OTL Extras logfile created on: 2014-10-22 14:23:36 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\tad\Desktop\diagnostyka_kompa\otl 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17280) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,75 Gb Total Physical Memory | 0,95 Gb Available Physical Memory | 34,71% Memory free 5,50 Gb Paging File | 3,29 Gb Available in Paging File | 59,84% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 97,56 Gb Total Space | 41,53 Gb Free Space | 42,57% Space Free | Partition Type: NTFS Drive D: | 135,23 Gb Total Space | 132,01 Gb Free Space | 97,62% Space Free | Partition Type: NTFS Computer Name: TAD-KOMPUTER | User Name: tad | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-857324733-421609195-1616938436-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htafile [open] -- "%1" %* htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htafile [open] -- "%1" %* htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0C603A0D-EE0D-42FA-A930-4A610397F644}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe | "{27F49EFE-8234-4521-81FE-9C4B655CF825}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{2ACE5AB2-A898-4CFF-A99F-94495BEA8102}" = lport=138 | protocol=17 | dir=in | app=system | "{32A8B756-50F0-4C0A-BB14-E8E4B0C6A461}" = rport=139 | protocol=6 | dir=out | app=system | "{3E2878A8-CF3D-45CC-908F-FCC781BB9F78}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{41804537-13FC-497C-8575-181E9C325CFA}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4A6C672D-8923-4DB3-A2DF-6E82BCABFC85}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4D42D2E7-2ECB-4602-9A75-9D55DDCA6B16}" = lport=10243 | protocol=6 | dir=in | app=system | "{52FAC536-48CA-4CF4-B089-C717C309873E}" = lport=139 | protocol=6 | dir=in | app=system | "{56D01379-FA59-440F-8F8D-5F6044738A56}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{5C557C43-FDE7-41D2-9214-DE82B02EDB0D}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe | "{7B52C34C-6CB3-401F-AAE2-865FD198BB41}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{7E247A4C-0425-4C65-936B-48164E498AA5}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{83854116-727E-4948-8884-4AA71329B386}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{956157FA-D15A-4A2E-99A4-9025BE86E894}" = lport=445 | protocol=6 | dir=in | app=system | "{97ACDE57-BC7B-4529-A264-DF38B9DE81AC}" = rport=10243 | protocol=6 | dir=out | app=system | "{9D3394A1-8061-434F-92AB-1A5475A98D17}" = lport=137 | protocol=17 | dir=in | app=system | "{ACBD739C-6698-47AE-B970-36C4AE9F07AC}" = rport=445 | protocol=6 | dir=out | app=system | "{B1616CF7-C470-49D4-BC14-6EE6D21E7FC3}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{D0F59AF5-DEF1-4547-AD90-787AC7F92FF3}" = rport=138 | protocol=17 | dir=out | app=system | "{D6407BFD-BBAD-4EF6-8646-4C3AA6C7FED7}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{ED21ECB4-0123-4238-B0AC-BE07DBC3EC0E}" = lport=2869 | protocol=6 | dir=in | app=system | "{F48E704E-4CCA-49E9-8E98-6E9A85540492}" = rport=137 | protocol=17 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{049304D0-EB5D-4CA3-B66A-16073284EEBD}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{071271EA-9A88-43AE-AC27-D3AD61585BE1}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{1594865A-6739-47E3-9B7B-513E1D3A8D4B}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe | "{1B4012C2-BF55-4BEB-8F5C-7BAE03A45D35}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{381819E4-378E-4ABF-955D-FE81F1F40F21}" = dir=in | app=c:\users\tad\appdata\local\torch\plugins\torrent\torchtorrent.exe | "{3BC7487B-4872-4BB9-A4CA-019C1C8E5D93}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe | "{3E728849-2C36-4340-A349-0998EC850F1F}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{4372C736-F647-4346-9EBB-0A6CCFF5F4EF}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe | "{438A94E3-97F8-4E69-B31A-DDDA7A68C85D}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{446FD644-A0F0-4694-A4D1-A09C0C965CF4}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{660FFEF7-D8A9-465D-B551-03A02545FBE9}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{6D5AC483-018B-4710-9884-5B1CE14F09A2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{8341144F-9668-4CB3-B998-40C416EA5218}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{89C2F71A-1037-4FB1-B6A1-2494F2B77AEF}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe | "{92982B90-B4D0-4CAE-8A8C-CBA0A45CDDB1}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{94EBD2B9-255F-4990-80EE-D4AC4E01583A}" = protocol=6 | dir=out | app=system | "{99FB90C7-BB63-477B-AD4B-AAB1FCA7562D}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe | "{A0232A91-E200-49AC-AACF-F9A6875F9F6B}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{A27D32B1-B1C2-4175-BBB8-FAA07C70FD84}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{A4E7B8DF-D979-4947-A68A-D113510461FE}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe | "{A662FF66-AF6D-480C-AF76-D708BCBA0A23}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{A701F952-1CE5-4C6B-ABAA-C0E89854F1DA}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{A8FD35CB-9A4B-4F77-9067-4BF4B32FDFCA}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe | "{AAA8D012-B904-4929-8D2C-68EC3D6CABEB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{ACFA59C3-5D98-4B4F-A0AB-C712DEDECA2F}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe | "{AF647A25-7760-47B2-8E40-29041280EDDD}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{B8524A7F-2FC0-4100-B41D-FB2B2A4068A3}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe | "{C54909AA-2CDC-4E2D-9DC4-A50500BE2C47}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe | "{C6C0B0EB-49AF-4C92-9088-2294E2B9618C}" = protocol=6 | dir=in | app=c:\programdata\esafe\egdpsvc.exe | "{CF7A4D5E-1F80-40A7-AEF8-F63E761D81EA}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{D3191105-0CD3-44A5-8812-4AAED9C97C73}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{D58D99EB-27BB-43AE-B7CC-2B2C3A738390}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{D7FD5FF4-A646-4B15-8629-9ED6C9612906}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{DE880818-D200-4B24-8D05-4D92AFB3A39D}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe | "{E6CD6D51-EFBA-4FE2-B123-AC575C1B44A1}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe | "{FCFB3C0C-801D-4EF0-8812-4EC4387B8B5D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "TCP Query User{277C91BF-3B0B-4A2B-9C6C-334A669E97D6}C:\program files (x86)\ares\ares.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ares\ares.exe | "TCP Query User{BD122DC7-4780-49F5-BBA5-3D7A99ACC043}C:\program files (x86)\ares\ares.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ares\ares.exe | "UDP Query User{0F232EA5-4596-46F3-A24C-6AD435767F29}C:\program files (x86)\ares\ares.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ares\ares.exe | "UDP Query User{C6721E4B-E692-4F50-9A45-67959E06D0C6}C:\program files (x86)\ares\ares.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ares\ares.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{04CF7FBD-E56C-446D-8FC9-DD444BDBEE8E}" = Kaspersky Endpoint Security 10 for Windows "{45F1F774-38B4-3CC3-BAAF-051E6D19E48E}" = Microsoft .NET Framework 4.5.1 (PLK) "{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2010 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Microsoft .NET Framework 4.5.1 (Polski) "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 331.65 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 331.65 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.15.2 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.3.18.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{C23EE7CE-C1A3-4F94-A8F0-9E0AC9C6DE6E}" = Adblock Plus for IE (32-bit and 64-bit) "CNXT_AUDIO_HDA" = Conexant HD Audio "CNXT_MODEM_HDA_HSF" = HDAUDIO Soft Data Fax Modem with SmartCP "HP LaserJet Professional P1100-P1560-P1600 Series" = HP LaserJet Professional P1100-P1560-P1600 Series "SynTPDeinstKey" = Synaptics Pointing Device Driver "Totalcmd64" = Total Commander 64-bit (Remove or Repair) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator "{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}" = YTD Video Downloader 4.8.1 "{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 6.21 "{6D1221A9-17BF-4EC0-81F2-27D30EC30701}" = Skype Click to Call "{90140000-0012-0000-0000-0000000FF1CE}" = Microsoft Office Standard 2010 "{90140000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.09) "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime "{fd97d1e2-368a-4cd9-af63-8eeff938044a}" = Adblock Plus for IE "Adobe Flash Player ActiveX" = Adobe Flash Player 15 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 15 Plugin "Ares" = Ares 2.2.4 "Google Chrome" = Google Chrome "Image Converter Image Converter" = Image Converter "Mozilla Firefox 32.0.3 (x86 pl)" = Mozilla Firefox 32.0.3 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Office14.STANDARD" = Microsoft Office Standard 2010 "Pdf995" = Pdf995 "PhotoScape" = PhotoScape "TeamViewer 9" = TeamViewer 9 "TermTutor" = Term Tutor [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-857324733-421609195-1616938436-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Dropbox" = Dropbox "Image Editor Packages" = Image Editor Packages [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-10-18 10:56:18 | Computer Name = tad-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-10-19 03:16:32 | Computer Name = tad-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-10-19 10:39:20 | Computer Name = tad-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-10-20 10:44:54 | Computer Name = tad-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-10-20 16:58:33 | Computer Name = tad-Komputer | Source = VSS | ID = 13 Description = Error - 2014-10-20 16:58:33 | Computer Name = tad-Komputer | Source = VSS | ID = 8193 Description = Error - 2014-10-20 16:58:33 | Computer Name = tad-Komputer | Source = VSS | ID = 13 Description = Error - 2014-10-20 16:58:33 | Computer Name = tad-Komputer | Source = VSS | ID = 8193 Description = Error - 2014-10-21 10:36:46 | Computer Name = tad-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-10-22 02:13:51 | Computer Name = tad-Komputer | Source = WinMgmt | ID = 10 Description = [ Kaspersky Event Log Events ] Error - 2007-09-01 03:44:51 | Computer Name = tad-Komputer | Source = avp | ID = 135732 Description = Rodzaj zdarzenia: Naruszono warunki Umowy licencyjnej Aplikacja\Nazwa: Kaspersky Endpoint Security 10 for Windows Składnik: Ochrona Wynik\Opis: Czarna lista kluczy jest uszkodzona Error - 2007-09-01 05:22:26 | Computer Name = tad-Komputer | Source = avp | ID = 135732 Description = Rodzaj zdarzenia: Błąd przetwarzania Aplikacja\Nazwa: Nieznany Składnik: Ochrona plików Wynik\Opis: Błąd przetwarzania Obiekt: C:\$Mft Obiekt\Typ: Plik Obiekt\Ścieżka dostępu: C:\ Obiekt\Nazwa: $Mft Powód: Błąd odczytu Error - 2014-06-10 11:13:37 | Computer Name = tad-Komputer | Source = avp | ID = 135732 Description = Rodzaj zdarzenia: Naruszono warunki Umowy licencyjnej Aplikacja\Nazwa: Kaspersky Endpoint Security 10 for Windows Składnik: Ochrona Wynik\Opis: Czarna lista kluczy jest uszkodzona Error - 2014-06-26 03:21:37 | Computer Name = tad-Komputer | Source = avp | ID = 135732 Description = Rodzaj zdarzenia: Naruszono warunki Umowy licencyjnej Aplikacja\Nazwa: Kaspersky Endpoint Security 10 for Windows Składnik: Ochrona Wynik\Opis: Czarna lista kluczy jest uszkodzona Error - 2014-07-21 16:37:19 | Computer Name = tad-Komputer | Source = avp | ID = 135732 Description = Rodzaj zdarzenia: Błąd przetwarzania Aplikacja\Nazwa: COM Surrogate Aplikacja\Ścieżka dostępu: c:\windows\system32\ Aplikacja\Identyfikator procesu: 5780 Składnik: Ochrona plików Wynik\Opis: Błąd przetwarzania Obiekt: F:\DCIM\100CASIO\CIMG2984.JPG Obiekt\Typ: Plik Obiekt\Ścieżka dostępu: F:\DCIM\100CASIO\ Obiekt\Nazwa: CIMG2984.JPG Powód: Błąd odczytu Error - 2014-07-30 13:16:51 | Computer Name = tad-Komputer | Source = avp | ID = 135732 Description = Rodzaj zdarzenia: Naruszono warunki Umowy licencyjnej Aplikacja\Nazwa: Kaspersky Endpoint Security 10 for Windows Składnik: Ochrona Wynik\Opis: Czarna lista kluczy jest uszkodzona Error - 2014-08-02 15:37:45 | Computer Name = tad-Komputer | Source = avp | ID = 135732 Description = Rodzaj zdarzenia: Wykryto aktywne zagrożenie. Powinno zostać uruchomione zaawansowane leczenie Aplikacja\Nazwa: Kaspersky Endpoint Security 10 for Windows Składnik: Ochrona Error - 2014-08-12 12:13:03 | Computer Name = tad-Komputer | Source = avp | ID = 135732 Description = Rodzaj zdarzenia: Wykryto aktywne zagrożenie. Powinno zostać uruchomione zaawansowane leczenie Aplikacja\Nazwa: Kaspersky Endpoint Security 10 for Windows Składnik: Ochrona Error - 2014-08-13 12:55:03 | Computer Name = tad-Komputer | Source = avp | ID = 135732 Description = Rodzaj zdarzenia: Wykryto aktywne zagrożenie. Powinno zostać uruchomione zaawansowane leczenie Aplikacja\Nazwa: Kaspersky Endpoint Security 10 for Windows Składnik: Ochrona Error - 2014-09-14 14:55:53 | Computer Name = tad-Komputer | Source = avp | ID = 135732 Description = Rodzaj zdarzenia: Błąd przetwarzania Aplikacja\Nazwa: COM Surrogate Aplikacja\Ścieżka dostępu: c:\windows\system32\ Aplikacja\Identyfikator procesu: 2572 Składnik: Ochrona plików Wynik\Opis: Błąd przetwarzania Obiekt: F:\DCIM\100CASIO\CIMG2267.JPG Obiekt\Typ: Plik Obiekt\Ścieżka dostępu: F:\DCIM\100CASIO\ Obiekt\Nazwa: CIMG2267.JPG Powód: Błąd odczytu [ Media Center Events ] Error - 2013-05-07 11:11:37 | Computer Name = tad-Komputer | Source = MCUpdate | ID = 0 Description = 17:11:37 - Błąd podczas nawiązywania połączenia z Internetem. 17:11:37 - Nie można skontaktować się z serwerem.. Error - 2013-05-07 11:11:50 | Computer Name = tad-Komputer | Source = MCUpdate | ID = 0 Description = 17:11:42 - Błąd podczas nawiązywania połączenia z Internetem. 17:11:42 - Nie można skontaktować się z serwerem.. Error - 2013-05-09 03:09:48 | Computer Name = tad-Komputer | Source = MCUpdate | ID = 0 Description = 09:09:48 - Błąd podczas nawiązywania połączenia z Internetem. 09:09:48 - Nie można skontaktować się z serwerem.. Error - 2013-05-09 03:10:02 | Computer Name = tad-Komputer | Source = MCUpdate | ID = 0 Description = 09:09:54 - Błąd podczas nawiązywania połączenia z Internetem. 09:09:54 - Nie można skontaktować się z serwerem.. Error - 2014-03-22 09:10:44 | Computer Name = tad-Komputer | Source = MCUpdate | ID = 0 Description = 14:10:44 - Błąd podczas nawiązywania połączenia z Internetem. 14:10:44 - Nie można skontaktować się z serwerem.. Error - 2014-03-22 09:10:57 | Computer Name = tad-Komputer | Source = MCUpdate | ID = 0 Description = 14:10:49 - Błąd podczas nawiązywania połączenia z Internetem. 14:10:49 - Nie można skontaktować się z serwerem.. Error - 2014-03-31 10:38:09 | Computer Name = tad-Komputer | Source = MCUpdate | ID = 0 Description = 16:38:09 - Błąd podczas nawiązywania połączenia z Internetem. 16:38:09 - Nie można skontaktować się z serwerem.. Error - 2014-03-31 10:38:20 | Computer Name = tad-Komputer | Source = MCUpdate | ID = 0 Description = 16:38:14 - Błąd podczas nawiązywania połączenia z Internetem. 16:38:14 - Nie można skontaktować się z serwerem.. Error - 2014-04-01 10:29:00 | Computer Name = tad-Komputer | Source = MCUpdate | ID = 0 Description = 16:29:00 - Błąd podczas nawiązywania połączenia z Internetem. 16:29:00 - Nie można skontaktować się z serwerem.. Error - 2014-04-01 10:29:13 | Computer Name = tad-Komputer | Source = MCUpdate | ID = 0 Description = 16:29:06 - Błąd podczas nawiązywania połączenia z Internetem. 16:29:06 - Nie można skontaktować się z serwerem.. [ System Events ] Error - 2014-10-15 10:54:59 | Computer Name = tad-Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 20:10:58 na ?2014-?10-?14 było nieoczekiwane. Error - 2014-10-16 10:51:00 | Computer Name = tad-Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 21:32:43 na ?2014-?10-?15 było nieoczekiwane. Error - 2014-10-17 10:54:51 | Computer Name = tad-Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 19:58:09 na ?2014-?10-?16 było nieoczekiwane. Error - 2014-10-18 02:12:49 | Computer Name = tad-Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 19:51:37 na ?2014-?10-?17 było nieoczekiwane. Error - 2014-10-18 06:12:51 | Computer Name = tad-Komputer | Source = Service Control Manager | ID = 7043 Description = Usługa Klient zasad grupy nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem. Error - 2014-10-19 03:14:56 | Computer Name = tad-Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 19:33:11 na ?2014-?10-?18 było nieoczekiwane. Error - 2014-10-19 10:37:54 | Computer Name = tad-Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 11:47:40 na ?2014-?10-?19 było nieoczekiwane. Error - 2014-10-20 10:43:20 | Computer Name = tad-Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 21:48:30 na ?2014-?10-?19 było nieoczekiwane. Error - 2014-10-21 10:35:14 | Computer Name = tad-Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 08:13:38 na ?2014-?10-?21 było nieoczekiwane. Error - 2014-10-22 02:12:17 | Computer Name = tad-Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 22:20:59 na ?2014-?10-?21 było nieoczekiwane. < End of report >