OTL Extras logfile created on: 5/13/2014 5:27:08 PM - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\biuro3\Downloads Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000409 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1.87 Gb Total Physical Memory | 0.30 Gb Available Physical Memory | 16.04% Memory free 4.46 Gb Paging File | 1.42 Gb Available in Paging File | 31.90% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 294.00 Gb Total Space | 136.70 Gb Free Space | 46.50% Space Free | Partition Type: NTFS Drive D: | 169.75 Gb Total Space | 137.44 Gb Free Space | 80.96% Space Free | Partition Type: NTFS Computer Name: BIURO3-KOMPUTER | User Name: biuro3 | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = Opera.HTML] -- Reg Error: Key error. File not found [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Opera\Opera.exe" "%1" https [open] -- "C:\Program Files\Opera\Opera.exe" "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Browse with &IrfanView] -- "C:\Program Files\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan) Directory [ChomikBox.Upload] -- "C:\Program Files\ChomikBox\\ChomikBox.exe" -u"%1" ( ) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Windows\system32\msiexec.exe" = C:\Windows\system32\msiexec.exe:*:Generic Host Process -- (Microsoft Corporation) "C:\Windows\system32\svchost.exe" = C:\Windows\system32\svchost.exe:*:Generic Host Process -- (Microsoft Corporation) [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0EE5BCC3-E525-4CEA-999D-0F278DB3A1BD}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{190AD6DE-50C0-4532-947E-013B19C53DC6}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{28E14FB6-91C5-4217-852A-3423CB08FD6E}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{34F6A1D6-9AAF-4FAA-801A-EF87C522DD32}" = lport=139 | protocol=6 | dir=in | app=system | "{44BB8E2D-3C25-4FDF-BBC5-CFF1DDF3365E}" = lport=445 | protocol=6 | dir=in | app=system | "{45AEC13F-3C66-4619-B76A-AF594AFBAB86}" = rport=137 | protocol=17 | dir=out | app=system | "{4EDF05E1-E1B1-4D2A-9FC5-79DC6AED02EF}" = rport=445 | protocol=6 | dir=out | app=system | "{60E915AD-C8AC-4D2D-9B2D-66F14E2E8599}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{63A29DD1-0442-4B33-96A7-458F7C5A0914}" = lport=137 | protocol=17 | dir=in | app=system | "{6D35FF00-40CE-4644-8D10-966653D45E92}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office12\outlook.exe | "{6D8753B1-B3CF-4EBE-B697-8FAF2437420E}" = rport=138 | protocol=17 | dir=out | app=system | "{83055307-03D2-400D-8455-A5E7C34A2F2C}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{926FB258-EF6B-4E9C-80AB-E9B447FCB72C}" = lport=138 | protocol=17 | dir=in | app=system | "{9B32E73A-2E47-4911-8DA6-D92B87033845}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{B228E246-870A-4FD1-A658-974AC2863AE6}" = rport=139 | protocol=6 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{083FCC52-700B-4B4E-BEC7-7E5C49BD46A5}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "{1DF0DABE-9F32-4681-8326-5CB5746091A9}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{2E846B1F-C46C-40B2-8F4C-8C93F32E43E8}" = protocol=17 | dir=in | app=c:\program files\tightvnc\tvnserver.exe | "{41302FCC-78D1-4BF6-952D-650DE3323B51}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "{7E9BFD90-0BE6-480F-8E9F-01B76629FED3}" = protocol=6 | dir=in | app=c:\users\biuro3\appdata\roaming\dropbox\bin\dropbox.exe | "{94C68D7C-6CB6-4789-914E-00941B4ED5C9}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{9AFDF662-1D39-4101-A242-F93AA8C431F9}" = protocol=6 | dir=in | app=c:\program files\tightvnc\tvnserver.exe | "{AB566A36-74AA-4721-A3E4-4ADF50ACA3F1}" = protocol=17 | dir=in | app=c:\users\biuro3\appdata\roaming\dropbox\bin\dropbox.exe | "{B0F17A5E-9E83-4925-9777-81046D2EFC30}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{B776D67D-8CA6-4C3E-A0D3-4B96FB1E8BAA}" = protocol=17 | dir=in | app=c:\program files\omnitec\gesthotel\gesthotel_tcpip.exe | "{DCD91E3E-42DF-496B-A4C1-73DBC19A5AA5}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{E8CAA90B-1DEB-4697-81EE-6DC6B21E5CDC}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{F727D7ED-BD02-4725-AA00-A3592D1E5236}" = dir=in | app=c:\program files\tightvnc\tvnserver.exe | "{F7EA29B0-1FFB-4782-B12C-DDF003AA6163}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "TCP Query User{4AC39B91-3324-474E-92B6-3F5C18128BA3}C:\program files\omnitec\gesthotel\gesthotel_tcpip.exe" = protocol=6 | dir=in | app=c:\program files\omnitec\gesthotel\gesthotel_tcpip.exe | "TCP Query User{70CE0B09-0478-4D39-AA66-B9044BF995B6}C:\users\public\program files\labf.com\winaxe\telnet.exe" = protocol=6 | dir=in | app=c:\users\public\program files\labf.com\winaxe\telnet.exe | "TCP Query User{8694FCFC-E1B3-4864-8086-44B89D785440}C:\program files\omnitec\gesthotel\gesthotel_tcpip.exe" = protocol=6 | dir=in | app=c:\program files\omnitec\gesthotel\gesthotel_tcpip.exe | "TCP Query User{C111B15D-33B3-45A1-9926-A113710E7913}C:\program files\xerox\networkscan\nscsysui_xerox.exe" = protocol=6 | dir=in | app=c:\program files\xerox\networkscan\nscsysui_xerox.exe | "TCP Query User{C3252805-29F5-4B80-AFAD-F52FA74BAB80}C:\Users\Public\Program Files\LabF.com\WinaXe\xserver.exe" = protocol=6 | dir=in | app=c:\users\public\program files\labf.com\winaxe\xserver.exe | "TCP Query User{C9B17CFE-0816-4A1A-96C4-1202BF8034BF}C:\users\public\program files\labf.com\winaxe\xserver.exe" = protocol=6 | dir=in | app=c:\users\public\program files\labf.com\winaxe\xserver.exe | "TCP Query User{DF6D34AA-B442-407E-9E6F-4CE70D647632}C:\users\public\program files\labf.com\winaxe\telnet.exe" = protocol=6 | dir=in | app=c:\users\public\program files\labf.com\winaxe\telnet.exe | "UDP Query User{299293C3-AF5A-45E9-9FC9-1B391C8D66C2}C:\Users\Public\Program Files\LabF.com\WinaXe\xserver.exe" = protocol=17 | dir=in | app=c:\users\public\program files\labf.com\winaxe\xserver.exe | "UDP Query User{3070C67F-970C-4FFC-A7EA-2782851A3E6B}C:\program files\omnitec\gesthotel\gesthotel_tcpip.exe" = protocol=17 | dir=in | app=c:\program files\omnitec\gesthotel\gesthotel_tcpip.exe | "UDP Query User{48FD9341-3CBB-4EC4-BDC0-15E868B68C15}C:\users\public\program files\labf.com\winaxe\xserver.exe" = protocol=17 | dir=in | app=c:\users\public\program files\labf.com\winaxe\xserver.exe | "UDP Query User{54D3A4F6-7CC1-427B-974B-399D36059B26}C:\program files\omnitec\gesthotel\gesthotel_tcpip.exe" = protocol=17 | dir=in | app=c:\program files\omnitec\gesthotel\gesthotel_tcpip.exe | "UDP Query User{5ECE5668-2D9A-4BD4-9562-6F061B638FB6}C:\users\public\program files\labf.com\winaxe\telnet.exe" = protocol=17 | dir=in | app=c:\users\public\program files\labf.com\winaxe\telnet.exe | "UDP Query User{7B83036C-AC04-4AD6-8628-0B8BD873561B}C:\program files\xerox\networkscan\nscsysui_xerox.exe" = protocol=17 | dir=in | app=c:\program files\xerox\networkscan\nscsysui_xerox.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{13F00518-807A-4B3A-83B0-A7CD90F3A398}" = MarketResearch "{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser "{1B10BB48-3697-4C87-B0BC-23FAC6130199}" = hppFaxDrvM1522 "{1DD46A1B-06E7-4147-9E5B-0EACB056BD65}" = SetIP "{1F15B51B-0622-486A-A751-6D4EDD56842A}" = hppusgM1522 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{229D6185-BD7E-494B-A73B-C5215BE0690E}" = HPLJUT "{26050F54-3928-4D9C-849A-C48A9E831E6F}" = ChomikBox "{26A24AE4-039D-4CA4-87B4-2F83217045FF}" = Java 7 Update 45 "{29FA38B4-0AE4-4D0D-8A51-6165BB990BB0}" = WebReg "{33EFDAD7-1686-465A-AE0A-26F22E380315}" = Product_Min_QFolder "{3DD85535-A50D-4A48-BF60-2BB36FDF3773}" = hppScanTo "{4006E354-3D24-49BA-A36F-7EB75D50D575}" = hppLaserJetService "{48746779-3E47-4CBF-900F-F4CF5E609E7F}" = WinaXe "{487B0B9B-DCD4-440D-89A0-A6EDE1A545A3}" = HPSSupply "{4903D172-DCCB-392F-93A3-34CA9D47FE3D}" = Microsoft .NET Framework 4.5.1 "{5BA1655E-6CF5-47C7-95F0-311D4F676021}" = "{5F189DF5-2D05-472B-9091-84D9848AE48B}{fe885e3d}" = GS-Supporter 1.80 "{6553F4A8-B67F-49BA-A882-FF499C83CF4B}" = 32 Bit HP CIO Components Installer "{6DD734FE-F0D6-4B15-BD77-A4EADBA04DEA}" = hppLJM1522 "{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15}" = CustomerResearchQFolder "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{74280B5D-A0AF-46c5-9C85-D9EA078262F1}" = HP LaserJet Professional M1530 MFP Series "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{865E1902-B6FE-4AF0-B61D-A82EBC53569E}" = hppSendFaxM1530 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_PROHYBRIDR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_PROHYBRIDR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_PROHYBRIDR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_PROHYBRIDR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_PROHYBRIDR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_PROHYBRIDR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_PROHYBRIDR_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_PROHYBRIDR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_PROHYBRIDR_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_PROHYBRIDR_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00B2-0409-0000-0000000FF1CE}" = Microsoft Save as PDF or XPS Add-in for 2007 Microsoft Office programs "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{91120000-0031-0000-0000-0000000FF1CE}" = Microsoft Office Professional Hybrid 2007 "{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{9112FEA9-0F64-453C-BEA5-9A782F87EDAA}" = hppTLBXFXM1530 "{91B33C97-0FBA-74AE-E802-D782F5C8AA89}_is1" = Ashampoo Burning Studio 2013 v.11.0.6 "{91B33C97-280F-B76D-E27B-E712D7041B76}_is1" = Ashampoo Burning Studio 2014 v.12.0.5 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Microsoft .NET Framework 4.5.1 (Polski) "{93F54611-2701-454e-94AB-623F458D9E6B}" = DeviceDiscovery "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9C5725B7-2219-410C-A364-90767F71F00C}" = Skanowanie sieciowe "{9E3E3D64-5A2A-4CEF-A500-EB71188DBA90}" = OpenOffice.org 3.4.1 "{A1D53426-D6F3-4886-A72B-E1A8C82259E9}" = hppM1530LaserJetService "{A3A18593-62BE-4AE1-AF3F-E35179CF042E}" = hpzTLBXFX "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder "{AC76BA86-7AD7-1045-7B44-AA1000000001}" = Adobe Reader X (10.1.9) - Polish "{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9 "{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}" = HP Update "{B2AA0F22-E167-4C4A-BAE2-E0025028E61B}" = HPLaserJetHelp_LearnCenter "{B6A9D5A0-0827-49C2-A903-513045AE15D3}" = hppSendFaxM1522 "{BD305E2B-47EB-4D8A-9B90-1F536D1C3154}" = GestHotel 5.2 "{C05002F1-06F8-4A15-B6F8-E4DC655C28AA}" = HP LJ M1530 MFP Series HP Scan "{C462F75B-9A35-4A84-AE52-E8C9112AAE87}" = hppFaxUtilityM1530 "{C83B8B35-C2C4-3302-9A6E-C2AF1A59E8D6}" = Microsoft .NET Framework 4.5.1 (PLK) "{C8A37F1F-E13B-48ae-93F8-4669264969F9}" = HP LaserJet M1522 MFP Series 4.2 "{CA6BCA2F-EDEB-408F-850B-31404BE16A61}" = I.R.I.S. OCR "{D1D14E56-E344-493F-AA72-CBA4C9F4CF1C}" = hppFaxUtility "{D8AC1EB5-E8B0-44A0-B113-899407188A2F}" = hppFonts "{D903B276-81AE-4AED-AEF9-45DACFBF16CE}" = TightVNC "{E352D262-66C1-4669-9522-8B57AA5AE201}" = hppManualsM1522 "{E5BD7E16-7073-43D5-9184-0E0CD0374BF7}" = hppTLBXFXM1522 "{EF59DB7F-7426-426E-B862-7031F83ED304}" = SystemDiagnostics "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FD575F8B-6141-455A-8AE5-F2D2E08520FC}" = hppFaxDrvM1530 "7-Zip" = 7-Zip 9.20 "Adobe Flash Player ActiveX" = Adobe Flash Player 13 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 13 Plugin "avast" = avast! Free Antivirus "CCleaner" = CCleaner "CDex" = CDex - Open Source Digital Audio CD Extractor "CobBackup10" = Cobian Backup 10 "ENTERPRISE" = Microsoft Office Enterprise 2007 "Foxit Reader_is1" = Foxit Reader "GIMP-2_is1" = GIMP 2.8.6 "Google Chrome" = Google Chrome "HPExtendedCapabilities" = HP Customer Participation Program 9.0 "IrfanView" = IrfanView (remove only) "KeyFinder_is1" = Magical Jelly Bean KeyFinder "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.75.0.1300 "Mozilla Firefox 29.0.1 (x86 pl)" = Mozilla Firefox 29.0.1 (x86 pl) "Mozilla Thunderbird 24.5.0 (x86 pl)" = Mozilla Thunderbird 24.5.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "ODIR_is1" = ODIR "PROHYBRIDR" = 2007 Microsoft Office system "SDK Version 9.24" = SDK Version 9.24 "SnadBoy's Revelation v2" = SnadBoy's Revelation v2 "Xerox Phaser 3300MFP" = Xerox Phaser 3300MFP [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Dropbox" = Dropbox [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 11/10/2013 6:28:19 PM | Computer Name = biuro3-Komputer | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Error - 11/11/2013 9:05:27 AM | Computer Name = biuro3-Komputer | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 11/11/2013 9:05:27 AM | Computer Name = biuro3-Komputer | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 11/11/2013 9:05:27 AM | Computer Name = biuro3-Komputer | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Error - 11/11/2013 1:30:18 PM | Computer Name = biuro3-Komputer | Source = VSS | ID = 8194 Description = Error - 11/11/2013 1:31:36 PM | Computer Name = biuro3-Komputer | Source = VSS | ID = 8194 Description = Error - 11/12/2013 4:25:32 AM | Computer Name = biuro3-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: rundll32.exe_xrWCbgnd.dll, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bc637 Nazwa modułu powodującego błąd: xrWCbgnd.dll, wersja: 4.33.7.3, sygnatura czasowa: 0x4a5bda68 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00008af4 Identyfikator procesu powodującego błąd: 0x940 Godzina uruchomienia aplikacji powodującej błąd: 0x01cedf808d559c32 Ścieżka aplikacji powodującej błąd: C:\Windows\System32\rundll32.exe Ścieżka modułu powodującego błąd: C:\Windows\System32\xrWCbgnd.dll Identyfikator raportu: fe9f9da3-4b73-11e3-873e-0019998b69d5 Error - 11/12/2013 4:31:20 AM | Computer Name = biuro3-Komputer | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 11/12/2013 4:31:21 AM | Computer Name = biuro3-Komputer | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 11/12/2013 4:31:21 AM | Computer Name = biuro3-Komputer | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. [ Cobian Backup Boletus VSC Service Events ] Error - 12/30/2013 1:44:31 PM | Computer Name = biuro3-Komputer | Source = Cobian Backup Boletus VSC Service | ID = 0 Description = Protocol inconsistency. Purging the current snapshot set Error - 12/30/2013 1:46:00 PM | Computer Name = biuro3-Komputer | Source = Cobian Backup Boletus VSC Service | ID = 0 Description = Upłynął limit czasu operacji. Error - 1/17/2014 5:36:34 AM | Computer Name = biuro3-Komputer | Source = Cobian Backup Boletus VSC Service | ID = 0 Description = Upłynął limit czasu operacji. [ OSession Events ] Error - 4/21/2014 12:52:00 AM | Computer Name = biuro3-Komputer | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 79906 seconds with 2940 seconds of active time. This session ended with a crash. Error - 4/21/2014 12:54:49 AM | Computer Name = biuro3-Komputer | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 105 seconds with 60 seconds of active time. This session ended with a crash. Error - 4/24/2014 5:41:24 PM | Computer Name = biuro3-Komputer | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 24224 seconds with 2400 seconds of active time. This session ended with a crash. Error - 4/26/2014 9:43:10 PM | Computer Name = biuro3-Komputer | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 65978 seconds with 4200 seconds of active time. This session ended with a crash. Error - 4/29/2014 9:22:15 AM | Computer Name = biuro3-Komputer | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6691.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 75387 seconds with 10500 seconds of active time. This session ended with a crash. Error - 4/29/2014 6:12:59 PM | Computer Name = biuro3-Komputer | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 29862 seconds with 3300 seconds of active time. This session ended with a crash. Error - 5/5/2014 5:24:34 PM | Computer Name = biuro3-Komputer | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 143638 seconds with 11520 seconds of active time. This session ended with a crash. Error - 5/9/2014 10:03:25 AM | Computer Name = biuro3-Komputer | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 49517 seconds with 960 seconds of active time. This session ended with a crash. Error - 5/9/2014 6:08:48 PM | Computer Name = biuro3-Komputer | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 18493 seconds with 2400 seconds of active time. This session ended with a crash. Error - 5/12/2014 10:38:56 AM | Computer Name = biuro3-Komputer | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 232198 seconds with 20520 seconds of active time. This session ended with a crash. [ System Events ] Error - 4/22/2014 2:07:28 AM | Computer Name = biuro3-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi CLCV0 z powodu następującego błędu: %%193 Error - 4/23/2014 8:16:11 PM | Computer Name = biuro3-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi CLCV0 z powodu następującego błędu: %%193 Error - 4/29/2014 9:44:58 AM | Computer Name = biuro3-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi CLCV0 z powodu następującego błędu: %%193 Error - 5/5/2014 6:17:32 PM | Computer Name = biuro3-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi CLCV0 z powodu następującego błędu: %%193 Error - 5/7/2014 8:31:31 PM | Computer Name = biuro3-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi CLCV0 z powodu następującego błędu: %%193 Error - 5/8/2014 6:21:53 PM | Computer Name = biuro3-Komputer | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Computer Backup (MyPC Backup). Error - 5/8/2014 6:21:53 PM | Computer Name = biuro3-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Computer Backup (MyPC Backup) z powodu następującego błędu: %%1053 Error - 5/8/2014 6:21:55 PM | Computer Name = biuro3-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi CLCV0 z powodu następującego błędu: %%193 Error - 5/9/2014 3:58:02 AM | Computer Name = biuro3-Komputer | Source = Service Control Manager | ID = 7031 Description = Usługa Util webget niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 5000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 5/9/2014 3:58:10 AM | Computer Name = biuro3-Komputer | Source = Service Control Manager | ID = 7031 Description = Usługa Update webget niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 5000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. < End of report >