OTL Extras logfile created on: 2014-12-15 16:15:34 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Asus\Downloads 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 4,00 Gb Total Physical Memory | 1,73 Gb Available Physical Memory | 43,36% Memory free 8,00 Gb Paging File | 5,47 Gb Available in Paging File | 68,36% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 48,83 Gb Total Space | 3,42 Gb Free Space | 7,01% Space Free | Partition Type: NTFS Drive D: | 12,86 Gb Total Space | 12,66 Gb Free Space | 98,45% Space Free | Partition Type: NTFS Drive E: | 56,82 Gb Total Space | 56,49 Gb Free Space | 99,41% Space Free | Partition Type: NTFS Drive F: | 54,69 Gb Total Space | 54,52 Gb Free Space | 99,70% Space Free | Partition Type: NTFS Drive G: | 54,69 Gb Total Space | 54,52 Gb Free Space | 99,70% Space Free | Partition Type: NTFS Drive H: | 54,69 Gb Total Space | 54,52 Gb Free Space | 99,69% Space Free | Partition Type: NTFS Drive I: | 117,19 Gb Total Space | 108,78 Gb Free Space | 92,83% Space Free | Partition Type: NTFS Drive J: | 132,07 Gb Total Space | 131,80 Gb Free Space | 99,79% Space Free | Partition Type: NTFS Computer Name: ASUS-KOMPUTER | User Name: Asus | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-746962273-3746358900-1730051239-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{00B95AF5-43CF-4233-B399-FF5921124F92}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{09AA9B72-463C-4093-AF18-74A8F184FD9B}" = lport=2869 | protocol=6 | dir=in | app=system | "{0D49F63A-F17B-476A-86D6-172305AAAF33}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{1451DC67-9C11-48ED-A310-1DDEF0F3BB11}" = lport=138 | protocol=17 | dir=in | app=system | "{2270B133-6D31-47C7-AAC0-8EDA0C8A121E}" = rport=10243 | protocol=6 | dir=out | app=system | "{2F0C0EE4-BDCF-4715-B158-47E1263F55A9}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{3A53D9EE-B3BC-47ED-8543-2984DFD0CBB2}" = rport=137 | protocol=17 | dir=out | app=system | "{3ECDA22E-E09F-4BDE-8394-B9320FEF06FB}" = rport=139 | protocol=6 | dir=out | app=system | "{3FA93D91-A72D-4768-A4A7-0E19EA7B34A6}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{4468F182-F21C-4BCC-9EE8-039BA98F4C92}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{4B506A6D-CD29-4521-BE7F-B602E8D3775F}" = lport=137 | protocol=17 | dir=in | app=system | "{4F005899-3248-42F9-B130-8A0594565C26}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{5296A6CF-2335-4E1F-9C88-BEB59474EC4E}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{566801C2-DCAD-4AA4-9B69-C6B38AB2F798}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{56AFD0F9-B108-4D61-A003-A591E89969DD}" = lport=139 | protocol=6 | dir=in | app=system | "{581FD5F8-1333-4FAC-9037-52D937E23734}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{5E66E694-47AB-4052-A3DE-C752DD0B3D1A}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{65D82A81-7FDD-4D1A-A6E3-866E64F682F7}" = lport=10243 | protocol=6 | dir=in | app=system | "{95596898-742E-4F19-B83F-A44D3DD9FE3B}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{9F31EE67-6022-4D89-B33B-23812B4B821C}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{AAA2917C-DDC4-488F-AAE7-F554737B7D8B}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{AEC51CA3-7BFD-456A-A041-8B49A30E129F}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{B176ECD7-52AD-4A08-A4FF-1B5719064996}" = rport=138 | protocol=17 | dir=out | app=system | "{C4C5FD5A-BE6D-4548-8F2E-BDC7EFE390E6}" = lport=445 | protocol=6 | dir=in | app=system | "{C951A184-FAA9-4FF6-8429-D05A8D85D21B}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe | "{DC8C7F7E-9AC1-4943-B546-D3C2C08BBC45}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office15\outlook.exe | "{E1581158-D172-424E-8716-F5BB67F0BFBC}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{E7706DD7-24DF-41FB-B670-C9FED29F7E2F}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe | "{E920AD20-ECFE-4C34-B850-3FC7EE96801D}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{F7BF916B-E26C-426A-AB81-C0F2A8298D69}" = rport=445 | protocol=6 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0F29AF56-0900-4C1B-9B0B-9AE6132D84A3}" = protocol=6 | dir=out | app=system | "{1EE6E243-BD7D-4B52-8E75-C4883DC0C9AB}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{1F1CE948-A64E-4914-9A15-52C079D94891}" = protocol=17 | dir=in | app=c:\users\asus\appdata\roaming\utorrent\utorrent.exe | "{20838CD9-2FAB-46A0-8907-327499C2E06E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{22C813AA-9AD6-4057-8DC9-FEB991901B9C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{382CC277-54E9-42DF-A61C-F32437FFA33C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{3E119102-F650-442B-99B4-7A97EA425E0A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe | "{47CDFEE4-9AF0-4853-8071-B6A8373C7B34}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{49401DAF-A750-4D19-A7EB-3B2E05F2FADF}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\lync.exe | "{4B82F4A1-389B-480F-BAB1-73215DF12458}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | "{4E84EA91-B13B-4692-9801-07FDEEF0CF50}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\half-life\hl.exe | "{4EEDB58F-5EF6-44FF-8F85-F019A13F9A39}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{51BB5F79-3A7A-4098-8291-D7BBC78D314F}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe | "{574729EE-C9CB-456A-AAE4-8E43E1C8CBD2}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe | "{5A37ECD8-9DB1-4371-8C1C-D71DF5D497A4}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\lync.exe | "{60C81DC9-96CE-4AFE-A356-66CF71FE751F}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{6E16BD64-D59F-496D-8390-3FB7682405F5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{7E5AEC67-DAB0-4A5E-BCDC-AE3CBB67CA96}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{90EB71E5-4372-4C96-A611-581E59C42B41}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{931266B7-1993-43D7-ADDE-98730004D871}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{95F9FB4A-4778-4DF5-B7AA-840F6EC4EFF3}" = protocol=6 | dir=in | app=c:\users\asus\appdata\roaming\utorrent\utorrent.exe | "{99884FBF-AF08-402D-83EF-3D9053D495D4}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{A1FB6BCE-3A0B-4AC4-A219-5F044E856479}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe | "{A6F948B1-326E-492F-9528-74AB25082811}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{B8F5DE0B-EEE0-41A6-A0F1-B627383A3B0B}" = protocol=6 | dir=in | app=c:\program files\ventrilo\ventrilo.exe | "{BEB696DC-969D-44D5-8635-DBA427A57985}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\half-life\hl.exe | "{BF4EBB0C-A13C-4DB6-A9C6-AE98C002860A}" = protocol=17 | dir=in | app=c:\program files\ventrilo\ventrilo.exe | "{C039927F-9DF9-4753-AC57-6BA7773B4B89}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{C0D05BA4-40A8-4B41-86F5-148C6C0A0C11}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{D2ED4446-7386-45E3-AE9C-1783C40842C0}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{E03885AF-69A1-4D6D-B639-4BB3FB950E3D}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | "{E7EF9EC4-D18C-4088-9018-067AD5BACC09}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{E8B3AF14-F9DB-4269-AB22-50CC5F0CF90F}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{F0541929-665B-4DE8-A053-CF953512968D}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{F39BFDF7-C1D6-4D3F-AAC7-140AC5675249}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{FBACC6F2-488B-4E5B-91A9-D4D4540E3DFA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "TCP Query User{6E9CD56A-0F41-4325-B3A1-92B4960ACA01}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe" = protocol=6 | dir=in | app=c:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe | "TCP Query User{DDB107B5-C2D4-41D1-8AC8-2A812886DDC0}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe" = protocol=6 | dir=in | app=c:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe | "UDP Query User{9EE9BAA5-2F37-4A63-9CAA-EEBFB8F31296}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe" = protocol=17 | dir=in | app=c:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe | "UDP Query User{A3EBCCF5-AFC0-4C65-962E-D3F2529CF3CF}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe" = protocol=17 | dir=in | app=c:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{083808D6-6235-37A8-82C1-98D226EB681F}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60830 "{122B909F-9DCF-360E-91E7-0679E033FBE1}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60830 "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.7523 "{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64) "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{8E5DA9A6-7A9F-3A6F-BC5C-D6CBCA6A29C7}" = Microsoft .NET Framework 4 Extended PLK Language Pack "{90150000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2013 "{90150000-0015-0415-1000-0000000FF1CE}" = Microsoft Access MUI (Polish) 2013 "{90150000-0016-0415-1000-0000000FF1CE}" = Microsoft Excel MUI (Polish) 2013 "{90150000-0018-0415-1000-0000000FF1CE}" = Microsoft PowerPoint MUI (Polish) 2013 "{90150000-0019-0415-1000-0000000FF1CE}" = Microsoft Publisher MUI (Polish) 2013 "{90150000-001A-0415-1000-0000000FF1CE}" = Microsoft Outlook MUI (Polish) 2013 "{90150000-001B-0415-1000-0000000FF1CE}" = Microsoft Word MUI (Polish) 2013 "{90150000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Korrekturhilfen 2013 - Deutsch "{90150000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - English "{90150000-001F-0415-1000-0000000FF1CE}" = Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski "{90150000-002C-0415-1000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2013 "{90150000-0044-0415-1000-0000000FF1CE}" = Microsoft InfoPath MUI (Polish) 2013 "{90150000-006E-0415-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2013 "{90150000-0090-0415-1000-0000000FF1CE}" = Microsoft DCF MUI (Polish) 2013 "{90150000-00A1-0415-1000-0000000FF1CE}" = Microsoft OneNote MUI (Polish) 2013 "{90150000-00BA-0415-1000-0000000FF1CE}" = Microsoft Groove MUI (Polish) 2013 "{90150000-00C1-0000-1000-0000000FF1CE}" = Microsoft Office 32-bit Components 2013 "{90150000-00C1-0415-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Polish) 2013 "{90150000-00E1-0415-1000-0000000FF1CE}" = Microsoft Office OSM MUI (Polish) 2013 "{90150000-00E2-0415-1000-0000000FF1CE}" = Microsoft Office OSM UX MUI (Polish) 2013 "{90150000-012B-0415-1000-0000000FF1CE}" = Microsoft Lync MUI (Polish) 2013 "{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 "{94D70749-4281-39AC-AD90-B56A0E0A402E}" = Microsoft Visual C++ 2010 x64 Runtime - 10.0.30319 "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B0A5A6EE-F8BA-48B1-BB32-BAC17E96C2B4}" = Microsoft Visual J# 2.0 Redistributable Package - SE (x64) "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 344.60 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 344.60 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 344.60 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 2.1.3 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 344.46 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.14.0702 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 16.13.56 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService" = NVIDIA GeForce Experience Service "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.3.32.1 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 16.13.56 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController" = SHIELD Wireless Controller Driver "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.25 "{BCA26999-EC22-3007-BB79-638913079C9A}" = Microsoft Visual Studio 2010 Express Prerequisites x64 - ENU "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 SP1 "{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}" = Microsoft SQL Server Compact 3.5 SP2 x64 ENU "{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}" = Ventrilo Client for Windows x64 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "{FCADA26A-5672-31DD-BF0E-BA76ECF9B02D}" = Microsoft Help Viewer 1.0 "CCleaner" = CCleaner "M928366" = "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 SP1 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft .NET Framework 4 Extended PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended "Microsoft Help Viewer 1.0" = Microsoft Help Viewer 1.0 "Microsoft Visual J# 2.0 Redistributable Package - SE (x64)" = Microsoft Visual J# 2.0 Redistributable Package - SE (x64) "Office15.PROPLUS" = Microsoft Office Professional Plus 2013 "TeamSpeak 3 Client" = TeamSpeak 3 Client [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{112C23F2-C036-4D40-BED4-0CB47BF5555C}" = Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU "{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 "{14DD7530-CCD2-3798-B37D-3839ED6A441C}" = Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools "{18365843-4C20-4559-BEA0-2378B1EBC3A7}" = Tibiacast "{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 6.21 "{26A24AE4-039D-4CA4-87B4-2F03217060FF}" = Java 7 Update 60 "{2A2F3AE8-246A-4252-BB26-1BEB45627074}" = Microsoft SQL Server System CLR Types "{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}" = Microsoft XNA Framework Redistributable 4.0 "{3A9FC03D-C685-4831-94CF-4EDFD3749497}" = Microsoft SQL Server Compact 3.5 SP2 ENU "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4E968D9C-21A7-4915-B698-F7AEB913541D}" = Microsoft SQL Server 2008 R2 Management Objects "{4fcf070a-daac-45e9-a8b0-6850941f7ed8}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 "{50AF8559-F490-381F-A6E7-06A07DE227DC}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60830 "{5DE67937-45D5-45E4-923C-0B7F7EC929A7}" = League of Legends "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{90ffcee5-8608-4e94-8c18-a4feb4f83fb8}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 "{9dba0447-b749-41ea-90bc-2aa19a9eb580}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60830 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AA3B06B1-E89A-43C6-A26B-7109DB4BEE7B}" = Adobe Shockwave Player 12.0 "{AC76BA86-7AD7-1045-7B44-AB0000000001}" = Adobe Reader XI - Polish "{B455E95A-B804-439F-B533-336B1635AE97}" = NVIDIA PhysX "{B7E38540-E355-3503-AFD7-635B2F2F76E1}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974 "{c7ed0d4c-89c5-47fc-9e89-1088affe63f3}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60830 "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}" = Microsoft .NET Framework 4 Multi-Targeting Pack "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F4CFBC5D-12D5-423E-A4A3-BCB2F1631FD8}_is1" = Blackd Safe Cheats wersja 2.0.7 "{F68B404C-0E04-337F-A132-796508EE337A}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60830 "{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 "Adobe Flash Player Plugin" = Adobe Flash Player 15 Plugin "Calibrize_is1" = Calibrize 2.0 "DAEMON Tools Lite" = DAEMON Tools Lite "Foxit Reader_is1" = Foxit Reader "Google Chrome" = Google Chrome "KLiteCodecPack_is1" = K-Lite Codec Pack 10.1.5 Full "LastFM_is1" = Last.fm Scrobbler 2.1.36 "League of Legends 3.0.1" = League of Legends "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 2.0.2.1012 "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Mozilla Firefox 32.0.1 (x86 pl)" = Mozilla Firefox 32.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Steam" = Steam "Steam App 10" = Counter-Strike "Steam App 730" = Counter-Strike: Global Offensive "TeamSpeak 3 Client" = TeamSpeak 3 Client "Tibia_is1" = Tibia "TMIPC" = Tibia MULTI-ip changer "WinRAR archiver" = WinRAR 5.00 (32-bitowy) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-746962273-3746358900-1730051239-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Flux" = f.lux "GG" = GG "OpenFM" = OpenFM "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-12-06 08:39:45 | Computer Name = Asus-Komputer | Source = Office 2013 Licensing Service | ID = 0 Description = Error - 2014-12-07 07:20:25 | Computer Name = Asus-Komputer | Source = Office 2013 Licensing Service | ID = 0 Description = Error - 2014-12-07 20:29:41 | Computer Name = Asus-Komputer | Source = Office 2013 Licensing Service | ID = 0 Description = Error - 2014-12-09 06:03:35 | Computer Name = Asus-Komputer | Source = Office 2013 Licensing Service | ID = 0 Description = Error - 2014-12-10 06:15:39 | Computer Name = Asus-Komputer | Source = Office 2013 Licensing Service | ID = 0 Description = Error - 2014-12-11 01:08:07 | Computer Name = Asus-Komputer | Source = Office 2013 Licensing Service | ID = 0 Description = Error - 2014-12-12 05:30:32 | Computer Name = Asus-Komputer | Source = Office 2013 Licensing Service | ID = 0 Description = Error - 2014-12-13 09:35:57 | Computer Name = Asus-Komputer | Source = Office 2013 Licensing Service | ID = 0 Description = Error - 2014-12-14 02:48:25 | Computer Name = Asus-Komputer | Source = Office 2013 Licensing Service | ID = 0 Description = Error - 2014-12-15 00:48:59 | Computer Name = Asus-Komputer | Source = Office 2013 Licensing Service | ID = 0 Description = [ System Events ] Error - 2014-12-14 02:39:16 | Computer Name = Asus-Komputer | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk7\DR7. Error - 2014-12-14 02:39:16 | Computer Name = Asus-Komputer | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk7\DR7. Error - 2014-12-14 02:39:17 | Computer Name = Asus-Komputer | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk7\DR7. Error - 2014-12-14 02:39:17 | Computer Name = Asus-Komputer | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk7\DR7. Error - 2014-12-14 02:39:18 | Computer Name = Asus-Komputer | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk7\DR7. Error - 2014-12-15 10:14:05 | Computer Name = Asus-Komputer | Source = Microsoft-Windows-DNS-Client | ID = 1012 Description = Wystąpił błąd podczas próby odczytu lokalnego pliku hosts. Error - 2014-12-15 10:35:18 | Computer Name = Asus-Komputer | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-12-15 10:38:06 | Computer Name = Asus-Komputer | Source = Service Control Manager | ID = 7030 Description = Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error - 2014-12-15 10:39:39 | Computer Name = Asus-Komputer | Source = Application Popup | ID = 1060 Description = Ładowanie sterownika \??\C:\ComboFix\catchme.sys zostało zablokowane z powodu niezgodności z tym systemem. Skontaktuj się z dostawcą oprogramowania w celu uzyskania zgodnej wersji sterownika. Error - 2014-12-15 10:40:07 | Computer Name = Asus-Komputer | Source = Service Control Manager | ID = 7030 Description = Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. < End of report >