Anonim / 1 rok, 10 miesięcy temu | Download | Plaintext | Odpowiedz |

  1
  2
  3
  4
  5
  6
  7
  8
  9
 10
 11
 12
 13
 14
 15
 16
 17
 18
 19
 20
 21
 22
 23
 24
 25
 26
 27
 28
 29
 30
 31
 32
 33
 34
 35
 36
 37
 38
 39
 40
 41
 42
 43
 44
 45
 46
 47
 48
 49
 50
 51
 52
 53
 54
 55
 56
 57
 58
 59
 60
 61
 62
 63
 64
 65
 66
 67
 68
 69
 70
 71
 72
 73
 74
 75
 76
 77
 78
 79
 80
 81
 82
 83
 84
 85
 86
 87
 88
 89
 90
 91
 92
 93
 94
 95
 96
 97
 98
 99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
491
492
493
494
495
496
497
498
499
500
501
502
503
504
505
506
507
508
509
510
511
512
513
514
515
516
517
518
519
520
521
522
523
524
525
526
527
528
529
530
531
532
533
534
535
536
537
538
539
540
541
542
543
544
545
546
547
548
549
550
551
552
553
554
555
556
557
558
559
560
561
562
563
564
565
566
567
568
569
570
571
572
573
574
575
576
577
578
579
580
581
582
583
584
585
586
587
588
589
590
591
592
593
594
595
596
OTL Extras logfile created on: 2016-02-26 11:40:39 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\abc\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.18204)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
 
3,80 Gb Total Physical Memory | 0,98 Gb Available Physical Memory | 25,87% Memory free
7,60 Gb Paging File | 4,06 Gb Available in Paging File | 53,39% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 236,28 Gb Total Space | 68,54 Gb Free Space | 29,01% Space Free | Partition Type: NTFS
Drive D: | 19,94 Gb Total Space | 2,90 Gb Free Space | 14,53% Space Free | Partition Type: NTFS
Drive F: | 209,24 Gb Total Space | 150,49 Gb Free Space | 71,92% Space Free | Partition Type: NTFS
 
Computer Name: PIOTREK | User Name: abc | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
[color=#E56717]========== Extra Registry (SafeList) ==========[/color]
 
 
[color=#E56717]========== File Associations ==========[/color]
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = Reg Error: Value error.] -- Reg Error: Key error. File not found
 
[HKEY_USERS\S-1-5-21-3681182759-2108321558-1885225947-1000\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
 
[color=#E56717]========== Shell Spawning ==========[/color]
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" ()
Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang ()
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" ()
Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang ()
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
 
[color=#E56717]========== Security Center Settings ==========[/color]
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 
[color=#E56717]========== Firewall Settings ==========[/color]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[color=#E56717]========== Authorized Applications List ==========[/color]
 
 
[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00E43D7F-F337-4E60-9749-CDBF4BE49B4D}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{038D38DE-E8AD-405E-A213-E9E61093454F}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{158AF258-AEC2-4428-A5E3-23C5A4E7DBD7}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | 
"{19D7E886-2E62-4AD6-BABA-961D8F9A3C49}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe | 
"{1A684505-791C-4FAF-9578-899A9A335C65}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe | 
"{1DC3FAAE-C345-4A1C-B368-6C8E99F270A8}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{1E77E8AE-BA95-4A26-8943-56B02D782FB8}" = rport=138 | protocol=17 | dir=out | app=system | 
"{2447295D-7BEE-4BED-A562-5D31CEC7B9D9}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{27FB4244-1EED-4F34-B20C-826B0B307FFD}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | 
"{378ECA0F-8D8B-40EA-94BF-21EB34ECBDF3}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{3A3CB967-15C2-4886-995E-0AC13F870D25}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{3DB079A3-2838-4817-8B55-A8DCB37E096B}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | 
"{5089D952-623D-4395-B3B1-74A389CC7C11}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{53B1CCD4-2738-4C1D-9381-7AF4DC0E19EF}" = rport=137 | protocol=17 | dir=out | app=system | 
"{5B76399F-F929-421E-952E-B8A62778113C}" = rport=445 | protocol=6 | dir=out | app=system | 
"{679D524F-BFEE-4BB3-ABAC-8BD25C8FDC49}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{78764D9E-D422-4F6A-96F3-40ECFDA855B2}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | 
"{83AE1824-0D98-4E15-8C95-2B9FCF8AC5FD}" = lport=445 | protocol=6 | dir=in | app=system | 
"{84DC2ED7-42EA-4107-BC9D-013943947CD2}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{8B24493F-3C00-4316-99F4-C2EEE44E98DE}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{8C31ED0B-59C4-4EF4-BDDF-FD5FCEDEADA0}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | 
"{8DB5D68A-F1F0-43BF-BEA4-AE8093B407B2}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | 
"{8E424200-FE8A-432E-B9F7-EFC1C1C43ECA}" = lport=138 | protocol=17 | dir=in | app=system | 
"{9AF7108A-886A-46F9-9A59-158452F41DD3}" = rport=10243 | protocol=6 | dir=out | app=system | 
"{A551EF0C-130E-4E2B-AAF4-9DD9F932F6FC}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{A59C9B59-3246-4F3B-A975-79544F3277B5}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{B0C2005A-34D1-421E-8C9B-25353C684808}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | 
"{B7E10F01-5EC5-49B9-A7BC-7B8C87C72EBE}" = lport=139 | protocol=6 | dir=in | app=system | 
"{B84ED84D-AFD4-455E-9BE0-8E58E894013D}" = lport=137 | protocol=17 | dir=in | app=system | 
"{BE454A41-DC77-47F8-B43D-1F490ACCDA45}" = rport=139 | protocol=6 | dir=out | app=system | 
"{C891E67C-4489-4B8B-993D-BA10D83AB35E}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | 
"{D6B4C0E0-D79F-4195-A12A-088EEA62391C}" = rport=2869 | protocol=6 | dir=out | app=system | 
"{DE21CF31-42C9-4372-8149-FCE2C134629F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{E0CD014D-2906-4670-8C7B-3003103679DA}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{E18D1681-6224-4839-A1C7-17D06C0F3F16}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{E3868387-C938-4024-9257-25148B44B232}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | 
"{F56301A0-933D-4BAF-B737-CBDE9E1A92C7}" = lport=10243 | protocol=6 | dir=in | app=system | 
 
[color=#E56717]========== Vista Active Application Exception List ==========[/color]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0A7D1A17-8D0C-4ADB-86FC-28A1E54C1493}" = protocol=17 | dir=in | app=c:\users\abc\appdata\roaming\utorrent\utorrent.exe | 
"{11A46476-9907-4365-938F-4F1F2F1AABED}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | 
"{1233568A-AA0F-4A42-A2B5-26922174C267}" = protocol=17 | dir=in | app=c:\program files\k2t\wtw\wtw.exe | 
"{124AA867-3749-4C12-9441-4AE557B0D48C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{16E6055C-3074-49F2-9231-F737209425BF}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{1B1A1F3B-50B9-41EB-991F-B93053F9981F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{1DBD58F0-801D-4B43-AC10-638CB44AF66B}" = protocol=6 | dir=in | app=c:\program files\k2t\wtw\wtw.exe | 
"{1E661F8E-50A4-4CA8-A5CC-34945F186844}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\hpdvdsmart.exe | 
"{24F35750-D63D-4C1F-9A12-748331DBF6DB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{2C4FB9FC-9F31-4845-BBF6-36FF7EE5677A}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | 
"{2C7CD63A-77A7-46E7-B130-ED31C9AF69AE}" = dir=in | app=c:\program files (x86)\hewlett-packard\mediasmart\photo\hpmediasmartphoto.exe | 
"{3165CC9B-59D7-41DE-8DCF-D19FB7A83F28}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 | 
"{31A27355-4C43-4F7A-96F8-94469A38FD41}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\fifa 14\game\fifa14.exe | 
"{34C69579-0C0B-41ED-87AE-1D984C02AFD1}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | 
"{3985C5A6-636D-4537-A05E-6899D3E761BF}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | 
"{3BA3804A-BF24-47B8-833A-FF727CBDC2B4}" = dir=in | app=c:\program files (x86)\windows live\sync\windowslivesync.exe | 
"{3BBA9AAD-DF46-4E74-9C75-ADA8DE08F1AA}" = protocol=17 | dir=in | app=c:\gry\fifa 13\game\fifa13.exe | 
"{4311791C-956A-452F-B6C7-4096E7045B76}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{531CF65D-406C-429D-86DF-89B819FEA57B}" = dir=in | app=c:\program files (x86)\hewlett-packard\mediasmart\video\hpmediasmartvideo.exe | 
"{5475E7E1-26DD-4E68-88A1-4092F38C5AB4}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | 
"{587BB7F9-78A0-4108-971F-9535C3C979F0}" = protocol=6 | dir=in | app=c:\program files (x86)\maxthon3\bin\maxthon.exe | 
"{5EF4FBE1-17F4-455F-AEEA-3D3ACA88366B}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | 
"{5FA59DB8-7C38-4195-A43F-0E3D3156B6CC}" = protocol=17 | dir=in | app=c:\program files (x86)\maxthon3\bin\maxthon.exe | 
"{6147CA10-7C21-4F61-9AAB-E7DAB430A72B}" = protocol=6 | dir=in | app=c:\gry\fifa 13\game\fifa13.exe | 
"{61F721D7-16D6-4760-8EC7-22AB06F8C4C5}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | 
"{65FF6660-F320-464D-BADB-6C6E4C07B95C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{688ED95C-A2D9-4E8C-AB8D-D4275812A4C6}" = protocol=6 | dir=out | app=system | 
"{6AABBDAD-D11D-401A-82C2-7D13DC973B63}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{6BD2D96F-3E7B-4EC2-835B-86D7E16DA78C}" = protocol=6 | dir=in | app=c:\program files (x86)\maxthon3\bin\mxup.exe | 
"{6F430547-91A6-4089-90FB-C3BDB2114CF8}" = protocol=6 | dir=in | app=c:\program files (x86)\the elder scrolls v skyrim\launcher.exe | 
"{799E39D7-439D-4A5A-8EC2-4E71E34CB2CF}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{824A889C-258B-48E4-800B-1CC303A224A2}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | 
"{83D6FE01-CBF1-475C-9EFE-E05B58FDE6FC}" = protocol=17 | dir=in | app=c:\gry\ubisoft\might & magic heroes vi\might & magic heroes vi.exe | 
"{84996C20-C184-4EBB-BE1D-A773B45D6500}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{866456D4-8C05-40A6-8161-9DD1472F0BCC}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | 
"{8FE6394F-9741-47A2-864B-D3EB5E07CA84}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{91FFB823-C4E1-405A-8B50-2F5FE6FD910E}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | 
"{9231F3B0-3E53-4A34-9A32-644F9220C985}" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | 
"{92A2C42D-C712-4586-8915-17E42E3A2DCA}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | 
"{A12DB3CD-8CB0-43B0-9692-DD3A80545FDF}" = protocol=6 | dir=in | app=c:\gry\ubisoft\might & magic heroes vi\might & magic heroes vi.exe | 
"{A58D25CA-CB93-4DA5-BB99-36F3BCD1FBF4}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\music\hptouchsmartmusic.exe | 
"{A6634CD9-031A-4888-B5A3-7517E3934661}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | 
"{A77ACDE0-C36C-4AD5-8E6E-22F9B77B35C2}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | 
"{A8B2E9CC-A9B0-4564-8643-D2C656EFB327}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | 
"{BE01F75D-588E-4AE1-B48F-06903BEB27BC}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | 
"{C0D75D20-C223-402F-BBCD-94EB91AEDAC4}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | 
"{C2000EEC-F3B2-4EF7-AED8-E5DE3C6AA6E3}" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | 
"{D201CAA2-98CD-4C7C-9AB1-410F619A57AD}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{D2C9EAC9-ECE5-4A04-B702-54528335D2B9}" = protocol=6 | dir=in | app=c:\users\abc\appdata\roaming\utorrent\utorrent.exe | 
"{D3FC7D73-1C82-4370-8002-229AC160B443}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | 
"{D97643DA-6C01-43A8-A072-1E579335DD4A}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\fifa 14\game\fifa14.exe | 
"{DC437535-8EDF-4EA1-B72A-7D822BD2B4EE}" = protocol=17 | dir=in | app=c:\program files (x86)\maxthon3\bin\mxup.exe | 
"{E12B704D-5507-48E1-BC07-D42C07E63D98}" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | 
"{E3D79BAD-2825-4B08-A4DB-A5894297EBA8}" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | 
"{E4AD339B-7CF7-4D26-BFD2-5FBAC3FC2809}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | 
"{E597D376-AF89-4F6A-86C3-726B711B7FEB}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | 
"{E5FDDFB9-994C-440D-B2AC-344A8D5F4125}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe | 
"{E8F6FC25-4832-461F-9EB6-CC8FBEEC3C18}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe | 
"{EB91D84C-B99D-48ED-9D60-4183FD8C039C}" = protocol=17 | dir=in | app=c:\gry\activision\prototype\prototypef.exe | 
"{EC54B40E-0E46-4646-A804-C29B75F291DD}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe | 
"{EF9D8A0B-D50D-4782-BC45-B4346A1F4444}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{F51FC857-3702-409C-86AC-DCD27063953E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{FAB74BF5-957C-4C8D-A7C3-6B342E9B137B}" = protocol=17 | dir=in | app=c:\program files (x86)\the elder scrolls v skyrim\launcher.exe | 
"{FF40EADB-5808-4D5D-8AC3-4AABC95BC533}" = protocol=6 | dir=in | app=c:\gry\activision\prototype\prototypef.exe | 
"TCP Query User{110F58C8-70CC-4595-801F-DF079AB175E3}C:\users\abc\desktop\czitos\heroes of might and magic iii complete\heroes of might and magic iii complete\heroes3.exe" = protocol=6 | dir=in | app=c:\users\abc\desktop\czitos\heroes of might and magic iii complete\heroes of might and magic iii complete\heroes3.exe | 
"TCP Query User{272C3703-61EF-4C50-B2A9-847C2FF8DF4D}C:\users\abc\desktop\czitos\counter-strike 1.6 non steam\hl.exe" = protocol=6 | dir=in | app=c:\users\abc\desktop\czitos\counter-strike 1.6 non steam\hl.exe | 
"TCP Query User{5643A41A-60EB-44B5-AE14-E93C8B5160E8}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | 
"TCP Query User{5D2C824E-67F4-4A56-B910-A514E655698B}C:\program files (x86)\videolan\vlc\vlc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\videolan\vlc\vlc.exe | 
"TCP Query User{847438A8-5376-41DB-B442-191C8770BD25}C:\windows\syswow64\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | 
"TCP Query User{8E3C5AAB-79B0-4BCF-A117-2D5FA52AF241}C:\program files (x86)\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe | 
"TCP Query User{917AC4A8-2308-47DA-84DA-000BA739625D}C:\users\abc\appdata\roaming\gameranger\gameranger\gameranger.exe" = protocol=6 | dir=in | app=c:\users\abc\appdata\roaming\gameranger\gameranger\gameranger.exe | 
"TCP Query User{A8ABF9A5-A95F-4D38-9D18-E7B5D76AB2F9}C:\users\abc\desktop\czitos\counter-strike 1.6 non steam\hl.exe" = protocol=6 | dir=in | app=c:\users\abc\desktop\czitos\counter-strike 1.6 non steam\hl.exe | 
"TCP Query User{C8419631-418C-454B-AFE4-5A06981962F3}F:\batman arkham city steam unlocked-p2p\batman 2\binaries\win32\batmanac.exe" = protocol=6 | dir=in | app=f:\batman arkham city steam unlocked-p2p\batman 2\binaries\win32\batmanac.exe | 
"TCP Query User{CD7542AA-0E10-46C9-83F8-07079932D5D5}C:\windows\syswow64\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | 
"TCP Query User{EC34B4DE-F183-4F99-BCF3-1B3590D37377}C:\users\abc\desktop\czitos\heroes of might and magic iii complete\heroes of might and magic iii complete\heroes33.exe" = protocol=6 | dir=in | app=c:\users\abc\desktop\czitos\heroes of might and magic iii complete\heroes of might and magic iii complete\heroes33.exe | 
"TCP Query User{F05751D6-3647-4281-AAC2-F1AD243CEC08}F:\heroes of might and magic iii complete\heroes of might and magic iii complete\heroes3.exe" = protocol=6 | dir=in | app=f:\heroes of might and magic iii complete\heroes of might and magic iii complete\heroes3.exe | 
"UDP Query User{1B79D1CC-D5F2-4024-B1E9-DA1C112A2216}F:\batman arkham city steam unlocked-p2p\batman 2\binaries\win32\batmanac.exe" = protocol=17 | dir=in | app=f:\batman arkham city steam unlocked-p2p\batman 2\binaries\win32\batmanac.exe | 
"UDP Query User{2737B353-DD21-45A5-9060-E4238D481EB2}C:\users\abc\desktop\czitos\counter-strike 1.6 non steam\hl.exe" = protocol=17 | dir=in | app=c:\users\abc\desktop\czitos\counter-strike 1.6 non steam\hl.exe | 
"UDP Query User{2D45DE43-7519-4669-9191-0648547539C5}C:\users\abc\desktop\czitos\counter-strike 1.6 non steam\hl.exe" = protocol=17 | dir=in | app=c:\users\abc\desktop\czitos\counter-strike 1.6 non steam\hl.exe | 
"UDP Query User{5C19309F-2422-4DF2-A474-1337742C7407}C:\program files (x86)\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe | 
"UDP Query User{94874C30-81DF-4E78-960C-E2F4F2EE32CB}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | 
"UDP Query User{9A83535F-4F39-47B8-8116-F7408F668676}C:\windows\syswow64\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | 
"UDP Query User{B91BD54A-833D-48FA-8F22-B0E6106D0D9C}C:\program files (x86)\videolan\vlc\vlc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\videolan\vlc\vlc.exe | 
"UDP Query User{C17B8785-47BE-4D87-9E27-7F2D58711E92}C:\users\abc\desktop\czitos\heroes of might and magic iii complete\heroes of might and magic iii complete\heroes3.exe" = protocol=17 | dir=in | app=c:\users\abc\desktop\czitos\heroes of might and magic iii complete\heroes of might and magic iii complete\heroes3.exe | 
"UDP Query User{CC45BFE3-C0FC-4C93-844D-F60421E38E60}C:\users\abc\desktop\czitos\heroes of might and magic iii complete\heroes of might and magic iii complete\heroes33.exe" = protocol=17 | dir=in | app=c:\users\abc\desktop\czitos\heroes of might and magic iii complete\heroes of might and magic iii complete\heroes33.exe | 
"UDP Query User{CCB8DC9F-0B4A-47F9-98AB-EA2AD705C8FB}C:\windows\syswow64\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | 
"UDP Query User{CFD02618-FEFD-4B28-B449-9157F50B3F92}F:\heroes of might and magic iii complete\heroes of might and magic iii complete\heroes3.exe" = protocol=17 | dir=in | app=f:\heroes of might and magic iii complete\heroes of might and magic iii complete\heroes3.exe | 
"UDP Query User{F249C5FA-93E5-40C9-87A6-D6522A908539}C:\users\abc\appdata\roaming\gameranger\gameranger\gameranger.exe" = protocol=17 | dir=in | app=c:\users\abc\appdata\roaming\gameranger\gameranger\gameranger.exe | 
 
[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219
"{1DF5019A-68B5-4ba1-8E59-E185C7B7FF11}" = Komunikator WTW 0.9.22.4040
"{23401053-03B3-845A-A946-32BEB58AB5AC}" = ccc-utility64
"{2426E29F-9E8C-4C0B-97FC-0DB690C1ED98}" = Windows Live Remote Client Resources
"{26A24AE4-039D-4CA4-87B4-2F86417045FF}" = Java 7 Update 45 (64-bit)
"{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1" = MPC-HC 1.7.10 (64-bit)
"{34DA4817-68E1-CC8B-A9A5-392095FA28C9}" = ATI Catalyst Install Manager
"{46A5FBE9-ADB3-4493-A1CC-B4CFFD24D26A}" = Windows Live Family Safety
"{480F28F0-8BCE-404A-A52E-0DBB7D1CE2EF}" = Windows Live Remote Service Resources
"{4B4E2FA2-3B1E-4147-99DB-5033981D8C2F}" = HP MediaSmart Movies and TV
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{4E7CCB76-687B-4C53-9A5E-08780AF3A551}" = Motorola Mobile Drivers Installation 5.9.0
"{5EB6F3CB-46F4-451F-A028-7F6D8D35D7D0}" = Windows Live Language Selector
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6B657BB5-92F6-345F-927C-514935C638B8}" = Microsoft .NET Framework 4.5.2 (PLK)
"{731A1D36-BF17-4C76-B7E7-CC055AF8C54E}" = HP MediaSmart SmartMenu
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007
"{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.6.1
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Microsoft .NET Framework 4.5.2 (Polski)
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9ADAB633-B300-4525-9611-C1D43C32EEDD}" = HP 3D DriveGuard
"{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{BD6F5371-DAC1-30F0-9DDE-CAC6791E28C3}" = Microsoft .NET Framework 4.6.1
"{C02C2C22-2EB1-47C8-B74F-8AB1A62FAE31}" = Windows Live Family Safety
"{C108C88F-DD17-408C-910C-686D1A4C82F5}" = Motorola MMCP Drivers Installation 1.0.2
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client
"{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service
"CCleaner" = CCleaner
"FileViewPro_is1" = FileViewPro
"GIMP-2_is1" = GIMP 2.8.0
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"Unlocker" = Unlocker 1.9.1-x64
"WinRAR archiver" = WinRAR 4.01 (64-bitowy)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = HP MediaSmart Webcam
"{050d4fc8-5d48-4b8f-8972-47c82c46020f}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501
"{0654EA5D-308A-4196-882B-5C09744A5D81}" = Windows Live Photo Common
"{07E49BC1-24FF-4D7A-AC74-727BE95801AF}" = LightScribe System Software
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{0A653E82-9056-A08A-8262-62F59FF285C7}" = CCC Help Korean
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0D542538-335E-08BA-21C5-62E9A7B2BE60}" = Catalyst Control Center InstallProxy
"{11A63D4E-6512-6D57-8690-3D656A483AB0}" = CCC Help French
"{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
"{147D8BB7-FEE8-5D53-390D-7FB94FC26BC8}" = CCC Help Italian
"{16734097-34B9-C5E3-7863-7A9CAAEB391F}" = ccc-core-static
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{254C37AA-6B72-4300-84F6-98A82419187E}" = ActiveCheck component for HP Active Support Library
"{26A24AE4-039D-4CA4-87B4-2F83217051FF}" = Java 7 Update 51
"{26E3C07C-7FF7-4362-9E99-9E49E383CF16}" = Windows Live Writer Resources
"{27CC6AB1-E72B-4179-AF1A-EAE507EBAF51}_is1" = ConvertHelper 2.2
"{28DB8373-C1BB-444F-A427-A55585A12ED7}" = Motorola Device Manager
"{2AADC4EE-94C8-422B-977B-547774C4A463}" = Motorola Device Software Update
"{2C7E8AA1-9C03-4606-BF34-5D99D07964DA}" = Windows Live Messenger
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{35772A32-7A3D-A8FC-840C-B84B536E62FD}" = CCC Help Swedish
"{3877C901-7B90-4727-A639-B6ED2DD59D43}" = ESU for Microsoft Windows 7
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology
"{42C095E5-4CE2-A376-9893-93431C6A236E}" = CCC Help Dutch
"{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}" = Recovery Manager
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
"{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}" = Windows Live PIMT Platform
"{543E6ACA-51B7-4283-82F2-57C0582A53C5}" = Windows Live UX Platform Language Pack
"{543F949F-2B95-448F-9F2E-56F0C5FF8E2C}" = Catalyst Control Center - Branding
"{5BA6D86E-AA0D-05FF-09B5-ED3CD5277A42}" = CCC Help German
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{64376910-1860-4CEF-8B34-AA5D205FC5F1}" = Poczta usługi Windows Live
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{669D4A35-146B-4314-89F1-1AC3D7B88367}" = HPAsset component for HP Active Support Library
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6B65BA9C-2E00-3BCB-8EA5-94A7841B39C1}" = CCC Help Thai
"{6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF}" = HP MediaSmart Photo
"{70743ADB-DD63-DA15-1E6C-32D88C54E04D}" = CCC Help English
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{745D37C2-26F4-4B65-BA13-F9840EBFA75B}" = Might & Magic Heroes VI
"{778E3C06-48EB-79CA-775E-BEA3086896AD}" = CCC Help Japanese
"{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}" = Windows Live Messenger Companion Core
"{7A083F0E-189D-9100-8883-3B7E75B53E3F}" = CCC Help Chinese Traditional
"{7A9D47BA-6D50-4087-866F-0800D8B89383}" = Podstawowe programy Windows Live
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver For Windows 7
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{8AE4C1DF-D685-56CB-4B4E-181A12FFAF55}" = CCC Help Turkish
"{8BA03AC2-579F-41CD-A250-740137D86F7A}" = PDFBinder
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007
"{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007
"{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007
"{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007
"{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007
"{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007
"{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007
"{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0415-1000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007
"{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007
"{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007
"{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007
"{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{91A34181-9FAD-43AB-A35F-E7A8945B7E1C}" = HP MediaSmart Music
"{925BC35B-CA11-577E-95C7-67C5BD4776BA}" = Catalyst Control Center Graphics Previews Common
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{93138715-2252-4107-C3C6-D7F8ACAD4956}" = CCC Help Finnish
"{9322A850-9091-4D0E-B252-3E82EDA3D94A}" = Prototype(TM)
"{95140000-007A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook Connector
"{95A73EEC-18CA-0C70-2E88-C6F901C69583}" = CCC Help Russian
"{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9C7243A7-5C0E-3190-A042-01D88F7BB791}" = CCC Help Portuguese
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{A29E18C2-7AB1-4b6b-848C-5D5E2C85F0C0}" = FIFA 13
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AA6F75E4-1807-4AAF-8CCC-4B9A48476BA5}" = Catalyst Control Center Localization All
"{AA7A2800-1E75-4240-855B-03AFF8E5171E}" = FIFA 14
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AC76BA86-0804-1033-1959-001824166751}" = Adobe Refresh Manager
"{AC76BA86-7AD7-1045-7B44-AC0F074E4100}" = Adobe Acrobat Reader DC - Polish
"{ACF5C43A-3E69-ED63-FCF9-831B3B9D1516}" = CCC Help Polish
"{AF144D2F-E890-B537-DC7C-DE01A8AC5405}" = CCC Help Norwegian
"{B04A0E2F-1E4C-4E61-B18E-3B2BD6779CA7}" = Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych
"{B4201487-FA15-8BCC-6833-E355A43CCCDB}" = Catalyst Control Center Graphics Previews Vista
"{B5DE2511-C5D3-0AAC-0470-606067398EBB}" = CCC Help Chinese Standard
"{BD8DA595-F501-4ABE-85A0-5C23E82472A0}" = Pomocnik Messenger
"{BEE64C14-BEF1-4610-8A68-A16EAA47B882}" = Futuremark SystemInfo
"{BF35168D-F6F9-4202-BA87-86B5E3C9BF7A}" = Windows Live Mesh
"{C0698BDA-0D29-40EE-8570-A31106DF9AB1}" = Medieval II Total War
"{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Atheros Driver Installation Program
"{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"{C77A8D2F-DE6E-E548-FA06-C56251441D95}" = CCC Help Spanish
"{CB3F59BB-7858-41A1-A7EA-4B8A6FC7D431}" = Galeria fotografii usługi Windows Live
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D12E3E7F-1B13-4933-A915-16C7DD37A095}" = HP MediaSmart Video
"{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.4.9 Game
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}" = Intel(R) Turbo Boost Technology Driver
"{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E20C1C3A-9C57-4218-B95E-A35F78352474}" = Motorola Software Update
"{E2494AD8-314D-44F8-B39C-4358A60DC184}" = LogMeIn Hamachi
"{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio
"{E55E0C35-AC3C-4683-BA2F-834348577B80}" = Windows Live Writer
"{E580DFEA-3F1D-4B56-9115-984217032FF5}" = Windows Live Sync
"{E93EAD24-E483-52AA-2E6F-C792E51E3F92}" = CCC Help Czech
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{ECB2E743-BFBD-7C77-6C62-F54ACD0ECE6D}" = CCC Help Hungarian
"{F0A06BEC-E4BA-DB4F-C3DF-37A3C77780EF}" = CCC Help Danish
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable
"{f65db027-aff3-4070-886a-0d87064aabb1}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501
"{F80E5450-3EF3-4270-B26C-6AC53BEC5E76}" = Windows Live Movie Maker
"{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
"{F90DE865-1A3D-D6D6-0638-F1D2EFCB5C29}" = PX Profile Update
"{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}" = DVD Menu Pack for HP MediaSmart Video
"{FD7DDB2A-445B-78D3-EAFB-6F7BE425285E}" = CCC Help Greek
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"7-Zip" = 7-Zip 9.20
"Adobe Flash Player ActiveX" = Adobe Flash Player 20 ActiveX
"Adobe Flash Player NPAPI" = Adobe Flash Player 20 NPAPI
"Adobe Shockwave Player" = Adobe Shockwave Player 12.0
"AIMP3" = AIMP3
"avast" = Avast Free Antivirus
"DAEMON Tools Lite" = DAEMON Tools Lite
"DVD Shrink_is1" = DVD Shrink 3.2
"ENTERPRISE" = Microsoft Office Enterprise 2007
"EVEREST Home Edition_is1" = EVEREST Home Edition v2.20
"FileZilla Client" = FileZilla Client 3.5.3
"Fraps" = Fraps
"Free PS Convert driver_is1" = Free PS Convert driver 8.15
"Google Chrome" = Google Chrome
"HoboSoccer_is1" = HoboSoccer v1.2
"HP DVB-T TV Tuner" = HP DVB-T TV Tuner 8.0.64.43
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = HP MediaSmart Webcam
"InstallShield_{6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF}" = HP MediaSmart Photo
"InstallShield_{91A34181-9FAD-43AB-A35F-E7A8945B7E1C}" = HP MediaSmart Music
"InstallShield_{9322A850-9091-4D0E-B252-3E82EDA3D94A}" = Prototype(TM)
"InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"InstallShield_{D12E3E7F-1B13-4933-A915-16C7DD37A095}" = HP MediaSmart Video
"InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
"InstallShield_{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}" = DVD Menu Pack for HP MediaSmart Video
"KLiteCodecPack_is1" = K-Lite Codec Pack 7.7.0 (Full)
"LogMeIn Hamachi" = LogMeIn Hamachi
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 2.0.4.1028
"Maxthon3" = Maxthon 3
"Mozilla Firefox 44.0.2 (x86 pl)" = Mozilla Firefox 44.0.2 (x86 pl)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Mp3 Knife_is1" = Mp3 Knife 3.4
"NapiProjekt_is1" = NapiProjekt 2.0.0 (build 2151)
"OpenAL" = OpenAL
"Opera 12.16.1860" = Opera 12.16
"Origin" = Origin
"PDF-to-Word Demo_is1" = PDF-to-Word Demo version 3.5.1.1
"PunkBusterSvc" = PunkBuster Services
"Samsung Printer Live Update" = Samsung Printer Live Update
"SopCast" = SopCast 3.5.0
"Spolszczenie do Medieval 2: Total War" = Spolszczenie do Medieval 2: Total War
"SubEdit-Player_is1" = SubEdit-Player
"The Elder Scrolls V Skyrim_is1" = The Elder Scrolls V Skyrim
"uTorrent" = µTorrent
"VLC media player" = VLC media player 1.1.8
"WinLiveSuite" = Podstawowe programy Windows Live
 
[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]
 
[HKEY_USERS\S-1-5-21-3681182759-2108321558-1885225947-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"GameRanger" = GameRanger
"OpenFM" = OpenFM
"uTorrent" = µTorrent
 
[color=#E56717]========== Last 20 Event Log Errors ==========[/color]
 
[ Application Events ]
Error - 2016-01-31 04:25:36 | Computer Name = Piotrek | Source = Windows Search Service | ID = 3058
Description = 
 
Error - 2016-01-31 04:25:36 | Computer Name = Piotrek | Source = Windows Search Service | ID = 7010
Description = 
 
Error - 2016-01-31 04:25:36 | Computer Name = Piotrek | Source = Windows Search Service | ID = 7042
Description = 
 
Error - 2016-01-31 04:27:55 | Computer Name = Piotrek | Source = ESENT | ID = 490
Description = Windows (4972) Windows: Próba otwarcia pliku "C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.chk"
 w trybie odczytu lub zapisu zakończyła się niepomyślnie z błędem systemowym 32 
(0x00000020): "Proces nie może uzyskać dostępu do pliku, ponieważ jest on używany
 przez inny proces. ". Operacja otwierania pliku zostanie zakończona z błędem -1032
 (0xfffffbf8).
 
Error - 2016-01-31 04:28:05 | Computer Name = Piotrek | Source = ESENT | ID = 485
Description = Windows (4972) Windows: Próba usunięcia pliku "C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.chk"
 zakończyła się niepomyślnie z błędem systemowym 32 (0x00000020): "Proces nie może
 uzyskać dostępu do pliku, ponieważ jest on używany przez inny proces. ". Operacja
 usuwania pliku zostanie zakończona z błędem -1032 (0xfffffbf8).
 
Error - 2016-01-31 04:28:06 | Computer Name = Piotrek | Source = Windows Search Service | ID = 9000
Description = 
 
Error - 2016-01-31 04:28:06 | Computer Name = Piotrek | Source = Windows Search Service | ID = 1006
Description = 
 
Error - 2016-02-09 17:46:19 | Computer Name = Piotrek | Source = Windows Search Service | ID = 3007
Description = 
 
Error - 2016-02-12 14:19:15 | Computer Name = Piotrek | Source = ESENT | ID = 455
Description = taskhost (2388) WebCacheLocal: Wystąpił błąd -1811 podczas otwierania
 pliku dziennika C:\Users\abc\AppData\Local\Microsoft\Windows\WebCache\V0100039.log.
 
Error - 2016-02-24 08:27:50 | Computer Name = PIOTREK | Source = ATIeRecord | ID = 16388
Description = ATI EEU Client event error
 
[ System Events ]
Error - 2016-02-25 10:06:10 | Computer Name = Piotrek | Source = ipnathlp | ID = 31004
Description = 
 
Error - 2016-02-25 10:06:10 | Computer Name = Piotrek | Source = ipnathlp | ID = 31004
Description = 
 
Error - 2016-02-25 10:25:12 | Computer Name = Piotrek | Source = ipnathlp | ID = 31004
Description = 
 
Error - 2016-02-25 11:02:36 | Computer Name = Piotrek | Source = ipnathlp | ID = 31004
Description = 
 
Error - 2016-02-26 03:48:45 | Computer Name = Piotrek | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi LogMeIn Hamachi Tunneling Engine z powodu
 następującego błędu:   %%2
 
Error - 2016-02-26 03:50:26 | Computer Name = Piotrek | Source = Service Control Manager | ID = 7009
Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się
 z usługą Usługa udostępniania w sieci programu Windows Media Player.
 
Error - 2016-02-26 03:50:26 | Computer Name = Piotrek | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Usługa udostępniania w sieci programu Windows
 Media Player z powodu następującego błędu:   %%1053
 
Error - 2016-02-26 03:52:00 | Computer Name = Piotrek | Source = DCOM | ID = 10010
Description = 
 
Error - 2016-02-26 03:52:00 | Computer Name = Piotrek | Source = Microsoft-Windows-LanguagePackSetup | ID = 1000
Description = Inicjacja klienta CBS nie powiodła się. Ostatni błąd: 0x80080005
 
Error - 2016-02-26 06:03:57 | Computer Name = Piotrek | Source = ipnathlp | ID = 31004
Description = 
 
 
< End of report >