1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
22.
23.
24.
25.
26.
27.
28.
29.
30.
31.
32.
33.
34.
35.
36.
37.
38.
39.
40.
41.
42.
43.
44.
45.
46.
47.
48.
49.
50.
51.
52.
53.
54.
55.
56.
57.
58.
59.
60.
61.
62.
63.
64.
65.
66.
67.
68.
69.
70.
71.
72.
73.
74.
75.
76.
77.
78.
79.
80.
81.
82.
83.
84.
85.
86.
87.
88.
89.
90.
91.
92.
93.
94.
95.
96.
97.
98.
99.
100.
101.
102.
103.
104.
105.
106.
107.
108.
109.
110.
111.
112.
113.
114.
115.
116.
117.
118.
119.
120.
121.
122.
123.
124.
125.
126.
127.
128.
129.
130.
131.
132.
133.
134.
135.
136.
137.
138.
139.
140.
141.
142.
143.
144.
145.
146.
147.
148.
149.
150.
151.
152.
153.
154.
155.
156.
157.
158.
159.
160.
161.
162.
163.
164.
165.
166.
167.
168.
169.
170.
171.
172.
173.
174.
175.
176.
177.
178.
179.
180.
181.
182.
183.
184.
185.
186.
187.
188.
189.
190.
191.
192.
193.
194.
195.
196.
197.
198.
199.
200.
201.
202.
203.
204.
205.
206.
207.
208.
209.
210.
211.
212.
213.
214.
215.
216.
217.
218.
219.
220.
221.
222.
223.
224.
225.
226.
227.
228.
229.
230.
231.
232.
233.
234.
235.
236.
237.
238.
239.
240.
241.
242.
243.
244.
245.
246.
247.
248.
249.
250.
251.
252.
253.
254.
255.
256.
257.
258.
259.
260.
261.
262.
263.
264.
265.
266.
267.
268.
269.
270.
271.
272.
273.
274.
275.
276.
277.
278.
279.
280.
281.
282.
283.
284.
285.
286.
287.
288.
289.
290.
291.
292.
293.
294.
295.
296.
297.
298.
299.
300.
301.
302.
303.
304.
305.
306.
307.
308.
309.
310.
311.
312.
313.
314.
315.
316.
317.
318.
319.
320.
321.
322.
323.
324.
325.
326.
327.
328.
329.
330.
331.
332.
333.
334.
335.
336.
337.
338.
339.
340.
341.
342.
343.
344.
345.
346.
347.
348.
349.
350.
351.
352.
353.
354.
355.
356.
357.
358.
359.
360.
361.
362.
363.
364.
365.
366.
367.
368.
369.
370.
371.
372.
373.
374.
375.
376.
377.
378.
379.
380.
381.
382.
383.
384.
385.
386.
387.
388.
389.
390.
391.
392.
393.
394.
395.
396.
397.
398.
399.
400.
401.
402.
403.
404.
405.
406.
407.
408.
409.
410.
411.
412.
413.
414.
415.
416.
417.
418.
419.
420.
421.
422.
423.
424.
425.
426.
427.
428.
429.
430.
431.
432.
433.
434.
435.
436.
437.
438.
439.
440. | OTL Extras logfile created on: 2010-09-05 20:49:48 - Run 1
OTL by OldTimer - Version 3.2.11.0 Folder = C:\\Users\\sowa\\Downloads
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18943)
Locale: 00000415 | Country: Polen | Language: PLK | Date Format: yyyy-MM-dd
3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 54,00% Memory free
6,00 Gb Paging File | 5,00 Gb Available in Paging File | 79,00% Paging File free
Paging file location(s): ?:\\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\\Windows | %ProgramFiles% = C:\\Program Files
Drive C: | 144,09 Gb Total Space | 13,15 Gb Free Space | 9,13% Space Free | Partition Type: NTFS
Drive D: | 144,00 Gb Total Space | 18,48 Gb Free Space | 12,83% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
Drive H: | 298,09 Gb Total Space | 7,72 Gb Free Space | 2,59% Space Free | Partition Type: NTFS
I: Drive not present or media not loaded
Computer Name: SOWA-PC
Current User Name: sowa
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
[color=#E56717]========== Extra Registry (SafeList) ==========[/color]
[color=#E56717]========== File Associations ==========[/color]
[HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\<extension>]
.hlp [@ = hlpfile] -- C:\\Windows\\winhlp32.exe (Microsoft Corporation)
[HKEY_USERS\\S-1-5-21-3955316444-2243232555-2832667671-1003\\SOFTWARE\\Classes\\<extension>]
.html [@ = FirefoxHTML] -- C:\\Program Files\\Mozilla Firefox\\firefox.exe (Mozilla Corporation)
[color=#E56717]========== Shell Spawning ==========[/color]
[HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\<key>\\shell\\[command]\\command]
batfile [open] -- \"%1\" %*
cmdfile [open] -- \"%1\" %*
comfile [open] -- \"%1\" %*
exefile [open] -- \"%1\" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- \"C:\\Program Files\\Microsoft Office\\Office12\\msohtmed.exe\" %1 (Microsoft Corporation)
piffile [open] -- \"%1\" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- \"%1\"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- \"%1\" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\\system32\\rundll32.exe %SystemRoot%\\system32\\shell32.dll,OpenAs_RunDLL %1
Directory [Browse with &IrfanView] -- \"C:\\Program Files\\IrfanView\\i_view32.exe\" \"%1 /thumbs\" (Irfan Skiljan)
Directory [cmd] -- cmd.exe /s /k pushd \"%V\" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- C:\\PROGRA~1\\MICROS~2\\Office12\\ONENOTE.EXE \"%L\" (Microsoft Corporation)
Folder [open] -- %SystemRoot%\\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\\Explorer.exe (Microsoft Corporation)
[color=#E56717]========== Security Center Settings ==========[/color]
[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Security Center]
\"cval\" = 1
\"FirewallDisableNotify\" = 0
\"AntiVirusDisableNotify\" = 0
\"UpdatesDisableNotify\" = 0
[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Security Center\\Monitoring]
[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Security Center\\Monitoring\\McAfeeAntiSpyware]
\"DisableMonitoring\" = 1
[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Security Center\\Svc]
\"AntiVirusOverride\" = 0
\"AntiSpywareOverride\" = 0
\"FirewallOverride\" = 0
\"VistaSp1\" = Reg Error: Unknown registry data type -- File not found
\"VistaSp2\" = Reg Error: Unknown registry data type -- File not found
[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Security Center\\Svc\\S-1-5-21-3955316444-2243232555-2832667671-1003]
\"EnableNotifications\" = 0
\"EnableNotificationsRef\" = 2
[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Security Center\\Svc\\Vol]
[HKEY_LOCAL_MACHINE\\SYSTEM\\CurrentControlSet\\Services\\SharedAccess\\Parameters\\FirewallPolicy\\DomainProfile]
\"EnableFirewall\" = 1
\"DisableNotifications\" = 0
[HKEY_LOCAL_MACHINE\\SYSTEM\\CurrentControlSet\\Services\\SharedAccess\\Parameters\\FirewallPolicy\\StandardProfile]
\"EnableFirewall\" = 1
\"DisableNotifications\" = 0
[HKEY_LOCAL_MACHINE\\SYSTEM\\CurrentControlSet\\Services\\SharedAccess\\Parameters\\FirewallPolicy\\StandardProfile\\GloballyOpenPorts\\List]
[HKEY_LOCAL_MACHINE\\SYSTEM\\CurrentControlSet\\Services\\SharedAccess\\Parameters\\FirewallPolicy\\PublicProfile]
\"EnableFirewall\" = 0
\"DisableNotifications\" = 0
[color=#E56717]========== Authorized Applications List ==========[/color]
[HKEY_LOCAL_MACHINE\\SYSTEM\\CurrentControlSet\\Services\\SharedAccess\\Parameters\\FirewallPolicy\\DomainProfile\\AuthorizedApplications\\List]
[HKEY_LOCAL_MACHINE\\SYSTEM\\CurrentControlSet\\Services\\SharedAccess\\Parameters\\FirewallPolicy\\StandardProfile\\AuthorizedApplications\\List]
\"C:\\Program Files\\FlashGet Network\\FlashGet universal\\FlashGet.exe\" = C:\\Program Files\\FlashGet Network\\FlashGet universal\\FlashGet.exe:*:Enabled:Flashget2 -- File not found
\"C:\\Program Files\\FlashGet Network\\FlashGet universal\\LiveUpdate.exe\" = C:\\Program Files\\FlashGet Network\\FlashGet universal\\LiveUpdate.exe:*:Enabled:FGLiveUpdate -- File not found
\"C:\\Program Files\\FlashGet Network\\FlashGet universal\\LiveUpdateEx.exe\" = C:\\Program Files\\FlashGet Network\\FlashGet universal\\LiveUpdateEx.exe:*:Enabled:FGLiveUpdateEx -- File not found
\"C:\\Program Files\\uusee\\UUSeePlayer.exe\" = C:\\Program Files\\uusee\\UUSeePlayer.exe:*:Enabled:UUPlayer -- File not found
[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]
[HKEY_LOCAL_MACHINE\\SYSTEM\\CurrentControlSet\\Services\\SharedAccess\\Parameters\\FirewallPolicy\\FirewallRules]
\"{0D8A82E3-FB25-467E-B5A7-30BE3D0DC581}\" = lport=138 | protocol=17 | dir=in | app=system |
\"{2AEBC13B-B529-499C-8CD5-62DEF9E00F64}\" = lport=51000 | protocol=6 | dir=in | name=adobe version cue cs4 server |
\"{2C661C94-A73C-4682-93F7-E6C0F9A26A1B}\" = rport=138 | protocol=17 | dir=out | app=system |
\"{32DDD508-5184-4D9A-9121-D4E6C8228179}\" = rport=137 | protocol=17 | dir=out | app=system |
\"{37D3F986-8696-427E-8880-3A878BCC37E6}\" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\\system32\\svchost.exe |
\"{388E848F-E686-4135-886D-622B6188D726}\" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\\system32\\svchost.exe |
\"{540865DD-5E7C-4DB5-860C-66DF215F9BFB}\" = lport=3704 | protocol=6 | dir=in | name=adobe version cue cs4 server |
\"{584342B5-BC81-409A-B236-17278483CD02}\" = rport=139 | protocol=6 | dir=out | app=system |
\"{647F7F22-CDEF-4695-8462-08818E104312}\" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\\system32\\svchost.exe |
\"{67EA023E-90C8-4780-A771-B37F3AEB4831}\" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\\system32\\svchost.exe |
\"{6AA17008-BEE4-46B5-AF46-BDFA1674261F}\" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\\system32\\svchost.exe |
\"{6B38E048-A2B2-4BA4-AE21-77350990E1E4}\" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\\system32\\svchost.exe |
\"{760D2E1F-41AE-4A47-95B7-D521F4A26C34}\" = lport=3703 | protocol=6 | dir=in | name=adobe version cue cs4 server |
\"{79538792-4597-4748-90D8-67BB24AD3F7E}\" = lport=51001 | protocol=6 | dir=in | name=adobe version cue cs4 server |
\"{9E449C4C-D900-4D80-AEE7-399DB4A5E5F1}\" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\\system32\\svchost.exe |
\"{A75C3297-EC91-4445-BDAC-B0500CEF650E}\" = lport=137 | protocol=17 | dir=in | app=system |
\"{AA31B417-EE46-4EFF-8885-12524BD02158}\" = lport=139 | protocol=6 | dir=in | app=system |
\"{B39ACDB1-ADDB-4F15-89B9-FFED49724970}\" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\\system32\\svchost.exe |
\"{BB14E245-C412-47CF-9BA4-84D6548D2987}\" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\\system32\\svchost.exe |
\"{BFE6E529-99AB-4B61-A3E3-DC94A6F21B5F}\" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\\system32\\svchost.exe |
\"{C72611AF-2000-49D5-B768-91B00989F67D}\" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\\system32\\spoolsv.exe |
\"{CF6ED847-00CC-4400-AB0C-612CB6E69248}\" = rport=2869 | protocol=6 | dir=out | app=system |
\"{D8AC4681-D0AD-47B1-8D2F-A2C27617607C}\" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
\"{DCAB2756-7503-4795-A1B6-FF834279B9B5}\" = lport=445 | protocol=6 | dir=in | app=system |
\"{DDDBF8D9-FF40-43AD-B807-3A681E9EF62E}\" = lport=5353 | protocol=6 | dir=in | name=adobe csi cs4 |
\"{F0B6E0B4-ACB7-40B3-AE89-D1C96F9C2F1D}\" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\\system32\\svchost.exe |
\"{F40EB487-BC14-43AB-84BA-E8ADF8011404}\" = rport=445 | protocol=6 | dir=out | app=system |
\"{FC6B79BC-871B-418C-B665-CB9D5DF6E980}\" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\\system32\\svchost.exe |
\"{FD2FA00B-4233-4B97-A9C0-5F6C18FF81CE}\" = lport=2869 | protocol=6 | dir=in | app=system |
\"{FE32E43C-AECE-4832-9E54-58D2B6D2F166}\" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\\system32\\svchost.exe |
\"{FF2DA2AB-9E72-4F49-8D87-3E616B238D0C}\" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\\system32\\svchost.exe |
[color=#E56717]========== Vista Active Application Exception List ==========[/color]
[HKEY_LOCAL_MACHINE\\SYSTEM\\CurrentControlSet\\Services\\SharedAccess\\Parameters\\FirewallPolicy\\FirewallRules]
\"{07466D71-3EDA-4A8D-9D90-4AF9F4673A67}\" = protocol=6 | dir=in | app=c:\\program files\\electronic arts\\burnout(tm) paradise the ultimate box\\burnoutconfigtool.exe |
\"{0C00BB2F-2573-40D5-9E5B-FECC49D9D411}\" = protocol=6 | dir=in | app=c:\\program files\\rockstar games\\rockstar games social club\\rgsclauncher.exe |
\"{0FB43255-EF0F-4E92-ADC7-8EDF137935A1}\" = dir=out | svc=sharedaccess | app=%systemroot%\\system32\\svchost.exe |
\"{1B2A07DD-44C4-4456-8D92-916EC42A0A0A}\" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 |
\"{21A20494-4F9A-482C-975C-368A877743E1}\" = protocol=17 | dir=in | app=c:\\program files\\microsoft office\\office12\\onenote.exe |
\"{2CACA8F1-E1CD-4D5C-8C59-A7FA9CBCDA2C}\" = protocol=17 | dir=in | app=c:\\program files\\electronic arts\\burnout(tm) paradise the ultimate box\\burnoutconfigtool.exe |
\"{35840F05-D87F-4E77-97FE-A5E8CC03AA01}\" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
\"{37F64A96-D75A-4236-8F6F-30F1D592C9F6}\" = protocol=17 | dir=in | app=c:\\program files\\common files\\adobe\\cs4servicemanager\\cs4servicemanager.exe |
\"{3CB40789-9688-43AF-86BF-F6B9E2C637F6}\" = protocol=17 | dir=in | app=c:\\program files\\rockstar games\\grand theft auto iv\\launchgtaiv.exe |
\"{3EEE8A60-A4DE-4F0A-85E9-AFB5CC1E0F5C}\" = protocol=6 | dir=in | app=c:\\program files\\ventrilo\\ventrilo.exe |
\"{445749A4-9740-4F97-97A0-30B63B13257B}\" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
\"{4A6A3898-B9AA-4043-9676-76A9592FA5BC}\" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
\"{4E3A76FD-0E58-45E3-A1B0-F28310DE04E2}\" = protocol=6 | dir=in | app=c:\\program files\\microsoft office\\office12\\onenote.exe |
\"{5BB56369-2B78-4605-BA85-ABB602F726F1}\" = protocol=17 | dir=in | app=c:\\program files\\electronic arts\\burnout(tm) paradise the ultimate box\\burnoutparadise.exe |
\"{642E532F-C7C6-42CA-A2B0-945AE4641795}\" = protocol=6 | dir=in | app=c:\\program files\\common files\\adobe\\adobe version cue cs4\\server\\bin\\versioncuecs4.exe |
\"{7301176E-D244-4268-ABCE-CA4B07FC3D9A}\" = protocol=17 | dir=in | app=c:\\program files\\electronic arts\\burnout(tm) paradise the ultimate box\\burnoutlauncher.exe |
\"{7DF7BF95-1069-4D8E-BC58-0C453499BA98}\" = protocol=17 | dir=in | app=c:\\program files\\utorrent\\utorrent.exe |
\"{7E41C0CB-C2F6-472E-A6D8-0140E653FA09}\" = protocol=17 | dir=in | app=c:\\program files\\microsoft office\\office12\\groove.exe |
\"{887AD5B1-B732-436A-A0C9-8CCEA4A04F2F}\" = protocol=6 | dir=in | app=c:\\program files\\electronic arts\\burnout(tm) paradise the ultimate box\\burnoutlauncher.exe |
\"{8A09C3A7-E4D8-4A1F-815B-1DD985F87804}\" = protocol=6 | dir=in | app=c:\\program files\\electronic arts\\burnout(tm) paradise the ultimate box\\burnoutparadise.exe |
\"{9C6F9715-8210-47AA-874A-CD6EFD1838DB}\" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\\system32\\svchost.exe |
\"{B3C5D727-2D1F-4BEB-BAE5-3FBBF06FC7BB}\" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
\"{BD30C44C-AF5B-46A2-B52F-5B773FF86402}\" = protocol=6 | dir=in | app=c:\\program files\\utorrent\\utorrent.exe |
\"{BF475899-4701-476F-9005-B2723ADADDE4}\" = protocol=17 | dir=in | app=c:\\program files\\ventrilo\\ventrilo.exe |
\"{C618E958-99C6-4C6D-A97A-2EA70893AAE3}\" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\\system32\\svchost.exe |
\"{D317FDCB-890E-4943-8AA3-50F09C678C4A}\" = protocol=6 | dir=in | app=c:\\program files\\rockstar games\\grand theft auto iv\\launchgtaiv.exe |
\"{DCFC218E-6700-42C2-B43C-BE22441E62DE}\" = protocol=6 | dir=in | app=c:\\program files\\microsoft office\\office12\\groove.exe |
\"{DFDD93BF-6404-4571-A901-3C0D2F350C2A}\" = protocol=17 | dir=in | app=c:\\program files\\common files\\adobe\\adobe version cue cs4\\server\\bin\\versioncuecs4.exe |
\"{E17E5224-3A9B-4114-806E-5FEC3CE9CCE5}\" = protocol=6 | dir=in | app=c:\\program files\\common files\\adobe\\cs4servicemanager\\cs4servicemanager.exe |
\"{E9C92D99-5A25-4A50-9C56-E70CB85D7805}\" = protocol=17 | dir=in | app=c:\\program files\\rockstar games\\rockstar games social club\\rgsclauncher.exe |
\"TCP Query User{03A8D308-B4FB-4D79-A01C-997A542EF0F4}C:\\program files\\rockstar games\\gta2\\gta2.exe\" = protocol=6 | dir=in | app=c:\\program files\\rockstar games\\gta2\\gta2.exe |
\"TCP Query User{1004BD8D-5DEA-4131-851E-7C5B3C656B66}C:\\program files\\mirc\\mirc.exe\" = protocol=6 | dir=in | app=c:\\program files\\mirc\\mirc.exe |
\"TCP Query User{118C4D25-8B51-494B-B83E-6C08749A85D7}C:\\program files\\utorrent\\utorrent.exe\" = protocol=6 | dir=in | app=c:\\program files\\utorrent\\utorrent.exe |
\"TCP Query User{13656759-CB47-41AA-A89D-02CED98F359B}C:\\totalcmd\\totalcmd.exe\" = protocol=6 | dir=in | app=c:\\totalcmd\\totalcmd.exe |
\"TCP Query User{261A139D-C539-4029-A599-9B312E8BDB1B}C:\\program files\\tvants\\tvants.exe\" = protocol=6 | dir=in | app=c:\\program files\\tvants\\tvants.exe |
\"TCP Query User{2EF35777-AEC5-4852-BD59-7AD05F1930F9}C:\\windows\\system32\\dplaysvr.exe\" = protocol=6 | dir=in | app=c:\\windows\\system32\\dplaysvr.exe |
\"TCP Query User{482E09C1-F812-4316-BEC9-09017C711471}D:\\stuff\\age of empires ii\\age2_x1\\age2_x1.exe\" = protocol=6 | dir=in | app=d:\\stuff\\age of empires ii\\age2_x1\\age2_x1.exe |
\"TCP Query User{569243AD-3690-414E-9C80-79D6FB6F5177}C:\\windows\\system32\\dplaysvr.exe\" = protocol=6 | dir=in | app=c:\\windows\\system32\\dplaysvr.exe |
\"TCP Query User{67E9F2BD-091D-4AB5-9C05-51260B629B34}C:\\program files\\tlen.pl\\tlen.exe\" = protocol=6 | dir=in | app=c:\\program files\\tlen.pl\\tlen.exe |
\"TCP Query User{90540822-A3B1-4A41-AC89-6C57F59E48D1}C:\\program files\\tlen.pl\\tlen.exe\" = protocol=6 | dir=in | app=c:\\program files\\tlen.pl\\tlen.exe |
\"TCP Query User{9206BC1D-284B-4A8F-8A7C-7DDCCD5CC4EA}C:\\program files\\rockstar games\\gta2\\gta2.exe\" = protocol=6 | dir=in | app=c:\\program files\\rockstar games\\gta2\\gta2.exe |
\"TCP Query User{98B2DFC1-4F49-459D-9EC4-7BE8DE279727}C:\\program files\\monopoly tycoon\\mc.exe\" = protocol=6 | dir=in | app=c:\\program files\\monopoly tycoon\\mc.exe |
\"TCP Query User{A79ECEA2-C2D0-476E-A34B-F79015004B79}C:\\program files\\ea sports\\fifa 09\\fifa09.exe\" = protocol=6 | dir=in | app=c:\\program files\\ea sports\\fifa 09\\fifa09.exe |
\"TCP Query User{B3E75895-D88A-42AF-A8EF-9BE38E575292}C:\\program files\\wolfenstein - enemy territory\\et.exe\" = protocol=6 | dir=in | app=c:\\program files\\wolfenstein - enemy territory\\et.exe |
\"TCP Query User{DC742342-EF41-4475-A073-F3542354C69E}C:\\program files\\quake iii arena\\quake3.exe\" = protocol=6 | dir=in | app=c:\\program files\\quake iii arena\\quake3.exe |
\"TCP Query User{EE64DF11-C961-4F58-B2E3-98F5BC213C0D}C:\\program files\\mirc\\mirc.exe\" = protocol=6 | dir=in | app=c:\\program files\\mirc\\mirc.exe |
\"TCP Query User{F5A12F1F-0F39-4F02-9EAE-A50971C4C8E6}C:\\program files\\soulseekns\\slsk.exe\" = protocol=6 | dir=in | app=c:\\program files\\soulseekns\\slsk.exe |
\"UDP Query User{0B943517-5ADB-4962-94EC-80766A7E18A5}C:\\windows\\system32\\dplaysvr.exe\" = protocol=17 | dir=in | app=c:\\windows\\system32\\dplaysvr.exe |
\"UDP Query User{0DA816F8-3C74-4DD8-8B7C-6333D51A9743}C:\\windows\\system32\\dplaysvr.exe\" = protocol=17 | dir=in | app=c:\\windows\\system32\\dplaysvr.exe |
\"UDP Query User{188FBBF4-3B3D-4359-AF9C-DCBC821445D9}C:\\program files\\tlen.pl\\tlen.exe\" = protocol=17 | dir=in | app=c:\\program files\\tlen.pl\\tlen.exe |
\"UDP Query User{1DF38E24-974F-45A1-8FC0-179D9F7E5F9B}D:\\stuff\\age of empires ii\\age2_x1\\age2_x1.exe\" = protocol=17 | dir=in | app=d:\\stuff\\age of empires ii\\age2_x1\\age2_x1.exe |
\"UDP Query User{302C7AD8-A6E3-4F3C-8E35-11A8873B965C}C:\\program files\\quake iii arena\\quake3.exe\" = protocol=17 | dir=in | app=c:\\program files\\quake iii arena\\quake3.exe |
\"UDP Query User{34387A4E-B982-4A4E-922D-CF603BF3E0DF}C:\\program files\\wolfenstein - enemy territory\\et.exe\" = protocol=17 | dir=in | app=c:\\program files\\wolfenstein - enemy territory\\et.exe |
\"UDP Query User{36E007EA-8FE5-4F0F-9C78-C2B4477F0D66}C:\\program files\\rockstar games\\gta2\\gta2.exe\" = protocol=17 | dir=in | app=c:\\program files\\rockstar games\\gta2\\gta2.exe |
\"UDP Query User{46DBAF9C-4DE1-4C27-BA54-DBF7AC85E5A8}C:\\program files\\mirc\\mirc.exe\" = protocol=17 | dir=in | app=c:\\program files\\mirc\\mirc.exe |
\"UDP Query User{573C7786-DFB0-46C7-AC25-C84634D1575D}C:\\program files\\tlen.pl\\tlen.exe\" = protocol=17 | dir=in | app=c:\\program files\\tlen.pl\\tlen.exe |
\"UDP Query User{6880A346-7FE8-44E4-B79E-37BF9CF5E8ED}C:\\program files\\soulseekns\\slsk.exe\" = protocol=17 | dir=in | app=c:\\program files\\soulseekns\\slsk.exe |
\"UDP Query User{6CE80149-F61D-4A81-9D42-B01723A72B7A}C:\\program files\\rockstar games\\gta2\\gta2.exe\" = protocol=17 | dir=in | app=c:\\program files\\rockstar games\\gta2\\gta2.exe |
\"UDP Query User{76576CAF-C010-42FD-851A-D52B1BDDD7C8}C:\\program files\\tvants\\tvants.exe\" = protocol=17 | dir=in | app=c:\\program files\\tvants\\tvants.exe |
\"UDP Query User{AD472531-E250-429C-B297-C32EBC8D982B}C:\\totalcmd\\totalcmd.exe\" = protocol=17 | dir=in | app=c:\\totalcmd\\totalcmd.exe |
\"UDP Query User{B50EF698-D9DE-4693-B082-84211DE83455}C:\\program files\\utorrent\\utorrent.exe\" = protocol=17 | dir=in | app=c:\\program files\\utorrent\\utorrent.exe |
\"UDP Query User{C84DC63A-B90D-4F88-A926-44027E9B7354}C:\\program files\\ea sports\\fifa 09\\fifa09.exe\" = protocol=17 | dir=in | app=c:\\program files\\ea sports\\fifa 09\\fifa09.exe |
\"UDP Query User{E403AE9B-D075-4368-A287-B04627CE7260}C:\\program files\\monopoly tycoon\\mc.exe\" = protocol=17 | dir=in | app=c:\\program files\\monopoly tycoon\\mc.exe |
\"UDP Query User{E525AC48-8543-44E5-BBEA-3425789DB8A4}C:\\program files\\mirc\\mirc.exe\" = protocol=17 | dir=in | app=c:\\program files\\mirc\\mirc.exe |
[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Uninstall]
\"{0224CACC-994D-45F8-B973-D65056EA9C2F}\" = Adobe XMP DVA Panels CS3
\"{04AF207D-9A77-465A-8B76-991F6AB66245}\" = Adobe Help Viewer CS3
\"{08B32819-6EEF-4057-AEDA-5AB681A36A23}\" = Adobe Bridge Start Meeting
\"{1DF5019A-68B5-4ba1-8E59-E185C7B7FF11}\" = Komunikator WTW
\"{216B2D77-E514-4D3E-9E03-E74D3E15D084}\" = Microsoft Windows Software Development Kit for Windows Vista Update Utilities for .NET Development (6000.16384.10)
\"{2258EB2F-185C-43A0-BD05-F8717375A70B}\" = Vegas Pro 9.0
\"{22898134-089F-4751-A7DF-43E3F7FAE10F}\" = Microsoft Windows Software Development Kit for Windows Vista Update Headers and Libraries (6000.16384.10)
\"{23EE5D9A-72D4-4529-9B8D-E1BB6B53F008}\" = Microsoft Windows Software Development Kit for Windows Vista Update Debug Symbols for .NET Development (6000.16384.10)
\"{2C294A0B-DF22-4023-B168-8C7645B10019}\" = Adobe Setup
\"{3C3901C5-3455-3E0A-A214-0B093A5070A6}\" = Microsoft .NET Framework 4 Client Profile
\"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}\" = NVIDIA PhysX
\"{4A03706F-666A-4037-7777-5F2748764D10}\" = Java Auto Updater
\"{4B215C29-1A3E-4736-92AA-10C83FA56EB9}\" = Adobe After Effects CS3 Presets
\"{4B8F78BF-44D4-452C-B9F8-6B04EAA37A0D}\" = S4 League_EU
\"{4C89A3C8-97E8-43A6-8DEC-5DE09098ACD0}\" = Microsoft Windows Software Development Kit for Windows Vista Update Compilers (6000.16384.10)
\"{50120000-1105-0000-0000-0000000FF1CE}\" = Microsoft Office 2007 Primary Interop Assemblies
\"{54793AA1-5001-42F4-ABB6-C364617C6078}\" = Adobe Linguistics CS3
\"{59C80C5E-8C92-40FF-B910-2BB5C7281F61}\" = Europa Universalis III
\"{5A1A9AB2-2F68-462D-A67D-7C855DFF5EEB}\" = Microsoft Network Monitor: NetworkMonitor Parsers 3.4
\"{68A35043-C55A-4237-88C9-37EE1C63ED71}\" = Microsoft Visual J# 2.0 Redistributable Package
\"{6B708481-748A-4EB4-97C1-CD386244FF77}\" = Adobe MotionPicture Color Files
\"{6C72788B-E203-4585-A5E6-E086D10439A6}\" = Microsoft Windows Software Development Kit for Windows Vista Update (6000.16384.10)
\"{6D316D67-DA52-4659-9C98-F479963534D6}\" = Audiosurf
\"{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}\" = Adobe Asset Services CS3
\"{72263053-50D1-4598-9502-51ED64E54C51}\" = Borland Delphi 7
\"{7C56F2C0-54E6-4670-8767-F904BCE28B49}\" = VanDyke Software SecureFX 6.5
\"{802771A9-A856-4A41-ACF7-1450E523C923}\" = Adobe XMP Panels CS3
\"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}\" = Microsoft Visual C++ 2005 Redistributable
\"{849B70E0-55C8-4BDD-9EC5-84502B7AF594}\" = Microsoft Windows Software Development Kit for Windows Vista Update Common Utilities (6000.16384.10)
\"{86D4B82A-ABED-442A-BE86-96357B70F4FE}\" = Ask Toolbar
\"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\" = Microsoft Silverlight
\"{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}\" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
\"{8AD2EA30-5049-11D4-A08E-0080AD97BBF5}\" = DJ Java Decompiler v.3.9.9.91
\"{8AF3FB06-BDA3-42A3-995C-308812D2F094}\" = Adobe After Effects CS3
\"{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}\" = Adobe Device Central CS3
\"{8FB1B528-E260-451E-9B55-E9152F94B80B}\" = Microsoft Games for Windows - LIVE Redistributable
\"{90110415-6000-11D3-8CFE-0150048383C9}\" = Microsoft Office Professional Edition 2003
\"{90120000-0021-0000-0000-0000000FF1CE}\" = Microsoft Office Visual Web Developer 2007
\"{90120000-0030-0000-0000-0000000FF1CE}\" = Microsoft Office Enterprise 2007
\"{90176341-0A8B-4CCC-A78D-F862228A6B95}\" = Adobe Anchor Service CS3
\"{931C37FC-594D-43A9-B10F-A2F2B1F03498}\" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
\"{981029E0-7FC9-4CF3-AB39-6F133621921A}\" = Skype Toolbars
\"{9C9824D9-9000-4373-A6A5-D0E5D4831394}\" = Adobe Bridge CS3
\"{A1D6721B-9C28-4E3F-9DE1-C6584B99465D}\" = Oprogramowanie Intel(R) PROSet/Wireless WiFi
\"{A2F2C44A-869E-4C32-9CEC-E22B1CC91F06}\" = Microsoft Network Monitor 3.4
\"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}\" = Google Update Helper
\"{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}\" = Adobe Camera Raw 4.0
\"{B3DAF54F-DB25-4586-9EF1-96D24BB14088}\" = Windows Movie Maker 2.6
\"{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}\" = Adobe ExtendScript Toolkit 2
\"{C73A1EF0-9AC3-466C-918B-6684E594B039}_is1\" = Embarcadero Delphi 2010
\"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}\" = Microsoft .NET Framework 1.1
\"{CFA81765-AC83-48A0-96ED-0188C503D255}\" = Microsoft Windows Software Development Kit for Windows Vista Update Utilities for Win32 Development (6000.16384.10)
\"{D0DFF92A-492E-4C40-B862-A74A173C25C5}\" = Adobe Version Cue CS3 Client
\"{D103C4BA-F905-437A-8049-DB24763BBE36}\" = Skype™ 4.2
\"{D1871BAA-527B-4564-B0E9-24545514D190}\" = dupeGuru
\"{D7DAD1E4-45F4-3B2B-899A-EA728167EC4F}\" = Microsoft Visual Studio 2008 Professional Edition - ENU
\"{E48469CC-635E-4FD5-A122-1497C286D217}\" = Call of Duty(R) 4 - Modern Warfare(TM)
\"{E69AE897-9E0B-485C-8552-7841F48D42D8}\" = Adobe Update Manager CS3
\"{E71AC707-179D-458D-A1E8-F52977CAEAB4}\" = M.U.D. TV
\"{F97E3841-CA9D-4964-9D64-26066241D26F}\" = Microsoft Games for Windows - LIVE
\"{FF29527A-44CD-3422-945E-981A13584000}\" = VC Runtimes MSI
\"Absolute MP3 Splitter_is1\" = Absolute MP3 Splitter version 2.8.3
\"Adobe Flash Player Plugin\" = Adobe Flash Player 10 Plugin
\"Adobe_b7dd24a87e82dcf8af8876fd727b7cf\" = Adobe After Effects CS3
\"Akamai\" = Akamai NetSession Interface
\"Burn4Free CD & DVD_is1\" = Burn4Free CD & DVD 4.9.0.0
\"CDex\" = CDex - Open Source Digital Audio CD Extractor
\"CDMaster32\" = CDMaster32
\"FileZilla Client\" = FileZilla Client 3.3.2.1
\"Google Chrome\" = Google Chrome
\"Heir to the Throne_is1\" = Heir to the Throne
\"HijackThis\" = HijackThis 2.0.2
\"In Nomine_is1\" = In Nomine 3.2
\"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}\" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
\"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}\" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
\"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}\" = Call of Duty(R) 4 - Modern Warfare(TM)
\"KLiteCodecPack_is1\" = K-Lite Codec Pack 6.2.0 (Full)
\"Konnekt\" = Konnekt
\"LEd_is1\" = LEd Beta 0.53
\"LynX 3D Viewer Lite Edition_is1\" = LynX 3D Viewer Lite Edition v1.5.2
\"Mafia II_is1\" = Mafia II
\"Microsoft .NET Framework 1.1 (1033)\" = Microsoft .NET Framework 1.1
\"Microsoft .NET Framework 4 Client Profile\" = Microsoft .NET Framework 4 Client Profile
\"Microsoft Visual J# 2.0 Redistributable Package\" = Microsoft Visual J# 2.0 Redistributable Package
\"Microsoft Visual Studio 2008 Professional Edition - ENU\" = Microsoft Visual Studio 2008 Professional Edition - ENU
\"Mozilla Firefox (3.6.8)\" = Mozilla Firefox (3.6.8)
\"Mozilla Thunderbird (3.1.2)\" = Mozilla Thunderbird (3.1.2)
\"Napoleon\'s Ambition_is1\" = Napoleon\'s Ambition 2.2
\"NVIDIA Display Control Panel\" = NVIDIA Display Control Panel
\"NVIDIA Drivers\" = NVIDIA Drivers
\"Perfect Uninstaller_is1\" = Perfect Uninstaller v6.3.3.8
\"PosteRazor_is1\" = PosteRazor
\"PremiumSoft Navicat Lite_is1\" = PremiumSoft Navicat Lite 9.0
\"ProInst\" = Intel PROSet Wireless
\"PunkBusterSvc\" = PunkBuster Services
\"Risk II_is1\" = Risk II
\"SDKSetup_6.1.6000.16384\" = Microsoft Windows Software Development Kit for Windows Vista Update (6000.16384.10)
\"SopCast\" = SopCast 3.2.4
\"uTorrent\" = µTorrent
\"Visual MP3 Splitter & Joiner Update trial to full_is1\" = Visual MP3 Splitter & Joiner 6.0
\"Visual MP3 Splitter & Joiner_is1\" = Visual MP3 Splitter & Joiner 6.1
\"WampServer 2_is1\" = WampServer 2.0
\"WhatPulse\" = WhatPulse 1.6.2.1
\"Wings 3D 1.2\" = Wings 3D 1.2
\"Worms Reloaded_is1\" = Worms Reloaded
\"XviD Video Codec\" = XviD Video Codec (remove only)
[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]
[HKEY_USERS\\S-1-5-19\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Uninstall]
[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]
[HKEY_USERS\\S-1-5-20\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Uninstall]
[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]
[HKEY_USERS\\S-1-5-21-3955316444-2243232555-2832667671-1003\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Uninstall]
\"CodeBlocks\" = CodeBlocks
\"Dropbox\" = Dropbox
\"NoNameScript\" = NNScript
\"TabakaKe\" = TabakaKe
\"uTorrent\" = µTorrent
[color=#E56717]========== Last 10 Event Log Errors ==========[/color]
[ Application Events ]
Error - 2009-08-13 20:23:27 | Computer Name = sowa-PC | Source = System Restore | ID = 8210
Description =
Error - 2009-08-14 21:21:54 | Computer Name = sowa-PC | Source = SPP | ID = 16387
Description =
Error - 2009-08-14 21:21:54 | Computer Name = sowa-PC | Source = System Restore | ID = 8193
Description =
Error - 2009-08-14 21:21:54 | Computer Name = sowa-PC | Source = System Restore | ID = 8210
Description =
Error - 2009-08-15 18:00:22 | Computer Name = sowa-PC | Source = SPP | ID = 16387
Description =
Error - 2009-08-15 18:00:23 | Computer Name = sowa-PC | Source = System Restore | ID = 8193
Description =
Error - 2009-08-15 18:00:23 | Computer Name = sowa-PC | Source = System Restore | ID = 8210
Description =
Error - 2009-08-16 19:29:56 | Computer Name = sowa-PC | Source = VSS | ID = 12344
Description =
Error - 2009-08-17 06:02:38 | Computer Name = sowa-PC | Source = WinMgmt | ID = 10
Description =
Error - 2009-08-18 05:26:09 | Computer Name = sowa-PC | Source = WinMgmt | ID = 10
Description =
[ OSession Events ]
Error - 2009-03-27 20:44:38 | Computer Name = sowa-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
12.0.6024.5000, Microsoft Office Version: 12.0.4518.1014. This session lasted 14394
seconds with 4200 seconds of active time. This session ended with a crash.
Error - 2009-03-29 19:52:09 | Computer Name = sowa-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 103313
seconds with 15000 seconds of active time. This session ended with a crash.
Error - 2009-06-05 04:19:04 | Computer Name = sowa-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1066. This session lasted 10753
seconds with 0 seconds of active time. This session ended with a crash.
Error - 2009-06-23 14:48:54 | Computer Name = sowa-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1066. This session lasted 2892
seconds with 1260 seconds of active time. This session ended with a crash.
Error - 2009-11-01 20:33:16 | Computer Name = sowa-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1066. This session lasted 16
seconds with 0 seconds of active time. This session ended with a crash.
[ System Events ]
Error - 2010-09-05 14:03:33 | Computer Name = sowa-PC | Source = Microsoft-Windows-WLAN-AutoConfig | ID = 10000
Description =
Error - 2010-09-05 14:05:06 | Computer Name = sowa-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 2010-09-05 14:05:06 | Computer Name = sowa-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 2010-09-05 14:05:06 | Computer Name = sowa-PC | Source = Service Control Manager | ID = 7001
Description =
Error - 2010-09-05 14:05:06 | Computer Name = sowa-PC | Source = Service Control Manager | ID = 7001
Description =
Error - 2010-09-05 14:05:06 | Computer Name = sowa-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 2010-09-05 14:05:06 | Computer Name = sowa-PC | Source = Service Control Manager | ID = 7001
Description =
Error - 2010-09-05 14:05:06 | Computer Name = sowa-PC | Source = Service Control Manager | ID = 7022
Description =
Error - 2010-09-05 14:05:16 | Computer Name = sowa-PC | Source = Service Control Manager | ID = 7026
Description =
Error - 2010-09-05 14:07:16 | Computer Name = sowa-PC | Source = Service Control Manager | ID = 7001
Description =
< End of report >
|