OTL Extras logfile created on: 2015-09-06 09:57:30 - Run 1 OTL by OldTimer - Version Folder = E:\ 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17959) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 4,00 Gb Total Physical Memory | 2,32 Gb Available Physical Memory | 58,11% Memory free 8,00 Gb Paging File | 6,14 Gb Available in Paging File | 76,79% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 39,06 Gb Total Space | 9,63 Gb Free Space | 24,66% Space Free | Partition Type: NTFS Drive D: | 68,89 Gb Total Space | 30,30 Gb Free Space | 43,99% Space Free | Partition Type: NTFS Drive E: | 96,16 Gb Total Space | 34,17 Gb Free Space | 35,53% Space Free | Partition Type: NTFS Computer Name: MATEOREX-PC | User Name: Mateorex | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = OperaStable] -- Reg Error: Key error. File not found .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = OperaStable] -- Reg Error: Key error. File not found [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = OperaNext] -- C:\Program Files (x86)\Opera Next\Launcher.exe (Opera Software) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1" https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1" https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 61 01 DA 5A 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{28ABB448-06FF-4977-88A8-F8A36DA64D02}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{681AD32B-F054-479A-AC9C-800E91DC87F8}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{6E4B37C2-AFA2-4417-A2A3-F9E978B11060}" = lport=138 | protocol=17 | dir=in | app=system | "{79A18EFD-E63E-4210-A667-62338AEF6267}" = rport=445 | protocol=6 | dir=out | app=system | "{96EA7FEF-86E1-4BD5-BD53-1C8EE88311D0}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{BA518956-8CB7-4F69-ADF2-E101B64E82AF}" = lport=445 | protocol=6 | dir=in | app=system | "{C95BD413-67BC-4D5C-B247-6128301EC9DF}" = rport=137 | protocol=17 | dir=out | app=system | "{DB36954E-2A6E-4256-B7AB-4E18CE2F76E1}" = rport=139 | protocol=6 | dir=out | app=system | "{DFA099FB-1670-462D-A996-148899DD16DD}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe | "{E0FE48FA-0F5B-4288-9AB7-B12D56104CBE}" = lport=139 | protocol=6 | dir=in | app=system | "{E609C957-2F18-4293-868F-489C868A39E9}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{E96841CF-2238-4DDD-852F-E530A08298BC}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe | "{F7F419D2-7E62-4D2B-B617-E38DDD25FF53}" = rport=138 | protocol=17 | dir=out | app=system | "{F9C2CB94-CCB1-48EE-A021-5FC70FAE47F3}" = lport=137 | protocol=17 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0973D10E-692D-48E2-A633-AD06657ADBC0}" = protocol=17 | dir=in | app=e:\program files (x86)\avg\avg2015\avgemca.exe | "{103812D9-C05C-4065-93F0-D9A60258EE99}" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\might & magic heroes vi\might & magic heroes vi.exe | "{1507CC68-1F0F-493A-B78C-C00183BED713}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | "{1B55C110-9FA5-4FE8-AAC3-8D8415A370EE}" = protocol=6 | dir=in | app=e:\program files (x86)\avg\avg2015\avgnsa.exe | "{3081F8EA-D365-4A7D-AF0E-E9E603CA0DF3}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{31D8A0DD-362F-424D-AA31-E820FDA6436B}" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "{3A4FA911-09B4-4D37-B2FC-B7F9285DD36F}" = protocol=17 | dir=in | app=e:\program files (x86)\avg\avg2015\avgmfapx.exe | "{515A5506-5A88-45C9-9CB1-9F5B256B9026}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{5770153E-05FF-4B6E-B4B0-E43C448DAF60}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steam.exe | "{5DD98EBF-1033-4F2F-B4A0-0CE5FC3B76D9}" = protocol=17 | dir=in | app=e:\program files (x86)\avg\avg2015\avgnsa.exe | "{62E7DD52-9C9B-4DAF-8D1B-AA86D04606C3}" = protocol=6 | dir=in | app=e:\program files (x86)\avg\avg2015\avgmfapx.exe | "{660E0BC4-6D40-4066-B979-EF250D9969D9}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\bin\steamwebhelper.exe | "{743681A8-56A3-4617-9366-6974C0618446}" = protocol=6 | dir=in | app=e:\program files (x86)\avg\avg2015\avgdiagex.exe | "{76D2734B-774E-4B00-9E3F-6A91936F13F6}" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\might & magic heroes vi\might & magic heroes vi.exe | "{875D99B8-7184-486D-8298-C8D35BACDB8A}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{B00251FF-CBC8-4E0F-AC1D-C369CBB393F5}" = protocol=17 | dir=in | app=c:\users\mateorex\appdata\roaming\utorrent\utorrent.exe | "{C07E0868-4120-4347-8A29-F414B526F0BC}" = protocol=17 | dir=in | app=e:\program files (x86)\avg\avg2015\avgdiagex.exe | "{C18F5D15-CF07-47AE-8C53-428737C05F95}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steam.exe | "{C29661D7-890D-4021-9975-091DC9A0133E}" = protocol=6 | dir=in | app=c:\users\mateorex\appdata\roaming\utorrent\utorrent.exe | "{CB0F8E87-B930-4CA0-AE91-D396DB6DD17A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{CFF496A7-64F6-45B7-9147-E31D9A39F78C}" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "{D3A1C591-1BDD-45EC-BCFF-172EA0CC73E1}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{DAFEFD39-4154-4A5A-B169-BAC8C481308B}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | "{E9B194CD-D033-41C6-A8C8-60CE46F39ABA}" = protocol=6 | dir=in | app=e:\program files (x86)\avg\avg2015\avgemca.exe | "{EC630381-5B70-4400-A459-D6E4FC383737}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\bin\steamwebhelper.exe | "TCP Query User{46CAEFF8-7D51-4257-91CF-A585C53195B1}C:\xampp\apache\bin\httpd.exe" = protocol=6 | dir=in | app=c:\xampp\apache\bin\httpd.exe | "TCP Query User{4D1F2DF5-6D8E-488F-9218-5A1F1DC03393}D:\program files (x86)\elfbot ng\navserv.exe" = protocol=6 | dir=in | app=d:\program files (x86)\elfbot ng\navserv.exe | "TCP Query User{4DBDBD2D-B3C6-43EC-BFFF-CAAF6902FBE4}E:\lastivia\s2.lastivia.eu-27-02-2015\_s2.lastivia.eu.exe" = protocol=6 | dir=in | app=e:\lastivia\s2.lastivia.eu-27-02-2015\_s2.lastivia.eu.exe | "TCP Query User{4F686AF3-F51A-4E69-BAF8-1F31E96AF1DE}E:\program files (x86)\wtfast beta\wtfast.exe" = protocol=6 | dir=in | app=e:\program files (x86)\wtfast beta\wtfast.exe | "TCP Query User{4F71B96B-DC24-415F-A0BF-627B8002193E}D:\pliki pulpitu\mateorex\theforgottenserver.exe" = protocol=6 | dir=in | app=d:\pliki pulpitu\mateorex\theforgottenserver.exe | "TCP Query User{5FC55434-F7CB-4455-AB43-ACC1B0F95D5C}C:\users\mateorex\appdata\local\vghd\bin\virtuagirl_downloader.exe" = protocol=6 | dir=in | app=c:\users\mateorex\appdata\local\vghd\bin\virtuagirl_downloader.exe | "TCP Query User{8DAAA983-2BD8-4E9F-903C-AE88A832F302}E:\program files (x86)\kolekcja klasyki\sacred - złota edycja\gameserver.exe" = protocol=6 | dir=in | app=e:\program files (x86)\kolekcja klasyki\sacred - złota edycja\gameserver.exe | "TCP Query User{BEDDBC7D-6356-45D9-B8D6-7A08CB81BF41}E:\marinermt2.pl\marinermt2.exe" = protocol=6 | dir=in | app=e:\marinermt2.pl\marinermt2.exe | "TCP Query User{C9DAF7F5-C76D-4B36-BDAD-CE3BBCEC52C2}D:\program files (x86)\tibia\tibia\tibia.exe" = protocol=6 | dir=in | app=d:\program files (x86)\tibia\tibia\tibia.exe | "TCP Query User{E35E4111-5F01-4B12-AD27-8B41C03C98A3}C:\xampp\apache\bin\apache.exe" = protocol=6 | dir=in | app=c:\xampp\apache\bin\apache.exe | "TCP Query User{E914ADAB-DC5C-4D14-A8F5-FE18234BCD22}E:\program files (x86)\kolekcja klasyki\sacred - złota edycja\sacred.exe" = protocol=6 | dir=in | app=e:\program files (x86)\kolekcja klasyki\sacred - złota edycja\sacred.exe | "TCP Query User{F65FA96E-56FD-493F-A15B-F37D7F341255}E:\delta.force.xtreme.2.pc.game(djdevastate™)\delta.force.xtreme.2.pc.game(djdevastate™)\dfx2.exe" = protocol=6 | dir=in | app=e:\delta.force.xtreme.2.pc.game(djdevastate™)\delta.force.xtreme.2.pc.game(djdevastate™)\dfx2.exe | "TCP Query User{FE811BDC-4505-4207-80E5-50D9F95A8756}C:\xampp\mysql\bin\mysqld.exe" = protocol=6 | dir=in | app=c:\xampp\mysql\bin\mysqld.exe | "UDP Query User{331B7DC2-8DE6-45DA-9A48-4D8AD84BF6C7}C:\xampp\apache\bin\httpd.exe" = protocol=17 | dir=in | app=c:\xampp\apache\bin\httpd.exe | "UDP Query User{3F8E6587-6EE5-45EC-90A0-9B1D8A80B42D}D:\pliki pulpitu\mateorex\theforgottenserver.exe" = protocol=17 | dir=in | app=d:\pliki pulpitu\mateorex\theforgottenserver.exe | "UDP Query User{4229D54F-9316-4413-839F-F18CE36CEAE4}C:\users\mateorex\appdata\local\vghd\bin\virtuagirl_downloader.exe" = protocol=17 | dir=in | app=c:\users\mateorex\appdata\local\vghd\bin\virtuagirl_downloader.exe | "UDP Query User{4370C6CD-17BE-4FE0-9268-AD0B47AF8E16}C:\xampp\apache\bin\apache.exe" = protocol=17 | dir=in | app=c:\xampp\apache\bin\apache.exe | "UDP Query User{45C58DF3-7164-46AA-AA03-AF3384C35CFE}D:\program files (x86)\elfbot ng\navserv.exe" = protocol=17 | dir=in | app=d:\program files (x86)\elfbot ng\navserv.exe | "UDP Query User{57AB7C78-0328-4FAA-A430-086B5AA41703}E:\lastivia\s2.lastivia.eu-27-02-2015\_s2.lastivia.eu.exe" = protocol=17 | dir=in | app=e:\lastivia\s2.lastivia.eu-27-02-2015\_s2.lastivia.eu.exe | "UDP Query User{74A365CC-CC81-4596-97C2-BECF219E9586}E:\program files (x86)\kolekcja klasyki\sacred - złota edycja\sacred.exe" = protocol=17 | dir=in | app=e:\program files (x86)\kolekcja klasyki\sacred - złota edycja\sacred.exe | "UDP Query User{78B8C18B-0984-4B8F-9C77-0C644589E2FB}E:\delta.force.xtreme.2.pc.game(djdevastate™)\delta.force.xtreme.2.pc.game(djdevastate™)\dfx2.exe" = protocol=17 | dir=in | app=e:\delta.force.xtreme.2.pc.game(djdevastate™)\delta.force.xtreme.2.pc.game(djdevastate™)\dfx2.exe | "UDP Query User{911E66D7-6BDD-43A1-A454-A557BA5559A4}E:\marinermt2.pl\marinermt2.exe" = protocol=17 | dir=in | app=e:\marinermt2.pl\marinermt2.exe | "UDP Query User{C15FB131-C964-42AC-B492-407AB15993AC}E:\program files (x86)\kolekcja klasyki\sacred - złota edycja\gameserver.exe" = protocol=17 | dir=in | app=e:\program files (x86)\kolekcja klasyki\sacred - złota edycja\gameserver.exe | "UDP Query User{CE6CDDAA-376A-488F-B7E4-BCBBA8272F3B}C:\xampp\mysql\bin\mysqld.exe" = protocol=17 | dir=in | app=c:\xampp\mysql\bin\mysqld.exe | "UDP Query User{DC112B1E-99FA-4708-8DF8-6A3A5337DFD8}D:\program files (x86)\tibia\tibia\tibia.exe" = protocol=17 | dir=in | app=d:\program files (x86)\tibia\tibia\tibia.exe | "UDP Query User{EF560EDE-5652-411D-B8A6-E82C2DBB834B}E:\program files (x86)\wtfast beta\wtfast.exe" = protocol=17 | dir=in | app=e:\program files (x86)\wtfast beta\wtfast.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition) "{24DB3A5E-0BC8-11E5-9A27-F04DA23A5C58}" = MSVCRT Redists "{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 "{6B171EFC-F41F-4055-A4DE-5B9480DA17AA}" = AVG 2015 "{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64) "{764384C5-BCA9-307C-9AAC-FD443662686A}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 "{7A5DB14B-14B0-4F09-A130-BF60503B4248}" = AVG 2015 "{81922150-317E-4BB0-A31D-FF1C14F707C5}" = Inkscape 0.91 "{8C775E70-A791-4DA8-BCC3-6AB7136F4484}" = Visual Studio 2012 x64 Redistributables "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "AVG" = AVG 2015 "CCleaner" = CCleaner "DAEMON Tools Lite" = DAEMON Tools Lite "GIMP-2_is1" = GIMP 2.8.14 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "SecurityKISS Tunnel_is1" = SecurityKISS Tunnel v0.3.0 "TAP-Windows" = TAP-Windows 9.9.2 "WinRAR archiver" = WinRAR 5.21 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 "{248C8A6E-D97F-43EB-B86E-AB0F267C93CF}_is1" = BynaCam v4.04 (8.60) "{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 7.6 "{5DE67937-45D5-45E4-923C-0B7F7EC929A7}" = League of Legends "{60E2C8C9-6CF3-4B1A-9618-E304946C94E6}" = Python 2.4.4 "{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper "{6AEFCA01-8DF1-11E1-A17B-F04DA23A5C58}" = Vegas Pro 11.0 "{70CB6C40-8DF1-11E1-BDCF-F04DA23A5C58}" = MSVCRT Redists "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}" = Visual Studio 2012 x86 Redistributables "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 "{ACC75323-DB4A-4F7F-9AF3-1D1DEFF2D1B5}" = Heroes of Might and Magic V - Tribes of the East "{ACC75323-DB4A-4f7f-9AF3-1D1DEFF2D1B5}_is1" = Heroes of Might and Magic V - Dzikie Hordy "{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3 "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{f65db027-aff3-4070-886a-0d87064aabb1}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 "{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Adobe Flash Player NPAPI" = Adobe Flash Player 18 NPAPI "Adobe Flash Player PPAPI" = Adobe Flash Player 18 PPAPI "ALLPlayer_is1" = ALLPlayer V6.X "CursorFX Free" = Stardock CursorFX Free "ElfBot NG_is1" = ElfBot NG 4.5.9 "Fraps" = Fraps (remove only) "Google Chrome" = Google Chrome "Heroes of Might and Magic V Bundle_is1" = Heroes of Might and Magic V Bundle "League of Legends 3.0.1" = League of Legends "MEGAsync" = MEGAsync "Mozilla Firefox 38.0.5 (x86 pl)" = Mozilla Firefox 38.0.5 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Need for Speed Most Wanted (black edition)" = Need for Speed Most Wanted (black edition) "Notepad++" = Notepad++ "Opera 32.0.1948.12" = Opera beta 32.0.1948.12 "PhotoScape" = PhotoScape "RocketDock_is1" = RocketDock 1.3.5 "Tibia Auto" = NSIS Example2 "Tibia_is1" = Tibia "xampp" = XAMPP 1.6.6 [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "GameRanger" = GameRanger "UnityWebPlayer" = Unity Web Player "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2015-09-05 08:30:22 | Computer Name = Mateorex-PC | Source = Application Error | ID = 1000 Description = Faulting application name: tibiaauto.exe, version:, time stamp: 0x55cd6e4f Faulting module name: MSVCR120.dll, version: 12.0.21005.1, time stamp: 0x524f7ce6 Exception code: 0x40000015 Fault offset: 0x000a7676 Faulting process id: 0x12f0 Faulting application start time: 0x01d0e7b2f6d449d8 Faulting application path: C:\Program Files (x86)\Tibia\Tibia Auto\tibiaauto.exe Faulting module path: C:\Windows\system32\MSVCR120.dll Report Id: dfd96758-53c9-11e5-a1a5-001d92247ab5 Error - 2015-09-05 10:39:01 | Computer Name = Mateorex-PC | Source = WinMgmt | ID = 10 Description = Error - 2015-09-05 13:22:37 | Computer Name = Mateorex-PC | Source = SideBySide | ID = 16842832 Description = Activation context generation failed for "D:\Download\SoftonicDownloader_dla_rmvb-converter.exe".Error in manifest or policy file "" on line . A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error - 2015-09-05 13:22:37 | Computer Name = Mateorex-PC | Source = SideBySide | ID = 16842832 Description = Activation context generation failed for "D:\Download\SoftonicDownloader_dla_rmvb-converter.exe".Error in manifest or policy file "" on line . A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error - 2015-09-05 13:22:40 | Computer Name = Mateorex-PC | Source = SideBySide | ID = 16842832 Description = Activation context generation failed for "D:\Download\SoftonicDownloader_dla_bitcomet.exe".Error in manifest or policy file "" on line . A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error - 2015-09-05 13:22:40 | Computer Name = Mateorex-PC | Source = SideBySide | ID = 16842832 Description = Activation context generation failed for "D:\Download\SoftonicDownloader_dla_bitcomet.exe".Error in manifest or policy file "" on line . A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error - 2015-09-05 14:16:02 | Computer Name = Mateorex-PC | Source = Application Hang | ID = 1002 Description = The program _uninstall6056 version stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 11e8 Start Time: 01d0e806b5db8a00 Termination Time: 10 Application Path: C:\Users\Mateorex\AppData\Local\Temp\_uninstall\_uninstall6056 Report Id: Error - 2015-09-05 17:59:31 | Computer Name = Mateorex-PC | Source = Application Error | ID = 1000 Description = Faulting application name: tibiaauto.exe, version:, time stamp: 0x55b1a72d Faulting module name: MSVCR120.dll, version: 12.0.21005.1, time stamp: 0x524f7ce6 Exception code: 0x40000015 Fault offset: 0x000a7676 Faulting process id: 0x72c Faulting application start time: 0x01d0e7e9a379c0b0 Faulting application path: C:\Program Files (x86)\Tibia\hexera1080\Tibia Auto\tibiaauto.exe Faulting module path: C:\Windows\system32\MSVCR120.dll Report Id: 623ccec0-5419-11e5-9c67-001d92247ab5 Error - 2015-09-06 03:28:10 | Computer Name = Mateorex-PC | Source = WinMgmt | ID = 10 Description = Error - 2015-09-06 03:53:30 | Computer Name = Mateorex-PC | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 2015-09-06 03:26:51 | Computer Name = Mateorex-PC | Source = Service Control Manager | ID = 7009 Description = A timeout was reached (30000 milliseconds) while waiting for the Apache2.2 service to connect. Error - 2015-09-06 03:26:51 | Computer Name = Mateorex-PC | Source = Service Control Manager | ID = 7000 Description = The Apache2.2 service failed to start due to the following error: %%1053 Error - 2015-09-06 03:26:59 | Computer Name = Mateorex-PC | Source = Service Control Manager | ID = 7009 Description = A timeout was reached (30000 milliseconds) while waiting for the mysql service to connect. Error - 2015-09-06 03:26:59 | Computer Name = Mateorex-PC | Source = Service Control Manager | ID = 7000 Description = The mysql service failed to start due to the following error: %%1053 Error - 2015-09-06 03:27:13 | Computer Name = Mateorex-PC | Source = Service Control Manager | ID = 7024 Description = The AVGIDSAgent service terminated with service-specific error %%-536753635. Error - 2015-09-06 03:29:15 | Computer Name = Mateorex-PC | Source = Service Control Manager | ID = 7009 Description = A timeout was reached (30000 milliseconds) while waiting for the Usługa Google Update (gupdate) service to connect. Error - 2015-09-06 03:29:15 | Computer Name = Mateorex-PC | Source = Service Control Manager | ID = 7000 Description = The Usługa Google Update (gupdate) service failed to start due to the following error: %%1053 Error - 2015-09-06 03:51:40 | Computer Name = Mateorex-PC | Source = Microsoft-Windows-Kernel-Processor-Power | ID = 6 Description = Some processor performance power management features have been disabled due to a known firmware problem. Check with the computer manufacturer for updated firmware. Error - 2015-09-06 03:51:57 | Computer Name = Mateorex-PC | Source = atikmdag | ID = 52236 Description = CPLIB :: General - Invalid Parameter Error - 2015-09-06 03:51:57 | Computer Name = Mateorex-PC | Source = atikmdag | ID = 43029 Description = Display is not active < End of report >