OTL Extras logfile created on: 2012-07-22 18:06:56 - Run 1 OTL by OldTimer - Version 3.2.54.0 Folder = C:\OTL 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 4,00 Gb Total Physical Memory | 2,26 Gb Available Physical Memory | 56,60% Memory free 8,00 Gb Paging File | 5,92 Gb Available in Paging File | 74,06% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 112,60 Gb Total Space | 28,54 Gb Free Space | 25,35% Space Free | Partition Type: NTFS Drive D: | 292,97 Gb Total Space | 22,93 Gb Free Space | 7,83% Space Free | Partition Type: NTFS Drive E: | 292,97 Gb Total Space | 18,16 Gb Free Space | 6,20% Space Free | Partition Type: NTFS Drive H: | 232,88 Gb Total Space | 38,16 Gb Free Space | 16,38% Space Free | Partition Type: NTFS Computer Name: BESTIA | User Name: Toster | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L" Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L" Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{12681CE7-B7BA-4083-B959-09412983F191}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{16930A87-AAEC-42CF-8544-E50ABD5C8970}" = rport=10243 | protocol=6 | dir=out | app=system | "{217D0436-A3E5-4015-A5F6-722F2AF754A0}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{2EED6EA7-1D7B-48B0-AC3D-172C35128A9A}" = lport=445 | protocol=6 | dir=in | app=system | "{3A5BCD03-D14B-4865-993C-1AD39999C2C9}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{3A7AD296-3217-422A-A109-7703627716AE}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{438C9831-2D34-44F2-8657-76759227BB75}" = rport=139 | protocol=6 | dir=out | app=system | "{55B02DD1-E81F-41A4-8CB9-E79A0B497758}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{6636D288-3E75-4DF5-8761-238555FF2F72}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{6FD00E00-71A7-42E5-951B-32D823DD0009}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe | "{724C87BE-B728-4FD0-8A10-3D07BC005E46}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{8BA34310-2C12-40D1-92AE-630A68E6D8F6}" = lport=139 | protocol=6 | dir=in | app=system | "{8DF4C076-51C5-4754-88DB-CC4961761A50}" = rport=138 | protocol=17 | dir=out | app=system | "{9E2AE4DA-9969-401D-8F49-B603D54F7BDB}" = lport=10243 | protocol=6 | dir=in | app=system | "{AA00801D-7D6C-4B7C-B6B5-5FC96EE71859}" = lport=138 | protocol=17 | dir=in | app=system | "{B48FE45B-F29B-43A7-BBA1-B2CEF9DC5DF3}" = rport=445 | protocol=6 | dir=out | app=system | "{B50883D5-A0BC-412F-980A-52EB49066603}" = lport=2869 | protocol=6 | dir=in | app=system | "{BBB13678-34D3-4E37-A78F-7ABC1837F214}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{CD320B7C-3B55-4625-ADA6-70D5D91D7A78}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{D4513F04-D7D6-4ED2-A9AE-410DAD1B1202}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{D47A4636-7F0B-452D-BB54-2A5537229401}" = rport=137 | protocol=17 | dir=out | app=system | "{EBDEA96B-315B-416B-B879-94F8F29D3EE0}" = lport=137 | protocol=17 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{05DEF853-8022-4C99-BB6E-8C525E3D1974}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.524\agent.exe | "{0A5FE345-1536-4FB7-8086-FAE4438A6742}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.954\agent.exe | "{0DE431C0-8101-4972-B7F1-7F818ACEAB01}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{0EC864A9-6355-4D58-B378-6EC2C4DA3635}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{0F07E4C6-4FFB-4F60-8BBF-8E70D1DA160F}" = protocol=6 | dir=in | app=c:\program files (x86)\garena\garena.exe | "{1A14E78D-4F40-4DA9-AE93-05B0D6D2C9CB}" = dir=in | app=d:\gry\fifa 12\game\core\activation.exe | "{1F374643-FC14-45F9-A4D7-0DB1183C60C8}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{1F5ACAB5-7AB4-4574-BD9F-6CF700A16E87}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 | "{1FEC983B-D2EA-471A-904B-B2577413D5B9}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{1FF0B5F2-C902-490F-A266-B7462A56E9F6}" = protocol=17 | dir=in | app=d:\gry\battlefield 3\bf3.exe | "{26A17413-06DE-4195-8610-E05661202184}" = protocol=17 | dir=in | app=c:\program files (x86)\garena\garena.exe | "{26DF8388-5BEE-4C03-B8CF-94E2DEFA5258}" = protocol=6 | dir=in | app=d:\vmware\vmware-authd.exe | "{36464E5D-D611-4226-A913-974C175FD9E9}" = protocol=6 | dir=out | app=system | "{44B451F6-271A-413C-ADA8-BD6793D7756C}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\pluginwrapper\opera_plugin_wrapper.exe | "{44B5403B-A6D4-42EB-8150-E5ACD3B053C7}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{4653F0A9-3C34-41D1-BC13-E7E0AC0277C6}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{4ACC271F-88F9-4BDC-87A9-A4DED85795AA}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{4F137DB2-F235-40F4-9B30-3CC6335D60D4}" = protocol=17 | dir=in | app=d:\gry\diablo iii\diablo iii.exe | "{4F823AC1-BCF4-4D49-973B-C75C1DC1C285}" = dir=out | app=%programfiles% (x86)\napiprojekt\napisy.exe | "{54647F68-FCAE-4BDD-8291-627FCBF477BB}" = dir=in | app=d:\gry\fifa 12\game\fifa.exe | "{551DEF98-0DF6-4E3B-A95B-E79EFDF6AB58}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\pluginwrapper\opera_plugin_wrapper.exe | "{55CDA3CD-B3FA-4C70-ACC3-EF407F3414D5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{59087A58-4A36-458B-83C8-A50887B9F20D}" = protocol=6 | dir=in | app=d:\gry\battlefield 3\bf3.exe | "{5D66C428-4B55-46BE-B5A0-3F19D213E960}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{5EA8534D-A90D-468A-BC81-C4DEEDB60486}" = dir=out | app=d:\gry\pes 2012\pes2012.exe | "{5EF8154E-4893-4A5D-84F6-BD906D3F17D2}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{605BC112-FA3B-460E-9651-7B8ABFEB2596}" = protocol=6 | dir=in | app=d:\vmware\vmware-authd.exe | "{677F6572-7851-4B8A-B681-93CB6CD1B148}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{78019F24-B926-48FE-AABA-86ABD627BE0A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{783B5752-234D-4F97-83A4-EB8D5E805CAD}" = dir=out | app=d:\gry\fifa 12\game\core\eacoreserver.exe | "{8406ECD1-0491-4C00-A305-72838EF3EA75}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{8B146A9D-E2BD-4D01-8669-201892CEF584}" = protocol=17 | dir=in | app=d:\vmware\vmware-authd.exe | "{8B56BBD0-D81E-470D-B404-558E9836791C}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.524\agent.exe | "{8C0438D9-9720-49EF-B8A3-128B4B74F45B}" = protocol=17 | dir=in | app=c:\program files (x86)\garena plus\room\garena_room.exe | "{8E5ECCB4-D737-4D6F-845A-7713815B7E7D}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{91CBD085-2D90-4E1B-B5F2-C84D9F5625DB}" = protocol=6 | dir=in | app=d:\vmware\vmware-authd.exe | "{934CC8FE-34AC-4E91-9430-38AC470B3C67}" = protocol=6 | dir=in | app=d:\gry\world of warcraft\launcher.patch.exe | "{959276F5-1F33-4F06-8154-22DACC4C28E7}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{9C54DE10-50BB-4F9F-8986-4233A4ABCAC4}" = dir=out | app=d:\gry\fifa 12\game\fifa.exe | "{9C94C56B-B61B-43B8-829D-EB92340E5D04}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{9D67BAF4-0148-497F-9926-40C5F16D6667}" = protocol=17 | dir=in | app=d:\vmware\vmware-authd.exe | "{A4AD070B-064C-4E3A-8085-93E759F62B19}" = protocol=58 | dir=in | app=system | "{A710213F-C8E2-4658-825D-C6051A119853}" = protocol=17 | dir=in | app=d:\vmware\vmware-authd.exe | "{A72B7F96-C7A7-4A4F-A620-D1967552B716}" = dir=in | app=d:\gry\fifa 12\game\core\eacoreserver.exe | "{A9EF4CFC-549C-4301-AC4B-225A853547C6}" = protocol=17 | dir=in | app=d:\gry\world of warcraft\launcher.exe | "{AF29D93D-9BA7-43CD-9CC1-41B169393897}" = dir=out | app=d:\gry\fifa 12\game\core\activation.exe | "{AF55F5D9-35A5-4D26-8CEE-F65B410A577D}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{B214DA72-5E71-48EB-BA70-02F0F3FC622C}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{B45A634D-6893-4E12-A09F-39DA90FF1A6C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{B6A0F9D8-6560-456F-BD82-7C633D57F27A}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{BB397C2F-3C9C-4B00-8AD9-5C461833424E}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe | "{BE514EA2-1A7B-4206-B02A-695C73A91BBE}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.954\agent.exe | "{BF2EFA47-C941-4027-BA1B-EB35D33A9E0D}" = protocol=6 | dir=in | app=d:\gry\diablo iii\diablo iii.exe | "{C6D664EF-DEA4-4F2E-BA75-0FC10A5A8D20}" = protocol=6 | dir=in | app=c:\program files (x86)\garena plus\room\garena_room.exe | "{C89BE908-669B-422D-988A-49CC923DA4E3}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{CB7273A8-2B03-4950-9E34-860787C1FEC2}" = dir=in | app=%programfiles% (x86)\napiprojekt\napisy.exe | "{D0CCD8DD-F2C3-4552-A8E0-3CC552DE7DC2}" = dir=in | app=d:\gry\pes 2012\pes2012.exe | "{D189059B-7B17-419F-A40F-390D02C78ADC}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{D67A1E03-6706-4335-B7AC-907C4904DD67}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{DB234C5D-0601-4127-926C-A2FD41CEDF05}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{E3479704-BB28-4D4B-8BD7-C5ADE46A9E84}" = protocol=6 | dir=in | app=e:\diablo iii\diablo iii.exe | "{E4C5FCA4-AA84-4A1A-815D-7207840B70FF}" = protocol=17 | dir=in | app=d:\gry\world of warcraft\launcher.patch.exe | "{EEF3E0FA-14A3-4875-A86F-AD1AE580E4BA}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe | "{F05EF803-3366-443D-8A27-E8714E75E0F3}" = protocol=6 | dir=in | app=d:\gry\world of warcraft\launcher.exe | "{F513CB4C-8D0E-44AB-B059-B8F1E4DD4560}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{F6AF810D-2190-458E-8A4A-15620F66CB55}" = protocol=17 | dir=in | app=e:\diablo iii\diablo iii.exe | "TCP Query User{0976D972-938B-4BEE-BC53-23A4E5FE1E03}C:\program files (x86)\garena plus\room\garena_room.exe" = protocol=6 | dir=in | app=c:\program files (x86)\garena plus\room\garena_room.exe | "TCP Query User{09BD3238-F295-4CF9-A5C2-D3214ACBF54C}C:\program files (x86)\opera\opera.exe" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe | "TCP Query User{10F44BA7-FD69-4FF3-B67A-89A0CE62A77A}E:\sro_full_client_downloader_bmt_v8.exe" = protocol=6 | dir=in | app=e:\sro_full_client_downloader_bmt_v8.exe | "TCP Query User{1FBD79E7-520E-496F-A43F-DFA15AA162B9}C:\program files (x86)\cain\cain.exe" = protocol=6 | dir=in | app=c:\program files (x86)\cain\cain.exe | "TCP Query User{2F9E9A4C-DBD4-4F6B-993C-C7F91F14437B}D:\gry\diablo.iii.collectors.edition\diablo iii.exe" = protocol=6 | dir=in | app=d:\gry\diablo.iii.collectors.edition\diablo iii.exe | "TCP Query User{34D765C8-1663-4AE0-BBF3-5EC00B51A7C5}D:\gry\silkroadr - kopia\agbot.package\nuconnector1.5.exe" = protocol=6 | dir=in | app=d:\gry\silkroadr - kopia\agbot.package\nuconnector1.5.exe | "TCP Query User{35545951-1F15-4617-8098-D575188C7E2F}C:\windows\system32\java.exe" = protocol=6 | dir=in | app=c:\windows\system32\java.exe | "TCP Query User{492208FD-229B-450F-AC9A-536D316CFE8C}C:\windows\syswow64\java.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\java.exe | "TCP Query User{5A5D4A06-BF9E-4C00-BB62-8F02E0C746AA}D:\gry\world of warcraft\temp\wow-4.2.1.2736-enus-tools-downloader.exe" = protocol=6 | dir=in | app=d:\gry\world of warcraft\temp\wow-4.2.1.2736-enus-tools-downloader.exe | "TCP Query User{5AE46F5C-EC8F-43E6-99A7-4ABC6F6A80C0}C:\users\toster\appdata\local\opera\opera\temporary_downloads\sror_full_client_downloader_bmt_v8.exe" = protocol=6 | dir=in | app=c:\users\toster\appdata\local\opera\opera\temporary_downloads\sror_full_client_downloader_bmt_v8.exe | "TCP Query User{5D62BDB1-38F2-4D8C-8207-41CE34AAF0D1}D:\silkroadr\ibot.exe" = protocol=6 | dir=in | app=d:\silkroadr\ibot.exe | "TCP Query User{5F2BBA50-B1FA-4686-9DA0-8A8CC449F95E}D:\gry\call of duty modern warfare 3\iw5sp.exe" = protocol=6 | dir=in | app=d:\gry\call of duty modern warfare 3\iw5sp.exe | "TCP Query User{6D2E303B-6F46-42E1-8D07-041141E3C449}C:\program files\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre7\bin\javaw.exe | "TCP Query User{6F9F6B52-5553-4F7D-B675-D22DE849A07F}C:\program files (x86)\ericsson\network resource gateway sdk\r5a02\simulator\lib\net\erlang\bin\erl.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ericsson\network resource gateway sdk\r5a02\simulator\lib\net\erlang\bin\erl.exe | "TCP Query User{76DBDA88-694B-467E-A6AD-C18DF13B5BFE}D:\gry\silkroadr\ibot.exe" = protocol=6 | dir=in | app=d:\gry\silkroadr\ibot.exe | "TCP Query User{83960B6B-8675-4471-BC2E-813CBEB730BA}D:\gry\ibot - public released v1.1.41\ibot.exe" = protocol=6 | dir=in | app=d:\gry\ibot - public released v1.1.41\ibot.exe | "TCP Query User{8899D1DF-4392-4DE0-8CC3-8944F479E0FC}D:\gry\dota\war3.exe" = protocol=6 | dir=in | app=d:\gry\dota\war3.exe | "TCP Query User{8D4A5473-AF58-411C-9D60-46A0DF1014DF}C:\users\toster\appdata\local\opera\opera\temporary_downloads\sro_full_client_downloader_bmt_v8.exe" = protocol=6 | dir=in | app=c:\users\toster\appdata\local\opera\opera\temporary_downloads\sro_full_client_downloader_bmt_v8.exe | "TCP Query User{8F86AE0B-F2E5-4D94-8221-F399D2AE78B2}C:\programdata\battle.net\agent\agent.976\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.976\agent.exe | "TCP Query User{966BFCA9-C98E-46EF-A806-5F4DF978852F}C:\users\toster\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\toster\appdata\local\akamai\netsession_win.exe | "TCP Query User{B6F0F441-B4DF-49FF-BAE6-3F15597C7A33}D:\gry\silkroadr\agbot.package\nuconnector1.3.exe" = protocol=6 | dir=in | app=d:\gry\silkroadr\agbot.package\nuconnector1.3.exe | "TCP Query User{C6C3B663-5595-48C8-A900-8CFE5F512D5C}C:\program files (x86)\marvell\raid\apache2\bin\httpd.exe" = protocol=6 | dir=in | app=c:\program files (x86)\marvell\raid\apache2\bin\httpd.exe | "TCP Query User{CB58913A-2C77-467D-ACC0-6C28685BE498}C:\program files (x86)\wapster\wapster aqq\aqq.exe" = protocol=6 | dir=in | app=c:\program files (x86)\wapster\wapster aqq\aqq.exe | "TCP Query User{D3559662-8C6C-417F-87D9-BE36F25AE1E2}C:\program files (x86)\garena\garena.exe" = protocol=6 | dir=in | app=c:\program files (x86)\garena\garena.exe | "TCP Query User{DEFD6FD1-D385-4BEF-B569-D586FCC60CC1}C:\jdk1.3.1_15\jre\bin\java.exe" = protocol=6 | dir=in | app=c:\jdk1.3.1_15\jre\bin\java.exe | "TCP Query User{E02E791D-A1C9-4582-98AE-92F2F3C628EA}D:\gry\silkroadr - kopia\agbot.package\nuconnector1.3.exe" = protocol=6 | dir=in | app=d:\gry\silkroadr - kopia\agbot.package\nuconnector1.3.exe | "TCP Query User{E2BBFC65-4BB0-44B7-8579-F9B3AA9F9605}C:\users\toster\desktop\diablo-iii-8370-plpl-installer-downloader.exe" = protocol=6 | dir=in | app=c:\users\toster\desktop\diablo-iii-8370-plpl-installer-downloader.exe | "TCP Query User{EB8B97CE-A886-4CF9-BFD7-1429493ABD9C}D:\gry\silkroadr\ibot - public released v1.1.41\ibot.exe" = protocol=6 | dir=in | app=d:\gry\silkroadr\ibot - public released v1.1.41\ibot.exe | "TCP Query User{ECCE8EBC-F3B3-4073-8CF7-028DF8B8124A}C:\program files\java\jdk1.7.0_02\jre\bin\java.exe" = protocol=6 | dir=in | app=c:\program files\java\jdk1.7.0_02\jre\bin\java.exe | "TCP Query User{FA5B6227-A9F4-47AB-9EE3-127D2068549E}C:\users\toster\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\toster\appdata\local\akamai\netsession_win.exe | "TCP Query User{FF751C76-68AC-4B6B-AC47-6750F80FE987}D:\gry\silkroadr\agbot.package\nuconnector1.5.exe" = protocol=6 | dir=in | app=d:\gry\silkroadr\agbot.package\nuconnector1.5.exe | "UDP Query User{054EC4FF-C66E-4DDD-843B-58C8A4BA7F03}E:\sro_full_client_downloader_bmt_v8.exe" = protocol=17 | dir=in | app=e:\sro_full_client_downloader_bmt_v8.exe | "UDP Query User{1002301F-2A39-418D-8915-D8164DB85326}D:\gry\silkroadr\ibot - public released v1.1.41\ibot.exe" = protocol=17 | dir=in | app=d:\gry\silkroadr\ibot - public released v1.1.41\ibot.exe | "UDP Query User{159C6E3F-DDF8-4AB1-8BB6-2409762454D2}D:\gry\world of warcraft\temp\wow-4.2.1.2736-enus-tools-downloader.exe" = protocol=17 | dir=in | app=d:\gry\world of warcraft\temp\wow-4.2.1.2736-enus-tools-downloader.exe | "UDP Query User{1771C1F1-1313-4206-AC51-FBC2BC2F370E}C:\jdk1.3.1_15\jre\bin\java.exe" = protocol=17 | dir=in | app=c:\jdk1.3.1_15\jre\bin\java.exe | "UDP Query User{18D0E428-2318-4EEA-B6FC-A2A20EA75726}D:\silkroadr\ibot.exe" = protocol=17 | dir=in | app=d:\silkroadr\ibot.exe | "UDP Query User{1903F26D-B293-49E1-885A-CC4F880B28C0}C:\users\toster\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\toster\appdata\local\akamai\netsession_win.exe | "UDP Query User{23CB8B3B-93BF-4EC2-827A-82E7002503A8}C:\program files (x86)\cain\cain.exe" = protocol=17 | dir=in | app=c:\program files (x86)\cain\cain.exe | "UDP Query User{268F03F6-27EB-4594-92F6-80B629A110B5}D:\gry\silkroadr\agbot.package\nuconnector1.5.exe" = protocol=17 | dir=in | app=d:\gry\silkroadr\agbot.package\nuconnector1.5.exe | "UDP Query User{2A05AA5A-86A5-44BB-B2CF-6E71296B16C0}C:\users\toster\desktop\diablo-iii-8370-plpl-installer-downloader.exe" = protocol=17 | dir=in | app=c:\users\toster\desktop\diablo-iii-8370-plpl-installer-downloader.exe | "UDP Query User{336F489F-B714-46A7-AD2F-904F5CFF42D8}C:\programdata\battle.net\agent\agent.976\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.976\agent.exe | "UDP Query User{3F8EF012-09F8-4067-9654-CED525F27F1A}C:\windows\system32\java.exe" = protocol=17 | dir=in | app=c:\windows\system32\java.exe | "UDP Query User{433626A9-976F-4152-B9EB-1D0590DD7305}C:\program files\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre7\bin\javaw.exe | "UDP Query User{4905A679-8E8E-43A3-9717-747D4989ECEE}C:\program files (x86)\garena\garena.exe" = protocol=17 | dir=in | app=c:\program files (x86)\garena\garena.exe | "UDP Query User{50E197C0-8750-4844-B3DA-50BA261B2629}D:\gry\silkroadr\agbot.package\nuconnector1.3.exe" = protocol=17 | dir=in | app=d:\gry\silkroadr\agbot.package\nuconnector1.3.exe | "UDP Query User{535A6879-1686-4651-8249-76F026BA6F80}C:\program files (x86)\opera\opera.exe" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe | "UDP Query User{62CAD671-B53A-4599-A978-A01FF81E0B3D}C:\users\toster\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\toster\appdata\local\akamai\netsession_win.exe | "UDP Query User{6BC8C2FA-7A2E-494B-8B7D-D2DED8BC7D83}C:\users\toster\appdata\local\opera\opera\temporary_downloads\sro_full_client_downloader_bmt_v8.exe" = protocol=17 | dir=in | app=c:\users\toster\appdata\local\opera\opera\temporary_downloads\sro_full_client_downloader_bmt_v8.exe | "UDP Query User{75217FDE-E380-4163-AAD7-593A21467BB9}D:\gry\silkroadr - kopia\agbot.package\nuconnector1.3.exe" = protocol=17 | dir=in | app=d:\gry\silkroadr - kopia\agbot.package\nuconnector1.3.exe | "UDP Query User{7CD1D1A5-C948-4E46-AB94-570164F10E2C}D:\gry\ibot - public released v1.1.41\ibot.exe" = protocol=17 | dir=in | app=d:\gry\ibot - public released v1.1.41\ibot.exe | "UDP Query User{7EF90F41-0A55-414D-A6C0-F303A9169FA6}C:\program files\java\jdk1.7.0_02\jre\bin\java.exe" = protocol=17 | dir=in | app=c:\program files\java\jdk1.7.0_02\jre\bin\java.exe | "UDP Query User{918302F3-AA24-496E-B56A-A0FF20149B95}C:\program files (x86)\marvell\raid\apache2\bin\httpd.exe" = protocol=17 | dir=in | app=c:\program files (x86)\marvell\raid\apache2\bin\httpd.exe | "UDP Query User{A9103629-793A-4B8F-8B95-0234D57BAE9D}D:\gry\silkroadr - kopia\agbot.package\nuconnector1.5.exe" = protocol=17 | dir=in | app=d:\gry\silkroadr - kopia\agbot.package\nuconnector1.5.exe | "UDP Query User{AD228F30-8C79-4667-858C-7CEFB8DEBA30}C:\windows\syswow64\java.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\java.exe | "UDP Query User{B7CBBD28-B0FE-4F49-A6F8-908ED1F1BDAC}D:\gry\diablo.iii.collectors.edition\diablo iii.exe" = protocol=17 | dir=in | app=d:\gry\diablo.iii.collectors.edition\diablo iii.exe | "UDP Query User{C6074DBE-4A30-4EAA-A26F-F0E34D184A81}D:\gry\call of duty modern warfare 3\iw5sp.exe" = protocol=17 | dir=in | app=d:\gry\call of duty modern warfare 3\iw5sp.exe | "UDP Query User{DF85E88C-0D16-4FD3-8320-E87A5D53B8D2}C:\program files (x86)\garena plus\room\garena_room.exe" = protocol=17 | dir=in | app=c:\program files (x86)\garena plus\room\garena_room.exe | "UDP Query User{E4F12092-571B-4319-A9CC-48788470BE1B}C:\program files (x86)\wapster\wapster aqq\aqq.exe" = protocol=17 | dir=in | app=c:\program files (x86)\wapster\wapster aqq\aqq.exe | "UDP Query User{EF960A08-B7B5-4D40-AB9B-9FB87B3943C9}C:\program files (x86)\ericsson\network resource gateway sdk\r5a02\simulator\lib\net\erlang\bin\erl.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ericsson\network resource gateway sdk\r5a02\simulator\lib\net\erlang\bin\erl.exe | "UDP Query User{F0812BCB-412B-4A7F-B4A4-921082510842}D:\gry\dota\war3.exe" = protocol=17 | dir=in | app=d:\gry\dota\war3.exe | "UDP Query User{F18CCD92-8E5B-4561-98CF-2A220B104B29}C:\users\toster\appdata\local\opera\opera\temporary_downloads\sror_full_client_downloader_bmt_v8.exe" = protocol=17 | dir=in | app=c:\users\toster\appdata\local\opera\opera\temporary_downloads\sror_full_client_downloader_bmt_v8.exe | "UDP Query User{F5B3041B-7E04-4BE6-8A00-44852F264618}D:\gry\silkroadr\ibot.exe" = protocol=17 | dir=in | app=d:\gry\silkroadr\ibot.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0CC4F67D-D41D-8C1A-C605-39154DDEAC63}" = AMD Fuel "{1111706F-666A-4037-7777-202648764D10}" = JavaFX 2.0.2 (64-bit) "{119B2F5A-2A06-DB96-FF28-992EC2A10BDF}" = AMD Accelerated Video Transcoding "{2222706F-666A-4037-7777-202648764D10}" = JavaFX 2.0.2 SDK (64-bit) "{26A24AE4-039D-4CA4-87B4-2F86417002FF}" = Java(TM) 7 Update 2 (64-bit) "{2E8D6204-D656-8355-1ED3-2988AC52EB0F}" = ccc-utility64 "{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 "{4D533F05-A3F6-F8A9-F1F6-FA6812089D36}" = AMD Drag and Drop Transcoding "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime "{5831C6D6-309D-DBB5-14F7-FEE57086CEE7}" = AMD Catalyst Install Manager "{63CE6C32-1EB3-4C51-89FC-9FD96A661A9C}" = AMD Media Foundation Decoders "{64A3A4F4-B792-11D6-A78A-00B0D0170020}" = Java(TM) SE Development Kit 7 Update 2 (64-bit) "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{8E5DA9A6-7A9F-3A6F-BC5C-D6CBCA6A29C7}" = Microsoft .NET Framework 4 Extended PLK Language Pack "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007 "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2010 "{9B2C4509-2B9F-4303-BA74-E2F9BB773F03}" = Oracle VM VirtualBox 4.1.8 "{9C597DD7-2A52-481F-A440-C43A238120EA}" = STATISTICA PL 10 (64-bit) "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{DA2737A4-B639-96F4-1CC2-30D2919EE1FB}" = AMD Steady Video Plug-In "{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "CCleaner" = CCleaner "CPUID CPU-Z_is1" = CPUID CPU-Z 1.61 "GPL Ghostscript 9.04" = GPL Ghostscript "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft .NET Framework 4 Extended PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended "STATNOVAPDF_is1" = STATNOVAPDF (novaPDF 7.1 printer) "WinRAR archiver" = WinRAR 4.01 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{003BFBBD-6C67-419E-A24D-0DCAFC3A5249}" = tools-freebsd "{03D4C700-2BFE-43E0-A0B4-9512B43C5B9F}" = Catalyst Control Center - Branding "{07300F01-89CA-4CF8-92BD-2A605EB83C95}" = EasySaver B9.0904.1 "{07B23443-AFF0-4D8A-A8A1-EB73A226973B}" = Abstract Micro Systems Erlang Library for Excel "{197597A7-AD33-4898-9D8E-73066818B464}" = tools-netware "{19D614EB-D62A-AEE7-2391-E74126601D59}" = CCC Help Italian "{1C373820-B9C8-0F7F-8F84-FC1B76A85F27}" = CCC Help Portuguese "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83216030FF}" = Java(TM) 6 Update 30 "{2D35BC33-7D08-D529-DF91-8A15FBF2600E}" = CCC Help Polish "{3248F0A8-6813-11D6-A77B-00B0D0160000}" = Java(TM) SE Runtime Environment 6 "{32A3A4F4-B792-11D6-A78A-00B0D0160000}" = Java(TM) SE Development Kit 6 "{337788D1-43D1-9A0F-9787-DD00DB512D41}" = Catalyst Control Center Localization All "{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = Gigabyte Raid Cinfigurer "{4725833D-4325-5C34-57D4-1FE23E5AE578}" = CCC Help Chinese Standard "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4B271648-43CB-DD31-FF24-E7B06D3EE72A}" = Catalyst Control Center InstallProxy "{4DC37F33-7AEC-A4CB-56B1-69A402828763}" = CCC Help Japanese "{5449FB4F-1802-4D5B-A6D8-087DB1142147}" = Realtek HDMI Audio Driver for ATI "{5710DAC2-8F2A-503C-CFC2-A973ADE0EA4C}" = CCC Help Czech "{5B363E1D-8C36-4458-BAE4-D5081999E094}" = Browser Configuration Utility "{5C763682-4C40-86DA-9C46-31924D7D2C34}" = CCC Help Thai "{60E5022D-FA4B-C6A2-1E80-B46EC39096F3}" = CCC Help Chinese Traditional "{60F34FDF-267C-408F-290E-EC90D841C8CB}" = CCC Help German "{66B79AE1-C6E2-B958-689C-D0812DE86BAB}" = CCC Help Greek "{68249B75-B714-11D7-88E8-0050DA21757E}" = Java 2 Runtime Environment Standard Edition v1.3.1_15 "{6B39BE0F-0F5E-A8FA-33E4-8481AE39D96C}" = CCC Help Russian "{6B6EF732-A621-4BAB-A695-CEF6C76B46F2}" = Ettercap "{7A2A107B-9695-423F-9462-8F17C178BD35}" = TP-LINK Wireless Client Utility "{7FB413C8-3CAD-49F7-A67C-6EFEB4B04050}" = LogMeIn Hamachi "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8E19F2AF-7145-51DE-E395-7729A9374973}" = Catalyst Control Center Graphics Previews Common "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00B2-0409-0000-0000000FF1CE}" = Microsoft Save as PDF or XPS Add-in for 2007 Microsoft Office programs "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0407-0000-0000000FF1CE}_Office14.VISIOR_{65A2328E-FDFB-4CA3-8582-357EA6825FEA}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0409-0000-0000000FF1CE}_Office14.VISIOR_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-001F-0415-0000-0000000FF1CE}_Office14.VISIOR_{1D751709-BA6C-49E2-844B-4F4F20F410C9}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002A-0000-1000-0000000FF1CE}_Office14.VISIOR_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002A-0415-1000-0000000FF1CE}_Office14.VISIOR_{0844B6E1-0A6F-4D81-8BCF-48F883F521FE}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-002C-0415-0000-0000000FF1CE}_Office14.VISIOR_{6606F321-8216-466E-981E-B75A14C46894}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0054-0415-0000-0000000FF1CE}" = Microsoft Office Visio MUI (Polish) 2010 "{90140000-0054-0415-0000-0000000FF1CE}_Office14.VISIOR_{45B7EB13-4213-41E0-ACB2-A5FF74F87171}" = Microsoft Office 2010 Language Pack Service Pack 1 (SP1) "{90140000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-006E-0415-0000-0000000FF1CE}_Office14.VISIOR_{6AF8887A-72F7-4FA0-ABE4-396172B64550}" = Microsoft Office 2010 Service Pack 1 (SP1) "{91140000-0057-0000-0000-0000000FF1CE}" = Microsoft Office Visio 2010 "{91140000-0057-0000-0000-0000000FF1CE}_Office14.VISIOR_{01D8AE4B-A04D-47E5-81BF-E3F98B81B8C3}" = Microsoft Visio 2010 Service Pack 1 (SP1) "{91CB5B8B-4EC8-DBA1-A88D-99FD480567B0}" = CCC Help English "{924FBAC4-60D2-7981-3C3E-979DF9CBB346}" = CCC Help Finnish "{96539827-B716-11D7-88E8-0050DA21757E}" = Java 2 SDK Standard Edition v1.3.1_15 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9DC939DC-B7A4-D0E2-C582-A442DF1B3EBE}" = CCC Help Spanish "{A1BD938B-F006-6E6D-70B2-47E1DD56F7DE}" = CCC Help Swedish "{A3FF5CB2-FB35-4658-8751-9EDE1D65B3AA}" = VMware Workstation "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AA59DDE4-B672-4621-A016-4C248204957A}" = Skype™ 5.5 "{AB1C87CB-1807-4CF0-B4C2-CEE14C18CDB4}" = tools-solaris "{AC76BA86-7AD7-1045-7B44-A95000000001}" = Adobe Reader 9.5.1 - Polish "{AE0F62A7-A1A2-407F-9F4C-48939BD9AD8D}" = tools-winPre2k "{BABF7852-C2DD-6A8A-9956-101720C715C7}" = CCC Help Turkish "{BB7C2A56-9706-43B8-5A8C-210AF5816106}" = CCC Help French "{C28422FB-F2CD-427A-ADED-9F281745CDB2}" = Secure Download Manager "{CFC2CB60-5654-05A7-4D30-C661800A3A92}" = CCC Help Korean "{D04CE005-D1D2-80F3-84C8-B3524FCD39C3}" = CCC Help Norwegian "{D102611A-6466-4101-A51D-51069303AC65}" = tools-linux "{D544AE4C-4152-225B-A897-6756C8986B14}" = AMD VISION Engine Control Center "{D7BF9739-8A68-4335-BBEE-37752AD9E86B}" = NEC Electronics USB 3.0 Host Controller Driver "{D81E9069-3CCC-4405-3751-71E4AFEACC52}" = CCC Help Hungarian "{E737A098-F161-4B6F-AF22-86AAE34F6FBD}" = Pro Evolution Soccer 2012 "{E93FF166-DF14-2537-8FB4-96BB5810A96C}" = CCC Help Danish "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FA9827E1-8A8E-C176-4923-0840A67ED4DE}" = CCC Help Dutch "{FFD9383C-01D5-4897-A954-43AF599AED30}" = tools-windows "4t Tray Minimizer_is1" = 4t Tray Minimizer Free 5.52 "5513-1208-7298-9440" = JDownloader 0.9 "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "AQQ" = WapSter AQQ "Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus "Cain & Abel v4.9.43" = Cain & Abel v4.9.43 "Comical_is1" = Comical 0.8 "DAEMON Tools Lite" = DAEMON Tools Lite "Dev-C++" = Dev-C++ "Diablo III" = Diablo III "ENTERPRISE" = Microsoft Office Enterprise 2007 "Ericsson Network Resource Gateway SDK R5A02" = Ericsson Network Resource Gateway SDK R5A02 (remove only) "Ettercap 0.7.4" = Ettercap-0.7.4 "FIFA 12 (c) EA_is1" = FIFA 12 (c) EA version 1 "foobar2000" = foobar2000 v1.1.10 "Garena" = Garena 2010 "Google Chrome" = Google Chrome "GPL Ghostscript 9.04" = GPL Ghostscript "GSview 4.9" = GSview 4.9 "im" = Garena Plus "InstallShield_{D7BF9739-8A68-4335-BBEE-37752AD9E86B}" = NEC Electronics USB 3.0 Host Controller Driver "Kamerzysta" = Kamerzysta (deinstalacja) "KLiteCodecPack_is1" = K-Lite Codec Pack 8.0.0 (Full) "LastFM_is1" = Last.fm 1.5.4.27091 "LogMeIn Hamachi" = LogMeIn Hamachi "Monopoly by Parker Brothers" = Monopoly by Parker Brothers "Mozilla Firefox 11.0 (x86 pl)" = Mozilla Firefox 11.0 (x86 pl) "Mozilla Thunderbird 12.0.1 (x86 pl)" = Mozilla Thunderbird 12.0.1 (x86 pl) "mv61xxMRU" = Marvell MRU V4 "NapiProjekt_is1" = NapiProjekt 2.0.0 (build 2151) "nbi-glassfish-mod-3.1.1.12.0" = GlassFish Server Open Source Edition 3.1.1 "nbi-nb-base-7.1.0.0.0" = NetBeans IDE 7.1 "Notepad++" = Notepad++ "Office14.VISIOR" = Microsoft Visio Professional 2010 "Opera 12.00.1467" = Opera 12.00 "PartyPoker" = PartyPoker "SCStudio" = Sequence Chart Studio 0.5.0 "Silkroad" = Silkroad "SilkroadR" = SilkroadR "SpeedFan" = SpeedFan (remove only) "uTorrent" = µTorrent "VMware_Workstation" = VMware Workstation "vShare.tv plugin" = vShare.tv plugin 1.3 "Warcraft III" = Warcraft III "WinPcapInst" = WinPcap 4.1.2 "World of Warcraft" = World of Warcraft [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-466984408-713407962-3158913773-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Akamai" = Akamai NetSession Interface "Poker 770" = Poker 770 "Titan Poker" = Titan Poker "Warcraft III" = Warcraft III: All Products [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-07-21 04:11:10 | Computer Name = BESTIA | Source = DCOM | ID = 10010 Description = Error - 2012-07-21 10:19:32 | Computer Name = BESTIA | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: Fuel.Service.exe, wersja: 1.0.0.0, sygnatura czasowa: 0x4f7e4d8c Nazwa modułu powodującego błąd: Device.dll, wersja: 4.1.0.0, sygnatura czasowa: 0x4f55e10b Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000000033c1 Identyfikator procesu powodującego błąd: 0x6c0 Godzina uruchomienia aplikacji powodującej błąd: 0x01cd671837b86e99 Ścieżka aplikacji powodującej błąd: C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe Ścieżka modułu powodującego błąd: C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll Identyfikator raportu: 16cb5597-d33f-11e1-9511-98ea3aaef8a9 Error - 2012-07-21 17:58:09 | Computer Name = BESTIA | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: Fuel.Service.exe, wersja: 1.0.0.0, sygnatura czasowa: 0x4f7e4d8c Nazwa modułu powodującego błąd: Device.dll, wersja: 4.1.0.0, sygnatura czasowa: 0x4f55e10b Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000000033c1 Identyfikator procesu powodującego błąd: 0x6a0 Godzina uruchomienia aplikacji powodującej błąd: 0x01cd67531c5690dc Ścieżka aplikacji powodującej błąd: C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe Ścieżka modułu powodującego błąd: C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll Identyfikator raportu: 280bf042-d37f-11e1-913f-d1a0c955c7a9 Error - 2012-07-22 04:33:08 | Computer Name = BESTIA | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: iBot.exe, wersja: 1.1.0.41, sygnatura czasowa: 0x4fac1f35 Nazwa modułu powodującego błąd: iBot.dll_unloaded, wersja: 0.0.0.0, sygnatura czasowa: 0x4ef7e150 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x10010ccb Identyfikator procesu powodującego błąd: 0x440 Godzina uruchomienia aplikacji powodującej błąd: 0x01cd67e3008899c5 Ścieżka aplikacji powodującej błąd: D:\SilkroadR\iBot.exe Ścieżka modułu powodującego błąd: iBot.dll Identyfikator raportu: dcabf89f-d3d7-11e1-9602-cea71b1653a2 Error - 2012-07-22 04:32:46 | Computer Name = BESTIA | Source = DCOM | ID = 10010 Description = Error - 2012-07-22 04:38:25 | Computer Name = BESTIA | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: Fuel.Service.exe, wersja: 1.0.0.0, sygnatura czasowa: 0x4f7e4d8c Nazwa modułu powodującego błąd: Device.dll, wersja: 4.1.0.0, sygnatura czasowa: 0x4f55e10b Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000000033c1 Identyfikator procesu powodującego błąd: 0x698 Godzina uruchomienia aplikacji powodującej błąd: 0x01cd67e4661c88ca Ścieżka aplikacji powodującej błąd: C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe Ścieżka modułu powodującego błąd: C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll Identyfikator raportu: 99fd6d9a-d3d8-11e1-b767-ea4dadb527a8 Error - 2012-07-22 06:40:44 | Computer Name = BESTIA | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: opera_plugin_wrapper.exe, wersja: 12.0.1467.0, sygnatura czasowa: 0x4fd85a2f Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.17725, sygnatura czasowa: 0x4ec49b8f Kod wyjątku: 0xc0000374 Przesunięcie błędu: 0x000ce6c3 Identyfikator procesu powodującego błąd: 0x1aec Godzina uruchomienia aplikacji powodującej błąd: 0x01cd67f5f79ce953 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Opera\pluginwrapper\opera_plugin_wrapper.exe Ścieżka modułu powodującego błąd: C:\Windows\SysWOW64\ntdll.dll Identyfikator raportu: b040e7e2-d3e9-11e1-950e-efda70b2f1a8 Error - 2012-07-22 11:48:01 | Computer Name = BESTIA | Source = DCOM | ID = 10005 Description = Error - 2012-07-22 11:48:12 | Computer Name = BESTIA | Source = DCOM | ID = 10005 Description = Error - 2012-07-22 11:48:21 | Computer Name = BESTIA | Source = DCOM | ID = 10005 Description = Error - 2012-07-22 11:48:21 | Computer Name = BESTIA | Source = DCOM | ID = 10005 Description = [ System Events ] Error - 2012-04-17 16:38:01 | Computer Name = BESTIA | Source = Service Control Manager | ID = 7000 Description = Error - 2012-04-18 11:16:33 | Computer Name = BESTIA | Source = Service Control Manager | ID = 7000 Description = Error - 2012-04-18 15:17:12 | Computer Name = BESTIA | Source = Service Control Manager | ID = 7000 Description = Error - 2012-04-18 15:27:47 | Computer Name = BESTIA | Source = Schannel | ID = 36887 Description = Odebrano następujący alert krytyczny: 40. Error - 2012-04-18 15:27:47 | Computer Name = BESTIA | Source = Schannel | ID = 36887 Description = Odebrano następujący alert krytyczny: 40. Error - 2012-04-18 15:27:47 | Computer Name = BESTIA | Source = Schannel | ID = 36887 Description = Odebrano następujący alert krytyczny: 40. Error - 2012-04-18 15:27:48 | Computer Name = BESTIA | Source = Schannel | ID = 36887 Description = Odebrano następujący alert krytyczny: 40. Error - 2012-04-19 04:19:19 | Computer Name = BESTIA | Source = Service Control Manager | ID = 7000 Description = Error - 2012-04-19 05:54:41 | Computer Name = BESTIA | Source = Microsoft-Windows-Kernel-General | ID = 5 Description = Error - 2012-04-19 08:25:52 | Computer Name = BESTIA | Source = Service Control Manager | ID = 7000 Description = < End of report >