OTL Extras logfile created on: 2014-09-02 22:46:22 - Run 7 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\abc\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17239) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,94 Gb Total Physical Memory | 0,74 Gb Available Physical Memory | 18,89% Memory free 7,87 Gb Paging File | 1,92 Gb Available in Paging File | 24,36% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 119,14 Gb Total Space | 8,61 Gb Free Space | 7,23% Space Free | Partition Type: NTFS Computer Name: ABC-KOMPUTER | User Name: abc | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2069616815-3132189673-721496042-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 "DoNotAllowExceptions" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{09FCB0C5-9377-4E08-9EE1-BEB7510F469B}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{0D277684-C109-492F-817A-2B9965CFFCFD}" = rport=138 | protocol=17 | dir=out | app=system | "{14A9AF1A-3ED6-4125-9924-1598B2820E34}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{18785C7B-1F8D-48AC-AF79-178FFE3ECDD1}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{1F9DE12D-3F34-4150-A9C3-5AF2952BC33C}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{26D9D499-1CE9-438E-985C-A63C32ED2F99}" = rport=445 | protocol=6 | dir=out | app=system | "{2B76F760-EC10-4695-B43B-1A08ADF54EA2}" = rport=137 | protocol=17 | dir=out | app=system | "{2F7AED12-6303-4EB4-A2A5-EA835C4B0C32}" = lport=445 | protocol=6 | dir=in | app=system | "{588FCF85-DDF6-4274-9337-C9A0B8E55989}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe | "{5E797EE3-C0CE-4F24-A187-7D5FED2E0329}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=c:\windows\system32\svchost.exe | "{5F3A8C99-0D26-412E-AC56-52C696CFE155}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{5F8F6805-572B-4609-9727-BEF0133E27D1}" = lport=138 | protocol=17 | dir=in | app=system | "{60476612-69B3-4A65-9F02-DD2F81C8C8BC}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{659D92A3-60A0-4731-A675-A19723E02351}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{68C5E390-5686-43FA-A805-5E821E371052}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{6A2C1AE5-D3C4-4A26-AE55-E9F4993DAB30}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{82D0D3D3-5EF7-403D-9D89-3F7EA4FEEA78}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{8B3D459E-E1D8-4074-A0D4-69396BEFA809}" = rport=2869 | protocol=6 | dir=out | app=system | "{9175A40A-A7A0-4F2E-89A7-DB213AAE8709}" = lport=139 | protocol=6 | dir=in | app=system | "{9AB05A7D-41F2-4030-B3E4-5162555CA666}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{9C380A87-1CE0-4A96-8106-4C5854C675D4}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{9C926697-329B-42AC-A925-8D4F723EB0A2}" = rport=139 | protocol=6 | dir=out | app=system | "{A26A6836-B054-419E-BD4E-FD24DA1E5988}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{A2DD2A36-222D-4D8F-B488-3232A26F0700}" = lport=2869 | protocol=6 | dir=in | app=system | "{ADC5A64A-1D84-472E-9045-4B5896D4109F}" = lport=137 | protocol=17 | dir=in | app=system | "{B5E72C00-E75D-4941-8B5D-ABC5183404C9}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{BE2FCD27-C1ED-46ED-9A47-73CDDFD51FA8}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{C63690B5-E7B4-432A-98F7-8AA6657C84C9}" = lport=11100 | protocol=6 | dir=in | name=risk of rain | "{CA5440DD-2550-4CA7-A001-B2A7156B2B12}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe | "{D636B9FC-FD71-4793-A162-D388728E6F83}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{DA17459B-7453-4455-AA6A-042CDDC8FF39}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{DB2150D1-57AF-4148-92B9-ACD2338A24F4}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{E139D520-7A10-49A3-BF3D-7368EDD1C208}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{F4E483C7-401C-4EE9-8C0A-921887E66588}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{FBC20FC3-0128-4F2C-B619-C86C1947271D}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{FFF6F002-F3DB-4754-AF0F-3FFFBFA099DF}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{030337B5-8C21-47C1-A0C1-96DD9ED63D15}" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "{07158491-FCD4-41FA-9E87-C8E1C63858D6}" = protocol=17 | dir=in | app=c:\users\abc\appdata\roaming\utorrent\utorrent.exe | "{0A585E24-E4D1-425C-9154-25F1703693EC}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{1752B2C8-7D37-4E7F-BB71-6449023D2406}" = protocol=17 | dir=in | app=c:\program files (x86)\simple port forwarding\spf.exe | "{1756162A-257F-49EF-8C67-B8058C6C6DCA}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | "{1B01F03B-A520-4626-B4F7-B5D561237C9C}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 | "{1BE0930C-8888-408A-B266-4CBD26D28305}" = protocol=17 | dir=in | app=c:\program files (x86)\heroes & generals\live\hng.exe | "{241F77C8-D315-4103-BFC3-99C78CC53E8C}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{247D02BE-0288-4671-B399-13837DBB082E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\warface\live\nw.exe | "{29CC39F1-45AF-492D-9357-F23CF7BFE897}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{2E73EA4D-8C1B-4D36-B584-A86EAF4C7E2B}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{30F5F8FC-D1BA-4705-8EE0-E43BB3BB3441}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{31A994EF-B4ED-4418-9BCC-B60ACE8D6121}" = protocol=6 | dir=in | app=c:\program files (x86)\r.g. mechanics\simcity\simcity\simcity.exe | "{380B2888-42C1-43DC-A69F-272029CBC2DE}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | "{3A092E7F-A211-4D66-8862-982A0DFEC476}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{3B634EF0-75FA-42DA-844B-36B71821C75D}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{41AD585F-B00F-4164-9CF4-7DC32676EA50}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{4519778C-BF67-4728-8CFE-E5D90E62C92F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\warface\live\nw.exe | "{465A3B6E-DD54-4D3D-B879-433C651F5F13}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{51180F87-6E3D-4192-AE33-1FA759B4E5BB}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{51838F72-9554-4EB8-A0B3-D4985BAF2712}" = protocol=17 | dir=in | app=c:\users\abc\appdata\roaming\utorrent\utorrent.exe | "{5438A082-9E1A-48E2-BFEC-7E72D6DF9D1E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe | "{5804D100-CE13-427A-9477-AC03E92810ED}" = dir=in | app=c:\program files (x86)\vmware\vmware workstation\vmware-authd.exe | "{5FCE18DB-03FF-470E-A64C-4E6C93D57C85}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{605BB117-6DD6-4D95-A444-ED7A2CCB1BF8}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{6321A1F2-6FB9-428D-AA0F-162AAB5FEC3E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{65A86D4D-D4FB-424C-A8A5-0D881D317D81}" = dir=in | app=c:\program files (x86)\vmware\vmware workstation\vmware-authd.exe | "{6BF4C05A-BB10-40E1-A27D-19A5E237CE58}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{6BFE109C-EA8B-4D8C-BB46-C8B54E93B91C}" = dir=in | app=c:\program files (x86)\vmware\vmware workstation\vmware-hostd.exe | "{6D2F787D-1894-4454-8464-663867795538}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{72145D3F-E4F4-4474-8443-5F261A12DB25}" = dir=in | app=c:\program files (x86)\vmware\vmware workstation\vmware-hostd.exe | "{7328EA68-4647-4291-B4EB-5DF858C0C6E6}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe | "{771F26D6-D575-45B8-825F-8ED04940AE74}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe | "{77306684-EA53-4A6B-A126-A4A2A04B5AFE}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{78C22F94-29E0-47FA-890D-BD26FD9D5645}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\terraria\terraria.exe | "{7D3F3C19-FB21-436F-AEA7-7E1C7F6ED997}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\rust\legacy\rust.exe | "{7D4CE5EA-9C8E-4BFC-9D96-B756BDA58556}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\unturned\unturned.exe | "{80ED5A66-C75A-4E9C-B167-E4C92965FC74}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe | "{82404C6C-D6F2-46E3-8012-CAB3EC9D50F5}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{8693BEA7-411D-4E64-A82A-09CBA3EC9D9E}" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe | "{8781B3D5-A5AB-4239-94E6-3FE1EA5BC98A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe | "{8843D555-AA4A-4A8C-B4FC-98984086CF08}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{8D04A937-303C-47CF-B592-EEE6166959C1}" = protocol=6 | dir=in | app=c:\program files (x86)\heroes & generals\live\hng.exe | "{8E1859A8-3E59-494D-B1F9-52118D2D0513}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\terraria\terraria.exe | "{945AA6B7-412B-4090-844A-0CA07F1A725F}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | "{9B295EE1-2FC2-42CB-AE82-2ED78CAFF03C}" = protocol=6 | dir=in | app=c:\program files (x86)\simple port forwarding\spf.exe | "{9C5A4A63-BAD4-4BF7-977F-2898BE780EB5}" = protocol=17 | dir=in | app=c:\program files (x86)\simple port forwarding\spf.exe | "{9CB99836-629E-4141-9291-615B6E6806ED}" = dir=in | app=c:\program files\hp\hp deskjet 1050 j410 series\bin\usbsetup.exe | "{A2853D36-28A7-473A-BF01-517028930543}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{A7D98914-0FC7-4106-A8C8-2BA125F62F40}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\rust\experimental\rust.exe | "{A8016FD7-D786-41CD-9825-8FDAE22B3B01}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{A95102EB-2896-46CC-A12A-6BBB7AD6C437}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{ACF142D3-03AD-416B-926B-A7F6B321AAF2}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe | "{AF283785-B357-443C-B0A5-D51A66DB1D5D}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{AF4FF7AF-0257-4809-9B38-6E677E0AE9E8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{B12CECE0-B497-4963-880C-F6E31DD56AA6}" = protocol=6 | dir=in | app=c:\users\abc\appdata\roaming\utorrent\utorrent.exe | "{B1A5CD0F-21CA-45A7-86E5-2E678E83EFEC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe | "{B62DD7EF-21E6-4511-85A6-05937D91F227}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{BACADCE0-07AD-40AA-B6C0-749F37E8C09B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe | "{BAE173E7-CA68-4323-A9E4-B95649E50ED7}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{BE138B14-0C49-463F-8478-F1E76550A312}" = protocol=6 | dir=in | app=c:\users\abc\appdata\roaming\utorrent\utorrent.exe | "{BF86C36B-9FC1-46A9-BE81-7EEFE52E7519}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | "{D11F7E77-5813-4735-8484-FF50BC801632}" = protocol=6 | dir=in | app=c:\program files (x86)\simple port forwarding\spf.exe | "{D1E0F3BA-7B3F-49D1-B8E0-20264DC5CDFF}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{D53A8E5B-DB91-4598-A488-9521E1E6C590}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{D89D3474-7A96-4ECE-BFB2-F09FEA69366D}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{D937D917-59D2-4574-A9AE-67347A2362D8}" = protocol=17 | dir=in | app=c:\program files (x86)\r.g. mechanics\simcity\simcity\simcity.exe | "{E1600D13-B7DC-49CE-A6DB-E5DBEAA36C81}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{E827E480-2CB5-4FEA-8BA8-3933B34B4969}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{EB955625-D9E7-4619-A84C-D0EE3E66B222}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\rust\legacy\rust.exe | "{EEFE4AD5-E2C5-4412-918F-67F303856E05}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\rust\experimental\rust.exe | "{F3553A0E-5E8C-4579-A49E-F7EE4027623C}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{FA1B3806-4771-47F0-B7E0-AAFECEFAA983}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\unturned\unturned.exe | "{FA86D5A2-1E09-4C10-B0E6-9341CD7FF00E}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{FCA9B103-9482-41C4-9375-4CCA8A13AA90}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "TCP Query User{03F0E3FD-77A3-42F9-BF61-7838C15B5D58}C:\program files (x86)\java\jre7\bin\java.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\java.exe | "TCP Query User{0C67C756-CFA6-4F4C-8C52-35D6C1BA49C8}C:\users\abc\downloads\withsix-play.exe" = protocol=6 | dir=in | app=c:\users\abc\downloads\withsix-play.exe | "TCP Query User{17E08485-559A-4EF3-90C1-8554C44E32EA}C:\users\abc\downloads\x3\apache2\bin\httpd_usbwv8.exe" = protocol=6 | dir=in | app=c:\users\abc\downloads\x3\apache2\bin\httpd_usbwv8.exe | "TCP Query User{2DDC2898-B869-4DC1-90ED-BCC128084AEE}C:\users\abc\appdata\local\teamspeak 3 client\ts3client_win64.exe" = protocol=6 | dir=in | app=c:\users\abc\appdata\local\teamspeak 3 client\ts3client_win64.exe | "TCP Query User{310BDF53-8481-46EA-83DE-6E2F435D7B91}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "TCP Query User{3733F6D3-B485-444B-8913-BDAEF73F64AD}C:\xenobot\apache2\bin\httpd_usbwv8.exe" = protocol=6 | dir=in | app=c:\xenobot\apache2\bin\httpd_usbwv8.exe | "TCP Query User{3BBD7DDE-28AD-4014-9BBE-D34073BE1FC8}C:\program files (x86)\supraball\binaries\win32\udk.exe" = protocol=6 | dir=in | app=c:\program files (x86)\supraball\binaries\win32\udk.exe | "TCP Query User{5415B8F0-8417-4F7F-8128-CF8DB8ED2A33}C:\program files (x86)\blackd proxy\tibia.exe" = protocol=6 | dir=in | app=c:\program files (x86)\blackd proxy\tibia.exe | "TCP Query User{5565623D-E6F7-4090-888A-0A3B4F6963F2}C:\users\abc\desktop\shivamt2 official 24.07.2014\shivamt2 official 24.07.2014\shivamt2 client\shivamt2.exe" = protocol=6 | dir=in | app=c:\users\abc\desktop\shivamt2 official 24.07.2014\shivamt2 official 24.07.2014\shivamt2 client\shivamt2.exe | "TCP Query User{6E0E42E3-707C-43E2-BB94-C1632BFD1DFD}C:\users\abc\downloads\x3\mysql\bin\mysqld_usbwv8.exe" = protocol=6 | dir=in | app=c:\users\abc\downloads\x3\mysql\bin\mysqld_usbwv8.exe | "TCP Query User{744C27F0-2E5B-42EF-AAFE-D817E58223FB}C:\xeno\mysql\bin\mysqld_usbwv8.exe" = protocol=6 | dir=in | app=c:\xeno\mysql\bin\mysqld_usbwv8.exe | "TCP Query User{8C97D1F4-4BC2-4632-9C1C-09B16B025B4E}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe | "TCP Query User{8E2E7ECA-6859-4C0A-AD05-8D29782CF642}C:\users\abc\desktop\shivamt2 official 24.07.2014\shivamt2 official 24.07.2014\shivamt2 client\shivamt2.exe" = protocol=6 | dir=in | app=c:\users\abc\desktop\shivamt2 official 24.07.2014\shivamt2 official 24.07.2014\shivamt2 client\shivamt2.exe | "TCP Query User{960D46CB-E730-4293-BEAE-74BA570A8ACA}C:\users\abc\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\abc\appdata\roaming\spotify\spotify.exe | "TCP Query User{D0E3EA27-A1BB-403A-BCC3-E05A8F55EC5B}C:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\expansion\beta\arma2oa.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\expansion\beta\arma2oa.exe | "TCP Query User{E5997D24-6A40-4494-858F-219F79FF8929}C:\xenobot\mysql\bin\mysqld_usbwv8.exe" = protocol=6 | dir=in | app=c:\xenobot\mysql\bin\mysqld_usbwv8.exe | "TCP Query User{E9F0505E-44D9-4B8E-9770-B3B54C3F685B}C:\xeno\apache2\bin\httpd_usbwv8.exe" = protocol=6 | dir=in | app=c:\xeno\apache2\bin\httpd_usbwv8.exe | "TCP Query User{FE43D886-F2C2-486E-A73F-BBE74C910990}C:\program files (x86)\supraball\binaries\win32\udk.exe" = protocol=6 | dir=in | app=c:\program files (x86)\supraball\binaries\win32\udk.exe | "UDP Query User{0CB690E7-4A47-4442-B163-F325A1E53764}C:\program files (x86)\supraball\binaries\win32\udk.exe" = protocol=17 | dir=in | app=c:\program files (x86)\supraball\binaries\win32\udk.exe | "UDP Query User{1571D6B4-3AD3-4533-AA17-1F3BB2A7F06B}C:\xeno\apache2\bin\httpd_usbwv8.exe" = protocol=17 | dir=in | app=c:\xeno\apache2\bin\httpd_usbwv8.exe | "UDP Query User{5BFCC7F5-895B-4C7F-A98A-A805EC5C42D7}C:\xenobot\apache2\bin\httpd_usbwv8.exe" = protocol=17 | dir=in | app=c:\xenobot\apache2\bin\httpd_usbwv8.exe | "UDP Query User{66C09278-3350-431B-B7A4-61822A98FE01}C:\users\abc\desktop\shivamt2 official 24.07.2014\shivamt2 official 24.07.2014\shivamt2 client\shivamt2.exe" = protocol=17 | dir=in | app=c:\users\abc\desktop\shivamt2 official 24.07.2014\shivamt2 official 24.07.2014\shivamt2 client\shivamt2.exe | "UDP Query User{7520610D-149C-4029-9B8A-DC8BC7EBA500}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe | "UDP Query User{7624C651-1EB6-47AE-8E41-478457B6832E}C:\program files (x86)\supraball\binaries\win32\udk.exe" = protocol=17 | dir=in | app=c:\program files (x86)\supraball\binaries\win32\udk.exe | "UDP Query User{825E97D7-B543-4FB3-964E-E5D7C16F41AC}C:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\expansion\beta\arma2oa.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\expansion\beta\arma2oa.exe | "UDP Query User{8572BE95-B59E-4342-84E0-6827D610349F}C:\program files (x86)\java\jre7\bin\java.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\java.exe | "UDP Query User{9E222C63-3A18-4DFF-88D2-7909F30C7266}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "UDP Query User{A3E5BDEE-1C49-4443-9251-6AA4A9FF873B}C:\xenobot\mysql\bin\mysqld_usbwv8.exe" = protocol=17 | dir=in | app=c:\xenobot\mysql\bin\mysqld_usbwv8.exe | "UDP Query User{A4F7EABB-CF50-4313-B600-01A55CA20027}C:\users\abc\downloads\x3\mysql\bin\mysqld_usbwv8.exe" = protocol=17 | dir=in | app=c:\users\abc\downloads\x3\mysql\bin\mysqld_usbwv8.exe | "UDP Query User{B6C4327F-5354-498D-9065-1EEDFEEA42ED}C:\xeno\mysql\bin\mysqld_usbwv8.exe" = protocol=17 | dir=in | app=c:\xeno\mysql\bin\mysqld_usbwv8.exe | "UDP Query User{B9356983-5627-4168-8140-F94A9C0911FE}C:\users\abc\desktop\shivamt2 official 24.07.2014\shivamt2 official 24.07.2014\shivamt2 client\shivamt2.exe" = protocol=17 | dir=in | app=c:\users\abc\desktop\shivamt2 official 24.07.2014\shivamt2 official 24.07.2014\shivamt2 client\shivamt2.exe | "UDP Query User{BDC764AB-195A-42AC-9536-6AD29FF1BE51}C:\users\abc\appdata\local\teamspeak 3 client\ts3client_win64.exe" = protocol=17 | dir=in | app=c:\users\abc\appdata\local\teamspeak 3 client\ts3client_win64.exe | "UDP Query User{C74ED8A2-EC26-4FCB-972D-EB7A29991A33}C:\users\abc\downloads\x3\apache2\bin\httpd_usbwv8.exe" = protocol=17 | dir=in | app=c:\users\abc\downloads\x3\apache2\bin\httpd_usbwv8.exe | "UDP Query User{D2175E27-EFFC-40BA-9D6D-30DF1125C463}C:\users\abc\downloads\withsix-play.exe" = protocol=17 | dir=in | app=c:\users\abc\downloads\withsix-play.exe | "UDP Query User{E9E213EB-50D6-468E-9CF4-E54F2EB48820}C:\program files (x86)\blackd proxy\tibia.exe" = protocol=17 | dir=in | app=c:\program files (x86)\blackd proxy\tibia.exe | "UDP Query User{FCA98A53-6C04-4B2B-B733-C91266A3FF03}C:\users\abc\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\abc\appdata\roaming\spotify\spotify.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0D94F75A-0EA6-4951-B3AF-B145FA9E05C6}" = VMware Workstation "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{3C28BFD4-90C7-3138-87EF-418DC16E9598}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106 "{45F1F774-38B4-3CC3-BAAF-051E6D19E48E}" = Microsoft .NET Framework 4.5.1 (PLK) "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{52A87876-4D1A-4524-9F06-53A490E6E34D}" = HP Deskjet 1050 J410 series — badanie mające na celu poprawę produktów "{5AF4E09F-5C9B-3AAF-B731-544D3DC821DD}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106 "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64) "{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2010 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Microsoft .NET Framework 4.5.1 (Polski) "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{977D1ABF-4089-4CA7-BA33-CC75808B7ACE}" = Intel® Trusted Connect Service Client "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 340.52 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 340.52 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 340.52 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 2.1.1 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 340.50 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.13.1220 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 15.3.33 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.3.30.1 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 15.3.33 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.23 "{B6A3D97D-484B-48B5-85C6-361D9FA25CDF}" = HP Deskjet 1050 J410 series — podstawowe oprogramowanie urządzenia "{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant "{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64 "6af12c54-643b-4752-87d0-8335503010de_is1" = Nexus Mod Manager "CCleaner" = CCleaner "GIMP-2_is1" = GIMP 2.8.10 "HWiNFO64_is1" = HWiNFO64 Version 4.40 "SteelSeries Engine" = SteelSeries Engine "UDK-1b8c914f-c471-442e-8d0e-2de4579d056f" = My Game Long Name "UDK-e3cdfeca-4fbe-4e25-9787-fe9ad958a473" = My Game Long Name "Virtual Audio Cable 4.10" = Virtual Audio Cable 4.10 "WinRAR archiver" = WinRAR 4.20 (64-bitowy) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{003BFBBD-6C67-419E-A24D-0DCAFC3A5249}" = tools-freebsd "{03D562B5-C4E2-4846-A920-33178788BE00}" = Windows Live Communications Platform "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{0F929651-F516-4956-90F2-FFBD2CD5D30E}" = Photo Gallery "{0FF9CC94-EF23-401E-BDBD-37403D1A2B38}" = Windows Live SOXE Definitions "{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 "{197597A7-AD33-4898-9D8E-73066818B464}" = tools-netware "{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1 "{19EF99D1-7EE6-4B5E-ABEE-0B3825F703B0}" = AwesomiumSetup "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{207DA277-6A6D-4863-B535-129931D2BB21}" = Galeria fotografii "{240C3DDD-C5E9-4029-9DF7-95650D040CF2}" = Intel(R) USB 3.0 eXtensible Host Controller Driver "{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 55 "{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}" = Microsoft XNA Framework Redistributable 4.0 "{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}" = Microsoft Games for Windows - LIVE "{2F2363F9-102C-448B-8E3E-02FCFE78A28D}" = Movie Maker "{38A1E3ED-D913-41D2-9953-A93D5ACE3ADF}" = TL-WN721N/TL-WN722N Driver "{45057FCE-5784-48BE-8176-D9D00AF56C3C}" = The Sims™ 3 Po zmroku "{45898170-E68C-4F02-AA35-C2186BF347A3}" = Movie Maker "{46BC55A2-B4CE-46B5-8303-A2076B899505}" = Windows Live UX Platform Language Pack "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{5A0EE0F0-E909-4F3B-B437-AAD9252427CB}" = Windows Live Installer "{5DE67937-45D5-45E4-923C-0B7F7EC929A7}" = League of Legends "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{6B6923B9-8719-425B-916C-CD2908F31AAF}" = Windows Live SOXE "{6C772996-BFF3-3C8C-860B-B3D48FF05D65}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 "{6e8f74e0-43bd-4dce-8477-6ff6828acc07}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 "{6F1C00D2-25C2-4CBA-8126-AE9A6E2E9CD5}" = HP Update "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{71828142-5A24-4BD0-97E7-976DA08CE6CF}" = The Sims™ 3 Nowoczesny apartament Akcesoria "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™ "{789289CA-F73A-4A16-A331-54D498CE069F}" = Ventrilo "{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype™ 6.18 "{7E1300A2-1956-4685-80BE-BD10E7C660BA}_is1" = Blackd Proxy wersja 32.2 "{80407BA7-7763-4395-AB98-5233F1B34E65}" = NVIDIA PhysX "{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{87F6AD71-73B2-44B7-B814-D6CEEB927E86}" = XenoBot Apophis "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110 "{8e70e4e1-06d7-470b-9f74-a51bef21088e}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 "{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AB1C87CB-1807-4CF0-B4C2-CEE14C18CDB4}" = tools-solaris "{AC76BA86-7AD7-1045-7B44-AB0000000001}" = Adobe Reader XI (11.0.08) - Polish "{AE0F62A7-A1A2-407F-9F4C-48939BD9AD8D}" = tools-winPre2k "{BDA0EB29-8B31-4BF4-8B05-04AA52340AC4}" = LogMeIn Hamachi "{BEE64C14-BEF1-4610-8A68-A16EAA47B882}" = Futuremark SystemInfo "{C6B0EE9E-2128-4448-B7AE-5E2B46E0F0E7}" = Windows Live Photo Common "{ce085a78-074e-4823-8dc1-8a721b94b76d}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 "{D102611A-6466-4101-A51D-51069303AC65}" = tools-linux "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E3445598-4424-4EE2-B71C-C23325F7FB71}" = Windows Live PIMT Platform "{E824E81C-80A4-3DFF-B5F9-4842A9FF5F7F}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0E58739-2B4C-498F-9B0D-FF0F2FD52B61}" = Windows Live UX Platform "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center "{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 "{FA12037C-B6FA-4825-86BC-D58AA6A9CC24}" = Podstawowe programy Windows Live "{FBA73805-0F67-428B-8E4F-FAE16A452685}" = Photo Common "{FFD9383C-01D5-4897-A954-43AF599AED30}" = tools-windows "Actual Multiple Monitors_is1" = Actual Multiple Monitors 8.0.2 "Adobe Flash Player Plugin" = Adobe Flash Player 14 Plugin "Battlelog Web Plugins" = Battlelog Web Plugins "BattlEye for OA" = BattlEye for OA Uninstall "BOSS" = BOSS "CrystalDiskInfo_is1" = CrystalDiskInfo 6.1.14 "DAEMON Tools Lite" = DAEMON Tools Lite "Driver Cleaner" = Driver Cleaner 3 "Dxtory2.0_is1" = Dxtory version 2.0.124 "EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v5.50 "Google Chrome" = Google Chrome "HP Photo Creations" = HP Photo Creations "League of Legends 3.0.1" = League of Legends "LogMeIn Hamachi" = LogMeIn Hamachi "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 2.0.2.1012 "Mozilla Firefox 31.0 (x86 pl)" = Mozilla Firefox 31.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Notepad++" = Notepad++ "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "Origin" = Origin "Plus Internet_is1" = Plus Internet 2.5 "PunkBusterSvc" = PunkBuster Services "Rainmeter" = Rainmeter "screenSHU" = screenSHU - the fastest screen capture ever. "SimCity_R.G. Mechanics_is1" = SimCity "Simple Port Forwarding" = Simple Port Forwarding "SpeedFan" = SpeedFan (remove only) "Steam App 304930" = Unturned "Steam App 730" = Counter-Strike: Global Offensive "Supraball" = Supraball "Tibia_is1" = Tibia "VMware_Workstation" = VMware Workstation "Winamp" = Winamp "WinLiveSuite" = Podstawowe programy Windows Live [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2069616815-3132189673-721496042-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Gods Will Be Watching" = Gods Will Be Watching "Papers, Please PL" = Papers, Please PL "Spotify" = Spotify "TeamSpeak 3 Client" = TeamSpeak 3 Client "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-08-25 11:12:42 | Computer Name = abc-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-08-25 11:21:18 | Computer Name = abc-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-08-25 17:11:54 | Computer Name = abc-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: vmware-usbarbitrator64.exe, wersja: 12.1.17.0, sygnatura czasowa: 0x530ff71d Nazwa modułu powodującego błąd: vmware-usbarbitrator64.exe, wersja: 12.1.17.0, sygnatura czasowa: 0x530ff71d Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000006092 Identyfikator procesu powodującego błąd: 0xa78 Godzina uruchomienia aplikacji powodującej błąd: 0x01cfc078012425ec Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe Identyfikator raportu: 705fecda-2c9c-11e4-a9e7-005056c00008 Error - 2014-08-25 17:12:14 | Computer Name = abc-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: vmware-usbarbitrator64.exe, wersja: 12.1.17.0, sygnatura czasowa: 0x530ff71d Nazwa modułu powodującego błąd: vmware-usbarbitrator64.exe, wersja: 12.1.17.0, sygnatura czasowa: 0x530ff71d Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000006092 Identyfikator procesu powodującego błąd: 0x1f44 Godzina uruchomienia aplikacji powodującej błąd: 0x01cfc0a938df75a4 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe Identyfikator raportu: 7beddba9-2c9c-11e4-a9e7-005056c00008 Error - 2014-08-25 17:14:30 | Computer Name = abc-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: vmware-usbarbitrator64.exe, wersja: 12.1.17.0, sygnatura czasowa: 0x530ff71d Nazwa modułu powodującego błąd: vmware-usbarbitrator64.exe, wersja: 12.1.17.0, sygnatura czasowa: 0x530ff71d Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000006092 Identyfikator procesu powodującego błąd: 0x271c Godzina uruchomienia aplikacji powodującej błąd: 0x01cfc0a94458cab6 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe Identyfikator raportu: cd5cff6a-2c9c-11e4-a9e7-005056c00008 Error - 2014-08-25 17:14:48 | Computer Name = abc-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: vmware-usbarbitrator64.exe, wersja: 12.1.17.0, sygnatura czasowa: 0x530ff71d Nazwa modułu powodującego błąd: vmware-usbarbitrator64.exe, wersja: 12.1.17.0, sygnatura czasowa: 0x530ff71d Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000006092 Identyfikator procesu powodującego błąd: 0x3b8c Godzina uruchomienia aplikacji powodującej błąd: 0x01cfc0a995d3fc94 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe Identyfikator raportu: d7b4657d-2c9c-11e4-a9e7-005056c00008 Error - 2014-08-25 17:17:36 | Computer Name = abc-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-08-26 05:38:20 | Computer Name = abc-Komputer | Source = Application Hang | ID = 1002 Description = Program BoL Studio.exe w wersji 0.0.0.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 12c8 Godzina rozpoczęcia: 01cfc11133cb9993 Godzina zakończenia: 2 Ścieżka aplikacji: C:\bol\BoL+Studio\BoL Studio.exe Identyfikator raportu: b4872baa-2d04-11e4-bc9a-005056c00008 Error - 2014-08-28 17:44:35 | Computer Name = abc-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: plugin-container.exe, wersja: 31.0.0.5310, sygnatura czasowa: 0x53c75e91 Nazwa modułu powodującego błąd: mozalloc.dll, wersja: 31.0.0.5310, sygnatura czasowa: 0x53c72e91 Kod wyjątku: 0x80000003 Przesunięcie błędu: 0x0000141b Identyfikator procesu powodującego błąd: 0x25f8 Godzina uruchomienia aplikacji powodującej błąd: 0x01cfc2e1e75c6a6e Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll Identyfikator raportu: 7fec6f51-2efc-11e4-bc9a-005056c00008 Error - 2014-08-28 21:18:06 | Computer Name = abc-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-09-02 15:13:31 | Computer Name = abc-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: nvtray.exe, wersja: 7.17.13.4052, sygnatura czasowa: 0x53b44e7a Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000000000 Identyfikator procesu powodującego błąd: 0x2594 Godzina uruchomienia aplikacji powodującej błąd: 0x01cfc6e1fb16e7b8 Ścieżka aplikacji powodującej błąd: C:\Program Files\NVIDIA Corporation\Display\nvtray.exe Ścieżka modułu powodującego błąd: unknown Identyfikator raportu: 396ce41c-32d5-11e4-8bc0-005056c00008 [ System Events ] Error - 2014-09-01 13:09:49 | Computer Name = abc-Komputer | Source = ipnathlp | ID = 34001 Description = Error - 2014-09-02 01:44:14 | Computer Name = abc-Komputer | Source = ipnathlp | ID = 34001 Description = Error - 2014-09-02 01:56:22 | Computer Name = abc-Komputer | Source = ipnathlp | ID = 34001 Description = Error - 2014-09-02 03:49:39 | Computer Name = abc-Komputer | Source = ipnathlp | ID = 34001 Description = Error - 2014-09-02 04:01:46 | Computer Name = abc-Komputer | Source = ipnathlp | ID = 34001 Description = Error - 2014-09-02 04:39:28 | Computer Name = abc-Komputer | Source = ipnathlp | ID = 34001 Description = Error - 2014-09-02 04:51:35 | Computer Name = abc-Komputer | Source = ipnathlp | ID = 34001 Description = Error - 2014-09-02 10:12:50 | Computer Name = abc-Komputer | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-09-02 15:32:41 | Computer Name = abc-Komputer | Source = ipnathlp | ID = 34001 Description = Error - 2014-09-02 15:44:48 | Computer Name = abc-Komputer | Source = ipnathlp | ID = 34001 Description = < End of report >