OTL Extras logfile created on: 2012-07-06 20:39:47 - Run 2 OTL by OldTimer - Version 3.2.53.1 Folder = C:\Users\Daniel\Desktop 64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,14 Gb Available Physical Memory | 57,20% Memory free 4,00 Gb Paging File | 3,25 Gb Available in Paging File | 81,20% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 97,65 Gb Total Space | 19,88 Gb Free Space | 20,36% Space Free | Partition Type: NTFS Drive D: | 368,10 Gb Total Space | 318,58 Gb Free Space | 86,55% Space Free | Partition Type: NTFS Computer Name: SONGOKU | User Name: Daniel | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [ChomikBox.Upload] -- "C:\Program Files (x86)\ChomikBox\\ChomikBox.exe" -u"%1" ( ) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [ChomikBox.Upload] -- "C:\Program Files (x86)\ChomikBox\\ChomikBox.exe" -u"%1" ( ) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{07FC8A54-6BF6-4913-BB47-3B2DACAE8759}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{0EED23EC-ACF9-46A7-9A0B-912DD787AF92}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe | "{113243C0-9031-4A9F-B684-0FCF283752C8}" = lport=10243 | protocol=6 | dir=in | app=system | "{2DBEBB84-5A78-4086-AFF0-253319C60A76}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{36FEC5F9-EF9A-4256-9953-A1316E34571E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{37EED417-07CB-453F-AAC6-AB09A4F7C37B}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{4DE0D628-68E4-46E8-BC0D-D647C7D9A49E}" = rport=137 | protocol=17 | dir=out | app=system | "{61402A6C-8A24-4BF2-B013-6EA18A59BB11}" = lport=445 | protocol=6 | dir=in | app=system | "{69854791-89C1-4603-B363-FD276B8024E8}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{6FC6E459-3629-4F92-AFB1-55A244394ACB}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{892E4070-3FD5-4542-84C6-6273C6990CF1}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{8F9D5140-2648-4127-8EC0-6FCAB390D8DD}" = lport=138 | protocol=17 | dir=in | app=system | "{90645683-A93B-4F59-873F-C82EB70EF4E2}" = rport=139 | protocol=6 | dir=out | app=system | "{95012D23-F588-4101-BE8B-9E36E4691F40}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{96CB9283-55DC-4B4D-894A-8609F42AB7E8}" = lport=139 | protocol=6 | dir=in | app=system | "{9823D910-27DB-4841-A09A-ED0677969F44}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{BAE69DD7-FD31-4F9C-9875-C74E2FF2B7B7}" = rport=445 | protocol=6 | dir=out | app=system | "{BB15A642-93ED-4A7C-9877-2E2522DEDFA9}" = rport=427 | protocol=17 | dir=in | svc=hpslpsvc | app=c:\windows\system32\svchost.exe | "{C0CA58F0-3EA1-44BA-8696-4EDC5AE09D3B}" = lport=137 | protocol=17 | dir=in | app=system | "{C19AA0A3-5A78-4357-9AE6-9E66824BF1A5}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{C21BF1FC-90A6-4A38-B80B-6BABB73C2DA8}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{C4B2AE5E-0603-418F-AFE6-C907FAAA7B18}" = lport=2869 | protocol=6 | dir=in | app=system | "{CDCDB1D5-E77B-40E9-B612-882A19842A9E}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{D28848B6-C2D1-44C4-A9C8-D99E21B68E6B}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{D33E3A12-19DA-49EE-98FF-821CBF0F7F60}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{D34459EF-ABBB-4655-B80E-57B6D4843D68}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{DE4C69B4-BD5B-4016-B9C2-92045B5C5EC7}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{E5DD8B08-EB21-4416-8FFF-E7E48C7AB80E}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{E9BD0D9E-8746-48E7-B086-76EB5DE71F8C}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{F6D65B36-26FD-4714-80A0-6CADAC00850D}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{FB08F15D-285B-46CF-9F1A-96B9166FBDE7}" = rport=10243 | protocol=6 | dir=out | app=system | "{FCFC7DE7-5FAA-4FED-A610-62EFF8EEBDD7}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{FF32C7F2-A54D-4519-99D0-657A01CB3064}" = rport=138 | protocol=17 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{035DC133-7A98-4B17-9050-5A686E58A3BE}" = protocol=17 | dir=in | app=c:\users\daniel\appdata\local\temp\is799009782\ainstaller.exe | "{0A8EC4D7-A1DF-4A09-9A42-E3C68A25249F}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{0CFA32AF-F03F-4D45-B168-69C28FF922B4}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{1050D344-E61E-4EBE-9072-A8F60742EB33}" = dir=in | app=c:\program files (x86)\common files\hp\digital imaging\bin\hpqphotocrm.exe | "{1339492C-4E4C-4E0C-A528-AA64435794C3}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2012\avgnsa.exe | "{13E870D4-90A7-413A-9990-9656F3B4A058}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{1AE293BA-CB45-4067-AE42-7D3ECE35DC8C}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{218D8B6C-0EA7-44B2-9D98-BD2F83EA71EC}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{24AEF2D8-AB05-4BFF-9497-8A771058A58C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{25586B96-90C8-4765-A9CC-DFA580F6DF68}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe | "{25FA292C-340D-4C8E-9954-3C109769EB19}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqste08.exe | "{29D17F60-18A8-4F4A-AE94-200F817143D2}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{2FD15483-FD64-4898-B7EC-9651A2290A57}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2012\avgdiagex.exe | "{31D0F27D-0E7D-45D1-816C-C70217C59F9D}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2012\avgemca.exe | "{3384D274-77F5-4851-8CF1-735786F19C9C}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{3444C867-1851-4DA0-A582-7F4DD85FE217}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{3ADDB218-1229-4AAA-91B7-9243D120C881}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{3CC9B2B8-8BDB-475A-80D4-F6FE117FAE18}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{403D8507-A4E9-4348-927B-7A604C48FBC4}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2012\avgmfapx.exe | "{430FCF0E-85C4-4C3C-BC04-293247AA39D5}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2012\avgnsa.exe | "{5A6872BF-2775-43E9-90F9-4A4259D6108B}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqcopy2.exe | "{5D76E206-512A-48ED-9A26-252CFE98CFD5}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{5E9FCD2B-918E-4F27-A722-3418E895D786}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2012\avgmfapx.exe | "{61999763-F79B-423D-9A1B-E6B830B9ADE4}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{631A047A-4D05-4B0A-AEED-046456FA1C22}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgh.exe | "{68BE8728-8E10-4559-854A-C44664B40C5C}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{6D1A9820-8215-4849-8FB0-D05F35E15E2C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{6D9517B6-4C32-4896-AE6B-D5C52FD29254}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgpc01.exe | "{71608B32-3F5B-4A36-9486-CF5C9156AC73}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqkygrp.exe | "{76C7880C-0BE4-442C-9C9C-83EC6F138C02}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{7A0A21D9-EBD4-4285-B34C-923E6598D3FF}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2012\avgemca.exe | "{7D3A66DF-E65C-41DA-98B5-CCC9DD2A8F87}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{847121B1-ABDA-494F-A98B-0383EB30815A}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqtra08.exe | "{86970435-A15E-4AFB-A7FC-A995856E09F4}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{8848A627-71DF-4DA3-99F7-1D72F06A7D3C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{8A4631FD-B134-438F-9676-9440CB58A23F}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgm.exe | "{8B1BF595-089C-470E-AAFF-ED34EBB1E723}" = protocol=17 | dir=in | app=c:\program files\incmdnnt\incmdnnt.exe | "{8F566E50-F4D0-48BB-9647-3224B32D8D3A}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpfccopy.exe | "{91CAFFA9-4FDA-453E-93C4-0F711FED4F88}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpoews01.exe | "{9FAC918C-2240-478B-BA60-BAEB5A728AC4}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{9FD3657C-65E5-46D4-80ED-767604082A0C}" = protocol=17 | dir=in | app=c:\users\daniel\appdata\local\microsoft\windows\temporary internet files\content.ie5\7zz9jln6\pdfreader_setup[1].exe | "{A94D54BB-436A-4435-8748-472586A5DAAB}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{AD6C8989-DE9C-4CD2-A92A-502F49D0FB60}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgplgtupl.exe | "{AF181809-709B-4624-BF3F-B751A6CBEB36}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposid01.exe | "{B4280F06-0B15-40C2-B6A7-DD33682CE313}" = dir=in | app=c:\program files (x86)\hp\digital imaging\smart web printing\smartwebprintexe.exe | "{B8C7AB3E-3598-4F19-BCEB-AB65B71BCE42}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{B92DC638-CFA1-403C-938A-F7CA4D637741}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpiscnapp.exe | "{BE3FC181-9289-4B77-9D6D-25ECDD0312EB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{C808B1D6-6B4D-4D1E-8B84-7933EB5A25CF}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{CB1EE895-0E09-41EE-BCB5-6C4CF7A77996}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | "{D4800BF3-C63D-43DF-AD14-CFCB5DB0D528}" = dir=in | app=f:\setup\hpznui40.exe | "{D6960225-626D-4555-B8CC-8C830835354A}" = dir=in | app=c:\program files (x86)\hp\hp software update\hpwucli.exe | "{DE83780A-BAC8-4A10-AE17-0EC194FB786F}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{E333D9BC-7FEE-4915-BAF6-DA186B44B5A9}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{E3968D26-E3FD-480D-86A2-6316FCE9390B}" = protocol=6 | dir=out | app=system | "{E49AFA97-4BD0-469C-AEA9-0ABB78526632}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{ED0A645A-926A-49B8-8576-BC65D6E7369C}" = protocol=6 | dir=in | app=c:\users\daniel\appdata\local\microsoft\windows\temporary internet files\content.ie5\7zz9jln6\pdfreader_setup[1].exe | "{F167C7CA-A6AA-42E6-AEC8-F5A183031FC1}" = protocol=6 | dir=in | app=c:\users\daniel\appdata\local\temp\is799009782\ainstaller.exe | "{F8F48BBE-DAAD-4B06-9D80-8E2AC43EC348}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2012\avgdiagex.exe | "{FD6909F8-FC4E-4EE7-88E6-E39C579E9519}" = protocol=6 | dir=in | app=c:\program files\incmdnnt\incmdnnt.exe | "TCP Query User{06B47568-AF9F-47A3-8E53-B997CD01B5D1}C:\program files (x86)\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=6 | dir=in | app=c:\program files (x86)\common files\nokia\service layer\a\nsl_host_process.exe | "TCP Query User{4ED41F58-55D3-4D8F-871E-756AE4A9BC03}C:\program files (x86)\fiat\eper\j2sdk1.4.1\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\fiat\eper\j2sdk1.4.1\bin\javaw.exe | "TCP Query User{6B345706-9504-443A-B9D4-882CC332BE03}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe | "TCP Query User{9D2134A4-F09F-444C-95DF-F3E2A6C019A0}C:\program files (x86)\nokia\nokia ovi suite\nokiaovisuite.exe" = protocol=6 | dir=in | app=c:\program files (x86)\nokia\nokia ovi suite\nokiaovisuite.exe | "TCP Query User{EE143E03-0627-44F3-91B7-4881EDD2E7B0}C:\program files (x86)\fiat\eper\j2sdk1.4.1\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\fiat\eper\j2sdk1.4.1\bin\javaw.exe | "UDP Query User{40E8CF50-1723-4F10-A784-9967FE4D4D13}C:\program files (x86)\nokia\nokia ovi suite\nokiaovisuite.exe" = protocol=17 | dir=in | app=c:\program files (x86)\nokia\nokia ovi suite\nokiaovisuite.exe | "UDP Query User{5FCFC277-2524-4FD8-9F82-5D32D36D2D6D}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe | "UDP Query User{6C6B727D-691E-4A25-BEEE-845475C1B809}C:\program files (x86)\fiat\eper\j2sdk1.4.1\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\fiat\eper\j2sdk1.4.1\bin\javaw.exe | "UDP Query User{6C75FBCC-C798-410C-8FF1-F639EECF4FA1}C:\program files (x86)\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=17 | dir=in | app=c:\program files (x86)\common files\nokia\service layer\a\nsl_host_process.exe | "UDP Query User{8A03F693-4642-40B0-A925-8A7DE9312367}C:\program files (x86)\fiat\eper\j2sdk1.4.1\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\fiat\eper\j2sdk1.4.1\bin\javaw.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{3C8159DD-1890-4625-A5B2-E3D8D78D4486}" = AVG 2012 "{48C0866E-57EB-444C-8371-8E4321066BC3}" = Network64 "{4D668D4F-FAA2-4726-834C-31F4614F312E}" = MSVC80_x64_v2 "{59C83C08-63F4-4AEC-81D6-392C5E23B843}" = HP Photosmart Wireless B110 All-In-One Driver Software 14.0 Rel. 7 "{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}" = Network64 "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour "{7B72A3FB-2563-4A83-B054-98C57415DFFA}" = Nitro Reader 2 "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007 "{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant "{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}" = MSVC90_x64 "{B8AD779A-82DA-4365-A7D0-AD3DCFC55CFF}" = Apple Mobile Device Support "{CF8FFD12-602B-422D-AF1D-511B411E7632}" = iTunes "{D050583D-5CEC-47B1-88AA-8B328CAA8621}" = AVG 2012 "{DB982BEA-E9FF-4C61-9058-57FFDA5076D1}" = HP Deskjet Ink Advant K209a-z All-in-One Driver Software 13.0 Rel .6 "{FF21C3E6-97FD-474F-9518-8DCBE94C2854}" = 64 Bit HP CIO Components Installer "05B59228C7E1C21DFBE89260F879BD95880548D8" = Pakiet sterowników systemu Windows - Nokia Modem (10/05/2009 4.2) "8CDCFB95BB84DD9C0F88F22266A0CA86035E55BA" = Pakiet sterowników systemu Windows - Nokia Modem (06/01/2009 7.01.0.4) "A4Tech iKeyWorks" = A4Tech iKeyWorks 7.72 "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX 64-bit "AVG" = AVG 2012 "Creative VF0220" = Creative Live! Cam Video IM Driver (1.01.01.00) "FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D" = Pakiet sterowników systemu Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0) "HP Imaging Device Functions" = HP Imaging Device Functions 14.0 "HP Print Projects" = HP Print Projects 1.0 "HP Smart Web Printing" = HP Smart Web Printing 4.60 "HP Solution Center & Imaging Support Tools" = HP Solution Center 14.0 "HPExtendedCapabilities" = HP Customer Participation Program 14.0 "Shop for HP Supplies" = Shop for HP Supplies [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{06A1D88C-E102-4527-AF70-29FFD7AF215A}" = Scan "{07FB17D8-7DB6-4F06-80C4-8BE1719CB6A1}" = hpWLPGInstaller "{08234a0d-cf39-4dca-99f0-0c5cb496da81}" = MSN Toolbar "{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}" = DeviceDiscovery "{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}" = HPProductAssistant "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate "{19DC9559-9C20-4A46-A67D-7ECBA52A2788}" = Nokia PC Suite "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{26A24AE4-039D-4CA4-87B4-2F83216032FF}" = Java(TM) 6 Update 32 "{292F0F52-B62D-4E71-921B-89A682402201}" = Toolbox "{2E29C068-A414-439E-81ED-B5D918D1CF34}" = SI BIG InfoMonitor - ActiveX "{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}" = HP Update "{2FDBBCEA-62DB-45F4-B6E5-0E1FB2A1F29D}" = Visual C++ 8.0 Runtime Setup Package (x64) "{45D4F727-43B5-49CD-B474-B9866A8F4FB8}" = Nokia Map Loader "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4E1CD3D5-D4EE-4246-AE24-F0FD5A60390D}" = OviMPlatform "{4FFD1AB4-54F0-4069-88D9-3A55B38F874B}" = Nokia Ovi Suite Software Updater "{565E7B0E-B76B-4EAD-9753-F1E72A5CF12E}" = HPAppStudio "{58E65E96-6649-4CBE-9382-35326D694E6F}" = MSN Toolbar Platform "{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}" = Status "{60DED9C2-22BF-47A3-B6C8-6B141BA31DFD}" = Ovi Desktop Sync Engine "{61BEA823-ECAF-49F1-8378-A59B3B8AD247}" = Microsoft Default Manager "{6372F44B-392B-4FD8-AF1E-E185283F6528}" = DJ_AIO_06_K209a-z_SW_Min "{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2 "{6F23A5FE-CFE7-4340-A480-AA9AC196E9AB}" = ChomikBox "{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.1.0.0 "{7397EDED-F38A-4654-B669-BF61065803D0}" = PC Connectivity Solution "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7B63B2922B174135AFC0E1377DD81EC2}" = DivX Codec "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8EE94FD8-5F52-4463-A340-185D16328158}" = WebReg "{8FF6F5CA-4E30-4E3B-B951-204CAAA2716A}" = SmartWebPrinting "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-002A-0415-1000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{9F9A2D22-7E30-4546-B817-10644FFB9935}" = B110 "{A147FD6E-32F2-4009-BDC9-8B4E2B1B21EB}" = Microsoft Search Enhancement Pack "{A436F67F-687E-4736-BD2B-537121A804CF}" = HP Product Detection "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AAB93551-3FFE-42B2-8315-96252BBC1045}" = Nero 7 Essentials "{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}" = HPSSupply "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.3) "{AC76BA86-7AD7-2447-0000-A00000000003}" = Chinese Simplified Fonts Support For Adobe Reader X "{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86 "{AFF7E080-1974-45BF-9310-10DE1A1F5ED0}" = Adobe AIR "{B13A7C41581B411290FBC0395694E2A9}" = DivX Converter "{B3DAF54F-DB25-4586-9EF1-96D24BB14088}" = Windows Movie Maker 2.6 "{B9C9DB4C-6D77-4AE9-AD1C-C708C23239A0}" = Nokia Connectivity Cable Driver "{BB224962-A37E-4E24-87E2-BD0F47B6A8F5}" = ePER "{BB3447F6-9553-4AA9-960E-0DB5310C5779}" = GPBaseService2 "{BC5DD87B-0143-4D14-AAE6-97109614DC6B}" = SolutionCenter "{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}" = Destinations "{C75CDBA2-3C86-481e-BD10-BDDA758F9DFF}" = hpPrintProjects "{CAE4213F-F797-439D-BD9E-79B71D115BE3}" = HPPhotoGadget "{CD31E63D-47FD-491C-8117-CF201D0AFAB5}" = TrayApp "{D360FA88-17C8-4F14-B67F-13AAF9607B12}" = MarketResearch "{DEE1E2E5-B553-4F88-9DE7-23CBEA5D739C}" = Nokia Ovi Suite "{E517094C-06B6-419F-8FFD-EF4F57972130}" = QuickTransfer "{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}" = Apple Application Support "{EE51AA68-7BF9-4FB3-9BB4-57CCD2C7EFFA}" = K209a-z "{F88E2E04-7EF5-488C-8E38-C94EB808458E}" = PS_AIO_07_B110_SW_Min "{FA0FF682-CC70-4C57-93CD-E276F3E7537E}" = BufferChm "{FAF26102-09D7-4C58-AB01-0D59A2E517CA}" = Copy "{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}" = Visual Studio 2008 x64 Redistributables "7-Zip" = 7-Zip 9.20 "Adobe AIR" = Adobe AIR "Advanced Video FX Engine" = Advanced Video FX Engine "AlfaDiag 3.4 Demo_is1" = AlfaDiag 3.4.0.1 "Creative Live! Cam Center" = Creative Live! Cam Center "Creative Live! Cam Manager" = Creative Live! Cam Manager "Creative Live! Cam Video IM User's Guide English" = Creative Live! Cam Video IM User's Guide (English) "Creative Photo Calendar" = Creative Photo Calendar "Creative Photo Manager" = Creative Photo Manager "Creative Software AutoUpdate" = Creative Software AutoUpdate "DTE" = DTE "ENTERPRISE" = Microsoft Office Enterprise 2007 "ExpressRip" = Express Rip "Faktury Express 5_is1" = Faktury Express 5.94 wersja specjalna "FLV Player" = FLV Player 2.0 (build 25) "Free Mp3 Wma Converter_is1" = Free Mp3 Wma Converter V 1.91 "Get Yahoo! Messenger" = Get Yahoo! Messenger "Google Chrome" = Google Chrome "GridinSoft Trojan Killer" = Trojan Killer "Java Web Start" = Java Web Start "konsola_is1" = konsola "Magic Video Converter_is1" = Magic Video Converter Trial Version (English) 8.0.1.18 "Nokia Ovi Suite" = Nokia Ovi Suite "Nokia PC Suite" = Nokia PC Suite "Oxelon Media Converter_is1" = Oxelon Media Converter 1.1 "PIXresizer_is1" = PIXresizer 2.0.3 "PrimoPDF" = PrimoPDF -- brought to you by Nitro PDF Software "SoundTap" = SoundTap Streaming Audio Recorder "Switch" = Switch Sound File Converter "SysInfo" = Creative System Information "VehSim" = Cyborg Idea V-SIM 2.0 Demo "Vivid WorkshopData ATI" = Vivid WorkshopData ATI "WavePad" = WavePad Sound Editor "WinRAR archiver" = Archiwizator WinRAR "XP Codec Pack" = XP Codec Pack "Xvid_is1" = Xvid 1.1.3 final uninstall [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-877702136-2145338818-763332896-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "UnityWebPlayer" = Unity Web Player [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-07-06 12:58:19 | Computer Name = SonGoku | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 108577 Error - 2012-07-06 12:58:30 | Computer Name = SonGoku | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 2012-07-06 12:58:30 | Computer Name = SonGoku | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 119747 Error - 2012-07-06 12:58:30 | Computer Name = SonGoku | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 119747 Error - 2012-07-06 12:58:45 | Computer Name = SonGoku | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 2012-07-06 12:58:45 | Computer Name = SonGoku | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 135316 Error - 2012-07-06 12:58:45 | Computer Name = SonGoku | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 135316 Error - 2012-07-06 13:30:37 | Computer Name = SonGoku | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: FLVPlayer.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x48374e32 Nazwa modułu powodującego błąd: FlashPlayer.3.1.1k.ocx, wersja: 9.0.124.0, sygnatura czasowa: 0x47e8643e Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000c274c Identyfikator procesu powodującego błąd: 0x280 Godzina uruchomienia aplikacji powodującej błąd: 0x01cd5b9d029a8213 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\FLV Player\FLVPlayer.exe Ścieżka modułu powodującego błąd: C:\Users\Daniel\AppData\Local\Temp\mProjector3175261488\FlashPlayer.3.1.1k.ocx Identyfikator raportu: 4c1d2d4f-c790-11e1-9b4a-00c0262eb145 Error - 2012-07-06 13:51:00 | Computer Name = SonGoku | Source = Microsoft-Windows-CAPI2 | ID = 4107 Description = Nie można wyodrębnić listy głównej innych firm z pliku cab automatycznej aktualizacji z: , wystąpił błąd: Wymagany certyfikat jest poza okresem ważności, co wynika z weryfikacji bieżącego zegara systemowego lub sygnatury czasowej. . Error - 2012-07-06 14:02:40 | Computer Name = SonGoku | Source = Application Hang | ID = 1002 Description = Program OTL.exe w wersji 3.2.53.1 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: e3c Godzina rozpoczęcia: 01cd5ba145d162b7 Godzina zakończenia: 25 Ścieżka aplikacji: C:\Users\Gość\Documents\OTL.exe Identyfikator raportu: [ Media Center Events ] Error - 2011-02-06 13:24:04 | Computer Name = SonGoku | Source = MCUpdate | ID = 0 Description = 18:24:04 - Nie można pobrać pakietu Directory (Błąd: Upłynął limit czasu operacji) [ OSession Events ] Error - 2012-06-09 14:02:35 | Computer Name = SonGoku | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 2292 seconds with 2220 seconds of active time. This session ended with a crash. Error - 2012-06-09 14:16:12 | Computer Name = SonGoku | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 753 seconds with 660 seconds of active time. This session ended with a crash. Error - 2012-06-09 14:22:31 | Computer Name = SonGoku | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 315 seconds with 300 seconds of active time. This session ended with a crash. [ System Events ] Error - 2011-09-16 12:25:30 | Computer Name = SonGoku | Source = atikmdag | ID = 43029 Description = Display is not active Error - 2011-09-18 11:55:57 | Computer Name = SonGoku | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2011-09-20 19:12:28 | Computer Name = SonGoku | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2011-09-21 19:15:35 | Computer Name = SonGoku | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2011-09-24 12:44:35 | Computer Name = SonGoku | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2011-09-27 13:28:27 | Computer Name = SonGoku | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2011-09-29 16:54:18 | Computer Name = SonGoku | Source = atikmdag | ID = 52236 Description = CPLIB :: General - Invalid Parameter Error - 2011-09-29 16:54:18 | Computer Name = SonGoku | Source = atikmdag | ID = 43029 Description = Display is not active Error - 2011-09-29 18:21:24 | Computer Name = SonGoku | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2011-09-30 16:38:03 | Computer Name = SonGoku | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. < End of report >