Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- OTL Extras logfile created on: 21.9.2014. 22:16:28 - Run 1
- OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Denis\Desktop
- 64bit- Enterprise Edition (Version = 6.2.9200) - Type = NTWorkstation
- Internet Explorer (Version = 9.10.9200.17088)
- Locale: 0000041a | Country: Hrvatska | Language: HRV | Date Format: d.M.yyyy.
- 5,75 Gb Total Physical Memory | 3,58 Gb Available Physical Memory | 62,30% Memory free
- 6,69 Gb Paging File | 4,12 Gb Available in Paging File | 61,59% Paging File free
- Paging file location(s): ?:\pagefile.sys [binary data]
- %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
- Drive C: | 97,66 Gb Total Space | 43,86 Gb Free Space | 44,91% Space Free | Partition Type: NTFS
- Drive D: | 97,56 Gb Total Space | 66,71 Gb Free Space | 68,38% Space Free | Partition Type: NTFS
- Drive E: | 270,45 Gb Total Space | 160,03 Gb Free Space | 59,17% Space Free | Partition Type: NTFS
- Computer Name: DENIS | User Name: Denis | Logged in as Administrator.
- Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
- Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
- [color=#E56717]========== Extra Registry (SafeList) ==========[/color]
- [color=#E56717]========== File Associations ==========[/color]
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
- .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
- .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
- [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
- .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
- .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
- [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
- .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
- [color=#E56717]========== Shell Spawning ==========[/color]
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
- batfile [open] -- "%1" %*
- cmdfile [open] -- "%1" %*
- comfile [open] -- "%1" %*
- exefile [open] -- "%1" %*
- helpfile [open] -- Reg Error: Key error.
- htafile [open] -- "%1" %*
- htmlfile [edit] -- Reg Error: Key error.
- htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
- http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
- InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
- InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
- piffile [open] -- "%1" %*
- regfile [merge] -- Reg Error: Key error.
- scrfile [config] -- "%1"
- scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
- scrfile [open] -- "%1" /S
- txtfile [edit] -- Reg Error: Key error.
- Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
- Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
- Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Folder [explore] -- Reg Error: Value error.
- Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
- [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
- batfile [open] -- "%1" %*
- cmdfile [open] -- "%1" %*
- comfile [open] -- "%1" %*
- cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
- exefile [open] -- "%1" %*
- helpfile [open] -- Reg Error: Key error.
- htafile [open] -- "%1" %*
- htmlfile [edit] -- Reg Error: Key error.
- htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
- http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
- piffile [open] -- "%1" %*
- regfile [merge] -- Reg Error: Key error.
- scrfile [config] -- "%1"
- scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
- scrfile [open] -- "%1" /S
- txtfile [edit] -- Reg Error: Key error.
- Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
- Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
- Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Folder [explore] -- Reg Error: Value error.
- Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
- [color=#E56717]========== Security Center Settings ==========[/color]
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
- "cval" = 1
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
- "VistaSp1" = CE 37 E6 AF FF 6A CD 01 [binary data]
- "AntiVirusOverride" = 0
- "AntiSpywareOverride" = 0
- "FirewallOverride" = 0
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
- [color=#E56717]========== Firewall Settings ==========[/color]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
- "EnableFirewall" = 1
- "DisableNotifications" = 0
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
- "EnableFirewall" = 1
- "DisableNotifications" = 0
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
- "EnableFirewall" = 1
- "DisableNotifications" = 0
- [color=#E56717]========== Authorized Applications List ==========[/color]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
- "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access -- (Safer-Networking Ltd.)
- "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.)
- "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.)
- "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.)
- "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access -- (Safer-Networking Ltd.)
- "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.)
- "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.)
- "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.)
- [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
- "{0B7D88BA-D8F6-4B5D-9653-70749EB8088F}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
- "{1E27CAA3-F569-4E1B-A02F-D7C396BEB4AD}" = rport=10243 | protocol=6 | dir=out | app=system |
- "{29FC21FB-2223-4934-971E-7F01E1B86E25}" = rport=138 | protocol=17 | dir=out | app=system |
- "{465DFD1D-5F3C-4765-A14D-135199C9BE0E}" = lport=137 | protocol=17 | dir=in | app=system |
- "{49E414BA-2555-49AE-999F-B2BA0C3FA9FA}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
- "{4C44A29F-7190-4469-939D-2C1832F0D58F}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
- "{4DF83A79-255A-4CF0-B4A5-BCB53A2DA5C2}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
- "{59061B76-4824-47F9-B710-DEE2C1DF667D}" = lport=10243 | protocol=6 | dir=in | app=system |
- "{5D10CA6D-2846-4F4A-92E6-05F5B02DA243}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
- "{69949BAB-09E9-4E21-8EF7-2405B85FB27F}" = lport=445 | protocol=6 | dir=in | app=system |
- "{725AB476-1D78-4187-A7FD-2ADD84D6B3E3}" = lport=139 | protocol=6 | dir=in | app=system |
- "{773F3B08-251B-4289-AEAD-BBC1233764BC}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
- "{83964918-7C93-4967-8A4F-FC3ABBD2AA60}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
- "{964CF8B0-9525-4662-96B1-D5EA9FD70CC3}" = rport=139 | protocol=6 | dir=out | app=system |
- "{9CF73146-5693-4119-845C-AE5049C2BFB1}" = lport=2869 | protocol=6 | dir=in | app=system |
- "{A50F61E3-876C-4DE4-8927-042E7211CCA3}" = rport=445 | protocol=6 | dir=out | app=system |
- "{A6111049-DCBE-462E-8943-0A310334B5D6}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
- "{E35EEEFD-E29F-4EDE-B30C-54CD5BDD5A7C}" = lport=138 | protocol=17 | dir=in | app=system |
- "{E743DE78-3771-493B-BAAA-A46796587351}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
- "{E9AED2FF-6FF1-4A1C-95CB-4567AB646BCD}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
- "{ECBFE205-48D2-4A90-ACFA-6600A3726F6D}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
- "{F2F3238B-ECC5-42CE-B28A-D568585FCE3E}" = rport=137 | protocol=17 | dir=out | app=system |
- [color=#E56717]========== Vista Active Application Exception List ==========[/color]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
- "{04A4B099-EC8C-4E44-AFE5-923163469327}" = protocol=6 | dir=in | app=c:\program files (x86)\nero\km\kwikmedia.exe |
- "{0FB007B1-4570-4F5D-A3E7-889A14C8595E}" = dir=out | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} |
- "{10E28DDE-A4E5-4761-B84F-66241D5C0B57}" = dir=in | app=c:\users\denis\appdata\local\viber\viber.exe |
- "{18240CBF-6212-438F-AAEF-DCF47749EE75}" = dir=out | name=@{microsoft.zunemusic_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} |
- "{1A7B90EB-4A77-4857-B461-8F69B9B5283C}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
- "{1ABAB68E-98A6-47A7-9A2B-9B9C081B5D7C}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
- "{1D53CE0E-FDA9-4C05-BCAA-066273F412DD}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
- "{1D6F65C7-01A2-4956-98C0-AF7FBC8654C2}" = dir=out | name=@{microsoft.bingtravel_1.2.0.145_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} |
- "{22FD06BF-1F7A-4371-B3B3-7593765A1F7C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
- "{29E4A75D-2D38-4B10-AD30-F970B4AEAC34}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
- "{2D0BED55-8FA3-4A45-90A4-7F10CD4BA43C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
- "{2D0ED1CE-816E-4CA8-AE46-C4562EB91E87}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
- "{3AEF2523-3A45-42B5-9DF0-25C1A87058C0}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
- "{575FFD9F-BB80-48F8-8BAD-5E2285A071EC}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
- "{5BA15F23-F9AB-42BE-9E7A-49BA297CB91B}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe |
- "{64ACD43F-8616-46C7-A314-84C78FB2DEB8}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} |
- "{667C23E4-7417-4381-9DE1-8ED9611A6AB1}" = dir=in | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} |
- "{668F7E71-C62D-484B-BA10-430CC4EBFF65}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe |
- "{67E28240-E357-43DA-B04A-BDAF456AD28F}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
- "{6B0B1C47-4501-4307-B9AF-FF0790AE2A46}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe |
- "{6BEAA686-4B1F-46EA-92C7-650F40F3BE91}" = dir=out | name=@{microsoft.zunevideo_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} |
- "{6C61F6A2-EB92-441A-A59C-2153C8BA8830}" = dir=out | name=@{microsoft.bingsports_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} |
- "{6EE85F48-E5D2-4F65-92AC-1730269B300C}" = dir=in | app=c:\users\denis\appdata\local\facebook\video\skype\facebookvideocalling.exe |
- "{73F5372D-D425-470E-9342-88C479546194}" = protocol=17 | dir=in | app=c:\program files (x86)\nero\km\kwikmedia.exe |
- "{76AA5B90-C5CD-4A08-A3B8-10D7CEF5A450}" = dir=out | name=@{microsoft.bingfinance_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} |
- "{79D52A75-0533-45A2-BEE4-DDB31DD1EBCE}" = dir=out | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} |
- "{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
- "{819FFD8E-7715-4DF8-A6E4-3244850962B8}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
- "{826C17F8-3B35-4324-B769-24AF2090EE1E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
- "{846B36E6-7D51-4FE1-9993-388477AEC0E4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
- "{8AC0B0AB-4DB9-4631-B68F-D51CE24A606F}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
- "{8CC5BB09-F5DF-40B5-9EC2-E74FA5128A05}" = dir=out | name=@{microsoft.xboxlivegames_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
- "{8E2EECDF-5BE6-4252-8330-2C29380A9A43}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
- "{96714965-B34D-40AB-A595-0B3BF892EDDE}" = protocol=17 | dir=in | app=c:\program files (x86)\remote mouse\remotemouse.exe |
- "{97133AE2-B049-4225-9000-A4D65AA43B5E}" = dir=out | name=@{microsoft.bingnews_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} |
- "{9907F234-71FE-40AE-8E31-8E4189AC7E71}" = dir=out | name=@{microsoft.bingweather_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} |
- "{9AB1DE95-14BA-477B-A5EE-5D6D60A55BF2}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe |
- "{A3943483-63CA-4D91-8A39-D0B9D7256B01}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
- "{A3D37FAC-9607-4C48-9CD4-FCE305636F95}" = protocol=6 | dir=in | app=c:\program files (x86)\remote mouse\remotemouse.exe |
- "{A5D7A9C2-8682-42BB-9701-060B5A1030E7}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
- "{ACD3B5CD-324F-4E2B-8B73-7CF1A8D6FDA0}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
- "{AE888488-335D-41B2-AF4A-B456F82B316E}" = protocol=17 | dir=in | app=c:\users\denis\appdata\roaming\utorrent\utorrent.exe |
- "{AF1B599B-8A63-440F-9142-D2A2F5411B74}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
- "{B7AD8BF9-DA0F-48A1-A3F6-E39E81F148BE}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
- "{B984DC5B-90E0-4F44-989B-D0F0C2C97588}" = protocol=6 | dir=out | app=system |
- "{BE47E906-BE87-417F-819A-4A00F49A51E6}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
- "{C2344994-A936-4DF1-A4F1-D8F40080B973}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
- "{C30CF534-B2AD-425E-AB61-5A28994DD9AD}" = protocol=6 | dir=in | app=c:\users\denis\appdata\roaming\utorrent\utorrent.exe |
- "{CAC15BCE-CACB-41A8-BBE4-9F332575351E}" = dir=in | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} |
- "{CC020E78-A544-4D5D-A1A8-2C2717EFEC3D}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
- "{CE3E12B3-5FA0-4E34-B5FF-2C807B369F28}" = dir=out | name=@{microsoft.bingmaps_1.2.0.136_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
- "{D252EB23-AC20-4506-9F03-EC8D2BD2C577}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
- "{D9037403-97F5-4530-8576-600B292AD7CB}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
- "{D90E5026-B472-415F-A320-4166600237E5}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
- "{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
- "{EA274475-A5D1-4641-921A-A54121E215FB}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
- "{F1F35E74-2B6F-445C-97D6-30598774A1D4}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
- "{F3C55E16-DA95-4366-AB4A-854FF5C337A8}" = dir=in | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} |
- "{FAB7BA36-45A4-49A6-BB44-E745C856E702}" = dir=out | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} |
- "TCP Query User{1D4898EE-F3F8-47B4-A38D-E750E62C337F}C:\users\denis\appdata\local\temp\kmsnano\qemu-system-i386.exe" = protocol=6 | dir=in | app=c:\users\denis\appdata\local\temp\kmsnano\qemu-system-i386.exe |
- "TCP Query User{61994D2B-237A-4DF1-B60D-7F11233713BF}C:\program files (x86)\mouseserver\mouseserver.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mouseserver\mouseserver.exe |
- "TCP Query User{77D8744A-4627-411E-8FB9-9137AD5F4253}D:\nova mapa\bitcoin\bitcoin-qt.exe" = protocol=6 | dir=in | app=d:\nova mapa\bitcoin\bitcoin-qt.exe |
- "TCP Query User{7F9E3BCA-66C5-437C-AF20-EA06CD972142}C:\program files (x86)\huawei technologies\mobile connect\mobile connect.exe" = protocol=6 | dir=in | app=c:\program files (x86)\huawei technologies\mobile connect\mobile connect.exe |
- "TCP Query User{B5AD8670-6DEF-42A6-A336-1359B58BEE16}C:\program files (x86)\remote mouse\remotemouse.exe" = protocol=6 | dir=in | app=c:\program files (x86)\remote mouse\remotemouse.exe |
- "UDP Query User{16B4FB38-3BA7-408B-BBAB-401A769909AC}C:\users\denis\appdata\local\temp\kmsnano\qemu-system-i386.exe" = protocol=17 | dir=in | app=c:\users\denis\appdata\local\temp\kmsnano\qemu-system-i386.exe |
- "UDP Query User{6EE0F022-3AE6-40E6-8D46-CD769A55E323}D:\nova mapa\bitcoin\bitcoin-qt.exe" = protocol=17 | dir=in | app=d:\nova mapa\bitcoin\bitcoin-qt.exe |
- "UDP Query User{8E2A7B4A-2203-4AD9-A3DE-3F169500F368}C:\program files (x86)\mouseserver\mouseserver.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mouseserver\mouseserver.exe |
- "UDP Query User{A7A92702-72BD-43ED-AC9D-B43BC71CC09C}C:\program files (x86)\remote mouse\remotemouse.exe" = protocol=17 | dir=in | app=c:\program files (x86)\remote mouse\remotemouse.exe |
- "UDP Query User{D3B4B9CC-F699-4088-9AAB-F6B97FE21BEE}C:\program files (x86)\huawei technologies\mobile connect\mobile connect.exe" = protocol=17 | dir=in | app=c:\program files (x86)\huawei technologies\mobile connect\mobile connect.exe |
- [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
- 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
- "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
- "{1F7E4FF9-D2E5-4258-9AE1-E16E6CB3252A}" = SpyHunter
- "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
- "{5A68A656-979F-4168-8795-E2E368AA4DC2}" = iTunes
- "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
- "{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
- "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
- "{787136D2-F0F8-4625-AA3F-72D7795AC842}" = Apple Mobile Device Support
- "{81E20D41-C277-4526-934D-F2380AF91B78}" = iCloud
- "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
- "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
- "{CD95F661-A5C4-44F5-A6AA-ECDD91C240DF}" = WinZip 18.0
- "{e9d90870-ab19-32a8-aa93-f8348ba21d05}" = Python 3.3.3 (64-bit)
- "{E9F0BCD8-6BD5-1ED7-EDA3-9FCF2A478AA1}" = Microsoft App Update for microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe (x64)
- "CCleaner" = CCleaner
- "CPUID HWMonitor_is1" = CPUID HWMonitor 1.22
- "WinRAR archiver" = WinRAR 5.00 (64-bit)
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
- "{0071820F-09B0-4998-8320-F89629DCBC99}" = Nero BackItUp
- "{052A1E34-A54B-458C-A4E3-24C3E054754A}" = Nero Kwik Media
- "{0708FF30-78C0-47B0-81F0-C84604DC769C}" = Nero Express Help (CHM)
- "{0B311221-05A5-4766-8D03-7A6446794156}" = Nero RescueAgent Help (CHM)
- "{0E4630AF-0AB7-440E-A978-1A78FC4F43B9}" = Nero Launcher
- "{111EE7DF-FC45-40C7-98A7-753AC46B12FB}" = QuickTime 7
- "{1943C3BD-4462-4612-92C3-D36DD917C447}" = Nero Recode
- "{1B6F5E51-575E-4693-BCA2-7543570D076D}" = Nero Kwik Themes Basic
- "{1F16820E-D0E7-4636-939E-45CBFEFB06E1}" = Nero Kwik Media Help (CHM)
- "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
- "{2432E589-6256-4513-B0BF-EFA8E325D5F0}" = Nero SharedVideoCodecs
- "{26A24AE4-039D-4CA4-87B4-2F83217040FF}" = Java 7 Update 45
- "{2890E324-6F3B-4975-8B95-E7D6D80E0226}" = Nero Burning ROM Help (CHM)
- "{29F67D84-3A70-456E-806A-52301B02070B}" = Nero Effects Basic
- "{3AAB08A3-F129-4BD5-B409-AE674F93759D}" = Prerequisite installer
- "{3EAAC5FD-E209-4856-8C49-D4EA40F85032}" = Mobile Connect
- "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
- "{560FC78C-A4B2-461D-9B47-820C1EEF87B8}" = Nero 12
- "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
- "{5963F4B4-D138-47CD-ADEF-470E87E185BD}" = Nero Burning ROM
- "{5B79E730-D897-4B8F-A1AD-7BB2D1F22B96}" = Nero Blu-ray Player Help (CHM)
- "{60844A2C-CCCC-4992-90B3-359EE67314FF}" = OpenOffice.org 3.2
- "{6151cf20-0bd8-4023-a4a0-6a86dcfe58e5}" = Python 2.6.6
- "{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}" = Nero Update
- "{6C772996-BFF3-3C8C-860B-B3D48FF05D65}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106
- "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
- "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
- "{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype™ 6.18
- "{828175FA-7307-4DBF-95AD-9CEE086B6F45}" = Welcome App (Start-up experience)
- "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
- "{83FCCFCD-46E3-43FB-A397-78BFD5A8980A}" = Nero Video
- "{848A7C68-0ADC-4193-8A89-2CEA78E56A0C}" = Nero Express
- "{86847081-B387-4F49-AED1-C9B0A090D66C}" = Nero Recode Help (CHM)
- "{8EB62C87-AAA6-4850-A5BC-64155884B973}" = SketchUp 8
- "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
- "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
- "{A2FE691E-3F8E-4E30-AA7D-FF17AC77EA87}" = Nero Blu-ray Player
- "{A7A0BF2E-31CC-49E3-9913-52C503EB969D}" = Nero Audio Pack 1
- "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
- "{ABC88553-8770-4B97-B43E-5A90647A5B63}" = Nero ControlCenter
- "{ACE49D50-19CD-44A6-B192-46F985283B26}" = Nero PiP Effects Basic
- "{B128179D-A5E1-43AC-9422-12A109ECD2A0}" = Nero Video Help (CHM)
- "{B2DE056F-359F-4B39-B730-727FB107540F}" = Gmail Notifier Pro
- "{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1" = Spybot - Search & Destroy
- "{B92C5909-1D37-4C51-8397-A28BB28E5DC3}" = Facebook Video Calling 1.2.0.287
- "{B953732D-B623-4E84-B369-CFFF7B1AE06F}" = Nero RescueAgent
- "{BEBEE34D-84A2-4EDD-8BEA-96CC54371263}" = Nero Core Components
- "{C994C746-C6D0-4EBA-B09E-DF7B18381B69}" = Nero ControlCenter Help (CHM)
- "{D9DAD0FF-495A-472B-9F10-BAE430A26682}" = Apple Application Support
- "{E17BCB76-9924-4BD5-B6D6-50D3407B4E74}" = Nero Disc Menus Basic
- "{E824E81C-80A4-3DFF-B5F9-4842A9FF5F7F}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106
- "{EF0D1292-8FC1-41BE-9740-DBC134F66415}" = Nero BackItUp Help (CHM)
- "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
- "Adobe Flash Player Plugin" = Adobe Flash Player 15 Plugin
- "avast" = avast! Free Antivirus
- "DtsFilter" = DTS+AC3 ÇĘĹÍ
- "Glary Utilities 4" = Glary Utilities 4.0
- "GOM Player" = GOM Player
- "Google Chrome" = Google Chrome
- "iFunbox_is1" = iFunbox (v2.7.2386.747), iFunbox DevTeam
- "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware verzija 2.0.2.1012
- "Mozilla Firefox 32.0.2 (x86 hr)" = Mozilla Firefox 32.0.2 (x86 hr)
- "Mozilla Thunderbird 24.4.0 (x86 hr)" = Mozilla Thunderbird 24.4.0 (x86 hr)
- "MozillaMaintenanceService" = Mozilla Maintenance Service
- "TeamViewer 9" = TeamViewer 9
- "Windows 8.1 Product Key Finder Ultimate v13.10.1_is1" = Windows 8.1 Product Key Finder Ultimate v13.10.1
- [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color]
- [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
- "Dropbox" = Dropbox
- "uTorrent" = µTorrent
- "Viber" = Viber
- [color=#E56717]========== Last 20 Event Log Errors ==========[/color]
- [ Application Events ]
- Error - 25.3.2014. 15:22:01 | Computer Name = Denis | Source = Perflib | ID = 1023
- Description =
- Error - 25.3.2014. 21:36:19 | Computer Name = Denis | Source = Bonjour Service | ID = 100
- Description = Task Scheduling Error: Continuously busy for more than a second
- Error - 25.3.2014. 21:36:19 | Computer Name = Denis | Source = Bonjour Service | ID = 100
- Description = Task Scheduling Error: m->NextScheduledEvent 5585
- Error - 25.3.2014. 21:36:19 | Computer Name = Denis | Source = Bonjour Service | ID = 100
- Description = Task Scheduling Error: m->NextScheduledSPRetry 5585
- Error - 25.3.2014. 21:36:23 | Computer Name = Denis | Source = Bonjour Service | ID = 100
- Description = Task Scheduling Error: Continuously busy for more than a second
- Error - 25.3.2014. 21:36:23 | Computer Name = Denis | Source = Bonjour Service | ID = 100
- Description = Task Scheduling Error: m->NextScheduledEvent 10109
- Error - 25.3.2014. 21:36:23 | Computer Name = Denis | Source = Bonjour Service | ID = 100
- Description = Task Scheduling Error: m->NextScheduledSPRetry 10109
- Error - 26.3.2014. 7:21:43 | Computer Name = Denis | Source = Software Protection Platform Service | ID = 8198
- Description = License Activation (slui.exe) failed with the following error code:
- hr=0x8007007B
- Command-line
- arguments: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=458e1bec-837a-45f6-b9d5-925ed5d299de;NotificationInterval=1440;Trigger=NetworkAvailable
- Error - 26.3.2014. 10:15:40 | Computer Name = Denis | Source = Software Protection Platform Service | ID = 8198
- Description = License Activation (slui.exe) failed with the following error code:
- hr=0x8007007B
- Command-line
- arguments: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=458e1bec-837a-45f6-b9d5-925ed5d299de;NotificationInterval=1440;Trigger=NetworkAvailable
- Error - 26.3.2014. 10:17:29 | Computer Name = Denis | Source = Software Protection Platform Service | ID = 8198
- Description = License Activation (slui.exe) failed with the following error code:
- hr=0x8007007B
- Command-line
- arguments: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=458e1bec-837a-45f6-b9d5-925ed5d299de;NotificationInterval=1440;Trigger=UserLogon;SessionId=1
- [ System Events ]
- Error - 13.9.2014. 2:52:48 | Computer Name = Denis | Source = NetBT | ID = 4321
- Description = The name "DENIS :20" could not be registered on the interface
- with IP address 192.168.1.100. The computer with the IP address 192.168.1.103 did
- not allow the name to be claimed by this computer.
- Error - 13.9.2014. 2:52:48 | Computer Name = Denis | Source = NetBT | ID = 4321
- Description = The name "DENIS :0" could not be registered on the interface
- with IP address 192.168.1.100. The computer with the IP address 192.168.1.103 did
- not allow the name to be claimed by this computer.
- Error - 13.9.2014. 2:52:50 | Computer Name = Denis | Source = NetBT | ID = 4321
- Description = The name "DENIS :0" could not be registered on the interface
- with IP address 192.168.1.100. The computer with the IP address 192.168.1.103 did
- not allow the name to be claimed by this computer.
- Error - 13.9.2014. 2:52:50 | Computer Name = Denis | Source = NetBT | ID = 4321
- Description = The name "DENIS :0" could not be registered on the interface
- with IP address 192.168.1.100. The computer with the IP address 192.168.1.103 did
- not allow the name to be claimed by this computer.
- Error - 13.9.2014. 2:53:29 | Computer Name = Denis | Source = NetBT | ID = 4321
- Description = The name "DENIS :0" could not be registered on the interface
- with IP address 192.168.1.100. The computer with the IP address 192.168.1.103 did
- not allow the name to be claimed by this computer.
- Error - 13.9.2014. 2:53:37 | Computer Name = Denis | Source = NetBT | ID = 4321
- Description = The name "DENIS :0" could not be registered on the interface
- with IP address 192.168.1.100. The computer with the IP address 192.168.1.103 did
- not allow the name to be claimed by this computer.
- Error - 13.9.2014. 15:44:27 | Computer Name = Denis | Source = NetBT | ID = 4319
- Description = A duplicate name has been detected on the TCP network. The IP address
- of the computer that sent the message is in the data. Use nbtstat -n in a command
- window to see which name is in the Conflict state.
- Error - 13.9.2014. 15:44:27 | Computer Name = Denis | Source = NetBT | ID = 4319
- Description = A duplicate name has been detected on the TCP network. The IP address
- of the computer that sent the message is in the data. Use nbtstat -n in a command
- window to see which name is in the Conflict state.
- Error - 13.9.2014. 15:44:27 | Computer Name = Denis | Source = NetBT | ID = 4319
- Description = A duplicate name has been detected on the TCP network. The IP address
- of the computer that sent the message is in the data. Use nbtstat -n in a command
- window to see which name is in the Conflict state.
- Error - 13.9.2014. 15:44:28 | Computer Name = Denis | Source = bowser | ID = 8003
- Description =
- < End of report >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement