OTL Extras logfile created on: 12/15/2012 10:56:24 AM - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Filip\Desktop Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000409 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd 3.25 Gb Total Physical Memory | 2.23 Gb Available Physical Memory | 68.57% Memory free 6.50 Gb Paging File | 5.09 Gb Available in Paging File | 78.42% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = J:\Program Files Drive C: | 75.13 Gb Total Space | 36.46 Gb Free Space | 48.53% Space Free | Partition Type: NTFS Drive D: | 0.38 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS Drive I: | 698.64 Gb Total Space | 136.71 Gb Free Space | 19.57% Space Free | Partition Type: NTFS Drive J: | 390.63 Gb Total Space | 184.24 Gb Free Space | 47.17% Space Free | Partition Type: NTFS Drive K: | 1.84 Gb Total Space | 1.13 Gb Free Space | 61.31% Space Free | Partition Type: FAT Computer Name: FILIP-PC | User Name: Filip | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Bridge] -- J:\Program Files\Adobe Photoshop\Adobe Bridge CS5.1\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{002EE31B-7704-4876-A728-5280B66869CE}" = lport=6004 | protocol=17 | dir=in | app=j:\program files\microsoft office\office14\outlook.exe | "{09599B3B-9932-41B4-A54A-2400687E1FE0}" = lport=138 | protocol=17 | dir=in | app=system | "{1005052C-979A-45A0-8E13-3D210A49588D}" = lport=10243 | protocol=6 | dir=in | app=system | "{3B0FF138-4153-4D52-811C-73F8F5BE6784}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{476646A8-F14F-4CDE-A2C6-7CA10D697ECE}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework\v4.0.30319\smsvchost.exe | "{4E7F964D-FB4A-4E8B-A6B0-3F360E784B25}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{5236E923-77C3-487E-8911-CE80DBD9946C}" = lport=57407 | protocol=17 | dir=in | name=pando media booster | "{53A58FE9-4DFD-4E6C-8A5C-EC747C951A9F}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{65ACA488-14AF-4AB3-B1DF-3F69826BD7B5}" = rport=445 | protocol=6 | dir=out | app=system | "{6DF37631-7006-476E-A2F5-DABC6DDFE926}" = rport=10243 | protocol=6 | dir=out | app=system | "{6E1E90C2-F192-4912-B254-52E9BA701FAA}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{71714505-F2F8-4907-A4A9-7B8EA4EB44FE}" = lport=445 | protocol=6 | dir=in | app=system | "{7916D896-055E-48EA-BEAC-A0EA0E1A0F31}" = lport=57407 | protocol=6 | dir=in | name=pando media booster | "{7D3EDB75-5A57-4E10-A911-4EC29322A3C7}" = rport=137 | protocol=17 | dir=out | app=system | "{8199F3ED-A146-4BEC-8B2E-7CF07D0737FB}" = lport=57407 | protocol=17 | dir=in | name=pando media booster | "{86A8904B-ED61-4AFC-9094-5CCF6755AAD1}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{8D1C037C-4FF1-429B-8B60-4C938CD14919}" = lport=57407 | protocol=6 | dir=in | name=pando media booster | "{8F5890E4-031A-4327-80BF-381364EA753D}" = rport=138 | protocol=17 | dir=out | app=system | "{9BE1A1F8-EC4E-46CB-8505-7F0565D3216E}" = rport=139 | protocol=6 | dir=out | app=system | "{A028590F-1351-4B99-9021-48DA5B9E39D8}" = lport=139 | protocol=6 | dir=in | app=system | "{A39BD8AB-4BE7-4142-B697-8EC13C48CEDD}" = lport=2869 | protocol=6 | dir=in | app=system | "{A593905F-F5D5-426A-AC38-E4FB17509EDB}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{AA7290DA-536C-47BF-8A72-F99D308E6307}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{C406A655-CDFA-43C9-AF8C-BA1666369AC2}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{C8E84D63-E377-42AE-8B4E-9EB08EFDA57C}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{F5884C20-0D73-47E5-8C61-1A8F260036CD}" = lport=137 | protocol=17 | dir=in | app=system | "{F91104BB-E6CD-4CC0-85BB-F9AFE4F54937}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0C97D623-3FA1-4812-AA4A-F29EC9ACCCC9}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe | "{0E2E9F54-C743-4D67-986F-8FA09760F140}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe | "{10BDBD76-DC93-4580-849C-D42CA8DFA8B1}" = protocol=17 | dir=in | app=j:\program files\ubisoft\tom clancy's ghost recon future soldier\gu.exe | "{118624CC-E7F7-42A5-A031-6BFC46D22662}" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe | "{185053C9-3799-4997-8AE4-918A89EC2584}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version7\teamviewer_service.exe | "{1A78ECD9-891C-4F44-B152-363BFA13EDD0}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{25D38904-5BF6-4CA8-9B50-D167D0592981}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{294F01FA-1278-470E-B3C9-BC5200593402}" = protocol=17 | dir=in | app=j:\program files\battlefield 3\battlefield 3\bf3.exe | "{2A5E506E-E133-4888-A4A8-DA5A19EDBDD2}" = protocol=17 | dir=in | app=j:\program files\ubisoft\farcry 3\bin\farcry3.exe | "{2CE61587-C2FE-4632-B302-7F0E3A6F5335}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{2D1A758F-165D-4D3E-A7A1-62CDE683761F}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{33DD8C1C-FE9D-48EC-A280-3CBA9835E71C}" = protocol=6 | dir=in | app=j:\program files\vinidictus\vindictus eu\en-eu\nmservice.exe | "{3A509821-3695-4A2D-A0D5-1C72A2EC953B}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{42F2C134-25FA-4179-BAF6-C89381CC484C}" = dir=in | app=j:\program files\itunes\itunes.exe | "{4C5C2987-AC2E-493C-96DF-73DDBE353DCD}" = protocol=17 | dir=in | app=j:\program files\ubisoft\farcry 3\bin\fc3editor.exe | "{4D27909E-6570-43F3-A5BF-9EC2327F2187}" = protocol=17 | dir=in | app=j:\program files\ubisoft\tom clancy's ghost recon future soldier\future soldier.exe | "{4DC46707-ED5E-40CF-ACA0-FAF5BBE0A176}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{4E8553F9-D62B-42BA-8127-70E710FDC35B}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | "{52695F5B-6BB9-4DEF-A4A8-1F802A660390}" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe | "{544D665B-DB7E-48E1-9CF2-6867F7B5104C}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{5B9F9B5C-F14D-45CD-BC2D-D37616A3FC70}" = protocol=17 | dir=in | app=j:\program files\utorrent\utorrent.exe | "{5F0A2E52-240B-432C-BF28-4FC605916554}" = protocol=6 | dir=in | app=j:\program files\ubisoft\farcry 3\bin\farcry3.exe | "{5F4C2A10-E052-4BD9-9D3E-7F57DD745C79}" = protocol=17 | dir=in | app=j:\program files\rockstar games\grand theft auto iv\launchgtaiv.exe | "{61ABDCE8-51DF-4A39-9872-171FF50B6322}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version7\teamviewer.exe | "{6717922E-192F-408B-AF0F-0B697055D3C4}" = protocol=17 | dir=in | app=j:\program files\vinidictus\vindictus eu\en-eu\nmservice.exe | "{6D97DB6B-E9DE-4B6E-9FF7-6AC804333DDE}" = protocol=17 | dir=in | app=j:\program files\ubisoft\farcry 3\bin\farcry3_d3d11.exe | "{6EFAF2FF-D993-4A4B-937D-F50FFE560E24}" = protocol=6 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe | "{71A7035D-9005-4786-B143-7DEF99235713}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{749B3A0D-3D95-482A-860B-4EEEFD1EED21}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe | "{790C4ACD-5AF5-4380-B678-3A25B4EB246F}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | "{7A6D78FC-E3DC-4CF5-9742-F5486D8A6366}" = protocol=6 | dir=in | app=j:\program files\ubisoft\farcry 3\bin\fc3editor.exe | "{7B1BA860-0186-4649-B0F7-7404770832E3}" = protocol=6 | dir=in | app=j:\program files\steam\steam.exe | "{7E4CB135-2FA4-48E6-BF24-53B4F92D6AA0}" = protocol=6 | dir=in | app=c:\program files\opera\pluginwrapper\opera_plugin_wrapper.exe | "{808FFC72-E7D2-40F5-B4B1-6F1A98B130EE}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{86C133E0-EC5A-477C-9661-D2906C9D68E3}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe | "{87122812-5F05-420F-8595-29F25F5295D4}" = protocol=6 | dir=in | app=j:\program files\microsoft office\office14\onenote.exe | "{87213316-DCAD-4DD6-8FCE-E87865F51437}" = protocol=6 | dir=in | app=j:\program files\rockstar games\grand theft auto iv\launchgtaiv.exe | "{886DE793-1534-47C3-80B5-C521D87A24A6}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{8964D01A-7999-4A72-967B-FCDB67FACB64}" = protocol=17 | dir=in | app=j:\program files\microsoft office\office14\groove.exe | "{8D4E3D85-2CBF-44A9-996E-7FDB3E537E18}" = protocol=6 | dir=in | app=j:\program files\microsoft office\office14\groove.exe | "{95500890-DF2D-4A7C-989A-595C487D4AF0}" = protocol=17 | dir=in | app=j:\program files\microsoft office\office14\onenote.exe | "{96462FA8-BEBE-4E65-B18D-58A3F696A91E}" = protocol=17 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe | "{9A4A692C-F11A-44CC-97D4-E57B19610264}" = protocol=6 | dir=in | app=j:\program files\battlefield 3\battlefield 3\bf3.exe | "{9AD03D33-1BDC-42D0-ACCA-CA34638E28E2}" = protocol=6 | dir=in | app=j:\program files\rockstar games\rockstar games social club\rgsclauncher.exe | "{9EFEAE04-924A-4C8A-9C73-70F8D0B095BF}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{A3F6758F-4B00-4DCD-AC9F-F7DFB7E135A9}" = protocol=6 | dir=in | app=j:\program files\ubisoft\farcry 3\bin\farcry3_d3d11.exe | "{AAE494BE-E5B8-44F9-88EE-D8906AF8D489}" = protocol=6 | dir=out | app=system | "{AB6D791D-6330-4EF1-AC20-08B3A8DB70BF}" = protocol=17 | dir=in | app=j:\program files\ubisoft\farcry 3\bin\fc3updater.exe | "{AB8504B2-6F6D-417B-A43C-55FE25E86B8C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{AD26C6FE-84EB-46F5-A9EB-C15B58B4436E}" = protocol=6 | dir=in | app=j:\program files\utorrent\utorrent.exe | "{B2BA11AC-373E-4C89-B34D-86C4DAF0FFA4}" = protocol=17 | dir=in | app=j:\program files\rockstar games\rockstar games social club\rgsclauncher.exe | "{B2CD33FD-E1C5-46E6-8EF6-48D138DE8511}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{B61A705F-99ED-488F-8BD1-869E3E1FE309}" = protocol=6 | dir=in | app=j:\program files\ubisoft\tom clancy's ghost recon future soldier\future soldier.exe | "{B756B51A-D387-483F-962B-79BF0B12476D}" = protocol=6 | dir=in | app=j:\program files\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{BD84EF1D-F221-4C8D-A1BC-54963497CDEA}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{BDD606FC-BBD2-44AC-8BAD-68A2A0066525}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{CB609A1E-CAF9-41F8-A4C6-1415DFBD9591}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{CBEDE69A-9724-4DCC-8BE7-D4D31A2548E8}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{CEFD800B-E03B-424F-89E7-AF378F176991}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version7\teamviewer.exe | "{CFCB3548-641B-47B9-B46E-5FD2879E18F7}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version7\teamviewer_service.exe | "{D2DCBF56-840A-4ED2-B2DA-6AC03AB96FF3}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{D6DD2BB4-5FA9-4355-BC51-7E758C1A4D4D}" = protocol=17 | dir=in | app=c:\program files\opera\pluginwrapper\opera_plugin_wrapper.exe | "{D72F8C19-238F-4E1D-AA44-78EA4E8A09A3}" = dir=in | app=c:\program files\pando networks\media booster\pmb.exe | "{E73F29E8-CC35-4782-BD05-9796B7E2B542}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | "{EBED76C6-9055-44B1-855C-091D8FDC930A}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | "{EBF224DE-E4B3-4140-BF3B-84FC3EBF0057}" = protocol=6 | dir=in | app=j:\program files\ubisoft\farcry 3\bin\fc3updater.exe | "{F7A4B367-5293-4B95-BD6B-8B546724C0E7}" = protocol=17 | dir=in | app=j:\program files\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{FA146A2E-FD50-4706-921B-7311FFEF1101}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{FAF6A31D-4B3F-499E-B393-F7EA0C61902A}" = protocol=17 | dir=in | app=j:\program files\steam\steam.exe | "{FEAA8164-E6EC-4076-95E2-AC845834207D}" = protocol=6 | dir=in | app=j:\program files\ubisoft\tom clancy's ghost recon future soldier\gu.exe | "TCP Query User{280C5E78-9694-4FC8-84DB-80794610D370}C:\users\filip\desktop\utorrent_[www.programosy.pl].exe" = protocol=6 | dir=in | app=c:\users\filip\desktop\utorrent_[www.programosy.pl].exe | "TCP Query User{5301855E-7F4E-4465-B0E5-E4B411E110DD}C:\program files\wapster\wapster aqq\aqq.exe" = protocol=6 | dir=in | app=c:\program files\wapster\wapster aqq\aqq.exe | "TCP Query User{F6053931-023D-42E5-B48F-E49073C20D13}I:\kopie\diablo iii\diablo iii.exe" = protocol=6 | dir=in | app=i:\kopie\diablo iii\diablo iii.exe | "TCP Query User{FEE47FA8-3B54-44D8-A8E9-B583B975F54D}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | "UDP Query User{82210735-9933-4972-A109-2BFD3BC3CF4A}C:\program files\wapster\wapster aqq\aqq.exe" = protocol=17 | dir=in | app=c:\program files\wapster\wapster aqq\aqq.exe | "UDP Query User{A17584A8-9CA2-4960-AC43-376FC3A2439E}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | "UDP Query User{B9776321-275C-4C51-839D-FC5D9A5A0A22}I:\kopie\diablo iii\diablo iii.exe" = protocol=17 | dir=in | app=i:\kopie\diablo iii\diablo iii.exe | "UDP Query User{F086F8DC-53A8-4F6B-A98D-35D2E81B37F1}C:\users\filip\desktop\utorrent_[www.programosy.pl].exe" = protocol=17 | dir=in | app=c:\users\filip\desktop\utorrent_[www.programosy.pl].exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00C5F4F4-62F9-40D7-8000-AD8A9CD0C669}" = Microsoft Games for Windows - LIVE Redistributable "{024521CF-C07E-4F8E-8481-0D75695E03AF}" = PxMergeModule "{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86 "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{0497EAED-70DA-4BBE-BEB3-AF77FD8788EA}" = Adobe Premiere Pro CS5.5 "{08B3869E-D282-424C-9AFC-870E04A4BA14}" = Rockstar Games Social Club "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86 "{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended "{0E16C1BC-72A7-4DB7-BBB8-560EDCCA74B5}" = SmartSound Premiere Elements 10 Plugin "{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86 "{1B6C0E95-182C-48E0-9C4B-4F916308249C}" = iTunes "{1D273D91-D7D5-4036-8B84-EB4615FF5F81}" = SmartSound Sonicfire Pro 5 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{22D3A614-482C-444A-932C-9DA1B8ECDFD2}" = Elements 10 Organizer "{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 9 "{289AC7E0-0AEE-4a7b-913C-709D9803D23E}" = Nexon Game Manager "{28DE1E36-090A-408B-AA7D-7E5316526011}" = BitDefender Total Security 2010 "{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}" = Microsoft XNA Framework Redistributable 4.0 "{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}" = Microsoft Games for Windows - LIVE "{2FDD750F-49B7-40C1-9D5E-D2955BC0E2D8}" = NVIDIA PhysX "{33286280-8617-11E1-8FF6-B8AC6F97B88E}" = Google Earth Plug-in "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{459699C3-9430-4381-964B-4248D87B49F9}" = Apple Mobile Device Support "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4E2EA555-3DAE-4BE1-96BF-6A632ACFE8DE}" = LEGO® Batman™ 2: DC Super Heroes "{579BA58C-F33D-4970-9953-B94B43768AC3}" = Grand Theft Auto IV "{6006089C-84B5-4F18-8113-D96792AED0DE}_is1" = ChrisPC Free Anonymous Proxy 3.10 "{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86 "{64BFBE7A-886C-4CA2-A9B4-0C2B5A5942BC}" = Battlefield 3™ "{6D87CAD9-9B94-4421-A439-B25F8DE14575}" = Tom Clancy's Ghost Recon Future Soldier "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour "{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010 "{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010 "{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010 "{90140000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2010 "{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010 "{90140000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010 "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010 "{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010 "{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010 "{90140000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2010 "{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010 "{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010 "{90140000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2010 "{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010 "{90140000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2010 "{910F4A29-1134-49E0-AD8B-56E4A3152BD1}" = The Sims™ 3 Kariera "{9158FF30-78D7-40EF-B83E-451AC5334640}" = Adobe Photoshop CS5.1 "{92606477-9366-4D3B-8AE3-6BE4B29727AB}" = League of Legends "{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86 "{9370105C-71BB-4FF9-A85B-36D79B95457A}_is1" = ALLConverter PRO 1.3 "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A127C3C0-055E-38CF-B38F-1E85F8BBBFFE}" = Adobe Community Help "{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AAF4DEA2-5A69-4819-9BB2-BF3D540F9024}" = Adobe Premiere Elements 10 "{AC76BA86-7AD7-1045-7B44-A95000000001}" = Adobe Reader 9.5.1 - Polish "{AFF7E080-1974-45BF-9310-10DE1A1F5ED0}" = Adobe AIR "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA 3D Vision Driver 306.23 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Control Panel 306.23 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Graphics Driver 306.23 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision Controller Driver 306.23 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX System Software 9.12.0604 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 1.10.8 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86 "{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8}" = SmartSound Common Data "{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3 "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CCE825DB-347A-4004-A186-5F4A6FDD8547}" = Obsługa programów Apple "{CE1F2DF3-5836-4A27-A3FE-6717492DDE5E}" = PRE10STIInstaller "{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86 "{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86 "{E3B9C5A9-BD7A-4B56-B754-FAEA7DD6FA88}" = Far Cry 3 "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime "{EA17F4FC-FDBF-4CF8-A529-2D983132D053}" = Skype™ 6.0 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{FAB1F336-1B7C-4057-A7BC-2922CD82A781}" = Edimax Wireless LAN "6af12c54-643b-4752-87d0-8335503010de_is1" = Nexus Mod Manager "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "ALLPlayer_is1" = ALLPlayer V5.X "AQQ" = WapSter AQQ "BandiMPEG1" = Bandisoft MPEG-1 Decoder "Battlelog Web Plugins" = Battlelog Web Plugins "Borderlands 2_is1" = Borderlands 2 "CCleaner" = CCleaner "chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help "Cheatbook Database 2012" = Cheatbook Database 2012 "Counter-Strike 1.6" = Counter-Strike 1.6 "DAEMON Tools Lite" = DAEMON Tools Lite "Dead Island Save Editor_is1" = Dead Island Save Editor "ESN Sonar-0.70.4" = ESN Sonar "Fallout New Vegas_is1" = Fallout New Vegas "FXAA Post Process Injector" = FXAA Post Process Injector "Guild Wars 2" = Guild Wars 2 "InstallShield_{1D273D91-D7D5-4036-8B84-EB4615FF5F81}" = SmartSound Sonicfire Pro 5 "InstallShield_{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8}" = SmartSound Common Data "Łatka polonizacyjna GTA IV v1.0" = Łatka polonizacyjna GTA IV v1.0 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Minecraft Cracked" = Minecraft Cracked "Mozilla Firefox 5.0 (x86 pl)" = Mozilla Firefox 5.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NapiProjekt_is1" = NapiProjekt 2.0.0 (build 2151) "Need for Speed Most Wanted_is1" = Need for Speed Most Wanted "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "Opera 12.11.1661" = Opera 12.11 "Origin" = Origin "PremElem100" = Adobe Premiere Elements 10 "PunkBusterSvc" = PunkBuster Services "RealAlt_is1" = Real Alternative 1.9.0 Lite "Saints Row The Third_is1" = Saints Row The Third "Sleeping Dogs_is1" = Sleeping Dogs version 1.4 "Steam App 17080" = Tribes: Ascend "TeamViewer 7" = TeamViewer 7 "The Walking Dead (c) 3_is1" = The Walking Dead (c) 3 version 1 "The Witcher 2 - Assassins of Kings Enhanced Edition_is1" = The Witcher 2 - Assassins of Kings Enhanced Edition "Tiny and Big - Grandpa's Leftovers_is1" = Tiny and Big - Grandpa's Leftovers "Torchlight II (c) Runic Games_is1" = Torchlight II (c) Runic Games version 1 "Uplay" = Uplay "uTorrent" = µTorrent "uTorrentControl2 Toolbar" = uTorrentControl2 Toolbar "Vindictus EU" = Vindictus EU "WinRAR archiver" = WinRAR 4.20 (32-bit) "World of Warcraft" = World of Warcraft "YouTube to ALLPlayer_is1" = YouTube to ALLPlayer [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "101a9f93b8f0bb6f" = Curse Client [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 12/9/2012 2:36:04 PM | Computer Name = Filip-PC | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 12/9/2012 2:36:04 PM | Computer Name = Filip-PC | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 8175 Error - 12/9/2012 2:36:04 PM | Computer Name = Filip-PC | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 8175 Error - 12/9/2012 2:36:05 PM | Computer Name = Filip-PC | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 12/9/2012 2:36:05 PM | Computer Name = Filip-PC | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 9314 Error - 12/9/2012 2:36:05 PM | Computer Name = Filip-PC | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 9314 Error - 12/10/2012 3:53:01 AM | Computer Name = Filip-PC | Source = SideBySide | ID = 16842815 Description = Activation context generation failed for "c:\program files\WapSter\wapster aqq\System\DelZip179.dll".Error in manifest or policy file "c:\program files\WapSter\wapster aqq\System\DelZip179.dll" on line 8. The value "*" of attribute "language" in element "assemblyIdentity" is invalid. Error - 12/10/2012 11:10:41 AM | Computer Name = Filip-PC | Source = Application Error | ID = 1000 Description = Faulting application name: farcry3.exe, version: 0.1.0.1, time stamp: 0x50ae7bad Faulting module name: FC3.dll, version: 0.1.0.1, time stamp: 0x50ae7b70 Exception code: 0xc0000005 Fault offset: 0x0118e136 Faulting process id: 0x1208 Faulting application start time: 0x01cdd6e6ce4c0bd2 Faulting application path: J:\Program Files\Ubisoft\FarCry 3\bin\farcry3.exe Faulting module path: J:\Program Files\Ubisoft\FarCry 3\bin\FC3.dll Report Id: c2b1e5c3-42db-11e2-8295-002215971a45 Error - 12/13/2012 1:33:52 PM | Computer Name = Filip-PC | Source = SideBySide | ID = 16842815 Description = Activation context generation failed for "c:\program files\WapSter\wapster aqq\System\DelZip179.dll".Error in manifest or policy file "c:\program files\WapSter\wapster aqq\System\DelZip179.dll" on line 8. The value "*" of attribute "language" in element "assemblyIdentity" is invalid. Error - 12/14/2012 10:35:18 AM | Computer Name = Filip-PC | Source = SideBySide | ID = 16842815 Description = Activation context generation failed for "c:\program files\WapSter\wapster aqq\System\DelZip179.dll".Error in manifest or policy file "c:\program files\WapSter\wapster aqq\System\DelZip179.dll" on line 8. The value "*" of attribute "language" in element "assemblyIdentity" is invalid. [ System Events ] Error - 12/2/2012 5:38:55 AM | Computer Name = Filip-PC | Source = Service Control Manager | ID = 7000 Description = The WMPNetworkSvc service failed to start due to the following error: %%2 Error - 12/2/2012 2:27:48 PM | Computer Name = Filip-PC | Source = Server | ID = 2505 Description = The server could not bind to the transport \Device\NetBT_Tcpip_{A8A23BF7-B5C1-4C08-BEC2-0AC056BF5F4C} because another computer on the network has the same name. The server could not start. Error - 12/4/2012 3:35:42 AM | Computer Name = Filip-PC | Source = Service Control Manager | ID = 7023 Description = The WinDefend service terminated with the following error: %%126 Error - 12/4/2012 3:37:41 AM | Computer Name = Filip-PC | Source = Service Control Manager | ID = 7038 Description = The nvUpdatusService service was unable to log on as .\UpdatusUser with the currently configured password due to the following error: %%1330 To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC). Error - 12/4/2012 3:37:41 AM | Computer Name = Filip-PC | Source = Service Control Manager | ID = 7000 Description = The NVIDIA Update Service Daemon service failed to start due to the following error: %%1069 Error - 12/4/2012 3:37:41 AM | Computer Name = Filip-PC | Source = Service Control Manager | ID = 7000 Description = The WMPNetworkSvc service failed to start due to the following error: %%2 Error - 12/5/2012 2:22:00 AM | Computer Name = Filip-PC | Source = Service Control Manager | ID = 7023 Description = The WinDefend service terminated with the following error: %%126 Error - 12/5/2012 2:24:01 AM | Computer Name = Filip-PC | Source = Service Control Manager | ID = 7038 Description = The nvUpdatusService service was unable to log on as .\UpdatusUser with the currently configured password due to the following error: %%1330 To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC). Error - 12/5/2012 2:24:01 AM | Computer Name = Filip-PC | Source = Service Control Manager | ID = 7000 Description = The NVIDIA Update Service Daemon service failed to start due to the following error: %%1069 Error - 12/5/2012 2:24:01 AM | Computer Name = Filip-PC | Source = Service Control Manager | ID = 7000 Description = The WMPNetworkSvc service failed to start due to the following error: %%2 < End of report >