OTL Extras logfile created on: 2014-06-22 12:37:15 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Artur\Desktop 64bit- Enterprise Edition (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16863) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,98 Gb Total Physical Memory | 2,91 Gb Available Physical Memory | 72,98% Memory free 5,92 Gb Paging File | 4,66 Gb Available in Paging File | 78,67% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 97,14 Gb Total Space | 55,58 Gb Free Space | 57,21% Space Free | Partition Type: NTFS Drive E: | 300,00 Gb Total Space | 222,76 Gb Free Space | 74,25% Space Free | Partition Type: NTFS Drive F: | 68,10 Gb Total Space | 16,14 Gb Free Space | 23,70% Space Free | Partition Type: NTFS Computer Name: ARTUSS | User Name: Artur | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-214683466-2937713046-2740305117-1001\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = CE 37 E6 AF FF 6A CD 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{11A6F56B-C144-4AB1-A2D3-F4A3558333EE}" = lport=56731 | protocol=17 | dir=in | name=pando media booster | "{45FC23A9-853D-4B5D-9BF7-67DE878B7F83}" = lport=56731 | protocol=6 | dir=in | name=pando media booster | "{73BFF1B5-67BE-4F03-BC63-34752E31E1ED}" = lport=56731 | protocol=17 | dir=in | name=pando media booster | "{89D36702-455B-41DA-8CB5-DB885E7D044C}" = lport=56731 | protocol=6 | dir=in | name=pando media booster | "{B788D893-58A0-4395-9200-EE043841E7DF}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office14\outlook.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{00F62930-667B-4C8E-A8BA-9032DE5E6F89}" = dir=in | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{016A18E7-FA99-4094-97C0-96619021DE71}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgnsa.exe | "{018EB468-3A5C-4608-A9C3-9BC2CDC6CD4C}" = dir=in | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{048F0A14-FD98-477B-ABB6-701D4A059210}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{0497F5D7-55B9-42EE-B3CA-BE2F7668CC04}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{050C21F1-D71E-473A-97C6-302F71BCF389}" = dir=out | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{06062947-83BB-4ECA-84A4-DBA4B6EEA7A0}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgmfapx.exe | "{06C1CA26-0503-4FAC-A12B-5B3D379D1CDE}" = dir=in | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{0B68AB54-B840-4454-87DA-435725C95228}" = dir=out | name=@{microsoft.bingnews_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} | "{10FE5885-D129-4D52-877F-4DFB1C92EDF6}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} | "{11077457-E0BE-4C57-A2B1-8EA91EF8C188}" = dir=out | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{13A0C919-AE20-41E8-B602-C0EEDD09A6A4}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{17171582-360F-4563-AF95-1EDFB06CBC08}" = dir=in | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{18A20B08-70CA-408A-81DD-6BB95D240D1C}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposid01.exe | "{1E510B4F-A97A-42C2-9218-A5BE5FA3F080}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\groove.exe | "{2084A15E-0A00-4AA9-B345-491BB4256A9B}" = dir=in | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{21DB0969-B7FD-4BE5-8CA4-925D582B87A2}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{253674F2-4D9B-4D23-9698-7A3F38E1F3D3}" = dir=in | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{2A4D5088-A361-4A53-AB04-9491CD9A631D}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{2BE7F45F-E921-44B9-B433-047B21057028}" = dir=out | name=@{microsoft.bingfinance_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{2F9832AB-A6DE-482D-A834-200AD942DD49}" = dir=out | name=@{microsoft.bingmaps_1.2.0.136_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{3229D0FE-6C29-4DE0-8183-6226A8D8A28A}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgdiagex.exe | "{38BFDB34-5005-4C3F-9408-D5D2547454FC}" = dir=out | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{3B372CCC-8FB8-4EC9-846E-04285E37C7BD}" = dir=out | name=@{microsoft.xboxlivegames_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{3BC6106A-55F0-4C23-884E-089286C82F62}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{3D904016-6ECB-4619-8ADC-78C829FBFCBB}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqkygrp.exe | "{3FA9A6C8-7A34-4EF0-A7F3-A1066AC94D97}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpoews01.exe | "{4377652E-758D-4C00-813D-9E3621EB3891}" = dir=out | name=@{microsoft.bingweather_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{45633B4C-EEE2-4A86-A3B8-AAA51661941B}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | "{4775408B-E6A3-4289-A1E3-DC1F71A2E726}" = dir=out | name=@{microsoft.zunemusic_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} | "{477BCB42-B6F8-4827-A2D0-AD55D3F73EB2}" = dir=out | name=@{microsoft.bingtravel_1.2.0.145_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{48207916-21F5-453B-BAE0-9227164E250E}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{4CCCB200-06E5-41EC-A1B6-C67C51A3CF64}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{4DC60168-9982-4D92-A435-A573419C6E12}" = dir=in | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{4EC261CF-793A-4FF3-9906-B83174D6222F}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{50C35B1E-5FE6-4C7E-87AE-CAC86B5E6BBD}" = dir=out | name=@{microsoft.zunevideo_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} | "{52567562-A2A6-48CF-9102-8F7F1B2765C4}" = dir=out | name=@{microsoft.bingsports_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{53849497-0D64-4B06-B000-E96D816D7C08}" = dir=out | name=@{microsoft.bingsports_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{5E4E9B6F-AF92-4764-9A38-5ECBD2B8EA78}" = dir=out | name=@{microsoft.bingtravel_1.2.0.145_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{62EC1744-A763-4B78-AF8C-C026F66657F2}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{63350A48-5148-4A17-BBB1-C91FF267093F}" = dir=out | name=@{microsoft.bingweather_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{64337AA6-6644-4B7E-8760-51C83B7E03BD}" = dir=in | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{66F46DC2-3E15-442A-A04B-C6866E830ED0}" = dir=out | name=@{microsoft.bingfinance_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{678E4984-B279-43BF-BDA8-FC3DFAC5DDD6}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{68F0E156-A1D9-4F04-8485-9406636713DB}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpofxm08.exe | "{6FE89DCF-58A6-4F54-8DC8-DEA8B6A0F650}" = dir=out | name=@{microsoft.zunemusic_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} | "{70726C2C-EEC4-4038-8D24-431FEDEBF7E1}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqtra08.exe | "{7082519D-21BF-44B6-9F9A-691B1CA925F8}" = dir=out | name=@{microsoft.zunevideo_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} | "{70D67DE1-4F60-4763-B2EF-511B8E2E11E3}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpfccopy.exe | "{738AD446-04D3-497E-9DF4-4DEE727ABA4E}" = protocol=17 | dir=in | app=c:\users\artur\appdata\roaming\utorrent\utorrent.exe | "{7524A053-F1C5-434F-99C9-49BB7D9C5B1F}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqfxt08.exe | "{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{82C3C6D4-919B-4570-817B-33DF6A009D76}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpofxs08.exe | "{85E4593A-BA0E-4BD1-89E3-48F195FCD3EA}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{882A5246-AF0B-4984-9EC2-645F25B126E7}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} | "{8AF24ACA-B190-4F4F-A11B-7B4AE2A9A897}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\groove.exe | "{8F174F07-1128-422F-B82C-B0C1B7E80F9D}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgplgtupl.exe | "{909D8FCF-7FC4-4082-9430-339C2F856E9C}" = dir=out | name=@{microsoft.zunevideo_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} | "{92AA7785-E664-4C0A-ABE5-C20A74BC8CA7}" = dir=out | name=@{microsoft.xboxlivegames_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{93A8C690-607E-4287-A5E6-07BADD589938}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} | "{93B43C07-3BD4-49D7-9CCB-17299DEAA6EA}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgm.exe | "{96BB452D-B7AA-465C-8BE6-9081F91920BC}" = dir=out | name=@{microsoft.bingfinance_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{9808F0F3-E1CE-4EEB-BFCA-86505423DA88}" = dir=out | name=@{microsoft.xboxlivegames_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{9CD8EE78-42CA-4313-8852-9840B40513BA}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqnrs08.exe | "{A17143DF-DFDA-4D67-9FC2-E02512F6893F}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgemca.exe | "{A2013FD1-A2BA-4439-8F07-46C555BEA759}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgemca.exe | "{A37C4EC8-1FB5-4EA6-8E73-591D3CA56159}" = dir=out | name=@{microsoft.bingweather_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{A53A83D5-35C9-4B64-92EB-DDE09B3E95EF}" = dir=out | name=@{microsoft.bingmaps_1.2.0.136_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{ACD8D2B4-4F24-4FC0-9A73-031F58171789}" = dir=out | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{AD3AF5A3-10AC-4F15-B42B-D4908241A21C}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgmfapx.exe | "{AFAB023C-3D42-4806-897D-B2B02AA87ED1}" = dir=out | name=@{microsoft.bingsports_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{B310982A-111B-44FE-8FBA-BF46499EC43D}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqste08.exe | "{B51D7EF7-5EE5-4CE3-A1A6-7B1023A55D21}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{BDA41AD0-2275-4546-9427-3193F06583D8}" = dir=out | name=@{microsoft.bingtravel_1.2.0.145_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{C6716287-238E-43C5-837F-7416BB5439D9}" = dir=out | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{C72D584A-6551-44A8-BCC3-D7AFB84BACD0}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgnsa.exe | "{CB830966-F9D9-4C9D-8AAA-022CABAF4E32}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{CBB6B2B3-1C00-4D51-8470-2BF6ABADB330}" = dir=out | name=@{microsoft.bingnews_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} | "{CBC30771-F260-486A-B746-65F1D5F243CA}" = dir=out | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{CC7CF6EF-2F20-4DE5-877B-F3A064A594F3}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgdiagex.exe | "{D6A5FACF-3841-44F7-ABEC-6E925D38EB3B}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgpc01.exe | "{D7AD22DF-6BBE-41EA-BD36-040420B0297C}" = dir=out | name=@{microsoft.zunemusic_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} | "{D8352DD8-710B-4172-81CB-F60A8229B6E3}" = dir=out | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{DBC5B7CD-6A32-41B6-B621-59604E107440}" = dir=out | name=@{microsoft.bingmaps_1.2.0.136_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{DF96136D-7456-4C9C-A7A9-B332298BC501}" = dir=out | name=@{microsoft.bingnews_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} | "{E1E5B889-2AF1-4039-8BBA-230FC07A4482}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpiscnapp.exe | "{E2BA325F-2C54-4E06-8AAD-54DE06BB782A}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgh.exe | "{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{E7C6F7DE-8916-45DA-B4A4-B96D7C364ED8}" = dir=in | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{EA2937E6-FFA0-4D3C-ACF2-50E2D5B1F3F6}" = dir=out | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{EAC7F88C-697F-48BE-9FE5-F514B67F8EE7}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqcopy2.exe | "{EC72C18F-B597-4D50-9A8B-528F5A3A3E90}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposfx08.exe | "{EE04B97D-C8CA-4FAB-8F14-84B2B8A4A471}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{EF383BE3-71E1-4625-9B27-5B5AE3F01DC8}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{F07AD1E9-E363-4B85-B2DA-4A96FE44C076}" = dir=in | app=c:\program files (x86)\hp\hp software update\hpwucli.exe | "{F0962DEF-AEF7-49BF-ADA5-5167E9F21677}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpzwiz01.exe | "{F5BB14B3-24A4-495E-8225-1BE10B844D9B}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | "{F5E36C0D-E1AA-4A0A-9E01-B9C6D9EB39B4}" = dir=out | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{F7E157A1-BC22-405A-BB0F-7C1BED636A81}" = protocol=6 | dir=in | app=c:\users\artur\appdata\roaming\utorrent\utorrent.exe | "{FB8A5815-1A3A-4DA5-99DA-84D8A7BD2365}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "TCP Query User{DAF088AD-235F-478D-A7CF-35D962541150}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe" = protocol=6 | dir=in | app=c:\program files (x86)\myphoneexplorer\myphoneexplorer.exe | "UDP Query User{674721D8-7867-4782-B622-FFE0CE62B805}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe" = protocol=17 | dir=in | app=c:\program files (x86)\myphoneexplorer\myphoneexplorer.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}" = Network64 "{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64) "{8C775E70-A791-4DA8-BCC3-6AB7136F4484}" = Visual Studio 2012 x64 Redistributables "{90140000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0015-0415-1000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0016-0415-1000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0018-0415-1000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0019-0415-1000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-001A-0415-1000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001B-0415-1000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0415-1000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-002C-0415-1000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-0043-0000-1000-0000000FF1CE}" = Microsoft Office Office 32-bit Components 2010 "{90140000-0043-0415-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Polish) 2010 "{90140000-0044-0415-1000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-006E-0415-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-00A1-0415-1000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00BA-0415-1000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{A96C5DB7-40F9-46DD-B36F-9E657D1D9E04}" = HP Photosmart All-In-One Driver Software "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 335.23 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 335.23 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 10.4.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.3.30.1 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core "{B52530CA-2C06-447D-B54D-CD6DBF91C9EE}" = AVG 2014 "{CB21CD89-A4D3-4240-9AAA-55DCE7F3D076}" = AVG 2014 "{E9F0BCD8-6BD5-1ED7-EDA3-9FCF2A478AA1}" = Microsoft App Update for microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe (x64) "{FF21C3E6-97FD-474F-9518-8DCBE94C2854}" = 64 Bit HP CIO Components Installer "AVG" = AVG 2014 "CCleaner" = CCleaner "cFosSpeed" = cFosSpeed v9.05 "CPUID HWMonitor_is1" = CPUID HWMonitor 1.24 "HP Imaging Device Functions" = HP Imaging Device Functions 14.0 "HP Solution Center & Imaging Support Tools" = HP Solution Center 14.0 "HPExtendedCapabilities" = HP Customer Participation Program 14.0 "HPOCR" = OCR Software by I.R.I.S. 14.0 "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "Shop for HP Supplies" = Shop for HP Supplies "WinRAR archiver" = WinRAR 5.01 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{06A1D88C-E102-4527-AF70-29FFD7AF215A}" = Scan "{104066F4-5897-4067-85D3-4C88B67CCF75}" = AIO_Scan "{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}" = DeviceDiscovery "{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}" = HPProductAssistant "{26A24AE4-039D-4CA4-87B4-2F83217051FF}" = Java 7 Update 55 "{292F0F52-B62D-4E71-921B-89A682402201}" = Toolbox "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}" = Status "{5DE67937-45D5-45E4-923C-0B7F7EC929A7}" = League of Legends "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{720C16FC-5423-47B3-A249-5C05FB376E9A}" = PS_AIO_02_ProductContext "{7AB63BFD-91C6-4C21-B2C6-D33A1FC8DE8F}" = PS_AIO_02_Software_Min "{8EE94FD8-5F52-4463-A340-185D16328158}" = WebReg "{9294F169-72EE-4D74-AE92-CA25F64B4FF8}" = Fax "{97AD3490-480B-42B2-8001-326621AF34AC}" = PS_AIO_02_Software "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}" = Visual Studio 2012 x86 Redistributables "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9B362566-EC1B-4700-BB9C-EC661BDE2175}" = DocProc "{9BE466FF-70B7-4DA8-807C-DB4C3610FDAA}" = Copy "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}" = HPSSupply "{AC76BA86-7AD7-1045-7B44-A95000000001}" = Adobe Reader 9.5.5 - Polish "{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}" = HP Update "{BB3447F6-9553-4AA9-960E-0DB5310C5779}" = GPBaseService2 "{BC5DD87B-0143-4D14-AAE6-97109614DC6B}" = SolutionCenter "{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}" = Destinations "{CAE4213F-F797-439D-BD9E-79B71D115BE3}" = HPPhotoGadget "{CD31E63D-47FD-491C-8117-CF201D0AFAB5}" = TrayApp "{cef78f86-19a8-4bbd-91fa-e9b6b2d37348}" = C5200_Help "{D360FA88-17C8-4F14-B67F-13AAF9607B12}" = MarketResearch "{D6D5CB84-0E6E-4E69-B300-C690B6911045}" = Nero 8 "{E9E9903D-E69D-4004-B9E2-DFB29D1934D7}" = C5200 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FA0FF682-CC70-4C57-93CD-E276F3E7537E}" = BufferChm "AIMP2" = AIMP2 "AIMP3" = AIMP3 "AQQ" = AQQ "Avast" = avast! Free Antivirus "DAEMON Tools Lite" = DAEMON Tools Lite "Google Chrome" = Google Chrome "HD Tune_is1" = HD Tune 2.55 "KLiteCodecPack_is1" = K-Lite Codec Pack 10.4.0 Full "League of Legends 3.0.1" = League of Legends "MPE" = MyPhoneExplorer "oCam_is1" = oCam version 21.0.0.0 "Odkurzacz 13.4_is1" = Odkurzacz [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-214683466-2937713046-2740305117-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "uTorrent" = µTorrent [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-214683466-2937713046-2740305117-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-06-21 06:44:41 | Computer Name = artuss | Source = Software Protection Platform Service | ID = 1001 Description = Nie można uruchomić usługi ochrony oprogramowania. 0x80070005 6.2.9200.16693 Error - 2014-06-21 06:44:42 | Computer Name = artuss | Source = Software Protection Platform Service | ID = 1001 Description = Nie można uruchomić usługi ochrony oprogramowania. 0x80070005 6.2.9200.16693 Error - 2014-06-21 06:44:42 | Computer Name = artuss | Source = Software Protection Platform Service | ID = 1001 Description = Nie można uruchomić usługi ochrony oprogramowania. 0x80070005 6.2.9200.16693 Error - 2014-06-21 06:47:39 | Computer Name = artuss | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: wwahost.exe, wersja: 6.2.9200.16420, sygnatura czasowa: 0x505a9152 Nazwa modułu powodującego błąd: EntPlat.dll, wersja: 1.0.927.0, sygnatura czasowa: 0x4ffcd52b Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000008ad7 Identyfikator procesu powodującego błąd: 0x220 Godzina uruchomienia aplikacji powodującej błąd: 0x01cf8d3d37a64a01 Ścieżka aplikacji powodującej błąd: C:\Windows\system32\wwahost.exe Ścieżka modułu powodującego błąd: C:\Program Files\WindowsApps\Microsoft.ZuneMusic_1.0.927.0_x64__8wekyb3d8bbwe\EntPlat.dll Identyfikator raportu: 763584a9-f931-11e3-be81-94de80784cd5 Pełna nazwa pakietu powodującego błąd: Microsoft.ZuneMusic_1.0.927.0_x64__8wekyb3d8bbwe Identyfikator aplikacji względem pakietu powodującego błąd: Microsoft.ZuneMusic Error - 2014-06-21 06:47:41 | Computer Name = artuss | Source = Microsoft-Windows-Immersive-Shell | ID = 5973 Description = Aktywacja aplikacji Microsoft.ZuneMusic_8wekyb3d8bbwe!Microsoft.ZuneMusic nie powiodła się. Błąd: -2147023170. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error - 2014-06-21 06:48:06 | Computer Name = artuss | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: wwahost.exe, wersja: 6.2.9200.16420, sygnatura czasowa: 0x505a9152 Nazwa modułu powodującego błąd: EntPlat.dll, wersja: 1.0.927.0, sygnatura czasowa: 0x4ffcd52b Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000008ad7 Identyfikator procesu powodującego błąd: 0x1418 Godzina uruchomienia aplikacji powodującej błąd: 0x01cf8d3e3c537928 Ścieżka aplikacji powodującej błąd: C:\Windows\system32\wwahost.exe Ścieżka modułu powodującego błąd: C:\Program Files\WindowsApps\Microsoft.ZuneMusic_1.0.927.0_x64__8wekyb3d8bbwe\EntPlat.dll Identyfikator raportu: 865c8cfa-f931-11e3-be81-94de80784cd5 Pełna nazwa pakietu powodującego błąd: Microsoft.ZuneMusic_1.0.927.0_x64__8wekyb3d8bbwe Identyfikator aplikacji względem pakietu powodującego błąd: Microsoft.ZuneMusic Error - 2014-06-21 06:48:06 | Computer Name = artuss | Source = Microsoft-Windows-Immersive-Shell | ID = 5973 Description = Aktywacja aplikacji Microsoft.ZuneMusic_8wekyb3d8bbwe!Microsoft.ZuneMusic nie powiodła się. Błąd: -2147023170. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error - 2014-06-22 06:31:26 | Computer Name = artuss | Source = Software Protection Platform Service | ID = 1001 Description = Nie można uruchomić usługi ochrony oprogramowania. 0x80070005 6.2.9200.16693 Error - 2014-06-22 06:31:35 | Computer Name = artuss | Source = Software Protection Platform Service | ID = 1001 Description = Nie można uruchomić usługi ochrony oprogramowania. 0x80070005 6.2.9200.16693 Error - 2014-06-22 06:32:04 | Computer Name = artuss | Source = Software Protection Platform Service | ID = 1001 Description = Nie można uruchomić usługi ochrony oprogramowania. 0x80070005 6.2.9200.16693 [ System Events ] Error - 2014-06-22 06:42:04 | Computer Name = artuss | Source = Microsoft-Windows-Bits-Client | ID = 16392 Description = Uruchomienie usługi BITS nie powiodło się. Błąd 2147943468. Error - 2014-06-22 06:42:04 | Computer Name = artuss | Source = Service Control Manager | ID = 7024 Description = Usługa Usługa inteligentnego transferu w tle zakończyła działanie; wystąpił następujący specyficzny dla niej błąd: %%2147943468 Error - 2014-06-22 06:44:04 | Computer Name = artuss | Source = DCOM | ID = 10010 Description = Error - 2014-06-22 06:44:04 | Computer Name = artuss | Source = Microsoft-Windows-Dhcp-Client | ID = 50038 Description = Wystąpił błąd inicjowania protokołu DHCPv4. Kod błędu: 5 Error - 2014-06-22 06:44:04 | Computer Name = artuss | Source = Microsoft-Windows-Dhcp-Client | ID = 1004 Description = Wystąpił błąd zatrzymywania usługi klienta Dhcpv4. Kod błędu: 5. Wartość flagi ShutDown: 0 Error - 2014-06-22 06:44:04 | Computer Name = artuss | Source = Service Control Manager | ID = 7001 Description = Usługa Rozpoznawanie lokalizacji w sieci zależy od usługi Klient DHCP, której nie można uruchomić z powodu następującego błędu: %%0 Error - 2014-06-22 06:44:04 | Computer Name = artuss | Source = Service Control Manager | ID = 7001 Description = Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji w sieci, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2014-06-22 06:44:04 | Computer Name = artuss | Source = DCOM | ID = 10005 Description = Error - 2014-06-22 06:44:04 | Computer Name = artuss | Source = Service Control Manager | ID = 7023 Description = Usługa Klient DHCP zakończyła działanie; wystąpił następujący błąd: %%5 Error - 2014-06-22 06:44:04 | Computer Name = artuss | Source = Microsoft-Windows-Bits-Client | ID = 16392 Description = Uruchomienie usługi BITS nie powiodło się. Błąd 2147943468. < End of report >