OTL Extras logfile created on: 2002-01-01 00:34:17 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = H:\Rootkit Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,52 Gb Available Physical Memory | 76,23% Memory free 2,60 Gb Paging File | 2,26 Gb Available in Paging File | 86,89% Paging File free Paging file location(s): C:\pagefile.sys 768 1536 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 19,52 Gb Total Space | 0,20 Gb Free Space | 1,00% Space Free | Partition Type: FAT32 Drive D: | 19,52 Gb Total Space | 9,67 Gb Free Space | 49,52% Space Free | Partition Type: FAT32 Drive E: | 35,45 Gb Total Space | 15,99 Gb Free Space | 45,10% Space Free | Partition Type: FAT32 Drive H: | 3,72 Gb Total Space | 2,44 Gb Free Space | 65,46% Space Free | Partition Type: FAT32 Computer Name: AD-21FEDBBFE30B | User Name: AD | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- E:\Mozilla\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* exefile [open] -- "%1" %* piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "E:\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "E:\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "E:\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 1 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr] "Start" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService] "Start" = 2 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] "25641:TCP" = 25641:TCP:*:Enabled:BitComet 25641 TCP "25641:UDP" = 25641:UDP:*:Enabled:BitComet 25641 UDP [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation) "C:\Program Files\HP\Digital Imaging\BIN\hpofxm08.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpofxm08.exe:*:Enabled:hpofxm08.exe "C:\Program Files\HP\Digital Imaging\BIN\hposfx08.exe" = C:\Program Files\HP\Digital Imaging\BIN\hposfx08.exe:*:Enabled:hposfx08.exe "C:\Program Files\HP\Digital Imaging\BIN\hpfcCopy.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpfcCopy.exe:*:Enabled:hpfccopy.exe "C:\Program Files\HP\Digital Imaging\BIN\hpzwiz01.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpzwiz01.exe:*:Enabled:hpzwiz01.exe "C:\Program Files\HP\Digital Imaging\BIN\hpofxs08.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpofxs08.exe:*:Enabled:hpofxs08.exe "C:\Program Files\HP\Digital Imaging\BIN\hpqtra08.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpqtra08.exe:*:Enabled:hpqtra08.exe -- (Hewlett-Packard Co.) "C:\Program Files\HP\Digital Imaging\BIN\hpqste08.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpqste08.exe:*:Enabled:hpqste08.exe -- (Hewlett-Packard Co.) "C:\Program Files\HP\Digital Imaging\BIN\hposid01.exe" = C:\Program Files\HP\Digital Imaging\BIN\hposid01.exe:*:Enabled:hposid01.exe -- (Hewlett-Packard Co.) "C:\Program Files\HP\Digital Imaging\BIN\hpqkygrp.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpqkygrp.exe:*:Enabled:hpqkygrp.exe -- (Hewlett-Packard) "C:\Program Files\HP\Digital Imaging\BIN\hpqCopy.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpqCopy.exe:*:Enabled:hpqcopy.exe -- (Hewlett-Packard Co.) "C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe" = C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe:*:Enabled:hpqphunl.exe -- () "C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe" = C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe:*:Enabled:hpqdia.exe -- ( ) "C:\Program Files\HP\Digital Imaging\BIN\hpoews01.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpoews01.exe:*:Enabled:hpoews01.exe -- (Hewlett-Packard Co.) "C:\Program Files\HP\Digital Imaging\BIN\hpiscnapp.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpiscnapp.exe:*:Enabled:hpiscnapp.exe -- (Hewlett-Packard) "C:\Program Files\HP\Digital Imaging\BIN\hpqcopy2.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpqcopy2.exe:*:Enabled:hpqcopy2.exe -- (Hewlett-Packard Co.) "C:\Program Files\HP\Digital Imaging\BIN\hpqgplgtupl.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpqgplgtupl.exe:*:Enabled:hpqgplgtupl.exe -- (Hewlett-Packard Co.) "C:\Program Files\HP\Digital Imaging\BIN\hpqgpc01.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpqgpc01.exe:*:Enabled:hpqgpc01.exe -- (Hewlett-Packard) [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation) "E:\Program Files\BearShare Applications\BearShare\BearShare.exe" = E:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare "E:\Program Files\GameSpy Arcade\Aphex.exe" = E:\Program Files\GameSpy Arcade\Aphex.exe:*:Enabled:GameSpy Arcade "E:\Rag Doll Kung Fu\rag_doll_kung_fu.exe" = E:\Rag Doll Kung Fu\rag_doll_kung_fu.exe:*:Enabled:rag_doll_kung_fu "E:\Gadu-Gadu\gg.exe" = E:\Gadu-Gadu\gg.exe:*:Enabled:Gadu-Gadu - program główny "E:\eMule\emule.exe" = E:\eMule\emule.exe:*:Enabled:eMule "E:\Moto Racer 3 demo\Mr3.exe" = E:\Moto Racer 3 demo\Mr3.exe:*:Enabled:Moto Racer 3 PC "E:\Alien Nations\Bin\AN.exe" = E:\Alien Nations\Bin\AN.exe:*:Enabled:DV "C:\Program Files\Internet Explorer\IEXPLORE.EXE" = C:\Program Files\Internet Explorer\IEXPLORE.EXE:*:Enabled:Internet Explorer -- (Microsoft Corporation) "E:\Manager2006\fm.exe" = E:\Manager2006\fm.exe:*:Enabled:Football Manager 2006 "E:\cos\hl.exe" = E:\cos\hl.exe:*:Enabled:Half-Life Launcher "E:\FAIL\HLSW\hlsw.exe" = E:\FAIL\HLSW\hlsw.exe:*:Enabled:HLSW Application "C:\Program Files\Winamp Remote\bin\Orb.exe" = C:\Program Files\Winamp Remote\bin\Orb.exe:*:Enabled:Orb -- (Orb Networks, Inc.) "C:\Program Files\Winamp Remote\bin\OrbTray.exe" = C:\Program Files\Winamp Remote\bin\OrbTray.exe:*:Enabled:OrbTray -- (Orb Networks) "C:\Program Files\Winamp Remote\bin\OrbStreamerClient.exe" = C:\Program Files\Winamp Remote\bin\OrbStreamerClient.exe:*:Enabled:Orb Stream Client -- (Orb Networks) "E:\Metin2_PL\metin2.bin" = E:\Metin2_PL\metin2.bin:*:Enabled:metin2 "E:\cos\hltv.exe" = E:\cos\hltv.exe:*:Enabled:HLTV Launcher "E:\Netsoccer\Netsoccer\server.exe" = E:\Netsoccer\Netsoccer\server.exe:*:Enabled:server "C:\Program Files\DNA\btdna.exe" = C:\Program Files\DNA\btdna.exe:*:Enabled:DNA -- (BitTorrent, Inc.) "E:\WT\WolfTeam\Wolfteam.bin" = E:\WT\WolfTeam\Wolfteam.bin:*:Enabled:WolfTeam "C:\Documents and Settings\AD\Dane aplikacji\PowerChallenge\PowerSoccer\PowerSoccer.exe" = C:\Documents and Settings\AD\Dane aplikacji\PowerChallenge\PowerSoccer\PowerSoccer.exe:*:Enabled:PowerSoccer -- () "E:\BitComet\BitComet.exe" = E:\BitComet\BitComet.exe:*:Enabled:BitComet - a BitTorrent Client "E:\Ski Jumping 2007\Skispringen 2007\skispringen2007.exe" = E:\Ski Jumping 2007\Skispringen 2007\skispringen2007.exe:*:Enabled:skispringen2007 "E:\Nowe Gadu-Gadu\gg.exe" = E:\Nowe Gadu-Gadu\gg.exe:*:Enabled:Nowe Gadu-Gadu beta "D:\Half-Life\hlds.exe" = D:\Half-Life\hlds.exe:*:Enabled:hlds "E:\FM08\fm.exe" = E:\FM08\fm.exe:*:Disabled:Football Manager 2008 "C:\WINDOWS\System32\PnkBstrA.exe" = C:\WINDOWS\System32\PnkBstrA.exe:*:Enabled:PnkBstrA -- () "C:\WINDOWS\System32\PnkBstrB.exe" = C:\WINDOWS\System32\PnkBstrB.exe:*:Enabled:PnkBstrB -- () "C:\Program Files\Skype\Phone\Skype.exe" = C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype "C:\WINDOWS\System32\dpvsetup.exe" = C:\WINDOWS\System32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test -- (Microsoft Corporation) "C:\WINDOWS\System32\RUNDLL32.EXE" = C:\WINDOWS\System32\RUNDLL32.EXE:*:Enabled:Uruchamia plik DLL jako aplikację -- (Microsoft Corporation) "C:\Program Files\HP\Digital Imaging\BIN\hpqscnvw.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpqscnvw.exe:*:Enabled:hpqscnvw.exe "C:\Program Files\Java\JRE6\BIN\javaw.exe" = C:\Program Files\Java\JRE6\BIN\javaw.exe:*:Enabled:Java(TM) Platform SE binary -- (Sun Microsystems, Inc.) "C:\Program Files\HP\Digital Imaging\BIN\hpofxm08.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpofxm08.exe:*:Enabled:hpofxm08.exe "C:\Program Files\HP\Digital Imaging\BIN\hposfx08.exe" = C:\Program Files\HP\Digital Imaging\BIN\hposfx08.exe:*:Enabled:hposfx08.exe "C:\Program Files\HP\Digital Imaging\BIN\hpfccopy.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpfccopy.exe:*:Enabled:hpfccopy.exe "C:\Program Files\HP\Digital Imaging\BIN\hpzwiz01.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpzwiz01.exe:*:Enabled:hpzwiz01.exe "C:\Program Files\HP\Digital Imaging\BIN\hpofxs08.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpofxs08.exe:*:Enabled:hpofxs08.exe "C:\Program Files\HP\Digital Imaging\BIN\HPQTRA08.EXE" = C:\Program Files\HP\Digital Imaging\BIN\HPQTRA08.EXE:*:Enabled:hpqtra08.exe -- (Hewlett-Packard Co.) "C:\Program Files\HP\Digital Imaging\BIN\hpqste08.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpqste08.exe:*:Enabled:hpqste08.exe -- (Hewlett-Packard Co.) "C:\Program Files\HP\Digital Imaging\BIN\hposid01.exe" = C:\Program Files\HP\Digital Imaging\BIN\hposid01.exe:*:Enabled:hposid01.exe -- (Hewlett-Packard Co.) "C:\Program Files\HP\Digital Imaging\BIN\hpqkygrp.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpqkygrp.exe:*:Enabled:hpqkygrp.exe -- (Hewlett-Packard) "C:\Program Files\HP\Digital Imaging\BIN\hpqCopy.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpqCopy.exe:*:Enabled:hpqcopy.exe -- (Hewlett-Packard Co.) "C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe" = C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe:*:Enabled:hpqphunl.exe -- () "C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe" = C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe:*:Enabled:hpqdia.exe -- ( ) "C:\Program Files\HP\Digital Imaging\BIN\hpoews01.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpoews01.exe:*:Enabled:hpoews01.exe -- (Hewlett-Packard Co.) "C:\Program Files\HP\Digital Imaging\BIN\hpiscnapp.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpiscnapp.exe:*:Enabled:hpiscnapp.exe -- (Hewlett-Packard) "C:\Program Files\HP\Digital Imaging\BIN\hpqcopy2.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpqcopy2.exe:*:Enabled:hpqcopy2.exe -- (Hewlett-Packard Co.) "C:\Program Files\HP\Digital Imaging\BIN\hpqgplgtupl.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpqgplgtupl.exe:*:Enabled:hpqgplgtupl.exe -- (Hewlett-Packard Co.) "C:\Program Files\HP\Digital Imaging\BIN\hpqgpc01.exe" = C:\Program Files\HP\Digital Imaging\BIN\hpqgpc01.exe:*:Enabled:hpqgpc01.exe -- (Hewlett-Packard) "E:\Gadu-Gadu\Gadu-Gadu 10\gg.exe" = E:\Gadu-Gadu\Gadu-Gadu 10\gg.exe:*:Disabled:Gadu-Gadu 10 -- (GG Network S.A.) "E:\CS1.6_v32_by_Lukasz\cstrike.exe" = E:\CS1.6_v32_by_Lukasz\cstrike.exe:*:Enabled:Half-Life Launcher -- (Valve) "C:\Program Files\Google\Google Talk\googletalk.exe" = C:\Program Files\Google\Google Talk\googletalk.exe:*:Enabled:Google Talk -- (Google) "C:\Program Files\SopCast\adv\SopAdver.exe" = C:\Program Files\SopCast\adv\SopAdver.exe:*:Enabled:SopCast Adver -- (www.sopcast.com) "C:\Program Files\SopCast\SopCast.exe" = C:\Program Files\SopCast\SopCast.exe:*:Enabled:SopCast Main Application -- (www.sopcast.com) "E:\X-Lite\x-lite.exe" = E:\X-Lite\x-lite.exe:*:Enabled:X-Lite -- () "E:\Skype\Phone\Skype.exe" = E:\Skype\Phone\Skype.exe:*:Enabled:Skype -- (Skype Technologies S.A.) "E:\Steam\Steam.exe" = E:\Steam\Steam.exe:*:Enabled:Steam -- (Valve Corporation) "E:\FM\fm.exe" = E:\FM\fm.exe:*:Disabled:Football Manager 2009 "E:\TS\F1 Turbo Sliders 5.0 mod by Yoyogi\F1 Turbo Sliders 5.0.exe" = E:\TS\F1 Turbo Sliders 5.0 mod by Yoyogi\F1 Turbo Sliders 5.0.exe:*:Enabled:F1 Turbo Sliders 5.0 -- () [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{036FD544-AED6-3F33-856D-A2292D0CF471}" = Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - PLK "{03A7C57A-B2C8-409b-92E5-524A0DFD0DD3}" = Status "{03B1B42B-F6DE-41d9-8CFF-DC44E895C7A7}" = PhotoGallery "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{0611BD4E-4FE4-4a62-B0C0-18A4CC463428}" = CP_Package_Variety1 "{087A66B8-1F0F-4a8d-A649-0CFE276AA7C0}" = WebReg "{0B33B738-AD79-4E32-90C5-E67BFB10BBFF}" = AiO_Scan "{0DE075DB-4218-4B2C-A35E-48D80BA680BB}" = Heroes of Might and Magic V "{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1 "{172975EB-9465-4861-95B5-C7BB6D3DE62A}" = DocumentViewer "{1C139D7D-9FEA-468d-A9C8-2A6E3BDE564A}" = CP_Package_Variety3 "{21DB3D90-D816-4092-A260-CA3F6B55A6DD}" = Sonic_PrimoSDK "{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk" = Google Talk (remove only) "{23A7B376-BBEC-4e76-BBD7-0F155E70D74B}" = CP_Panorama1Config "{26A24AE4-039D-4CA4-87B4-2F83216030FF}" = Java(TM) 6 Update 30 "{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 7 "{2A329FB6-389D-4396-A974-29656D6864AE}" = MarketResearch "{2CADCEAB-D5DA-44D6-B5FC-7DEE87AB3C0C}" = Unload "{2EEA7AA4-C203-4b90-A34F-19FB7EF1C81C}" = BufferChm "{3248F0A8-6813-11D6-A77B-00B0D0150100}" = J2SE Runtime Environment 5.0 Update 10 "{32BDCCB8-9DC8-496d-9DB1-F77510775BDB}" = InstantShareDevices "{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{363BF927-C2EE-43CF-B765-2025BCED5089}" = F735 "{36E47DA1-10E1-45d9-8B19-14D19607CDCF}" = CP_CalendarTemplates1 "{39CB30DB-27F8-4dd4-A294-CB4AE3B584FD}" = Copy "{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 "{3D654496-9C3D-4565-858C-3E551ECDA4E2}" = Virtual Cable Tester "{42DC7D64-F389-4E37-B545-E7D674A97D66}" = PC DUAL SHOCK "{47ECCB1F-2811-49C0-B6A7-26778639ABA0}" = 32 Bit HP CIO Components Installer "{47FA2C44-D148-4DBC-AF60-B91934AA4842}" = Adobe AIR "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4D304678-738E-42a0-931A-2B022F49DEB8}" = TrayApp "{4DFF1415-4C29-44A8-BFD4-2BCE249C4991}" = SpPhones "{4E7C28C7-D5DA-4E9F-A1CA-60490B54AE35}" = UnloadSupport "{53EE9E42-CECB-4C92-BF76-9CA65DAF8F1C}" = FullDPAppQFolder "{54E3707F-808E-4fd4-95C9-15D1AB077E5D}" = NewCopy "{553C904F-57A2-4113-888E-BA0C3D1C69C0}" = Microsoft VC9 runtime libraries "{560F47F7-EB23-44B1-AAFC-667F1CD8FE5C}" = Sp5 "{56EE8B17-8274-418d-89AC-C057C5DB251E}" = RandMap "{5852AC18-76CA-45FB-A742-96BA8CF1B5BF}" = Petz 5 "{5A01C58E-B0EC-49b9-AD71-7C0468688087}" = CP_Package_Basic1 "{5B79CFD1-6845-4158-9D7D-6BE89DF2C135}" = HP PSC & OfficeJet 5.3.B "{5F26311C-B135-4F7F-B11E-8E650F83651E}" = DeviceFunctionQFolder "{64CB2553-C109-4132-AA51-1F421B515FD1}" = Microsoft .NET Framework 1.1 Polish Language Pack "{65248369-7CB9-43A9-82C8-C438AE04DED4}" = 1500 "{66BA8C26-AFE4-4408-807B-43E76B57EF53}" = SkinsHP1 "{6BB6627C-694F-4FDC-A3E5-C7F4BED4C724}" = DocProc "{6C3959C6-943E-44B3-BAAD-570B04B134E5}" = SpCommon "{6EED4269-588D-45b8-A80C-26A9CA62EE4E}" = HPSSupply "{7059BDA7-E1DB-442C-B7A1-6144596720A4}" = HP Update "{7850A6D2-CBEA-4728-9877-F1BEDEA9F619}" = AiOSoftware "{7BE02706-B038-4844-8FE0-E7A7C0597023}" = HP Deskjet F735 All-in-one Driver Software 12.0 Rel .4 "{7C03270C-4FAB-4F5C-B10D-52FEDA190790}" = DocumentViewerQFolder "{7C77393F-8237-3825-A88A-AFAF3C69C072}" = Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - PLK "{7C9B95B7-B598-4398-B30F-7F6827192E6C}" = ProductContext "{7E27304E-BAA2-4d90-A34E-76641FAFABB4}" = CP_AtenaShokunin1Config "{800E784D-53E3-4948-B491-9E7FA5EACBDC}" = SmartWebPrinting "{81E06318-EEB9-4D55-8CD5-7AC9148D5E66}" = 1500_Help "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90280415-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Professional z programem FrontPage "{923A7F5A-1E8C-4FBE-8DF6-85940A60A79F}" = Readme "{9603DE6D-4567-4b78-B941-849322373DE2}" = SolutionCenter "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9CCCFD9C-248F-47FE-9496-1680E3E5C163}" = Scan "{9D1B99B7-DAD8-440d-B4FB-1915332FBCC2}" = HPProductAssistant "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{A5BB5365-EFB4-44c3-A7E2-EB59B7EFD23D}" = CueTour "{A654A805-41D9-40C7-AA46-4AF04F044D61}" = Adobe® Photoshop® Album Starter Edition 3.2 "{A81EB5BC-F764-308A-B979-0F8F078DAB29}" = Yammer "{AC13BA3A-336B-45a4-B3FE-2D3058A7B533}" = Toolbox "{B43357AA-3A6D-4D94-B56E-43C44D09E548}" = Microsoft .NET Framework (English) "{B824B5C9-849F-4b9e-9EA7-6FD8CD8116DA}" = CP_Package_Variety2 "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{C950420B-4182-49EA-850A-A6A2ABF06C6B}" = Marvell Miniport Driver "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CBA30674-A242-4531-82B5-586B31F90E04}" = 1500Trb "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D2FCC1AE-6311-47C5-8130-C6C66D77DD71}" = Nikon Message Center "{E415C943-37E5-473F-8BAE-043C56734124}" = Sp5TTInt "{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}" = Skype™ 5.0 "{EF9E56EE-0243-4BAD-88F4-5E7508AA7D96}" = Destination Component "{F0D4A26B-71F1-4745-AEDF-AC851042A5BA}" = DJ_AIO_04_F735_Software_Min "{F31E509D-3597-324E-83CF-0C160B2320F0}" = Microsoft .NET Framework 3.5 Language Pack - plk "{F648FD09-7CEA-4257-BC68-A8389189FD51}" = GPBaseService2 "{F769B78E-FF0E-4db5-95E2-9F4C8D6352FE}" = DeviceDiscovery "{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio "{FD4B33E1-24AE-4535-AA7B-162B30FB57CD}" = Sp5Intl "{FE64AE29-0883-4C70-8388-DC026019C900}" = HP Image Zone Express "{FEC7CD2E-2BB5-40C3-9592-078F64677E6C}" = PC TWIN SHOCK "100% Free Chess Toolbar" = 100% Free Chess Toolbar "7-Zip" = 7-Zip 4.57 "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.5 "Adobe® Photoshop® Album Starter Edition 3.2" = Adobe® Photoshop® Album Starter Edition 3.2 "ALLPlayer_is1" = ALLPlayer V4.X "Ashampoo Burning Studio 2012_is1" = Ashampoo Burning Studio 2012 v10.0.15 "CodecInstaller" = CodecInstaller 2.10.2 "CPUID CPU-Z_is1" = CPUID CPU-Z 1.56 "eMusic Promotion" = 50 FREE MP3s +1 Free Audiobook! "EtherGuard" = EtherGuard "ffdshow_is1" = ffdshow [rev 2732] [2009-02-26] "Football Manager 2012_is1" = Football Manager 2012 "Foxit Reader" = Foxit Reader "FreeChess" = 100% Free Chess 7.30 "Gadu-Gadu 10" = Gadu-Gadu 10 "GameDesire-Poker" = GameDesire-Poker "GameDesire-Pool & Snooker" = GameDesire-Pool & Snooker "Guitar Pro 5_is1" = Guitar Pro 5.0 "HLSW_is1" = HLSW v1.2.0 "HP Document Viewer" = HP Document Viewer 5.3 "HP Imaging Device Functions" = HP Imaging Device Functions 12.0 "HP Photo & Imaging" = HP Image Zone 5.3 "HP Smart Web Printing" = HP Smart Web Printing "HP Solution Center & Imaging Support Tools" = HP Solution Center 12.0 "HPExtendedCapabilities" = HP Customer Participation Program 12.0 "ie8" = Windows Internet Explorer 8 "ipla" = ipla 2.2.1 "IrfanView" = IrfanView (remove only) "JDownloader" = JDownloader "LiveVDO plugin" = LiveVDO plugin 1.3 "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Microsoft .NET Framework 3.5 Language Pack - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft .NET Framework Full v1.0.3705 (1033)" = Microsoft .NET Framework (English) v1.0.3705 "Minecraft 1.2.0_02" = Minecraft 1.2.0_02 "mIRC" = mIRC "Mozilla Firefox 10.0 (x86 pl)" = Mozilla Firefox 10.0 (x86 pl) "MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP "Nero - Burning Rom!UninstallKey" = Nero OEM "Notepad++" = Notepad++ "NVIDIA Drivers" = NVIDIA Drivers "Orb" = Winamp Remote "Plasma Pong_is1" = Plasma Pong v1.2 "PLAY" = PLAY "Revo Uninstaller" = Revo Uninstaller 1.94 "Shop for HP Supplies" = Shop for HP Supplies "SopCast" = SopCast 2.0.4 "Strike Ball 2_is1" = Strike Ball 2 "Super Monster Painter Extreme_is1" = SMPE v1.0 "TeamSpeak 3 Client" = TeamSpeak 3 Client "VH Toolkit_is1" = VH Toolkit 1.0.30.0 "vShare.tv plugin" = vShare.tv plugin 1.3 "Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5 "WIC" = Windows Imaging Component "Winamp" = Winamp "Winamp Toolbar" = Winamp Toolbar "Winamp Toolbar for Firefox" = Winamp Toolbar for Firefox "Windows Media Format Runtime" = Windows Media Format 11 runtime "Windows Media Player" = Windows Media Player 11 "WinRAR archiver" = Archiwizator WinRAR "WMFDist11" = Windows Media Format 11 runtime "wmp11" = Windows Media Player 11 "world TVRT Special Edition" = world TVRT Special Edition 7.02 "Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0 "xampp" = XAMPP 1.7.7 "Xfire" = Xfire (remove only) "X-Lite 3.0_is1" = X-Lite 3.0 "XMoto" = X-Moto "XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0 "Yammer" = Yammer [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "BitTorrent DNA" = DNA "Counter-Strike 1.6: New Era" = Counter-Strike 1.6: New Era "Google Chrome" = Google Chrome "Winamp Detect" = Detektor Winampa "Winamp Toolbar" = Winamp Toolbar [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-03-15 20:06:23 | Computer Name = AD-21FEDBBFE30B | Source = ESENT | ID = 455 Description = wuaueng.dll (544) SUS20ClientDataStore: Wystąpił błąd -1032 (0xfffffbf8) podczas otwierania pliku dziennika C:\WINDOWS\SoftwareDistribution\DataStore\Logs\edb.log. Error - 2012-03-15 20:06:33 | Computer Name = AD-21FEDBBFE30B | Source = ESENT | ID = 489 Description = wuauclt (544) Próba otwarcia pliku "C:\WINDOWS\SoftwareDistribution\DataStore\Logs\edb.log" w trybie tylko do odczytu zakończyła się niepomyślnie z błędem systemowym 32 (0x00000020): "Proces nie może uzyskać dostępu do pliku, ponieważ jest on używany przez inny proces. ". Operacja otwierania pliku zostanie zakończona z błędem -1032 (0xfffffbf8). Error - 2012-03-15 20:06:33 | Computer Name = AD-21FEDBBFE30B | Source = ESENT | ID = 455 Description = wuaueng.dll (544) SUS20ClientDataStore: Wystąpił błąd -1032 (0xfffffbf8) podczas otwierania pliku dziennika C:\WINDOWS\SoftwareDistribution\DataStore\Logs\edb.log. Error - 2012-03-18 04:53:16 | Computer Name = AD-21FEDBBFE30B | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca sllauncher.exe, wersja 4.0.60831.0, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2012-03-22 17:38:19 | Computer Name = AD-21FEDBBFE30B | Source = MsiInstaller | ID = 10005 Description = Product: Bing Bar -- Bing Bar requires Internet Explorer 7 or later. Error - 2012-03-23 01:57:03 | Computer Name = AD-21FEDBBFE30B | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd svchost.exe, wersja 5.1.2600.2180, moduł powodujący błąd wiaservc.dll, wersja 5.1.2600.3051, adres błędu 0x000223cd. Error - 2012-03-29 13:41:41 | Computer Name = AD-21FEDBBFE30B | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd nbj.exe, wersja 1.2.0.61, moduł powodujący błąd advrcntr.dll, wersja 1.2.10.2305, adres błędu 0x0001d140. Error - 2012-04-02 09:16:40 | Computer Name = AD-21FEDBBFE30B | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd editor.exe, wersja 12.0.2.34016, moduł powodujący błąd editor.exe, wersja 12.0.2.34016, adres błędu 0x000b5530. Error - 2012-04-05 12:13:29 | Computer Name = AD-21FEDBBFE30B | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd nbj.exe, wersja 1.2.0.61, moduł powodujący błąd advrcntr.dll, wersja 1.2.10.2305, adres błędu 0x0001d140. Error - 2012-04-17 09:20:20 | Computer Name = AD-21FEDBBFE30B | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd svchost.exe, wersja 5.1.2600.2180, moduł powodujący błąd wiaservc.dll, wersja 5.1.2600.3051, adres błędu 0x000223cd. [ Application Events ] Error - 2012-03-15 20:06:23 | Computer Name = AD-21FEDBBFE30B | Source = ESENT | ID = 455 Description = wuaueng.dll (544) SUS20ClientDataStore: Wystąpił błąd -1032 (0xfffffbf8) podczas otwierania pliku dziennika C:\WINDOWS\SoftwareDistribution\DataStore\Logs\edb.log. Error - 2012-03-15 20:06:33 | Computer Name = AD-21FEDBBFE30B | Source = ESENT | ID = 489 Description = wuauclt (544) Próba otwarcia pliku "C:\WINDOWS\SoftwareDistribution\DataStore\Logs\edb.log" w trybie tylko do odczytu zakończyła się niepomyślnie z błędem systemowym 32 (0x00000020): "Proces nie może uzyskać dostępu do pliku, ponieważ jest on używany przez inny proces. ". Operacja otwierania pliku zostanie zakończona z błędem -1032 (0xfffffbf8). Error - 2012-03-15 20:06:33 | Computer Name = AD-21FEDBBFE30B | Source = ESENT | ID = 455 Description = wuaueng.dll (544) SUS20ClientDataStore: Wystąpił błąd -1032 (0xfffffbf8) podczas otwierania pliku dziennika C:\WINDOWS\SoftwareDistribution\DataStore\Logs\edb.log. Error - 2012-03-18 04:53:16 | Computer Name = AD-21FEDBBFE30B | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca sllauncher.exe, wersja 4.0.60831.0, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2012-03-22 17:38:19 | Computer Name = AD-21FEDBBFE30B | Source = MsiInstaller | ID = 10005 Description = Product: Bing Bar -- Bing Bar requires Internet Explorer 7 or later. Error - 2012-03-23 01:57:03 | Computer Name = AD-21FEDBBFE30B | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd svchost.exe, wersja 5.1.2600.2180, moduł powodujący błąd wiaservc.dll, wersja 5.1.2600.3051, adres błędu 0x000223cd. Error - 2012-03-29 13:41:41 | Computer Name = AD-21FEDBBFE30B | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd nbj.exe, wersja 1.2.0.61, moduł powodujący błąd advrcntr.dll, wersja 1.2.10.2305, adres błędu 0x0001d140. Error - 2012-04-02 09:16:40 | Computer Name = AD-21FEDBBFE30B | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd editor.exe, wersja 12.0.2.34016, moduł powodujący błąd editor.exe, wersja 12.0.2.34016, adres błędu 0x000b5530. Error - 2012-04-05 12:13:29 | Computer Name = AD-21FEDBBFE30B | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd nbj.exe, wersja 1.2.0.61, moduł powodujący błąd advrcntr.dll, wersja 1.2.10.2305, adres błędu 0x0001d140. Error - 2012-04-17 09:20:20 | Computer Name = AD-21FEDBBFE30B | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd svchost.exe, wersja 5.1.2600.2180, moduł powodujący błąd wiaservc.dll, wersja 5.1.2600.3051, adres błędu 0x000223cd. [ System Events ] Error - 2012-02-20 11:10:40 | Computer Name = AD-21FEDBBFE30B | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Java Quick Starter z powodu następującego błędu: %%3 Error - 2012-02-20 13:16:29 | Computer Name = AD-21FEDBBFE30B | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Java Quick Starter z powodu następującego błędu: %%3 Error - 2012-02-21 05:10:59 | Computer Name = AD-21FEDBBFE30B | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Java Quick Starter z powodu następującego błędu: %%3 Error - 2012-02-21 08:01:23 | Computer Name = AD-21FEDBBFE30B | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Java Quick Starter z powodu następującego błędu: %%3 Error - 2012-02-22 05:41:42 | Computer Name = AD-21FEDBBFE30B | Source = Dhcp | ID = 1002 Description = Adres IP połączenia 192.168.1.2 dla karty sieciowej o adresie 0011D81965B6 został zabroniony przez serwer DHCP 0.0.0.0 (Serwer DHCP wysłał komunikat DHCPNACK). Error - 2012-02-22 05:41:46 | Computer Name = AD-21FEDBBFE30B | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Java Quick Starter z powodu następującego błędu: %%3 Error - 2012-02-23 10:17:57 | Computer Name = AD-21FEDBBFE30B | Source = Windows Update Agent | ID = 16 Description = Nie można nawiązać połączenia: System Windows nie może połączyć się z usługą aktualizacji automatycznych i dlatego nie można pobrać i zainstalować aktualizacji zgodnie z ustalonym harmonogramem. System Windows będzie kontynuował próby ustanowienia połączenia. Error - 2012-02-23 17:15:13 | Computer Name = AD-21FEDBBFE30B | Source = Dhcp | ID = 1000 Description = Komputer utracił połączenie dla swojego adresu IP 192.168.1.2 na karcie sieciowej o adresie sieciowym 0011D81965B6. Error - 2013-02-22 06:38:05 | Computer Name = AD-21FEDBBFE30B | Source = Windows Update Agent | ID = 16 Description = Nie można nawiązać połączenia: System Windows nie może połączyć się z usługą aktualizacji automatycznych i dlatego nie można pobrać i zainstalować aktualizacji zgodnie z ustalonym harmonogramem. System Windows będzie kontynuował próby ustanowienia połączenia. Error - 2013-02-22 10:41:44 | Computer Name = AD-21FEDBBFE30B | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Java Quick Starter z powodu następującego błędu: %%3 < End of report >