OTL Extras logfile created on: 2013-08-28 09:41:48 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\nasz\Downloads 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16540) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,97 Gb Total Physical Memory | 1,14 Gb Available Physical Memory | 58,12% Memory free 3,93 Gb Paging File | 2,84 Gb Available in Paging File | 72,18% Paging File free Paging file location(s): [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 146,91 Gb Total Space | 61,84 Gb Free Space | 42,09% Space Free | Partition Type: NTFS Drive D: | 318,75 Gb Total Space | 53,48 Gb Free Space | 16,78% Space Free | Partition Type: NTFS Computer Name: NASZ-KOMPUTER | User Name: nasz | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-3958384476-2462600610-1272822033-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.) [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0599466D-4A09-4A33-85BE-75B6F141850C}" = lport=137 | protocol=17 | dir=in | app=system | "{0855423C-F087-49FC-B4C3-C78F8679AB85}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{1C24F216-59A0-4BF7-A2C7-5BF2F27574D9}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{2386C04E-78B9-4E45-8112-0BF030B59CA2}" = rport=10243 | protocol=6 | dir=out | app=system | "{27AD0DE4-6D64-4F98-935F-4B2165836F39}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{2D3E4A5C-1CBB-43F3-8868-34881CB788CB}" = lport=445 | protocol=6 | dir=in | app=system | "{3CAAB70C-10AE-4DFD-B765-29932AAD8D80}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{3F3D02E7-7DB9-4868-99A6-402C8A085243}" = lport=2869 | protocol=6 | dir=in | app=system | "{3F4B31D5-58FA-4A3A-88FE-A3E212ED64F5}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe | "{4B238A86-FC6E-48C2-93E3-4CC565DEDFCA}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4ECA5D90-722F-4106-8C14-4D5DE305967E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{4F94DB87-104F-47A2-AA11-1AE3A31E1BBB}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{537F7F63-028A-4D48-A04A-8D5AC37365E9}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{5DD3B518-CCF7-454F-A6D9-35EC41FE4272}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{6A04BF51-D48E-45DD-B2DA-723B97164B41}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{7957C5B0-8213-4DEC-AF2A-11AE11C50F9F}" = rport=139 | protocol=6 | dir=out | app=system | "{8F6CDB8C-1A6C-4C6D-8510-B0EC4FA4636B}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{91B41556-28CA-400A-BAAB-032BB68CC331}" = rport=445 | protocol=6 | dir=out | app=system | "{A585159C-28AE-49A5-A673-BE5887E3758A}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{B6C2F05A-BC8D-4F22-9623-FFA9FB1E4AAB}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{B9A721F4-9F9F-4D64-902E-8A67D99B6693}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{BD14E1B5-DC4C-4A13-9795-86E100FCF970}" = lport=10243 | protocol=6 | dir=in | app=system | "{BEC81861-1BA1-480F-B26A-9239FBB5F776}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{BF0CE730-8045-45F0-BF4B-748D5FF440A8}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{CAEE5F67-C316-4EF7-95DE-C5920FB1D8F0}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{DC9518DB-C88F-4F8D-BA70-B71457414ACF}" = lport=139 | protocol=6 | dir=in | app=system | "{DD031AB3-28F3-4F13-9522-EB25F4778853}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{DE0239C9-4B92-4B15-A91E-844FC7315189}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{E1DAFDDB-8289-490E-8BEF-44E16E7D4E36}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{E49D3B0F-1C7B-44BF-96C0-5C5834AC1513}" = rport=137 | protocol=17 | dir=out | app=system | "{F5403ADA-83A0-4047-906B-7604E02597BC}" = rport=138 | protocol=17 | dir=out | app=system | "{F947E59B-66AA-4B06-92EA-1BB01551EC56}" = lport=138 | protocol=17 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{01714B23-EA69-40FD-8EF5-7FE0E2B20E6C}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{07F0C05F-F307-42E7-A458-9B9861BEE295}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{1C997DE9-477B-47DC-885A-1E694CCC8350}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{1D73F95E-88BC-4D79-B480-5C1B643E726D}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{22A1C326-BCA6-4343-B646-B649BCCBA353}" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "{2788E152-7BA0-4E68-8F8B-888EFB1471D3}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{29D263E3-F9E8-42C9-AA74-D55BA3311DEC}" = protocol=17 | dir=in | app=c:\users\nasz\appdata\roaming\utorrent\utorrent.exe | "{2EE4B0EE-2F49-4F37-B995-4B3ED5FC45DF}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{3410603C-77C1-4E4D-83BA-94980267EE57}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{41CB6424-7773-49D5-BFF7-351A87698EE7}" = protocol=6 | dir=in | app=d:\age of empires\empires2.exe | "{4C16584E-D8FB-4081-BA2C-F16354421C0B}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{5103EB79-F6CE-4DFE-A0F6-A516179EAC0F}" = protocol=6 | dir=in | app=c:\users\nasz\appdata\roaming\utorrent\utorrent.exe | "{55A938C8-82F7-485F-8C61-3B2373525236}" = protocol=6 | dir=out | app=system | "{7B9B361F-82DD-4161-A5D1-D405F7AD4F3B}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{8AED7DA0-B167-48A2-93E6-FE226344B493}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{8EBB5E3F-B4EA-435E-BE69-EEE3C110DE01}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{99CF6531-F688-4347-BD12-D386D4427BCD}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{9CA13F6E-5930-46D5-A324-B52BAC697B1A}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{9EA795D5-1E61-4C8C-8CC0-81E66B7306DC}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{9EE8947D-8F5B-44FC-B113-070F5B282E72}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{A3A8E8DC-4E49-46DA-9CE1-97A36995D055}" = protocol=6 | dir=in | app=c:\oracle\middleware\jdeveloper\jdev\bin\jdev.exe | "{A4E9AC04-8688-4B65-B86D-17E71E5458AA}" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "{A941779A-A907-4DCB-8A1A-007E9AD7EA2D}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{AFFEB185-599E-4067-B9D8-25B6394C067F}" = protocol=17 | dir=in | app=d:\age of empires\empires2.exe | "{B6A844D4-E6FD-4AD3-A8AE-48268544F42A}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{CB7CA1A0-6564-4F01-9746-9B8D810C1048}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{CF06F05F-93D8-478D-9022-F772C5600C4E}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{D2CDC37E-776F-4EA3-8947-8AEAA69C0AC6}" = protocol=17 | dir=in | app=c:\oracle\middleware\jdeveloper\jdev\bin\jdev.exe | "{D6C9EAF1-7B7B-4C41-9D01-9BDFF06EE5D2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{DE73A590-1B7F-45A3-A8C9-87BBB0858B1E}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{F133DD54-E5EF-4110-BDFF-45B2B8303E7B}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{FAA9647B-6447-442F-AB56-EEADD77DD195}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "TCP Query User{3B355751-E436-4A5A-A1DE-F0653758CFD1}D:\age of empires\empires2.exe" = protocol=6 | dir=in | app=d:\age of empires\empires2.exe | "TCP Query User{90723122-28DF-4493-BA4A-FDDA7B98B1DE}C:\program files (x86)\emule\emule.exe" = protocol=6 | dir=in | app=c:\program files (x86)\emule\emule.exe | "TCP Query User{E0ABAEB3-BDC2-4F8E-879E-041B01746BE2}C:\windows\syswow64\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "TCP Query User{E787D3C8-4FA0-4DDF-A7D3-242B1DF04CDB}C:\oracle\middleware\jdeveloper\jdev\bin\jdev.exe" = protocol=6 | dir=in | app=c:\oracle\middleware\jdeveloper\jdev\bin\jdev.exe | "UDP Query User{0EFB239C-D03D-4ABE-A9FE-3D3BC3349845}D:\age of empires\empires2.exe" = protocol=17 | dir=in | app=d:\age of empires\empires2.exe | "UDP Query User{83796EC5-5C02-4AEE-96DE-40D11C24E094}C:\windows\syswow64\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "UDP Query User{BD22C647-9A90-4AB7-9AEC-97AF1A5D1A99}C:\program files (x86)\emule\emule.exe" = protocol=17 | dir=in | app=c:\program files (x86)\emule\emule.exe | "UDP Query User{C3C20EF2-F66B-4F47-940A-7DBE0C12E3A5}C:\oracle\middleware\jdeveloper\jdev\bin\jdev.exe" = protocol=17 | dir=in | app=c:\oracle\middleware\jdeveloper\jdev\bin\jdev.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1374CC63-B520-4f3f-98E8-E9020BF01CFF}" = Windows XP Mode "{2180B33F-3225-423E-BBC1-7798CFD3CD1F}" = Microsoft SQL Server 2008 R2 Native Client "{26A24AE4-039D-4CA4-87B4-2F86417013FF}" = Java 7 Update 13 (64-bit) "{4CC3444D-7279-4E83-984F-18E9A7B2E803}" = Oracle VM VirtualBox 4.2.16 "{8909B8A7-CEAB-4772-BF29-1892C4E6603B}" = Microsoft SQL Server 2005 Backward compatibility "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2010 "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{D9F711D3-3C90-4D79-9292-47C90C722E2A}" = Microsoft SQL Server 2008 R2 Command Line Utilities "{E72C3B46-F1EE-41AA-9625-1F8EB31B748D}" = ESET NOD32 Antivirus "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "CCleaner" = CCleaner "CPUID CPU-Z_is1" = CPUID CPU-Z 1.66.1 "CrystalDiskMark_is1" = CrystalDiskMark 3.0.2f "GIMP-2_is1" = GIMP 2.8.6 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Uninstall Tool_is1" = Uninstall Tool "WinRAR archiver" = WinRAR 4.20 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator "{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 25 "{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{79361740-EAE3-11E2-9911-B8AC6F98CCE3}" = Google Earth Plug-in "{8527C3D5-BA1D-46E9-88D2-AF25544311A3}" = JPEG Camera v1.10.7 "{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0015-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0016-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0018-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-0019-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001A-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001B-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0407-0000-0000000FF1CE}_Office14.PROPLUS_{65A2328E-FDFB-4CA3-8582-357EA6825FEA}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUS_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-001F-0415-0000-0000000FF1CE}_Office14.PROPLUS_{1D751709-BA6C-49E2-844B-4F4F20F410C9}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002A-0415-1000-0000000FF1CE}_Office14.PROPLUS_{0844B6E1-0A6F-4D81-8BCF-48F883F521FE}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-002C-0415-0000-0000000FF1CE}_Office14.PROPLUS_{6606F321-8216-466E-981E-B75A14C46894}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-0044-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-006E-0415-0000-0000000FF1CE}_Office14.PROPLUS_{6AF8887A-72F7-4FA0-ABE4-396172B64550}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00A1-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{90140000-00BA-0415-0000-0000000FF1CE}_Office14.PROPLUS_{39EFF327-D2C4-4C4B-B8EE-37325DECE1A4}" = Microsoft Office 2010 Service Pack 1 (SP1) "{A92A4DB0-CD37-42D1-BE1D-603D53C24328}" = Intel(R) Processor ID Utility "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.02) "{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1" = Spybot - Search & Destroy "{B97C7D3B-D014-48B2-B759-BF5FB610A921}" = InsERT GT 1.31 SP1 HF1 "{E5CCEA56-DC84-440E-8785-D5A7A6B7FB39}" = Sterowniki firmy InsERT 5.07 "{F9466082-90E9-4BE4-92F0-CF0AF195B0CF}" = USB PC Camera "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 12.0 "Age of Empires 2.0" = Microsoft Age of Empires II "Ashampoo Burning Studio 2010_is1" = Ashampoo Burning Studio 2010 "BearPaw 2448CU Pro v1.1" = BearPaw 2448CU Pro v1.1 "DAEMON Tools Lite" = DAEMON Tools Lite "eMule" = eMule "Google Chrome" = Google Chrome "MozBackup" = MozBackup 1.5.1 "Mozilla Firefox 23.0.1 (x86 pl)" = Mozilla Firefox 23.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "Oracle Fusion Middleware 11.1.2.3.0" = Oracle Fusion Middleware 11.1.2.3.0 "PIT Format 2012_is1" = PIT Format 2012 "Totalcmd" = Total Commander (Remove or Repair) "uTorrent" = µTorrent "VLC media player" = VLC media player 2.0.5 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3958384476-2462600610-1272822033-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "CodeBlocks" = CodeBlocks [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-04-19 09:12:46 | Computer Name = nasz-Komputer | Source = Software Protection Platform Service | ID = 8208 Description = Pozyskiwanie oryginalnego biletu (hr=0x80072EE7) dla szablonu o identyfikatorze 66c92734-d682-4d71-983e-d6ec3f16059f nie powiodło się. Error - 2013-05-14 14:07:24 | Computer Name = nasz-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: firefox.exe, wersja: 19.0.2.4814, sygnatura czasowa: 0x5138a1d3 Nazwa modułu powodującego błąd: xul.dll, wersja: 19.0.2.4814, sygnatura czasowa: 0x5138a0ed Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00172818 Identyfikator procesu powodującego błąd: 0xd58 Godzina uruchomienia aplikacji powodującej błąd: 0x01ce50cd2f582162 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Mozilla Firefox\firefox.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Mozilla Firefox\xul.dll Identyfikator raportu: 20aae585-bcc1-11e2-b51e-1c6f65e75ead Error - 2013-07-05 03:35:38 | Computer Name = nasz-Komputer | Source = Application Hang | ID = 1002 Description = Program SDScan.exe w wersji 2.0.12.173 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: e3c Godzina rozpoczęcia: 01ce79520495108c Godzina zakończenia: 16 Ścieżka aplikacji: C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe Identyfikator raportu: 71f51e2a-e545-11e2-beae-1c6f65e75ead Error - 2013-07-17 04:18:45 | Computer Name = nasz-Komputer | Source = Application Hang | ID = 1002 Description = Program gimp-2.8.exe w wersji 2.8.6.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: b40 Godzina rozpoczęcia: 01ce82c604f4f1ce Godzina zakończenia: 10 Ścieżka aplikacji: C:\Program Files\GIMP 2\bin\gimp-2.8.exe Identyfikator raportu: 55e931fe-eeb9-11e2-8913-1c6f65e75ead Error - 2013-07-17 04:19:40 | Computer Name = nasz-Komputer | Source = Application Hang | ID = 1002 Description = Program gimp-2.8.exe w wersji 2.8.6.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: fc8 Godzina rozpoczęcia: 01ce82c6435694c3 Godzina zakończenia: 20 Ścieżka aplikacji: C:\Program Files\GIMP 2\bin\gimp-2.8.exe Identyfikator raportu: 9d0340f2-eeb9-11e2-8913-1c6f65e75ead Error - 2013-07-17 05:15:37 | Computer Name = nasz-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: WINWORD.EXE, wersja: 14.0.6129.5000, sygnatura czasowa: 0x5082f354 Nazwa modułu powodującego błąd: wwlib.dll, wersja: 14.0.6129.5000, sygnatura czasowa: 0x5082f3dc Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00370dc9 Identyfikator procesu powodującego błąd: 0xd2c Godzina uruchomienia aplikacji powodującej błąd: 0x01ce82c6d9143f43 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Microsoft Office\Office14\WINWORD.EXE Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Microsoft Office\Office14\wwlib.dll Identyfikator raportu: 70a1b9af-eec1-11e2-8913-1c6f65e75ead Error - 2013-07-17 06:42:33 | Computer Name = nasz-Komputer | Source = Application Hang | ID = 1002 Description = Program WINWORD.EXE w wersji 14.0.6129.5000 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: c50 Godzina rozpoczęcia: 01ce82d8c689b4eb Godzina zakończenia: 0 Ścieżka aplikacji: C:\Program Files (x86)\Microsoft Office\Office14\WINWORD.EXE Identyfikator raportu: Error - 2013-07-22 02:48:50 | Computer Name = nasz-Komputer | Source = Software Protection Platform Service | ID = 8200 Description = Szczegóły błędu pozyskiwania licencji. hr=0xC004C533 Error - 2013-07-22 02:48:50 | Computer Name = nasz-Komputer | Source = Software Protection Platform Service | ID = 8208 Description = Pozyskiwanie oryginalnego biletu (hr=0xC004C533) dla szablonu o identyfikatorze 66c92734-d682-4d71-983e-d6ec3f16059f nie powiodło się. Error - 2013-07-25 06:43:55 | Computer Name = nasz-Komputer | Source = Microsoft-Windows-User Profiles Service | ID = 1533 Description = System Windows nie może usunąć katalogu profilów C:\Users\rob. Przyczyną błędu może być to, że pliki w tym katalogu są używane przez inny program. SZCZEGÓŁY — Katalog nie jest pusty. [ System Events ] Error - 2013-08-27 08:55:44 | Computer Name = nasz-Komputer | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Spybot-S&D 2 Updating Service. Error - 2013-08-27 08:55:44 | Computer Name = nasz-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Spybot-S&D 2 Updating Service z powodu następującego błędu: %%1053 Error - 2013-08-27 08:56:15 | Computer Name = nasz-Komputer | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Spybot-S&D 2 Scanner Service. Error - 2013-08-27 08:56:16 | Computer Name = nasz-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Spybot-S&D 2 Scanner Service z powodu następującego błędu: %%1053 Error - 2013-08-27 09:01:04 | Computer Name = nasz-Komputer | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Spybot-S&D 2 Scanner Service. Error - 2013-08-27 09:01:04 | Computer Name = nasz-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Spybot-S&D 2 Scanner Service z powodu następującego błędu: %%1053 Error - 2013-08-27 09:01:34 | Computer Name = nasz-Komputer | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Spybot-S&D 2 Updating Service. Error - 2013-08-27 09:01:34 | Computer Name = nasz-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Spybot-S&D 2 Updating Service z powodu następującego błędu: %%1053 Error - 2013-08-27 09:02:05 | Computer Name = nasz-Komputer | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Spybot-S&D 2 Scanner Service. Error - 2013-08-27 09:02:06 | Computer Name = nasz-Komputer | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Spybot-S&D 2 Scanner Service z powodu następującego błędu: %%1053 < End of report >