OTL Extras logfile created on: 2014-05-27 13:03:34 - Run 3 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Agnes\Pulpit\logi Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 0,72 Gb Available Physical Memory | 35,88% Memory free 3,85 Gb Paging File | 2,67 Gb Available in Paging File | 69,36% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 465,75 Gb Total Space | 142,52 Gb Free Space | 30,60% Space Free | Partition Type: NTFS Computer Name: AGNIESZKA1337 | User Name: Agnes | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* .html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software) [HKEY_USERS\S-1-5-21-1606980848-2139871995-725345543-1003\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* exefile [open] -- "%1" %* htmlfile [edit] -- Reg Error: Key error. http [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- "C:\Documents and Settings\Agnes\Dane aplikacji\File Scout\filescout.exe" /open "%1" () Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "AntiVirusDisableNotify" = 1 "FirewallDisableNotify" = 1 "UpdatesDisableNotify" = 1 "AntiVirusOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr] "Start" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService] "Start" = 2 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] "135:TCP" = 135:TCP:*:Enabled:DCOM(135) [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation) "%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation) "C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software) "C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe" = C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe:*:Enabled:KTF MUSIC AoD Server -- (PeeringPortal) "C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe" = C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe:*:Enabled:KTF MUSIC VoD Server -- (PeeringPortal) "C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" = C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook -- (Microsoft Corporation) "C:\Program Files\Microsoft Office\Office12\GROOVE.EXE" = C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove -- (Microsoft Corporation) "C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE" = C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote -- (Microsoft Corporation) "C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe" = C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe:*:Enabled:Daemonu.exe -- (NVIDIA Corporation) "%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation) "C:\Program Files\K2T\WTW\wtw.exe" = C:\Program Files\K2T\WTW\wtw.exe:*:Enabled:WTW Instant Messenger -- (WTW.im, Kaworu) "C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe" = C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe:*:Enabled:Opera Internet Browser - Plugin wrapper "C:\WINDOWS\system32\muzapp.exe" = C:\WINDOWS\system32\muzapp.exe:*:Enabled:MUZ AOD APP player -- (Musiccity Co.Ltd.) [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator PL 0.8.0 "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 "{1DF5019A-68B5-4ba1-8E59-E185C7B7FF11}" = Komunikator WTW 0.9.4.3310 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{20C45B32-5AB6-46A4-94EF-58950CAF05E5}" = EPSON Attach To Email "{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 45 "{2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}" = EPSON Scan Assistant "{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver "{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{3B69A712-4CBC-40B1-AE55-0203075FD093}" = Nokia Suite "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{57383270-6F61-4DC8-A9B8-C1745FC29F38}" = USB PC Camera (SN9C102) "{587178E7-B1DF-494E-9838-FA4DD36E873C}" = ASUSUpdate "{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2 "{7131646D-CD3C-40F4-97B9-CD9E4E6262EF}" = Microsoft .NET Framework 2.0 "{7390478C-8581-415E-92E9-2997D9306B81}" = PC Connectivity Solution "{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "{7E20EFE6-E604-48C6-8B39-BA4742F2CDB4}" = Zune Desktop Theme "{7E84FAC8-C518-40F9-9807-7455301D6D25}" = SamsungConnectivityCableDriver "{7F6D7FD9-648D-4DD9-BB6E-3990C675ECA4}" = NVIDIA PhysX "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{85BD6100-C9ED-11D4-90AB-00D0B79C28AF}" = Happy Hour "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8C453F13-6877-4D34-8816-009ABDE306DB}" = Prince of Persia: Piaski Czasu "{8F66047B-1AF3-40D9-80D7-106E2EDC2C2A}" = EPU-4 Engine "{90120000-0010-0415-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (Polish) 12 "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}" = Software Version Updater "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9E6AD6CF-1EFF-43E4-86C4-5C00254C3D8E}" = WolfQuest "{9FD6F1A8-5550-46AF-8509-271DF0E768B5}" = Dual-Core Optimizer "{A43BF6A5-D5F0-4AAA-BF41-65995063EC44}" = MSXML 6.0 Parser "{A57025CC-5F2E-4D01-B387-06DB10500D43}" = Nokia Connectivity Cable Driver "{ABFD7740-A95F-11D5-B8B5-0050FC1A64AD}" = Max Payne "{AC1E4C93-C1E7-11D6-9D10-00010240CE95}" = Java 2 Runtime Environment, SE v1.4.0_03 "{AC76BA86-7AD7-1045-7B44-AB0000000001}" = Adobe Reader XI (11.0.07) - Polish "{ACC9AC0E-8B6E-4393-AF52-E43CF31BA7AC}" = Trickshot "{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86 "{AF7E85DC-317C-47F5-810E-B82EE093A612}" = Samsung New PC Studio USB Driver Installer "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 285.58 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 285.58 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView" = NVIDIA nView 135.95 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.11.0621 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.5.20 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.2.24.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{C151CE54-E7EA-4804-854B-F515368B0798}" = AMD Processor Driver "{C9A87D86-FDFD-418B-BF96-EF09320973B3}" = PC Inspector smart recovery "{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones "{D41FAAA9-8048-4906-86B2-9AADEA1FA0B7}" = SpeedTouch USB Software "{E3B64CC5-C011-40C0-92BC-7316CD5E5688}" = Microsoft_VC100_CRT_SP1_x86 "{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 "{E86BC406-944E-41F6-ADE6-2C136734C96B}" = EPSON File Manager "{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "{FFCCD9EE-60D4-45BC-B5E6-1F122735B85B}" = Lara Croft Tomb Raider: The Angel of Darkness "17D063A0A9F5D5A225B76B1D9BCB5ADBE85C8382" = Pakiet sterowników systemu Windows - Nokia pccsmcfd “LegacyDriver” (05/31/2012 7.1.2.0) "3D Crackanoid" = 3D Crackanoid "7-Zip" = 7-Zip 4.65 "Adobe Flash Player ActiveX" = Adobe Flash Player ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 13 Plugin "Agnitum Outpost Firewall_is1" = Outpost Firewall 2009 "Audacity_is1" = Audacity 1.2.6 "AutoConnect" = AutoConnect v0.1.2.5 "A-WIN-Extras 8.0.1 2077975_is1" = Mathematica Extras 8.0 (2077975) "Black Mirror 2/PL-Polish_is1" = Black Mirror 2 "Black Mirror III/PL-Polish_is1" = Black Mirror III "Black Mirror_is1" = Black Mirror 1.1pl "BootLog XP_is1" = BootLog XP "Broken Sword" = Broken Sword "CCleaner" = CCleaner "Cradle of Rome" = Cradle of Rome (remove only) "DAEMON Tools Lite" = DAEMON Tools Lite "DExposE2 2.0.0.1" = DExposE2 2.0.0.1 "Dr. Lunatic Supreme With Cheese_is1" = Dr. Lunatic Supreme With Cheese v7.31 "ENTERPRISE" = Microsoft Office Enterprise 2007 "EPSON Printer and Utilities" = EPSON-printersoftware "EPSON Scanner" = EPSON Scan "ESDX4000_4050_CX3900" = ESDX4000_4050_CX3900 "EVEREST Home Edition_is1" = EVEREST Home Edition v2.20 "foobar2000" = foobar2000 v1.1.8 "Free Video Flip and Rotate_is1" = Free Video Flip and Rotate version 1.4 "Freecorder Toolbar" = Freecorder Toolbar "Freecorder4.1" = Freecorder "Gadu-Gadu" = Gadu-Gadu 7.7 "Gadu-Gadu 10" = Gadu-Gadu 10 "Gruntz" = Gruntz "ie8" = Windows Internet Explorer 8 "Infix" = Infix "InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5}" = EPSON Attach To Email "InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Platforma Menedżera urządzeń "InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "InstallShield_{8C453F13-6877-4D34-8816-009ABDE306DB}" = Prince of Persia: Piaski Czasu "InstallShield_{AF7E85DC-317C-47F5-810E-B82EE093A612}" = Samsung New PC Studio USB Driver Installer "InstallShield_{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio "Intelli-studio" = SAMSUNG Intelli-studio "IrfanView" = IrfanView (remove only) "iriver plus 3" = iriver plus 3 (remove only) "Jazz Jackrabbit 2 Holiday Hare 98" = Jazz Jackrabbit 2 Holiday Hare 98 "Microsoft .NET Framework 2.0" = Microsoft .NET Framework 2.0 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Mozilla Firefox 29.0.1 (x86 pl)" = Mozilla Firefox 29.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "M-WIN-D 8.0.1 2078140_is1" = Wolfram CDF Player (M-WIN-D 8.0.1 2078140) "Najdłuższa Podróż" = Najdłuższa Podróż "NeostradaTP.exe" = Neostrada TP "Nokia Suite" = Nokia Suite "NVIDIA Display Control Panel" = NVIDIA Display Control Panel "NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager "On Land and Sea" = On Land and Sea "OpenAL" = OpenAL "Opera 12.17.1863" = Opera 12.17 "OutCook Express_is1" = OutCook Express 1.1 "PhotoScape" = PhotoScape "Puran Defrag Free Edition_is1" = Puran Defrag Free Edition 7.3 "Q-Typing 1.3_is1" = Q-Typing 1.3 "Redirection Port Monitor" = RedMon - Redirection Port Monitor "Reprobates: U bram śmierci_is1" = Reprobates: U bram śmierci 1.2.18 "rosyjski_pig_2_is1" = Rosyjski w pigułce 2.0 "RVL3 Engine" = RVL3 Engine "Sacked" = Sacked - Your last day (Deinstallation) "SimCity 4 [PL]" = SimCity 4 [PL] "SMPlayer" = SMPlayer 0.8.3 "SpeedFan" = SpeedFan (remove only) "Syberia_is1" = Syberia "System TL+ - angielsko-polski, wyd.4" = System TL+ - angielsko-polski, wyd.4 "SZAFIR Weryfikująca_is1" = SZAFIR Weryfikująca 1.0 (build 072) "Tomb Raider II GOLD_is1" = Tomb Raider II GOLD "Tomb Raider Level Editor" = Tomb Raider Level Editor "Tomb Raider: Anniversary" = Tomb Raider: Anniversary 1.0 "Total Video Converter 3.71_is1" = Total Video Converter 3.71 100812 "Tweak UI 2.10" = Tweak UI "UltraISO_is1" = UltraISO Premium V9.36 "Uninstall_is1" = Uninstall 1.0.0.1 "VideoGet" = Nuclear Coffee - VideoGet 1.1 Trial "Wdf01009" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.9 "Wielki słownik rosyjski PWN" = Wielki słownik rosyjski PWN "Windows Media Format Runtime" = Windows Media Format 11 runtime "Windows XP Service Pack" = Windows XP Service Pack 3 "WinPcapInst" = WinPcap 4.1.1 "WMFDist11" = Windows Media Format 11 runtime "Wudf01009" = Microsoft User-Mode Driver Framework Feature Pack 1.9 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1606980848-2139871995-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "MyFreeCodec" = MyFreeCodec [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-05-24 10:43:01 | Computer Name = AGNIESZKA1337 | Source = ESENT | ID = 604 Description = svchost (940) Ustawienia regionalne o identyfikatorze 0x00000409 (Angielski (Stany Zjednoczone) English) są nieprawidłowe lub nie zostały zainstalowane na tym komputerze. Error - 2014-05-24 10:43:01 | Computer Name = AGNIESZKA1337 | Source = ESENT | ID = 604 Description = svchost (940) Ustawienia regionalne o identyfikatorze 0x00000409 (Angielski (Stany Zjednoczone) English) są nieprawidłowe lub nie zostały zainstalowane na tym komputerze. Error - 2014-05-24 10:43:01 | Computer Name = AGNIESZKA1337 | Source = ESENT | ID = 604 Description = svchost (940) Ustawienia regionalne o identyfikatorze 0x00000409 (Angielski (Stany Zjednoczone) English) są nieprawidłowe lub nie zostały zainstalowane na tym komputerze. Error - 2014-05-24 10:43:01 | Computer Name = AGNIESZKA1337 | Source = ESENT | ID = 604 Description = svchost (940) Ustawienia regionalne o identyfikatorze 0x00000409 (Angielski (Stany Zjednoczone) English) są nieprawidłowe lub nie zostały zainstalowane na tym komputerze. Error - 2014-05-24 10:43:01 | Computer Name = AGNIESZKA1337 | Source = ESENT | ID = 604 Description = svchost (940) Ustawienia regionalne o identyfikatorze 0x00000409 (Angielski (Stany Zjednoczone) English) są nieprawidłowe lub nie zostały zainstalowane na tym komputerze. Error - 2014-05-24 10:43:01 | Computer Name = AGNIESZKA1337 | Source = ESENT | ID = 604 Description = svchost (940) Ustawienia regionalne o identyfikatorze 0x00000409 (Angielski (Stany Zjednoczone) English) są nieprawidłowe lub nie zostały zainstalowane na tym komputerze. [ OSession Events ] Error - 2011-09-15 04:44:34 | Computer Name = AGNIESZKA1337 | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 1209 seconds with 1200 seconds of active time. This session ended with a crash. Error - 2011-10-14 03:29:46 | Computer Name = AGNIESZKA1337 | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 2158 seconds with 1500 seconds of active time. This session ended with a crash. [ System Events ] Error - 2014-05-09 02:50:56 | Computer Name = AGNIESZKA1337 | Source = Service Control Manager | ID = 7023 Description = Usługa Karta wydajności WMI zakończyła działanie; wystąpił następujący błąd: %%2147500037 Error - 2014-05-15 23:23:14 | Computer Name = AGNIESZKA1337 | Source = Service Control Manager | ID = 7005 Description = Wywołanie LoadUserProfile nie powiodło się i wystąpił następujący błąd: %%1727. Error - 2014-05-19 03:52:06 | Computer Name = AGNIESZKA1337 | Source = Service Control Manager | ID = 7005 Description = Wywołanie LoadUserProfile nie powiodło się i wystąpił następujący błąd: %%1727. Error - 2014-05-22 02:59:39 | Computer Name = AGNIESZKA1337 | Source = Service Control Manager | ID = 7005 Description = Wywołanie LoadUserProfile nie powiodło się i wystąpił następujący błąd: %%1727. Error - 2014-05-24 10:42:51 | Computer Name = AGNIESZKA1337 | Source = Service Control Manager | ID = 7005 Description = Wywołanie LoadUserProfile nie powiodło się i wystąpił następujący błąd: %%1727. Error - 2014-05-24 10:43:01 | Computer Name = AGNIESZKA1337 | Source = RemoteAccess | ID = 20069 Description = Nie można otworzyć lub uzyskać informacji o kluczu PPP lub o jednym z jego kluczy podrzędnych. Nośnik jest chroniony przed zapisem. Error - 2014-05-24 10:43:01 | Computer Name = AGNIESZKA1337 | Source = Rasman | ID = 20063 Description = Nie można uruchomić Menedżera połączeń usługi Dostęp zdalny, ponieważ nie można zainicjować protokołu Point to Point Protocol. Nośnik jest chroniony przed zapisem. Error - 2014-05-24 10:43:01 | Computer Name = AGNIESZKA1337 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Karta wydajności WMI z powodu następującego błędu: %%3 Error - 2014-05-24 10:43:01 | Computer Name = AGNIESZKA1337 | Source = Service Control Manager | ID = 7023 Description = Usługa Menedżer połączeń usługi Dostęp zdalny zakończyła działanie; wystąpił następujący błąd: %%19 < End of report >