Verbatov 5 Napisano 19 Czerwca 2015 Udostępnij Napisano 19 Czerwca 2015 Witam. Miałem internet poprzez kartę wifi tp link tl-wn722n. Niestety jakiś czas temu zacząłem mieć zaniki internetu aż w końcu w ogóle nie mam połączenia z siecią. Być może to karta się popsuła ale kupiłem ją dopiero kilka miesięcy temu. Ostatnio spróbowałem podłączyć internet po kablu i też nie mam internetu. Skanowałem komputer programem malwarebyte i nie wykryło mi żadnych wirusów. Jedyne co mi pozostało to sprawdzenie logów. Czy byłby ktoś tak miły i sprawdzi mi logi? Z góry dziękuję za pomoc. [log]OTL logfile created on: 2015-06-19 21:33:36 - Run 2OTL by OldTimer - Version 3.2.69.0 Folder = D:\Programy\OTL64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstationInternet Explorer (Version = 8.0.7600.16385)Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,99 Gb Total Physical Memory | 2,56 Gb Available Physical Memory | 64,25% Memory free7,98 Gb Paging File | 6,16 Gb Available in Paging File | 77,16% Paging File freePaging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)Drive C: | 78,87 Gb Total Space | 9,05 Gb Free Space | 11,47% Space Free | Partition Type: NTFSDrive D: | 852,54 Gb Total Space | 290,58 Gb Free Space | 34,08% Space Free | Partition Type: NTFSDrive F: | 3,79 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFSDrive H: | 1,86 Gb Total Space | 1,72 Gb Free Space | 92,74% Space Free | Partition Type: FAT Computer Name: WIERUCKI | User Name: Szymon Wierucki | Logged in as Administrator.Boot Mode: Normal | Scan Mode: All users | Include 64bit ScansCompany Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - [2015-06-10 15:03:46 | 000,450,808 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exePRC - [2015-06-10 15:03:19 | 000,450,808 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exePRC - [2015-06-10 15:03:18 | 000,730,416 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exePRC - [2015-06-02 16:44:13 | 000,376,944 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exePRC - [2015-05-21 11:01:32 | 000,130,864 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exePRC - [2015-05-21 10:59:50 | 000,208,632 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exePRC - [2014-08-16 02:24:10 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\Programy\OTL\OTL.exePRC - [2014-06-03 18:10:19 | 000,189,248 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrB.exePRC - [2014-06-03 18:10:11 | 000,075,136 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exePRC - [2013-12-19 13:20:16 | 000,411,936 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exePRC - [2013-12-10 04:22:32 | 002,279,712 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exePRC - [2013-12-10 04:21:14 | 001,494,304 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exePRC - [2013-11-08 22:46:18 | 001,028,384 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exePRC - [2013-10-21 11:00:10 | 000,847,360 | ---- | M] () -- D:\Programy\TP LINK\TWCU.exePRC - [2012-09-23 21:43:34 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exePRC - [2011-05-12 10:50:03 | 001,990,656 | ---- | M] (CMedia) -- C:\Program Files\ASUS Xonar DG Audio\Customapp\AsusAudioCenter.exePRC - [2008-07-11 09:04:22 | 000,200,704 | ---- | M] () -- C:\Windows\SysWOW64\HsMgr.exePRC - [2008-03-20 12:04:46 | 002,127,296 | ---- | M] (Gadu-Gadu S.A.) -- D:\Programy\Gadu-Gadu\gg.exe ========== Modules (No Company Name) ========== MOD - [2013-10-21 11:00:10 | 000,847,360 | ---- | M] () -- D:\Programy\TP LINK\TWCU.exeMOD - [2013-07-12 01:07:11 | 001,065,984 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\9eac876f58a3ebca8878b8654efdc817\System.IdentityModel.ni.dllMOD - [2013-07-12 01:07:10 | 017,919,488 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\250b525aa8c17327216e102569c0d766\System.ServiceModel.ni.dllMOD - [2013-07-12 01:05:58 | 000,220,672 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\6e7f1bdc845816dfc797f8002b76b5e8\System.ServiceProcess.ni.dllMOD - [2013-07-12 01:05:49 | 000,645,632 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Transactions\dd9dbf82e44454689976a49a9e4ddb6d\System.Transactions.ni.dllMOD - [2013-07-12 01:05:48 | 001,011,200 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Dura#\f3989d3e9cb8904e4edf23ede5adb6c1\System.Runtime.DurableInstancing.ni.dllMOD - [2013-07-12 01:05:47 | 002,625,024 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\e9f8a45b1063d6c6a62718c88a5623d1\System.Runtime.Serialization.ni.dllMOD - [2013-07-12 01:05:47 | 000,142,336 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\4d2a51c03b27e615ff9f1c430f2014ba\SMDiagnostics.ni.dllMOD - [2013-07-12 01:05:45 | 000,391,680 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Linq\8eca92a64c232f34b5b559625b022369\System.Xml.Linq.ni.dllMOD - [2013-07-12 01:05:30 | 001,776,640 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\035910922f160d304fb834aae41f45a6\System.Xaml.ni.dllMOD - [2013-07-11 23:40:09 | 013,006,336 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\17e020ae92d7fab33bcc1c98b25019d0\System.Windows.Forms.ni.dllMOD - [2013-07-11 23:40:03 | 001,651,200 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\dd57bc19f5807c6dbe8f88d4a23277f6\System.Drawing.ni.dllMOD - [2013-07-11 23:39:56 | 002,499,072 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.Linq\87a713cee613d08ee04ae9483a9d4716\System.Data.Linq.ni.dllMOD - [2013-07-11 23:39:54 | 006,754,816 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data\92cccedc7cda413ff6fc6492cb256b58\System.Data.ni.dllMOD - [2013-07-11 23:39:50 | 000,690,176 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ComponentMod#\4a518b841f06ee4f07320159cf918a2c\System.ComponentModel.Composition.ni.dllMOD - [2013-07-11 23:39:49 | 000,450,048 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\3555f5f74c56fa92c0ab7a635af91bfa\PresentationFramework.Aero.ni.dllMOD - [2013-07-11 23:39:48 | 017,629,184 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\7f91eecda3ff7ce478146b6458580c98\PresentationFramework.ni.dllMOD - [2013-07-11 23:39:38 | 011,057,664 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\3963e9ce8d44f50e8367e92a8e3e42e6\PresentationCore.ni.dllMOD - [2013-07-11 23:39:31 | 003,779,072 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\d17606e813f01376bd0def23726ecc62\WindowsBase.ni.dllMOD - [2013-07-11 23:39:28 | 000,144,896 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Numerics\b07f0d26a34ad53fc369248f289d1126\System.Numerics.ni.dllMOD - [2013-07-11 23:39:26 | 005,571,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\e997d0200c25f7db6bd32313d50b729d\System.Xml.ni.dllMOD - [2013-07-11 23:39:23 | 000,973,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\ac18c2dcd06bd2a0589bac94ccae5716\System.Configuration.ni.dllMOD - [2013-07-11 23:39:21 | 007,025,664 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\713647b987b140a17e3c4ffe4c721f85\System.Core.ni.dllMOD - [2013-07-11 23:39:15 | 009,000,960 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System\964da027ebca3b263a05cadb8eaa20a3\System.ni.dllMOD - [2013-07-11 23:39:11 | 014,415,872 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\246f1a5abb686b9dcdf22d3505b08cea\mscorlib.ni.dllMOD - [2013-06-28 14:50:04 | 001,411,072 | ---- | M] () -- D:\Programy\TP LINK\nicLan.dllMOD - [2013-06-28 14:48:30 | 000,193,024 | ---- | M] () -- D:\Programy\TP LINK\DC_WFF.dllMOD - [2011-04-19 08:56:58 | 000,143,360 | ---- | M] () -- C:\Program Files\ASUS Xonar DG Audio\Customapp\VmixP8.dllMOD - [2008-07-11 09:04:22 | 000,200,704 | ---- | M] () -- C:\Windows\SysWOW64\HsMgr.exeMOD - [2008-03-20 11:17:48 | 000,106,496 | ---- | M] () -- D:\Programy\Gadu-Gadu\libiax2.dllMOD - [2008-03-20 11:17:44 | 000,061,440 | ---- | M] () -- D:\Programy\Gadu-Gadu\libjb.dllMOD - [2007-10-25 13:51:16 | 000,198,656 | ---- | M] () -- D:\Programy\Gadu-Gadu\libcurl.dll ========== Services (SafeList) ========== SRV:64bit: - [2013-12-10 04:20:28 | 015,129,376 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe -- (NvStreamSvc)SRV:64bit: - [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)SRV:64bit: - [2009-07-14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)SRV - [2015-06-16 12:47:03 | 000,268,976 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)SRV - [2015-06-10 15:03:46 | 000,450,808 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)SRV - [2015-06-10 15:03:31 | 001,187,336 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Stopped] -- C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE -- (AntiVirWebService)SRV - [2015-06-10 15:03:23 | 000,827,184 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Stopped] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe -- (AntiVirMailService)SRV - [2015-06-10 15:03:19 | 000,450,808 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)SRV - [2015-06-04 20:56:54 | 000,837,312 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)SRV - [2015-06-02 16:44:13 | 000,148,080 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)SRV - [2015-05-21 10:59:50 | 000,208,632 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe -- (Avira.ServiceHost)SRV - [2015-04-14 09:36:30 | 001,080,120 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- D:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe -- (MBAMService)SRV - [2015-03-30 15:29:00 | 002,490,216 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- D:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)SRV - [2014-12-11 20:33:12 | 001,900,400 | ---- | M] (Electronic Arts) [On_Demand | Stopped] -- D:\Program Files (x86)\Origin\OriginClientService.exe -- (Origin Client Service)SRV - [2014-09-18 11:37:10 | 002,191,648 | ---- | M] (GOG.com) [On_Demand | Stopped] -- C:\Program Files (x86)\GalaxyClient\GalaxyService.exe -- (GalaxyService)SRV - [2014-06-03 18:10:19 | 000,189,248 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrB.exe -- (PnkBstrB)SRV - [2014-06-03 18:10:11 | 000,075,136 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)SRV - [2013-12-19 13:20:16 | 000,411,936 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)SRV - [2013-12-10 04:21:14 | 001,494,304 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe -- (NvNetworkService)SRV - [2012-09-23 21:43:34 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)SRV - [2010-03-18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) ========== Driver Services (SafeList) ========== DRV:64bit: - [2015-06-10 15:03:56 | 000,153,256 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)DRV:64bit: - [2015-06-10 15:03:56 | 000,132,656 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)DRV:64bit: - [2015-04-14 09:37:56 | 000,063,704 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mwac.sys -- (MBAMWebAccessControl)DRV:64bit: - [2015-04-14 09:37:42 | 000,025,816 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)DRV:64bit: - [2015-03-10 21:18:45 | 000,044,088 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\avnetflt.sys -- (avnetflt)DRV:64bit: - [2013-12-05 10:42:30 | 000,039,200 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvvad64v.sys -- (nvvad_WaveExtensible)DRV:64bit: - [2013-11-19 15:57:21 | 000,028,600 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avkmgr.sys -- (avkmgr)DRV:64bit: - [2013-06-28 15:49:20 | 001,930,240 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\athurx.sys -- (athur)DRV:64bit: - [2011-07-24 15:32:48 | 000,314,016 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\atksgt.sys -- (atksgt)DRV:64bit: - [2011-07-24 15:32:47 | 000,043,680 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\lirsgt.sys -- (lirsgt)DRV:64bit: - [2011-03-10 09:44:16 | 002,725,376 | ---- | M] (C-Media Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\cmudaxp.sys -- (cmudaxp)DRV:64bit: - [2011-02-20 18:04:23 | 000,254,528 | ---- | M] (DT Soft Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)DRV:64bit: - [2009-11-25 15:06:02 | 001,276,928 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\viahduaa.sys -- (VIAHdAudAddService)DRV:64bit: - [2009-08-20 18:05:06 | 000,239,616 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)DRV:64bit: - [2009-07-14 03:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)DRV:64bit: - [2009-07-14 03:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)DRV:64bit: - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)DRV:64bit: - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)DRV:64bit: - [2009-07-14 03:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)DRV:64bit: - [2009-07-14 03:47:48 | 000,023,104 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)DRV:64bit: - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)DRV:64bit: - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)DRV:64bit: - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)DRV:64bit: - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)DRV:64bit: - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)DRV:64bit: - [2009-03-18 18:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blankIE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blankIE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = about:blankIE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blankIE:64bit: - HKLM\..\SearchScopes,DefaultScope =IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blankIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blankIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htmIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = about:blankIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blankIE - HKLM\..\SearchScopes,DefaultScope =IE - HKLM\..\SearchScopes\{002A6F4A-0506-453A-80AD-50401B325398}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRCIE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-2853644854-2588563599-1770095033-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.wp.pl/?src01=dpIE - HKU\S-1-5-21-2853644854-2588563599-1770095033-1001\..\SearchScopes,DefaultScope =IE - HKU\S-1-5-21-2853644854-2588563599-1770095033-1001\..\SearchScopes\{002A6F4A-0506-453A-80AD-50401B325398}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRCIE - HKU\S-1-5-21-2853644854-2588563599-1770095033-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - prefs.js..browser.search.countryCode: "PL"FF - prefs.js..browser.search.isUS: falseFF - prefs.js..browser.search.order.1: ""FF - prefs.js..browser.search.region: "PL"FF - prefs.js..browser.search.selectedEngine: "Google"FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:38.0.5FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24FF - user.js - File not found FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_160.dll File not foundFF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.10.2: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not foundFF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_160.dll ()FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not foundFF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll File not foundFF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450: C:\Program Files (x86)\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.)FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files (x86)\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll (Google Inc.)FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll (Google Inc.)FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 38.0.5\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2015-06-02 16:44:09 | 000,000,000 | ---D | M]FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 38.0.5\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2015-06-02 16:44:10 | 000,000,000 | ---D | M] [2011-02-20 15:37:42 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Szymon Wierucki\AppData\Roaming\mozilla\Extensions[2015-05-30 15:05:12 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Szymon Wierucki\AppData\Roaming\mozilla\Firefox\Profiles\4p1cc43q.default\extensions[2015-05-28 19:29:52 | 000,000,000 | ---D | M] (Avira Browser Safety) -- C:\Users\Szymon Wierucki\AppData\Roaming\mozilla\Firefox\Profiles\4p1cc43q.default\extensions\[email protected][2015-04-29 01:35:42 | 001,327,279 | ---- | M] () (No name found) -- C:\Users\Szymon Wierucki\AppData\Roaming\mozilla\firefox\profiles\4p1cc43q.default\extensions\[email protected][2015-05-30 15:05:12 | 000,589,166 | ---- | M] () (No name found) -- C:\Users\Szymon Wierucki\AppData\Roaming\mozilla\firefox\profiles\4p1cc43q.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi[2015-05-30 15:05:11 | 000,946,636 | ---- | M] () (No name found) -- C:\Users\Szymon Wierucki\AppData\Roaming\mozilla\firefox\profiles\4p1cc43q.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi[2015-06-02 16:44:09 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\extensions[2015-06-02 16:44:13 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}[2011-09-09 06:49:04 | 001,037,112 | ---- | M] (BitComet) -- C:\Program Files (x86)\mozilla firefox\plugins\npBitCometAgent.dll ========== Chrome ========== CHR - Extension: No name found = C:\Users\Szymon Wierucki\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\CHR - Extension: No name found = C:\Users\Szymon Wierucki\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\CHR - Extension: No name found = C:\Users\Szymon Wierucki\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\CHR - Extension: No name found = C:\Users\Szymon Wierucki\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0\CHR - Extension: No name found = C:\Users\Szymon Wierucki\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0\CHR - Extension: No name found = C:\Users\Szymon Wierucki\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\CHR - Extension: No name found = C:\Users\Szymon Wierucki\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk\1.4.9_0\CHR - Extension: No name found = C:\Users\Szymon Wierucki\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\CHR - Extension: No name found = C:\Users\Szymon Wierucki\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocifcklkibdehekfnmflempfgjhbedch\3.1_0\CHR - Extension: No name found = C:\Users\Szymon Wierucki\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0\ O1 HOSTS File: ([2009-06-10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hostsO2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL (Microsoft Corporation)O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)O4:64bit: - HKLM..\Run: [Cmaudio8788] C:\Windows\Syswow64\cmicnfgp.dll (C-Media Corporation)O4:64bit: - HKLM..\Run: [Cmaudio8788GX] C:\Windows\syswow64\HsMgr.exe ()O4:64bit: - HKLM..\Run: [Cmaudio8788GX64] C:\Windows\system\HsMgr64.exe ()O4:64bit: - HKLM..\Run: [NvBackend] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation)O4:64bit: - HKLM..\Run: [Nvtmru] C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe (NVIDIA Corporation)O4:64bit: - HKLM..\Run: [shadowPlay] C:\Windows\SysNative\nvspcap64.dll (NVIDIA Corporation)O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)O4 - HKLM..\Run: [Avira Systray] C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Avira Operations GmbH & Co. KG)O4 - HKLM..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe (VIA)O4 - HKLM..\Run: [LogMeIn Hamachi Ui] D:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)O4 - HKU\S-1-5-19..\Run: [sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)O4 - HKU\S-1-5-20..\Run: [sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)O4 - HKU\S-1-5-21-2853644854-2588563599-1770095033-1001..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)O4 - HKU\S-1-5-21-2853644854-2588563599-1770095033-1001..\Run: [Gadu-Gadu] D:\Programy\Gadu-Gadu\gg.exe (Gadu-Gadu S.A.)O4 - HKU\S-1-5-21-2853644854-2588563599-1770095033-1001..\Run: [steam] D:\Program Files (x86)\Steam\steam.exe (Valve Corporation)O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not foundO4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not foundO6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not foundO8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not foundO9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll (Microsoft Corporation)O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll (Microsoft Corporation)O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL (Microsoft Corporation)O1364bit: - gopher Prefix: missingO13 - gopher Prefix: missingO16:64bit: - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab(Shockwave Flash Object) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab(Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 217.113.224.134 217.113.224.35 192.168.1.1O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{4220EB55-5F5A-491A-8EAE-E91286048CC9}: DhcpNameServer = 217.113.224.134 217.113.224.35 192.168.1.1O18:64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value foundO18:64bit: - Protocol\Handler\ms-help - No CLSID value foundO18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GRA32A~1.DLL (Microsoft Corporation)O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\System32\Userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL (Microsoft Corporation)O32 - HKLM CDRom: AutoRun - 1O32 - AutoRun File - [2006-02-13 21:14:32 | 000,000,145 | R--- | M] () - F:\autorun.inf -- [ CDFS ]O33 - MountPoints2\{7209abe1-53ae-11e2-8045-00252239ceb6}\Shell - "" = AutoRunO33 - MountPoints2\{7209abe1-53ae-11e2-8045-00252239ceb6}\Shell\AutoRun\command - "" = F:\AutoRun.exeO33 - MountPoints2\{7209abf0-53ae-11e2-8045-00252239ceb6}\Shell - "" = AutoRunO33 - MountPoints2\{7209abf0-53ae-11e2-8045-00252239ceb6}\Shell\AutoRun\command - "" = F:\AutoRun.exeO33 - MountPoints2\{8e139fa2-606c-11e0-aaa7-00252239ceb6}\Shell - "" = AutoRunO33 - MountPoints2\{8e139fa2-606c-11e0-aaa7-00252239ceb6}\Shell\AutoRun\command - "" = F:\LaunchU3.exe -- [2006-02-13 21:14:36 | 000,921,600 | R--- | M] ()O33 - MountPoints2\F\Shell - "" = AutoRunO33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\LaunchU3.exe -- [2006-02-13 21:14:36 | 000,921,600 | R--- | M] ()O34 - HKLM BootExecute: (autocheck autochk *)O35:64bit: - HKLM\..comfile [open] -- "%1" %*O35:64bit: - HKLM\..exefile [open] -- "%1" %*O35 - HKLM\..comfile [open] -- "%1" %*O35 - HKLM\..exefile [open] -- "%1" %*O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*O37 - HKLM\...com [@ = comfile] -- "%1" %*O37 - HKLM\...exe [@ = exefile] -- "%1" %*O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) ========== Files/Folders - Created Within 30 Days ========== [2015-06-17 00:09:32 | 000,000,000 | ---D | C] -- C:\Users\Szymon Wierucki\AppData\Roaming\TP-LINK[2015-06-17 00:09:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK[2015-06-16 23:11:07 | 000,000,000 | ---D | C] -- C:\Users\Szymon Wierucki\Desktop\rachfin[2015-06-16 23:05:38 | 000,000,000 | ---D | C] -- C:\Users\Szymon Wierucki\Desktop\licencjat[2015-06-16 20:53:30 | 000,000,000 | ---D | C] -- C:\Users\Szymon Wierucki\Desktop\Zasady obliczania podatku dochodowego_pliki[2015-06-12 15:49:13 | 017,583,280 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe[2015-06-06 14:07:24 | 000,000,000 | ---D | C] -- C:\ProgramData\InstallShield[2015-06-06 14:07:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Utility[2015-06-06 14:07:20 | 000,073,728 | ---- | C] (Macrovision Corporation) -- C:\Windows\SysWow64\ISUSPM.cpl[2015-06-02 16:44:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox[2015-05-31 20:42:50 | 000,000,000 | ---D | C] -- C:\Users\Szymon Wierucki\Desktop\Rachunkowość-finansowa[2015-05-29 00:05:03 | 000,000,000 | ---D | C] -- C:\Users\Szymon Wierucki\Desktop\instrukcje[2015-05-28 23:22:51 | 000,000,000 | ---D | C] -- C:\Users\Szymon Wierucki\AppData\Local\Steam[2015-05-28 23:18:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam[2015-05-23 01:42:38 | 000,000,000 | ---D | C] -- C:\Users\Szymon Wierucki\AppData\Roaming\Talisman[2015-05-23 01:10:01 | 000,000,000 | ---D | C] -- C:\Users\Szymon Wierucki\Desktop\3DMGAME-Talisman.Digital.Edition.v4.5.0.Cracked-3DM ========== Files - Modified Within 30 Days ========== [2015-06-19 21:27:24 | 000,001,044 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job[2015-06-19 21:26:16 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat[2015-06-19 21:26:12 | 3214,188,544 | -HS- | M] () -- C:\hiberfil.sys[2015-06-19 20:49:00 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job[2015-06-19 20:43:41 | 000,001,048 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job[2015-06-17 14:14:23 | 000,136,408 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys[2015-06-17 00:09:19 | 000,000,714 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK Wireless Configuration Utility.lnk[2015-06-17 00:09:19 | 000,000,700 | ---- | M] () -- C:\Users\Public\Desktop\TP-LINK Wireless Configuration Utility.lnk[2015-06-16 20:53:30 | 000,006,037 | ---- | M] () -- C:\Users\Szymon Wierucki\Desktop\Zasady obliczania podatku dochodowego.html[2015-06-16 13:53:37 | 000,001,116 | ---- | M] () -- C:\Users\Public\Desktop\Avira.lnk[2015-06-16 12:47:03 | 000,778,416 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe[2015-06-16 12:47:03 | 000,142,512 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl[2015-06-15 23:11:17 | 000,112,814 | ---- | M] () -- C:\Users\Szymon Wierucki\Desktop\11297687_925650967476740_68105077_n.jpg[2015-06-15 23:11:07 | 000,118,801 | ---- | M] () -- C:\Users\Szymon Wierucki\Desktop\11429770_925650960810074_812138445_n.jpg[2015-06-12 15:49:13 | 017,583,280 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe[2015-06-12 02:50:46 | 000,003,519 | ---- | M] () -- C:\Users\Szymon Wierucki\Desktop\szukaltechniki.rtf[2015-06-10 15:25:07 | 001,661,232 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI[2015-06-10 15:25:07 | 000,737,242 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat[2015-06-10 15:25:07 | 000,651,450 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat[2015-06-10 15:25:07 | 000,153,930 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat[2015-06-10 15:25:07 | 000,120,382 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat[2015-06-10 15:03:56 | 000,153,256 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys[2015-06-10 15:03:56 | 000,132,656 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys[2015-06-09 19:43:01 | 000,002,189 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk[2015-05-31 21:43:12 | 000,004,125 | ---- | M] () -- C:\Users\Szymon Wierucki\Desktop\sciaga controling - Kopia.rtf[2015-05-31 21:21:57 | 000,004,114 | ---- | M] () -- C:\Users\Szymon Wierucki\Desktop\sciaga controling.rtf[2015-05-28 23:31:01 | 000,000,222 | ---- | M] () -- C:\Users\Szymon Wierucki\Desktop\Small World 2.url[2015-05-28 23:18:35 | 000,000,680 | ---- | M] () -- C:\Users\Public\Desktop\Steam.lnk[2015-05-25 22:10:14 | 000,085,670 | ---- | M] () -- C:\Users\Szymon Wierucki\Desktop\wykład controling.jpg[2015-05-21 03:39:42 | 000,004,799 | ---- | M] () -- C:\Users\Szymon Wierucki\Desktop\eko - Kopia.rtf[2015-05-21 03:18:05 | 000,004,815 | ---- | M] () -- C:\Users\Szymon Wierucki\Desktop\eko.rtf ========== Files Created - No Company Name ========== [2015-06-17 00:09:19 | 000,000,714 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK Wireless Configuration Utility.lnk[2015-06-17 00:09:19 | 000,000,700 | ---- | C] () -- C:\Users\Public\Desktop\TP-LINK Wireless Configuration Utility.lnk[2015-06-16 20:53:30 | 000,006,037 | ---- | C] () -- C:\Users\Szymon Wierucki\Desktop\Zasady obliczania podatku dochodowego.html[2015-06-16 13:53:37 | 000,001,116 | ---- | C] () -- C:\Users\Public\Desktop\Avira.lnk[2015-06-15 23:11:16 | 000,112,814 | ---- | C] () -- C:\Users\Szymon Wierucki\Desktop\11297687_925650967476740_68105077_n.jpg[2015-06-15 23:11:07 | 000,118,801 | ---- | C] () -- C:\Users\Szymon Wierucki\Desktop\11429770_925650960810074_812138445_n.jpg[2015-06-12 01:41:51 | 000,003,519 | ---- | C] () -- C:\Users\Szymon Wierucki\Desktop\szukaltechniki.rtf[2015-05-31 21:42:47 | 000,004,125 | ---- | C] () -- C:\Users\Szymon Wierucki\Desktop\sciaga controling - Kopia.rtf[2015-05-31 01:11:28 | 000,004,114 | ---- | C] () -- C:\Users\Szymon Wierucki\Desktop\sciaga controling.rtf[2015-05-28 23:31:01 | 000,000,222 | ---- | C] () -- C:\Users\Szymon Wierucki\Desktop\Small World 2.url[2015-05-28 23:18:35 | 000,000,680 | ---- | C] () -- C:\Users\Public\Desktop\Steam.lnk[2015-05-25 22:10:14 | 000,085,670 | ---- | C] () -- C:\Users\Szymon Wierucki\Desktop\wykład controling.jpg[2015-05-21 03:18:36 | 000,004,799 | ---- | C] () -- C:\Users\Szymon Wierucki\Desktop\eko - Kopia.rtf[2015-04-20 22:17:53 | 000,740,775 | ---- | C] () -- C:\ProgramData\AndyDrivers.zip[2014-12-05 00:49:03 | 000,000,048 | ---- | C] () -- C:\Windows\SysWow64\cmasiop.ini[2014-12-05 00:49:00 | 000,200,704 | ---- | C] () -- C:\Windows\SysWow64\HsMgr.exe[2014-12-05 00:48:50 | 000,143,360 | ---- | C] () -- C:\Windows\SysWow64\VmixP8.dll[2014-12-05 00:48:30 | 000,042,457 | ---- | C] () -- C:\Windows\Cmicnfgp.ini.cfl[2014-12-05 00:47:52 | 000,000,861 | ---- | C] () -- C:\Windows\Cmicnfgp.ini.imi[2014-12-05 00:47:46 | 000,005,060 | ---- | C] () -- C:\Windows\Cmicnfgp.ini.cfg[2014-06-03 18:10:12 | 000,189,248 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe[2014-06-03 18:10:11 | 000,075,136 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe[2013-07-11 23:29:45 | 001,636,610 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI[2011-09-28 16:10:37 | 000,000,218 | ---- | C] () -- C:\Users\Szymon Wierucki\.recently-used.xbel[2011-07-05 22:32:17 | 000,002,516 | -HS- | C] () -- C:\ProgramData\KGyGaAvL.sys ========== ZeroAccess Check ========== [2009-07-14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64"" = C:\Windows\SysNative\shell32.dll -- [2009-07-14 03:41:54 | 014,161,920 | ---- | M] (Microsoft Corporation)"ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]"" = %SystemRoot%\system32\shell32.dll -- [2009-07-14 03:16:14 | 012,866,560 | ---- | M] (Microsoft Corporation)"ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)"ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]"" = %systemroot%\system32\wbem\fastprox.dll -- [2009-07-14 03:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation)"ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)"ThreadingModel" = Both [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] ========== LOP Check ========== [2015-05-14 17:46:55 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\.minecraft[2012-05-23 21:49:14 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\AnvSoft[2014-12-05 00:52:08 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\ASUS[2014-12-21 16:16:09 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\Audacity[2012-05-23 21:54:14 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\avidemux[2011-09-28 15:16:45 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\BitComet[2011-02-20 18:10:35 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\DAEMON Tools Lite[2011-02-20 16:20:28 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\Gadu-Gadu[2015-02-03 19:38:29 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\GameRanger[2011-02-20 18:06:45 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\GHISLER[2012-01-19 19:27:30 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\gtk-2.0[2012-03-23 03:20:42 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\Image-Line[2012-01-19 20:54:23 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\Jasc[2011-02-20 18:16:26 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\Leadertech[2014-08-01 02:51:13 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\MKKE[2014-11-27 02:21:35 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\Moje pliki Bitwy o Śródziemie™ II[2014-12-05 02:36:15 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\Moje pliki gry Władca Pierścieni, Król Nazguli[2012-08-28 23:06:03 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\Offline Explorer[2014-06-04 01:58:40 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\Origin[2013-03-25 18:11:28 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\PDF Architect[2011-10-20 21:07:52 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\PunkBuster[2011-09-28 15:55:48 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\Python-Eggs[2014-09-05 02:36:40 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\Sierra[2014-05-17 23:33:44 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\Soldat[2012-06-04 21:08:33 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\Sports Interactive[2015-01-11 01:31:41 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\System32[2015-05-23 02:28:16 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\Talisman[2014-12-28 18:28:04 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\The Creative Assembly[2015-06-17 00:09:32 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\TP-LINK[2011-07-24 16:06:32 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\Ubisoft[2015-05-16 00:42:52 | 000,000,000 | ---D | M] -- C:\Users\Szymon Wierucki\AppData\Roaming\uTorrent ========== Purity Check ========== < End of report >[/log] [log]OTL Extras logfile created on: 2015-06-19 21:33:36 - Run 2OTL by OldTimer - Version 3.2.69.0 Folder = D:\Programy\OTL64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstationInternet Explorer (Version = 8.0.7600.16385)Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,99 Gb Total Physical Memory | 2,56 Gb Available Physical Memory | 64,25% Memory free7,98 Gb Paging File | 6,16 Gb Available in Paging File | 77,16% Paging File freePaging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)Drive C: | 78,87 Gb Total Space | 9,05 Gb Free Space | 11,47% Space Free | Partition Type: NTFSDrive D: | 852,54 Gb Total Space | 290,58 Gb Free Space | 34,08% Space Free | Partition Type: NTFSDrive F: | 3,79 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFSDrive H: | 1,86 Gb Total Space | 1,72 Gb Free Space | 92,74% Space Free | Partition Type: FAT Computer Name: WIERUCKI | User Name: Szymon Wierucki | Logged in as Administrator.Boot Mode: Normal | Scan Mode: All users | Include 64bit ScansCompany Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>].url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>].cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2853644854-2588563599-1770095033-1001\SOFTWARE\Classes\<extension>].html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) ========== Shell Spawning ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]batfile [open] -- "%1" %*cmdfile [open] -- "%1" %*comfile [open] -- "%1" %*exefile [open] -- "%1" %*helpfile [open] -- Reg Error: Key error.inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)piffile [open] -- "%1" %*regfile [merge] -- Reg Error: Key error.scrfile [config] -- "%1"scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %lscrfile [open] -- "%1" /Stxtfile [edit] -- Reg Error: Key error.Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L"Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)Folder [explore] -- Reg Error: Value error.Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]batfile [open] -- "%1" %*cmdfile [open] -- "%1" %*comfile [open] -- "%1" %*cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)exefile [open] -- "%1" %*helpfile [open] -- Reg Error: Key error.inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)piffile [open] -- "%1" %*regfile [merge] -- Reg Error: Key error.scrfile [config] -- "%1"scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %lscrfile [open] -- "%1" /Stxtfile [edit] -- Reg Error: Key error.Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L"Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)Folder [explore] -- Reg Error: Value error.Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]"cval" = 1 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]"AntiVirusOverride" = 0"AntiSpywareOverride" = 0"FirewallOverride" = 0 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]"DisableNotifications" = 0"EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]"DisableNotifications" = 0"EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]"DisableNotifications" = 0"EnableFirewall" = 1 ========== Authorized Applications List ========== ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]"{00C22220-684A-45BE-89AA-31E1AF6C2AD1}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |"{037F4C64-4DCF-472A-87C1-3CFF8049BCBE}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |"{0D2C6292-95ED-48E0-A162-6FBA57209A77}" = lport=2869 | protocol=6 | dir=in | app=system |"{11FE22BE-D7BE-409F-B083-0D66198C7013}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |"{1481A53D-4C1F-4ACA-8715-6380852EEC65}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |"{14993AE5-9F80-4DF3-BBDB-E533842DD8B8}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |"{19075DE9-232E-4C80-8374-BF27B1BE5DA1}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |"{1C651A4F-C57E-4CB0-8DFF-A77C5992F6DC}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |"{202D912A-8EE4-4E04-9B7B-C10F4DDC55E3}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |"{238319EC-124E-4684-AE54-501114F663E8}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |"{249E643C-87AE-49E5-96CB-4AF39D5684E5}" = lport=445 | protocol=6 | dir=in | app=system |"{28DA8B2F-DE30-4912-866E-A4D7A6889F11}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |"{31EBE8A4-AF10-40F5-BE5B-43369195C6BD}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |"{3D7014B2-7262-4E91-A88A-226A24266941}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |"{3D8F6378-C37A-4A50-85B7-2170ABFC6524}" = rport=10243 | protocol=6 | dir=out | app=system |"{415B1FCD-148B-49F4-B4BC-E8E9327078C2}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |"{42A234E6-7A15-4952-AF60-7403F640500C}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |"{45774C87-1F6C-49B6-9BA4-2C1F24E4F3BD}" = lport=139 | protocol=6 | dir=in | app=system |"{47D750D6-4BF6-4A12-BAC2-0A8004775558}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |"{6C22F7A4-D5E4-48C1-8508-2770ABC7A067}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |"{784D65AA-240F-4BD3-9490-3BD00720DFEF}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |"{787D721C-174E-4D44-A21E-78B9098372C2}" = lport=137 | protocol=17 | dir=in | app=system |"{888BD427-7DFD-4644-9595-8A18B27E82ED}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |"{909C1014-8C3A-423F-9644-578A19D47463}" = rport=137 | protocol=17 | dir=out | app=system |"{9BFA1E58-7EA1-453C-A7AD-C251A8C01B9D}" = lport=138 | protocol=17 | dir=in | app=system |"{A3E8C1FD-2E6A-45E4-8E78-C8806D818CFA}" = rport=139 | protocol=6 | dir=out | app=system |"{A47F4478-D562-48D3-B80B-8893A220C70E}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |"{AB6E2DCE-A66A-4370-A34E-E8500FBD3A62}" = rport=445 | protocol=6 | dir=out | app=system |"{ADDD7932-E923-487F-8494-5C36E50A8AE7}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |"{B0495EEA-788B-4680-B061-FE844EC2FBED}" = rport=138 | protocol=17 | dir=out | app=system |"{B8C268BD-BB53-4718-8AD5-F41C367F27C2}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |"{BA68C6F6-6F07-499D-BF95-02CACD321D5A}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |"{C856221C-FACE-4A51-90C5-EA064B756695}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |"{DDBABE87-9CCB-40A2-9899-D662F59A761D}" = lport=10243 | protocol=6 | dir=in | app=system |"{E18092EA-2CA6-4F9B-9B96-1092F73B33B5}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |"{E6DF23D5-78B8-4DC1-9186-9439F1C9808A}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |"{ECAD20B3-2F34-46F4-BD10-9935FA02CCA8}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |"{ECC2C7DA-962B-467E-8DCF-FB3038E6B47F}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |"{F61EA79C-2C67-4F31-97AF-F3A05C24E80C}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | ========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]"{00B90540-8D98-4093-BC01-049DFF89739B}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |"{01197C72-2254-43B3-9CE9-B864F232C06F}" = protocol=17 | dir=in | app=d:\programy\bitcomet\bitcomet.exe |"{03FF2589-C234-44F3-9EB9-E5E9AB59A741}" = protocol=17 | dir=in | app=d:\program files (x86)\prototype2\steam.exe |"{071E3336-FE0E-4850-A155-EBADD45046D2}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |"{07A6CB85-C996-4726-A333-756D1100E09B}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.524\agent.exe |"{07C9599F-D702-454B-A4B1-2589034C6BDD}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |"{07D095E4-5144-4E2E-BA83-2440268410C2}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |"{0D733426-210C-499C-BC9E-04584841175B}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |"{12339BEB-9364-48AA-BBAC-F97218B82FAA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |"{1509E5FE-BEEC-4994-874D-3045CEC564FB}" = protocol=6 | dir=in | app=d:\left 4 dead 2\left 4 dead 2 v2.0.2.7 full-rip {blaze69}\left 4 dead 2\left 4 dead 2\left4dead2.exe |"{1583B2EE-ECAC-4519-ACAF-0716708F41F1}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |"{1663BEBE-1F6B-48DD-B542-1D4D4252D19C}" = protocol=17 | dir=in | app=d:\program files (x86)\sega\virtua tennis 4\vt4.exe |"{17AAE9EC-AD5A-4155-AA71-CBBBF4A567A1}" = protocol=6 | dir=in | app=d:\program files (x86)\total war rome ii\rome2.exe |"{18CD2565-2DDD-4C25-87C8-000D3B082CA6}" = protocol=58 | dir=in | [email protected],-28545 |"{1E00C6F9-8135-4B46-B5B8-895354B0E169}" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\related designs\anno 1404\tools\anno4web.exe |"{1EBA0EDA-F678-487C-9D1A-6748331E0485}" = protocol=6 | dir=in | app=d:\program files (x86)\electronic arts\bitwa o śródziemie ii\game.dat |"{1FFADC6C-9B65-4864-A0DD-E2E1627682AC}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steam.exe |"{20E04256-693D-4029-9BF4-4DE6AF9B5847}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |"{2274F9D2-E5E7-4F23-9B84-AAB05427B0A8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |"{286F4E67-9FB8-4FA5-90CF-63EFE572976C}" = protocol=6 | dir=in | app=d:\program files (x86)\firaxis games\sid meier's civilization iv complete\civilization4.exe |"{2AECADE1-DC13-4559-8BC1-9FC8F0CA18D8}" = protocol=17 | dir=in | app=d:\small world\small world 2 v2.5.1.1375\small world 2 v2.5.1.1375\sw2executable.exe |"{2AF1CE7D-8099-4C17-907E-B6AC8557783D}" = protocol=17 | dir=in | app=d:\unrealtournament\system\unrealtournament.exe |"{2BF73F76-1558-45C6-8DCD-51CC22391118}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |"{300DD133-C79D-4CB7-9D3B-A3C6CF6D643F}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\smallworld2\sw2executable.app\contents\win32\sw2executable.exe |"{30EC78E9-0B29-44CE-AE0F-0E3473131525}" = protocol=17 | dir=in | app=d:\program files (x86)\ea sports\fifa 13\fifa 13\game\fifa13.exe |"{318B846F-93E1-47FA-834C-8CD649CF847B}" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\techland\call of juarez - bound in blood\cojbibgame_x86.exe |"{321C7E28-3FA5-4416-B8D5-FDD31280EADC}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.976\agent.exe |"{32E8EB54-CCC2-4A23-AE7E-8A1FDDFDC35C}" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\related designs\anno 1404\anno4.exe |"{337A3E37-62C8-4D9C-A33E-9CD635F4D53C}" = protocol=17 | dir=in | app=d:\left 4 dead 2\left 4 dead 2 v2.0.2.7 full-rip {blaze69}\left 4 dead 2\left 4 dead 2\left4dead2.exe |"{340E80B9-2DAC-4557-BD64-22AFAEC69D91}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |"{37A45480-71B6-4020-B6E0-83E48C2450A3}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |"{391A1946-9FF8-4D4D-A3B5-123007D91F67}" = protocol=6 | dir=in | app=d:\program files (x86)\electronic arts\król nazguli\game.dat |"{395D5580-2429-4F26-A0BD-A0C2AA801E45}" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |"{3C175657-6079-402D-B8E8-598485145B25}" = protocol=17 | dir=in | app=c:\program files\andy\andy.exe |"{3C965306-30CF-47B3-BB65-56A8E3D6E2E5}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |"{40A0C932-B198-4ADD-8DCC-F68DA0A07156}" = protocol=6 | dir=in | app=d:\program files (x86)\capcom\street fighter x tekken\sftk.exe |"{40D10E62-AFB1-4C0B-8665-90F663329392}" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes3.exe |"{40EBEE20-6DA1-429C-B669-7DDF6EFAD23D}" = protocol=6 | dir=out | app=system |"{43C92327-4289-4B70-9D00-2F244CB11E07}" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe |"{4EFBA225-F891-403D-8237-D578DB5B5567}" = protocol=17 | dir=in | app=d:\program files (x86)\utorrent\utorrent.exe |"{4FC1CA85-3193-420B-9D1D-B6AA383FE5F1}" = protocol=17 | dir=in | app=d:\program files (x86)\firaxis games\sid meier's civilization iv complete\warlords\civ4warlords.exe |"{50B11700-0794-4E88-8F8E-234D11130D61}" = protocol=17 | dir=in | app=d:\program files (x86)\firaxis games\sid meier's civilization iv complete\civilization4.exe |"{50E6BC2B-7BD0-4302-A935-324CC7553801}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |"{5216C087-2943-431F-A347-A2221054D990}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.524\agent.exe |"{52765235-D3CE-4CF9-A547-0D6A269DEB7D}" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\techland\call of juarez - bound in blood\cojbibgame_x86.exe |"{55485B8E-AC57-423A-BE38-6DB9449891D4}" = protocol=6 | dir=in | app=c:\program files\andy\andy.exe |"{591CA67F-B135-49AE-81A6-7E5EBA2E4BF9}" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\assassin's creed brotherhood\acbmp.exe |"{5B6679A5-BDA4-4167-A5D6-90D85380E8B6}" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\related designs\anno 1404\anno4.exe |"{5BF5F6AA-BCD4-4836-9E18-18F8BF492270}" = protocol=6 | dir=in | app=d:\programy\bitcomet\bitcomet.exe |"{5EBA47FE-27D6-4142-BEA7-926FE58A89F4}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |"{604AB537-3E4D-4546-B592-93987482AEF2}" = protocol=6 | dir=in | app=d:\program files (x86)\firaxis games\sid meier's civilization iv complete\warlords\civ4warlords.exe |"{61EE3FF4-8B53-42D2-AAEA-1A2E275B671B}" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |"{6A05AACE-6F14-4B84-8151-6EBE88503FBF}" = protocol=6 | dir=in | app=d:\program files (x86)\prototype2\steam.exe |"{6DB79EC1-4326-42B3-8AB2-89698C629B52}" = protocol=17 | dir=in | app=d:\program files (x86)\electronic arts\król nazguli\game.dat |"{6EB87EFC-687A-4470-A211-DB70DF4CA767}" = protocol=6 | dir=in | app=d:\small world\small world 2 v2.5.1.1375\small world 2 v2.5.1.1375\sw2executable.exe |"{70883149-C98F-470A-9B1F-422F44136831}" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\assassin's creed brotherhood\acbmp.exe |"{716DC8EE-FA76-4A1B-8037-EC1FDE61F3CB}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |"{726F99FC-3F22-48A2-A477-976AAF52CE6D}" = protocol=1 | dir=in | [email protected],-28543 |"{7BAF8FA4-3999-4838-90C1-473720EA6094}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |"{7C692102-5A49-4428-AD33-B03099148EB4}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |"{7EF078C6-874E-4427-B8A1-738C831CCF58}" = protocol=17 | dir=in | app=d:\program files (x86)\diablo 2 lord of destruction\game.exe |"{7F529482-9F67-424E-B954-C37B60F87D44}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |"{819C3B29-9500-4BDC-AB9F-68A2BB8C7421}" = protocol=17 | dir=in | app=d:\program files (x86)\capcom\street fighter x tekken\sftk.exe |"{87077E87-58D4-49A4-A86C-4FAD41E8C571}" = protocol=6 | dir=in | app=d:\unrealtournament\system\unrealtournament.exe |"{8B19C56F-3282-4D6C-A8EC-AE5C3B371C0E}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |"{91D01E70-6128-4CD6-A7ED-547049F900C3}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |"{935A16A8-5CE5-4001-8AE7-EFE36CF91DA8}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\smallworld2\sw2executable.app\contents\win32\sw2executable.exe |"{94EDFC8A-60B0-4789-A6E5-C4F34F7E5CF5}" = protocol=17 | dir=in | app=d:\program files (x86)\total war rome ii\rome2.exe |"{9EC34E7F-B6AF-40EA-8B4B-C2321F39B063}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |"{A2CAB12D-0DE0-4960-91F6-E3A310A860F6}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.976\agent.exe |"{A3D0DB3E-A8FE-43B8-AE3D-A2CE43E3438C}" = protocol=58 | dir=out | [email protected],-28546 |"{A4BD31A4-D7C7-44AA-8042-EA1F34BEC607}" = protocol=6 | dir=in | app=d:\program files (x86)\sega\virtua tennis 4\vt4.exe |"{A69E8D01-33D7-453B-92B4-D203FD5C5E24}" = protocol=17 | dir=in | app=d:\program files (x86)\coh2\company of heroes 2\reliccoh2.exe |"{AA393F04-313B-4986-A601-5A3DA6DFDB14}" = protocol=6 | dir=in | app=d:\program files (x86)\utorrent\utorrent.exe |"{B6E8CCEC-0AFE-44BF-8A64-C13A2BE6563E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |"{B8D97DFD-DFF9-4751-A0E7-A81AAE3DD46C}" = protocol=17 | dir=in | app=d:\program files (x86)\firaxis games\sid meier's civilization iv complete\beyond the sword\civ4beyondsword.exe |"{BB704079-E03D-4A79-8360-E19BED09933C}" = protocol=6 | dir=in | app=d:\program files (x86)\coh2\company of heroes 2\reliccoh2.exe |"{C31DE84D-AED1-4AF1-9D5A-13C8765AA88F}" = protocol=6 | dir=in | app=d:\program files (x86)\ea sports\fifa 13\fifa 13\game\fifa13.exe |"{C98AD22E-CCAF-4567-A6FD-7105BF2E0826}" = protocol=6 | dir=in | app=d:\program files (x86)\counter strike go\counter-strike global offensive\csgo.exe |"{D218DA04-8D7D-4A4C-9D49-D4B6E9000329}" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\related designs\anno 1404\tools\anno4web.exe |"{D32D6381-3B95-451B-A223-C5983A043120}" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |"{D33160B2-3B70-4298-B4EF-1DF41D41CBEB}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |"{D4140438-76E2-486C-AE4C-AF060F0F5133}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |"{D4EA80E8-67E0-4F27-9E52-0AA7EC37EB8F}" = protocol=17 | dir=in | app=d:\program files (x86)\firefly studios\stronghold legends\strongholdlegends.exe |"{D526D6C8-F1A1-4104-BBF3-185F7CF1478A}" = protocol=17 | dir=in | app=d:\program files (x86)\electronic arts\bitwa o śródziemie ii\game.dat |"{D7DF361C-85B6-4E84-B123-1C0E6091692C}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steam.exe |"{DC11421F-C883-4C16-A948-A7AD49131929}" = protocol=6 | dir=in | app=d:\program files (x86)\firaxis games\sid meier's civilization iv complete\beyond the sword\civ4beyondsword.exe |"{DFC7D0BC-90C1-4C8A-A9F2-8D7EB5FCF277}" = protocol=1 | dir=out | [email protected],-28544 |"{E69E2E43-1C87-48C5-B60F-9972F4804487}" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe |"{E99157A6-1D6D-4B02-BBDF-444819DDC099}" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes3.exe |"{E9AB4F3A-48F4-49BB-93EF-209B1C280FA9}" = protocol=17 | dir=in | app=d:\program files (x86)\fifa 13\game\fifa13.exe |"{E9BFA6C4-C89A-46CA-8076-C04E2A28DDF2}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\bin\steamwebhelper.exe |"{ED3AD19F-A81D-43B4-ADD7-D91AE64F0338}" = protocol=17 | dir=in | app=d:\program files (x86)\counter strike go\counter-strike global offensive\csgo.exe |"{F94EA86D-F93F-40AB-94B9-791DB732871C}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |"{F99BCE93-4483-4C1D-9717-723BE611F09A}" = protocol=6 | dir=in | app=d:\program files (x86)\diablo 2 lord of destruction\game.exe |"{FA4BC025-67FA-4694-9280-3EF31CD1C138}" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |"{FBA8B240-CB83-4FA7-99C4-EE06784E9E81}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |"{FCEA2B0B-4838-4C7D-ABCE-0F8403E443AE}" = protocol=6 | dir=in | app=d:\program files (x86)\fifa 13\game\fifa13.exe |"{FD277FD4-0EF9-448B-8D21-36BCEF4A91BE}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |"{FF08CC90-F7D7-464D-9F57-CFAED42C40CF}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\bin\steamwebhelper.exe |"{FFDC2AE9-3471-4BAD-B77D-C8559F750067}" = protocol=6 | dir=in | app=d:\program files (x86)\firefly studios\stronghold legends\strongholdlegends.exe |"TCP Query User{03AE2CD2-B18D-453B-BCEF-C930E3926FC6}D:\program files (x86)\darkest hour\darkest hour\darkest hour.exe" = protocol=6 | dir=in | app=d:\program files (x86)\darkest hour\darkest hour\darkest hour.exe |"TCP Query User{042F59AC-02D9-4805-A2B7-358F7086F286}C:\windows\syswow64\dpnsvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dpnsvr.exe |"TCP Query User{0502B0F0-AAC9-47C3-A42C-5EFBD3380CC9}D:\program files (x86)\black isle studios\icewind dale serce zimy\idmain.exe" = protocol=6 | dir=in | app=d:\program files (x86)\black isle studios\icewind dale serce zimy\idmain.exe |"TCP Query User{077AFE6C-B915-434B-8AD6-B14EFCB3A933}D:\program files (x86)\diablo 2 lord of destruction\game.exe" = protocol=6 | dir=in | app=d:\program files (x86)\diablo 2 lord of destruction\game.exe |"TCP Query User{07DDD06A-F11B-48C5-B41C-17496B637CC7}D:\program files (x86)\counter-strike source\hl2.exe" = protocol=6 | dir=in | app=d:\program files (x86)\counter-strike source\hl2.exe |"TCP Query User{0843F024-CC18-4488-84A6-7D670A610CAC}D:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes33.exe" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes33.exe |"TCP Query User{131747DD-3733-4959-A14F-6E26A88540C0}C:\program files (x86)\bitlord\bitlord.exe" = protocol=6 | dir=in | app=c:\program files (x86)\bitlord\bitlord.exe |"TCP Query User{14AFB371-20CB-4E06-B5A7-843A19912752}D:\unrealtournament\system\unrealtournament.exe" = protocol=6 | dir=in | app=d:\unrealtournament\system\unrealtournament.exe |"TCP Query User{17C1EC70-E437-4260-A8BB-23BAD010E8CC}D:\program files (x86)\ubisoft\funatics\the settlers ii - dziesięciolecie\bin\s2dng.exe" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\funatics\the settlers ii - dziesięciolecie\bin\s2dng.exe |"TCP Query User{1B8C6D60-9401-406A-9C1F-BCFCBA816F3F}D:\program files (x86)\ea sports\fifa 12\game\fifa.exe" = protocol=6 | dir=in | app=d:\program files (x86)\ea sports\fifa 12\game\fifa.exe |"TCP Query User{1C4F28EA-5E34-4760-9B1A-07AD5D55F8B5}C:\program files\andy\andy.exe" = protocol=6 | dir=in | app=c:\program files\andy\andy.exe |"TCP Query User{202ED7EE-8AFC-4528-8EA2-5262B1896C6E}C:\users\szymon wierucki\appdata\roaming\gameranger\gameranger\gameranger.exe" = protocol=6 | dir=in | app=c:\users\szymon wierucki\appdata\roaming\gameranger\gameranger\gameranger.exe |"TCP Query User{22BABEF3-1D4F-418C-A023-2A65E33DABEE}D:\program files (x86)\ubisoft\blue byte\the settlers - dziedzictwo królów\bin\settlershok.exe" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\blue byte\the settlers - dziedzictwo królów\bin\settlershok.exe |"TCP Query User{2B06FC93-8716-4780-894A-D65667DCB7E2}D:\programy\bitlord\bitlord.exe" = protocol=6 | dir=in | app=d:\programy\bitlord\bitlord.exe |"TCP Query User{2D21AC9B-A686-442F-9E3F-98F6BA49980E}D:\pobrane\kknd(xtreme)\kknd(xtreme)\kknd xtreme.exe" = protocol=6 | dir=in | app=d:\pobrane\kknd(xtreme)\kknd(xtreme)\kknd xtreme.exe |"TCP Query User{3C3AA339-21BF-4783-9379-EFAA14A2B882}D:\ao2\age of empire-ii+ expansion [direct play]\age2_x1.exe" = protocol=6 | dir=in | app=d:\ao2\age of empire-ii+ expansion [direct play]\age2_x1.exe |"TCP Query User{4960BD81-AD62-40E5-ABE1-7BA8878A1431}D:\program files (x86)\sopcast\sopcast.exe" = protocol=6 | dir=in | app=d:\program files (x86)\sopcast\sopcast.exe |"TCP Query User{5005ED14-8F4F-4BB0-97FF-7066EDD1FE80}D:\fifa 14\game\fifa14.exe" = protocol=6 | dir=in | app=d:\fifa 14\game\fifa14.exe |"TCP Query User{5168B075-4438-4B14-86DB-7DE01DF0D245}D:\pobrane\lierox_v0.56_pack_1.9en\lierox v0.56 pack 1.9\lierox.exe" = protocol=6 | dir=in | app=d:\pobrane\lierox_v0.56_pack_1.9en\lierox v0.56 pack 1.9\lierox.exe |"TCP Query User{5912F14D-7256-481D-B7C3-6660C330A466}D:\ao2\age of empire-ii+ expansion [direct play]\age2_x1.exe" = protocol=6 | dir=in | app=d:\ao2\age of empire-ii+ expansion [direct play]\age2_x1.exe |"TCP Query User{60DDD3CB-2FD3-45DA-8712-1CEFB7EFB9CA}D:\small world\small world 2 v2.5.1.1375\small world 2 v2.5.1.1375\small world 2.exe" = protocol=6 | dir=in | app=d:\small world\small world 2 v2.5.1.1375\small world 2 v2.5.1.1375\small world 2.exe |"TCP Query User{6786199F-D2FC-4950-ABF7-607896B3F701}D:\program files (x86)\sega\football manager 2012\fm.exe" = protocol=6 | dir=in | app=d:\program files (x86)\sega\football manager 2012\fm.exe |"TCP Query User{686E557A-98CF-4D8F-87DA-C4DBF6CFF024}D:\program files (x86)\mortal kombat complete edition\mkke.exe" = protocol=6 | dir=in | app=d:\program files (x86)\mortal kombat complete edition\mkke.exe |"TCP Query User{6A31D04B-4793-4498-812F-12456D2BF8CF}D:\program files (x86)\ea games\battlefield 1942\bf1942_w32ded.exe" = protocol=6 | dir=in | app=d:\program files (x86)\ea games\battlefield 1942\bf1942_w32ded.exe |"TCP Query User{6B9D991D-4F8B-4953-B0F0-6FFB9E9439B1}D:\pobrane\age of empires full pl\age of empires\empires.exe" = protocol=6 | dir=in | app=d:\pobrane\age of empires full pl\age of empires\empires.exe |"TCP Query User{7399B4C8-E90B-4125-94A9-73936D5F6DAF}D:\program files (x86)\ubisoft\blue byte\the settlers - dziedzictwo królów\bin\settlershok.exe" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\blue byte\the settlers - dziedzictwo królów\bin\settlershok.exe |"TCP Query User{76FB484A-3DCF-4953-8670-2BB61D42E555}D:\pobrane\age of empires full pl\age of empires\empires.exe" = protocol=6 | dir=in | app=d:\pobrane\age of empires full pl\age of empires\empires.exe |"TCP Query User{77597820-853B-44F3-B55E-A09D254D1E7D}D:\pobrane\gta 1\gta\gtawin\gtawin.exe" = protocol=6 | dir=in | app=d:\pobrane\gta 1\gta\gtawin\gtawin.exe |"TCP Query User{77F91F74-E964-411B-B421-15B27A8FD8CF}D:\soldat\soldat.exe" = protocol=6 | dir=in | app=d:\soldat\soldat.exe |"TCP Query User{79B771A6-83E3-49F1-8B80-2883254F051E}D:\programy\asus\pu.exe" = protocol=6 | dir=in | app=d:\programy\asus\pu.exe |"TCP Query User{79DA5B60-3DE0-44F9-8749-0E4EFDDB8D75}D:\program files (x86)\ubisoft\related designs\anno 1404\tools\anno4web.exe" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\related designs\anno 1404\tools\anno4web.exe |"TCP Query User{7DAEDDEA-19DA-4E8A-B7DC-81FD225DFF98}D:\program files (x86)\total war rome ii\rome2.exe" = protocol=6 | dir=in | app=d:\program files (x86)\total war rome ii\rome2.exe |"TCP Query User{7E504055-526D-4F76-8A78-BF7D3BF2A6FC}D:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes3.exe" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes3.exe |"TCP Query User{80040DC9-8D20-4D47-A97E-78F42A0CB74A}D:\fifa 14\game\fifa14.exe" = protocol=6 | dir=in | app=d:\fifa 14\game\fifa14.exe |"TCP Query User{8342D9D2-6F27-4B6A-A2D0-42B51DE7990B}D:\program files (x86)\enigma software productions\angels vs devils\angelsvsdevils.exe" = protocol=6 | dir=in | app=d:\program files (x86)\enigma software productions\angels vs devils\angelsvsdevils.exe |"TCP Query User{887E1CA7-2D78-45BC-BF27-45B22309699A}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |"TCP Query User{888D31C9-1D60-4DAA-B29E-53C46BE14A09}D:\soldat\soldat.exe" = protocol=6 | dir=in | app=d:\soldat\soldat.exe |"TCP Query User{8D1A304F-4C65-43C0-8BC6-429F56E1FA24}C:\program files (x86)\ea sports\fifa 11\game\fifa.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ea sports\fifa 11\game\fifa.exe |"TCP Query User{90534C8F-3376-4194-A6D9-C4F16EB5683D}C:\program files (x86)\prototype 2\prototype2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\prototype 2\prototype2.exe |"TCP Query User{93A62513-EE6C-42E6-B009-1246E77D9897}D:\program files (x86)\counter-strike source\hl2.exe" = protocol=6 | dir=in | app=d:\program files (x86)\counter-strike source\hl2.exe |"TCP Query User{A10185B6-CE40-4FD6-8E65-F9F563CDF2EC}D:\program files (x86)\coh2\company of heroes 2\reliccoh2.exe" = protocol=6 | dir=in | app=d:\program files (x86)\coh2\company of heroes 2\reliccoh2.exe |"TCP Query User{A430CE2E-8390-4DC6-AA66-9CF4182B9132}D:\programy\gadu-gadu\gg.exe" = protocol=6 | dir=in | app=d:\programy\gadu-gadu\gg.exe |"TCP Query User{A66D6C75-AFAE-451B-A8D3-2D6DD231AE3A}D:\program files (x86)\ea sports\fifa 11\game\fifa.exe" = protocol=6 | dir=in | app=d:\program files (x86)\ea sports\fifa 11\game\fifa.exe |"TCP Query User{AFEED0E6-AA05-43F7-AA23-596E30BA7329}D:\small world\small world 2 v2.5.1.1375\small world 2 v2.5.1.1375\sw2executable.exe" = protocol=6 | dir=in | app=d:\small world\small world 2 v2.5.1.1375\small world 2 v2.5.1.1375\sw2executable.exe |"TCP Query User{B1FDBB10-AA96-44E8-B8F8-D8685A8D23E9}D:\program files (x86)\enigma software productions\angels vs devils\angelsvsdevils.exe" = protocol=6 | dir=in | app=d:\program files (x86)\enigma software productions\angels vs devils\angelsvsdevils.exe |"TCP Query User{B2957C2C-A745-49AF-9635-FCFDD5F371B7}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |"TCP Query User{B917FC1B-2B5D-41AA-8643-586A8D44E9DD}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe |"TCP Query User{C1AF6E7E-1649-44B9-B905-90B97620D574}D:\left 4 dead 2\left 4 dead 2 v2.0.2.7 full-rip {blaze69}\left 4 dead 2\left 4 dead 2\left4dead2.exe" = protocol=6 | dir=in | app=d:\left 4 dead 2\left 4 dead 2 v2.0.2.7 full-rip {blaze69}\left 4 dead 2\left 4 dead 2\left4dead2.exe |"TCP Query User{CBF4C914-4782-40B2-97A5-7F78C0497BBB}D:\program files (x86)\fifa 12\game\fifa.exe" = protocol=6 | dir=in | app=d:\program files (x86)\fifa 12\game\fifa.exe |"TCP Query User{CFD105FE-039A-4623-B69B-8550A650F66A}D:\program files (x86)\2k games\gearbox software\borderlands\binaries\borderlands.exe" = protocol=6 | dir=in | app=d:\program files (x86)\2k games\gearbox software\borderlands\binaries\borderlands.exe |"TCP Query User{D4C73A0E-6401-4796-BBD6-FD0CF4208790}D:\program files (x86)\counter strike go\counter-strike global offensive\csgo.exe" = protocol=6 | dir=in | app=d:\program files (x86)\counter strike go\counter-strike global offensive\csgo.exe |"TCP Query User{D4CF31AA-591D-47D4-86D0-A5662C479024}D:\programy\gadu-gadu\gg.exe" = protocol=6 | dir=in | app=d:\programy\gadu-gadu\gg.exe |"TCP Query User{DC8C30D9-A1A5-4450-AC0C-8F766B6CF4CE}D:\program files (x86)\ea sports\fifa 12\game\fifa.exe" = protocol=6 | dir=in | app=d:\program files (x86)\ea sports\fifa 12\game\fifa.exe |"TCP Query User{DF63DE23-425D-4F38-AC2E-5720EB2878C8}D:\program files (x86)\darkest hour\darkest hour\darkest hour.exe" = protocol=6 | dir=in | app=d:\program files (x86)\darkest hour\darkest hour\darkest hour.exe |"TCP Query User{E0F1ACB9-0773-4C71-BBB4-20E707A99DA8}D:\program files (x86)\firefly studios\stronghold legends\strongholdlegends.exe" = protocol=6 | dir=in | app=d:\program files (x86)\firefly studios\stronghold legends\strongholdlegends.exe |"TCP Query User{E7296D9E-E5D3-4758-BC8B-14C61E4C0DCF}D:\program files (x86)\sopcast\sopcast.exe" = protocol=6 | dir=in | app=d:\program files (x86)\sopcast\sopcast.exe |"TCP Query User{ECA60239-3458-456D-B024-CFB689394DCB}C:\windows\syswow64\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe |"TCP Query User{ED13FEE0-5477-4578-AF01-15BBF78EDABC}D:\program files (x86)\ea sports\fifa 11\game\fifa.exe" = protocol=6 | dir=in | app=d:\program files (x86)\ea sports\fifa 11\game\fifa.exe |"TCP Query User{F1681B2A-4A59-488E-8D3B-7BB1C2DBB798}D:\programy\bitlord\bitlord.exe" = protocol=6 | dir=in | app=d:\programy\bitlord\bitlord.exe |"TCP Query User{F9BE87C4-43B2-4730-9156-F605E69F8096}D:\program files (x86)\ubisoft\settlers iv - zlota edycja\exe\s4_main.exe" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\settlers iv - zlota edycja\exe\s4_main.exe |"TCP Query User{F9E6519A-E2B5-46C4-B86B-D86C83CF792F}D:\program files (x86)\ubisoft\funatics\the settlers ii - dziesięciolecie\bin\s2dng.exe" = protocol=6 | dir=in | app=d:\program files (x86)\ubisoft\funatics\the settlers ii - dziesięciolecie\bin\s2dng.exe |"TCP Query User{FC314287-CB69-4433-957B-D4855F71E338}D:\pen16gb\grid\race.driver.grid.multi-5.full-rip.skullptura\grid\grid.exe" = protocol=6 | dir=in | app=d:\pen16gb\grid\race.driver.grid.multi-5.full-rip.skullptura\grid\grid.exe |"TCP Query User{FF4F9B03-EA20-4E7D-936C-8BD80A81E37B}D:\programy\bitlord 1.2\bitlord files\bitlord.exe" = protocol=6 | dir=in | app=d:\programy\bitlord 1.2\bitlord files\bitlord.exe |"UDP Query User{00E890CB-61C5-471F-B49C-74C70FAC078A}D:\program files (x86)\ea sports\fifa 11\game\fifa.exe" = protocol=17 | dir=in | app=d:\program files (x86)\ea sports\fifa 11\game\fifa.exe |"UDP Query User{03180CF8-A5D1-486A-A9B9-3AECBDFC682E}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |"UDP Query User{08FF3390-F552-4FDF-AA14-14A1894C7AB8}D:\program files (x86)\mortal kombat complete edition\mkke.exe" = protocol=17 | dir=in | app=d:\program files (x86)\mortal kombat complete edition\mkke.exe |"UDP Query User{0A8FC1DA-487F-4BB0-ADE9-4DB8B037953D}D:\program files (x86)\ea sports\fifa 11\game\fifa.exe" = protocol=17 | dir=in | app=d:\program files (x86)\ea sports\fifa 11\game\fifa.exe |"UDP Query User{0D39D42A-A013-4E68-9591-01DCC6D5D301}D:\program files (x86)\diablo 2 lord of destruction\game.exe" = protocol=17 | dir=in | app=d:\program files (x86)\diablo 2 lord of destruction\game.exe |"UDP Query User{0FDCDACB-EB83-421A-A99F-55DF926424C3}D:\fifa 14\game\fifa14.exe" = protocol=17 | dir=in | app=d:\fifa 14\game\fifa14.exe |"UDP Query User{0FEEBA67-4454-4F6B-9B4B-07CBDE12F9F2}D:\pobrane\kknd(xtreme)\kknd(xtreme)\kknd xtreme.exe" = protocol=17 | dir=in | app=d:\pobrane\kknd(xtreme)\kknd(xtreme)\kknd xtreme.exe |"UDP Query User{15E08B79-D1BF-449B-907F-FB59E1F3BBD8}C:\program files (x86)\ea sports\fifa 11\game\fifa.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ea sports\fifa 11\game\fifa.exe |"UDP Query User{256E0B1F-69C5-4345-A143-C59948AB2FEA}D:\program files (x86)\sopcast\sopcast.exe" = protocol=17 | dir=in | app=d:\program files (x86)\sopcast\sopcast.exe |"UDP Query User{2A57FC43-5974-4BBD-8070-5AC2DC7B9445}D:\left 4 dead 2\left 4 dead 2 v2.0.2.7 full-rip {blaze69}\left 4 dead 2\left 4 dead 2\left4dead2.exe" = protocol=17 | dir=in | app=d:\left 4 dead 2\left 4 dead 2 v2.0.2.7 full-rip {blaze69}\left 4 dead 2\left 4 dead 2\left4dead2.exe |"UDP Query User{2AE0D87B-ED60-480E-961B-23023BAA80A4}D:\program files (x86)\darkest hour\darkest hour\darkest hour.exe" = protocol=17 | dir=in | app=d:\program files (x86)\darkest hour\darkest hour\darkest hour.exe |"UDP Query User{34066A55-F8BA-4EA5-92EB-F1137055339F}D:\small world\small world 2 v2.5.1.1375\small world 2 v2.5.1.1375\small world 2.exe" = protocol=17 | dir=in | app=d:\small world\small world 2 v2.5.1.1375\small world 2 v2.5.1.1375\small world 2.exe |"UDP Query User{37044090-A329-4549-9440-AEC6FD015016}D:\program files (x86)\enigma software productions\angels vs devils\angelsvsdevils.exe" = protocol=17 | dir=in | app=d:\program files (x86)\enigma software productions\angels vs devils\angelsvsdevils.exe |"UDP Query User{3D761A5D-B84C-496E-873A-B07C6372764F}D:\program files (x86)\sega\football manager 2012\fm.exe" = protocol=17 | dir=in | app=d:\program files (x86)\sega\football manager 2012\fm.exe |"UDP Query User{3D9F9BDA-C590-4ED0-9698-4E954CC3503B}C:\users\szymon wierucki\appdata\roaming\gameranger\gameranger\gameranger.exe" = protocol=17 | dir=in | app=c:\users\szymon wierucki\appdata\roaming\gameranger\gameranger\gameranger.exe |"UDP Query User{41F5BBEA-178B-414B-B8D8-DBAB03BBF48C}D:\program files (x86)\darkest hour\darkest hour\darkest hour.exe" = protocol=17 | dir=in | app=d:\program files (x86)\darkest hour\darkest hour\darkest hour.exe |"UDP Query User{4283E2F8-FD53-4425-AFCA-D396F6E348C3}D:\program files (x86)\counter strike go\counter-strike global offensive\csgo.exe" = protocol=17 | dir=in | app=d:\program files (x86)\counter strike go\counter-strike global offensive\csgo.exe |"UDP Query User{483D42AD-0A92-444E-99B4-950AFB7927D8}D:\soldat\soldat.exe" = protocol=17 | dir=in | app=d:\soldat\soldat.exe |"UDP Query User{4D2F0B6E-8A72-4C1F-B415-DF2C597D2101}D:\program files (x86)\ea games\battlefield 1942\bf1942_w32ded.exe" = protocol=17 | dir=in | app=d:\program files (x86)\ea games\battlefield 1942\bf1942_w32ded.exe |"UDP Query User{4EC903D0-7868-46F3-A452-BA0591E5F509}D:\program files (x86)\counter-strike source\hl2.exe" = protocol=17 | dir=in | app=d:\program files (x86)\counter-strike source\hl2.exe |"UDP Query User{4F2B04D1-6D99-4B91-8FC4-50DDF6F175B4}D:\program files (x86)\ubisoft\funatics\the settlers ii - dziesięciolecie\bin\s2dng.exe" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\funatics\the settlers ii - dziesięciolecie\bin\s2dng.exe |"UDP Query User{52033954-731A-49CF-A0EB-BAEAE847F180}D:\program files (x86)\enigma software productions\angels vs devils\angelsvsdevils.exe" = protocol=17 | dir=in | app=d:\program files (x86)\enigma software productions\angels vs devils\angelsvsdevils.exe |"UDP Query User{5376B148-63D6-445A-9DD7-8DCA692D0702}D:\programy\bitlord\bitlord.exe" = protocol=17 | dir=in | app=d:\programy\bitlord\bitlord.exe |"UDP Query User{56965D76-DD41-4A5F-8556-7CC45AC3F395}D:\programy\gadu-gadu\gg.exe" = protocol=17 | dir=in | app=d:\programy\gadu-gadu\gg.exe |"UDP Query User{5891EDAA-213D-49FB-8DB8-BBAE5223912F}C:\windows\syswow64\dpnsvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dpnsvr.exe |"UDP Query User{60EBE75B-CFAB-4735-B37F-2A9F7CFE9EB7}D:\program files (x86)\coh2\company of heroes 2\reliccoh2.exe" = protocol=17 | dir=in | app=d:\program files (x86)\coh2\company of heroes 2\reliccoh2.exe |"UDP Query User{694C97AC-5211-4974-A67A-059C88F96999}D:\program files (x86)\counter-strike source\hl2.exe" = protocol=17 | dir=in | app=d:\program files (x86)\counter-strike source\hl2.exe |"UDP Query User{6F55B9C5-CCA4-406C-B25D-96B58F105352}D:\program files (x86)\ubisoft\related designs\anno 1404\tools\anno4web.exe" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\related designs\anno 1404\tools\anno4web.exe |"UDP Query User{711B0AC6-62FE-4D21-8633-D0530B4E027A}D:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes33.exe" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes33.exe |"UDP Query User{71D20C3D-D761-4F14-A57A-2BACD6CD4D17}D:\pobrane\age of empires full pl\age of empires\empires.exe" = protocol=17 | dir=in | app=d:\pobrane\age of empires full pl\age of empires\empires.exe |"UDP Query User{732AD5D3-F655-4A0F-828B-A36B1BDB1BD3}D:\programy\asus\pu.exe" = protocol=17 | dir=in | app=d:\programy\asus\pu.exe |"UDP Query User{73518D67-7DD3-47F2-AFF9-BFAFE3AB08B7}D:\program files (x86)\black isle studios\icewind dale serce zimy\idmain.exe" = protocol=17 | dir=in | app=d:\program files (x86)\black isle studios\icewind dale serce zimy\idmain.exe |"UDP Query User{74EF9D20-39DA-43A4-B12E-326A21696364}D:\program files (x86)\fifa 12\game\fifa.exe" = protocol=17 | dir=in | app=d:\program files (x86)\fifa 12\game\fifa.exe |"UDP Query User{7655B611-6EF4-49B4-BAB0-0F36BE9AA421}C:\windows\syswow64\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe |"UDP Query User{7E1FCD32-6652-4C3F-92E0-42757F13C937}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe |"UDP Query User{86D524A8-3D06-4FE2-86E1-95CD9A9F8DAF}D:\pobrane\lierox_v0.56_pack_1.9en\lierox v0.56 pack 1.9\lierox.exe" = protocol=17 | dir=in | app=d:\pobrane\lierox_v0.56_pack_1.9en\lierox v0.56 pack 1.9\lierox.exe |"UDP Query User{8728277C-7CA5-4349-B8CA-E5EF2244CF57}D:\program files (x86)\ubisoft\blue byte\the settlers - dziedzictwo królów\bin\settlershok.exe" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\blue byte\the settlers - dziedzictwo królów\bin\settlershok.exe |"UDP Query User{8DF7F685-A1F9-47DF-BB6E-32A92989890B}D:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes3.exe" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes3.exe |"UDP Query User{93EBEC2D-4958-4AC5-8D05-3DF7A2FE8EDC}D:\soldat\soldat.exe" = protocol=17 | dir=in | app=d:\soldat\soldat.exe |"UDP Query User{99424CDC-804D-43D7-92F9-106D45CF632B}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |"UDP Query User{9BD43838-5057-4C88-8CD2-42511CEFEFC3}D:\program files (x86)\sopcast\sopcast.exe" = protocol=17 | dir=in | app=d:\program files (x86)\sopcast\sopcast.exe |"UDP Query User{9BFFFBD9-7728-432F-97CC-659FFC1A29F0}D:\programy\bitlord\bitlord.exe" = protocol=17 | dir=in | app=d:\programy\bitlord\bitlord.exe |"UDP Query User{9E6F994C-0DEB-4891-82FB-955CF6D1FF4D}D:\fifa 14\game\fifa14.exe" = protocol=17 | dir=in | app=d:\fifa 14\game\fifa14.exe |"UDP Query User{B0D65516-8CC5-4009-9F84-B61041AA3C73}D:\program files (x86)\total war rome ii\rome2.exe" = protocol=17 | dir=in | app=d:\program files (x86)\total war rome ii\rome2.exe |"UDP Query User{B868A5D1-CC81-45FC-90CC-A0E86DB288D2}D:\program files (x86)\firefly studios\stronghold legends\strongholdlegends.exe" = protocol=17 | dir=in | app=d:\program files (x86)\firefly studios\stronghold legends\strongholdlegends.exe |"UDP Query User{B93DBE8D-B8A8-470F-AB3B-4B2C6029B8EB}C:\program files (x86)\bitlord\bitlord.exe" = protocol=17 | dir=in | app=c:\program files (x86)\bitlord\bitlord.exe |"UDP Query User{BEFEC1FB-3A61-4042-A060-E38832B0D873}D:\program files (x86)\2k games\gearbox software\borderlands\binaries\borderlands.exe" = protocol=17 | dir=in | app=d:\program files (x86)\2k games\gearbox software\borderlands\binaries\borderlands.exe |"UDP Query User{C5EBBBAD-4915-4A8A-81C7-33873F76E17A}C:\program files\andy\andy.exe" = protocol=17 | dir=in | app=c:\program files\andy\andy.exe |"UDP Query User{C781B3B2-629D-4FFA-B4D2-0183CE781010}C:\program files (x86)\prototype 2\prototype2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\prototype 2\prototype2.exe |"UDP Query User{CC8C4EDC-FC84-4E53-A5CB-FD2B8ACE8AD9}D:\program files (x86)\ea sports\fifa 12\game\fifa.exe" = protocol=17 | dir=in | app=d:\program files (x86)\ea sports\fifa 12\game\fifa.exe |"UDP Query User{D09B0A01-9FAB-480A-A7EC-4893229FA553}D:\program files (x86)\ubisoft\settlers iv - zlota edycja\exe\s4_main.exe" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\settlers iv - zlota edycja\exe\s4_main.exe |"UDP Query User{D0AF96EC-8150-4C21-85CF-FA12201E8BDC}D:\program files (x86)\ubisoft\blue byte\the settlers - dziedzictwo królów\bin\settlershok.exe" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\blue byte\the settlers - dziedzictwo królów\bin\settlershok.exe |"UDP Query User{D0B69A1C-365E-4CE9-A672-9F5C93470167}D:\pobrane\age of empires full pl\age of empires\empires.exe" = protocol=17 | dir=in | app=d:\pobrane\age of empires full pl\age of empires\empires.exe |"UDP Query User{D2BB7B7A-FC63-46D5-8C1F-3B702A36DCC7}D:\pobrane\gta 1\gta\gtawin\gtawin.exe" = protocol=17 | dir=in | app=d:\pobrane\gta 1\gta\gtawin\gtawin.exe |"UDP Query User{D80F6CEA-3873-4B21-8D53-C96CF842B123}D:\ao2\age of empire-ii+ expansion [direct play]\age2_x1.exe" = protocol=17 | dir=in | app=d:\ao2\age of empire-ii+ expansion [direct play]\age2_x1.exe |"UDP Query User{D83941CA-2A5F-455A-9F4B-2341E486E53B}D:\program files (x86)\ubisoft\funatics\the settlers ii - dziesięciolecie\bin\s2dng.exe" = protocol=17 | dir=in | app=d:\program files (x86)\ubisoft\funatics\the settlers ii - dziesięciolecie\bin\s2dng.exe |"UDP Query User{D89E9629-4C46-4700-BBD2-D07582866D8D}D:\unrealtournament\system\unrealtournament.exe" = protocol=17 | dir=in | app=d:\unrealtournament\system\unrealtournament.exe |"UDP Query User{DA038F95-BF9D-4D27-90B8-8FA3CC73172A}D:\pen16gb\grid\race.driver.grid.multi-5.full-rip.skullptura\grid\grid.exe" = protocol=17 | dir=in | app=d:\pen16gb\grid\race.driver.grid.multi-5.full-rip.skullptura\grid\grid.exe |"UDP Query User{DB6C805F-3527-4488-9E97-948E9CFB2157}D:\program files (x86)\ea sports\fifa 12\game\fifa.exe" = protocol=17 | dir=in | app=d:\program files (x86)\ea sports\fifa 12\game\fifa.exe |"UDP Query User{E8F78DFB-CF16-4D24-B87D-B092F780C7FD}D:\ao2\age of empire-ii+ expansion [direct play]\age2_x1.exe" = protocol=17 | dir=in | app=d:\ao2\age of empire-ii+ expansion [direct play]\age2_x1.exe |"UDP Query User{ECADD1E4-910E-4BC2-A039-965D0B51ACD4}D:\programy\bitlord 1.2\bitlord files\bitlord.exe" = protocol=17 | dir=in | app=d:\programy\bitlord 1.2\bitlord files\bitlord.exe |"UDP Query User{EE29C411-1BAC-4050-BA4C-6B3BE00877B2}D:\programy\gadu-gadu\gg.exe" = protocol=17 | dir=in | app=d:\programy\gadu-gadu\gg.exe |"UDP Query User{F906A3F4-12F1-4F4A-A39D-6DEE37B50AC1}D:\small world\small world 2 v2.5.1.1375\small world 2 v2.5.1.1375\sw2executable.exe" = protocol=17 | dir=in | app=d:\small world\small world 2 v2.5.1.1375\small world 2 v2.5.1.1375\sw2executable.exe | ========== HKEY_LOCAL_MACHINE Uninstall List ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended"{8E5DA9A6-7A9F-3A6F-BC5C-D6CBCA6A29C7}" = Microsoft .NET Framework 4 Extended PLK Language Pack"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007"{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007"{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005"{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant"{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack"{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 332.21"{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 332.21"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 332.21"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 1.8.1"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 332.21"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.13.0725"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 10.11.15"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamC" = GeForce Experience NvStream Client Components"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 10.11.15"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.19"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile"BurnInTest_is1" = BurnInTest v7.0 Pro"CCleaner" = CCleaner"C-Media Oxygen HD Audio Driver" = ASUS Xonar DG Audio Driver"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile"Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended"Microsoft .NET Framework 4 Extended PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended"WinRAR archiver" = WinRAR archiver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]"{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator"{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR"{050d4fc8-5d48-4b8f-8972-47c82c46020f}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501"{0696cc37-db90-4000-be99-4a173ca7c8af}" = Avira"{09CF6AF5-9206-4FD7-9B08-BA6819FB47E3}" = Anno 1404"{09D5819F-0F1A-4480-A112-B5CCA58D9773}_is1" = Darkest Hour"{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005"{174D5678-D941-433C-BD23-58A5C7B0D36D}" = Jasc Animation Shop 3"{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148"{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform"{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 25"{2A9F95AB-65A3-432c-8631-B8BC5BF7477A}" = Bitwa o Śródziemie™ II"{2C8B0579-46E6-4088-8E57-44833265798F}" = THE HOUSE OF THE DEAD 2"{319D91C6-3D44-436C-9F79-36C0D22372DC}" = TP-LINK Wireless Configuration Utility"{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030"{3D9CF3CA-3AB0-4A82-9853-D7C43FD1D775}" = ANNO 1404"{3DD2E9EA-0544-4162-B8BE-E21E994E9F3B}" = LEGO Racers 2"{3FEA6CD1-EA13-4CE7-A74E-A74A4A0A7B5C}" = FIFA 12 DEMO"{41564952-412D-5637-00A7-A758B70C0202}" = Avira SearchFree Toolbar plus Web Protection"{43430FA5-AF68-4A2D-A7D4-891000008200}" = Street Fighter X Tekken"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace"{53450FA2-E900-456E-9715-501000008200}" = Virtua Tennis 4™"{584204D4-9FF9-42FD-B3F7-51A9302947BB}" = Angels vs Devils"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper"{65EBED55-4B58-4583-88EC-8190D776BFBB}" = Avira"{66A405D2-BA14-4594-BF36-B3B544F0754E}" = Stronghold Legends"{69464949-AD9C-4C98-933F-C32FFC86F3C8}" = Doomsday"{6A0D1689-6F8D-427C-8BC8-A7D0EE5B8DD6}" = Sid Meier's Civilization IV Complete"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable"{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com"{78DE744B-C72F-419E-BBA9-8B5046F00695}" = ASUS Wireless Router RT-N11 Utilities"{7B5AA67E-FEA0-40BB-BAB5-CA56645A589C}" = NVIDIA PhysX"{7F3AD00A-1819-4B15-BB7D-08B3586336D7}" = 3DMark06"{804EC265-0837-4694-8324-7D385A08319F}" = Hearts of Iron III"{80EE9168-BB59-4F87-BF1A-57C137EAF714}" = LogMeIn Hamachi"{86A7EED0-02D0-4D91-8183-8D2F23F5E6AE}" = TP-LINK TL-WN721N_TL-WN722N Driver"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver For Windows Vista and Later"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher"{8AF5EA22-17DC-46E0-ABA3-F30A7D288DD0}" = The Settlers - Dziedzictwo Królów"{8B743AA0-53B2-11D2-808A-00600895FB43}" = Heroes of Might and Magic III - Złota Edycja"{8F9AC744-EEF6-43DB-A4B6-FA1A18F1C640}" = EA SPORTS FIFA World"{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007"{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007"{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007"{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007"{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007"{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007"{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007"{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007"{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007"{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007"{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007"{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007"{9370105C-71BB-4FF9-A85B-36D79B95457A}_is1" = ALLConverter PRO 1.3"{94B4E2D8-A184-415C-BF9E-F699D76466BD}" = Heroes of Might and Magic IV - Złota Edycja"{99759E36-8961-43DC-A7E6-4601D6AEF166}" = Windows Phone app for desktop"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17"{9B63540D-D942-4C38-B42E-A48AE0145970}" = Virtua Tennis 3"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161"{A2422674-F3A7-46F2-8966-EC6B1FBD6EB3}" = Settlers IV - Złota Edycja"{A29E18C2-7AB1-4b6b-848C-5D5E2C85F0C0}" = FIFA 13"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable"{A642BB6B-CA1D-4142-8DD4-318C3F3DC834}" = Rome - Total War"{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI"{B175520C-86A2-35A7-8619-86DC379688B9}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030"{B418F434-15CD-4B68-A022-CFE0DB92A6F9}" = THE HOUSE OF THE DEAD 3"{B931FB80-537A-4600-00AD-AC5DEDB6C25B}" = Król Nazguli™"{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030"{BEAD39CD-901D-4267-8B8B-EAA83CB4B70D}" = Pivot Stickfigure Animator"{BEE64C14-BEF1-4610-8A68-A16EAA47B882}" = Futuremark SystemInfo"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3"{C0698BDA-0D29-40EE-8570-A31106DF9AB1}" = Medieval II Total War"{D6D1DA54-531F-4FA0-B683-CE66ACE3543F}_is1" = Galaxy Client"{DF315348-721C-40B8-BAE2-58C6C7D935A2}" = Empire Earth II"{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Windows Media Encoder 9 Series"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime"{F01B7EF4-F487-4948-AA18-5332FE5495C9}" = Medieval - Total War - Złota Edycja"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219"{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable"{F4428A9F-5FB4-44BB-941F-4C66DF7C7A26}" = Icewind Dale + Serce Zimy"{f65db027-aff3-4070-886a-0d87064aabb1}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501"{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005"{FEFAF112-4DA8-479C-89E2-7DE25091711A}" = Call of Juarez - Bound in Blood"{FF35F637-72B9-43BE-A281-06EB2854393A}" = 3DMark03"1207666883_is1" = The Witcher Adventure Game"Adobe AIR" = Adobe AIR"Adobe Flash Player ActiveX" = Adobe Flash Player 17 ActiveX"Adobe Flash Player NPAPI" = Adobe Flash Player 18 NPAPI"AIDA64 Extreme Edition_is1" = AIDA64 Extreme Edition v1.60"Andy OS" = Andy OS"ASRock OC Tuner_is1" = ASRock OC Tuner v2.3.31"Audacity_is1" = Audacity 2.0"Avidemux 2.5 (64-bit)" = Avidemux 2.5"Avira Antivirus" = Avira Antivirus"Bridge Construction Set_is1" = Bridge Construction Set 1.31"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com"Counter-Strike Source_is1" = Counter-Strike Source"DAEMON Tools Lite" = DAEMON Tools Lite"Diablo 2 Lord of Destruction" = Diablo 2 Lord of Destruction"ENTERPRISE" = Microsoft Office Enterprise 2007"FIFA 12 © EA_is1" = FIFA 12 © EA version 1"FL Studio 10" = FL Studio 10"GFWL_{53450FA2-E900-456E-9715-501000008200}" = Virtua Tennis 4™"GOM Player" = GOM Player"Google Chrome" = Google Chrome"HD Tune_is1" = HD Tune 2.55"Hearts of Iron 2 Doomsday_is1" = Hearts of Iron 2 Doomsday Armageddon"InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Platforma Menedżera urządzeń"InstallShield_{A642BB6B-CA1D-4142-8DD4-318C3F3DC834}" = Rome - Total War"InstallShield_{F01B7EF4-F487-4948-AA18-5332FE5495C9}" = Medieval - Total War - Złota Edycja"InstallShield_{FEFAF112-4DA8-479C-89E2-7DE25091711A}" = Call of Juarez - Bound in Blood"KLiteCodecPack_is1" = K-Lite Codec Pack 9.4.0 (Full)"Liquid_War_5" = Liquid War 5.6.4"LogMeIn Hamachi" = LogMeIn Hamachi"Magicka Collection_is1" = Magicka Collection"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 2.1.6.1022"Minecraft1.8.3" = Minecraft1.8.3"Mozilla Firefox 38.0.5 (x86 pl)" = Mozilla Firefox 38.0.5 (x86 pl)"MozillaMaintenanceService" = Mozilla Maintenance Service"Niezbędnik CD_is1" = Niezbędnik CD"NVIDIA StereoUSB Driver" = NVIDIA 3D Vision Controller Driver"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver"OpenAL" = OpenAL"Origin" = Origin"RealAlt_is1" = Real Alternative 2.0.2"S2TNG" = The Settlers II - Dziesięciolecie"Soldat_is1" = Soldat 1.6.8"Sonic & All-Stars Racing Transformed_R.G. Mechanics_is1" = Sonic & All-Stars Racing Transformed"SopCast" = SopCast 3.8.3"Steam" = Steam"Steam App 235620" = Small World 2"Totalcmd" = Total Commander (Remove or Repair)"U2lkTWVpZXJzQ2l2aWxpemF0aW9uVg==_is1" = Sid Meier's Civilization V Brave New World"uTorrent" = µTorrent"VG90YWxXYXJST01FSUk=_is1" = Total War: ROME II Emperor Edition"Windows Media Encoder 9" = Windows Media Encoder 9 Series"WW I Battlefields" = WW I Battlefields ========== HKEY_USERS Uninstall List ========== [HKEY_USERS\S-1-5-21-2853644854-2588563599-1770095033-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]"FP T-Mobile Ekstraklasa Patch" = FP T-Mobile Ekstraklasa Patch"GameRanger" = GameRanger ========== Last 20 Event Log Errors ========== [ Application Events ]Error - 2015-06-18 19:24:53 | Computer Name = Wierucki | Source = NvStreamSvc | ID = 131073Description = Error - 2015-06-19 09:55:32 | Computer Name = Wierucki | Source = NvStreamSvc | ID = 131073Description = Error - 2015-06-19 09:55:32 | Computer Name = Wierucki | Source = NvStreamSvc | ID = 131073Description = Error - 2015-06-19 14:40:37 | Computer Name = Wierucki | Source = NvStreamSvc | ID = 131073Description = Error - 2015-06-19 14:40:37 | Computer Name = Wierucki | Source = NvStreamSvc | ID = 131073Description = Error - 2015-06-19 15:26:50 | Computer Name = Wierucki | Source = NvStreamSvc | ID = 131073Description = Error - 2015-06-19 15:26:50 | Computer Name = Wierucki | Source = NvStreamSvc | ID = 131073Description = [ OSession Events ]Error - 2011-12-06 15:47:02 | Computer Name = Wierucki | Source = Microsoft Office 12 Sessions | ID = 7001Description = ID: 3, Application Name: Microsoft Office PowerPoint, ApplicationVersion: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This sessionlasted 1094 seconds with 600 seconds of active time. This session ended with acrash. Error - 2014-04-28 11:42:42 | Computer Name = Wierucki | Source = Microsoft Office 12 Sessions | ID = 7001Description = ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 13 seconds with 0 seconds of active time. This session ended with a crash. [ System Events ]Error - 2015-06-18 16:00:53 | Computer Name = Wierucki | Source = Disk | ID = 262155Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1. Error - 2015-06-18 16:00:53 | Computer Name = Wierucki | Source = Disk | ID = 262155Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1. Error - 2015-06-18 17:39:42 | Computer Name = Wierucki | Source = Service Control Manager | ID = 7000Description = Nie można uruchomić usługi NMSAccessU z powodu następującego błędu: %%2 Error - 2015-06-18 19:24:26 | Computer Name = Wierucki | Source = Service Control Manager | ID = 7000Description = Nie można uruchomić usługi NMSAccessU z powodu następującego błędu: %%2 Error - 2015-06-19 09:55:09 | Computer Name = Wierucki | Source = Service Control Manager | ID = 7000Description = Nie można uruchomić usługi NMSAccessU z powodu następującego błędu: %%2 Error - 2015-06-19 14:40:14 | Computer Name = Wierucki | Source = Service Control Manager | ID = 7000Description = Nie można uruchomić usługi NMSAccessU z powodu następującego błędu: %%2 Error - 2015-06-19 15:26:28 | Computer Name = Wierucki | Source = Service Control Manager | ID = 7000Description = Nie można uruchomić usługi NMSAccessU z powodu następującego błędu: %%2 Error - 2015-06-19 15:30:12 | Computer Name = Wierucki | Source = Disk | ID = 262155Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1. Error - 2015-06-19 15:30:13 | Computer Name = Wierucki | Source = Disk | ID = 262155Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1. Error - 2015-06-19 15:30:14 | Computer Name = Wierucki | Source = Disk | ID = 262155Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1. < End of report >[/log] Cytuj Link to post Share on other sites
Recommended Posts
Dołącz do dyskusji
Możesz dodać zawartość już teraz a zarejestrować się później. Jeśli posiadasz już konto, zaloguj się aby dodać zawartość za jego pomocą.