OTL Extras logfile created on: 2012-02-28 00:07:23 - Run 5 OTL by OldTimer - Version 3.2.33.2 Folder = c:\Users\Kata\Downloads Windows Vista Home Basic Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.19190) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 0,85 Gb Available Physical Memory | 42,42% Memory free 4,23 Gb Paging File | 2,63 Gb Available in Paging File | 62,09% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 92,70 Gb Total Space | 5,99 Gb Free Space | 6,46% Space Free | Partition Type: NTFS Drive D: | 44,53 Gb Total Space | 0,70 Gb Free Space | 1,58% Space Free | Partition Type: NTFS Drive E: | 4,20 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Computer Name: KATA-PC | User Name: Kata | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [HKEY_USERS\S-1-5-21-878059811-3187634736-2165975479-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. https [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 "UacDisableNotify" = 1 "InternetSettingsDisableNotify" = 1 "AutoUpdateDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\BitTorrent\bittorrent.exe" = C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{F837203C-AB31-436E-885F-7DC5673C9E3C}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office12\outlook.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{29D5FD4F-6357-4D6F-8A23-998D74F512A2}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{2AB16ECA-2CC1-4EF8-B1F5-F4EDABCE658C}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{65C9CBEE-5EDC-45F3-B150-89E5110FD323}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{75E66A1A-113C-406A-9581-95EF80C4601E}" = protocol=17 | dir=in | app=c:\program files\dna\btdna.exe | "{9F65AC58-A6EA-4234-84F5-DA8577C683FF}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{AC632E15-3E86-417D-B18E-3A2B96A43310}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{BC9870F1-D6E3-48DD-A6E6-310A7C7823AC}" = protocol=6 | dir=in | app=c:\program files\bittorrent\bittorrent.exe | "{E8582EA0-FC55-4358-AF71-2D7A38F2193C}" = protocol=6 | dir=in | app=c:\program files\dna\btdna.exe | "{EF7F83F0-2C55-4238-82F8-044C45098FFF}" = protocol=17 | dir=in | app=c:\program files\bittorrent\bittorrent.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1593E7D9-9659-B500-D087-E0241D5290DA}" = Catalyst Control Center Graphics Full New "{16B81802-0D20-CC7E-2490-1B585E996236}" = Catalyst Control Center Localization French "{1AD37709-AED5-AD1F-0BA1-14D8BE570B03}" = ccc-utility "{2012B554-2918-B60D-4D8A-B89339FFD46F}" = CCC Help Japanese "{26A24AE4-039D-4CA4-87B4-2F83216016FF}" = Java(TM) 6 Update 16 "{2E26E4B9-9A2D-1956-6A33-55FEC238A0CF}" = Catalyst Control Center Localization Swedish "{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{3CCAD2EF-CFF2-4637-82AA-AABF370282D3}" = ccCommon "{4160DC5B-4C56-D0C3-C5FD-F5BDAD3C882B}" = ATI Catalyst Install Manager "{48185814-A224-447A-81DA-71BD20580E1B}" = Norton Internet Security "{4843B611-8FCB-4428-8C23-31D0A5EAE164}" = Norton Confidential Browser Component "{4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F}" = SAGEM F@st 800-840 "{4FFBB818-B13C-11E0-931D-B2664824019B}_is1" = Complitly "{553C904F-57A2-4113-888E-BA0C3D1C69C0}" = Microsoft VC9 runtime libraries "{5883BAE9-BDF2-43D8-92AE-8148A2503F4B}" = CCC Help Italian "{5AA2CD16-706F-41f3-87C5-2B5A031F2B3B}" = Norton Internet Security "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6A09D4B4-E9AD-9760-7BA5-E53F76994D4A}" = CCC Help English "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{77772678-817F-4401-9301-ED1D01A8DA56}" = SPBBC 32bit "{7AF3A942-2B40-EB95-21CF-1B867D1439C6}" = Catalyst Control Center Localization Spanish "{7C5B4583-7CBF-4289-B195-03B553959DEA}" = VoiceOver Kit "{7D7B018C-2140-420A-AA4A-307FFE455C35}" = Catalyst Control Center Localization German "{7E7B3AF4-F04F-1715-CDC7-A585294BE512}" = Catalyst Control Center Localization Chinese Standard "{81CD6232-10F5-4832-B3DA-1B88B1571045}" = Nero 7 Essentials "{830D8CBD-C668-49e2-A969-C2C2106332E0}" = Norton AntiVirus "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{92C6E111-2FEA-4E2A-B226-9AC30B41ABDA}" = SymNet "{94D66D71-12F0-48A5-B46A-D4B835A0F1B7}" = FirstSteps Diagnostics "{9A129ABC-A53A-4209-A21E-D5DEDFB7CCA8}" = Norton Protection Center "{9D1F4970-1CA5-9D25-62EC-410A85C03A3D}" = Catalyst Control Center Graphics Light "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{A2E0ED75-5E0D-4D30-B031-C3DA719F0ECA}" = Symantec Real Time Storage Protection Component "{A36A0DF7-A766-533A-0E2D-F9700A807823}" = Catalyst Control Center Localization Dutch "{AA2BB41E-D97A-3277-8221-1322050F32C6}" = Catalyst Control Center Localization Italian "{AB93FBC8-AA3B-0A8B-C03B-3B64F62B2DB9}" = CCC Help Chinese Standard "{AC76BA86-7AD7-1045-7B44-A95000000001}" = Adobe Reader 9.5.0 - Polish "{B7C61755-DB48-4003-948F-3D34DB8EAF69}" = MSRedist "{BB8AAD00-A725-221E-278B-1A71B2E844C5}" = CCC Help Korean "{C28CFD3F-33CE-4675-50BF-D599E89EDDA0}" = Catalyst Control Center Graphics Full Existing "{C370BA43-998C-E872-A47D-2A046F7FC38C}" = Catalyst Control Center Localization Korean "{C54C951D-6D2B-53F9-5DB7-3BE47EA2F162}" = CCC Help French "{C8983B00-2BED-1A87-FBAD-69595A28D5D9}" = CCC Help German "{CCB18950-1C69-93FD-4547-B7F29271BAC8}" = CCC Help Spanish "{CD95D125-2992-4858-B3EF-5F6FB52FBAD6}" = Skype Toolbars "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{CF797074-A40D-9A91-4344-E11F296C94A9}" = ccc-core-static "{D2161391-EB1A-E6D0-45EE-F610262F2377}" = Catalyst Control Center Localization Portuguese "{D353CC51-430D-4C6F-9B7E-52003DA1E05A}" = Norton Confidential Web Protection Component "{DA185E5C-7AE3-988F-577F-B7E3AA174843}" = CCC Help Swedish "{DBA4DB9D-EE51-4944-A419-98AB1F1249C8}" = LiveUpdate Notice (Symantec Corporation) "{DC9C742A-72AC-24F5-B41F-CB47CFB4D054}" = Catalyst Control Center Graphics Previews Vista "{DD4D536A-C7DE-154A-94C4-23D3D0055B9F}" = CCC Help Chinese Traditional "{E33DB440-A008-4928-8A4E-5FC5ADDED608}" = OpenOffice.org 2.4 "{E3EFA461-EB83-4C3B-9C47-2C1D58A01555}" = Norton Internet Security "{E5CBCE53-5CC9-77DB-4D63-DECEF8C5AF3C}" = CCC Help Portuguese "{E5EE9939-259F-4DE2-8023-5C49E16A4F43}" = Norton Internet Security "{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}" = Skype™ 5.0 "{EA9DEA58-06BD-412A-07E5-C9F5FD844218}" = Catalyst Control Center Core Implementation "{ED63F7BA-D844-EA95-7E20-19369151390B}" = Catalyst Control Center Localization Japanese "{EFB5B3B5-A280-4E25-BE1C-634EEFE32C1B}" = AppCore "{EFEB5A8C-34FF-59EC-10EA-26B3B3C8E990}" = Catalyst Control Center Localization Chinese Traditional "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer "{F4BA7923-EDB0-EE20-EC9F-0015549081EF}" = Skins "{F4DB525F-A986-4249-B98B-42A8066251CA}" = AV "{F5D75D7F-DE93-6C53-E60F-D46F8F91052A}" = CCC Help Dutch "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "ATI Uninstaller" = ATI Uninstaller "BabylonToolbar" = Babylon toolbar on IE "Cool's_Codec_pack_4.12" = Codec Pack - All In 1 6.0.3.0 "CPU Burner_is1" = CPU Burner v0.3 "DealPly" = DealPly "eMusic Promotion" = 50 FREE MP3s +1 Free Audiobook! "ENTERPRISE" = Microsoft Office Enterprise 2007 "Gadu-Gadu 10" = Gadu-Gadu 10 "KLiteCodecPack_is1" = K-Lite Mega Codec Pack 5.6.1 "LiveUpdate" = LiveUpdate 3.2 (Symantec Corporation) "McAfee Security Scan" = McAfee Security Scan Plus "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Mozilla Firefox 10.0.2 (x86 pl)" = Mozilla Firefox 10.0.2 (x86 pl) "SoftwareUpdUtility" = Download Updater (AOL LLC) "SymSetup.{5AA2CD16-706F-41f3-87C5-2B5A031F2B3B}" = Norton Internet Security (Symantec Corporation) "Totalcmd" = Total Commander (Remove or Repair) "VLC media player" = VLC media player 1.1.11 "vShare.tv plugin" = vShare.tv plugin 1.3 "Winamp" = Winamp "Winamp Toolbar" = Winamp Toolbar "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-878059811-3187634736-2165975479-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Winamp Detect" = Detektor Winampa "Winamp Toolbar" = Winamp Toolbar [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2010-10-01 07:50:04 | Computer Name = Kata-PC | Source = EventSystem | ID = 4621 Description = Error - 2010-10-01 09:08:01 | Computer Name = Kata-PC | Source = WerSvc | ID = 5007 Description = Error - 2010-10-01 09:09:17 | Computer Name = Kata-PC | Source = EventSystem | ID = 4621 Description = Error - 2010-10-02 03:36:00 | Computer Name = Kata-PC | Source = WerSvc | ID = 5007 Description = Error - 2010-10-02 04:48:04 | Computer Name = Kata-PC | Source = EventSystem | ID = 4621 Description = Error - 2010-10-02 14:01:32 | Computer Name = Kata-PC | Source = WerSvc | ID = 5007 Description = Error - 2010-10-02 16:04:31 | Computer Name = Kata-PC | Source = EventSystem | ID = 4621 Description = Error - 2010-10-03 09:51:50 | Computer Name = Kata-PC | Source = WerSvc | ID = 5007 Description = Error - 2010-10-04 05:09:00 | Computer Name = Kata-PC | Source = EventSystem | ID = 4621 Description = Error - 2010-10-04 13:30:54 | Computer Name = Kata-PC | Source = WerSvc | ID = 5007 Description = [ System Events ] Error - 2012-02-25 00:10:36 | Computer Name = Kata-PC | Source = DCOM | ID = 10010 Description = Error - 2012-02-25 21:19:47 | Computer Name = Kata-PC | Source = DCOM | ID = 10010 Description = Error - 2012-02-26 14:33:16 | Computer Name = Kata-PC | Source = Service Control Manager | ID = 7011 Description = Error - 2012-02-26 20:55:33 | Computer Name = Kata-PC | Source = DCOM | ID = 10010 Description = Error - 2012-02-27 15:18:40 | Computer Name = Kata-PC | Source = Service Control Manager | ID = 7030 Description = Error - 2012-02-27 15:24:13 | Computer Name = Kata-PC | Source = Service Control Manager | ID = 7030 Description = Error - 2012-02-27 15:32:41 | Computer Name = Kata-PC | Source = Service Control Manager | ID = 7030 Description = Error - 2012-02-27 15:40:58 | Computer Name = Kata-PC | Source = Service Control Manager | ID = 7022 Description = Error - 2012-02-27 17:24:09 | Computer Name = Kata-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 22:22:29 na 2012-02-27 było nieoczekiwane. Error - 2012-02-27 17:33:16 | Computer Name = Kata-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 22:30:59 na 2012-02-27 było nieoczekiwane. < End of report >