OTL Extras logfile created on: 2014-04-07 18:38:18 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Efik\Desktop\OTL 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.16521) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 7,94 Gb Total Physical Memory | 6,05 Gb Available Physical Memory | 76,20% Memory free 15,88 Gb Paging File | 13,68 Gb Available in Paging File | 86,15% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 119,24 Gb Total Space | 70,57 Gb Free Space | 59,18% Space Free | Partition Type: NTFS Drive D: | 931,39 Gb Total Space | 384,00 Gb Free Space | 41,23% Space Free | Partition Type: NTFS Computer Name: BLASZAK | User Name: Efik | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-3869118491-3186794339-2645200222-1000\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- Reg Error: Value error. http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Browse with &IrfanView] -- "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [foobar2000.enqueue] -- "C:\Program Files (x86)\foobar2000\foobar2000.exe" /add "%1" (Piotr Pawlowski) Directory [foobar2000.play] -- "C:\Program Files (x86)\foobar2000\foobar2000.exe" "%1" (Piotr Pawlowski) Directory [PotPlayer.Enqueue] -- "C:\Program Files\Daum\PotPlayer\PotPlayerMini64.exe" "%1" /Add (Daum Communications) Directory [PotPlayer.Play] -- "C:\Program Files\Daum\PotPlayer\PotPlayerMini64.exe" "%1" (Daum Communications) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- Reg Error: Value error. http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Browse with &IrfanView] -- "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [foobar2000.enqueue] -- "C:\Program Files (x86)\foobar2000\foobar2000.exe" /add "%1" (Piotr Pawlowski) Directory [foobar2000.play] -- "C:\Program Files (x86)\foobar2000\foobar2000.exe" "%1" (Piotr Pawlowski) Directory [PotPlayer.Enqueue] -- "C:\Program Files\Daum\PotPlayer\PotPlayerMini64.exe" "%1" /Add (Daum Communications) Directory [PotPlayer.Play] -- "C:\Program Files\Daum\PotPlayer\PotPlayerMini64.exe" "%1" (Daum Communications) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DisableUnicastResponsesToMulticastBroadcast" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DisableUnicastResponsesToMulticastBroadcast" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0078525D-ACC7-4F7F-A4B0-0B0CA7919F64}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{073B545D-A755-44EC-9361-E4DCAECD0BCD}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{0A6A6EFF-77FA-419E-B288-75C1F45A7213}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{0A982E69-7209-4BA8-BD27-687A60D639D4}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{0D2A3109-51AC-44BB-8634-17132B161F56}" = lport=3540 | protocol=17 | dir=in | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe | "{16AD70AE-5B24-4C26-8DE6-56B895DB9ACB}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{228DF5EA-18B0-4451-99D2-A1BDFEC6EF98}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{241CA765-DD07-49E0-8ADB-09C9705A0E4D}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{31350A3A-ECE2-48D5-9017-90E2750D9FBF}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\outlook.exe | "{405916F6-4CC1-4760-BF0C-4D79AB0BA822}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{45724F2B-CFAE-4067-A97A-5469BC0DD162}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{51451EFC-C68C-4161-A104-4DE0D80E22FB}" = lport=2869 | protocol=6 | dir=in | name=upnp tcp 2869 | "{55D249C8-9DA4-4773-8BF7-09C4657EED44}" = rport=10243 | protocol=6 | dir=out | app=system | "{5F9E3B7C-5389-4A1A-9281-6548DD74F710}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{5FC6C6D2-974C-4DC8-A59E-D01DAA89B313}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{649D1BA5-F31E-4DCC-A0B6-567AC3A45D24}" = rport=3540 | protocol=17 | dir=out | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe | "{64A9F7FB-7C55-43C1-8C37-8AC40AE33881}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{742438C0-5136-449C-A4B6-DCFD62D83132}" = lport=1900 | protocol=17 | dir=in | name=upnp udp 1900 | "{78D78F74-11D7-4D44-9728-68B10F1D3129}" = lport=10243 | protocol=6 | dir=in | app=system | "{79B3AED0-5223-45DA-9005-6C37FA990627}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{79DDE959-8049-4C7F-9EBD-BF839ACAF6CE}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{82FC34C1-43A7-49A9-B2E7-CAB8DB1A307D}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{8B3CFC16-A438-4B7C-94BB-35DAC5F4DBD9}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{8D3A1F9E-9440-4A93-9F91-4F350418A448}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{9F104794-15CD-4715-BF73-BBA2EF956558}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{AA539580-4F79-4CC8-B166-790F09E48174}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{AC885E83-4543-4985-90CA-F67BA9153F1A}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{B1D90F16-6CE9-4976-A259-F94141FECE1B}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{B4CC6B2E-8C21-4356-97B4-7072D8A4BAB3}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{B730BB9E-5EFE-4D86-A7A1-72EDCD467772}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{B903F26F-3C13-433D-8F0A-4C660E902D79}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{C421DDDB-69EB-4201-A4C7-6006F0321492}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{C8ECA3DB-44D2-47EB-AE94-F51DCEB746EC}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{CB612572-8FB0-4010-B26F-4D21F0F5865D}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{D0FB0243-6164-40FC-BE44-AEE09B98238E}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{D476622E-7C51-469D-8CA0-CEFC4470139D}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{D5973F1A-4C09-4EAC-8DDA-AA046DFAE107}" = lport=2869 | protocol=6 | dir=in | app=system | "{D6EADE44-DDA7-468B-8CD9-39CF2BE4771B}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{D91573C4-956C-4B38-A420-05BAEECD5476}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{E1F7872B-463B-46CC-B057-68BFE54EF6EB}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{E4128B37-550E-4327-BFE0-D1C5A22BB2FD}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{E4ABA25B-E4AF-4CB1-B44F-75E637BD5EA5}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\p2phost.exe | "{E99623BA-75D6-4DE5-880A-18D97287096E}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{EDA1F51A-0C19-4AEF-A079-5CD8046C6960}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{F2A1F2C6-AFDF-4248-A5A0-C8E3474270D4}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\p2phost.exe | "{F658352F-28FC-43A0-94F8-9512EC63DDF7}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{F7BD774C-1F22-438F-9477-C37FA5224C5D}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{FD88054B-706E-439E-8A0D-17AB1F7EC684}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0523C286-CC91-46EF-A7DD-07C728BC5237}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{1B21E9EC-7355-474F-82E5-5C064E087E45}" = protocol=6 | dir=in | app=%systemroot%\system32\p2phost.exe | "{2576ED42-7572-43F9-8CF6-016AF18253FD}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{292B64FF-E7DD-45A1-9AF5-DC3C7F4E03C5}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{2DA2D2E3-826E-42A1-986C-8F78DE3A9B7E}" = protocol=6 | dir=in | app=c:\program files (x86)\asus\ai suite ii\wi-fi go!\assisttools\wifi go! server.exe | "{40409FBD-4895-41CE-AE16-AD9A4D4900DD}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{44525780-1258-44C0-AC77-A56C9EB4B7A8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{4E86E76D-5431-468D-B3ED-FF8C112ADCB1}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{5E4AD54E-9EB8-4DD7-83F4-C028161C572F}" = protocol=6 | dir=in | app=c:\program files (x86)\usb server 2\usb server.exe | "{67075970-6EE4-412E-9AD7-036C49D852C2}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{69235449-1339-4D95-867B-9280CFF1CC5D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{6EC54C81-7416-4E92-A09A-B655680539CC}" = protocol=6 | dir=in | app=c:\program files\microsoft office 15\root\office15\ucmapi.exe | "{746AE5CF-1306-49D9-B612-D5A92714F471}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{7E23C45F-51BE-409E-83BD-925884F3B3D4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{88E227CF-AAA5-4BDF-8622-772BB05E57F3}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{97201339-5FCA-4DEA-8237-9A23F7D3F18B}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{A58BF5C0-B2F6-4A22-B4E7-300AFE7372F8}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{A5D0CEAA-9931-42B7-9B10-2629FEC96FFB}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{A89B68A9-E4B6-4EED-BD1D-380C902C153D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{B21928D6-D885-41F6-AF2A-52C96BE17D35}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{B3C94672-2251-4CEB-97F1-C6FD5DBD636F}" = protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\lync.exe | "{C96D51B7-50A2-42E6-9906-BA1481B0144A}" = protocol=6 | dir=out | app=%systemroot%\system32\p2phost.exe | "{D4172080-4D2C-4EFF-AF4E-4A989F9BF065}" = protocol=6 | dir=out | app=system | "{DB10861A-8D76-4A82-883E-55008728C8C4}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{E3CB0B69-F187-494C-B0AD-4065FD3FA4B0}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{F148E971-D237-45D4-ADCD-123698B9CDDA}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{F7A50511-2D98-4099-B963-1940AE376675}" = protocol=17 | dir=in | app=c:\program files (x86)\usb server 2\usb server.exe | "{F7B2F86B-4739-4D63-9B8B-CED64410E1A8}" = protocol=17 | dir=in | app=c:\program files (x86)\asus\ai suite ii\wi-fi go!\assisttools\wifi go! server.exe | "{FE4F1975-D504-456E-9568-0BE104CB9C9C}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{FEF30F0C-04D9-4689-853E-71B214885ABC}" = protocol=6 | dir=in | app=c:\program files\microsoft office 15\root\office15\lync.exe | "{FF0F4971-5724-4EB2-AE8D-794CACC9E09A}" = protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\ucmapi.exe | "TCP Query User{7A71543B-0555-440B-B33D-7BCE3881C721}C:\users\efik\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\efik\appdata\local\akamai\netsession_win.exe | "TCP Query User{C110E10E-33DE-4970-A312-1B4EEA488703}C:\program files (x86)\usb server 2\usb server.exe" = protocol=6 | dir=in | app=c:\program files (x86)\usb server 2\usb server.exe | "TCP Query User{FBD80649-586A-4FA2-9217-F6F587F0D571}C:\users\efik\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\efik\appdata\local\akamai\netsession_win.exe | "UDP Query User{69351256-7536-4362-9F22-BB1F94FCDE40}C:\users\efik\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\efik\appdata\local\akamai\netsession_win.exe | "UDP Query User{90C98C2A-99B4-4C0F-A635-E6CCCA28A445}C:\program files (x86)\usb server 2\usb server.exe" = protocol=17 | dir=in | app=c:\program files (x86)\usb server 2\usb server.exe | "UDP Query User{B0B4A25C-FBBF-47BA-9C45-CB4ADC43F5C7}C:\users\efik\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\efik\appdata\local\akamai\netsession_win.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1" = Core Temp 1.0 RC5 "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition) "{2DF84AC4-73EF-49B1-A1B4-EBD1AD8B6059}" = USB Server "{409CB30E-E457-4008-9B1A-ED1B9EA21140}" = Intel(R) Rapid Storage Technology "{45F1F774-38B4-3CC3-BAAF-051E6D19E48E}" = Microsoft .NET Framework 4.5.1 (PLK) "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}" = Centrum obsługi urządzeń z systemem Windows Mobile "{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1" = Revo Uninstaller Pro 2.5.9 "{6E5159B4-A519-41EF-80EF-AD58371515DF}" = Eraser 6.0.10.2620 "{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90150000-008F-0000-1000-0000000FF1CE}" = Office 15 Click-to-Run Licensing Component "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Microsoft .NET Framework 4.5.1 (Polski) "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 335.23 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 335.23 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 335.23 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 1.8.2.1 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 334.89 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.13.1220 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 11.10.13 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamC" = GeForce Experience NvStream Client Components "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.3.30.1 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 11.10.13 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.20 "{D2B1C10F-369B-40BC-B550-271F968C5EE0}" = Intel(R) Network Connections 17.3.63.0 "{F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}" = Intel® Trusted Connect Service Client "C-Media Oxygen HD Audio Driver" = ASUS Xonar D2 Audio Driver "CPUID CPU-Z_is1" = CPUID CPU-Z 1.69 "CrystalDiskMark_is1" = CrystalDiskMark 3.0.2f "ProPlusRetail - pl-pl" = Microsoft Office Professional Plus 2013 - pl-pl "PROSetDX" = Intel(R) Network Connections 17.3.63.0 "sp6" = Logitech SetPoint 6.61 "VIRTU MVP_is1" = VIRTU MVP 2.1.114 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{01E9B2FF-DAF4-4529-9CC9-2101625517C7}" = nero.prerequisites.msi "{0345CF70-FA00-4F4E-A218-0FA494F465A4}" = LightScribe Template Designs - Business Pack 1 "{039BC111-5D42-BD22-5D57-C7073E40209A}_is1" = SuperEasy Video Converter 2 v.2.1.2296 "{16F5ADDD-6EFD-411A-9013-8DD2C629FE53}" = LightScribe Applications "{1A8C5BB4-91EB-4AB4-B667-74EC501341B9}" = LightScribe Template Designs - 9 to 5 Pack 1 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{240C3DDD-C5E9-4029-9DF7-95650D040CF2}" = Intel(R) USB 3.0 eXtensible Host Controller Driver "{26326B5B-3D62-4C12-8841-6B55A19B552D}_is1" = SanDisk SSD Toolkit 1.0.0.1 "{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 51 "{34D3688E-A737-44C5-9E2A-FF73618728E1}" = AI Suite II "{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = eReg "{3FD0C489-0F02-481a-A3E1-9754CD396761}" = Intel® Watchdog Timer Driver (Intel® WDT) "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4F75616F-49C7-4EA2-8725-7E1A7AB1949C}" = Nero InfoTool 11 Help (CHM) "{61942EF5-2CD8-47D4-869C-2E9A8BB085F1}" = Asmedia ASM106x SATA Host Controller Driver "{64BEF779-5053-48AF-A3D8-B70EBC1C70E7}" = Nero 11 InfoTool "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{6F6873E3-5C92-4049-B511-231A138DD090}" = Kaspersky Anti-Virus "{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype™ 6.14 "{7AAE9187-C24F-4073-A951-36C370E7A3A5}" = ASUS Boot Setting "{7D916FA5-DAE9-4A25-B089-655C70EAF607}" = Qualcomm Atheros WiFi Driver Installation Program "{80407BA7-7763-4395-AB98-5233F1B34E65}" = NVIDIA PhysX "{8A03241E-7A3C-401D-B0CE-B3096F50AE6F}" = LightScribe Template Labeler "{90150000-008C-0000-0000-0000000FF1CE}" = Office 15 Click-to-Run Extensibility Component "{90150000-008C-0415-0000-0000000FF1CE}" = Office 15 Click-to-Run Localization Component "{91B33C97-7650-0EB0-B6C7-DDBA2932B7B4}_is1" = Ashampoo Music Studio 4 v.4.0.8 "{91B33C97-7BCF-CDFE-4321-58EBF3E8641C}_is1" = Ashampoo Burning Studio 14 v.14.0.1 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A5CC4D86-371A-4044-A7F3-C6CFCC4CA813}" = LightScribe Template Designs - Expressions "{A6563D7C-F3AD-11E2-A4DB-984BE15F174E}" = Evernote v. 4.6.7 "{A90E924E-1B35-44B0-978E-3F6F89FBC960}" = Nero InfoTool 11 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1045-7B44-AB0000000001}" = Adobe Reader XI (11.0.06) - Polish "{AE4DB5AB-CD91-4D63-8AD5-33EBADCCC4F2}" = Disk Unlocker "{B5ECA6E5-C943-4A40-936B-8E16D5B233ED}" = LightScribe Template Designs - Grab Bag Pack 1 "{B96D2269-568B-4CBF-9332-12FAE8B158F7}" = Medieval CUE Splitter "{BEBEE34D-84A2-4EDD-8BEA-96CC54371263}" = Nero Core Components 11 "{C1CC26DF-148A-4F68-BE42-EE5214686A71}" = LucidWizard "{C2F17E41-43CB-4317-A85D-7DDA50285187}_is1" = Daum PotPlayer x64 "{C92AB6F1-0F9C-8526-5DF1-0A2FD0FB33D9}_is1" = Ashampoo Photo Commander 11 v.11.0.3 "{CCF298AF-9CE1-4B26-B251-486E98A34789}" = Windows 7 USB/DVD Download Tool "{CD95D125-2992-4858-B3EF-5F6FB52FBAD6}" = Skype Toolbars "{D1C70CF7-F2F3-4A15-ADE5-5DF1BA0739E1}" = LightScribe Template Designs - Bonus Pack 1 "{D709005F-D8DC-42A8-8435-5AE880ECAF82}" = ASUS PC Diagnostics "{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}" = Asmedia ASM104x USB 3.0 Host Controller Driver "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F132000C-1CBA-458F-BF2F-FD43D59410F9}" = LightScribe System Software "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F3FCB08B-E752-444D-86A0-0634A4F3B23D}" = System Requirements Lab CYRI "{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center "{F8AACE23-4E68-4F07-BAC0-D3536584EAC0}" = LightScribe Template Designs - Straight Text "Adobe Flash Player ActiveX" = Adobe Flash Player 12 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 12 Plugin "CrystalDiskInfo_is1" = CrystalDiskInfo 5.6.2 Shizuku Edition "EPSON Scanner" = EPSON Scan "FLAC" = FLAC 1.2.1b (remove only) "foobar2000" = foobar2000 v1.3.1 "Google Chrome" = Google Chrome "Hard Disk Low Level Format Tool_is1" = Hard Disk Low Level Format Tool 4.25 "ImgBurn" = ImgBurn "InstallShield_{2DF84AC4-73EF-49B1-A1B4-EBD1AD8B6059}" = USB Server "InstallWIX_{6F6873E3-5C92-4049-B511-231A138DD090}" = Kaspersky Anti-Virus "IrfanView" = IrfanView (remove only) "Komputer Świat Plus_is1" = Komputer Świat Plus "Monkey's Audio_is1" = Monkey's Audio "Mozilla Firefox 28.0 (x86 pl)" = Mozilla Firefox 28.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "OpenAL" = OpenAL "PITy2013IPS_is1" = PITy2013 IPS 1.5.2.0 kompilacja:1.5.3.16 "Simpo PDF Converter Ultimate_is1" = Simpo PDF Converter Ultimate 1.2.0.0 "Simpo PDF Creator Pro_is1" = Simpo PDF Creator Pro 3.1.2.0 "Simpo PDF Password Remover_is1" = Simpo PDF Password Remover 1.1.0.0 "UltraISO_is1" = UltraISO Premium V9.52 "Uplay" = Uplay "Uplay Install 273" = Assassins Creed IV Black Flag [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3869118491-3186794339-2645200222-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "GG" = GG [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-12-20 19:25:55 | Computer Name = blaszak | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2013-12-20 19:25:55 | Computer Name = blaszak | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2013-12-20 19:25:55 | Computer Name = blaszak | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Error - 2013-12-20 19:37:05 | Computer Name = blaszak | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: GPUTweak.exe, wersja: 2.3.9.2, sygnatura czasowa: 0x5194abc1 Nazwa modułu powodującego błąd: Vender.dll, wersja: 1.0.6.4, sygnatura czasowa: 0x51949fa2 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000718b Identyfikator procesu powodującego błąd: 0x8e4 Godzina uruchomienia aplikacji powodującej błąd: 0x01cefddc5a84907f Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\ASUS\GPU Tweak\Vender.dll Identyfikator raportu: a1a6787e-69cf-11e3-9d45-60a44c42e6b4 Error - 2013-12-20 19:40:18 | Computer Name = blaszak | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: GPUTweak.exe, wersja: 2.3.9.2, sygnatura czasowa: 0x5194abc1 Nazwa modułu powodującego błąd: Vender.dll, wersja: 1.0.6.4, sygnatura czasowa: 0x51949fa2 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000718b Identyfikator procesu powodującego błąd: 0x968 Godzina uruchomienia aplikacji powodującej błąd: 0x01cefddccd9ab912 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\ASUS\GPU Tweak\Vender.dll Identyfikator raportu: 14979647-69d0-11e3-866c-60a44c42e6b4 Error - 2013-12-20 19:44:52 | Computer Name = blaszak | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2013-12-20 19:44:52 | Computer Name = blaszak | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2013-12-20 19:44:52 | Computer Name = blaszak | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Error - 2013-12-20 19:45:17 | Computer Name = blaszak | Source = NvStreamSvc | ID = 131073 Description = Error - 2013-12-20 19:45:17 | Computer Name = blaszak | Source = NvStreamSvc | ID = 131073 Description = [ System Events ] Error - 2014-04-07 06:47:34 | Computer Name = blaszak | Source = DCOM | ID = 10010 Description = Error - 2014-04-07 10:46:38 | Computer Name = blaszak | Source = Application Popup | ID = 1060 Description = Ładowanie sterownika \SystemRoot\SysWow64\Drivers\StarOpen.SYS zostało zablokowane z powodu niezgodności z tym systemem. Skontaktuj się z dostawcą oprogramowania w celu uzyskania zgodnej wersji sterownika. Error - 2014-04-07 10:47:12 | Computer Name = blaszak | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą DTSAudioSvc. Error - 2014-04-07 10:47:12 | Computer Name = blaszak | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi DTSAudioSvc z powodu następującego błędu: %%1053 Error - 2014-04-07 10:47:13 | Computer Name = blaszak | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: StarOpen Error - 2014-04-07 12:09:05 | Computer Name = blaszak | Source = Application Popup | ID = 1060 Description = Ładowanie sterownika \SystemRoot\SysWow64\Drivers\StarOpen.SYS zostało zablokowane z powodu niezgodności z tym systemem. Skontaktuj się z dostawcą oprogramowania w celu uzyskania zgodnej wersji sterownika. Error - 2014-04-07 12:09:40 | Computer Name = blaszak | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą DTSAudioSvc. Error - 2014-04-07 12:09:40 | Computer Name = blaszak | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi DTSAudioSvc z powodu następującego błędu: %%1053 Error - 2014-04-07 12:09:41 | Computer Name = blaszak | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: StarOpen Error - 2014-04-07 12:15:04 | Computer Name = blaszak | Source = DCOM | ID = 10001 Description = < End of report >