OTL Extras logfile created on: 2014-11-01 19:13:04 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Maciej\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17358) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 5,48 Gb Total Physical Memory | 3,59 Gb Available Physical Memory | 65,53% Memory free 10,95 Gb Paging File | 8,86 Gb Available in Paging File | 80,87% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 125,03 Gb Total Space | 14,16 Gb Free Space | 11,33% Space Free | Partition Type: NTFS Drive D: | 148,06 Gb Total Space | 89,64 Gb Free Space | 60,54% Space Free | Partition Type: NTFS Computer Name: MACIEJ-KOMPUTER | User Name: Maciej | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) [HKEY_USERS\S-1-5-21-3062577999-4120588202-3776151619-1000\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{1D3BF484-F8B6-45E7-88D0-D71E038875D3}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{23CDF95F-2E47-479C-A680-20259FAFF88D}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{29D34BB9-50CD-46C4-B28A-8C87F768D4C3}" = rport=10243 | protocol=6 | dir=out | app=system | "{2A7097E9-95E5-430D-B6BC-2524DB16D565}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{38D483C7-B540-4E31-B23A-B9F9F877173B}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{3C3E4094-F180-4888-989A-3F44DA7FCEDB}" = lport=445 | protocol=6 | dir=in | app=system | "{3F4DA99F-4F9B-4CF7-B742-FC77968FED00}" = lport=2869 | protocol=6 | dir=in | app=system | "{4D4EC6A5-6CC1-4F69-B149-F77954B64EE5}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{509CA57F-B60A-427C-99AB-CB15BFEB9E9E}" = rport=445 | protocol=6 | dir=out | app=system | "{79A41A6D-A4EA-4BA9-9691-4B7B46EECFFE}" = rport=139 | protocol=6 | dir=out | app=system | "{7C0EB94F-7C68-48E8-99A7-689177F7B3D8}" = lport=139 | protocol=6 | dir=in | app=system | "{94CF9B71-3FBB-4287-AFBA-87F70467C0E8}" = lport=137 | protocol=17 | dir=in | app=system | "{94F66413-1907-4FBB-A88F-F3B62AD7BC58}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{A8AF702E-9CFF-4BFF-9123-E9A8F333D025}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{AE3022E7-2882-4B62-88C8-9D67A1D1DC16}" = lport=138 | protocol=17 | dir=in | app=system | "{AFA47676-06BA-4C66-BC09-66EF07D50D6B}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{B7FC4A28-188D-4A8C-A675-71D1BDC6DA70}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{C664ECFA-33D0-41A8-B432-AD702A167F0F}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe | "{CA279561-BAA3-437C-8EB2-3AFDBB2A89CB}" = rport=138 | protocol=17 | dir=out | app=system | "{CB246CC2-7AC6-4338-9C98-0FAF96A919F4}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office14\outlook.exe | "{CE415B5F-1939-49B1-B5BD-740DC2E6ED2A}" = rport=137 | protocol=17 | dir=out | app=system | "{EF3ADD20-5B3D-4A82-8DED-D32F820D43CF}" = lport=41780 | protocol=17 | dir=in | name=landmarkawesomiumbrowsercontroller | "{F2E33252-1C37-441C-AD03-174B9F37EBCE}" = lport=10243 | protocol=6 | dir=in | app=system | "{F8595BDB-F295-4CBF-8C04-A3A3FDC64AEA}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{00459660-093A-45D7-A9B4-3243B163AEE6}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{018BE574-A703-444E-A27C-0E9D26860DA6}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{06D96801-826E-46E4-B1E8-D547A62B667A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\unturned\unturned.exe | "{0C8B345B-FFAE-4543-934D-A96E6449C393}" = protocol=6 | dir=out | app=system | "{12C6EBDD-AB5B-4427-A870-35F1752BC15A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{12E2B664-9F01-4330-9AD6-96BB822EC229}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | "{141BD61E-8451-45CC-9009-529F3631DE89}" = protocol=17 | dir=in | app=c:\users\maciej\downloads\bittorrent.exe | "{144FFD99-A471-43A9-979C-FA141222E91A}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{1BE5D40E-C6A6-4461-BD1A-13CEAAFBE8DC}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\groove.exe | "{1C58F10A-5A91-4BC2-836C-63C39D5EDF6F}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | "{2279A7BF-963C-4580-B656-ED78665FEE8D}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 | "{231BDB2A-1198-4E35-B06A-825219BFA77A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\payday 2\payday2_win32_release.exe | "{2631404D-C788-46C5-9308-EB38C9F6347A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | "{2DA988CF-7DB7-459B-AF4E-8B949C606D23}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{2F023C85-A5E9-40B5-BFDB-55FB696C6967}" = protocol=17 | dir=in | app=c:\program files (x86)\vuze\azureus.exe | "{3227082A-6CD9-4BF6-85DE-F0F1F15F2293}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{34F56A03-0E65-4EE2-97D5-3D2EFAE77993}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe | "{3B7F4B7F-8B63-462F-91E9-21C628CDD452}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{45ADEA00-50A2-4793-BD87-FA074B0A00A4}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{49A2A592-1DEE-4A6B-AEDF-44634753229C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\euro truck simulator 2\bin\win_x86\eurotrucks2.exe | "{4E234264-4BF3-4CA5-A280-6D2C856400BA}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\unturned\unturned.exe | "{4EA183AE-2734-49EE-9D73-24FA6999D642}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{569FC668-954E-483E-98AF-7BFDAE731D5B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\euro truck simulator 2\bin\win_x86\eurotrucks2.exe | "{5C5A1DC0-B418-4267-B425-6E4B75451E8B}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{60399C82-D459-4F89-8ADD-E1428A44B4D5}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{6295A6F6-8784-4475-9FD5-E2F1E765DD67}" = protocol=17 | dir=in | app=c:\program files\bitcomet\bitcomet.exe | "{632F2CDF-CB6D-40BA-BE2F-A82C412EFC10}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{653DA0B0-2747-4546-A07F-C840471B3FE9}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{67425077-12CD-4BAE-ADA1-E425E5FBF647}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{6DDE1B09-1C50-4918-A42D-70E679CA5079}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\half-life\hl.exe | "{724CD8A0-91B7-44D4-A34D-D7E0C5074B37}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\launcher.exe | "{78B7BD19-6D60-4585-841F-87CE4BC74E4A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\euro truck simulator 2\bin\win_x86\eurotrucks2.exe | "{79828ABE-C085-4F60-A000-E2A0322E2DD9}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{8B88C08E-D60B-4B2B-81B8-72B3FD0B6E3C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\launcher.exe | "{9A6FDF68-574F-4E76-9B56-E2890D7C7BBC}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\crysis 2 game of the year\bin32\crysis2launcher.exe | "{9A85A865-A001-4A0D-AE95-85440DEE1527}" = protocol=58 | dir=in | app=system | "{9C9AAD9F-2B56-4D25-BD25-C5CF2B79F8EE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe | "{A38FBA1E-EB39-417C-B6B7-A530BE1421FA}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{A7C7EA33-3D27-4717-BF70-0183677148FA}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\crysis 2 game of the year\bin32\crysis2launcher.exe | "{A9F0BEAE-B288-44EC-91D9-C54DE107B812}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{ADF1B6BE-BC0A-4A07-84EC-FBF39C5AF8FB}" = protocol=6 | dir=in | app=c:\users\maciej\downloads\bittorrent.exe | "{BF6D49FD-BB5A-4771-AD15-2E8ABB4A553A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\half-life\hl.exe | "{C161631C-13DE-45FA-9F44-1B3EAF24883F}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{C29F4F58-95BC-4EB0-8F1A-C8EDF52321BF}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\groove.exe | "{C751E195-42B4-4A35-BA0F-67B002329B3C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{C833FF6F-EEFC-4304-B8B2-85038CAF09E1}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\euro truck simulator 2\bin\win_x86\eurotrucks2.exe | "{CDF20651-49F2-497D-B773-EBDDD28E39F4}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{D84FCCEC-B1E8-46DF-8EEF-8EC60FE2CD2D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{DA416FD7-904A-4D5D-ACCD-971E1011BE81}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{DBC53E30-0DB6-43C1-8B71-623024731DAF}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | "{E0D649DC-1DB6-475C-B9E2-85ED3F568540}" = protocol=6 | dir=in | app=c:\program files\bitcomet\bitcomet.exe | "{E313B06B-4B1E-4B1C-8AB9-84E4D01718BB}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{E6070BDF-74B9-4C73-AAB9-6140120078B8}" = protocol=6 | dir=in | app=c:\program files (x86)\vuze\azureus.exe | "{EECF6EBB-B583-4D10-B5F6-029BDFD19283}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\warframe\tools\launcher.exe | "{F2EE43F0-2FF7-4A49-BE51-777A2E8FC0FD}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{F4F84D15-9592-4A85-B8DA-D3E4E18EAFCC}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{F7687E38-C432-4022-A978-523F06F55D14}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\payday 2\payday2_win32_release.exe | "{F8482EED-FF47-43E9-A62B-FDAB306F084F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\warframe\tools\launcher.exe | "TCP Query User{0F3ABE7A-9D83-462C-BC64-485468C525B7}D:\cs 1.6 ns\counter strike 1.6\hl.exe" = protocol=6 | dir=in | app=d:\cs 1.6 ns\counter strike 1.6\hl.exe | "UDP Query User{812BF8BD-1E46-40DB-A6D3-6FA217D11FEF}D:\cs 1.6 ns\counter strike 1.6\hl.exe" = protocol=17 | dir=in | app=d:\cs 1.6 ns\counter strike 1.6\hl.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{45F1F774-38B4-3CC3-BAAF-051E6D19E48E}" = Microsoft .NET Framework 4.5.1 (PLK) "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64) "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour "{787136D2-F0F8-4625-AA3F-72D7795AC842}" = Apple Mobile Device Support "{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90140000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0015-0415-1000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0016-0415-1000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0018-0415-1000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0019-0415-1000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-001A-0415-1000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001B-0415-1000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0415-1000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-002C-0415-1000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-0043-0000-1000-0000000FF1CE}" = Microsoft Office Office 32-bit Components 2010 "{90140000-0043-0415-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Polish) 2010 "{90140000-0044-0415-1000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-006E-0415-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-00A1-0415-1000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00BA-0415-1000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Microsoft .NET Framework 4.5.1 (Polski) "{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}" = ASUS Power4Gear Hybrid "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones "{d54842cb-f761-30ba-881f-1ff821dc44df}" = Python 3.4.1 (64-bit) "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "SteelSeries Engine 3" = SteelSeries Engine 3.3.0 "VLC media player" = VLC media player 2.1.4 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}" = YTD Video Downloader 4.8.3 "{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 6.20 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7D916FA5-DAE9-4A25-B089-655C70EAF607}" = Qualcomm Atheros WiFi Driver Installation Program "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{88547073-C566-4895-9005-EBE98EA3F7C7}" = Samsung Kies3 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}" = ATK Package "{ADF781B6-F1A9-4018-997D-B36AA272F1ED}" = LogMeIn Hamachi "{D9DAD0FF-495A-472B-9F10-BAE430A26682}" = Obsługa programów Apple "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "Adobe Flash Player ActiveX" = Adobe Flash Player 15 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 15 Plugin "Google Chrome" = Google Chrome "InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}" = Samsung Kies3 "LogMeIn Hamachi" = LogMeIn Hamachi "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 2.0.2.1012 "NIS" = Norton Internet Security "Odkurzacz 13.5_is1" = Odkurzacz "Steam" = Steam "Steam App 10" = Counter-Strike "Steam App 108800" = Crysis 2 Maximum Edition "Steam App 218620" = PAYDAY 2 "Steam App 227300" = Euro Truck Simulator 2 "Steam App 272350" = Tom Clancy's Ghost Recon Phantoms - EU "Steam App 304930" = Unturned "Steam App 730" = Counter-Strike: Global Offensive "TheHDvid-Codec V10" = TheHDvid-Codec V10 "WinRAR archiver" = WinRAR 5.01 (32-bitowy) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3062577999-4120588202-3776151619-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "BitTorrent" = BitTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-10-31 15:34:52 | Computer Name = Maciej-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: mbamservice.exe, wersja: 3.0.2.0, sygnatura czasowa: 0x5318d363 Nazwa modułu powodującego błąd: mbamservice.exe, wersja: 3.0.2.0, sygnatura czasowa: 0x5318d363 Kod wyjątku: 0x40000015 Przesunięcie błędu: 0x0007da8a Identyfikator procesu powodującego błąd: 0x5bc Godzina uruchomienia aplikacji powodującej błąd: 0x01cff541b425e538 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe Identyfikator raportu: fbd17e6e-6134-11e4-bfca-c86000aab478 Error - 2014-10-31 15:35:09 | Computer Name = Maciej-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-11-01 06:22:10 | Computer Name = Maciej-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: mbamservice.exe, wersja: 3.0.2.0, sygnatura czasowa: 0x5318d363 Nazwa modułu powodującego błąd: mbamservice.exe, wersja: 3.0.2.0, sygnatura czasowa: 0x5318d363 Kod wyjątku: 0x40000015 Przesunięcie błędu: 0x0007da8a Identyfikator procesu powodującego błąd: 0x6c8 Godzina uruchomienia aplikacji powodującej błąd: 0x01cff5bdacd62ae8 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe Identyfikator raportu: efbf0392-61b0-11e4-962a-c86000aab478 Error - 2014-11-01 06:23:23 | Computer Name = Maciej-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-11-01 07:05:08 | Computer Name = Maciej-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: mbamservice.exe, wersja: 3.0.2.0, sygnatura czasowa: 0x5318d363 Nazwa modułu powodującego błąd: mbamservice.exe, wersja: 3.0.2.0, sygnatura czasowa: 0x5318d363 Kod wyjątku: 0x40000015 Przesunięcie błędu: 0x0007da8a Identyfikator procesu powodującego błąd: 0x478 Godzina uruchomienia aplikacji powodującej błąd: 0x01cff5c3ab3d53e1 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe Identyfikator raportu: f0513aa8-61b6-11e4-92bd-c86000aab478 Error - 2014-11-01 07:06:06 | Computer Name = Maciej-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2014-11-01 07:07:00 | Computer Name = Maciej-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: SteelSeriesEngine3.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x5452b15c Nazwa modułu powodującego błąd: HID.DLL, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bdf19 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000001602 Identyfikator procesu powodującego błąd: 0xeb8 Godzina uruchomienia aplikacji powodującej błąd: 0x01cff5c3cd105ecb Ścieżka aplikacji powodującej błąd: C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe Ścieżka modułu powodującego błąd: C:\Windows\system32\HID.DLL Identyfikator raportu: 333688ed-61b7-11e4-92bd-c86000aab478 Error - 2014-11-01 07:07:13 | Computer Name = Maciej-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: SteelSeriesEngine3.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x5452b15c Nazwa modułu powodującego błąd: HID.DLL, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bdf19 Kod wyjątku: 0xc000041d Przesunięcie błędu: 0x0000000000001602 Identyfikator procesu powodującego błąd: 0xeb8 Godzina uruchomienia aplikacji powodującej błąd: 0x01cff5c3cd105ecb Ścieżka aplikacji powodującej błąd: C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe Ścieżka modułu powodującego błąd: C:\Windows\system32\HID.DLL Identyfikator raportu: 3b0c91ed-61b7-11e4-92bd-c86000aab478 Error - 2014-11-01 12:35:28 | Computer Name = Maciej-Komputer | Source = MsiInstaller | ID = 11722 Description = Error - 2014-11-01 12:48:06 | Computer Name = Maciej-Komputer | Source = MsiInstaller | ID = 11722 Description = [ System Events ] Error - 2014-10-04 07:59:38 | Computer Name = Maciej-Komputer | Source = DCOM | ID = 10010 Description = Error - 2014-10-07 09:01:52 | Computer Name = Maciej-Komputer | Source = BTHUSB | ID = 327697 Description = W lokalnym adapterze Bluetooth wystąpił nieokreślony błąd. Adapter nie będzie używany. Sterownik został usunięty z pamięci. Error - 2014-10-07 09:02:58 | Computer Name = Maciej-Komputer | Source = Service Control Manager | ID = 7034 Description = Usługa MBAMService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2014-10-07 09:31:16 | Computer Name = Maciej-Komputer | Source = bowser | ID = 8003 Description = Error - 2014-10-07 11:37:17 | Computer Name = Maciej-Komputer | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-10-07 15:19:11 | Computer Name = Maciej-Komputer | Source = DCOM | ID = 10010 Description = Error - 2014-10-08 07:45:52 | Computer Name = Maciej-Komputer | Source = BTHUSB | ID = 327697 Description = W lokalnym adapterze Bluetooth wystąpił nieokreślony błąd. Adapter nie będzie używany. Sterownik został usunięty z pamięci. Error - 2014-10-08 07:46:24 | Computer Name = Maciej-Komputer | Source = Service Control Manager | ID = 7034 Description = Usługa MBAMService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2014-10-08 10:55:52 | Computer Name = Maciej-Komputer | Source = Service Control Manager | ID = 7011 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi MBAMScheduler. Error - 2014-10-08 13:38:10 | Computer Name = Maciej-Komputer | Source = bowser | ID = 8003 Description = < End of report >