OTL Extras logfile created on: 2012-08-20 16:46:56 - Run 1 OTL by OldTimer - Version 3.2.58.1 Folder = C:\Users\Piotr\Downloads Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 1,83 Gb Available Physical Memory | 60,88% Memory free 6,21 Gb Paging File | 4,76 Gb Available in Paging File | 76,63% Paging File free Paging file location(s): ?:\pagefile.sys %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 465,76 Gb Total Space | 131,92 Gb Free Space | 28,32% Space Free | Partition Type: NTFS Drive D: | 654,81 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Computer Name: PIOTR-PC | User Name: Piotr | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .js [@ = JSFile] -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\PAVSCRIP.EXE (Panda Security, S.L.) .jse [@ = JSEFile] -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\PAVSCRIP.EXE (Panda Security, S.L.) .vbe [@ = VBEFile] -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\PAVSCRIP.EXE (Panda Security, S.L.) .vbs [@ = VBSFile] -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\PAVSCRIP.EXE (Panda Security, S.L.) .wsf [@ = WSFFile] -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\PAVSCRIP.EXE (Panda Security, S.L.) .wsh [@ = WSHFile] -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\PAVSCRIP.EXE (Panda Security, S.L.) [HKEY_USERS\S-1-5-21-899994395-764980729-1231617272-1001\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) jsfile [open] -- C:\PROGRA~1\PANDAS~1\PANDAA~1\PavScrip.exe "%1" %* (Panda Security, S.L.) jsefile [open] -- C:\PROGRA~1\PANDAS~1\PANDAA~1\PavScrip.exe "%1" %* (Panda Security, S.L.) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. vbefile [open] -- C:\PROGRA~1\PANDAS~1\PANDAA~1\PavScrip.exe "%1" %* (Panda Security, S.L.) vbsfile [open] -- C:\PROGRA~1\PANDAS~1\PANDAA~1\PavScrip.exe "%1" %* (Panda Security, S.L.) wsffile [open] -- C:\PROGRA~1\PANDAS~1\PANDAA~1\PavScrip.exe "%1" %* (Panda Security, S.L.) wshfile [open] -- C:\PROGRA~1\PANDAS~1\PANDAA~1\PavScrip.exe "%1" %* (Panda Security, S.L.) Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "AutoUpdateDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{009E1953-925A-4DDB-A95D-58053D380D96}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{09E96E5B-34B4-4E1F-BDFF-2047328A1BDF}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office12\outlook.exe | "{2F79F714-9770-433A-90CD-D28CF1D2A3C0}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4074B757-EE4E-4144-A2E5-24BCEECE0DDB}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{4E9BB1D6-10B9-448E-8DBA-C33A63F88929}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{7E1FBBC8-65C4-4605-92FC-127BCCA841FB}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{8ABBBC8D-499B-4B16-B441-9202A258860F}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{C69C899A-B4D8-40FF-9CE1-2D4F5A776717}" = lport=10243 | protocol=6 | dir=in | app=system | "{CBB0108F-FA20-460B-813C-270E63D23C93}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | "{D0E93D1F-9A04-4609-9A72-7E772A79B1CA}" = lport=2869 | protocol=6 | dir=in | app=system | "{E0FD6BBB-8F1C-470E-8A2E-28A708F3451C}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{EA7AE474-2DD0-4D4F-861E-55FF5B05C522}" = lport=2869 | protocol=6 | dir=in | app=system | "{F230182D-A256-4FE6-AED0-A85630A389BD}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{F9B64324-8EB2-4726-94CD-8A86AAFAC9CD}" = rport=10243 | protocol=6 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{071AB4F3-F1EE-4512-A40D-0FB3F117AB90}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{09EE38BF-4E24-4564-BA80-08967CBAAC0E}" = protocol=17 | dir=in | app=c:\program files\origin games\battlefield 3\bf3.exe | "{1381B586-085D-45A6-BC6B-0459BA4DE3C3}" = protocol=6 | dir=in | app=c:\program files\raptr\raptr_im.exe | "{17D4EB2D-536A-4EBE-ACCE-EB31E9D019EF}" = protocol=6 | dir=in | app=c:\windows\system32\muzapp.exe | "{266E3C07-083F-42A2-AFA7-40948DF7066C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{2B26E007-51EC-4F6E-9F79-39BD8D6AAD4A}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "{3B31E898-3C12-4DDB-9DBD-D5712A897C68}" = protocol=17 | dir=in | app=c:\program files\raptr\raptr_im.exe | "{3BFD6845-50AC-49C3-9766-DE7B8F5899C2}" = protocol=17 | dir=in | app=c:\program files\raptr\raptr.exe | "{3E3EFF38-B448-4672-BE56-E6B99C8217D2}" = protocol=6 | dir=in | app=c:\program files\rockstar games\rockstar games social club\rgsclauncher.exe | "{40E9A569-3B87-47AC-B3DB-B1432E1DE492}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{53A747DA-F69E-4AF7-8E6E-689F834AC4C4}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe | "{562CCF26-5159-464D-8CC6-F5BCE67C8A7C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{5AFA6480-AE14-4DB7-B933-A468DBA3754F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{6285CF09-6282-4622-9C1F-5626CE6A3F37}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{662B6008-0A72-4CE0-9548-FEB941085A94}" = protocol=17 | dir=in | app=c:\program files\sports interactive\football manager 2010\fm.exe | "{673B86CD-219A-40A6-AAED-1B7D3A96FF68}" = protocol=6 | dir=in | app=c:\program files\sports interactive\football manager 2010\fm.exe | "{6C7E090C-2EF6-40AB-A51C-EE615BED64B0}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe | "{6DFE01B3-0DD7-4C8C-A11F-69B7B2E54545}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{71452006-8BC0-4353-AC7A-3C420A82E3FA}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "{7502F8C1-94CE-4935-AECE-93A6C3E9E5F6}" = protocol=6 | dir=out | app=system | "{7BCA53DB-F7AC-4905-95D8-325C9EF1F4FB}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{7EBC0026-40F5-4E4F-B7BF-99428227F3BC}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{7EEE7B75-33A1-41BE-879B-9B486A28AC62}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{7F74BADE-55A6-4B24-800E-4A2C844B9B92}" = protocol=6 | dir=in | app=c:\program files\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{8A0B757F-C683-4F55-B072-78D6865B5387}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe | "{8C36B824-445E-49E7-A0E9-406F0E9B3497}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{8E1504F9-2B5A-40C2-AB8C-EA70B1E9B234}" = protocol=6 | dir=in | app=c:\program files\codemasters\f1 2010\f1_2010_game.exe | "{8EA97F67-A688-4165-A0BA-9BB41E1B638B}" = protocol=6 | dir=in | app=c:\program files\origin games\battlefield 3\bf3.exe | "{938B4CF5-C53D-4F93-A7C4-7D655D5E6FDD}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{9DCA9D81-E36A-44C3-949D-BC437D89E0AB}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{A149BB96-2B20-4B36-8C9B-00AB1CC5543E}" = dir=in | app=c:\program files\windows live\contacts\wlcomm.exe | "{B1209DB9-D7E0-4619-8047-B775487377ED}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{B441A437-CD1A-4A53-BA14-031952142BE9}" = protocol=17 | dir=in | app=c:\program files\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{BBACA213-3718-467F-9AF7-5002247BCDE6}" = dir=in | app=c:\program files\windows live\mesh\moe.exe | "{BCBDFB03-6E9A-429E-9558-CB5450DAEEF3}" = protocol=17 | dir=in | app=c:\program files\rockstar games\rockstar games social club\rgsclauncher.exe | "{BD938494-DBAA-438D-BD95-8B66358F26E4}" = protocol=6 | dir=in | app=c:\program files\raptr\raptr.exe | "{C26338B9-725F-4A14-871E-D96DC4076722}" = protocol=17 | dir=in | app=c:\program files\codemasters\f1 2010\f1_2010_game.exe | "{CEBE9EBC-9CD6-44A0-9A9E-C1FC15C84BAF}" = protocol=17 | dir=in | app=c:\windows\system32\muzapp.exe | "{E6647F04-6D30-47DD-BEB3-E8BB8FCDC701}" = protocol=6 | dir=in | app=c:\program files\vuze\azureus.exe | "{F190211F-BDE0-492B-9104-2B2D97B89079}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{FAE29873-B5BC-4D00-BFA1-E9E25C9F760B}" = protocol=17 | dir=in | app=c:\program files\vuze\azureus.exe | "TCP Query User{3059C921-362B-4749-BDB0-A1B1EE79B879}C:\program files\raptr\raptr.exe" = protocol=6 | dir=in | app=c:\program files\raptr\raptr.exe | "TCP Query User{5A1337E5-4FF5-44F0-B49A-2AB29F1586A7}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "TCP Query User{67AED595-151C-4E6D-93C4-9F164E96CF60}C:\program files\panda security\panda antivirus pro 2012\apvxdwin.exe" = protocol=6 | dir=in | app=c:\program files\panda security\panda antivirus pro 2012\apvxdwin.exe | "TCP Query User{6F6137B1-2C48-4E0E-A719-C7B5BF54840B}C:\program files\rockstar games\grand theft auto iv\gtaiv.exe" = protocol=6 | dir=in | app=c:\program files\rockstar games\grand theft auto iv\gtaiv.exe | "TCP Query User{7B973FBE-F15F-4416-9A4D-03D1381E3802}C:\program files\electronic arts\call of duty\iw3mp.exe" = protocol=6 | dir=in | app=c:\program files\electronic arts\call of duty\iw3mp.exe | "TCP Query User{95C5041D-7DC7-4391-BF86-673304697741}C:\program files\sports interactive\football manager 2007\fm.exe" = protocol=6 | dir=in | app=c:\program files\sports interactive\football manager 2007\fm.exe | "TCP Query User{9A9D5CB0-3148-440C-B260-6EE0167F7AE3}C:\program files\gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu\gg.exe | "TCP Query User{A1F81DC9-98BC-430E-BAD7-7CE27AB37B8F}C:\program files\gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu\gg.exe | "TCP Query User{C831F20D-767D-4835-8733-47AA8D2FB74B}C:\program files\f1 2010\f1_2010_game.exe" = protocol=6 | dir=in | app=c:\program files\f1 2010\f1_2010_game.exe | "TCP Query User{D2E24B0B-E599-4213-BFA4-C878F6B673E9}C:\program files\downvision\downvision.exe" = protocol=6 | dir=in | app=c:\program files\downvision\downvision.exe | "TCP Query User{D6FE8826-BD55-47BB-A66B-0E45B738BE22}C:\program files\ea sports\fifa 11 demo\game\fifa.exe" = protocol=6 | dir=in | app=c:\program files\ea sports\fifa 11 demo\game\fifa.exe | "TCP Query User{DA2C3E14-9FB1-45AD-B392-D999D708BC03}C:\program files\counter strike\hl.exe" = protocol=6 | dir=in | app=c:\program files\counter strike\hl.exe | "TCP Query User{DCEB40B1-CFAA-4D61-BE1F-19AE6BB5C2A7}C:\program files\ea sports\fifa 11\game\fifa.exe" = protocol=6 | dir=in | app=c:\program files\ea sports\fifa 11\game\fifa.exe | "TCP Query User{E1BE8192-8555-4A04-8D48-121186BA55B2}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "UDP Query User{01507A03-6917-44C6-AB07-2058F4BB8D75}C:\program files\rockstar games\grand theft auto iv\gtaiv.exe" = protocol=17 | dir=in | app=c:\program files\rockstar games\grand theft auto iv\gtaiv.exe | "UDP Query User{0BF03F38-FBAB-4B98-AE66-3DA42BD60DCA}C:\program files\ea sports\fifa 11 demo\game\fifa.exe" = protocol=17 | dir=in | app=c:\program files\ea sports\fifa 11 demo\game\fifa.exe | "UDP Query User{0C594949-EA04-45AC-947E-D2AE420CE7C5}C:\program files\gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu\gg.exe | "UDP Query User{32EE0DC0-1170-42FA-8713-73A1E17D5699}C:\program files\downvision\downvision.exe" = protocol=17 | dir=in | app=c:\program files\downvision\downvision.exe | "UDP Query User{49297866-DC3F-415F-A732-847021CE80A7}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "UDP Query User{7056703E-1DD6-4A5A-BC78-1042F8DA66B0}C:\program files\ea sports\fifa 11\game\fifa.exe" = protocol=17 | dir=in | app=c:\program files\ea sports\fifa 11\game\fifa.exe | "UDP Query User{7E9E4460-6EE9-4B9F-B887-510E6E878379}C:\program files\electronic arts\call of duty\iw3mp.exe" = protocol=17 | dir=in | app=c:\program files\electronic arts\call of duty\iw3mp.exe | "UDP Query User{805E34FF-AB71-4876-B9EE-B81076F619A2}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "UDP Query User{ABFE37C7-A8CF-49FA-B51A-A02D1334B6FD}C:\program files\counter strike\hl.exe" = protocol=17 | dir=in | app=c:\program files\counter strike\hl.exe | "UDP Query User{C7CD1D4D-5C29-4EE3-B165-F637CC4912EE}C:\program files\raptr\raptr.exe" = protocol=17 | dir=in | app=c:\program files\raptr\raptr.exe | "UDP Query User{DB846E8D-9C66-43D9-9DAD-E97A8E254AE8}C:\program files\panda security\panda antivirus pro 2012\apvxdwin.exe" = protocol=17 | dir=in | app=c:\program files\panda security\panda antivirus pro 2012\apvxdwin.exe | "UDP Query User{F258C9D0-9795-4529-B647-4BFB3A7602D0}C:\program files\sports interactive\football manager 2007\fm.exe" = protocol=17 | dir=in | app=c:\program files\sports interactive\football manager 2007\fm.exe | "UDP Query User{F75E81BF-F4CA-4A82-B9B0-FFDFD0A53ADF}C:\program files\gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu\gg.exe | "UDP Query User{FFB4A550-3D94-4B15-B685-95D728A185C0}C:\program files\f1 2010\f1_2010_game.exe" = protocol=17 | dir=in | app=c:\program files\f1 2010\f1_2010_game.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 "{02E89EFC-7B07-4D5A-AA03-9EC0902914EE}" = VC 9.0 Runtime "{0654EA5D-308A-4196-882B-5C09744A5D81}" = Windows Live Photo Common "{0AFECCA6-61A0-409F-9205-67613984209D}" = Multimedia Card Reader "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer "{0C6994E1-3AE1-4CDD-A760-1628E6B8CD03}" = Windows Live Family Safety "{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1 "{19A4A990-5343-4FF7-B3B5-6F046C091EDF}" = Windows Live Remote Client "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions "{201B5096-AF6E-423E-B987-023E040D9B42}" = Windows Live Remote Service Resources "{227E8782-B2F4-4E97-B0EE-49DE9CC1C0C0}" = Windows Live Remote Service "{26A24AE4-039D-4CA4-87B4-2F83217005FF}" = Java(TM) 7 Update 5 "{26E3C07C-7FF7-4362-9E99-9E49E383CF16}" = Windows Live Writer Resources "{2C7E8AA1-9C03-4606-BF34-5D99D07964DA}" = Windows Live Messenger "{2FFE93F0-BB72-4E52-8761-354D1AAA9387}" = Sony Ericsson PC Suite "{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery "{3538DD8F-A0CF-4CB9-8B38-0963CAA509EA}" = Panda Antivirus Pro 2012 "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{41A01180-D9FD-3428-9FD6-749F4C637CBF}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x86) "{434D0831-3E0C-4D03-A5D4-5E1000008400}" = F1 2010 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace "{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}" = Windows Live PIMT Platform "{50120000-1105-0000-0000-0000000FF1CE}" = Microsoft Office 2007 Primary Interop Assemblies "{543E6ACA-51B7-4283-82F2-57C0582A53C5}" = Windows Live UX Platform Language Pack "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{5DD4FCBD-A3C1-4155-9E17-4161C70AAABA}" = Segoe UI "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{61AD15B2-50DB-4686-A739-14FE180D4429}" = Windows Live ID Sign-in Assistant "{64376910-1860-4CEF-8B34-AA5D205FC5F1}" = Poczta usługi Windows Live "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™ "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}" = Windows Live Messenger Companion Core "{7A9D47BA-6D50-4087-866F-0800D8B89383}" = Podstawowe programy Windows Live "{7F6D7FD9-648D-4DD9-BB6E-3990C675ECA4}" = NVIDIA PhysX "{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8169, 8168, 8101E and 8102E Ethernet Network Card Driver for Windows Vista "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8B743AA0-53B2-11D2-808A-00600895FB43}" = Heroes of Might and Magic III - Złota Edycja "{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{95140000-007A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook Connector "{974C4B12-4D02-4879-85E0-61C95CC63E9E}" = Fallout 3 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer "{AC76BA86-7AD7-1045-7B44-AA1000000001}" = Adobe Reader X (10.1.3) - Polish "{AF844339-2F8A-4593-81B3-9F4C54038C4E}" = Windows Live MIME IFilter "{B04A0E2F-1E4C-4E61-B18E-3B2BD6779CA7}" = Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych "{B1D3568D-BC21-4C50-92A5-2396570DF1DE}_is1" = Panda Secure Vault 5 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.11.0621 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.5.20 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{BD8DA595-F501-4ABE-85A0-5C23E82472A0}" = Pomocnik Messenger "{BF35168D-F6F9-4202-BA87-86B5E3C9BF7A}" = Windows Live Mesh "{C30628D8-D3A0-4F23-90F0-F145808087B6}" = Windows Live Remote Client Resources "{CB3F59BB-7858-41A1-A7EA-4B8A6FC7D431}" = Galeria fotografii usługi Windows Live "{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86 "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform "{D24DDB61-8868-46CF-BC36-BECC1674F0C1}" = Creative ZEN "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform "{D6D5CB84-0E6E-4E69-B300-C690B6911045}" = Nero 8 "{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime "{E55E0C35-AC3C-4683-BA2F-834348577B80}" = Windows Live Writer "{E55FB276-73C9-4776-AB53-BC028C0509ED}" = Panda Antivirus Pro 2012 "{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F53D678E-238F-4A71-9742-08BB6774E9DC}" = Windows Live Family Safety "{F80E5450-3EF3-4270-B26C-6AC53BEC5E76}" = Windows Live Movie Maker "{FA300000-0001-0000-0000-074957833700}" = ABBYY PDF Transformer 3.0 "ABBYY PDF Transformer 3.0" = ABBYY PDF Transformer 3.0 "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.6 "ALLPlayer_is1" = ALLPlayer V3.X "Any Video Converter_is1" = Any Video Converter 2.7.8 "AudibleManager" = AudibleManager "b04bc1b28d83938284266021d61afad2308463113" = Football Manager 2007 "Battlelog Web Plugins" = Battlelog Web Plugins "DXTXTRA" = Microsoft DirectX Transform optional components "ENTERPRISE" = Microsoft Office Enterprise 2007 "ESN Sonar-0.70.4" = ESN Sonar "Gadu-Gadu" = Gadu-Gadu 7.7 "GameDesire-Poker" = GameDesire-Poker "GFWL_{434D0831-3E0C-4D03-A5D4-5E1000008400}" = F1 2010 "GOM Player" = GOM Player "InstallShield_{0AFECCA6-61A0-409F-9205-67613984209D}" = Multimedia Card Reader "ipla" = ipla 2.3.5 "LibUSB-Win32_is1" = LibUSB-Win32-0.1.10.1 "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Microsoft Visual Studio 2010 Tools for Office Runtime (x86)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x86) "Mozilla Firefox 14.0.1 (x86 pl)" = Mozilla Firefox 14.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "OpenAL" = OpenAL "Origin" = Origin "PhotoToolkit_is1" = Photo! Editor 1.1 "PunkBusterSvc" = PunkBuster Services "RealAlt_is1" = Real Alternative 1.9.0 Lite "SubEdit - Vista WMP Patch_is1" = SubEdit - Vista WMP Patch "SubEdit-Player_is1" = SubEdit-Player "SysInfo" = Creative System Information "Winamp" = Winamp "WinLiveSuite" = Podstawowe programy Windows Live "WinRAR archiver" = Archiwizator WinRAR "WMV9_VCM" = Microsoft Windows Media Video 9 VCM "XviD_is1" = XviD MPEG-4 Video Codec [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-899994395-764980729-1231617272-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Facebook Plug-In" = Facebook Plug-In "Google Chrome" = Google Chrome "Volleyball Manager 2012" = Volleyball Manager 2012 "Winamp Detect" = Detektor Winampa [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2011-11-01 21:44:45 | Computer Name = Piotr-PC | Source = WinMgmt | ID = 10 Description = Error - 2011-11-02 08:00:09 | Computer Name = Piotr-PC | Source = WinMgmt | ID = 10 Description = Error - 2011-11-03 02:08:55 | Computer Name = Piotr-PC | Source = WinMgmt | ID = 10 Description = Error - 2011-11-03 13:59:46 | Computer Name = Piotr-PC | Source = WinMgmt | ID = 10 Description = Error - 2011-11-04 03:52:20 | Computer Name = Piotr-PC | Source = WinMgmt | ID = 10 Description = Error - 2011-11-05 06:53:45 | Computer Name = Piotr-PC | Source = WinMgmt | ID = 10 Description = Error - 2011-11-06 05:34:33 | Computer Name = Piotr-PC | Source = WinMgmt | ID = 10 Description = Error - 2011-11-07 09:27:09 | Computer Name = Piotr-PC | Source = WinMgmt | ID = 10 Description = Error - 2011-11-08 02:57:28 | Computer Name = Piotr-PC | Source = WinMgmt | ID = 10 Description = Error - 2011-11-09 07:29:51 | Computer Name = Piotr-PC | Source = WinMgmt | ID = 10 Description = [ OSession Events ] Error - 2011-04-12 05:39:50 | Computer Name = Piotr-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 1 seconds with 0 seconds of active time. This session ended with a crash. [ System Events ] Error - 2012-08-17 19:46:07 | Computer Name = Piotr-PC | Source = Service Control Manager | ID = 7009 Description = Error - 2012-08-17 19:46:07 | Computer Name = Piotr-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2012-08-17 19:49:24 | Computer Name = Piotr-PC | Source = Service Control Manager | ID = 7009 Description = Error - 2012-08-17 19:49:24 | Computer Name = Piotr-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2012-08-20 06:23:59 | Computer Name = Piotr-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 12:21:39 na 2012-08-20 było nieoczekiwane. Error - 2012-08-20 06:24:42 | Computer Name = Piotr-PC | Source = Service Control Manager | ID = 7026 Description = Error - 2012-08-20 06:29:12 | Computer Name = Piotr-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 12:26:32 na 2012-08-20 było nieoczekiwane. Error - 2012-08-20 06:30:15 | Computer Name = Piotr-PC | Source = Service Control Manager | ID = 7026 Description = Error - 2012-08-20 10:24:37 | Computer Name = Piotr-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 16:03:20 na 2012-08-20 było nieoczekiwane. Error - 2012-08-20 10:25:54 | Computer Name = Piotr-PC | Source = Service Control Manager | ID = 7026 Description = < End of report >