OTL Extras logfile created on: 2012-05-08 17:52:01 - Run 2 OTL by OldTimer - Version 3.2.42.1 Folder = D:\pobieranie\antyviry Windows Vista Business Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.19019) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,96 Gb Total Physical Memory | 1,06 Gb Available Physical Memory | 54,33% Memory free 4,15 Gb Paging File | 3,02 Gb Available in Paging File | 72,75% Paging File free Paging file location(s): ?:\pagefile.sys %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 34,22 Gb Total Space | 10,38 Gb Free Space | 30,35% Space Free | Partition Type: NTFS Drive D: | 108,97 Gb Total Space | 19,18 Gb Free Space | 17,60% Space Free | Partition Type: NTFS Unable to calculate disk information. Computer Name: KAROL-PC | User Name: Karol | Logged in as Administrator. Cannot determine boot mode. | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) .pif [@ = piffile] -- "%1" %*" [HKEY_USERS\S-1-5-21-4147116487-3812305546-1671030645-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation) https [open] -- "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %*" regfile [merge] -- Reg Error: Key error. scrfile [config] -- Reg Error: Key error. scrfile [install] -- Reg Error: Key error. scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [ChomikBox.Upload] -- "C:\Program Files\ChomikBox\\ChomikBox.exe" -u"%1" ( ) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "UacDisableNotify" = 1 "InternetSettingsDisableNotify" = 1 "AutoUpdateDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore] "DisableSR" = 0 "DisableConfig" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{03BD02D2-1E80-410F-8BDC-D79673113A7D}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework\v4.0.30319\smsvchost.exe | "{18820E27-D328-406B-9B33-4784141BB6C4}" = lport=10243 | protocol=6 | dir=in | app=system | "{3C3113EB-E233-4974-8393-3AC78E5C60E4}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{5BFA53F1-0201-42EF-8E75-1CC1D6A2F4EB}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{7C808B85-FF54-42BF-ABCC-BA15F27F5BE3}" = rport=10243 | protocol=6 | dir=out | app=system | "{934EE953-6EB3-481E-B188-7D9AA91DEB1D}" = lport=2869 | protocol=6 | dir=in | app=system | "{A823DAD8-1DAB-4B1A-B64E-8032BF816143}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | "{A8903774-EC5B-4C04-980E-C8184840E2CC}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{AB6AF26F-FB39-43FA-8100-1573132A4B16}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{AD3ED17C-7615-475C-A050-C5D981DE6579}" = lport=2869 | protocol=6 | dir=in | app=system | "{B87C17ED-9DDB-4456-839E-5F92956156D2}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{B9F0A629-23E6-447C-9932-5B03DC985D91}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{BBEA6EC0-C674-4067-A08B-59233B526995}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{DDBED710-466D-4FCC-B8A4-4E3DDC8A8587}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{05043DDD-09C4-463C-925B-8AFC1295F398}" = protocol=6 | dir=in | app=d:\gry\far cry 2\bin\fc2launcher.exe | "{0710B467-330F-411A-9047-D945AF8244F8}" = protocol=6 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe | "{140BD929-104E-4A2E-92C1-0D8ABAA9B905}" = dir=in | app=c:\program files\cyberlink\powerdvd\powerdvd.exe | "{18B5D15B-C241-4AB5-A1F8-F6BBF7A3DCEC}" = dir=in | app=c:\program files\windows live\contacts\wlcomm.exe | "{223FEFC2-E400-4B8B-9333-62845137020C}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{329D7916-9331-4548-BF9E-8ECC7C97245F}" = protocol=17 | dir=in | app=d:\karolprivat\gry2\steam\steam.exe | "{354186A6-F20A-442E-9C1D-A86D9AADB975}" = protocol=17 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe | "{4538A1EC-6159-4A1E-85AE-C45DA413ACC3}" = dir=in | app=c:\program files\cyberlink\powerdirector express\pdx.exe | "{57F62875-1BAC-450D-8314-75F1594C4E0D}" = protocol=17 | dir=in | app=d:\gry\far cry 2\bin\fc2editor.exe | "{5A9C3D5D-7BC2-4E96-A2DC-E3E151B119FF}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{64F4CDE3-31C4-4E1E-92C2-9D260D9DE820}" = protocol=6 | dir=out | app=system | "{743D3210-68F4-4113-AA09-A2F63EF6F3B4}" = protocol=17 | dir=in | app=d:\instalki\flvplayersetup.exe | "{7AF2AF04-1877-4D5C-BE71-E2637E26CAC3}" = protocol=6 | dir=in | app=d:\gry\far cry 2\bin\fc2editor.exe | "{7E29EC0D-1742-4CC9-AD26-A9C2EC0006CE}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{7EBB914A-B040-41F4-8ED1-E8643DCE16CD}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{840C7A22-7048-4D60-84E2-3A82DA2F2BC5}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{86B4A2DC-D7B7-49F2-B8F6-3077F99F8D51}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{908FF7C9-F098-4D4B-A92B-03B767C004E9}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{90988E6E-7329-446C-9686-1B62DD9874E7}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe | "{97DC0E05-61E1-4E69-A2D3-AF331247A105}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{981FAE2F-7B36-4622-86F8-9F4B1FE72022}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{A16C79FE-DAC0-409D-956C-7A45CC03DF1E}" = protocol=17 | dir=in | app=d:\gry\far cry 2\bin\farcry2.exe | "{AD95A8A5-ABD0-4802-B04B-9927DE825726}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{BAF9CE4B-3DA4-44E5-84A5-DF2941636AC1}" = protocol=6 | dir=in | app=d:\gry\far cry 2\bin\farcry2.exe | "{D5C8CA56-DD4C-464B-9C51-3AE4FCDBAE5E}" = protocol=6 | dir=in | app=d:\instalki\flvplayersetup.exe | "{DA10F674-6FB4-49B8-BDE4-66358803EE45}" = protocol=6 | dir=in | app=d:\karolprivat\gry2\steam\steam.exe | "{DCCEF3BF-A656-47A6-A969-640A607A3D1F}" = protocol=17 | dir=in | app=d:\gry\far cry 2\bin\fc2launcher.exe | "{E16A78FF-4FB5-46D1-B6C3-4B9926865ECB}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe | "{E3CA6D68-043F-4871-B338-6AF1CB8C4330}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{EAA843FA-A392-4E5A-88FE-10462B4D6B53}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{ED225D31-94CF-45DD-BF72-B32882A6C073}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{F2A21294-8F8A-411B-BC7C-4B17C58936A1}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{FF54C294-BD63-4F2E-BCDB-CEB329295430}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe | "TCP Query User{11D1A58A-81EE-421F-80A4-45C461FBAE14}D:\gry\thq\warhammer 40,000 antologia\w40kwa.exe" = protocol=6 | dir=in | app=d:\gry\thq\warhammer 40,000 antologia\w40kwa.exe | "TCP Query User{1C44F98D-8078-4A62-B74A-7B960DA92BA4}C:\program files\yahoo!\messenger\yahoomessenger.exe" = protocol=6 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe | "TCP Query User{275AE28B-555D-4FF6-95E5-0A5CB0EBC089}D:\karolprivat\gry2\steam\steamapps\hef_ajstos\team fortress 2\hl2.exe" = protocol=6 | dir=in | app=d:\karolprivat\gry2\steam\steamapps\hef_ajstos\team fortress 2\hl2.exe | "TCP Query User{52012D90-2544-4341-8EB4-49F12841CBBF}D:\karolprivat\gry2\cs\hltv.exe" = protocol=6 | dir=in | app=d:\karolprivat\gry2\cs\hltv.exe | "TCP Query User{53E82721-DFD8-4CC2-BF5E-67B35FF8DE70}D:\karolprivat\gry\glest_3.1.0\glest.exe" = protocol=6 | dir=in | app=d:\karolprivat\gry\glest_3.1.0\glest.exe | "TCP Query User{6405874E-9B21-43E2-8055-11554362A002}D:\karolprivat\gry2\cs\hl.exe" = protocol=6 | dir=in | app=d:\karolprivat\gry2\cs\hl.exe | "TCP Query User{6C564D0C-8EE3-4200-BC17-E9D59083E923}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe | "TCP Query User{708CE909-77C2-4FB9-9B67-8AE657E8CC03}D:\karolprivat\gry2\cs\hlds.exe" = protocol=6 | dir=in | app=d:\karolprivat\gry2\cs\hlds.exe | "TCP Query User{7E70758E-4BBC-4152-A5ED-504145EA1856}D:\karolprivat\gry2\midnight club ii\mc2.exe" = protocol=6 | dir=in | app=d:\karolprivat\gry2\midnight club ii\mc2.exe | "TCP Query User{944CAB66-9835-4D20-A469-8BD810D54550}D:\karolprivat\gry2\cs\hl.exe" = protocol=6 | dir=in | app=d:\karolprivat\gry2\cs\hl.exe | "TCP Query User{A71118D7-1D55-4B25-BA43-F998176AFC72}D:\gry\thq\warhammer 40,000 antologia\w40kwa.exe" = protocol=6 | dir=in | app=d:\gry\thq\warhammer 40,000 antologia\w40kwa.exe | "TCP Query User{B542AB40-FE01-4973-8736-1D2D0D07EA8E}D:\gry\thq\warhammer 40,000 antologia\w40k.exe" = protocol=6 | dir=in | app=d:\gry\thq\warhammer 40,000 antologia\w40k.exe | "TCP Query User{C16A8A79-88B4-46D8-BA30-72AA39BED4BA}D:\karolprivat\gry\w40k.exe" = protocol=6 | dir=in | app=d:\karolprivat\gry\w40k.exe | "TCP Query User{D6D5E06F-1170-4075-AC7E-5EEA919A108B}D:\gry\thq\dawn of war - dark crusade\darkcrusade.exe" = protocol=6 | dir=in | app=d:\gry\thq\dawn of war - dark crusade\darkcrusade.exe | "TCP Query User{DB294586-5A43-4024-A708-12C26AEDFE19}D:\lord of the realms ii\lords2.exe" = protocol=6 | dir=in | app=d:\lord of the realms ii\lords2.exe | "TCP Query User{E2EAE111-8009-42E5-A035-7645B7C9913C}C:\windows\system32\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\system32\dplaysvr.exe | "TCP Query User{E7942CCE-C9AB-47DD-A52D-F884E70AC44C}D:\karolprivat\gry\w40k.exe" = protocol=6 | dir=in | app=d:\karolprivat\gry\w40k.exe | "TCP Query User{E9E58044-B84E-46AA-AEC7-4C47C207C33B}C:\program files\real\realplayer\realplay.exe" = protocol=6 | dir=in | app=c:\program files\real\realplayer\realplay.exe | "TCP Query User{F5950E2B-504F-45FD-8799-A5D254AD880C}D:\gry\thq\dawn of war - dark crusade\darkcrusade.exe" = protocol=6 | dir=in | app=d:\gry\thq\dawn of war - dark crusade\darkcrusade.exe | "TCP Query User{F7743F92-BC06-49DF-A0B6-2646C58C96A3}D:\karolprivat\gry2\terminator 3 war of the machines [rip]\terminator 3 war of the machines\t3.exe" = protocol=6 | dir=in | app=d:\karolprivat\gry2\terminator 3 war of the machines [rip]\terminator 3 war of the machines\t3.exe | "UDP Query User{04016A1B-6B40-4A76-9058-2C43632C0206}D:\karolprivat\gry\w40k.exe" = protocol=17 | dir=in | app=d:\karolprivat\gry\w40k.exe | "UDP Query User{0F952D89-B97D-46E2-9795-F8CD605C0DEF}D:\karolprivat\gry2\midnight club ii\mc2.exe" = protocol=17 | dir=in | app=d:\karolprivat\gry2\midnight club ii\mc2.exe | "UDP Query User{2B4D5A55-92A8-423E-B598-11BD67BCE4FD}D:\gry\thq\dawn of war - dark crusade\darkcrusade.exe" = protocol=17 | dir=in | app=d:\gry\thq\dawn of war - dark crusade\darkcrusade.exe | "UDP Query User{54595C28-3059-4FA8-B94E-A7BD33EFACA0}D:\gry\thq\warhammer 40,000 antologia\w40kwa.exe" = protocol=17 | dir=in | app=d:\gry\thq\warhammer 40,000 antologia\w40kwa.exe | "UDP Query User{5D3076DC-F59A-4C3F-9067-AC0D094459D0}C:\program files\real\realplayer\realplay.exe" = protocol=17 | dir=in | app=c:\program files\real\realplayer\realplay.exe | "UDP Query User{5F54A803-3A43-4B96-B18A-55F334B5339D}D:\karolprivat\gry2\cs\hltv.exe" = protocol=17 | dir=in | app=d:\karolprivat\gry2\cs\hltv.exe | "UDP Query User{6761C9EA-5030-4112-93FD-0D90F5981442}D:\karolprivat\gry2\cs\hl.exe" = protocol=17 | dir=in | app=d:\karolprivat\gry2\cs\hl.exe | "UDP Query User{6A33B330-32D9-4C7E-8678-4F7ED1D9ABC0}C:\program files\yahoo!\messenger\yahoomessenger.exe" = protocol=17 | dir=in | app=c:\program files\yahoo!\messenger\yahoomessenger.exe | "UDP Query User{79E7309D-6308-43CE-B248-7EAB2484077E}C:\windows\system32\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\system32\dplaysvr.exe | "UDP Query User{79F0E9EC-7D39-45B4-87EE-7B33EE7FBBD0}D:\karolprivat\gry\glest_3.1.0\glest.exe" = protocol=17 | dir=in | app=d:\karolprivat\gry\glest_3.1.0\glest.exe | "UDP Query User{937C386B-02F0-4E05-BEED-544CB17345CC}D:\gry\thq\warhammer 40,000 antologia\w40k.exe" = protocol=17 | dir=in | app=d:\gry\thq\warhammer 40,000 antologia\w40k.exe | "UDP Query User{9EE6CFD9-0772-43FB-8556-60624BCF828A}D:\karolprivat\gry2\cs\hlds.exe" = protocol=17 | dir=in | app=d:\karolprivat\gry2\cs\hlds.exe | "UDP Query User{A74E6A50-2000-4B4C-B50F-35FF003186A1}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe | "UDP Query User{AC571150-4A13-4ED0-B75D-FEE0885ED677}D:\karolprivat\gry2\cs\hl.exe" = protocol=17 | dir=in | app=d:\karolprivat\gry2\cs\hl.exe | "UDP Query User{BB329433-A3A6-4D19-8E57-6D2558D4F438}D:\karolprivat\gry2\terminator 3 war of the machines [rip]\terminator 3 war of the machines\t3.exe" = protocol=17 | dir=in | app=d:\karolprivat\gry2\terminator 3 war of the machines [rip]\terminator 3 war of the machines\t3.exe | "UDP Query User{C25C274A-957D-4537-AE9B-90D417EFC40F}D:\karolprivat\gry\w40k.exe" = protocol=17 | dir=in | app=d:\karolprivat\gry\w40k.exe | "UDP Query User{D4369C30-8B36-4AA8-B426-3EACE3C34898}D:\karolprivat\gry2\steam\steamapps\hef_ajstos\team fortress 2\hl2.exe" = protocol=17 | dir=in | app=d:\karolprivat\gry2\steam\steamapps\hef_ajstos\team fortress 2\hl2.exe | "UDP Query User{EAD0FFA5-6194-4AF3-88CA-401B484269D6}D:\lord of the realms ii\lords2.exe" = protocol=17 | dir=in | app=d:\lord of the realms ii\lords2.exe | "UDP Query User{EDF3192C-EDA1-47A0-8BEC-5EF2645DAAD1}D:\gry\thq\warhammer 40,000 antologia\w40kwa.exe" = protocol=17 | dir=in | app=d:\gry\thq\warhammer 40,000 antologia\w40kwa.exe | "UDP Query User{F3D41CAE-2C37-485A-A6C0-376A2CCD26DE}D:\gry\thq\dawn of war - dark crusade\darkcrusade.exe" = protocol=17 | dir=in | app=d:\gry\thq\dawn of war - dark crusade\darkcrusade.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{0654EA5D-308A-4196-882B-5C09744A5D81}" = Windows Live Photo Common "{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer "{0C6994E1-3AE1-4CDD-A760-1628E6B8CD03}" = Windows Live Family Safety "{13F3917B56CD4C25848BDC69916971BB}" = DivX Converter "{1D595C5D-C7CD-4CCA-9C0E-141047459354}" = Flow!Works "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update "{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = DVD Suite "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions "{26E3C07C-7FF7-4362-9E99-9E49E383CF16}" = Windows Live Writer Resources "{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1 "{2C7E8AA1-9C03-4606-BF34-5D99D07964DA}" = Windows Live Messenger "{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{3248F0A8-6813-11D6-A77B-00B0D0160040}" = Java(TM) 6 Update 4 "{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java(TM) 6 Update 7 "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery "{392A74D0-4DFE-49F7-87C3-8A61708F8856}" = Eraser 6.0.8.2273 "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{3FC7CBBC4C1E11DCA1A752EA55D89593}" = DivX Version Checker "{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR "{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}" = Windows Live PIMT Platform "{543E6ACA-51B7-4283-82F2-57C0582A53C5}" = Windows Live UX Platform Language Pack "{590818B7-4F76-426D-B0E9-DB5D5B661A59}" = Flow!Works "{593AFFA4-D08E-4272-BABB-420949D32A10}" = QUICKfind "{5DD4FCBD-A3C1-4155-9E17-4161C70AAABA}" = Segoe UI "{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053 "{61AD15B2-50DB-4686-A739-14FE180D4429}" = Windows Live ID Sign-in Assistant "{64376910-1860-4CEF-8B34-AA5D205FC5F1}" = Poczta usługi Windows Live "{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK "{74B9977F-47FE-4C1A-8DA3-C65F17CF93DD}" = OpenOffice.org 3.0 "{75438C0E-9925-412E-AD85-D0E71C6CE2ED}" = USB2.0 PC Camera (SN9C201&202) "{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime "{7A9D47BA-6D50-4087-866F-0800D8B89383}" = Podstawowe programy Windows Live "{7B63B2922B174135AFC0E1377DD81EC2}" = "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel(R) Matrix Storage Manager "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{9A97DCD3-3B50-4483-82C2-069D019B8B80}" = Intel Integrator Toolkit "{9ABFB92D-93DA-49EE-8ABF-F8195DE45CA9}" = Counter-Strike 1.6 "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{A2289997-10A3-48F2-AA03-99180D761661}" = Protector Suite QL 5.6 "{A3FEC306-FBFF-4B0D-95B9-F9C67C65079E}" = Brother MFL-Pro Suite "{A4735C84-3886-4DF6-A092-C5118AD3308A}" = Moduł MS msHtml 7.00 "{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer "{AC76BA86-7AD7-1033-7B44-AA0000000001}" = Adobe Reader X "{AC76BA86-7AD7-5464-3428-800000000003}" = Spelling Dictionaries Support For Adobe Reader 8 "{AF844339-2F8A-4593-81B3-9F4C54038C4E}" = Windows Live MIME IFilter "{B13A7C41581B411290FBC0395694E2A9}" = DivX Converter "{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy "{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Plus Web Player "{B7A0CE06-068E-11D6-97FD-0050BACBF861}" = PowerProducer "{C49F8E1C-0BAE-4836-A670-AE76BA32BE90}" = ChomikBox "{CB3F59BB-7858-41A1-A7EA-4B8A6FC7D431}" = Galeria fotografii usługi Windows Live "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform "{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba "{CFF8B8E8-E086-4DE0-935F-FE22CAB54F80}" = Microsoft Search Enhancement Pack "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform "{D6F879CC-59D6-4D4B-AE9B-D761E48D25ED}" = Skype™ 5.3 "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E55E0C35-AC3C-4683-BA2F-834348577B80}" = Windows Live Writer "{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger "{ED9C5D25-55DF-48D8-9328-2AC0D75DE5D8}" = System Control Manager "{EDE721EC-870A-11D8-9D75-000129760D75}" = PowerDirector Express "{EEC010D0-1252-4E1D-BAD9-F1B8F414535C}" = PL-2303 Vista Driver Installer "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729) "{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01 "{F53D678E-238F-4A71-9742-08BB6774E9DC}" = Windows Live Family Safety "{F80E5450-3EF3-4270-B26C-6AC53BEC5E76}" = Windows Live Movie Maker "{F99F9E24-EE2F-47FD-AEB0-FDB82859B5C9}" = VideoStudio "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "ALLPlayer_is1" = ALLPlayer V4.X "avast!" = avast! Antivirus "BrainWave Generator" = BrainWave Generator "DivX Plus DirectShow Filters" = DivX Plus DirectShow Filters "DivX Setup.divx.com" = DivX Setup "ESET Online Scanner" = ESET Online Scanner v3 "Free Download Manager_is1" = Free Download Manager 3.0 "Gadu-Gadu" = Gadu-Gadu 7.7 "HDMI" = Intel(R) Graphics Media Accelerator Driver "I-Doser" = I-Doser Free "InstallShield_{1D595C5D-C7CD-4CCA-9C0E-141047459354}" = Flow!Works "InstallShield_{590818B7-4F76-426D-B0E9-DB5D5B661A59}" = Flow!Works "InstallShield_{F99F9E24-EE2F-47FD-AEB0-FDB82859B5C9}" = Ulead VideoStudio 11 "KeePass Password Safe_is1" = KeePass Password Safe 1.17 "KLiteCodecPack_is1" = K-Lite Codec Pack 5.8.3 (Full) "ldoce4v2" = LONGMAN Dictionary of Contemporary English "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.61.0.1400 "Memory Improve Ultimate Free Version_is1" = Memory Improve Ultimate Free Version v5.2.1.340 "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Mozilla Firefox 12.0 (x86 pl)" = Mozilla Firefox 12.0 (x86 pl) "MSI PR400" = MSI PR400 Screen Saver "RealAlt_is1" = Real Alternative 1.49 "RealPlayer 12.0" = RealPlayer "SkanerOnline" = Skaner on-line mks_vir "Steam App 220" = Half-Life 2 "Steam App 340" = Half-Life 2: Lost Coast "Steam App 380" = Half-Life 2: Episode One "Steam App 400" = Portal "Steam App 420" = Half-Life 2: Episode Two "Steam App 440" = Team Fortress 2 "SynTPDeinstKey" = Synaptics Pointing Device Driver "TVWiz" = Intel(R) TV Wizard "WinLiveSuite" = Podstawowe programy Windows Live "WinRAR archiver" = WinRAR archiver "Wise Registry Cleaner_is1" = Wise Registry Cleaner Free 5.35 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-4147116487-3812305546-1671030645-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "I-Doser v4" = I-Doser v4 [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Antivirus Events ] Error - 2010-04-24 04:55:28 | Computer Name = Karol-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\Users\Karol\AppData\Local\Temp\X_iaQeY2.iso.part failed, 00000084. Error - 2010-04-24 04:55:28 | Computer Name = Karol-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of http://s61.chomikuj.pl/File.aspx?id=13562460&vid=8489151&tk=1504323&t=634076961017715997&d=70&k=1318513&name=Dungeon+Keeper+II+-+Silver+Edition.iso failed, 00000084. Error - 2010-04-24 07:17:31 | Computer Name = Karol-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of http://s147.chomikuj.pl/File.aspx?id=47870169&vid=47870169&tk=1508102&t=634077046297687202&d=70&k=1322106&name=WoGOO.nrg failed, 0000001E. Error - 2010-07-25 22:53:30 | Computer Name = Karol-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\Users\Karol\AppData\Roaming\Mozilla\Firefox\Profiles\o12cqvyv.default\downloads.sqlite failed, 00000005. Error - 2011-04-26 13:29:22 | Computer Name = Karol-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of http://s76.chomikuj.pl/File.aspx?id=20427989&vid=246314620&tk=1513176&t=634394357556449941&d=60&k=1326801&name=AoE+PL.iso failed, 00000084. Error - 2011-04-26 13:29:35 | Computer Name = Karol-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\Users\Karol\AppData\Local\Temp\GUd8MBAi.iso.part failed, 0000001E. Error - 2011-04-26 13:29:37 | Computer Name = Karol-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of http://s80.chomikuj.pl/File.aspx?id=20430824&vid=246665915&tk=1501063&t=634394357662493408&d=60&k=1314644&name=AoE+Dodatek+PL.iso failed, 0000001E. Error - 2011-04-26 13:30:19 | Computer Name = Karol-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of http://s80.chomikuj.pl/File.aspx?id=20430824&vid=246665915&tk=1501576&t=634394358126158289&d=60&k=1315181&name=AoE+Dodatek+PL.iso failed, 0000001E. Error - 2012-02-13 18:15:57 | Computer Name = Karol-PC | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of C:\Windows\System32\conime.exe failed, 00000005. [ Application Events ] Error - 2011-09-28 17:37:11 | Computer Name = Karol-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd hl.exe, wersja 1.1.1.1, sygnatura czasowa 0x3fd11900, moduł powodujący błąd serverbrowser.dll_unloaded, wersja 0.0.0.0, sygnatura czasowa 0x42f19fab, kod wyjątku 0xc0000005, przesunięcie błędu 0x0c38e290, identyfikator procesu 0x16dc, godzina rozpoczęcia aplikacji 0x01cc7e26b8fae850. Error - 2011-09-28 17:38:40 | Computer Name = Karol-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd hl.exe, wersja 1.1.1.1, sygnatura czasowa 0x3fd11900, moduł powodujący błąd serverbrowser.dll_unloaded, wersja 0.0.0.0, sygnatura czasowa 0x42f19fab, kod wyjątku 0xc0000005, przesunięcie błędu 0x0c4be290, identyfikator procesu 0x1338, godzina rozpoczęcia aplikacji 0x01cc7e26edec9680. Error - 2011-09-28 17:40:24 | Computer Name = Karol-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd hl.exe, wersja 1.1.1.1, sygnatura czasowa 0x3fd11900, moduł powodujący błąd serverbrowser.dll_unloaded, wersja 0.0.0.0, sygnatura czasowa 0x42f19fab, kod wyjątku 0xc0000005, przesunięcie błędu 0x10a0e290, identyfikator procesu 0x494, godzina rozpoczęcia aplikacji 0x01cc7e272a652dc0. Error - 2011-09-28 17:46:51 | Computer Name = Karol-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd hl.exe, wersja 1.1.1.1, sygnatura czasowa 0x3fd11900, moduł powodujący błąd unknown, wersja 0.0.0.0, sygnatura czasowa 0x00000000, kod wyjątku 0xc0000005, przesunięcie błędu 0x0c33e290, identyfikator procesu 0x16c0, godzina rozpoczęcia aplikacji 0x01cc7e2811019de0. Error - 2011-09-28 17:47:53 | Computer Name = Karol-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd hl.exe, wersja 1.1.1.1, sygnatura czasowa 0x3fd11900, moduł powodujący błąd unknown, wersja 0.0.0.0, sygnatura czasowa 0x00000000, kod wyjątku 0xc0000005, przesunięcie błędu 0x0c07e290, identyfikator procesu 0x1108, godzina rozpoczęcia aplikacji 0x01cc7e28368d4000. Error - 2011-09-28 17:49:31 | Computer Name = Karol-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd hl.exe, wersja 1.1.1.1, sygnatura czasowa 0x3fd11900, moduł powodujący błąd unknown, wersja 0.0.0.0, sygnatura czasowa 0x00000000, kod wyjątku 0xc0000005, przesunięcie błędu 0x10c0e290, identyfikator procesu 0x17e8, godzina rozpoczęcia aplikacji 0x01cc7e2863936750. Error - 2011-09-28 17:50:17 | Computer Name = Karol-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd hl.exe, wersja 1.1.1.1, sygnatura czasowa 0x3fd11900, moduł powodujący błąd serverbrowser.dll_unloaded, wersja 0.0.0.0, sygnatura czasowa 0x42f19fab, kod wyjątku 0xc0000005, przesunięcie błędu 0x0fabe290, identyfikator procesu 0x1448, godzina rozpoczęcia aplikacji 0x01cc7e288c68e510. Error - 2011-09-28 17:51:07 | Computer Name = Karol-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd hl.exe, wersja 1.1.1.1, sygnatura czasowa 0x3fd11900, moduł powodujący błąd serverbrowser.dll_unloaded, wersja 0.0.0.0, sygnatura czasowa 0x42f19fab, kod wyjątku 0xc0000005, przesunięcie błędu 0x0b2de290, identyfikator procesu 0x3e8, godzina rozpoczęcia aplikacji 0x01cc7e28aaf49100. Error - 2011-09-28 17:51:45 | Computer Name = Karol-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd hl.exe, wersja 1.1.1.1, sygnatura czasowa 0x3fd11900, moduł powodujący błąd unknown, wersja 0.0.0.0, sygnatura czasowa 0x00000000, kod wyjątku 0xc0000005, przesunięcie błędu 0x0b2ce290, identyfikator procesu 0x6ec, godzina rozpoczęcia aplikacji 0x01cc7e28bf494f10. Error - 2011-09-28 17:52:27 | Computer Name = Karol-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd hl.exe, wersja 1.1.1.1, sygnatura czasowa 0x3fd11900, moduł powodujący błąd serverbrowser.dll_unloaded, wersja 0.0.0.0, sygnatura czasowa 0x42f19fab, kod wyjątku 0xc0000005, przesunięcie błędu 0x0affe290, identyfikator procesu 0x11f0, godzina rozpoczęcia aplikacji 0x01cc7e28da848010. [ System Events ] Error - 2012-05-08 10:02:04 | Computer Name = Karol-PC | Source = WMPNetworkSvc | ID = 866290 Description = Error - 2012-05-08 10:09:16 | Computer Name = Karol-PC | Source = WMPNetworkSvc | ID = 866290 Description = Error - 2012-05-08 11:44:43 | Computer Name = Karol-PC | Source = DCOM | ID = 10010 Description = Error - 2012-05-08 11:45:27 | Computer Name = Karol-PC | Source = sfsync03 | ID = 262145 Description = Error - 2012-05-08 11:47:09 | Computer Name = Karol-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2012-05-08 11:47:09 | Computer Name = Karol-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2012-05-08 11:47:09 | Computer Name = Karol-PC | Source = Service Control Manager | ID = 7023 Description = Error - 2012-05-08 11:47:09 | Computer Name = Karol-PC | Source = Service Control Manager | ID = 7026 Description = Error - 2012-05-08 11:49:15 | Computer Name = Karol-PC | Source = WMPNetworkSvc | ID = 866290 Description = Error - 2012-05-08 11:49:19 | Computer Name = Karol-PC | Source = WMPNetworkSvc | ID = 866290 Description = < End of report >