x-kom hosting

Brak menadżera zadań

Fems
utworzono
utworzono

Witam

 

Posiadam Windowsa 7 64 bit Ultimate z Service Pack 1 i od przed wczoraj nie mam menadżera zadań. Wgl go niema, ani po kombinacji ctrl+alt+delete ani ctrl+shitf+esc . Niema go tez w windows/system32/taskmgr.exe

 

NIGDZIE;(

 

Prosze bardzo o pomoc

 

Czytalem na forach zeby robic jakies OLT itd. Nie wiem co to jak to sie robi itd więc prosze też o wytlumaczenie jak bedzie potrzeba

 

Pzdr!

Fems
komentarz
komentarz

Ok już wiem jak to poroboic to czekam na odp jak ktos bedzie mogl pomoc;)

Youki
komentarz
komentarz

No to zrób jak już wiesz jak. 

Zayfi
komentarz
komentarz
czekam na odp jak ktos bedzie mogl pomoc;)

 

podaj logi to będzie odpowiedź

Fems
komentarz
komentarz

Logi czyli co? 

Youki
komentarz
komentarz

To co trzeba zrobić w OTL, masz powyżej instrukcję.

Fems
komentarz
komentarz

OLT:

 

OTL logfile created on: 2014-05-21 18:04:05 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Mateusz\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
 
3,98 Gb Total Physical Memory | 2,20 Gb Available Physical Memory | 55,31% Memory free
7,96 Gb Paging File | 5,73 Gb Available in Paging File | 71,92% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 540,79 Gb Total Space | 52,10 Gb Free Space | 9,63% Space Free | Partition Type: NTFS
Drive D: | 390,62 Gb Total Space | 149,81 Gb Free Space | 38,35% Space Free | Partition Type: NTFS
 
Computer Name: MATEUSZKOM | User Name: Mateusz | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
[color=#E56717]========== Processes (SafeList) ==========[/color]
 
PRC - [2014-05-21 17:57:57 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Mateusz\Desktop\OTL.exe
PRC - [2014-05-14 16:48:20 | 003,873,704 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2014-05-14 16:48:20 | 000,050,344 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2014-05-14 16:48:11 | 000,109,048 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\afwServ.exe
PRC - [2014-05-08 13:20:58 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2014-03-12 06:25:10 | 000,481,816 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
PRC - [2014-03-12 06:20:58 | 002,534,936 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
PRC - [2014-01-16 10:34:08 | 000,495,248 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
PRC - [2013-12-25 01:21:22 | 000,076,888 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2013-10-27 10:12:26 | 001,364,256 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
PRC - [2013-10-23 04:02:32 | 000,414,496 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2013-05-29 07:27:40 | 000,825,808 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2012-10-23 11:47:48 | 002,848,168 | ---- | M] (TeamViewer GmbH) -- C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
PRC - [2012-02-23 10:29:12 | 000,322,560 | ---- | M] (Sonix Technology Co., Ltd.) -- C:\Program Files (x86)\Common Files\SNP2UVC\tsnp2uvc.exe
PRC - [2010-12-22 06:25:02 | 002,656,280 | R--- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2010-12-22 06:24:58 | 000,325,656 | R--- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2010-10-12 16:04:20 | 004,142,448 | ---- | M] (Stardock) -- D:\Program Files (x86)\Stardock\ObjectDockPlus2\ObjectDock.exe
PRC - [2010-03-25 14:39:22 | 000,490,280 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Nero\Update\NASvc.exe
PRC - [2009-08-12 16:06:00 | 000,662,016 | ---- | M] (Sonix) -- C:\Windows\vsnp2uvc.exe
 
 
[color=#E56717]========== Modules (No Company Name) ==========[/color]
 
MOD - [2014-05-14 16:48:20 | 019,336,120 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\libcef.dll
MOD - [2014-03-14 08:00:00 | 000,695,808 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\version.dll
MOD - [2013-06-13 07:55:15 | 000,807,936 | ---- | M] () -- D:\Program Files (x86)\Stardock\ObjectDockPlus2\CrashRpt.dll
MOD - [2013-05-29 07:27:38 | 000,393,168 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.110\ppGoogleNaClPluginChrome.dll
MOD - [2013-05-29 07:27:35 | 004,051,408 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.110\pdf.dll
MOD - [2013-05-29 07:26:40 | 000,599,504 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.110\libglesv2.dll
MOD - [2013-05-29 07:26:39 | 000,124,368 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.110\libegl.dll
MOD - [2013-05-29 07:26:36 | 001,597,392 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.110\ffmpegsumo.dll
MOD - [2012-11-29 23:59:32 | 000,093,696 | ---- | M] () -- C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll
MOD - [2010-10-01 03:50:23 | 000,675,840 | ---- | M] () -- D:\Program Files (x86)\Stardock\ObjectDockPlus2\DockShellHook.dll
MOD - [2010-03-09 23:58:30 | 000,053,760 | ---- | M] () -- D:\Program Files (x86)\Stardock\ObjectDockPlus2\zlib.dll
MOD - [2008-09-15 12:43:58 | 000,139,776 | ---- | M] () -- D:\Program Files (x86)\Stardock\ObjectDockPlus2\Docklets\MasterVolume\MasterVolumeDocklet.dll
MOD - [2003-11-16 00:22:50 | 000,036,688 | ---- | M] () -- D:\Program Files (x86)\Stardock\ObjectDockPlus2\Docklets\Fiksowy clock\digitalclock.dll
 
 
[color=#E56717]========== Services (SafeList) ==========[/color]
 
SRV:[b]64bit:[/b] - [2014-05-14 16:48:20 | 000,050,344 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:[b]64bit:[/b] - [2014-05-14 16:48:11 | 000,109,048 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\afwServ.exe -- (avast! Firewall)
SRV:[b]64bit:[/b] - [2011-12-01 10:04:56 | 000,289,952 | ---- | M] (Sony Corporation) [On_Demand | Running] -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe -- (SpfService)
SRV:[b]64bit:[/b] - [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2009-07-14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV:[b]64bit:[/b] - [2009-07-14 03:39:29 | 000,010,240 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\regedt32.exe -- (.EsetTrialReset)
SRV - [2014-05-19 15:14:27 | 000,257,712 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014-05-08 13:20:58 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2014-03-12 06:25:10 | 000,481,816 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe -- (PMBDeviceInfoProvider)
SRV - [2014-01-16 10:34:08 | 000,495,248 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe -- (SOHDms)
SRV - [2013-12-25 01:21:22 | 000,076,888 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2013-12-11 21:40:36 | 000,569,768 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2013-12-03 10:56:50 | 000,079,000 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe -- (SOHDs)
SRV - [2013-10-27 10:12:26 | 001,364,256 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2013-10-23 04:02:32 | 000,414,496 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2013-02-04 18:43:22 | 000,155,824 | ---- | M] (Avanquest Software) [On_Demand | Stopped] -- C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe -- (Sony PC Companion)
SRV - [2012-10-23 11:47:48 | 002,848,168 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe -- (TeamViewer7)
SRV - [2010-12-22 06:25:02 | 002,656,280 | R--- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2010-12-22 06:24:58 | 000,325,656 | R--- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2010-03-25 14:39:22 | 000,490,280 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Nero\Update\NASvc.exe -- (NAUpdate)
SRV - [2010-03-18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010-02-19 14:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009-07-14 03:14:30 | 000,009,216 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysWow64\regedt32.exe -- (.EsetTrialReset)
SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
 
 
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
 
DRV:[b]64bit:[/b] - [2014-05-16 14:03:30 | 000,141,600 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys -- (VBoxNetAdp)
DRV:[b]64bit:[/b] - [2014-05-15 14:54:41 | 001,039,096 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswsnx.sys -- (aswSnx)
DRV:[b]64bit:[/b] - [2014-05-15 14:54:41 | 000,447,888 | ---- | M] (AVAST Software) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswndisflt.sys -- (aswNdisFlt)
DRV:[b]64bit:[/b] - [2014-05-15 14:54:41 | 000,423,240 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswsp.sys -- (aswSP)
DRV:[b]64bit:[/b] - [2014-05-15 14:54:41 | 000,085,328 | ---- | M] (AVAST Software) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswstm.sys -- (aswStm)
DRV:[b]64bit:[/b] - [2014-05-14 16:48:21 | 000,208,416 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm)
DRV:[b]64bit:[/b] - [2014-05-14 16:48:21 | 000,093,568 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:[b]64bit:[/b] - [2014-05-14 16:48:21 | 000,079,184 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:[b]64bit:[/b] - [2014-05-14 16:48:21 | 000,065,776 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)
DRV:[b]64bit:[/b] - [2014-05-14 16:48:21 | 000,029,208 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswHwid.sys -- (aswHwid)
DRV:[b]64bit:[/b] - [2014-05-14 16:48:15 | 000,028,184 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswKbd.sys -- (aswKbd)
DRV:[b]64bit:[/b] - [2014-01-08 19:07:01 | 000,027,760 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ggsemc.sys -- (ggsemc)
DRV:[b]64bit:[/b] - [2014-01-08 19:07:01 | 000,014,448 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ggflt.sys -- (ggflt)
DRV:[b]64bit:[/b] - [2013-10-27 10:12:42 | 000,196,384 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:[b]64bit:[/b] - [2013-07-14 02:00:41 | 000,033,344 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:[b]64bit:[/b] - [2013-03-13 22:04:32 | 000,088,480 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\atksgt.sys -- (atksgt)
DRV:[b]64bit:[/b] - [2013-03-13 22:04:32 | 000,046,400 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\lirsgt.sys -- (lirsgt)
DRV:[b]64bit:[/b] - [2012-03-08 18:03:11 | 000,279,616 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:[b]64bit:[/b] - [2012-03-01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2011-11-03 04:01:00 | 000,056,208 | ---- | M] (Rovi Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:[b]64bit:[/b] - [2011-09-09 16:24:54 | 003,567,232 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\snp2uvc.sys -- (SNP2UVC)
DRV:[b]64bit:[/b] - [2010-12-28 21:45:54 | 000,412,776 | ---- | M] (Realtek                                            ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2010-11-20 13:03:42 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:[b]64bit:[/b] - [2010-11-20 06:33:36 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010-11-20 06:32:48 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2010-11-20 06:32:48 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2010-11-20 04:07:06 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2010-10-19 10:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:[b]64bit:[/b] - [2010-06-10 11:31:34 | 000,091,208 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssdudfu.sys -- (ssdudfu)
DRV:[b]64bit:[/b] - [2009-09-21 01:43:52 | 000,161,280 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ss_mdm.sys -- (ss_mdm)
DRV:[b]64bit:[/b] - [2009-09-21 01:43:52 | 000,127,488 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ss_bus.sys -- (ss_bus)
DRV:[b]64bit:[/b] - [2009-09-21 01:43:52 | 000,018,944 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ss_mdfl.sys -- (ss_mdfl)
DRV:[b]64bit:[/b] - [2009-08-21 10:52:09 | 000,079,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2008-02-12 03:59:18 | 000,297,496 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\VMM.sys -- (vmm)
DRV:[b]64bit:[/b] - [2008-02-05 01:50:42 | 000,079,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VMNetSrv.sys -- (VPCNetS2)
DRV:[b]64bit:[/b] - [2007-06-25 10:42:22 | 000,108,072 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s117bus.sys -- (s117bus)
DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
 
 
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
 
 
[color=#E56717]========== Internet Explorer ==========[/color]
 
IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\URLSearchHook: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - No CLSID value found
IE - HKLM\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3220468
 
 
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 
 
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\..\URLSearchHook: {687578b9-7132-4a7a-80e4-30ee31099e03} - No CLSID value found
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\..\URLSearchHook: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - No CLSID value found
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3220468
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "AutoConfigURL" = http://proxy.kodak.com:81/proxy.pac
 
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.google.pl/http://www.g [Binary data over 200 bytes]
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://smart-homepage.blogspot.com/
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\..\URLSearchHook: {687578b9-7132-4a7a-80e4-30ee31099e03} - No CLSID value found
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\..\URLSearchHook: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - No CLSID value found
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3220468
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "AutoConfigURL" = http://proxy.kodak.com:81/proxy.pac
 
 
[color=#E56717]========== FireFox ==========[/color]
 
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.55.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=2.3.0: C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.55.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/Lync,version=15.0: C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~2\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.1: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@onlive.com/OnLiveGameClientDetector,version=1.0.0: C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll File not found
FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Mateusz\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher 2\npuplaypc.dll (Ubisoft)
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
 
[2012-09-25 11:05:54 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
[2012-09-09 22:09:17 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2012-09-13 17:09:43 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
[2012-08-20 01:17:07 | 000,000,000 | ---D | M] (QuickStores-Toolbar) -- C:\Program Files (x86)\mozilla firefox\extensions\quickstores@quickstores.de
[2012-10-01 20:43:54 | 000,034,016 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll
 
[color=#E56717]========== Chrome  ==========[/color]
 
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter},
CHR - homepage: https://www.google.com/
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.110\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.110\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.110\pdf.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Microsoft Office 2013 (Enabled) = C:\PROGRA~2\MICROS~2\Office15\NPSPWRAP.DLL
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll
CHR - plugin: Java(TM) Platform SE 6 U37 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: Microsoft Office 2013 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll
CHR - plugin: NVIDIA 3D Vision (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
CHR - plugin: NVIDIA 3D VISION (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
CHR - plugin: OnLive Game Client Detector (Enabled) = C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll
CHR - plugin: Uplay PC (Enabled) = C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher 2\npuplaypc.dll
CHR - plugin: VLC Web Plugin (Enabled) = C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
CHR - plugin: Facebook Video Calling Plugin (Enabled) = C:\Users\Mateusz\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_265.dll
CHR - plugin: Java Deployment Toolkit 6.0.370.6 (Enabled) = C:\Windows\SysWOW64\npdeployJava1.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - Extension: Radio = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\agljkoinmcdnopnlbhhjibjiablccgoh\1.0.56_0\
CHR - Extension: Dysk Google = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: YouTube = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Szukaj w Google = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Rysujemy s\u0142owa = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbcmncdmcmdncgdoloobnlhienkgfpmj\1.0.0.2_0\
CHR - Extension: Dziennik Lekcyjny = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbjeiahmgcahgpgpncpkpfndecmnoaij\1_0\
CHR - Extension: Give Up = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\diippoclinjdbklinhchgedilfncehbi\1.0.0_0\
CHR - Extension: uTorrentControl_v2 = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda\10.30.1.502_0\
CHR - Extension: uTorrentControl_v2 = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda\10.30.1.502_0\nativeMessaging\nmHost
CHR - Extension: Video Downloader professional = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil\1.97.43_0\
CHR - Extension: Kalkulator - Calculator = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gebiheilikanaahecmhecdnfnhhekjfg\1.5_0\
CHR - Extension: AdBlock = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.29_0\
CHR - Extension: avast! Online Security = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2018.95_0\
CHR - Extension: White n' Grey = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\inlgjilogdocmicdcedaombdpjjpenbp\1.0_0\
CHR - Extension: Adres IP = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\kcijdkkommbhnpohidhdpkhendgcpamf\0.4_0\
CHR - Extension: Szalony Rider = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfgcmpnnailedfapmafbigfifabfamcl\1.0.4_0\
CHR - Extension: Zuma = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmlohpfojplnfgcbgooclnhidniofegn\1.0.0_0\
CHR - Extension: Mapy Google = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh\5.2.7_0\
CHR - Extension: Gmail = C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
 
O1 HOSTS File: ([2013-06-10 11:26:07 | 000,001,487 | R--- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1       csc3-2010-crl.verisign.com
O1 - Hosts: 127.0.0.1       ocsp.verisign.com
O1 - Hosts: 127.0.0.1       crl.verisign.com
O1 - Hosts: 127.0.0.1 download.dm.origin.com
O1 - Hosts: 127.0.0.1 secure.download.dm.origin.com
O1 - Hosts: 127.0.0.1 loginregistration.dm.origin.com
O1 - Hosts: 127.0.0.1 achievements.gameservices.ea.com
O1 - Hosts: 127.0.0.1 friends.dm.origin.com
O1 - Hosts: 127.0.0.1 avatar.dm.origin.com
O1 - Hosts: 127.0.0.1 ecommerce.dm.origin.com
O1 - Hosts: 127.0.0.1 static.cdn.ea.com
O1 - Hosts: 127.0.0.1 tealium.hs.llnwd.net
O1 - Hosts: 127.0.0.1 heartbeat.dm.origin.com
O1 - Hosts: 127.0.0.1 web.dm.origin.com
O1 - Hosts: 127.0.0.1 store.origin.com
O1 - Hosts: 127.0.0.1 ec2-54-243-231-82.compute-1.amazonaws.com
O1 - Hosts: 127.0.0.1 eaassets-a.akamaihd.net
O1 - Hosts: 127.0.0.1 ssl.resources.ea.com
O1 - Hosts: 127.0.0.1 akamai.cdn.ea.com
O1 - Hosts: 127.0.0.1 novafusion.ea.com
O1 - Hosts: 127.0.0.1 proxy.novafusion.ea.com
O1 - Hosts: 127.0.0.1 ec2-23-23-167-200.compute-1.amazonaws.com
O1 - Hosts: 127.0.0.1 dirtybits.dm.origin.com
O1 - Hosts: 127.0.0.1 chat.dm.origin.com
O1 - Hosts: 127.0.0.1 easo.ea.com
O1 - Hosts: 16 more lines...
O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:[b]64bit:[/b] - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office15\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (Microsoft SkyDrive Pro Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~2\Office15\GROOVEEX.DLL (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (no name) - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - No CLSID value found.
O3 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\..\Toolbar\WebBrowser: (no name) - {687578B9-7132-4A7A-80E4-30EE31099E03} - No CLSID value found.
O3 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\..\Toolbar\WebBrowser: (no name) - {7473B6BD-4691-4744-A82B-7854EB3D70B6} - No CLSID value found.
O3 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
O3 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\..\Toolbar\WebBrowser: (no name) - {687578B9-7132-4A7A-80E4-30EE31099E03} - No CLSID value found.
O3 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\..\Toolbar\WebBrowser: (no name) - {7473B6BD-4691-4744-A82B-7854EB3D70B6} - No CLSID value found.
O3 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
O4:[b]64bit:[/b] - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [snp2uvc] C:\Windows\vsnp2uvc.exe (Sonix)
O4:[b]64bit:[/b] - HKLM..\Run: [XboxStat] C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe (Microsoft Corporation)
O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
O4 - HKLM..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe (Sony Corporation)
O4 - HKLM..\Run: [snp2uvc] C:\Windows\vsnp2uvc.exe (Sonix)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [tsnp2uvc] C:\Program Files (x86)\Common Files\SNP2UVC\tsnp2uvc.exe (Sonix Technology Co., Ltd.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000..\Run: [AdobeBridge]  File not found
O4 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000..\Run: [TBHider] D:\taskbar-hider\TaskBarHider.exe File not found
O4 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003..\Run: [AdobeBridge]  File not found
O4 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003..\Run: [RocketDock] "C:\Program Files (x86)\RocketDock\RocketDock.exe" File not found
O4 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003..\Run: [TBPanel] C:\Program Files (x86)\Vtune\TBPanel.exe /A File not found
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - Startup: C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stardock ObjectDock.lnk = D:\Program Files (x86)\Stardock\ObjectDockPlus2\ObjectDock.exe (Stardock)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 28
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O7 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:[b]64bit:[/b] - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 File not found
O8:[b]64bit:[/b] - Extra context menu item: E&ksport do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~2\OFFICE11\EXCEL.EXE/3000 File not found
O8:[b]64bit:[/b] - Extra context menu item: Free YouTube to iPod Converter - C:\Users\Mateusz\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetoipodconverter.htm File not found
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\SysWow64\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~2\OFFICE11\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Free YouTube to iPod Converter - C:\Users\Mateusz\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetoipodconverter.htm File not found
O9:[b]64bit:[/b] - Extra Button: Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - Reg Error: Key error. File not found
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - Reg Error: Key error. File not found
O9 - Extra Button: Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - Reg Error: Key error. File not found
O9 - Extra 'Tools' menuitem : Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - Reg Error: Key error. File not found
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab (Java Plug-in 10.55.2)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab (Java Plug-in 1.6.0_37)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab (Java Plug-in 10.55.2)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{863D367A-5A7A-41F0-A2CB-9014FD8D5E2C}: DhcpNameServer = 192.168.1.254
O18:[b]64bit:[/b] - Protocol\Handler\msdaipp - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help - No CLSID value found
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: IconPackager Repair - {1799460C-0BC8-4865-B9DF-4A36CD703FF0} - C:\Program Files (x86)\Stardock\Object Desktop\IconPackager\iprepair.dll (Stardock.net, Inc)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O22:[b]64bit:[/b] - SharedTaskScheduler: {1984D045-52CF-49cd-DB77-08F378FEA4DB} - ObjectDockShellExt - D:\Program Files (x86)\Stardock\ObjectDockPlus2\ODMenu64.dll (Stardock)
O22:[b]64bit:[/b] - SharedTaskScheduler: {F791A188-699D-4FD4-955A-EB59E89B1907} - Theme Resource Changer - \Program Files\Theme Resource Changer\ThemeResourceChanger.dll ()
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{6ec67e25-833c-11e1-9169-d027886960d8}\Shell - "" = AutoRun
O33 - MountPoints2\{6ec67e25-833c-11e1-9169-d027886960d8}\Shell\AutoRun\command - "" = L:\KODAK_Camera_Setup_App.exe
O33 - MountPoints2\{e8215b96-7d4e-11e3-8aa9-d027886bf8cc}\Shell - "" = AutoRun
O33 - MountPoints2\{e8215b96-7d4e-11e3-8aa9-d027886bf8cc}\Shell\AutoRun\command - "" = F:\Startme.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
 
[2014-05-21 17:57:57 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Mateusz\Desktop\OTL.exe
[2014-05-20 20:19:34 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DiskInternals
[2014-05-20 20:19:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DiskInternals
[2014-05-20 20:19:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DiskInternals
[2014-05-20 19:50:27 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\Desktop\dee
[2014-05-20 19:41:53 | 074,263,056 | ---- | C] (Sun Microsystems, Inc.) -- C:\Users\Mateusz\Desktop\VirtualBox-3.1.4-57640-Win.exe
[2014-05-20 19:23:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
[2014-05-20 19:23:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\7-Zip
[2014-05-20 18:17:15 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\Desktop\deban
[2014-05-20 18:08:35 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\Desktop\debian-500-i386-netinst
[2014-05-19 23:25:20 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\Desktop\Pracownia
[2014-05-18 16:10:00 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\AppData\Roaming\WandoujiaUsbDriver
[2014-05-18 16:10:00 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\AppData\Local\Wandoujia2
[2014-05-18 13:50:59 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\Documents\Wandoujia2
[2014-05-18 13:39:17 | 000,313,256 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\javaws.exe
[2014-05-18 13:39:13 | 000,189,352 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\javaw.exe
[2014-05-18 13:39:13 | 000,189,352 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\java.exe
[2014-05-18 13:39:13 | 000,108,968 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\WindowsAccessBridge-64.dll
[2014-05-18 13:39:07 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2014-05-17 13:08:55 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\VirtualBox VMs
[2014-05-17 13:08:34 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\.VirtualBox
[2014-05-17 13:08:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
[2014-05-17 13:07:52 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DRVSTORE
[2014-05-17 13:07:42 | 000,000,000 | ---D | C] -- C:\Program Files\Oracle
[2014-05-17 13:00:31 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\Documents\My Virtual Machines
[2014-05-17 12:23:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Virtual PC
[2014-05-16 14:03:30 | 000,141,600 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys
[2014-05-16 14:01:18 | 000,204,064 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\VBoxNetFltNobj.dll
[2014-05-14 20:35:14 | 000,264,616 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2014-05-14 20:35:10 | 000,175,528 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2014-05-14 20:35:10 | 000,175,016 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2014-05-14 20:35:10 | 000,096,168 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2014-05-14 17:31:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2014-05-14 17:31:22 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2014-05-14 17:31:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SQL Server
[2014-05-14 17:31:07 | 000,000,000 | ---D | C] -- C:\ProgramData\regid.1991-06.com.microsoft
[2014-05-14 17:30:33 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2014-05-14 17:30:33 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server
[2014-05-14 17:28:38 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Analysis Services
[2014-05-14 17:28:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Analysis Services
[2014-05-14 17:28:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
[2014-05-14 17:26:24 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2014-05-14 16:49:47 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\AppData\Roaming\AVAST Software
[2014-05-14 16:49:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
[2014-05-14 16:48:39 | 000,085,328 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswstm.sys
[2014-05-14 16:48:35 | 001,039,096 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsnx.sys.1400158480201
[2014-05-14 16:48:35 | 001,039,096 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsnx.sys
[2014-05-14 16:48:35 | 000,423,240 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsp.sys.1400158480201
[2014-05-14 16:48:35 | 000,423,240 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsp.sys
[2014-05-14 16:48:33 | 000,079,184 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2014-05-14 16:48:32 | 000,093,568 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2014-05-14 16:48:28 | 000,028,184 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswKbd.sys
[2014-05-14 16:48:24 | 000,334,648 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2014-05-14 16:48:21 | 000,043,152 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2014-05-14 16:48:11 | 000,447,888 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswndisflt.sys.1400158480201
[2014-05-14 16:48:11 | 000,447,888 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswndisflt.sys
[2014-05-14 16:47:53 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2014-05-13 22:39:48 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\AppData\Roaming\ESET
[2014-05-12 09:43:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
[2014-05-12 09:43:52 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\AppData\Roaming\Goat Simulator
[2014-04-28 14:12:08 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\AppData\Roaming\VOPackage
[2014-04-28 14:12:08 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
[2014-04-28 14:10:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pazera Free FLV to AVI Converter
[2014-04-28 14:10:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\pazera-software
[2014-04-22 16:28:49 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\Documents\Sony PMB
[2014-04-22 16:25:05 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Sony Shared
[2014-04-22 16:24:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Sony Shared
[2014-04-22 16:22:49 | 000,000,000 | ---D | C] -- C:\Users\Mateusz\AppData\Roaming\Sony Corporation
[2014-04-22 16:21:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PlayMemories Home
[2014-04-22 16:18:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Sony Corporation
[5 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[3 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
 
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
 
[2014-05-21 17:57:57 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Mateusz\Desktop\OTL.exe
[2014-05-21 17:46:07 | 360,182,810 | ---- | M] () -- C:\Users\Mateusz\Desktop\M jak Miłość E1068.PL.avi
[2014-05-21 17:35:00 | 000,001,050 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014-05-21 17:32:37 | 361,077,568 | ---- | M] () -- C:\Users\Mateusz\Desktop\M jak Miłość E1067.PL.avi
[2014-05-21 17:30:00 | 000,019,904 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014-05-21 17:30:00 | 000,019,904 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014-05-21 17:23:53 | 010,953,656 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat
[2014-05-21 17:23:53 | 004,213,730 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014-05-21 17:23:53 | 003,652,948 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat
[2014-05-21 17:23:53 | 003,496,296 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014-05-21 17:23:53 | 000,006,212 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014-05-21 17:18:37 | 000,001,046 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014-05-21 17:17:15 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014-05-21 17:17:11 | 3207,585,792 | -HS- | M] () -- C:\hiberfil.sys
[2014-05-21 17:15:19 | 000,002,544 | ---- | M] () -- C:\Windows\diagwrn.xml
[2014-05-21 17:15:17 | 000,001,890 | ---- | M] () -- C:\Windows\diagerr.xml
[2014-05-21 16:49:01 | 000,000,936 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1188746228-1158528783-1005720034-1000UA.job
[2014-05-21 07:09:00 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014-05-20 22:45:39 | 3851,223,040 | ---- | M] () -- C:\Users\Mateusz\Desktop\debian-7.5.0-i386-amd64-source-DVD-1.iso
[2014-05-20 20:23:32 | 039,055,294 | ---- | M] () -- C:\Users\Mateusz\Desktop\Pracownia.rar
[2014-05-20 20:00:33 | 000,000,950 | ---- | M] () -- C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stardock ObjectDock.lnk
[2014-05-20 19:55:56 | 000,001,061 | ---- | M] () -- C:\Users\Public\Desktop\Dzielenie i łączenie plików.lnk
[2014-05-20 19:44:22 | 074,263,056 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Mateusz\Desktop\VirtualBox-3.1.4-57640-Win.exe
[2014-05-20 19:39:45 | 660,768,768 | ---- | M] () -- C:\Users\Mateusz\Desktop\Linux Hard Disk.vhd
[2014-05-20 19:22:28 | 000,939,698 | ---- | M] () -- C:\Users\Mateusz\Desktop\7-Zip 4.64 PL.exe
[2014-05-20 19:12:13 | 000,000,448 | RHS- | M] () -- C:\Users\Mateusz\ntuser.pol
[2014-05-20 18:08:30 | 156,644,312 | ---- | M] () -- C:\Users\Mateusz\Desktop\debian-500-i386-netinst.zip
[2014-05-20 18:01:02 | 000,432,040 | ---- | M] () -- C:\Users\Mateusz\Desktop\Virtual_PC_Debian_Linux_4_0_R2_Swedish_zip.exe
[2014-05-20 17:33:41 | 000,078,807 | ---- | M] () -- C:\Users\Mateusz\Desktop\nadzor.JPG
[2014-05-20 17:09:54 | 000,332,772 | ---- | M] () -- C:\Users\Mateusz\Desktop\10365383_640552279347433_821644405611561372_o.jpg
[2014-05-19 22:57:27 | 629,755,904 | ---- | M] () -- C:\Users\Mateusz\Desktop\Windows XP Professional SP2[PL,ISO]-Juno.iso
[2014-05-19 22:55:38 | 000,062,907 | ---- | M] () -- C:\Users\Mateusz\Desktop\10262114_640202262715768_3957434376004390182_n.jpg
[2014-05-19 22:33:30 | 000,013,109 | ---- | M] () -- C:\Users\Mateusz\Desktop\Windows_XP_SP3_[PL]_[ iso].torrent
[2014-05-19 22:30:45 | 000,019,592 | ---- | M] () -- C:\Users\Mateusz\Desktop\[www.tnt24.info] Windows Virtual PC oraz XP Mode [MSDN] [PL].torrent
[2014-05-19 22:30:08 | 000,020,002 | ---- | M] () -- C:\Users\Mateusz\Desktop\[www.tnt24.info] Windows XP SP3 PL [9w1.IE8.WMP11.DX.NET.FINAL.FULL.Kwiecien.2014-NiKKA].torrent
[2014-05-19 16:37:01 | 002,380,848 | ---- | M] () -- C:\Users\Mateusz\Desktop\F1221 Fiksa.jpg
[2014-05-19 15:14:27 | 000,692,400 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2014-05-19 15:14:27 | 000,070,832 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2014-05-19 14:37:36 | 001,957,302 | ---- | M] () -- C:\Users\Mateusz\Desktop\nowe.mp3
[2014-05-19 14:12:19 | 003,046,536 | ---- | M] () -- C:\Users\Mateusz\Desktop\Art Aknid (Tchernolille) - 05 Insomnie (Album- Un aller sample) 2013.mp3
[2014-05-19 14:03:31 | 005,003,776 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2014-05-18 14:06:25 | 000,281,688 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2014-05-18 14:06:25 | 000,281,688 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2014-05-18 13:49:00 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1188746228-1158528783-1005720034-1000Core.job
[2014-05-18 13:39:10 | 000,108,968 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\WindowsAccessBridge-64.dll
[2014-05-18 13:39:09 | 000,313,256 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\javaws.exe
[2014-05-18 13:39:09 | 000,189,352 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\javaw.exe
[2014-05-18 13:39:09 | 000,189,352 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\java.exe
[2014-05-18 12:21:17 | 000,116,406 | ---- | M] () -- C:\Users\Mateusz\Desktop\f7d4cb1246591e2b25923756456628ec,37,1.jpg
[2014-05-18 10:31:06 | 000,000,132 | ---- | M] () -- C:\Users\Mateusz\AppData\Roaming\Preferencje Adobe CS5 dla formatu PNG
[2014-05-17 12:47:23 | 000,344,064 | ---- | M] () -- C:\Users\Mateusz\Documents\Database1.accdb
[2014-05-16 14:03:30 | 000,141,600 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys
[2014-05-16 14:01:18 | 000,204,064 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\VBoxNetFltNobj.dll
[2014-05-15 14:54:41 | 001,039,096 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsnx.sys
[2014-05-15 14:54:41 | 000,447,888 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswndisflt.sys
[2014-05-15 14:54:41 | 000,423,240 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsp.sys
[2014-05-15 14:54:41 | 000,085,328 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswstm.sys
[2014-05-14 16:51:52 | 000,001,241 | ---- | M] () -- C:\Windows\unins000.dat
[2014-05-14 16:51:39 | 001,180,529 | ---- | M] () -- C:\Windows\unins000.exe
[2014-05-14 16:48:21 | 001,039,096 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsnx.sys.1400158480201
[2014-05-14 16:48:21 | 000,423,240 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsp.sys.1400158480201
[2014-05-14 16:48:21 | 000,334,648 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2014-05-14 16:48:21 | 000,208,416 | ---- | M] () -- C:\Windows\SysNative\drivers\aswVmm.sys
[2014-05-14 16:48:21 | 000,093,568 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2014-05-14 16:48:21 | 000,079,184 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2014-05-14 16:48:21 | 000,065,776 | ---- | M] () -- C:\Windows\SysNative\drivers\aswRvrt.sys
[2014-05-14 16:48:21 | 000,043,152 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2014-05-14 16:48:21 | 000,029,208 | ---- | M] () -- C:\Windows\SysNative\drivers\aswHwid.sys
[2014-05-14 16:48:15 | 000,028,184 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswKbd.sys
[2014-05-14 16:48:11 | 000,447,888 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswndisflt.sys.1400158480201
[2014-05-14 16:28:45 | 000,011,570 | ---- | M] () -- C:\Bez nazwy-2.png
[2014-05-14 16:09:29 | 000,000,003 | ---- | M] () -- C:\Windows\SysNative\HRUPPROG.DIE.NOW
[2014-05-14 16:06:01 | 002,823,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2014-04-28 17:39:56 | 000,015,360 | ---- | M] () -- C:\Users\Mateusz\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[5 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[3 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
 
[color=#E56717]========== Files Created - No Company Name ==========[/color]
 
[2014-05-21 17:34:00 | 360,182,810 | ---- | C] () -- C:\Users\Mateusz\Desktop\M jak Miłość E1068.PL.avi
[2014-05-21 17:19:56 | 361,077,568 | ---- | C] () -- C:\Users\Mateusz\Desktop\M jak Miłość E1067.PL.avi
[2014-05-21 17:15:17 | 000,002,544 | ---- | C] () -- C:\Windows\diagwrn.xml
[2014-05-21 17:15:17 | 000,001,890 | ---- | C] () -- C:\Windows\diagerr.xml
[2014-05-20 20:23:23 | 039,055,294 | ---- | C] () -- C:\Users\Mateusz\Desktop\Pracownia.rar
[2014-05-20 20:21:26 | 3851,223,040 | ---- | C] () -- C:\Users\Mateusz\Desktop\debian-7.5.0-i386-amd64-source-DVD-1.iso
[2014-05-20 19:55:56 | 000,001,061 | ---- | C] () -- C:\Users\Public\Desktop\Dzielenie i łączenie plików.lnk
[2014-05-20 19:28:46 | 946,828,552 | ---- | C] () -- C:\Users\Mateusz\Desktop\[data-1].rar
[2014-05-20 19:22:15 | 000,939,698 | ---- | C] () -- C:\Users\Mateusz\Desktop\7-Zip 4.64 PL.exe
[2014-05-20 19:12:13 | 000,000,448 | RHS- | C] () -- C:\Users\Mateusz\ntuser.pol
[2014-05-20 18:09:51 | 660,768,768 | ---- | C] () -- C:\Users\Mateusz\Desktop\Linux Hard Disk.vhd
[2014-05-20 18:03:10 | 156,644,312 | ---- | C] () -- C:\Users\Mateusz\Desktop\debian-500-i386-netinst.zip
[2014-05-20 18:01:00 | 000,432,040 | ---- | C] () -- C:\Users\Mateusz\Desktop\Virtual_PC_Debian_Linux_4_0_R2_Swedish_zip.exe
[2014-05-20 17:33:43 | 000,078,807 | ---- | C] () -- C:\Users\Mateusz\Desktop\nadzor.JPG
[2014-05-20 17:08:46 | 000,332,772 | ---- | C] () -- C:\Users\Mateusz\Desktop\10365383_640552279347433_821644405611561372_o.jpg
[2014-05-19 22:55:39 | 000,062,907 | ---- | C] () -- C:\Users\Mateusz\Desktop\10262114_640202262715768_3957434376004390182_n.jpg
[2014-05-19 22:36:14 | 629,755,904 | ---- | C] () -- C:\Users\Mateusz\Desktop\Windows XP Professional SP2[PL,ISO]-Juno.iso
[2014-05-19 22:33:30 | 000,013,109 | ---- | C] () -- C:\Users\Mateusz\Desktop\Windows_XP_SP3_[PL]_[ iso].torrent
[2014-05-19 22:30:46 | 000,019,592 | ---- | C] () -- C:\Users\Mateusz\Desktop\[www.tnt24.info] Windows Virtual PC oraz XP Mode [MSDN] [PL].torrent
[2014-05-19 22:30:09 | 000,020,002 | ---- | C] () -- C:\Users\Mateusz\Desktop\[www.tnt24.info] Windows XP SP3 PL [9w1.IE8.WMP11.DX.NET.FINAL.FULL.Kwiecien.2014-NiKKA].torrent
[2014-05-19 16:21:36 | 002,380,848 | ---- | C] () -- C:\Users\Mateusz\Desktop\F1221 Fiksa.jpg
[2014-05-19 14:36:14 | 001,957,302 | ---- | C] () -- C:\Users\Mateusz\Desktop\nowe.mp3
[2014-05-19 14:12:15 | 003,046,536 | ---- | C] () -- C:\Users\Mateusz\Desktop\Art Aknid (Tchernolille) - 05 Insomnie (Album- Un aller sample) 2013.mp3
[2014-05-18 12:21:19 | 000,116,406 | ---- | C] () -- C:\Users\Mateusz\Desktop\f7d4cb1246591e2b25923756456628ec,37,1.jpg
[2014-05-17 12:47:20 | 000,344,064 | ---- | C] () -- C:\Users\Mateusz\Documents\Database1.accdb
[2014-05-17 12:23:37 | 000,001,891 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Virtual PC.lnk
[2014-05-16 12:09:31 | 734,121,984 | ---- | C] () -- C:\Users\Mateusz\Desktop\Droga bez odwrotu - Wrong Turn  pl.avi
[2014-05-14 17:04:12 | 000,000,930 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014-05-14 16:56:30 | 000,000,950 | ---- | C] () -- C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stardock ObjectDock.lnk
[2014-05-14 16:51:51 | 001,180,529 | ---- | C] () -- C:\Windows\unins000.exe
[2014-05-14 16:51:51 | 000,001,241 | ---- | C] () -- C:\Windows\unins000.dat
[2014-05-14 16:48:38 | 000,208,416 | ---- | C] () -- C:\Windows\SysNative\drivers\aswVmm.sys
[2014-05-14 16:48:34 | 000,065,776 | ---- | C] () -- C:\Windows\SysNative\drivers\aswRvrt.sys
[2014-05-14 16:48:33 | 000,029,208 | ---- | C] () -- C:\Windows\SysNative\drivers\aswHwid.sys
[2014-05-14 16:28:44 | 000,011,570 | ---- | C] () -- C:\Bez nazwy-2.png
[2014-05-14 16:09:29 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\HRUPPROG.DIE.NOW
[2014-04-22 16:21:55 | 000,002,193 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PlayMemories Home.lnk
[2014-03-12 18:47:32 | 000,000,412 | ---- | C] () -- C:\Windows\ODBC.INI
[2013-11-17 10:22:30 | 000,281,688 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2013-11-17 10:22:16 | 000,076,888 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2013-10-10 15:15:53 | 000,000,000 | -HS- | C] () -- C:\Users\Mateusz\AppData\Local\LumaEmu
[2013-06-19 13:09:29 | 000,596,926 | ---- | C] () -- C:\Users\Mateusz\Untitled.ses
[2013-05-21 10:44:17 | 000,000,037 | ---- | C] () -- C:\Windows\Grappler.ini
[2013-05-01 14:50:05 | 000,000,132 | ---- | C] () -- C:\Users\Mateusz\AppData\Roaming\Preferencje Adobe CS5 dla formatu Targa
[2013-02-13 20:22:25 | 002,580,552 | R--- | C] () -- C:\Windows\SysWow64\pbsvc.exe
[2013-02-11 17:31:32 | 000,239,616 | ---- | C] ( ) -- C:\Windows\SysWow64\rsnp2uvc.dll
[2013-02-11 17:31:32 | 000,015,497 | ---- | C] () -- C:\Windows\snp2uvc.ini
[2013-01-20 14:36:26 | 000,122,880 | ---- | C] () -- C:\Windows\UnGins.exe
[2012-12-04 23:04:05 | 000,165,376 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2012-11-13 21:18:13 | 053,863,379 | ---- | C] () -- C:\Users\Mateusz\AppData\Local\AdobeSetupUtility.zip.aamdownload
[2012-11-13 21:18:13 | 000,000,809 | ---- | C] () -- C:\Users\Mateusz\AppData\Local\AdobeSetupUtility.zip.aamdownload.aamd
[2012-08-30 11:17:25 | 000,000,617 | ---- | C] () -- C:\Windows\eReg.dat
[2012-07-27 12:48:13 | 000,000,132 | ---- | C] () -- C:\Users\Mateusz\AppData\Roaming\Preferencje Adobe CS5 dla formatu BMP
[2012-07-19 14:53:23 | 000,053,248 | ---- | C] () -- C:\Windows\unrar.dll
[2012-07-12 14:14:21 | 000,007,600 | ---- | C] () -- C:\Users\Mateusz\AppData\Local\Resmon.ResmonCfg
[2012-06-05 09:53:10 | 000,006,186 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012-05-07 21:37:36 | 000,016,384 | ---- | C] () -- C:\Program Files (x86)\uik.dat
[2012-05-07 21:36:39 | 000,000,005 | ---- | C] () -- C:\Program Files (x86)\is.dat
[2012-04-11 14:53:40 | 000,015,360 | ---- | C] () -- C:\Users\Mateusz\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012-04-01 00:51:09 | 000,000,132 | ---- | C] () -- C:\Users\Mateusz\AppData\Roaming\Preferencje Adobe CS5 dla formatu PNG
[2012-03-22 21:33:28 | 000,051,270 | ---- | C] () -- C:\Users\Mateusz\AppData\Roaming\room_v3.dat
[2012-03-08 18:01:54 | 000,017,408 | ---- | C] () -- C:\Users\Mateusz\AppData\Local\WebpageIcons.db
[2010-10-22 10:14:19 | 000,000,870 | ---- | C] () -- C:\Users\Mateusz\AppData\Roaming\smallwindows.cfg
 
[color=#E56717]========== ZeroAccess Check ==========[/color]
 
[2009-07-14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2010-11-20 06:27:26 | 014,174,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2010-11-20 05:21:20 | 012,872,192 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010-11-20 05:19:04 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
 
[color=#E56717]========== LOP Check ==========[/color]
 
[2014-05-21 17:18:08 | 000,000,000 | ---D | M] -- C:\Users\Awaryjne\AppData\Roaming\AVAST Software
[2013-11-10 20:15:02 | 000,000,000 | ---D | M] -- C:\Users\Awaryjne\AppData\Roaming\maComfort
[2012-04-06 00:05:05 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\2K Sports
[2014-05-18 19:38:17 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\AIMP
[2012-10-24 19:47:47 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\AnvSoft
[2013-09-11 15:37:16 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Audacity
[2014-05-14 16:49:47 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\AVAST Software
[2013-12-19 23:43:11 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Awesomium
[2012-10-24 18:07:54 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\BESTplayer
[2012-11-28 23:56:34 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\BitComet
[2012-03-29 21:10:51 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\BitTorrent
[2012-09-25 10:01:03 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
[2013-11-02 01:11:24 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\CometPlayer
[2014-05-14 17:21:44 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\DAEMON Tools Lite
[2013-11-02 01:06:31 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\DefaultTab
[2013-03-02 23:17:47 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\DMCache
[2014-05-13 22:39:48 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\ESET
[2012-12-19 16:23:58 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\FreeArc
[2012-03-17 00:04:35 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Gadu-Gadu 10
[2012-11-19 22:42:49 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\GHISLER
[2014-05-12 09:43:52 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Goat Simulator
[2013-04-25 12:02:32 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Image-Line
[2014-05-14 15:40:34 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\ipla
[2013-02-21 18:10:11 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\KW
[2012-04-18 20:39:41 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Leadertech
[2013-11-10 20:15:41 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\maComfort
[2013-02-21 11:51:27 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Milestone
[2013-07-04 14:43:43 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\MKKE
[2014-02-17 13:56:23 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Mp3tag
[2013-05-20 09:52:32 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\NapiProjekt
[2012-05-17 22:16:08 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Need for Speed World
[2013-06-06 17:48:26 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Omerta
[2013-11-02 00:53:21 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\OnLive App
[2012-06-10 22:11:52 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Opera
[2013-05-01 23:35:48 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Publish Providers
[2012-05-12 13:15:01 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\PunkBuster
[2013-02-06 01:30:01 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Rovio
[2013-05-01 23:35:40 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Sony
[2013-04-09 19:12:40 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2012-06-27 10:54:11 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Stardock
[2012-11-30 02:56:39 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Theta
[2014-05-13 22:22:32 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\TS3Client
[2012-06-26 13:14:42 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Ubisoft
[2014-05-20 19:33:03 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\uTorrent
[2014-05-14 16:04:38 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\VOPackage
[2014-05-18 16:10:00 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\WandoujiaUsbDriver
[2012-07-12 13:26:24 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Warner Bros. Interactive Entertainment
[2012-12-22 12:52:36 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\WarZ Emulator
[2013-11-02 12:26:18 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Wayforward Technologies
[2013-03-03 12:21:00 | 000,000,000 | ---D | M] -- C:\Users\Mateusz\AppData\Roaming\Windows Live Writer
 
[color=#E56717]========== Purity Check ==========[/color]
 
 
 
< End of report >
 
extras
 
OTL Extras logfile created on: 2014-05-21 18:04:05 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Mateusz\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
 
3,98 Gb Total Physical Memory | 2,20 Gb Available Physical Memory | 55,31% Memory free
7,96 Gb Paging File | 5,73 Gb Available in Paging File | 71,92% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 540,79 Gb Total Space | 52,10 Gb Free Space | 9,63% Space Free | Partition Type: NTFS
Drive D: | 390,62 Gb Total Space | 149,81 Gb Free Space | 38,35% Space Free | Partition Type: NTFS
 
Computer Name: MATEUSZKOM | User Name: Mateusz | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
[color=#E56717]========== Extra Registry (SafeList) ==========[/color]
 
 
[color=#E56717]========== File Associations ==========[/color]
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
 
[HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1000\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
 
[color=#E56717]========== Shell Spawning ==========[/color]
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
http [open] -- Reg Error: Key error.
https [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" ()
Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang ()
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
http [open] -- Reg Error: Key error.
https [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" ()
Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang ()
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
[color=#E56717]========== Security Center Settings ==========[/color]
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 
[color=#E56717]========== Firewall Settings ==========[/color]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
 
[color=#E56717]========== Authorized Applications List ==========[/color]
 
 
[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00C07A26-482C-4023-8850-692563ED31FD}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | 
"{0912D990-3DC1-42C9-AC23-E68ACA19E7B2}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{1407EA31-E394-4D35-A34E-BC855BBBA3E3}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{1507AEAE-8B79-4BEA-8A17-6E01EF08FC55}" = rport=137 | protocol=17 | dir=out | app=system | 
"{1A9DA620-E958-466C-8DB5-ACA93C61482A}" = lport=10243 | protocol=6 | dir=in | app=system | 
"{2BA8A40E-7E5D-4B25-A1D5-27DEBE0EE2D7}" = rport=138 | protocol=17 | dir=out | app=system | 
"{512620F1-5E84-4A40-AC9A-4D7E3F3E7F1F}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{60B6B310-E0DB-4CAA-B8E6-D1F5C1BB1E46}" = lport=139 | protocol=6 | dir=in | app=system | 
"{61794A5B-C8BA-4CC1-B33B-6DD5B6CBAD21}" = rport=10243 | protocol=6 | dir=out | app=system | 
"{65F8F05E-270C-4D77-A058-CE9493D556EC}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{68BD1960-F1D3-47C3-93BE-B0A417FE9C4A}" = lport=138 | protocol=17 | dir=in | app=system | 
"{6C3D19F6-B13C-47C3-A8E5-4EDB14C48A61}" = rport=139 | protocol=6 | dir=out | app=system | 
"{70289CE4-9E42-469F-9BBF-C564C9BE8EDC}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | 
"{719B951B-39B7-42D7-B9B1-FDE292407DF2}" = lport=5353 | protocol=17 | dir=in | name=bonjour port 5353 | 
"{76850EE7-6AC2-4B7F-8E73-AFA717A604A8}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | 
"{8C3ACAF6-403F-4875-9EAB-B60A8D2AD10B}" = lport=137 | protocol=17 | dir=in | app=system | 
"{92CF3F0B-F3BC-46F6-9D51-C71E9096041F}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | 
"{99086C3F-5D4F-4DBA-86D8-18BA6B70CE0F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{9FF79031-C719-411B-ACD2-5F6848A7F880}" = lport=1900 | protocol=17 | dir=in | app=c:\program files (x86)\common files\sony shared\sohlib\sohds.exe | 
"{AC2C8457-4AA2-4A13-AD13-C4816915C787}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{B195A4A6-C478-48A8-BA08-869BF38B5E52}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{B6814E3F-15F0-42D9-8FC9-849BF961F19A}" = lport=1900 | protocol=17 | dir=in | app=c:\program files (x86)\sony\playmemories home\pmbbrowser.exe | 
"{B831B0BB-B989-4B8F-8E61-ED945CD5FAAE}" = lport=1900 | protocol=17 | dir=in | app=c:\program files (x86)\common files\sony shared\sohlib\sohdms.exe | 
"{BF614948-0067-4838-8CAF-00DB914ACDBD}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{BFC6ADA1-0AF1-45F6-A383-B640561323C3}" = lport=445 | protocol=6 | dir=in | app=system | 
"{CF97D3E4-B70B-48B0-A449-0F7C93DA30F3}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office15\outlook.exe | 
"{F579AE18-E68D-4410-89D9-92C2C9354D56}" = rport=445 | protocol=6 | dir=out | app=system | 
"{FCDCBB58-1E12-4287-84C7-263E5C36588A}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
 
[color=#E56717]========== Vista Active Application Exception List ==========[/color]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{05A14555-F0BE-4196-819B-BF757B953EC4}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\farcry 3\bin\farcry3_d3d11.exe | 
"{06DB7D49-1F37-4E29-BDA7-419CCEEDDEB7}" = protocol=17 | dir=in | app=c:\users\mateusz\appdata\roaming\utorrent\utorrent.exe | 
"{084F44A0-BA12-4A45-B6D4-A014DD0184DC}" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\launcher.exe | 
"{0B47D97D-B585-4566-864D-F025E01AB540}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | 
"{0DFAF057-5096-4D51-9296-70CA60AFB20A}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{0F958015-D336-4205-BC01-AEDD5953D107}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | 
"{15E4FFF2-4398-4D73-886B-EA366F4BB58E}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\farcry 3\bin\farcry3_d3d11.exe | 
"{17EC9AF3-235D-4C06-BD8C-1285BEABB942}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe | 
"{18B04B99-EAC2-4206-AEA7-0CD8863A3757}" = protocol=6 | dir=in | app=c:\program files (x86)\sony mobile\update engine\sony mobile update engine.exe | 
"{1A47C884-FC26-4311-8617-31C9BD873F1C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dead island\deadislandgame.exe | 
"{1BEC9C24-0551-4704-A0F1-92023AB7A071}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe | 
"{1C5D163D-1323-415E-9AD7-0A863D87A42A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe | 
"{2131D280-13D6-4DD4-8C7C-3FE73E857703}" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\launcher.exe | 
"{224E06EC-579F-474E-A03D-4A640F1E80F5}" = protocol=17 | dir=in | app=c:\program files (x86)\rayman origins\rayman origins.exe | 
"{233E7F4B-9FAB-445D-AE7F-DD4101BFD841}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | 
"{24F429B7-7890-4CAE-BAF1-9E620E100A24}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the war z\warzlauncher.exe | 
"{260DE863-13A4-47DF-8DAA-FB18A30D1F74}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe | 
"{289B85A5-A0E3-4631-8B31-3B2B92ECF909}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2\hl2.exe | 
"{30636B49-3076-4EC2-8627-B7D10BEC5838}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{3149D8E0-FEFE-4DCD-9582-6CA95669DC90}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | 
"{36044521-D9E7-47A4-ABE0-733F2E791034}" = protocol=17 | dir=in | app=c:\program files (x86)\2k sports\nba 2k12\nba2k12.exe | 
"{3706F692-F4EC-43CA-B8E2-0A7112A3FE85}" = protocol=17 | dir=in | app=c:\program files (x86)\rockstar games\rockstar games social club\rgsclauncher.exe | 
"{38CEB891-7DEC-48E3-9E9B-D7420184C5E7}" = dir=in | app=c:\users\mateusz\appdata\local\facebook\video\skype\facebookvideocalling.exe | 
"{39A4BB30-94D9-4C64-86B6-707B14D4B0EA}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe | 
"{3BB2421D-B636-4CE8-893B-AE28B7092EBA}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe | 
"{3C0A0347-5E56-4DD8-9FF0-6CBF4B1FE58B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe | 
"{4137252B-16EB-440E-9E52-15E866363150}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | 
"{4E743A90-CEBA-4AAD-899A-25D13EA33D00}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{5041B988-8D90-4DC8-87D3-8A9699F812D8}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe | 
"{5143739C-CFA1-4F98-B680-4F69B23CC8C5}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | 
"{53FF75F6-8DF1-4536-BA02-3504D8740788}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{5420CC8B-23D7-4B12-995C-2925F4CC5666}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer.exe | 
"{5508468F-9040-4566-A629-6F50531A27F3}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | 
"{5A36B2FE-99C3-446E-9694-CD64329A8A8C}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | 
"{5A9F0315-CDF4-4EBA-A261-EB7DD3D58BC7}" = protocol=6 | dir=in | app=c:\users\mateusz\appdata\roaming\utorrent\utorrent.exe | 
"{5DE88F9F-9BB2-4A16-9B9B-32A352F4F29C}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | 
"{650C5487-0DFA-4DC6-B90D-EDA5445F2F24}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe | 
"{672E61CA-9750-47BB-B448-1090DB022F5F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dead island\deadislandgame.exe | 
"{67C156FB-B92A-4E9C-8784-97E243E147FF}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{67DF9DFF-4ACC-4E88-969F-B7D4F2966C97}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\farcry 3\bin\fc3updater.exe | 
"{6F5E2FC9-8BFC-45FE-80AB-5A09777E75C8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2\hl2.exe | 
"{72B637FC-A86C-4ADD-B382-7DC72984C499}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | 
"{75D5749C-1FE3-49C9-A134-82F89D92E2DB}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2\hl2.exe | 
"{7E8AE789-F46E-4659-BF4E-0AF212DFC786}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\farcry 3\bin\fc3editor.exe | 
"{85F313F9-70A5-4F50-8C80-3AEA3A0C7B0E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{861FEA51-D94C-447E-8D3F-BCA28B254E40}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{86E4B5A9-985C-4311-9247-EEAAB49E7648}" = dir=out | app=%programfiles% (x86)\rockstar games\max payne 3\playmaxpayne3.exe | 
"{8B30F696-0CB0-4199-9A6D-0539DC522013}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\farcry 3\bin\fc3updater.exe | 
"{8D38E144-5181-46BE-B9BB-1B4A80258FD0}" = protocol=6 | dir=in | app=c:\program files (x86)\capcom\street fighter x tekken\sftk.exe | 
"{8D5D0AF1-914B-429F-9B42-C6CDFA4FDA6F}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | 
"{8ED0C44E-A017-4D87-A9BF-B52558B09DD3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the war z\warzlauncher.exe | 
"{9201E11C-EBFC-487F-9027-B8E66F722BE7}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{922B3B25-3230-48A3-960D-C5DFBEE7E8A8}" = protocol=6 | dir=in | app=c:\program files (x86)\common files\sony shared\sohlib\sohdms.exe | 
"{99F8B6C0-0F91-4784-B4D6-EB0B07431C8D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe | 
"{9C9A1152-6223-447D-B0E9-C8C74EE248BB}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\farcry 3\bin\farcry3.exe | 
"{9EFE443F-EA75-467F-BF14-0DED8C779844}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{A2853FEE-9CEF-42E6-9092-78A295B27D11}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\lync.exe | 
"{A3171D9B-6259-4BFF-A879-5F930EF7D6DB}" = protocol=17 | dir=in | app=c:\program files (x86)\codemasters\dirt 3\dirt3_game.exe | 
"{A514332F-9773-4EE5-AC3E-A318835963D0}" = protocol=6 | dir=in | app=c:\program files (x86)\2k sports\nba 2k12\nba2k12.exe | 
"{A9D90C59-8B44-4251-A278-B7AC5157E14D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | 
"{AB2CB8C2-2FAC-4F6A-B17A-6A1BC27A36B7}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\lync.exe | 
"{AF3B34DC-1004-4583-B723-B2C3FFD77F8D}" = protocol=6 | dir=in | app=c:\program files (x86)\sony\playmemories home\pmbbrowser.exe | 
"{B216C45D-5D64-4811-93C7-BC0BAA85AFDF}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | 
"{B24081AE-ECBB-4BB7-AA87-FB6C0615DC54}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\lync.exe | 
"{B5C3AA2A-1E45-4049-815D-E2D6CEE5C418}" = protocol=17 | dir=in | app=c:\program files (x86)\sony mobile\update engine\sony mobile update engine.exe | 
"{B65791EF-652E-4094-90F6-24389D68CA2A}" = protocol=6 | dir=in | app=c:\program files (x86)\codemasters\dirt 3\dirt3_game.exe | 
"{B6858B04-F309-41ED-A8CA-BA13DFFAA8AC}" = protocol=17 | dir=in | app=c:\program files (x86)\wandoulabs\wandoujia2.exe | 
"{B775ECE4-35D7-422F-AA7B-ABBD1C048336}" = protocol=6 | dir=out | app=system | 
"{BB6F1F24-F4A2-4840-8409-EAE68456D2DA}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer.exe | 
"{BC9A3198-A4BC-4D35-B42D-82569D062174}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | 
"{BEA0366D-97AD-4E7E-A76F-75A55E261261}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{BFDE629D-F82E-4A8E-A4DD-37C736C3BC71}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\farcry 3\bin\fc3editor.exe | 
"{C0343DE2-0460-4EE5-B014-9396ED879D50}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\farcry 3\bin\farcry3.exe | 
"{C89DE7A4-4D68-45C2-AF4B-42D628E2131A}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\lync.exe | 
"{C8CC596D-6140-43DD-9170-7627C2E4C5E8}" = protocol=6 | dir=in | app=c:\program files (x86)\dead space 3\deadspace3.exe | 
"{CE21A6FA-B45D-47BA-8228-62E284077033}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | 
"{D3A20C3D-ACD1-40AF-9E41-5668A0462B00}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2\hl2.exe | 
"{D5A9D5B7-5797-4626-BFD9-2625FF5F3F25}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | 
"{D9E8E5E9-A667-473D-8018-D3411B78E5C4}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{DC6DD45C-2BBD-4284-A37A-E7610427DC31}" = protocol=6 | dir=in | app=c:\program files (x86)\rayman origins\rayman origins.exe | 
"{E003E557-6698-4D4C-9DEE-7B5B48C3E718}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{E2970047-DA8D-4C9B-AD1A-A39E76E9FEBA}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2\hl2.exe | 
"{E4E3BAAD-A29F-4835-AD3B-38BF7D02DA36}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer_service.exe | 
"{E9E2EC81-B179-43D1-B98D-0FEEEF96DAAB}" = dir=out | app=%programfiles% (x86)\rockstar games\max payne 3\maxpayne3.exe | 
"{F3916BCB-9992-4145-A2F8-5ADBC3596CC7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2\hl2.exe | 
"{F4A732E8-AA17-446C-8B6F-D4DB27AF0066}" = protocol=6 | dir=in | app=c:\program files (x86)\wandoulabs\wandoujia2.exe | 
"{F74FB084-DB18-4F62-82C3-D3BE97E3878A}" = protocol=17 | dir=in | app=c:\program files (x86)\capcom\street fighter x tekken\sftk.exe | 
"{F799FE17-40A1-4014-96E6-EBC84FDCC13E}" = protocol=6 | dir=in | app=c:\program files (x86)\rockstar games\rockstar games social club\rgsclauncher.exe | 
"{F8110D81-C2DA-4D90-899C-91FF749FA669}" = protocol=17 | dir=in | app=c:\program files (x86)\dead space 3\deadspace3.exe | 
"{F8ABDDAC-7923-4CCF-896B-169F39872AA0}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer_service.exe | 
"{FCF77CEC-98DA-4EF4-91B2-34CD091A371F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe | 
"{FD1FCD3A-6D50-46AF-9B5C-BC9507B9EFAF}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe | 
"{FFE65AA6-A8F6-4C22-BA70-A68901689B2A}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"TCP Query User{115B8BA5-C095-409D-AFCB-2CF5784FAA42}C:\program files (x86)\thq\saints row the third\saintsrowthethird_dx11.exe" = protocol=6 | dir=in | app=c:\program files (x86)\thq\saints row the third\saintsrowthethird_dx11.exe | 
"TCP Query User{1B02992C-BA01-4CF4-81A4-5030036622ED}C:\program files (x86)\ea games\need for speed most wanted\need for speed most wanted 2012.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ea games\need for speed most wanted\need for speed most wanted 2012.exe | 
"TCP Query User{1FC37479-89CC-4A85-B369-AD0C6E9913E4}C:\program files (x86)\fifa 13\game\fifa13.exe" = protocol=6 | dir=in | app=c:\program files (x86)\fifa 13\game\fifa13.exe | 
"TCP Query User{21999D48-7C17-478E-983E-F18C6AC87154}C:\program files (x86)\activision\call of duty - black ops\blackops.exe" = protocol=6 | dir=in | app=c:\program files (x86)\activision\call of duty - black ops\blackops.exe | 
"TCP Query User{2514F458-C7D5-48C2-8573-BAE0F597305B}C:\program files (x86)\r.g. mechanics\goat simulator\binaries\win32\goatgame-win32-shipping.exe" = protocol=6 | dir=in | app=c:\program files (x86)\r.g. mechanics\goat simulator\binaries\win32\goatgame-win32-shipping.exe | 
"TCP Query User{34195EF4-53C1-4BBF-994A-18705D804DC4}C:\program files (x86)\mortal kombat komplete edition\disccontentpc\mkke.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mortal kombat komplete edition\disccontentpc\mkke.exe | 
"TCP Query User{3AEFDDB8-B274-4CCB-85AB-8A5516551FA5}C:\program files (x86)\steam\steamapps\common\the war z\infestation.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the war z\infestation.exe | 
"TCP Query User{3DC806A8-74D5-41EE-B97F-96FFCBCBB6E9}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | 
"TCP Query User{42A7390D-EE6E-4075-AC28-354A9086606C}C:\program files (x86)\fifa 13\game\fifa13.exe" = protocol=6 | dir=in | app=c:\program files (x86)\fifa 13\game\fifa13.exe | 
"TCP Query User{5053B251-F0F6-40B5-A5D4-F15B044B78DF}C:\program files (x86)\o22y inc\assassin's creed iii\assassin's creed iii\ac3sp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\o22y inc\assassin's creed iii\assassin's creed iii\ac3sp.exe | 
"TCP Query User{7029046B-87D8-4A88-8F76-D7DF135A6A64}C:\program files (x86)\rockstar games\grand theft auto vice city\gta-vc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\rockstar games\grand theft auto vice city\gta-vc.exe | 
"TCP Query User{72C02FE0-236B-42D5-981B-56CBB44395A9}C:\program files (x86)\ea games\need for speed most wanted\need for speed most wanted 2012.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ea games\need for speed most wanted\need for speed most wanted 2012.exe | 
"TCP Query User{7B27BBA5-6CA1-4418-8911-1CE81B5B54E1}C:\program files (x86)\thq\saints row the third\saintsrowthethird_dx11.exe" = protocol=6 | dir=in | app=c:\program files (x86)\thq\saints row the third\saintsrowthethird_dx11.exe | 
"TCP Query User{9C6B0DB6-A61A-4BFE-A5A5-77B9A8AA755E}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | 
"TCP Query User{A2942FCE-F6FA-4698-927E-536A02C24B72}C:\program files (x86)\mortal kombat komplete edition\disccontentpc\mkke.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mortal kombat komplete edition\disccontentpc\mkke.exe | 
"TCP Query User{A62E5E13-31C9-45AA-BE2F-B3F65253D457}C:\users\mateusz\appdata\local\temp\kmsnano\qemu-system-i386.exe" = protocol=6 | dir=in | app=c:\users\mateusz\appdata\local\temp\kmsnano\qemu-system-i386.exe | 
"TCP Query User{A83BD10E-2B84-4076-95E8-CE0229D236DD}C:\program files (x86)\2k sports\nba 2k12\nba2k12.exe" = protocol=6 | dir=in | app=c:\program files (x86)\2k sports\nba 2k12\nba2k12.exe | 
"TCP Query User{AA32BF3B-CA10-4258-89DF-4A79767C8F4F}C:\program files (x86)\o22y inc\assassin's creed iii\assassin's creed iii\ac3sp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\o22y inc\assassin's creed iii\assassin's creed iii\ac3sp.exe | 
"TCP Query User{ACD108D0-8576-407C-91F0-48DC8DC8FB66}C:\program files (x86)\electronic arts\crytek\crysis 2\bin32\crysis2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\crytek\crysis 2\bin32\crysis2.exe | 
"TCP Query User{C310D7A9-3AD8-4846-90C3-B4DB97BD1DF3}C:\program files (x86)\outlast\binaries\win32\olgame.exe" = protocol=6 | dir=in | app=c:\program files (x86)\outlast\binaries\win32\olgame.exe | 
"TCP Query User{CB59FB3B-CA57-459F-B4EE-068ADC329F35}C:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe | 
"TCP Query User{CEEEB64C-59FA-481C-9C1D-F040D48DE3C5}C:\program files (x86)\ea games\need for speed underground 2\speed2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ea games\need for speed underground 2\speed2.exe | 
"TCP Query User{D0E04B8B-169F-474D-BE8F-3FE5DEBCD91A}C:\program files (x86)\steam\steamapps\common\dead island\deadislandgame.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dead island\deadislandgame.exe | 
"TCP Query User{E3A4842D-B374-47C5-B376-8BF8964A7DB6}C:\program files (x86)\activision\call of duty - black ops\blackops.exe" = protocol=6 | dir=in | app=c:\program files (x86)\activision\call of duty - black ops\blackops.exe | 
"TCP Query User{EC7AEC93-DBF6-4417-967F-6076321BDD7B}C:\program files (x86)\ubisoft\farcry 3\bin\farcry3.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\farcry 3\bin\farcry3.exe | 
"TCP Query User{F5B5CEBD-680A-4219-ABCB-94EE7A7D1823}C:\program files (x86)\steam\steam.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | 
"UDP Query User{008AE4F1-4393-4201-AF5D-3A7F790332DC}C:\program files (x86)\o22y inc\assassin's creed iii\assassin's creed iii\ac3sp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\o22y inc\assassin's creed iii\assassin's creed iii\ac3sp.exe | 
"UDP Query User{01D9AFA5-650E-45B7-88AC-C98F958F1850}C:\program files (x86)\steam\steamapps\common\dead island\deadislandgame.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dead island\deadislandgame.exe | 
"UDP Query User{02C489A3-8197-41D6-B9F5-36B863DD79B1}C:\program files (x86)\activision\call of duty - black ops\blackops.exe" = protocol=17 | dir=in | app=c:\program files (x86)\activision\call of duty - black ops\blackops.exe | 
"UDP Query User{12199CF6-7D07-48D1-8199-46D3E6DF651D}C:\program files (x86)\mortal kombat komplete edition\disccontentpc\mkke.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mortal kombat komplete edition\disccontentpc\mkke.exe | 
"UDP Query User{15011A41-789C-44E9-8B11-A57038313647}C:\program files (x86)\fifa 13\game\fifa13.exe" = protocol=17 | dir=in | app=c:\program files (x86)\fifa 13\game\fifa13.exe | 
"UDP Query User{26F020FA-2B52-4D5C-A150-772061E34E80}C:\program files (x86)\electronic arts\crytek\crysis 2\bin32\crysis2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\crytek\crysis 2\bin32\crysis2.exe | 
"UDP Query User{28CEE3E0-CF6B-4257-9FA1-72CBD2E0A2A6}C:\program files (x86)\steam\steamapps\common\the war z\infestation.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the war z\infestation.exe | 
"UDP Query User{2AA1DB98-8BBA-43D9-9C22-8770AA1CE29B}C:\program files (x86)\rockstar games\grand theft auto vice city\gta-vc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\rockstar games\grand theft auto vice city\gta-vc.exe | 
"UDP Query User{2FC0963E-70EB-462B-9C61-B137E154D560}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | 
"UDP Query User{336EE14E-4DAB-49B6-BA98-69A2D6D57D58}C:\program files (x86)\r.g. mechanics\goat simulator\binaries\win32\goatgame-win32-shipping.exe" = protocol=17 | dir=in | app=c:\program files (x86)\r.g. mechanics\goat simulator\binaries\win32\goatgame-win32-shipping.exe | 
"UDP Query User{3A30F9CD-9920-40A3-995F-BD5E83A1A5CA}C:\program files (x86)\ea games\need for speed most wanted\need for speed most wanted 2012.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ea games\need for speed most wanted\need for speed most wanted 2012.exe | 
"UDP Query User{3CC71386-EB84-428C-84A9-FEA85587460F}C:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe | 
"UDP Query User{44897FC3-079A-4ABA-A47A-4847437B1AA3}C:\program files (x86)\steam\steam.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | 
"UDP Query User{44B9DF6D-729C-4ED2-80D5-03B82FCE692A}C:\program files (x86)\mortal kombat komplete edition\disccontentpc\mkke.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mortal kombat komplete edition\disccontentpc\mkke.exe | 
"UDP Query User{503192BE-E840-45F6-8653-5607735B04D6}C:\program files (x86)\thq\saints row the third\saintsrowthethird_dx11.exe" = protocol=17 | dir=in | app=c:\program files (x86)\thq\saints row the third\saintsrowthethird_dx11.exe | 
"UDP Query User{5C552BCD-E79A-46B6-B222-8E0B12EA5EAF}C:\program files (x86)\ea games\need for speed underground 2\speed2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ea games\need for speed underground 2\speed2.exe | 
"UDP Query User{5FB26E80-39D2-4D5F-96AF-6BAEF7B88AB9}C:\program files (x86)\ea games\need for speed most wanted\need for speed most wanted 2012.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ea games\need for speed most wanted\need for speed most wanted 2012.exe | 
"UDP Query User{794DF5FC-6B3D-43AD-8063-775A54F70290}C:\program files (x86)\o22y inc\assassin's creed iii\assassin's creed iii\ac3sp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\o22y inc\assassin's creed iii\assassin's creed iii\ac3sp.exe | 
"UDP Query User{868C497F-D0CB-4AD0-BE1F-84858F1A825F}C:\program files (x86)\2k sports\nba 2k12\nba2k12.exe" = protocol=17 | dir=in | app=c:\program files (x86)\2k sports\nba 2k12\nba2k12.exe | 
"UDP Query User{9D368CA6-A877-4D05-95F0-846E03FE7FDB}C:\program files (x86)\activision\call of duty - black ops\blackops.exe" = protocol=17 | dir=in | app=c:\program files (x86)\activision\call of duty - black ops\blackops.exe | 
"UDP Query User{9F53EB6C-480D-4B13-8BB7-8CF7CEDD68AE}C:\program files (x86)\thq\saints row the third\saintsrowthethird_dx11.exe" = protocol=17 | dir=in | app=c:\program files (x86)\thq\saints row the third\saintsrowthethird_dx11.exe | 
"UDP Query User{A5FBAA3F-C1E3-4754-8378-D8456566C4A2}C:\program files (x86)\outlast\binaries\win32\olgame.exe" = protocol=17 | dir=in | app=c:\program files (x86)\outlast\binaries\win32\olgame.exe | 
"UDP Query User{A99B2D9C-B539-4A1A-850C-117AB097E9D8}C:\program files (x86)\ubisoft\farcry 3\bin\farcry3.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\farcry 3\bin\farcry3.exe | 
"UDP Query User{DA6192AC-9C53-4CA0-839A-FE4F1466EE1D}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | 
"UDP Query User{FA8D4A86-3AB4-4C3F-BFD2-0B86DCBFB8EE}C:\users\mateusz\appdata\local\temp\kmsnano\qemu-system-i386.exe" = protocol=17 | dir=in | app=c:\users\mateusz\appdata\local\temp\kmsnano\qemu-system-i386.exe | 
"UDP Query User{FE6EC470-5B02-4714-99E6-614DCC4ADBF0}C:\program files (x86)\fifa 13\game\fifa13.exe" = protocol=17 | dir=in | app=c:\program files (x86)\fifa 13\game\fifa13.exe | 
 
[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{20E0665F-E4EE-4E2A-8E86-EFC65129FE41}" = MergeModule_x64
"{25549E63-A66C-45A1-8CFF-6E9B14A69BC0}" = Windows 7 Manager
"{26A24AE4-039D-4CA4-87B4-2F86417055FF}" = Java 7 Update 55 (64-bit)
"{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{75d2897c-87aa-4a06-8710-3ebda9f02de0}.sdb" = Adobe Audition 3.0 Vista Compatibility
"{764384C5-BCA9-307C-9AAC-FD443662686A}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{8E5DA9A6-7A9F-3A6F-BC5C-D6CBCA6A29C7}" = Microsoft .NET Framework 4 Extended PLK Language Pack
"{90150000-0015-0415-1000-0000000FF1CE}" = Microsoft Access MUI (Polish) 2013
"{90150000-0016-0415-1000-0000000FF1CE}" = Microsoft Excel MUI (Polish) 2013
"{90150000-0018-0415-1000-0000000FF1CE}" = Microsoft PowerPoint MUI (Polish) 2013
"{90150000-0019-0415-1000-0000000FF1CE}" = Microsoft Publisher MUI (Polish) 2013
"{90150000-001A-0415-1000-0000000FF1CE}" = Microsoft Outlook MUI (Polish) 2013
"{90150000-001B-0415-1000-0000000FF1CE}" = Microsoft Word MUI (Polish) 2013
"{90150000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Korrekturhilfen 2013 - Deutsch
"{90150000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - English
"{90150000-001F-0415-1000-0000000FF1CE}" = Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski
"{90150000-002C-0415-1000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2013
"{90150000-0044-0415-1000-0000000FF1CE}" = Microsoft InfoPath MUI (Polish) 2013
"{90150000-006E-0415-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2013
"{90150000-0090-0415-1000-0000000FF1CE}" = Microsoft DCF MUI (Polish) 2013
"{90150000-00A1-0415-1000-0000000FF1CE}" = Microsoft OneNote MUI (Polish) 2013
"{90150000-00BA-0415-1000-0000000FF1CE}" = Microsoft Groove MUI (Polish) 2013
"{90150000-00C1-0000-1000-0000000FF1CE}" = Microsoft Office 32-bit Components 2013
"{90150000-00C1-0415-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Polish) 2013
"{90150000-00E1-0415-1000-0000000FF1CE}" = Microsoft Office OSM MUI (Polish) 2013
"{90150000-00E2-0415-1000-0000000FF1CE}" = Microsoft Office OSM UX MUI (Polish) 2013
"{90150000-012B-0415-1000-0000000FF1CE}" = Microsoft Lync MUI (Polish) 2013
"{91150000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2013
"{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack
"{AD483998-2E9A-4405-83FF-6E503AF49CBB}" = Microsoft Virtual PC 2007 SP1
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 331.65
"{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 331.65
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 331.65
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 301.42
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.15.2
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.3.26.4
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{B5121457-0126-4E62-BCBF-6DC7C73D9E4A}" = Oracle VM VirtualBox 4.3.12
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant
"{D9C50188-12D5-4D3E-8F00-682346C2AA5F}" = Microsoft Xbox 360 Accessories 1.2
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"{F07F9109-D141-4E88-BFF5-0206D61994F5}" = SOHLib for PlayMemories Home
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{F6822EFD-3F7D-4B35-8845-757A26AEC8E2}" = Windows Live MIME IFilter
"CCleaner" = CCleaner
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended
"Office15.PROPLUSR" = Microsoft Office Professional Plus 2013
"SAMSUNG Mobile USB Download Driver" = SAMSUNG Mobile USB Download Driver Software
"Theme Resource Changer X64 v1.0" = Theme Resource Changer X64 v1.0
"Totalcmd64" = Total Commander 64-bit (Remove or Repair)
"WinRAR archiver" = WinRAR 4.01 (64-bitowy)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01db25f3-1b76-4d97-88c8-1c90634d88fb}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{0454BB9A-2A7A-4214-BDFF-937F7A711A44}" = Windows Live Communications Platform
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{04E9B02B-4F85-4B73-B865-27B9B8B35877}" = NBA 2K12
"{052bac4a-6f79-46d4-a024-1ce1b4f73cd4}" = Microsoft Visual C++ 2005 Redistributable - x86 8.0.58299 False
"{08B3869E-D282-424C-9AFC-870E04A4BA14}" = Rockstar Games Social Club
"{08C8666B-C502-4AB3-B4CB-D74AC42D14FE}" = Nero BackItUp 10 Help (CHM)
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0A3925EA-5B0E-401B-A189-7419149747B2}" = Adobe AIR
"{0C9221F6-1EA9-4D92-892D-A5FEB3084A75}" = Need for Speed Undeground 2
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{107EF5BF-F806-414F-8A4D-CA73C72EA12E}" = PlayMemories Home
"{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5
"{16987E99-C95C-4513-9239-7B44A0A71DB5}" = Nero SoundTrax 10 Help (CHM)
"{185F9795-9663-4F13-9EF9-307A282ADB5A}" = ph
"{1AA94747-3BF6-4237-9E1A-7B3067738FE1}" = Max Payne 3
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 False
"{1F7FB68F-52F6-46A3-B42F-38CE46295AE5}" = Nero MediaHub 10
"{237CCB62-8454-43E3-B158-3ACD0134852E}" = High-Definition Video Playback 10
"{2436F2A8-4B7E-4B6C-AE4E-604C84AA6A4F}" = Nero Core Components 10
"{26A24AE4-039D-4CA4-87B4-2F83216020F0}" = Java(TM) 6 Update 20
"{26A24AE4-039D-4CA4-87B4-2F83216035FF}" = Java(TM) 6 Update 37
"{26A24AE4-039D-4CA4-87B4-2F83217045FF}" = Java 7 Update 55
"{277C1559-4CF7-44FF-8D07-98AA9C13AABD}" = Nero Multimedia Suite 10
"{2A075BB4-E976-4278-BF3F-E5C6945D84C0}" = bl
"{2D150A7A-5A3C-4DE9-B271-5834ED3F52BA}_is1" = "Rayman Origins"
"{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 False
"{329411A0-19F3-4740-874F-17400B126F27}" = Nero Vision 10 Help (CHM)
"{33643918-7957-4839-92C7-EA96CB621A98}" = Nero Express 10 Help (CHM)
"{34490F4E-48D0-492E-8249-B48BECF0537C}" = Nero DiscSpeed 10
"{399C37FB-08AF-493B-BFED-20FBD85EDF7F}" = USB Video Device
"{3D6AD258-61EA-35F5-812C-B7A02152996E}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610
"{400C31E4-796F-4E86-8FDC-C3C4FACC6847}" = Junk Mail filter update
"{40AE01BE-A290-4FFB-8DAB-C624C17DC87E}" = Vegas Movie Studio HD Platinum 10.0
"{41785C66-90F2-40CE-8CB5-1C94BFC97280}" = Microsoft Chart Controls for Microsoft .NET Framework 3.5
"{418BAAD1-754D-48B4-B078-46EF4F25AF42}" = Google Drive
"{432CF492-2A3C-4F96-821A-E102B6F18F07}_is1" = Grid 2 version 5.1
"{43430FA5-AF68-4A2D-A7D4-891000008200}" = Street Fighter X Tekken
"{434D0FA0-1558-4D8E-AC3D-BD1000008200}" = DiRT 3
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B35F00C-E63D-40DC-9839-DF15A33EAC46}" = Grand Theft Auto Vice City
"{4C35E42C-98B4-4A82-87C7-8E73FBDDFBCC}" = AIMP2 MegaPack v6 by UppeD
"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
"{4CCBD1F4-CEEC-452A-9CB8-46564B501315}" = Windows Live UX Platform
"{4E55905B-849D-4633-9267-3EC77E24221A}" = Poczta usługi Windows Live
"{523B2B1B-D8DB-4B41-90FF-C4D799E2758A}" = Nero ControlCenter 10 Help (CHM)
"{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 False
"{53C141BA-4F9E-43FB-B4F9-0C01BB716FA8}" = Adobe Audition 3.0
"{555868C6-49FB-484F-BB43-8980651A1B00}" = Nero BurnRights 10 Help (CHM)
"{5B1F2843-B379-3FF2-B0D3-64DD143ED53A}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4048 False
"{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 False
"{5E1375CB-6792-4464-8715-CC3EC83D48FA}" = VirtualDJ Home FREE
"{6033673D-2530-4587-8AD0-EB059FC263F9}" = Crysis® 2
"{615bc16d-60f5-482e-91b3-b51d8130963b}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 False
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{63AA3EAB-23BB-48B2-9AD0-44F878075604}" = Nero 10 Menu TemplatePack Basic
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}" = Nero Update
"{66049135-9659-4AAD-9169-9CCA269EBB3E}" = Nero InfoTool 10 Help (CHM)
"{68AB6930-5BFF-4FF6-923B-516A91984FE6}" = Nero BackItUp 10
"{6A8DB215-7BCD-4377-B015-2E4541A3E7C6}" = Windows Live PIMT Platform
"{6BF04C63-EAC0-4F19-9E88-9A745493E7BF}" = IconPackager
"{6C772996-BFF3-3C8C-860B-B3D48FF05D65}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 False
"{6c95b50e-cb5a-4a1f-a7b4-8a6004f8dd6a}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 False
"{6D87CAD9-9B94-4421-A439-B25F8DE14575}" = Tom Clancy's Ghost Recon Future Soldier
"{6DFB899F-17A2-48F0-A533-ED8D6866CF38}" = Nero Control Center 10
"{70550193-1C22-445C-8FA4-564E155DB1A7}" = Nero Express 10
"{70854FE6-3BF1-4C69-94D0-BEB821102E34}" = Windows Live Mail
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable - x86 8.0.56336 False
"{7A295D8F-484B-4FFB-89AB-C1FD497591FE}" = Nero WaveEditor 10 Help (CHM)
"{7A5D731D-B4B3-490E-B339-75685712BAAB}" = Nero Burning ROM 10
"{7B5AA67E-FEA0-40BB-BAB5-CA56645A589C}" = NVIDIA PhysX
"{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable - x86 8.0.59193 False
"{83A606F5-BF6F-42ED-9F33-B9F74297CDED}" = Need for Speed(TM) Hot Pursuit
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.5570 False
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{89505A66-35F0-4401-B3AD-D077051F8698}" = Qtrax Player
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A642ACD-CE3A-4A23-A8B1-A0F7EB12B214}" = Windows Live SOXE Definitions
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}" = Facebook Video Calling 2.0.0.447
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{8ECEC853-5C3D-4B10-B5C7-FF11FF724807}" = Nero Recode 10
"{909F8EBC-EC7F-48FF-0085-475D818F0F31}" = Need for Speed Underground 2
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{92E25238-61A3-4ACD-A407-3C480EEF47A7}" = Nero RescueAgent 10 Help (CHM)
"{943CFD7D-5336-47AF-9418-E02473A5A517}" = Nero BurnRights 10
"{95716cce-fc71-413f-8ad5-56c2892d4b3a}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 False
"{9A4297F3-2A51-4ED9-92CA-4BCB8380947E}" = Nero Vision 10
"{9B6B24BE-80E7-46C4-9FA5-B167D5E0F345}" = Nero BurningROM 10 Help (CHM)
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9ECE13D2-C028-44CB-8A96-A65196E7BBE7}_is1" = Convert AVI to MP4
"{a0fe116e-9a8a-466f-aee0-625cb7c207e3}" = Microsoft Visual C++ 2005 Redistributable - x86 8.0.51011 False
"{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
"{A29E18C2-7AB1-4b6b-848C-5D5E2C85F0C0}_is1" = FIFA 13
"{A407FC22-36BF-4C82-A516-59D94BC505A9}" = System Requirements Lab Detection
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable - x86 8.0.50727.42 False
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A7E73DE5-E5FD-4923-9D88-E09ECD1F3545}" = Podstawowe programy Windows Live
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AA82E5EF-70C2-41CB-8432-309078304CBB}" = Photo Common
"{AB0DBC9A-422A-4888-A8E5-A32EC1779E68}_is1" = Sunrise Seven 1.1.54
"{AC76BA86-7AD7-1045-7B44-AA1000000001}" = Adobe Reader X (10.1.10) - Polish
"{AF37176A-78CA-545B-34EF-8B6A21514DD1}" = Adobe Help Manager
"{B3DAF54F-DB25-4586-9EF1-96D24BB14088}" = Windows Movie Maker 2.6
"{C18A0418-442A-4186-AF98-D08F5054A2FC}" = Nero DiscSpeed 10 Help (CHM)
"{C3273C55-E1E4-41FF-8D69-0158090DB8D8}" = Nero CoverDesigner 10 Help (CHM)
"{C3580AC4-C827-4332-B935-9A282ED5BB97}" = Nero Dolby Files 10
"{C424CD5E-EA05-4D3E-B5DA-F9F149E1D3AC}" = Windows Live Installer
"{C8773FDB-D0DB-BE52-D536-F48F9886B57B}" = Adobe Download Assistant
"{C9B6EFD0-4F01-4BBA-8374-39AD99A3ED72}" = Windows Live Photo Common
"{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86
"{CF91A5A9-F10D-433D-A677-9505B84EAF1B}" = Stardock Software
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}" = Microsoft Primary Interoperability Assemblies 2005
"{D2C146B1-948D-47EF-8387-5D1C6B980F7C}" = Windows Live Writer
"{D4329609-4102-4F8C-B83F-7FE024EEA314}" = Dead Space™ 3
"{D62576C2-C084-4698-974A-5BE77714FDDD}" = System Requirements Lab Test
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DB7C1D4A-08BA-4C7E-A8AA-B7F9BB372DCF}" = Nero Recode 10 Help (CHM)
"{DCB46B42-723F-350E-B18A-449BC6C21636}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 False
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E1EE5339-5D32-458F-BAAB-B19F6301BCE2}" = Nero SoundTrax 10
"{E337E787-CF61-4B7B-B84F-509202A54023}" = Nero RescueAgent 10
"{E3B9C5A9-BD7A-4B56-B754-FAEA7DD6FA88}" = Far Cry 3
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 False
"{E7D4E834-93EB-351F-B8FB-82CDAE623003}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610
"{E800ADC4-F459-42F5-89A2-E754634B010A}" = Windows Live Writer Resources
"{E824E81C-80A4-3DFF-B5F9-4842A9FF5F7F}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 False
"{E82A57BC-E9B8-42F9-BDC7-4950BD73EA32}_is1" = Pazera Free FLV to AVI Converter 1.8
"{EDCDFAD5-DF80-4600-A493-E9DAD6810230}" = Nero WaveEditor 10
"{F09DD76B-D3D3-4558-B5BC-F1EEA6E00162}" = Windows Live UX Platform Language Pack
"{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}" = Sony PC Companion 2.10.197
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F3FCB08B-E752-444D-86A0-0634A4F3B23D}" = System Requirements Lab CYRI
"{F412B4AF-388C-4FF5-9B2F-33DB1C536953}" = Nero InfoTool 10
"{F467862A-D9CA-47ED-8D81-B4B3C9399272}" = Nero MediaHub 10 Help (CHM)
"{F5CB822F-B365-43D1-BCC0-4FDA1A2017A7}" = Nero 10 Movie ThemePack Basic
"{F6117F9C-ADB5-4590-9BE4-12C7BEC28702}" = Nero StartSmart 10 Help (CHM)
"{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}" = Nero StartSmart 10
"{FCF00A6E-FB58-477A-ABE9-232907105521}" = Nero CoverDesigner 10
"{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 False
"{FE7C0B3D-50B9-4951-BE78-A321CBF86552}" = Windows Live SOXE
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.0 False
"7-Zip" = 7-Zip 4.64
"Adobe AIR" = Adobe AIR
"Adobe Audition 3.0" = Adobe Audition 3.0
"Adobe Flash Player ActiveX" = Adobe Flash Player 13 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 13 Plugin
"Advanced RAR Repair v1.2" = Advanced RAR Repair v1.2
"AIMP2" = AIMP2
"Any Video Converter_is1" = Any Video Converter 3.5.6
"ASIO4ALL" = ASIO4ALL
"Assassin's Creed III_is1" = Assassin's Creed III
"Audacity_is1" = Audacity 2.0.3
"Avast" = avast! Premier
"Avast_2050_ZeNiX [2014-03-14]_is1" = Avast License by ZeNiX [2014-03-14]
"AviSynth" = AviSynth 2.5
"Batman Arkham City_is1" = Batman Arkham City
"Battlelog Web Plugins" = Battlelog Web Plugins
"Call of Duty: Black Ops_is1" = Call of Duty: Black Ops
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Help Manager
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"com.adobe.downloadassistant.AdobeDownloadAssistant" = Adobe Download Assistant
"Cool Edit Pro 2.1" = Cool Edit Pro 2.1
"DAEMON Tools Lite" = DAEMON Tools Lite
"Dzielenie i łączenie plików_is1" = Dzielenie i łączenie plików v1.2.2
"FileZilla Client" = FileZilla Client 3.6.0.2
"FL Studio 10" = FL Studio 10
"Foto2Avi" = Foto2Avi 4.1
"FreeArc" = FreeArc 0.60
"Freemake Video Converter_is1" = Freemake Video Converter wersja 4.1.1
"Gaa Moa's Plugins for Cool Edit Pro" = Gaa Moa's Plugins for Cool Edit Pro
"Gadu-Gadu 10" = Gadu-Gadu 10
"GameSpy Arcade" = GameSpy Arcade
"GFWL_{434D0FA0-1558-4D8E-AC3D-BD1000008200}" = DiRT 3
"Goat Simulator_R.G. Mechanics_is1" = Goat Simulator
"GOGPACKOMERTA_is1" = Omerta - City of Gangsters
"Google Chrome" = Google Chrome
"Hitman Absolution_is1" = Hitman Absolution
"IconPackager" = IconPackager
"Indeo® Software" = Indeo® Software
"ipla" = ipla 2.7
"KeyTweak" = KeyTweak - Keyboard Remapper (remove only)
"KLiteCodecPack_is1" = K-Lite Codec Pack 6.2.0 (Basic)
"LAME_is1" = LAME v3.99.3 (for Windows)
"Mafia II_is1" = Mafia II DLC Joe's Adventures
"Mafia_is1" = Mafia
"Metro: Last Light_is1" = Metro: Last Light
"Mortal Kombat Komplete Edition_is1" = Mortal Kombat Komplete Edition, âĺđńč˙ 1.0.0.0
"Mp3tag" = Mp3tag v2.40
"NapiProjekt_is1" = NapiProjekt (2.1.0.2287)
"Need for Speed Most Wanted_is1" = Need for Speed Most Wanted
"Need for Speed Undeground 2" = Need for Speed Undeground 2
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"ObjectDock Plus 2" = ObjectDock Plus 2
"OpenAL" = OpenAL
"Opera 12.14.1738" = Opera 12.14
"Picasa 3" = Picasa 3
"PunkBusterSvc" = PunkBuster Services
"Q2FsbG9mSnVhcmV6R3Vuc2xpbmdlcg==_is1" = Call of Juarez Gunslinger (c) Ubisoft version 1
"Revo Uninstaller" = Revo Uninstaller 1.95
"Rockstar Games Social Club" = Rockstar Games Social Club
"Saints Row The Third_is1" = Saints Row The Third
"Sleeping Dogs_is1" = Sleeping Dogs
"Sniper Elite V2_is1" = Sniper Elite V2
"Steam App 226700" = Infestation: Survivor Stories
"Steam App 440" = Team Fortress 2
"Steam App 550" = Left 4 Dead 2
"Steam App 91310" = Dead Island
"Street Fighter IV_is1" = Street Fighter IV
"T3V0bGFzdA==_is1" = Outlast
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"TeamViewer 7" = TeamViewer 7
"The Walking Dead.Gold Edition_is1" = The Walking Dead.Gold Edition
"TombRaider_is1" = TombRaider
"Update Engine" = Sony Mobile Update Engine
"Uplay" = Uplay
"VLC media player" = VLC media player 2.0.1
"VOPackage" = VO Package
"WinLiveSuite" = Podstawowe programy Windows Live
 
[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]
 
[HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Translator" = Google Translator
"uTorrent" = µTorrent
 
[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]
 
[HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Translator" = Google Translator
 
[color=#E56717]========== Last 20 Event Log Errors ==========[/color]
 
[ Application Events ]
Error - 2014-05-20 08:25:45 | Computer Name = MateuszKom | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy
 proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance.
 Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych 
Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis
 DWORD w sekcji Data.
 
Error - 2014-05-20 08:25:45 | Computer Name = MateuszKom | Source = Microsoft-Windows-LoadPerf | ID = 3011
Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl
 (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu.
 
Error - 2014-05-21 00:37:19 | Computer Name = MateuszKom | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy
 proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance.
 Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych 
Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis
 DWORD w sekcji Data.
 
Error - 2014-05-21 00:37:19 | Computer Name = MateuszKom | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy
 proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance.
 Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych 
Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis
 DWORD w sekcji Data.
 
Error - 2014-05-21 00:37:19 | Computer Name = MateuszKom | Source = Microsoft-Windows-LoadPerf | ID = 3011
Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl
 (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu.
 
Error - 2014-05-21 10:16:11 | Computer Name = MateuszKom | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy
 proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance.
 Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych 
Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis
 DWORD w sekcji Data.
 
Error - 2014-05-21 10:16:11 | Computer Name = MateuszKom | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy
 proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance.
 Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych 
Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis
 DWORD w sekcji Data.
 
Error - 2014-05-21 10:16:11 | Computer Name = MateuszKom | Source = Microsoft-Windows-LoadPerf | ID = 3011
Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl
 (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu.
 
Error - 2014-05-21 11:23:50 | Computer Name = MateuszKom | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy
 proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance.
 Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych 
Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis
 DWORD w sekcji Data.
 
Error - 2014-05-21 11:23:50 | Computer Name = MateuszKom | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy
 proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance.
 Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych 
Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis
 DWORD w sekcji Data.
 
Error - 2014-05-21 11:23:50 | Computer Name = MateuszKom | Source = Microsoft-Windows-LoadPerf | ID = 3011
Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl
 (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu.
 
[ System Events ]
Error - 2014-05-21 11:13:51 | Computer Name = MateuszKom | Source = Microsoft-Windows-Kernel-Processor-Power | ID = 35
Description = Funkcje zarządzania zasilaniem dotyczące wydajności dla procesora 
3 w grupie 0 zostały wyłączone z powodu problemu z oprogramowaniem układowym. Skontaktuj
 się z producentem komputera w celu uzyskania aktualizacji oprogramowania układowego.
 
Error - 2014-05-21 11:14:10 | Computer Name = MateuszKom | Source = Service Control Manager | ID = 7009
Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się
 z usługą Eset Trial Reset.
 
Error - 2014-05-21 11:14:10 | Computer Name = MateuszKom | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Eset Trial Reset z powodu następującego
 błędu:   %%1053
 
Error - 2014-05-21 11:17:16 | Computer Name = MateuszKom | Source = EventLog | ID = 6008
Description = Poprzednie zamknięcie systemu przy 17:15:00 na ?2014-?05-?21 było 
nieoczekiwane.
 
Error - 2014-05-21 11:17:11 | Computer Name = MateuszKom | Source = Microsoft-Windows-Kernel-Processor-Power | ID = 35
Description = Funkcje zarządzania zasilaniem dotyczące wydajności dla procesora 
0 w grupie 0 zostały wyłączone z powodu problemu z oprogramowaniem układowym. Skontaktuj
 się z producentem komputera w celu uzyskania aktualizacji oprogramowania układowego.
 
Error - 2014-05-21 11:17:11 | Computer Name = MateuszKom | Source = Microsoft-Windows-Kernel-Processor-Power | ID = 35
Description = Funkcje zarządzania zasilaniem dotyczące wydajności dla procesora 
1 w grupie 0 zostały wyłączone z powodu problemu z oprogramowaniem układowym. Skontaktuj
 się z producentem komputera w celu uzyskania aktualizacji oprogramowania układowego.
 
Error - 2014-05-21 11:17:11 | Computer Name = MateuszKom | Source = Microsoft-Windows-Kernel-Processor-Power | ID = 35
Description = Funkcje zarządzania zasilaniem dotyczące wydajności dla procesora 
2 w grupie 0 zostały wyłączone z powodu problemu z oprogramowaniem układowym. Skontaktuj
 się z producentem komputera w celu uzyskania aktualizacji oprogramowania układowego.
 
Error - 2014-05-21 11:17:11 | Computer Name = MateuszKom | Source = Microsoft-Windows-Kernel-Processor-Power | ID = 35
Description = Funkcje zarządzania zasilaniem dotyczące wydajności dla procesora 
3 w grupie 0 zostały wyłączone z powodu problemu z oprogramowaniem układowym. Skontaktuj
 się z producentem komputera w celu uzyskania aktualizacji oprogramowania układowego.
 
Error - 2014-05-21 11:17:26 | Computer Name = MateuszKom | Source = Service Control Manager | ID = 7009
Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się
 z usługą Eset Trial Reset.
 
Error - 2014-05-21 11:17:26 | Computer Name = MateuszKom | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Eset Trial Reset z powodu następującego
 błędu:   %%1053
 
 
< End of report >
 
 
Pzdr i czekam na pomoc
Zayfi
komentarz
komentarz

Uruchom OTL i w oknie Własne opcje skanowania skrypt wklej:

:OTL
IE - HKLM\..\URLSearchHook: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - No CLSID value found
IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.condui...&ctid=CT3220468
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\..\URLSearchHook: {687578b9-7132-4a7a-80e4-30ee31099e03} - No CLSID value found
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\..\URLSearchHook: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - No CLSID value found
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.condui...&ctid=CT3220468
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\..\URLSearchHook: {687578b9-7132-4a7a-80e4-30ee31099e03} - No CLSID value found
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\..\URLSearchHook: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - No CLSID value found
IE - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.condui...&ctid=CT3220468
O3 - HKLM\..\Toolbar: (no name) - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - No CLSID value found.
O3 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\..\Toolbar\WebBrowser: (no name) - {687578B9-7132-4A7A-80E4-30EE31099E03} - No CLSID value found.
O3 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\..\Toolbar\WebBrowser: (no name) - {7473B6BD-4691-4744-A82B-7854EB3D70B6} - No CLSID value found.
O3 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
O3 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\..\Toolbar\WebBrowser: (no name) - {687578B9-7132-4A7A-80E4-30EE31099E03} - No CLSID value found.
O3 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\..\Toolbar\WebBrowser: (no name) - {7473B6BD-4691-4744-A82B-7854EB3D70B6} - No CLSID value found.
O3 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
O4 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1000..\Run: [TBHider] D:\taskbar-hider\TaskBarHider.exe File not found
O4 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003..\Run: [AdobeBridge]  File not found
O4 - HKU\S-1-5-21-1188746228-1158528783-1005720034-1003..\Run: [TBPanel] C:\Program Files (x86)\Vtune\TBPanel.exe /A File not found
O9:64bit: - Extra Button: Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - Reg Error: Key error. File not found
O9:64bit: - Extra 'Tools' menuitem : Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - Reg Error: Key error. File not found
O9 - Extra Button: Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - Reg Error: Key error. File not found
O9 - Extra 'Tools' menuitem : Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - Reg Error: Key error. File not found

:Commands
[emptytemp]

Kliknij w Wykonaj skrypt.

 

 

2. Przeprowadź weryfikację plików systemowych

 

start > polecenie uruchom > cmd

 

w konsoli wklep sfc /scannow

 

podaj jaki był końcowy komunikat

Fems
komentarz
komentarz

To z OLT:

 

All processes killed
========== OTL ==========
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{7473b6bd-4691-4744-a82b-7854eb3d70b6} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7473b6bd-4691-4744-a82b-7854eb3d70b6}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ not found.
Registry value HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\{687578b9-7132-4a7a-80e4-30ee31099e03} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{687578b9-7132-4a7a-80e4-30ee31099e03}\ not found.
Registry value HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\{7473b6bd-4691-4744-a82b-7854eb3d70b6} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7473b6bd-4691-4744-a82b-7854eb3d70b6}\ not found.
Registry key HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1000\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ not found.
Registry value HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1003\Software\Microsoft\Internet Explorer\URLSearchHooks\\{687578b9-7132-4a7a-80e4-30ee31099e03} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{687578b9-7132-4a7a-80e4-30ee31099e03}\ not found.
Registry value HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1003\Software\Microsoft\Internet Explorer\URLSearchHooks\\{7473b6bd-4691-4744-a82b-7854eb3d70b6} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7473b6bd-4691-4744-a82b-7854eb3d70b6}\ not found.
Registry key HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1003\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{10EDB994-47F8-43F7-AE96-F2EA63E9F90F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10EDB994-47F8-43F7-AE96-F2EA63E9F90F}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{7473b6bd-4691-4744-a82b-7854eb3d70b6} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7473b6bd-4691-4744-a82b-7854eb3d70b6}\ not found.
Registry value HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{687578B9-7132-4A7A-80E4-30EE31099E03} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{687578B9-7132-4A7A-80E4-30EE31099E03}\ not found.
Registry value HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7473B6BD-4691-4744-A82B-7854EB3D70B6} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7473B6BD-4691-4744-A82B-7854EB3D70B6}\ not found.
Registry value HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{687578B9-7132-4A7A-80E4-30EE31099E03} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{687578B9-7132-4A7A-80E4-30EE31099E03}\ not found.
Registry value HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7473B6BD-4691-4744-A82B-7854EB3D70B6} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7473B6BD-4691-4744-A82B-7854EB3D70B6}\ not found.
Registry value HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}\ not found.
Registry value HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1000\Software\Microsoft\Windows\CurrentVersion\Run\\TBHider deleted successfully.
Registry value HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1003\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge deleted successfully.
Registry value HKEY_USERS\S-1-5-21-1188746228-1158528783-1005720034-1003\Software\Microsoft\Windows\CurrentVersion\Run\\TBPanel deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}\ not found.
========== COMMANDS ==========
 
[EMPTYTEMP]
 
User: All Users
 
User: Awaryjne
->Temp folder emptied: 37612 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56504 bytes
 
User: debil
->Temp folder emptied: 61098 bytes
->Temporary Internet Files folder emptied: 33995 bytes
->Flash cache emptied: 56504 bytes
 
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 57311 bytes
 
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
 
User: hedev
->Temp folder emptied: 43164427 bytes
 
User: Mateusz
->Temp folder emptied: 257916848 bytes
->Temporary Internet Files folder emptied: 1937633 bytes
->Java cache emptied: 1639 bytes
->Google Chrome cache emptied: 9588307 bytes
->Apple Safari cache emptied: 4380672 bytes
->Opera cache emptied: 0 bytes
->Flash cache emptied: 57048 bytes
 
User: Ola
 
User: Public
 
User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 41620 bytes
 
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 401408 bytes
%systemroot%\System32 .tmp files removed: 5375024 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 58233582 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 70184 bytes
RecycleBin emptied: 8358 bytes
 
Total Files Cleaned = 364,00 mb
 
 
OTL by OldTimer - Version 3.2.69.0 log created on 05222014_132020
 
Files\Folders moved on Reboot...
C:\Users\Mateusz\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
File\Folder C:\Users\Mateusz\AppData\Local\Temp\JET8EB7.tmp not found!
File move failed. C:\Windows\temp\_avast_\AvastLock.txt scheduled to be moved on reboot.
 
PendingFileRenameOperations files...
 
Registry entries deleted on Reboot...
 
 
cmd
 
Zayfi
komentarz
komentarz (edytowane)

Start > polecenie uruchom > cmd

 

w konsoli wklej polecenie , nie próbuj go przepisać bo zrobisz błąd

 

findstr /c:"[SR]" %windir%\logs\cbs\cbs.log >sfc.txt & start notepad sfc.txt

 

na pulpicie powinien pojawić się raport, zamieść go na http://wklej.to/typ/python

Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!

Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.

×
×
  • Dodaj nową pozycję...

Powiadomienie o plikach cookie

Strona wykorzystuje pliki cookies w celu prawidłowego świadczenia usług i wygody użytkowników. Warunki przechowywania i dostępu do plików cookies możesz zmienić w ustawieniach przeglądarki.