OTL logfile created on: 2012-06-07 21:24:22 - Run 3 OTL by OldTimer - Version 3.2.46.0 Folder = C:\Documents and Settings\Administrator\Pulpit Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,44 Gb Available Physical Memory | 72,24% Memory free 3,85 Gb Paging File | 3,46 Gb Available in Paging File | 90,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 19,83 Gb Total Space | 11,32 Gb Free Space | 57,09% Space Free | Partition Type: NTFS Drive D: | 97,79 Gb Total Space | 3,60 Gb Free Space | 3,68% Space Free | Partition Type: NTFS Drive E: | 97,76 Gb Total Space | 31,45 Gb Free Space | 32,17% Space Free | Partition Type: NTFS Drive F: | 82,70 Gb Total Space | 11,45 Gb Free Space | 13,84% Space Free | Partition Type: NTFS Computer Name: MX8PC | User Name: Administrator | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< HKEY_CURRENT_USER\Software\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1} /s >[/color] [color=#A23BEC]< HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1} /s >[/color] "" = Microsoft WBEM New Event Subsystem [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InprocServer32] "" = \\.\globalroot\systemroot\Installer\{f38f99b4-b539-802b-d990-92cd970b3494}\n. "ThreadingModel" = Both [color=#A23BEC]< HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1} /s >[/color] "" = MruPidlList [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2009-06-09 01:53:09 | 003,418,112 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [color=#A23BEC]< MD5 for: SERVICES.EXE >[/color] [2009-07-05 01:07:33 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=8816E60BF654353E8E0D35ED98875445 -- C:\WINDOWS\system32\services.exe < End of report >