OTL Extras logfile created on: 2012-10-16 14:16:59 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\dawid\Desktop 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd 3,93 Gb Total Physical Memory | 2,57 Gb Available Physical Memory | 65,27% Memory free 7,86 Gb Paging File | 6,42 Gb Available in Paging File | 81,65% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 28,56 Gb Total Space | 2,00 Gb Free Space | 7,00% Space Free | Partition Type: NTFS Drive D: | 134,76 Gb Total Space | 2,94 Gb Free Space | 2,18% Space Free | Partition Type: NTFS Drive E: | 134,76 Gb Total Space | 2,39 Gb Free Space | 1,78% Space Free | Partition Type: NTFS Computer Name: DAWID-PC | User Name: dawid | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- "D:\Programy\Biuro\Microsoft Office 2010\Office14\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- "D:\Programy\Biuro\Microsoft Office 2010\Office14\msohtmed.exe" /p %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "D:\Programy\NapiProjekt\napisy.exe" "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- "D:\Programy\Biuro\Microsoft Office 2010\Office14\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- "D:\Programy\Biuro\Microsoft Office 2010\Office14\msohtmed.exe" /p %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "D:\Programy\NapiProjekt\napisy.exe" "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0024F020-9635-46F4-91A2-5F6F5DDAA30B}" = lport=445 | protocol=6 | dir=in | app=system | "{0C4B4A81-1D5E-4E94-B461-BC5920A4F326}" = rport=139 | protocol=6 | dir=out | app=system | "{0F2872D0-22C6-45B4-9011-EAB2F1A0384E}" = rport=137 | protocol=17 | dir=out | app=system | "{138E5DD4-9BCE-429A-8FF2-FC642FD159E1}" = rport=445 | protocol=6 | dir=out | app=system | "{30CFCC31-1AEE-4454-93A4-C4FE08A5B736}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{3185BF8A-9DA7-4065-ABA3-47AD151C57BA}" = lport=6004 | protocol=17 | dir=in | app=d:\programy\biuro\microsoft office 2010\office14\outlook.exe | "{34562C55-6867-426E-8178-E88C77869B39}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{3BC9DF38-3FC9-4F37-874A-21B84B5763DD}" = lport=139 | protocol=6 | dir=in | app=system | "{57D649C3-8836-485B-B60D-2FB2CD5DA143}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{5F600DF5-A1AE-42DF-91AC-6183C82FAE89}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{6347B53F-785F-45DC-857A-BD17C9549F1F}" = rport=138 | protocol=17 | dir=out | app=system | "{703F066F-E786-44EB-81AA-32478E9009A1}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{7F3A2C0A-F43C-44DA-9E65-33BAFC11C852}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{806573B7-CD56-4CB8-9729-57C46E154696}" = lport=138 | protocol=17 | dir=in | app=system | "{89C3BAF2-BBD2-4985-9E1A-E5C9116DDB81}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{A218AFB9-2EC7-4283-982C-8736680C6D24}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{A24B87D4-17A7-4C97-8886-03818367A575}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{C1F23709-1283-44E8-8D65-4A8B4A79F15A}" = lport=10243 | protocol=6 | dir=in | app=system | "{C4B36C11-7AEA-4651-A36D-141C8D63F528}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{C883C933-C691-4460-84DF-CDA29706EB5A}" = lport=137 | protocol=17 | dir=in | app=system | "{CAAF9B84-1D1F-4BE0-893E-47357D7AEEF2}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{EE022167-CE07-4F86-B79E-FDEB35CDB66C}" = lport=2869 | protocol=6 | dir=in | app=system | "{EE11F443-25E3-44F4-A00D-18C03609EB7B}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{F0FA21A2-DA30-43E4-A762-48749F6E8F98}" = rport=10243 | protocol=6 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0C9E18E5-F1F5-4C15-95D9-3182A9C8F2FB}" = protocol=17 | dir=in | app=d:\programy\komunikacja\utorrent\utorrent.exe | "{0F1E404F-B586-420B-AA4E-E6164DC608B0}" = protocol=17 | dir=in | app=d:\gry\nwn 2\nwn2server.exe | "{21EA87FE-138F-4F79-B917-8EBADBA1285A}" = protocol=17 | dir=in | app=d:\gry\nwn 2\nwn2main_amdxp.exe | "{2AF4F11E-9A7C-46EE-B67F-52E6A985E4E6}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{2D48BCB8-5EE6-4810-B686-6125B8FDA401}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{320CB65D-75FF-470A-A76B-3A6A6DC78C8D}" = protocol=6 | dir=in | app=d:\gry\nwn 2\nwn2main_amdxp.exe | "{379E4C20-BB7D-4E51-A618-E6E241B9BE19}" = protocol=6 | dir=in | app=d:\programy\biuro\microsoft office 2010\office14\onenote.exe | "{4A9AEE88-0D09-4A83-AB3E-99C04C43C487}" = protocol=6 | dir=in | app=d:\programy\biuro\microsoft office 2010\office14\groove.exe | "{515421FC-E215-4AC5-98EC-39A97389CB5E}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{5F880E8C-1B96-4379-9F2F-59178E59FBB8}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{60ADBB33-A719-4B6A-91C9-4E63E733D5BB}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{65E47C22-29AC-4371-92FF-213CA4C85198}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{6B024163-ECBD-44F5-8A63-1D95C174AFC8}" = protocol=6 | dir=out | app=system | "{6E0665DF-1A2B-4C80-B8BB-663F464CD7C5}" = protocol=6 | dir=in | app=d:\gry\nwn 2\nwn2server.exe | "{7543CA4E-49AC-4B72-AB35-E75102FE77CD}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{80D26DD0-093F-4057-98D8-231D048C67BD}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{853431F6-C056-41BB-8F47-D4CE0032427D}" = protocol=6 | dir=in | app=d:\gry\nwn 2\nwn2main.exe | "{88063A14-31D2-486C-B15C-AE91EBF597DD}" = protocol=17 | dir=in | app=d:\gry\nwn 2\nwn2main.exe | "{8F705E18-DB25-4A66-BD08-2980506EC443}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{8FA36444-5CA7-4B83-8F67-4D28F62AF54E}" = protocol=6 | dir=in | app=d:\gry\nwn 2\nwupdate.exe | "{90F9C18C-38FC-4238-9F38-D028152473CB}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{9CF8DB4A-1A6C-4D62-9AD1-85AF312ED7BA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{9DF8DE7D-0891-431D-B362-B3B4843D2193}" = protocol=6 | dir=in | app=d:\programy\komunikacja\utorrent\utorrent.exe | "{A1129F5F-FC48-4A1F-9185-3CD952D0924C}" = protocol=17 | dir=in | app=d:\programy\biuro\microsoft office 2010\office14\groove.exe | "{A3253CB9-2C23-4F28-AFB5-25D8A2038FFC}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{A4F14C54-786E-44C3-B551-B2FFD078AABB}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{AA428A1E-BC73-4E53-AC89-9688AD1ADF22}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{B393F7F8-9D12-4416-B05B-1D8D923B2ACD}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{BB71A725-DADE-40C8-9E1D-E5E4DBD7D5C8}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{C57F1DB4-8444-4F97-97D4-A64E6F59BB17}" = protocol=17 | dir=in | app=d:\programy\biuro\microsoft office 2010\office14\onenote.exe | "{C79F5287-F740-46FA-AC66-CF6D73D3F5A6}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{D1EA8A98-A1D1-4E28-92F7-BFD1E1A86739}" = protocol=17 | dir=in | app=d:\gry\nwn 2\nwupdate.exe | "{DF3665C8-4D2F-41C4-89A6-89089CD9312B}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{EB79E13E-53F7-44E7-9F42-7805312F44E3}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{FCFBB9AF-BDC7-4A3B-8898-37A03B734405}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "TCP Query User{07598E7A-9A6B-434E-A836-336F61F3C40C}D:\programy\komunikacja\opera\operausb.exe" = protocol=6 | dir=in | app=d:\programy\komunikacja\opera\operausb.exe | "TCP Query User{1030850C-3B1F-42C8-ABB5-3B06FBED4C30}D:\programy\audio\sopcast\sopcast.exe" = protocol=6 | dir=in | app=d:\programy\audio\sopcast\sopcast.exe | "TCP Query User{10985279-7B76-4D33-87C4-033845427829}D:\programy\komunikacja\opera\opera.exe" = protocol=6 | dir=in | app=d:\programy\komunikacja\opera\opera.exe | "TCP Query User{11383F01-00DD-4F68-A376-314FB8455B77}D:\programy\komunikacja\dc++\dcplusplus.exe" = protocol=6 | dir=in | app=d:\programy\komunikacja\dc++\dcplusplus.exe | "TCP Query User{19DEB6D4-B816-4A59-8AF2-5F9BC3817F00}D:\programy\komunikacja\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=d:\programy\komunikacja\gadu-gadu 10\gg.exe | "TCP Query User{23F1AFF8-C54E-4B2A-9F47-42F6661A207B}D:\programy\audio\sopcast\sopcast.exe" = protocol=6 | dir=in | app=d:\programy\audio\sopcast\sopcast.exe | "TCP Query User{3C25BF0B-865E-4216-89E1-34DB5E98A966}D:\programy\komunikacja\opera\operausb.exe" = protocol=6 | dir=in | app=d:\programy\komunikacja\opera\operausb.exe | "TCP Query User{3C58CC05-2052-42F9-A381-B6DBC220E888}C:\users\dawid\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe" = protocol=6 | dir=in | app=c:\users\dawid\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe | "TCP Query User{50F1A55B-A201-4AAB-B93C-194110267286}D:\gry\call.of.duty.black.ops-kaos\blackops.exe" = protocol=6 | dir=in | app=d:\gry\call.of.duty.black.ops-kaos\blackops.exe | "TCP Query User{5D1EBA52-E5F4-40C1-A71B-7C85536ECAB9}D:\programy\komunikacja\opera\opera.exe" = protocol=6 | dir=in | app=d:\programy\komunikacja\opera\opera.exe | "TCP Query User{6606E056-C813-42CE-A3BF-DCC334715413}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "TCP Query User{6F9DD2FD-17E6-4F8F-9093-749B4D805CE6}D:\programy\komunikacja\operaflash\operausb.exe" = protocol=6 | dir=in | app=d:\programy\komunikacja\operaflash\operausb.exe | "TCP Query User{8E4DFC96-AB6B-45D6-9115-9AE041C001A6}E:\grand theft auto iv\gtaiv.exe" = protocol=6 | dir=in | app=e:\grand theft auto iv\gtaiv.exe | "TCP Query User{93BEE67A-3045-4545-97A8-F7F9AB3C4DED}D:\programy\komunikacja\operaflash\operausb.exe" = protocol=6 | dir=in | app=d:\programy\komunikacja\operaflash\operausb.exe | "TCP Query User{A32E7752-3AED-475D-8B79-4C4EE0053CA6}D:\gry\borderlands\binaries\borderlands.exe" = protocol=6 | dir=in | app=d:\gry\borderlands\binaries\borderlands.exe | "TCP Query User{B2DD4143-093C-45E5-9184-856617EB4E2A}D:\programy\audio\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=d:\programy\audio\sopcast\adv\sopadver.exe | "TCP Query User{C0E04B86-EF59-4605-B7AA-B30C0D29AFB8}D:\gry\fifka\game\fifa.exe" = protocol=6 | dir=in | app=d:\gry\fifka\game\fifa.exe | "TCP Query User{C5943A11-D3D7-42EE-BB90-3B8C32928B17}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "TCP Query User{C59B3F04-4A8D-4B8A-896B-29C1E136F037}D:\programy\komunikacja\operaflash\opera.exe" = protocol=6 | dir=in | app=d:\programy\komunikacja\operaflash\opera.exe | "TCP Query User{C7B01E55-47AF-4005-A9EA-20F985B0C309}D:\gry\call of duty\call.of.duty.black.ops-kaos\blackops.exe" = protocol=6 | dir=in | app=d:\gry\call of duty\call.of.duty.black.ops-kaos\blackops.exe | "TCP Query User{E788EB67-28FC-4728-BD25-00C418B5E8BA}D:\programy\audio\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=d:\programy\audio\sopcast\adv\sopadver.exe | "TCP Query User{F1227F0C-178C-4128-9ADE-F95324507F5D}D:\programy\komunikacja\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=d:\programy\komunikacja\gadu-gadu 10\gg.exe | "TCP Query User{F8C72D14-CA82-4DE0-9DAD-16C653DBA972}C:\program files (x86)\downvision\downvision.exe" = protocol=6 | dir=in | app=c:\program files (x86)\downvision\downvision.exe | "UDP Query User{01B71851-DD3F-4048-876A-3DD7F6D5ED44}D:\programy\komunikacja\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=d:\programy\komunikacja\gadu-gadu 10\gg.exe | "UDP Query User{09D6B067-5D52-4E1E-B60C-B69975FD3A6D}D:\programy\komunikacja\opera\operausb.exe" = protocol=17 | dir=in | app=d:\programy\komunikacja\opera\operausb.exe | "UDP Query User{0A46390D-291A-41BB-ADD2-A8AB41815A4A}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "UDP Query User{1278B85D-5D09-4D18-8D1C-8E87F0EC1008}D:\programy\audio\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=d:\programy\audio\sopcast\adv\sopadver.exe | "UDP Query User{1B33F867-95FB-4364-9A25-5986A98C71CA}D:\gry\fifka\game\fifa.exe" = protocol=17 | dir=in | app=d:\gry\fifka\game\fifa.exe | "UDP Query User{1E786D0E-FF82-4F9B-B431-B2F322428FB4}D:\programy\audio\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=d:\programy\audio\sopcast\adv\sopadver.exe | "UDP Query User{2DB4CCD8-DA07-449B-9D9C-ECA1CB96D428}D:\programy\audio\sopcast\sopcast.exe" = protocol=17 | dir=in | app=d:\programy\audio\sopcast\sopcast.exe | "UDP Query User{3530F01A-9959-46F7-AEA0-BD6F27F36C83}E:\grand theft auto iv\gtaiv.exe" = protocol=17 | dir=in | app=e:\grand theft auto iv\gtaiv.exe | "UDP Query User{48601FD0-BF45-42ED-9322-8BCB2F8ECC68}D:\programy\audio\sopcast\sopcast.exe" = protocol=17 | dir=in | app=d:\programy\audio\sopcast\sopcast.exe | "UDP Query User{6285040C-00A5-4476-ABAF-E435C29B25E5}D:\programy\komunikacja\operaflash\operausb.exe" = protocol=17 | dir=in | app=d:\programy\komunikacja\operaflash\operausb.exe | "UDP Query User{63550D18-0B22-4976-A669-F68879B3A301}D:\gry\call of duty\call.of.duty.black.ops-kaos\blackops.exe" = protocol=17 | dir=in | app=d:\gry\call of duty\call.of.duty.black.ops-kaos\blackops.exe | "UDP Query User{64613551-B893-40A9-A180-3C7E720752F7}D:\programy\komunikacja\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=d:\programy\komunikacja\gadu-gadu 10\gg.exe | "UDP Query User{69566332-E7B8-4EC4-A2AC-C7F46845D19C}D:\programy\komunikacja\opera\opera.exe" = protocol=17 | dir=in | app=d:\programy\komunikacja\opera\opera.exe | "UDP Query User{8A70655C-0631-4705-B561-494723212C5A}D:\programy\komunikacja\opera\opera.exe" = protocol=17 | dir=in | app=d:\programy\komunikacja\opera\opera.exe | "UDP Query User{9392E87D-85F0-4080-8249-AE271209EC35}D:\programy\komunikacja\opera\operausb.exe" = protocol=17 | dir=in | app=d:\programy\komunikacja\opera\operausb.exe | "UDP Query User{9BC24672-99C3-4832-BF06-EC08C5D68624}D:\programy\komunikacja\operaflash\opera.exe" = protocol=17 | dir=in | app=d:\programy\komunikacja\operaflash\opera.exe | "UDP Query User{A6A1CD86-7598-4D7E-B311-BE43A6121936}D:\gry\borderlands\binaries\borderlands.exe" = protocol=17 | dir=in | app=d:\gry\borderlands\binaries\borderlands.exe | "UDP Query User{A711E743-1E10-4889-A276-AB4F4788CBA3}C:\users\dawid\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe" = protocol=17 | dir=in | app=c:\users\dawid\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe | "UDP Query User{AA2E0CAA-F629-4059-9778-42DEE8DFC34A}D:\programy\komunikacja\dc++\dcplusplus.exe" = protocol=17 | dir=in | app=d:\programy\komunikacja\dc++\dcplusplus.exe | "UDP Query User{BF9483EF-864B-4F4A-A1F9-3E15FAC5C191}D:\programy\komunikacja\operaflash\operausb.exe" = protocol=17 | dir=in | app=d:\programy\komunikacja\operaflash\operausb.exe | "UDP Query User{C591E2D0-5E91-4772-92E5-2427C8786FAF}C:\program files (x86)\downvision\downvision.exe" = protocol=17 | dir=in | app=c:\program files (x86)\downvision\downvision.exe | "UDP Query User{CAF6065C-ED5F-4C41-9B18-CF8F6C973702}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "UDP Query User{FAD737ED-62FC-4E6E-94CB-F6182E991282}D:\gry\call.of.duty.black.ops-kaos\blackops.exe" = protocol=17 | dir=in | app=d:\gry\call.of.duty.black.ops-kaos\blackops.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64) "{499CBE65-4E07-B40A-624A-B5B7BD6F9A9C}" = AMD Media Foundation Decoders "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime "{8D0A0350-B509-B362-4827-63E4C6520E7B}" = AMD Catalyst Install Manager "{90140000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0015-0415-1000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0016-0415-1000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0018-0415-1000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0019-0415-1000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-001A-0415-1000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001B-0415-1000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0415-1000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-002C-0415-1000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-0043-0000-1000-0000000FF1CE}" = Microsoft Office Office 32-bit Components 2010 "{90140000-0043-0415-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Polish) 2010 "{90140000-0044-0415-1000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-006E-0415-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-00A1-0415-1000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00BA-0415-1000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant "{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}" = Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 "{D1BA5DC5-1E32-56E0-41DB-FFBB846FD9CE}" = ccc-utility64 "{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "{FBF43D47-B1CD-C2D5-B19D-B89497AC80B3}" = ATI AVIVO64 Codecs "KLiteCodecPack64_is1" = K-Lite Codec Pack (64-bit) v3.7.0 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0279A9AB-01C3-CD2C-837C-29861A0C863F}" = CCC Help Swedish "{09C8CB2A-C6E8-EEF7-6388-B533685F6D7A}" = CCC Help Czech "{0E64E4CC-F3F5-E222-E59F-6A5B014C8F25}" = Catalyst Control Center Localization All "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{1EE88B84-7BE5-4FB5-8DEA-B81D5409D62E}" = Opera 11.00 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1F4748E6-E093-FA89-7999-737F48C4767F}" = Catalyst Control Center InstallProxy "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{2470870F-4F76-4C34-8D6A-C61EF365FBD0}" = Opera 11.50 "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{2AE1A3BF-EE97-8F00-4BB1-B7F6B85C09BC}" = CCC Help French "{2BA0A20B-B1D9-29C2-74B3-9BC7F2B0A11C}" = Catalyst Control Center Graphics Full Existing "{3424165E-3CC9-A6E0-12A6-5BE273FD2636}" = CCC Help Dutch "{34A0D249-747E-4D6C-803D-329C120C6B79}" = Catalyst Control Center - Branding "{45E08245-F4FD-092A-D5CD-7CF541F80293}" = Catalyst Control Center Graphics Light "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F}" = SAGEM F@st 800-840 "{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace "{50606891-5582-1C25-ACDC-E7DEDAD4DD19}" = CCC Help Chinese Traditional "{54194F60-988C-4D03-B922-C2B00EFDA39A}" = NVIDIA PhysX "{5454083B-1308-4485-BF17-1110000D8301}" = Grand Theft Auto IV "{5454083B-1308-4485-BF17-1110000D8302}" = Grand Theft Auto IV "{549AAD20-ED05-CE3A-B199-BC3D1ACE90B6}" = CCC Help Turkish "{581C4F63-1B66-AAB2-F33D-05262CE58B25}" = CCC Help Danish "{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053 "{703D2082-C8A8-06AE-76E5-1A03FF975621}" = CCC Help German "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{738F8C78-BAAD-8FF4-F6E2-E825FB9C98E5}" = CCC Help Portuguese "{81BF6353-3C5B-4E6E-A566-7E162A00BF72}_is1" = Wtyczka e-Deklaracje "{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 "{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar "{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher "{8996E652-FCF2-840B-C7DF-9A2EA5DC6053}" = CCC Help Norwegian "{89C0569F-16BF-4E44-89E9-8ED10EAD7775}" = Majesty 2 Złota Edycja "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8A855257-A669-5D67-936E-07314EB19472}" = CCC Help Polish "{92AB49B0-7CC6-5262-CB85-15D1201AA941}" = PX Profile Update "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{97660DB2-EF86-7489-52EC-87C15D64D812}" = CCC Help Spanish "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9F8A956D-99F8-0DC1-5FD9-01AD022BC673}" = Catalyst Control Center Graphics Previews Vista "{A34E6764-8BF0-A215-9C29-51CCD48FD891}" = CCC Help Chinese Standard "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{A4AA2BCD-6924-41C2-CA8B-C8D617602921}" = Catalyst Control Center Graphics Full New "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.4) "{ACF250BF-1FD9-023C-088B-F178C48BC0E2}" = CCC Help Thai "{C1B36C7D-331F-BB66-5A0C-8C97FD956786}" = CCC Help English "{CBA38C8A-1F5A-7177-BF84-F12F54236027}" = ccc-core-static "{D0ACE89D-EC7F-470F-80BE-4C98ED366B32}" = Acer Crystal Eye webcam Ver:1.1.92.624 "{DE5F0D0C-4398-2B93-BA14-DEAE92D57DEB}" = CCC Help Hungarian "{E23D82D4-12E4-0966-9777-79A0A176C6E0}" = CCC Help Russian "{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Windows Media Encoder 9 Series "{E54C81D4-3A74-EE14-08B0-43605DD9C053}" = e-Deklaracje Desktop "{E632763D-0D23-8560-2373-E8DE6443D7F9}" = CCC Help Finnish "{E6F5ADD7-8B77-7650-F4C5-5DF847788229}" = CCC Help Greek "{F1000000-0001-0000-0000-074957833700}" = ABBYY FineReader 10 Professional Edition "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable "{F68386EB-DDD6-0BAA-699B-65EAB94E42E4}" = Catalyst Control Center Core Implementation "{F7633A58-230B-BCE1-5CDB-4D1FC5C98B44}" = CCC Help Japanese "{FC0B6AA4-C606-2AE5-4111-A9C3288FBF15}" = CCC Help Italian "{FD7BC32A-1824-343F-B213-14A5626ABA23}" = CCC Help Korean "{FE23D063-934D-4829-A0D8-00634CE79B4A}" = Adobe AIR "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Any Video Converter_is1" = Any Video Converter 3.2.3 "avast" = avast! Free Antivirus "Botanicula_is1" = Botanicula "CCleaner" = CCleaner "DAEMON Tools Lite" = DAEMON Tools Lite "e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1" = e-Deklaracje Desktop "Foxit Reader" = Foxit Reader "Freemake Video Converter_is1" = Freemake Video Converter version 2.2.0 "ipla" = ipla 2.2.1 "KLiteCodecPack_is1" = K-Lite Mega Codec Pack 6.2.0 "NapiProjekt_is1" = NapiProjekt (2.0.0.2151) "OpenAL" = OpenAL "PITy 2010_is1" = PITy 2010 dla Windows kompilacja:1.2.7.3 "RealAlt_is1" = Real Alternative 2.0.2 "Runaway a Road Adventure PL" = Runaway a Road Adventure PL "Runic Games Torchlight" = Torchlight "Snood 4_is1" = Snood 4 "SopCast" = SopCast 3.4.0 "uTorrent" = µTorrent "vShare" = vShare Plugin "Windows Media Encoder 9" = Windows Media Encoder 9 Series [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2720060588-1569905436-2023223867-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Google Chrome" = Google Chrome "Octoshape add-in for Adobe Flash Player" = Octoshape add-in for Adobe Flash Player [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-08-27 12:55:33 | Computer Name = dawid-PC | Source = Application Hang | ID = 1002 Description = The program mpc-hc.exe version 1.3.2121.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 9c8c Start Time: 01cd8467f1931b00 Termination Time: 59 Application Path: C:\Program Files (x86)\K-Lite Codec Pack\Media Player Classic\mpc-hc.exe Report Id: fc7f599a-f067-11e1-8c60-ff70abece1d9 Error - 2012-08-30 15:03:03 | Computer Name = dawid-PC | Source = Application Hang | ID = 1002 Description = The program OperaUSB.exe version 10.1.1844.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: db4 Start Time: 01cd86d15c7d46db Termination Time: 33 Application Path: D:\Programy\Komunikacja\OperaFlash\OperaUSB.exe Report Id: 50763c1f-f2d5-11e1-83de-83ea1814e9d2 Error - 2012-09-02 13:52:24 | Computer Name = dawid-PC | Source = Windows Backup | ID = 4104 Description = Error - 2012-09-09 13:11:26 | Computer Name = dawid-PC | Source = Windows Backup | ID = 4104 Description = Error - 2012-09-16 13:10:28 | Computer Name = dawid-PC | Source = Windows Backup | ID = 4104 Description = Error - 2012-09-23 17:37:23 | Computer Name = dawid-PC | Source = Windows Backup | ID = 4104 Description = Error - 2012-09-28 11:36:19 | Computer Name = dawid-PC | Source = Application Hang | ID = 1002 Description = The program gg.exe version 10.1.0.11070 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: d04 Start Time: 01cd9d7d86e9d1c1 Termination Time: 39 Application Path: D:\Programy\Komunikacja\Gadu-Gadu 10\gg.exe Report Id: Error - 2012-09-30 14:14:22 | Computer Name = dawid-PC | Source = Windows Backup | ID = 4104 Description = Error - 2012-10-06 14:43:28 | Computer Name = dawid-PC | Source = Application Hang | ID = 1002 Description = The program OperaUSB.exe version 10.1.1844.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: b50 Start Time: 01cda3f204a68f17 Termination Time: 27 Application Path: D:\Programy\Komunikacja\OperaFlash\OperaUSB.exe Report Id: b583441e-0fe5-11e2-ab61-e45363e0b4d3 Error - 2012-10-14 13:15:54 | Computer Name = dawid-PC | Source = Windows Backup | ID = 4104 Description = [ Media Center Events ] Error - 2011-01-06 15:20:28 | Computer Name = dawid-PC | Source = MCUpdate | ID = 0 Description = 20:20:27 - Error connecting to the internet. 20:20:27 - Unable to contact server.. Error - 2011-01-06 15:22:23 | Computer Name = dawid-PC | Source = MCUpdate | ID = 0 Description = 20:20:34 - Error connecting to the internet. 20:20:34 - Unable to contact server.. Error - 2011-01-22 06:19:49 | Computer Name = dawid-PC | Source = MCUpdate | ID = 0 Description = 11:19:38 - Error connecting to the internet. 11:19:38 - Unable to contact server.. Error - 2011-01-22 08:00:42 | Computer Name = dawid-PC | Source = MCUpdate | ID = 0 Description = 13:00:36 - Error connecting to the internet. 13:00:36 - Unable to contact server.. Error - 2011-03-03 11:00:10 | Computer Name = dawid-PC | Source = MCUpdate | ID = 0 Description = 16:00:09 - Error connecting to the internet. 16:00:09 - Unable to contact server.. Error - 2011-03-03 11:00:26 | Computer Name = dawid-PC | Source = MCUpdate | ID = 0 Description = 16:00:15 - Error connecting to the internet. 16:00:15 - Unable to contact server.. [ System Events ] Error - 2012-10-15 08:51:40 | Computer Name = dawid-PC | Source = Service Control Manager | ID = 7000 Description = The General Purpose USB Driver (e4ldrx64.sys) service failed to start due to the following error: %%1058 Error - 2012-10-15 11:16:28 | Computer Name = dawid-PC | Source = Service Control Manager | ID = 7000 Description = The General Purpose USB Driver (e4ldrx64.sys) service failed to start due to the following error: %%1058 Error - 2012-10-15 15:49:23 | Computer Name = dawid-PC | Source = Service Control Manager | ID = 7000 Description = The General Purpose USB Driver (e4ldrx64.sys) service failed to start due to the following error: %%1058 Error - 2012-10-16 04:24:59 | Computer Name = dawid-PC | Source = Service Control Manager | ID = 7000 Description = The General Purpose USB Driver (e4ldrx64.sys) service failed to start due to the following error: %%1058 Error - 2012-10-16 05:06:57 | Computer Name = dawid-PC | Source = EventLog | ID = 6008 Description = The previous system shutdown at 11:05:50 on ?2012-?10-?16 was unexpected. Error - 2012-10-16 05:06:56 | Computer Name = dawid-PC | Source = Service Control Manager | ID = 7000 Description = The General Purpose USB Driver (e4ldrx64.sys) service failed to start due to the following error: %%1058 Error - 2012-10-16 05:10:06 | Computer Name = dawid-PC | Source = Service Control Manager | ID = 7000 Description = The General Purpose USB Driver (e4ldrx64.sys) service failed to start due to the following error: %%1058 Error - 2012-10-16 05:15:00 | Computer Name = dawid-PC | Source = Service Control Manager | ID = 7000 Description = The General Purpose USB Driver (e4ldrx64.sys) service failed to start due to the following error: %%1058 Error - 2012-10-16 07:34:16 | Computer Name = dawid-PC | Source = Service Control Manager | ID = 7000 Description = The General Purpose USB Driver (e4ldrx64.sys) service failed to start due to the following error: %%1058 Error - 2012-10-16 07:51:20 | Computer Name = dawid-PC | Source = Service Control Manager | ID = 7000 Description = The General Purpose USB Driver (e4ldrx64.sys) service failed to start due to the following error: %%1058 < End of report >