OTL Extras logfile created on: 2014-01-20 18:17:57 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Duda\Downloads 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16750) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 5,89 Gb Total Physical Memory | 3,81 Gb Available Physical Memory | 64,71% Memory free 6,83 Gb Paging File | 4,66 Gb Available in Paging File | 68,20% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 914,04 Gb Total Space | 729,91 Gb Free Space | 79,86% Space Free | Partition Type: NTFS Drive D: | 16,70 Gb Total Space | 2,16 Gb Free Space | 12,91% Space Free | Partition Type: NTFS Drive G: | 1,07 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Computer Name: DUD | User Name: Duda | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2435897020-3182320802-3336853129-1001\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = CE 37 E6 AF FF 6A CD 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0D1FD0FC-8D01-4E85-88E0-9A23EDB1BA96}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{0D3FE95A-820A-4321-B1D3-E67604063ECC}" = lport=137 | protocol=17 | dir=in | app=system | "{133CF082-A3A6-4A9F-9B03-29824F744663}" = rport=10243 | protocol=6 | dir=out | app=system | "{16CDDA72-F3FE-414D-B2A9-BB7967D49EC1}" = rport=445 | protocol=6 | dir=out | app=system | "{18D0368A-BB39-46D8-ACC1-6544264B3D7D}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{286D137B-1ED5-46BD-A5B4-2A382C2E8BD5}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{2C573E47-7758-432D-8441-6CA4E82075F4}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{2D581106-C45B-41A5-9AB7-6C85AD38D0AA}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{2D75950C-152D-4779-B893-C5C4A2D2F380}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{3EB5AA69-09D3-4470-B220-028186075DCB}" = lport=2869 | protocol=6 | dir=in | app=system | "{3F0FA7E0-CCA8-4A39-B620-0F0DC458D5BB}" = rport=2869 | protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{4BE94C86-863D-47E8-8661-0BA6BE56001A}" = rport=139 | protocol=6 | dir=out | app=system | "{506621F5-8969-404A-8728-B8F3192C8E2A}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{61EA866A-01CC-4AAB-ABB3-FCDF3A4F4F02}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{7D421AD9-CD22-4EC6-8B88-FD6E23A9DCA5}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{7E319668-7940-43DB-B2EB-F0895E0BF90A}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{7EC025E3-6749-45B1-B420-ACF5B980F36E}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{8809D8C7-CB18-4A85-8BEB-D8A3C17B24A9}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{88600DAF-C270-4576-8B09-E8BE7DE5B8D0}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{8EBA8379-5AC4-4311-A413-56474DA36ADF}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{9B901217-9B9B-4174-9690-EC008A42FE77}" = lport=139 | protocol=6 | dir=in | app=system | "{9D563211-A3FF-4CE9-A058-DDE724B045B6}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{A0F967EE-3234-4618-8BB2-433F2D5DA257}" = lport=138 | protocol=17 | dir=in | app=system | "{A1AE86C3-28E9-4224-8B1F-113A9CB9B1B3}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{A5CF1EA4-C159-4324-BA69-246615C5F045}" = lport=53000 | protocol=6 | dir=in | name=hpconnectedremoteservice.exe | "{BAB10CF2-5BFC-4BD6-9AE3-0828F1F83969}" = lport=10243 | protocol=6 | dir=in | app=system | "{C957BF90-4C16-4286-9CE5-1BC3209BDFE5}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{CADB79AB-5A35-4010-8D79-C766D4C993CF}" = lport=52000 | protocol=6 | dir=in | name=hpconnectedremoteuser.exe | "{CE367F97-58CC-41D5-8354-48A726DE96AD}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{D10A431B-149E-4B7A-87DB-9E7777AC9262}" = rport=138 | protocol=17 | dir=out | app=system | "{D5D287CA-7556-44B9-92B2-8135A7C58C30}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{D5FBA8EA-5FBA-454E-A2E7-FF4705E374FB}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{D8C80E12-AB4C-4ECA-8D20-8F0A35308084}" = rport=137 | protocol=17 | dir=out | app=system | "{E51A8A5F-F9F8-4B06-8F31-1D851D74A6EF}" = lport=445 | protocol=6 | dir=in | app=system | "{EEDD0E54-977A-4B08-BF33-49EE95A876B2}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{EF1536B5-C5DC-4F0E-B1CD-AE62FF44FCD9}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\dashost.exe | "{F9D9193D-EF0B-49A2-8656-D62C8153E1E2}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{02945F16-71C7-4684-9BD6-2B87D296BC33}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{05C246E6-B1A0-4381-B9AD-55F0D9355100}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\samsung pc share manager\wiselinkpro.exe | "{0C457BE0-1E45-4173-9A4D-BE0ABCBF6FEF}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{0EB1F442-1387-4C24-9B21-09489961914A}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{124DEA2C-4051-4D8A-A7D4-46B1845B63BC}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{164C4884-F002-4B3B-89FA-92332A471F3E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{16D6D51E-3675-4F46-A8D8-F26D73C4881B}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} | "{1866718D-E6CB-4958-98A3-6280BFCFEC29}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{1A78730E-416A-4665-914A-0D148624BAB6}" = dir=in | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{1E028957-234B-4D64-B08B-D841CE1B990A}" = dir=out | name=skype | "{1E51C969-E977-4FCE-9C56-B937A7E353A9}" = dir=in | name=kindle | "{1F6482B7-C3DE-41FB-8E15-19FEC05A5E73}" = dir=out | name=getting started with windows 8 | "{20FCBF32-A1F8-47FF-950C-0EFEB85C2B3E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{26BB7EE0-8EAE-42F7-B370-EC65C5CEE994}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{2746C8CF-E79A-4474-BE5C-F9FC0E95A79D}" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "{30A9001B-743A-450B-A2A2-BE1E97AB8E6B}" = dir=out | name=@{microsoft.zunevideo_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} | "{32EDC5AC-C1A3-4AA4-82D0-8596BEC9F96E}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\samsung pc share manager\http_ss_win_pro.exe | "{34B06D84-FD48-4E29-97E5-F2A37A3C3772}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{35F61962-508E-4211-9E0B-B54067C88B21}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{371F668D-030A-45A9-903B-BC073DEE3F4E}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{3AFCD7B5-76E5-4947-8847-2DDA74160056}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | "{3B149B1E-F5F3-4045-8FDF-72A82EE449B9}" = protocol=6 | dir=in | app=c:\program files (x86)\ralink corporation\ralink bluetooth stack\bluesoleilcs.exe | "{40EAF403-D35D-489A-BF20-8F574D80F3BF}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{477814EC-6513-4949-8DF2-A8A4A271C71C}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{4B4CF6E2-2FED-4E48-88AA-EABD0706CE2D}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\samsung pc share manager\wiselinkpro.exe | "{4B8B3B58-25E5-485B-B003-B9BD97BDB719}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{4E34502A-D825-43A8-BCA1-43379B96EF28}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{51B1B655-F390-4A10-BB74-357E5A6DE3F3}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{55A195A0-E968-40FB-9889-652010DEDA80}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd10\powerdvd10.exe | "{566913F0-D7DB-4858-9049-7554CF2CC0ED}" = protocol=6 | dir=in | app=c:\program files (x86)\ralink corporation\ralink bluetooth stack\bluesoleilcs.exe | "{5B06B014-BE87-4835-9AEB-536127169322}" = protocol=6 | dir=in | app=c:\program files (x86)\ea games\battlefield 2\bf2.exe | "{69A6F6E2-CB59-4C6F-8099-7C09244BA7B0}" = dir=out | name=windows_ie_ac_001 | "{6C4C0577-BB73-47F4-81E1-BA39D2A24AAD}" = dir=in | app=c:\program files (x86)\cyberlink\powerdirector10\pdr10.exe | "{71F21236-9FE8-417D-B3F8-93DEAC729D7D}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.524\agent.exe | "{7534428D-9BA5-4FA7-BF30-3EFE5354C3D5}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{77E88D39-19DF-4EAF-BC42-8BC1C26FCD02}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{79CD85A5-0C83-44BC-BC46-D51C0F29577E}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{7D514CB6-5CE4-41F8-8ACE-99AAEC9C69AD}" = protocol=17 | dir=in | app=c:\program files (x86)\ralink corporation\ralink bluetooth stack\bluesoleilcs.exe | "{7DE966DF-B894-4ABC-A1ED-BAA8FDF8D0ED}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{82C07A3E-2BCC-46D1-AC27-549F83BF9956}" = dir=in | app=c:\program files (x86)\hewlett-packard\hp support framework\resources\hpwarrantycheck\hpdevicedetection3.exe | "{8332744E-F0B8-4333-862C-26CCC4A322C9}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\samsung pc share manager\http_ss_win_pro.exe | "{8600FDD5-1069-4B0A-94FE-FD26E1B8A40F}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{8B5C2826-2652-4EE2-9598-E5FC90C990BB}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{9009BECD-AA86-4AE5-B071-C23C43A95336}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{958B6DD9-A594-4481-9673-F4365C1A2ADC}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.524\agent.exe | "{965E3DC6-89CC-44CD-9994-0E0ABDFDB4A1}" = dir=in | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{98C902BF-AE79-47B0-8E81-15B95FA0DF27}" = dir=out | name=@{microsoft.xboxlivegames_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{A96AE3E0-7AEB-4209-B5A7-CA693F760356}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{ACB0D9EE-A8CD-4D12-BB87-FEADC592143B}" = protocol=17 | dir=in | app=c:\program files (x86)\ralink corporation\ralink bluetooth stack\bluesoleilcs.exe | "{AEB93ADA-3AAD-4E58-85B4-16F7095EC3DB}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{B734E7A0-66E5-468C-ABCE-1CD9D76EC70F}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "{BB7BF5BB-4D09-4723-B027-B5FFD68CCBB4}" = dir=out | name=@{12199asparion.asparionclock_2.1.2.20_neutral__f89vgcf3qm37t?ms-resource://12199asparion.asparionclock/resources/sstorename} | "{BE80F010-1744-4499-99D7-9158F902168A}" = dir=in | app=c:\program files (x86)\hpconnectedmusic\hpconnectedmusic.exe | "{BFBB00AC-857A-44B8-9E1F-3E3312354554}" = protocol=17 | dir=in | name=hpconnectedremoteservice.exe | "{C12BD06E-5451-4578-8051-C49F8F8A7286}" = dir=in | name=skype | "{CEBD78F8-455A-43BB-8008-0CDD27DD262B}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{CFFBE7F7-60BB-4FA4-AEEA-03F3C4A245C6}" = protocol=17 | dir=in | app=c:\users\duda\appdata\roaming\utorrent\utorrent.exe | "{D2919BA1-4FCF-4709-8AC3-A160F0FCF994}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{D4828C39-138D-419F-A6FF-9B47A9DA1569}" = dir=out | name=@{microsoft.zunemusic_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} | "{D6CDABBA-0BF5-49CD-BE99-2E7D9DCDEE2E}" = protocol=17 | dir=in | app=c:\program files (x86)\ea games\battlefield 2\bf2.exe | "{D74D4B41-40F0-48CB-8328-6AD09D1E03EC}" = dir=out | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{D7BC66AC-E327-460F-BBB3-CC1E552C2869}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{D9CC594E-9643-442B-A3A4-AED85416E9D0}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{DA4701B8-B948-43AD-9BEC-2D6BCE776B8A}" = dir=out | name=kindle | "{DBC8B731-B695-4452-B8CF-9C3537DFE64A}" = dir=in | app=c:\users\duda\appdata\local\microsoft\skydrive\skydrive.exe | "{DDD3613F-881C-4128-979D-89AE2DF7AC17}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{E05E4295-5362-4A66-9380-FA52B6220714}" = dir=out | app=c:\program files (x86)\hpconnectedmusic\hpconnectedmusic.exe | "{E1554C47-52F7-4999-9047-48D510873960}" = dir=out | name=@{microsoft.bingmaps_1.2.0.136_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{E46A08B6-3E30-427B-B6EA-C727C5D3DA80}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{E4A0BFBD-9A5D-4EE4-A2FA-DAA5441BC848}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{E7224157-0417-48AF-A1C9-70CA0204B890}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | "{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{E7F979B8-26BA-43ED-B721-E968226A2C94}" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "{EC42C402-BD4F-4245-AD4F-D403EDCC0854}" = protocol=6 | dir=out | app=system | "{EF7ADCF7-8571-4ACF-B572-0D4A0BF800F8}" = dir=out | name=openfm | "{F3DF2F63-C880-4F0F-A403-5CB445ABFFAB}" = dir=out | name=norton studio | "{F613AE77-93E3-4007-80C7-008EE03A9EF5}" = dir=out | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{F6804482-468E-47E3-A586-57EE3F1CA9E7}" = dir=out | name=hp registration | "{F68A79ED-44E7-444B-874E-3A4B3281953A}" = protocol=6 | dir=in | app=c:\users\duda\appdata\roaming\utorrent\utorrent.exe | "{FCF46AB0-3E76-4E84-A5D2-DC41FFC15CA1}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{FDD698AF-BD01-49AD-9EF1-B948913537BF}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe | "TCP Query User{21757D0E-C115-4DBA-9335-CBE47DA83F7E}C:\program files (x86)\ea games\need for speed most wanted\nfs13.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ea games\need for speed most wanted\nfs13.exe | "TCP Query User{29056062-5879-4611-A1D5-712495F1B009}C:\program files (x86)\worms revolution\wormsrevolution.exe" = protocol=6 | dir=in | app=c:\program files (x86)\worms revolution\wormsrevolution.exe | "TCP Query User{DB33C91A-3BEE-4560-A413-97B831E4806D}C:\windows\syswow64\svchost.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\svchost.exe | "TCP Query User{E58A2DA5-F62D-446D-B20B-E35480C6BE65}C:\windows\syswow64\svchost.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\svchost.exe | "UDP Query User{3EA18976-48B7-4708-BCDC-75C7283D3A26}C:\program files (x86)\ea games\need for speed most wanted\nfs13.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ea games\need for speed most wanted\nfs13.exe | "UDP Query User{40A883FE-0F90-4FFF-8C5F-BC28DDCF157A}C:\windows\syswow64\svchost.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\svchost.exe | "UDP Query User{47B29980-C18E-4041-B592-88C13329B33F}C:\windows\syswow64\svchost.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\svchost.exe | "UDP Query User{7D495A08-35BC-44A6-8377-A54FA261EC6F}C:\program files (x86)\worms revolution\wormsrevolution.exe" = protocol=17 | dir=in | app=c:\program files (x86)\worms revolution\wormsrevolution.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{07EEE598-5F21-4B57-B40B-46592625B3D9}" = Zune Language Pack (PTB) "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{2A9DFFD8-4E09-4B91-B957-454805B0D7C4}" = Zune Language Pack (CHS) "{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 "{3589A659-F732-4E65-A89A-5438C332E59D}" = Zune Language Pack (ELL) "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime "{51C839E1-2BE4-4E77-A1BA-CCEA5DAFA741}" = Zune Language Pack (KOR) "{57C51D56-B287-4C11-9192-EC3C46EF76A4}" = Zune Language Pack (RUS) "{5C93E291-A1CC-4E51-85C6-E194209FCDB4}" = Zune Language Pack (PTG) "{5DEFD397-4012-46C3-B6DA-E8013E660772}" = Zune Language Pack (NOR) "{5EEC477F-8E9B-4420-8829-16E7426227DB}" = Windows Live MIME IFilter "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}" = Centrum obsługi urządzeń z systemem Windows Mobile "{6740BCB0-5863-47F4-80F4-44F394DE4FE2}" = Zune Language Pack (NLD) "{6A45B778-45BB-8645-79F9-521331ABCE28}" = ccc-utility64 "{6B33492E-FBBC-4EC3-8738-09E16E395A10}" = Zune Language Pack (ESP) "{6E14E6D6-3175-4E1A-B934-CAB5A86367CD}" = HP Postscript Converter "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour "{6EB931CD-A7DA-4A44-B74A-89C8EB50086F}" = Zune Language Pack (SVE) "{76BA306B-2AA0-47C0-AB6B-F313AB56C136}" = Zune Language Pack (MSL) "{8960A0A1-BB5A-479E-92CF-65AB9D684B43}" = Zune Language Pack (PLK) "{8B112338-2B08-4851-AF84-E7CAD74CEB32}" = Zune Language Pack (DAN) "{8D6CCB94-05E3-753A-5ED7-97495EA8AEFF}" = AMD Catalyst Install Manager "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007 "{92ECE3F9-591E-4C12-8A62-B9FCE38BF646}" = Zune Language Pack (IND) "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{95DF815D-BE2D-9118-F549-39794C5869CF}" = Ralink Bluetooth Stack64 "{9B75648B-6C30-4A0D-9DE6-0D09D20AF5A5}" = Zune "{9F92182D-24EB-4A4E-A318-E3E8011EF638}" = HP 3D DriveGuard "{A5A53EA8-A11E-49F0-BDF5-AE536426A31A}" = Zune Language Pack (CHT) "{A8F2E50B-86E2-4D96-9BD2-9758BCC6F9B3}" = Zune Language Pack (CSY) "{B4870774-5F3A-46D9-9DFE-06FB5599E26B}" = Zune Language Pack (FIN) "{BE236D9A-52EC-4A17-82DA-84B5EAD31E3E}" = Zune Language Pack (DEU) "{C2E428EB-116E-41C0-9E84-B22DE9CCA42F}" = HP Registration Service "{C5D37FFA-7483-410B-982B-91E93FD3B7DA}" = Zune Language Pack (ITA) "{C68D33B1-0204-4EBE-BC45-A6E432B1D13A}" = Zune Language Pack (FRA) "{C6BE19C6-B102-4038-B2A6-1C313872DBB4}" = Zune Language Pack (HUN) "{D8A781C9-3892-4E2E-9320-480CF896CFBB}" = Zune Language Pack (JPN) "{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64 "{F2CB8C3C-9C9E-4FAB-9067-655601C5F748}" = Windows Mobile Device Updater Component "{F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}" = Intel® Trusted Connect Service Client "CCleaner" = CCleaner "Software Informer_is1" = Software Informer 1.2 "SynTPDeinstKey" = Synaptics Pointing Device Driver "WinRAR archiver" = WinRAR 5.01 (64-bitowy) "Zune" = Zune [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00DF205D-287B-BCCA-2FC1-DB45E0DFD1CC}" = CCC Help Italian "{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam "{03D562B5-C4E2-4846-A920-33178788BE00}" = Windows Live Communications Platform "{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements "{0A088391-15A6-91A1-66D7-B814CC5A334C}" = Catalyst Control Center Graphics Previews Common "{0C57987A-A03A-4B95-A309-D23F78F406CA}" = HP Utility Center "{0F929651-F516-4956-90F2-FFBD2CD5D30E}" = Photo Gallery "{0FF9CC94-EF23-401E-BDBD-37403D1A2B38}" = Windows Live SOXE Definitions "{10640F6D-6AB0-401E-9FC6-A94D19C580BC}" = Windows Live UX Platform Language Pack "{12E478F1-50A2-5D15-CB7F-28ABE62D1C42}" = CCC Help Danish "{137EA7E1-D30B-4373-B8B6-CB7E85107F6D}" = Angry Birds Rio "{1408EF8E-CED6-CCF2-DEAC-F4584A34EEAC}" = CCC Help German "{147FBA18-A6BB-4AD5-8F0A-37380AAABD76}" = Photo Common "{19C74FB9-4029-E4AF-775E-3C169140CADA}" = CCC Help Japanese "{19F1FC6F-4559-3B0E-6B15-7F82179A88CF}" = CCC Help Swedish "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}" = CyberLink Media Suite 10 "{2020C08E-74F5-4E9F-BD2A-41F8CB6EBA10}" = Photo Gallery "{207DA277-6A6D-4863-B535-129931D2BB21}" = Galeria fotografii "{21CAC7EE-7BA4-41F2-A8DB-10318BC7E2E0}" = Catalyst Control Center Profiles Mobile "{23C74C03-680C-455D-933F-5BC8683CAE52}" = HP Documentation "{26A24AE4-039D-4CA4-87B4-2F83217045FF}" = Java 7 Update 45 "{2953E0FB-EA12-188F-A61E-558A1AF97245}" = CCC Help Korean "{2A2E822B-3B0E-46C1-9E3B-ACD7D1E95139}" = SAMSUNG PC Share Manager "{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}" = CyberLink Power2Go 8 "{2F2363F9-102C-448B-8E3E-02FCFE78A28D}" = Movie Maker "{30B2D1D8-0A07-4B71-9553-0710C5D31E35}" = HP Wireless Button Driver "{33CE296F-48FE-5B04-42DD-6037919DF660}" = PX Profile Update "{379DA4C6-8C91-4F36-9D25-F08E8959E0DF}" = Poczta usługi Windows Live "{3BD8FD6A-D36D-45D9-BB5C-CD39404C222F}" = Windows Live Writer Resources "{3C5F91EF-5C0B-4D13-BCBE-0FC6FC3ED7F9}" = Movie Maker "{3D08FD96-A00F-2636-E51F-465A41A7AEAD}" = CCC Help Russian "{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology "{45898170-E68C-4F02-AA35-C2186BF347A3}" = Movie Maker "{46037DC7-F927-46DF-935F-D6F122BDD34B}_is1" = Connected Music powered by Universal Music Group version 1.0 "{46BC55A2-B4CE-46B5-8303-A2076B899505}" = Windows Live UX Platform Language Pack "{4803C5DA-BD95-8479-DB8F-5FE58605869F}" = CCC Help Chinese Standard "{4862344A-A39C-4897-ACD4-A1BED5163C5A}" = CyberLink PhotoDirector "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4DAC6738-66E3-F725-F249-6A651A351CDD}" = CCC Help Finnish "{4F4A4FBF-133D-460E-8617-6D48E0A2B4E4}" = Windows Live Writer Resources "{502A9D24-825F-7BB4-3E34-58C071294773}" = CCC Help Spanish "{50B2837E-0D2F-F378-490F-622029D4D3DB}" = CCC Help Chinese Traditional "{525CECD0-42CE-C994-D855-710458E182DB}" = CCC Help Polish "{528AB81B-D65A-4AB0-A2B6-82B51A087D01}" = HP Recovery Manager "{54759E74-608F-B4F9-2E05-86D6459DBE9F}" = CCC Help Turkish "{58DB269F-182E-47BA-17AD-5A4D25A89334}" = CCC Help Czech "{59F8C5AA-91BD-423D-BF05-09A80F39898F}" = HP CoolSense "{5A0EE0F0-E909-4F3B-B437-AAD9252427CB}" = Windows Live Installer "{5E3B9D1D-378E-5E3B-3EB4-87C66125C65C}" = Catalyst Control Center Localization All "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{6B6923B9-8719-425B-916C-CD2908F31AAF}" = Windows Live SOXE "{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.2.1.1 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{71B77032-C7EE-7D1B-79FE-956F00D71DC4}" = CCC Help English "{7FD5FF52-25E5-4B71-8426-329343436850}" = Catalyst Control Center InstallProxy "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{83BC9783-F6F8-83ED-104A-6A18528CCA4D}" = CCC Help Portuguese "{87003B8C-BE57-7F40-E05E-BDB826C492A5}" = CCC Help French "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8BC85D25-AF2D-40DA-BD04-016B64D384BF}" = Windows Live Mail "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110 "{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}" = Ralink RT3290 802.11bgn Wi-Fi Adapter "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002A-0415-1000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{925652DC-D377-41CC-B97E-B0979B4F534D}" = Catalyst Control Center - Branding "{936D4074-6A57-45ED-AF5A-F7CF5A56DE6F}" = Windows Live Essentials "{949F066E-C0FA-C58E-A3C5-B5EB5DC02F73}" = Catalyst Control Center "{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A0D3A9D4-1CD8-22D3-113D-2FF4D00DCB26}" = CCC Help Greek "{AC76BA86-7AD7-1045-7B44-A95000000001}" = Adobe Reader 9.5.5 - Polish "{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}" = CyberLink PowerDirector 10 "{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader "{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint "{C5A437E4-ED71-454A-6EBA-73BC77B014E4}" = CCC Help Thai "{C6B0EE9E-2128-4448-B7AE-5E2B46E0F0E7}" = Windows Live Photo Common "{C7C6FD1F-14C4-E66D-78C2-A9EE925A990D}" = CCC Help Norwegian "{CFA449A8-2938-922D-0B76-FB624E1C5C3B}" = CCC Help Hungarian "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64 "{D604900F-A275-416C-AF9D-CDEDF58B72DB}" = Windows Live Mail "{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E17CBB63-D086-1357-4F32-6BE59FD23586}" = CCC Help Dutch "{E3445598-4424-4EE2-B71C-C23325F7FB71}" = Windows Live PIMT Platform "{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio "{E5823036-6F09-4D0A-B05C-E2BAA129288A}" = HP Quick Launch "{EE202411-2C26-49E8-9784-1BC1DBF7DE96}" = HP Support Assistant "{EFBCA571-617D-484A-9ECA-E301BB6D0750}" = Windows Live Writer "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Display Audio Driver "{F0E58739-2B4C-498F-9B0D-FF0F2FD52B61}" = Windows Live UX Platform "{F243A34B-AB7F-4065-B770-B85B767C247C}" = HP Connected Remote "{F6F30C28-38AA-4DBA-AE0B-7E30238E61BB}" = Junk Mail filter update "{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center "{FA12037C-B6FA-4825-86BC-D58AA6A9CC24}" = Podstawowe programy Windows Live "{FBA73805-0F67-428B-8E4F-FAE16A452685}" = Photo Common "{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}" = Energy Star "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.6 "BSPlayerf" = BS.Player FREE "Call of Duty®: Black Ops 2_is1" = Call of Duty®: Black Ops 2 "DAEMON Tools Lite" = DAEMON Tools Lite "Diablo III" = Diablo III "ENTERPRISE" = Microsoft Office Enterprise 2007 "InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam "InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}" = CyberLink Media Suite 10 "InstallShield_{2A2E822B-3B0E-46C1-9E3B-ACD7D1E95139}" = SAMSUNG PC Share Manager "InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}" = CyberLink Power2Go 8 "InstallShield_{4862344A-A39C-4897-ACD4-A1BED5163C5A}" = CyberLink PhotoDirector "InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}" = CyberLink PowerDirector 10 "InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint "InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.75.0.1300 "Mozilla Firefox 26.0 (x86 pl)" = Mozilla Firefox 26.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Need for Speed Most Wanted_is1" = Need for Speed Most Wanted "NIS" = Norton Internet Security "StartHPConnectedMusic" = HP Connected Music (Meridian - installer) "uTorrent" = µTorrent "Winamp" = Winamp "WinLiveSuite" = Podstawowe programy Windows Live "Worms Revolution_is1" = Worms Revolution [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2435897020-3182320802-3336853129-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "SkyDriveSetup.exe" = Microsoft SkyDrive [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-01-11 17:03:36 | Computer Name = Dud | Source = ATIeRecord | ID = 16391 Description = ATI EEU maximum number of session has been surpassed Error - 2014-01-11 17:06:30 | Computer Name = Dud | Source = ATIeRecord | ID = 16391 Description = ATI EEU maximum number of session has been surpassed Error - 2014-01-11 17:06:35 | Computer Name = Dud | Source = ATIeRecord | ID = 16391 Description = ATI EEU maximum number of session has been surpassed Error - 2014-01-11 17:06:36 | Computer Name = Dud | Source = ATIeRecord | ID = 16391 Description = ATI EEU maximum number of session has been surpassed Error - 2014-01-11 17:06:36 | Computer Name = Dud | Source = ATIeRecord | ID = 16391 Description = ATI EEU maximum number of session has been surpassed Error - 2014-01-11 17:06:36 | Computer Name = Dud | Source = ATIeRecord | ID = 16391 Description = ATI EEU maximum number of session has been surpassed Error - 2014-01-12 06:28:29 | Computer Name = Dud | Source = ATIeRecord | ID = 16391 Description = ATI EEU maximum number of session has been surpassed Error - 2014-01-12 07:08:49 | Computer Name = Dud | Source = ATIeRecord | ID = 16391 Description = ATI EEU maximum number of session has been surpassed Error - 2014-01-12 07:08:51 | Computer Name = Dud | Source = ATIeRecord | ID = 16391 Description = ATI EEU maximum number of session has been surpassed Error - 2014-01-12 07:08:52 | Computer Name = Dud | Source = ATIeRecord | ID = 16391 Description = ATI EEU maximum number of session has been surpassed Error - 2014-01-12 07:08:52 | Computer Name = Dud | Source = ATIeRecord | ID = 16391 Description = ATI EEU maximum number of session has been surpassed Error - 2014-01-12 07:08:52 | Computer Name = Dud | Source = ATIeRecord | ID = 16391 Description = ATI EEU maximum number of session has been surpassed [ Hewlett-Packard Events ] Error - 2013-10-28 09:09:53 | Computer Name = Dud | Source = hpsa_service.exe | ID = 2000 Description = Error - 2013-10-28 09:09:53 | Computer Name = Dud | Source = hpsa_service.exe | ID = 2000 Description = HP Error ID: -2146233088hpsa_service.exe w HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.Detect() w HP.SupportFramework.Service.ACLM.ActiveCheck.LaunchActiveCheck(Boolean singleScan, Boolean localScan, Boolean isAsync) Message: One HP Active Check Local Mode job already running. StackTrace: w HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.Detect() w HP.SupportFramework.Service.ACLM.ActiveCheck.LaunchActiveCheck(Boolean singleScan, Boolean localScan, Boolean isAsync) Source: HP.ActiveCheckLocalMode.SessionManager Name: hpsa_service.exe Version: 07.00.00.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe Format: pl-PL RAM: 6036 Ram Utilization: 20 TargetSite: Void Detect() Error - 2013-11-30 09:15:06 | Computer Name = Dud | Source = HPSF.exe | ID = 2000 Description = HP Error ID: -2147467261 w HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession() Message: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. StackTrace: w HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession() Source: HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: pl-PL RAM: 6036 Ram Utilization: 20 TargetSite: Void addTempSession() Error - 2013-12-06 03:57:04 | Computer Name = Dud | Source = HPSF.exe | ID = 2000 Description = HP Error ID: -2147467261 w HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession() Message: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. StackTrace: w HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession() Source: HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: pl-PL RAM: 6036 Ram Utilization: 30 TargetSite: Void addTempSession() Error - 2013-12-13 08:46:02 | Computer Name = Dud | Source = HPSF.exe | ID = 2000 Description = HP Error ID: -2147467261 w HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession() Message: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. StackTrace: w HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession() Source: HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: pl-PL RAM: 6036 Ram Utilization: 30 TargetSite: Void addTempSession() Error - 2013-12-20 05:06:07 | Computer Name = Dud | Source = HPSF.exe | ID = 2000 Description = HP Error ID: -2147467261 w HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession() Message: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. StackTrace: w HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession() Source: HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: pl-PL RAM: 6036 Ram Utilization: 40 TargetSite: Void addTempSession() Error - 2013-12-27 05:13:26 | Computer Name = Dud | Source = HPSF.exe | ID = 2000 Description = HP Error ID: -2147467261 w HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession() Message: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. StackTrace: w HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession() Source: HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: pl-PL RAM: 6036 Ram Utilization: 30 TargetSite: Void addTempSession() Error - 2014-01-03 04:41:48 | Computer Name = Dud | Source = HPSF.exe | ID = 2000 Description = HP Error ID: -2147467261 w HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession() Message: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. StackTrace: w HP.SupportFramework.Utilities.CustomerExperience.HPSASession.addTempSession() Source: HP.SupportFramework.Utilities Name: HPSF.exe Version: 07.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: pl-PL RAM: 6036 Ram Utilization: TargetSite: Void addTempSession() [ System Events ] Error - 2013-12-27 11:38:03 | Computer Name = Dud | Source = DCOM | ID = 10010 Description = Error - 2013-12-29 06:43:00 | Computer Name = Dud | Source = DCOM | ID = 10010 Description = Error - 2013-12-29 06:43:00 | Computer Name = Dud | Source = DCOM | ID = 10010 Description = Error - 2013-12-29 06:43:03 | Computer Name = Dud | Source = DCOM | ID = 10010 Description = Error - 2013-12-29 06:43:03 | Computer Name = Dud | Source = DCOM | ID = 10010 Description = Error - 2014-01-01 10:10:00 | Computer Name = Dud | Source = DCOM | ID = 10010 Description = Error - 2014-01-01 10:10:00 | Computer Name = Dud | Source = DCOM | ID = 10010 Description = Error - 2014-01-01 10:10:03 | Computer Name = Dud | Source = DCOM | ID = 10010 Description = Error - 2014-01-01 10:10:03 | Computer Name = Dud | Source = DCOM | ID = 10010 Description = Error - 2014-01-07 07:11:54 | Computer Name = Dud | Source = cdrom | ID = 262151 Description = W urządzeniu \Device\CdRom0 wystąpił zły blok. < End of report >