OTL Extras logfile created on: 2014-05-05 14:00:09 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Piotr\Desktop 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17041) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 6,00 Gb Total Physical Memory | 2,89 Gb Available Physical Memory | 48,23% Memory free 6,19 Gb Paging File | 2,71 Gb Available in Paging File | 43,75% Paging File free Paging file location(s): c:\pagefile.sys 200 2048 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 232,79 Gb Total Space | 54,69 Gb Free Space | 23,50% Space Free | Partition Type: NTFS Drive F: | 1863,01 Gb Total Space | 30,25 Gb Free Space | 1,62% Space Free | Partition Type: NTFS Computer Name: PIOTRPC | User Name: Piotr | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-3879791031-1829465358-1483038374-1001\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe" = C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe:*:Enabled:Logitech Harmony Remote Software 7 -- () "C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe" = C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe:*:Enabled:Logitech Harmony Remote Software 7 -- () [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe" = C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe:*:Enabled:Logitech Harmony Remote Software 7 -- () "C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe" = C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe:*:Enabled:Logitech Harmony Remote Software 7 -- () [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{08FA2E25-B157-4216-B143-682911B178F6}" = rport=445 | protocol=6 | dir=out | app=system | "{104FD9C8-213D-4553-A158-4E201AF8B2B0}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{147D6129-E62C-4EB5-9893-EC9CF1EAC440}" = rport=139 | protocol=6 | dir=out | app=system | "{1A4A7E17-6883-4595-9075-97B2895B97C5}" = lport=80 | protocol=6 | dir=in | name=war thunder | "{1BDE4E80-A21C-4318-A74E-8F01476B4110}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{1F03D727-DB39-4807-9E09-58074C640EF9}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{1F671C5C-DD1F-4505-AD82-5477C1B8082B}" = lport=7853 | protocol=6 | dir=in | name=war thunder | "{2033B742-EDF2-43BE-B2C4-CBA2CC02548E}" = lport=10243 | protocol=6 | dir=in | app=system | "{2688925C-B933-4F6A-AC0D-EAED65983A89}" = lport=443 | protocol=6 | dir=in | name=war thunder | "{26E490C3-D4FD-4856-98BD-84CD186692D0}" = rport=10243 | protocol=6 | dir=out | app=system | "{28E4F842-6A66-425B-8525-8BC0B14B36BB}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{2A10E45D-DCF9-4001-AA42-B18910A869A2}" = lport=137 | protocol=17 | dir=in | app=system | "{362A2B09-F9E3-42F5-BBF6-AC5600C926B7}" = rport=138 | protocol=17 | dir=out | app=system | "{466A1EED-67C9-4094-B759-16EA6A603D30}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4EB6B355-EA47-4CD7-B58B-51F5CCF5A103}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{54AF77F3-6DCF-404B-A808-0A08D52E1572}" = lport=33333 | protocol=6 | dir=in | name=war thunder | "{5548E580-9BE4-451F-A018-3E3A4CF2218C}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{59CF2A65-95A4-4A07-9DFC-9FCB86596AFD}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{6391380B-5178-44BF-B071-D9816C577863}" = lport=7850 | protocol=6 | dir=in | name=war thunder | "{66F9F132-01EF-43C2-A1BD-4C82876954F9}" = lport=20010 | protocol=17 | dir=in | name=war thunder | "{79CC268E-FC8E-4BCA-B506-60EB5C1C75E0}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{80C3739A-C9B3-4A14-947B-6214869C0FB9}" = rport=137 | protocol=17 | dir=out | app=system | "{8DA3FA3C-1C34-40BD-82FD-05E3DD26A9E0}" = lport=3478 | protocol=17 | dir=in | name=war thunder | "{9020093D-A5EB-40FB-87C8-3E6295980FA2}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{95360433-8802-44D4-9102-0FE014AB297C}" = lport=138 | protocol=17 | dir=in | app=system | "{99088FFC-74D6-4732-9FF4-9A198421B9EE}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{9D8F40C9-0CD4-4248-9550-9E228ACD8F0F}" = lport=139 | protocol=6 | dir=in | app=system | "{A15400C3-7704-40EF-8803-B7B23B4E0055}" = lport=6881 | protocol=6 | dir=in | name=war thunder | "{A27559EB-5AAB-4A89-BCCE-2747A5ED265A}" = lport=445 | protocol=6 | dir=in | app=system | "{B13DDFF7-0018-4D7F-9BDB-E0BB33876747}" = lport=27022 | protocol=6 | dir=in | name=war thunder | "{B764FF78-3F8B-40E5-9D8D-8021376F40B6}" = lport=8090 | protocol=6 | dir=in | name=war thunder | "{C87A07D7-F2E8-4D7F-A30E-EFC9432B1089}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{C94B28C7-F39B-4AC3-B7D3-B34548063DE6}" = lport=20443 | protocol=6 | dir=in | name=war thunder | "{DE15942D-FB2F-4913-8E7C-091ECFF58335}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{EB18FB3A-B2B1-4F7E-A99A-565D12E24839}" = lport=2869 | protocol=6 | dir=in | app=system | "{EFA2C54E-7D32-459D-B65F-CCF92A023725}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{FAE9DACB-80C5-47EF-ACAF-C4F13F6FE25D}" = lport=7852 | protocol=6 | dir=in | name=war thunder | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{047F3DBC-BC5B-412A-B011-2B8FA7E69BEC}" = dir=in | app=c:\program files (x86)\hp\hp software update\hpwucli.exe | "{0670B0F3-B6B7-402E-91EB-D5636D77CFFA}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{113C4DA5-8DDC-4F10-A5B8-3E3819B87E17}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgm.exe | "{1183034E-3051-4957-9D1A-5770EB09E1AA}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqcopy2.exe | "{11CDD617-347D-4CB9-AFFA-FA1DA1E5DA6E}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqste08.exe | "{15DEBF8B-A9E3-43D8-9C24-F53F517F2266}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqtra08.exe | "{1C0CDE94-C9EC-4AA2-A14A-773370289369}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 17\programs\ngstudio.exe | "{1E00251A-F5FB-4FD1-9679-6F6708835948}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqpsapp.exe | "{1E4B043B-8422-4E11-8205-BDF2AAF9B427}" = dir=in | app=c:\program files (x86)\hp\digital imaging\smart web printing\smartwebprintexe.exe | "{24629AA2-B3A5-4FA1-8F77-AD4A33EDC5A8}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 17\programs\umi.exe | "{2B73CE5B-61ED-4E24-86CD-3AA42895A886}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgpc01.exe | "{33B6E218-4473-489D-8093-DBC957E628F9}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{3BD005D4-EF82-4D8E-B385-690265D479BC}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpoews01.exe | "{420EFDCD-19A2-4594-82AD-54BBD793B8FF}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{43BA9A81-FAAE-4265-87AB-D7362E1F834F}" = protocol=6 | dir=in | app=c:\program files\opera x64\pluginwrapper\opera_plugin_wrapper_32.exe | "{46659E4A-86AC-4CB4-BFD9-67869C28AF4D}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgplgtupl.exe | "{4BFD5D0A-FF7F-426E-9C3D-66E66EDAB59F}" = protocol=6 | dir=out | app=system | "{561398C1-661D-4568-8895-1A49DCEF94C8}" = protocol=6 | dir=in | app=c:\program files (x86)\rockstar games\grand theft auto iv\launchgtaiv.exe | "{5B50A7FE-12C1-4DDC-ABA4-DCF946EE95C5}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{5B8D9EF9-918C-4E4E-806D-C6B00BB23CF2}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 17\programs\rm.exe | "{5D897645-6B7C-48DA-B0BA-4186A47068FB}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{63CCCC82-7D8A-40C2-8244-4473136104A4}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{63D1C2BB-5A6C-4551-85CC-0FF9FC80BE5E}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{67A8776A-C593-4EC5-A28C-C2B331076B11}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{6F9F7DDC-3BAA-4554-8C17-3ADC4D9026B5}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{7B0AFA57-0C13-431F-B1E8-F59E8DFBA26F}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{8003FE5B-1E06-4DD0-A38E-8B75C0B060C7}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgh.exe | "{81880D13-0BE7-4A3A-B063-C3E21A1CFFFA}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{874F624C-BA36-47BA-BA08-F3967D81EB2A}" = protocol=17 | dir=in | app=c:\program files (x86)\rockstar games\grand theft auto iv\launchgtaiv.exe | "{8754CC34-7141-4F08-A3C8-0FD8ED85671D}" = protocol=6 | dir=in | app=c:\users\piotr\appdata\roaming\dropbox\bin\dropbox.exe | "{8A3B06B0-A780-41D1-A699-1BCC0C30DEF3}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{8DA3CA27-CC90-4D5F-96E5-491EAD73885A}" = protocol=6 | dir=in | app=c:\program files\opera x64\pluginwrapper\opera_plugin_wrapper.exe | "{92D0CEC0-2F5E-4F4F-AFF4-1C88AFF9469D}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpiscnapp.exe | "{93E19C67-A9D0-4090-9D85-7C32455140A8}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 17\programs\ngstudio.exe | "{94EEFB2D-E16F-4B24-B8F7-C359D09EF3D7}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{95591B9B-AF2E-49EF-95AB-799D424D4760}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{963FA4A7-E4E2-4A75-87BF-36A651B77024}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{97D80B60-55D2-41A5-A785-C5B2650CA6F0}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{987CB8AE-698B-4536-8F26-9182FDED629A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{9DA77D4A-242B-42B1-A033-FAC922EF9FD6}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{A25218B4-3658-4379-BC79-09C41CA594C9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\magicka\magicka.exe | "{B12323CB-7EEE-44C9-9E10-454DAFCA5671}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe | "{BA2D24E9-C451-4D97-9EBA-1FCADA779F69}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{BDBA8633-CA4B-4D0E-8D8B-7FD70B69E8D6}" = dir=in | app=c:\program files (x86)\common files\hp\digital imaging\bin\hpqphotocrm.exe | "{C391E5BC-420E-4AC9-BCC4-C94477D40E21}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqpse.exe | "{C5271709-535A-40D5-8610-BB5EE6D99AB8}" = protocol=6 | dir=in | app=c:\program files\opera x64\opera.exe | "{CBCB2685-1BB2-4F96-90EF-39957FE4A1F7}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{D49D426D-E1AE-477B-AE3F-2EA9F0193A1D}" = protocol=17 | dir=in | app=c:\program files\opera x64\pluginwrapper\opera_plugin_wrapper_32.exe | "{D563E12A-07F0-4C87-90A7-4451A1F7A670}" = protocol=6 | dir=in | app=c:\users\piotr\appdata\roaming\utorrent\utorrent.exe | "{D7C2B032-C974-475C-A2EF-942E46371B6C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{D8D0188C-508D-4BA5-8D8F-421C84CF6905}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\magicka\magicka.exe | "{D906ACBC-FB21-4D3E-8CEA-9EFA40935F95}" = protocol=17 | dir=in | app=c:\program files\opera x64\opera.exe | "{DD2E8964-4AD0-4FFF-8A2B-A930FC3D91E8}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposid01.exe | "{DD52821B-C7BF-42ED-B4AE-62ECB6B950F6}" = protocol=17 | dir=in | app=c:\users\piotr\appdata\roaming\dropbox\bin\dropbox.exe | "{E36CC607-D717-41AF-B244-38407EBD694F}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpfccopy.exe | "{E47FB826-F691-4644-890F-74454E30A5F1}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqkygrp.exe | "{EA937411-B7E8-471F-96DD-E4819E1DAAD9}" = protocol=17 | dir=in | app=c:\program files\opera x64\pluginwrapper\opera_plugin_wrapper.exe | "{EDBC4A6B-A0C9-4AD1-A818-D76D6A07BCF0}" = protocol=17 | dir=in | app=c:\users\piotr\appdata\roaming\utorrent\utorrent.exe | "{EE8B64CC-4F5D-4F58-AC97-74F3B6888B2E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{F22D1A31-2BDF-444C-B31D-F6031B1DA532}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 17\programs\rm.exe | "{F27A5455-E49B-44FA-880F-3ED87B3402C5}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqsudi.exe | "{FEBD94C2-0674-4A0C-8CE0-D8EA93345116}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 17\programs\umi.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0A2E1907-D0DE-0D01-CA64-CB0AB0BFE539}" = AMD Wireless Display v3.0 "{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP4700_series" = Canon iP4700 series Printer Driver "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{26A24AE4-039D-4CA4-87B4-2F86417051FF}" = Java 7 Update 51 (64-bit) "{28E7D453-27C7-D100-701C-212EF60E0221}" = AMD Drag and Drop Transcoding "{45F1F774-38B4-3CC3-BAAF-051E6D19E48E}" = Microsoft .NET Framework 4.5.1 (PLK) "{54B77E56-202F-4AA0-A143-D5E7C4D8B20F}" = RAPID Mode "{55D55008-E5F6-47D6-B16F-B2A40D4D145F}" = 64 Bit HP CIO Components Installer "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{6119B3A6-3603-9695-0398-CDF2AF0A13F8}" = AMD Catalyst Install Manager "{71E42D57-36CD-4992-B162-F58439CEB9EF}" = HP Deskjet F735 All-in-one Driver Software 13.0 Rel. 4 "{787136D2-F0F8-4625-AA3F-72D7795AC842}" = Apple Mobile Device Support "{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Microsoft .NET Framework 4.5.1 (Polski) "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{9ACF3FDB-C8E6-444C-8C64-13A221F7BFFD}" = Microsoft SQL Server Native Client "{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 "{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B636C9B9-A3F2-4DCE-ADCC-72E095018385}" = Microsoft SQL Server VSS Writer "{B8BA155B-1E75-405F-9CB4-8A99615D09DC}" = iTunes "{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant "{D3485211-6ACA-8BC3-1AAB-29FC5552C454}" = ccc-utility64 "{D7C275A6-3266-0FBC-2D84-17A6AC226F01}" = AMD Wireless Display v3.0 "{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64 "CCleaner" = CCleaner "HP Imaging Device Functions" = HP Imaging Device Functions 13.0 "HP Photosmart Essential" = HP Photosmart Essential 3.5 "HP Smart Web Printing" = HP Smart Web Printing 4.51 "HP Solution Center & Imaging Support Tools" = HP Solution Center 13.0 "HPExtendedCapabilities" = HP Customer Participation Program 13.0 "jdownloader2" = JDownloader 2 "Opera 12.17.1863" = Opera 12.17 "TeamSpeak 3 Client" = TeamSpeak 3 Client "VLC media player" = VLC media player 2.1.4 "WinRAR archiver" = WinRAR 5.01 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{031F80EB-1FE5-45EF-9DE2-E2F5AF01259F}" = CCC Help Spanish "{0B15A8C3-3B8A-F229-A880-82EA62908425}" = CCC Help Dutch "{0EF5BEA9-B9D3-46d7-8958-FB69A0BAEACC}" = Status "{0F367CA3-3B2F-43F9-A44A-25A8EE69E45D}" = Scan "{15134cb0-b767-4960-a911-f2d16ae54797}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 "{175F0111-2968-4935-8F70-33108C6A4DE3}" = MarketResearch "{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1 "{1A6752E1-966B-9D1F-F6B7-DDBCA6FC87ED}" = CCC Help Russian "{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1" = World of Tanks "{1EC71BFB-01A3-4239-B6AF-B1AE656B15C0}" = TrayApp "{2058DA53-D5F2-D8D9-7325-39B0E367D1E1}" = CCC Help Swedish "{2090B6D0-E025-5A67-9838-8F1D5768E643}" = CCC Help Chinese Standard "{22154f09-719a-4619-bb71-5b3356999fbf}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 "{23987958-7225-4DE0-93DC-2FAFAAC04548}" = Galeria fotografii "{25A3B953-1423-3F15-640E-B620DD0F419A}" = Catalyst Control Center - Branding "{2750B389-A2D2-4953-99CA-27C1F2A8E6FD}" = Microsoft SQL Server 2005 Tools Express Edition "{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1" = Samsung Magician "{2AD4FF67-43E9-77AD-D90C-584F950E2D12}" = CCC Help French "{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}" = Microsoft SQL Server 2005 Express Edition (ELISOFT) "{2ED84EF7-0C8D-3P20-BIO2-7B42A5D4E0EB}_is1" = Portal 2 version 1.16 "{2EEA7AA4-C203-4b90-A34F-19FB7EF1C81C}" = BufferChm "{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 "{2FF8C687-DB7D-4adc-A5DC-57983EC25046}" = DeviceDiscovery "{363BF927-C2EE-43CF-B765-2025BCED5089}" = F735 "{3A577334-7C90-55BC-1878-F5862FA268B2}" = CCC Help Korean "{3BF289E3-933B-F421-3B59-F6BB0D285B09}" = CCC Help Hungarian "{3C92B2E6-380D-4fef-B4DF-4A3B4B669771}" = Copy "{3CB6BA0C-6BC5-E543-221A-AA4DEBB6F4B5}" = CCC Help Polish "{3DA8F808-72E2-4361-82EC-433081D23005}" = Pinnacle Studio 17 "{4260CAAE-D108-4223-A1C5-96B67062FE86}" = Windows Live Installer "{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}" = Microsoft Games for Windows - LIVE Redistributable "{430E2D32-6EA9-E6E4-80A1-84047694A45B}" = CCC Help Czech "{43CDF946-F5D9-4292-B006-BA0D92013021}" = WebReg "{4A6A8D33-09CD-FD44-4BF0-999E8A6E93C8}" = CCC Help Italian "{4A70EF07-7F88-4434-BB61-D1DE8AE93DD4}" = SolutionCenter "{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}" = Google Earth "{4E7C28C7-D5DA-4E9F-A1CA-60490B54AE35}" = UnloadSupport "{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}" = Microsoft SQL Server Setup Support Files (English) "{5454083B-1308-4485-BF17-1110000D8301}" = Grand Theft Auto IV "{579BA58C-F33D-4970-9953-B94B43768AC3}" = Grand Theft Auto IV "{59307833-CB98-4440-B644-0CD352F61907}" = Windows Live PIMT Platform "{5C6F884D-680C-448B-B4C9-22296EE1B206}" = Logitech Harmony Remote Software 7 "{616CD10B-1EC7-41D2-8C14-3ECE93E7AEE9}_is1" = Pinnale Systems Software Keys "{63FF21C9-A810-464F-B60A-3111747B1A6D}" = GPBaseService2 "{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}" = Microsoft Games for Windows Marketplace "{681B698F-C997-42C3-B184-B489C6CA24C9}" = HPPhotoSmartDiscLabelContent1 "{68258A46-B8CD-4B84-924C-FF1FF343810B}" = USB 2.0 PC Camera "{69C65CD8-E97F-4647-BB42-99693BC5A505}" = DJ_AIO_04_F735_Software_Min "{6BBA26E9-AB03-4FE7-831A-3535584CA002}" = Toolbox "{6EBDE2A2-0CFB-9134-A859-68A0002B3FA6}" = CCC Help Thai "{7059BDA7-E1DB-442C-B7A1-6144596720A4}" = HP Update "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{769E98DC-2BB0-83A7-51C9-306F30232345}" = Catalyst Control Center Graphics Previews Common "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype™ 6.14 "{80F19EAA-44C4-47C2-AE87-1C7628E858D6}" = Logitech Harmony Remote Software 7 "{8181B50E-0E33-DE07-AAB2-E71BBBDBF288}" = CCC Help Portuguese "{83FB054C-7DA5-1C76-BFB2-423426DC35BB}" = AMD Catalyst Control Center "{8471021C-F529-43DE-84DF-3612E10F58C4}" = Remote Control USB Driver "{8A640069-9784-701E-AC8E-84F62C42D1A3}" = CCC Help English "{8C22A294-DBBA-445F-B55C-E26817CCFE69}" = Movie Maker "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110 "{8F66BFDE-B213-48E2-93EF-7151277A2916}" = Windows Live SOXE Definitions "{93098E43-2743-1551-447F-2699E9591E9C}" = CCC Help Danish "{94532CD5-C66D-49E3-9131-5FB04D7647A1}" = Windows Live UX Platform "{94E11973-ED58-47A0-907C-ABF6D95C5DD8}" = LibreOffice 4.1.4.2 "{95140000-00AF-0409-0000-0000000FF1CE}" = Microsoft PowerPoint Viewer "{983FA94A-A7DD-40B1-B7F9-F45D2B4FD1DE}" = Windows Live Photo Common "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A3703A3B-FDCF-4349-4B2E-A189A2B90B51}" = CCC Help Chinese Traditional "{A619A488-A4BA-F2A0-72FA-4C484B93DC0F}" = CCC Help Greek "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A9FFEC6C-9C44-4597-8E23-EDD78BF5D0B2}" = Windows Live Communications Platform "{AAC5D43E-816D-4C2D-8E51-55FFF35BE301}" = Obsługa programów Apple "{AC76BA86-7AD7-1045-7B44-AB0000000001}" = Adobe Reader XI (11.0.06) - Polish "{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}" = Destinations "{BFF23267-1D19-444E-93E2-E5059BE805EA}" = Dazzle Video Capture DVC100 X64 Driver 1.06 "{C43326F5-F135-4551-8270-7F7ABA0462E1}" = HPProductAssistant "{C4799AAA-CE52-D2F1-63C8-E6D5106C78E0}" = CCC Help Norwegian "{C6182116-5F2D-9949-B42B-06073E86A98A}" = CCC Help German "{C87DF7BB-4F5C-4BBE-B041-A59FFF4A1D07}" = Windows Live SOXE "{CAE4213F-F797-439D-BD9E-79B71D115BE3}" = HPPhotoGadget "{CC6C7F05-AF23-65BD-702D-705EAB723578}" = CCC Help Japanese "{D5B7F1A3-2CA6-4C5C-EFB6-4AA5772F5310}" = CCC Help Turkish "{D79113E7-274C-470B-BD46-01B10219DF6A}" = HPPhotosmartEssential "{DB7C1A35-AF99-4C0D-89C5-C6EDE00D5ADC}" = Photo Common "{DBA6B3EF-A8C0-4EB2-9554-3A7879838580}" = Catalyst Control Center Localization All "{DC635845-46D3-404B-BCB1-FC4A91091AFA}" = SmartWebPrinting "{DF7DC45D-8A3C-490C-A70F-8C6A6189EDF9}" = Photo Gallery "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{EE636D46-7706-4A9E-8A0A-4AA10DA9B193}" = Movie Maker "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F4A6308C-55E6-57DF-95BB-AEEF374B469A}" = CCC Help Finnish "{F543B0F9-D1F9-25D1-993C-8430BEC9D889}" = Catalyst Control Center InstallProxy "{F92D3FF8-435C-4D6A-AF1B-DCB1C924A274}" = Windows Live UX Platform Language Pack "{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 "{FF3E88D8-F678-4622-86F6-36662C4A4167}" = Podstawowe programy Windows Live "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 13 Plugin "DAEMON Tools Lite" = DAEMON Tools Lite "Easy CD-DA Extractor 16" = Easy CD-DA Extractor 16 "ELISOFT Faktury 2013_is1" = ELISOFT Faktury 2013 wersja 8.12.5.0 "Google Chrome" = Google Chrome "MediaNavigation.CDLabelPrint" = CD-LabelPrint "Microsoft SQL Server 2005" = Microsoft SQL Server 2005 "NapiProjekt_is1" = NapiProjekt (2.2.0.2399) "Steam" = Steam "Steam App 42910" = Magicka "WinLiveSuite" = Podstawowe programy Windows Live [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3879791031-1829465358-1483038374-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Dropbox" = Dropbox "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-05-04 02:14:00 | Computer Name = PiotrPC | Source = Bonjour Service | ID = 100 Description = Error - 2014-05-04 02:14:02 | Computer Name = PiotrPC | Source = Bonjour Service | ID = 100 Description = Error - 2014-05-04 02:14:02 | Computer Name = PiotrPC | Source = Bonjour Service | ID = 100 Description = Error - 2014-05-04 02:14:02 | Computer Name = PiotrPC | Source = Bonjour Service | ID = 100 Description = Error - 2014-05-04 07:46:54 | Computer Name = PiotrPC | Source = Bonjour Service | ID = 100 Description = Error - 2014-05-04 07:46:54 | Computer Name = PiotrPC | Source = Bonjour Service | ID = 100 Description = Error - 2014-05-04 07:46:54 | Computer Name = PiotrPC | Source = Bonjour Service | ID = 100 Description = Error - 2014-05-04 07:46:58 | Computer Name = PiotrPC | Source = Bonjour Service | ID = 100 Description = Error - 2014-05-04 07:46:58 | Computer Name = PiotrPC | Source = Bonjour Service | ID = 100 Description = Error - 2014-05-04 07:46:58 | Computer Name = PiotrPC | Source = Bonjour Service | ID = 100 Description = [ System Events ] Error - 2014-04-07 07:54:10 | Computer Name = PiotrPC | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk2\DR2. Error - 2014-04-07 07:54:25 | Computer Name = PiotrPC | Source = Service Control Manager | ID = 7011 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi LanmanServer. Error - 2014-04-07 07:54:27 | Computer Name = PiotrPC | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk2\DR2. Error - 2014-04-07 07:54:28 | Computer Name = PiotrPC | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk2\DR2. Error - 2014-04-07 07:55:01 | Computer Name = PiotrPC | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk2\DR3. Error - 2014-04-07 07:55:02 | Computer Name = PiotrPC | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk2\DR3. Error - 2014-04-07 07:55:08 | Computer Name = PiotrPC | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk2\DR3. Error - 2014-04-07 07:55:09 | Computer Name = PiotrPC | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk2\DR3. Error - 2014-04-07 08:59:16 | Computer Name = PiotrPC | Source = Microsoft-Windows-HAL | ID = 12 Description = Oprogramowanie układowe platformy spowodowało uszkodzenie pamięci podczas poprzedniego przejścia do innego trybu zasilania systemu. Sprawdź dostępność zaktualizowanego oprogramowania układowego przeznaczonego do tego systemu. Error - 2014-04-07 15:18:48 | Computer Name = PiotrPC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 16:19:21 na ?2014-?04-?07 było nieoczekiwane. < End of report >