OTL Extras logfile created on: 2014-05-07 10:38:15 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Michal\Desktop 64bit- Professional (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16863) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 7,95 Gb Total Physical Memory | 5,62 Gb Available Physical Memory | 70,68% Memory free 15,95 Gb Paging File | 11,87 Gb Available in Paging File | 74,41% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 97,56 Gb Total Space | 59,13 Gb Free Space | 60,61% Space Free | Partition Type: NTFS Drive D: | 465,76 Gb Total Space | 443,66 Gb Free Space | 95,25% Space Free | Partition Type: NTFS Drive E: | 833,85 Gb Total Space | 30,73 Gb Free Space | 3,68% Space Free | Partition Type: NTFS Computer Name: STACJONARNY | User Name: Michal | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-1291008882-874578337-2596852181-1001\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = CE 37 E6 AF FF 6A CD 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{005E9DE8-C197-4CB4-8065-D9D8AE6C6567}" = lport=2869 | protocol=6 | dir=in | app=system | "{0E218A8F-A2A6-41D9-A478-8B652117A256}" = lport=10243 | protocol=6 | dir=in | app=system | "{18A72F4E-0703-4BD9-B030-A7423FB1D522}" = rport=10243 | protocol=6 | dir=out | app=system | "{19CCE195-9B29-4D13-9808-DBFA504F07B2}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{1F75E51A-6624-4399-B34F-CCFC65A7C01C}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{25A9D1C0-4C53-47CE-899B-48CB2990C53B}" = lport=137 | protocol=17 | dir=in | app=system | "{38E95746-7FC1-47C1-A60A-8E2A59EDC45A}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{3CC1AC36-E664-4CEC-B70E-BB3042DD5309}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe | "{450C9022-5B9A-4346-831E-772CA0F5038D}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{5D48C7A4-BC6B-49C4-98C1-1109230BBC40}" = lport=139 | protocol=6 | dir=in | app=system | "{62DCB99F-FB5C-410A-95E1-CBF87F9B48DB}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{6CEA70DC-A6D0-4854-A6BC-6D899CFFB137}" = rport=445 | protocol=6 | dir=out | app=system | "{7D1512DE-7134-4369-A3A7-D0FCA3336179}" = rport=138 | protocol=17 | dir=out | app=system | "{A50F3C7C-CE0F-4C06-BD5F-AFC52071AE3E}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{ACB3E183-5C39-48C5-80FE-DF179540442A}" = lport=445 | protocol=6 | dir=in | app=system | "{D76F4C11-EBF8-4092-A0AB-99BEA2AC3C2A}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{DF7F2CB6-BF0C-45C1-9FE0-181F5FB43427}" = rport=139 | protocol=6 | dir=out | app=system | "{EA552520-B284-4612-9881-067AF90FC495}" = lport=138 | protocol=17 | dir=in | app=system | "{EDD7624A-8200-4D56-BD16-CD836D376B1B}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{F1E14B5B-0FB8-484F-A2CC-AACE0C256525}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{F33DC2FA-C250-478E-A758-5ED066C94091}" = rport=137 | protocol=17 | dir=out | app=system | "{FD47F576-2FED-4019-8301-5152C48CB50C}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{009A07F0-4D80-4F11-BC9D-E0599A7E2AF8}" = dir=out | name=@{microsoft.zunemusic_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} | "{073AC3CD-01FB-4B2B-BE10-53033FAA45AD}" = protocol=6 | dir=in | app=c:\users\michal\appdata\roaming\utorrent\utorrent.exe | "{0765D55B-9CA1-40E3-B5AC-6E0712F9C42C}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{09129CFD-FB9B-4E7E-AA63-AED9D47DC940}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{0C60C8DC-A123-4A8E-9999-5B808501B43E}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgpc01.exe | "{16FF314C-710C-411A-82AF-6BEC415B8189}" = dir=in | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{170F678F-E9B3-4CC4-8D87-96C4B8843791}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqtra08.exe | "{172AF693-BE8F-4327-A2AD-E7C8D0DBFC33}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{17577B40-802B-4A20-98E3-F2BB6D7252D8}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposid01.exe | "{21DE6857-24E1-47B4-A3BE-82AAC7D72051}" = protocol=17 | dir=in | app=c:\users\michal\downloads\utorrent.exe | "{24113367-BF4B-4B61-887E-048FC414B1DE}" = dir=in | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{355E83A0-AA61-41C5-9F6E-C8010BFA4460}" = dir=out | name=@{microsoft.bingsports_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{35A067C2-9E10-4968-8F35-1B00F66F04FA}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpfccopy.exe | "{3F6DFC95-FDAD-44B5-AAEA-98387EA030A1}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpiscnapp.exe | "{40DEB6B0-B3EF-44CF-AE83-2414EB6428D3}" = protocol=6 | dir=in | app=c:\users\michal\downloads\utorrent.exe | "{40DED660-635D-4B38-87F7-63EF0836EB8D}" = dir=in | name=microsoft solitaire collection | "{44A4C2A0-6D65-45B6-AA48-2497441E1C44}" = dir=out | name=@{microsoft.bingnews_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} | "{479E6190-F764-48BD-9A35-5CA43266E3D0}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{4ACB0C7D-0618-4B1D-8420-470484E06765}" = dir=out | name=microsoft solitaire collection | "{4B5ED127-2E21-4752-A56B-F096EC1C28F9}" = protocol=6 | dir=out | app=system | "{4CC7CD29-26F7-4384-8A67-A1E45205696C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{5F137DDE-7A9E-4DDE-A5DD-7BF25B7733A8}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{657C7865-76A6-477C-9C8E-1499AF6F90A5}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{6770AEB9-695F-4010-AFB7-59252FBFFE32}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgh.exe | "{6CD72201-F62E-42AA-AFFC-AF224957603E}" = protocol=6 | dir=in | app=c:\program files\k2t\wtw\wtw.exe | "{792CE52C-4256-4824-BEC7-E051338CFDD0}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{82955731-F2A9-4AC4-A799-13A7550D10F2}" = dir=out | name=@{microsoft.xboxlivegames_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{8662CFC7-915A-4D1B-95B4-BE10A9202E5D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{8750DAC0-BDDB-41E3-9E2E-C1F2118B9AC0}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{8CB97B55-6CC7-42C2-B1CC-8E49FC5F5472}" = dir=out | name=@{microsoft.bingfinance_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{8F3E3A13-2F18-4ACD-980A-6B138AA0D629}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{923CFA6B-80DF-45B7-9C37-1A196C46C4DB}" = dir=out | name=@{microsoft.bingmaps_1.2.0.136_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{948E8654-232A-48C6-B5F6-FA0829D1602D}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgm.exe | "{95F131B6-06F9-4220-8F18-61539B29FFF8}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{973DC51A-B7F3-4E5F-983B-45E2B2FF10F8}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgplgtupl.exe | "{97702754-562A-4C38-9093-258D776C4A88}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{978CF132-2A75-4D29-BD00-484BF6DAAD3B}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{9AC295F6-D988-4DF6-9C21-770D9D2DA75E}" = dir=out | name=@{microsoft.zunevideo_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} | "{9E179AD5-353C-4561-AF83-9F1948748D4D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{A0D3D647-5EC9-426B-B9A8-D2C7BC36FFA6}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{A75F5289-E593-4E82-BC23-5DDC3F9DEEAD}" = dir=in | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{ABB54FBC-D316-4047-81A7-F62AC176A09E}" = dir=in | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{AC8CAEA6-D148-43A5-B34F-E4B1AC374DA8}" = dir=out | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{B648CBA2-FF5F-4C2E-BAC1-856D113E3EF0}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqcopy2.exe | "{BD10894F-BC1E-446E-825E-52E3B843AF6A}" = protocol=17 | dir=in | app=c:\users\michal\appdata\roaming\utorrent\utorrent.exe | "{BF507BC4-0D95-43A3-B1EB-31EE038F6693}" = dir=in | app=c:\program files (x86)\hp\hp software update\hpwucli.exe | "{D0D0A269-18C3-4FEB-BE18-8AB640ED63CC}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{D1ACDD09-2C5A-4AEA-9592-BF3C840CD047}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{D294F03A-E46B-42C2-BFAB-E6626DA37952}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{D356E47E-EDB9-4019-8903-1BAE0E6B703C}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqkygrp.exe | "{D5598C2D-AB9E-4C61-9F20-51203A864447}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{D61247BB-3E9C-4B65-8D33-3938A219979E}" = dir=out | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{D970D38F-A104-4C27-9CD8-3883B14D768F}" = dir=out | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{D9A7E807-3A14-48DB-ADE5-7081528E56C0}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{DADA9FB5-F3B2-4423-89F8-B602BEF3A993}" = protocol=6 | dir=in | app=c:\users\michal\appdata\roaming\utorrent\utorrent.exe | "{DEA523A3-06EC-4664-803A-FC21402762AE}" = protocol=17 | dir=in | app=c:\program files\k2t\wtw\wtw.exe | "{DF5EFF61-D284-4577-87E0-6602545C6C9C}" = dir=out | name=@{microsoft.bingtravel_1.2.0.145_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{E633EE1A-91B3-4136-A3B9-080EF97D07D9}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{EDB02D8B-1A4D-4EC3-B13D-F73AFE85A873}" = dir=out | name=@{microsoft.bingweather_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{F39E41C2-6CFE-4016-846C-34B58AE751AB}" = dir=out | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{F55A44AD-41DC-4C1D-ADD3-B119265638B7}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqste08.exe | "{F5F29A12-F1EF-4CB6-8CCF-27ABFB5A934C}" = protocol=17 | dir=in | app=c:\users\michal\appdata\roaming\utorrent\utorrent.exe | "{F909CEDE-E8A1-4FDE-BF30-8964DAA21C91}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{F9599E9B-6C67-439B-887D-37297AF8E27E}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} | "{FADE03C5-3457-442D-8994-BBFC9AB5AC89}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1DF5019A-68B5-4ba1-8E59-E185C7B7FF11}" = Komunikator WTW 0.9.22.4040 "{60D6AAC5-FDC1-49BA-867B-3135F4726156}" = HP Deskjet F2200 All-In-One Driver Software 14.0 Rel. 6 "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2010 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 331.65 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 331.65 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 331.65 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.15.2 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.3.26.4 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{F494A8A4-00E8-4510-AB67-B7C45A3290A6}" = ESET Smart Security "{FF21C3E6-97FD-474F-9518-8DCBE94C2854}" = 64 Bit HP CIO Components Installer "HP Imaging Device Functions" = HP Imaging Device Functions 14.0 "HP Solution Center & Imaging Support Tools" = HP Solution Center 14.0 "HPExtendedCapabilities" = HP Customer Participation Program 14.0 "KLiteCodecPack64_is1" = K-Lite Codec Pack 9.9.0 (64-bit) "Shop for HP Supplies" = Shop for HP Supplies [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{06A1D88C-E102-4527-AF70-29FFD7AF215A}" = Scan "{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}" = DeviceDiscovery "{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}" = HPProductAssistant "{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1" = World of Tanks "{2711B584-259B-4723-A6F2-F3CFA291AFA2}" = DJ_AIO_03_F2200_Software_Min "{292F0F52-B62D-4E71-921B-89A682402201}" = Toolbox "{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}" = Status "{8EE94FD8-5F52-4463-A340-185D16328158}" = WebReg "{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{91B33C97-0FBA-74AE-E802-D782F5C8AA89}_is1" = Ashampoo Burning Studio 2013 v.11.0.6 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE466FF-70B7-4DA8-807C-DB4C3610FDAA}" = Copy "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}" = HPSSupply "{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}" = HP Update "{BB3447F6-9553-4AA9-960E-0DB5310C5779}" = GPBaseService2 "{BC5DD87B-0143-4D14-AAE6-97109614DC6B}" = SolutionCenter "{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}" = Destinations "{C81DA04A-1D44-4D4A-8108-5129331BBA00}" = F2200 "{CAE4213F-F797-439D-BD9E-79B71D115BE3}" = HPPhotoGadget "{CD31E63D-47FD-491C-8117-CF201D0AFAB5}" = TrayApp "{D360FA88-17C8-4F14-B67F-13AAF9607B12}" = MarketResearch "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FA0FF682-CC70-4C57-93CD-E276F3E7537E}" = BufferChm "Ad Muncher" = Ad Muncher v4.91 Build 32562 "Google Chrome" = Google Chrome "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.75.0.1300 "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "Opera 20.0.1387.91" = Opera Stable 20.0.1387.91 "VLC media player" = VLC media player 2.1.3 "WinRAR archiver" = WinRAR 5.01 (32-bit) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1291008882-874578337-2596852181-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Flux" = f.lux "uTorrent" = µTorrent [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1291008882-874578337-2596852181-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Flux" = F.lux "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-05-01 02:37:32 | Computer Name = Stacjonarny | Source = ESENT | ID = 489 Description = taskhostex (4796) Próba otwarcia pliku "C:\Users\Michal\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" w trybie tylko do odczytu zakończyła się niepomyślnie z błędem systemowym 32 (0x00000020): "Proces nie może uzyskać dostępu do pliku, ponieważ jest on używany przez inny proces. ". Operacja otwierania pliku zostanie zakończona z błędem -1032 (0xfffffbf8). Error - 2014-05-01 08:42:08 | Computer Name = Stacjonarny | Source = ESENT | ID = 489 Description = taskhostex (3140) WebCacheLocal: Próba otwarcia pliku "C:\Users\Michal\AppData\Local\Microsoft\Windows\WebCache\V01.log" w trybie tylko do odczytu zakończyła się niepomyślnie z błędem systemowym 32 (0x00000020): "Proces nie może uzyskać dostępu do pliku, ponieważ jest on używany przez inny proces. ". Operacja otwierania pliku zostanie zakończona z błędem -1032 (0xfffffbf8). Error - 2014-05-01 08:42:08 | Computer Name = Stacjonarny | Source = ESENT | ID = 455 Description = taskhostex (3140) WebCacheLocal: Wystąpił błąd -1032 (0xfffffbf8) podczas otwierania pliku dziennika C:\Users\Michal\AppData\Local\Microsoft\Windows\WebCache\V01.log. Error - 2014-05-01 08:42:18 | Computer Name = Stacjonarny | Source = ESENT | ID = 489 Description = taskhostex (3140) WebCacheLocal: Próba otwarcia pliku "C:\Users\Michal\AppData\Local\Microsoft\Windows\WebCache\V01.log" w trybie tylko do odczytu zakończyła się niepomyślnie z błędem systemowym 32 (0x00000020): "Proces nie może uzyskać dostępu do pliku, ponieważ jest on używany przez inny proces. ". Operacja otwierania pliku zostanie zakończona z błędem -1032 (0xfffffbf8). Error - 2014-05-01 08:42:18 | Computer Name = Stacjonarny | Source = ESENT | ID = 455 Description = taskhostex (3140) WebCacheLocal: Wystąpił błąd -1032 (0xfffffbf8) podczas otwierania pliku dziennika C:\Users\Michal\AppData\Local\Microsoft\Windows\WebCache\V01.log. Error - 2014-05-02 01:07:17 | Computer Name = Stacjonarny | Source = ESENT | ID = 489 Description = taskhostex (4444) Próba otwarcia pliku "C:\Users\Michal\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" w trybie tylko do odczytu zakończyła się niepomyślnie z błędem systemowym 32 (0x00000020): "Proces nie może uzyskać dostępu do pliku, ponieważ jest on używany przez inny proces. ". Operacja otwierania pliku zostanie zakończona z błędem -1032 (0xfffffbf8). Error - 2014-05-03 00:46:09 | Computer Name = Stacjonarny | Source = ESENT | ID = 489 Description = taskhostex (3732) Próba otwarcia pliku "C:\Users\Michal\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" w trybie tylko do odczytu zakończyła się niepomyślnie z błędem systemowym 32 (0x00000020): "Proces nie może uzyskać dostępu do pliku, ponieważ jest on używany przez inny proces. ". Operacja otwierania pliku zostanie zakończona z błędem -1032 (0xfffffbf8). Error - 2014-05-04 08:19:18 | Computer Name = Stacjonarny | Source = Application Hang | ID = 1002 Description = Program wwahost.exe w wersji 6.2.9200.16420 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 714 Godzina rozpoczęcia: 01cf67930563f6cd Godzina zakończenia: 4294967295 Ścieżka aplikacji: C:\Windows\system32\wwahost.exe Identyfikator raportu: 4c5a592b-d386-11e3-be82-10bf48bd2099 Pełna nazwa pakietu powodującego błąd: Microsoft.BingTravel_1.2.0.145_x64__8wekyb3d8bbwe Identyfikator aplikacji względem pakietu powodującego błąd: AppexTravel Error - 2014-05-04 08:19:18 | Computer Name = Stacjonarny | Source = Microsoft-Windows-Immersive-Shell | ID = 5973 Description = Aktywacja aplikacji Microsoft.BingTravel_8wekyb3d8bbwe!AppexTravel nie powiodła się. Błąd: -2144927142. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error - 2014-05-05 06:56:34 | Computer Name = Stacjonarny | Source = ESENT | ID = 489 Description = taskhostex (3424) Próba otwarcia pliku "C:\Users\Michal\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" w trybie tylko do odczytu zakończyła się niepomyślnie z błędem systemowym 32 (0x00000020): "Proces nie może uzyskać dostępu do pliku, ponieważ jest on używany przez inny proces. ". Operacja otwierania pliku zostanie zakończona z błędem -1032 (0xfffffbf8). [ System Events ] Error - 2014-04-24 01:51:25 | Computer Name = Stacjonarny | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 07:49:52 na ?2014-?04-?24 było nieoczekiwane. Error - 2014-04-24 07:41:29 | Computer Name = Stacjonarny | Source = DCOM | ID = 10016 Description = Error - 2014-04-24 07:45:48 | Computer Name = Stacjonarny | Source = DCOM | ID = 10010 Description = Error - 2014-04-28 10:51:01 | Computer Name = Stacjonarny | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 16:20:41 na ?2014-?04-?28 było nieoczekiwane. Error - 2014-04-30 11:26:06 | Computer Name = Stacjonarny | Source = nvlddmkm | ID = 11141134 Description = Error - 2014-04-30 11:30:16 | Computer Name = Stacjonarny | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 17:10:35 na ?2014-?04-?30 było nieoczekiwane. Error - 2014-04-30 11:30:51 | Computer Name = Stacjonarny | Source = NetBT | ID = 4321 Description = Nie można zarejestrować nazwy „WORKGROUP :1d” w interfejsie o adresie IP 192.168.1.2. Komputer o adresie IP 192.168.1.4 nie zezwolił na przejęcie tej nazwy przez ten komputer. Error - 2014-05-01 11:34:20 | Computer Name = Stacjonarny | Source = nvlddmkm | ID = 11141134 Description = Error - 2014-05-01 11:45:04 | Computer Name = Stacjonarny | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 17:15:41 na ?2014-?05-?01 było nieoczekiwane. Error - 2014-05-04 02:59:32 | Computer Name = Stacjonarny | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 20:43:56 na ?2014-?05-?03 było nieoczekiwane. < End of report >