OTL Extras logfile created on: 2013-12-28 19:55:17 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Grażyna\AppData\Local\Microsoft\Windows\INetCache\IE\PJWDXKP7 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.16476) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,71 Gb Total Physical Memory | 2,22 Gb Available Physical Memory | 59,85% Memory free 4,33 Gb Paging File | 2,71 Gb Available in Paging File | 62,67% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86) Drive C: | 439,84 Gb Total Space | 385,00 Gb Free Space | 87,53% Space Free | Partition Type: NTFS Computer Name: KOMPUTERMORUSEK | User Name: Grażyna | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = [binary data] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = Reg Error: Unknown registry data type -- File not found [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{176643D3-221F-4CBC-82AD-AF292C774287}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{6C4C1237-155A-4E0C-8B58-69CBA7C5156A}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{7979CCAE-C510-49B9-B99B-55FE231F4882}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{79C21ED1-C41A-4630-9DF7-FE5975EEDA46}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{7B68AF82-E9F2-4E08-8954-291FDB3C239A}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{86C1D0B6-AB56-4F0F-8CFB-300B27E0C04D}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{96B38ECC-6314-46CB-A1FD-82D2E7A0E9BE}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{9AA32D9D-38E4-49DC-ABB5-C616C61FA96F}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{9B46381F-EE25-4730-B31C-662E983A4999}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{A79F790B-C1AF-4DD2-8867-F7447597C4CD}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{E2798B0F-6C3A-4550-B30D-40845B2142DF}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{E409E7A8-E5CE-452B-A084-1434FCF32991}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{03E50DAB-021B-41DA-9E90-AB107A7E61F0}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{05C10130-A64B-485E-A096-AA1309824586}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{0D6EAF26-633B-488C-985A-F99B74FF0C84}" = dir=out | name=@{microsoft.bingfinance_3.0.1.299_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{10AA1CCE-D735-4D72-8CF7-E7F223D86C38}" = dir=in | name=@{microsoft.windowsphotos_16.4.4388.928_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{174500F7-2771-4860-ADB8-302DFE646C3F}" = dir=out | name=windows_ie_ac_001 | "{19E645D4-979E-424C-8496-01A402BB1306}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{24F5A9A1-3BF4-4406-8D68-667860276757}" = dir=out | name=@{microsoft.xboxcompanion_1.2.160.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxcompanion/resources/33279} | "{27BCFA5C-88A2-45B4-BBB1-9C17D5B006DA}" = dir=out | name=wikipedia | "{2D00EA2D-B0C6-4411-9855-6448F1791E4C}" = dir=out | name=ling.pl | "{319B0895-8AF1-474F-BBDE-9B48B1E3C2B3}" = dir=out | name=@{microsoft.bingsports_2.0.0.310_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{3507997B-367D-4FF9-890B-53F938258BDC}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{35B5A9D1-4562-4D7B-AB00-F7B8656A380A}" = dir=out | name=dobreprogramy | "{3941938D-9C64-4EC5-8D0F-A7B893906D4F}" = dir=out | name=@{microsoft.bingmaps_2.0.2210.2401_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{39B9BBA1-1A3E-408E-8521-55ABF22D2A9F}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd10\powerdvd cinema\powerdvdcinema10.exe | "{39D5A5A9-8947-440E-9DD3-971A6BCF60F8}" = dir=out | name=google search | "{3A611814-80A6-4D66-9180-4DE6FDFAE250}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{3A875811-151A-4CB1-BA1C-FCEA5BAC533A}" = dir=out | name=s player | "{3F2E6FCA-AAAA-4E5C-BE85-A19B3C33A790}" = dir=out | name=windows_ie_ac_001 | "{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn | "{4802A24E-8EE3-4C93-8883-F38742265B2A}" = dir=in | name=juniper networks junos pulse | "{4C8A30A8-1A8F-481C-BE2B-9D4791258356}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9654.20349_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} | "{4F35B0CA-A4CD-4266-B9BE-520FC278DDA3}" = dir=out | name=s gallery | "{4FC88DED-48BE-4CF4-96B6-B6C857D8B30B}" = dir=out | name=@{microsoft.bingnews_2.0.0.308_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} | "{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect | "{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect | "{665AF77B-34DA-4D40-A51D-AD9594856C21}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{69600E50-8CC4-4348-AA12-D54EE00DB0E8}" = dir=in | name=@{microsoft.xboxcompanion_1.2.160.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxcompanion/resources/33279} | "{6BC6B9CD-DBB1-42AC-906E-72DE0921F91D}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{6D0C2FB6-5937-4451-B66D-2416947DC1FB}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{72AE7C65-5B20-4E71-A481-F7E826F9EA7D}" = dir=out | name=@{microsoft.bingnews_3.0.1.321_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/apptitle} | "{72BB7121-56E5-4376-8EB9-121DC63DF54F}" = dir=out | name=@{microsoft.zunemusic_1.5.177.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{7A9B8A23-8A38-4D04-A58D-83A09D56FC33}" = dir=out | name=@{microsoft.bingweather_2.0.0.310_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{7F2737BE-3F0E-49C2-86B9-E6FFDC095CF4}" = dir=out | name=windows_ie_ac_001 | "{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{89220E0B-AD56-4716-B0C5-727ED78A84A8}" = dir=out | name=@{microsoft.bingtravel_3.0.1.202_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{8F7B9EB1-FD34-4313-94C2-F2A082457B17}" = dir=out | name=sonicwall mobile connect | "{90CC0119-B3DF-4F1A-BDED-9A5FC6D8E95C}" = dir=out | name=@{microsoft.windowsphotos_16.4.4388.928_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{93AE4618-886A-4CE9-94E5-CC032BAE631C}" = dir=in | name=@{microsoft.reader_6.2.9200.20780_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{9D0AE719-1774-494C-804F-DABAB268C75D}" = dir=out | name=@{microsoft.reader_6.2.9200.20780_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{A4198D2E-2FB6-4CD8-956B-81BC3A79B2F2}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{A4FA2529-AABD-4C99-8A36-DAD0BACC74FC}" = dir=in | name=check point vpn | "{A5C43ED2-BC87-4FAF-95BE-7ED0EBB5C472}" = dir=out | name=juniper networks junos pulse | "{A6840C05-134F-4DDC-A02E-B949624D2849}" = dir=out | name=@{microsoft.bingfinance_2.0.0.308_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{A6FF3FFE-C826-4D43-A241-A01C75FD6535}" = dir=in | name=skype | "{A9462F29-5197-4ABD-BC2B-2D88EB60908A}" = dir=out | name=tvn player | "{AB014410-8A7E-4EBD-8E14-44ED2B05CB8E}" = dir=out | name=@{microsoft.bing_1.5.1.259_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{AC6177AC-350E-45A2-A7F7-F1E6F3C1C95D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{AD96ACF0-93BE-4199-B343-E2D3F7A43508}" = dir=out | name=f5 vpn | "{AFEF12CF-73E2-48EE-AB77-789BF4BCDB91}" = dir=in | name=dobreprogramy | "{AFFA2946-C398-4CA8-B436-BF3375CA0712}" = dir=out | name=skype | "{B7F26C74-6656-4A90-9E08-841174F9808B}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9654.20349_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} | "{B7F8FFCE-A04A-4E42-B2DB-7D4A681818DC}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{B8467262-3952-445F-A523-5E1518B02D93}" = dir=out | name=@{microsoft.zunemusic_2.2.339.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{C28EF5A4-B37A-4C9D-87B0-EF03A5925EA2}" = dir=out | name=check point vpn | "{CD000923-9DFA-4415-BDAE-E4266F90FBA0}" = dir=out | name=@{microsoft.bingmaps_1.6.1821.2624_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{CE11CF90-535E-4052-86E0-5A01CD0FD3D4}" = dir=out | name=@{microsoft.bingweather_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{D2480C71-B610-40F9-9CB5-26F684E617F2}" = dir=out | name=@{microsoft.zunevideo_1.5.177.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{D2892A37-2565-4583-AFE6-D516FA6F3D9E}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{D58C6CDC-2ACB-4714-AB65-8382CEA378E3}" = dir=out | name=@{microsoft.bingtravel_2.0.0.308_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn | "{D84D9C52-F15B-4DF0-AD76-C94EE1C8FF08}" = dir=out | name=photoeditor | "{DABB2A4C-AA09-498D-9541-B0DB52B949F2}" = dir=out | name=rmfon | "{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn | "{DBEB25F4-FA82-4534-974E-7690A3E618E3}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{DFD203F6-FE84-43F6-8102-F9C0F5A5A38C}" = dir=in | name=sonicwall mobile connect | "{E2BE966D-7589-4895-B9DF-81456BCFBA3F}" = dir=out | name=@{digitalchemyllc.calculatorfree_1.4.0.78_neutral__q7s52g45wnx0g?ms-resource://digitalchemyllc.calculatorfree/resources/freeappname} | "{E4E57667-C4BA-4B13-8759-E54AD44F17B9}" = dir=in | app=c:\users\grażyna\appdata\local\microsoft\skydrive\skydrive.exe | "{E57B2757-5CEC-4345-AC43-607808263A34}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{E8F02728-B2DD-40C5-95C7-1ABC4BBDEA1A}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd10\powerdvd10.exe | "{EBBAE26A-07A5-4EF9-B5B9-3A2E0D0A86D0}" = dir=in | name=tvn player | "{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn | "{ECD6FBAF-0535-4E5A-B671-210EA7FA54FC}" = dir=out | name=@{microsoft.xboxlivegames_1.3.10.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{F4679374-492A-46C0-BA94-FB8EE4AEF074}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4388.928_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} | "{F5D5096C-1DB6-440D-8511-D73E755B6BC3}" = dir=out | name=@{microsoft.zunevideo_2.2.338.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client | "{F6996D47-F323-4B68-8374-7A2FA43B5764}" = dir=out | name=ipla | "{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client | "{FA5A6844-66C5-4684-BBBD-E89706C65B20}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{FC054494-5FBF-4322-AF71-3982E680A086}" = dir=in | name=f5 vpn | "{FD6CEFC4-3F8E-45B9-9573-19D034747438}" = dir=out | name=s camera | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{409CB30E-E457-4008-9B1A-ED1B9EA21140}" = Intel(R) Rapid Storage Technology "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{843A1BDC-0879-4E5B-83E1-B81CC0CF3580}" = Support Center "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{93F692D4-0C4D-4EED-9BFE-657C1D5959FE}" = Intel(R) Rapid Storage Technology "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{A84A4FB1-D703-48DB-89E0-68B6499D2801}" = Qualcomm Atheros Bluetooth Suite (64) "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 331.82 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 331.82 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 1.8 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus Update 10.10.5 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.13.0725 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 10.10.5 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamC" = GeForce Experience NvStream Client Components "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 10.10.5 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.12 "{B5E06417-A4AC-4225-B36E-7E34C91616E7}" = Intel® Trusted Connect Service Client "{CFEA455B-E368-45B2-A01E-1C3A6C0F06B6}" = S Agent "{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64 "{EC36E2BC-86F7-44C9-84B2-93930F0FBDBF}" = Quick Starter "9F04C462DAB591BDCCE784F77E4D4F1736010B92" = Windows Driver Package - Samsung Electronics Co. Ltd. (RadioHIDMini) HIDClass (07/27/2012 20.57.1.735) "CCleaner" = CCleaner "Elantech" = ETDWare X64 11.7.18.2_WHQL [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{011B5F12-F1CB-4C14-A99E-62C55831D78A}" = OpenOffice.ux.pl 3.4 "{021C6667-63D3-4416-B537-865E77F4DF4F}" = avast! Ad Blocker "{0454BB9A-2A7A-4214-BDFF-937F7A711A44}" = Windows Live Communications Platform "{0EC7F9CC-4741-45AE-9F55-6E9343F726F5}" = Intel(R) Manageability Engine Firmware Recovery Agent "{105CFC7C-6992-11D5-BD9D-000102C10FD8}" = Lizardtech DjVu Control "{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}" = Recovery "{18272881-CFC0-434D-A975-E5BE44206AA0}" = Windows Live UX Platform Language Pack "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Qualcomm Atheros Client Installation Program "{2A078A2B-E2C8-43A3-862C-DC57090AB7C2}" = Movie Maker "{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}" = CyberLink Power2Go 8 "{30F99474-EBE3-4134-A02B-F6CD38CFE243}" = Photo Gallery "{446CC8CE-0E90-44F7-ADD0-774B243EF090}" = Galerie de photos "{4AA2A466-8031-403A-8236-5301B4E391FB}" = Windows Live UX Platform Language Pack "{4CCBD1F4-CEEC-452A-9CB8-46564B501315}" = Windows Live UX Platform "{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.6 "{52E5DE60-C96B-42CC-9A37-FE04725940AE}" = Settings "{56D4499E-AC3E-4B8D-91C9-C700C148C44B}" = Google Drive "{5BABDA39-61CF-41EE-992D-4054B6649A9B}" = Movie Maker "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{6A8DB215-7BCD-4377-B015-2E4541A3E7C6}" = Windows Live PIMT Platform "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{743FD554-A73F-4FE8-BE7B-C283D16297F9}" = Photo Common "{7595CAD2-87D0-4D01-AC02-3FDD3A891BB8}" = Galeria fotografii "{7B5AA67E-FEA0-40BB-BAB5-CA56645A589C}" = NVIDIA PhysX "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{8A642ACD-CE3A-4A23-A8B1-A0F7EB12B214}" = Windows Live SOXE Definitions "{8D813AFF-D91D-4EE0-821F-B901FC2E89FA}" = Windows Live "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110 "{90850415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Word Viewer 2003 "{90993BD9-C7D9-4C2F-B56C-2F7AFEBD4CD0}" = Windows Live UX Platform Language Pack "{91786428-D4AA-476D-8AF9-A63FFAC2901F}" = Allshare Play Link "{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A17946CA-18E5-4CF0-8D55-A56D804718F8}" = Movie Maker "{A7E73DE5-E5FD-4923-9D88-E09ECD1F3545}" = Podstawowe programy Windows Live "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AA82E5EF-70C2-41CB-8432-309078304CBB}" = Photo Common "{AC76BA86-7AD7-FFFF-7B44-AA0000000001}" = Adobe Reader X (10.1.8) MUI "{AE8044B5-FCA3-4EBE-AC78-0FB3A6E8DC76}" = Movie Maker "{B7F31B9C-8775-4500-8E9D-6ABE9AE17CF4}" = Windows Live Essentials "{C034A6F9-6569-491B-B3BF-F5D15221A708}" = Windows Live Essentials "{C424CD5E-EA05-4D3E-B5DA-F9F149E1D3AC}" = Windows Live Installer "{C9B6EFD0-4F01-4BBA-8374-39AD99A3ED72}" = Windows Live Photo Common "{CE1836A8-3F2B-49BD-8395-93DD414068D2}" = AllSharePlayLink "{D888F114-7537-4D48-AF03-5DA9C82D7540}" = Photo Common "{DA06101F-FD76-4BF0-88BD-B26A197005E3}" = SW Update "{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD 10 "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E653AB36-18D7-4FB3-BDAF-024283971050}" = Support Center FAQ "{ED6C77F9-4D7E-447C-9EC0-9A212D075535}" = Movie Maker "{F09DD76B-D3D3-4558-B5BC-F1EEA6E00162}" = Windows Live UX Platform Language Pack "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F54030F3-14B6-432D-9361-78DCB1473920}" = Photo Common "{F67CA22C-C11F-4573-8406-57F75BA06B51}" = Photo Gallery "{FC6C7107-7D72-41A1-A031-3CE751159BAB}" = Photo Gallery "{FCB3772C-B7D0-4933-B1A9-3707EBACC573}" = Intel(R) SDK for OpenCL - CPU Only Runtime Package "{FE7C0B3D-50B9-4951-BE78-A321CBF86552}" = Windows Live SOXE "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "avast" = avast! Free Antivirus "Emsisoft HiJackFree_is1" = Emsisoft HiJackFree 4.5 "InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}" = CyberLink Power2Go 8 "InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD 10 "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.75.0.1300 "WinLiveSuite" = Podstawowe programy Windows Live [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2568246086-2447926606-4193830083-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "SkyDriveSetup.exe" = Microsoft SkyDrive [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-11-24 08:41:26 | Computer Name = komputerMorusek | Source = VSS | ID = 8194 Description = Error - 2013-11-24 09:02:04 | Computer Name = komputerMorusek | Source = VSS | ID = 8194 Description = Error - 2013-11-24 11:45:07 | Computer Name = komputerMorusek | Source = Microsoft-Windows-LocationProvider | ID = 2006 Description = Error - 2013-11-24 13:17:23 | Computer Name = komputerMorusek | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: SWMAgent.exe, wersja: 2.1.21.0, sygnatura czasowa: 0x526518c7 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.3.9600.16408, sygnatura czasowa: 0x523d45fa Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0001e12c Identyfikator procesu powodującego błąd: 0xd40 Godzina uruchomienia aplikacji powodującej błąd: 0x01cee92c517e8c91 Ścieżka aplikacji powodującej błąd: C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe Ścieżka modułu powodującego błąd: C:\WINDOWS\SYSTEM32\ntdll.dll Identyfikator raportu: 480e1e62-552c-11e3-bf31-20689d5296e7 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error - 2013-12-02 13:49:13 | Computer Name = komputerMorusek | Source = ESENT | ID = 455 Description = SettingSyncHost (1140) {63A0F56A-9E9D-4EAE-BBCC-04496E0F31E9}: Wystąpił błąd -1811 (0xfffff8ed) podczas otwierania pliku dziennika C:\Users\Grażyna\AppData\Local\Microsoft\Windows\SettingSync\metastore\edb00014.log. Error - 2013-12-02 13:49:14 | Computer Name = komputerMorusek | Source = ESENT | ID = 455 Description = SettingSyncHost (1140) {84E828FA-02F0-4470-A40D-499946B1B1FF}: Wystąpił błąd -1811 (0xfffff8ed) podczas otwierania pliku dziennika C:\Users\Grażyna\AppData\Local\Microsoft\Windows\SettingSync\remotemetastore\v1\edb0000A.log. Error - 2013-12-03 16:07:47 | Computer Name = komputerMorusek | Source = VSS | ID = 8194 Description = Error - 2013-12-04 13:12:55 | Computer Name = komputerMorusek | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: iexplore.exe, wersja: 11.0.9600.16384, sygnatura czasowa: 0x5215d145 Nazwa modułu powodującego błąd: RPCRT4.dll, wersja: 6.3.9600.16384, sygnatura czasowa: 0x5215e50e Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000011d29 Identyfikator procesu powodującego błąd: 0x12b8 Godzina uruchomienia aplikacji powodującej błąd: 0x01cef1128f56c05a Ścieżka aplikacji powodującej błąd: C:\Program Files\Internet Explorer\iexplore.exe Ścieżka modułu powodującego błąd: C:\WINDOWS\system32\RPCRT4.dll Identyfikator raportu: 500efc12-5d07-11e3-bf4e-20689d5296e7 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error - 2013-12-04 14:20:33 | Computer Name = komputerMorusek | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: Explorer.EXE, wersja: 6.3.9600.16441, sygnatura czasowa: 0x5265dec8 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.3.9600.16408, sygnatura czasowa: 0x523d557d Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000000000002fb46 Identyfikator procesu powodującego błąd: 0x174 Godzina uruchomienia aplikacji powodującej błąd: 0x01cef1126cb866c1 Ścieżka aplikacji powodującej błąd: C:\WINDOWS\Explorer.EXE Ścieżka modułu powodującego błąd: C:\WINDOWS\system32\KERNELBASE.dll Identyfikator raportu: c3078eab-5d10-11e3-bf4e-20689d5296e7 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error - 2013-12-04 14:22:17 | Computer Name = komputerMorusek | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: explorer.exe, wersja: 6.3.9600.16441, sygnatura czasowa: 0x5265dec8 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.3.9600.16408, sygnatura czasowa: 0x523d557d Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000000000002fb46 Identyfikator procesu powodującego błąd: 0xf78 Godzina uruchomienia aplikacji powodującej błąd: 0x01cef11d99b05647 Ścieżka aplikacji powodującej błąd: C:\WINDOWS\explorer.exe Ścieżka modułu powodującego błąd: C:\WINDOWS\system32\KERNELBASE.dll Identyfikator raportu: 0138a9a2-5d11-11e3-bf4e-20689d5296e7 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: [ System Events ] Error - 2013-12-08 14:20:38 | Computer Name = komputerMorusek | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi NVIDIA Update Service Daemon z powodu następującego błędu: %%1069 Error - 2013-12-08 14:21:11 | Computer Name = komputerMorusek | Source = DCOM | ID = 10016 Description = Error - 2013-12-08 15:21:23 | Computer Name = komputerMorusek | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20 Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x80070103: Intel Corporation driver update for Intel(R) HD Graphics. Error - 2013-12-08 15:40:33 | Computer Name = komputerMorusek | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20 Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x80070103: Intel Corporation driver update for Intel(R) HD Graphics. Error - 2013-12-08 15:53:01 | Computer Name = komputerMorusek | Source = Service Control Manager | ID = 7023 Description = Usługa Wstępne ładowanie do pamięci zakończyła działanie; wystąpił następujący błąd: %%1062 Error - 2013-12-09 12:38:00 | Computer Name = komputerMorusek | Source = Service Control Manager | ID = 7038 Description = Usługa nvUpdatusService nie może zalogować się jako .\UpdatusUser za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu: %%1326 Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC). Error - 2013-12-09 12:38:00 | Computer Name = komputerMorusek | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi NVIDIA Update Service Daemon z powodu następującego błędu: %%1069 Error - 2013-12-09 12:41:22 | Computer Name = komputerMorusek | Source = DCOM | ID = 10016 Description = Error - 2013-12-09 14:27:59 | Computer Name = komputerMorusek | Source = Service Control Manager | ID = 7038 Description = Usługa nvUpdatusService nie może zalogować się jako .\UpdatusUser za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu: %%1326 Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC). Error - 2013-12-09 14:27:59 | Computer Name = komputerMorusek | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi NVIDIA Update Service Daemon z powodu następującego błędu: %%1069 < End of report >