1 "GameDesire-GameDesire Board Games" = GameDesire-GameDesire Board Games "GameDesire-GameDesire Marbles&Diamonds" = GameDesire-GameDesire Marbles&Diamonds "GameDesire-Poker" = GameDesire-Poker "GameDesire-Pool & Snooker" = GameDesire-Pool & Snooker "Google Chrome" = Google Chrome "InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}" = Etron USB3.0 Host Controller "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.62.0.1300 "Master of Orion 1 and 2_is1" = Master of Orion 1 and 2 "Mozilla Firefox 25.0.1 (x86 pl)" = Mozilla Firefox 25.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Myszometr ;-)_is1" = Myszometr ;-) 1.0 "NapiProjekt_is1" = NapiProjekt (2.1.0.2287) "OpenAL" = OpenAL "Opera 12.16.1860" = Opera 12.16 "PunkBusterSvc" = PunkBuster Services "Samsung Easy Printer Manager" = Samsung Easy Printer Manager "Samsung ML-1670 Series" = Samsung ML-1670 Series "Samsung Printer Live Update" = Samsung Printer Live Update "SopCast" = SopCast 3.5.0 "TeamSpeak 3 Client" = TeamSpeak 3 Client "The KMPlayer" = The KMPlayer (remove only) "Tunatic" = Tunatic "uTorrent" = µTorrent "Winamp" = Winamp "Winstep Xtreme_is1" = Nexus 11.10 "XFastUsb" = XFastUsb [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2123982863-3783761578-1848220-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Flux" = f.lux "GG" = GG "UnityWebPlayer" = Unity Web Player "uTorrent" = µTorrent "Winamp Detect" = Detektor Winampa [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-04-30 07:32:12 | Computer Name = RC-X | Source = SideBySide | ID = 16842815 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll". Błąd w pliku manifestu lub w pliku zasad "C:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll" w wierszu 3. Wartość "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" atrybutu "version" elementu "assemblyIdentity" jest nieprawidłowa. Error - 2013-05-01 04:08:11 | Computer Name = RC-X | Source = WinMgmt | ID = 10 Description = Error - 2013-05-02 02:59:05 | Computer Name = RC-X | Source = WinMgmt | ID = 10 Description = Error - 2013-05-02 09:31:44 | Computer Name = RC-X | Source = PandoraService.exe | ID = 0 Description = Error - 2013-05-02 09:32:29 | Computer Name = RC-X | Source = WinMgmt | ID = 10 Description = Error - 2013-05-02 10:06:35 | Computer Name = RC-X | Source = SideBySide | ID = 16842815 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll". Błąd w pliku manifestu lub w pliku zasad "C:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll" w wierszu 3. Wartość "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" atrybutu "version" elementu "assemblyIdentity" jest nieprawidłowa. Error - 2013-05-02 10:28:52 | Computer Name = RC-X | Source = PandoraService.exe | ID = 0 Description = Error - 2013-05-02 10:29:39 | Computer Name = RC-X | Source = WinMgmt | ID = 10 Description = Error - 2013-05-02 12:51:32 | Computer Name = RC-X | Source = PandoraService.exe | ID = 0 Description = Error - 2013-05-02 12:51:52 | Computer Name = RC-X | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 2014-03-07 18:09:23 | Computer Name = RC-X | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-03-10 09:23:21 | Computer Name = RC-X | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-03-12 16:22:26 | Computer Name = RC-X | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-03-13 16:04:31 | Computer Name = RC-X | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-03-18 16:36:56 | Computer Name = RC-X | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-03-21 06:14:19 | Computer Name = RC-X | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-03-23 08:52:14 | Computer Name = RC-X | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-03-24 15:36:14 | Computer Name = RC-X | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-03-27 05:27:47 | Computer Name = RC-X | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-03-30 09:57:39 | Computer Name = RC-X | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. < End of report >