OTL Extras logfile created on: 2011-08-17 19:55:30 - Run 2 OTL by OldTimer - Version 3.2.26.4 Folder = C:\Users\Joanna\Desktop Windows Vista Home Premium Edition (Version = 6.0.6000) - Type = NTWorkstation Internet Explorer (Version = 7.0.6000.17037) Locale: 00000415 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd 3.00 Gb Total Physical Memory | 1.41 Gb Available Physical Memory | 47.19% Memory free 6.17 Gb Paging File | 4.55 Gb Available in Paging File | 73.77% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 172.69 Gb Total Space | 77.25 Gb Free Space | 44.73% Space Free | Partition Type: NTFS Drive D: | 100.00 Mb Total Space | 64.18 Mb Free Space | 64.18% Space Free | Partition Type: NTFS Drive E: | 195.31 Gb Total Space | 172.15 Gb Free Space | 88.14% Space Free | Partition Type: NTFS Drive F: | 95.41 Gb Total Space | 79.64 Gb Free Space | 83.47% Space Free | Partition Type: NTFS Drive J: | 22.19 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS Computer Name: KAMIL-PC | User Name: Joanna | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software) .url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l [HKEY_USERS\S-1-5-21-2620197854-1719786493-1418023469-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{19C137CF-3B5D-4AA1-9DE5-DC2962A433FD}" = rport=445 | protocol=6 | dir=out | app=system | "{2DA4AAA1-C361-4C04-BF5D-94DC42F76D81}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{31A3E91E-01D2-4696-8C59-2651CE000E46}" = rport=137 | protocol=17 | dir=out | app=system | "{372D9978-BC39-4EA1-A923-BB0717A5DB83}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office12\outlook.exe | "{37BA3980-FC71-4601-BF31-B790A0412E43}" = lport=445 | protocol=6 | dir=in | app=system | "{3B41A8C5-C665-4DD8-B106-F938887A172F}" = rport=139 | protocol=6 | dir=out | app=system | "{66EC1322-0746-46E4-B014-63B40CE7ADA3}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{6DFF2335-06B1-49A9-BC6C-B984A6F4363E}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{7EE6A67D-F216-4F15-B0CE-BDFFD297B672}" = lport=137 | protocol=17 | dir=in | app=system | "{9EB259AD-D881-41D6-A193-E77488502467}" = lport=138 | protocol=17 | dir=in | app=system | "{A6AD9275-A3BD-4925-9445-D9D592E0470C}" = rport=138 | protocol=17 | dir=out | app=system | "{A744D550-79C2-4120-A12C-EF9EDE046972}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{AEAD133D-98DC-4908-80C4-6DCD3A235F06}" = lport=139 | protocol=6 | dir=in | app=system | "{FA8DE37E-8F0D-4571-B7EB-A61E9CBA228B}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{FCF07862-DB48-472F-98DA-96CA161CB44D}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{01EEC800-8323-4956-AED1-9F5CC47A8546}" = protocol=17 | dir=in | app=c:\windows\system32\lxdxcfg.exe | "{0D6FDC66-E6FF-40E1-BD40-CAD3C8FB7D00}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "{1D197D28-CFEA-4F0E-B971-8ED36EB40BB4}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{1F357655-975D-4FE7-AC05-1B00456F21E9}" = protocol=17 | dir=in | app=c:\program files\lexmark 3600-4600 series\frun.exe | "{255F9F77-0B74-4129-B942-03F7BA5BF157}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{387786BA-B304-4E8F-91B3-8943D8421E33}" = protocol=17 | dir=in | app=c:\program files\lexmark 3600-4600 series\lxdxmon.exe | "{4184044D-7EAF-46BF-AE11-507B82C82AAC}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{42E37B49-66BD-4CA1-A051-D2366EA30AD3}" = protocol=17 | dir=in | app=c:\program files\lexmark 3600-4600 series\lxdxamon.exe | "{45B91EB1-768B-42EF-8203-31825F89B183}" = protocol=17 | dir=in | app=c:\windows\system32\lxdxcoms.exe | "{45BBC184-0890-407D-88BB-270B22132FE5}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{465C8DA2-B64C-445D-A9CF-F450B84907B5}" = protocol=17 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\lxdxjswx.exe | "{4A26396C-3337-48CF-B3BA-417E62DD4E7F}" = protocol=6 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\lxdxpswx.exe | "{5174D031-7833-4B4D-814B-2C673C955F40}" = protocol=6 | dir=in | app=c:\program files\proxy switcher standard\proxyswitcher.exe | "{56D02481-BCE5-46E8-A24C-4C88A1DF11B2}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{59D8C449-FAC3-4973-8893-6E04D6EF9798}" = protocol=6 | dir=in | app=c:\program files\lexmark 3600-4600 series\lxdxmon.exe | "{5B12D523-FB4E-42F1-A7CC-A6625A33439D}" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe | "{5CD5DD23-2FB0-41F3-BC2F-B4209AF1FEF8}" = protocol=6 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\lxdxwbgw.exe | "{5E4E86B5-1DC3-4D23-B59D-5409A216F45E}" = protocol=17 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\lxdxtime.exe | "{666A34C7-06C5-41B5-9A18-728773037B69}" = protocol=6 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\lxdxtime.exe | "{7E53D085-1357-44E4-93E6-35F4399D5E01}" = protocol=6 | dir=in | app=c:\windows\system32\lxdxcoms.exe | "{89F59A59-7FE0-44AC-A307-41E8987C0275}" = protocol=6 | dir=in | app=c:\windows\system32\lxdxcoms.exe | "{92CBEA6E-0AB4-4AA7-8A37-B4C9CEAAE561}" = protocol=17 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\lxdxpswx.exe | "{933A48EA-F053-4BCE-B07B-54BB3DDA5B70}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{99F1A69A-271E-4104-B34B-C38E1224818E}" = protocol=6 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\lxdxjswx.exe | "{A717CAE7-A542-43D1-91F9-DB31D4A6094D}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{B3A61CF3-5BE1-4B6B-870C-9561DED8FEE9}" = protocol=17 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\lxdxwbgw.exe | "{BF23818D-CB10-41DF-A2F1-248E5723E3C6}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "{D59209DD-CF59-4F85-9615-BF28B6689EE2}" = protocol=17 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\lxdxpswx.exe | "{D6836273-C5B9-4D39-96D8-760246E45747}" = protocol=17 | dir=in | app=c:\program files\proxy switcher standard\proxyswitcher.exe | "{EC126DCF-2334-46B5-8560-675F475B5703}" = protocol=6 | dir=in | app=c:\windows\system32\lxdxcfg.exe | "{EECCB1C2-D293-466A-930A-0DAA02AAF698}" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe | "{EFF68419-9B86-4F3A-8F3F-5C4F236484B5}" = protocol=17 | dir=in | app=c:\windows\system32\lxdxcoms.exe | "{F41A826D-5791-441A-BF6F-5A013AAB9DDE}" = protocol=6 | dir=in | app=c:\program files\lexmark 3600-4600 series\lxdxamon.exe | "{F5AE3942-5487-4ABA-8082-2EA6149F9D6A}" = protocol=6 | dir=in | app=c:\program files\lexmark 3600-4600 series\frun.exe | "{FBD32EBD-E0F2-4A02-9E33-55CD3687C3F0}" = protocol=6 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\lxdxpswx.exe | "TCP Query User{019548EC-0CA0-4564-B4B7-BFDC534E4696}C:\valve\hl.exe" = protocol=6 | dir=in | app=c:\valve\hl.exe | "TCP Query User{09F06A36-FDA4-4791-A32B-C5C59A38F530}C:\program files\nowe gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "TCP Query User{41CFA9E2-C16D-45B1-9E1E-AF8F5D1A01DB}C:\program files\lexmark 3600-4600 series\lxdxlscn.exe" = protocol=6 | dir=in | app=c:\program files\lexmark 3600-4600 series\lxdxlscn.exe | "TCP Query User{483FCFB1-780B-4459-8394-D02AD2ED11E5}C:\program files\lexmark 3600-4600 series\lxdxmon.exe" = protocol=6 | dir=in | app=c:\program files\lexmark 3600-4600 series\lxdxmon.exe | "TCP Query User{5D437837-3A8E-465B-8E8F-3F1CE24AE7D2}C:\valve\hl.exe" = protocol=6 | dir=in | app=c:\valve\hl.exe | "TCP Query User{6B005D7D-5838-4CFF-ADAC-170DE93F2F59}C:\users\joanna\desktop\programy\ubisoft\heroes of might and magic v - dzikie hordy\bin\h5_game.exe" = protocol=6 | dir=in | app=c:\users\joanna\desktop\programy\ubisoft\heroes of might and magic v - dzikie hordy\bin\h5_game.exe | "TCP Query User{77DF793E-FF48-47D7-B6E3-4A994E47CBEC}C:\windows\explorer.exe" = protocol=6 | dir=in | app=c:\windows\explorer.exe | "TCP Query User{795AAC7F-5557-490A-ABE1-FC32054F4007}C:\program files\nero\nero 7\nero mediahome\nmmediaserver.exe" = protocol=6 | dir=in | app=c:\program files\nero\nero 7\nero mediahome\nmmediaserver.exe | "TCP Query User{7D80C322-AB10-4ABB-A57B-D5318F0AF0A5}C:\program files\lexmark 3600-4600 series\lxdxlscn.exe" = protocol=6 | dir=in | app=c:\program files\lexmark 3600-4600 series\lxdxlscn.exe | "TCP Query User{99093DF5-6379-41D1-87EA-CA6023A0D2F4}C:\users\joanna\desktop\ubisoft\heroes of might and magic v - dzikie hordy\bin\h5_game.exe" = protocol=6 | dir=in | app=c:\users\joanna\desktop\ubisoft\heroes of might and magic v - dzikie hordy\bin\h5_game.exe | "TCP Query User{B94F83A1-6A41-4C7C-A931-CA5761DAE2AB}C:\program files\microsoft office\office12\groove.exe" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "TCP Query User{C87987F0-565A-470D-B624-14CCED8A4B17}C:\windows\explorer.exe" = protocol=6 | dir=in | app=c:\windows\explorer.exe | "TCP Query User{F6DBF32A-CFD7-4508-AE51-AA210CDA87F9}C:\program files\nowe gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "UDP Query User{08A7A300-80C4-470B-AF24-AE2EBF42CE17}C:\windows\explorer.exe" = protocol=17 | dir=in | app=c:\windows\explorer.exe | "UDP Query User{0CFCC1EF-5B1A-495D-9FE6-F2A75777E242}C:\program files\lexmark 3600-4600 series\lxdxlscn.exe" = protocol=17 | dir=in | app=c:\program files\lexmark 3600-4600 series\lxdxlscn.exe | "UDP Query User{2F02EA46-FAC1-49E7-A718-CE827D389749}C:\program files\nowe gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "UDP Query User{33BDCC6E-2F96-4B16-BFCC-D62CCED9A332}C:\program files\nowe gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "UDP Query User{3BDF1D2D-9049-469A-9557-E5965A7405AF}C:\users\joanna\desktop\programy\ubisoft\heroes of might and magic v - dzikie hordy\bin\h5_game.exe" = protocol=17 | dir=in | app=c:\users\joanna\desktop\programy\ubisoft\heroes of might and magic v - dzikie hordy\bin\h5_game.exe | "UDP Query User{3DEB9499-C74A-40B0-A8F8-1006B99123AA}C:\program files\nero\nero 7\nero mediahome\nmmediaserver.exe" = protocol=17 | dir=in | app=c:\program files\nero\nero 7\nero mediahome\nmmediaserver.exe | "UDP Query User{4EAB54C7-F864-45B0-92E2-ED03C023464E}C:\users\joanna\desktop\ubisoft\heroes of might and magic v - dzikie hordy\bin\h5_game.exe" = protocol=17 | dir=in | app=c:\users\joanna\desktop\ubisoft\heroes of might and magic v - dzikie hordy\bin\h5_game.exe | "UDP Query User{5063976C-8617-4412-8443-3AC0765F87BD}C:\program files\lexmark 3600-4600 series\lxdxlscn.exe" = protocol=17 | dir=in | app=c:\program files\lexmark 3600-4600 series\lxdxlscn.exe | "UDP Query User{7555B8A5-EAF5-45A3-B15A-CC003ACF48F6}C:\windows\explorer.exe" = protocol=17 | dir=in | app=c:\windows\explorer.exe | "UDP Query User{7ABE8764-6813-450F-8AA9-D89FA7C34003}C:\valve\hl.exe" = protocol=17 | dir=in | app=c:\valve\hl.exe | "UDP Query User{89378BE2-930D-454B-A856-51A6438ACBDD}C:\program files\lexmark 3600-4600 series\lxdxmon.exe" = protocol=17 | dir=in | app=c:\program files\lexmark 3600-4600 series\lxdxmon.exe | "UDP Query User{A7ECED80-30B9-43B7-85A2-43F194F1481B}C:\program files\microsoft office\office12\groove.exe" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "UDP Query User{DCAD08DC-5BD7-450F-81F1-BC93EA898BE7}C:\valve\hl.exe" = protocol=17 | dir=in | app=c:\valve\hl.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{07300F01-89CA-4CF8-92BD-2A605EB83C95}" = EasySaver B8.1224.1 "{09F55516-AC75-43EA-8127-292E5A28B7DF}" = Monster Trux Extreme - Offroad Edition "{26A24AE4-039D-4CA4-87B4-2F83216024FF}" = Java(TM) 6 Update 26 "{3D3E663D-4E7E-4577-A560-7ECDDD45548A}" = PVSonyDll "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4C0A8D65-4286-4B58-87FE-18AD24289285}" = NVIDIA Performance Drivers "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{758A4269-70E5-4B11-B419-F692882408A9}" = Gothic "{7AC15160-A49B-4A89-B181-D4619C025FFF}" = Samsung Samples Installer "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8169 8168 8101E 8102E Ethernet Driver "{8CC5833C-418A-40BB-9B16-D8F26B606BF5}" = ESET NOD32 Antivirus "{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}" = TomTom HOME Visual Studio Merge Modules "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{E9EA2604-8AC9-47D2-8F4B-6BF60787A357}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581) "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{9370105C-71BB-4FF9-A85B-36D79B95457A}_is1" = ALLConverter PRO 1.1 "{94B4E2D8-A184-415C-BF9E-F699D76466BD}" = Heroes of Might and Magic IV - Z³ota Edycja "{AC76BA86-7AD7-1045-7B44-A94000000001}" = Adobe Reader 9.4.5 - Polish "{BD49141C-188C-4B75-9F46-C2C42F2D1033}" = Nero 7 Essentials "{C0698BDA-0D29-40EE-8570-A31106DF9AB1}" = Medieval II Total War "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}" = GTA San Andreas "{DD401D5B-35E2-4EA4-8585-4A44CB2DCC78}" = Jade Empire "{EBA29752-DDD2-4B62-B2E3-9841F92A3E3A}" = Samsung PC Studio 3 USB Driver Installer "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F4F4F84E-804F-4E9A-84D7-C34283F0088F}" = RealUpgrade 1.0 "3554AA4B-9B0B-451a-A269-2B5F53982209_is1" = ThreatFire "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "ALLPlayer_is1" = ALLPlayer V4.X "blueconnect" = blueconnect "CCleaner" = CCleaner (remove only) "Digital Editions" = Adobe Digital Editions "ENTERPRISE" = Microsoft Office Enterprise 2007 "Eset NOD32 v3.0.642 FiX1.2 by TemDono_is1" = NOD32 v3.0.642 FiX1.2 by TemDono (31 days remaining forever up "ESET Online Scanner" = ESET Online Scanner v3 "EVEREST Home Edition_is1" = EVEREST Home Edition v2.20 "Internet Download Manager" = Internet Download Manager "Lexmark 3600-4600 Series" = Lexmark 3600-4600 Series "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware wersja 1.51.1.1800 "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "MKV Player_is1" = MKV Player 2.0 "Mozilla Firefox 4.0.1 (x86 pl)" = Mozilla Firefox 4.0.1 (x86 pl) "Mp3 Knife_is1" = Mp3 Knife 3.0 "Nowe Gadu-Gadu" = Nowe Gadu-Gadu "NVIDIA Display Control Panel" = NVIDIA Display Control Panel "NVIDIA Drivers" = NVIDIA Drivers "Opera 11.50.1074" = Opera 11.50 "Rapid Express_is1" = Rapid Express "RealPlayer 12.0" = RealPlayer "Samsung Mobile phone USB driver" = Samsung Mobile phone USB driver Software "SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software "SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software "SpeedFan" = SpeedFan (remove only) "TomTom HOME" = TomTom HOME 2.7.6.2056 "Winamp" = Winamp "WinPcapInst" = WinPcap 4.1 beta2 "WinRAR archiver" = WinRAR archiver [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2620197854-1719786493-1418023469-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Ad-Remover" = Ad-Remover "Winamp Detect" = Detektor Winampa [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2011-01-02 10:39:04 | Computer Name = Kamil-PC | Source = Application Error | ID = 1000 Description = Faulting application H5_Game.exe, version 3.0.1.143, time stamp 0x46f4990a, faulting module d3dx9_25.dll, version 6.0.6000.16386, time stamp 0x4549bdc9, exception code 0xc0000135, fault offset 0x00008fc7, process id 0x2b4, application start time 0x01cbaa8acc9f1c17. Error - 2011-01-03 11:07:51 | Computer Name = Kamil-PC | Source = Application Error | ID = 1000 Description = Faulting application h5_game_www[1].przeklej.pl.exe, version 1.2.0.12, time stamp 0x44bdf511, faulting module UbiStats.dll, version 6.0.6000.16386, time stamp 0x4549bdc9, exception code 0xc0000135, fault offset 0x00008fc7, process id 0xae8, application start time 0x01cbab57f5b973bf. Error - 2011-01-03 11:11:30 | Computer Name = Kamil-PC | Source = Application Error | ID = 1000 Description = Faulting application h5_game_www[1].przeklej.pl.exe, version 1.2.0.12, time stamp 0x44bdf511, faulting module d3dx9_25.dll, version 6.0.6000.16386, time stamp 0x4549bdc9, exception code 0xc0000135, fault offset 0x00008fc7, process id 0x8c0, application start time 0x01cbab586c91f39f. Error - 2011-01-03 11:11:35 | Computer Name = Kamil-PC | Source = Application Error | ID = 1000 Description = Faulting application h5_game_www[1].przeklej.pl.exe, version 1.2.0.12, time stamp 0x44bdf511, faulting module d3dx9_25.dll, version 6.0.6000.16386, time stamp 0x4549bdc9, exception code 0xc0000135, fault offset 0x00008fc7, process id 0xae8, application start time 0x01cbab5881b83a4f. Error - 2011-01-03 11:11:46 | Computer Name = Kamil-PC | Source = Application Error | ID = 1000 Description = Faulting application h5_game_www[1].przeklej.pl.exe, version 1.2.0.12, time stamp 0x44bdf511, faulting module d3dx9_25.dll, version 6.0.6000.16386, time stamp 0x4549bdc9, exception code 0xc0000135, fault offset 0x00008fc7, process id 0xdd0, application start time 0x01cbab58885afd1f. Error - 2011-01-03 11:12:03 | Computer Name = Kamil-PC | Source = Application Error | ID = 1000 Description = Faulting application H5_Game.exe, version 3.0.1.143, time stamp 0x46f4990a, faulting module d3dx9_25.dll, version 6.0.6000.16386, time stamp 0x4549bdc9, exception code 0xc0000135, fault offset 0x00008fc7, process id 0x474, application start time 0x01cbab588c2cc59f. Error - 2011-01-03 11:16:56 | Computer Name = Kamil-PC | Source = Application Error | ID = 1000 Description = Faulting application h5_game_www[1].przeklej.pl.exe, version 1.2.0.12, time stamp 0x44bdf511, faulting module d3dx9_25.dll, version 6.0.6000.16386, time stamp 0x4549bdc9, exception code 0xc0000135, fault offset 0x00008fc7, process id 0xd80, application start time 0x01cbab5925e0ea9f. Error - 2011-01-03 11:40:30 | Computer Name = Kamil-PC | Source = Application Error | ID = 1000 Description = Faulting application h5_game_www[1].przeklej.pl.exe, version 1.2.0.12, time stamp 0x44bdf511, faulting module h5_game_www[1].przeklej.pl.exe, version 1.2.0.12, time stamp 0x44bdf511, exception code 0xc0000005, fault offset 0x0074443b, process id 0x748, application start time 0x01cbab5c8b07f7df. Error - 2011-01-03 15:32:26 | Computer Name = Kamil-PC | Source = Application Error | ID = 1000 Description = Faulting application h5_game_www[1].przeklej.pl.exe, version 1.2.0.12, time stamp 0x44bdf511, faulting module h5_game_www[1].przeklej.pl.exe, version 1.2.0.12, time stamp 0x44bdf511, exception code 0xc0000005, fault offset 0x0074443b, process id 0xe20, application start time 0x01cbab7cf1ade170. Error - 2011-01-04 13:52:07 | Computer Name = Kamil-PC | Source = EventSystem | ID = 4621 Description = [ Media Center Events ] Error - 2011-04-07 15:04:05 | Computer Name = Kamil-PC | Source = MCUpdate | ID = 0 Description = DownloadPackgeTask.SubTasksComplete: failed downloading package SportsSchedule. Error - 2011-06-03 00:16:37 | Computer Name = Kamil-PC | Source = MCUpdate | ID = 0 Description = DownloadPackgeTask.SubTasksComplete: failed downloading package SportsSchedule. [ System Events ] Error - 2011-08-16 08:32:32 | Computer Name = Kamil-PC | Source = Service Control Manager | ID = 7009 Description = Error - 2011-08-16 08:32:32 | Computer Name = Kamil-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2011-08-16 08:48:46 | Computer Name = Kamil-PC | Source = EventLog | ID = 6008 Description = The previous system shutdown at 2:41:52 PM on 8/16/2011 was unexpected. Error - 2011-08-16 08:50:25 | Computer Name = Kamil-PC | Source = Service Control Manager | ID = 7009 Description = Error - 2011-08-16 08:50:25 | Computer Name = Kamil-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2011-08-16 15:58:35 | Computer Name = Kamil-PC | Source = Service Control Manager | ID = 7009 Description = Error - 2011-08-16 15:58:35 | Computer Name = Kamil-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2011-08-17 07:52:41 | Computer Name = Kamil-PC | Source = DCOM | ID = 10010 Description = Error - 2011-08-17 07:55:28 | Computer Name = Kamil-PC | Source = Service Control Manager | ID = 7009 Description = Error - 2011-08-17 07:55:28 | Computer Name = Kamil-PC | Source = Service Control Manager | ID = 7000 Description = < End of report >