OTL Extras logfile created on: 2014-09-30 12:34:54 - Run 3 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Piotr\Desktop 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.17089) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 15,94 Gb Total Physical Memory | 13,27 Gb Available Physical Memory | 83,26% Memory free 31,88 Gb Paging File | 29,03 Gb Available in Paging File | 91,06% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 244,04 Gb Total Space | 178,70 Gb Free Space | 73,22% Space Free | Partition Type: NTFS Drive D: | 292,97 Gb Total Space | 163,67 Gb Free Space | 55,87% Space Free | Partition Type: NTFS Drive E: | 394,40 Gb Total Space | 342,81 Gb Free Space | 86,92% Space Free | Partition Type: NTFS Drive F: | 232,88 Gb Total Space | 232,49 Gb Free Space | 99,83% Space Free | Partition Type: NTFS Computer Name: PIOTR-PC | User Name: Piotr | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = OperaStable] -- Reg Error: Key error. File not found .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = OperaStable] -- Reg Error: Key error. File not found [HKEY_USERS\S-1-5-21-1120404868-2748734559-3459251641-1000\SOFTWARE\Classes\] .html [@ = OperaStable] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- Reg Error: Key error. htmlfile [opennew] -- Reg Error: Key error. htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- Reg Error: Key error. https [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- Reg Error: Key error. CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Key error. [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- Reg Error: Key error. htmlfile [opennew] -- Reg Error: Key error. htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- Reg Error: Key error. https [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- Reg Error: Key error. CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Key error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{04838E49-1B6C-406A-8524-6751D1795BFA}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{06C00BF2-12E9-489A-B72E-2D177EB71802}" = rport=138 | protocol=17 | dir=out | app=system | "{08CDF26E-03F8-42EE-B908-3BC8631B2BF3}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{0D5016A1-DD91-442E-8C8C-907CBA2A43DB}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{0DB000A3-7AD7-4A84-81A8-837472A80C38}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{11713C6C-E3EB-47EF-B575-57599664E18F}" = rport=445 | protocol=6 | dir=out | app=system | "{133BB3B9-6793-4849-B176-B8943529A913}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{19D95C9C-8740-467F-86AB-FCF9842630E1}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{2B128BFE-81D3-4A0B-A98A-E04500281389}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{3179A35C-09DA-4D9E-B7D9-A59C2E9FD856}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{31ED94AD-F3E2-484D-ACD3-5B24FCCCFEE7}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{34DC1ADE-1B67-4C43-9E9F-9B906C75A223}" = lport=138 | protocol=17 | dir=in | app=system | "{38E0D9C1-C97D-4677-AF03-17751B3B40DE}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{4020B82F-61E9-4791-9888-086D121A2906}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{49217A27-135E-49FD-A06B-C63DC3EE7087}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{5A056D35-B2E1-4CF5-AD25-A53F3902AFC7}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{5B0ED696-A6E0-4661-A57C-939C4BCF7E41}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{64EFE7E7-2E18-4D17-9215-1369DBE851AA}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{69CC9E25-01C3-4913-878F-1E5C6ABD855D}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{6AE4AEB5-C86E-4DE6-BDCC-4D8EBE58F957}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{756269E2-FB03-4A36-BAE4-631E0C28EF6A}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{75687E60-0A34-4BDE-80DD-0E3C9C7107AB}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{756EC459-353E-4CCA-9AA6-D2E98B5AE6EE}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{7768EEB0-4176-4D97-BE93-9C8DB164CC65}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{781A2D02-E69D-40D7-82B6-F62B2F14BC04}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{805D1CC8-6D68-41CF-801A-66DD6E13D220}" = rport=10243 | protocol=6 | dir=out | app=system | "{8487F6C1-F9A8-4E56-9694-589F27988717}" = lport=2869 | protocol=6 | dir=in | app=system | "{8CA43D31-92F6-4E33-8628-6BAB46D58EA3}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{9BDE0B96-A3BF-4C2B-BFED-A739B84F627C}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{9EA5CD05-3077-4403-8933-AC7B72A550A2}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe | "{9F54A976-9106-4345-A79B-AF7FA4D2B9F0}" = lport=139 | protocol=6 | dir=in | app=system | "{A45EDDA5-605B-4E2B-BD13-CE10D315595D}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{A6AD8C72-9C94-4FAB-84AA-319B58039B9E}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{ADBB6F9D-6068-41B5-88E2-C2E8112E6863}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{B5F13DFD-FF8F-43A5-A9A9-E04D7B196C3E}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{BFCBEB35-B84D-4833-903A-162C2155F479}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{CCCB3170-0578-4BCF-8474-D1C59535F069}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{CCED19E1-54BB-43B1-96C1-D80A7C5FB2FC}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{CDBC82F3-225C-4BA8-8D0F-531516EC5ADA}" = rport=137 | protocol=17 | dir=out | app=system | "{CDE9360D-4470-468D-9433-48D352967175}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{D9F64A62-7280-4061-805A-2DFD806C7AB6}" = lport=445 | protocol=6 | dir=in | app=system | "{DCD8D898-5B80-42C3-A6D1-0C7A6CF29CDD}" = lport=10243 | protocol=6 | dir=in | app=system | "{DD84EFD1-84D2-4612-B9CD-7F9B47D30E84}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{E01469AE-5763-4EBD-ADC0-B6F87CD0E1EB}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{E26DA3C6-7295-4A20-BD40-25292F579E72}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{E37D3FF6-4ADA-42E5-8B5D-9865158FA2A4}" = rport=139 | protocol=6 | dir=out | app=system | "{E6EF516B-8A23-49BF-904F-6CDEB8D86F05}" = lport=137 | protocol=17 | dir=in | app=system | "{EBE63191-F2E1-4FB3-8806-51B95EE1472D}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{EE0921A1-1E17-4BED-8D3D-2DA9E3F7B551}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{F4EF553B-01E8-46D6-8135-E877838C3523}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{F5A49C22-24BF-4023-BFD9-44CACE84CF5A}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{FF992979-5270-4A8F-B7C1-E565ECE34D7E}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{018091F1-1B07-430B-8E22-D3DEE6612AC6}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{0BBEF552-3A7B-480C-910C-66E3990743CD}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{0DAE64EA-647D-4413-B705-1459C1E139DF}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{11649374-0793-4526-887D-5C8110B55D95}" = protocol=6 | dir=in | app=d:\origin\gry\battlefield bad company 2\bfbc2game.exe | "{1357BBF8-9E51-48C5-BCA4-EE72431CC324}" = protocol=6 | dir=out | app=system | "{1B88BDDB-1DC4-4640-95F5-C88A55337DD3}" = protocol=17 | dir=in | app=d:\origin\gry\battlefield 4\bf4.exe | "{1D1B9F14-818C-4A9A-9FA3-A78D444BA727}" = protocol=6 | dir=in | app=d:\wtw\wtw.exe | "{22746EB2-A69A-49B8-AFD3-9E943B5F042C}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{2527B22B-81F6-437C-B182-F60393B54246}" = protocol=6 | dir=in | app=d:\origin\gry\battlefield 4\bf4.exe | "{2AF056B9-DE60-46C2-A041-2A29EFCBB9F1}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{31DB0203-D8A3-4BDC-812A-4F8F465123FE}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{3361F4B0-2128-4E9F-B2E9-02F14A33155B}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{343DFE47-B90A-422E-B69D-7CEACC9A90CC}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{36282F57-2575-4CCC-B524-F24A2F996601}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{44091C46-4A18-49D3-B149-CFB17A4D93A8}" = protocol=17 | dir=in | app=d:\origin\gry\battlefield 4 cte\bf4cte.exe | "{4825BCEF-8E28-4D38-A177-447D4D443A57}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | "{4A706C0C-3597-4EFB-AA4B-82397DF5FFF3}" = protocol=17 | dir=in | app=d:\origin\gry\battlefield 4\bf4_x86.exe | "{529B5EA9-8D6D-43A8-B319-87056576177E}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{55BEC835-19EF-427D-BFDF-C8592D37A784}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{597C47E2-1A6E-4FD6-8439-750F2F010E95}" = protocol=17 | dir=in | app=d:\origin\gry\battlefield 4 cte\bf4cte_x86.exe | "{5BFE33FC-7AD3-4D29-901C-A01E5CCB574C}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe | "{6B425135-611F-41D2-BE14-0DC58E3B1409}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{6D15CE38-0BAD-49F5-9D80-7A589A69E460}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | "{75072A9C-6D24-494C-AB56-7D5E87C9F36C}" = dir=in | app=d:\htc\htcsyncmanager.exe | "{78420F13-B466-494B-B210-FD34C32C37FB}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe | "{7B883553-188C-4589-B500-0F671AF7BA97}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{8C040EE0-66C3-4B0A-B6C9-7AEEFB5FEE8E}" = protocol=17 | dir=in | app=d:\origin\gry\battlefield 3\bf3.exe | "{8D83A305-97A0-4102-A1A0-6F46D530E63E}" = protocol=17 | dir=in | app=d:\origin\gry\battlefield bad company 2\bfbc2game.exe | "{8EF4F753-3EE4-488E-8935-95E5520EDC2C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{935F408A-7AB5-4B22-8532-F5674C48E93C}" = dir=in | app=c:\program files\hp\hp deskjet 2510 series\bin\usbsetup.exe | "{9521C83D-F41E-45FB-BD38-489FDDD5C615}" = protocol=6 | dir=in | app=c:\program files (x86)\asus\ai suite ii\ai suite ii.exe | "{9C90E09C-0FC4-4642-B2C9-9E2F476FD67D}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe | "{AF818268-1A8F-4F1C-838D-0663FA583F36}" = protocol=17 | dir=in | app=d:\origin\gry\dead space\dead space.exe | "{B36EC030-440D-43E4-ACBD-318A79840EC3}" = protocol=6 | dir=in | app=d:\origin\gry\dead space\dead space.exe | "{B9ADB9C8-B674-43B9-8E54-8D3B4E99D7D7}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{B9C248A2-5577-4158-BB7F-F6CA60B2ACF1}" = protocol=6 | dir=in | app=d:\origin\gry\battlefield 3\bf3.exe | "{C1EE8AEC-4730-4D70-9EC5-8B32D57A7B8C}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{C33E95EC-0054-4FFC-9385-8DB7ED969A1E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{DD4CE4C3-3D9B-4A56-A167-599F9FA594C2}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{DE450A9A-1753-4B24-B12B-48FDE56254DA}" = protocol=6 | dir=in | app=d:\origin\gry\battlefield 4 cte\bf4cte.exe | "{E8B3549D-4B19-448A-B2B3-68D735ED1E32}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{EA010571-BE6A-4236-8EBB-F3144CA261CF}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{EA6B1852-81A5-4348-94B6-FF92A32FFCAD}" = protocol=6 | dir=in | app=d:\origin\gry\battlefield 4\bf4_x86.exe | "{EC086D59-63B3-4123-87AF-B2B1AF507EB3}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{F07C9B4B-3BF8-4211-BE4C-596850C39A67}" = protocol=6 | dir=in | app=d:\origin\gry\battlefield 4 cte\bf4cte_x86.exe | "{FAD81456-1BDB-4894-A3BF-91665C27DD72}" = protocol=17 | dir=in | app=d:\wtw\wtw.exe | "{FB188CFC-85FE-40B6-818A-9A3BD523A115}" = protocol=17 | dir=in | app=c:\program files (x86)\asus\ai suite ii\ai suite ii.exe | "{FC28D541-CCE8-4F3F-A2EA-C9289FCCD289}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "TCP Query User{6343C1B6-C73A-4042-A03B-0C3AC83793D3}D:\aimp3\aimp3.exe" = protocol=6 | dir=in | app=d:\aimp3\aimp3.exe | "UDP Query User{1A777B46-8192-4DD5-9EB7-0E1176DE5986}D:\aimp3\aimp3.exe" = protocol=17 | dir=in | app=d:\aimp3\aimp3.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64) "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{1DF5019A-68B5-4ba1-8E59-E185C7B7FF11}" = Komunikator WTW 0.9.18.3794 "{2C5BEB65-2CCC-4A28-99EA-12667FD185BA}" = calibre 64bit "{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 "{45F1F774-38B4-3CC3-BAAF-051E6D19E48E}" = Microsoft .NET Framework 4.5.1 (PLK) "{54F2237F-018C-483B-8884-9FC0D88840C3}" = VC_CRT_x64 "{644B5296-5B22-40EE-B954-9598E2E1427E}" = Intel(R) Network Connections 18.1.59.0 "{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64) "{764384C5-BCA9-307C-9AAC-FD443662686A}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 "{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Microsoft .NET Framework 4.5.1 (Polski) "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 344.11 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 344.11 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 2.1.2 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.14.0702 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 16.13.42 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService" = NVIDIA GeForce Experience Service "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 16.13.42 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController" = SHIELD Wireless Controller Driver "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.25 "{F0DD70C6-B53F-42B5-8A67-62863E6E5EEF}" = HP Deskjet 2510 series — podstawowe oprogramowanie urządzenia "{FA00A3CC-7440-4938-A271-F186F50DD40D}" = Intel® Trusted Connect Service Client "CCleaner" = CCleaner "C-Media Oxygen HD Audio Driver" = UNi Xonar Audio Driver "CPUID ROG CPU-Z_is1" = CPUID ROG CPU-Z 1.65 "Defraggler" = Defraggler "PROSetDX" = Intel(R) Network Connections 18.1.59.0 "TeamSpeak 3 Client" = TeamSpeak 3 Client "Totalcmd64" = Total Commander 64-bit (Remove or Repair) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{08208143-777D-4A06-BB54-71BF0AD1BB70}" = IPTInstaller "{1A15C8C3-DDCA-47BF-9078-799D356462ED}" = TS Notifier "{216C7F38-4BBC-4E9A-8392-C9FA21B54386}" = HP Deskjet 2510 series Setup Guide "{231D0C79-98A6-4693-A366-36DE7D7346EC}" = HTC Sync Manager "{34D3688E-A737-44C5-9E2A-FF73618728E1}" = AI Suite II "{3AC8457C-0385-4BEA-A959-E095F05D6D67}" = Battlefield: Bad Company™ 2 "{3D6AD258-61EA-35F5-812C-B7A02152996E}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 "{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology "{3FD0C489-0F02-481a-A3E1-9754CD396761}" = Intel® Watchdog Timer Driver (Intel® WDT) "{4CEEE5D0-F905-4688-B9F9-ECC710507796}" = HTC Driver Installer "{551A08D1-B60E-4DED-9B67-C3B38258CCA3}" = Battlefield 4™ CTE "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{6E6F22D7-8AD6-4A87-9A47-733E6E996F50}" = Dead Space "{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™ "{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype™ 6.16 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8B313BF5-9BD5-42a3-94C1-A28AF3AA51CC}" = Intel(R) Rapid Storage Technology enterprise "{90110415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003 "{91B33C97-280F-B76D-E27B-E712D7041B76}_is1" = Ashampoo Burning Studio 2014 v.12.0.5 "{95716cce-fc71-413f-8ad5-56c2892d4b3a}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 "{A7B243AA-6D4C-4575-A873-6F01A1EFC5E2}}_is1" = Gaming Mouse "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{ABADE36E-EC37-413B-8179-B432AD3FACE7}" = Battlefield 4™ "{AC76BA86-7AD7-1045-7B44-AB0000000001}" = Adobe Reader XI (11.0.09) - Polish "{B455E95A-B804-439F-B533-336B1635AE97}" = NVIDIA PhysX "{BEE64C14-BEF1-4610-8A68-A16EAA47B882}" = Futuremark SystemInfo "{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}" = Asmedia ASM104x USB 3.0 Host Controller Driver "{E7D4E834-93EB-351F-B8FB-82CDAE623003}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "AC3Filter_is1" = AC3Filter 2.6.0b "Ad Muncher" = Ad Muncher v4.93.33707 "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 15 Plugin "Afterburner" = MSI Afterburner 2.3.0 "AIMP3" = AIMP3 "Audacity_is1" = Audacity 2.0.5 "Avast" = avast! Free Antivirus "Battlelog Web Plugins" = Battlelog Web Plugins "ESN Sonar-0.70.4" = ESN Sonar "Fraps" = Fraps (remove only) "Freemake Video Converter_is1" = Freemake Video Converter wersja 4.1.3 "Google Chrome" = Google Chrome "IrfanView" = IrfanView (remove only) "KeePass Password Safe_is1" = KeePass Password Safe 1.27 "KeePassPasswordSafe2_is1" = KeePass Password Safe 2.26 "KLiteCodecPack_is1" = K-Lite Codec Pack 10.1.0 Standard "LAME_is1" = LAME v3.99.3 (for Windows) "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 2.00.0.1000 "OpenAL" = OpenAL "Opera 12.16.1860" = Opera 12.16 "Origin" = Origin "PunkBusterSvc" = PunkBuster Services "Rainlendar2" = Rainlendar2 (remove only) "RocketDock_is1" = RocketDock 1.3.5 "SpeedFan" = SpeedFan (remove only) "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-09-16 18:52:38 | Computer Name = Piotr-PC | Source = NvStreamSvc | ID = 131073 Description = Error - 2014-09-16 18:52:38 | Computer Name = Piotr-PC | Source = NvStreamSvc | ID = 131073 Description = Error - 2014-09-16 18:53:53 | Computer Name = Piotr-PC | Source = MsiInstaller | ID = 1024 Description = Error - 2014-09-17 06:32:26 | Computer Name = Piotr-PC | Source = MsiInstaller | ID = 1024 Description = Error - 2014-09-18 06:23:37 | Computer Name = Piotr-PC | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: bf3.exe, wersja: 1.6.0.0, sygnatura czasowa: 0x511c9356 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.18247, sygnatura czasowa: 0x521ea8e7 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00038e19 Identyfikator procesu powodującego błąd: 0x1434 Godzina uruchomienia aplikacji powodującej błąd: 0x01cfd32a6573c8f7 Ścieżka aplikacji powodującej błąd: D:\Origin\Gry\Battlefield 3\bf3.exe Ścieżka modułu powodującego błąd: C:\Windows\SysWOW64\ntdll.dll Identyfikator raportu: d9ade0ed-3f1d-11e4-b9cb-ac220b4da539 Error - 2014-09-20 06:21:49 | Computer Name = Piotr-PC | Source = Application Hang | ID = 1002 Description = Program PRoCon.exe w wersji 1.4.2.3 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 6d8 Godzina rozpoczęcia: 01cfd4bbfe0b5fe7 Godzina zakończenia: 4 Ścieżka aplikacji: D:\PRoCon\PRoCon.exe Identyfikator raportu: e866c2cc-40af-11e4-a6b7-ac220b4da539 Error - 2014-09-21 10:59:18 | Computer Name = Piotr-PC | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: tsnotifier.exe, wersja: 1.5.5.3, sygnatura czasowa: 0x5323eadd Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.18247, sygnatura czasowa: 0x521ea8e7 Kod wyjątku: 0xc0000374 Przesunięcie błędu: 0x000ce753 Identyfikator procesu powodującego błąd: 0x3c78 Godzina uruchomienia aplikacji powodującej błąd: 0x01cfd5ac9dc1da16 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\TS Notifier\tsnotifier.exe Ścieżka modułu powodującego błąd: C:\Windows\SysWOW64\ntdll.dll Identyfikator raportu: dc07f7be-419f-11e4-9c21-ac220b4da539 Error - 2014-09-27 08:00:04 | Computer Name = Piotr-PC | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: bf4.exe, wersja: 1.3.2.3825, sygnatura czasowa: 0x53a4d82a Nazwa modułu powodującego błąd: bf4.exe, wersja: 1.3.2.3825, sygnatura czasowa: 0x53a4d82a Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000b3937c Identyfikator procesu powodującego błąd: 0x1530 Godzina uruchomienia aplikacji powodującej błąd: 0x01cfda43c955edce Ścieżka aplikacji powodującej błąd: D:\Origin\Gry\Battlefield 4\bf4.exe Ścieżka modułu powodującego błąd: D:\Origin\Gry\Battlefield 4\bf4.exe Identyfikator raportu: d0830f26-463d-11e4-8418-ac220b4da539 Error - 2014-09-28 09:23:09 | Computer Name = Piotr-PC | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: tsnotifier.exe, wersja: 1.5.5.3, sygnatura czasowa: 0x5323eadd Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.18247, sygnatura czasowa: 0x521ea8e7 Kod wyjątku: 0xc0000374 Przesunięcie błędu: 0x000ce753 Identyfikator procesu powodującego błąd: 0xcbc Godzina uruchomienia aplikacji powodującej błąd: 0x01cfdb1f586ffff8 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\TS Notifier\tsnotifier.exe Ścieżka modułu powodującego błąd: C:\Windows\SysWOW64\ntdll.dll Identyfikator raportu: 965c6391-4712-11e4-867e-ac220b4da539 Error - 2014-09-28 18:47:35 | Computer Name = Piotr-PC | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: tsnotifier.exe, wersja: 1.5.5.3, sygnatura czasowa: 0x5323eadd Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.18247, sygnatura czasowa: 0x521ea8e7 Kod wyjątku: 0xc0000374 Przesunięcie błędu: 0x000ce753 Identyfikator procesu powodującego błąd: 0x1798 Godzina uruchomienia aplikacji powodującej błąd: 0x01cfdb6e31b8dbd5 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\TS Notifier\tsnotifier.exe Ścieżka modułu powodującego błąd: C:\Windows\SysWOW64\ntdll.dll Identyfikator raportu: 704e2c17-4761-11e4-867e-ac220b4da539 [ System Events ] Error - 2014-07-06 12:06:04 | Computer Name = Piotr-PC | Source = bowser | ID = 8003 Description = Error - 2014-07-08 04:00:50 | Computer Name = Piotr-PC | Source = DCOM | ID = 10010 Description = Error - 2014-07-08 19:13:33 | Computer Name = Piotr-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 00:11:17 na ?2014-?07-?09 było nieoczekiwane. Error - 2014-07-11 11:21:33 | Computer Name = Piotr-PC | Source = WMPNetworkSvc | ID = 866300 Description = Error - 2014-08-25 05:28:18 | Computer Name = Piotr-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 10:11:43 na ?2014-?08-?25 było nieoczekiwane. Error - 2014-08-26 11:51:16 | Computer Name = Piotr-PC | Source = DCOM | ID = 10010 Description = Error - 2014-09-09 12:11:18 | Computer Name = Piotr-PC | Source = Schannel | ID = 36888 Description = Został wygenerowany następujący alert krytyczny: 70. Stan błędu wewnętrznego: 105. Error - 2014-09-27 08:07:04 | Computer Name = Piotr-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 13:05:51 na ?2014-?09-?27 było nieoczekiwane. Error - 2014-09-27 09:23:03 | Computer Name = Piotr-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 13:33:31 na ?2014-?09-?27 było nieoczekiwane. Error - 2014-09-27 21:24:38 | Computer Name = Piotr-PC | Source = DCOM | ID = 10010 Description = < End of report >