OTL Extras logfile created on: 2014-02-16 18:15:03 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\emilka\Downloads 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000415 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd 7,98 Gb Total Physical Memory | 5,66 Gb Available Physical Memory | 70,87% Memory free 15,96 Gb Paging File | 13,05 Gb Available in Paging File | 81,77% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 68,36 Gb Total Space | 21,42 Gb Free Space | 31,33% Space Free | Partition Type: NTFS Drive D: | 80,68 Gb Total Space | 1,50 Gb Free Space | 1,86% Space Free | Partition Type: NTFS Computer Name: EMILKA-PC | User Name: emilka | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = OperaStable] -- C:\Program Files (x86)\Opera\Launcher.exe (Opera Software) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = OperaStable] -- C:\Program Files (x86)\Opera\Launcher.exe (Opera Software) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = OperaStable] -- C:\Program Files (x86)\Opera\Launcher.exe (Opera Software) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htafile [open] -- "%1" %* htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate "%1" (Opera Software) https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htafile [open] -- "%1" %* htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate "%1" (Opera Software) https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0790E5E5-3CDF-4445-89CC-05783EB44DFA}" = rport=139 | protocol=6 | dir=out | app=system | "{07E73643-0025-4819-AA65-0895E5CE5AE8}" = lport=2869 | protocol=6 | dir=in | app=system | "{0A91E3F9-D36C-49A0-AFCF-8DA6A6814996}" = lport=2869 | protocol=6 | dir=in | app=system | "{237A5CED-9A5A-45A5-94DB-8D22BE3D3ED9}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{35E89946-B95B-40F3-8FBE-BA07212F806A}" = rport=137 | protocol=17 | dir=out | app=system | "{370DC1BB-FE7F-44DC-8D15-0D6744E69B4C}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{40FD61DA-1C99-47C1-BA9E-FBB8EEB41706}" = rport=2869 | protocol=6 | dir=out | app=system | "{6D0BB598-3139-4092-9B2D-51248CD790C0}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{6F305051-EAE0-4181-AF46-56A447E06A5D}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{749180B8-B579-4576-A098-2C6570403622}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{7FA2FA72-00B4-44F6-B7FF-F93D67A3D1A7}" = rport=10243 | protocol=6 | dir=out | app=system | "{7FE70CF5-0FCC-410C-844B-51E18C9C40F8}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{8990B378-92A4-4044-9665-D5329054AD89}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{9BD12758-87F3-4D45-B59A-6C49A2537674}" = lport=137 | protocol=17 | dir=in | app=system | "{A2AFB9D6-30CA-45D2-BA32-7622B775BEF7}" = rport=138 | protocol=17 | dir=out | app=system | "{A73B137C-9F00-4B89-80AF-489B698F4D28}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe | "{ABA88A3B-E371-423D-AD0B-531A7FED39CE}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{ADFED92F-B638-4AAB-9C0E-E535B4090B9B}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{AF21EEBB-820A-440C-BAE4-2C3B482F1F80}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{B7F4AD28-C644-4334-AA0F-EFFE8409084A}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{C7137429-2374-48E7-9248-F7451BE7B0B1}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{CC30CBAD-60D7-4673-BE20-29F7C50D54C0}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{CF4494CE-0D2B-4BE5-AEE1-B146A146357F}" = lport=10243 | protocol=6 | dir=in | app=system | "{DC3C01A1-92A3-4579-91B2-601752E0FF34}" = lport=445 | protocol=6 | dir=in | app=system | "{DCBC627A-D46E-4E20-9EF3-D06429CE9ED5}" = lport=138 | protocol=17 | dir=in | app=system | "{DD80E468-F77A-4555-96CE-742F3F1C1EF7}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{E0484C43-6886-47D8-8893-68FC5BE72F85}" = rport=445 | protocol=6 | dir=out | app=system | "{E16268B3-E476-447F-AE94-7E9C51F32CA9}" = lport=139 | protocol=6 | dir=in | app=system | "{EC75B3B7-4FA9-40ED-86CA-7FB4B7DD13FA}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{F8DA687D-858C-47A0-A6DC-3344195CBBE9}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{FD0AD936-AB30-4B49-8A26-C4691C474606}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{094EDCAE-DD7F-4583-8568-2641EFA51316}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{09DD60BD-926B-4A1B-9B6A-15CF53202ABA}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{1432A8A9-91E4-4DB4-A885-B7FAC09739C1}" = protocol=6 | dir=in | app=d:\steamlibrary\steamapps\common\hitman absolution\hma.exe | "{1E97C461-DF6D-4C7E-BD51-BDF452BE7029}" = protocol=58 | dir=in | app=system | "{24127A73-A99D-4292-98B2-4E6E11988B76}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{26B07B68-F0A5-4884-BE41-DA580BD77E3C}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{31AE44C5-A7C3-4F12-8196-302C0EEFE954}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{3724469D-AA47-4B2B-9139-419A6FF342B5}" = protocol=6 | dir=in | app=d:\steamlibrary\steamapps\common\post apocalyptic mayhem\pammaingame.exe | "{37A83D2C-776A-421B-B031-0A29A1FAA71D}" = protocol=6 | dir=in | app=d:\steamlibrary\steamapps\common\torchlight ii\modlauncher.exe | "{37D4E5A7-22AC-4E1D-89AE-265B0F77072C}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{38CA00B0-DA1D-4145-8694-5EC1763D18D9}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{3F8AEAF0-8BFE-44E8-B51C-65298F936E42}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{41B0560E-7051-45FE-91A2-C9F4514ECF35}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 | "{46FDC9DC-9DE8-48AC-9315-CC7B0083937C}" = protocol=6 | dir=in | app=d:\steamlibrary\steamapps\common\mafia ii\pc\mafia2.exe | "{47035A72-9C38-4804-B1FF-821C867E2E16}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{4DD3FF94-B8F9-4533-8C20-16001CB9D5D8}" = protocol=17 | dir=in | app=d:\steamlibrary\steamapps\common\tomb raider\tombraider.exe | "{55514304-D3CA-47EE-BF67-99112079666E}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{55C5A62A-59DD-485C-B90D-077E4401A4A8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{59889008-78F7-4F33-BD32-1A8C7AF3FB9F}" = protocol=17 | dir=in | app=d:\steamlibrary\steamapps\common\hitman absolution\hma.exe | "{5CBFD58E-6AD0-4088-91AC-2F6708CA09EB}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{60C2D82A-1FC7-4E43-925F-4FA38C3394BA}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{6C52AACB-A8A3-490E-AA59-28B683C688CA}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{70ECA893-F14D-480D-94F3-76E6430A7894}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{7F6B7596-C6DA-4261-BDFC-DDB944EA76A3}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{81B6DCF3-A026-4AB6-8A31-19E398738C4C}" = protocol=6 | dir=in | app=d:\steamlibrary\steamapps\common\tomb raider\tombraider.exe | "{8317A300-415B-41B6-B798-4C6E93E4E678}" = protocol=6 | dir=in | app=c:\users\emilka\appdata\roaming\utorrent\utorrent.exe | "{848B2FA3-1BEC-46AF-B635-6C1FCD07173C}" = protocol=6 | dir=in | app=d:\steamlibrary\steamapps\common\left 4 dead 2\left4dead2.exe | "{89653141-62D4-4E53-88CE-4A2376796491}" = protocol=17 | dir=in | app=d:\steamlibrary\steamapps\common\mafia ii\pc\mafia2.exe | "{8D12FAD9-B041-42A7-BB77-12D58DDF4D08}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{8D883853-02B7-4CD6-8C61-3E3C69ABC66B}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{8DF50834-D233-422F-AD08-1CAAEAD70345}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{984AD616-462B-4A97-A612-38DA892EA509}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{A6E663C2-0069-4870-ACAE-C0658BD8D436}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{A90BBEB8-3184-4625-9CDD-36017F67166A}" = protocol=6 | dir=in | app=d:\steamlibrary\steamapps\common\just cause 2\justcause2.exe | "{AF9B29A1-F4CD-4481-A78C-288194A88817}" = protocol=17 | dir=in | app=d:\steamlibrary\steamapps\common\post apocalyptic mayhem\pammaingame.exe | "{B0B29290-7F7E-46E9-9883-6D514D8657FE}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 | "{CC8CCED8-0280-4682-A445-D839F2F12795}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{D09FC08E-5B1D-4C20-BAF2-98F1EDEFE1FE}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{D0AF3444-A064-4019-9F57-0E434F9551F9}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{D17B661A-C327-4E44-8E76-DACC79937B8D}" = protocol=17 | dir=in | app=d:\steamlibrary\steamapps\common\just cause 2\justcause2.exe | "{D249FDD1-A93A-48F3-8AFC-40ED275020B0}" = protocol=17 | dir=in | app=c:\users\emilka\appdata\roaming\utorrent\utorrent.exe | "{DB329419-7562-4B08-BFAC-16FDB70D35B0}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{DD6F0E94-287A-47CF-BF02-11AFB189A83A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{E44EAACE-C3C3-40FA-ACC2-B650C7BE9567}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{E6B5D5EA-58E5-42DD-947B-C9469B3996CA}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{E915678D-891B-4AEE-AAAF-A337D6430CB4}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{E9D314E4-DDAC-4BCA-BAD0-549AEEC17B2F}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{EC90094E-FA41-413E-852D-0115F39C70F9}" = protocol=6 | dir=out | app=system | "{F15CFB63-A9F7-4C84-A0B1-904EA48276EF}" = protocol=17 | dir=in | app=d:\steamlibrary\steamapps\common\torchlight ii\modlauncher.exe | "{FB403976-E0E5-45FE-9301-806E3F5C6B93}" = protocol=17 | dir=in | app=d:\steamlibrary\steamapps\common\left 4 dead 2\left4dead2.exe | "{FD9FD1E9-5901-49C9-875A-E42D7DF939AC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "TCP Query User{0B911632-09E4-49F0-B3C0-ACD0DD1ABD13}D:\world_of_tanks\worldoftanks.exe" = protocol=6 | dir=in | app=d:\world_of_tanks\worldoftanks.exe | "TCP Query User{4E27C0A3-C2F5-4098-8567-0452A6A3F168}D:\world_of_tanks\wotlauncher.exe" = protocol=6 | dir=in | app=d:\world_of_tanks\wotlauncher.exe | "UDP Query User{212531D8-98C3-430E-BEDC-2A83AC5575EE}D:\world_of_tanks\wotlauncher.exe" = protocol=17 | dir=in | app=d:\world_of_tanks\wotlauncher.exe | "UDP Query User{AAC884FC-EC44-4A2B-AD43-4318712C7553}D:\world_of_tanks\worldoftanks.exe" = protocol=17 | dir=in | app=d:\world_of_tanks\worldoftanks.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1AD147D0-BE0E-3D6C-AC11-64F6DC4163F1}" = Microsoft .NET Framework 4.5 "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{26A24AE4-039D-4CA4-87B4-2F86417017FF}" = Java 7 Update 17 (64-bit) "{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 "{391ED0B2-B886-A6D0-B1A6-C25A7FE5B452}" = ATI AVIVO64 Codecs "{4F8A27CA-6788-7965-3259-5C3B9C37FCD8}" = ATI Problem Report Wizard "{60A95961-E9F4-17C6-2A91-578C34ED9A0C}" = ATI Catalyst Install Manager "{6DF41AAD-B5F7-84BE-37F5-4C93184F5FBE}" = ccc-utility64 "{764384C5-BCA9-307C-9AAC-FD443662686A}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{83ED5086-5D6B-698F-5CD4-2F631DA8FD69}" = AMD Drag and Drop Transcoding "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8C775E70-A791-4DA8-BCC3-6AB7136F4484}" = Visual Studio 2012 x64 Redistributables "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5 "CCleaner" = CCleaner "WinRAR archiver" = WinRAR 4.20 (64-bit) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0471C553-36C2-E7A0-7489-E99CD3F9683C}" = CCC Help Chinese Standard "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{07BFA98D-6DB0-6D9C-95D5-7EF347AF587B}" = HydraVision "{08610298-29AE-445B-B37D-EFBE05802967}" = LWS Pictures And Video "{0BD171A4-7DAC-A12B-14E3-E33DA0B6FE6A}" = CCC Help Finnish "{15634701-BACE-4449-8B25-1567DA8C9FD3}" = CameraHelperMsi "{1651216E-E7AD-4250-92A1-FB8ED61391C9}" = LWS Help_main "{174A3B31-4C43-43DD-866F-73C9DB887B48}" = LWS Twitter "{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1 "{1D33BBA9-75E5-7B82-9776-277DEA2C4BA2}" = Catalyst Control Center Graphics Previews Vista "{1D4BA420-070F-3F9B-4969-126689978A98}" = CCC Help Greek "{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1" = World of Tanks "{2198B991-FCB1-F74E-26C9-5F7127B9DB0F}" = ccc-core-static "{21DF0294-6B9D-4741-AB6F-B2ABFBD2387E}" = LWS YouTube Plugin "{26A24AE4-039D-4CA4-87B4-2F83217017FF}" = Java 7 Update 25 "{3D6AD258-61EA-35F5-812C-B7A02152996E}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 "{3ED6B766-BDF2-F30F-F18E-16BA10ABA22A}" = CCC Help French "{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = erLT "{3F0BBF8C-9BAF-5F16-A2BF-B513D528F1B9}" = Catalyst Control Center Graphics Previews Common "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.11 "{516D7330-6BA3-6E53-9C7A-F50666C758E0}" = CCC Help Swedish "{64467D47-FFE4-4FBC-ABBA-A0DB829A17EB}" = NVIDIA PhysX "{66391B4E-194D-C20E-F1E5-D7222F1A8104}" = CCC Help Turkish "{6D1496ED-3150-FCD5-CA3B-4C08B89D00D0}" = Catalyst Control Center Localization All "{6F76EC3C-34B1-436E-97FB-48C58D7BEDCD}" = LWS Gallery "{71E66D3F-A009-44AB-8784-75E2819BA4BA}" = LWS Motion Detection "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{77CD6B28-D387-9905-EF5B-78BF8AF722C6}" = CCC Help Chinese Traditional "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{83C8FA3C-F4EA-46C4-8392-D3CE353738D6}" = LWS Launcher "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{8937D274-C281-42E4-8CDB-A0B2DF979189}" = LWS Webcam Software "{8A54BB79-658E-84A4-FBB7-93FD1EB20174}" = CCC Help Danish "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00B2-0409-0000-0000000FF1CE}" = Microsoft Save as PDF or XPS Add-in for 2007 Microsoft Office programs "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90A4562F-D4A1-4B65-906D-41F236CF6902}" = Path of Exile "{92606477-9366-4D3B-8AE3-6BE4B29727AB}" = League of Legends "{95716cce-fc71-413f-8ad5-56c2892d4b3a}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 "{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}" = Visual Studio 2012 x86 Redistributables "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9DAEA76B-E50F-4272-A595-0124E826553D}" = LWS WLM Plugin "{A0855EE1-F653-3A5A-C7AF-D6CC3BF7A506}" = Catalyst Control Center InstallProxy "{A0D2B948-BB85-589F-D283-2145A54BB11B}" = CCC Help English "{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 "{A82EF4BC-81CB-4AC6-A3BE-3201BB8F53CF}" = Playfire "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A9C4FF3C-C5E5-07F7-AD5D-C26C2B41CFF3}" = CCC Help Dutch "{ABA5FB59-633D-23B0-5841-D11A7B97C624}" = CCC Help Hungarian "{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.06) "{AF549236-6258-4AC6-A043-5B5B89C6EB61}" = SpyHunter "{B0F9D227-9243-E2E6-21CE-7FB9528202C5}" = CCC Help Norwegian "{B1D6F9CC-55FC-CD82-1D5C-BF725BF9311E}" = CCC Help Portuguese "{B282CB34-95CC-06B2-DFBC-07617F722837}" = CCC Help Spanish "{c6072f71-b8f8-4b4a-a616-5e8cd64cd41e}" = Playfire "{D40EB009-0499-459c-A8AF-C9C110766215}" = Logitech Webcam Software "{DADC7AB0-E554-4705-9F6A-83EA82ED708E}" = Realtek Ethernet Diagnostic Utility "{DDA34038-89BD-4804-B0B8-DC48D5DFB463}" = Catalyst Control Center - Branding "{E342FAD9-ACA4-BE69-D78C-F26CDF6DC9DC}" = CCC Help Italian "{E45CACFE-0576-4375-A84F-C34B99A7B652}" = D-Link DWA-125 "{E7D4E834-93EB-351F-B8FB-82CDAE623003}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 "{ED9E5BCC-371A-5BE1-6DC6-CF7D8DC9A2B7}" = CCC Help Czech "{EF829AE4-69BB-F791-F3DF-C6CBF8942881}" = CCC Help Korean "{EFF33410-5603-B27E-778A-7AB406C7A785}" = CCC Help Japanese "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F241F4AB-9D50-52E4-6CA5-D1EA5A0713BC}" = CCC Help Russian "{F3F8BEC4-1D0E-9E50-0AF6-54A16094C92E}" = CCC Help German "{FA39D1A0-3B11-AF64-5EF0-1DBC97F47075}" = CCC Help Thai "{FD20D0EA-5F36-5870-26EC-5CA842E8C713}" = CCC Help Polish "{FF167195-9EE4-46C0-8CD7-FBA3457E88AB}" = LWS Facebook "Adobe Flash Player ActiveX" = Adobe Flash Player 12 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 12 Plugin "Advanced SystemCare 6_is1" = Advanced SystemCare 6 "Battle.net" = Battle.net "DokanLibrary" = Dokan Library 0.6.0 "ENTERPRISE" = Microsoft Office Enterprise 2007 "foobar2000" = foobar2000 v1.2.6 "Game Booster_is1" = Game Booster 3 "GOGPACKPAPERSPLEASE_is1" = Papers, Please "Google Chrome" = Google Chrome "Hearthstone" = Hearthstone "IObit Malware Fighter_is1" = IObit Malware Fighter "Kingsoft Internet Security" = Kingsoft Antivirus 2012 "Mozilla Firefox 27.0.1 (x86 pl)" = Mozilla Firefox 27.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Opera 19.0.1326.21" = Opera Next 19.0.1326.21 "Opera 19.0.1326.63" = Opera Stable 19.0.1326.63 "Origin" = Origin "Smart Defrag 2_is1" = Smart Defrag 2 "Steam App 200710" = Torchlight II "Steam App 203140" = Hitman: Absolution "Steam App 203160" = Tomb Raider "Steam App 29130" = Musaic Box "Steam App 50130" = Mafia II "Steam App 550" = Left 4 Dead 2 "Steam App 8190" = Just Cause 2 "Steam App 91900" = Post Apocalyptic Mayhem [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk" = Google Talk (remove only) "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-02-15 08:11:53 | Computer Name = emilka-PC | Source = WinMgmt | ID = 10 Description = Error - 2014-02-15 08:30:03 | Computer Name = emilka-PC | Source = WinMgmt | ID = 10 Description = Error - 2014-02-15 09:02:27 | Computer Name = emilka-PC | Source = WinMgmt | ID = 10 Description = Error - 2014-02-15 14:16:28 | Computer Name = emilka-PC | Source = Application Error | ID = 1000 Description = Faulting application name: PAMMainGame.exe, version: 0.0.0.0, time stamp: 0x4f72c34d Faulting module name: PAMMainGame.exe, version: 0.0.0.0, time stamp: 0x4f72c34d Exception code: 0xc0000005 Fault offset: 0x0001efcd Faulting process id: 0x1540 Faulting application start time: 0x01cf2a6a02d0ebf8 Faulting application path: D:\SteamLibrary\steamapps\common\Post Apocalyptic Mayhem\PAMMainGame.exe Faulting module path: D:\SteamLibrary\steamapps\common\Post Apocalyptic Mayhem\PAMMainGame.exe Report Id: 4932de07-966d-11e3-b3f4-001596569c9f Error - 2014-02-15 14:59:40 | Computer Name = emilka-PC | Source = Application Error | ID = 1000 Description = Faulting application name: PAMMainGame.exe, version: 0.0.0.0, time stamp: 0x4f72c34d Faulting module name: PAMMainGame.exe, version: 0.0.0.0, time stamp: 0x4f72c34d Exception code: 0xc0000005 Fault offset: 0x0001efcd Faulting process id: 0x1848 Faulting application start time: 0x01cf2a7b4435df34 Faulting application path: D:\SteamLibrary\steamapps\common\Post Apocalyptic Mayhem\PAMMainGame.exe Faulting module path: D:\SteamLibrary\steamapps\common\Post Apocalyptic Mayhem\PAMMainGame.exe Report Id: 5206ac5a-9673-11e3-b3f4-001596569c9f Error - 2014-02-16 07:48:04 | Computer Name = emilka-PC | Source = WinMgmt | ID = 10 Description = Error - 2014-02-16 09:30:55 | Computer Name = emilka-PC | Source = Application Error | ID = 1000 Description = Faulting application name: Skype.exe, version: 6.11.0.102, time stamp: 0x5284fb74 Faulting module name: Skype.exe, version: 6.11.0.102, time stamp: 0x5284fb74 Exception code: 0xc0000005 Fault offset: 0x00212421 Faulting process id: 0xf80 Faulting application start time: 0x01cf2b10c2cb9864 Faulting application path: C:\Program Files (x86)\Skype\Phone\Skype.exe Faulting module path: C:\Program Files (x86)\Skype\Phone\Skype.exe Report Id: 8fb97e8e-970e-11e3-965e-001596569c9f Error - 2014-02-16 11:06:58 | Computer Name = emilka-PC | Source = WinMgmt | ID = 10 Description = Error - 2014-02-16 11:42:57 | Computer Name = emilka-PC | Source = MsiInstaller | ID = 11316 Description = Error - 2014-02-16 12:11:09 | Computer Name = emilka-PC | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 2014-02-16 11:47:03 | Computer Name = emilka-PC | Source = ipnathlp | ID = 31004 Description = Error - 2014-02-16 11:49:22 | Computer Name = emilka-PC | Source = ipnathlp | ID = 31004 Description = Error - 2014-02-16 11:51:19 | Computer Name = emilka-PC | Source = Application Popup | ID = 1060 Description = \SystemRoot\SysWow64\DRIVERS\EsgScanner.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. Error - 2014-02-16 11:51:19 | Computer Name = emilka-PC | Source = Service Control Manager | ID = 7000 Description = The EsgScanner service failed to start due to the following error: %%1275 Error - 2014-02-16 12:09:33 | Computer Name = emilka-PC | Source = EventLog | ID = 6008 Description = The previous system shutdown at 17:06:01 on ?16/?02/?2014 was unexpected. Error - 2014-02-16 12:11:32 | Computer Name = emilka-PC | Source = Service Control Manager | ID = 7022 Description = The PirritDesktop service hung on starting. Error - 2014-02-16 12:15:00 | Computer Name = emilka-PC | Source = Application Popup | ID = 1060 Description = \SystemRoot\SysWow64\DRIVERS\EsgScanner.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. Error - 2014-02-16 12:15:00 | Computer Name = emilka-PC | Source = Service Control Manager | ID = 7000 Description = The EsgScanner service failed to start due to the following error: %%1275 Error - 2014-02-16 12:15:49 | Computer Name = emilka-PC | Source = Application Popup | ID = 1060 Description = \SystemRoot\SysWow64\DRIVERS\EsgScanner.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. Error - 2014-02-16 12:15:49 | Computer Name = emilka-PC | Source = Service Control Manager | ID = 7000 Description = The EsgScanner service failed to start due to the following error: %%1275 < End of report >