OTL Extras logfile created on: 2012-07-16 12:34:58 - Run 1 OTL by OldTimer - Version 3.2.53.1 Folder = C:\Users\admin\Desktop 64bit- Professional (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 4,00 Gb Total Physical Memory | 3,00 Gb Available Physical Memory | 74,94% Memory free 7,99 Gb Paging File | 6,99 Gb Available in Paging File | 87,39% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 39,90 Gb Total Space | 20,24 Gb Free Space | 50,73% Space Free | Partition Type: NTFS Drive D: | 100,00 Gb Total Space | 99,91 Gb Free Space | 99,91% Space Free | Partition Type: NTFS Drive E: | 100,00 Gb Total Space | 76,25 Gb Free Space | 76,25% Space Free | Partition Type: NTFS Drive F: | 132,61 Gb Total Space | 48,41 Gb Free Space | 36,51% Space Free | Partition Type: NTFS Computer Name: TOSHIBA_23E | User Name: admin | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-1862340125-2762204913-1544440255-1001\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "AntiVirusOverride" = 1 "AntiVirusDisableNotify" = 1 "FirewallDisableNotify" = 1 "FirewallOverride" = 1 "UpdatesDisableNotify" = 1 "UacDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 1 "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{01055448-09C4-429C-8D78-82CC461AED84}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{08022BA6-F7C3-455F-A917-2ECE1DFD9AC4}" = rport=139 | protocol=6 | dir=out | app=system | "{10ED481B-9084-4E38-B7A2-EE5F9BDE21E4}" = lport=137 | protocol=17 | dir=in | app=system | "{207127FA-1915-4DCE-B3F1-1E9487BC9997}" = lport=138 | protocol=17 | dir=in | app=system | "{3B65DDA9-68E8-4ED7-8E76-3D2DF86C7C34}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{49994168-0D74-4CDF-BA3F-B0E702BED356}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{547E911B-4B1A-47D2-8F4B-A2B7B37938EA}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{5E3A6360-4CA5-4404-8E59-0CD490667FA8}" = rport=445 | protocol=6 | dir=out | app=system | "{6ACA2FA4-2FD6-4937-9B73-5A193CDDCEE7}" = rport=137 | protocol=17 | dir=out | app=system | "{7AEABC27-7531-40EB-9D0A-CB257F5FEBDE}" = lport=2869 | protocol=6 | dir=in | app=system | "{85FF08BB-9F52-45B6-A66B-F9520CDF0960}" = rport=138 | protocol=17 | dir=out | app=system | "{8B6467A0-372C-410B-882D-7061D7EEE558}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{900D3886-7123-43E2-95EF-70CB56EEC71F}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{9D9AE385-F831-4F44-A2C6-09AE9CBBF7A4}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{A0BAC0B4-1277-486B-8B9F-7C791239C5B9}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{A14081A4-1416-40D3-A0E6-501470CF9A08}" = lport=139 | protocol=6 | dir=in | app=system | "{A4534F0E-9AB7-4017-8D33-0DDD4D3D7694}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{BA1916B9-E71F-44FA-9C60-0422BC29BD06}" = lport=445 | protocol=6 | dir=in | app=system | "{C7453738-6ABB-4731-BBFE-A594599C3547}" = rport=10243 | protocol=6 | dir=out | app=system | "{E48827C6-4387-46E3-BA2F-B9F071EB3AD7}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{FBF25C60-C21E-4071-ACCC-78EA0AE06530}" = lport=10243 | protocol=6 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{126B7B44-F8EF-45E6-AC42-90364C6DCD02}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{1E4EC00D-653A-4007-BCDF-F8BB4975F4FE}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{279B5744-E255-46C7-9E5C-BF555AF260F7}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{422B7627-F78A-455D-B60A-364095CC63FE}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{4FF0BD19-FF77-4496-81A5-35FE24D64A74}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{507EDA68-F2AB-4B2F-977F-B3F8BF67EE62}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{6098D1B5-47C8-4FAC-9A73-FC1471C79435}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{6532175F-9825-4327-82B1-57E7FE6F40B0}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{68FF98CF-BC3F-4000-824D-9BEB9B29B767}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{69869220-29BD-4B1F-AA2F-4D335D12BBFF}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{6A32735D-0CA6-4FFA-9B9A-B6DC8CE331BE}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{908CDB73-5B78-452B-AFCF-140A86D61A76}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{9894A3E2-5486-4657-98E2-DB47B072C846}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{A3BF9D90-9DEF-4F45-BDD5-DBA68CF8CC3F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{A59C26C2-60CC-42FF-9C37-60ECF50D0D76}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{AE0EB455-BBE9-416D-BE2E-FFE05BBF8964}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{B5F27D90-D7DD-4A91-8050-5BA506101D43}" = protocol=6 | dir=out | app=system | "{C8CFEBFB-E679-42D6-93BF-D03F46304C53}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{EA7E6F49-EB04-4876-A0E5-F9F4CFD0ED15}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "TCP Query User{10EB4D4C-B404-4B0E-9893-CE3571FF06E9}C:\program files (x86)\nikon\nikon message center 2\nkmc2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\nikon\nikon message center 2\nkmc2.exe | "TCP Query User{8B231982-CC6D-4F8E-915A-A11222458207}E:\drivers\stery a300 23e xp\wireless lan driver\wlan driver intel\dpinst32.exe" = protocol=6 | dir=in | app=e:\drivers\stery a300 23e xp\wireless lan driver\wlan driver intel\dpinst32.exe | "TCP Query User{8F401476-81DE-4089-8D5E-0A128975715C}C:\program files (x86)\adobe\reader 9.0\reader\reader_sl.exe" = protocol=6 | dir=in | app=c:\program files (x86)\adobe\reader 9.0\reader\reader_sl.exe | "TCP Query User{9429A19E-4441-4B08-A52C-583C2B020F9B}C:\program files (x86)\common files\adobe\cs5servicemanager\cs5servicemanager.exe" = protocol=6 | dir=in | app=c:\program files (x86)\common files\adobe\cs5servicemanager\cs5servicemanager.exe | "TCP Query User{CEDCEBC2-6B2B-40C5-8AB4-F9F9E5B0572D}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe | "TCP Query User{DA64DEB1-7741-48E4-A744-484844F3ADA9}C:\users\admin\desktop\cs5\photoshop cs5 (asiaxd)\keygen.exe" = protocol=6 | dir=in | app=c:\users\admin\desktop\cs5\photoshop cs5 (asiaxd)\keygen.exe | "TCP Query User{E94B94E6-1B0F-4358-9C89-B4DE683670F2}C:\users\admin\desktop\stery a300 23e xp\wireless lan driver\wlan driver intel\dpinst32.exe" = protocol=6 | dir=in | app=c:\users\admin\desktop\stery a300 23e xp\wireless lan driver\wlan driver intel\dpinst32.exe | "UDP Query User{4DDC5910-7080-42FB-9350-511463870F22}C:\program files (x86)\nikon\nikon message center 2\nkmc2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\nikon\nikon message center 2\nkmc2.exe | "UDP Query User{6925EB11-7C1A-4A7F-97DC-23AF539DB7A1}C:\users\admin\desktop\stery a300 23e xp\wireless lan driver\wlan driver intel\dpinst32.exe" = protocol=17 | dir=in | app=c:\users\admin\desktop\stery a300 23e xp\wireless lan driver\wlan driver intel\dpinst32.exe | "UDP Query User{709390DA-5003-4E52-BA4E-26B7538EA71C}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe | "UDP Query User{809166CE-B5F9-4DA9-BD7D-E85B31D8B603}C:\program files (x86)\common files\adobe\cs5servicemanager\cs5servicemanager.exe" = protocol=17 | dir=in | app=c:\program files (x86)\common files\adobe\cs5servicemanager\cs5servicemanager.exe | "UDP Query User{91017E08-909E-49F9-B5B5-D13BAD633FDE}C:\program files (x86)\adobe\reader 9.0\reader\reader_sl.exe" = protocol=17 | dir=in | app=c:\program files (x86)\adobe\reader 9.0\reader\reader_sl.exe | "UDP Query User{96A7F8A1-68E9-41F0-95DB-E9064270FA08}C:\users\admin\desktop\cs5\photoshop cs5 (asiaxd)\keygen.exe" = protocol=17 | dir=in | app=c:\users\admin\desktop\cs5\photoshop cs5 (asiaxd)\keygen.exe | "UDP Query User{E8CA6D8E-CCDA-4CA7-92B0-C8A629397162}E:\drivers\stery a300 23e xp\wireless lan driver\wlan driver intel\dpinst32.exe" = protocol=17 | dir=in | app=e:\drivers\stery a300 23e xp\wireless lan driver\wlan driver intel\dpinst32.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{11953C65-BB4E-4CA4-B0F0-2600A4B20040}" = Picture Control Utility x64 "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64 "{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64 "{635BE602-BB9C-4C59-8CC5-93F9366E8A21}" = ViewNX 2 "{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64 "{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64 "{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64 "{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64 "{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86 "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86 "{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help "{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86 "{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5 "{5CAD3393-EEC0-44CE-9F93-BCAA365B77FB}" = Nikon Movie Editor "{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{90110415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003 "{90120000-0020-0415-0000-0000000FF1CE}" = Pakiet zgodności dla systemu Office 2007 "{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86 "{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR "{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5 "{AC76BA86-7AD7-1045-7B44-A95000000001}" = Adobe Reader 9.5.1 - Polish "{B014EE44-9197-4513-9613-71E6EB1B514E}" = Nikon Message Center 2 "{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86 "{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86 "{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{FE77909E-B782-4554-A92A-4D887CEF0ACC}_is1" = ALLMediaServer "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "ALLPlayer_is1" = ALLPlayer V5.X "chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help "com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player "Gadu-Gadu 10" = Gadu-Gadu 10 "IrfanView" = IrfanView (remove only) "KLiteCodecPack_is1" = K-Lite Codec Pack 9.0.2 (Full) "Mozilla Firefox 13.0.1 (x86 pl)" = Mozilla Firefox 13.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Nero - Burning Rom!UninstallKey" = Nero 6 Ultra Edition "QuickStores-Toolbar_is1" = QuickStores-Toolbar 1.1.0 "quicktime_lite_is1" = QT Lite 4.1.0 "RealAlt_is1" = Real Alternative 2.0.2 "TC UP 2.0_is1" = TC UP 2.0 "UltraISO_is1" = UltraISO Premium V8.2 "Unlocker" = Unlocker 1.9.1 "Winamp" = Winamp "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1862340125-2762204913-1544440255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Winamp Detect" = Detektor Winampa [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-07-12 07:06:55 | Computer Name = Toshiba_23E | Source = MsiInstaller | ID = 10005 Description = Error - 2012-07-12 08:09:13 | Computer Name = Toshiba_23E | Source = MsiInstaller | ID = 11500 Description = Error - 2012-07-12 14:21:57 | Computer Name = Toshiba_23E | Source = Wininit | ID = 1015 Description = Błąd krytycznego procesu systemowego C:\Windows\system32\lsm.exe z kodem stanu 1. Komputer musi być ponownie uruchomiony. Error - 2012-07-12 15:57:15 | Computer Name = Toshiba_23E | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: Photoshop.exe, wersja: 12.0.0.0, sygnatura czasowa: 0x4bbc56b6 Nazwa modułu powodującego błąd: Photoshop.exe, wersja: 12.0.0.0, sygnatura czasowa: 0x4bbc56b6 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0281117a Identyfikator procesu powodującego błąd: 0x89c Godzina uruchomienia aplikacji powodującej błąd: 0x01cd606843bdb8eb Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Adobe\Adobe Photoshop CS5\Photoshop.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Adobe\Adobe Photoshop CS5\Photoshop.exe Identyfikator raportu: c6eb659c-cc5b-11e1-8ccd-002258e780a8 Error - 2012-07-12 16:03:35 | Computer Name = Toshiba_23E | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: Photoshop.exe, wersja: 12.0.0.0, sygnatura czasowa: 0x4bbc56b6 Nazwa modułu powodującego błąd: Photoshop.exe, wersja: 12.0.0.0, sygnatura czasowa: 0x4bbc56b6 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0281117a Identyfikator procesu powodującego błąd: 0xbe4 Godzina uruchomienia aplikacji powodującej błąd: 0x01cd60696953af0a Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Adobe\Adobe Photoshop CS5\Photoshop.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Adobe\Adobe Photoshop CS5\Photoshop.exe Identyfikator raportu: a936c16b-cc5c-11e1-b4a2-002258e780a8 [ System Events ] Error - 2012-07-12 16:01:34 | Computer Name = Toshiba_23E | Source = bowser | ID = 8003 Description = Error - 2012-07-12 17:41:48 | Computer Name = Toshiba_23E | Source = bowser | ID = 8003 Description = Error - 2012-07-16 05:57:01 | Computer Name = Toshiba_23E | Source = Service Control Manager | ID = 7031 Description = Usługa Windows Audio niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2012-07-16 05:57:01 | Computer Name = Toshiba_23E | Source = Service Control Manager | ID = 7031 Description = Usługa Klient DHCP niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2012-07-16 05:57:01 | Computer Name = Toshiba_23E | Source = Service Control Manager | ID = 7031 Description = Usługa Dziennik zdarzeń systemu Windows niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2012-07-16 05:57:01 | Computer Name = Toshiba_23E | Source = Service Control Manager | ID = 7031 Description = Usługa Dostawca grupy domowej niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2012-07-16 05:57:01 | Computer Name = Toshiba_23E | Source = Service Control Manager | ID = 7031 Description = Usługa Pomoc TCP/IP NetBIOS niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 100 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2012-07-16 05:57:01 | Computer Name = Toshiba_23E | Source = Service Control Manager | ID = 7031 Description = Usługa Centrum zabezpieczeń niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2012-07-16 05:57:06 | Computer Name = Toshiba_23E | Source = Service Control Manager | ID = 7031 Description = Usługa Windows Defender niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 2012-07-16 05:58:06 | Computer Name = Toshiba_23E | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 11:56:55 na ?2012-?07-?16 było nieoczekiwane. < End of report >