OTL Extras logfile created on: 2014-04-09 10:07:12 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Grzegorz\Downloads Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 1,76 Gb Available Physical Memory | 58,57% Memory free 6,00 Gb Paging File | 4,61 Gb Available in Paging File | 76,86% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 24,41 Gb Total Space | 1,39 Gb Free Space | 5,68% Space Free | Partition Type: NTFS Drive D: | 45,56 Gb Total Space | 21,42 Gb Free Space | 47,03% Space Free | Partition Type: NTFS Drive E: | 51,13 Gb Total Space | 13,84 Gb Free Space | 27,07% Space Free | Partition Type: NTFS Drive F: | 46,95 Gb Total Space | 12,67 Gb Free Space | 27,00% Space Free | Partition Type: NTFS Drive G: | 42,73 Gb Total Space | 5,27 Gb Free Space | 12,34% Space Free | Partition Type: NTFS Drive H: | 22,10 Gb Total Space | 7,31 Gb Free Space | 33,08% Space Free | Partition Type: NTFS Computer Name: 1Q21WS | User Name: Grzegorz | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office15\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- "C:\Program Files\Microsoft Office\Office15\msohtmed.exe" /p %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0912148F-E176-400D-9DE6-F883831D94E0}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{0A97B8D4-CE8E-4ECC-9C13-0222B64900DA}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{1E9B3A52-1B84-432E-A013-AE7D5D4AB909}" = lport=445 | protocol=6 | dir=in | app=system | "{23DE5C33-DBDB-429E-8679-F105692E9831}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{267D54E7-3E55-41F9-AE75-E18CB3BA740D}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office15\outlook.exe | "{32F92A2F-B368-4463-A644-44CCAEB4F5C6}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{34E32944-111F-4562-B2A0-3E14FC351B97}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{3A4E25E2-7628-4584-ABE1-C2729CA004B5}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{55163868-8072-40E1-AADC-69121AF3D4C9}" = rport=139 | protocol=6 | dir=out | app=system | "{57B4BB6F-A6B2-4B48-A2DE-9B06A22BC1CF}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{7874F979-0B6D-4F5B-A597-D7C6B1A3CF19}" = rport=10243 | protocol=6 | dir=out | app=system | "{A17F1BDD-E15C-4F7A-8226-13DE11A16D26}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{ADFE6121-BAB9-420B-8B19-31D3C337F59D}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{B0ED219E-F80B-4B81-BF97-448FE002D904}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{BBF7F076-53A1-4E76-91D6-D1FD409DF832}" = rport=138 | protocol=17 | dir=out | app=system | "{BC97599D-2AB1-45DD-8F4A-2E3D65EDAAA7}" = lport=10243 | protocol=6 | dir=in | app=system | "{BF99B554-91BC-4FD2-B273-6695A6B9CEEC}" = rport=137 | protocol=17 | dir=out | app=system | "{C2A0AFE8-3315-4D17-B7DD-AB34D81E6C97}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{C3071B73-1B25-4D59-96B2-97A51889FD97}" = lport=2869 | protocol=6 | dir=in | app=system | "{C34D2D74-8E27-44C4-A9FC-858873BF6360}" = rport=445 | protocol=6 | dir=out | app=system | "{C5F411EA-B2AF-4B2A-A5AB-0D217B281446}" = lport=139 | protocol=6 | dir=in | app=system | "{C7B11BE0-75A3-46C4-9A51-82822EF44C4F}" = lport=137 | protocol=17 | dir=in | app=system | "{EA5FB08A-6CF5-47BF-8C23-4887AA6E13A6}" = lport=138 | protocol=17 | dir=in | app=system | "{EC9C111D-5230-4350-9F1A-5A66B0B00209}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{03FB5CC3-DD25-4771-90D6-C2BECDBDD41E}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{09F1C299-108F-46B0-8333-2B0B7ACABF2B}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{14F79B15-CD0C-4F47-8C57-79DD5D78BD38}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgmfapx.exe | "{1E4D8C04-2D59-414F-8568-DDA404A6B7D6}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgemcx.exe | "{21A5F58C-28BD-4A0B-A9D4-6280F32114C7}" = protocol=17 | dir=in | app=d:\burn paradise\burnoutparadise.exe | "{23659825-C2F3-4792-A45F-AE8A42CA5F3B}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{2A439327-8C5F-4759-8A0C-64CC65D388F1}" = protocol=17 | dir=in | app=d:\burn paradise\burnoutconfigtool.exe | "{38F1CB9C-C33F-4E38-964C-F196FB3FA971}" = protocol=17 | dir=in | app=d:\nfs hot pursuit\launcher.exe | "{39675427-4F4C-48D9-ACEA-3DFB8FA16858}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgmfapx.exe | "{4395FD64-9140-49FB-934C-4CC1E961D47B}" = protocol=17 | dir=in | app=d:\burn paradise\burnoutlauncher.exe | "{451E6214-ADE3-4DBA-8253-6E8CBCE42A5F}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgemcx.exe | "{49A32C6E-5456-49B6-AB33-41B3891BBA8C}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgmfapx.exe | "{4E4A6432-0571-4863-9C24-036BF52E4FE5}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{5B0CC83A-1212-418C-AA59-1DEE37EA0D6F}" = protocol=17 | dir=in | app=c:\program files\sony ericsson\update engine\sony ericsson update engine.exe | "{5D742126-13A5-438E-8019-FA4D651D5C4E}" = protocol=6 | dir=out | app=system | "{6A162101-85E9-4839-9315-5F46AA8E09C4}" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "{6DD0E958-9947-400F-BD9C-07E81C3571BF}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 | "{6EAAD360-E79F-4A5F-AD60-E53D53147874}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgnsx.exe | "{7E8BE9F7-118E-421A-B165-79A1FCB42645}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgnsx.exe | "{81C03C17-6827-44FC-ACEE-B08B8EB89B81}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgdiagex.exe | "{8A516E4C-9D6F-45E6-9235-CB3405C636C6}" = protocol=6 | dir=in | app=d:\nfs hot pursuit\launcher.exe | "{921B4098-65B6-45CD-812E-D0407F363D31}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{928039D0-DDB3-4F95-AFB6-AE3B7C4373CC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{990A0BD1-536F-4BDA-9738-6B5849DEE910}" = protocol=6 | dir=in | app=d:\burn paradise\burnoutlauncher.exe | "{9A3B4237-F9A2-4752-A0CE-AC200F519DE0}" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe | "{9EEF5BB6-5DD4-458C-B6A0-62EE532D7F7A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{ABEF2C78-774F-4393-9042-8EC859496314}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{B14D264E-88D5-4FA9-978B-0AA48EB6792F}" = protocol=6 | dir=in | app=d:\burn paradise\burnoutparadise.exe | "{B74BE7F6-D61C-443C-9E44-C2B9F1391B09}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{B92ADFE5-BD2E-443D-872E-C1F883520045}" = protocol=58 | dir=in | app=system | "{BC8FEC5C-13C8-4B0F-B4C5-A458CC31C5A9}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{C1888806-EB8E-4959-8381-8E010ABD725B}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{C35527F7-297C-445A-ADC8-42722A366918}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgemcx.exe | "{CBC09288-8B8C-41AB-BB1F-5AD766C97B7E}" = protocol=6 | dir=in | app=d:\burn paradise\burnoutconfigtool.exe | "{CFFC4A51-C964-467C-8541-5671542FD23A}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgdiagex.exe | "{D00C8F1F-8CC6-45E2-8E39-0C994911EABB}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgmfapx.exe | "{D6CE4F45-E7A3-4904-BE33-049082D73304}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{DAB01913-0C85-428F-83E7-A0B38BD9461B}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgnsx.exe | "{DB672B39-DEE6-4F4A-99AD-8AE8D64FD6D9}" = protocol=6 | dir=in | app=c:\programdata\esafe\egdpsvc.exe | "{DB791E95-FE57-48F7-B3D6-EC2AE537D9AF}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgdiagex.exe | "{E13502CA-C268-4B11-B02F-68BDC840B134}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgdiagex.exe | "{E44FD22C-1CA9-4BF0-BC7B-38AB4E6AAF17}" = protocol=17 | dir=in | app=d:\need for speed most wanted\nfs13.exe | "{E9AA31DB-7BB6-43F9-B0B5-B0E76BEE89A6}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{EC1091BE-4DC3-479C-A366-8DD9EA2D92C3}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{EE83698D-0438-402D-89AE-90185847D1BA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{EF7A055A-3723-48AB-9269-831856D9F1B9}" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "{F0DA1EF6-AE92-49A9-92CF-E40B15016E03}" = protocol=6 | dir=in | app=c:\program files\sony ericsson\update engine\sony ericsson update engine.exe | "{F55578DE-86BA-4A37-94AD-86E67E888A0C}" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe | "{F6892C43-7633-4984-8FA7-244F05183FE4}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgemcx.exe | "{F989F33A-C09F-4C90-9D3F-DB6F52A02E1E}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgnsx.exe | "{FA806C0C-7C0E-4296-946F-D7A16F293282}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{FE445C69-2EA8-44D2-AED7-C3C576624BE3}" = protocol=6 | dir=in | app=d:\need for speed most wanted\nfs13.exe | "TCP Query User{0BAD7619-3AB6-4B53-84D5-674479209FDD}F:\fifia 12\fifa-12-pc-pl\fifa 12\game\fifa.exe" = protocol=6 | dir=in | app=f:\fifia 12\fifa-12-pc-pl\fifa 12\game\fifa.exe | "TCP Query User{1F20F6DD-A194-4F8D-BC13-D87248469DDF}H:\sebastian\data\nfsw.exe" = protocol=6 | dir=in | app=h:\sebastian\data\nfsw.exe | "TCP Query User{22661801-91D2-4828-ABC8-0599E179FBE9}C:\programdata\electronic arts\need for speed world\data\nfsw.exe" = protocol=6 | dir=in | app=c:\programdata\electronic arts\need for speed world\data\nfsw.exe | "TCP Query User{291F1F8B-F0CF-47ED-B303-31C453FD93D1}C:\windows\system32\javaw.exe" = protocol=6 | dir=in | app=c:\windows\system32\javaw.exe | "TCP Query User{3AA3FAE6-0DBA-4872-8252-D5A6BA49D380}C:\users\grzegorz\appdata\local\temp\kmsnano\qemu-system-i386.exe" = protocol=6 | dir=in | app=c:\users\grzegorz\appdata\local\temp\kmsnano\qemu-system-i386.exe | "TCP Query User{3D75D79A-B381-4B1C-8A7F-291D279615D7}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "TCP Query User{3FB2CDB6-2D36-4DCD-89E8-AC6E5A0790BC}C:\program files\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre7\bin\javaw.exe | "TCP Query User{4B31B11E-430D-4C1A-B9EB-BA84C67D45A9}D:\fifa11\game\fifa.exe" = protocol=6 | dir=in | app=d:\fifa11\game\fifa.exe | "TCP Query User{874816EC-C012-4329-A39B-EBFA7A17177C}F:\sopcast\sopcast.exe" = protocol=6 | dir=in | app=f:\sopcast\sopcast.exe | "TCP Query User{8A824346-4251-4588-B55F-E9E0E462A600}D:\need for speed most wanted\nfs13.exe" = protocol=6 | dir=in | app=d:\need for speed most wanted\nfs13.exe | "TCP Query User{8CF05DE3-4315-4DBD-AB3C-6CFBA9172CCB}C:\program files\ea games\need for speed most wanted\need for speed most wanted.exe" = protocol=6 | dir=in | app=c:\program files\ea games\need for speed most wanted\need for speed most wanted.exe | "TCP Query User{9CADF3E6-66F9-42E6-B846-44CE24B80BEB}D:\games\need for speed the run\need for speed the run.exe" = protocol=6 | dir=in | app=d:\games\need for speed the run\need for speed the run.exe | "TCP Query User{9DAC5D67-C9F3-47E7-BD03-CC2E885AF26C}D:\nfs2\speed2.exe" = protocol=6 | dir=in | app=d:\nfs2\speed2.exe | "TCP Query User{9E5D7EC0-5262-41BF-B85C-097AF6496854}C:\windows\explorer.exe" = protocol=6 | dir=in | app=c:\windows\explorer.exe | "TCP Query User{A3B32103-56C4-4D10-82F5-38D672227461}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{CEA3D397-6195-4A18-B112-BD2BFEAA174C}C:\windows\explorer.exe" = protocol=6 | dir=in | app=c:\windows\explorer.exe | "TCP Query User{D95A089B-20F1-4E21-98DE-D5A2B74D8610}D:\carbon\carbon\nfsc.exe" = protocol=6 | dir=in | app=d:\carbon\carbon\nfsc.exe | "TCP Query User{E7A8BEEA-4426-4DA4-94DE-134491D45FF6}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "TCP Query User{E7BBFE62-6193-40D2-83CF-4C8A376F9E65}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{EC6885EC-6461-4A42-AB8D-4A99A3E6FAB8}C:\windows\system32\javaw.exe" = protocol=6 | dir=in | app=c:\windows\system32\javaw.exe | "UDP Query User{0F4BC8D4-8276-4A1E-8078-02C9494B2AAF}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "UDP Query User{24240252-479A-4390-8325-0846E096E797}C:\windows\system32\javaw.exe" = protocol=17 | dir=in | app=c:\windows\system32\javaw.exe | "UDP Query User{3038DF8A-FF92-475D-B21C-D6F97C164553}F:\fifia 12\fifa-12-pc-pl\fifa 12\game\fifa.exe" = protocol=17 | dir=in | app=f:\fifia 12\fifa-12-pc-pl\fifa 12\game\fifa.exe | "UDP Query User{377BA264-512E-41A1-BC42-055CA9563C8C}F:\sopcast\sopcast.exe" = protocol=17 | dir=in | app=f:\sopcast\sopcast.exe | "UDP Query User{51C9381E-4627-4083-8CDF-0AA5288D7BCB}D:\carbon\carbon\nfsc.exe" = protocol=17 | dir=in | app=d:\carbon\carbon\nfsc.exe | "UDP Query User{5F622AC7-011D-4C19-9C8A-240407C11338}H:\sebastian\data\nfsw.exe" = protocol=17 | dir=in | app=h:\sebastian\data\nfsw.exe | "UDP Query User{5FA8960B-DA61-4771-97CB-BF840D039F45}C:\users\grzegorz\appdata\local\temp\kmsnano\qemu-system-i386.exe" = protocol=17 | dir=in | app=c:\users\grzegorz\appdata\local\temp\kmsnano\qemu-system-i386.exe | "UDP Query User{62001E5C-77E9-4E93-B6CB-3E78B1C86204}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{87242D81-A061-47F6-B50B-B4D34D9FB5F1}D:\nfs2\speed2.exe" = protocol=17 | dir=in | app=d:\nfs2\speed2.exe | "UDP Query User{8F188338-588E-41ED-B7DC-ED7FE8EAC069}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "UDP Query User{993FBE64-4037-45D8-825D-FEAD8FE4277E}D:\need for speed most wanted\nfs13.exe" = protocol=17 | dir=in | app=d:\need for speed most wanted\nfs13.exe | "UDP Query User{9BE14817-45C3-4E73-A68B-264DEF35D284}C:\windows\explorer.exe" = protocol=17 | dir=in | app=c:\windows\explorer.exe | "UDP Query User{9FA0245D-AB5C-4A05-B3C1-9B58A1F438CE}C:\programdata\electronic arts\need for speed world\data\nfsw.exe" = protocol=17 | dir=in | app=c:\programdata\electronic arts\need for speed world\data\nfsw.exe | "UDP Query User{A260E4EA-AD5C-486D-9310-01B9792921FA}C:\windows\explorer.exe" = protocol=17 | dir=in | app=c:\windows\explorer.exe | "UDP Query User{A391B11D-E699-4874-8E16-A240748E6A7B}C:\program files\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre7\bin\javaw.exe | "UDP Query User{B295F8B6-8D36-4ADF-9919-E605C8A80C40}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{BAE208A4-B538-463C-9F62-92ABAE725DF3}C:\windows\system32\javaw.exe" = protocol=17 | dir=in | app=c:\windows\system32\javaw.exe | "UDP Query User{CC7CF38C-39CE-4055-9BD0-1FC677257143}D:\fifa11\game\fifa.exe" = protocol=17 | dir=in | app=d:\fifa11\game\fifa.exe | "UDP Query User{E864823B-E6C3-41E0-9A4E-5D65D78706DA}C:\program files\ea games\need for speed most wanted\need for speed most wanted.exe" = protocol=17 | dir=in | app=c:\program files\ea games\need for speed most wanted\need for speed most wanted.exe | "UDP Query User{FFF7B08C-188E-4492-A6DA-5AA15A822CF9}D:\games\need for speed the run\need for speed the run.exe" = protocol=17 | dir=in | app=d:\games\need for speed the run\need for speed the run.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{02A003AD-7DEF-D28F-0E61-18D5F1D53CF5}" = Catalyst Control Center Localization All "{03DDA3C7-8D88-5D41-9BE4-210988CF65C3}" = Catalyst Control Center Graphics Previews Vista "{11A292E3-E60B-1335-C4F8-92F1841725D6}" = CCC Help Greek "{12CB7D4B-F29B-08D3-B305-3C3163F11E6D}" = CCC Help Finnish "{1D6FB37A-CBCA-11D6-8940-0002A5E32BEF}" = Prosiaczek i Przyjaciele "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{22A0602D-A83C-14A7-A09B-F3E13044D395}" = CCC Help Turkish "{22E05721-B122-F1A6-7EB2-3A61CA382464}" = ccc-utility "{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 51 "{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1 "{28FB7853-A6ED-4F67-8635-9F0E863FC0AD}" = Codec-TS SDK "{29E40836-2E12-4DD8-981B-F030D1F992AC}" = AVG 2011 "{32BA6FBB-C948-F45E-934C-5CC049D16263}" = CCC Help Hungarian "{35767883-90A2-B69B-E128-2912DD65CA09}" = CCC Help Dutch "{386AB6EF-B693-C15B-52F5-88BDC6B8291E}" = CCC Help Danish "{40138968-506D-15D7-B6DD-059C06EA2682}" = CCC Help Chinese Standard "{418EC9DD-25EE-4C3F-8827-B7AA9B26405B}" = WinFast Multimedia Driver Installation "{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR "{46CF6A90-7EFB-47E3-9B14-FBCEFA9F9982}" = Catalyst Control Center - Branding "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 "{5DB65884-C963-4454-AABA-4CA3089281FA}" = NVIDIA PhysX "{62D64F27-745D-49C0-A308-B08DFF16ECA0}" = AUTA - Mistrzostwa Złomka "{66CB0FCD-3BF4-F5C5-77AA-37316109072E}" = CCC Help German "{74BB27FA-63B9-DE85-04CB-69D51FF14AD6}" = CCC Help Chinese Traditional "{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime "{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype™ 6.14 "{7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1" = Need For Speed™ World "{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}" = NVIDIA ForceWare Network Access Manager "{865F8014-4DED-B63D-832A-3FB08FC38479}" = ATI Catalyst Install Manager "{88F66BC2-87E5-53F8-48DD-728501B98181}" = CCC Help Thai "{8937D274-C281-42E4-8CDB-A0B2DF979189}" = LWS Webcam Software "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{89FD4D6C-E280-4D6E-B96D-64882F5AD199}" = Angry Birds Breakfast 2 "{8DC72EF6-1EB6-610C-6CAB-709718CD2132}" = CCC Help English "{90150000-0015-0415-0000-0000000FF1CE}" = Microsoft Access MUI (Polish) 2013 "{90150000-0016-0415-0000-0000000FF1CE}" = Microsoft Excel MUI (Polish) 2013 "{90150000-0018-0415-0000-0000000FF1CE}" = Microsoft PowerPoint MUI (Polish) 2013 "{90150000-0019-0415-0000-0000000FF1CE}" = Microsoft Publisher MUI (Polish) 2013 "{90150000-001A-0415-0000-0000000FF1CE}" = Microsoft Outlook MUI (Polish) 2013 "{90150000-001B-0415-0000-0000000FF1CE}" = Microsoft Word MUI (Polish) 2013 "{90150000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Korrekturhilfen 2013 - Deutsch "{90150000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - English "{90150000-001F-0415-0000-0000000FF1CE}" = Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski "{90150000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2013 "{90150000-0044-0415-0000-0000000FF1CE}" = Microsoft InfoPath MUI (Polish) 2013 "{90150000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2013 "{90150000-0090-0415-0000-0000000FF1CE}" = Microsoft DCF MUI (Polish) 2013 "{90150000-00A1-0415-0000-0000000FF1CE}" = Microsoft OneNote MUI (Polish) 2013 "{90150000-00BA-0415-0000-0000000FF1CE}" = Microsoft Groove MUI (Polish) 2013 "{90150000-00E1-0415-0000-0000000FF1CE}" = Microsoft Office OSM MUI (Polish) 2013 "{90150000-00E2-0415-0000-0000000FF1CE}" = Microsoft Office OSM UX MUI (Polish) 2013 "{90150000-012B-0415-0000-0000000FF1CE}" = Microsoft Lync MUI (Polish) 2013 "{909F8EBC-EC7F-48FF-0085-475D818F0F31}" = Need for Speed Underground 2 "{91150000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2013 "{912A2205-1E54-3CE5-A1EB-997B64A0B539}" = Microsoft .NET Framework 4.5 PLK Language Pack "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Polski pakiet językowy dla programu Microsoft .NET Framework 4.5 PLK "{97D2408A-AC76-4ACA-F047-42180975A250}" = ccc-core-static "{9A0E0340-C3D7-42D1-96D4-64179FD456AE}" = De-interlace SDK "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9A996B6A-846E-4A89-B9C4-17546B7BE49F}" = Burnout(TM) Paradise The Ultimate Box "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9D9F86BB-E232-AC3B-8705-146AC303F636}" = CCC Help Polish "{9F612429-4A00-3D44-88CF-146DA2EE1F92}" = Microsoft .NET Framework 4.5 "{A6629839-6636-4998-95D6-2B0F52141861}_is1" = Expresso 2.0.0.410 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AA3F9FB3-20DF-8CAA-919A-F507FCAA9AB9}" = CCC Help Japanese "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.1) "{AF9848E2-5F19-4E49-9E6E-044FBDC28404}" = TT-SB SDK "{B1F7BB94-BE89-92DF-4736-D94A13E32622}" = CCC Help Swedish "{B76E1251-5ACA-AAB7-518D-17DC63282D23}" = Catalyst Control Center InstallProxy "{BA592980-D2D8-74B9-D9B0-84FB947F8DC9}" = CCC Help Portuguese "{BAFCE6EC-1BED-0644-4AE0-0827D3A5BF2D}" = CCC Help Russian "{C27BC2A2-30DD-4014-B22E-63EB0DB572F9}" = Logitech Webcam Software "{C92C584E-C781-475E-A8E2-C67D993A6B95}" = WinFast PVR2 "{CDC9CB03-079E-D721-4210-0CD5AE082A1B}" = CCC Help Italian "{D40EB009-0499-459c-A8AF-C9C110766215}" = Logitech Webcam Software "{DE5D7C38-92A7-675C-A49E-1B4F3D945AFE}" = CCC Help French "{E2E654A9-FF43-C395-2673-1385B493C574}" = CCC Help Korean "{E533E637-FB3E-4F28-8B18-449CC9AB7235}" = AVG 2011 "{E600853D-6991-2174-0826-F0DE7E024602}" = CCC Help Spanish "{E735A4C4-F4E0-0BA6-288F-C792BD8969B1}" = CCC Help Norwegian "{EEA93FD7-132D-2968-9478-D84CAAF3FAD5}" = CCC Help Czech "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "2a3fbdff" = Contextual Tool Sleekseek "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 12 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 12 Plugin "ALLPlayer V3.2_is1" = ALLPlayer V3.X "AVG" = AVG 2011 "CANONIJINBOXADDON100" = Canon Inkjet Printer Driver Add-On Module "DAEMON Tools Lite" = DAEMON Tools Lite "Easy-PhotoPrint EX" = Canon Utilities Easy-PhotoPrint EX "FlvPlayer" = FlvPlayer "Fraps" = Fraps (remove only) "InstallShield_{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}" = NVIDIA ForceWare Network Access Manager "KLiteCodecPack_is1" = K-Lite Codec Pack 10.4.0 Full "Minecraft1.7.2" = Minecraft1.7.2 "Mozilla Firefox 28.0 (x86 pl)" = Mozilla Firefox 28.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NVIDIA Drivers" = NVIDIA Drivers "Office15.PROPLUSR" = Microsoft Office Professional Plus 2013 "qt7lite_is1" = QT Lite 3.1.0 "RealAlt_is1" = Real Alternative 2.0.1 Lite "RealPlayer 12.0" = RealPlayer "SopCast" = SopCast 3.8.3 "uTorrent" = µTorrent "WinRAR_is1" = WinRAR 3.70 PL [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "GG" = GG "UnityWebPlayer" = Unity Web Player [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-11-17 12:47:07 | Computer Name = 1q21ws | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: stdrt.exe, wersja: 1.3.0.0, sygnatura czasowa: 0x4d09f447 Nazwa modułu powodującego błąd: stdrt.exe, wersja: 1.3.0.0, sygnatura czasowa: 0x4d09f447 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00001c25 Identyfikator procesu powodującego błąd: 0xf88 Godzina uruchomienia aplikacji powodującej błąd: 0x01cdc4e2d4365437 Ścieżka aplikacji powodującej błąd: C:\Users\Grzegorz\AppData\Local\Temp\mrt2C2B.tmp\stdrt.exe Ścieżka modułu powodującego błąd: C:\Users\Grzegorz\AppData\Local\Temp\mrt2C2B.tmp\stdrt.exe Identyfikator raportu: 6b956a68-30d6-11e2-bb2e-001a4d6d98b2 Error - 2012-11-17 12:47:38 | Computer Name = 1q21ws | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: stdrt.exe, wersja: 1.3.0.0, sygnatura czasowa: 0x4d09f447 Nazwa modułu powodującego błąd: stdrt.exe, wersja: 1.3.0.0, sygnatura czasowa: 0x4d09f447 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00001c25 Identyfikator procesu powodującego błąd: 0x13c4 Godzina uruchomienia aplikacji powodującej błąd: 0x01cdc4e330b9a376 Ścieżka aplikacji powodującej błąd: C:\Users\Grzegorz\AppData\Local\Temp\mrt8A7E.tmp\stdrt.exe Ścieżka modułu powodującego błąd: C:\Users\Grzegorz\AppData\Local\Temp\mrt8A7E.tmp\stdrt.exe Identyfikator raportu: 7e5ae420-30d6-11e2-bb2e-001a4d6d98b2 Error - 2012-11-18 13:40:24 | Computer Name = 1q21ws | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: speed2.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x417d8e48 Nazwa modułu powodującego błąd: speed2.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x417d8e48 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0003feac Identyfikator procesu powodującego błąd: 0x140c Godzina uruchomienia aplikacji powodującej błąd: 0x01cdc5b0f06723d9 Ścieżka aplikacji powodującej błąd: D:\NFS2\speed2.exe Ścieżka modułu powodującego błąd: D:\NFS2\speed2.exe Identyfikator raportu: 07fddd0f-31a7-11e2-b1af-001a4d6d98b2 Error - 2012-11-21 16:34:24 | Computer Name = 1q21ws | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: speed2.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x417d8e48 Nazwa modułu powodującego błąd: speed2.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x417d8e48 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000939e0 Identyfikator procesu powodującego błąd: 0xe3c Godzina uruchomienia aplikacji powodującej błąd: 0x01cdc81e7be93fe8 Ścieżka aplikacji powodującej błąd: D:\NFS2\speed2.exe Ścieżka modułu powodującego błąd: D:\NFS2\speed2.exe Identyfikator raportu: d59ac9ec-341a-11e2-bdf8-001a4d6d98b2 Error - 2012-11-26 11:29:14 | Computer Name = 1q21ws | Source = MsiInstaller | ID = 11609 Description = Error - 2012-11-26 13:28:28 | Computer Name = 1q21ws | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: javaw.exe, wersja: 6.0.240.7, sygnatura czasowa: 0x4d4a0b98 Nazwa modułu powodującego błąd: resultscan.dll_unloaded, wersja: 0.0.0.0, sygnatura czasowa: 0x4f96c2a4 Kod wyjątku: 0xc000001e Przesunięcie błędu: 0x4ae8299c Identyfikator procesu powodującego błąd: 0x1168 Godzina uruchomienia aplikacji powodującej błąd: 0x01cdcbec89ebaadd Ścieżka aplikacji powodującej błąd: C:\Windows\system32\javaw.exe Ścieżka modułu powodującego błąd: resultscan.dll Identyfikator raportu: b03a79b2-37ee-11e2-9e63-001a4d6d98b2 Error - 2012-11-26 13:28:28 | Computer Name = 1q21ws | Source = Application Error | ID = 1005 Description = System Windows nie może uzyskać dostępu do pliku z jednej z następujących przyczyn: problem z połączeniem sieciowym; problem z dyskiem, na którym jest przechowywany plik; problem ze sterownikami magazynu zainstalowanymi na tym komputerze; brak dysku. System Windows zamknął program Java(TM) Platform SE binary z powodu tego błędu. Program: Java(TM) Platform SE binary Plik: Wartość błędu jest wyświetlona w sekcji Dodatkowe dane. Akcja użytkownika 1. Otwórz plik ponownie. Ta sytuacja może być przejściowym problemem, który sam się rozwiąże po ponownym uruchomieniu programu. 2. Jeśli nadal nie można uzyskać dostępu do pliku i - jest w sieci, administrator sieci powinien sprawdzić, czy nie ma problemu z siecią i czy można skontaktować się z serwerem. - jest na dysku wymiennym, na przykład dyskietce lub dysku CD-ROM, sprawdź, czy cały dysk jest włożony do komputera. 3. Sprawdź i napraw system plików, uruchamiając program CHKDSK. Aby uruchomić program CHKDSK, kliknij przycisk Start, kliknij polecenie Uruchom, wpisz polecenie CMD, a następnie kliknij przycisk OK. W wierszu polecenia wpisz polecenie CHKDSK /F, a następnie naciśnij klawisz ENTER. 4. Jeżeli problem nie ustąpi, przywróć plik z kopii zapasowej. 5. Ustal, czy można otworzyć inne pliki na tym samym dysku. Jeśli nie, dysk może być uszkodzony. Jeśli jest to dysk twardy, skontaktuj się z administratorem komputera lub dostawcą sprzętu komputerowego, aby uzyskać dalszą pomoc. Dodatkowe dane Wartość błędu: 00000000 Typ dysku: 0 Error - 2012-12-03 12:20:01 | Computer Name = 1q21ws | Source = MsiInstaller | ID = 11609 Description = Error - 2012-12-14 05:49:52 | Computer Name = 1q21ws | Source = MsiInstaller | ID = 11609 Description = Error - 2012-12-21 14:05:30 | Computer Name = 1q21ws | Source = MsiInstaller | ID = 11609 Description = [ System Events ] Error - 2014-03-12 08:28:32 | Computer Name = 1q21ws | Source = Service Control Manager | ID = 7034 Description = Usługa Skype Updater niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2014-03-12 14:30:58 | Computer Name = 1q21ws | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-03-18 10:49:45 | Computer Name = 1q21ws | Source = WMPNetworkSvc | ID = 866300 Description = Error - 2014-03-19 14:27:28 | Computer Name = 1q21ws | Source = WMPNetworkSvc | ID = 866300 Description = Error - 2014-03-20 15:01:14 | Computer Name = 1q21ws | Source = Microsoft-Windows-Application-Experience | ID = 205 Description = Usługa Asystent zgodności programów nie może wykonać inicjowania fazy drugiej. Error - 2014-03-23 18:14:07 | Computer Name = 1q21ws | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-03-26 13:10:32 | Computer Name = 1q21ws | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-03-27 14:16:48 | Computer Name = 1q21ws | Source = cdrom | ID = 262151 Description = W urządzeniu \Device\CdRom0 wystąpił zły blok. Error - 2014-03-27 14:44:37 | Computer Name = 1q21ws | Source = cdrom | ID = 262151 Description = W urządzeniu \Device\CdRom0 wystąpił zły blok. Error - 2014-04-01 13:45:42 | Computer Name = 1q21ws | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. < End of report >