Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- OTL Extras logfile created on: 2018-02-27 17:49:18 - Run 2
- OTL by OldTimer - Version 3.2.70.2 Folder = C:\Users\iza\Downloads
- 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
- Internet Explorer (Version = 9.11.9600.18860)
- Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
- 4,00 Gb Total Physical Memory | 2,47 Gb Available Physical Memory | 61,80% Memory free
- 7,99 Gb Paging File | 6,28 Gb Available in Paging File | 78,58% Paging File free
- Paging file location(s): ?:\pagefile.sys [binary data]
- %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
- Drive C: | 244,25 Gb Total Space | 180,20 Gb Free Space | 73,78% Space Free | Partition Type: NTFS
- Drive D: | 207,73 Gb Total Space | 149,55 Gb Free Space | 71,99% Space Free | Partition Type: NTFS
- Computer Name: IZA-KOMPUTER | User Name: iza | Logged in as Administrator.
- Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
- Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
- [color=#E56717]========== Extra Registry (SafeList) ==========[/color]
- [color=#E56717]========== File Associations ==========[/color]
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
- .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
- .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
- [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
- .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
- .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
- [HKEY_USERS\S-1-5-21-2467630815-3661084170-2195647781-1001\SOFTWARE\Classes\<extension>]
- .html [@ = FirefoxHTML-308046B0AF4A39CB] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
- [color=#E56717]========== Shell Spawning ==========[/color]
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
- batfile [open] -- "%1" %*
- cmdfile [open] -- "%1" %*
- comfile [open] -- "%1" %*
- exefile [open] -- "%1" %*
- helpfile [open] -- Reg Error: Unable to open value key
- htmlfile [edit] -- Reg Error: Unable to open value key
- htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
- http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
- InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
- InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
- piffile [open] -- "%1" %*
- regfile [merge] -- Reg Error: Unable to open value key
- scrfile [config] -- "%1"
- scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
- scrfile [open] -- "%1" /S
- txtfile [edit] -- Reg Error: Unable to open value key
- Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
- Directory [ChomikBox.Upload] -- "C:\Program Files (x86)\ChomikBox\\ChomikBox.exe" -u"%1" ( )
- Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
- Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Directory [mplayerc64.enqueue] -- "C:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe" /add "%1" (MPC-HC Team)
- Directory [mplayerc64.play] -- "C:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe" "%1" (MPC-HC Team)
- Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Folder [explore] -- Reg Error: Value error.
- Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
- [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
- batfile [open] -- "%1" %*
- cmdfile [open] -- "%1" %*
- comfile [open] -- "%1" %*
- cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
- exefile [open] -- "%1" %*
- helpfile [open] -- Reg Error: Unable to open value key
- htmlfile [edit] -- Reg Error: Unable to open value key
- htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
- http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
- piffile [open] -- "%1" %*
- regfile [merge] -- Reg Error: Unable to open value key
- scrfile [config] -- "%1"
- scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
- scrfile [open] -- "%1" /S
- txtfile [edit] -- Reg Error: Unable to open value key
- Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
- Directory [ChomikBox.Upload] -- "C:\Program Files (x86)\ChomikBox\\ChomikBox.exe" -u"%1" ( )
- Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
- Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Directory [mplayerc64.enqueue] -- "C:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe" /add "%1" (MPC-HC Team)
- Directory [mplayerc64.play] -- "C:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe" "%1" (MPC-HC Team)
- Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Folder [explore] -- Reg Error: Value error.
- Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
- CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
- [color=#E56717]========== Security Center Settings ==========[/color]
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
- "cval" = 1
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
- "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
- "AntiVirusOverride" = 0
- "AntiSpywareOverride" = 0
- "FirewallOverride" = 0
- [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
- [color=#E56717]========== Firewall Settings ==========[/color]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
- "DisableNotifications" = 0
- "EnableFirewall" = 1
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
- "DisableNotifications" = 0
- "EnableFirewall" = 1
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
- "DisableNotifications" = 0
- "EnableFirewall" = 1
- [color=#E56717]========== Authorized Applications List ==========[/color]
- [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
- "{0435ED61-C377-45F6-BAB0-F671B6FB195C}" = lport=445 | protocol=6 | dir=in | name=445 tcp ib_block |
- "{0E41BC73-A771-4333-8E77-40BE2376F3D7}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
- "{0E61E5DF-902F-4B6E-9D6D-D0E8F63D9432}" = lport=10243 | protocol=6 | dir=in | app=system |
- "{1A5EFA96-E01B-4671-8F8D-2935814865DE}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
- "{1A79A796-4358-4A46-AAC2-88C0FDD351A2}" = lport=139 | protocol=6 | dir=in | app=system |
- "{313627FD-E300-459F-8F27-FC18ACD4F13F}" = lport=2869 | protocol=6 | dir=in | app=system |
- "{36C6ADC6-BC55-4096-B43A-C8E3D3EF06F2}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
- "{3AF2CA42-CBD5-4E80-B505-146C2A6A8483}" = lport=137 | protocol=17 | dir=in | app=system |
- "{4E18EDCF-E22C-4452-A2E7-D8FDCCFC7C91}" = rport=138 | protocol=17 | dir=out | app=system |
- "{5412E350-81BF-4CF1-8632-5B7ECF125F7C}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
- "{5BD5136A-7ED9-43D6-826D-8F47C0874B80}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
- "{6241472C-8885-46E1-A6B4-735B5AD71820}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
- "{67C17BF8-ED04-481C-8B92-202A6218913A}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
- "{688C133E-E41B-43EE-8C38-5AA0CD626C0E}" = lport=445 | protocol=6 | dir=in | app=system |
- "{6C3808DB-61A1-4BB5-8042-B96C712ABB3C}" = lport=2869 | protocol=6 | dir=in | app=system |
- "{6FB8F508-32DC-4197-BCF0-3D0A38E03830}" = rport=10243 | protocol=6 | dir=out | app=system |
- "{7DAC449D-049D-4340-A0E1-56E123DBC05E}" = lport=445 | protocol=17 | dir=in | name=445 udp ib_block |
- "{820F03C2-697D-4A60-8D7B-0320822DEB32}" = lport=138 | protocol=17 | dir=in | app=system |
- "{8354AC2B-5541-4EEC-B8AA-CFEE90C4ECA3}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
- "{A53C703B-B455-4851-8E8C-5763B8C31518}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
- "{A75C790D-AC75-46F6-A451-D4602A5B37A2}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
- "{BFF2D26E-0001-447C-8FE0-136F7342531D}" = rport=445 | protocol=6 | dir=out | app=system |
- "{CEE97143-2350-4DF2-85C9-6F23663F4AA9}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
- "{D0EAF076-9E74-453B-AD2F-41FD6DE1534F}" = rport=137 | protocol=17 | dir=out | app=system |
- "{E0FE0F54-E8FA-470A-BFF4-D57511F86BEB}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
- "{EA0AA3B6-5563-4B7D-8A0E-6F7010494FEF}" = rport=139 | protocol=6 | dir=out | app=system |
- "{EBD464CD-352F-4CF5-B4E5-57B84B56404D}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
- "{F435F23D-5DFD-4B41-B0DD-19CB04D4C1C2}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
- [color=#E56717]========== Vista Active Application Exception List ==========[/color]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
- "{00ECFEB8-281C-4017-AE39-2DACFF1386DB}" = dir=in | app=c:\program files (x86)\alawar.pl\stray souls dollhouse story\straysouls.exe |
- "{1237EBE8-1747-4306-AA89-D7625DA2F423}" = protocol=6 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\backupsvc.exe |
- "{189D9E17-FF74-491F-8CBF-8FB2F940F52E}" = dir=in | app=c:\program files (x86)\acer arcade deluxe\homemedia\homemedia.exe |
- "{1910E98D-601A-4DB8-9305-4E9189A44EEE}" = dir=out | app=c:\program files (x86)\iobit\iobit malware fighter\surfing protection\ffnativemessage.exe |
- "{1A506D34-C842-450D-ACE6-3F35588C647B}" = dir=out | app=c:\program files (x86)\dvdvideosoft\free torrent download\freetorrentdownload.exe |
- "{20D2554A-6BBB-4B3B-89A1-8EFC82510F76}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
- "{238454F7-BDC4-435C-8CAF-D8E0533A48A3}" = dir=in | app=c:\program files (x86)\iobit\iobit malware fighter\surfing protection\ffnativemessage.exe |
- "{25FBBDE6-E5F4-43E7-9EF2-1DB0E6841596}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
- "{279DA57E-9527-4AB4-B0ED-A19B41EC1A6D}" = dir=in | app=c:\program files (x86)\acer arcade deluxe\acer arcade deluxe\acer arcade deluxe.exe |
- "{27E80C84-16E7-48E4-97E4-B7723232F2DF}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
- "{28839AD5-58BB-4C5C-8649-13BCDF3B6AF8}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
- "{29D4B2DD-0A89-4CEF-8A29-BE868077CA78}" = protocol=17 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\schedulersvc.exe |
- "{2BFA577A-C72D-4252-9256-2FA28AC847E2}" = dir=out | app=c:\program files (x86)\iobit\driver booster\5.2.0\dbdownloader.exe |
- "{2BFC1ACC-921F-401F-AFF0-2078B8346E79}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
- "{37BD9E78-1CD7-4615-90CE-9E95342B870F}" = protocol=17 | dir=in | app=c:\program files (x86)\deluge\deluge.exe |
- "{38B9BC85-B64E-43B5-976E-B6B7AD622519}" = protocol=17 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\backupsvc.exe |
- "{39F88142-9FFD-4E08-8245-24293F8FE04F}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
- "{3A75B721-3E62-4F8E-8C1C-FD06409EE7AE}" = dir=in | app=c:\program files (x86)\acer arcade deluxe\playmovie\playmovie.exe |
- "{3F7A88DF-220B-4AF4-B029-01EBBA3A1D6E}" = dir=out | app=c:\program files (x86)\iobit\driver booster\5.2.0\autoupdate.exe |
- "{40A923C2-A1BE-4804-9F4C-6D516C281A53}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
- "{48F79266-5CE1-41FF-8B2F-4D51813524E9}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
- "{49E83A3B-87F3-481C-AE39-80AC22B420D3}" = dir=in | app=c:\program files (x86)\dvdvideosoft\free torrent download\freetorrentdownload.exe |
- "{4A90580A-479B-4AAF-A75A-61822DB3089A}" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
- "{55252FEE-1600-4772-BA7E-E7EC33F3D5F4}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe |
- "{562B121E-F9E3-4A3F-BE9A-CCB7E7945317}" = protocol=6 | dir=in | app=c:\program files (x86)\deluge\deluge.exe |
- "{639D92ED-582C-49A5-94D5-16650BE7A861}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
- "{6D6F7040-E4A1-4E68-BE8F-EA1070E815C7}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
- "{70DD39A2-A64E-4597-967F-49993E0233E8}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
- "{73564178-C105-4966-8934-E2CF2DDC7AE4}" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
- "{78682915-BE43-4F4D-91E9-80852D64233E}" = protocol=6 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\schedulersvc.exe |
- "{78DDB579-5CEB-403F-8CDB-AE7ED47C7189}" = dir=in | app=c:\program files (x86)\iobit\driver booster\5.2.0\dbdownloader.exe |
- "{7971EB13-9BEB-48B2-B976-0F4EB6218BAF}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
- "{8192EF8A-68EC-4257-B59E-5011B34DA08D}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
- "{819C5292-F5A8-44F9-A7BC-A9A1925D9738}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
- "{849164F8-15F7-495E-87AA-65F44FE329CB}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
- "{8B37DA42-D73F-45A0-909E-2600A5160CEB}" = dir=in | app=c:\program files (x86)\iobit\driver booster\5.2.0\driverbooster.exe |
- "{8F796C63-47AD-43BE-A320-1D3C3A2F54AD}" = dir=out | app=c:\program files (x86)\iobit\driver booster\5.2.0\driverbooster.exe |
- "{9FDED124-DA34-42A5-9CE2-34873CE8A761}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
- "{A12F3112-BFF5-4A6A-A685-173D8967F720}" = dir=out | app=c:\program files (x86)\iobit\advanced systemcare ultimate\autoupdate.exe |
- "{A2A38E46-04BE-4EFB-8FC6-B61F9EB3D616}" = dir=in | app=c:\program files (x86)\windows live\sync\windowslivesync.exe |
- "{A6BF9A4B-8EED-41B8-929F-22BDE5268FBB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
- "{AC9B4146-3DD7-4BA9-8300-02032E4B34E5}" = dir=in | app=c:\program files (x86)\iobit\driver booster\5.2.0\autoupdate.exe |
- "{B2DA6774-6A39-4ABF-8851-3B913BD1EC1D}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
- "{B3ACCC85-9E07-404A-9DDB-0DACB2461991}" = dir=in | app=c:\program files (x86)\acer arcade deluxe\playmovie\pmvservice.exe |
- "{BFAA6FD6-60B7-4EFC-AF97-A2ACBC341FB0}" = dir=in | app=c:\program files (x86)\alawar.pl\stray souls stolen memories\straysouls_stolenmemoriesse.wrp.exe |
- "{C2EA9C44-668E-463B-BC48-2372C0CD267A}" = dir=in | app=c:\program files (x86)\iobit\advanced systemcare ultimate\autoupdate.exe |
- "{D5CBC316-091A-4BBF-8E1B-4C87A823EA1B}" = protocol=6 | dir=out | app=system |
- "{DB7B1BCC-538C-44FE-B90F-2F43A39167E5}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
- "{E483FB7F-C3BA-465F-AC4B-8426082790A6}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe |
- "{F4F153A9-545F-4928-970F-0ADF7E915BB3}" = dir=in | app=c:\program files (x86)\alawar.pl\stray souls stolen memories\straysouls_stolenmemoriesse.exe |
- "{F7EB5A5E-E670-4EE6-91C7-AA0239799629}" = dir=in | app=c:\program files (x86)\alawar.pl\stray souls dollhouse story\straysouls.wrp.exe |
- "TCP Query User{78470E6E-696E-4AF0-A087-A423F0667CC9}C:\program files (x86)\deluge\deluge.exe" = protocol=6 | dir=in | app=c:\program files (x86)\deluge\deluge.exe |
- "UDP Query User{5D40FD77-11C7-4051-A599-4237D16F392F}C:\program files (x86)\deluge\deluge.exe" = protocol=17 | dir=in | app=c:\program files (x86)\deluge\deluge.exe |
- [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
- 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
- "{10EA81CC-1CDB-6ECE-57A0-7C61D6E36342}" = ATI Catalyst Install Manager
- "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
- "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
- "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
- "{8C775E70-A791-4DA8-BCC3-6AB7136F4484}" = Visual Studio 2012 x64 Redistributables
- "{90140000-006D-0415-1000-0000000FF1CE}" = Moduł Szybka instalacja pakietu Microsoft Office 2010
- "{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager
- "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.7
- "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Microsoft .NET Framework 4.7 (Polski)
- "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
- "{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = ALPS Touch Pad Driver
- "{A84DB02B-9C2B-4272-9D2D-A80E00A56513}" = Broadcom Gigabit NetLink Controller
- "{BCF0C1F7-671C-3922-A7EA-8AC11F4FC0EB}" = Microsoft .NET Framework 4.7
- "{D2537F6D-8D39-3B99-9DEC-AFA11E549FC9}" = Microsoft .NET Framework 4.7 (PLK)
- "{F53004F1-FC9A-B878-ADF1-6A44F4D9E3E6}" = ccc-utility64
- "EPSON XP-202 203 206 Series" = EPSON XP-202 203 206 Series Printer Uninstall
- "EPSON XP-302 303 305 306 Series" = EPSON XP-302 303 305 306 Series Printer Uninstall
- "LSI Soft Modem" = LSI HDA Modem
- "Mozilla Firefox 58.0.2 (x64 pl)" = Mozilla Firefox 58.0.2 (x64 pl)
- "MozillaMaintenanceService" = Mozilla Maintenance Service
- "WinRAR archiver" = WinRAR 5.40 (64-bitowy)
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
- "{03319326-2AE5-2884-2FD0-EFECDE1B5669}" = Catalyst Control Center InstallProxy
- "{046346D9-B319-A822-964F-1D4B40398D2A}" = PX Profile Update
- "{08FD9118-4F24-4FE8-B890-5A19834B33AF}" = Alfa eBooks Manager
- "{0F791CBF-AC26-8DD6-AE75-078C4C5E0348}" = CCC Help Turkish
- "{0FC9DF3E-ABA9-E55F-46C5-B15D24DAC57E}" = Catalyst Control Center Graphics Full Existing
- "{100A7012-B881-0875-425F-0C037FE6F1EF}" = CCC Help Russian
- "{109FFF9D-F6AE-A866-F2C2-0058F54C1FD5}" = CCC Help Greek
- "{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now Standard
- "{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2
- "{1B722E0D-AE81-80AC-A81D-0C5392354796}" = CCC Help Hungarian
- "{1BD2212B-8287-4F33-A6DC-903D423AB814}_is1" = Counter-Strike 1.6 v43
- "{1CAC7A41-583B-4483-9FA5-3E5465AFF8C2}" = Microsoft Default Manager
- "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Narzędzie do przekazywania usługi Windows Live
- "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
- "{23006907-4721-2D12-DADB-493B64EDFB3D}" = CCC Help Spanish
- "{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8
- "{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = Acer Arcade Deluxe
- "{27124A1C-4AEF-F46B-6999-9FD2DCFDEB7F}" = CCC Help English
- "{27819CA2-DBEE-0112-42B5-DEC3FB2DF6D9}" = CCC Help Polish
- "{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
- "{2BF3ED6F-E411-5100-7334-B84A84FC81FC}" = CCC Help Portuguese
- "{2D50A8DE-2C75-F259-195B-FBA6DC1BECFB}" = CCC Help French
- "{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform
- "{39F87E40-2EF5-A1EF-359D-9FA3A3B3B915}" = CCC Help Thai
- "{3B9314AE-1E75-0D3A-DBE4-C098297805C1}" = Catalyst Control Center Graphics Light
- "{3DB0448D-AD82-4923-B305-D001E521A964}" = Acer ePower Management
- "{402757D1-50AC-F452-8DE4-5B55E34630EC}" = Catalyst Control Center Graphics Previews Vista
- "{403B5308-2753-459C-B86E-337D69E4B57C}" = CCC Help Chinese Traditional
- "{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}" = Norton Online Backup
- "{4D5219EC-BFF8-4B7F-AB92-6D827BB37CB0}" = Windows Live Messenger
- "{4D71C348-C964-442D-B2DB-5160E46FB664}" = OpenOffice 4.1.3
- "{4E242AB2-86A7-4231-82A9-1E4226D23CA8}" = Catalyst Control Center - Branding
- "{51958BA7-21E4-4A8B-9098-CD8375BD17B2}" = Asystent rejestracji usługi Windows Live
- "{569A657B-C474-CCA3-2398-CBA97643E1AF}" = CCC Help Czech
- "{58F4D244-314F-4D26-B5EF-C28AB32E22CB}_is1" = Acer GameZone Console
- "{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
- "{61E7314C-AFAB-DD8D-55A5-A0519F641154}" = CCC Help Chinese Standard
- "{69AFF82A-86B1-75C1-73D0-2593968DAEB9}" = CCC Help Norwegian
- "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
- "{72B776E5-4530-4C4B-9453-751DF87D9D93}" = Backup Manager Basic
- "{7760D94E-B1B5-40A0-9AA0-ABF942108755}" = Acer Crystal Eye Webcam
- "{7DA167C4-FC07-E4E0-7A9A-47452EBE0912}" = CCC Help Japanese
- "{7F811A54-5A09-4579-90E1-C93498E230D9}" = Acer eRecovery Management
- "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110300453}" = Spin & Win
- "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111199750}" = Cake Mania
- "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111307457}" = Galapago
- "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111355427}" = Poker Pop
- "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112662477}" = Merriam Websters Spell Jam
- "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11273477}" = Amazonia
- "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113786380}" = Heroes of Hellas
- "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}" = Dream Day First Home
- "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11505173}" = Airport Mania First Flight
- "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11531173}" = Farm Frenzy 2
- "{869600BB-426F-F13A-D4BD-BBE3E00F0B53}" = Catalyst Control Center Localization All
- "{8CB2C4B6-49B9-ADA7-5C75-549BDAD851EA}" = CCC Help Korean
- "{8E5233E1-7495-44FB-8DEB-4BE906D59619}" = Junk Mail filter update
- "{8F0CD7D1-42F3-4195-95CD-833578D45057}_is1" = Zemana AntiMalware
- "{90140011-0066-0415-0000-0000000FF1CE}" = Microsoft Office Starter 2010 - Polski
- "{90C99087-91BF-4C86-8002-CEC0D5F5A625}_is1" = Odlotowa Farma Dzielni Vikingowie wersja 1.00
- "{9100A3A5-34BF-7288-A041-3EE4170EF6C4}" = ccc-core-static
- "{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
- "{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader
- "{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}" = Visual Studio 2012 x86 Redistributables
- "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
- "{9AB614A6-719C-4A6E-A63E-831E0A35F62A}" = Windows Live Writer
- "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
- "{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
- "{A4EAB603-A72C-5F18-754E-710A7CF56609}" = CCC Help German
- "{AA7B0DE4-E3CA-443F-B1CF-418431664C63}" = Windows Live Movie Maker
- "{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.1 MUI
- "{C35FE07E-24B5-410F-85B7-122087A0C7DD}" = Poczta usługi Windows Live
- "{C5096D00-8B9C-41DB-8472-9D721E982DF0}" = Podstawowe programy Windows Live
- "{C7B52FAF-58D8-438C-B810-F78C3C927504}" = ChomikBox
- "{CAE8B44E-A2A7-FA56-9B8C-968383940CC0}" = CCC Help Danish
- "{D6C3C9E7-D334-4918-BD57-5B1EF14C207D}" = Bing Bar
- "{E39C185F-1240-4BA7-A03B-4FD99805D63E}" = Galeria fotografii usługi Windows Live
- "{E580DFEA-3F1D-4B56-9115-984217032FF5}" = Windows Live Sync
- "{E8B04CD1-6E90-67BA-12FE-8C9BDDF6B03A}" = Catalyst Control Center Graphics Full New
- "{EA17F8AC-F344-B7FC-420D-972CA56678FD}" = Catalyst Control Center Core Implementation
- "{EE171732-BEB4-4576-887D-CB62727F01CA}" = Acer Updater
- "{EFA7D5CE-57D5-6F1A-C7D1-310266BBE697}" = CCC Help Italian
- "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
- "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
- "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
- "{F2D9F8B1-8CAD-3CCF-522D-77D92EEBB37E}" = CCC Help Dutch
- "{FDD05F72-0371-7204-A7E4-852547828B68}" = CCC Help Swedish
- "{FF76D112-9E5F-FCC9-0360-A1797508A1D6}" = CCC Help Finnish
- "Acer Registration" = Acer Registration
- "Acer Screensaver" = Acer ScreenSaver
- "Acer Welcome Center" = Welcome Center
- "Adobe AIR" = Adobe AIR
- "Adobe Flash Player ActiveX" = Adobe Flash Player 28 ActiveX
- "Adobe Flash Player NPAPI" = Adobe Flash Player 28 NPAPI
- "Advanced SystemCare Ultimate_is1" = Advanced SystemCare Ultimate 11
- "ASGRAF EuroTEST 2014_PLUS" = ASGRAF EuroTEST 2014_PLUS
- "Awakening the Dreamless Castle1.0" = Awakening the Dreamless Castle
- "Blood and Ruby New 1.00" = Blood and Ruby New 1.00
- "Deluge" = Deluge 1.3.14
- "Driver Booster_is1" = Driver Booster 5
- "Farm Frenzy 2_is1" = Farm Frenzy 2
- "foobar2000" = foobar2000 v0.9.6.9
- "Free Studio_is1" = Free Studio
- "Free YouTube To MP3 Converter_is1" = Free YouTube To MP3 Converter
- "Google Chrome" = Google Chrome
- "GridVista" = Acer GridVista
- "HotA_is1" = h3hota
- "Identity Card" = Identity Card
- "InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now 5
- "InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2
- "InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8
- "InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = Acer Arcade Deluxe
- "InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93}" = Acer Backup Manager
- "IObit Malware Fighter_is1" = IObit Malware Fighter 5
- "KLiteCodecPack_is1" = K-Lite Codec Pack 13.0.0 Full
- "LManager" = Launch Manager
- "Odlotowa farma 3: Epoka lodowcowa" = Odlotowa farma 3: Epoka lodowcowa
- "Odlotowa Farma: Na Ryby" = Odlotowa Farma: Na Ryby
- "Office14.Click2Run" = Moduł Szybka instalacja pakietu Microsoft Office 2010
- "PLAY ONLINE" = PLAY ONLINE
- "StrongRecovery_is1" = StrongRecovery 3.7.5.3
- "Uprowadzony" = Uprowadzony
- "WinLiveSuite_Wave3" = Podstawowe programy Windows Live
- "yWriter5_is1" = yWriter5
- [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]
- [HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
- [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]
- [HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
- [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]
- [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
- [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]
- [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
- [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]
- [HKEY_USERS\S-1-5-21-2467630815-3661084170-2195647781-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
- "Zbłąkane Dusze: Historia domku dla lalek" = Zbłąkane Dusze: Historia domku dla lalek
- "Zbłąkane dusze: Skradzione wspomnienia" = Zbłąkane dusze: Skradzione wspomnienia
- [color=#E56717]========== Last 20 Event Log Errors ==========[/color]
- [ Application Events ]
- Error - 2018-01-23 06:52:40 | Computer Name = iza-Komputer | Source = VSS | ID = 8193
- Description =
- Error - 2018-01-29 01:01:42 | Computer Name = iza-Komputer | Source = Application Hang | ID = 1002
- Description = Program chrome.exe w wersji 63.0.3239.132 zatrzymał interakcję z systemem
- Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji
- dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum
- akcji. Identyfikator procesu: 15a4 Godzina rozpoczęcia: 01d3987768898350 Godzina zakończenia:
- 1105 Ścieżka aplikacji: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- Identyfikator
- raportu: 74d7c1a6-04b1-11e8-9577-206a8a2f3bbd
- Error - 2018-01-30 09:21:51 | Computer Name = iza-Komputer | Source = VSS | ID = 8193
- Description =
- Error - 2018-01-30 15:32:48 | Computer Name = iza-Komputer | Source = Application Error | ID = 1000
- Description = Nazwa aplikacji powodującej błąd: AcroRd32.exe, wersja: 9.1.0.163,
- sygnatura czasowa: 0x49a88f00 Nazwa modułu powodującego błąd: AcroRd32.dll, wersja:
- 9.1.0.163, sygnatura czasowa: 0x49a88716 Kod wyjątku: 0xc0000005 Przesunięcie błędu:
- 0x0052664c Identyfikator procesu powodującego błąd: 0xed4 Godzina uruchomienia aplikacji
- powodującej błąd: 0x01d39a00f28a2b41 Ścieżka aplikacji powodującej błąd: c:\Program
- Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe Ścieżka modułu powodującego błąd:
- c:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.dll Identyfikator raportu:
- 5a17ebf3-05f4-11e8-b495-929ffa75db5e
- Error - 2018-02-01 16:28:07 | Computer Name = iza-Komputer | Source = VSS | ID = 8193
- Description =
- Error - 2018-02-06 15:02:23 | Computer Name = iza-Komputer | Source = VSS | ID = 8193
- Description =
- Error - 2018-02-09 22:51:26 | Computer Name = iza-Komputer | Source = VSS | ID = 8193
- Description =
- Error - 2018-02-14 07:24:20 | Computer Name = iza-Komputer | Source = VSS | ID = 8193
- Description =
- Error - 2018-02-15 03:21:23 | Computer Name = iza-Komputer | Source = Application Error | ID = 1000
- Description = Nazwa aplikacji powodującej błąd: CompatTelRunner.exe, wersja: 10.0.17060.1019,
- sygnatura czasowa: 0x0206ae46 Nazwa modułu powodującego błąd: ntdll.dll, wersja:
- 6.1.7601.23915, sygnatura czasowa: 0x59b94ee4 Kod wyjątku: 0xc0000374 Przesunięcie
- błędu: 0x00000000000bf3e2 Identyfikator procesu powodującego błąd: 0x290 Godzina
- uruchomienia aplikacji powodującej błąd: 0x01d3a62cdf85bb85 Ścieżka aplikacji powodującej
- błąd: C:\Windows\system32\CompatTelRunner.exe Ścieżka modułu powodującego błąd:
- C:\Windows\SYSTEM32\ntdll.dll Identyfikator raportu: d3257557-1220-11e8-a117-206a8a2f3bbd
- Error - 2018-02-20 10:57:21 | Computer Name = iza-Komputer | Source = VSS | ID = 8193
- Description =
- [ System Events ]
- Error - 2018-02-27 11:28:15 | Computer Name = IZA-KOMPUTER | Source = BugCheck | ID = 1001
- Description =
- Error - 2018-02-27 11:28:20 | Computer Name = iza-Komputer | Source = Service Control Manager | ID = 7009
- Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się
- z usługą PLAY ONLINE. OUC.
- Error - 2018-02-27 11:28:20 | Computer Name = iza-Komputer | Source = Service Control Manager | ID = 7000
- Description = Nie można uruchomić usługi PLAY ONLINE. OUC z powodu następującego
- błędu: %%1053
- Error - 2018-02-27 11:29:19 | Computer Name = iza-Komputer | Source = DCOM | ID = 10016
- Description =
- Error - 2018-02-27 12:42:47 | Computer Name = iza-Komputer | Source = EventLog | ID = 6008
- Description = Poprzednie zamknięcie systemu przy 17:35:04 na ?2018-?02-?27 było
- nieoczekiwane.
- Error - 2018-02-27 12:42:48 | Computer Name = iza-Komputer | Source = BugCheck | ID = 1001
- Description =
- Error - 2018-02-27 12:45:07 | Computer Name = iza-Komputer | Source = EventLog | ID = 6008
- Description = Poprzednie zamknięcie systemu przy 17:42:47 na ?2018-?02-?27 było
- nieoczekiwane.
- Error - 2018-02-27 12:45:14 | Computer Name = iza-Komputer | Source = Service Control Manager | ID = 7009
- Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się
- z usługą PLAY ONLINE. OUC.
- Error - 2018-02-27 12:45:14 | Computer Name = iza-Komputer | Source = Service Control Manager | ID = 7000
- Description = Nie można uruchomić usługi PLAY ONLINE. OUC z powodu następującego
- błędu: %%1053
- Error - 2018-02-27 12:46:11 | Computer Name = iza-Komputer | Source = DCOM | ID = 10016
- Description =
- < End of report >
Add Comment
Please, Sign In to add comment