OTL Extras logfile created on: 2012-10-27 10:56:36 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Magda Jędryczko\Desktop 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,87 Gb Total Physical Memory | 2,13 Gb Available Physical Memory | 74,34% Memory free 5,73 Gb Paging File | 4,98 Gb Available in Paging File | 86,85% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 148,81 Gb Total Space | 92,69 Gb Free Space | 62,29% Space Free | Partition Type: NTFS Drive D: | 148,88 Gb Total Space | 139,74 Gb Free Space | 93,86% Space Free | Partition Type: NTFS Computer Name: MAGDAJĘDRYCZKO | User Name: Magda Jędryczko | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) [HKEY_USERS\S-1-5-21-2229257650-3663908228-4160574479-1000\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{110B3D5F-ABB2-49AE-AF4B-400D912FF304}" = lport=138 | protocol=17 | dir=in | app=system | "{15395294-81B2-451C-96EC-7BE0F0BBF151}" = lport=10243 | protocol=6 | dir=in | app=system | "{216FAA9B-7B33-4FF4-AB8B-EC76D695992D}" = rport=445 | protocol=6 | dir=out | app=system | "{22940189-05CA-4E11-A77C-86DFC00C0912}" = lport=137 | protocol=17 | dir=in | app=system | "{27BA5A19-B578-458F-B463-9088BE66888E}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{31EB19E8-60B7-43F0-AC15-4593A1693DD3}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{369CEBD5-1FD5-4972-B9BE-6DD268F6AF81}" = rport=138 | protocol=17 | dir=out | app=system | "{3AA6B3B2-41EF-405E-9578-79743168869C}" = lport=445 | protocol=6 | dir=in | app=system | "{3AD9C553-16A3-4B89-9CCA-A14CA3586986}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{493F6AD4-DDC7-49F7-870E-A671640E5282}" = lport=139 | protocol=6 | dir=in | app=system | "{575F9F65-8633-430A-AEFE-A357005AD822}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{5F92C884-53F3-4402-8EDD-363F96CCFE02}" = lport=2869 | protocol=6 | dir=in | app=system | "{7945C8BF-00BA-46DA-9354-4A6B3BF64C2E}" = rport=139 | protocol=6 | dir=out | app=system | "{7CF6EF22-D7EA-4783-A5E7-DE737C83D528}" = lport=2869 | protocol=6 | dir=in | app=system | "{7EBC6F6C-88E2-4409-B276-07D56327AFA1}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{8862D36D-573D-446D-ABC6-E282A557B68B}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{B33CD25E-87DD-40B8-A447-19C4F4A8FB5F}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{B536DBC5-50F9-4CC8-A5A3-86A285FC43D2}" = rport=137 | protocol=17 | dir=out | app=system | "{BF94682D-3405-4AA8-87CF-6226AD110323}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{C1077C20-3CE3-4EB0-B2D1-0DDE069D0A18}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{CAD12338-E26C-4477-8E4B-E806F1C3CC24}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{CC52F40A-B978-4564-8C08-18E9428D9BBE}" = rport=10243 | protocol=6 | dir=out | app=system | "{CFF055D6-77D5-402E-9786-629755E8B30C}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{DA4063F8-F897-4014-B922-BF30C08D6FDA}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | "{F8A143FB-22F8-49B0-8EEA-0ECA5F0232B9}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{003D44B0-295A-497D-A249-070225C598D8}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{034A9DEE-7BDA-45C2-8004-95D8663A3C38}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{060A6888-8A37-472D-80B1-777A770482F6}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{0644232C-8D0C-4BB8-9F4D-1C7B60CE8B48}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{0E139975-D8C6-4B23-8492-0D591155B8D8}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{16F8A2A7-4DF9-499A-9CD6-135EB3247BE1}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{1D2BBC92-D1A1-4072-B084-E0560C77BF88}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{38310B2A-7649-4311-8534-FB98C59BC48F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{3A7091C2-EE51-4079-A7D0-8905A4325A8C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{579A5D1E-FE9E-4E2A-A0C1-48E9F8754DDE}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{5D1075B8-7BA1-4424-91BB-3E95A88A715B}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | "{5D5D4EA2-405C-4DD6-ACC0-62096B43DCE0}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | "{6A11E050-8072-4916-B927-56801B83983D}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{6BD21442-CA25-47FD-BED6-E6F0A21D12B7}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{6F59DF61-33E0-4ABC-8ED3-DBF593951CA0}" = dir=in | app=c:\program files (x86)\windows live\sync\windowslivesync.exe | "{7153CF49-7129-41FE-A5B7-EDBADD71D280}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{7633164C-ED93-42A3-A791-9F436649D6C9}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{7E2A5A1E-ECC4-4149-863B-7E5C276E32E1}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe | "{A035375F-28D1-436A-8A5A-9DC936F2537E}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{B1C59330-28F2-4E42-893C-DE25AD6826F6}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | "{B392A680-1076-401F-AA5D-0F9F0706D82F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{C9CEE4E6-BAC5-4FC1-9D92-39ECA8A67120}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{CB516C84-45C3-4A18-80A3-2E04235C22F4}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{D5F8F565-4F8F-4138-BC3D-F2E1C32F3E18}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{F1F7F567-7D2E-499A-ADE3-13C6F8234189}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{FDFBF2C7-D45B-42FE-B9F2-6E552997306B}" = protocol=6 | dir=out | app=system | "TCP Query User{0EB7AEB8-CD9B-4811-942F-9490ECC1457D}C:\users\magda jędryczko\appdata\roaming\iheded\upukt.exe" = protocol=6 | dir=in | app=c:\users\magda jędryczko\appdata\roaming\iheded\upukt.exe | "TCP Query User{5E42E761-DAC5-4FEB-B4EA-7F7F2DB43F6A}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "TCP Query User{6D59CB33-49EF-4B15-ACE6-EF89A900182E}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "TCP Query User{871ECC65-7CFE-45F0-99CA-253983A94724}C:\users\magda jędryczko\appdata\roaming\iheded\upukt.exe" = protocol=6 | dir=in | app=c:\users\magda jędryczko\appdata\roaming\iheded\upukt.exe | "TCP Query User{BD59204F-B074-45F1-949A-20AD582512FF}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "TCP Query User{D2D5CE52-7620-4EFA-B321-7D1505BEAE88}C:\users\magda jędryczko\appdata\local\temp\rar$exa0.652\galapagos.pl\galapagos.exe" = protocol=6 | dir=in | app=c:\users\magda jędryczko\appdata\local\temp\rar$exa0.652\galapagos.pl\galapagos.exe | "TCP Query User{E6411E6F-6DB9-49CF-9AE4-5B7F4970CB7F}C:\users\magda jędryczko\appdata\local\temp\rar$exa0.084\galapagos.pl\galapagos.exe" = protocol=6 | dir=in | app=c:\users\magda jędryczko\appdata\local\temp\rar$exa0.084\galapagos.pl\galapagos.exe | "UDP Query User{02DD8501-36BA-4D77-9629-A30DBC687A48}C:\users\magda jędryczko\appdata\roaming\iheded\upukt.exe" = protocol=17 | dir=in | app=c:\users\magda jędryczko\appdata\roaming\iheded\upukt.exe | "UDP Query User{18DD8309-8FAD-4DCD-8DEB-B661BEAD4635}C:\users\magda jędryczko\appdata\roaming\iheded\upukt.exe" = protocol=17 | dir=in | app=c:\users\magda jędryczko\appdata\roaming\iheded\upukt.exe | "UDP Query User{2DF17A13-525E-4F36-8CBD-36BD16E62DDB}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "UDP Query User{40B5D208-0BBC-40E1-89A3-4D21C7E3B703}C:\users\magda jędryczko\appdata\local\temp\rar$exa0.084\galapagos.pl\galapagos.exe" = protocol=17 | dir=in | app=c:\users\magda jędryczko\appdata\local\temp\rar$exa0.084\galapagos.pl\galapagos.exe | "UDP Query User{84FB55A0-8BA8-4EE5-BDC5-08AE56E19499}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "UDP Query User{CEB9E4FD-7160-47DA-A2D8-3C7AF49D1416}C:\users\magda jędryczko\appdata\local\temp\rar$exa0.652\galapagos.pl\galapagos.exe" = protocol=17 | dir=in | app=c:\users\magda jędryczko\appdata\local\temp\rar$exa0.652\galapagos.pl\galapagos.exe | "UDP Query User{DD17F96C-00C0-46E7-9E3E-F32A00BD4965}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package "{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant "{2426E29F-9E8C-4C0B-97FC-0DB690C1ED98}" = Windows Live Remote Client Resources "{46A5FBE9-ADB3-4493-A1CC-B4CFFD24D26A}" = Windows Live Family Safety "{480F28F0-8BCE-404A-A52E-0DBB7D1CE2EF}" = Windows Live Remote Service Resources "{5DA0E02F-970B-424B-BF41-513A5018E4C0}" = TOSHIBA Disc Creator "{5EB6F3CB-46F4-451F-A028-7F6D8D35D7D0}" = Windows Live Language Selector "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90140000-006D-0415-1000-0000000FF1CE}" = Moduł Szybka instalacja pakietu Microsoft Office 2010 "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{A0E99122-25C1-4CA4-9063-499A2A814EB6}" = TOSHIBA ReelTime "{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}" = TOSHIBA Recovery Media Creator "{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}" = PlayReady PC Runtime amd64 "{C02C2C22-2EB1-47C8-B74F-8AB1A62FAE31}" = Windows Live Family Safety "{C14518AF-1A0F-4D39-8011-69BAA01CD380}" = TOSHIBA Bulletin Board "{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = Program TOSHIBA HDD/SSD Alert "{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter "{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client "{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service "{E65C7D8E-186D-484B-BEA8-DEF0331CE600}" = TRORMCLauncher "{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "{F67FA545-D8E5-4209-86B1-AEE045D1003F}" = TOSHIBA Face Recognition "CNXT_AUDIO_HDA" = Conexant HD Audio "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "SynTPDeinstKey" = Synaptics Pointing Device Driver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0420F95C-11FF-4E02-B967-6CC22B188F9F}" = Nero BackItUp "{0654EA5D-308A-4196-882B-5C09744A5D81}" = Windows Live Photo Common "{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package "{073B89C3-BA88-41B5-965F-B35A88EAE838}" = TOSHIBA Supervisor Password "{08234a0d-cf39-4dca-99f0-0c5cb496da81}" = Bing Bar "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{1B87C40B-A60B-4EF3-9A68-706CF4B69978}" = Toshiba Assist "{1CAC7A41-583B-4483-9FA5-3E5465AFF8C2}" = Microsoft Default Manager "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions "{20400DBD-E6DB-45B8-9B6B-1DD7033818EC}" = Nero InfoTool Help "{21a58b20-b04c-4948-88e7-a198411e4264}" = Nero 9 Essentials "{2290A680-4083-410A-ADCC-7092C67FC052}" = TOSHIBA Online Product Information "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{2348B586-C9AE-46CE-936C-A68E9426E214}" = Nero StartSmart Help "{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java(TM) 6 Update 29 "{26E3C07C-7FF7-4362-9E99-9E49E383CF16}" = Windows Live Writer Resources "{2C7E8AA1-9C03-4606-BF34-5D99D07964DA}" = Windows Live Messenger "{2E522ED6-01E2-4207-82D5-B3BFB31B8BD4}" = Windows Live Sync "{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery "{33CF58F5-48D8-4575-83D6-96F574E4D83A}" = Nero DriveSpeed "{397516AE-7DFE-4F90-84E0-BD616D559434}" = Nero BurnRights "{3A9B3B6D-3C08-4283-AF50-FD82C49DD71E}" = TOSHIBA TEMPRO "{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology "{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}" = Windows Live PIMT Platform "{51E2F9B3-A972-4F58-B4EF-4D9676D9F5D1}" = Nero RescueAgent "{543E6ACA-51B7-4283-82F2-57C0582A53C5}" = Windows Live UX Platform Language Pack "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{595A3116-40BB-4E0F-A2E8-D7951DA56270}" = NeroExpress "{5E6F6CF3-BACC-4144-868C-E14622C658F3}" = TOSHIBA Web Camera Application "{607BE7BF-7C28-4ADB-A4A0-385962B901C3}" = TOSHIBA ConfigFree "{64376910-1860-4CEF-8B34-AA5D205FC5F1}" = Poczta usługi Windows Live "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE "{6AAF923E-077E-4543-BA1C-42A75BB03677}" = Sąsiedzi z Piekła Rodem 1 i 2 "{6C3CF7AC-5AB0-42D9-93C0-68166A57AFB6}" = Nero Express "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{773970F1-5EBA-4474-ADEE-1EA3B0A59492}" = TOSHIBA Recovery Media Creator Reminder "{7748AC8C-18E3-43BB-959B-088FAEA16FB2}" = Nero StartSmart "{7829DB6F-A066-4E40-8912-CB07887C20BB}" = Nero BurnRights "{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}" = Windows Live Messenger Companion Core "{7A9D47BA-6D50-4087-866F-0800D8B89383}" = Podstawowe programy Windows Live "{83202942-84B3-4C50-8622-B8C0AA2D2885}" = Nero Express Help "{869200DB-287A-4DC0-B02B-2B6787FBCD4C}" = Nero DiscSpeed "{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar "{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8E9CEA3B-EBD1-439C-A01D-830CB39613C6}" = TOSHIBA Hardware Setup "{90140011-0066-0415-0000-0000000FF1CE}" = Microsoft Office Starter 2010 - Polski "{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}" = Toshiba Manuals "{928B06E4-DDAA-476A-926A-641620326327}" = Microsoft Search Enhancement Pack "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker "{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010 "{95140000-00AF-0415-0000-0000000FF1CE}" = Microsoft PowerPoint Viewer "{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader "{983CD6FE-8320-4B80-A8F6-0D0366E0AA22}" = TOSHIBA Media Controller "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail "{9DA0961E-FCFE-EEF2-04AA-32631F7CEC9E}" = Photo Service - powered by myphotobook "{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR "{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer "{A74F16FA-1D5B-405B-8D8D-1BC6F9DAED8B}" = Amazon.co.uk "{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer "{AC6569FA-6919-442A-8552-073BE69E247A}" = TOSHIBA Service Station "{AC76BA86-7AD7-1045-7B44-A95000000001}" = Adobe Reader 9.5.1 - Polish "{B04A0E2F-1E4C-4E61-B18E-3B2BD6779CA7}" = Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych "{B2EC4A38-B545-4A00-8214-13FE0E915E6D}" = Advertising Center "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{B86C9440-82D7-423C-9FEC-6CB3092D1AA4}" = Bing Bar Platform "{BD5CA0DA-71AD-43DA-B19E-6EEE0C9ADC9A}" = Nero ControlCenter "{BD8DA595-F501-4ABE-85A0-5C23E82472A0}" = Pomocnik Messenger "{BF35168D-F6F9-4202-BA87-86B5E3C9BF7A}" = Windows Live Mesh "{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Atheros Driver Installation Program "{C81A2FE0-3574-00A9-CED4-BDAA334CBE8E}" = Nero Online Upgrade "{CB3F59BB-7858-41A1-A7EA-4B8A6FC7D431}" = Galeria fotografii usługi Windows Live "{CC019E3F-59D2-4486-8D4B-878105B62A71}" = Nero DiscSpeed Help "{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86 "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64 "{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = Program TOSHIBA HDD/SSD Alert "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform "{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh "{E08CC458-41FB-4BB5-9B08-2C83DB55A5B9}" = Nero BackItUp and Burn "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E55E0C35-AC3C-4683-BA2F-834348577B80}" = Windows Live Writer "{E5C7D048-F9B4-4219-B323-8BDB01A2563D}" = Nero DriveSpeed Help "{E8A80433-302B-4FF1-815D-FCC8EAC482FF}" = Nero Installer "{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10 "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Graphics Media Accelerator Driver "{F26FDF57-483E-42C8-A9C9-EEE1EDB256E0}" = TOSHIBA Media Controller Plug-in "{F4041DCE-3FE1-4E18-8A9E-9DE65231EE36}" = Nero ControlCenter "{F6BDD7C5-89ED-4569-9318-469AA9732572}" = Nero BurnRights Help "{F80E5450-3EF3-4270-B26C-6AC53BEC5E76}" = Windows Live Movie Maker "{FAE5B434-5222-4C81-BEEE-74A380D1EA6C}" = Badoo Desktop "{FBCDFD61-7DCF-4E71-9226-873BA0053139}" = Nero InfoTool "{FDE58148-57E7-43BF-879A-29CCE818C078}" = eBay "5513-1208-7298-9440" = JDownloader 0.9 "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Ashampoo Burning Studio Elements_is1" = Ashampoo Burning Studio Elements 10.0.9 "Ashampoo_PO Toolbar" = Ashampoo PO Toolbar "avast" = avast! Free Antivirus "CZATeriaKam" = CZATeriaKam 2.6.2 "eu.myphotobook.001F9DF2D0BAABEB11F42CCEE43224607B61109C.1" = Photo Service - powered by myphotobook "Gadu-Gadu 10" = Gadu-Gadu 10 "Google Chrome" = Google Chrome "InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package "InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492}" = TOSHIBA Recovery Media Creator Reminder "InstallShield_{A0E99122-25C1-4CA4-9063-499A2A814EB6}" = TOSHIBA ReelTime "InstallShield_{C14518AF-1A0F-4D39-8011-69BAA01CD380}" = TOSHIBA Bulletin Board "InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = Program TOSHIBA HDD/SSD Alert "InstallShield_{E65C7D8E-186D-484B-BEA8-DEF0331CE600}" = TRORMCLauncher "InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F}" = TOSHIBA Face Recognition "ipla" = ipla 2.3.5 "Kangurek Kao - Tajemnica wulkanu" = Kangurek Kao - Tajemnica wulkanu "MyWebSearch bar Uninstall" = My Web Search (Cursor Mania) "Office14.Click2Run" = Moduł Szybka instalacja pakietu Microsoft Office 2010 "PhotoScape" = PhotoScape "TeamSpeak 3 Client" = TeamSpeak 3 Client "WinLiveSuite" = Podstawowe programy Windows Live "WinRAR archiver" = WinRAR 4.20 (32-bitowy) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2229257650-3663908228-4160574479-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{79A765E1-C399-405B-85AF-466F52E918B0}" = Ask Toolbar Updater "Funmoods Web Search" = Funmoods Web Search "GG" = GG "UnityWebPlayer" = Unity Web Player [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-10-19 13:15:51 | Computer Name = MagdaJędryczko | Source = CVHSVC | ID = 100 Description = Tylko informacje. Error: Serwer zwrócił nieprawidłową lub nie rozpoznaną odpowiedź. ErrorCode: 14007(0x36b7). Error - 2012-10-20 04:00:59 | Computer Name = MagdaJędryczko | Source = CVHSVC | ID = 100 Description = Tylko informacje. Error: Serwer zwrócił nieprawidłową lub nie rozpoznaną odpowiedź. ErrorCode: 14007(0x36b7). Error - 2012-10-20 14:17:44 | Computer Name = MagdaJędryczko | Source = CVHSVC | ID = 100 Description = Tylko informacje. Error: Serwer zwrócił nieprawidłową lub nie rozpoznaną odpowiedź. ErrorCode: 14007(0x36b7). Error - 2012-10-21 10:06:30 | Computer Name = MagdaJędryczko | Source = CVHSVC | ID = 100 Description = Tylko informacje. Error: Serwer zwrócił nieprawidłową lub nie rozpoznaną odpowiedź. ErrorCode: 14007(0x36b7). Error - 2012-10-21 13:59:49 | Computer Name = MagdaJędryczko | Source = CVHSVC | ID = 100 Description = Tylko informacje. Error: Serwer zwrócił nieprawidłową lub nie rozpoznaną odpowiedź. ErrorCode: 14007(0x36b7). Error - 2012-10-21 15:30:07 | Computer Name = MagdaJędryczko | Source = CVHSVC | ID = 100 Description = Tylko informacje. Error: Serwer zwrócił nieprawidłową lub nie rozpoznaną odpowiedź. ErrorCode: 14007(0x36b7). Error - 2012-10-23 13:39:34 | Computer Name = MagdaJędryczko | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: iexplore.exe, wersja: 9.0.8112.16450, sygnatura czasowa: 0x503723f6 Nazwa modułu powodującego błąd: igd10umd32.dll, wersja: 8.15.10.2086, sygnatura czasowa: 0x4b80087f Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000280a1 Identyfikator procesu powodującego błąd: 0x1448 Godzina uruchomienia aplikacji powodującej błąd: 0x01cdb13f78eede04 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Internet Explorer\iexplore.exe Ścieżka modułu powodującego błąd: C:\Windows\system32\igd10umd32.dll Identyfikator raportu: 9b1e2cde-1d38-11e2-8c95-00266c7da22d Error - 2012-10-23 13:39:34 | Computer Name = MagdaJędryczko | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: iexplore.exe, wersja: 9.0.8112.16450, sygnatura czasowa: 0x503723f6 Nazwa modułu powodującego błąd: igd10umd32.dll, wersja: 8.15.10.2086, sygnatura czasowa: 0x4b80087f Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000280a1 Identyfikator procesu powodującego błąd: 0x1b24 Godzina uruchomienia aplikacji powodującej błąd: 0x01cdb13f9f2b0656 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Internet Explorer\iexplore.exe Ścieżka modułu powodującego błąd: C:\Windows\system32\igd10umd32.dll Identyfikator raportu: 9b1ec921-1d38-11e2-8c95-00266c7da22d Error - 2012-10-24 07:48:33 | Computer Name = MagdaJędryczko | Source = CVHSVC | ID = 100 Description = Tylko informacje. (Patch task for {90140011-0066-0415-0000-0000000FF1CE}): DownloadLatest Failed: Obecnie nie ma aktywnych połączeń sieciowych. Usługa inteligentnego transferu w tle (BITS) ponowni próbę po podłączeniu karty. Error - 2012-10-24 08:03:03 | Computer Name = MagdaJędryczko | Source = CVHSVC | ID = 100 Description = Tylko informacje. (Patch task for {90140011-0066-0415-0000-0000000FF1CE}): DownloadLatest Failed: Obecnie nie ma aktywnych połączeń sieciowych. Usługa inteligentnego transferu w tle (BITS) ponowni próbę po podłączeniu karty. Error - 2012-10-27 04:51:35 | Computer Name = MagdaJędryczko | Source = SideBySide | ID = 16842832 Description = Nie można wygenerować kontekstu aktywacji dla „C:\Users\Magda Jędryczko\Downloads\SoftonicDownloader_dla_teamspeak-3.exe”. Błąd w pliku manifestu lub w pliku zasad „” w wierszu . Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Składnik 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. [ System Events ] Error - 2012-10-27 03:52:05 | Computer Name = MagdaJędryczko | Source = Service Control Manager | ID = 7023 Description = Usługa Wstępne ładowanie do pamięci zakończyła działanie; wystąpił następujący błąd: %%13 Error - 2012-10-27 04:17:44 | Computer Name = MagdaJędryczko | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi eamonm z powodu następującego błędu: %%2 Error - 2012-10-27 04:27:38 | Computer Name = MagdaJędryczko | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 10:25:32 na ?2012-?10-?27 było nieoczekiwane. Error - 2012-10-27 04:27:44 | Computer Name = MagdaJędryczko | Source = Service Control Manager | ID = 7001 Description = Usługa Client Virtualization Handler zależy od usługi Application Virtualization Client, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-10-27 04:27:44 | Computer Name = MagdaJędryczko | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: aswSnx aswSP aswTdi discache spldr Wanarpv6 Error - 2012-10-27 04:28:04 | Computer Name = MagdaJędryczko | Source = DCOM | ID = 10005 Description = Error - 2012-10-27 04:28:14 | Computer Name = MagdaJędryczko | Source = DCOM | ID = 10005 Description = Error - 2012-10-27 04:28:19 | Computer Name = MagdaJędryczko | Source = DCOM | ID = 10005 Description = Error - 2012-10-27 04:28:19 | Computer Name = MagdaJędryczko | Source = DCOM | ID = 10005 Description = Error - 2012-10-27 04:38:37 | Computer Name = MagdaJędryczko | Source = DCOM | ID = 10005 Description = < End of report >