OTL Extras logfile created on: 2014-12-07 15:20:25 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\WiolaWiola\Downloads 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17416) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,44 Gb Total Physical Memory | 2,04 Gb Available Physical Memory | 59,20% Memory free 4,58 Gb Paging File | 1,59 Gb Available in Paging File | 34,65% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86) Drive C: | 98,49 Gb Total Space | 57,06 Gb Free Space | 57,94% Space Free | Partition Type: NTFS Computer Name: WIOLA | User Name: WiolaWiola | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) [HKEY_USERS\S-1-5-21-204455593-1543837664-2498303104-1001\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [Browse with &IrfanView] -- "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [Browse with &IrfanView] -- "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = [binary data] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = Reg Error: Unknown registry data type -- File not found [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.) [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{353E251E-AD20-4A92-95B6-2585498E4DA3}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{3AFE2A26-69EF-4DC1-8240-923A8C8CFD74}" = rport=10243 | protocol=6 | dir=out | app=system | "{3DEC0E63-13C3-43B1-94CF-E93D08086DB6}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{4D781056-FFFE-4C05-A808-447F6F32CB84}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{56AA49CF-8038-413A-8033-9B797B64852D}" = lport=7676 | protocol=6 | dir=in | name=allshareframeworkdms service tcp port1 | "{5CAC146B-FA38-44EB-88C6-8F12A0C1FBF7}" = lport=7900 | protocol=6 | dir=in | name=allshareframework dms service udp port2 | "{5F751645-0B06-4433-8B6E-CCE6E73EA695}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{669828B4-0CF8-40DA-A347-91E6DCE8FA61}" = lport=24234 | protocol=6 | dir=in | name=allshareframework dms service udp port1 | "{6F312361-4B0D-4ACD-B213-C6D4B545692E}" = lport=2869 | protocol=6 | dir=in | app=system | "{8F4A5BD2-0AD4-40EF-840D-6406AF9CE0CC}" = lport=10243 | protocol=6 | dir=in | app=system | "{9E566C68-F69F-4AFA-B33C-B99EDBFEBA55}" = lport=8643 | protocol=6 | dir=in | name=allshareframeworkdms event tcp port | "{B6232A49-058D-457E-8B79-819CD72384A9}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office15\outlook.exe | "{B68B0BE7-C935-4AD7-85E3-67605BC916AD}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{C6045A29-1898-4C9B-A68E-52FFE669A951}" = lport=1900 | protocol=6 | dir=in | name=upnp multicast port | "{D8F7D8B9-07B7-417D-A178-A34CADF2A637}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{E9020BD5-B213-4F92-B13E-2E24FED75D88}" = lport=7679 | protocol=6 | dir=in | name=allshareframeworkdms service tcp port2 | "{F9233D12-24CD-432D-AC53-C99B833D5FA9}" = lport=8743 | protocol=6 | dir=in | name=allshareframeworkdms action tcp port | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{046701F8-35C1-4D0E-A2A7-4EFE31A7FECB}" = dir=in | name=onenote | "{048A196A-79F8-4F0F-89F4-04DA63529A08}" = dir=out | name=@{microsoft.bingmaps_1.6.1821.2624_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{067913BD-3F4E-451D-BA3C-324EB702A995}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{12DFBA6A-CC28-4B63-99D2-641BEA753637}" = dir=out | name=@{microsoft.bingnews_3.0.4.213_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/brandedapptitle} | "{1B05BA2A-6730-4360-88BD-00344878E416}" = dir=in | name=evernote touch | "{1B1CED82-1899-4425-8246-9AEE8FD0966E}" = dir=in | name=@{microsoft.reader_6.2.9200.20780_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{1BEEEA77-50E9-447B-BE01-B4945D485475}" = dir=in | name=player.pl | "{1E1F3E54-096B-4810-A36A-7A6DE5A39C96}" = dir=out | name=@{microsoft.zunevideo_1.5.902.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{211B306D-F12A-4BFA-A93B-4AFAD66354A4}" = dir=out | name=music hub | "{27600E56-6F0D-4F52-8FAD-E2B80CE3E2A9}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office15\lync.exe | "{27962FEF-C6C7-493D-89C5-8977D2B94E30}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{2A1394E5-8E5A-4B6B-BE18-3B63EFA66840}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{2B70186A-49F6-497E-8925-3993B50BFD3B}" = dir=out | name=sonicwall mobile connect | "{2DFC6149-F892-4BCA-984B-FA2F1B16C039}" = dir=out | name=onenote | "{36A14E5B-5C0E-4471-9858-2BF998B623E0}" = dir=in | name=bitcasa for samsung | "{3A72786E-C4B1-4871-B8EF-E652BA5D2FB1}" = dir=out | name=check point vpn | "{3B7684B8-4F77-4FF7-9A50-AD871962E9F6}" = protocol=6 | dir=in | app=c:\program files\samsung\allshare framework dms\1.3.14\allshareframeworkdms.exe | "{3E71AB2E-3651-4AFF-901A-4481B46762FB}" = dir=out | name=@{microsoft.bingmaps_2.1.3230.2048_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{3F461037-F567-4928-9B4C-CD19B4DB9600}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9654.20540_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} | "{40D94442-6F4F-4A9C-BC22-6CA42D46B2FF}" = dir=out | name=skype | "{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn | "{460BF2B1-8EBB-41A8-A00B-6257E691EA2D}" = dir=in | name=skype | "{47640060-96EB-448D-9187-26F74FB70434}" = dir=out | name=@{microsoft.bingfinance_3.0.4.212_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/brandedapptitle} | "{48547165-252E-46D6-87FC-BAC889BF7500}" = dir=in | app=c:\program files\samsung\samsung link\samsung link tray agent.exe | "{48E8C462-7186-4B2B-92D0-6009A3293D8E}" = dir=out | name=@{microsoft.zunemusic_1.5.216.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{4B252A1E-B4FA-4968-83A3-831CF8F80AE8}" = dir=out | name=@{microsoft.bingfinance_2.0.0.308_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{4E309EA6-C0CA-4928-AB4F-8D42C94296A6}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{4EF4F0A8-0D75-4469-8552-BD79965DB509}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{5372D976-A836-4F19-81B4-C7768E7BFCCD}" = dir=in | name=f5 vpn | "{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect | "{58BD5628-B16C-4CD7-B993-1BEB8FB0E56A}" = dir=out | name=onet news | "{5B0E2F22-2930-417B-9987-3A9DE6C69E87}" = dir=out | name=windows_ie_ac_001 | "{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect | "{5FC01F36-E449-4CCF-BDBC-0FD54821335F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{646B0E27-C8D7-4A9D-A8A2-B8DBF885267C}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{68383EA0-28B3-4F74-B679-1FCA000EE403}" = protocol=17 | dir=in | app=c:\program files\samsung\allshare framework dms\1.3.14\allshareframeworkdms.exe | "{68C909AB-0014-47E6-AEB0-753D4AD048F2}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{71748C6D-80AC-4050-B6FD-0ADFDF87AED6}" = dir=out | name=vod onet | "{7366480F-95AD-42E6-A200-9191BD31D763}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{785F7693-CAF1-46B9-B7AC-E830BF189984}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{7B80B322-3B76-4967-BF62-CF552CB50BEE}" = protocol=6 | dir=out | app=system | "{7C4803BE-4282-4A23-838A-446F972F6609}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{805BB5D2-7F7C-4200-BE8C-4EC2F6EE4D5A}" = dir=out | name=norton studio | "{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{80C36875-2C6A-411F-88B8-21FA591ABF89}" = dir=out | name=@{microsoft.reader_6.2.9200.20780_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{843CAEBD-84F7-40B5-8DBD-E0DB4A3921E0}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office15\ucmapi.exe | "{845B8606-C9F1-43F7-AD57-3CBF03D5E2F1}" = dir=out | app=c:\program files\samsung\samsung link\samsung link.exe | "{84A80282-6A8A-4882-84CF-7F023EEDC164}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9654.20540_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} | "{8640E495-E9F9-432F-9CDA-39392817AD94}" = dir=out | name=s player+ | "{866EA703-F0E5-4DCE-B03F-69355AE44113}" = dir=out | name=windows_ie_ac_001 | "{88EBE4B3-FDE7-44A9-AFED-33EB2BEE460C}" = dir=in | name=sonicwall mobile connect | "{8B52AE14-F348-4724-956D-E8BB1ECD2E39}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{8CE3924F-9F9B-4FEB-9EC9-82B04E22ABFC}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{8D80419F-727D-4745-A3DB-3D6445307E9C}" = protocol=6 | dir=in | app=c:\program files\samsung\allshare framework dms\1.3.14\allshareframeworkdms.exe | "{90B2E913-0B05-4CA4-864D-DF05A349EEE0}" = dir=out | name=@{microsoft.bingnews_2.0.0.308_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} | "{918C42E6-9937-49E8-8AE8-FB4A7D903FF6}" = dir=out | name=@{microsoft.bingtravel_3.0.4.212_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/brandedapptitle} | "{995BE22E-89E5-4525-9946-7D617BE00D5C}" = dir=out | name=juniper networks junos pulse | "{9E12D507-8EC9-4D06-B24F-085E3BCBD430}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office15\lync.exe | "{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{A0F9ABC6-8C18-4868-A420-09752A6542AF}" = dir=out | name=@{microsoft.bingtravel_2.0.0.319_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{A12E0A7C-2AB5-4C35-B6E6-7714EAA7C50B}" = protocol=17 | dir=in | app=c:\program files\samsung\allshare framework dms\1.3.14\allshareframeworkdms.exe | "{A98D7129-A775-4901-880B-609B127C192A}" = dir=out | name=@{microsoft.bingsports_2.0.0.310_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{AAFD3544-4117-4150-920C-76C4E523BE84}" = protocol=17 | dir=in | app=c:\windows\syswow64\muzapp.exe | "{AD2F3478-6DA4-4E51-B04E-4406CE2217F2}" = dir=out | name=tuba.fm | "{AD4613A1-B99C-4844-9BF4-A8C30D30C8F6}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office15\ucmapi.exe | "{B326439B-616B-4EE6-8634-1F1F5DE6B979}" = dir=out | name=bitcasa for samsung | "{BE73486B-E048-456C-B11D-13F025796CAD}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{BFF4F0B9-EE8B-4E01-83E0-51F8CE47BCB4}" = dir=out | name=player.pl | "{C3D6B3BC-7B5B-4749-AB59-F29AD8F1937A}" = dir=out | name=windows_ie_ac_001 | "{C5621125-5757-4304-8287-B6633FD76361}" = dir=out | name=@{microsoft.bingsports_3.0.4.244_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/brandedapptitle} | "{C9081DC0-7B75-4CD5-B0AF-55EA41294485}" = dir=out | name=@{microsoft.xboxlivegames_1.3.10.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{D6797825-9B0E-43C9-9283-1D6524B14DBD}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.4.212_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} | "{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn | "{D6D1C7D2-1821-4E0E-8719-1EA6E294DAF2}" = dir=out | name=f5 vpn | "{DAD7109E-CD86-4310-8826-C4FB4848EC31}" = dir=in | app=c:\program files\samsung\samsung link\samsung link.exe | "{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn | "{DC8A3812-31D4-4BB0-A53B-22ECA86EA472}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{E046ABD8-E430-4284-BD22-3FB73D37F0D5}" = dir=in | name=check point vpn | "{E1AA8D68-0D10-404F-B568-DABEE23F6F44}" = dir=out | name=@{microsoft.bingweather_3.0.4.249_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/brandedapptitle} | "{E4F44EB4-EF92-449E-852F-ECDECFB1366C}" = dir=in | name=juniper networks junos pulse | "{E6C0D949-72D2-487E-8602-E39CDD0A958B}" = dir=out | name=evernote touch | "{E75E4B3C-F960-4292-A3F5-18FC9F454F03}" = dir=out | name=@{microsoft.zunemusic_2.6.476.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{EAB6E4EA-4D5B-4F41-9DA5-B1E083F85473}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.4.240_x64__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} | "{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn | "{EDAC1D16-5ECE-4CC1-A7AA-955F3675E49E}" = protocol=6 | dir=in | app=c:\windows\syswow64\muzapp.exe | "{EDD17645-3170-463D-A8E3-786E854C83D0}" = dir=out | name=@{microsoft.bingweather_2.0.0.310_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{F262FA7A-72CA-485D-8EAD-3414D5B57510}" = dir=out | name=s photostudio | "{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client | "{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client | "{FB424AEE-F579-45A3-8832-8E5F0D11D8AF}" = dir=out | name=@{microsoft.zunevideo_2.6.408.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{FD9E1F0C-2AB1-46D1-BCEC-4EB740C22766}" = dir=out | app=c:\program files\samsung\samsung link\samsung link tray agent.exe | "TCP Query User{5A524208-D03C-4AE9-A587-4DA73A5411D1}C:\program files (x86)\samsung\sidesync\sidesync.exe" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\sidesync\sidesync.exe | "UDP Query User{80CDABEB-8113-42ED-A65D-29C9B912A7DA}C:\program files (x86)\samsung\sidesync\sidesync.exe" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\sidesync\sidesync.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{2736B6BD-31EC-4FC8-A48C-F0A5C914C0B6}" = COMODO Internet Security Premium "{2FC5AA08-A4A7-4CA2-87CA-B591CDC29BFA}" = doPDF "{5ED19569-C344-4C55-983F-AAF03CE33723}" = novaPDF 8 Printer Driver "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90150000-002A-0000-1000-0000000FF1CE}" = Microsoft Office 64-bit Components 2013 "{90150000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2013 "{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 "{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 "{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 "{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 "{E9F0BCD8-6BD5-1ED7-EDA3-9FCF2A478AA1}" = Microsoft App Update for microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe (x64) "{F46F1A63-39F8-4678-BFDF-1D340A356323}" = novaPDF 8 add-in for Microsoft Office (x64) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{15134cb0-b767-4960-a911-f2d16ae54797}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 "{22154f09-719a-4619-bb71-5b3356999fbf}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 "{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7f51bdb9-ee21-49ee-94d6-90afc321780e}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 "{90150000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2013 "{90150000-0015-0415-0000-0000000FF1CE}" = Microsoft Access MUI (Polish) 2013 "{90150000-0016-0415-0000-0000000FF1CE}" = Microsoft Excel MUI (Polish) 2013 "{90150000-0018-0415-0000-0000000FF1CE}" = Microsoft PowerPoint MUI (Polish) 2013 "{90150000-0019-0415-0000-0000000FF1CE}" = Microsoft Publisher MUI (Polish) 2013 "{90150000-001A-0415-0000-0000000FF1CE}" = Microsoft Outlook MUI (Polish) 2013 "{90150000-001B-0415-0000-0000000FF1CE}" = Microsoft Word MUI (Polish) 2013 "{90150000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Korrekturhilfen 2013 - Deutsch "{90150000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - English "{90150000-001F-0415-0000-0000000FF1CE}" = Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski "{90150000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2013 "{90150000-0044-0415-0000-0000000FF1CE}" = Microsoft InfoPath MUI (Polish) 2013 "{90150000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2013 "{90150000-008C-0000-0000-0000000FF1CE}" = Office 15 Click-to-Run Extensibility Component "{90150000-0090-0415-0000-0000000FF1CE}" = Microsoft DCF MUI (Polish) 2013 "{90150000-00A1-0415-0000-0000000FF1CE}" = Microsoft OneNote MUI (Polish) 2013 "{90150000-00BA-0415-0000-0000000FF1CE}" = Microsoft Groove MUI (Polish) 2013 "{90150000-00E1-0415-0000-0000000FF1CE}" = Microsoft Office OSM MUI (Polish) 2013 "{90150000-00E2-0415-0000-0000000FF1CE}" = Microsoft Office OSM UX MUI (Polish) 2013 "{90150000-012B-0415-0000-0000000FF1CE}" = Microsoft Lync MUI (Polish) 2013 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{a54197ad-113d-41df-8f35-ad06151b4d42}" = doPDF 8 "{AC76BA86-7AD7-FFFF-7B44-AB0000000001}" = Adobe Reader XI (11.0.09) MUI "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime "{F5435F65-CFCE-4938-97BB-69BC67C56CA7}" = novaPDF 8 add-in for Microsoft Office (x86) "{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 "Adobe Flash Player Plugin" = Adobe Flash Player 15 Plugin "Mozilla Firefox 33.1 (x86 pl)" = Mozilla Firefox 33.1 (x86 pl) "Mozilla Thunderbird 31.2.0 (x86 pl)" = Mozilla Thunderbird 31.2.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Office15.PROPLUS" = Microsoft Office Professional Plus 2013 "PrivDog" = PrivDog [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-11-23 08:38:09 | Computer Name = Wiola | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2014-11-24 18:56:34 | Computer Name = Wiola | Source = Winlogon | ID = 4005 Description = Proces usługi logowania systemu Windows został nieoczekiwanie zakończony. Error - 2014-11-26 16:26:40 | Computer Name = Wiola | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2014-11-27 18:28:56 | Computer Name = Wiola | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2014-11-28 16:23:54 | Computer Name = Wiola | Source = Application Hang | ID = 1002 Description = Program backgroundTaskHost.exe w wersji 6.3.9600.16384 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 1c24 Godzina rozpoczęcia: 01d00b3b28613952 Godzina zakończenia: 4294967295 Ścieżka aplikacji: C:\WINDOWS\syswow64\backgroundTaskHost.exe Identyfikator raportu: 6bd9b22d-773c-11e4-beab-48d22447f3cf Pełna nazwa pakietu powodującego błąd: SymantecCorporation.NortonStudio_1.5.0.41_x86__v68kp9n051hdp Identyfikator aplikacji względem pakietu powodującego błąd: App Error - 2014-11-29 14:33:20 | Computer Name = Wiola | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2014-11-30 15:51:59 | Computer Name = Wiola | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2014-12-01 11:58:05 | Computer Name = Wiola | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2014-12-02 13:54:12 | Computer Name = Wiola | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2014-12-03 15:45:09 | Computer Name = Wiola | Source = Customer Experience Improvement Program | ID = 1008 Description = [ System Events ] Error - 2014-11-14 11:37:18 | Computer Name = Wiola | Source = APXACC | ID = 16778219 Description = The NDIS6 LWF initialization has failed. (0xC0000001) Error - 2014-11-14 11:37:18 | Computer Name = Wiola | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi AppEx Networks Accelerator LWF z powodu następującego błędu: %%31 Error - 2014-11-16 07:37:38 | Computer Name = Wiola | Source = DCOM | ID = 10010 Description = Error - 2014-11-16 07:38:11 | Computer Name = Wiola | Source = DCOM | ID = 10010 Description = Error - 2014-11-16 09:42:41 | Computer Name = Wiola | Source = DCOM | ID = 10010 Description = Error - 2014-11-16 12:20:18 | Computer Name = Wiola | Source = APXACC | ID = 16778219 Description = The NDIS6 LWF initialization has failed. (0xC0000001) Error - 2014-11-16 12:20:18 | Computer Name = Wiola | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi AppEx Networks Accelerator LWF z powodu następującego błędu: %%31 Error - 2014-11-17 11:48:08 | Computer Name = Wiola | Source = Schannel | ID = 36888 Description = Wygenerowano alert krytyczny, który został wysłany do zdalnego punktu końcowego. W efekcie połączenie może zostać zakończone. Kod błędu krytycznego zdefiniowany przez protokół TLS to 70. Kod stanu błędu SChannel w systemie Windows to 105. Error - 2014-11-20 15:12:17 | Computer Name = Wiola | Source = APXACC | ID = 16778219 Description = The NDIS6 LWF initialization has failed. (0xC0000001) Error - 2014-11-20 15:12:17 | Computer Name = Wiola | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi AppEx Networks Accelerator LWF z powodu następującego błędu: %%31 < End of report >