OTL Extras logfile created on: 2016-03-28 01:14:28 - Run 1 OTL by OldTimer - Version 3.2.70.2 Folder = C:\Users\User\Downloads Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.18230) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,88 Gb Total Physical Memory | 2,36 Gb Available Physical Memory | 81,71% Memory free 5,36 Gb Paging File | 4,83 Gb Available in Paging File | 90,05% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files Drive C: | 110,35 Gb Total Space | 3,84 Gb Free Space | 3,48% Space Free | Partition Type: NTFS Computer Name: KP_109 | User Name: User | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\windows\winhlp32.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Unable to open value key File not found [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Unable to open value key hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htafile [open] -- "%1" %* htmlfile [edit] -- Reg Error: Unable to open value key htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Opera\launcher.exe" -noautoupdate -- "%1" https [open] -- "C:\Program Files\Opera\launcher.exe" -noautoupdate -- "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Unable to open value key scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Unable to open value key Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0BED77F1-AECB-4215-8F75-B16CE1115847}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{14DA364C-B6CA-412E-AE7C-9E5086C109E0}" = rport=2869 | protocol=6 | dir=out | app=system | "{194D772A-4FEF-4BBA-8269-B552FBE005D9}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{1E753C7B-E313-4611-BA59-C15F84977AC0}" = lport=2869 | protocol=6 | dir=in | app=system | "{213DE70A-352B-4AB5-8DC1-CEAAED6927DC}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{24A92589-8E88-4FDD-902F-05935C67CECA}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\google\chrome\application\chrome.exe | "{2DC0B1F3-2045-4D7E-AA67-6D20A034DF06}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{2E59D904-4378-4AAF-A550-353C1CE92780}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{32AA83E6-940F-444D-B22D-D53E821CA733}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{46F0ED84-905A-4C95-9C9B-6E0969BB724B}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{48599942-8EA1-473C-9920-63751E885F14}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework\v4.0.30319\smsvchost.exe | "{5461D83A-B0AF-4A4F-9425-CE4429E03E46}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{5F49958A-159B-4E4A-BFD2-4C82BF85E756}" = lport=137 | protocol=17 | dir=in | app=system | "{62B30079-8E0C-4C93-9706-FD0E3F958A8D}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{66FE4F1E-0D24-4C31-9B4A-B6B55FE5D271}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{73C93112-B9F3-4E66-A807-15275773219F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{7F137093-7A46-4C07-B88A-48BB1244023C}" = lport=2869 | protocol=6 | dir=in | app=system | "{8C0534BE-3C23-49AD-81FE-FC80783E83F0}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{991E3679-562A-4F5C-9DF5-43E1EFCEC0F3}" = rport=10243 | protocol=6 | dir=out | app=system | "{9C4B0E6F-BA20-4CB0-88A0-7C6FB5BB67F4}" = lport=10243 | protocol=6 | dir=in | app=system | "{9CE55ACD-066C-4296-850F-8D12A987D7A6}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{A453F3F1-7578-4944-9F48-B3CA4D5DA124}" = rport=137 | protocol=17 | dir=out | app=system | "{B5E3E8D5-D520-482F-8B47-379EA5FFE11E}" = lport=139 | protocol=6 | dir=in | app=system | "{CA73FD38-531B-448B-91A7-10EEF2ADC468}" = rport=138 | protocol=17 | dir=out | app=system | "{CF737A0B-0301-4D38-9D6B-F5407DE3EF8A}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{D5BD1C73-C757-4411-AB53-CEDEEE6BEAF8}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{D71E8C84-16B9-4EFE-8619-B2A5074272F6}" = lport=138 | protocol=17 | dir=in | app=system | "{DCD6730C-4E9E-47D3-BDF3-EB1F80677007}" = rport=139 | protocol=6 | dir=out | app=system | "{E0BACA21-8B89-49DE-B663-1596EE5B6964}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{E27070F3-8504-4CC1-97CF-B1B9436CC859}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{E9849DF1-EFF4-4F72-8480-654F626ED1FF}" = lport=445 | protocol=6 | dir=in | app=system | "{EFB7AE25-7651-4FEC-B859-0299F531496B}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{F8C5E2F1-7167-4B2D-95B3-59992301C920}" = rport=445 | protocol=6 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{003A6C5C-8BA6-40DB-8FD0-55A55CFE3C60}" = protocol=17 | dir=in | app=c:\program files\steam\steamapps\common\defy gravity\defygravity.exe | "{098F4E8A-DF69-4C4B-B48E-4343A1FE9BE1}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{0B264936-2C2C-4487-8CCC-5E4A1BB75FA2}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{0D191FAC-36D8-449A-B6AD-B959A77BCD30}" = dir=in | app=c:\program files\vmware\vmware player\vmware-authd.exe | "{14D93535-81BF-4BB5-BE24-BADF021ADF24}" = protocol=6 | dir=in | app=c:\program files\landesk\ldclient\tmcsvc.exe | "{1AC23064-22D8-4B41-AF3D-9D4B3B8E9BC5}" = protocol=6 | dir=in | app=c:\windows\system32\cba\pds.exe | "{1BA1C08F-5B2F-4AAB-BBC5-DC58360862D4}" = dir=in | app=c:\program files\andy\handyandy.exe | "{1DE7D3C1-6578-4AAF-9E73-3BCBA486E541}" = protocol=17 | dir=in | app=c:\gry\counter-strike 1.6 v43\hl.exe | "{1F4259F5-59B0-48C2-8EC1-FACB78EB3154}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{2310215E-76C0-473A-8620-2BB8912F5C41}" = protocol=17 | dir=in | app=c:\program files\landesk\shared files\residentagent.exe | "{24DD87F2-9A89-4180-AA68-3F817B3DE464}" = protocol=6 | dir=in | app=c:\gry\counter-strike 1.6 v43\hl.exe | "{25FCC5D7-4C76-487E-AE98-1559ECE02FDA}" = dir=out | app=c:\program files\andy\andy.exe | "{299E0386-853E-4FEC-BFE3-CBB5A9609D96}" = dir=out | app=c:\program files\andy\setupfiles\uninstall.exe | "{2AB42A7A-2951-42BF-846A-AE71C0B58480}" = protocol=17 | dir=in | app=c:\program files\landesk\ldclient\tmcsvc.exe | "{2FAE546F-480A-461A-A8AE-BE5AADB9149B}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{30E453CD-07D9-4E5E-8993-C9A363DF8BAE}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{36244C58-37F6-4D00-98A1-C94AF804261D}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{3656F2E3-60D7-42E2-B43F-2FC3BF412AA0}" = protocol=17 | dir=out | app=c:\users\user\appdata\roaming\utorrent\utorrent.exe | "{378EAA3D-703E-4EE8-BCB7-65C694CAB0A9}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{396F51B2-3659-41CA-9448-9DFB87A076B2}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version8\teamviewer_service.exe | "{3B98FBE2-8FD0-4994-A749-7AC23423096B}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe | "{3BF7FFF9-8675-4871-AAFC-1A4F36552D8B}" = protocol=6 | dir=in | app=c:\program files\steam\steam.exe | "{3D99C28C-B358-420E-8B33-083F3571F141}" = protocol=6 | dir=in | app=c:\program files\landesk\shared files\residentagent.exe | "{44820F09-C618-40BD-86C3-E9EECD66C9B8}" = dir=in | app=c:\program files\vmware\vmware player\vmware-authd.exe | "{44FFD967-DA87-4722-8AE0-EC9BBD684693}" = protocol=17 | dir=in | app=c:\program files\steam\steam.exe | "{4608A87E-A363-4BF1-A9E5-D7068BD76651}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{46D06AEB-0972-42FD-B0EE-A343F61FAD05}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{49CE7716-A7D7-4A08-94D6-FE31526A047B}" = dir=out | app=c:\users\user\appdata\local\temp\andy_46.2_x86\setup.exe | "{54A107B5-96AB-46AE-9E3E-048B8E7B082C}" = protocol=6 | dir=in | app=c:\program files\steam\steamapps\common\counter-strike global offensive\csgo.exe | "{5830EBD0-C4EA-43F8-BE51-5935E50E0035}" = protocol=17 | dir=in | app=c:\program files\steam\bin\steamwebhelper.exe | "{5DC3F36D-0F86-46C5-B757-E028CEF65FDA}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version8\teamviewer.exe | "{604725E1-A72C-4A65-A366-B40002E4C58E}" = protocol=6 | dir=in | app=c:\program files\steam\bin\steamwebhelper.exe | "{6A2B52E4-8D82-4315-B24C-36B90EE56B0B}" = protocol=17 | dir=in | app=c:\windows\system32\cba\pds.exe | "{6BAB6B9E-1F67-4931-939F-A55A325D7746}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{6E31459C-7EFE-447B-8223-FE913864F991}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version8\teamviewer.exe | "{6E4DBD67-E707-406D-8C62-4AFD8EEC7DA4}" = dir=in | app=c:\program files\windows live\contacts\wlcomm.exe | "{6E5DABB2-9E4F-4C38-9F1A-95D97E355E45}" = dir=in | app=c:\program files\cyberlink\powerdvd10\powerdvd10.exe | "{6F845B95-633C-47BD-A31B-6AA470D1EAFB}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version8\teamviewer_service.exe | "{74CAD8D8-A709-4A8A-ACB1-F7925F85338C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{752B16CE-E2B6-43BB-A38F-12C36E64DE32}" = dir=in | app=c:\program files\andy\andy.exe | "{75DF8C1C-46B1-404B-885C-BE71C2EA5FDB}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{798B4060-6F3E-45FD-9874-1704BCCEB6D1}" = dir=out | app=c:\program files\andy\handyandy.exe | "{79E80574-20B8-4401-ADBF-D552F3B07A22}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{7D4052C9-4C5D-4BEA-B28A-BBB6D8A8498C}" = protocol=17 | dir=in | app=c:\program files\steam\steamapps\common\unturned\unturned.exe | "{7FCBE34A-374A-4114-AB40-1DF9894BDDD5}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe | "{847560F2-41AC-45B1-B482-A1D7616C4212}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{8A3CFC88-E078-4340-A75D-F0215FF81891}" = protocol=6 | dir=out | app=c:\users\user\appdata\roaming\utorrent\utorrent.exe | "{8CBD4512-6848-4EAF-86C6-5AA2E023D1C2}" = protocol=6 | dir=out | app=system | "{90E87D8A-533E-4ADF-86A4-71C016D70CCF}" = dir=in | app=c:\program files\andy\setupfiles\uninstall.exe | "{91969FD5-8DEE-449A-A415-A868F9235F5A}" = protocol=17 | dir=in | app=c:\windows\system32\msgsys.exe | "{9559D0E7-A463-4C39-9455-2187808E7D5A}" = dir=out | app=c:\program files\andy\andyconsole.exe | "{9AD8E1AB-9E67-4734-8670-60CE493CF447}" = protocol=6 | dir=in | app=c:\program files\steam\steamapps\common\unturned\unturned.exe | "{9D18C6FF-951D-47B9-B34E-BEE467C4FF0B}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version8\teamviewer_service.exe | "{A2E4041D-F69B-4E84-B9B2-687D53AF562F}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version8\teamviewer.exe | "{A78CCCA0-7AE8-487E-ABC9-5BC0E7915A11}" = protocol=17 | dir=in | app=c:\users\user\appdata\roaming\utorrent\utorrent.exe | "{AEE81C45-939F-4707-9F92-529696C01F78}" = protocol=6 | dir=in | app=c:\users\user\appdata\roaming\utorrent\utorrent.exe | "{B11117B6-A8F0-4063-B936-344AC1C77B33}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{B1BB24BB-B710-4F36-893D-8141E1A7153A}" = protocol=6 | dir=in | app=c:\users\user\appdata\roaming\utorrent\utorrent.exe | "{BFB0FDCB-CC44-4306-AD69-A0D09F19370E}" = protocol=17 | dir=in | app=c:\users\user\appdata\roaming\utorrent\utorrent.exe | "{C0512E11-EE46-4544-A24A-AAE01A160DD9}" = protocol=6 | dir=in | app=c:\windows\system32\msgsys.exe | "{C0F83EDC-D3FD-41EA-9EC3-6526B3749965}" = protocol=17 | dir=in | app=c:\program files\steam\steamapps\common\counter-strike global offensive\csgo.exe | "{C6B9FE61-B4B5-40B9-8F68-C6F24B71CAF3}" = protocol=17 | dir=in | app=c:\program files\steam\steamapps\common\team fortress 2\hl2.exe | "{CD19C804-D960-4F29-9FD9-E8819993DA31}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{CE2CC5EA-A9E3-4E8D-8D80-5A81770F885F}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{D23C4A92-9C0A-433A-B39F-560E8C9F0B3F}" = protocol=6 | dir=in | app=c:\program files\steam\steamapps\common\team fortress 2\hl2.exe | "{D7E364C5-3E01-474D-A592-CA3AC6B72D38}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{D7E6956C-4E2B-431B-BF14-D758B2016A27}" = dir=in | app=c:\program files\andy\andyconsole.exe | "{DE987080-41FF-4EBB-A29F-A87143D55A9C}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version8\teamviewer_service.exe | "{E6519631-284F-4796-9579-31B34588C6AC}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 | "{ECB02DC4-1C31-406E-83D4-430B758EF080}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{F455E7D5-41D7-4B71-9102-9A4E08ECB975}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version8\teamviewer.exe | "{FDDFC0B3-AA82-4EEE-9297-FD7E8AF47B51}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{FE9F8052-63B0-4FFD-AECB-2BC579B20562}" = protocol=6 | dir=in | app=c:\program files\steam\steamapps\common\defy gravity\defygravity.exe | "TCP Query User{BCE8327C-514E-4C9D-BE8D-13636FBEEA13}C:\gry\counter-strike 1.6 v43\hl.exe" = protocol=6 | dir=in | app=c:\gry\counter-strike 1.6 v43\hl.exe | "UDP Query User{1ADCD30C-C0EB-463E-B2AB-1BB66C611BB3}C:\gry\counter-strike 1.6 v43\hl.exe" = protocol=17 | dir=in | app=c:\gry\counter-strike 1.6 v43\hl.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{03D562B5-C4E2-4846-A920-33178788BE00}" = Windows Live Communications Platform "{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements "{0DEA342C-15CB-4F52-97B6-06A9C4B9C06F}" = SDK "{0F929651-F516-4956-90F2-FFBD2CD5D30E}" = Photo Gallery "{0FF9CC94-EF23-401E-BDBD-37403D1A2B38}" = Windows Live SOXE Definitions "{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 "{13C96625-28E4-4c58-ADE0-CDAFC64752EB}" = JMicron 1394 Filter Driver "{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1 "{1BD2212B-8287-4F33-A6DC-903D423AB814}_is1" = Counter-Strike 1.6 v43 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}" = CyberLink Media Suite 10 "{207DA277-6A6D-4863-B535-129931D2BB21}" = Galeria fotografii "{26604C7E-A313-4D12-867F-7C6E7820BE4C}" = JMicron Flash Media Controller Driver "{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}" = CyberLink Power2Go 8 "{2F2363F9-102C-448B-8E3E-02FCFE78A28D}" = Movie Maker "{30500C7C-2206-3DC6-9792-96E95A04669D}" = Microsoft .NET Framework 4.6.1 "{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 "{3677D4D8-E5E0-49FC-B86E-06541CF00BBE}" = opensource "{379DA4C6-8C91-4F36-9D25-F08E8959E0DF}" = Poczta usługi Windows Live "{399C37FB-08AF-493B-BFED-20FBD85EDF7F}" = HP HD Webcam Driver "{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology "{45734758-4041-4EA8-8E62-DE661FC3879C}" = LANDesk(R) Common Base Agent 8 "{45898170-E68C-4F02-AA35-C2186BF347A3}" = Movie Maker "{46BC55A2-B4CE-46B5-8303-A2076B899505}" = Windows Live UX Platform Language Pack "{4862344A-A39C-4897-ACD4-A1BED5163C5A}" = CyberLink PhotoDirector "{4F4A4FBF-133D-460E-8617-6D48E0A2B4E4}" = Windows Live Writer Resources "{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module "{5454083B-1308-4485-BF17-1110000D8301}" = Grand Theft Auto IV "{59E4543A-D49D-4489-B445-473D763C79AF}" = Microsoft Games for Windows - LIVE Redistributable "{5A0EE0F0-E909-4F3B-B437-AAD9252427CB}" = Windows Live Installer "{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{6B6923B9-8719-425B-916C-CD2908F31AAF}" = Windows Live SOXE "{6E14E6D6-3175-4E1A-B934-CAB5A86367CD}" = HP Postscript Converter "{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.1.2.0 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{74224F8D-4A17-4816-9EDB-7BB854DE532C}" = NVIDIA PhysX v8.04.25 "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{7E8833A1-AF24-4CAE-82DF-CFE14C14B94D}" = LANDesk Advance Agent "{8256F87F-8554-4457-8C3D-3F3324697D9F}" = Windows Live ID Sign-in Assistant "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{840021F2-FFC0-467A-BF85-29B8B7803717}" = HP ESU for Microsoft Windows 7 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.6.1 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Microsoft .NET Framework 4.6.1 (Polski) "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{99A8BBCF-F816-3ADD-B8D1-540FB9B3796B}" = Microsoft .NET Framework 4.6.1 (PLK) "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9CCB0E64-1111-4D5A-BA2C-2B293205CE76}" = Validity Fingerprint Sensor Driver "{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}" = Broadcom Bluetooth Software "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{B175520C-86A2-35A7-8619-86DC379688B9}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 "{B91A4732-5EDB-4493-94A2-03D53FBB1856}" = SecureDisable Client "{BCED7487-44BC-487C-94CF-824AB27909E0}" = Intel® Trusted Connect Service Client "{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 "{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Atheros Driver Installation Program "{C4E9E8A4-EEC4-4F9E-B140-520A8B75F430}" = HP System Default Settings "{C6B0EE9E-2128-4448-B7AE-5E2B46E0F0E7}" = Windows Live Photo Common "{C97CC14E-4789-4FC5-BC75-79191F7CE009}" = HP Hotkey Support "{CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}" = HP Auto "{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware "{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}" = GTA San Andreas "{D604900F-A275-416C-AF9D-CDEDF58B72DB}" = Windows Live Mail "{D8E4163F-7ED2-429A-B8C5-C7CE5B797831}" = Windows Live MIME IFilter "{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E3445598-4424-4EE2-B71C-C23325F7FB71}" = Windows Live PIMT Platform "{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio "{E452E727-86B8-4233-8CC3-41FD817AFAFF}" = VMware Player "{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 "{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module "{EFBCA571-617D-484A-9ECA-E301BB6D0750}" = Windows Live Writer "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F0E58739-2B4C-498F-9B0D-FF0F2FD52B61}" = Windows Live UX Platform "{F24F876B-7D71-4BD6-88E9-614D3BB84228}" = Alcor Micro Smart Card Reader Driver "{f65db027-aff3-4070-886a-0d87064aabb1}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 "{F6F30C28-38AA-4DBA-AE0B-7E30238E61BB}" = Junk Mail filter update "{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 "{F99FC179-EA67-4BBC-8955-BDDA0CB94B88}" = VMware VIX "{FA12037C-B6FA-4825-86BC-D58AA6A9CC24}" = Podstawowe programy Windows Live "{FBA73805-0F67-428B-8E4F-FAE16A452685}" = Photo Common "{FC965A47-4839-40CA-B618-18F486F042C6}" = Skype™ 7.18 "{FCB3772C-B7D0-4933-B1A9-3707EBACC573}" = Intel(R) OpenCL CPU Runtime "Adobe Flash Player ActiveX" = Adobe Flash Player 19 ActiveX "Adobe Flash Player NPAPI" = Adobe Flash Player 19 NPAPI "Adobe Flash Player PPAPI" = Adobe Flash Player 19 PPAPI "Adobe Shockwave Player" = Adobe Shockwave Player 12.1 "Alex Gordon_is1" = Alex Gordon "Andy OS" = Andy OS "AppHelper" = AppHelper "AutoHotkey" = AutoHotkey 1.0.48.05 "CCleaner" = CCleaner "CPUID CPU-Z_is1" = CPUID CPU-Z 1.75 "DAEMON Tools Lite" = DAEMON Tools Lite "ESET Online Scanner" = ESET Online Scanner v3 "Google Chrome" = Google Chrome "InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}" = CyberLink Media Suite 10 "InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}" = CyberLink Power2Go 8 "InstallShield_{4862344A-A39C-4897-ACD4-A1BED5163C5A}" = CyberLink PhotoDirector "InstallShield_{B91A4732-5EDB-4493-94A2-03D53FBB1856}" = SecureDisable Client "InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 2.2.1.1043 "NSS" = Norton Security Scan "Origin" = Origin "Pluto TV_is1" = Pluto TV version 0.1.5 "PROSet" = Intel(R) Network Connections Drivers "PunkBusterSvc" = PunkBuster Services "Software Informer_is1" = Software Informer 1.4.1303.0 "Steam" = Steam "Steam App 304930" = Unturned "Steam App 730" = Counter-Strike: Global Offensive "Steam App 96100" = Defy Gravity "SWIHPDrvInstaller" = Sierra Wireless (HP un2430) Mobile Broadband Driver Package "SynTPDeinstKey" = Synaptics Pointing Device Driver "SZCCID" = Alcor Micro Smart Card Reader Driver "Szkoła na miarę, klasa 2, semestr 2" = Szkoła na miarę, klasa 2, semestr 2 "TeamViewer 8 Host" = TeamViewer 8 Host "WinLiveSuite" = Podstawowe programy Windows Live "WinRAR archiver" = WinRAR 5.21 (32-bit) [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "DarkEra" = DarkEra "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2016-03-27 18:50:35 | Computer Name = KP_109 | Source = vmauthd | ID = 1000 Description = 2016-03-28T00:50:35.898+02:00| vthread-5| E105: Cannot find perfmon object in array returned by perfDLL, index=0 Error - 2016-03-27 18:50:37 | Computer Name = KP_109 | Source = Microsoft-Windows-LoadPerf | ID = 3001 Description = Występująca w rejestrze wartość ciągu nazwy licznika wydajności jest niepoprawnie sformatowana. Wadliwie sformułowany ciąg to WMI Objects. Pierwszy wpis DWORD w sekcji danych (Data) zawiera wartość indeksu wadliwie sformułowanego ciągu, a drugi i trzeci wpis DWORD w sekcji danych zawiera ostatnie prawidłowe wartości indeksu. Error - 2016-03-27 18:52:08 | Computer Name = KP_109 | Source = WinMgmt | ID = 10 Description = Error - 2016-03-27 18:52:17 | Computer Name = KP_109 | Source = vmauthd | ID = 1000 Description = 2016-03-28T00:52:17.361+02:00| vthread-5| E105: Cannot find perfmon object in array returned by perfDLL, index=0 Error - 2016-03-27 18:52:18 | Computer Name = KP_109 | Source = Microsoft-Windows-LoadPerf | ID = 3001 Description = Występująca w rejestrze wartość ciągu nazwy licznika wydajności jest niepoprawnie sformatowana. Wadliwie sformułowany ciąg to WMI Objects. Pierwszy wpis DWORD w sekcji danych (Data) zawiera wartość indeksu wadliwie sformułowanego ciągu, a drugi i trzeci wpis DWORD w sekcji danych zawiera ostatnie prawidłowe wartości indeksu. Error - 2016-03-27 18:53:53 | Computer Name = KP_109 | Source = Microsoft-Windows-LoadPerf | ID = 3001 Description = Występująca w rejestrze wartość ciągu nazwy licznika wydajności jest niepoprawnie sformatowana. Wadliwie sformułowany ciąg to WMI Objects. Pierwszy wpis DWORD w sekcji danych (Data) zawiera wartość indeksu wadliwie sformułowanego ciągu, a drugi i trzeci wpis DWORD w sekcji danych zawiera ostatnie prawidłowe wartości indeksu. Error - 2016-03-27 18:57:54 | Computer Name = KP_109 | Source = WinMgmt | ID = 10 Description = Error - 2016-03-27 19:00:01 | Computer Name = KP_109 | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Users\User\Downloads\shmnview-x64\shmnview.exe". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="Win32",version="6.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2016-03-27 19:00:02 | Computer Name = KP_109 | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Users\User\Downloads\shmnview-x64\shmnview.exe". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="Win32",version="6.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2016-03-27 19:00:26 | Computer Name = KP_109 | Source = Microsoft-Windows-LoadPerf | ID = 3001 Description = Występująca w rejestrze wartość ciągu nazwy licznika wydajności jest niepoprawnie sformatowana. Wadliwie sformułowany ciąg to WMI Objects. Pierwszy wpis DWORD w sekcji danych (Data) zawiera wartość indeksu wadliwie sformułowanego ciągu, a drugi i trzeci wpis DWORD w sekcji danych zawiera ostatnie prawidłowe wartości indeksu. [ HP HotKey Support Events ] Error - 2014-10-03 13:00:05 | Computer Name = KP_109 | Source = HPHotkeyMonitor | ID = 5 Description = 2014/10/03 19:00:05.136|00000998|Error |WmiEvent::Register|ExecNotificationQueryAsync failed: 0x8004100A Error - 2015-06-07 01:42:46 | Computer Name = KP_109 | Source = HPHotkeyMonitor | ID = 5 Description = 2015/06/07 07:42:46.153|00000A44|Error |WmiEvent::Register|ExecNotificationQueryAsync failed: 0x8004100A Error - 2015-08-11 10:33:39 | Computer Name = KP_109 | Source = HPHotkeyMonitor | ID = 5 Description = 2015/08/11 16:33:39.871|00000A70|Error |WmiEvent::Register|ExecNotificationQueryAsync failed: 0x8004100A [ HP Software Framework Events ] Error - 2016-02-24 03:27:22 | Computer Name = KP_109 | Source = CaslSmBios | ID = 5 Description = 2016-02-24 08:27:22.297|00000E04|Error |[CaslSmBios]hpSMBIOS::D{bool(byte[]&)}|Out of memory [ System Events ] Error - 2016-03-27 19:13:46 | Computer Name = KP_109 | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2016-03-27 19:13:46 | Computer Name = KP_109 | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2016-03-27 19:13:46 | Computer Name = KP_109 | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2016-03-27 19:13:46 | Computer Name = KP_109 | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2016-03-27 19:15:23 | Computer Name = KP_109 | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2016-03-27 19:15:23 | Computer Name = KP_109 | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2016-03-27 19:15:23 | Computer Name = KP_109 | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2016-03-27 19:15:23 | Computer Name = KP_109 | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2016-03-27 19:15:23 | Computer Name = KP_109 | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2016-03-27 19:15:23 | Computer Name = KP_109 | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 < End of report >