OTL Extras logfile created on: 2011-04-06 14:51:33 - Run 2 OTL by OldTimer - Version 3.2.22.3 Folder = D:\!!!!rootkits Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 78,00% Memory free 4,00 Gb Paging File | 4,00 Gb Available in Paging File | 93,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 32,81 Gb Total Space | 1,56 Gb Free Space | 4,76% Space Free | Partition Type: NTFS Drive D: | 200,07 Gb Total Space | 2,61 Gb Free Space | 1,30% Space Free | Partition Type: NTFS Drive F: | 93,14 Gb Total Space | 6,92 Gb Free Space | 7,43% Space Free | Partition Type: FAT32 Drive G: | 93,13 Gb Total Space | 0,12 Gb Free Space | 0,13% Space Free | Partition Type: FAT32 Drive J: | 15,11 Gb Total Space | 0,29 Gb Free Space | 1,90% Space Free | Partition Type: FAT32 Computer Name: PECET | User Name: Wszyscy chetni | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* .html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software) .url [@ = InternetShortcut] -- rundll32.exe shdocvw.dll,OpenURL %l [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* exefile [open] -- "%1" %* htmlfile [edit] -- Reg Error: Key error. http [open] -- "C:\Program Files\Opera\Opera.exe" (Opera Software) https [open] -- "C:\Program Files\Opera\Opera.exe" (Opera Software) InternetShortcut [open] -- rundll32.exe shdocvw.dll,OpenURL %l piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [ACDBrowse] -- "C:\Program Files\ACD Systems\ACDSee\9.0\ACDSeeQV.exe" "%1" (ACD Systems Ltd.) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] "DisableMonitoring" = 1 "" = [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr] "Start" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService] "Start" = 2 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List] "139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004 "445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005 "137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001 "138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] "1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007 "2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008 "139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004 "445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005 "137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001 "138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\Gadu-Gadu\gg.exe" = C:\Program Files\Gadu-Gadu\gg.exe:*:Enabled:Gadu-Gadu - program glowny "C:\Program Files\uTorrent\uTorrent.exe" = C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.) "C:\Program Files\eMule\emule.exe" = C:\Program Files\eMule\emule.exe:*:Enabled:eMule -- (http://www.emule-project.net) "C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software) "D:\Program Files\Electronic Arts\Need for Speed(TM) Hot Pursuit\Launcher.exe" = D:\Program Files\Electronic Arts\Need for Speed(TM) Hot Pursuit\Launcher.exe:*:Enabled:Need for Speed(TM) Hot Pursuit -- (Electronic Arts) "C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2009.SP3c\RpcAgentSrv.exe" = C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2009.SP3c\RpcAgentSrv.exe:*:Enabled:SiSoftware Deployment Agent Service -- (SiSoftware) "C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2009.SP3c\WNt500x86\RpcSandraSrv.exe" = C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2009.SP3c\WNt500x86\RpcSandraSrv.exe:*:Enabled:SiSoftware Sandra Agent Service -- (SiSoftware) [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 "{04A3A6B0-8E19-49BB-82FF-65C5A55F917D}" = Acronis True Image Home 2011 "{053B3DA8-91B5-4682-A130-715412A1A252}" = Paint.NET v3.5.4 "{0C826C5B-B131-423A-A229-C71B3CACCD6A}" = CDDRV_Installer "{0F7C2E47-089E-4d23-B9F7-39BE00100776}" = Toolbox "{0F9196C6-58B4-445B-B56E-B1200FECC151}" = Microsoft Bootvis "{105CFC7C-6992-11D5-BD9D-000102C10FD8}" = Lizardtech DjVu Control "{11B83AD3-7A46-4C2E-A568-9505981D4C6F}" = HP Update "{12A76360-388E-4B27-ABEB-D5FC5378DD2A}" = HPPhotoSmartPhotobookWebPack1 "{18669FF9-C8FE-407a-9F70-E674896B1DB4}" = GPBaseService "{18F11181-EA1A-42AE-AF89-4867C7F7A6FA}" = Sound Blaster X-Fi "{21DBBDD6-93A5-4326-9A04-C9A5C9148502}" = Norton PartitionMagic "{26A24AE4-039D-4CA4-87B4-2F83216022FF}" = Java(TM) 6 Update 24 "{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}" = CyberLink PowerDVD 8 "{3101CB58-3482-4D21-AF1A-7057FC935355}" = KhalInstallWrapper "{34BFB099-07B2-4E95-A673-7362D60866A2}" = PSSWCORE "{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{36FDBE6E-6684-462b-AE98-9A39A1B200CC}" = HPProductAssistant "{42A790E8-4067-4047-8D24-4FB7DAA6B9D2}" = Jupiter 2010 Standard "{42F7C377-2A1F-44FB-A17F-053C29E81045}" = Nero 7 Ultra Edition "{453F3911-2A93-4288-B806-81B461C1C00C}" = GPRO Organiser "{49D56762-52DA-4350-9420-97BACA9D7D62}" = PDF Creator Plus 4.0 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F}" = SAGEM F@st 800-840 "{4B59E851-E29D-4D02-B4B7-CE4A0B2B719C}" = Webcam Flix "{4CACFCD9-F71B-413A-8DF5-1A6419D5CDC6}" = Cards_Calendar_OrderGift_DoMorePlugout "{4F923F90-46D1-4492-9CC6-13FBBA00E7EC}" = C4400 "{5109C064-813E-4e87-B0DE-C8AF7B5BC02B}" = SmartWebPrintingOC "{52A69E11-7CEB-4a7d-9607-68BA4F39A89B}" = DeviceDiscovery "{5ACE69F0-A3E8-44eb-88C1-0A841E700180}" = TrayApp "{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder "{679EC478-3FF9-4987-B2FF-C2C2B27532A2}" = DocProc "{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD "{687FEF8A-8597-40b4-832C-297EA3F35817}" = BufferChm "{6A69D94E-C569-4154-9643-72E94D1DDFDA}" = XPS Essentials Pack "{6B407945-AE16-4A2A-BAAF-497FE62EDED3}" = PS_AIO_03_C4400_Software_Min "{6B437F94-056F-4791-AF2C-0D10E2706AF0}" = PanoStandAlone "{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15}" = CustomerResearchQFolder "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{7B738CD9-D107-48C7-8E65-2E6639A39C8D}" = PerfectDisk 10 Professional "{80533B67-C407-485D-8B5D-63BB8ED9D878}" = Scan "{83A606F5-BF6F-42ED-9F33-B9F74297CDED}" = Need for Speed(TM) Hot Pursuit "{85010756-63C4-4283-BD53-BFFA8D90C3B0}" = Reasonable NoClone 4 Enterprise "{87CC8013-56D1-43E1-A0A5-AD406B4EBA95}" = Opera 10.63 "{87E2B986-07E8-477a-93DC-AF0B6758B192}" = DocProcQFolder "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8A85DEAD-7C1F-4368-881C-72AC74CB2E91}" = UnloadSupport "{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}" = TomTom HOME Visual Studio Merge Modules "{90110415-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Professional "{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system "{95120000-00AF-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (Polish) "{954B7F64-D1D4-476F-8919-99585D0A6ABF}" = PS_AIO_03_C4400_Software "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A0B9F8DF-C949-45ed-9808-7DC5C0C19C81}" = Status "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{A498D9EB-927B-459B-85D6-DD6EF8C2C564}" = erLT "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{A5AB9D5E-52E2-440e-A3ED-9512E253C81A}" = SolutionCenter "{A8BB9906-E618-406A-B161-7383AFF46C39}" = EasyRecovery Professional "{AB49B509-8FCA-45E6-9FB9-9E4AEEB8F148}" = System Requirements Lab CYRI "{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder "{AC76BA86-7AD7-1045-7B44-A70500000002}" = Adobe Reader 7.0.5 - Polish "{B2D41883-3BFC-4BA0-A2F6-5A2C9836C238}" = ACDSee 9 Photo Manager "{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 260.99 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 260.99 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView" = NVIDIA nView 135.36 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.10.0514 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B8DBED1E-8BC3-4d08-B94A-F9D7D88E9BBF}" = HPSSupply "{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX "{BAD0FA60-09CF-4411-AE6A-C2844C8812FA}" = HP Photosmart Essential 2.5 "{BCB8B85E-E28A-424F-AE81-A7553DAA32A4}" = Nokia PC Suite 4.88 "{BDCF27CA-BFC4-4F49-8D24-A925C9505AB8}" = Windows Rights Management Client with Service Pack 2 "{BE3497CB-7278-4526-8918-9A3FD77AE790}}_is1" = iTeddy File Converter v. 0.2 "{BEF3EFE7-5159-436D-9BF0-CCC633179EB4}" = EVGA Display Driver "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{C3113E55-7BCB-4de3-8EBF-60E6CE6B2196}_is1" = SiSoftware Sandra Lite 2009.SP3c "{C9CE9393-B568-428D-AD5B-55452B9748DB}" = PS_AIO_03_C4400_ProductContext "{CCB9B81A-167F-4832-B305-D2A0430840B3}" = WebReg "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D0DCD54F-C829-41A5-AF32-71E632BB0E2C}" = Kaspersky Internet Security 6.0 "{D2E0F0CC-6BE0-490b-B08B-9267083E34C9}" = MarketResearch "{D99A8E3A-AE5A-4692-8B19-6F16D454E240}" = Destination Component "{E08DC77E-D09A-4e36-8067-D6DBBCC5F8DC}" = VideoToolkit01 "{E24A7D40-D12E-4A11-8DEC-7BB21BE4614D}" = Wolfram Notebook Indexer 1.1 "{E6D22FE1-AB5F-42CA-9480-6F70B96DDD88}" = Need for Speed™ Undercover "{EC905264-BCFE-423B-9C42-C3A106266790}" = Windows Rights Management Client Backwards Compatibility SP2 "{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer "{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}" = Logitech SetPoint "{F42CD69D-E393-47c8-B2CD-B139C4ADA9A8}" = Copy "{F7B72805-2F58-4C04-AE9E-E7AD6A6EF62E}" = C4400_Help "{FF1F4E8E-A833-4c4b-A14A-45D5B841B5D8}" = HP Photosmart C4400 All-In-One Driver Software 10.0 Rel .3 "6310i MA7630-Handset Manager" = 6310i MA7630-Handset Manager "A78E342A-6E13-48F3-8ED0-A6173F18B5E4" = Infor System KPiR i Fakturowanie "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Any Video Converter_is1" = Any Video Converter 3.1.7 "asterisk key" = Asterisk Key 10.0 "Atomic RAR Password Recovery_is1" = Atomic RAR Password Recovery 1.20 "Audacity_is1" = Audacity 1.2.6 "Audio Editor Gold_is1" = Audio Editor Gold v9.2.19.1 "CCleaner" = CCleaner "ClonyXXL_is1" = ClonyXXL "Cool Edit 2000" = Cool Edit 2000 "Creative Software AutoUpdate" = Creative Software AutoUpdate "Derive 6 Wersja demonstracyjna" = Derive 6 Wersja demonstracyjna "Diablo" = Diablo "Diablo II" = Diablo II "DualCoreCenter_is1" = DualCoreCenter "Duplicate File Detective_is1" = Duplicate File Detective v1.5 "DVD Decrypter" = DVD Decrypter (Remove Only) "DVD Shrink_is1" = DVD Shrink 3.2 "DVDFab 8_is1" = DVDFab 8.0.4.0 (11/11/2010) "eMule" = eMule "ET3" = English Translator 3 "Excel XP / 2003 - praktyczny kurs obsługi (część 1 i 2)" = Excel XP / 2003 - praktyczny kurs obsługi (część 1 i 2) "Excel XP / 2003 - praktyczny kurs obsługi (część 3)" = Excel XP / 2003 - praktyczny kurs obsługi (część 3) "Free Audio CD Burner_is1" = Free Audio CD Burner version 1.4 "Free PS Convert driver_is1" = Free PS Convert driver "Free YouTube MP3 Ripper_is1" = Free YouTube MP3 Ripper 1.00 "Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.9 "Gadu-Gadu" = Gadu-Gadu 7.7 "GetDataBack for NTFS" = GetDataBack for NTFS "GPL Ghostscript 8.56" = GPL Ghostscript 8.56 "GPL Ghostscript Fonts" = GPL Ghostscript Fonts "GSview 4.8" = GSview 4.8 "HandyAvi_is1" = HandyAvi 4.3 "Hidden Finder_is1" = Hidden Finder 1.5.1 "hp deskjet 930c series" = hp deskjet 930c series (Tylko usuń) "HP Imaging Device Functions" = HP Imaging Device Functions 10.0 "HP Photosmart Essential" = HP Photosmart Essential 2.5 "HP Smart Web Printing" = HP Smart Web Printing "HP Solution Center & Imaging Support Tools" = HP Solution Center 10.0 "HPExtendedCapabilities" = HP Customer Participation Program 10.0 "HPOCR" = OCR Software by I.R.I.S. 10.0 "InstallShield_{21DBBDD6-93A5-4326-9A04-C9A5C9148502}" = Norton PartitionMagic 8.0 "InstallShield_{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}" = CyberLink PowerDVD 8 "InstallShield_{42A790E8-4067-4047-8D24-4FB7DAA6B9D2}" = Jupiter 2010 Standard "InstallShield_{A8BB9906-E618-406A-B161-7383AFF46C39}" = EasyRecovery Professional "InstallWIX_{D0DCD54F-C829-41A5-AF32-71E632BB0E2C}" = Kaspersky Internet Security 6.0 "Intelore - RAR Password Recovery" = RAR Password Recovery v1.1 RC16 (remove only) "JDownloader" = JDownloader "KLiteCodecPack_is1" = K-Lite Codec Pack 4.8.0 (Full) "MeGUI modern media encoder" = MeGUI modern media encoder (remove only) "MetFileRegenerator" = MetFileRegenerator v3.011 "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Monkey's Audio_is1" = Monkey's Audio "Mozilla Firefox (3.6.16)" = Mozilla Firefox (3.6.16) "NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager "PhotoScape" = PhotoScape "PITy 2006_is1" = PITy 2006 dla Windows kompilacja:1.0.1.3 "PITy 2007_is1" = PITy 2007 dla Windows kompilacja:1.0.1.1 "PITy 2008_is1" = PITy 2008 dla Windows kompilacja:1.0.2.0 "PITy 2009_is1" = PITy 2009 dla Windows kompilacja:1.1.0.1 "PITy 2010_is1" = PITy 2010 dla Windows kompilacja:1.2.6.16 "PoiEdit" = PoiEdit "Process Killer_is1" = Process Killer 2.0 "PROSet" = Intel(R) PRO Network Connections Drivers "QuicktimeAlt_is1" = QuickTime Alternative 1.77 "RAR Password Cracker" = RAR Password Cracker 4.12 "RealAlt_is1" = Real Alternative 1.51 "Rozliczenie Roczne Rzeczpospolitej 2007" = Rozliczenie Roczne Rzeczpospolitej 2007 "Shop for HP Supplies" = Shop for HP Supplies "Skwat_ADSLAutoconnect" = ADSL Autoconnect "SopCast" = SopCast 1.1.1 "SpyRemover_is1" = SpyRemover 2.67 "Starcraft" = Starcraft "Streamripper" = Streamripper (Remove only) "SubEdit-Player_is1" = SubEdit-Player "SysInfo" = Creative System Information "TeamViewer 4" = TeamViewer 4 "TomTom HOME" = TomTom HOME 2.7.6.2056 "Total Video Converter 3.71_is1" = Total Video Converter 3.71 100812 "Totalcmd" = Total Commander (Remove or Repair) "UltraISO_is1" = UltraISO Premium V9.33 "Uninstall_is1" = Uninstall 1.0.0.1 "Universal Document Converter_is1" = Universal Document Converter "Unlocker" = Unlocker 1.9.0 "VLC media player" = VideoLAN VLC media player 0.8.6b "Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5 "whereisit-wii_is1" = WhereIsIt? 3.90 "Winamp" = Winamp (remove only) "Windows Media Format Runtime" = Windows Media Format 11 runtime "Windows XP Service Pack" = Windows XP Service Pack 3 "WinGimp-2.0_is1" = GIMP 2.6.8 "WinPcapInst" = WinPcap 4.0 "WinRAR archiver" = Archiwizator WinRAR "Wireshark" = Wireshark 1.2.1 "WM Recorder 12.0" = WM Recorder 12.0 "WMFDist11" = Windows Media Format 11 runtime "WordToPDF_is1" = WordToPDF 2.4 "Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0 "x264vfw" = x264vfw - H.264/MPEG-4 AVC codec (remove only) "XpsEP" = XPS Essentials Pack 1.0 "XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-725345543-764733703-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Diablo" = Diablo "uTorrent" = µTorrent [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2011-03-09 14:16:17 | Computer Name = PECET | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd pity2010ng.exe, wersja 1.2.6.20, moduł powodujący błąd unknown, wersja 0.0.0.0, adres błędu 0x7e4244c6. Error - 2011-03-09 14:26:38 | Computer Name = PECET | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd pity2010ng.exe, wersja 1.2.6.20, moduł powodujący błąd unknown, wersja 0.0.0.0, adres błędu 0x7e4244c6. Error - 2011-03-11 14:33:32 | Computer Name = PECET | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd pity2010ng.exe, wersja 1.2.6.20, moduł powodujący błąd unknown, wersja 0.0.0.0, adres błędu 0x7e4244c6. Error - 2011-03-15 17:59:21 | Computer Name = PECET | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca iexplore.exe, wersja 6.0.2900.5512, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2011-03-26 09:31:02 | Computer Name = PECET | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd pity2010ng.exe, wersja 1.2.6.20, moduł powodujący błąd unknown, wersja 0.0.0.0, adres błędu 0x7e4244c6. Error - 2011-03-27 06:28:07 | Computer Name = PECET | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca iexplore.exe, wersja 6.0.2900.5512, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2011-03-31 11:28:37 | Computer Name = PECET | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd vlc.exe, wersja 0.8.6.0, moduł powodujący błąd libffmpeg_plugin.dll, wersja 0.0.0.0, adres błędu 0x002067e5. Error - 2011-04-02 13:38:08 | Computer Name = PECET | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd opera.exe, wersja 10.63.3516.0, moduł powodujący błąd quicktimeh264.qtx, wersja 7.1.3.100, adres błędu 0x000675c6. Error - 2011-04-05 15:50:48 | Computer Name = PECET | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd pity2010ng.exe, wersja 1.2.6.20, moduł powodujący błąd unknown, wersja 0.0.0.0, adres błędu 0x7e4244c6. Error - 2011-04-06 08:39:00 | Computer Name = PECET | Source = PerfNet | ID = 2004 Description = Nie można otworzyć usługi Server. Dane wydajności usługi Server nie zostaną zwrócone. Zwrócony kod stanu to dane DWORD 0. [ System Events ] Error - 2011-04-06 04:24:24 | Computer Name = PECET | Source = ipnathlp | ID = 31008 Description = Agent proxy DNS nie może odczytać z Rejestru lokalnej listy serwerów rozpoznawania nazw. Dane zawierają kod błędu. Error - 2011-04-06 07:08:33 | Computer Name = PECET | Source = Service Control Manager | ID = 7034 Description = Usługa Kaspersky Internet Security 6.0 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2011-04-06 08:39:01 | Computer Name = PECET | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi General Purpose USB Driver (adildr.sys) z powodu następującego błędu: %%1058 Error - 2011-04-06 08:39:01 | Computer Name = PECET | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi LBeepKE z powodu następującego błędu: %%31 Error - 2011-04-06 08:39:01 | Computer Name = PECET | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi CLCV0 z powodu następującego błędu: %%193 Error - 2011-04-06 08:39:18 | Computer Name = PECET | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: Beep Error - 2011-04-06 08:47:44 | Computer Name = PECET | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi General Purpose USB Driver (adildr.sys) z powodu następującego błędu: %%1058 Error - 2011-04-06 08:47:44 | Computer Name = PECET | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi LBeepKE z powodu następującego błędu: %%31 Error - 2011-04-06 08:47:44 | Computer Name = PECET | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi CLCV0 z powodu następującego błędu: %%193 Error - 2011-04-06 08:48:00 | Computer Name = PECET | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: Beep < End of report >