OTL Extras logfile created on: 2012-07-20 13:31:53 - Run 1 OTL by OldTimer - Version 3.2.54.0 Folder = D:\Desktop\Downloads Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,97 Gb Total Physical Memory | 2,47 Gb Available Physical Memory | 83,38% Memory free 5,93 Gb Paging File | 5,46 Gb Available in Paging File | 92,14% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 146,39 Gb Total Space | 117,59 Gb Free Space | 80,32% Space Free | Partition Type: NTFS Drive D: | 151,60 Gb Total Space | 139,06 Gb Free Space | 91,73% Space Free | Partition Type: NTFS Computer Name: MONIKA-KOMPUTER | User Name: Monika | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 1 Day [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 "AntiVirusDisableNotify" = 1 "AntiVirusOverride" = 1 "FirewallDisableNotify" = 0 "FirewallOverride" = 1 "UpdatesDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{04BEBC88-DA2D-4E59-AA6C-B8FBDF633343}" = lport=10243 | protocol=6 | dir=in | app=system | "{0864D042-1F8A-4A87-A538-4726C66F6474}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{13FCBA90-81E2-4937-B42D-D9BC4D1D573E}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{148DF8F3-7908-4191-8592-EDDD4BF513A3}" = lport=2869 | protocol=6 | dir=in | app=system | "{1EDB39A3-C67E-4FB9-9FE8-F35C12129047}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{253B10DE-FED2-4E51-A3ED-C7C58D4D1581}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{2623FCC9-7AF9-4C0C-8711-51BA2C9EBE0D}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{29FD5A8D-48B6-4417-A7ED-5809169A2D17}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{43487013-6E5E-44FD-9382-90692DB29157}" = lport=139 | protocol=6 | dir=in | app=system | "{627BB065-78C6-4BAE-A41F-0CDBAE38DA3E}" = lport=445 | protocol=6 | dir=in | app=system | "{654E719F-5B06-49FC-B8A3-764CB6EB208B}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{685A874B-592D-4E2E-8734-96756ED73EF1}" = rport=139 | protocol=6 | dir=out | app=system | "{689F0707-90D7-4F2C-910C-FA4103B1165D}" = lport=137 | protocol=17 | dir=in | app=system | "{6ADBA7AB-5185-4905-BF2C-8243E0A33A0F}" = rport=10243 | protocol=6 | dir=out | app=system | "{6E996E7F-E610-456C-AD7A-B0BA3C3FC4AE}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{77333923-1A3D-440D-AE07-BDD3C1B46760}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{8321852B-54A4-4C2E-A138-F9D6AE9CAA24}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{93B94DB2-8806-428E-B215-68D20E938F23}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{ABE464D0-18D4-470B-A30E-7B1318FD53AF}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{B0C572A7-F650-4ED7-8020-3DE663A016E4}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{D15B877A-56BF-4D16-B0F9-AA9B073F24ED}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{D3ED7F9D-8FC9-4F35-B8FA-5AFF5116E958}" = lport=138 | protocol=17 | dir=in | app=system | "{E016D07D-39D2-4B6F-B371-BFFD4C1D7E2A}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{E2B2B675-6FA2-494B-AE87-6A1105A026C7}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{E3545812-5830-4F8E-ABF1-636A646423E6}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{E3D8D1E3-673B-4247-A6F0-93D76DA01BA0}" = rport=445 | protocol=6 | dir=out | app=system | "{E93D49AD-BFFB-4CC0-A48C-09BBBF476FBF}" = rport=138 | protocol=17 | dir=out | app=system | "{EB598065-D5C0-4BDA-BCF0-480D9E9CB1B9}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{F01EFF42-6547-46FD-9911-319CC6125A7A}" = rport=137 | protocol=17 | dir=out | app=system | "{F21FFC31-9456-4F50-A5D1-F87443CE9DEE}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{F4F6CB1A-2671-445C-A64D-C230A9499A7B}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{015B7705-5778-40E8-B713-A1F8748AAAE5}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{0E63EFA9-BDE5-4CC9-8A57-B243B061DA7D}" = protocol=6 | dir=out | app=system | "{1842C7B5-FFBC-49CA-9D3F-1E3ED79FE40D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{18DE4506-8355-40AF-ADDD-5197463DD380}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{257724A3-53BE-42B2-A3CD-9305D8768354}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{272504A9-E6BC-4ADE-ABBB-3F20EEF8ECF8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{48854C4B-13DB-44DE-B86F-720DD4A395B5}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{4C8B0177-1D32-4FF7-95A2-90FE0C5BB794}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{51B36F02-BE3C-43C0-AAFF-4A881849460E}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{559CFAA4-5CFF-4B1F-AFE4-D2B77D7A8A3A}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe | "{5FFB63BD-2227-4002-8388-3B116757C9DC}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{746CB172-4747-4420-9689-8DB07296D048}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{7983628A-7118-49FD-9719-065C7B8DF327}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{B6BEAF7D-0994-4DB5-80AC-B1E529157C4B}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{CAA317DF-06A1-4A41-9499-A8012C78A926}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{DA653F1D-0CA0-4494-8D4D-5EA9CB030603}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{ED364749-76B0-4CC7-8E23-005B23FF4826}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{FB29D8CC-3ED2-4A65-8790-E4898A0A004A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "TCP Query User{4BCD86CD-86DC-434C-AD3D-BAEB0CE2532B}C:\program files\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe | "TCP Query User{5281C1FD-D125-47AE-9FFF-CE8A34D4A24E}C:\program files\ares\ares.exe" = protocol=6 | dir=in | app=c:\program files\ares\ares.exe | "TCP Query User{86F31058-472B-4BEC-BE16-81815CE047BC}C:\program files\ares\ares.exe" = protocol=6 | dir=in | app=c:\program files\ares\ares.exe | "UDP Query User{2233700D-5BC7-479F-97A8-B67304FD1194}C:\program files\ares\ares.exe" = protocol=17 | dir=in | app=c:\program files\ares\ares.exe | "UDP Query User{5D5219BF-2265-4235-B1F7-C7AE22244E98}C:\program files\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe | "UDP Query User{ACB14F2E-5C3B-4E63-B07D-3C99B325C99E}C:\program files\ares\ares.exe" = protocol=17 | dir=in | app=c:\program files\ares\ares.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0E64B098-8018-4256-BA23-C316A43AD9B0}" = QuickTime "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{85767617-E6B1-499E-8C1B-C92E2AAFF586}" = TuneUp Utilities Language Pack (pl-PL) "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9CF4A37B-A8C4-44D7-8C53-13B9D9594BB2}" = Paint.NET v3.5.8 "{ABC082A6-A587-493C-83C1-5F2C60A8BAA8}" = FileOpen Client "{AC76BA86-7AD7-1045-7B44-A95000000001}" = Adobe Reader 9.5.1 - Polish "{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba "{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}" = TuneUp Utilities "{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1" = Auslogics Disk Defrag "{EB87675F-5281-4767-A54B-31931794C23D}" = OpenOffice.org 3.3 "{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}" = Apple Application Support "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Ares" = Ares 2.1.7 "Avira AntiVir Desktop" = Avira Free Antivirus "CCleaner" = CCleaner "e-Kiosk Reader" = e-Kiosk Reader 1.0.61 "GOM Player" = GOM Player "KLiteCodecPack_is1" = K-Lite Codec Pack 8.6.0 (Standard) "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Mozilla Firefox 4.0.1 (x86 pl)" = Mozilla Firefox 4.0.1 (x86 pl) "Mozilla Sunbird (0.9)" = Mozilla Sunbird (0.9) "NapiProjekt_is1" = NapiProjekt 1.0.6.9 "RealAlt_is1" = Real Alternative 1.8.0 "Totalcmd" = Total Commander (Remove or Repair) "TuneUp Utilities" = TuneUp Utilities "WinRAR archiver" = WinRAR 4.01 (32-bitowy) [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-07-17 16:23:29 | Computer Name = Monika-Komputer | Source = ESENT | ID = 455 Description = Windows (2924) Windows: Wystąpił błąd -1811 podczas otwierania pliku dziennika C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS00133.log. Error - 2012-07-17 16:23:29 | Computer Name = Monika-Komputer | Source = Windows Search Service | ID = 9000 Description = Error - 2012-07-17 16:23:29 | Computer Name = Monika-Komputer | Source = Windows Search Service | ID = 7040 Description = Error - 2012-07-17 16:23:29 | Computer Name = Monika-Komputer | Source = Windows Search Service | ID = 7042 Description = Error - 2012-07-17 16:23:29 | Computer Name = Monika-Komputer | Source = Windows Search Service | ID = 9002 Description = Error - 2012-07-17 16:23:29 | Computer Name = Monika-Komputer | Source = Windows Search Service | ID = 3029 Description = Error - 2012-07-17 16:23:29 | Computer Name = Monika-Komputer | Source = Windows Search Service | ID = 3029 Description = Error - 2012-07-17 16:23:29 | Computer Name = Monika-Komputer | Source = Windows Search Service | ID = 3028 Description = Error - 2012-07-17 16:23:29 | Computer Name = Monika-Komputer | Source = Windows Search Service | ID = 3058 Description = Error - 2012-07-17 16:23:29 | Computer Name = Monika-Komputer | Source = Windows Search Service | ID = 7010 Description = [ System Events ] Error - 2012-07-20 07:22:38 | Computer Name = Monika-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-20 07:27:38 | Computer Name = Monika-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-20 07:27:38 | Computer Name = Monika-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-20 07:27:38 | Computer Name = Monika-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-20 07:29:44 | Computer Name = Monika-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-20 07:29:44 | Computer Name = Monika-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-20 07:29:44 | Computer Name = Monika-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-20 07:34:44 | Computer Name = Monika-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-20 07:34:44 | Computer Name = Monika-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error - 2012-07-20 07:34:44 | Computer Name = Monika-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 < End of report >