OTL Extras logfile created on: 2012-07-07 15:40:27 - Run 1 OTL by OldTimer - Version 3.2.53.1 Folder = C:\Users\Toshiba\Downloads Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation Internet Explorer (Version = 7.0.6001.18000) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,87 Gb Total Physical Memory | 1,36 Gb Available Physical Memory | 72,64% Memory free 3,97 Gb Paging File | 3,63 Gb Available in Paging File | 91,37% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 116,44 Gb Total Space | 81,10 Gb Free Space | 69,65% Space Free | Partition Type: NTFS Drive E: | 114,98 Gb Total Space | 102,89 Gb Free Space | 89,49% Space Free | Partition Type: NTFS Computer Name: TOSHIBA-PC | User Name: Toshiba | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l [HKEY_USERS\S-1-5-21-2987821459-4000644052-741353525-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\S-1-5-21-2987821459-4000644052-741353525-1000] "EnableNotifications" = 0 "EnableNotificationsRef" = 1 [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0678033B-81FB-4900-88E8-CC5E51E7784A}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{1458CF32-1EE4-4F91-83B7-82BE71E7F6F7}" = lport=139 | protocol=6 | dir=in | app=system | "{240C3CCB-F9D7-4641-96B7-E07B5E023C52}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{8084E3E7-5DD3-4E5C-B620-28E0F8EA6083}" = rport=445 | protocol=6 | dir=out | app=system | "{89A497A2-EC27-4402-9E09-193CD101FA58}" = rport=138 | protocol=17 | dir=out | app=system | "{8E384DCB-B8DE-4B03-9993-DFCB68814A1B}" = lport=138 | protocol=17 | dir=in | app=system | "{ACC87CD8-5F38-40B6-BB4A-4CD001BB707D}" = lport=445 | protocol=6 | dir=in | app=system | "{B1D30B95-74B4-427D-987D-DD2D68AAABE0}" = rport=137 | protocol=17 | dir=out | app=system | "{DDF3167C-9BC0-4B0A-A07B-A7C0FC1B1742}" = lport=137 | protocol=17 | dir=in | app=system | "{FB381975-775D-462A-ADDD-7B660123B1CD}" = rport=139 | protocol=6 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{2595E09C-406D-4865-8FBE-9AA32A1EDBE5}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{2EDCD08E-1B98-4AB5-8394-762636EF6A53}" = protocol=17 | dir=in | app=c:\program files\bitcomet\bitcomet.exe | "{4A08A8FD-F709-454A-A57F-25D7E3E68AFB}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{6233323B-B234-417F-A31B-862EAD434C03}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{6AAEB57C-0A2A-49AB-8933-2D0C61FC579B}" = protocol=6 | dir=in | app=c:\program files\bitcomet\bitcomet.exe | "{89B228BD-5D0A-45C0-99BB-7D91C5000E89}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{A6B2418B-5145-40C0-9652-E7530AEC3F6B}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{BE0EF3E2-F2BC-462E-96C6-67624C843D6B}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "TCP Query User{90875B15-AE79-48BE-9BB9-458FA3665F19}C:\program files\ares\ares.exe" = protocol=6 | dir=in | app=c:\program files\ares\ares.exe | "UDP Query User{46854F09-EC41-405A-8EAE-C35618AB6569}C:\program files\ares\ares.exe" = protocol=17 | dir=in | app=c:\program files\ares\ares.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{02CA24DD-C8B0-4280-BE53-7862869C2EB1}" = Realtek WiFi Protected Setup Library "{0FB630AB-7BD8-40AE-B223-60397D57C3C9}" = Realtek WLAN Driver "{10DFB03F-845F-4BC6-BE9E-7FEC377A0CD0}" = Podreczniki TOSHIBA "{1111706F-666A-4037-7777-210328764D10}" = JavaFX 2.1.0 "{12688FD7-CB92-4A5B-BEE4-5C8E0574434F}" = Utility Common Driver "{12B3A009-A080-4619-9A2A-C6DB151D8D67}" = TOSHIBA Assist "{2290A680-4083-410A-ADCC-7092C67FC052}" = Toshiba Online Product Information "{26A24AE4-039D-4CA4-87B4-2F83216011FF}" = Java(TM) 6 Update 11 "{26A24AE4-039D-4CA4-87B4-2F83217004FF}" = Java(TM) 7 Update 4 "{2FC099BD-AC9B-33EB-809C-D332E1B27C40}" = Microsoft .NET Framework 3.5 "{306B39C9-3AB1-4161-8567-9C7E50B41AE3}" = Microsoft Works "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE}" = TOSHIBA Supervisor Password "{5279374D-87FE-4879-9385-F17278EBB9D3}" = TOSHIBA Hardware Setup "{53536479-DFB0-47ED-9D10-43F3708C222D}" = TOSHIBA eco Utility "{5DA0E02F-970B-424B-BF41-513A5018E4C0}" = TOSHIBA Disc Creator "{5E6F6CF3-BACC-4144-868C-E14622C658F3}" = TOSHIBA Web Camera Application "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center "{620BBA5E-F848-4D56-8BDA-584E44584C5E}" = TOSHIBA Flash Cards Support Utility "{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites "{6C5F3BDC-0A1B-4436-A696-5939629D5C31}" = TOSHIBA DVD PLAYER "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{773970F1-5EBA-4474-ADEE-1EA3B0A59492}" = TOSHIBA Recovery Disk Creator Reminder "{7C30283C-8DC7-4FBB-805E-52BEA5F580E8}" = Toshiba TEMPRO "{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8136 8168 8169 Ethernet Driver "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8BD6DD52-2F49-4E35-B678-71E1E7D286DB}" = ESET NOD32 Antivirus "{90110415-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Professional "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager "{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007 "{95120000-00AF-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (Polish) "{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}" = TOSHIBA PC Health Monitor "{9E35B051-C7EE-47CB-BA43-9A7FFD4E61DE}" = OpenOffice.org 3.1 "{AC6569FA-6919-442A-8552-073BE69E247A}" = TOSHIBA Service Station "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.3) "{B0E5D7E7-A106-458F-BA7B-2F8CAEA3BF16}" = PlayReady PC runtime "{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}" = TOSHIBA Recovery Disc Creator "{C730E42C-935A-45BB-A0C5-37E5234D111B}" = TOSHIBA Face Recognition "{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = Program TOSHIBA HDD/SSD Alert "{DC24971E-1946-445D-8A82-CE685433FA7D}" = Realtek USB 2.0 Card Reader "{E65C7D8E-186D-484B-BEA8-DEF0331CE600}" = TRORDCLauncher "{EBFF48F5-3CFA-436F-8FD5-94FB01D3A0A7}" = TOSHIBA SD Memory Utilities "{F0A386D2-6E15-4A8F-A04E-87CE9BED0D48}" = TOSHIBA ConfigFree "{F31E509D-3597-324E-83CF-0C160B2320F0}" = Microsoft .NET Framework 3.5 Language Pack - plk "{FEDD27A0-B306-45EF-BF58-B527406B42C8}" = TOSHIBA Value Added Package "Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.6 "HDMI" = Intel(R) Graphics Media Accelerator Driver "HOMESTUDENTR" = Microsoft Office Home and Student 2007 "InstallShield_{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE}" = TOSHIBA Hasło administratora "InstallShield_{5279374D-87FE-4879-9385-F17278EBB9D3}" = Sprzęt instalacyjny TOSHIBA "InstallShield_{53536479-DFB0-47ED-9D10-43F3708C222D}" = TOSHIBA eco Utility "InstallShield_{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center "InstallShield_{620BBA5E-F848-4D56-8BDA-584E44584C5E}" = TOSHIBA Flash Cards Support Utility "InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492}" = TOSHIBA Recovery Disk Creator Reminder "InstallShield_{C730E42C-935A-45BB-A0C5-37E5234D111B}" = TOSHIBA Face Recognition "InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = Program TOSHIBA HDD/SSD Alert "InstallShield_{E65C7D8E-186D-484B-BEA8-DEF0331CE600}" = TRORDCLauncher "InstallShield_{FEDD27A0-B306-45EF-BF58-B527406B42C8}" = TOSHIBA Value Added Package "KLiteCodecPack_is1" = K-Lite Codec Pack 6.2.0 (Basic) "Microsoft .NET Framework 3.5" = Microsoft .NET Framework 3.5 "Microsoft .NET Framework 3.5 Language Pack - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 — PLK "Moment II" = Moment II "Mozilla Firefox 13.0.1 (x86 pl)" = Mozilla Firefox 13.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "SynTPDeinstKey" = Synaptics Pointing Device Driver "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-06-15 09:40:24 | Computer Name = Toshiba-PC | Source = WinMgmt | ID = 10 Description = Error - 2012-06-15 09:40:28 | Computer Name = Toshiba-PC | Source = Microsoft-Windows-CAPI2 | ID = 131083 Description = Error - 2012-06-15 12:25:24 | Computer Name = Toshiba-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd plugin-container.exe, wersja 13.0.0.4535, sygnatura czasowa 0x4fc8de63, moduł powodujący błąd NPSWF32_11_3_300_257.dll_unloaded, wersja 0.0.0.0, sygnatura czasowa 0x4fc821fc, kod wyjątku 0xc0000005, przesunięcie błędu 0x65499903, identyfikator procesu 0xbec, godzina rozpoczęcia aplikacji 0x01cd4aff4c417817. Error - 2012-06-15 16:27:57 | Computer Name = Toshiba-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd plugin-container.exe, wersja 13.0.0.4535, sygnatura czasowa 0x4fc8de63, moduł powodujący błąd NPSWF32_11_3_300_257.dll_unloaded, wersja 0.0.0.0, sygnatura czasowa 0x4fc821fc, kod wyjątku 0xc0000005, przesunięcie błędu 0x65dc9903, identyfikator procesu 0x736c, godzina rozpoczęcia aplikacji 0x01cd4b138a4993c0. Error - 2012-06-16 11:19:20 | Computer Name = Toshiba-PC | Source = WinMgmt | ID = 10 Description = Error - 2012-06-16 11:19:26 | Computer Name = Toshiba-PC | Source = Microsoft-Windows-CAPI2 | ID = 131083 Description = Error - 2012-06-16 14:20:06 | Computer Name = Toshiba-PC | Source = WinMgmt | ID = 10 Description = Error - 2012-06-16 14:20:12 | Computer Name = Toshiba-PC | Source = Microsoft-Windows-CAPI2 | ID = 131083 Description = Error - 2012-06-16 14:20:20 | Computer Name = Toshiba-PC | Source = Microsoft-Windows-CAPI2 | ID = 131083 Description = Error - 2012-06-16 14:21:26 | Computer Name = Toshiba-PC | Source = Windows Search Service | ID = 3013 Description = [ System Events ] Error - 2011-07-31 16:04:51 | Computer Name = Toshiba-PC | Source = iaStor | ID = 262153 Description = Urządzenie \Device\Ide\iaStor0 nie odpowiedziało w ramach ustalonego limitu czasu. Error - 2011-08-01 03:26:19 | Computer Name = Toshiba-PC | Source = HTTP | ID = 15016 Description = Error - 2011-08-01 03:26:29 | Computer Name = Toshiba-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2011-08-01 07:13:28 | Computer Name = Toshiba-PC | Source = HTTP | ID = 15016 Description = Error - 2011-08-01 07:13:53 | Computer Name = Toshiba-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2011-08-02 09:44:40 | Computer Name = Toshiba-PC | Source = HTTP | ID = 15016 Description = Error - 2011-08-02 09:45:18 | Computer Name = Toshiba-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2011-08-02 15:11:02 | Computer Name = Toshiba-PC | Source = HTTP | ID = 15016 Description = Error - 2011-08-02 15:11:17 | Computer Name = Toshiba-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2011-08-02 15:15:36 | Computer Name = Toshiba-PC | Source = iaStor | ID = 262153 Description = Urządzenie \Device\Ide\iaStor0 nie odpowiedziało w ramach ustalonego limitu czasu. < End of report >