OTL Extras logfile created on: 2014-04-12 18:58:35 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\DarekW\Downloads 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.16384) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,88 Gb Total Physical Memory | 2,17 Gb Available Physical Memory | 55,96% Memory free 4,57 Gb Paging File | 2,56 Gb Available in Paging File | 56,18% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 347,64 Gb Total Space | 282,48 Gb Free Space | 81,26% Space Free | Partition Type: NTFS Drive E: | 339,72 Gb Total Space | 332,28 Gb Free Space | 97,81% Space Free | Partition Type: NTFS Computer Name: DAREK | User Name: DarekW | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-1715611341-132608252-1270519658-1002\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [runas] -- cmd.exe /c takeown /f "%1" /r /d y && icacls "%1" /grant administrators:F /t (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [runas] -- cmd.exe /c takeown /f "%1" /r /d y && icacls "%1" /grant administrators:F /t (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = [binary data] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = Reg Error: Unknown registry data type -- File not found [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{00F0EE75-43D4-4B9B-AE86-49B7EBC3E4ED}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe | "{28CF48C4-5856-4234-BC20-534595884DAB}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{5438FAB3-D0AE-4454-BFC8-CC376DFAA458}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{69748D8A-D661-4D07-A1FA-211FC4BFB5BB}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{98C3D633-885F-46CA-BDD8-A1DFD09FDB73}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{DB19A294-AA39-4758-BD38-39EA65F450E1}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{E9C85475-EECB-4271-A08D-2A5BEA808509}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0333D1D4-8CC4-48A1-B50A-33061A68F948}" = dir=out | name=@{microsoft.bingmaps_2.0.2530.2317_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{0B2247B6-F541-49B7-9E6A-6DD393ABD026}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{119E90B3-1E34-4019-B624-35CCA9E2D6FE}" = dir=out | name=@{microsoft.bingfinance_3.0.2.234_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/brandedapptitle} | "{1213F6DC-8F23-4C0B-A8F9-A07B439DBC2F}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe | "{12360748-15BF-48C2-90E8-AB41FD568F21}" = dir=out | name=kindle | "{130A5872-32C6-4F83-A20F-2B3C4D07B48B}" = dir=out | name=fresh paint | "{16F51DE7-9F72-44CC-A0DD-769A1978E0E5}" = dir=out | name=evernote touch | "{1B418479-C037-46CA-8468-8A0B2A3ED7E0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{212B6734-138B-4886-8B6C-79F5E70BA2F5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\half-life\hl.exe | "{283A0211-134C-4854-92E5-EC4865363F98}" = dir=out | name=toshiba media player by smedio truelink+ | "{283DACCC-7156-4254-8EDD-E41439034C19}" = dir=out | name=@{microsoft.bingtravel_3.0.2.233_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/brandedapptitle} | "{284E4D84-B5B7-48A4-8994-2E83A9A04BCD}" = dir=out | name=- games app - | "{28C68800-6C90-4C16-BF60-E7513E6E13D9}" = protocol=17 | dir=in | app=c:\program files (x86)\spotify\data\spotifywebhelper.exe | "{2ABA6565-FD0D-4E7E-9FF2-1FBF083EAD3F}" = dir=in | name=intel appup® center – toshiba europe edition | "{307E34AF-565F-4368-BDFA-6E28315FA0F8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{30C14BB0-8F51-493F-8C19-37A5B2B55135}" = dir=out | name=vod onet | "{42309071-FAF6-45B0-BE36-03CB348D1171}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn | "{4A2C149B-4AF7-4EFF-9B0F-062BB7732F20}" = dir=out | name=onet news | "{4DB0514A-BCD3-4301-AAEA-107C2D63B399}" = protocol=6 | dir=in | app=c:\program files (x86)\spotify\spotify.exe | "{503C00F8-FD17-406D-B667-74A10E253FED}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20413_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{525BB892-8E10-49CA-8CEC-F59CAF8394BC}" = protocol=6 | dir=in | app=c:\program files (x86)\spotify\data\spotifywebhelper.exe | "{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect | "{5743E3F6-95E8-463D-8F56-E25BE2EF37A9}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe | "{5AE1094F-C4AC-4D13-A814-D440441E86E2}" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect | "{6113BD61-0746-4E5A-AA08-45BE30770D6C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\half-life\hl.exe | "{614E659F-3401-4BB2-A767-8EBC80AF89D5}" = dir=in | name=skype | "{6411A4B0-8311-4481-83B1-9B2946CB5097}" = dir=in | name=toshiba media player by smedio truelink+ | "{64672409-AA66-4002-8894-4EFCE52A7D65}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe | "{64A1882E-1DF6-4EC8-94CC-F4521A02DBF7}" = dir=out | name=@{microsoft.bingsports_3.0.2.233_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/brandedapptitle} | "{6B1359AF-B477-47C0-B441-ACD121B3DD9A}" = dir=out | name=toshiba places | "{6B474286-DC1A-4440-9935-F16955F6C88A}" = dir=out | name=@{microsoft.zunevideo_2.2.767.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{74A8137D-4A98-429B-91AF-FA88916018BC}" = dir=out | name=skitch touch | "{7DFDE967-CD19-40D0-AF28-8B1F1F556495}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{7DFEFAD8-2884-4484-A3D4-BD04974AC568}" = dir=out | name=@{microsoft.zunemusic_2.2.800.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{9DF80FE2-BA6E-4365-91B1-583F00AC5FCF}" = dir=out | name=intel appup® center – toshiba europe edition | "{9E2B8E66-DA75-47D5-8F43-CD949972E95B}" = protocol=17 | dir=in | app=c:\program files (x86)\spotify\spotify.exe | "{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{9E465239-F29C-47DE-9B3D-8D75944AEA55}" = dir=out | name=radio zet | "{A0EEEE59-0EE9-4B99-A346-4706A2B3B16A}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{A2E64610-336C-4B1F-AC09-55EEFD03F5D2}" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "{A75D7E75-FA5C-433F-B402-2FD91E2C62D2}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.2.233_x64__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} | "{ABFB9873-9108-46AB-B260-72A18660E387}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20413_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{AD75B165-4C93-48D7-B8DE-DA14AD29DB18}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe | "{B5C2A677-0D6D-4144-B907-AE9C1432F81B}" = dir=in | name=mcafee® central for toshiba | "{B62F3EF8-8DAC-4365-B968-F8942F475197}" = dir=out | name=amazon | "{BD7283AD-6038-4597-A760-2C49246B7017}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9600.16384_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} | "{C2359912-71EB-462D-8E05-D534B48CDA02}" = protocol=17 | dir=in | app=c:\program files\bitcomet\bitcomet.exe | "{C4B67E5E-EF26-40BB-BB39-95F8BEE70F92}" = dir=out | name=windows_ie_ac_001 | "{C9F08D2D-8B8E-4B0B-B649-DB2D4EB34035}" = dir=out | name=@{microsoft.bingweather_3.0.2.233_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{CF684C98-77F1-4A29-8717-BF83C6F98B2A}" = dir=in | name=evernote touch | "{D63D1862-9693-4A38-B083-045A42D08D38}" = dir=out | name=@{microsoft.bingnews_3.0.2.233_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/brandedapptitle} | "{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn | "{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn | "{E16A96DC-14D7-4F28-901F-94DB0B31278A}" = dir=out | name=mcafee® central for toshiba | "{E1B5BD8C-9006-4D21-B786-C34CAF49B533}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.1.177_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} | "{E427B9A1-A915-47E9-AE4A-B3464DB47009}" = dir=out | name=skype | "{E48B016B-D7D7-4048-880D-34BA8836D44E}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{E546F41A-DECF-4526-B3D5-C9B8A89733D0}" = dir=out | name=doodle god™ free for toshiba | "{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn | "{F16A2ECD-59E2-4EDE-8842-C3D4F555DB07}" = protocol=6 | dir=in | app=c:\program files\bitcomet\bitcomet.exe | "{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client | "{F71E2D58-4ADC-4884-B6DD-34C6C74CD4EA}" = dir=out | name=skyscanner | "{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client | "{FD6D8DCD-0479-49EC-8823-52469A240D27}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9600.16384_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{16562A90-71BC-41A0-B890-D91B0C267120}" = TOSHIBA Function Key "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{34FE5428-54F4-3883-9372-AD81FFD14F69}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.20617 "{409CB30E-E457-4008-9B1A-ED1B9EA21140}" = Intel(R) Rapid Storage Technology "{588A747E-CFF6-46B3-9207-CD754F9473AF}" = IDT Audio Driver "{5944B9D4-3C2A-48DE-931E-26B31714A2F7}" = TOSHIBA eco Utility "{84FA4D2D-4273-4C66-BD3D-ADD3FE48DFA2}" = TOSHIBA Display Utility "{89AFB053-A343-46EF-97E4-D593AD7184E6}" = Intel® Trusted Connect Service Client "{8DCF8C8F-4ADA-3395-BF10-A3437F9929D4}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.20617 "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2010 "{93F692D4-0C4D-4EED-9BFE-657C1D5959FE}" = Intel(R) Rapid Storage Technology "{95CCACF0-010D-45F0-82BF-858643D8BC02}" = TOSHIBA Desktop Assist "{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}" = TOSHIBA PC Health Monitor "{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 "{A84A4FB1-D703-48DB-89E0-68B6499D2801}" = Qualcomm Atheros Bluetooth Suite (64) "{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 335.23 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 335.23 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 1.8.2 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus Update 11.10.11 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.13.1220 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 11.10.11 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamC" = GeForce Experience NvStream Client Components "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 11.10.11 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.20 "{FBFCEEA5-96EA-4C8E-9262-43CBBEBAE413}" = TOSHIBA Service Station "{FF07604E-C860-40E9-A230-E37FA41F103A}" = TOSHIBA VIDEO PLAYER "CCleaner" = CCleaner "CPUID CPU-Z_is1" = CPUID CPU-Z 1.68 "CPUID HWMonitor_is1" = CPUID HWMonitor 1.24 "GIMP-2_is1" = GIMP 2.8.10 "SynTPDeinstKey" = Synaptics Pointing Device Driver "Totalcmd64" = Total Commander 64-bit (Remove or Repair) "WinRAR archiver" = WinRAR 5.01 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{05A55927-DB9B-4E26-BA44-828EBFF829F0}" = TOSHIBA System Settings "{15134cb0-b767-4960-a911-f2d16ae54797}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 "{1E6A96A1-2BAB-43EF-8087-30437593C66C}" = TOSHIBA System Driver "{1F2DC3EA-9682-3AAA-BB63-D9BC1AC17960}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.20617 "{1f407217-9aec-4146-8504-e64ac959c534}" = Microsoft Visual C++ 2013 Preview Redistributable (x86) - 12.0.20617 "{22154f09-719a-4619-bb71-5b3356999fbf}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 "{26A24AE4-039D-4CA4-87B4-2F83217051FF}" = Java 7 Update 51 "{2DFA9084-CEB3-4A48-B9F7-9038FEF1B8F4}" = DTS Sound "{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 "{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App" = Update Installer for WildTangent Games App "{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Qualcomm Atheros Inc.(R) AR81Family Gigabit/Fast Ethernet Driver "{420ED767-62A5-462F-9DDA-AE3A95D4BF32}" = Alcor Micro USB Card Reader "{448652c1-f5f3-4230-98c6-68c10c88b1fb}" = Microsoft Visual C++ 2013 Preview Redistributable (x64) - 12.0.20617 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-toshiba" = WildTangent Games App (Toshiba Games) "{74D52476-2E1E-3F1B-8460-E4ECF2FB6491}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.20617 "{78931270-BC9E-441A-A52B-73ECD4ACFAB5}" = TOSHIBA Password Utility "{80407BA7-7763-4395-AB98-5233F1B34E65}" = NVIDIA PhysX "{90140000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}" = TOSHIBA Manuals "{91140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}" = TOSHIBA Recovery Media Creator "{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Atheros Driver Installation Program "{CE0374A6-B204-4336-8293-63FBB1DADBF4}" = TOSHIBA Addendum "{E6B58BFB-18F0-4BCC-9FF7-378D783DA758}" = TOSHIBA Addendum "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F76F5214-83A8-4030-80C9-1EF57391D72A}" = Toshiba TEMPRO "{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 "AmUStor" = Alcor Micro USB Card Reader "BitComet_x64" = BitComet 1.37 64-bit "Google Chrome" = Google Chrome "InstallShield_{78931270-BC9E-441A-A52B-73ECD4ACFAB5}" = TOSHIBA Password Utility "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 2.0.1.1004 "MSC" = McAfee AntiVirus Plus "Office14.PROPLUSR" = Microsoft Office Professional Plus 2010 "Spotify" = Spotify "Steam" = Steam "Steam App 10" = Counter-Strike "TechPowerUp GPU-Z" = TechPowerUp GPU-Z "WildTangent wildgames Master Uninstall" = WildTangent Games "Winamp" = Winamp "WTA-006ee628-3989-4daf-bfda-407f77cabcd7" = Peggle Nights "WTA-28c43372-a63c-4ccf-8694-009bc6343bd6" = Bejeweled 3 "WTA-2c935366-a77f-4833-a708-8e9ac129bc2c" = Jewel Quest Solitaire 2 "WTA-3f0667f9-6299-4886-b853-883a4e741384" = Magic Academy "WTA-614c5832-616b-47da-9ea8-b7373a1688c3" = Polar Bowler "WTA-839621f8-3943-4356-a201-69d6555bdde7" = Plants vs. Zombies - Game of the Year "WTA-922f3ac0-7630-4a47-9ee9-93832a916459" = Virtual Villagers 4 - The Tree of Life "WTA-9bc63f49-9e2d-416f-8107-e4f8bcbdf135" = Chuzzle Deluxe "WTA-c4703c48-79c5-4b85-8bb4-fd276f73e398" = Empress of the Deep - The Darkest Secret "WTA-d8e188aa-5062-416d-98c7-cd3449a387da" = Aloha TriPeaks "WTA-e0207d88-c4b4-4b3f-9462-469524369616" = Island Tribe [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1715611341-132608252-1270519658-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "GG" = GG [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-04-02 10:14:46 | Computer Name = Darek | Source = C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe | ID = 131073 Description = Error - 2014-04-02 16:00:52 | Computer Name = Darek | Source = Steam Client Service | ID = 1 Description = Error: Failed to poke open firewall Error - 2014-04-03 04:55:09 | Computer Name = Darek | Source = Steam Client Service | ID = 1 Description = Error: Failed to poke open firewall Error - 2014-04-03 15:28:19 | Computer Name = Darek | Source = Steam Client Service | ID = 1 Description = Error: Failed to poke open firewall Error - 2014-04-03 15:28:49 | Computer Name = Darek | Source = Steam Client Service | ID = 1 Description = Error: Failed to poke open firewall Error - 2014-04-03 17:32:42 | Computer Name = Darek | Source = NvStreamSvc | ID = 131073 Description = Error - 2014-04-04 18:10:45 | Computer Name = Darek | Source = C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe | ID = 131073 Description = Error - 2014-04-05 14:21:14 | Computer Name = Darek | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: fifa14-www.skidrowcrack.com.exe, wersja: 1.2.0.0, sygnatura czasowa: 0x03f40040 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.3.9600.16384, sygnatura czasowa: 0x52159015 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0003b780 Identyfikator procesu powodującego błąd: 0x1f6c Godzina uruchomienia aplikacji powodującej błąd: 0x01cf50fbd29d3ec2 Ścieżka aplikacji powodującej błąd: E:\FIFA 14\FIFA 14 Ultimate Edition\Game\fifa14-www.skidrowcrack.com.exe Ścieżka modułu powodującego błąd: C:\Windows\SYSTEM32\ntdll.dll Identyfikator raportu: 11e49012-bcef-11e3-826c-645a04b9ceb8 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error - 2014-04-05 14:29:19 | Computer Name = Darek | Source = Perflib | ID = 1021 Description = Error - 2014-04-05 14:29:19 | Computer Name = Darek | Source = Perflib | ID = 1017 Description = [ System Events ] Error - 2014-04-04 18:12:05 | Computer Name = Darek | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi McAfee Inc. mfeapfk z powodu następującego błędu: %%1243 Error - 2014-04-05 02:03:01 | Computer Name = Darek | Source = DCOM | ID = 10010 Description = Error - 2014-04-05 02:03:32 | Computer Name = Darek | Source = DCOM | ID = 10010 Description = Error - 2014-04-05 03:23:20 | Computer Name = Darek | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi McAfee Inc. mfeapfk z powodu następującego błędu: %%1243 Error - 2014-04-05 03:34:36 | Computer Name = Darek | Source = DCOM | ID = 10010 Description = Error - 2014-04-05 03:35:07 | Computer Name = Darek | Source = DCOM | ID = 10010 Description = Error - 2014-04-05 03:42:20 | Computer Name = Darek | Source = Microsoft-Windows-DNS-Client | ID = 1012 Description = Wystąpił błąd podczas próby odczytu lokalnego pliku hosts. Error - 2014-04-05 04:13:46 | Computer Name = Darek | Source = DCOM | ID = 10010 Description = Error - 2014-04-05 04:14:16 | Computer Name = Darek | Source = DCOM | ID = 10010 Description = Error - 2014-04-05 15:16:05 | Computer Name = Darek | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi McAfee Inc. mfeapfk z powodu następującego błędu: %%1243 < End of report >