OTL Extras logfile created on: 2014-04-26 14:35:39 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\ASUS\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17041) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,91 Gb Total Physical Memory | 1,15 Gb Available Physical Memory | 29,50% Memory free 7,83 Gb Paging File | 4,58 Gb Available in Paging File | 58,51% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 119,24 Gb Total Space | 60,20 Gb Free Space | 50,49% Space Free | Partition Type: NTFS Drive D: | 153,85 Gb Total Space | 149,30 Gb Free Space | 97,04% Space Free | Partition Type: NTFS Computer Name: ASUS-KOMPUTER | User Name: ASUS | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~3\Office12\ONENOTE.EXE "%L" Directory [Winamp.Bookmark] -- "D:\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "D:\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "D:\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DefaultInboundAction" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DefaultInboundAction" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DefaultInboundAction" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0266B1AA-14A1-439C-B7AD-DD0D9274B55A}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{05C0B32A-8B4B-48AA-97D2-3D4719600461}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{0CB23627-94F3-4A75-8A7E-89E13D55B78C}" = lport=445 | protocol=6 | dir=in | app=system | "{10775259-69EA-4E3E-B532-EA5EEAE48967}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{16C248E0-FFFA-49BE-8131-7083D2FA55C3}" = lport=10243 | protocol=6 | dir=in | app=system | "{28869238-09BA-4184-BAD0-9E1987426A77}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{374F120E-6822-45FD-A363-1B8CF189C4F4}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4F47A8DF-2182-4C7E-B1DE-CEFE945C2897}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4FD2505E-C64F-4A2F-B7D5-CF68A37D5458}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{5550620A-B1DA-4195-A8B4-93FDBC3ED305}" = rport=445 | protocol=6 | dir=out | app=system | "{67336869-D9DB-452B-83EA-87607D68CD1E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{6AA4FD92-3C81-40B7-975B-1B3D8EEABD54}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe | "{714FBB8F-52A2-4BA9-AA93-169074BE1F36}" = rport=138 | protocol=17 | dir=out | app=system | "{788F22C4-A285-4FD3-8529-06073D4642ED}" = lport=137 | protocol=17 | dir=in | app=system | "{8C2AA9BD-02E7-49B1-AE65-EE8110D7EB13}" = lport=2869 | protocol=6 | dir=in | app=system | "{974E0900-784C-46C4-A56D-AE301E1BB2F2}" = rport=139 | protocol=6 | dir=out | app=system | "{A03D1760-783D-4E1E-B2DD-71DE7D5A9F79}" = lport=139 | protocol=6 | dir=in | app=system | "{A7E6F0B5-4D26-41EA-8FEC-DCFC1A6D612D}" = rport=10243 | protocol=6 | dir=out | app=system | "{B3E85911-6F6F-4BC7-A785-B9A79CB2E857}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{BEBC4E55-8AB5-433A-8797-53F6355AC485}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{E9196F17-42E5-441B-9623-0208C65170E5}" = lport=138 | protocol=17 | dir=in | app=system | "{ED86D52F-04BF-4BD5-ADEB-55DA79599544}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{F72CE062-DB63-44FF-ACB9-7F11CD8FA229}" = rport=137 | protocol=17 | dir=out | app=system | "{FCBC6B18-5687-4313-93C5-FEB2163AF228}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{056E9801-92C9-403A-9A9A-48604C1D9383}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe | "{208F04F9-7B11-410B-BF20-55A4341D4E7A}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{2A1C5F63-15BC-47B5-8E0D-8822491D6CE9}" = protocol=17 | dir=in | app=c:\steam\steam.exe | "{2EA96D0F-B52A-479F-8D36-061F8D36DBC5}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{317E9BD7-A94D-431C-8FFF-4B69FF5B8955}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{472D2F38-07F5-424E-BA0B-D6D09E462393}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{4D06A29D-EDE7-4916-AF17-0C3615D4B7B8}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{4F90D2F4-8B17-44F9-8FF4-CEF3A8BED771}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{52E5837F-C18B-4DB0-8A3D-61401D0DF720}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{564757B9-91E1-405D-A11B-97F21EBCCA11}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{5F1BAEDC-046C-42F3-8E77-508868C01D82}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{60E9A603-FFB7-418F-ABBD-613D5B877174}" = protocol=6 | dir=in | app=c:\program files\hp\hp deskjet 1050 j410 series\bin\usbsetup.exe | "{6C87E580-439E-4C8C-AF73-BA3A957CFE56}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{7221FFD5-27D8-4E90-9C8E-BC962062DAB9}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{737CC170-0573-45BF-B1BF-84C3B343D18B}" = protocol=17 | dir=in | app=c:\program files (x86)\searchcore toolbar\datamngr\toolbar\dtuser.exe | "{772A0430-E82C-49B6-B36D-80324BCA39B8}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{7A76547D-8A2E-443A-8CFE-61C81D91B5CB}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{7D45690A-5938-4262-8572-029CF51FB238}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{8BA2F7FF-0F00-4C25-9C2C-D3EA3F6019B5}" = protocol=6 | dir=in | app=c:\steam\steamapps\djneufor\counter-strike\hl.exe | "{8D41EF34-E683-42D0-89D6-87EA7BB8C162}" = protocol=17 | dir=in | app=c:\program files (x86)\pandora.tv\panservice\pandoraservice.exe | "{95E55E14-9B0B-4495-83AE-80D524949CF4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{9684C1CB-E681-45F9-A718-A295FAB01B0E}" = dir=in | app=c:\users\asus\appdata\local\facebook\video\skype\facebookvideocalling.exe | "{9B1CB350-D224-4C80-AFCE-AD2906D6C6CD}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{A880BE21-4BBD-4D1B-95A0-42B897FBF20A}" = protocol=6 | dir=in | app=c:\program files (x86)\searchcore toolbar\datamngr\toolbar\dtuser.exe | "{B05957AB-033D-4F07-B0A7-4E9A3F09D762}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{BFEC395C-DE1A-40D2-A6CC-A60BD102EDF5}" = protocol=17 | dir=in | app=c:\program files\hp\hp deskjet 1050 j410 series\bin\usbsetup.exe | "{C4A1F7CD-A343-44F1-8099-99E5F24DE39A}" = protocol=6 | dir=in | app=c:\program files (x86)\pandora.tv\panservice\pandoraservice.exe | "{C4EE7A82-F13D-4AF7-806C-D4CF5D12292A}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{CEA03B1B-CD55-49A6-A890-13D55D62B2C1}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{D1BEC5B4-C4D4-4226-802D-6F18C9B3FF6D}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{D9855BF9-66F8-4058-8753-2158BD10DA73}" = protocol=6 | dir=out | app=system | "{DA7356E0-6C71-42EB-973A-C2DB8468ECF9}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{F99E71C2-F194-4349-9138-63A157976F26}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{FC3649B0-22ED-40C3-81F7-199CA4E9DC23}" = protocol=17 | dir=in | app=c:\steam\steamapps\djneufor\counter-strike\hl.exe | "{FE1C69C8-AC1F-4BA3-B6C0-60D32D9FF0F6}" = protocol=6 | dir=in | app=c:\steam\steam.exe | "{FF8DADEE-A0CA-4F14-975C-D2AE656866CE}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "TCP Query User{2A543D86-D42C-4E46-9F3B-92858030B139}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "TCP Query User{4DC813E1-1A06-438B-92E2-F6DD9A50F50A}C:\program files (x86)\valve\hl.exe" = protocol=6 | dir=in | app=c:\program files (x86)\valve\hl.exe | "TCP Query User{95031D64-4A8E-4E9F-9E55-82BCF0E19F9A}D:\winamp\winamp.exe" = protocol=6 | dir=in | app=d:\winamp\winamp.exe | "TCP Query User{99481932-61C7-4FCA-9FFA-030E262A4BFA}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "TCP Query User{9BA3953D-D0D0-4AE2-925E-4DCCD64542F0}C:\program files\cascade\cascade.exe" = protocol=6 | dir=in | app=c:\program files\cascade\cascade.exe | "TCP Query User{AB8204AA-ED05-49CD-9889-11384450B771}D:\winamp\winamp.exe" = protocol=6 | dir=in | app=d:\winamp\winamp.exe | "TCP Query User{DDB71062-62CF-4650-913D-304330747781}C:\program files (x86)\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "TCP Query User{F420A074-C227-43B0-87D2-9EDA6197F740}D:\nfs world\data\nfsw.exe" = protocol=6 | dir=in | app=d:\nfs world\data\nfsw.exe | "UDP Query User{354FDD7E-3ADB-4C53-907D-AC63E91DBA30}C:\program files (x86)\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "UDP Query User{4ACA31E8-DC58-44A8-93CA-7CD70F760FAC}C:\program files (x86)\valve\hl.exe" = protocol=17 | dir=in | app=c:\program files (x86)\valve\hl.exe | "UDP Query User{89B4B05D-00C3-4A26-9185-DD8152AB819B}D:\winamp\winamp.exe" = protocol=17 | dir=in | app=d:\winamp\winamp.exe | "UDP Query User{A1982EE4-7066-4FEE-B231-3C4BEF17E676}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "UDP Query User{BE30E512-3169-43CD-AA3F-51D3B7AF35E7}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | "UDP Query User{CF1C7311-2EB7-419B-842F-2F2FDF735F42}D:\winamp\winamp.exe" = protocol=17 | dir=in | app=d:\winamp\winamp.exe | "UDP Query User{DE10C537-2467-43FC-93A5-29B70C2D9583}D:\nfs world\data\nfsw.exe" = protocol=17 | dir=in | app=d:\nfs world\data\nfsw.exe | "UDP Query User{EFBEBF44-D5B3-4A6B-A3B1-DC06030940E6}C:\program files\cascade\cascade.exe" = protocol=17 | dir=in | app=c:\program files\cascade\cascade.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00000000-2778-5BED-8199-52EB14D8D22F}" = F-Secure CCF Reputation "{1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1" = Euro Truck Simulator 2 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1" = Media Player Classic - Home Cinema v1.5.2.3456 "{26A24AE4-039D-4CA4-87B4-2F83216030FF}" = Java(TM) 6 Update 30 "{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Atheros WLAN and Bluetooth Client Installation Program "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module "{553C904F-57A2-4113-888E-BA0C3D1C69C0}" = Microsoft VC9 runtime libraries "{590D0D42-0170-436F-9822-CD5B2EA0FA2D}" = F-Secure SafeSearch 1.01.107.0 (release) "{5C90D8CF-F12A-41C6-9007-3B651A1F0D78}" = HP Deskjet 1050 J410 series Pomoc "{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module "{658FDBCA-B7A1-43E4-A849-9F0812473331}" = Computer Security 14.99.103.0 (release) "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype™ 6.14 "{8130C92F-EAED-4969-97CD-1C466C3504F2}" = F-Secure Launch pad "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{878CADF7-5BD6-4A29-A6F4-AC51C0CE8068}" = Alcor Micro USB Card Reader "{896250D9-1AC7-4A44-9626-C78A28AA1DFB}" = Online Safety 2.99.2287.1309 "{8CA199A8-574E-432F-A98F-A55741E233D1}_is1" = 3GP Player 2011 "{8D7F2A65-0359-4682-AC84-7A2D929EC1A2}" = F-Secure Network CCF 1.02.134 "{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}" = Facebook Video Calling 2.0.0.447 "{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}" = Ralink RT2860 Wireless LAN Card "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002A-0415-1000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}" = ATK Package "{AC76BA86-7AD7-1045-7B44-AA1000000001}" = Adobe Reader X (10.1.9) - Polish "{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}" = HP Update "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{D52ED1DA-580C-4941-8576-B69623AAE375}" = F-Secure CCF Scanning 1.37.103.151 (release) "{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FB83EAC4-E3F6-4666-B45B-44522F2344B6}" = Brother MFL-Pro Suite MFC-J220 "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "4F6D5E84-5826-4394-9F40-3A9A19165651_is1" = Pandora Service "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "AIMP3" = AIMP3 "ENTERPRISE" = Microsoft Office Enterprise 2007 "ESKK MemoPlus Demo_is1" = ESKK MemoPlus 1.1 Demo "F-Secure ServiceEnabler 666" = F-Secure Launch pad "Gadu-Gadu 10" = Gadu-Gadu 10 "HP Photo Creations" = HP Photo Creations "InstallShield_{878CADF7-5BD6-4A29-A6F4-AC51C0CE8068}" = Alcor Micro USB Card Reader "Kamerzysta" = Kamerzysta (deinstalacja) "OpenAL" = OpenAL "RegClean Pro_is1" = RegClean Pro "SCANIA Truck Driving Simulator" = SCANIA Truck Driving Simulator 1.0.0 "SoftwareUpdUtility" = Download Updater (AOL Inc.) "The KMPlayer" = The KMPlayer (remove only) "UltraISO_is1" = UltraISO Premium V9.52 "uTorrent" = µTorrent "VideoPerformer" = VideoPerformer "Vid-Saver" = Vid-Saver "Wajam" = Wajam "Winamp" = Winamp "Winamp Toolbar" = Winamp Toolbar "Windows Searchcore Toolbar" = Searchcore Toolbar "WinRAR archiver" = WinRAR 4.20 (32-bit) "XP Codec Pack" = XP Codec Pack "Xvid Video Codec 1.3.2" = Xvid Video Codec [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3126675762-3080963311-2867738150-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "FLV Player" = FLV Player "GG" = GG "Google Chrome" = Google Chrome "Winamp Detect" = Detektor Winampa "Winamp Toolbar" = Winamp Toolbar [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-04-26 06:46:42 | Computer Name = ASUS-Komputer | Source = FSecure-FSecure-F-Secure DeepGuard | ID = 103 Description = 2 2014-04-26 11:46:42+01:00 ASUS-KOMPUTER SYSTEM F-Secure DeepGuard Application was blocked. This was determined to be a high-risk application by system control heuristics. Application path: \\?\c:\windows\mod_frst.exe File hash: 4bb423ae4bf7b46ba1cd43c521cf9314c03cf8c4 Error - 2014-04-26 06:47:27 | Computer Name = ASUS-Komputer | Source = FSecure-FSecure-F-Secure DeepGuard | ID = 103 Description = 3 2014-04-26 11:47:27+01:00 ASUS-KOMPUTER SYSTEM F-Secure DeepGuard Application was blocked. This was determined to be a high-risk application by system control heuristics. Application path: \\?\c:\windows\mod_frst.exe File hash: 4bb423ae4bf7b46ba1cd43c521cf9314c03cf8c4 Error - 2014-04-26 06:48:18 | Computer Name = ASUS-Komputer | Source = FSecure-FSecure-F-Secure DeepGuard | ID = 103 Description = 4 2014-04-26 11:48:18+01:00 ASUS-KOMPUTER SYSTEM F-Secure DeepGuard Application was blocked. This was determined to be a high-risk application by system control heuristics. Application path: \\?\c:\windows\mod_frst.exe File hash: 4bb423ae4bf7b46ba1cd43c521cf9314c03cf8c4 Error - 2014-04-26 06:49:25 | Computer Name = ASUS-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: DllHost.exe, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bca54 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.18247, sygnatura czasowa: 0x521eaf24 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000000986ea Identyfikator procesu powodującego błąd: 0xc3c Godzina uruchomienia aplikacji powodującej błąd: 0x01cf613d2f355b8b Ścieżka aplikacji powodującej błąd: C:\Windows\system32\DllHost.exe Ścieżka modułu powodującego błąd: C:\Windows\SYSTEM32\ntdll.dll Identyfikator raportu: 6e2e7823-cd30-11e3-be62-14dae9d967fa Error - 2014-04-26 06:50:00 | Computer Name = ASUS-Komputer | Source = FSecure-FSecure-F-Secure DeepGuard | ID = 103 Description = 5 2014-04-26 11:50:00+01:00 ASUS-KOMPUTER SYSTEM F-Secure DeepGuard Application was blocked. This was determined to be a high-risk application by system control heuristics. Application path: \\?\c:\windows\mod_frst.exe File hash: 4bb423ae4bf7b46ba1cd43c521cf9314c03cf8c4 Error - 2014-04-26 06:50:11 | Computer Name = ASUS-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: wevtutil.exe, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bc767 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.18247, sygnatura czasowa: 0x521eaf24 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000000986ea Identyfikator procesu powodującego błąd: 0x1f78 Godzina uruchomienia aplikacji powodującej błąd: 0x01cf613d4c0ae9f1 Ścieżka aplikacji powodującej błąd: C:\Windows\system32\wevtutil.exe Ścieżka modułu powodującego błąd: C:\Windows\SYSTEM32\ntdll.dll Identyfikator raportu: 89c0101a-cd30-11e3-be62-14dae9d967fa Error - 2014-04-26 06:51:03 | Computer Name = ASUS-Komputer | Source = Google Update | ID = 20 Description = Error - 2014-04-26 07:12:44 | Computer Name = ASUS-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: igfxpers.exe, wersja: 8.15.10.2291, sygnatura czasowa: 0x4d419c3e Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.18247, sygnatura czasowa: 0x521eaf24 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000000986ea Identyfikator procesu powodującego błąd: 0xed8 Godzina uruchomienia aplikacji powodującej błąd: 0x01cf614069c32c29 Ścieżka aplikacji powodującej błąd: C:\Windows\System32\igfxpers.exe Ścieżka modułu powodującego błąd: C:\Windows\SYSTEM32\ntdll.dll Identyfikator raportu: aff991f4-cd33-11e3-9a73-14dae9d967fa Error - 2014-04-26 08:44:13 | Computer Name = ASUS-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: SynTPEnh.exe, wersja: 15.2.16.1, sygnatura czasowa: 0x4d713a33 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.18247, sygnatura czasowa: 0x521eaf24 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000000986ea Identyfikator procesu powodującego błąd: 0xd8c Godzina uruchomienia aplikacji powodującej błąd: 0x01cf614d3258eb0f Ścieżka aplikacji powodującej błąd: C:\Program Files\Synaptics\SynTP\SynTPEnh.exe Ścieżka modułu powodującego błąd: C:\Windows\SYSTEM32\ntdll.dll Identyfikator raportu: 77c8f0b1-cd40-11e3-8775-14dae9d967fa Error - 2014-04-26 08:44:17 | Computer Name = ASUS-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: GoogleCrashHandler64.exe, wersja: 1.3.23.9, sygnatura czasowa: 0x5315034c Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.18247, sygnatura czasowa: 0x521eaf24 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000000986ea Identyfikator procesu powodującego błąd: 0xe04 Godzina uruchomienia aplikacji powodującej błąd: 0x01cf614d3c856ff1 Ścieżka aplikacji powodującej błąd: C:\Users\ASUS\AppData\Local\Google\Update\1.3.23.9\GoogleCrashHandler64.exe Ścieżka modułu powodującego błąd: C:\Windows\SYSTEM32\ntdll.dll Identyfikator raportu: 7a3d5545-cd40-11e3-8775-14dae9d967fa [ Media Center Events ] Error - 2012-01-22 05:00:55 | Computer Name = ASUS-Komputer | Source = MCUpdate | ID = 0 Description = 10:00:53 - Błąd podczas nawiązywania połączenia z Internetem. 10:00:53 - Nie można skontaktować się z serwerem.. [ System Events ] Error - 2014-04-23 11:00:19 | Computer Name = ASUS-Komputer | Source = DCOM | ID = 10010 Description = Error - 2014-04-24 03:48:12 | Computer Name = ASUS-Komputer | Source = bowser | ID = 8003 Description = Error - 2014-04-25 14:26:33 | Computer Name = ASUS-Komputer | Source = DCOM | ID = 10010 Description = Error - 2014-04-26 04:31:45 | Computer Name = ASUS-Komputer | Source = DCOM | ID = 10010 Description = Error - 2014-04-26 06:49:25 | Computer Name = ASUS-Komputer | Source = DCOM | ID = 10010 Description = Error - 2014-04-26 07:07:44 | Computer Name = ASUS-Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 12:05:33 na ?2014-?04-?26 było nieoczekiwane. Error - 2014-04-26 07:11:05 | Computer Name = ASUS-Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 12:08:37 na ?2014-?04-?26 było nieoczekiwane. Error - 2014-04-26 08:42:17 | Computer Name = ASUS-Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 12:48:03 na ?2014-?04-?26 było nieoczekiwane. Error - 2014-04-26 08:42:21 | Computer Name = ASUS-KOMPUTER | Source = BugCheck | ID = 1001 Description = Error - 2014-04-26 08:44:53 | Computer Name = ASUS-Komputer | Source = WMPNetworkSvc | ID = 866300 Description = < End of report >