Elektroda.pl
Elektroda.pl
X

Wyszukiwarki naszych partnerów

Wyszukaj w ofercie 200 tys. produktów TME
Europejski lider sprzedaży techniki i elektroniki.
Proszę, dodaj wyjątek elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Firefox i linki w nowych kartach

norbix8245 10 Sty 2015 22:07 1455 6
  • #1 10 Sty 2015 22:07
    norbix8245
    Poziom 12  

    Mam problem z Firefoxem. Otóż kiedy wyszukam coś w googlach i kliknę link, otwiera się on w nowej karcie, a nie w tej obecnej. Może i błahe, ale irytuje mnie to. Można jakoś temu zaradzić? Czyściłem przeglądarkę z syfu ręcznie, bo przypadkowo zainstalowałem jakiś wyszukiwarkowy syf (Omiga), użyłem AdwCleanera, czyściłem rejestr CCleanerem. Wszystko usunęło i jest ok, tylko te nowe karty...

    OTL Log:

    Spoiler:
    OTL logfile created on: 2015-01-10 21:47:05 - Run 1
    OTL by OldTimer - Version 3.2.69.0 Folder = C:\Program Files\OTL
    64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
    Internet Explorer (Version = 9.11.9600.17501)
    Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

    3,98 Gb Total Physical Memory | 2,59 Gb Available Physical Memory | 65,16% Memory free
    7,96 Gb Paging File | 6,40 Gb Available in Paging File | 80,43% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
    Drive C: | 100,05 Gb Total Space | 47,27 Gb Free Space | 47,24% Space Free | Partition Type: NTFS
    Drive D: | 200,20 Gb Total Space | 135,30 Gb Free Space | 67,58% Space Free | Partition Type: NTFS
    Drive E: | 165,42 Gb Total Space | 155,93 Gb Free Space | 94,27% Space Free | Partition Type: NTFS

    Computer Name: TITANIUMDRAGON | User Name: Bercik | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    ========== Processes (SafeList) ==========

    PRC - [2015-01-10 21:46:22 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Program Files\OTL\OTL.exe
    PRC - [2015-01-10 18:13:37 | 005,227,112 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\avastui.exe
    PRC - [2014-12-19 08:48:18 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    PRC - [2014-12-13 12:13:28 | 000,050,344 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
    PRC - [2014-12-09 21:45:07 | 000,337,520 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    PRC - [2014-07-02 18:44:41 | 000,411,936 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
    PRC - [2010-12-20 17:24:38 | 002,656,280 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
    PRC - [2010-12-20 17:24:36 | 000,325,656 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe






    ========== Modules (No Company Name) ==========

    MOD - [2014-12-13 12:13:33 | 038,562,088 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\libcef.dll
    MOD - [2014-12-09 21:45:07 | 003,758,192 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll


    ========== Services (SafeList) ==========

    SRV:64bit: - [2014-12-13 12:13:28 | 000,050,344 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
    SRV:64bit: - [2014-11-22 03:35:29 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
    SRV:64bit: - [2013-05-27 06:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
    SRV:64bit: - [2010-11-24 10:03:40 | 000,127,800 | ---- | M] (HP) [Auto | Running] -- C:\Windows\SysNative\HPSIsvc.exe -- (HPSIService)
    SRV - [2014-12-19 08:48:18 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
    SRV - [2014-12-18 15:49:45 | 001,903,472 | ---- | M] (Electronic Arts) [On_Demand | Stopped] -- C:\Program Files (x86)\Origin\OriginClientService.exe -- (Origin Client Service)
    SRV - [2014-12-11 15:47:25 | 000,267,440 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
    SRV - [2014-12-09 21:45:07 | 000,114,800 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
    SRV - [2014-07-02 18:44:41 | 000,411,936 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
    SRV - [2014-03-20 23:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
    SRV - [2013-09-11 20:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
    SRV - [2010-12-20 17:24:38 | 002,656,280 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
    SRV - [2010-12-20 17:24:36 | 000,325,656 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)


    ========== Driver Services (SafeList) ==========

    DRV:64bit: - [2014-12-13 12:13:54 | 001,050,432 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswsnx.sys -- (aswSnx)
    DRV:64bit: - [2014-12-13 12:13:38 | 000,436,624 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswsp.sys -- (aswSP)
    DRV:64bit: - [2014-12-13 12:13:38 | 000,267,632 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm)
    DRV:64bit: - [2014-12-13 12:13:38 | 000,116,728 | ---- | M] (AVAST Software) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswStm.sys -- (aswStm)
    DRV:64bit: - [2014-12-13 12:13:38 | 000,093,568 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
    DRV:64bit: - [2014-12-13 12:13:38 | 000,083,280 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
    DRV:64bit: - [2014-12-13 12:13:38 | 000,065,776 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)
    DRV:64bit: - [2014-12-13 12:13:38 | 000,029,208 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswHwid.sys -- (aswHwid)
    DRV:64bit: - [2014-08-11 21:31:46 | 000,197,408 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
    DRV:64bit: - [2014-06-27 07:59:02 | 000,131,856 | ---- | M] (Power Software Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\scdemu.sys -- (SCDEmu)
    DRV:64bit: - [2013-10-02 03:22:20 | 000,056,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
    DRV:64bit: - [2012-12-24 05:53:24 | 000,020,480 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mvusbews.sys -- (mvusbews)
    DRV:64bit: - [2012-08-23 15:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
    DRV:64bit: - [2012-08-23 15:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
    DRV:64bit: - [2012-03-01 07:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
    DRV:64bit: - [2011-06-10 05:34:52 | 000,539,240 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
    DRV:64bit: - [2011-03-11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
    DRV:64bit: - [2011-03-11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
    DRV:64bit: - [2011-01-27 09:23:38 | 000,385,512 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmtxhci.sys -- (asmtxhci)
    DRV:64bit: - [2011-01-27 09:23:36 | 000,125,416 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmthub3.sys -- (asmthub3)
    DRV:64bit: - [2010-11-21 04:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
    DRV:64bit: - [2010-10-19 15:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
    DRV:64bit: - [2009-07-14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
    DRV:64bit: - [2009-07-14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
    DRV:64bit: - [2009-07-14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
    DRV:64bit: - [2009-06-10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
    DRV:64bit: - [2009-06-10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
    DRV:64bit: - [2009-06-10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
    DRV:64bit: - [2009-06-10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
    DRV - [2009-07-14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


    ========== Standard Registry (SafeList) ==========


    ========== Internet Explorer ==========

    IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
    IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
    IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
    IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
    IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
    IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
    IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
    IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
    IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    ========== FireFox ==========

    FF - prefs.js..browser.search.defaultengine: "Google"
    FF - prefs.js..browser.search.isUS: false
    FF - prefs.js..browser.search.searchengine.desc: "this is my first firefox searchEngine"
    FF - prefs.js..browser.search.searchengine.ptid: "adks"
    FF - prefs.js..browser.search.searchengine.uid: "ST500DM002-1BC142_W2A35TGXXXXXW2A35TGX"
    FF - prefs.js..browser.search.useDBForOrder: true
    FF - prefs.js..browser.startup.homepage: "https://www.google.pl/"
    FF - prefs.js..extensions.enabledAddons: %7Be4a8a97b-f2ed-450b-b12d-ee082ba24781%7D:2.3
    FF - prefs.js..extensions.enabledAddons: Simple%40White.Theme:2.2.7
    FF - user.js - File not found

    FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll File not found
    FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
    FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
    FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.71.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
    FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.71.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
    FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
    FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
    FF - HKLM\Software\MozillaPlugins\@playstation.com/PsndlCheck,version=1.00: C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll File not found
    FF - HKLM\Software\MozillaPlugins\@SonyCreativeSoftware.com/Media Go,version=1.0: C:\Program Files (x86)\Sony\Media Go\npmediago.dll File not found
    FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

    FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-12-13 12:13:41 | 000,000,000 | ---D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\fftoolbar2014@etech.com: C:\Users\Bercik\AppData\Roaming\Mozilla\Firefox\Profiles\9cnp7aqr.default\extensions\fftoolbar2014@etech.com
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 34.0.5\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2014-12-09 21:45:03 | 000,000,000 | ---D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 34.0.5\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014-12-12 17:12:10 | 000,000,000 | ---D | M]
    FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 34.0.5\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2014-12-09 21:45:03 | 000,000,000 | ---D | M]
    FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 34.0.5\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014-12-12 17:12:10 | 000,000,000 | ---D | M]

    [2012-03-29 16:22:01 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Bercik\AppData\Roaming\mozilla\Extensions
    [2015-01-09 00:18:19 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Bercik\AppData\Roaming\mozilla\Firefox\Profiles\9cnp7aqr.default\extensions
    [2015-01-03 17:37:23 | 000,000,000 | ---D | M] (FT DeepDark) -- C:\Users\Bercik\AppData\Roaming\mozilla\Firefox\Profiles\9cnp7aqr.default\extensions\{77d2ed30-4cd2-11e0-b8af-0800200c9a66}
    [2015-01-08 16:25:18 | 001,183,704 | ---- | M] () (No name found) -- C:\Users\Bercik\AppData\Roaming\mozilla\firefox\profiles\9cnp7aqr.default\extensions\Simple@White.Theme.xpi
    [2015-01-03 17:37:25 | 002,769,697 | ---- | M] () (No name found) -- C:\Users\Bercik\AppData\Roaming\mozilla\firefox\profiles\9cnp7aqr.default\extensions\{c0c588b6-b11d-4898-af00-079fed05aa32}.xpi
    [2014-10-31 16:25:31 | 000,304,000 | ---- | M] () (No name found) -- C:\Users\Bercik\AppData\Roaming\mozilla\firefox\profiles\9cnp7aqr.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi
    [2014-12-09 21:45:03 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\extensions
    [2014-12-09 21:45:07 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
    [2012-10-29 13:06:24 | 000,172,032 | ---- | M] (LiveVDO.tv) -- C:\Program Files (x86)\mozilla firefox\plugins\npfflivevdoplg.dll

    O1 HOSTS File: ([2009-06-10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
    O2:64bit: - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
    O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
    O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
    O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
    O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
    O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
    O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE (Power Software Ltd)
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SoftwareSASGeneration = 1
    O8:64bit: - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000 File not found
    O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000 File not found
    O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
    O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
    O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL (Microsoft Corporation)
    O1364bit: - gopher Prefix: missing
    O13 - gopher Prefix: missing
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{29D9B2CE-4BC6-4C94-9772-4C042DABA355}: DhcpNameServer = 192.168.1.254
    O18:64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found
    O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
    O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
    O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
    O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
    O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
    O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
    O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
    O32 - HKLM CDRom: AutoRun - 1
    O32 - AutoRun File - [2015-01-09 01:53:43 | 000,000,000 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
    O33 - MountPoints2\{6eca989e-5203-11e4-98ff-f46d04407a8e}\Shell - "" = AutoRun
    O33 - MountPoints2\{6eca989e-5203-11e4-98ff-f46d04407a8e}\Shell\AutoRun\command - "" = G:\SISetup.exe
    O34 - HKLM BootExecute: (autocheck autochk *)
    O35:64bit: - HKLM\..comfile [open] -- "%1" %*
    O35:64bit: - HKLM\..exefile [open] -- "%1" %*
    O35 - HKLM\..comfile [open] -- "%1" %*
    O35 - HKLM\..exefile [open] -- "%1" %*
    O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
    O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
    O37 - HKLM\...com [@ = comfile] -- "%1" %*
    O37 - HKLM\...exe [@ = exefile] -- "%1" %*
    O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
    O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
    O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

    ========== Files/Folders - Created Within 30 Days ==========

    [2015-01-09 01:53:25 | 000,000,000 | ---D | C] -- C:\Users\Bercik\Start Menu
    [2015-01-08 22:16:09 | 000,000,000 | ---D | C] -- C:\Users\Bercik\.android
    [2015-01-08 22:11:22 | 000,000,000 | ---D | C] -- C:\Users\Bercik\AppData\Roaming\Kingosoft
    [2015-01-08 22:11:21 | 000,000,000 | ---D | C] -- C:\Users\Bercik\AppData\Local\Kingosoft
    [2015-01-08 22:11:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kingo ROOT
    [2015-01-08 22:11:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Kingo ROOT
    [2014-12-18 15:51:05 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
    [2014-12-18 15:51:05 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
    [2014-12-13 12:13:43 | 000,364,512 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
    [2014-12-13 12:13:35 | 000,043,152 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr

    ========== Files - Modified Within 30 Days ==========

    [2015-01-10 21:37:33 | 000,028,944 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    [2015-01-10 21:37:33 | 000,028,944 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    [2015-01-10 21:35:12 | 001,669,190 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
    [2015-01-10 21:35:12 | 000,740,098 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat
    [2015-01-10 21:35:12 | 000,653,930 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
    [2015-01-10 21:35:12 | 000,155,672 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat
    [2015-01-10 21:35:12 | 000,121,802 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
    [2015-01-10 21:30:07 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
    [2015-01-10 21:30:03 | 3206,488,064 | -HS- | M] () -- C:\hiberfil.sys
    [2015-01-10 21:05:00 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
    [2015-01-09 01:53:43 | 000,000,000 | ---- | M] () -- C:\autoexec.bat
    [2015-01-09 00:20:09 | 000,001,134 | ---- | M] () -- C:\Users\Bercik\Desktop\Firefox.lnk
    [2015-01-08 22:17:55 | 000,017,959 | ---- | M] () -- C:\Windows\unins000.dat
    [2015-01-08 22:17:53 | 001,174,979 | ---- | M] () -- C:\Windows\unins000.exe
    [2015-01-08 22:17:42 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_WinUSB_01007.Wdf
    [2014-12-13 12:14:00 | 000,001,964 | ---- | M] () -- C:\Users\Public\Desktop\Avast Free Antivirus.lnk
    [2014-12-13 12:13:54 | 001,050,432 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsnx.sys
    [2014-12-13 12:13:38 | 000,436,624 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsp.sys
    [2014-12-13 12:13:38 | 000,364,512 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
    [2014-12-13 12:13:38 | 000,267,632 | ---- | M] () -- C:\Windows\SysNative\drivers\aswVmm.sys
    [2014-12-13 12:13:38 | 000,116,728 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswStm.sys
    [2014-12-13 12:13:38 | 000,093,568 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
    [2014-12-13 12:13:38 | 000,083,280 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
    [2014-12-13 12:13:38 | 000,065,776 | ---- | M] () -- C:\Windows\SysNative\drivers\aswRvrt.sys
    [2014-12-13 12:13:38 | 000,029,208 | ---- | M] () -- C:\Windows\SysNative\drivers\aswHwid.sys
    [2014-12-13 12:13:35 | 000,043,152 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
    [2014-12-13 06:09:01 | 000,144,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
    [2014-12-13 04:33:44 | 000,115,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe

    ========== Files Created - No Company Name ==========

    [2015-01-09 01:53:43 | 000,000,000 | ---- | C] () -- C:\autoexec.bat
    [2015-01-08 22:17:53 | 001,174,979 | ---- | C] () -- C:\Windows\unins000.exe
    [2015-01-08 22:17:53 | 000,017,959 | ---- | C] () -- C:\Windows\unins000.dat
    [2015-01-08 22:17:42 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_WinUSB_01007.Wdf
    [2014-12-13 12:14:00 | 000,001,964 | ---- | C] () -- C:\Users\Public\Desktop\Avast Free Antivirus.lnk
    [2014-08-27 12:18:10 | 001,640,860 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
    [2014-08-19 20:46:43 | 000,707,504 | ---- | C] () -- C:\Users\Bercik\AppData\Local\unins000.exe
    [2014-08-19 20:46:43 | 000,011,761 | ---- | C] () -- C:\Users\Bercik\AppData\Local\unins000.msg
    [2014-08-19 20:46:43 | 000,007,597 | ---- | C] () -- C:\Users\Bercik\AppData\Local\resmon.resmoncfg
    [2014-08-19 20:46:43 | 000,005,163 | ---- | C] () -- C:\Users\Bercik\AppData\Local\unins000.dat
    [2014-08-19 18:46:43 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
    [2014-08-19 18:46:34 | 000,023,260 | ---- | C] () -- C:\Windows\Ascd_tmp.ini

    ========== ZeroAccess Check ==========

    [2009-07-14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

    [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

    [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

    [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

    [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
    "" = C:\Windows\SysNative\shell32.dll -- [2014-06-25 03:05:42 | 014,175,744 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Apartment

    [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
    "" = %SystemRoot%\system32\shell32.dll -- [2014-06-25 02:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Apartment

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
    "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Free

    [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
    "" = %systemroot%\system32\wbem\fastprox.dll -- [2010-11-21 04:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Free

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
    "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Both

    [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

    ========== LOP Check ==========

    [2014-08-19 20:50:23 | 000,000,000 | ---D | M] -- C:\Users\Bercik\AppData\Roaming\AnvSoft
    [2014-08-19 20:50:23 | 000,000,000 | ---D | M] -- C:\Users\Bercik\AppData\Roaming\AVAST Software
    [2015-01-08 22:11:22 | 000,000,000 | ---D | M] -- C:\Users\Bercik\AppData\Roaming\Kingosoft
    [2014-08-27 14:17:35 | 000,000,000 | ---D | M] -- C:\Users\Bercik\AppData\Roaming\MPC-HC
    [2014-08-19 20:50:31 | 000,000,000 | ---D | M] -- C:\Users\Bercik\AppData\Roaming\NapiProjekt
    [2014-10-16 19:36:31 | 000,000,000 | ---D | M] -- C:\Users\Bercik\AppData\Roaming\Oracle
    [2014-08-19 20:50:31 | 000,000,000 | ---D | M] -- C:\Users\Bercik\AppData\Roaming\Origin
    [2014-08-27 12:39:01 | 000,000,000 | ---D | M] -- C:\Users\Bercik\AppData\Roaming\PowerISO
    [2014-08-19 20:50:33 | 000,000,000 | ---D | M] -- C:\Users\Bercik\AppData\Roaming\Sony
    [2014-08-19 20:50:33 | 000,000,000 | ---D | M] -- C:\Users\Bercik\AppData\Roaming\Theta
    [2015-01-09 01:35:18 | 000,000,000 | ---D | M] -- C:\Users\Bercik\AppData\Roaming\uTorrent
    [2012-10-29 17:51:18 | 000,000,000 | ---D | M] -- C:\Users\Bercik\AppData\Roaming\Windows Live Writer

    ========== Purity Check ==========



    < End of report >


    OTL Extras Log:
    Spoiler:
    OTL Extras logfile created on: 2015-01-10 21:47:05 - Run 1
    OTL by OldTimer - Version 3.2.69.0 Folder = C:\Program Files\OTL
    64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
    Internet Explorer (Version = 9.11.9600.17501)
    Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

    3,98 Gb Total Physical Memory | 2,59 Gb Available Physical Memory | 65,16% Memory free
    7,96 Gb Paging File | 6,40 Gb Available in Paging File | 80,43% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
    Drive C: | 100,05 Gb Total Space | 47,27 Gb Free Space | 47,24% Space Free | Partition Type: NTFS
    Drive D: | 200,20 Gb Total Space | 135,30 Gb Free Space | 67,58% Space Free | Partition Type: NTFS
    Drive E: | 165,42 Gb Total Space | 155,93 Gb Free Space | 94,27% Space Free | Partition Type: NTFS

    Computer Name: TITANIUMDRAGON | User Name: Bercik | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    ========== Extra Registry (SafeList) ==========


    ========== File Associations ==========

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
    .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
    .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

    [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
    .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)

    ========== Shell Spawning ==========

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    exefile [open] -- "%1" %*
    helpfile [open] -- Reg Error: Key error.
    htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
    InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
    InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L"
    Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [explore] -- Reg Error: Value error.
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
    exefile [open] -- "%1" %*
    helpfile [open] -- Reg Error: Key error.
    htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L"
    Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [explore] -- Reg Error: Value error.
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

    ========== Security Center Settings ==========

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "cval" = 1

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
    "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
    "AntiVirusOverride" = 0
    "AntiSpywareOverride" = 0
    "FirewallOverride" = 0

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

    ========== Firewall Settings ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
    "EnableFirewall" = 1
    "DisableNotifications" = 0

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    "EnableFirewall" = 1
    "DisableNotifications" = 0

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
    "EnableFirewall" = 1
    "DisableNotifications" = 0

    ========== Authorized Applications List ==========


    ========== Vista Active Open Ports Exception List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{081D1A61-5BBA-4A9C-BD39-36E7079D6224}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
    "{26171D7B-39DD-41ED-9480-ED86973A7FFD}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{26C76A03-BC52-4E3C-AB2B-B519E84F6D67}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
    "{2BDC5418-3FC2-4CD1-B17A-DF979285F803}" = rport=138 | protocol=17 | dir=out | app=system |
    "{33719B6E-5BE6-448E-B802-7341254329C8}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
    "{3E7D566B-7329-48FC-815B-BB93D763FBBA}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{40196D33-8F6B-4F02-9C04-7A324FB2BC9B}" = lport=10243 | protocol=6 | dir=in | app=system |
    "{49841A8F-5092-47CF-B20C-C470110D1475}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{50CA116D-449A-4AE6-931C-46637C5E546F}" = lport=138 | protocol=17 | dir=in | app=system |
    "{5ADACD8F-B9DC-416D-A055-84C8D876DF16}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
    "{629C8CF9-9FCC-47CD-9E75-43008331694F}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
    "{91DE2786-5E1D-43CF-B5BF-8E17CB265DB4}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |
    "{92CF8AC4-23CD-4D53-97AF-C5B88144ADDE}" = rport=10243 | protocol=6 | dir=out | app=system |
    "{9FDB4D87-B3A0-47B6-B3DD-8ABBDC8A50C1}" = lport=139 | protocol=6 | dir=in | app=system |
    "{A5A762AE-11C0-47BE-8423-49A1C2613DBD}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
    "{A844626A-102C-481C-9434-5B55AEEC72CD}" = rport=139 | protocol=6 | dir=out | app=system |
    "{AB2D8C47-3725-46C5-BF8B-FEFCE947803A}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{CF7336F2-CE1C-471F-BEA9-5D4CD80162D0}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
    "{CFD787F7-BE4B-4F23-8FAB-768A0454EED0}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
    "{D0C105DC-13A9-425F-9127-FB60A7F75B2E}" = rport=137 | protocol=17 | dir=out | app=system |
    "{D466FC64-1739-46D3-BBE8-78A480488D77}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
    "{DA36983A-9AC5-4108-B2E5-914255DE3302}" = lport=137 | protocol=17 | dir=in | app=system |
    "{DE4D5BF0-C95C-46DD-88BA-6CA955620986}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
    "{E225412D-DBBF-4C93-9773-00E76E988DD0}" = lport=2869 | protocol=6 | dir=in | app=system |
    "{EB391D42-752B-4FA4-91BB-7616B6EE155C}" = rport=445 | protocol=6 | dir=out | app=system |
    "{ECE2CE9D-32FE-463B-8ECA-63941DD31A4A}" = lport=445 | protocol=6 | dir=in | app=system |

    ========== Vista Active Application Exception List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{020261D2-3608-4DF2-A556-7D604CC26C9C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{0337AE79-D820-4E71-9663-2C1E5C2BCAC6}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{0752C73B-F3C8-47B8-B87F-F708EEA71FA6}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{079AE59C-C778-4B02-BD7D-1997D405DE38}" = protocol=6 | dir=in | app=c:\users\bercik\appdata\roaming\utorrent\utorrent.exe |
    "{0860B7A1-8151-420D-A6EC-57DA156827E7}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
    "{1A7BCC72-6593-4357-AF73-EC0AFCF3648B}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
    "{2A17CE61-0C72-4C55-9004-01698085E6A1}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
    "{34E7D849-64D7-45D1-9DEC-F92A9B93CF18}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
    "{5F39B49F-8E8D-4AC3-9434-17D995C450AB}" = protocol=17 | dir=in | app=c:\program files (x86)\napiprojekt\napisy.exe |
    "{5FB64080-55A0-4427-855E-24E6170463DB}" = protocol=6 | dir=in | app=d:\gry\origin games\fifa 14\game\fifa14.exe |
    "{67473C59-F1F1-4AEA-B1D7-1C579E6708D5}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
    "{6AB7EF2B-790D-403E-8B14-583E174575FD}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
    "{6F3E0173-98D8-4E15-BA26-C9355258115E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
    "{76E38783-C68C-4DD7-8D53-728F315822A8}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
    "{792019C8-EC73-4B99-8756-F502C58BE1FC}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
    "{83344BD0-BE51-4951-959D-F5CEA841CB4E}" = protocol=17 | dir=in | app=c:\users\bercik\appdata\roaming\utorrent\utorrent.exe |
    "{8600227D-0155-404A-83A6-394E84606D60}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
    "{8DF95877-620E-4D4A-ABED-2EE797D88322}" = protocol=6 | dir=out | app=system |
    "{989D8280-1912-4E47-A617-00FE94FC719A}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
    "{A889F77A-9712-465F-A720-3D8776886EF8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
    "{B9279DDE-C61E-40DE-AC1E-ED34B127FC34}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
    "{D3881F67-09F7-4864-9D25-EC51EF542E0A}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
    "{D54E2415-9E00-4A1C-A417-359D65A5472B}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
    "{DEDA84F4-E86F-421F-8424-EDFBC321B099}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{E3350632-DF72-4043-92D9-4A10D60558D8}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
    "{E452B86C-DC00-42A5-8E97-2F2C023F4F05}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
    "{E58283D3-D752-4741-B4B4-773B8E4B5726}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
    "{F52D51D6-1D69-485A-9CDC-E38F8884B592}" = protocol=6 | dir=in | app=c:\program files (x86)\napiprojekt\napisy.exe |
    "{F6154EB4-4725-4F17-8ECB-E27C0B36D274}" = protocol=17 | dir=in | app=d:\gry\origin games\fifa 14\game\fifa14.exe |
    "{FD577C9E-55B2-4A55-9799-60477E512069}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
    "TCP Query User{81B0E47B-2060-403E-952F-4A961BCE61E0}C:\program files (x86)\microsoft office\office12\drat.exe" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\drat.exe |
    "TCP Query User{C519C9F5-E238-4203-A4C5-4C728AF7E7E4}C:\program files (x86)\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
    "UDP Query User{789257BD-5D18-4ECD-A968-389FC8FEC8A0}C:\program files (x86)\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
    "UDP Query User{CFB52F11-82C5-47FE-B8CB-91E7FE60AC10}C:\program files (x86)\microsoft office\office12\drat.exe" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\drat.exe |

    ========== HKEY_LOCAL_MACHINE Uninstall List ==========

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
    "{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition)
    "{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1" = MPC-HC 1.7.6 (64-bit)
    "{45F1F774-38B4-3CC3-BAAF-051E6D19E48E}" = Microsoft .NET Framework 4.5.1 (PLK)
    "{7C19409A-4C5A-49E9-B601-07383E4B6E37}" = Microsoft Camera Codec Pack
    "{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
    "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
    "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
    "{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007
    "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
    "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Microsoft .NET Framework 4.5.1 (Polski)
    "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
    "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 340.52
    "{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 340.52
    "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 340.52
    "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 340.50
    "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.13.1220
    "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.3.30.1
    "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
    "{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant
    "{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
    "HP LaserJet Professional P1100-P1560-P1600 Series" = HP LaserJet Professional P1100-P1560-P1600 Series
    "Recuva" = Recuva
    "WinRAR archiver" = WinRAR 5.10 (64-bitowy)

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}" = Windows Live UX Platform
    "{07AAB66E-4718-422D-9218-4AFB3C922A71}" = Photo Gallery
    "{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
    "{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}" = Windows Live Photo Common
    "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    "{26A24AE4-039D-4CA4-87B4-2F03217071FF}" = Java 7 Update 71
    "{3EEF6B1E-38AA-4F22-BA70-30A73BB06AAE}" = Photo Common
    "{41C61308-6CFD-4D54-AB6A-7136ED08A18E}" = Windows Live Communications Platform
    "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
    "{5562F05F-908C-4F15-9B3C-98D5FD32DCAB}" = Media Go Network Downloader
    "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
    "{659CB81C-B54E-4DF1-B618-F35777393A54}" = Windows Live Installer
    "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
    "{77655DF6-A143-4A25-A5F8-127C8CE63EDA}" = Galeria fotografii
    "{80407BA7-7763-4395-AB98-5233F1B34E65}" = NVIDIA PhysX
    "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
    "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
    "{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
    "{8FFD72FC-4FFA-472D-9F76-AEC85F602F9D}" = Podstawowe programy Windows Live
    "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007
    "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007
    "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007
    "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007
    "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007
    "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007
    "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
    "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
    "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007
    "{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-002A-0415-1000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007
    "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
    "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007
    "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007
    "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007
    "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007
    "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
    "{9797040D-7B42-7E9F-4289-9FA87AB89771}" = Media Go Video Playback Engine 2.12.104.06300
    "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    "{AA7A2800-1E75-4240-855B-03AFF8E5171E}" = FIFA 14
    "{AC57543E-EC54-4AB7-A18C-4B04BB1CF09A}" = Windows Live UX Platform Language Pack
    "{AC76BA86-0804-1033-1959-001802114130}" = Adobe Refresh Manager
    "{AC76BA86-7AD7-1045-7B44-AB0000000001}" = Adobe Reader XI (11.0.10) - Polish
    "{AE7675D6-0B31-494F-ABFA-822E1A0FDF17}_is1" = Kingo ROOT version 1.3.0.2198
    "{AF06B8FA-B916-4001-AE51-6645488DEF09}" = Media Go
    "{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}" = Windows Live PIMT Platform
    "{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}" = Windows Live SOXE
    "{ce085a78-074e-4823-8dc1-8a721b94b76d}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005
    "{D1893000-EA77-493C-8DDD-E262436E959B}" = Windows Live SOXE Definitions
    "{DAE8CC57-EBF5-4D46-8572-9A0C769D6F16}" = Movie Maker
    "{DCF4A01A-4ED7-4E60-8D4B-4B3F59CF3DE0}_is1" = Sony刷机驱动安装程序 version 1.2
    "{DD67BE4B-7E62-4215-AFA3-F123A800A389}" = Movie Maker
    "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
    "{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}" = Asmedia ASM104x USB 3.0 Host Controller Driver
    "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
    "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
    "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
    "{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
    "Adobe Flash Player ActiveX" = Adobe Flash Player 15 ActiveX
    "Adobe Flash Player NPAPI" = Adobe Flash Player 16 NPAPI
    "Avast" = Avast Free Antivirus
    "ENTERPRISE" = Microsoft Office Enterprise 2007
    "Fraps" = Fraps
    "Mozilla Firefox 34.0.5 (x86 pl)" = Mozilla Firefox 34.0.5 (x86 pl)
    "MozillaMaintenanceService" = Mozilla Maintenance Service
    "NapiProjekt_is1" = NapiProjekt (2.2.0.2399)
    "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
    "Origin" = Origin
    "PowerISO" = PowerISO
    "WinLiveSuite" = Podstawowe programy Windows Live

    ========== HKEY_CURRENT_USER Uninstall List ==========

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "uTorrent" = µTorrent

    ========== Last 20 Event Log Errors ==========

    [ Application Events ]
    Error - 2015-01-07 11:40:06 | Computer Name = TitaniumDragon | Source = WinMgmt | ID = 10
    Description =

    Error - 2015-01-08 10:15:55 | Computer Name = TitaniumDragon | Source = WinMgmt | ID = 10
    Description =

    Error - 2015-01-08 19:15:42 | Computer Name = TitaniumDragon | Source = Application Error | ID = 1000
    Description = Nazwa aplikacji powodującej błąd: plugin-container.exe, wersja: 34.0.5.5443,
    sygnatura czasowa: 0x5475dd5d Nazwa modułu powodującego błąd: mozalloc.dll, wersja:
    34.0.5.5443, sygnatura czasowa: 0x5475d664 Kod wyjątku: 0x80000003 Przesunięcie błędu:
    0x00001425 Identyfikator procesu powodującego błąd: 0x1310 Godzina uruchomienia aplikacji
    powodującej błąd: 0x01d02b9164dc9dec Ścieżka aplikacji powodującej błąd: C:\Program
    Files (x86)\Mozilla Firefox\plugin-container.exe Ścieżka modułu powodującego błąd:
    C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll Identyfikator raportu: 4375e464-978c-11e4-839f-f46d04407a8e

    Error - 2015-01-08 20:33:09 | Computer Name = TitaniumDragon | Source = WinMgmt | ID = 10
    Description =

    Error - 2015-01-08 20:56:28 | Computer Name = TitaniumDragon | Source = Application Hang | ID = 1002
    Description = Program SpyHunter4.exe w wersji 4.18.9.4384 zatrzymał interakcję z
    systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji
    dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum
    akcji. Identyfikator procesu: 948 Godzina rozpoczęcia: 01d02ba6ae8dff94 Godzina zakończenia:
    5 Ścieżka aplikacji: C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe

    Identyfikator
    raportu: 5431e4d4-979a-11e4-ae4c-f46d04407a8e

    Error - 2015-01-08 21:01:08 | Computer Name = TitaniumDragon | Source = Application Hang | ID = 1002
    Description = Program SpyHunter4.exe w wersji 4.18.9.4384 zatrzymał interakcję z
    systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji
    dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum
    akcji. Identyfikator procesu: 16f8 Godzina rozpoczęcia: 01d02ba71c9a14b6 Godzina zakończenia:
    0 Ścieżka aplikacji: C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe

    Identyfikator
    raportu: f4e7194a-979a-11e4-ae4c-f46d04407a8e

    Error - 2015-01-08 21:03:04 | Computer Name = TitaniumDragon | Source = WinMgmt | ID = 10
    Description =

    Error - 2015-01-10 13:07:57 | Computer Name = TitaniumDragon | Source = WinMgmt | ID = 10
    Description =

    Error - 2015-01-10 16:23:26 | Computer Name = TitaniumDragon | Source = WinMgmt | ID = 10
    Description =

    Error - 2015-01-10 16:30:32 | Computer Name = TitaniumDragon | Source = WinMgmt | ID = 10
    Description =

    [ System Events ]
    Error - 2014-10-12 09:55:18 | Computer Name = TitaniumDragon | Source = Service Control Manager | ID = 7030
    Description = Usługa HP SI Service jest oznaczona jako usługa interakcyjna. System
    jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego
    ta usługa może nie działać właściwie.

    Error - 2014-10-14 12:48:31 | Computer Name = TitaniumDragon | Source = Service Control Manager | ID = 7024
    Description = Usługa Windows Search zakończyła działanie; wystąpił specyficzny dla
    niej błąd %%-1073473535.

    Error - 2014-10-14 12:48:31 | Computer Name = TitaniumDragon | Source = Service Control Manager | ID = 7031
    Description = Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło
    to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna:
    Uruchom usługę ponownie.

    Error - 2014-10-15 08:52:06 | Computer Name = TitaniumDragon | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
    Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować
    następującej aktualizacji, ponieważ wystąpił błąd 0x80242016: Aktualizacja systemu
    Windows 7 dla komputerów z procesorami x64 (KB2952664).

    Error - 2014-12-05 19:57:01 | Computer Name = TitaniumDragon | Source = Disk | ID = 262155
    Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1.

    Error - 2014-12-05 19:57:02 | Computer Name = TitaniumDragon | Source = Disk | ID = 262155
    Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1.

    Error - 2014-12-05 19:57:03 | Computer Name = TitaniumDragon | Source = Disk | ID = 262155
    Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1.

    Error - 2014-12-05 19:57:03 | Computer Name = TitaniumDragon | Source = Disk | ID = 262155
    Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1.

    Error - 2014-12-18 13:54:02 | Computer Name = TitaniumDragon | Source = EventLog | ID = 6008
    Description = Poprzednie zamknięcie systemu przy 18:48:27 na ?2014-?12-?18 było
    nieoczekiwane.

    Error - 2015-01-08 19:18:41 | Computer Name = TitaniumDragon | Source = Service Control Manager | ID = 7031
    Description = Usługa Update Score Escape niespodziewanie zakończyła pracę. Wystąpiło
    to razy: 1. W przeciągu 5000 milisekund zostanie podjęta następująca czynność korekcyjna:
    Uruchom usługę ponownie.


    < End of report >

  • #2 10 Sty 2015 22:45
    Kolobos
    Spec od komputerów

    Wymagane sa logi z FRST w ZALACZNIKU.

  • #3 10 Sty 2015 23:02
    norbix8245
    Poziom 12  

    FRST? Przecież to narzędzie jeśli nie można odpalić systemu. Zazwyczaj OTL wystarczało do takich problemów...

  • #4 10 Sty 2015 23:38
    Kolobos
    Spec od komputerów

    > Przecież to narzędzie jeśli nie można odpalić systemu

    Skad Ci to przyszlo do glowy?

    > Zazwyczaj OTL wystarczało do takich problemów.

    Kiedys wystarczal Hijackthis, czy to oznacza, ze nadal masz dawac log z hjt?

    Jezeli chcesz otrzymac pomoc to daj wymagane logi.

    Daj w zalaczniku logi z FRST (Frst.txt oraz Addition.txt):
    http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/

  • Pomocny post
    #6 11 Sty 2015 01:48
    Kolobos
    Spec od komputerów

    Obok frst.exe utworz plik fixlist.txt z zawartoscia:
    Task: {DBD18E0C-0027-4C44-80B1-A65EA0801356} - System32\Tasks\{11705AB9-CDE5-4105-8F3F-D23F21571898} => pcalua.exe -a C:\Users\Bercik\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=adks
    FF HKLM-x32\...\Firefox\Extensions: [fftoolbar2014@etech.com] - C:\Users\Bercik\AppData\Roaming\Mozilla\Firefox\Profiles\9cnp7aqr.default\extensions\fftoolbar2014@etech.com
    S3 MSICDSetup; \??\F:\CDriver64.sys [X]
    S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [X]
    2015-01-09 00:19 - 2015-01-09 00:19 - 00003164 _____ () C:\Windows\System32\Tasks\{11705AB9-CDE5-4105-8F3F-D23F21571898}
    2015-01-10 21:27 - 2014-08-19 20:33 - 00000000 ____D () C:\Program Files\AdwCleaner
    EmptyTemp:

    W FRST wybierz Fix.

    Jezeli nie pomoze to wykonaj: https://support.mozilla.org/pl/kb/przywracanie-domyslnych-ustawien-firefoksa-latwe-r

  • #7 11 Sty 2015 14:59
    norbix8245
    Poziom 12  

    Dzięki wielkie, zadziałał fix z FRST. Choć podejrzewam, że reset Firefoxa też by pomógł, że też na to nie wpadłem. Jeszcze raz dzięki ;)

TME logo Szukaj w ofercie
Zamknij 
Wyszukaj w ofercie 200 tys. produktów TME
TME Logo