OTL Extras logfile created on: 2014-11-02 15:31:07 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Łukasz\Desktop 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 7,98 Gb Total Physical Memory | 4,78 Gb Available Physical Memory | 59,90% Memory free 15,97 Gb Paging File | 12,49 Gb Available in Paging File | 78,23% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 111,69 Gb Total Space | 68,60 Gb Free Space | 61,42% Space Free | Partition Type: NTFS Drive E: | 100,00 Mb Total Space | 63,43 Mb Free Space | 63,43% Space Free | Partition Type: NTFS Drive F: | 100,10 Gb Total Space | 24,23 Gb Free Space | 24,21% Space Free | Partition Type: NTFS Drive G: | 182,78 Gb Total Space | 26,56 Gb Free Space | 14,53% Space Free | Partition Type: NTFS Drive H: | 182,78 Gb Total Space | 15,37 Gb Free Space | 8,41% Space Free | Partition Type: NTFS Computer Name: KDM | User Name: Łukasz | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-1007308674-706615955-2750518701-1000\SOFTWARE\Classes\] .html [@ = ChromeHTML.KZFF2IGS7BFARYNUCCQQPQ7IJU] -- F:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htafile [open] -- "%1" %* htmlfile [edit] -- "G:\Program Files\Microsoft Office\Office15\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- "G:\Program Files\Microsoft Office\Office15\msohtmed.exe" /p %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "H:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "H:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htafile [open] -- "%1" %* htmlfile [edit] -- "G:\Program Files\Microsoft Office\Office15\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- "G:\Program Files\Microsoft Office\Office15\msohtmed.exe" /p %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "H:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "H:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{04C8BEF7-7D13-46E3-BA91-996DF527086A}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{09B2B0B8-5654-4A2A-996A-1FD2F21940C6}" = lport=138 | protocol=17 | dir=in | app=system | "{0A13A1FA-A56F-4266-8ADE-E66AEA2BB245}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{0CCF2605-1BA9-401C-B23D-63A1CBF1C4FD}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{131CA172-0F9B-4D6E-8CF0-E224F5D5B5B2}" = lport=6004 | protocol=17 | dir=in | app=g:\program files\microsoft office\office15\outlook.exe | "{182587ED-D35C-4BC1-BDA4-EB2A4A7F8528}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{1B89AAE1-9BF0-4D7A-8A94-973DC4D33413}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{29D6DEAF-5C0C-4C1A-AC18-D34A39459AEF}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{3263BAB1-0762-4DA0-B8D9-9B07E6459A09}" = rport=10243 | protocol=6 | dir=out | app=system | "{378A3524-45B4-4E34-87F8-C3D2F1E0D9EC}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{43E00082-CE3E-44BB-A395-8B7BFEC44708}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe | "{44BB1F5E-9870-4261-A9A4-BEA076CAF143}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{5A5D972C-21EF-4106-91FC-EDDA900BC9B6}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{7756FCFD-C8EF-41B3-AAB7-1B6DEB0B14BD}" = rport=138 | protocol=17 | dir=out | app=system | "{812C1F50-5DB5-40EB-B1BD-F9BA9901327B}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{937B5C39-E182-43A8-8F67-283D1FEA1438}" = lport=137 | protocol=17 | dir=in | app=system | "{96A672E2-BD07-425B-B68E-6A8C362F8802}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{9ADCA734-E5CC-4E7F-A0B9-4B563BD7EAAB}" = lport=2869 | protocol=6 | dir=in | app=system | "{A252C737-CA4C-44F1-BC77-FF3DCDAA7D28}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{A5E5D0D7-18B5-47E7-B004-8474E49B1A4A}" = lport=139 | protocol=6 | dir=in | app=system | "{A97FCE08-99DF-4603-B9EF-572C1A355181}" = lport=445 | protocol=6 | dir=in | app=system | "{B055BFBE-534C-4818-B4A7-86C6EF70E4A8}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{BBD1F0F5-A0E8-453B-8DE3-CD2591A32C2F}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{C6D4574E-9535-45ED-ADE9-3EFF617A556E}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe | "{CA32AFED-4F9A-4491-A067-C812917ABA14}" = rport=137 | protocol=17 | dir=out | app=system | "{CCF039A3-22D1-4313-A7BE-8E77049A7097}" = rport=139 | protocol=6 | dir=out | app=system | "{E6A2FD83-542C-42D7-B190-D5A4858655BE}" = rport=445 | protocol=6 | dir=out | app=system | "{EF1DF8F4-9FF4-46AA-B54D-CE3EC25FFDDC}" = lport=10243 | protocol=6 | dir=in | app=system | "{F16C592D-E769-483B-B5BE-94A9CA8EB93C}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{F45F0F9B-496C-4608-87E9-D37280029E5D}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{076F0D0B-7613-45AF-9243-D9D2FBF15F90}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{0CCA2061-8317-4EF4-8497-261CFD752689}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3507\agent.exe | "{13C978EC-589E-49E9-8A5C-91633645C5A5}" = protocol=6 | dir=in | app=h:\program files (x86)\steam\steamapps\common\airmech\airmech.exe | "{13E19F5E-4327-4803-8BFD-B74FF052E5FD}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{14858371-102D-4C2A-9027-515E352BF83B}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3454\agent.exe | "{162C32C4-5552-47D8-8EAD-892DA59E14F0}" = protocol=17 | dir=in | app=h:\program files (x86)\steam\bin\steamwebhelper.exe | "{1632F60D-F0E3-4D7A-A053-2B32CC01A1FC}" = protocol=17 | dir=in | app=c:\users\łukasz\appdata\roaming\utorrent\utorrent.exe | "{19170BD9-8565-4495-9A86-89CFDB153CC6}" = protocol=6 | dir=in | app=c:\users\łukasz\appdata\roaming\dropbox\bin\dropbox.exe | "{1C12F882-654C-4B59-AA1E-7FBBD9228194}" = protocol=17 | dir=in | app=h:\program files (x86)\steam\steamapps\common\dayz\dayz.exe | "{1CB1F1B6-5D13-4F88-883C-88A17062A57B}" = protocol=6 | dir=in | app=h:\program files (x86)\steam\steamapps\common\terraria\terraria.exe | "{1D100743-F0C5-4F3B-9D89-460DC9654F8D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{23498B95-763E-4415-A5EF-9277989F3672}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{264B1101-B44A-4087-BD6B-B42D2DCED6C0}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{27022D9D-F4B8-4559-81A0-C4B9954D80D2}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3235\agent.exe | "{27904B0A-1460-4227-8D73-23C4F8DD000D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{2BEDF34A-4089-4CAA-A25E-619D93CADF0E}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3346\agent.exe | "{2D2CBB43-ABD4-4F5B-880F-645C50C52009}" = protocol=6 | dir=in | app=c:\users\łukasz\appdata\roaming\utorrent\utorrent.exe | "{2DBFFD4E-4E33-43FE-A57E-405DE635D6FF}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{2EE60468-8293-4FE5-8BD8-E5B55E5BC30E}" = protocol=6 | dir=in | app=h:\program files (x86)\steam\steamapps\common\rbs\really big sky.exe | "{32E90EE9-8329-46EC-AB91-D53DEFF28635}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3372\agent.exe | "{33F016E4-07A7-4863-B1A7-ED51232409D4}" = protocol=6 | dir=in | app=h:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe | "{3647D97E-D707-41D8-A6D2-9360E2B05E35}" = protocol=6 | dir=in | app=h:\program files (x86)\steam\steam.exe | "{3B2010E1-6936-4F89-8315-40C7387FCAB2}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3182\agent.exe | "{3C491181-F9A1-42E4-ABBA-8CCD1B2FF35B}" = protocol=6 | dir=out | app=system | "{3F3D3359-350A-42A5-98E6-FFB260028044}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{434DED0A-848C-4EC4-9776-65AF0A998E88}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{43A67C2C-67C0-4942-A425-6FECF79A926C}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3427\agent.exe | "{4636BF5A-1290-4A13-90FB-3FEBE0B91060}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3427\agent.exe | "{52C474C5-FE07-4AB0-A927-8DD4D74920F9}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe | "{5447833D-5E74-49EE-AAEA-838042372C24}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{59339A70-93EE-4CEA-A288-4F9C659F43C8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{5B0AD98D-788C-4A0B-A56E-1327CF3884F2}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3372\agent.exe | "{5BB5B597-15D5-4447-80AA-4AD607DC5ADB}" = protocol=6 | dir=in | app=g:\program files (x86)\the sims 4 deluxe edition\game\bin\ts4.exe | "{6817FB43-9073-478E-8299-3F3037A10CB8}" = protocol=17 | dir=in | app=h:\program files (x86)\steam\steamapps\common\unturned\unturned.exe | "{7409F146-36CD-4388-BF76-9DBE0D7D8A54}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3346\agent.exe | "{747031E6-4E84-46EF-8F4E-39D4E64A25C3}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{761F5767-751C-4EE8-89CA-CB8CEC0CA4BE}" = protocol=6 | dir=in | app=h:\program files (x86)\steam\steamapps\common\aceofspades\aos.exe | "{7916363F-7787-43FF-8E90-0E8B2A70423A}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3478\agent.exe | "{7CD9DEE5-FF35-4033-96C4-57BFBC8B25D4}" = protocol=6 | dir=in | app=h:\program files (x86)\steam\steamapps\common\unturned\unturned.exe | "{826A30E3-0916-4447-A729-CFA03CAA00E8}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3235\agent.exe | "{87030FCC-5C37-4EC2-9FC4-F9B157735E2E}" = protocol=6 | dir=in | app=g:\battle.net\battle.net.exe | "{8D6A8D8D-775D-4B66-BD95-02E21ABE9A92}" = protocol=17 | dir=in | app=h:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe | "{9157814B-D705-41BC-9C55-BFDF9C1310F5}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3182\agent.exe | "{95B49DB2-5F1B-4B96-B6FB-18307C54CB28}" = protocol=17 | dir=in | app=g:\program files\microsoft office\office15\lync.exe | "{99CC214A-66D6-44F7-A941-C82C1B66CEA8}" = protocol=17 | dir=in | app=h:\program files (x86)\steam\steamapps\common\magickawizardwars\wizardwarslauncher.exe | "{9C35DA2C-5452-4487-943F-63010D1635BC}" = protocol=17 | dir=in | app=h:\program files (x86)\steam\steam.exe | "{A9558CAE-8E16-410B-A16C-BC3CEBDBDF60}" = protocol=17 | dir=in | app=h:\program files (x86)\steam\steamapps\common\aceofspades\aos.exe | "{A969B0FD-5864-463F-BB2D-6C480294F200}" = protocol=17 | dir=in | app=h:\program files (x86)\steam\steamapps\common\rbs\really big sky.exe | "{ADDF6DCC-0B4A-4EC7-95F1-4B27453B10BF}" = protocol=17 | dir=in | app=c:\users\łukasz\appdata\roaming\dropbox\bin\dropbox.exe | "{AE7EB13C-98CF-44C4-AAE2-EB682158F4A6}" = protocol=17 | dir=in | app=h:\program files (x86)\steam\steamapps\common\airmech\airmech.exe | "{B09055F3-9F02-4BA7-A25B-C18BF2B59094}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{B28D64D8-1DB9-457D-BE77-440AE2793EEB}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{B9E0E997-4F18-4A72-854F-BCD3294DFED4}" = protocol=17 | dir=in | app=g:\program files (x86)\the sims 4 deluxe edition\game\bin\ts4.exe | "{C2109875-B6B2-4DA7-8578-65E5FD909D75}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3507\agent.exe | "{C27C770F-C517-4097-B808-23236953E9A6}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{C489AC00-9F51-4CBE-B298-7985B842591A}" = protocol=6 | dir=in | app=g:\program files\microsoft office\office15\lync.exe | "{C686550F-9971-4D7A-9847-2A0A00F94B37}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{C79E9AB5-6204-47DA-B0AC-683CA5A1CDA1}" = protocol=6 | dir=in | app=h:\program files (x86)\steam\steamapps\common\dayz\dayz.exe | "{C7D62FE7-0EE3-4BBA-96C4-3DDA058F825D}" = protocol=17 | dir=in | app=g:\battle.net\battle.net.exe | "{C880C627-C971-4F14-B37D-F7A7B830919B}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{CF50D381-46EB-4B9F-85B3-8E250803FEB5}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3478\agent.exe | "{D1B4B396-B8F2-4717-B198-4BEE9492BBC1}" = protocol=17 | dir=in | app=g:\program files\microsoft office\office15\ucmapi.exe | "{D3D0BD55-BE1B-4C0B-AF97-4C785F4CACF7}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe | "{D73937A6-4564-47BA-A8C1-52D9DBE4D601}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3454\agent.exe | "{D9DE5DE1-CB0B-4E29-BF84-A73B040C1A57}" = protocol=6 | dir=in | app=g:\program files\microsoft office\office15\ucmapi.exe | "{E069461F-875A-4597-91DF-9EAC13EE1D24}" = protocol=17 | dir=in | app=h:\program files (x86)\steam\steamapps\common\terraria\terraria.exe | "{EA523888-A29E-482B-8C9E-FA8FDD43A3AE}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe | "{EAA93103-929F-42DC-938B-78D7CC2498D5}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{ED9AC06F-7446-49AD-9A91-01E50841962E}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe | "{F4EAB299-069F-4873-8BE7-863C6CAB7269}" = protocol=6 | dir=in | app=h:\program files (x86)\steam\bin\steamwebhelper.exe | "{F533E6F3-99F5-46C9-A613-40B6A174A7AA}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{FEA02AE2-E874-4705-9790-5FB0231B49B4}" = protocol=6 | dir=in | app=h:\program files (x86)\steam\steamapps\common\magickawizardwars\wizardwarslauncher.exe | "TCP Query User{116BC204-5823-4840-A9EC-29F8C5F9270E}H:\program files (x86)\steam\steamapps\common\half-life\hl.exe" = protocol=6 | dir=in | app=h:\program files (x86)\steam\steamapps\common\half-life\hl.exe | "TCP Query User{33B6389B-C3C0-4929-B731-CEB5FFE4D8FA}G:\program files (x86)\1-click run\cube world\server.exe" = protocol=6 | dir=in | app=g:\program files (x86)\1-click run\cube world\server.exe | "TCP Query User{B90769A3-A180-4C48-9227-7E1113598FA1}C:\program files (x86)\nightly\firefox.exe" = protocol=6 | dir=in | app=c:\program files (x86)\nightly\firefox.exe | "TCP Query User{CBEA57C4-0EFF-46F4-B928-73D10A447D7A}F:\program files (x86)\skype\phone\skype.exe" = protocol=6 | dir=in | app=f:\program files (x86)\skype\phone\skype.exe | "TCP Query User{CC96F0F4-5D66-4F4A-BE2B-037E8CE24B9D}H:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe" = protocol=6 | dir=in | app=h:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | "TCP Query User{E24D1D29-B0C3-4125-9D89-11C798EE2114}C:\users\łukasz\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\łukasz\appdata\roaming\dropbox\bin\dropbox.exe | "TCP Query User{F3028D72-84FF-4A64-8868-36AA0FB9725F}G:\program files (x86)\hearthstone\hearthstone.exe" = protocol=6 | dir=in | app=g:\program files (x86)\hearthstone\hearthstone.exe | "UDP Query User{16258181-868C-4364-A4AB-6E3BF274908D}G:\program files (x86)\1-click run\cube world\server.exe" = protocol=17 | dir=in | app=g:\program files (x86)\1-click run\cube world\server.exe | "UDP Query User{1A1334DC-BBAC-454A-B3E8-FB23C3E85DC2}C:\program files (x86)\nightly\firefox.exe" = protocol=17 | dir=in | app=c:\program files (x86)\nightly\firefox.exe | "UDP Query User{2FD654F6-497E-44B0-B8F7-39F7C31FAC88}H:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe" = protocol=17 | dir=in | app=h:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | "UDP Query User{3D8379ED-267E-4A62-BDB7-6776A3EFFCC6}F:\program files (x86)\skype\phone\skype.exe" = protocol=17 | dir=in | app=f:\program files (x86)\skype\phone\skype.exe | "UDP Query User{57B72E5B-336F-4395-9D07-39B079B7017E}C:\users\łukasz\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\łukasz\appdata\roaming\dropbox\bin\dropbox.exe | "UDP Query User{5FE2C55A-0192-480E-AA65-C743CEE97B93}G:\program files (x86)\hearthstone\hearthstone.exe" = protocol=17 | dir=in | app=g:\program files (x86)\hearthstone\hearthstone.exe | "UDP Query User{A9E6B3EE-0686-417E-AEFA-5E5B29438D30}H:\program files (x86)\steam\steamapps\common\half-life\hl.exe" = protocol=17 | dir=in | app=h:\program files (x86)\steam\steamapps\common\half-life\hl.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "_{16E336F3-CA33-4D5C-B3E7-042C5873E69E}" = Corel Painter Lite "{16E336F3-CA33-4D5C-B3E7-042C5873E69E}" = Painter Lite - Setup Files "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{26ABD007-B756-4231-A047-175317639E23}" = Painter Lite - Core "{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 "{568EF145-A1ED-4B60-8FEE-3EDAAF08FA81}" = Painter Lite - EN "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{764384C5-BCA9-307C-9AAC-FD443662686A}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 "{90150000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2013 "{90150000-0015-0409-1000-0000000FF1CE}" = Microsoft Access MUI (English) 2013 "{90150000-0016-0409-1000-0000000FF1CE}" = Microsoft Excel MUI (English) 2013 "{90150000-0018-0409-1000-0000000FF1CE}" = Microsoft PowerPoint MUI (English) 2013 "{90150000-0019-0409-1000-0000000FF1CE}" = Microsoft Publisher MUI (English) 2013 "{90150000-001A-0409-1000-0000000FF1CE}" = Microsoft Outlook MUI (English) 2013 "{90150000-001B-0409-1000-0000000FF1CE}" = Microsoft Word MUI (English) 2013 "{90150000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - English "{90150000-001F-040C-1000-0000000FF1CE}" = Outils de vérification linguistique 2013 de Microsoft Office - Français "{90150000-001F-0415-1000-0000000FF1CE}" = Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski "{90150000-001F-0C0A-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - Español "{90150000-002C-0409-1000-0000000FF1CE}" = Microsoft Office Proofing (English) 2013 "{90150000-0044-0409-1000-0000000FF1CE}" = Microsoft InfoPath MUI (English) 2013 "{90150000-006E-0409-1000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2013 "{90150000-0090-0409-1000-0000000FF1CE}" = Microsoft DCF MUI (English) 2013 "{90150000-00A1-0409-1000-0000000FF1CE}" = Microsoft OneNote MUI (English) 2013 "{90150000-00BA-0409-1000-0000000FF1CE}" = Microsoft Groove MUI (English) 2013 "{90150000-00BD-0415-1000-0000000FF1CE}" = Język etykietek ekranowych pakietu Microsoft Office 2013 — polski "{90150000-00C1-0000-1000-0000000FF1CE}" = Microsoft Office 32-bit Components 2013 "{90150000-00C1-0409-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (English) 2013 "{90150000-00E1-0409-1000-0000000FF1CE}" = Microsoft Office OSM MUI (English) 2013 "{90150000-00E2-0409-1000-0000000FF1CE}" = Microsoft Office OSM UX MUI (English) 2013 "{90150000-0115-0409-1000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2013 "{90150000-0117-0409-1000-0000000FF1CE}" = Microsoft Access Setup Metadata MUI (English) 2013 "{90150000-012B-0409-1000-0000000FF1CE}" = Microsoft Lync MUI (English) 2013 "{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1 RC "{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 337.88 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 337.88 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 337.88 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 2.1 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 337.88 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.13.1220 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 14.6.22 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.3.30.1 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 14.6.22 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.23 "{D9C50188-12D5-4D3E-8F00-682346C2AA5F}" = Microsoft Xbox 360 Accessories 1.2 "{DB0C39A6-A6CB-4D96-933E-4E98F329E901}" = Painter Lite - Corex64 "{E70808B9-78FE-3081-9658-A3C9DBC9A798}" = Microsoft .NET Framework 4.5.1 RC "{E8CBA7F7-1DFB-4A84-BED2-93F8D46FCC38}" = Painter Lite - Content "{F5DD1EE4-9015-4180-89A0-DC7B00F1DD04}" = Corel Painter Lite - IPM "HP LaserJet Professional P1100-P1560-P1600 Series" = HP LaserJet Professional P1100-P1560-P1600 Series "Office15.PROPLUS" = Microsoft Office Professional Plus 2013 "VLC media player" = VLC media player "Wacom Tablet Driver" = Tablet Wacom "Wacom WebTabletPlugin for Internet Explorer and Netscape" = WebTablet FB Plugin 64 bit [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{049CA433-77A0-4e48-AC76-180A282C4E10}" = Python 2.7.7 "{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}" = Razer Synapse 2.0 "{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 "{16793295-2366-40F7-A045-A3E42A81365E}" = Bing Bar "{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1 "{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 6.21 "{3898934B-05AE-41CD-96BE-70DA9BFBCE1F}" = Microsoft XNA Framework Redistributable 3.0 "{3B35725F-C623-4A1E-B5CC-99C0868679E3}" = Smart 6 B10.1221.1 "{3D6AD258-61EA-35F5-812C-B7A02152996E}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 "{3DECD372-76A1-4483-BF10-B547790A3261}" = ON_OFF Charge B11.0110.1 "{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology "{457D7505-D665-4F95-91C3-ECB8C56E9ACA}" = Easy Tune 6 B10.1216.1 "{48EBEBBF-B9F8-4520-A3CF-89A730721917}" = The Sims™ 4 "{5BDAA2F7-8E48-4AFF-AA92-B559D0CDF1AD}" = Serious Sam: The Second Encounter "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{7f51bdb9-ee21-49ee-94d6-90afc321780e}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 "{80407BA7-7763-4395-AB98-5233F1B34E65}" = NVIDIA PhysX "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{95716cce-fc71-413f-8ad5-56c2892d4b3a}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{ADF781B6-F1A9-4018-997D-B36AA272F1ED}" = LogMeIn Hamachi "{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}" = @BIOS "{C75FAD21-EC08-42F3-92D6-C9C0AB355345}" = AutoGreen B10.1021.1 "{ce085a78-074e-4823-8dc1-8a721b94b76d}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 "{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}" = Microsoft XNA Framework Redistributable 4.0 Refresh "{DB847E94-446B-49E0-AC5D-C5627EC8B0C0}" = SpyHunter "{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}" = Etron USB3.0 Host Controller "{E7D4E834-93EB-351F-B8FB-82CDAE623003}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center "{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 "{f93aa7aa-ab63-42a1-ad5a-c4fd64e016ed}" = osu! "Adobe Flash Player ActiveX" = Adobe Flash Player 15 ActiveX "Battle.net" = Battle.net "Combined Community Codec Pack_is1" = Combined Community Codec Pack 2014-07-13 "CWK" = CWK (Czasowy Wyłącznik Komputera) "Glyph" = Glyph "Glyph Trove" = Trove "Glyph Trove Alpha" = Trove Alpha "Google Chrome" = Google Chrome "InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}" = Easy Tune 6 B10.1216.1 "InstallShield_{C75FAD21-EC08-42F3-92D6-C9C0AB355345}" = AutoGreen B10.1021.1 "InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}" = Etron USB3.0 Host Controller "LogMeIn Hamachi" = LogMeIn Hamachi "MozillaMaintenanceService" = Mozilla Maintenance Service "Nightly 36.0a1 (x86 en-US)" = Nightly 36.0a1 (x86 en-US) "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Origin" = Origin "PaintToolSAI" = PaintTool SAI Ver.1 "PokerStars.eu" = PokerStars.eu "Razer Core" = Razer Core "Steam App 105600" = Terraria "Steam App 201570" = Really Big Sky "Steam App 304930" = Unturned "TeamViewer 9" = TeamViewer 9 "The SIMS 4 Deluxe Edition_is1" = The SIMS 4 Deluxe Edition "Wacom WebTabletPlugin for Internet Explorer and Netscape" = WebTablet FB Plugin 32 bit [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1007308674-706615955-2750518701-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Dropbox" = Dropbox "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-11-02 02:45:25 | Computer Name = kdm | Source = WinMgmt | ID = 10 Description = Error - 2014-11-02 02:53:52 | Computer Name = kdm | Source = Office 2013 Licensing Service | ID = 0 Description = Error - 2014-11-02 09:36:05 | Computer Name = kdm | Source = RzOvlMon | ID = 0 Description = Error - 2014-11-02 09:36:05 | Computer Name = kdm | Source = RzOvlMon | ID = 0 Description = Error - 2014-11-02 09:36:05 | Computer Name = kdm | Source = RzOvlMon | ID = 0 Description = Error - 2014-11-02 09:37:59 | Computer Name = kdm | Source = WinMgmt | ID = 10 Description = Error - 2014-11-02 09:58:51 | Computer Name = kdm | Source = RzOvlMon | ID = 0 Description = Error - 2014-11-02 09:58:51 | Computer Name = kdm | Source = RzOvlMon | ID = 0 Description = Error - 2014-11-02 09:58:51 | Computer Name = kdm | Source = RzOvlMon | ID = 0 Description = Error - 2014-11-02 10:00:45 | Computer Name = kdm | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 2014-10-18 06:13:30 | Computer Name = kdm | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 12:12:44 na ?2014-?10-?18 było nieoczekiwane. Error - 2014-10-21 09:59:47 | Computer Name = kdm | Source = Service Control Manager | ID = 7030 Description = Usługa LogMeIn Hamachi Tunneling Engine jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error - 2014-10-22 10:31:25 | Computer Name = kdm | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Steam Client Service. Error - 2014-10-22 10:31:25 | Computer Name = kdm | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Steam Client Service z powodu następującego błędu: %%1053 Error - 2014-10-28 02:47:59 | Computer Name = kdm | Source = Service Control Manager | ID = 7030 Description = Usługa LogMeIn Hamachi Tunneling Engine jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error - 2014-11-02 09:36:04 | Computer Name = kdm | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 13:45:48 na ?2014-?11-?02 było nieoczekiwane. Error - 2014-11-02 09:36:07 | Computer Name = kdm | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: RzFilter Error - 2014-11-02 09:44:42 | Computer Name = kdm | Source = Application Popup | ID = 1060 Description = Ładowanie sterownika \SystemRoot\SysWow64\DRIVERS\EsgScanner.sys zostało zablokowane z powodu niezgodności z tym systemem. Skontaktuj się z dostawcą oprogramowania w celu uzyskania zgodnej wersji sterownika. Error - 2014-11-02 09:44:42 | Computer Name = kdm | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi EsgScanner z powodu następującego błędu: %%1275 Error - 2014-11-02 09:58:52 | Computer Name = kdm | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: RzFilter < End of report >