OTL Extras logfile created on: 2012-07-07 15:18:50 - Run 1 OTL by OldTimer - Version 3.2.53.1 Folder = F:\ Windows Vista Home Basic Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,66 Gb Available Physical Memory | 83,12% Memory free 4,23 Gb Paging File | 4,03 Gb Available in Paging File | 95,22% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 244,14 Gb Total Space | 174,09 Gb Free Space | 71,31% Space Free | Partition Type: NTFS Drive D: | 221,62 Gb Total Space | 170,53 Gb Free Space | 76,95% Space Free | Partition Type: NTFS Drive F: | 14,89 Gb Total Space | 13,15 Gb Free Space | 88,27% Space Free | Partition Type: FAT32 Computer Name: ZPKOBIGA1 | User Name: ZPKobiga | Logged in as Administrator. Boot Mode: SafeMode | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{031F34E8-8BFF-45B8-8AF8-B5862B9F5AEB}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgmfapx.exe | "{10FE6DE0-3FBB-4FB0-A275-9BD333CFEC8F}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgmfapx.exe | "{114A7B1E-1CED-41DE-AA94-300FD4612B87}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgdiagex.exe | "{180BBE66-05E5-46F6-9A26-253D14001E4B}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgemcx.exe | "{2D41EA3C-62D8-4286-AEEA-D3F1F264990B}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgemcx.exe | "{2FBD4E55-53F9-4840-B8B7-EF1B15FD52AC}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgnsx.exe | "{31FB5989-4E39-493A-8D9A-DA7547A26FA0}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgnsx.exe | "{3B6C56B5-A576-46AB-A310-22BAD10EC532}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgdiagex.exe | "{52965239-6C02-46F5-A1CA-F88B0D378D70}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgdiagex.exe | "{5DD5F8FA-A9A4-4F2A-9E42-0BF7EC222512}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgnsx.exe | "{6793E0F9-31B2-4066-966B-E7A970EDD1B5}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgemcx.exe | "{68034304-011F-46B8-8EB4-3500BB659BA2}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgmfapx.exe | "{81672ED6-6BC3-4BDF-93D2-E220339FE858}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgmfapx.exe | "{9C078FCC-4834-4DB7-837A-538276340918}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgnsx.exe | "{A98FE4A0-015A-428D-AB55-DAD98AC32143}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgemcx.exe | "{AECAB359-0B69-4DEA-8391-B17CED6FE495}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgmfapx.exe | "{B2757BBF-A36D-40B2-999D-D205675F435A}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgnsx.exe | "{B3E7D13E-A6E7-49A0-9B8A-4D92BD631632}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgemcx.exe | "{BE90DB43-FCCB-4CF1-BC8B-99CFAA53DF9C}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgdiagex.exe | "{BEA82EB2-9E7F-4BEF-AD70-FBC2E07D69FB}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgmfapx.exe | "{C4285C39-432C-4CB1-A399-B08D36EE48A5}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgemcx.exe | "{CCF1CDC9-EB68-4E55-8812-2D732D9D32DF}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgnsx.exe | "{ECCC3BA1-119F-4F7A-B8D6-F453B2C0F8AA}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgdiagex.exe | "{EF6FFAF3-6416-4136-B9B4-9531793192DF}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgdiagex.exe | "TCP Query User{886B1264-7C75-4F8E-8D80-F997337AAD3E}C:\users\zpkobiga\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\zpkobiga\appdata\local\akamai\netsession_win.exe | "TCP Query User{EFCAE601-0F6D-4C7A-BBDC-4E28EE239937}C:\users\zpkobiga\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\zpkobiga\appdata\local\akamai\netsession_win.exe | "UDP Query User{A8C69428-D954-46B9-8B86-F6246AAC8A0D}C:\users\zpkobiga\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\zpkobiga\appdata\local\akamai\netsession_win.exe | "UDP Query User{BFF5AC15-CC24-4904-878C-89BD587C8784}C:\users\zpkobiga\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\zpkobiga\appdata\local\akamai\netsession_win.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83216026FF}" = Java(TM) 6 Update 26 "{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{33286280-8617-11E1-8FF6-B8AC6F97B88E}" = Google Earth Plug-in "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{3F24F641-BF83-47AA-BBF9-A5DC1FF7A0A3}" = Document Express DjVu Plug-in "{3FE93ACC-83FB-4FE5-9147-8BAD2D33E2EF}" = AVG 2012 "{450063AA-643B-417C-8CF5-405BA3F4EF40}" = Autodesk Design Review 2009 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4A2C38F4-5D6E-4EC8-B6B9-2E92F920FDD1}" = ActivePowerView "{5545EEE1-FA36-4F76-B6BE-5696E7F4E2D6}" = VBA (2627.01) "{5783F2D7-7001-0415-0002-0060B0CE6BBA}" = AutoCAD 2009 - Polski "{6D12EC75-E7D3-4EAD-AB10-E1F3AFF94AA6}" = AVG 2012 "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8169 PCI, 8168 and 8101E PCIe Ethernet Network Card Driver for Windows Vista "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1045-7B44-AA1000000001}" = Adobe Reader X (10.1.3) - Polish "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 280.26 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 280.26 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 280.26 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 280.19 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.10.0514 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.4.28 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{F1161EC6-7CC1-4D9F-83F6-8839C17019C2}" = LibreOffice 3.4 "{FDB3B167-F4FA-461D-976F-286304A57B2A}" = Adobe AIR "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "AutoCAD 2009 - Polski" = AutoCAD 2009 - Polski "Autodesk Design Review 2009" = Autodesk Design Review 2009 "AVG" = AVG 2012 "DualCoreCenter_is1" = DualCoreCenter "Liveupdate4_is1" = Liveupdate4 "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "NVIDIA StereoUSB Driver" = NVIDIA 3D Vision Controller Driver "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Totalcmd" = Total Commander (Remove or Repair) "WinRAR archiver" = WinRAR 4.01 (32-bitowy) [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Akamai" = Akamai NetSession Interface [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-06-04 14:10:16 | Computer Name = ZPKobiga1 | Source = Microsoft-Windows-CAPI2 | ID = 131083 Description = Error - 2012-06-04 14:10:17 | Computer Name = ZPKobiga1 | Source = Microsoft-Windows-CAPI2 | ID = 131083 Description = Error - 2012-06-04 14:11:26 | Computer Name = ZPKobiga1 | Source = Microsoft-Windows-CAPI2 | ID = 131083 Description = Error - 2012-06-04 14:11:27 | Computer Name = ZPKobiga1 | Source = Microsoft-Windows-CAPI2 | ID = 131083 Description = Error - 2012-07-02 08:22:48 | Computer Name = ZPKobiga1 | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd AcroRd32.exe, wersja 10.1.3.23, sygnatura czasowa 0x4f7bc349, moduł powodujący błąd ntdll.dll, wersja 6.0.6002.18541, sygnatura czasowa 0x4ec3e3d5, kod wyjątku 0xc0000374, przesunięcie błędu 0x000b06b7, identyfikator procesu 0xca0, godzina rozpoczęcia aplikacji 0x01cd584c8e39763e. Error - 2012-07-07 08:54:52 | Computer Name = ZPKobiga1 | Source = Perflib | ID = 1010 Description = Error - 2012-07-07 08:54:52 | Computer Name = ZPKobiga1 | Source = Perflib | ID = 1008 Description = Error - 2012-07-07 09:00:05 | Computer Name = ZPKobiga1 | Source = EventSystem | ID = 4609 Description = Error - 2012-07-07 09:10:06 | Computer Name = ZPKobiga1 | Source = EventSystem | ID = 4609 Description = Error - 2012-07-07 09:11:44 | Computer Name = ZPKobiga1 | Source = EventSystem | ID = 4609 Description = [ System Events ] Error - 2012-07-07 09:16:57 | Computer Name = ZPKobiga1 | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-07 09:16:57 | Computer Name = ZPKobiga1 | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-07 09:16:57 | Computer Name = ZPKobiga1 | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-07 09:16:57 | Computer Name = ZPKobiga1 | Source = Service Control Manager | ID = 7026 Description = Error - 2012-07-07 09:16:57 | Computer Name = ZPKobiga1 | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-07 09:16:57 | Computer Name = ZPKobiga1 | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-07 09:17:18 | Computer Name = ZPKobiga1 | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-07 09:17:18 | Computer Name = ZPKobiga1 | Source = DCOM | ID = 10005 Description = Error - 2012-07-07 09:17:18 | Computer Name = ZPKobiga1 | Source = DCOM | ID = 10005 Description = Error - 2012-07-07 09:17:21 | Computer Name = ZPKobiga1 | Source = Service Control Manager | ID = 7001 Description = < End of report >