OTL Extras logfile created on: 2013-10-05 10:40:43 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Kryniek\Desktop\otl 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16521) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,75 Gb Total Physical Memory | 0,72 Gb Available Physical Memory | 40,96% Memory free 3,50 Gb Paging File | 2,35 Gb Available in Paging File | 67,27% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 203,58 Gb Total Space | 45,33 Gb Free Space | 22,27% Space Free | Partition Type: NTFS Drive E: | 7,43 Gb Total Space | 2,15 Gb Free Space | 28,91% Space Free | Partition Type: FAT32 Drive F: | 29,28 Gb Total Space | 17,73 Gb Free Space | 60,57% Space Free | Partition Type: FAT32 Computer Name: KRYSTIAN | User Name: Kryniek | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- "C:\Users\Kryniek\AppData\Roaming\File Scout\filescout.exe" /open "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- "C:\Users\Kryniek\AppData\Roaming\File Scout\filescout.exe" /open "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0B7FD12C-4AD3-42FE-AC27-B293C84D9C15}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{1109EC3A-F958-4E8C-9FEE-F7DCD64B289A}" = lport=137 | protocol=17 | dir=in | app=system | "{22659FB2-D7AF-4C0D-A9C6-9486C0DEAEFC}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{238095A8-1FDC-45A1-A5B5-F318FCC0E7DA}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{2F3A47F6-9E73-4834-AB53-8E1138BB81D8}" = rport=139 | protocol=6 | dir=out | app=system | "{3BE9C2B0-C6D4-46E8-9AC0-2ABC156552BC}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{5E981FF1-9622-490D-9C60-D5621205A7CA}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{6111C6F1-7B4C-4F36-AEB9-78E2B961351C}" = lport=139 | protocol=6 | dir=in | app=system | "{6C231F23-5972-4B34-B3B6-6EB6A911275D}" = lport=445 | protocol=6 | dir=in | app=system | "{7E1A0EB2-8621-45E6-B177-2643C8939A25}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{88186524-56A5-42AD-976D-2910159637DD}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{8A6576B0-7F82-4E4C-BAC2-3AD22517F4FD}" = rport=138 | protocol=17 | dir=out | app=system | "{91AD677F-4CA0-4C81-BF53-94F84399F54D}" = rport=445 | protocol=6 | dir=out | app=system | "{9C5D8D77-94A2-44A5-B5B3-E2422BAB7E46}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{AC5FACBE-9DA6-4FF1-AAF2-50F4A4F51D87}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{B2F6BC6E-96A9-4348-B427-704B6AE7C99B}" = rport=137 | protocol=17 | dir=out | app=system | "{D92E9183-E585-4221-88A2-A7A27D33777A}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{DDE375BD-CFA9-4241-A6C5-56C6DDB41DB0}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{E100BBF6-7E57-4642-83F0-EE6245748764}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{F1662BFD-A452-4C9A-B96F-42ED04FD3316}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{F1794720-C475-4F8F-B8F6-DBD78A2713CC}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{F64C2D97-B858-470D-A716-03BC97CE02C5}" = lport=138 | protocol=17 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{1465CB9E-5DBC-4032-99F9-C68D81107D72}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{1EBDE7BB-94E8-4FCA-8164-2BF9CB2A2242}" = protocol=6 | dir=in | app=c:\serious sam3\steamapps\common\serious sam 3\bin\sam3.exe | "{234CA4F8-B77D-488A-B0ED-D38B533159C2}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{32AF9498-A8E8-4E68-8353-E84F89B614F3}" = protocol=6 | dir=in | app=c:\serious sam3\steamapps\common\serious sam 3\bin\sam3.exe | "{35E25990-8C2C-4760-AF1D-0E7454CA4963}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{38F5CF4A-4EBA-4EFC-B374-BA03DAFACBAB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{3B7AFF86-D91F-4719-8D09-04D11EF5330C}" = protocol=6 | dir=in | app=f:\gry\needforspeed\data\nfsw.exe | "{416D3EB6-1EEA-41F8-B5AD-CD1A14F267FF}" = protocol=6 | dir=in | app=c:\pobierane\eruris.exe | "{41A26764-B3D2-49D3-842E-2B206824974E}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{42D7716E-E7E2-491F-ADBF-21C8C70744EE}" = dir=in | app=c:\users\kryniek\appdata\local\facebook\video\skype\facebookvideocalling.exe | "{518A0E67-9E69-4F1D-AEC9-50B9E9805962}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{676213A9-ED47-4EDB-B38F-BE4F20E62352}" = protocol=17 | dir=in | app=c:\serious sam3\steamapps\common\serious sam 3\bin\sam3_unrestricted.exe | "{67CB5AFC-AFDC-4767-A95E-41EEE614701C}" = protocol=17 | dir=in | app=c:\serious sam3\steamapps\common\serious sam 3\bin\sam3_unrestricted.exe | "{73BF5ABF-997F-4C0F-B8FA-BF9EDBA46913}" = protocol=6 | dir=in | app=f:\gry\cs 1.6\hltv.exe | "{80940E4B-945F-4A3B-9AFE-508DCFF8B032}" = protocol=17 | dir=in | app=c:\serious sam3\steamapps\common\serious sam 3\bin\sam3.exe | "{85320C16-464A-46F0-AF3D-1C7BB549BDEB}" = protocol=17 | dir=in | app=f:\gry\needforspeed\data\nfsw.exe | "{8A93D8C8-6C27-41DB-AC5C-575EE2A148E5}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{99142F2A-0293-4120-BF93-D0157D819097}" = protocol=17 | dir=in | app=f:\gry\cs 1.6\hltv.exe | "{9E783BFB-FA3D-4A21-9B5F-AD523AF723A8}" = protocol=6 | dir=in | app=c:\serious sam3\steamapps\common\serious sam 3\bin\sam3_unrestricted.exe | "{9F84A94D-D6EF-4E4F-9C5A-9071F3379F2E}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{AF2AEFA6-79CA-4BEE-9208-404320320C2D}" = protocol=6 | dir=in | app=c:\serious sam3\steamapps\common\serious sam 3\bin\sam3_unrestricted.exe | "{B37F5F45-7BC8-4EA2-97E8-4055A75AF679}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{BB69CC48-7983-4369-A515-F8197A7913F5}" = protocol=17 | dir=in | app=c:\serious sam3\steamapps\common\serious sam 3\bin\sam3.exe | "{C1543413-16D4-49A3-A9CD-D111EDB13B00}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{C8DD2518-C830-4395-B6F1-B959E5EC76E2}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{CBEDE88B-B40F-4653-AE98-154834E19BCC}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{D06E62DA-1443-4A90-A6AD-41C3634B1A03}" = protocol=17 | dir=in | app=c:\serious sam3\steam.exe | "{DBF6C6CD-3BD3-49FE-97C7-6EB591BD41FB}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{E13600D1-72D9-45D4-85D2-A6610F31B8A5}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{E381CAAB-1BDC-4F37-960D-D2EB61BD97DA}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{EAF47F25-FA0D-4FA1-8EC3-227EB355FCB0}" = protocol=6 | dir=in | app=c:\serious sam3\steam.exe | "{EE4CBD96-D20B-4C40-BC6C-697C6BD615FE}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{F9FE2C1F-3AAD-4C3B-9D1A-7E02BC34645B}" = protocol=17 | dir=in | app=c:\pobierane\eruris.exe | "TCP Query User{52BC2647-BE74-48D5-9029-3E6DB76C82D9}F:\gry\metin2\metin2client.bin" = protocol=6 | dir=in | app=f:\gry\metin2\metin2client.bin | "TCP Query User{533CCE55-1BE3-4A34-9E66-AC456D248BF6}F:\gry\cs 1.6\counter strike 1.6\hl.exe" = protocol=6 | dir=in | app=f:\gry\cs 1.6\counter strike 1.6\hl.exe | "TCP Query User{5B4E55A2-2A97-4EE1-8185-746A77768727}F:\gry\cs\cstrikenano\hl.exe" = protocol=6 | dir=in | app=f:\gry\cs\cstrikenano\hl.exe | "TCP Query User{6A08A50E-3F05-440E-A06A-754629A59524}C:\program files (x86)\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "TCP Query User{810CE229-1139-40C9-8D25-3B981383EDD5}C:\program files (x86)\ares\ares.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ares\ares.exe | "TCP Query User{83477A7C-F1CE-4965-8DF9-EFA99B2692D1}C:\pobierane\eruris.exe" = protocol=6 | dir=in | app=c:\pobierane\eruris.exe | "TCP Query User{90B1BA19-2619-4027-BCFC-62B6CC81448B}F:\gry\needforspeed\data\nfsw.exe" = protocol=6 | dir=in | app=f:\gry\needforspeed\data\nfsw.exe | "TCP Query User{9990CC36-B7B1-4B81-9370-1918CB594573}F:\gry\diamond\patcher\metin2.bin" = protocol=6 | dir=in | app=f:\gry\diamond\patcher\metin2.bin | "TCP Query User{A321F8FD-D4ED-4367-AE2D-13AD9E542DAB}C:\program files (x86)\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "TCP Query User{A36DEBA0-5D98-4ED0-833A-21BAC99ACFA2}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe | "TCP Query User{A86B2D16-7D9C-445B-B673-02E340096673}C:\program files (x86)\ares\ares.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ares\ares.exe | "TCP Query User{AD28AD88-0A04-4E07-A3BF-6B25D134FC50}F:\gry\ethana\ethana.eu - official client 27.06.2013\ethana.exe" = protocol=6 | dir=in | app=f:\gry\ethana\ethana.eu - official client 27.06.2013\ethana.exe | "TCP Query User{B069B456-994E-4FA5-A79D-942D2B621D40}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "TCP Query User{B1651F22-3A16-4EDB-81D7-5634651C1BB0}F:\gry\cs 1.6\hltv.exe" = protocol=6 | dir=in | app=f:\gry\cs 1.6\hltv.exe | "TCP Query User{B22F5E60-601B-48DA-BCFA-AF084060E5A5}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe | "TCP Query User{BA2D0410-F5EB-485B-923B-936D0DE9897C}C:\users\kryniek\appdata\local\temp\funmt2.exe" = protocol=6 | dir=in | app=c:\users\kryniek\appdata\local\temp\funmt2.exe | "TCP Query User{CCA76D4B-2E9A-4EC3-8D59-E255BCEDBF0B}F:\gry\cs 1.6\hl.exe" = protocol=6 | dir=in | app=f:\gry\cs 1.6\hl.exe | "TCP Query User{EDF7F4C2-6B8D-4C51-A432-B0F35474421F}C:\pobierane\diamondmt2_patcher\patcher\metin2.bin" = protocol=6 | dir=in | app=c:\pobierane\diamondmt2_patcher\patcher\metin2.bin | "UDP Query User{077A80B3-B277-4791-B508-DABC805BA378}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "UDP Query User{0A7C2932-EC34-4D88-97DF-D0FDC846E193}C:\program files (x86)\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "UDP Query User{0E543D51-D800-42AE-8994-B92E2767A65C}C:\pobierane\eruris.exe" = protocol=17 | dir=in | app=c:\pobierane\eruris.exe | "UDP Query User{1109DD2B-FEB9-4CF1-B8CB-8DB24A0825A5}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe | "UDP Query User{1133E2A6-9DB7-4834-98BF-2D4E57D6B961}F:\gry\needforspeed\data\nfsw.exe" = protocol=17 | dir=in | app=f:\gry\needforspeed\data\nfsw.exe | "UDP Query User{1584577A-32C4-40A2-86E4-D26129A904D6}F:\gry\cs 1.6\counter strike 1.6\hl.exe" = protocol=17 | dir=in | app=f:\gry\cs 1.6\counter strike 1.6\hl.exe | "UDP Query User{159FF6F3-BA0A-482A-A411-1333721DD489}F:\gry\cs 1.6\hltv.exe" = protocol=17 | dir=in | app=f:\gry\cs 1.6\hltv.exe | "UDP Query User{1A83BF66-21B3-4518-882C-BB814DFE8FEB}F:\gry\metin2\metin2client.bin" = protocol=17 | dir=in | app=f:\gry\metin2\metin2client.bin | "UDP Query User{26C2E100-9CF9-4797-A4A7-980A3445073A}F:\gry\diamond\patcher\metin2.bin" = protocol=17 | dir=in | app=f:\gry\diamond\patcher\metin2.bin | "UDP Query User{397A96FB-1E8B-41CC-B8E7-90A8B75E3CBF}C:\program files (x86)\ares\ares.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ares\ares.exe | "UDP Query User{3BBBB387-0AAF-435C-92BA-CE75740B2F5B}F:\gry\ethana\ethana.eu - official client 27.06.2013\ethana.exe" = protocol=17 | dir=in | app=f:\gry\ethana\ethana.eu - official client 27.06.2013\ethana.exe | "UDP Query User{4DCB1186-8C9C-49FA-B6CD-AF3243C1C68C}C:\program files (x86)\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "UDP Query User{5421C5F0-A2D4-41DF-90B7-F64FCD02DB8D}F:\gry\cs 1.6\hl.exe" = protocol=17 | dir=in | app=f:\gry\cs 1.6\hl.exe | "UDP Query User{7BD15E65-7B6F-4D58-8DC1-7E7F29A336FF}C:\pobierane\diamondmt2_patcher\patcher\metin2.bin" = protocol=17 | dir=in | app=c:\pobierane\diamondmt2_patcher\patcher\metin2.bin | "UDP Query User{C3C4C725-7625-4DF4-9532-F3C42651F600}C:\users\kryniek\appdata\local\temp\funmt2.exe" = protocol=17 | dir=in | app=c:\users\kryniek\appdata\local\temp\funmt2.exe | "UDP Query User{D62D6E86-7415-4886-B20A-0AD5AAFFB559}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe | "UDP Query User{F24D0A97-6051-4681-8046-FC40DFC3B340}C:\program files (x86)\ares\ares.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ares\ares.exe | "UDP Query User{FAC5ACA6-29EC-4328-AD53-E2D55CBF9E7D}F:\gry\cs\cstrikenano\hl.exe" = protocol=17 | dir=in | app=f:\gry\cs\cstrikenano\hl.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP495_series" = Canon MP495 series MP Drivers "{889DF117-14D1-44EE-9F31-C5FB5D47F68B}" = Yontoo 1.10.03 "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{0ACC2993-2058-4BE7-9A92-9DCDAA9B3412}" = LogMeIn Hamachi "{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693}" = BitGuard "{177586E7-E42E-4F38-83D1-D15B4AF5B714}" = Delta Chrome Toolbar "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{26A24AE4-039D-4CA4-87B4-2F83217011FF}" = Java 7 Update 11 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.6 "{55D65D27-C0CD-4375-9021-F3D3D024ED90}_is1" = Minecraft PC Gamer Demo version 1.5 "{5B30A7A1-4D3D-41D2-9FA2-62D1852B58CD}_is1" = Counter Strike 1.6 wersja CS 1.6 "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1" = Need For Speed™ World "{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{995DC03E-1302-403C-AC5F-6004C8C50EA5}" = Winx Club: Dookoła Świata "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1045-7B44-AA1000000001}" = Adobe Reader X (10.1.8) - Polish "{B92C5909-1D37-4C51-8397-A28BB28E5DC3}" = Facebook Video Calling 1.2.0.287 "{D9D172F7-361C-4009-9DC8-F77D2CB188F0}" = Winx Club: Urodziny Bloom "{E55E7026-EF2A-4A17-AAA7-DB98EA3FD1B1}" = Babylon Chrome Toolbar "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Shockwave Player" = Adobe Shockwave Player 11.6 "ALLPlayer_is1" = ALLPlayer V5.X "Ares" = Ares 2.1.9 "avast" = avast! Free Antivirus "BabylonToolbar" = Babylon toolbar "Canon_IJ_Network_UTILITY" = Canon IJ Network Tool "CANONIJPLM100" = Canon Inkjet Printer/Scanner/Fax Extended Survey Program "CanonMyPrinter" = Canon My Printer "CanonSolutionMenuEX" = Canon Solution Menu EX "Chicken Invaders: The Next Wave (Christmas Edition) demo_is1" = Chicken Invaders: The Next Wave (Christmas Edition) demo v2.72 "delta" = Delta toolbar "Easy-PhotoPrint EX" = Canon Easy-PhotoPrint EX "Easy-WebPrint EX" = Canon Easy-WebPrint EX "Google Chrome" = Google Chrome "LogMeIn Hamachi" = LogMeIn Hamachi "Mobile Partner" = Mobile Partner "MP Navigator EX 4.0" = Canon MP Navigator EX 4.0 "NSS" = Norton Security Scan "PC Speed Maximizer_is1" = PC Speed Maximizer v3.1 "PunkBusterSvc" = PunkBuster Services "Rejestracja użytkownika drukarki Canon MP495 series" = Rejestracja użytkownika drukarki Canon MP495 series "Steam App 41070" = Serious Sam 3: BFE "TeamSpeak 3 Client" = TeamSpeak 3 Client "Winamp" = Winamp "WinRAR archiver" = WinRAR 4.20 (32-bit) "WMV9_VCM" = Microsoft Windows Media Video 9 VCM [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3734884098-2230669773-3595099198-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{79A765E1-C399-405B-85AF-466F52E918B0}" = Ask Toolbar Updater "{8DC910CD-8EE3-4ffc-A4EB-9B02701059C4}" = Battlefield Heroes "DSite" = Update for Qtrax Music Downloader "Winamp Detect" = Detektor Winampa [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-10-04 05:16:39 | Computer Name = Krystian | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Program Files (x86)\Canon\Solution Menu EX\MFC80U.DLL". Nie można odnaleźć zestawu zależnego Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-10-04 05:16:39 | Computer Name = Krystian | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Program Files (x86)\Canon\Solution Menu EX\MFC80U.DLL". Nie można odnaleźć zestawu zależnego Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-10-04 05:17:58 | Computer Name = Krystian | Source = WinMgmt | ID = 10 Description = Error - 2013-10-04 13:38:29 | Computer Name = Krystian | Source = System Restore | ID = 8193 Description = Error - 2013-10-04 13:41:09 | Computer Name = Krystian | Source = Google Update | ID = 20 Description = Error - 2013-10-04 13:53:44 | Computer Name = Krystian | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: Explorer.EXE, wersja: 6.1.7601.17567, sygnatura czasowa: 0x4d672ee4 Nazwa modułu powodującego błąd: DUI70.dll, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bdf25 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000001098 Identyfikator procesu powodującego błąd: 0x5e8 Godzina uruchomienia aplikacji powodującej błąd: 0x01cec0e244f07e42 Ścieżka aplikacji powodującej błąd: C:\Windows\Explorer.EXE Ścieżka modułu powodującego błąd: C:\Windows\system32\DUI70.dll Identyfikator raportu: e8e1fb28-2d1d-11e3-b6a2-002243be5b60 Error - 2013-10-04 14:16:03 | Computer Name = Krystian | Source = WinMgmt | ID = 10 Description = Error - 2013-10-05 04:25:36 | Computer Name = Krystian | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Program Files (x86)\Canon\Solution Menu EX\MFC80U.DLL". Nie można odnaleźć zestawu zależnego Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-10-05 04:25:36 | Computer Name = Krystian | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Program Files (x86)\Canon\Solution Menu EX\MFC80U.DLL". Nie można odnaleźć zestawu zależnego Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-10-05 04:25:44 | Computer Name = Krystian | Source = WinMgmt | ID = 10 Description = [ Media Center Events ] Error - 2013-03-28 05:17:24 | Computer Name = Krystian | Source = MCUpdate | ID = 0 Description = 10:17:24 - Błąd podczas nawiązywania połączenia z Internetem. 10:17:24 - Nie można skontaktować się z serwerem.. Error - 2013-03-28 05:18:07 | Computer Name = Krystian | Source = MCUpdate | ID = 0 Description = 10:17:53 - Błąd podczas nawiązywania połączenia z Internetem. 10:17:53 - Nie można skontaktować się z serwerem.. Error - 2013-03-28 06:19:00 | Computer Name = Krystian | Source = MCUpdate | ID = 0 Description = 11:19:00 - Błąd podczas nawiązywania połączenia z Internetem. 11:19:00 - Nie można skontaktować się z serwerem.. Error - 2013-03-28 06:19:49 | Computer Name = Krystian | Source = MCUpdate | ID = 0 Description = 11:19:30 - Błąd podczas nawiązywania połączenia z Internetem. 11:19:30 - Nie można skontaktować się z serwerem.. Error - 2013-03-28 07:31:36 | Computer Name = Krystian | Source = MCUpdate | ID = 0 Description = 12:31:36 - Błąd podczas nawiązywania połączenia z Internetem. 12:31:36 - Nie można skontaktować się z serwerem.. Error - 2013-03-28 07:32:37 | Computer Name = Krystian | Source = MCUpdate | ID = 0 Description = 12:32:17 - Błąd podczas nawiązywania połączenia z Internetem. 12:32:17 - Nie można skontaktować się z serwerem.. Error - 2013-04-11 14:08:59 | Computer Name = Krystian | Source = MCUpdate | ID = 0 Description = 20:08:58 - Błąd podczas nawiązywania połączenia z Internetem. 20:08:59 - Nie można skontaktować się z serwerem.. Error - 2013-04-11 14:09:42 | Computer Name = Krystian | Source = MCUpdate | ID = 0 Description = 20:09:29 - Błąd podczas nawiązywania połączenia z Internetem. 20:09:29 - Nie można skontaktować się z serwerem.. Error - 2013-04-16 14:14:30 | Computer Name = Krystian | Source = MCUpdate | ID = 0 Description = 20:14:29 - Błąd podczas nawiązywania połączenia z Internetem. 20:14:29 - Nie można skontaktować się z serwerem.. Error - 2013-04-20 12:13:44 | Computer Name = Krystian | Source = MCUpdate | ID = 0 Description = 18:13:43 - Błąd podczas nawiązywania połączenia z Internetem. 18:13:43 - Nie można skontaktować się z serwerem.. [ System Events ] Error - 2013-10-04 14:14:45 | Computer Name = Krystian | Source = atikmdag | ID = 52236 Description = CPLIB :: General - Invalid Parameter Error - 2013-10-04 14:14:45 | Computer Name = Krystian | Source = atikmdag | ID = 43029 Description = Display is not active Error - 2013-10-04 14:15:20 | Computer Name = Krystian | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Mobile Partner. OUC. Error - 2013-10-04 14:15:20 | Computer Name = Krystian | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Mobile Partner. OUC z powodu następującego błędu: %%1053 Error - 2013-10-04 14:15:26 | Computer Name = Krystian | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Windows Internet Name Service z powodu następującego błędu: %%2 Error - 2013-10-05 04:22:41 | Computer Name = Krystian | Source = atikmdag | ID = 52236 Description = CPLIB :: General - Invalid Parameter Error - 2013-10-05 04:22:41 | Computer Name = Krystian | Source = atikmdag | ID = 43029 Description = Display is not active Error - 2013-10-05 04:24:58 | Computer Name = Krystian | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Mobile Partner. OUC. Error - 2013-10-05 04:24:58 | Computer Name = Krystian | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Mobile Partner. OUC z powodu następującego błędu: %%1053 Error - 2013-10-05 04:25:44 | Computer Name = Krystian | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Windows Internet Name Service z powodu następującego błędu: %%2 < End of report >