OTL Extras logfile created on: 2012-08-26 23:07:18 - Run 1 OTL by OldTimer - Version 3.2.59.1 Folder = C:\Users\Terqus\Desktop\OTL 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,92 Gb Total Physical Memory | 1,42 Gb Available Physical Memory | 48,64% Memory free 5,83 Gb Paging File | 3,78 Gb Available in Paging File | 64,87% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 26,62 Gb Total Space | 3,03 Gb Free Space | 11,40% Space Free | Partition Type: NTFS Drive D: | 188,12 Gb Total Space | 68,31 Gb Free Space | 36,31% Space Free | Partition Type: NTFS Drive E: | 250,92 Gb Total Space | 208,88 Gb Free Space | 83,25% Space Free | Partition Type: NTFS Drive G: | 564,72 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Computer Name: TERQUS-PC | User Name: Terqus | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{05D39AD0-FC08-4F43-83F7-9524317F1142}" = rport=139 | protocol=6 | dir=out | app=system | "{0941436F-133C-4567-B611-8F69FF860E31}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{1D4C64BA-E206-4CD0-A6F3-C4B1C3EA5F88}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{2FB2A60B-CD29-46BB-A929-D2601D31A9AE}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{3AB06EC1-9B47-459C-84B4-9CEB366E5AC1}" = lport=445 | protocol=6 | dir=in | app=system | "{4E5D7195-C9AC-4858-8D50-6F1923167898}" = rport=138 | protocol=17 | dir=out | app=system | "{4FFB269C-BC32-4564-8E49-BFDC897A5FD8}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{5848F36A-8F05-455C-9EC0-3DF57DB484DC}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{64E04D79-AF52-47E1-8ADB-C6619B9B7271}" = rport=137 | protocol=17 | dir=out | app=system | "{66F55523-5176-4567-9DC8-E42C98AE4F2C}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{757FB405-E428-4D4C-81A9-D312DFA5E356}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{7DF33745-690F-4735-B297-CBE9A404BABA}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{94146C3D-9AA0-494F-BC4B-7C3C438898EC}" = lport=137 | protocol=17 | dir=in | app=system | "{A6E72412-E2B4-431F-95D2-81BE85A56431}" = lport=139 | protocol=6 | dir=in | app=system | "{AAD58CAE-FD39-45A4-8C11-787F543A9E85}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{AC61D7D7-FDD5-4135-963F-A4EEC531F2CC}" = lport=10243 | protocol=6 | dir=in | app=system | "{B787666A-9154-472F-A77D-8710EC048010}" = rport=10243 | protocol=6 | dir=out | app=system | "{C16DB9A6-FC5A-4B99-AFE2-5C5846832A91}" = rport=445 | protocol=6 | dir=out | app=system | "{DA1280BA-73C8-4187-8887-DE199C031C36}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{E3CF02DD-2479-438B-8265-86BF842D6803}" = lport=2869 | protocol=6 | dir=in | app=system | "{F180EA51-5097-42B8-A1CF-973C11085607}" = lport=138 | protocol=17 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{043A944E-4931-42B3-83BA-3876024C877A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{1637E734-B7DA-4062-90CD-9A5DE3C59B61}" = dir=in | app=e:\brickforce\brickforce.exe | "{1D050AA6-772D-4EF7-8386-7BD18672028C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{364929FB-6855-450B-9036-4438888DACBE}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{3BA257C8-A1CE-4204-B046-9F6F24DF3BD6}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{467AE847-2257-4530-B839-8DE4FB815AC5}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{4A45C205-82E0-4DDE-B384-FFCDDC14B0EC}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe | "{53D2974F-9468-4E4C-B886-830B7A66AB10}" = protocol=6 | dir=in | app=c:\users\terqus\appdata\local\google\google talk plugin\googletalkplugin.exe | "{5848AA52-266C-4AAC-8BE5-39522A6EE93A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{5984CBA3-36A1-4733-AAA8-F8E0EEB9DA99}" = protocol=17 | dir=in | app=d:\bittorrent\bittorrent.exe | "{5C5E1CEB-3877-4071-B2EB-35A10EB34BB9}" = protocol=17 | dir=in | app=d:\steam\steam.exe | "{61EE319F-B1A7-483F-BAF1-CF3D72FC9777}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{6F2EDDEE-C9E2-4E98-BF43-21584CAEF7A4}" = dir=in | app=e:\brickforce2\brickforce.exe | "{7556AA53-A7DB-4E08-BD14-5D1DBBD94648}" = protocol=6 | dir=in | app=d:\steam\steam.exe | "{785CE557-340C-48AE-8429-118CB44EB6F0}" = protocol=6 | dir=in | app=d:\steam\steamapps\terqus\counter-strike\hl.exe | "{7B477B20-8A76-488E-B1E9-345F5535DBCA}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{7CCF40EA-1C95-4E8F-9C97-297FE4FF07B5}" = protocol=17 | dir=in | app=c:\users\terqus\appdata\local\google\google talk plugin\googletalkplugin.exe | "{7E0FB346-1B9E-4A62-ACF0-D7289B5B94A4}" = protocol=17 | dir=in | app=d:\steam\steamapps\terqus\counter-strike\hl.exe | "{8CE89B44-B961-476F-9AC1-4A57EFDDB4A0}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{8ED37E02-F84C-4308-8AB5-960642C09757}" = protocol=17 | dir=in | app=d:\steam\steam.exe | "{8F0257FD-4807-4B58-AC72-9DA841D0F469}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{923011CC-A477-4C14-B577-1D7B762EF7E2}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{94502F3E-8084-4FD4-B632-481D0ADD3931}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{9D256E37-1229-4C62-B3A1-A7EB69F50C31}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{A085E8B2-3220-485C-9453-12C0DCE8D3BF}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{A58C9AC3-5CFF-4694-91A1-84FCFAC2E1D9}" = dir=in | app=e:\brickforce\bflauncher.exe | "{A9F0C97A-5FAB-48F9-A979-1B9741ED9E3C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{AFD809FF-EEDC-4CEC-86B5-AA8D53BC9EA5}" = protocol=17 | dir=in | app=d:\steam\steamapps\terqus\counter-strike\hl.exe | "{B0D6847D-24BF-4427-A330-3C799FBCF42B}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{B25700AD-B02B-44A9-B34D-750F8EBC3D00}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{B5DFB8E5-5F53-4434-93C8-669FA0A19896}" = dir=in | app=c:\program files\eslwire\wire.exe | "{B63BF968-F1F5-442E-8DB5-2D5B9CA9485B}" = protocol=6 | dir=in | app=d:\steam\steam.exe | "{B72C2F6E-7574-40B5-9306-BE444CDAE1EB}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{BD57A51C-BFB4-49B8-9A0D-0763667ED99A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{BF87BD74-3A34-46A1-85FA-87CDFC387694}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\dead island\deadislandgame.exe | "{D4FC06E0-C2E0-475A-81DF-CBEFACA214E4}" = dir=in | app=e:\brickforce2\bflauncher.exe | "{DC0118E9-4D3C-41CC-8AD7-93AD01A6EC57}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{DEA469CE-2A9A-47D4-BB81-0690427FF3E9}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{E6470505-C22C-4DA3-99F8-E51B5D52FB5E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{EA153123-E85A-4F94-BB97-4AB6FCE75C01}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{EB433709-2B54-459A-84D5-720E7F6194A2}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{EC3C8646-32B5-47CD-8C13-F23AA4DF5727}" = protocol=6 | dir=out | app=system | "{F22AB163-0EE3-46F7-803B-BCA5011EABB3}" = protocol=6 | dir=in | app=d:\bittorrent\bittorrent.exe | "{F4B4E925-F0A7-4813-A96D-4AB1A93B95CC}" = dir=out | app=c:\program files\eslwire\wire.exe | "{F75101A2-16BA-46F4-A201-C4346EEF73CB}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\dead island\deadislandgame.exe | "{FB0E3D71-51F2-4410-BA5E-34905D5871F3}" = protocol=6 | dir=in | app=d:\steam\steamapps\terqus\counter-strike\hl.exe | "TCP Query User{1AE1331C-2A03-4F40-95C4-CB190B008A2B}C:\program files\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre7\bin\javaw.exe | "TCP Query User{285ED6ED-83AF-4EE7-ADAE-73C1814E66D4}D:\mirc\mirc.exe" = protocol=6 | dir=in | app=d:\mirc\mirc.exe | "TCP Query User{355F80B5-6AF3-48B2-9560-CCF4B12C5383}D:\steam\steamapps\common\dead island\deadislandgame.exe" = protocol=6 | dir=in | app=d:\steam\steamapps\common\dead island\deadislandgame.exe | "TCP Query User{39D9160C-E80E-4F7E-BB65-F3C657541130}D:\wapster aqq\aqq.exe" = protocol=6 | dir=in | app=d:\wapster aqq\aqq.exe | "TCP Query User{3DED851D-4AB3-4885-82CD-6D7BD5B2AE0E}C:\program files (x86)\mirc\mirc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mirc\mirc.exe | "TCP Query User{4058A6D0-A1DB-41E4-BA91-8007E4B3F2A0}C:\program files (x86)\java\jre7\bin\java.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\java.exe | "TCP Query User{4D1D5E8F-B1AC-476B-990A-8B154685C3F1}E:\counter strike 1.6 ns by r3d bull\hltv.exe" = protocol=6 | dir=in | app=e:\counter strike 1.6 ns by r3d bull\hltv.exe | "TCP Query User{4DB42A47-652E-4326-8706-A09FD2A497D3}C:\users\terqus\desktop\teamspeak3-server_win64\ts3server_win64.exe" = protocol=6 | dir=in | app=c:\users\terqus\desktop\teamspeak3-server_win64\ts3server_win64.exe | "TCP Query User{52E2B2C0-F74B-428C-9FD3-B576031EF5F4}C:\program files (x86)\pfportchecker\pfportchecker.exe" = protocol=6 | dir=in | app=c:\program files (x86)\pfportchecker\pfportchecker.exe | "TCP Query User{56648383-AD9F-4EC2-8849-4B8539A406D1}E:\mw3\iw5sp.exe" = protocol=6 | dir=in | app=e:\mw3\iw5sp.exe | "TCP Query User{63AABAF8-9061-4765-9755-DAD416973850}E:\mw3\iw5mp.exe" = protocol=6 | dir=in | app=e:\mw3\iw5mp.exe | "TCP Query User{640A7294-8D4C-4DDA-AB86-A8DF8CE3B356}C:\program files\java\jre7\bin\java.exe" = protocol=6 | dir=in | app=c:\program files\java\jre7\bin\java.exe | "TCP Query User{6F6324B8-0281-48D7-97C5-136E7B35F1A5}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "TCP Query User{7A1299BE-F614-4194-AF2B-9FD9904588AD}E:\counter strike 1.6 ns by r3d bull\cstrike.exe" = protocol=6 | dir=in | app=e:\counter strike 1.6 ns by r3d bull\cstrike.exe | "TCP Query User{97C01AF4-4B4D-41D5-BED4-764AB889896C}D:\wapster aqq\aqq.exe" = protocol=6 | dir=in | app=d:\wapster aqq\aqq.exe | "TCP Query User{C7A08C30-F668-4B49-ABD4-1ABAD07186BD}E:\counter strike 1.6 ns by r3d bull\hl.exe" = protocol=6 | dir=in | app=e:\counter strike 1.6 ns by r3d bull\hl.exe | "TCP Query User{D4FCA258-D917-41D1-84D7-55C5A356C0D5}C:\program files (x86)\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe | "TCP Query User{DC2BED2D-8101-4808-B7CE-881DE7F0F1DA}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "TCP Query User{E37E7FB7-5422-43BE-998A-7EC238DC6A10}E:\ravia.eu\game.exe" = protocol=6 | dir=in | app=e:\ravia.eu\game.exe | "UDP Query User{00C9CD60-6187-4934-9AA1-3E8BB441945B}D:\wapster aqq\aqq.exe" = protocol=17 | dir=in | app=d:\wapster aqq\aqq.exe | "UDP Query User{00FA0A1F-7E9A-45E6-BB2B-C4120E8BBCA2}C:\program files (x86)\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe | "UDP Query User{15CB80D1-DCEB-4A4A-965D-E20D6720DBDB}D:\wapster aqq\aqq.exe" = protocol=17 | dir=in | app=d:\wapster aqq\aqq.exe | "UDP Query User{1F78C9BA-09F7-4424-86F7-4757EBF8A020}E:\mw3\iw5mp.exe" = protocol=17 | dir=in | app=e:\mw3\iw5mp.exe | "UDP Query User{3CAD7AF4-7471-41D6-93F4-823191EE94FF}C:\program files (x86)\mirc\mirc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mirc\mirc.exe | "UDP Query User{444C8B32-52A2-4091-B137-72A25ECE6380}C:\program files (x86)\pfportchecker\pfportchecker.exe" = protocol=17 | dir=in | app=c:\program files (x86)\pfportchecker\pfportchecker.exe | "UDP Query User{53E4B4DD-F7E8-4B03-A4FF-0E557C052769}D:\steam\steamapps\common\dead island\deadislandgame.exe" = protocol=17 | dir=in | app=d:\steam\steamapps\common\dead island\deadislandgame.exe | "UDP Query User{5542946B-51BF-4126-B6FA-95E4116A6B9E}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "UDP Query User{5E8C71EA-AD75-4FC0-B447-699000E0B8A1}C:\users\terqus\desktop\teamspeak3-server_win64\ts3server_win64.exe" = protocol=17 | dir=in | app=c:\users\terqus\desktop\teamspeak3-server_win64\ts3server_win64.exe | "UDP Query User{6E45531D-1B73-46CE-83BB-575D9A8FBAF4}C:\program files (x86)\java\jre7\bin\java.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\java.exe | "UDP Query User{7A8DB9B4-5DD3-4945-8D7F-69D4F41D03E4}D:\mirc\mirc.exe" = protocol=17 | dir=in | app=d:\mirc\mirc.exe | "UDP Query User{7F4D9BE8-F245-4A40-AA94-12C6389CC36D}E:\counter strike 1.6 ns by r3d bull\hltv.exe" = protocol=17 | dir=in | app=e:\counter strike 1.6 ns by r3d bull\hltv.exe | "UDP Query User{83C071BA-A6D9-4038-8256-4EBAC0F80756}E:\ravia.eu\game.exe" = protocol=17 | dir=in | app=e:\ravia.eu\game.exe | "UDP Query User{8AF07F71-4B8A-47B0-909A-FB752449FB19}E:\counter strike 1.6 ns by r3d bull\cstrike.exe" = protocol=17 | dir=in | app=e:\counter strike 1.6 ns by r3d bull\cstrike.exe | "UDP Query User{9ADCF90B-2463-4C52-A8C0-82D9FE1BE4C4}C:\program files\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre7\bin\javaw.exe | "UDP Query User{B3795B94-00F5-447C-B99E-57134D890BE1}E:\mw3\iw5sp.exe" = protocol=17 | dir=in | app=e:\mw3\iw5sp.exe | "UDP Query User{D1DB3B78-59D6-43DF-A4B4-45F3CFE042C8}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "UDP Query User{F497DFC0-6C85-4B8F-9B35-A5395343B11B}C:\program files\java\jre7\bin\java.exe" = protocol=17 | dir=in | app=c:\program files\java\jre7\bin\java.exe | "UDP Query User{F9007FCF-1782-449C-AA3E-EA22D815CCB8}E:\counter strike 1.6 ns by r3d bull\hl.exe" = protocol=17 | dir=in | app=e:\counter strike 1.6 ns by r3d bull\hl.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64) "{235B7B98-EAC3-4953-AE2C-EABCE1CD65C9}_is1" = GBoost "{26A24AE4-039D-4CA4-87B4-2F86417005FF}" = Java(TM) 7 Update 5 (64-bit) "{3C41721F-AF0F-4086-AA1C-4C7F29076228}" = Oprogramowanie Intel(R) PROSet/Wireless WiFi "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{8BA78FA6-E817-454C-9D32-8DE04404119E}" = Panda Cloud Antivirus "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 301.42 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 301.42 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 301.42 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus 1.8.15 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.12.0213 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.8.15 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{C616FD4F-11F5-11E0-A38F-0013D3D69929}" = Vegas Pro 10.0 (64-bit) "{C9608300-11F5-11E0-A64B-0013D3D69929}" = MSVCRT Redists "{D285FC5F-3021-32E9-9C59-24CA325BDC5C}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "Broadcom Wireless Utility" = Broadcom Wireless Utility "CPUID HWMonitor_is1" = CPUID HWMonitor 1.17 "ESL Wire_is1" = ESL Wire 1.13 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "ProInst" = Intel PROSet Wireless "Unlocker" = Unlocker 1.9.1-x64 "WinRAR archiver" = WinRAR 4.11 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0141D498-16DA-4221-A529-1D7A64BE8B05}" = OpenOffice.org 3.3 "{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86 "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86 "{15C49338-59E5-472E-94F7-D5AE15EE23C9}" = XSplit "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83216033FF}" = Java(TM) 6 Update 33 "{3521BDBD-D453-5D9F-AA55-44B75D214629}" = Adobe Community Help "{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}" = Hi-Rez Studios Authenticate and Update Service "{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{53FA9A9F-3C19-4D43-AD6B-DEF365D469BA}" = Camtasia Studio 7 "{541DBFD9-3E6A-4DD2-8D56-412C3F4363CB}_is1" = Supreme Destiny version 7.55 "{575EFF03-44F9-46f4-A229-F245DA972CD2}_is1" = A Flipping Good Time "{6037B8AD-7D5B-4D50-9BCA-A586C44EEF34}" = Ace of Spades "{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86 "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{70CB6C40-8DF1-11E1-BDCF-F04DA23A5C58}" = MSVCRT Redists "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7D9D8134-9FA3-4FFF-ADA1-BF609F29997A}_is1" = Cinema 4D version R12 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{92606477-9366-4D3B-8AE3-6BE4B29727AB}" = League of Legends "{943A8D28-80D6-41DC-AE94-81FEB42041BF}" = System Requirements Lab CYRI "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A56028FC-1F40-4369-9941-7AAAC6ACE924}" = LastChaosPoland "{A8B0DBDE-8119-48B0-8088-D12DA01C36BA}" = DownloadnSave "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.4) "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86 "{D5B1535A-FDFC-4B40-B2E2-21DA83D9CB57}" = Adobe Audition CS5.5 "{DA909E62-3B45-4BA1-8B58-FCAEBA4BCEC9}" = NVIDIA PhysX "{E39CFEE2-008E-459A-ADFD-60852A445D48}_is1" = Pazera Free 3GP to AVI Converter 1.4 "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F86B5FF0-E0C0-41AA-9FD3-5E9090FED323}" = Mumble 1.2.3 "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Afterburner" = MSI Afterburner 2.2.3 "Android Commander_is1" = Android Commander version 0.7.9.11 "AQQ" = WapSter AQQ "Audacity_is1" = Audacity 2.0 "BitTorrent" = BitTorrent "BrickForce" = BrickForce 1.9.87 "chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help "Clownfish" = Clownfish for Skype "DAEMON Tools Lite" = DAEMON Tools Lite "EaseUS Partition Master Home Edition_is1" = EaseUS Partition Master 9.1.1 Home Edition "ffdshow_is1" = ffdshow [rev 3154] [2009-12-09] "Fraps" = Fraps (remove only) "Free Sound Recorder_is1" = Free Sound Recorder v9.4.1 "Freemake Video Converter_is1" = Freemake Video Converter wersja 3.0.2 "Game Booster_is1" = Game Booster 3 "Gothic" = Gothic "ipla" = ipla 2.3.5 "JDownloader" = JDownloader "KLiteCodecPack_is1" = K-Lite Codec Pack 6.2.0 (Basic) "LAME_is1" = LAME v3.99.3 (for Windows) "Little Fighter 2.5 - v2.0" = Little Fighter 2.5 - v2.0 "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.62.0.1300 "mIRC" = mIRC "MW3v1.4.382" = MW3 "Notepad++" = Notepad++ "Panda Universal Agent Endpoint" = Panda Cloud Antivirus "PFPortChecker" = PFPortChecker 1.0.39 "Postal 2 PL" = Postal 2 PL "ProInst" = Intel PROSet Wireless "Ravia.eu" = Ravia.eu "RocketDock_is1" = RocketDock 1.3.5 "Steam App 10" = Counter-Strike "Steam App 215020" = Orcs Must Die! 2 Demo "Tibia_is1" = Tibia "TMIPC" = Tibia MULTI-ip changer "Tunatic" = Tunatic "V9Software" = V9 HomeTool [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1095018307-3183672424-416771910-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "FileZilla Client" = FileZilla Client 3.5.3 "GG" = GG "Google Chrome" = Google Chrome "Pekka Kana 2" = Pekka Kana 2 "TeamSpeak 3 Client" = TeamSpeak 3 Client [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-08-24 13:01:40 | Computer Name = Terqus-PC | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "D:\Cinema 4D R12\modules\Engineering Extension Kit\OkinoComClient\OkinoCOMlib.dll64". Nie można odnaleźć zestawu zależnego Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2012-08-24 14:38:05 | Computer Name = Terqus-PC | Source = Software Protection Platform Service | ID = 8198 Description = Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error - 2012-08-24 14:38:05 | Computer Name = Terqus-PC | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error - 2012-08-24 14:38:14 | Computer Name = Terqus-PC | Source = WinMgmt | ID = 10 Description = Error - 2012-08-25 06:50:49 | Computer Name = Terqus-PC | Source = Microsoft-Windows-CAPI2 | ID = 4107 Description = Nie można wyodrębnić listy głównej innych firm z pliku cab automatycznej aktualizacji z: , wystąpił błąd: Wymagany certyfikat jest poza okresem ważności, co wynika z weryfikacji bieżącego zegara systemowego lub sygnatury czasowej. . Error - 2012-08-25 11:10:31 | Computer Name = Terqus-PC | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "D:\Cinema 4D R12\modules\Engineering Extension Kit\OkinoComClient\OkinoCOMlib.dll64". Nie można odnaleźć zestawu zależnego Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2012-08-25 13:59:43 | Computer Name = Terqus-PC | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "D:\Cinema 4D R12\modules\Engineering Extension Kit\OkinoComClient\OkinoCOMlib.dll64". Nie można odnaleźć zestawu zależnego Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2012-08-26 01:55:27 | Computer Name = Terqus-PC | Source = Software Protection Platform Service | ID = 8198 Description = Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error - 2012-08-26 01:55:27 | Computer Name = Terqus-PC | Source = Winlogon | ID = 4103 Description = Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error - 2012-08-26 01:57:27 | Computer Name = Terqus-PC | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 2012-08-24 15:02:44 | Computer Name = Terqus-PC | Source = cdrom | ID = 262151 Description = W urządzeniu \Device\CdRom0 wystąpił zły blok. Error - 2012-08-24 15:03:02 | Computer Name = Terqus-PC | Source = cdrom | ID = 262151 Description = W urządzeniu \Device\CdRom0 wystąpił zły blok. Error - 2012-08-24 15:03:14 | Computer Name = Terqus-PC | Source = cdrom | ID = 262151 Description = W urządzeniu \Device\CdRom0 wystąpił zły blok. Error - 2012-08-24 15:03:34 | Computer Name = Terqus-PC | Source = cdrom | ID = 262151 Description = W urządzeniu \Device\CdRom0 wystąpił zły blok. Error - 2012-08-24 15:03:41 | Computer Name = Terqus-PC | Source = cdrom | ID = 262151 Description = W urządzeniu \Device\CdRom0 wystąpił zły blok. Error - 2012-08-24 15:03:47 | Computer Name = Terqus-PC | Source = cdrom | ID = 262151 Description = W urządzeniu \Device\CdRom0 wystąpił zły blok. Error - 2012-08-24 15:03:55 | Computer Name = Terqus-PC | Source = cdrom | ID = 262151 Description = W urządzeniu \Device\CdRom0 wystąpił zły blok. Error - 2012-08-24 15:04:02 | Computer Name = Terqus-PC | Source = cdrom | ID = 262151 Description = W urządzeniu \Device\CdRom0 wystąpił zły blok. Error - 2012-08-24 15:04:10 | Computer Name = Terqus-PC | Source = cdrom | ID = 262151 Description = W urządzeniu \Device\CdRom0 wystąpił zły blok. Error - 2012-08-26 01:54:58 | Computer Name = Terqus-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 00:31:40 na ?2012-?08-?26 było nieoczekiwane. < End of report >