OTL Extras logfile created on: 2013-12-08 20:58:04 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Darin\Downloads 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.16438) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,71 Gb Total Physical Memory | 2,54 Gb Available Physical Memory | 68,54% Memory free 7,46 Gb Paging File | 5,50 Gb Available in Paging File | 73,82% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86) Drive C: | 439,84 Gb Total Space | 384,28 Gb Free Space | 87,37% Space Free | Partition Type: NTFS Computer Name: RAFAL | User Name: Darin | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2568246086-2447926606-4193830083-1004\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = [binary data] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = Reg Error: Unknown registry data type -- File not found [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 1 "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{1398DBF9-E77F-4F35-8589-6B0655715095}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{555B7A86-880B-4B4B-B8B9-607C5ACA221C}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{6F27EC3A-48A8-4C1E-86AB-5CDA7FD51B1F}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{80F9233E-5688-44E6-B6DE-EA1B222FAD09}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{A08DF832-B7FE-4402-B115-86F6D8DB507F}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{F26BBD4A-E010-4B65-95B2-86E4B05143D1}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{05C70123-1DFB-40F3-9DF5-006C8B74EC76}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.1.201_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} | "{0AD6FF95-7A36-49C0-A21C-7C3B03E43CDF}" = dir=out | name=@{microsoft.bingsports_2.0.0.273_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{0D27B0B4-8FAE-43E0-A573-39234D1FE29D}" = dir=out | name=@{microsoft.zunevideo_2.2.299.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{10EB8543-AB66-4B2D-A739-B7EB58E5F0DF}" = dir=out | name=s gallery | "{15D939A5-6E59-4DBF-88AF-D21336EDF74A}" = dir=out | name=@{microsoft.zunevideo_1.2.150.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} | "{1986E7AF-0F26-4639-927F-19C43F620F36}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{1D120F8F-4598-4C48-AEB7-C30EEA444DB1}" = dir=out | name=@{microsoft.bingfinance_2.0.0.275_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{20C48F1D-A2F0-43E1-A8C0-01B0C56D681E}" = dir=out | name=kindle | "{228656B3-BF34-4728-8FC3-DD5FA22BC509}" = dir=out | name=@{microsoft.zunemusic_2.2.299.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{2E22E8AB-1E9D-443A-852F-26D52AFA310B}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.1.335_x64__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} | "{312C86C6-6ABD-4597-9A77-567F072CA96D}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.0.1114.318_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{39B9BBA1-1A3E-408E-8521-55ABF22D2A9F}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd10\powerdvd cinema\powerdvdcinema10.exe | "{3F2E6FCA-AAAA-4E5C-BE85-A19B3C33A790}" = dir=out | name=windows_ie_ac_001 | "{4032A4DB-9213-4EB7-A689-DF3E23CA6989}" = dir=out | name=@{microsoft.skypeapp_1.6.0.115_x86__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/manifest_display_name} | "{40AC7BE9-F97D-44CF-A9FC-74C5B98B530E}" = dir=out | name=@{microsoft.zunemusic_1.2.150.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} | "{40FACEEC-5874-4A17-97DB-D6EBA27D89C0}" = dir=out | name=check point vpn | "{420B7F03-8C7E-4DC7-81F0-CF2A07077125}" = dir=out | name=windows_ie_ac_001 | "{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn | "{42EB6092-36F2-4AB9-B527-5A2C254985D9}" = dir=out | name=s player | "{449937A9-2751-4B12-8FE0-07D097C15140}" = dir=out | name=onet news | "{4756A647-59FB-4576-9942-CF25369B04CF}" = dir=out | name=sonicwall mobile connect | "{4794912A-C0F5-4A40-A579-790BE17055F1}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{483BC20D-8D81-45FF-A727-68392CAC159B}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{48FBDB48-A4B2-451B-A704-AC67E5F3B951}" = dir=out | name=adera | "{4ED2A957-07AE-403B-A226-4A13559409C2}" = dir=out | name=fresh paint | "{5090D024-03F5-4AC4-9EEB-51E870D7E471}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{54F2DB15-24E5-4844-A70B-6B00D52A6759}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect | "{5AF39CC4-E318-46D4-A761-9216D82FE544}" = dir=out | name=@{microsoft.bingsports_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect | "{63575872-54D1-4132-88E8-48F4D11538DC}" = dir=out | name=tvn player | "{6A274FAC-7849-4754-B7A0-10E7A9C7F6A0}" = dir=out | name=shark dash | "{6B46C25D-1773-49D9-AE7D-134BCBD97276}" = dir=out | name=@{microsoft.xboxlivegames_1.2.143.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{6D8D9E45-E658-4163-AC2C-5C58AD7A8B75}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9654.20321_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} | "{756FF4C5-9D89-4D48-BA04-B55783855C94}" = dir=out | name=photoeditor | "{77F3597D-F1EE-4EE0-94AB-F90126C4990F}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe | "{7935F3AE-85BA-4A75-B7DA-CC71CA372308}" = dir=out | name=f5 vpn | "{7F2737BE-3F0E-49C2-86B9-E6FFDC095CF4}" = dir=out | name=windows_ie_ac_001 | "{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{8142CDBD-07C9-4182-9C3A-48D7C727658F}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9654.20321_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} | "{81F08945-84E7-47D6-9061-BCB857DB2FFF}" = dir=in | name=skype | "{82F486D2-A27A-40DD-8A8D-DE4C647348F8}" = dir=out | name=juniper networks junos pulse | "{857B7238-B55F-453D-B446-8B0B20AE1EFD}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe | "{85A07586-42C8-4F12-B436-92CAAC887B99}" = dir=in | name=@{microsoft.skypeapp_1.6.0.115_x86__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/manifest_display_name} | "{8B8C423B-F524-4BBB-BFA6-7A8BB809022F}" = dir=out | name=norton studio | "{8BCEC358-6EF6-4896-895E-81E955BCBF6C}" = dir=out | name=@{microsoft.reader_6.2.9200.20623_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{8C7CCE6F-DEF3-4072-9876-3FD619DE38C8}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{8FE42CDF-13C3-4683-947A-E886ED7B124C}" = dir=out | name=s camera | "{9072FC2D-EBE1-4B03-A805-3E55B28194C4}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{97B198DE-4377-403B-8CF4-3CAD195405CA}" = dir=out | name=merriam-webster dictionary | "{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{A1C61AEC-6859-4F42-8F8E-7A92EB42856E}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{A5EEE2B2-690C-46CC-A062-A0FA34F1993B}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{ABCE58D8-7776-4D7C-8E75-13AEFEE009B6}" = protocol=17 | dir=in | app=c:\program files\ventrilo\ventrilo.exe | "{AE0FBD32-D54A-40D2-835D-DBBCCE83D25A}" = dir=out | name=@{microsoft.bingtravel_3.0.1.202_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{B07EBA8F-292E-42F6-A5BF-A9CE7DEC5241}" = protocol=6 | dir=in | app=c:\program files\ventrilo\ventrilo.exe | "{BFEC034B-1B68-403B-9AD0-A524BD287468}" = dir=in | name=juniper networks junos pulse | "{C28D76B9-9CF4-488C-A127-0833E93F1108}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.0.1114.318_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{C5364204-EA63-48DC-AF78-0047E289863F}" = dir=out | name=evernote touch | "{C9605A77-429B-4DFA-8FB5-B85F2D256462}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{C9811B61-7D4A-40FB-B863-269B9BA39E23}" = dir=out | name=match'a'shape | "{D0835A50-E891-4D91-938E-60899F0644FE}" = dir=out | name=chaton | "{D585C476-C3B8-4882-B9BA-BCD77C1CE35D}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn | "{D76A0262-8255-4EA5-8203-1F0D4FE64EE6}" = dir=out | name=@{microsoft.bingweather_1.7.0.26_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{D9E2B03A-CDD6-4DF4-9B26-8C8487D5ED12}" = dir=in | name=f5 vpn | "{DA09653D-3A3C-437B-AEF4-984951D1C008}" = dir=in | name=evernote touch | "{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn | "{DC0C981F-30EA-4E58-86D6-373EF0F2FFE5}" = dir=in | name=tvn player | "{E101F9C6-8284-4A8A-9FE6-44F38975F836}" = dir=in | name=sonicwall mobile connect | "{E1A6E1D9-38B9-4B6C-A06D-5382EC3A706E}" = dir=in | name=@{microsoft.reader_6.2.9200.20623_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{E3A59287-DED4-4BF1-BBEF-E5D5F0F4325B}" = dir=out | name=@{microsoft.bingmaps_2.0.2210.2401_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{E8F02728-B2DD-40C5-95C7-1ABC4BBDEA1A}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd10\powerdvd10.exe | "{EBD1BD93-B24B-4F98-9F2B-4DF3294F08A6}" = dir=out | name=@{microsoft.bingmaps_1.6.1528.2509_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{EC755C57-0537-45C3-8FDB-71875AE2A99E}" = dir=out | name=@{microsoft.bingweather_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn | "{F05E391F-DBE6-4095-BBD0-A306978C7B50}" = dir=in | name=check point vpn | "{F1CD5C15-4E0C-4ECF-BF01-6A680AB69B9D}" = dir=out | name=@{microsoft.bingnews_3.0.1.321_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/apptitle} | "{F41C8D94-EE42-4808-ABF8-410B92DAA702}" = dir=out | name=@{microsoft.bingnews_2.0.0.273_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} | "{F5CE7FA3-779B-47A8-B15E-4CA3E3DF14D8}" = dir=out | name=windows_ie_ac_001 | "{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client | "{F74272FC-580E-431A-9D2E-647589EAECCD}" = dir=out | name=skype | "{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client | "{FC1F2400-CA05-4ABD-AFD3-DFB8E630C6D1}" = dir=out | name=jamie's recipes | "{FDABC195-9C97-4D39-AE05-EA442EE5A2FD}" = dir=out | name=@{microsoft.bingfinance_3.0.1.299_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{FEB6FBC0-78CF-4FEA-9F4D-105DBAC77E0C}" = dir=out | name=@{microsoft.bingtravel_2.0.0.274_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "TCP Query User{84D6C625-DB15-470D-AA2F-C2E8AB03E738}C:\users\darin\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\darin\appdata\roaming\spotify\spotify.exe | "TCP Query User{B3B9E734-5742-4D71-AF30-000AE570D9FB}C:\program files (x86)\xfire\xfire.exe" = protocol=6 | dir=in | app=c:\program files (x86)\xfire\xfire.exe | "UDP Query User{61C503C9-80A0-4E3E-ABC1-64C518A00BC6}C:\program files (x86)\xfire\xfire.exe" = protocol=17 | dir=in | app=c:\program files (x86)\xfire\xfire.exe | "UDP Query User{9DBA1E1B-5100-4A87-BDF4-766EFEFD37CA}C:\users\darin\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\darin\appdata\roaming\spotify\spotify.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{409CB30E-E457-4008-9B1A-ED1B9EA21140}" = Intel(R) Rapid Storage Technology "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{843A1BDC-0879-4E5B-83E1-B81CC0CF3580}" = Support Center "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{93F692D4-0C4D-4EED-9BFE-657C1D5959FE}" = Intel(R) Rapid Storage Technology "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{A84A4FB1-D703-48DB-89E0-68B6499D2801}" = Qualcomm Atheros Bluetooth Suite (64) "{AEC9D273-E162-4614-83F1-722B8C74B185}" = Help Desk "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 331.82 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 331.82 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 1.7.1 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus 9.3.21 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.13.0725 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 9.3.21 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamC" = GeForce Experience NvStream Client Components "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 9.3.21 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.9 "{B5E06417-A4AC-4225-B36E-7E34C91616E7}" = Intel® Trusted Connect Service Client "{CFEA455B-E368-45B2-A01E-1C3A6C0F06B6}" = S Agent "{EC36E2BC-86F7-44C9-84B2-93930F0FBDBF}" = Quick Starter "{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}" = Ventrilo Client for Windows x64 "{F842F8B0-6942-4930-821F-543E976B2C66}" = MSVCRT110_amd64 "9F04C462DAB591BDCCE784F77E4D4F1736010B92" = Windows Driver Package - Samsung Electronics Co. Ltd. (RadioHIDMini) HIDClass (07/27/2012 20.57.1.735) "CCleaner" = CCleaner "CPUID CPU-Z_is1" = CPUID CPU-Z 1.64.0 "Elantech" = ETDWare X64 11.7.18.2_WHQL "TeamSpeak 3 Client" = TeamSpeak 3 Client "WinRAR archiver" = WinRAR 4.20 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00AA59D7-B92D-4A06-8D06-0596081C0E68}" = Photo Gallery "{011B5F12-F1CB-4C14-A99E-62C55831D78A}" = OpenOffice.ux.pl 3.4 "{0EC7F9CC-4741-45AE-9F55-6E9343F726F5}" = Intel(R) Manageability Engine Firmware Recovery Agent "{1057511B-F8FE-4230-9ED3-AB949A57EE4A}" = Windows Live PIMT Platform "{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}" = Recovery "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 45 "{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Qualcomm Atheros Client Installation Program "{29315CEC-E6CE-4394-84DC-6F862E8D9A52}" = Windows Live UX Platform "{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}" = CyberLink Power2Go 8 "{2AE414B5-7FE6-49A3-93C8-D864162CDEBC}" = Windows Live UX Platform Language Pack "{2D416A80-0BB1-4D8B-B770-7BE8F53D5937}" = Windows Live UX Platform Language Pack "{35F7893D-9D3E-4090-A8C2-C9322A2ACB7F}" = Tibiacast "{3FD0C489-0F02-481a-A3E1-9754CD396761}" = Intel® Watchdog Timer Driver (Intel® WDT) "{40F55150-F43D-4C9F-9A00-1A0A6F1EB7F0}" = Movie Maker "{46316411-80D8-4F68-8118-696E05FCE199}" = Windows Live Essentials "{4689F012-C8E3-4F6E-BDEF-13671D53A6DC}" = Windows Live UX Platform Language Pack "{49164253-aea0-47d7-8982-da59aecf0c6d}" = Nero 9 Lite "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4F9A382F-4478-4036-905C-F77DF2EA0370}" = Windows Live SOXE "{4FA8F084-C42F-45E1-B7E5-E0C8A1083DC5}" = Windows Live SOXE Definitions "{52E5DE60-C96B-42CC-9A37-FE04725940AE}" = Settings "{53C63F43-B827-42D9-8886-4698D91EA33B}" = System Requirements Lab for Intel "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{5CC4C963-F772-4766-BFF2-DE551E205EE9}" = Photo Common "{60A1253C-2D51-4166-95C2-52E9CF4F8D64}" = Photo Gallery "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{64DF7404-9D46-44AF-AFA1-A2F8D5648C2D}" = Windows Live Photo Common "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{698ED639-3A26-49EF-B1EF-CD89CB97C778}" = Windows Live Essentials "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{73E80655-FB3C-46F4-BE00-62D248BC490A}" = Visual C++ 2008 Runtime (x64) "{76EE8FE7-1957-4C51-9074-4930A8CFB1AF}" = Windows Live Installer "{78F35489-621D-4FFD-BCE7-2C7C3897E47C}" = Windows Live "{7914488D-F56B-464F-B735-F8E972E5E208}" = Photo Common "{7B5AA67E-FEA0-40BB-BAB5-CA56645A589C}" = NVIDIA PhysX "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110 "{8EEED220-D348-4F49-8C82-B11F6C5450C7}" = Movie Maker "{90B936B2-33E6-4FE8-9A64-08EEB42AF2B1}" = Podstawowe programy Windows Live "{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office "{96AA21F4-C8CE-4380-995A-992536463263}" = Galeria fotografii "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{9846E46F-07E0-4BDF-985A-E3FBA8C15877}" = Movie Maker "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9B2E55F8-5BA8-4A45-9682-ACB6F2CC0DA5}" = Photo Gallery "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A5457401-D56A-43F2-9524-78E54A7FC07A}" = SlimDrivers "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.05) "{BA73469B-D8C7-4FE3-B33C-1340D09F0709}" = Windows Live Communications Platform "{CCDB7ADB-1643-4C30-B39D-1562CFE51420}" = Movie Maker "{D48BCCD6-D2E2-42F4-B8E8-D7BC10C568EC}" = Windows Live UX Platform Language Pack "{D531FC91-6F4E-49A7-B912-15289D05B6F8}" = Photo Common "{D71BC54E-A4E6-4E06-866C-FD6EE16EA187}" = Movie Maker "{D77A6FED-256C-4E2F-9873-59C92C854A4E}" = Photo Common "{DA06101F-FD76-4BF0-88BD-B26A197005E3}" = SW Update "{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD 10 "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E653AB36-18D7-4FB3-BDAF-024283971050}" = Support Center FAQ "{E8A80433-302B-4FF1-815D-FCC8EAC482FF}" = Nero Installer "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FCB3772C-B7D0-4933-B1A9-3707EBACC573}" = Intel(R) SDK for OpenCL - CPU Only Runtime Package "{FE8DFDD0-A543-4A83-B7A9-C411138194D5}" = Galerie de photos "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 12.0 "Ashampoo Burning Studio Elements_is1" = Ashampoo Burning Studio Elements 10.0.9 "BlueSprig_JetClean_is1" = JetClean "Crossfire Europe" = Crossfire Europe "EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v5.50 "GameDesire-Pool & Snooker" = GameDesire-Pool & Snooker "InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}" = CyberLink Power2Go 8 "InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD 10 "Intel AppUp(SM) center 33070" = Intel AppUp(SM) center "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.75.0.1300 "Odkurzacz 13.4_is1" = Odkurzacz "Opera 18.0.1284.63" = Opera Stable 18.0.1284.63 "SpeedUpMyComputer" = SpeedUpMyComputer "Tibia_is1" = Tibia "WinLiveSuite" = Windows Live "Xfire" = Xfire [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2568246086-2447926606-4193830083-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "GG" = GG "Spotify" = Spotify [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-11-27 04:45:37 | Computer Name = Rafal | Source = NvStreamSvc | ID = 131073 Description = Error - 2013-11-27 04:45:37 | Computer Name = Rafal | Source = NvStreamSvc | ID = 131073 Description = Error - 2013-11-27 05:00:34 | Computer Name = Rafal | Source = Windows Search Service | ID = 1019 Description = Error - 2013-11-27 06:36:39 | Computer Name = Rafal | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: EasySettingsCmdServer.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x50376629 Nazwa modułu powodującego błąd: EasySettingsBase.dll, wersja: 0.0.0.0, sygnatura czasowa: 0x5037661d Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00001f7b Identyfikator procesu powodującego błąd: 0x788 Godzina uruchomienia aplikacji powodującej błąd: 0x01ceeb4fe5a925e2 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Samsung\Settings\CmdServer\EasySettingsCmdServer.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Samsung\Settings\CmdServer\EasySettingsBase.dll Identyfikator raportu: cbb0a8ee-574f-11e3-8250-20689d52780b Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error - 2013-11-27 09:04:17 | Computer Name = Rafal | Source = NvStreamSvc | ID = 131073 Description = Error - 2013-11-27 09:04:17 | Computer Name = Rafal | Source = NvStreamSvc | ID = 131073 Description = Error - 2013-11-27 09:34:05 | Computer Name = Rafal | Source = Microsoft-Windows-Immersive-Shell | ID = 5973 Description = Aktywacja aplikacji winstore_cw5n1h2txyewy!Windows.Store nie powiodła się. Błąd: -2144927142. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error - 2013-11-27 09:47:22 | Computer Name = Rafal | Source = Windows Search Service | ID = 1019 Description = Error - 2013-11-27 10:25:56 | Computer Name = Rafal | Source = Windows Search Service | ID = 1019 Description = Error - 2013-11-27 11:23:35 | Computer Name = Rafal | Source = Application Hang | ID = 1002 Description = Program LiveComm.exe w wersji 17.5.9600.20315 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 3a68 Godzina rozpoczęcia: 01ceeb83e75de3d5 Godzina zakończenia: 4294967295 Ścieżka aplikacji: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe\LiveComm.exe Identyfikator raportu: da17a1d9-5777-11e3-bfa1-20689d52780b Pełna nazwa pakietu powodującego błąd: microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe Identyfikator aplikacji względem pakietu powodującego błąd: ppleae38af2e007f4358a809ac99a64a67c1 [ System Events ] Error - 2013-11-18 06:00:03 | Computer Name = Rafal | Source = Service Control Manager | ID = 7031 Description = Usługa Odnajdywanie SSDP niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 100 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-11-18 06:00:03 | Computer Name = Rafal | Source = Service Control Manager | ID = 7031 Description = Usługa Broker czasu niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-11-18 06:00:03 | Computer Name = Rafal | Source = Service Control Manager | ID = 7031 Description = Usługa Host urządzenia UPnP niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 100 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-11-18 06:00:03 | Computer Name = Rafal | Source = Service Control Manager | ID = 7031 Description = Usługa Połącz teraz w systemie Windows — Rejestrator konfiguracji niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-11-20 05:48:47 | Computer Name = Rafal | Source = Service Control Manager | ID = 7031 Description = Usługa Odnajdywanie SSDP niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 100 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-11-20 05:48:47 | Computer Name = Rafal | Source = Service Control Manager | ID = 7031 Description = Usługa Broker czasu niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-11-20 05:48:47 | Computer Name = Rafal | Source = Service Control Manager | ID = 7031 Description = Usługa Host urządzenia UPnP niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 100 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-11-20 05:48:47 | Computer Name = Rafal | Source = Service Control Manager | ID = 7031 Description = Usługa Połącz teraz w systemie Windows — Rejestrator konfiguracji niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-11-20 05:48:47 | Computer Name = Rafal | Source = Service Control Manager | ID = 7031 Description = Usługa Usługa Sklep Windows (WSService) niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2013-11-21 04:18:34 | Computer Name = Rafal | Source = Microsoft-Windows-Kernel-Power | ID = 137 Description = < End of report >