OTL Extras logfile created on: 2014-04-24 19:30:34 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\AEM\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17041) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 6,00 Gb Total Physical Memory | 4,00 Gb Available Physical Memory | 66,66% Memory free 12,00 Gb Paging File | 9,56 Gb Available in Paging File | 79,66% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 51,39 Gb Total Space | 6,33 Gb Free Space | 12,32% Space Free | Partition Type: NTFS Drive D: | 97,66 Gb Total Space | 2,40 Gb Free Space | 2,46% Space Free | Partition Type: NTFS Drive J: | 931,51 Gb Total Space | 7,81 Gb Free Space | 0,84% Space Free | Partition Type: NTFS Computer Name: AEM-PC | User Name: AEM | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) [HKEY_USERS\S-1-5-21-2505665728-3756921644-4292411255-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0ED5E6DB-C0B9-433C-B5FB-56787276F690}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{108DFECD-FFC9-4CED-AA78-BFDE13C22D67}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{21532054-A548-4399-9797-01117DDD941A}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{3353F4B5-CDB0-4CAC-B052-20D52D05E9FF}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{359EB00C-792F-49AB-BC08-3D9678410AD1}" = rport=10243 | protocol=6 | dir=out | app=system | "{36DF2AFE-FFE0-4838-AAB8-A74BD9E1807D}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{3DB4432B-EB61-4E19-A0C8-54B854CA99BF}" = rport=137 | protocol=17 | dir=out | app=system | "{417555D1-8269-46D9-B268-4B8F85801095}" = lport=137 | protocol=17 | dir=in | app=system | "{45FBD0C9-AFF7-442E-B513-39627026BDAF}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{491EF6EC-FD87-4B5C-9AF1-58CDD27168BE}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{507E4B55-A66E-4818-B743-34F37E1CA992}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{50B7A43E-C475-4A4D-B266-48D530E28812}" = rport=138 | protocol=17 | dir=out | app=system | "{57B38A31-63BC-4B31-A15A-1306D5D87110}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{588C4DCA-5D5C-4377-90DF-5C12AEDA7395}" = lport=10243 | protocol=6 | dir=in | app=system | "{60D162F5-63EA-468C-A44B-A2225BCA406B}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{65F60268-4BFD-489C-B9B5-95924BA049E4}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{70329A6E-EA17-480F-AF42-B26E65852AF0}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{71503A53-E2E3-4FFF-BF80-A793811152F5}" = lport=138 | protocol=17 | dir=in | app=system | "{7709F4EB-14DE-412E-9D9F-48973A479A17}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{79741D74-FFF9-4AAF-BD76-9365A41B5B7E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{829DC26B-1282-49DC-9149-1430D18D9DE5}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{878BD5D7-2CB8-4F76-BD1F-86891CED2D84}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{93D7AE9B-10DD-4972-B066-D514ACCFC25B}" = lport=2869 | protocol=6 | dir=in | app=system | "{98EE7F42-D124-43BC-BC66-56624CB3DE07}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{A0608E72-DC61-4D26-BD4D-C5169DDB1A12}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{AACDE61E-B8F5-43AA-9C77-0EF10D7839BB}" = lport=445 | protocol=6 | dir=in | app=system | "{AE8F0C2A-E888-48F7-8E5D-7B013DA48ECF}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{B69D47ED-FF11-4EBB-AB8A-DA1A72FACE82}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{B9FCDDCD-6356-4CF1-B182-C16676DF71C7}" = rport=445 | protocol=6 | dir=out | app=system | "{BA70A14B-EB86-4D00-B3FD-D6BAF105F630}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe | "{C11C39CF-EB4E-4EF5-8C03-1FEDDC4B6E7C}" = rport=139 | protocol=6 | dir=out | app=system | "{C460571E-76DC-422E-8F27-B9C6DA84BC00}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{CAA8679F-857D-4BE6-B1D3-9FAA7303CE72}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{CC5AF9C3-392B-41CD-95B1-F9CEB9035E85}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{DA6AF97A-4622-40EA-BAFF-B2722C93F6B7}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{DAE26829-9ED7-4F10-BB0F-990B72D80C7F}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{EE8B618A-3897-49D5-A7F2-2078F5F331CB}" = lport=139 | protocol=6 | dir=in | app=system | "{F3DF5511-B996-42F0-9ABC-47C63795D855}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{01B2BBAA-AEF6-4F97-9A00-E5F850E6BA8F}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{0324041E-B0AE-4A86-B43A-D564B5843287}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{066DEDF1-C5CE-499E-B657-E2694CFEB14B}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{13B2321E-82A2-4DE9-BDB0-D59FBE4534A3}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{145109EF-EF84-47B1-8A46-89689DEC1A15}" = protocol=6 | dir=out | app=system | "{208EA165-6695-47CE-98AA-321F0A0B67A7}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{21FF864E-AF7F-4F15-B938-12A77CFB785A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{3734128D-57D4-4D7A-81AB-7AD58424FBB5}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{3AB0BDE2-5747-4BDD-8A5F-43D7181E4222}" = protocol=6 | dir=in | app=h:\program files (x86)\battlefield 4\bf4.exe | "{47DEDBC0-B63D-4816-B2E9-CB506004CBE2}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{482112E8-B2A9-4390-957B-9FB85D35C445}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{4F0D594F-BCFD-4C0C-A524-6F987FAB1A2E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{50A8236A-B027-4C5F-A32F-5A683451443D}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{5400B301-71B8-450D-9999-61C42E17D706}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\half-life\hl.exe | "{66B892D8-4093-4229-930D-8ED4ECA057DC}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{6D1C8AF8-9634-4D33-A21F-EA8C973AF147}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{77B3B6B5-E167-4865-91E6-28EAAA309561}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{7A7CF367-62F5-49B8-92D3-FA5DBCC4888A}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{805598D6-E83B-40AD-9CDB-D8FCE9ED58F7}" = protocol=6 | dir=in | app=c:\program files (x86)\napiprojekt\napisy.exe | "{89CCFE10-D6AD-4E36-A4AE-CF745434BB02}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{8DFB6C55-2234-44B2-8447-E3895EF847B4}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{9DEA341F-B627-448A-A8E1-8A1A240200B3}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{A1DC7CC1-CC99-4B9D-BCDA-EAE15CC22EB0}" = protocol=6 | dir=in | app=h:\program files (x86)\battlefield 4\bf4_x86.exe | "{A5B3C722-5FCA-467B-8F44-A07AB0CDDE97}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{ADBD5754-2E55-4835-A61F-308BF1994C98}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{B064B29F-533D-43AD-BCD8-5EB941D540A0}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\half-life\hl.exe | "{B5A30454-86AF-42CD-942E-21CB5D8A7E51}" = protocol=17 | dir=in | app=h:\program files (x86)\battlefield 4\bf4_x86.exe | "{BBE55218-E89F-4C11-AD57-CCF4FADF0B51}" = protocol=17 | dir=in | app=c:\users\aem\appdata\roaming\utorrent\utorrent.exe | "{BC922AF4-59BE-4F60-9525-D11A5EBD0662}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{CAF5F634-A9EC-41E8-A195-455E35A3D09C}" = protocol=17 | dir=in | app=h:\program files (x86)\battlefield 4\bf4.exe | "{CBF5B90F-5627-4092-9973-7F91CC6EE1E4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{CC7620CC-778E-41A2-AA5E-D8844C03A9A7}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{CDCE2D1D-1CEC-402C-9BBB-ACB8B5E5A90C}" = protocol=6 | dir=in | app=c:\users\aem\appdata\roaming\utorrent\utorrent.exe | "{D689E818-EDC8-43FB-AA72-16DA0449B12A}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{DAF89E8D-6DE5-466F-9DFF-D777572FCC3A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{FA5075FC-6324-48B3-88FD-8D15FD0CBC17}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{FCB486F6-5A2C-40D6-B777-421D5A626AAB}" = protocol=17 | dir=in | app=c:\program files (x86)\napiprojekt\napisy.exe | "TCP Query User{51CC2DF9-DC59-4F4B-863A-2D94AFBCB480}C:\program files (x86)\ps3 media server\jre\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ps3 media server\jre\bin\javaw.exe | "TCP Query User{5C21A6CF-50FA-41A4-BF86-5C19878288C4}D:\program files (x86)\pool nation\pool.exe" = protocol=6 | dir=in | app=d:\program files (x86)\pool nation\pool.exe | "TCP Query User{7D885496-D5FC-4799-895B-98B9CD8831D1}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe | "TCP Query User{ED726EAB-52AA-4251-BE82-B5F9B40F9CEC}H:\program files (x86)\wrc 4 fia world rally championship\wrc4.exe" = protocol=6 | dir=in | app=h:\program files (x86)\wrc 4 fia world rally championship\wrc4.exe | "UDP Query User{044739ED-65C4-468D-9450-04EC21B7D5BA}C:\program files (x86)\ps3 media server\jre\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ps3 media server\jre\bin\javaw.exe | "UDP Query User{40EBB6FF-DFE1-416B-83B2-42AC3CF40590}H:\program files (x86)\wrc 4 fia world rally championship\wrc4.exe" = protocol=17 | dir=in | app=h:\program files (x86)\wrc 4 fia world rally championship\wrc4.exe | "UDP Query User{90A5EBA2-5F6E-4C66-B862-9DF9F7A5A2B6}D:\program files (x86)\pool nation\pool.exe" = protocol=17 | dir=in | app=d:\program files (x86)\pool nation\pool.exe | "UDP Query User{D5DABDB7-0D2A-47C4-BB30-F44F2EC8D2DE}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{26A24AE4-039D-4CA4-87B4-2F86417005FF}" = Java(TM) 7 Update 5 (64-bit) "{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 "{45F1F774-38B4-3CC3-BAAF-051E6D19E48E}" = Microsoft .NET Framework 4.5.1 (PLK) "{764384C5-BCA9-307C-9AAC-FD443662686A}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 "{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2010 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Microsoft .NET Framework 4.5.1 (Polski) "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 335.23 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 335.23 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 335.23 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 1.8.1 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 335.21 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.13.1220 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 10.11.15 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamC" = GeForce Experience NvStream Client Components "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 10.11.15 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.19 "{D600D357-5CB9-4DE9-8FD4-14E208BD1970}" = Nero Backup Drivers "BrowseMark" = BrowseMark "WinRAR archiver" = WinRAR 4.00 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{01E9B2FF-DAF4-4529-9CC9-2101625517C7}" = nero.prerequisites.msi "{0320AB41-0926-4218-A8A6-68AC84E6BB93}" = Nero Recode 11 "{034DCAF9-96E7-4936-9A07-712F80B5181E}" = Nero RescueAgent 11 "{0713D1F9-DD77-42C1-8C7D-54D479E2E743}" = Nero SoundTrax 11 "{0D7A4289-99CF-4B8D-B812-86BE50A54552}" = Nero Video 11 "{11D3EF85-63E1-4AE4-A7C1-9241BDB16B51}" = Nero ControlCenter 11 "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{18989E11-1059-4C2F-B4CA-C3E7746A4FCE}_is1" = Need for Speed Rivals "{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}" = YTD Video Downloader 4.7.2 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{2432E589-6256-4513-B0BF-EFA8E325D5F0}" = Nero SharedVideoCodecs "{26A24AE4-039D-4CA4-87B4-2F83217045FF}" = Java 7 Update 55 "{275CD120-A23B-47C7-944A-9B6D9CDA583F}" = Intel WiDi Media Share "{2CA7225D-CB12-462A-9DD1-50319E158BA5}" = Nero 11 PiP Effects Basic "{32d14b1d-18fa-48e7-867d-93b7a72c816a}" = Intel® WiDi Media Share "{38A1E3ED-D913-41D2-9953-A93D5ACE3ADF}" = TL-WN721N/TL-WN722N Driver "{390757AA-8830-43DC-AEE0-4E5B6F8439EB}" = Nero SoundTrax 11 Help (CHM) "{3D6AD258-61EA-35F5-812C-B7A02152996E}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}" = Google Earth Plug-in "{51865D9D-8F63-46F2-87AB-9E72F93B618C}" = Welcome App (Start-up experience) "{53F7746A-96AA-49A5-86B8-59989680DAC5}" = Nero Burning ROM 11 Help (CHM) "{55C2143E-FBA5-442F-9AFA-726FF068F39D}" = Nero CoverDesigner 11 Help (CHM) "{560985FB-4B76-4121-9189-7A2CDC7886D6}" = Kaspersky Anti-Virus 2013 "{57F80ECF-E27C-4EEE-AB58-E971BACE2639}" = Nero Recode 11 Help (CHM) "{5A212B2D-140D-46F4-B625-2D1CA5A00594}" = Nero 11 Kwik Themes Basic "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}" = Nero Update "{6AB2427E-A18F-4809-9A12-29F5EBABBB3A}" = Nero BackItUp 11 Help (CHM) "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{8014FACB-1D1D-48C2-94AA-E29EE2E6B9CE}" = Nero WaveEditor 11 "{80407BA7-7763-4395-AB98-5233F1B34E65}" = NVIDIA PhysX "{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0407-0000-0000000FF1CE}_Office14.PROPLUS_{65A2328E-FDFB-4CA3-8582-357EA6825FEA}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUS_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-001F-0415-0000-0000000FF1CE}_Office14.PROPLUS_{1D751709-BA6C-49E2-844B-4F4F20F410C9}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002A-0415-1000-0000000FF1CE}_Office14.PROPLUS_{0844B6E1-0A6F-4D81-8BCF-48F883F521FE}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-006E-0415-0000-0000000FF1CE}_Office14.PROPLUS_{6AF8887A-72F7-4FA0-ABE4-396172B64550}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{9193490D-5229-4FC4-9BB9-A6D63C09574A}" = High-Definition Video Playback "{95716cce-fc71-413f-8ad5-56c2892d4b3a}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 "{A7A0BF2E-31CC-49E3-9913-52C503EB969D}" = Nero Audio Pack 1 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AB2BBC64-8AC8-4E66-BBF3-E22D5EACEECA}" = Nero BackItUp 11 "{ABADE36E-EC37-413B-8179-B432AD3FACE7}" = Battlefield 4™ "{AC76BA86-7AD7-1045-7B44-AB0000000001}" = Adobe Reader XI (11.0.06) - Polish "{B1846721-A8E6-46C7-83B6-0DCF7ADB4267}" = Nero Burning ROM 11 "{B239B43B-3E99-40B0-80BF-1B1BCA868D4E}_is1" = Podatnik.info PIT pro 2013 wersja 2.0.9.27582 "{B9B1BA7F-7E07-49DD-A713-5B397A5BB66B}" = Nero Kwik Media Help (CHM) "{BA8EE81E-26E5-4487-B840-183BAB67AE4C}_is1" = Batman: Arkham Origins [Spolszczenie] wersja 1.0 "{BEBEE34D-84A2-4EDD-8BEA-96CC54371263}" = Nero Core Components 11 "{D01CE99A-8802-483C-A79F-298B691EB432}" = Nero RescueAgent 11 Help (CHM) "{D2CBEFA4-F2D3-4E97-A171-8BFD6A31A5EC}" = Nero Express 11 Help (CHM) "{D4D66270-9147-4BDF-9946-FCA2B303AA8F}" = Nero ControlCenter 11 Help (CHM) "{E10AAE4A-98B8-420A-BD93-E0520C23D624}" = Nero Express 11 "{E51BC4B0-EA5E-49CC-AF3B-93B5C627EC22}" = Nero 11 Effects Basic "{E7D4E834-93EB-351F-B8FB-82CDAE623003}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 "{EB8DED20-A887-4A9C-BB5A-F3E7523DFB44}" = Nero WaveEditor 11 Help (CHM) "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F3743A2C-5D5F-4456-8F98-5DF36A954C50}" = Nero 11 Image Samples "{F49EF443-B2BD-4F10-8A46-87AFCDB90EDD}" = Nero 11 Disc Menus Basic "{F94D0E98-9A8E-4563-85C1-AFD4E7B37BF4}" = Splash PRO "{FAC3C37E-EDAB-4F3A-A173-A7C70CC88F09}" = Nero Video 11 Help (CHM) "{FAF448F1-4460-440C-9280-07F66A63D6F5}" = Nero Kwik Media "{FC18AB8F-9BA3-423B-91F2-622990F57978}" = Nero 11 "{FF44BCE5-5A18-4051-85F0-BC172D7B4695}" = Nero CoverDesigner 11 "4K Video Downloader_is1" = 4K Video Downloader 3.1 "Adobe Flash Player ActiveX" = Adobe Flash Player 12 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 13 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.6 "Battlelog Web Plugins" = Battlelog Web Plugins "ESN Sonar-0.70.4" = ESN Sonar "FormatFactory" = FormatFactory 3.2.1.0 "Freemake Video Downloader_is1" = Freemake Video Downloader "Google Chrome" = Google Chrome "InstallWIX_{560985FB-4B76-4121-9189-7A2CDC7886D6}" = Kaspersky Anti-Virus 2013 "KLiteCodecPack_is1" = K-Lite Codec Pack 9.9.0 (Full) "Mozilla Firefox 28.0 (x86 pl)" = Mozilla Firefox 28.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NapiProjekt_is1" = NapiProjekt (2.2.0.2399) "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "PLAY ONLINE" = PLAY ONLINE "PS3 Media Server" = PS3 Media Server "QmF0bWFuQXJraGFtT3JpZ2lucw==_is1" = Batman Arkham Origins "Steam" = Steam "Steam App 10" = Counter-Strike "SubtitleEdit_is1" = Subtitle Edit 3.3.12 "UG9vbE5hdGlvbg==_is1" = Pool Nation "V1JDNEZJQVdvcmxkUmFsbHlDaGFtcGlvbnNoaXA=_is1" = WRC 4 FIA World Rally Championship "WinPcapInst" = WinPcap 4.1.2 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2505665728-3756921644-4292411255-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-04-23 01:57:36 | Computer Name = AEM-PC | Source = NvStreamSvc | ID = 131073 Description = Error - 2014-04-23 01:57:36 | Computer Name = AEM-PC | Source = NvStreamSvc | ID = 131073 Description = Error - 2014-04-23 01:57:41 | Computer Name = AEM-PC | Source = WinMgmt | ID = 10 Description = Error - 2014-04-23 06:55:56 | Computer Name = AEM-PC | Source = Steam Client Service | ID = 1 Description = Error: Failed to poke open firewall Error - 2014-04-23 07:11:45 | Computer Name = AEM-PC | Source = NvStreamSvc | ID = 131073 Description = Error - 2014-04-23 07:11:45 | Computer Name = AEM-PC | Source = NvStreamSvc | ID = 131073 Description = Error - 2014-04-23 07:12:07 | Computer Name = AEM-PC | Source = WinMgmt | ID = 10 Description = Error - 2014-04-24 01:55:39 | Computer Name = AEM-PC | Source = WinMgmt | ID = 10 Description = Error - 2014-04-24 01:55:43 | Computer Name = AEM-PC | Source = NvStreamSvc | ID = 131073 Description = Error - 2014-04-24 01:55:43 | Computer Name = AEM-PC | Source = NvStreamSvc | ID = 131073 Description = [ System Events ] Error - 2014-04-21 05:26:36 | Computer Name = AEM-PC | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error - 2014-04-21 09:49:56 | Computer Name = AEM-PC | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1. Error - 2014-04-21 16:28:45 | Computer Name = AEM-PC | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-04-22 03:31:49 | Computer Name = AEM-PC | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error - 2014-04-22 14:50:30 | Computer Name = AEM-PC | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-04-22 14:50:31 | Computer Name = AEM-PC | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1. Error - 2014-04-22 14:57:57 | Computer Name = AEM-PC | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1. Error - 2014-04-23 01:57:24 | Computer Name = AEM-PC | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error - 2014-04-23 07:10:57 | Computer Name = AEM-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 13:09:44 na ?2014-?04-?23 było nieoczekiwane. Error - 2014-04-23 07:11:30 | Computer Name = AEM-PC | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom < End of report >