OTL Extras logfile created on: 2014-09-02 22:59:01 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Robert\Desktop\oczyszczanie 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17239) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 7,84 Gb Total Physical Memory | 5,44 Gb Available Physical Memory | 69,42% Memory free 15,68 Gb Paging File | 13,32 Gb Available in Paging File | 84,97% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 100,08 Gb Total Space | 24,44 Gb Free Space | 24,42% Space Free | Partition Type: NTFS Drive D: | 365,68 Gb Total Space | 97,76 Gb Free Space | 26,73% Space Free | Partition Type: NTFS Computer Name: ROBERT-KOMPUTER | User Name: Robert | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 60 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) [HKEY_USERS\S-1-5-21-1288890564-1172388754-1821981085-1001\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- "C:\Program Files (x86)\Smart File Advisor\sfa.exe" /unknown "%1" (Filefacts.net) Directory [ChomikBox.Upload] -- "C:\Program Files (x86)\ChomikBox\\ChomikBox.exe" -u"%1" ( ) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L" Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- "C:\Program Files (x86)\Smart File Advisor\sfa.exe" /unknown "%1" (Filefacts.net) Directory [ChomikBox.Upload] -- "C:\Program Files (x86)\ChomikBox\\ChomikBox.exe" -u"%1" ( ) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L" Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{00801098-9B14-47AC-ADF6-EE22198C97DE}" = lport=138 | protocol=17 | dir=in | app=system | "{0A582C4E-5B36-4940-A4BD-DECC5F476ADD}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{0B2BD6AA-296A-4534-AB05-002C1019532A}" = lport=10243 | protocol=6 | dir=in | app=system | "{117313F0-1148-4E41-BC1D-38FE47D9E4E1}" = lport=137 | protocol=17 | dir=in | app=system | "{1516DEDD-7462-49E6-8FC7-7D9601EDA455}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{16C38A31-889D-4F2B-80AE-CC2447F524DF}" = rport=137 | protocol=17 | dir=out | app=system | "{19A2F14B-C356-4B8E-896F-12E6DDCD4699}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{1D8A41EE-42C8-43F4-8BD3-C0C4A069C606}" = lport=2869 | protocol=6 | dir=in | app=system | "{353C422A-E099-4B83-A8FA-2697BE354DFF}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{5B567EBD-3790-43A3-B511-C0BB81FF8D8B}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{60D68724-41B4-4558-8571-C1B7BFDE25E8}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{899FE382-FD58-4AB3-A9C3-14F9A2473235}" = lport=139 | protocol=6 | dir=in | app=system | "{915EC939-AA4F-46C9-90F0-F26F8F5500A5}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{98676A65-D743-4B74-92E8-96CD58644991}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{99E7ACAC-E111-4B01-B309-59CDC4B7EE80}" = rport=445 | protocol=6 | dir=out | app=system | "{9D9EE380-7100-469B-BD4F-5C04F351A85A}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe | "{AC801AD4-7777-4B4B-8650-801839855E0A}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{B1BEB7BB-28F9-4CB6-BC8B-2603968CF3C6}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{B5D22A7B-97BB-4BCD-AB1A-ACBC3934A84D}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{B71975EF-BC53-4CB6-AB89-01657573E4ED}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{B81CF0C0-8527-407E-A606-7433822559EC}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{C0A5024C-B611-4B2D-A4CF-EEC1522FB637}" = lport=445 | protocol=6 | dir=in | app=system | "{C1299826-49EE-474E-A525-AE2081906FA2}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{D2AC9087-A655-4161-9AD9-7D42BD346DFC}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{D45AF221-04D8-489F-9B2F-E8CF5A2683A9}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{D475EB5C-CB2B-451D-8BD6-F44164ECE748}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{D484ABFC-660E-4242-A384-7C6FE599C8AB}" = rport=139 | protocol=6 | dir=out | app=system | "{D8D93782-A674-4524-9014-DF37674DF9AE}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{E7158EF0-D983-4E61-AC32-9305076EF68D}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{E7D0476A-24D0-4AB9-AB84-AF359E5ECD6D}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{EE09D618-CADB-4A71-A817-FB60F38DBB98}" = rport=10243 | protocol=6 | dir=out | app=system | "{F0D11719-1EAD-4A8D-BD81-40A5A48B2217}" = lport=5432 | protocol=6 | dir=in | name=postgres | "{F3884FC3-B822-415B-915C-8DE537BB4458}" = rport=138 | protocol=17 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{01C4F44C-AC9E-486C-A9BE-4E6919415BA1}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{032E5885-1CDD-4F9F-A614-A34B66A854D2}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{0D88BD2B-B895-4BCA-A780-FEB76E11F9A8}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{0E1163A7-DCB9-4F39-B04B-64085600DF6D}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\mafia ii\pc\mafia2.exe | "{15550825-7373-4534-9C19-8C0F47741AF8}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{19E11CC8-ABD7-4D72-BFEA-D4BD7B66EF82}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{1F8BD574-939D-4541-9D99-5521BF7F485E}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{2B99F189-03BE-473A-894D-439F265899E4}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{3164CF87-57F6-4C4D-A56E-02165003247F}" = protocol=6 | dir=out | app=system | "{322889A0-1662-4857-B737-897533CA2222}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{3981F547-15A9-4E7A-8608-691342524772}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{4B7B388F-BD4B-4B8F-9445-16E465403E32}" = protocol=17 | dir=in | app=c:\users\robert\appdata\roaming\utorrent\utorrent.exe | "{4C744C15-EA03-405C-A7DE-68C8EE9E154F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{4F15E3AF-73D4-4B9D-8B90-4873DF5E21AC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{50DDB46D-07B7-44A0-ADCC-50EB7009336F}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe | "{535816AC-9525-4289-8208-BFD61D10C260}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{55713290-13C9-4C02-87BC-4AAAA9FA59FB}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{5DE0BD32-631C-4D8B-8A93-6DC01E08B42B}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{5E106204-1977-4DE6-85E3-5A8190FD98DD}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\sniper elite v2\bin\sniperelitev2.exe | "{5F70A7D9-857F-4AE4-8113-A50131DDAA17}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{61A06BFE-EFAD-445D-839C-7E8D9D916046}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{657BCEF7-F3E2-4E7D-BC2B-0C6A9F5A1808}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\plants vs. zombies\plantsvszombies.exe | "{68353AE4-74B1-46BA-9161-9D9B712BFF1C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{6A4314C8-6D61-4299-BD9D-4CAD79ECEFE2}" = protocol=17 | dir=in | app=c:\program files (x86)\napiprojekt\napisy.exe | "{6D58C703-EA82-4A9C-AD8F-267A98027641}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{7C30637C-80C9-4E15-B3AC-20575771503B}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{7D51CE8A-8AB7-4FF8-9990-F8D14BD0CC54}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{7ECF9131-9F86-4DAC-8D94-7DC463F5D154}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 | "{80BA1129-8E05-45C8-961C-59221520C037}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\mafia ii\pc\mafia2.exe | "{8BD8F3B8-C5F4-4966-8BFE-4F9AFA45AB5A}" = protocol=6 | dir=in | app=c:\users\robert\appdata\roaming\utorrent\utorrent.exe | "{8F929162-E197-4DF8-87B9-78D50526F132}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\half-life\hl.exe | "{9446F300-AC36-4632-B6CC-C346A2FFBC4B}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{979EF65A-884A-4311-947E-A1AAFBD1014A}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steam.exe | "{9F4B6D4E-630D-407D-8863-47F8625F38C7}" = protocol=58 | dir=in | app=system | "{A2FFDE54-886B-4A08-AA8F-A0DE281204CE}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{A9260244-1A6E-414C-94B2-AC4230290262}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\sniper elite v2\bin\sniperelitev2.exe | "{ABDD6AA6-BF2E-4FFF-B971-66E49971D9F8}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | "{B00B775C-413B-4E8C-BE9D-C0D6C77E6153}" = protocol=6 | dir=in | app=c:\program files (x86)\napiprojekt\napisy.exe | "{B34DE882-D87F-49BC-85C3-CF425737E503}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\plants vs. zombies\plantsvszombies.exe | "{BC367FEF-F1ED-4EEA-91A5-DC94CF138088}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{C6693584-DB18-44C5-8ED7-54735922834D}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | "{C9008005-437E-4857-904B-0A3F9536586D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{D6973865-53E5-47C1-94DC-E3E787C65608}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe | "{E26660CB-11E0-43B6-929B-99E48DA27FF4}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{E2B5B7C0-6020-4C3A-A601-3BA67CF300DC}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steam.exe | "{E5D02C76-B500-431F-B19B-6AC41E557D5A}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\half-life\hl.exe | "{E84D53E4-625A-4ED1-B0C3-F53153D59255}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "TCP Query User{0AB8870E-974F-4873-A1D5-C1600274ACE8}C:\users\robert\desktop\altcoin\bilion\billioncoin-qt\billioncoin-qt.exe" = protocol=6 | dir=in | app=c:\users\robert\desktop\altcoin\bilion\billioncoin-qt\billioncoin-qt.exe | "TCP Query User{1BA925C0-B910-4BA2-B129-366789C921B2}D:\program files (x86)\universegamers\gunz\uggunz.exe" = protocol=6 | dir=in | app=d:\program files (x86)\universegamers\gunz\uggunz.exe | "TCP Query User{4446CFF9-4732-4742-B257-3DB3DB435C29}D:\torrent\dayz standalone v0.46 final\dayz standalone v0.46\dayz.exe" = protocol=6 | dir=in | app=d:\torrent\dayz standalone v0.46 final\dayz standalone v0.46\dayz.exe | "TCP Query User{8D6E2712-EA32-455A-A7BF-BFA444507B95}C:\users\robert\desktop\altcoin\doge\dogecoin-qt-v11\dogecoin-qt.exe" = protocol=6 | dir=in | app=c:\users\robert\desktop\altcoin\doge\dogecoin-qt-v11\dogecoin-qt.exe | "TCP Query User{AEABD119-ACF9-4EF6-A886-58DC30FEE36A}C:\program files (x86)\litecoin\litecoin-qt.exe" = protocol=6 | dir=in | app=c:\program files (x86)\litecoin\litecoin-qt.exe | "TCP Query User{B1AD8840-4458-4A2D-B764-9E7BCD0F2C62}C:\users\robert\desktop\altcoin\lotto\lottocoin\lottocoin-qt.exe" = protocol=6 | dir=in | app=c:\users\robert\desktop\altcoin\lotto\lottocoin\lottocoin-qt.exe | "TCP Query User{BF30FD00-C398-4A40-9E3E-5A684F7758BE}C:\users\robert\desktop\altcoin\prime\primecoin-0.1.2-hp11-winx64\primecoin-qt.exe" = protocol=6 | dir=in | app=c:\users\robert\desktop\altcoin\prime\primecoin-0.1.2-hp11-winx64\primecoin-qt.exe | "TCP Query User{FC1AE0CE-280B-4178-897C-B782E71CDD5F}C:\users\robert\appdata\local\id software\quakelive\quakelive.exe" = protocol=6 | dir=in | app=c:\users\robert\appdata\local\id software\quakelive\quakelive.exe | "UDP Query User{2B4CDA8D-413C-4BB2-92E8-A3590CE8567D}C:\users\robert\desktop\altcoin\lotto\lottocoin\lottocoin-qt.exe" = protocol=17 | dir=in | app=c:\users\robert\desktop\altcoin\lotto\lottocoin\lottocoin-qt.exe | "UDP Query User{35D19798-A123-4372-B72D-95F73D48A144}C:\users\robert\desktop\altcoin\prime\primecoin-0.1.2-hp11-winx64\primecoin-qt.exe" = protocol=17 | dir=in | app=c:\users\robert\desktop\altcoin\prime\primecoin-0.1.2-hp11-winx64\primecoin-qt.exe | "UDP Query User{38773697-41AA-468F-AFAC-25123CF99B0A}C:\users\robert\appdata\local\id software\quakelive\quakelive.exe" = protocol=17 | dir=in | app=c:\users\robert\appdata\local\id software\quakelive\quakelive.exe | "UDP Query User{4B01ED38-CADC-40F9-9925-343E08B94258}D:\torrent\dayz standalone v0.46 final\dayz standalone v0.46\dayz.exe" = protocol=17 | dir=in | app=d:\torrent\dayz standalone v0.46 final\dayz standalone v0.46\dayz.exe | "UDP Query User{58F48CC6-0B40-4DB8-A08B-DFD6E71AA880}C:\users\robert\desktop\altcoin\bilion\billioncoin-qt\billioncoin-qt.exe" = protocol=17 | dir=in | app=c:\users\robert\desktop\altcoin\bilion\billioncoin-qt\billioncoin-qt.exe | "UDP Query User{87374EC6-B013-49A5-ABCD-55DE743CB20D}D:\program files (x86)\universegamers\gunz\uggunz.exe" = protocol=17 | dir=in | app=d:\program files (x86)\universegamers\gunz\uggunz.exe | "UDP Query User{896C9AA0-5F57-488F-9B93-711669527550}C:\program files (x86)\litecoin\litecoin-qt.exe" = protocol=17 | dir=in | app=c:\program files (x86)\litecoin\litecoin-qt.exe | "UDP Query User{95786154-D72F-4F3D-A9DE-D7B2535E949E}C:\users\robert\desktop\altcoin\doge\dogecoin-qt-v11\dogecoin-qt.exe" = protocol=17 | dir=in | app=c:\users\robert\desktop\altcoin\doge\dogecoin-qt-v11\dogecoin-qt.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64) "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{45F1F774-38B4-3CC3-BAAF-051E6D19E48E}" = Microsoft .NET Framework 4.5.1 (PLK) "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{6199B534-A1B6-46ED-873B-97B0ECF8F81E}" = Intel® Trusted Connect Service Client "{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Microsoft .NET Framework 4.5.1 (Polski) "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 307.17 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 307.17 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus 1.10.8 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.12.0613 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.10.8 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "CCleaner" = CCleaner "ffdshow64_is1" = ffdshow x64 v1.3.4527 [2013-12-03] "TeamSpeak 3 Client" = TeamSpeak 3 Client [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}" = YTD Video Downloader 4.8.1 "{2505571C-03B3-4F9F-AC35-33F1CB4B5E9E}_is1" = RescueTime 2.9.1.961 "{26050F54-3928-4D9C-849A-C48A9E831E6F}" = ChomikBox "{26A24AE4-039D-4CA4-87B4-2F83217040FF}" = Java 7 Update 51 "{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Qualcomm Atheros WiFi Driver Installation "{3F0D0ABE-CDAF-431A-00BC-CBBE018EA74E}" = SimCity 4 Deluxe "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module "{5DE67937-45D5-45E4-923C-0B7F7EC929A7}" = League of Legends "{5E6536C2-E79A-49CF-83EA-817AD81F9FC8}" = Plants vs. Zombies™ "{64467D47-FFE4-4FBC-ABBA-A0DB829A17EB}" = NVIDIA PhysX "{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™ "{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype™ 6.16 "{7B9CC60A-9B81-46A3-A953-76B6BF9EEC97}" = Age of Empires III "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{86D09F48-CDAB-4B4C-8806-F6C16F17935A}" = PokerStrategy.com Equilab "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_HOMESTUDENTR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_HOMESTUDENTR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_HOMESTUDENTR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_HOMESTUDENTR_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002A-0415-1000-0000000FF1CE}_HOMESTUDENTR_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_HOMESTUDENTR_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_HOMESTUDENTR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007 "{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1045-7B44-AB0000000001}" = Adobe Reader XI (11.0.07) - Polish "{B239B43B-3E99-40B0-80BF-1B1BCA868D4E}_is1" = Podatnik.info PIT pro 2013 wersja 2.0.14.32480 "{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader "{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86 "{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F3FCB08B-E752-444D-86A0-0634A4F3B23D}" = System Requirements Lab CYRI "296836EA-EF3A-4C36-8C13-3A6C1DB2D4BE" = AmericasCardroom "888poker" = 888poker "Adobe Flash Player ActiveX" = Adobe Flash Player 14 ActiveX "Anvi Smart Defender" = Anvi Smart Defender 2.2 "Assassin's Creed IV Black Flag_is1" = Assassin's Creed IV Black Flag wersja 1.0 "Battlelog Web Plugins" = Battlelog Web Plugins "Combined Community Codec Pack_is1" = Combined Community Codec Pack 2014-04-20 "Google Chrome" = Google Chrome "Graph_is1" = Graph 4.4.2 "HaaliMkx" = Haali Media Splitter "Heroes III Armageddon's Blade" = Heroes III Armageddon's Blade "Heroes III The Restoration of Erathia" = Heroes III The Restoration of Erathia "HoldemManager2" = Holdem Manager 2 "HOMESTUDENTR" = Microsoft Office Home and Student 2007 "InstallShield_{7B9CC60A-9B81-46A3-A953-76B6BF9EEC97}" = Age of Empires III "ipla" = ipla 2.8 "League of Legends 3.0.1" = League of Legends "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 2.0.2.1012 "Mirillis Action!" = Action! "NapiProjekt_is1" = NapiProjekt (2.2.0.2399) "Origin" = Origin "PhotoScape" = PhotoScape "PKR" = PKR "PLAY Web partner" = PLAY Web partner "PokerRanger" = PokerRanger "PokerStars.eu" = PokerStars.eu "PunkBusterSvc" = PunkBuster Services "Q29tcGFueW9mSGVyb2VzMg==_is1" = Company of Heroes 2 "Quake Live" = Quake Live "Rubix_is1" = Rubix version 3.2 "Scribblenauts Unmasked A DC Comics Adventure_is1" = Scribblenauts Unmasked A DC Comics Adventure "Smart File Advisor_is1" = Smart File Advisor 1.1.2 "SpeedFan" = SpeedFan (remove only) "Steam App 10" = Counter-Strike "Steam App 50130" = Mafia II "Steam App 63380" = Sniper Elite V2 "Steam App 730" = Counter-Strike: Global Offensive "Universe Gamers Gunz" = Universe Gamers Gunz "WinRAR archiver" = WinRAR 5.00 (32-bit) "ZGrapher_is1" = ZGrapher 1.4 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1288890564-1172388754-1821981085-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Flux" = f.lux "JoinMe" = join.me "Litecoin" = Litecoin "Poker 770" = Poker 770 "Primecoin" = Primecoin "Titan Poker" = Titan Poker "uTorrent" = µTorrent "William Hill Poker" = William Hill Poker [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-09-02 16:51:40 | Computer Name = Robert-Komputer | Source = PostgreSQL | ID = 0 Description = 2014-09-02 22:51:40 CESTFATAL: the database system is starting up Error - 2014-09-02 16:52:44 | Computer Name = Robert-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-09-02 16:57:52 | Computer Name = Robert-Komputer | Source = MsiInstaller | ID = 1024 Description = Error - 2014-09-02 17:04:57 | Computer Name = Robert-Komputer | Source = PostgreSQL | ID = 0 Description = 2014-09-02 23:04:57 CESTERROR: relation "readsettings" already exists 2014-09-02 23:04:57 CESTSTATEMENT: CREATE TABLE readsettings ( lastid bigint, lasttournament bigint, databaseversion text, lastomahacash bigint, lastomahatournament bigint ) WITH ( OIDS=FALSE ); ALTER TABLE readsettings OWNER TO postgres; insert into readsettings values(0,0,'12',0,0); Error - 2014-09-02 17:04:57 | Computer Name = Robert-Komputer | Source = PostgreSQL | ID = 0 Description = 2014-09-02 23:04:57 CESTERROR: relation "notecaddy_data" already exists 2014-09-02 23:04:57 CESTSTATEMENT: CREATE TABLE notecaddy_data ( player_id integer NOT NULL, data text, CONSTRAINT ncd PRIMARY KEY (player_id) ); ALTER TABLE notecaddy_data OWNER TO postgres; Error - 2014-09-02 17:09:53 | Computer Name = Robert-Komputer | Source = PostgreSQL | ID = 0 Description = 2014-09-02 23:09:53 CESTERROR: relation "readsettings" already exists 2014-09-02 23:09:53 CESTSTATEMENT: CREATE TABLE readsettings ( lastid bigint, lasttournament bigint, databaseversion text, lastomahacash bigint, lastomahatournament bigint ) WITH ( OIDS=FALSE ); ALTER TABLE readsettings OWNER TO postgres; insert into readsettings values(0,0,'12',0,0); Error - 2014-09-02 17:09:53 | Computer Name = Robert-Komputer | Source = PostgreSQL | ID = 0 Description = 2014-09-02 23:09:53 CESTERROR: relation "notecaddy_data" already exists 2014-09-02 23:09:53 CESTSTATEMENT: CREATE TABLE notecaddy_data ( player_id integer NOT NULL, data text, CONSTRAINT ncd PRIMARY KEY (player_id) ); ALTER TABLE notecaddy_data OWNER TO postgres; Error - 2014-09-02 17:20:58 | Computer Name = Robert-Komputer | Source = PostgreSQL | ID = 0 Description = Error - 2014-09-02 17:21:18 | Computer Name = Robert-Komputer | Source = PostgreSQL | ID = 0 Description = Error - 2014-09-02 17:21:23 | Computer Name = Robert-Komputer | Source = PostgreSQL | ID = 0 Description = [ Broadcom Wireless LAN Events ] Error - 2014-04-14 17:56:24 | Computer Name = Robert-Komputer | Source = WLAN-Tray | ID = 0 Description = 23:56:20, Mon, Apr 14, 14 Error - (WLTRAY.EXE-2348) Unable to start peernet session, after 200 iterations Error - 2014-04-14 17:56:25 | Computer Name = Robert-Komputer | Source = WLAN-Tray | ID = 0 Description = 23:56:25, Mon, Apr 14, 14 Error - Unable to initialize peernet library [ OSession Events ] Error - 2014-06-05 10:20:17 | Computer Name = Robert-Komputer | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6695.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 605744 seconds with 4740 seconds of active time. This session ended with a crash. Error - 2014-08-29 16:39:30 | Computer Name = Robert-Komputer | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 533198 seconds with 1080 seconds of active time. This session ended with a crash. [ System Events ] Error - 2014-04-19 01:09:15 | Computer Name = Robert-Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 00:46:12 na ?2014-?04-?19 było nieoczekiwane. Error - 2014-04-19 13:19:15 | Computer Name = Robert-Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 13:37:03 na ?2014-?04-?19 było nieoczekiwane. Error - 2014-04-20 07:28:20 | Computer Name = Robert-Komputer | Source = DCOM | ID = 10010 Description = Error - 2014-04-21 14:02:18 | Computer Name = Robert-Komputer | Source = Service Control Manager | ID = 7034 Description = Usługa Kaspersky Anti-Virus Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2014-04-23 00:54:50 | Computer Name = Robert-Komputer | Source = Service Control Manager | ID = 7011 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi Browser. Error - 2014-04-23 00:54:50 | Computer Name = Robert-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Przeglądarka komputera z powodu następującego błędu: %%1053 Error - 2014-05-03 16:46:25 | Computer Name = Robert-Komputer | Source = Service Control Manager | ID = 7011 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi ShellHWDetection. Error - 2014-05-04 02:48:08 | Computer Name = Robert-Komputer | Source = DCOM | ID = 10010 Description = Error - 2014-05-04 02:56:55 | Computer Name = Robert-Komputer | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Steam Client Service. Error - 2014-05-04 02:56:55 | Computer Name = Robert-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Steam Client Service z powodu następującego błędu: %%1053 < End of report >