Re: Možná nákaza, nestabilní net
Napsal: 24 zář 2013 23:59
OTL Extras logfile created on: 24.9.2013 22:30:49 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Havlli\Desktop
Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: | Country: | Language: | Date Format:
3,25 Gb Total Physical Memory | 2,15 Gb Available Physical Memory | 66,28% Memory free
6,49 Gb Paging File | 4,76 Gb Available in Paging File | 73,34% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 407,07 Gb Total Space | 56,34 Gb Free Space | 13,84% Space Free | Partition Type: NTFS
Drive D: | 58,59 Gb Total Space | 29,18 Gb Free Space | 49,80% Space Free | Partition Type: NTFS
Drive S: | 100,00 Mb Total Space | 69,86 Mb Free Space | 69,86% Space Free | Partition Type: NTFS
Computer Name: HAVLLI-PC | User Name: Havlli | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = OperaStable] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- Reg Error: Key error.
https [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0A0F110C-9E40-473B-8833-30AE9BDA2407}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{0B7CD931-38B8-4E8F-9333-1093C892B06A}" = lport=445 | protocol=6 | dir=in | app=system |
"{10168D0C-064A-4D8A-9059-5FFC8FF8542C}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{1212C05C-650E-44A8-AD33-FED3559C8AB2}" = lport=443 | protocol=6 | dir=in | name=war thunder |
"{2377B32D-4DD1-4C1B-A728-DCF165891999}" = lport=139 | protocol=6 | dir=in | app=system |
"{2BD4F0EC-DA2B-499E-B369-0FC132D7B831}" = lport=8090 | protocol=6 | dir=in | name=war thunder |
"{329A12E4-9F41-4985-B557-187B1AA78EB0}" = lport=3478 | protocol=17 | dir=in | name=war thunder |
"{3A12A21F-0C87-4C4A-96D9-666230F871A2}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{3E25DA86-50B2-4578-86AE-9E3E76ECCF1E}" = lport=2869 | protocol=6 | dir=in | app=system |
"{501D3D10-D527-40FB-A667-673644DE770B}" = lport=20010 | protocol=17 | dir=in | name=war thunder |
"{66483F82-FADC-480A-88B5-F0E73EE0EC87}" = lport=20443 | protocol=6 | dir=in | name=war thunder |
"{6FA30AD8-38EE-48F5-A6A6-7D4B07C44D63}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{71DA19E3-05D2-40F4-8B92-B36A9F57A3DA}" = rport=138 | protocol=17 | dir=out | app=system |
"{75272E13-4313-4624-8A5F-EC894CD44988}" = lport=10243 | protocol=6 | dir=in | app=system |
"{7E891688-ABAF-48A6-83F8-D67ED9706A71}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{8207E6F6-7E46-47B9-AFF6-8C816F0C0491}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{84CCFE18-EF33-474C-8BF7-4BF5CF01E1F7}" = lport=137 | protocol=17 | dir=in | app=system |
"{96285479-15A7-4E42-9466-7542CF151B7E}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{987291FD-0DF6-40EB-BEFA-7A544928A1DA}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{9A3E24B5-F1F7-4331-A30B-1A3EDF065262}" = rport=10243 | protocol=6 | dir=out | app=system |
"{9BC47422-1C34-4746-B486-31BB532D0984}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{A20A4E3E-5021-4325-BB09-74BC57CCEBEB}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{A2A6F0F6-22A1-4FC0-991A-91DA87A30325}" = rport=139 | protocol=6 | dir=out | app=system |
"{A8F22ABF-2C91-4394-9258-DA528B5E5B8C}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{B47BCBD1-E94F-4EEC-9A9B-97C519BFEE36}" = lport=33333 | protocol=6 | dir=in | name=war thunder |
"{BE50041C-DFD1-4F96-A16A-DC1273E9D423}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{C641D0F2-1D16-4488-80E1-CF3415439BA5}" = lport=138 | protocol=17 | dir=in | app=system |
"{C7BC8F48-F456-48AC-B027-666624AED920}" = rport=445 | protocol=6 | dir=out | app=system |
"{CDFE6C3B-1B4C-4C5B-B9DD-09580F1C59DA}" = rport=137 | protocol=17 | dir=out | app=system |
"{CF385209-2938-4F53-A1CE-3515A446E885}" = lport=7850 | protocol=6 | dir=in | name=war thunder |
"{F810FC60-ECE4-40E9-9E98-8E20F5A92469}" = lport=27022 | protocol=6 | dir=in | name=war thunder |
"{F873B6EE-1955-424E-B88E-00372BEC5DC9}" = lport=80 | protocol=6 | dir=in | name=war thunder |
"{FFF53BCE-114B-4628-B8A6-2AE42DE66AD5}" = lport=6881 | protocol=6 | dir=in | name=war thunder |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0C3FC855-4853-4569-8CA1-7E8B7D369756}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{0FE34E6C-3EC2-4D16-9A1C-C98D410C883A}" = protocol=58 | dir=in | app=system |
"{11460D5E-96B6-41B6-8A93-2995282F1612}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{12A2CFDF-1DF4-45F9-98DE-1FA7100BCB3D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\chivalrymedievalwarfare\binaries\win32\udk.exe |
"{19394ADB-D939-4B7E-8F2A-97504C0E95B6}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{1EDFB926-1DBB-4448-BC77-C3E0746EB26C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\sourcefilmmaker\game\bin\qsdklauncher.exe |
"{2188F397-7A37-4A39-9220-F1E0E3481AB9}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{2D3D6B2D-A356-4BC4-AA27-366B98F8FF31}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2\hl2.exe |
"{3BF329C0-A36A-4086-B28E-08B835EB5C3E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{3F6C56B2-069A-4AF7-9003-8B907D6E250B}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{42800F5C-90E5-4BF3-B73C-F6E0B820EBDB}" = protocol=6 | dir=in | app=c:\program files\raptr\raptr_im.exe |
"{437E64C8-A039-49E5-9BDC-00F63C68E036}" = protocol=17 | dir=in | app=c:\program files\bitspirit\bitspirit.exe |
"{4E25EEB0-2CB2-484B-BCDF-7356AE11F9A3}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{4E3DA16A-DECF-44C5-9D60-4D77FE36C486}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{4F9E6E03-41D4-440A-AB87-7CC46C30F8E6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\sourcefilmmaker\game\sfm.exe |
"{509CDFE5-DF22-4B7E-B04F-818011993A49}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{522756ED-08A5-46AD-9398-7FD025A36B02}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{530EB184-082E-480A-B4EC-4532C487034F}" = protocol=17 | dir=in | app=d:\hry\saintsrowiv\saints row iv\saintsrowiv.exe |
"{53A1CD8F-C506-489F-AFED-D7D162C456CE}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{5549DF45-1F21-46B7-B6B8-C6C199A46C7E}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{5C2ED069-04D3-462D-A206-30D2BDA1BD86}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{73B72647-B7A8-4983-927E-6DCE27D48FFD}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{7B91D7AF-D3FC-467C-B635-F5CB6FF9A896}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{8C58F2FE-ED44-4B42-A9A7-040C28C69BF5}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{8EB2D70C-75DA-4B7F-9A5C-1E7ABBCA47F8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\sourcefilmmaker\game\sfm.exe |
"{948BADDE-64BF-4251-A24C-45D95C578D31}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2\hl2.exe |
"{9525C91B-9710-4E0D-B3BD-AD05B1914BC2}" = protocol=17 | dir=in | app=c:\program files\raptr\raptr.exe |
"{9743A8BF-DC66-4EFE-BFF4-539AF281D3AE}" = protocol=6 | dir=in | app=c:\program files\raptr\raptr.exe |
"{98DB1984-6619-437C-8329-F821DED5CC35}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{9C9DAA3B-C0FF-42ED-BF54-06C93C123067}" = protocol=6 | dir=in | app=d:\hry\saintsrowiv\saints row iv\saintsrowiv.exe |
"{B6098163-72D1-41B0-A5C0-17702605A249}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{C5665958-262A-4233-9082-779D8181DE64}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{CABF9DA0-649D-4175-BCF7-3E7521A2B4C5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{D2428355-BB0F-40D0-9C87-2F0FAB7C6F3F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\chivalrymedievalwarfare\binaries\win32\udk.exe |
"{DAA44CD7-148E-4A41-BAD7-DE15D5BA3DF1}" = protocol=6 | dir=out | app=system |
"{DDC0F563-A761-421F-80DA-1C27F753665B}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 |
"{DDF924CD-0DA1-4048-AF0D-0347BA14474D}" = dir=in | app=d:\hry\infestation survivor stories\infestation.exe |
"{DFB40BED-F6B9-4DF7-B61D-42209C92ED80}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{E0E4F88D-912D-4B02-BDB9-EEF3BB65125D}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{E50C1D1C-0BB6-4648-9809-F20540E0E554}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{E50D1337-38A1-41F5-BF29-B265C727BDD6}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{E8E14672-64E1-4CC5-ACE8-CAF92B1EF369}" = protocol=17 | dir=in | app=c:\program files\raptr\raptr_im.exe |
"{E90F2A2B-E7DA-4CA6-99A8-1AD108DF93F9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\sourcefilmmaker\game\bin\qsdklauncher.exe |
"{EB7035AE-E525-40DC-AA48-CB9A1EB9DE84}" = protocol=6 | dir=in | app=c:\program files\bitspirit\bitspirit.exe |
"{F9519628-556A-4C77-A358-A7CC3177970A}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{FBD08C20-04E0-41FD-A216-A06207E8F259}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"TCP Query User{022FE5C8-956B-4B36-8D74-6AC27B14E6B1}C:\program files (x86)\activision\call of duty 2\cod2mp_s.exe" = protocol=6 | dir=in | app=c:\program files (x86)\activision\call of duty 2\cod2mp_s.exe |
"TCP Query User{48C1C04F-6668-463D-863B-C55AF24F5388}C:\users\havlli\downloads\neverwinter_nw.1.20130416a.6.exe" = protocol=6 | dir=in | app=c:\users\havlli\downloads\neverwinter_nw.1.20130416a.6.exe |
"TCP Query User{5C00B1DE-8C15-4416-A15F-FA853BF1C99A}D:\hry\saintsrowiv\saints row iv\saintsrowiv.exe" = protocol=6 | dir=in | app=d:\hry\saintsrowiv\saints row iv\saintsrowiv.exe |
"TCP Query User{6311E043-ED18-4EA3-B852-841696F78D21}C:\program files (x86)\xfire\xfire.exe" = protocol=6 | dir=in | app=c:\program files (x86)\xfire\xfire.exe |
"TCP Query User{6B137C13-DFB6-4587-A43A-53FDDE2D64AF}C:\users\havlli\downloads\bitcoin-0.8.5-win32\bitcoin-0.8.5-win32\bitcoin-qt.exe" = protocol=6 | dir=in | app=c:\users\havlli\downloads\bitcoin-0.8.5-win32\bitcoin-0.8.5-win32\bitcoin-qt.exe |
"TCP Query User{897A8BEA-8A26-451E-B56B-55996C1E127E}C:\users\havlli\downloads\gw2.exe" = protocol=6 | dir=in | app=c:\users\havlli\downloads\gw2.exe |
"TCP Query User{96B7A76B-16B8-4F42-A5D8-D0F8B51E1D89}C:\users\havlli\appdata\local\apps\2.0\e67lmy52.ztr\gdhox4do.o5y\laun...app_59711684aa47878d_0001.0022_f1e11c361d677310\launcher.exe" = protocol=6 | dir=in | app=c:\users\havlli\appdata\local\apps\2.0\e67lmy52.ztr\gdhox4do.o5y\laun...app_59711684aa47878d_0001.0022_f1e11c361d677310\launcher.exe |
"TCP Query User{A2A71FA2-DF9B-4864-83E7-1505BD864E99}C:\windows\system32\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\system32\dplaysvr.exe |
"TCP Query User{AC097549-C288-4097-8A83-5FDA70A3BE47}D:\hry\electronic arts\dawngate\game\dawngate.exe" = protocol=6 | dir=in | app=d:\hry\electronic arts\dawngate\game\dawngate.exe |
"TCP Query User{E389DDB6-B510-4B1C-8477-17CD6A109640}C:\users\havlli\appdata\local\apps\2.0\e67lmy52.ztr\gdhox4do.o5y\laun...app_59711684aa47878d_0001.0021_75874090487f0510\launcher.exe" = protocol=6 | dir=in | app=c:\users\havlli\appdata\local\apps\2.0\e67lmy52.ztr\gdhox4do.o5y\laun...app_59711684aa47878d_0001.0021_75874090487f0510\launcher.exe |
"UDP Query User{1501DA07-3182-440A-B200-C546081601A4}C:\users\havlli\appdata\local\apps\2.0\e67lmy52.ztr\gdhox4do.o5y\laun...app_59711684aa47878d_0001.0021_75874090487f0510\launcher.exe" = protocol=17 | dir=in | app=c:\users\havlli\appdata\local\apps\2.0\e67lmy52.ztr\gdhox4do.o5y\laun...app_59711684aa47878d_0001.0021_75874090487f0510\launcher.exe |
"UDP Query User{36CC089E-ABE8-4DA0-B1D6-8661BE20633C}C:\users\havlli\downloads\gw2.exe" = protocol=17 | dir=in | app=c:\users\havlli\downloads\gw2.exe |
"UDP Query User{3BF4914E-A75E-4ABB-BC4C-69ECB2032980}C:\windows\system32\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\system32\dplaysvr.exe |
"UDP Query User{55BC8055-FAA8-4DF8-9187-419F0CD28A93}C:\users\havlli\appdata\local\apps\2.0\e67lmy52.ztr\gdhox4do.o5y\laun...app_59711684aa47878d_0001.0022_f1e11c361d677310\launcher.exe" = protocol=17 | dir=in | app=c:\users\havlli\appdata\local\apps\2.0\e67lmy52.ztr\gdhox4do.o5y\laun...app_59711684aa47878d_0001.0022_f1e11c361d677310\launcher.exe |
"UDP Query User{6BD3FEF3-0699-42E4-B38B-EA045FB9A8AD}C:\program files (x86)\xfire\xfire.exe" = protocol=17 | dir=in | app=c:\program files (x86)\xfire\xfire.exe |
"UDP Query User{81655AE1-32F4-4985-940F-2653B68FA46C}D:\hry\saintsrowiv\saints row iv\saintsrowiv.exe" = protocol=17 | dir=in | app=d:\hry\saintsrowiv\saints row iv\saintsrowiv.exe |
"UDP Query User{9FD0ECCF-B9E3-40DC-9B97-11E5A032ADFF}C:\users\havlli\downloads\neverwinter_nw.1.20130416a.6.exe" = protocol=17 | dir=in | app=c:\users\havlli\downloads\neverwinter_nw.1.20130416a.6.exe |
"UDP Query User{A486D598-1625-41D4-915A-C120D8A3E296}D:\hry\electronic arts\dawngate\game\dawngate.exe" = protocol=17 | dir=in | app=d:\hry\electronic arts\dawngate\game\dawngate.exe |
"UDP Query User{C513D715-9DCE-46F5-A0B3-6BCECD83B6A4}C:\users\havlli\downloads\bitcoin-0.8.5-win32\bitcoin-0.8.5-win32\bitcoin-qt.exe" = protocol=17 | dir=in | app=c:\users\havlli\downloads\bitcoin-0.8.5-win32\bitcoin-0.8.5-win32\bitcoin-qt.exe |
"UDP Query User{D2497146-3E9E-465E-A07A-AF9F2D7F0D93}C:\program files (x86)\activision\call of duty 2\cod2mp_s.exe" = protocol=17 | dir=in | app=c:\program files (x86)\activision\call of duty 2\cod2mp_s.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{036A2AC2-5514-1499-8F0E-48009132658F}" = CCC Help Portuguese
"{0685213E-9FF3-1368-37E3-5CECB5A0708C}" = CCC Help Russian
"{07CD994D-2144-41B9-5C2C-A85B40EBBA51}" = CCC Help Finnish
"{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
"{0F747F46-57A0-6CD3-A234-BD4E46F2BFEB}" = CCC Help Polish
"{197A3012-8C85-4FD3-AB66-9EC7E13DB92E}" = Adobe AIR
"{1EB8D6DC-DA9E-837D-C31A-0FCE20E1EF76}" = Catalyst Control Center Localization All
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{26A24AE4-039D-4CA4-87B4-2F83217021FF}" = Java 7 Update 21
"{295E13D5-2CCE-C01B-4E21-F41F543CF2C2}" = CCC Help Spanish
"{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
"{384E9F9A-4E8C-562C-E6D1-E494F9CADF7C}" = CCC Help Korean
"{3C249872-D97C-62F9-A3E2-F7AAAC07BEF8}" = CCC Help Chinese Traditional
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3DECD372-76A1-4483-BF10-B547790A3261}" = ON_OFF Charge B11.1102.1
"{45160C56-61F6-468D-A5B0-9FAE2C3E68D6}" = Catalyst Control Center - Branding
"{45B2C1A3-2050-0BC1-0A90-50EB4A7E77A8}" = CCC Help Turkish
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4BB8B7F6-726B-2301-DD5A-067F95A8A48F}" = CCC Help German
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.6
"{528EFF5D-2209-B614-40C0-5D87F73F3E8D}" = CCC Help French
"{5449FB4F-1802-4D5B-A6D8-087DB1142147}" = Realtek HDMI Audio Driver for ATI
"{5454083B-1308-4485-BF17-1110000D8301}" = Grand Theft Auto IV
"{58ECCB6B-73FB-CBBA-42FC-91659DFA342C}" = CCC Help Chinese Standard
"{6547BC5F-1FC4-CD5D-3783-45370C980043}" = AMD VISION Engine Control Center
"{662DFDBB-A2D6-6B20-1349-BBDA83F7DF79}" = AMD Accelerated Video Transcoding
"{67A9747A-E1F5-4E9A-81CC-12B5D5B81B6E}" = Adobe After Effects CS4 Third Party Content
"{6C772996-BFF3-3C8C-860B-B3D48FF05D65}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{752EEDEB-8605-8E51-2135-48AF996C8DFC}" = CCC Help English
"{78E68EED-A253-11C0-D9A4-81628B8891F0}" = AMD Fuel
"{887868A2-D6DE-3255-AA92-AA0B5A59B874}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"{8D962C94-3D7C-2163-B37E-9CB48B7D1DCD}" = CCC Help Dutch
"{8e70e4e1-06d7-470b-9f74-a51bef21088e}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106
"{8EB8E60B-315D-44EB-A896-10D88602EE46}" = Adobe Setup
"{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9F1F2AEA-C72A-4DD6-991E-C5506A5625E4}" = OpenOffice.org 3.4.1
"{A25FF1C0-80B6-4B8B-A551-DC525697A408}" = AMD APP SDK Runtime
"{A6F818D2-85B7-84E2-C33C-8E74D747AD55}" = CCC Help Greek
"{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.02)
"{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}" = @BIOS
"{B2EFA484-64DB-C1D8-DFD0-FF936FBC3CD9}" = AMD Wireless Display v3.0
"{B8230940-0DCC-E180-5744-4442F6C0CA28}" = CCC Help Thai
"{BC3051A7-1021-4B57-A3DA-AAC24566FAE7}_is1" = Infestation Survivor Stories version 1.0
"{C123749C-23EC-62DB-A5FD-1ED5BC359AAF}" = CCC Help Japanese
"{C218AFCB-7EAB-FEC3-6552-FF090B3FD0A1}" = CCC Help Czech
"{C41DBF39-4C20-7818-B84E-0B2215ABB48D}" = AMD Drag and Drop Transcoding
"{C533DBF1-3A98-5D7D-B6CA-59CC1816F38C}" = CCC Help Italian
"{C75FAD21-EC08-42F3-92D6-C9C0AB355345}" = AutoGreen B10.1021.1
"{CA9A3609-3ECC-4574-8824-A8161A71A603}" = Canon MP150
"{CC0B8E79-8968-80D2-86BD-7373ADCB3EE8}" = ccc-utility
"{CE1F93C0-4353-4C9D-84DA-AB4E7C63ED32}_is1" = VSO ConvertXToDVD
"{D29491A3-BA85-F712-5C8D-B7E6803FEAD7}" = CCC Help Hungarian
"{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}" = Microsoft XNA Framework Redistributable 4.0 Refresh
"{D9A1A69D-D788-12C5-3218-64EFB8C6ACFD}" = Catalyst Control Center Graphics Previews Common
"{E20BD715-3CAF-4A6C-A7F5-8F2216710B90}" = Dawngate
"{E745587A-2ED8-BA64-680E-BC35BE223275}" = CCC Help Danish
"{E824E81C-80A4-3DFF-B5F9-4842A9FF5F7F}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106
"{E9627240-E930-11E0-8690-F04DA23A5C58}" = MSVCRT Redists
"{EA6470CD-6865-8238-9232-B82BB30F2BEF}" = AMD Media Foundation Decoders
"{EA92CB68-9667-343A-1F53-B039583F2A3A}" = Catalyst Control Center InstallProxy
"{EC6004A3-B6E7-9728-55E8-508ABE51798F}" = CCC Help Norwegian
"{EDAA1085-C196-29B1-48B0-B82B72114001}" = CCC Help Swedish
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"{FF6A8312-0A62-3AC0-A49F-9CB7390AE5EC}" = AMD Catalyst Install Manager
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe_5aab5a491a3a52ae624fd639f6aaa95" = Adobe After Effects CS4 Third Party Content
"avast" = avast! Internet Security
"BitSpirit_is1" = BitSpirit v3.6.0.550 Stable
"BSPlayerf" = BS.Player FREE
"CCleaner" = CCleaner
"DAEMON Tools Ultra" = DAEMON Tools Ultra
"FileASSASSIN" = FileASSASSIN
"Google Chrome" = Google Chrome
"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{C75FAD21-EC08-42F3-92D6-C9C0AB355345}" = AutoGreen B10.1021.1
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 9.9.5
"Magic Bullet Looks" = Magic Bullet Looks
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware verze 1.75.0.1300
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"MP Navigator 2.0" = Canon MP Navigator 2.0
"PunkBusterSvc" = PunkBuster Services
"Raptr" = Raptr
"Steam App 217750" = Age of Conan: Unchained - EU version
"Steam App 218230" = PlanetSide 2
"Steam App 218330" = Smashmuck Champions
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"VLC media player" = VLC media player 2.0.8
"WinRAR archiver" = WinRAR 4.20 (32-bit)
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-2405150799-624390421-4199432636-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"RIFT" = RIFT
========== Last 20 Event Log Errors ==========
Error: Unable to start EventLog service!
< End of report >
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Havlli\Desktop
Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: | Country: | Language: | Date Format:
3,25 Gb Total Physical Memory | 2,15 Gb Available Physical Memory | 66,28% Memory free
6,49 Gb Paging File | 4,76 Gb Available in Paging File | 73,34% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 407,07 Gb Total Space | 56,34 Gb Free Space | 13,84% Space Free | Partition Type: NTFS
Drive D: | 58,59 Gb Total Space | 29,18 Gb Free Space | 49,80% Space Free | Partition Type: NTFS
Drive S: | 100,00 Mb Total Space | 69,86 Mb Free Space | 69,86% Space Free | Partition Type: NTFS
Computer Name: HAVLLI-PC | User Name: Havlli | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = OperaStable] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- Reg Error: Key error.
https [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0A0F110C-9E40-473B-8833-30AE9BDA2407}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{0B7CD931-38B8-4E8F-9333-1093C892B06A}" = lport=445 | protocol=6 | dir=in | app=system |
"{10168D0C-064A-4D8A-9059-5FFC8FF8542C}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{1212C05C-650E-44A8-AD33-FED3559C8AB2}" = lport=443 | protocol=6 | dir=in | name=war thunder |
"{2377B32D-4DD1-4C1B-A728-DCF165891999}" = lport=139 | protocol=6 | dir=in | app=system |
"{2BD4F0EC-DA2B-499E-B369-0FC132D7B831}" = lport=8090 | protocol=6 | dir=in | name=war thunder |
"{329A12E4-9F41-4985-B557-187B1AA78EB0}" = lport=3478 | protocol=17 | dir=in | name=war thunder |
"{3A12A21F-0C87-4C4A-96D9-666230F871A2}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{3E25DA86-50B2-4578-86AE-9E3E76ECCF1E}" = lport=2869 | protocol=6 | dir=in | app=system |
"{501D3D10-D527-40FB-A667-673644DE770B}" = lport=20010 | protocol=17 | dir=in | name=war thunder |
"{66483F82-FADC-480A-88B5-F0E73EE0EC87}" = lport=20443 | protocol=6 | dir=in | name=war thunder |
"{6FA30AD8-38EE-48F5-A6A6-7D4B07C44D63}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{71DA19E3-05D2-40F4-8B92-B36A9F57A3DA}" = rport=138 | protocol=17 | dir=out | app=system |
"{75272E13-4313-4624-8A5F-EC894CD44988}" = lport=10243 | protocol=6 | dir=in | app=system |
"{7E891688-ABAF-48A6-83F8-D67ED9706A71}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{8207E6F6-7E46-47B9-AFF6-8C816F0C0491}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{84CCFE18-EF33-474C-8BF7-4BF5CF01E1F7}" = lport=137 | protocol=17 | dir=in | app=system |
"{96285479-15A7-4E42-9466-7542CF151B7E}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{987291FD-0DF6-40EB-BEFA-7A544928A1DA}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{9A3E24B5-F1F7-4331-A30B-1A3EDF065262}" = rport=10243 | protocol=6 | dir=out | app=system |
"{9BC47422-1C34-4746-B486-31BB532D0984}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{A20A4E3E-5021-4325-BB09-74BC57CCEBEB}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{A2A6F0F6-22A1-4FC0-991A-91DA87A30325}" = rport=139 | protocol=6 | dir=out | app=system |
"{A8F22ABF-2C91-4394-9258-DA528B5E5B8C}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{B47BCBD1-E94F-4EEC-9A9B-97C519BFEE36}" = lport=33333 | protocol=6 | dir=in | name=war thunder |
"{BE50041C-DFD1-4F96-A16A-DC1273E9D423}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{C641D0F2-1D16-4488-80E1-CF3415439BA5}" = lport=138 | protocol=17 | dir=in | app=system |
"{C7BC8F48-F456-48AC-B027-666624AED920}" = rport=445 | protocol=6 | dir=out | app=system |
"{CDFE6C3B-1B4C-4C5B-B9DD-09580F1C59DA}" = rport=137 | protocol=17 | dir=out | app=system |
"{CF385209-2938-4F53-A1CE-3515A446E885}" = lport=7850 | protocol=6 | dir=in | name=war thunder |
"{F810FC60-ECE4-40E9-9E98-8E20F5A92469}" = lport=27022 | protocol=6 | dir=in | name=war thunder |
"{F873B6EE-1955-424E-B88E-00372BEC5DC9}" = lport=80 | protocol=6 | dir=in | name=war thunder |
"{FFF53BCE-114B-4628-B8A6-2AE42DE66AD5}" = lport=6881 | protocol=6 | dir=in | name=war thunder |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0C3FC855-4853-4569-8CA1-7E8B7D369756}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{0FE34E6C-3EC2-4D16-9A1C-C98D410C883A}" = protocol=58 | dir=in | app=system |
"{11460D5E-96B6-41B6-8A93-2995282F1612}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{12A2CFDF-1DF4-45F9-98DE-1FA7100BCB3D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\chivalrymedievalwarfare\binaries\win32\udk.exe |
"{19394ADB-D939-4B7E-8F2A-97504C0E95B6}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{1EDFB926-1DBB-4448-BC77-C3E0746EB26C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\sourcefilmmaker\game\bin\qsdklauncher.exe |
"{2188F397-7A37-4A39-9220-F1E0E3481AB9}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{2D3D6B2D-A356-4BC4-AA27-366B98F8FF31}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2\hl2.exe |
"{3BF329C0-A36A-4086-B28E-08B835EB5C3E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{3F6C56B2-069A-4AF7-9003-8B907D6E250B}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{42800F5C-90E5-4BF3-B73C-F6E0B820EBDB}" = protocol=6 | dir=in | app=c:\program files\raptr\raptr_im.exe |
"{437E64C8-A039-49E5-9BDC-00F63C68E036}" = protocol=17 | dir=in | app=c:\program files\bitspirit\bitspirit.exe |
"{4E25EEB0-2CB2-484B-BCDF-7356AE11F9A3}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{4E3DA16A-DECF-44C5-9D60-4D77FE36C486}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{4F9E6E03-41D4-440A-AB87-7CC46C30F8E6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\sourcefilmmaker\game\sfm.exe |
"{509CDFE5-DF22-4B7E-B04F-818011993A49}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{522756ED-08A5-46AD-9398-7FD025A36B02}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{530EB184-082E-480A-B4EC-4532C487034F}" = protocol=17 | dir=in | app=d:\hry\saintsrowiv\saints row iv\saintsrowiv.exe |
"{53A1CD8F-C506-489F-AFED-D7D162C456CE}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{5549DF45-1F21-46B7-B6B8-C6C199A46C7E}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{5C2ED069-04D3-462D-A206-30D2BDA1BD86}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{73B72647-B7A8-4983-927E-6DCE27D48FFD}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{7B91D7AF-D3FC-467C-B635-F5CB6FF9A896}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{8C58F2FE-ED44-4B42-A9A7-040C28C69BF5}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{8EB2D70C-75DA-4B7F-9A5C-1E7ABBCA47F8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\sourcefilmmaker\game\sfm.exe |
"{948BADDE-64BF-4251-A24C-45D95C578D31}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\team fortress 2\hl2.exe |
"{9525C91B-9710-4E0D-B3BD-AD05B1914BC2}" = protocol=17 | dir=in | app=c:\program files\raptr\raptr.exe |
"{9743A8BF-DC66-4EFE-BFF4-539AF281D3AE}" = protocol=6 | dir=in | app=c:\program files\raptr\raptr.exe |
"{98DB1984-6619-437C-8329-F821DED5CC35}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{9C9DAA3B-C0FF-42ED-BF54-06C93C123067}" = protocol=6 | dir=in | app=d:\hry\saintsrowiv\saints row iv\saintsrowiv.exe |
"{B6098163-72D1-41B0-A5C0-17702605A249}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{C5665958-262A-4233-9082-779D8181DE64}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{CABF9DA0-649D-4175-BCF7-3E7521A2B4C5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{D2428355-BB0F-40D0-9C87-2F0FAB7C6F3F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\chivalrymedievalwarfare\binaries\win32\udk.exe |
"{DAA44CD7-148E-4A41-BAD7-DE15D5BA3DF1}" = protocol=6 | dir=out | app=system |
"{DDC0F563-A761-421F-80DA-1C27F753665B}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 |
"{DDF924CD-0DA1-4048-AF0D-0347BA14474D}" = dir=in | app=d:\hry\infestation survivor stories\infestation.exe |
"{DFB40BED-F6B9-4DF7-B61D-42209C92ED80}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{E0E4F88D-912D-4B02-BDB9-EEF3BB65125D}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{E50C1D1C-0BB6-4648-9809-F20540E0E554}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{E50D1337-38A1-41F5-BF29-B265C727BDD6}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{E8E14672-64E1-4CC5-ACE8-CAF92B1EF369}" = protocol=17 | dir=in | app=c:\program files\raptr\raptr_im.exe |
"{E90F2A2B-E7DA-4CA6-99A8-1AD108DF93F9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\sourcefilmmaker\game\bin\qsdklauncher.exe |
"{EB7035AE-E525-40DC-AA48-CB9A1EB9DE84}" = protocol=6 | dir=in | app=c:\program files\bitspirit\bitspirit.exe |
"{F9519628-556A-4C77-A358-A7CC3177970A}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{FBD08C20-04E0-41FD-A216-A06207E8F259}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"TCP Query User{022FE5C8-956B-4B36-8D74-6AC27B14E6B1}C:\program files (x86)\activision\call of duty 2\cod2mp_s.exe" = protocol=6 | dir=in | app=c:\program files (x86)\activision\call of duty 2\cod2mp_s.exe |
"TCP Query User{48C1C04F-6668-463D-863B-C55AF24F5388}C:\users\havlli\downloads\neverwinter_nw.1.20130416a.6.exe" = protocol=6 | dir=in | app=c:\users\havlli\downloads\neverwinter_nw.1.20130416a.6.exe |
"TCP Query User{5C00B1DE-8C15-4416-A15F-FA853BF1C99A}D:\hry\saintsrowiv\saints row iv\saintsrowiv.exe" = protocol=6 | dir=in | app=d:\hry\saintsrowiv\saints row iv\saintsrowiv.exe |
"TCP Query User{6311E043-ED18-4EA3-B852-841696F78D21}C:\program files (x86)\xfire\xfire.exe" = protocol=6 | dir=in | app=c:\program files (x86)\xfire\xfire.exe |
"TCP Query User{6B137C13-DFB6-4587-A43A-53FDDE2D64AF}C:\users\havlli\downloads\bitcoin-0.8.5-win32\bitcoin-0.8.5-win32\bitcoin-qt.exe" = protocol=6 | dir=in | app=c:\users\havlli\downloads\bitcoin-0.8.5-win32\bitcoin-0.8.5-win32\bitcoin-qt.exe |
"TCP Query User{897A8BEA-8A26-451E-B56B-55996C1E127E}C:\users\havlli\downloads\gw2.exe" = protocol=6 | dir=in | app=c:\users\havlli\downloads\gw2.exe |
"TCP Query User{96B7A76B-16B8-4F42-A5D8-D0F8B51E1D89}C:\users\havlli\appdata\local\apps\2.0\e67lmy52.ztr\gdhox4do.o5y\laun...app_59711684aa47878d_0001.0022_f1e11c361d677310\launcher.exe" = protocol=6 | dir=in | app=c:\users\havlli\appdata\local\apps\2.0\e67lmy52.ztr\gdhox4do.o5y\laun...app_59711684aa47878d_0001.0022_f1e11c361d677310\launcher.exe |
"TCP Query User{A2A71FA2-DF9B-4864-83E7-1505BD864E99}C:\windows\system32\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\system32\dplaysvr.exe |
"TCP Query User{AC097549-C288-4097-8A83-5FDA70A3BE47}D:\hry\electronic arts\dawngate\game\dawngate.exe" = protocol=6 | dir=in | app=d:\hry\electronic arts\dawngate\game\dawngate.exe |
"TCP Query User{E389DDB6-B510-4B1C-8477-17CD6A109640}C:\users\havlli\appdata\local\apps\2.0\e67lmy52.ztr\gdhox4do.o5y\laun...app_59711684aa47878d_0001.0021_75874090487f0510\launcher.exe" = protocol=6 | dir=in | app=c:\users\havlli\appdata\local\apps\2.0\e67lmy52.ztr\gdhox4do.o5y\laun...app_59711684aa47878d_0001.0021_75874090487f0510\launcher.exe |
"UDP Query User{1501DA07-3182-440A-B200-C546081601A4}C:\users\havlli\appdata\local\apps\2.0\e67lmy52.ztr\gdhox4do.o5y\laun...app_59711684aa47878d_0001.0021_75874090487f0510\launcher.exe" = protocol=17 | dir=in | app=c:\users\havlli\appdata\local\apps\2.0\e67lmy52.ztr\gdhox4do.o5y\laun...app_59711684aa47878d_0001.0021_75874090487f0510\launcher.exe |
"UDP Query User{36CC089E-ABE8-4DA0-B1D6-8661BE20633C}C:\users\havlli\downloads\gw2.exe" = protocol=17 | dir=in | app=c:\users\havlli\downloads\gw2.exe |
"UDP Query User{3BF4914E-A75E-4ABB-BC4C-69ECB2032980}C:\windows\system32\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\system32\dplaysvr.exe |
"UDP Query User{55BC8055-FAA8-4DF8-9187-419F0CD28A93}C:\users\havlli\appdata\local\apps\2.0\e67lmy52.ztr\gdhox4do.o5y\laun...app_59711684aa47878d_0001.0022_f1e11c361d677310\launcher.exe" = protocol=17 | dir=in | app=c:\users\havlli\appdata\local\apps\2.0\e67lmy52.ztr\gdhox4do.o5y\laun...app_59711684aa47878d_0001.0022_f1e11c361d677310\launcher.exe |
"UDP Query User{6BD3FEF3-0699-42E4-B38B-EA045FB9A8AD}C:\program files (x86)\xfire\xfire.exe" = protocol=17 | dir=in | app=c:\program files (x86)\xfire\xfire.exe |
"UDP Query User{81655AE1-32F4-4985-940F-2653B68FA46C}D:\hry\saintsrowiv\saints row iv\saintsrowiv.exe" = protocol=17 | dir=in | app=d:\hry\saintsrowiv\saints row iv\saintsrowiv.exe |
"UDP Query User{9FD0ECCF-B9E3-40DC-9B97-11E5A032ADFF}C:\users\havlli\downloads\neverwinter_nw.1.20130416a.6.exe" = protocol=17 | dir=in | app=c:\users\havlli\downloads\neverwinter_nw.1.20130416a.6.exe |
"UDP Query User{A486D598-1625-41D4-915A-C120D8A3E296}D:\hry\electronic arts\dawngate\game\dawngate.exe" = protocol=17 | dir=in | app=d:\hry\electronic arts\dawngate\game\dawngate.exe |
"UDP Query User{C513D715-9DCE-46F5-A0B3-6BCECD83B6A4}C:\users\havlli\downloads\bitcoin-0.8.5-win32\bitcoin-0.8.5-win32\bitcoin-qt.exe" = protocol=17 | dir=in | app=c:\users\havlli\downloads\bitcoin-0.8.5-win32\bitcoin-0.8.5-win32\bitcoin-qt.exe |
"UDP Query User{D2497146-3E9E-465E-A07A-AF9F2D7F0D93}C:\program files (x86)\activision\call of duty 2\cod2mp_s.exe" = protocol=17 | dir=in | app=c:\program files (x86)\activision\call of duty 2\cod2mp_s.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{036A2AC2-5514-1499-8F0E-48009132658F}" = CCC Help Portuguese
"{0685213E-9FF3-1368-37E3-5CECB5A0708C}" = CCC Help Russian
"{07CD994D-2144-41B9-5C2C-A85B40EBBA51}" = CCC Help Finnish
"{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
"{0F747F46-57A0-6CD3-A234-BD4E46F2BFEB}" = CCC Help Polish
"{197A3012-8C85-4FD3-AB66-9EC7E13DB92E}" = Adobe AIR
"{1EB8D6DC-DA9E-837D-C31A-0FCE20E1EF76}" = Catalyst Control Center Localization All
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{26A24AE4-039D-4CA4-87B4-2F83217021FF}" = Java 7 Update 21
"{295E13D5-2CCE-C01B-4E21-F41F543CF2C2}" = CCC Help Spanish
"{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
"{384E9F9A-4E8C-562C-E6D1-E494F9CADF7C}" = CCC Help Korean
"{3C249872-D97C-62F9-A3E2-F7AAAC07BEF8}" = CCC Help Chinese Traditional
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3DECD372-76A1-4483-BF10-B547790A3261}" = ON_OFF Charge B11.1102.1
"{45160C56-61F6-468D-A5B0-9FAE2C3E68D6}" = Catalyst Control Center - Branding
"{45B2C1A3-2050-0BC1-0A90-50EB4A7E77A8}" = CCC Help Turkish
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4BB8B7F6-726B-2301-DD5A-067F95A8A48F}" = CCC Help German
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.6
"{528EFF5D-2209-B614-40C0-5D87F73F3E8D}" = CCC Help French
"{5449FB4F-1802-4D5B-A6D8-087DB1142147}" = Realtek HDMI Audio Driver for ATI
"{5454083B-1308-4485-BF17-1110000D8301}" = Grand Theft Auto IV
"{58ECCB6B-73FB-CBBA-42FC-91659DFA342C}" = CCC Help Chinese Standard
"{6547BC5F-1FC4-CD5D-3783-45370C980043}" = AMD VISION Engine Control Center
"{662DFDBB-A2D6-6B20-1349-BBDA83F7DF79}" = AMD Accelerated Video Transcoding
"{67A9747A-E1F5-4E9A-81CC-12B5D5B81B6E}" = Adobe After Effects CS4 Third Party Content
"{6C772996-BFF3-3C8C-860B-B3D48FF05D65}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{752EEDEB-8605-8E51-2135-48AF996C8DFC}" = CCC Help English
"{78E68EED-A253-11C0-D9A4-81628B8891F0}" = AMD Fuel
"{887868A2-D6DE-3255-AA92-AA0B5A59B874}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"{8D962C94-3D7C-2163-B37E-9CB48B7D1DCD}" = CCC Help Dutch
"{8e70e4e1-06d7-470b-9f74-a51bef21088e}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106
"{8EB8E60B-315D-44EB-A896-10D88602EE46}" = Adobe Setup
"{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9F1F2AEA-C72A-4DD6-991E-C5506A5625E4}" = OpenOffice.org 3.4.1
"{A25FF1C0-80B6-4B8B-A551-DC525697A408}" = AMD APP SDK Runtime
"{A6F818D2-85B7-84E2-C33C-8E74D747AD55}" = CCC Help Greek
"{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.02)
"{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}" = @BIOS
"{B2EFA484-64DB-C1D8-DFD0-FF936FBC3CD9}" = AMD Wireless Display v3.0
"{B8230940-0DCC-E180-5744-4442F6C0CA28}" = CCC Help Thai
"{BC3051A7-1021-4B57-A3DA-AAC24566FAE7}_is1" = Infestation Survivor Stories version 1.0
"{C123749C-23EC-62DB-A5FD-1ED5BC359AAF}" = CCC Help Japanese
"{C218AFCB-7EAB-FEC3-6552-FF090B3FD0A1}" = CCC Help Czech
"{C41DBF39-4C20-7818-B84E-0B2215ABB48D}" = AMD Drag and Drop Transcoding
"{C533DBF1-3A98-5D7D-B6CA-59CC1816F38C}" = CCC Help Italian
"{C75FAD21-EC08-42F3-92D6-C9C0AB355345}" = AutoGreen B10.1021.1
"{CA9A3609-3ECC-4574-8824-A8161A71A603}" = Canon MP150
"{CC0B8E79-8968-80D2-86BD-7373ADCB3EE8}" = ccc-utility
"{CE1F93C0-4353-4C9D-84DA-AB4E7C63ED32}_is1" = VSO ConvertXToDVD
"{D29491A3-BA85-F712-5C8D-B7E6803FEAD7}" = CCC Help Hungarian
"{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}" = Microsoft XNA Framework Redistributable 4.0 Refresh
"{D9A1A69D-D788-12C5-3218-64EFB8C6ACFD}" = Catalyst Control Center Graphics Previews Common
"{E20BD715-3CAF-4A6C-A7F5-8F2216710B90}" = Dawngate
"{E745587A-2ED8-BA64-680E-BC35BE223275}" = CCC Help Danish
"{E824E81C-80A4-3DFF-B5F9-4842A9FF5F7F}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106
"{E9627240-E930-11E0-8690-F04DA23A5C58}" = MSVCRT Redists
"{EA6470CD-6865-8238-9232-B82BB30F2BEF}" = AMD Media Foundation Decoders
"{EA92CB68-9667-343A-1F53-B039583F2A3A}" = Catalyst Control Center InstallProxy
"{EC6004A3-B6E7-9728-55E8-508ABE51798F}" = CCC Help Norwegian
"{EDAA1085-C196-29B1-48B0-B82B72114001}" = CCC Help Swedish
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"{FF6A8312-0A62-3AC0-A49F-9CB7390AE5EC}" = AMD Catalyst Install Manager
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe_5aab5a491a3a52ae624fd639f6aaa95" = Adobe After Effects CS4 Third Party Content
"avast" = avast! Internet Security
"BitSpirit_is1" = BitSpirit v3.6.0.550 Stable
"BSPlayerf" = BS.Player FREE
"CCleaner" = CCleaner
"DAEMON Tools Ultra" = DAEMON Tools Ultra
"FileASSASSIN" = FileASSASSIN
"Google Chrome" = Google Chrome
"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{C75FAD21-EC08-42F3-92D6-C9C0AB355345}" = AutoGreen B10.1021.1
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 9.9.5
"Magic Bullet Looks" = Magic Bullet Looks
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware verze 1.75.0.1300
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"MP Navigator 2.0" = Canon MP Navigator 2.0
"PunkBusterSvc" = PunkBuster Services
"Raptr" = Raptr
"Steam App 217750" = Age of Conan: Unchained - EU version
"Steam App 218230" = PlanetSide 2
"Steam App 218330" = Smashmuck Champions
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"VLC media player" = VLC media player 2.0.8
"WinRAR archiver" = WinRAR 4.20 (32-bit)
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-2405150799-624390421-4199432636-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"RIFT" = RIFT
========== Last 20 Event Log Errors ==========
Error: Unable to start EventLog service!
< End of report >