OTL Extras logfile created on: 2014-08-05 21:01:30 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = D:\Users\Ewelina\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17207) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,93 Gb Total Physical Memory | 1,18 Gb Available Physical Memory | 40,14% Memory free 5,86 Gb Paging File | 3,22 Gb Available in Paging File | 54,97% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = D:\Program Files (x86) Drive C: | 115,66 Gb Total Space | 75,63 Gb Free Space | 65,39% Space Free | Partition Type: NTFS Drive D: | 350,00 Gb Total Space | 301,04 Gb Free Space | 86,01% Space Free | Partition Type: NTFS Computer Name: EWELINA-PC | User Name: Ewelina | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2083487716-658805820-2044387795-1000\SOFTWARE\Classes\] .html [@ = ChromeHTML.DJLLTENEVGIYURXA7EQE6I66BI] -- D:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation) htmlfile [opennew] -- "D:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- Reg Error: Key error. https [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "D:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [CEWE-Podglad Zdjec] -- "D:\Program Files (x86)\FOTOJOKER Fotoswiat\CEWE-Podglad Zdjec.exe" -d "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [FOTOJOKER Fotoswiat] -- "D:\Program Files (x86)\FOTOJOKER Fotoswiat\FOTOJOKER Fotoswiat.exe" "%1" () Directory [PlayWithVLC] -- "D:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "D:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "D:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation) htmlfile [opennew] -- "D:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- Reg Error: Key error. https [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "D:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [CEWE-Podglad Zdjec] -- "D:\Program Files (x86)\FOTOJOKER Fotoswiat\CEWE-Podglad Zdjec.exe" -d "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [FOTOJOKER Fotoswiat] -- "D:\Program Files (x86)\FOTOJOKER Fotoswiat\FOTOJOKER Fotoswiat.exe" "%1" () Directory [PlayWithVLC] -- "D:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "D:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{00E91CF1-37E9-40C9-A93F-5ED9AA25A72F}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{01409059-048B-4816-A9F1-B96E7BD36A8B}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{01776BE2-4F08-44C9-9E0D-F56FBAF12040}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{02C92CD6-1C67-4362-8E12-B9C330D29559}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{0731D16B-7991-410D-848E-79C006346D9C}" = rport=139 | protocol=6 | dir=out | app=system | "{0DE52DF3-836B-4D12-B964-D39C77F866A9}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{148BC80A-8B45-4ABD-A5AE-FDD1ADEAC1FC}" = lport=137 | protocol=17 | dir=in | app=system | "{289E4113-7E6B-46DC-932D-0237686ACDAB}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{2FF88C7E-A75A-4A1C-A78E-A2CF0F38177A}" = rport=138 | protocol=17 | dir=out | app=system | "{34C5FCB1-406C-4BCA-9631-8D4F2B633220}" = rport=137 | protocol=17 | dir=out | app=system | "{3559A45E-1575-405B-A404-ABB79E874E70}" = lport=139 | protocol=6 | dir=in | app=system | "{3DB5BABA-0803-4F63-A484-D891E09A45DD}" = lport=445 | protocol=6 | dir=in | app=system | "{52D7C6C9-B486-4479-8216-57EB6C2ED722}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{686417F1-F15B-4C24-B3FF-6ABCD937FC4D}" = lport=2869 | protocol=6 | dir=in | app=system | "{713C5E4A-B87A-41AC-8B00-1BB6EF5A15E4}" = rport=445 | protocol=6 | dir=out | app=system | "{9AAED1C7-1795-4C05-8A4E-3227DAC0170D}" = rport=10243 | protocol=6 | dir=out | app=system | "{BD4C935A-D9B6-4BBD-B093-B74B52554FD5}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{BE035D52-F805-430E-AC00-142800C530B3}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{C69A6A40-4CB0-4153-BB43-76310B6CB6E8}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{D19127B8-ED22-46BA-891A-46FF2CAC907E}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{E343E408-560A-4254-9729-3EC81F7432C4}" = lport=10243 | protocol=6 | dir=in | app=system | "{ECF29D99-FEE4-4EDB-8F63-9A6C0881B8CE}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{EFBE77C4-7DA3-4696-82D0-29748DD57289}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{F47FD8B7-10CC-4964-89F0-121F8B61C856}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{FD224F3C-C824-4CCC-AA7E-965B01742ECC}" = lport=138 | protocol=17 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{004F4DBA-4999-44C9-9972-355FAAF007C5}" = protocol=17 | dir=in | app=uncserver.exe | "{00906F1F-040D-4EED-A7B2-1FBFAF0E8749}" = protocol=17 | dir=in | app=uncserver.exe | "{0162C53D-FE1D-4A4D-B869-C9B7BC48E2B6}" = protocol=6 | dir=out | app=system | "{03730CC6-B763-4217-BF4F-6C4D6F072684}" = protocol=6 | dir=in | app=c:\users\ewelina\appdata\roaming\utorrent\utorrent.exe | "{03E9236D-2E50-4B09-B9AA-01F1B84D05A2}" = protocol=6 | dir=in | app=uncserver.exe | "{1E4157F3-30C3-4321-8CBC-4AE6768F500C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{437EB719-3F71-4B9F-B5CB-0D33171BCB9D}" = protocol=17 | dir=in | app=uncserver.exe | "{4E2E6C1F-5DBB-4CF6-B83F-68002FD2FA0D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{5CB7EDF0-4843-405A-8501-6B29526E3AC1}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{5EC9CCBA-2587-4B9F-B0FD-1E97ECCD9FDD}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{62C9228F-73B1-41EE-ADD1-DD428C51C4DE}" = dir=in | app=c:\users\ewelina\appdata\local\microsoft\skydrive\skydrive.exe | "{642BC09A-BCD1-4B4E-A943-2519521E7C35}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{6E072139-8083-4908-88BD-F0B1A7915B71}" = protocol=6 | dir=in | app=uncserver.exe | "{747C736E-2008-4422-BDE3-D04FD6080DE9}" = protocol=6 | dir=in | app=uncserver.exe | "{7A0CE9E2-948B-441A-AB67-E21D38FCA766}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{7BB12A0D-094F-4341-851A-E86554D14D2F}" = protocol=17 | dir=in | app=uncserver.exe | "{80AC198B-2162-410B-966B-835C5881F5A3}" = protocol=6 | dir=in | app=uncserver.exe | "{85FAD394-E3D1-4832-9D82-5BC7DFFC1147}" = protocol=17 | dir=in | app=c:\users\ewelina\appdata\roaming\utorrent\utorrent.exe | "{882D7B58-592A-4343-984B-52711897AAA4}" = protocol=6 | dir=in | app=uncserver.exe | "{8C3BB01A-2292-45E8-98CF-92815327B53E}" = protocol=6 | dir=in | app=uncserver.exe | "{924D55C8-14AB-48C3-B469-13676F7AED70}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{9648AF18-E7FD-4940-906D-16A79E92CB0F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{96BC04D9-8A3D-4177-BB7C-C98859C5C961}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{A0F54F90-78AB-4A26-BE0F-F482412356D5}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{A30D42CC-0B1A-4FE7-862C-735CA3BDF629}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{AC7454BC-AB54-413F-AB82-F5B96C423667}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{B0191970-558C-4FD2-A00E-8FE8153636C5}" = protocol=17 | dir=in | app=uncserver.exe | "{B3082189-C0CC-49CF-A067-709AD25B1CC0}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{B4F1B152-2F4B-4638-9BBF-0860F3BEA69E}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{BD29B3CC-AE22-4ADE-8366-CEE81F74033C}" = protocol=17 | dir=in | app=uncserver.exe | "{BE70D746-E96D-48E7-8CE2-499A38A7584C}" = protocol=6 | dir=in | app=uncserver.exe | "{C51F9ABA-6B90-49A1-B76E-DAC53AB6F844}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{C9BBAF41-B694-4372-B3CC-5049C5BA996C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{D5292369-4877-40DA-8A8D-6C6C055D4A74}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{DBB764ED-B4F3-4055-889A-D4F5008C8CEE}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{E928DF18-4307-483F-B831-A63E900EC7E9}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{E9E03231-E7AA-42BA-B127-64E8F88C9368}" = protocol=17 | dir=in | app=uncserver.exe | "TCP Query User{2FDDE37F-B1A6-4103-98C5-5DF67C46B700}C:\program files (x86)\lenovo\system update\uncserver.exe" = protocol=6 | dir=in | app=c:\program files (x86)\lenovo\system update\uncserver.exe | "TCP Query User{3552116A-C6F5-4C85-9A91-1E4300B01A2F}C:\users\ewelina\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\ewelina\appdata\roaming\spotify\spotify.exe | "TCP Query User{E0F2C59D-8FEE-45D7-9D75-CE04A235CC8D}C:\users\ewelina\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\ewelina\appdata\roaming\spotify\spotify.exe | "UDP Query User{33E622AC-7E18-4E3A-AC23-99D2A866F3C1}C:\program files (x86)\lenovo\system update\uncserver.exe" = protocol=17 | dir=in | app=c:\program files (x86)\lenovo\system update\uncserver.exe | "UDP Query User{4EE96B0B-B73F-4DA3-B959-EF2C36E11FF5}C:\users\ewelina\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\ewelina\appdata\roaming\spotify\spotify.exe | "UDP Query User{515E01CC-F961-4B4C-A2AB-26BF83F12A29}C:\users\ewelina\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\ewelina\appdata\roaming\spotify\spotify.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{45F1F774-38B4-3CC3-BAAF-051E6D19E48E}" = Microsoft .NET Framework 4.5.1 (PLK) "{46F4D124-20E5-4D12-BE52-EC177A7A4B42}" = Lenovo OneKey Recovery "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Microsoft .NET Framework 4.5.1 (Polski) "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}" = Lenovo Bluetooth with Enhanced Data Rate Software "{C2B8CBDE-5232-11E3-B494-F04DA23A5C58}" = MSVCRT Redists "{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant "{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64 "0A4175B489A1B4A6E07E11B063A6263480C51D71" = Pakiet sterowników systemu Windows - Lenovo (ACPIVPC) System (10/19/2009 5.4.0.1) "3BA80AB4C7E9F8497C115C844953A3D4BEB84D21" = Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) "6B6B5E96843E55CF5CF8C7E45FB457F1FE642FF1" = Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) "6B8550A319DDC8B17F35F4A89988705E4592349B" = Windows Driver Package - Broadcom Bluetooth (06/15/2009 6.2.0.9000) "8C37689CB3B9356BF3244BEC3421F153D01BFDBF" = Pakiet sterowników systemu Windows - Intel (NETw5s64) net (01/13/2010 13.1.1.1) "B3385C3CDAEAA7DCB6E193F6C0058E2D7BAB12F6" = Pakiet sterowników systemu Windows - Intel (NETw5v64) net (01/13/2010 13.1.1.1) "BitDefender Gonzales" = Bitdefender Antivirus Free Edition "CCleaner" = CCleaner "CNXT_AUDIO_HDA" = Conexant HD Audio "GIMP-2_is1" = GIMP 2.8.10 "KLiteCodecPack64_is1" = K-Lite Codec Pack 9.9.5 (64-bit) "NVIDIA Drivers" = NVIDIA Drivers "VLC media player" = VLC media player 2.1.1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}" = Windows Live UX Platform "{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam "{07AAB66E-4718-422D-9218-4AFB3C922A71}" = Photo Gallery "{0CE226F3-EB27-4ECD-BBF5-F088716779FD}" = Energy Management "{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser "{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}" = Windows Live Photo Common "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{25C64847-B900-48AD-A164-1B4F9B774650}" = Lenovo System Update "{26A24AE4-039D-4CA4-87B4-2F83217045FF}" = Java 7 Update 51 "{28ABE740-47F3-441B-9437-852F6A64EFF8}" = Lenovo_Wireless_Driver "{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology "{3EEF6B1E-38AA-4F22-BA70-30A73BB06AAE}" = Photo Common "{41C61308-6CFD-4D54-AB6A-7136ED08A18E}" = Windows Live Communications Platform "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4BB1DCED-84D3-47F9-B718-5947E904593E}" = Lenovo EasyCamera "{50DA15C1-0161-40EE-A325-0BE5BA03C026}" = BlueStacks Notification Center "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{659CB81C-B54E-4DF1-B618-F35777393A54}" = Windows Live Installer "{6AFCA4E1-9B78-3640-8F72-A7BF33448200}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{77655DF6-A143-4A25-A5F8-127C8CE63EDA}" = Galeria fotografii "{7EB1185B-6319-42D7-B103-707570BFB0D8}" = OpenOffice 4.1.0 "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110 "{8FFD72FC-4FFA-472D-9F76-AEC85F602F9D}" = Podstawowe programy Windows Live "{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader "{99759E36-8961-43DC-A7E6-4601D6AEF166}" = Windows Phone app for desktop "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{AC57543E-EC54-4AB7-A18C-4B04BB1CF09A}" = Windows Live UX Platform Language Pack "{AC76BA86-7AD7-1033-7B44-A90100000001}" = Adobe Reader 9.0.1 "{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}" = Windows Live PIMT Platform "{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}" = Windows Live SOXE "{D1893000-EA77-493C-8DDD-E262436E959B}" = Windows Live SOXE Definitions "{DAE8CC57-EBF5-4D46-8572-9A0C769D6F16}" = Movie Maker "{DD67BE4B-7E62-4215-AFA3-F123A800A389}" = Movie Maker "{DDAA788F-52E6-44EA-ADB8-92837B11BF26}" = Metric Collection SDK "{DFB19121-0609-49C1-92B1-546E5A940FE8}" = Onekey Theater "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{FC7DDAAE-7F2B-4270-9BFD-5A130B667E9E}" = livebox tp "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "AIMP3" = AIMP3 "FOTOJOKER Fotoswiat" = FOTOJOKER Fotoswiat "InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam "InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}" = Lenovo OneKey Recovery "PhotoScape" = PhotoScape "Picasa 3" = Picasa 3 "WinLiveSuite" = Podstawowe programy Windows Live "WinRAR archiver" = WinRAR 5.01 (32-bit) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2083487716-658805820-2044387795-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "OneDriveSetup.exe" = Microsoft OneDrive "Spotify" = Spotify "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-08-05 11:42:18 | Computer Name = Ewelina-PC | Source = Microsoft-Windows-CAPI2 | ID = 513 Description = Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddCoreCsiFiles : RtlConvertNtFilePathToWin32Path() failed. System Error: 0xC0000039 (unresolvable). Error - 2014-08-05 11:43:28 | Computer Name = Ewelina-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2014-08-05 11:43:28 | Computer Name = Ewelina-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2014-08-05 11:43:28 | Computer Name = Ewelina-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Error - 2014-08-05 11:59:51 | Computer Name = Ewelina-PC | Source = BstHdAndroidSvc | ID = 0 Description = Nie można uruchomić usługi. System.IO.FileNotFoundException: Nie można odnaleźć pliku 'C:\ProgramData\BlueStacks\Android\kernel.elf'. Nazwa pliku: 'C:\ProgramData\BlueStacks\Android\kernel.elf' w BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) w System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error - 2014-08-05 12:02:46 | Computer Name = Ewelina-PC | Source = BstHdAndroidSvc | ID = 0 Description = Nie można uruchomić usługi. System.IO.FileNotFoundException: Nie można odnaleźć pliku 'C:\ProgramData\BlueStacks\Android\kernel.elf'. Nazwa pliku: 'C:\ProgramData\BlueStacks\Android\kernel.elf' w BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) w System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error - 2014-08-05 12:08:23 | Computer Name = Ewelina-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2014-08-05 12:08:23 | Computer Name = Ewelina-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2014-08-05 12:08:23 | Computer Name = Ewelina-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Error - 2014-08-05 13:34:39 | Computer Name = Ewelina-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2014-08-05 13:34:39 | Computer Name = Ewelina-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2014-08-05 13:34:39 | Computer Name = Ewelina-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. [ System Events ] Error - 2014-08-03 07:39:48 | Computer Name = Ewelina-PC | Source = nvlddmkm | ID = 11141134 Description = Error - 2014-08-03 07:40:58 | Computer Name = Ewelina-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 13:39:41 na ?2014-?08-?03 było nieoczekiwane. Error - 2014-08-03 07:41:07 | Computer Name = EWELINA-PC | Source = BugCheck | ID = 1001 Description = Error - 2014-08-05 11:30:55 | Computer Name = Ewelina-PC | Source = Service Control Manager | ID = 7023 Description = Usługa BlueStacks Android Service zakończyła działanie; wystąpił następujący błąd: %%1064 Error - 2014-08-05 11:37:04 | Computer Name = Ewelina-PC | Source = Service Control Manager | ID = 7006 Description = Wywołanie ScRegSetValueExW dla Start nie powiodło się i wystąpił następujący błąd: %%5. Error - 2014-08-05 11:39:10 | Computer Name = Ewelina-PC | Source = Service Control Manager | ID = 7006 Description = Wywołanie ScRegSetValueExW dla Start nie powiodło się i wystąpił następujący błąd: %%5. Error - 2014-08-05 11:40:06 | Computer Name = Ewelina-PC | Source = Service Control Manager | ID = 7006 Description = Wywołanie ScRegSetValueExW dla Start nie powiodło się i wystąpił następujący błąd: %%5. Error - 2014-08-05 11:59:01 | Computer Name = Ewelina-PC | Source = Service Control Manager | ID = 7034 Description = Usługa BlueStacks Log Rotator Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2014-08-05 11:59:52 | Computer Name = Ewelina-PC | Source = Service Control Manager | ID = 7023 Description = Usługa BlueStacks Android Service zakończyła działanie; wystąpił następujący błąd: %%1064 Error - 2014-08-05 12:02:46 | Computer Name = Ewelina-PC | Source = Service Control Manager | ID = 7023 Description = Usługa BlueStacks Android Service zakończyła działanie; wystąpił następujący błąd: %%1064 < End of report >