OTL Extras logfile created on: 2012-07-14 14:23:38 - Run 1 OTL by OldTimer - Version 3.2.54.0 Folder = D:\ 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,91 Gb Total Physical Memory | 3,34 Gb Available Physical Memory | 85,20% Memory free 7,83 Gb Paging File | 7,30 Gb Available in Paging File | 93,25% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 88,65 Gb Total Space | 67,14 Gb Free Space | 75,74% Space Free | Partition Type: NTFS Drive D: | 97,56 Gb Total Space | 39,70 Gb Free Space | 40,69% Space Free | Partition Type: NTFS Computer Name: ADMIN-KOMPUTER | User Name: Admin | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software) [HKEY_USERS\S-1-5-21-1156661441-3988215128-3090756461-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0FC49A11-33DF-4D4B-BE64-A9F2A157AC35}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{13BAFB07-FCEE-451C-9DE3-E2A8D9776B98}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{169703D2-16B7-496C-A73A-82651CA648EE}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{20E671D6-6D72-46A1-BE45-744806662FE1}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{21952F8A-04BC-4FA0-80D8-DED39F489C8D}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{387CBC95-AB25-4426-AAAF-15C9C3C0CAC6}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{51F9EEC9-9091-439D-A5FF-9F09117BB909}" = lport=139 | protocol=6 | dir=in | app=system | "{52214765-9119-450C-8DC4-36AC64904CF6}" = lport=138 | protocol=17 | dir=in | app=system | "{662423DF-D0FD-4001-8AC3-309590703617}" = lport=137 | protocol=17 | dir=in | app=system | "{6EF8A329-7F10-4548-A028-6E099DE43B6C}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{812BF03E-7144-40FA-9049-552421E817DF}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{89C3C2F4-9B1B-460B-AB9B-EA5064B601E9}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{93FEA925-846A-4038-83FF-F1A085FC80BE}" = rport=138 | protocol=17 | dir=out | app=system | "{A69931D3-EAAC-4A39-8896-AFE0C6B8AA82}" = rport=139 | protocol=6 | dir=out | app=system | "{C6B97F04-15F6-46A0-AAC0-A20A9753FED8}" = rport=137 | protocol=17 | dir=out | app=system | "{C8DE68B9-0706-4C95-BF99-4AD2C3A46270}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{D673AE52-A158-42A9-9403-91508EE18B48}" = rport=445 | protocol=6 | dir=out | app=system | "{DE746EA1-56D0-45C5-94ED-9EF7EE2771BB}" = lport=445 | protocol=6 | dir=in | app=system | "{E5AB58B1-4DE7-4A3A-B046-7FEAE785F330}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{FBE49DC4-67F9-4381-914C-59C61FF06297}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0E26EAEA-98FA-4FA6-9224-FA1EE29887DE}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe | "{0EE3B2F8-DA39-40FD-96D9-2C1BAC733AC6}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{15186526-712D-42BF-9290-20BB0F5220D8}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{2E0AB44D-1688-480D-9E54-9169D2F9FF19}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer.exe | "{41103FEE-E022-4E54-93A4-F1F1D675D1CC}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer_service.exe | "{6114300A-FA52-4D2B-AB9B-B69E0539E95A}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{72DB67C5-F28F-477E-BB21-160C95F1D8DB}" = protocol=17 | dir=in | app=c:\program files (x86)\pandora.tv\panservice\pandoraservice.exe | "{7DDC932B-992C-4A70-938F-7C7491F1CE36}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{8C950B97-FDBA-4F11-A56F-D0415DEEA1FF}" = protocol=6 | dir=in | app=c:\program files (x86)\pandora.tv\panservice\pandoraservice.exe | "{A8E092DF-E9FD-4E1F-A4D3-54F3F22912F1}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer.exe | "{B797E7E4-25F9-4881-8D7C-EFD67EC0FEF6}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer_service.exe | "{BC0535DB-69A1-48A0-95F0-3AD9CC605462}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{BFE3B857-0FAC-4530-A0A9-6A6397582958}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "4F6D5E84-5826-4394-9F40-3A9A19165651_is1" = Pandora Service "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "AQQ" = WapSter AQQ "ipla" = ipla 2.3.5 "Mozilla Firefox 13.0.1 (x86 pl)" = Mozilla Firefox 13.0.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NapiProjekt_is1" = NapiProjekt (2.0.0.2151) "Opera 11.61.1250" = Opera 11.61 "TeamViewer 7" = TeamViewer 7 "The KMPlayer" = The KMPlayer (remove only) "Winamp" = Winamp [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1156661441-3988215128-3090756461-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{79A765E1-C399-405B-85AF-466F52E918B0}" = KMPlayer Toolbar Updater "Live Security Platinum" = Live Security Platinum "Winamp Detect" = Detektor Winampa [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-07-12 11:20:14 | Computer Name = Admin-Komputer | Source = SideBySide | ID = 16842815 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files (x86)\WapSter\wapster aqq\System\DelZip179.dll". Błąd w pliku manifestu lub w pliku zasad "c:\program files (x86)\WapSter\wapster aqq\System\DelZip179.dll" w wierszu 8. Wartość "*" atrybutu "language" elementu "assemblyIdentity" jest nieprawidłowa. Error - 2012-07-13 08:14:50 | Computer Name = Admin-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2012-07-13 08:26:19 | Computer Name = Admin-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2012-07-13 08:27:27 | Computer Name = Admin-Komputer | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2012-07-13 08:49:03 | Computer Name = Admin-Komputer | Source = SideBySide | ID = 16842815 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files (x86)\WapSter\wapster aqq\System\DelZip179.dll". Błąd w pliku manifestu lub w pliku zasad "c:\program files (x86)\WapSter\wapster aqq\System\DelZip179.dll" w wierszu 8. Wartość "*" atrybutu "language" elementu "assemblyIdentity" jest nieprawidłowa. Error - 2012-07-14 01:22:45 | Computer Name = Admin-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: windll.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4ea8ffc1 Nazwa modułu powodującego błąd: windll.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4ea8ffc1 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00001168 Identyfikator procesu powodującego błąd: 0x58c Godzina uruchomienia aplikacji powodującej błąd: 0x01cd6180a2f6e8d2 Ścieżka aplikacji powodującej błąd: C:\Users\Admin\P-7-78-8964-9648-3874\windll.exe Ścieżka modułu powodującego błąd: C:\Users\Admin\P-7-78-8964-9648-3874\windll.exe Identyfikator raportu: f11c5e3a-cd73-11e1-b8b4-5404a6a214b1 Error - 2012-07-14 01:23:47 | Computer Name = Admin-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2012-07-14 07:44:38 | Computer Name = Admin-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2012-07-14 07:53:14 | Computer Name = Admin-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2012-07-14 08:19:23 | Computer Name = Admin-Komputer | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 2012-07-14 08:18:00 | Computer Name = Admin-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-14 08:18:00 | Computer Name = Admin-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-14 08:20:04 | Computer Name = Admin-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-14 08:20:04 | Computer Name = Admin-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-14 08:20:04 | Computer Name = Admin-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-14 08:25:04 | Computer Name = Admin-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-14 08:25:04 | Computer Name = Admin-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-14 08:25:04 | Computer Name = Admin-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-14 08:27:12 | Computer Name = Admin-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-14 08:27:12 | Computer Name = Admin-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 < End of report >