OTL Extras logfile created on: 2013-11-12 18:45:27 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Arturo\Desktop\logi\OTL 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.16384) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 4,00 Gb Total Physical Memory | 3,10 Gb Available Physical Memory | 77,57% Memory free 8,00 Gb Paging File | 7,01 Gb Available in Paging File | 87,59% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 126,95 Gb Total Space | 61,61 Gb Free Space | 48,53% Space Free | Partition Type: NTFS Drive D: | 350,00 Mb Total Space | 318,98 Mb Free Space | 91,14% Space Free | Partition Type: NTFS Drive E: | 40,73 Gb Total Space | 36,99 Gb Free Space | 90,83% Space Free | Partition Type: NTFS Drive F: | 48,83 Gb Total Space | 11,60 Gb Free Space | 23,75% Space Free | Partition Type: NTFS Drive G: | 416,59 Gb Total Space | 415,92 Gb Free Space | 99,84% Space Free | Partition Type: NTFS Drive H: | 931,51 Gb Total Space | 591,39 Gb Free Space | 63,49% Space Free | Partition Type: NTFS Computer Name: ARCZPC | User Name: Arturo | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-3357688876-670647453-2614633007-1001\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = [binary data] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = Reg Error: Unknown registry data type -- File not found [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0D665107-1A76-49EB-B2EC-BE44CCC38D71}" = dir=out | name=@{microsoft.bingweather_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{28D83D54-6D20-4B6D-AD85-2DC78D564930}" = protocol=17 | dir=in | app=c:\users\arturo\appdata\roaming\utorrent\utorrent.exe | "{317CDDC5-2FD4-4141-914D-3B5960C4CB70}" = dir=out | name=@{microsoft.bingtravel_3.0.1.202_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{34287BB9-9148-470D-8D78-A15B9E1E0F8B}" = dir=in | name=skype | "{36D9620D-2AE8-42A9-B562-9110AF8E79CE}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn | "{45636549-4DCF-4980-B832-6071E99BEE58}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.1.201_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} | "{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect | "{58662B68-91FC-4797-9EA6-AB09FFA4D098}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20279_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{59139F56-7CB9-43C5-976C-076EBA3D5E65}" = protocol=17 | dir=in | app=c:\games\battlefield 4\bf4.exe | "{5E1EDB72-DEEB-4A4B-9F5F-0B33D388FB30}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | "{5F0548D1-88C1-4ECE-9B9B-97B2D2602AA0}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect | "{7CFF5C16-14C9-4018-B170-F919A5905C5F}" = dir=out | name=@{microsoft.zunevideo_2.2.214.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{80553C83-B5D0-40BD-9266-7AC68804E1E6}" = dir=out | name=@{microsoft.zunemusic_2.2.214.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{8477F32F-9ADC-4E50-B631-95BF4C848A72}" = dir=out | name=@{microsoft.bingnews_3.0.1.205_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/apptitle} | "{8F9F1324-D8EC-4D6A-9718-04F72425FDD0}" = protocol=6 | dir=in | app=c:\games\battlefield 4\bf4_x86.exe | "{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{9F7E739C-E32A-4908-9880-947DC64B8043}" = protocol=6 | dir=in | app=c:\users\arturo\appdata\roaming\utorrent\utorrent.exe | "{A1196620-36CE-44B1-B31C-12D39F89A96C}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} | "{A7208BA6-2ADD-4A77-911F-9A49F27AA0E6}" = dir=out | name=@{microsoft.bingmaps_2.0.2210.2401_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{AF90FA10-603D-49DB-B290-6530601C9416}" = dir=out | name=@{microsoft.bingfinance_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{BD4CEC65-D712-4736-893A-39B65A800555}" = dir=out | name=skype | "{C7E312EB-C066-45B3-888C-D258D76A6C89}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20279_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn | "{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn | "{DF930603-1466-4B3C-910A-0504E9D65C6E}" = dir=out | name=@{microsoft.bingsports_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{EAD36C1E-BE4E-4FF0-8928-3599CD2FD44D}" = protocol=17 | dir=in | app=c:\games\battlefield 4\bf4_x86.exe | "{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn | "{F196ED70-5139-4786-964F-48365648B24F}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client | "{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client | "{FBBC0064-5081-4230-A072-93F6F0ED06E4}" = protocol=6 | dir=in | app=c:\games\battlefield 4\bf4.exe | "TCP Query User{654DE1FE-E1D7-4F28-A054-EB7F9044915C}C:\program files (x86)\skype\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "UDP Query User{BA30B22D-5E97-42DB-A566-34F55BB9A319}C:\program files (x86)\skype\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{764384C5-BCA9-307C-9AAC-FD443662686A}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90140000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0015-0415-1000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0016-0415-1000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0018-0415-1000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0019-0415-1000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-001A-0415-1000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001B-0415-1000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0415-1000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-002C-0415-1000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-0043-0000-1000-0000000FF1CE}" = Microsoft Office Office 32-bit Components 2010 "{90140000-0043-0415-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Polish) 2010 "{90140000-0044-0415-1000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-006E-0415-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-00A1-0415-1000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00BA-0415-1000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Control Panel 331.65 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Graphics Driver 331.65 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX System Software 9.13.0725 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 1.15.2 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA HD Audio Driver 1.3.26.4 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{E3047FA0-2D6B-4BD6-8CD4-599955F1CE9D}" = Microsoft Mouse and Keyboard Center "CCleaner" = CCleaner "MAXON12664043" = CINEMA 4D 15.037 "Microsoft Mouse and Keyboard Center" = Microsoft Mouse and Keyboard Center "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{3D6AD258-61EA-35F5-812C-B7A02152996E}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 "{4817D846-700B-474E-A31B-80892B3E92E3}" = Adobe After Effects CS6 "{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.10 "{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}" = Obsługa programów Apple "{6e8f74e0-43bd-4dce-8477-6ff6828acc07}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7B5AA67E-FEA0-40BB-BAB5-CA56645A589C}" = NVIDIA PhysX "{95716cce-fc71-413f-8ad5-56c2892d4b3a}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 "{ABADE36E-EC37-413B-8179-B432AD3FACE7}" = Battlefield 4™ "{AF37176A-78CA-545B-34EF-8B6A21514DD1}" = Adobe Help Manager "{B67BAFBA-4C9F-48FA-9496-933E3B255044}" = QuickTime "{E7D4E834-93EB-351F-B8FB-82CDAE623003}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{FE23D063-934D-4829-A0D8-00634CE79B4A}" = Adobe AIR "Adobe AIR" = Adobe AIR "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Avast" = avast! Free Antivirus "chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Help Manager "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.75.0.1300 "Mozilla Firefox 25.0 (x86 pl)" = Mozilla Firefox 25.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NapiProjekt_is1" = NapiProjekt (2.2.0.2399) "The KMPlayer" = The KMPlayer [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3357688876-670647453-2614633007-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-11-10 17:20:05 | Computer Name = ArczPC | Source = Application Error | ID = 1000 Description = Faulting application name: bf4.exe, version: 1.0.0.0, time stamp: 0x52668dcb Faulting module name: bf4.exe, version: 1.0.0.0, time stamp: 0x52668dcb Exception code: 0xc0000005 Fault offset: 0x00000000006e8ecb Faulting process id: 0x1354 Faulting application start time: 0x01cede5690a0b29c Faulting application path: C:\Games\Battlefield 4\bf4.exe Faulting module path: C:\Games\Battlefield 4\bf4.exe Report Id: ddeb019c-4a4d-11e3-8252-002185114ee1 Faulting package full name: Faulting package-relative application ID: Error - 2013-11-11 10:42:57 | Computer Name = ArczPC | Source = Application Error | ID = 1000 Description = Faulting application name: bf4.exe, version: 1.0.0.0, time stamp: 0x52668dcb Faulting module name: KERNELBASE.dll, version: 6.3.9600.16408, time stamp: 0x523d557d Exception code: 0x887a0006 Fault offset: 0x000000000000ab78 Faulting process id: 0xcb8 Faulting application start time: 0x01cedee2a891a433 Faulting application path: C:\Games\Battlefield 4\bf4.exe Faulting module path: C:\Windows\system32\KERNELBASE.dll Report Id: 8dab1c46-4adf-11e3-8253-002185114ee1 Faulting package full name: Faulting package-relative application ID: Error - 2013-11-11 10:44:49 | Computer Name = ArczPC | Source = Application Hang | ID = 1002 Description = The program Explorer.EXE version 6.3.9600.16408 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: ad8 Start Time: 01cedee23aa3d502 Termination Time: 60000 Application Path: C:\Windows\Explorer.EXE Report Id: 9e3adbf0-4adf-11e3-8253-002185114ee1 Faulting package full name: Faulting package-relative application ID: Error - 2013-11-11 10:57:57 | Computer Name = ArczPC | Source = Application Error | ID = 1000 Description = Faulting application name: bf4.exe, version: 1.0.0.0, time stamp: 0x52668dcb Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x0000000072739540 Faulting process id: 0x838 Faulting application start time: 0x01cedeee62037ba6 Faulting application path: C:\Games\Battlefield 4\bf4.exe Faulting module path: unknown Report Id: a5fb576b-4ae1-11e3-8254-002185114ee1 Faulting package full name: Faulting package-relative application ID: Error - 2013-11-11 11:01:27 | Computer Name = ArczPC | Source = Application Error | ID = 1000 Description = Faulting application name: bf4.exe, version: 1.0.0.0, time stamp: 0x52668dcb Faulting module name: bf4.exe, version: 1.0.0.0, time stamp: 0x52668dcb Exception code: 0xc0000005 Fault offset: 0x00000000006e8ecb Faulting process id: 0x9b0 Faulting application start time: 0x01cedeee7e893330 Faulting application path: C:\Games\Battlefield 4\bf4.exe Faulting module path: C:\Games\Battlefield 4\bf4.exe Report Id: 237f6c9f-4ae2-11e3-8254-002185114ee1 Faulting package full name: Faulting package-relative application ID: Error - 2013-11-11 14:21:33 | Computer Name = ArczPC | Source = Microsoft-Windows-CAPI2 | ID = 513 Description = Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Access is denied. . Error - 2013-11-11 15:57:22 | Computer Name = ArczPC | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Program Files\MAXON\CINEMA 4D R15\modules\Engineering Extension Kit\OkinoComClient\OkinoCOMlib.dll64". Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 2013-11-11 16:00:51 | Computer Name = ArczPC | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Program Files\MAXON\CINEMA 4D R15\modules\Engineering Extension Kit\OkinoComClient\OkinoCOMlib.dll64". Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 2013-11-11 16:04:50 | Computer Name = ArczPC | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Program Files\MAXON\CINEMA 4D R15\modules\Engineering Extension Kit\OkinoComClient\OkinoCOMlib.dll64". Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 2013-11-11 16:28:01 | Computer Name = ArczPC | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Program Files\MAXON\CINEMA 4D R15\modules\Engineering Extension Kit\OkinoComClient\OkinoCOMlib.dll64". Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053" could not be found. Please use sxstrace.exe for detailed diagnosis. [ System Events ] Error - 2013-11-12 10:07:13 | Computer Name = ArczPC | Source = mbamchameleon | ID = 61440 Description = Error - 2013-11-12 10:07:13 | Computer Name = ArczPC | Source = mbamchameleon | ID = 61440 Description = Error - 2013-11-12 10:07:13 | Computer Name = ArczPC | Source = mbamchameleon | ID = 61440 Description = Error - 2013-11-12 10:07:13 | Computer Name = ArczPC | Source = mbamchameleon | ID = 61440 Description = Error - 2013-11-12 10:07:16 | Computer Name = ArczPC | Source = mbamchameleon | ID = 61440 Description = Error - 2013-11-12 10:07:16 | Computer Name = ArczPC | Source = mbamchameleon | ID = 61440 Description = Error - 2013-11-12 11:42:08 | Computer Name = ArczPC | Source = EventLog | ID = 6008 Description = The previous system shutdown at 14:56:23 on ?2013-?11-?12 was unexpected. Error - 2013-11-12 11:42:09 | Computer Name = ArczPC | Source = BugCheck | ID = 1001 Description = Error - 2013-11-12 12:02:16 | Computer Name = ArczPC | Source = DCOM | ID = 10010 Description = Error - 2013-11-12 12:02:46 | Computer Name = ArczPC | Source = DCOM | ID = 10010 Description = < End of report >