OTL Extras logfile created on: 2013-01-03 11:32:43 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\jacek_2\Downloads Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.19393) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2.99 Gb Total Physical Memory | 1.97 Gb Available Physical Memory | 65.93% Memory free 6.21 Gb Paging File | 5.24 Gb Available in Paging File | 84.36% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 288.32 Gb Total Space | 94.19 Gb Free Space | 32.67% Space Free | Partition Type: NTFS Computer Name: JACEK-LAPTOP | User Name: Jacek | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2487343376-848037089-3105925282-1000\SOFTWARE\Classes\] .cmd [@ = cmdfile] -- Reg Error: Key error. File not found [HKEY_USERS\S-1-5-21-2487343376-848037089-3105925282-1001\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Users\jacek_2\AppData\Local\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office\msohtmed.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{02DAF911-9CFA-44E4-B7A7-1FD199224582}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{042CEE52-3276-47E4-AC37-CABBB2C631B2}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{2AE4C1F2-C177-4A21-809E-442CE5896303}" = lport=10243 | protocol=6 | dir=in | app=system | "{38E9C9D0-12A7-4A2F-B007-9A6BF96B3080}" = lport=139 | protocol=6 | dir=in | app=system | "{42A013D8-5A0E-4989-A178-FA342838E40E}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{48F018A9-9B77-4A44-8982-8957BD49BCF4}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{50377171-0F70-4AA8-98A8-534DE266A8EB}" = rport=137 | protocol=17 | dir=out | app=system | "{53837F6A-B9F6-492B-B06A-84ED210493D8}" = lport=2869 | protocol=6 | dir=in | app=system | "{5B688284-09FE-4CAD-B6C7-8C283EA022D9}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{5C1994FD-E791-4403-B3B6-150A4E4183E1}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{5D10CD86-3054-465A-8199-E03BCDE68854}" = rport=445 | protocol=6 | dir=out | app=system | "{685EE54D-FC38-4C97-950B-8256A080F849}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{6A7298B4-5EE6-4C9D-8B82-E96DA924C6F0}" = lport=40930 | protocol=6 | dir=in | name=torrent | "{6FF7070C-2C3B-42F6-B479-457924D37C41}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{77A3F931-D365-4935-B424-0F9003B5A8DD}" = rport=139 | protocol=6 | dir=out | app=system | "{801E0B27-D653-4E18-B759-5E9FD6DE4434}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{8102A3D1-F434-482B-9971-513A7E4CAAC6}" = lport=2869 | protocol=6 | dir=in | app=system | "{8DA12854-5599-4E49-9726-77011123B91B}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | "{96C0608D-25C4-409A-8E2D-0BC2854A37E9}" = lport=138 | protocol=17 | dir=in | app=system | "{9E9CE731-831A-43EA-BBAD-97A288581EAE}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{B6853389-8B67-4F06-91D5-DE4B59D4F78D}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{BA0FD3C5-7231-4F89-B85E-FF3B0B435653}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{D5DB3B1D-957D-4FFF-8CE1-16F2773E9820}" = rport=10243 | protocol=6 | dir=out | app=system | "{E411AA6F-762C-40B4-BD8F-0072F4F3C864}" = rport=138 | protocol=17 | dir=out | app=system | "{E6097993-9516-4F18-99B6-9880F69B78A4}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{EB8F8225-3C92-40C9-87EF-511154D602F3}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{ED3D3287-9972-4E6F-9CF8-B42E89CA42FB}" = lport=445 | protocol=6 | dir=in | app=system | "{F15FB1CA-7147-49C6-BDF7-AD3168F01C1E}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{FF2C9E3A-1B32-43BD-8D01-497006F29D42}" = lport=137 | protocol=17 | dir=in | app=system | "{FF6C565B-D15D-4187-A6FA-71F2836C4126}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0A914A21-A1BD-435E-BBFC-E223B7E83DB1}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{0BA42448-69DE-4320-A683-69C44B7A70E8}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{157D463F-841E-4289-A447-3DF0C734B935}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{19203FDB-AEFD-4A66-8EC0-0786358BD1C5}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe | "{1CE563FE-CCC1-4948-93D9-DDD25EC68FD9}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{1D2245D8-63EB-4934-93FA-069D45670559}" = protocol=17 | dir=in | app=c:\program files\epsonnet\epsonnet setup\tool09\eneasyapp.exe | "{22A71F9E-A8D4-4B8A-A9E3-92A96096016F}" = dir=in | app=c:\program files\acer arcade deluxe\playmovie\pmvservice.exe | "{29EA3849-517B-46F0-A592-E9083624AA4C}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{3140B474-5814-47D3-87BA-D3A3D7F54A4F}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{3474E42E-4F60-445E-82BA-AE5C64A40F2A}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{3A35A4CD-764E-4998-AEA1-D0D200E48662}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe | "{4092C41E-529E-4767-A4B7-ADE0DB59FC58}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{4268A5E5-A6F3-4FBD-A47D-57CF64208593}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{44025ADD-E89C-4891-8236-58DEF3B1D8F0}" = protocol=17 | dir=in | app=c:\users\jacek_2\appdata\local\programs\opera\opera.exe | "{4CFBAD12-0AF2-438E-BF83-50376987083F}" = protocol=17 | dir=in | app=c:\program files\sony ericsson\update engine\sony ericsson update engine.exe | "{5618A092-1DF8-410D-9218-3DEB92A6BCBD}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{56A6D783-1B2C-4546-9A10-E7359DFF6694}" = protocol=6 | dir=in | app=c:\users\jacek_2\appdata\local\programs\opera\opera.exe | "{642C6FC3-BE56-4BE5-85D7-C23FADCA8A33}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{6CE977E4-694A-405C-A82F-A38310DC1B1F}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{6EE432C0-614E-4ED1-8350-0186AD3233E2}" = protocol=6 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\schedulersvc.exe | "{76999036-80B8-4506-9B8B-C1D5143D2B3F}" = protocol=17 | dir=in | app=c:\program files\epsonnet\epsonnet setup\tool09\eneasyapp.exe | "{7768BE41-DF7B-41D1-9C19-522023FE8DB5}" = protocol=6 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\backupsvc.exe | "{776979A0-5879-4D73-8F17-588AD85818F3}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe | "{88EFEC5D-6167-48B4-8DB1-81BE8958A45B}" = dir=in | app=c:\program files\acer arcade deluxe\acer arcade deluxe\acer arcade deluxe.exe | "{91229EEB-C870-490D-9F35-EC2D68BA371A}" = protocol=6 | dir=in | app=c:\program files\sony ericsson\update engine\sony ericsson update engine.exe | "{923EACD1-7ED7-4960-A932-D45B23D20BF8}" = dir=in | app=c:\program files\acer arcade deluxe\playmovie\playmovie.exe | "{9F74246D-02A6-443D-A0C4-70E692D2A5D1}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{A6BD52D0-FCA6-4924-BD2C-702DC50353DF}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{A83A601E-BF1D-4C45-9150-650C9B3CEE1D}" = protocol=6 | dir=out | app=system | "{A99D1D6C-3A5E-4D1C-87E3-1B46AF392ECD}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{AD65E41B-9B40-42F5-97DC-FEDBC93099C7}" = protocol=6 | dir=in | app=c:\program files\epsonnet\epsonnet setup\tool09\eneasyapp.exe | "{AE00B093-53D5-47E1-8ECE-704B850A41BC}" = protocol=17 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\backupsvc.exe | "{B020B411-FDE8-4162-9B41-5E67CFEEE481}" = protocol=17 | dir=in | app=c:\program files\newtech infosystems\nti backup now 5\schedulersvc.exe | "{B1715CFA-75C5-4CCD-8806-67380A78BAC6}" = protocol=6 | dir=in | app=c:\program files\epsonnet\epsonnet setup\tool09\eneasyapp.exe | "{C129BCA3-C968-472F-89E1-387214E77FC6}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{C6184C19-E099-44AC-966B-116975EA90FD}" = dir=in | app=c:\program files\acer arcade deluxe\homemedia\homemedia.exe | "{D4A1A879-8DB6-4B47-A1F0-3D0118C35A8F}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{F238FE45-5B35-4EBA-A087-9435AC0CA4E3}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{FC902A9F-BF8E-41B3-88B1-587929125F60}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "TCP Query User{1B10B298-F6BB-41F2-AFF6-ADE88FFC54BA}C:\program files\nokia\nokia ovi suite\nokiaovisuite.exe" = protocol=6 | dir=in | app=c:\program files\nokia\nokia ovi suite\nokiaovisuite.exe | "TCP Query User{1ECE9ED2-C535-44E5-A590-E2B5E205D767}C:\users\jacek\desktop\utorrent.exe" = protocol=6 | dir=in | app=c:\users\jacek\desktop\utorrent.exe | "TCP Query User{20E890BF-138E-4404-B51A-65618556C081}C:\program files\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=6 | dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe | "TCP Query User{3394742A-C51E-4DE9-94C0-7470D91EE7F4}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "TCP Query User{38C8015A-B8A5-4812-8048-C89FCEE162C8}C:\program files\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files\google\google earth\client\googleearth.exe | "TCP Query User{3B233E00-06B5-4F29-827B-B5EF8A4724D9}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe | "TCP Query User{42D702D0-FF23-4B6D-81D9-64CD22D6A0EA}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe | "TCP Query User{4F29682E-EF4F-46A3-9455-7B9A69D63D93}C:\program files\epson software\event manager\eeventmanager.exe" = protocol=6 | dir=in | app=c:\program files\epson software\event manager\eeventmanager.exe | "TCP Query User{5805D0C7-64C8-4339-9F06-834AEE40595D}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "TCP Query User{649A97BA-97BC-4E73-82D5-59AA250A55DB}C:\program files\epson software\event manager\eeventmanager.exe" = protocol=6 | dir=in | app=c:\program files\epson software\event manager\eeventmanager.exe | "TCP Query User{74139961-9B84-4E88-8F6D-86160D156671}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "TCP Query User{918DE9B2-3026-4191-8CD5-FBD4E84F94F6}C:\program files\real\realplayer\realplay.exe" = protocol=6 | dir=in | app=c:\program files\real\realplayer\realplay.exe | "TCP Query User{AFA23A08-EA6E-4AD1-9993-4FFF934D3012}C:\program files\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=6 | dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe | "TCP Query User{B8FDF56F-33D7-42B4-A974-1C5A14872E64}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe | "TCP Query User{CDF7B951-AFB8-4BC5-A5FA-7CC12872160D}C:\program files\nokia\nokia ovi suite\nokiaovisuite.exe" = protocol=6 | dir=in | app=c:\program files\nokia\nokia ovi suite\nokiaovisuite.exe | "TCP Query User{D6A35FB7-9E04-4D64-8A61-63F2E1E0838D}C:\program files\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre7\bin\javaw.exe | "TCP Query User{DDBD1146-A086-491F-9BD4-4EBE7FF5A2FB}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "TCP Query User{F5D81E5C-586D-48BB-BD05-57F0582176BA}C:\program files\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\java.exe | "UDP Query User{17173C79-BD9B-4A42-A4FB-54634C65F65D}C:\program files\epson software\event manager\eeventmanager.exe" = protocol=17 | dir=in | app=c:\program files\epson software\event manager\eeventmanager.exe | "UDP Query User{22D9EF39-C179-43F3-9097-D7E00537B48E}C:\program files\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=17 | dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe | "UDP Query User{2B08D046-654B-4794-8EEC-8CF4A94DBBB6}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "UDP Query User{308050E0-8FDB-476C-8EC0-295D8B93872F}C:\program files\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\java.exe | "UDP Query User{3AC1D5A8-AFC9-42B0-A6A7-8B30AEFA4C00}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe | "UDP Query User{5113BC7F-4188-451D-B114-1E8E423B8BB9}C:\program files\epson software\event manager\eeventmanager.exe" = protocol=17 | dir=in | app=c:\program files\epson software\event manager\eeventmanager.exe | "UDP Query User{5237F78E-427C-4DE7-A50D-CCC907777979}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "UDP Query User{5591C37E-55AD-4464-A744-A611D898CE7C}C:\program files\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=17 | dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe | "UDP Query User{5AEF8BE7-F220-4FC9-80FC-42073FA2FD20}C:\program files\real\realplayer\realplay.exe" = protocol=17 | dir=in | app=c:\program files\real\realplayer\realplay.exe | "UDP Query User{8454832E-A34E-43BC-B53C-AA2AAA4E7F2A}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "UDP Query User{8BB6B025-DE49-48ED-A46C-14CEAEFCD57D}C:\users\jacek\desktop\utorrent.exe" = protocol=17 | dir=in | app=c:\users\jacek\desktop\utorrent.exe | "UDP Query User{9BB697D6-BD59-4C23-812C-28C130E09195}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "UDP Query User{A82AF1A4-A5F9-4DD0-97A8-AA9F247D966A}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe | "UDP Query User{E2DD81A0-1825-4754-8EF4-C874B6BEA11F}C:\program files\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files\google\google earth\client\googleearth.exe | "UDP Query User{E68F9D8F-9029-405B-9523-E24F0A3CB023}C:\program files\nokia\nokia ovi suite\nokiaovisuite.exe" = protocol=17 | dir=in | app=c:\program files\nokia\nokia ovi suite\nokiaovisuite.exe | "UDP Query User{F2133895-86DD-45CF-9510-E37B4CFF2294}C:\program files\nokia\nokia ovi suite\nokiaovisuite.exe" = protocol=17 | dir=in | app=c:\program files\nokia\nokia ovi suite\nokiaovisuite.exe | "UDP Query User{F36B36CF-4628-4D0C-AF61-7310B5A6E475}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe | "UDP Query User{FCBAC926-656C-418B-9542-9C36FA105F93}C:\program files\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre7\bin\javaw.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00000415-78E1-11D2-B60F-006097C998E7}" = Microsoft Office 2000 Premium "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 "{0B63BF75-9F0A-4E93-A69D-BDCC6A26C4B1}" = Podstawowe programy Windows Live "{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}" = PlayStation(R)Store "{122ADF8C-DDA1-480C-9936-C88F2825B265}" = Apple Application Support "{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now Standard "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Narzędzie do przekazywania usługi Windows Live "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8 "{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = Acer Arcade Deluxe "{26A24AE4-039D-4CA4-87B4-2F83216015FF}" = Java(TM) 6 Update 30 "{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 10 "{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1 "{2A5FBE73-76DA-4A31-BD86-1B0E01DC33F8}" = Windows Live Messenger "{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{3DB0448D-AD82-4923-B305-D001E521A964}" = Acer PowerSmart Manager "{40CC0CC6-C1BA-476D-98CF-5430DA439B4F}" = Galeria fotografii usługi Windows Live "{44E42AAA-432F-4E03-8D7D-C8DB4FEE526A}" = Microsoft Works "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4AB8B41B-3AF1-46BE-99B0-0ACD3B300C0A}" = Junk Mail filter update "{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}" = Google Earth "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{71C2828F-2678-4675-BDEC-895424861262}_is1" = C:\Program Files\Acer GameZone\GameConsole "{72B776E5-4530-4C4B-9453-751DF87D9D93}" = Backup Manager Basic "{74CC5B4D-CBB5-46F1-82B0-3169977B1D36}" = Asystent rejestracji usługi Windows Live "{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour "{7F811A54-5A09-4579-90E1-C93498E230D9}" = Acer eRecovery Management "{7FA1DAFD-AF55-E915-FD92-F269443A2ADF}" = Media Go Video Playback Engine 1.88.106.12050 "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110111700}" = Zuma Deluxe "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110184263}" = Puzzle Express "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11037623}" = Tradewinds 2 "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111125700}" = Rainbow Web "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111205743}" = Tri-Peaks Solitaire To Go "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111232687}" = Ocean Express "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111252743}" = Mahjong Escape Ancient China "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111307457}" = Galapago "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11170417}" = Luxor 2 "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111771833}" = Jewel Quest Solitaire "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11219217}" = Cradle of Rome "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113009953}" = Turbo Pizza "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113056167}" = Dream Day Honeymoon "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113297350}" = Cake Mania 2 "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113494430}" = Wedding Dash "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11505173}" = Airport Mania First Flight "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115053100}" = Dairy Dash "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115443300}" = Cooking Dash "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11551977}" = Parking Dash "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 "{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8F1ADE4D-EFAC-4F5A-B346-23C2687FAF50}" = Apple Mobile Device Support "{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}" = Choice Guard "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9AF0B106-56F1-461B-A270-95BC1682E282}" = Broadcom Gigabit NetLink Controller "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{a0fe116e-9a8a-466f-aee0-625cb7c207e3}" = Microsoft Visual C++ 2005 Redistributable - KB2467175 "{A77255C4-AFCB-44A3-BF0F-2091A71FFD9E}" = Acer Crystal Eye Webcam "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.4) "{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}" = ABBYY FineReader 6.0 Sprint "{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86 "{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}" = PlayStation(R)Network Downloader "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Click to Call with Skype "{C3335EFB-008F-44DB-A87A-9EC8EE53D045}" = Windows Live Sync "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D852EC56-11C7-422F-8E07-E0CE3B8D97B2}" = PC Sync "{DA20E1A8-07CB-4EE7-9B72-A7E28C953F0E}" = Acer Product Registration "{DB4690C5-9015-401D-A96C-A49909B7C372}" = Poczta usługi Windows Live "{DBF1AE39-DA30-4B89-A7EB-3BDA675C5D9E}" = Media Go "{DC24971E-1946-445D-8A82-CE685433FA7D}" = Realtek USB 2.0 Card Reader "{DD49053A-0140-44EF-AE75-C4BC1FDB8286}" = Windows Live Writer "{E1D7C392-EAF5-405F-A31D-BBD3B56C0C6A}" = ImageMixer 3 SE for SD "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10 "{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}" = Sony PC Companion 2.10.108 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F5FC3A22-A143-4BD4-9D12-DD2CC1188D02}_is1" = ChairGun4 4.0.1 "{F69E83CF-B440-43F8-89E6-6EA80712109B}" = Windows Live Communications Platform "7-Zip" = 7-Zip 4.65 "Acer Screensaver" = Acer ScreenSaver "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.6 "Agere Systems Soft Modem" = Agere Systems HDA Modem "ALSong_is1" = ALSong "ALUpdate_is1" = ALTools Update "Avira AntiVir Desktop" = Avira Free Antivirus "ffdshow_is1" = ffdshow v1.2.4486 [2012-08-25] "Google Chrome" = Google Chrome "GridVista" = Acer GridVista "HUAWEI DataCard Driver" = HUAWEI DataCard Driver 4.20.12.00 "InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now 5 "InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8 "InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = Acer Arcade Deluxe "InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93}" = Acer Backup Manager "JDownloader" = JDownloader "KLiteCodecPack_is1" = K-Lite Codec Pack 5.4.4 (Basic) "LManager" = Launch Manager "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.62.0.1300 "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Mozilla Firefox 17.0.1 (x86 pl)" = Mozilla Firefox 17.0.1 (x86 pl) "NVIDIA Drivers" = NVIDIA Drivers "o2DE" = Mobile Connection Manager "Opera 11.61.1250" = Opera 11.61 "PuTTY_is1" = PuTTY version 0.62 "RealAlt_is1" = Real Alternative 2.0.1 Lite "RealPlayer 15.0" = RealPlayer "SynTPDeinstKey" = Synaptics Pointing Device Driver "TMACv6.0" = Technitium MAC Address Changer v6.0.3 "Update Engine" = Sony Ericsson Update Engine "vShare.tv plugin" = vShare.tv plugin 1.3 "Winamp" = Winamp "WinLiveSuite_Wave3" = Podstawowe programy Windows Live "Xvid Video Codec 1.3.2" = Xvid Video Codec [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2487343376-848037089-3105925282-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{79A765E1-C399-405B-85AF-466F52E918B0}" = Ask Toolbar Updater [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2487343376-848037089-3105925282-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{79A765E1-C399-405B-85AF-466F52E918B0}" = Ask Toolbar Updater "FileZilla Client" = FileZilla Client 3.5.3 [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-01-02 12:34:08 | Computer Name = Jacek-laptop | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 908549 Error - 2013-01-03 04:02:13 | Computer Name = Jacek-laptop | Source = WinMgmt | ID = 10 Description = Error - 2013-01-03 04:02:18 | Computer Name = Jacek-laptop | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Windows\Installer\{44E42AAA-432F-4E03-8D7D-C8DB4FEE526A}\wksss.exe". Nie można odnaleźć zestawu zależnego msadctls,processorArchitecture="x86",type="win32",version="1.0.1801.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-01-03 04:02:18 | Computer Name = Jacek-laptop | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Windows\Installer\{44E42AAA-432F-4E03-8D7D-C8DB4FEE526A}\wksdb.exe". Nie można odnaleźć zestawu zależnego msadctls,processorArchitecture="x86",type="win32",version="1.0.1801.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-01-03 04:02:18 | Computer Name = Jacek-laptop | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Windows\Installer\{44E42AAA-432F-4E03-8D7D-C8DB4FEE526A}\WksWP.exe". Nie można odnaleźć zestawu zależnego msadctls,processorArchitecture="x86",type="win32",version="1.0.1801.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-01-03 04:02:18 | Computer Name = Jacek-laptop | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Windows\Installer\{44E42AAA-432F-4E03-8D7D-C8DB4FEE526A}\WksCal.exe". Nie można odnaleźć zestawu zależnego msadctls,processorArchitecture="x86",type="win32",version="1.0.1801.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-01-03 06:04:18 | Computer Name = Jacek-laptop | Source = WinMgmt | ID = 10 Description = Error - 2013-01-03 06:10:17 | Computer Name = Jacek-laptop | Source = ESENT | ID = 467 Description = Windows (2480) Windows: Baza danych C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb: Indeks System_ItemFolderPathDisplayNarrow415 tabeli SystemIndex_0A jest uszkodzony (0). Error - 2013-01-03 06:10:53 | Computer Name = Jacek-laptop | Source = ESENT | ID = 467 Description = Windows (2480) Windows: Baza danych C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb: Indeks System_ItemFolderPathDisplayNarrow415 tabeli SystemIndex_0A jest uszkodzony (0). Error - 2013-01-03 06:10:53 | Computer Name = Jacek-laptop | Source = Windows Search Service | ID = 7040 Description = [ System Events ] Error - 2013-01-01 04:02:33 | Computer Name = Jacek-laptop | Source = Service Control Manager | ID = 7000 Description = Error - 2013-01-01 05:34:08 | Computer Name = Jacek-laptop | Source = iaStor | ID = 262153 Description = Urządzenie \Device\Ide\iaStor0 nie odpowiedziało w ramach ustalonego limitu czasu. Error - 2013-01-02 03:07:50 | Computer Name = Jacek-laptop | Source = Service Control Manager | ID = 7000 Description = Error - 2013-01-02 03:10:02 | Computer Name = Jacek-laptop | Source = iaStor | ID = 262153 Description = Urządzenie \Device\Ide\iaStor0 nie odpowiedziało w ramach ustalonego limitu czasu. Error - 2013-01-02 09:55:44 | Computer Name = Jacek-laptop | Source = Service Control Manager | ID = 7000 Description = Error - 2013-01-02 10:00:08 | Computer Name = Jacek-laptop | Source = iaStor | ID = 262153 Description = Urządzenie \Device\Ide\iaStor0 nie odpowiedziało w ramach ustalonego limitu czasu. Error - 2013-01-03 04:02:13 | Computer Name = Jacek-laptop | Source = Service Control Manager | ID = 7000 Description = Error - 2013-01-03 04:19:07 | Computer Name = Jacek-laptop | Source = iaStor | ID = 262153 Description = Urządzenie \Device\Ide\iaStor0 nie odpowiedziało w ramach ustalonego limitu czasu. Error - 2013-01-03 06:04:19 | Computer Name = Jacek-laptop | Source = Service Control Manager | ID = 7000 Description = Error - 2013-01-03 06:20:56 | Computer Name = Jacek-laptop | Source = iaStor | ID = 262153 Description = Urządzenie \Device\Ide\iaStor0 nie odpowiedziało w ramach ustalonego limitu czasu. < End of report >