OTL Extras logfile created on: 2014-10-30 21:56:46 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Admin\Downloads 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17358) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,90 Gb Total Physical Memory | 1,64 Gb Available Physical Memory | 41,94% Memory free 7,81 Gb Paging File | 5,27 Gb Available in Paging File | 67,48% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 195,21 Gb Total Space | 78,87 Gb Free Space | 40,40% Space Free | Partition Type: NTFS Drive D: | 736,20 Gb Total Space | 544,42 Gb Free Space | 73,95% Space Free | Partition Type: NTFS Drive G: | 6,42 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS Computer Name: ADMIN-KOMPUTER | User Name: Admin | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = OperaStable] -- C:\Program Files (x86)\Opera\Launcher.exe (Opera Software) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = OperaStable] -- C:\Program Files (x86)\Opera\Launcher.exe (Opera Software) [HKEY_USERS\S-1-5-21-3933479072-2540534226-446759770-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate "%1" (Opera Software) https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L" Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate "%1" (Opera Software) https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L" Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Users\Admin\P-7-78-8964-9648-3874\windll.exe" = "C:\Users\Admin\P-7-78-8964-9648-3874\windll.exe" = [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0A5A31D3-7EFD-4D32-BE7B-CB2C3B6A1FF8}" = rport=445 | protocol=6 | dir=out | app=system | "{11E543C5-31DD-4E0C-B0BA-21A77B040416}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{31512D00-95AF-4536-A3F0-839B00DF1B9D}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{3B95AB7F-AA21-48E4-8909-EAF912AE6729}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{3BA2AF89-6903-429A-8BC3-0F6D7263D1AA}" = lport=139 | protocol=6 | dir=in | app=system | "{3D060678-AD3A-4639-BC6E-DD857A25EE3C}" = lport=138 | protocol=17 | dir=in | app=system | "{40F9A914-7802-4E52-B9CE-6DDE31A0B119}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{4BB3BFFA-DE92-4E5B-A925-96E1AB45B09C}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{4ED6D67D-297C-4D08-B26B-0F4F739D3890}" = lport=2869 | protocol=6 | dir=in | app=system | "{541DA5CC-B6AE-4E7A-AB4B-5186E2CE1F3D}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{576C36DA-A6D0-46B6-9C83-0556D632D8D1}" = lport=10243 | protocol=6 | dir=in | app=system | "{65A6EFB5-B483-406F-B586-0050C374CEB1}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{6685A23D-726A-4534-96EF-6C75E8276D37}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{7B7BF77A-E4D5-4988-8CCD-8EEA2F3D07AF}" = rport=10243 | protocol=6 | dir=out | app=system | "{90BE8845-54DE-4095-8ACC-77B34CDBCDFE}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{9229E2AB-964E-430E-A808-19AFE96F60DE}" = lport=137 | protocol=17 | dir=in | app=system | "{9F25E8F6-559F-473E-9138-7076BDDA88F3}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{B4863A29-FFF8-4AFC-9039-113FC51B12C9}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{B99A70CF-AFC7-4856-AAF4-3CBE5FA3BA33}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{BC3C076D-D636-42B0-888A-D9CD2C5A400E}" = lport=445 | protocol=6 | dir=in | app=system | "{BDB39187-AB13-47EE-B887-74544535E1E4}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{BFBCBD28-2515-4C1E-B20D-C00655AE05AC}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{C9840159-E75F-48D2-B660-408F9696B68B}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{CCC2E323-3760-4C46-8200-D00B1DABDDBE}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{D2AAC47A-2A9D-4260-9965-D81A3371FE66}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe | "{D4605B34-46DD-4BEC-8927-F3E280978975}" = rport=139 | protocol=6 | dir=out | app=system | "{D4D7B722-646C-4492-BA6F-256C0C420559}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{F0FD65E5-20CD-41FF-BF48-5D744BFAF893}" = rport=137 | protocol=17 | dir=out | app=system | "{F18B6D54-15F0-4126-82AD-551739BC6994}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{F910D65F-4680-4FB8-B88D-442B7C306E20}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{F943DC21-EA5F-4316-9309-3D633F316751}" = rport=138 | protocol=17 | dir=out | app=system | "{FE6D85B6-F66E-4BBF-AFBA-4586FFF337AE}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{08965513-A622-4828-A7C4-676CFB6C3E11}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{0AD42C2D-9622-4673-9361-D5653F39264B}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{0FF2A24A-C599-4EE7-A464-260B2F7C13AE}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{1A2C2E86-8AE4-4DB7-B99E-CF666ACFC8CE}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{1D292D57-3F69-4088-B33B-9C52D8A504CD}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{1E1A9EC3-5684-4406-B0A8-BAB627BFD105}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{1F3E18AC-217A-4094-835C-AAFE5F138F01}" = protocol=6 | dir=in | app=c:\program files (x86)\goforfiles\goforfilesdl.exe | "{22FFC07D-232B-4AA8-A5DE-ABCA4800B2F2}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{2FD6E828-4543-4265-84A8-0979969F22B1}" = protocol=17 | dir=in | app=d:\games\fifa 13\game\fifa13.exe | "{3879816C-9B4F-490E-B933-6EC0F45B4693}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{3907BAC8-DFCD-4F61-ABB2-A6B6824F9B01}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{408FEEBC-C0EA-434A-AC82-E2736A327B8A}" = protocol=6 | dir=in | app=d:\games\fifa 13\game\fifa13.exe | "{54453AA1-72D2-4D2E-A5E2-13889B4BC615}" = protocol=17 | dir=in | app=c:\program files (x86)\goforfiles\goforfilesdl.exe | "{753F18BA-1A7F-4295-8817-A4F07F39EDBA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{7798015B-BFDA-40B7-A29C-7EFBB1D15324}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | "{79A78198-BCDA-44F4-95A4-703872DC99A7}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{7E4B6060-4A64-491D-8F4C-DB7F8A8509BC}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{86C9B7DD-9576-4E55-908C-52A23A91AC94}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{8779FAC0-64C0-49CB-B05A-FD3717D0233A}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{8DF46AA4-4308-422D-8C30-9417281648A5}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{928D892C-9808-4367-BCB9-82B56BCFDCEB}" = protocol=6 | dir=in | app=c:\programdata\esafe\egdpsvc.exe | "{9B3D1B28-6CD8-46D8-804E-00B7732692E1}" = protocol=6 | dir=in | app=d:\games\pro evolution soccer 2014\pes2014.exe | "{9FFAFED0-2F93-4EB6-BDA3-645BB5478375}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{A1E848A0-29FA-4C93-B868-D9152A6CE8A1}" = protocol=17 | dir=in | app=d:\games\fifa 13\game\fifa13.exe | "{A368CF2A-171A-4A9B-AFD9-92061C668F2A}" = protocol=17 | dir=in | app=c:\program files (x86)\goforfiles\goforfiles.exe | "{A3CDF0E9-1539-4D7A-8D0E-8FDED81BC04C}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\fifa 15 demo\fifasetup\fifaconfig.exe | "{ABFBDDAF-E059-45B1-AC7B-6B3C6AE815B2}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{AC87F060-47B1-45E1-B472-2B905ACA5AA0}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{AE7B0158-CD23-4107-BFFA-355E8FA783E1}" = dir=in | app=c:\users\admin\appdata\local\facebook\video\skype\facebookvideocalling.exe | "{B51C9E75-AFF8-456C-A165-E892519840B3}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{B9414B87-361B-44B0-AFC8-27697B081658}" = protocol=6 | dir=in | app=d:\games\fifa 13\game\fifa13.exe | "{C7E04641-1781-49B5-BCE0-215CD835449C}" = protocol=6 | dir=in | app=c:\program files (x86)\goforfiles\goforfiles.exe | "{C84F9C8B-EA13-4BCC-953A-A66732C8867F}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\fifa 15 demo\fifasetup\fifaconfig.exe | "{C99C5EF9-4294-4EA6-9811-B9A5E452AA00}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{D3E56593-FC05-4454-8BB6-A6D87A2615F2}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{D720C110-3B48-42CA-B951-484A4381D2F6}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{DDBF759F-738A-4738-86CF-0B4ABB206BFB}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{E7EA4F5C-412B-4A89-AC3F-4C22C9921E19}" = protocol=6 | dir=out | app=system | "{FA503FA8-D658-4950-B170-01829C5D2F2C}" = protocol=17 | dir=in | app=d:\games\pro evolution soccer 2014\pes2014.exe | "TCP Query User{17EA2B3A-5003-4C44-84D9-5931DE312C8F}D:\games\pro evolution soccer 2014\pes2014.exe" = protocol=6 | dir=in | app=d:\games\pro evolution soccer 2014\pes2014.exe | "TCP Query User{266CB5C5-4376-4C53-AE0F-6D2A7249B4B0}C:\program files (x86)\dtella@ms\dtella.exe" = protocol=6 | dir=in | app=c:\program files (x86)\dtella@ms\dtella.exe | "TCP Query User{2E6AE0EF-F296-4614-8E31-C3E13DBB9806}C:\program files (x86)\origin games\fifa 15 demo\fifa15_demo.exe" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\fifa 15 demo\fifa15_demo.exe | "TCP Query User{4A3865AB-9891-453D-A8AB-5DEC8AB517F8}C:\program files (x86)\dtella@ms\dtella.exe" = protocol=6 | dir=in | app=c:\program files (x86)\dtella@ms\dtella.exe | "TCP Query User{55319E93-4213-4944-9AFA-4210F7973D28}C:\program files\dc++\dcplusplus.exe" = protocol=6 | dir=in | app=c:\program files\dc++\dcplusplus.exe | "UDP Query User{1F753C83-A7FE-4DEC-AC78-730A60C092D7}C:\program files (x86)\dtella@ms\dtella.exe" = protocol=17 | dir=in | app=c:\program files (x86)\dtella@ms\dtella.exe | "UDP Query User{320997FC-3BD0-4BE7-95B0-F995DE6CF855}C:\program files\dc++\dcplusplus.exe" = protocol=17 | dir=in | app=c:\program files\dc++\dcplusplus.exe | "UDP Query User{3E1807E7-1E04-45DE-B5A3-E0D36EF428F1}D:\games\pro evolution soccer 2014\pes2014.exe" = protocol=17 | dir=in | app=d:\games\pro evolution soccer 2014\pes2014.exe | "UDP Query User{5C367FEC-C1A8-4D60-A3FC-4EA9313F9FF0}C:\program files (x86)\dtella@ms\dtella.exe" = protocol=17 | dir=in | app=c:\program files (x86)\dtella@ms\dtella.exe | "UDP Query User{87893CFA-4D68-49E1-A600-CC3BEF7CB1EC}C:\program files (x86)\origin games\fifa 15 demo\fifa15_demo.exe" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\fifa 15 demo\fifa15_demo.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{09536BA1-E498-4CC3-B834-D884A67D7E34}" = Intel® Trusted Connect Service Client "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{5783F2D7-9001-0415-0102-0060B0CE6BBA}" = AutoCAD 2011 - Polski "{5783F2D7-9001-0415-1102-0060B0CE6BBA}" = AutoCAD 2011 Language Pack - Polski "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{764384C5-BCA9-307C-9AAC-FD443662686A}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 "{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1 "99841829BE839365AA67B2AD0E50D371F59F8A1E" = Pakiet sterowników systemu Windows - Lenovo (ACPIVPC) System (12/15/2011 7.1.0.1) "AutoCAD 2011 - Polski" = AutoCAD 2011 - Polski "WinGimp-2.0_is1" = GIMP 2.6.8 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{108C0C19-6316-4944-A62F-C744488F8639}" = EA SPORTS™ FIFA 15 Demo "{111EE7DF-FC45-40C7-98A7-753AC46B12FB}" = QuickTime 7 "{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}" = YTD Video Downloader 4.8.5 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{2091F234-EB58-4B80-8C96-8EB78C808CF7}" = Facebook Video Calling 3.1.0.521 "{240C3DDD-C5E9-4029-9DF7-95650D040CF2}" = Intel(R) USB 3.0 eXtensible Host Controller Driver "{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1 "{46F044A5-CE8B-4196-984E-5BD6525E361D}" = Obsługa programów Apple "{49273419-5179-4866-9F71-5CF346F302CF}_is1" = Sothink SWF Catcher "{5DB849D6-9392-4FB7-9ABB-87ED433152E5}" = LG United Mobile Drivers "{5F2F346D-43FA-47A4-97E4-1019BCE7AF45}_is1" = "Pro Evolution Soccer 2014" "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{6921CCEB-3924-48C2-995C-44D5F885E98F}_is1" = Free AVI to MP3 1.0 "{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8E8C2E2D-7F21-2CF5-0ADB-64935121ECF0}" = RandomPrice "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90850415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Word Viewer 2003 "{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}" = FARO LS 1.1.406.58 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9DEABCB6-B759-4D52-92F8-51B34A2B4D40}" = Autodesk Material Library 2011 "{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 "{A29E18C2-7AB1-4b6b-848C-5D5E2C85F0C0}" = FIFA 13 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AAECF7BA-E83B-4A10-87EA-DE0B333F8734}" = RealNetworks - Microsoft Visual C++ 2010 Runtime "{AC76BA86-7AD7-1045-7B44-AB0000000001}" = Adobe Reader XI (11.0.09) - Polish "{B8B4D43C-EAA0-4EEC-B93E-D4D012316286}" = Free DWG Viewer 7.0 "{C8E8D2E3-EF6A-4B1D-A09E-7B27EBE2F3CE}" = RealDownloader "{CD1E078C-A6B9-47DA-B035-6365C85C7832}" = Autodesk Material Library 2011 Base Image library "{D0956C11-0F60-43FE-99AD-524E833471BB}" = Energy Management "{DA0106A3-216E-48DE-9CF6-655DA8FC1D22}" = OpenOffice 4.0.1 "{E5EA877B-61DE-4118-B285-5A6963D9C7AC}" = target "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "Adobe Flash Player ActiveX" = Adobe Flash Player 15 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 15 Plugin "Advanced RAR Repair v1.2" = Advanced RAR Repair v1.2 "AIMP3" = AIMP3 "Avidemux 2.6 - 64bits (64-bit)" = Avidemux 2.6 - 64bits "DAEMON Tools Lite" = DAEMON Tools Lite "DC++" = DC++ 0.843 "Deluxe Ski Jump 4_is1" = Deluxe Ski Jump 4 "Dtella@MS" = Dtella@MS 1.2.7.8 "Dzielenie i łączenie plików_is1" = Dzielenie i łączenie plików v1.2.2 "Easy Video Splitter_is1" = Easy Video Splitter 1.28 "ENTERPRISE" = Microsoft Office Enterprise 2007 "FIFA 14 Patch by PesCups.Ru 6.1 Update" = FIFA 14 Patch by PesCups.Ru 6.1 Update "File Master_is1" = File Master Version 14.0 "InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}" = Energy Management "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 2.0.2.1012 "McAfeeLiteScanner" = McAfee Scan and Repair 1.5.121 "Mozilla Firefox 33.0.2 (x86 pl)" = Mozilla Firefox 33.0.2 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Need for Speed Carbon_is1" = Need for Speed Carbon wersja 1.4 "Need for Speed Most Wanted 2005_is1" = Need for Speed Most Wanted 2005 wersja 1.3 "Opera 20.0.1387.82" = Opera Stable 20.0.1387.82 "Opera 25.0.1614.68" = Opera Stable 25.0.1614.68 "Origin" = Origin "RealPlayer 16.0" = RealPlayer "Record Player" = Record Player "Sizzling Hot by Czciciel" = Sizzling Hot by Czciciel "VLC media player" = VLC media player 2.1.2 "WinRAR archiver" = Archiwizator WinRAR "WinZipper" = WinZipper [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3933479072-2540534226-446759770-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "FP T-Mobile Ekstraklasa Patch" = FP T-Mobile Ekstraklasa Patch "GG" = GG "ROAD TO WORLD CUP 2014 PATCH" = ROAD TO WORLD CUP 2014 PATCH [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-06-24 09:34:25 | Computer Name = Admin-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-06-25 07:41:07 | Computer Name = Admin-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-06-26 04:34:19 | Computer Name = Admin-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-06-27 10:28:31 | Computer Name = Admin-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-06-27 15:04:15 | Computer Name = Admin-Komputer | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Windows\Installer\{C8E8D2E3-EF6A-4B1D-A09E-7B27EBE2F3CE}\recordingmanager.exe". Nie można odnaleźć zestawu zależnego rpshellextension.1.0,language="*",type="win32",version="1.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2014-06-28 01:10:05 | Computer Name = Admin-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-06-28 03:15:43 | Computer Name = Admin-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-06-28 17:56:43 | Computer Name = Admin-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: plugin-container.exe, wersja: 30.0.0.5269, sygnatura czasowa: 0x53914233 Nazwa modułu powodującego błąd: mozalloc.dll, wersja: 30.0.0.5269, sygnatura czasowa: 0x53911393 Kod wyjątku: 0x80000003 Przesunięcie błędu: 0x0000141b Identyfikator procesu powodującego błąd: 0x2ec Godzina uruchomienia aplikacji powodującej błąd: 0x01cf92a189cb83f4 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll Identyfikator raportu: 1712934e-ff0f-11e3-a902-24fd529e0b87 Error - 2014-06-29 05:09:43 | Computer Name = Admin-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-06-29 09:37:04 | Computer Name = Admin-Komputer | Source = WinMgmt | ID = 10 Description = [ Media Center Events ] Error - 2013-12-18 08:10:43 | Computer Name = Admin-Komputer | Source = MCUpdate | ID = 0 Description = 13:10:42 - Błąd podczas nawiązywania połączenia z Internetem. 13:10:42 - Nie można skontaktować się z serwerem.. [ System Events ] Error - 2014-10-28 07:44:48 | Computer Name = Admin-Komputer | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR2. Error - 2014-10-28 07:44:49 | Computer Name = Admin-Komputer | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR2. Error - 2014-10-28 07:44:49 | Computer Name = Admin-Komputer | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR2. Error - 2014-10-28 07:53:00 | Computer Name = Admin-Komputer | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR2. Error - 2014-10-28 07:53:01 | Computer Name = Admin-Komputer | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR2. Error - 2014-10-28 07:53:01 | Computer Name = Admin-Komputer | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR2. Error - 2014-10-28 07:53:02 | Computer Name = Admin-Komputer | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR2. Error - 2014-10-28 07:53:02 | Computer Name = Admin-Komputer | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR2. Error - 2014-10-29 13:59:37 | Computer Name = Admin-Komputer | Source = DCOM | ID = 10010 Description = Error - 2014-10-29 16:57:46 | Computer Name = Admin-Komputer | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. < End of report >