OTL Extras logfile created on: 2012-08-10 10:05:11 - Run 3 OTL by OldTimer - Version 3.2.56.0 Folder = C:\Documents and Settings\Adrian Lipa\Desktop Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000415 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd 2,75 Gb Total Physical Memory | 2,45 Gb Available Physical Memory | 89,20% Memory free 4,60 Gb Paging File | 4,50 Gb Available in Paging File | 97,85% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 39,06 Gb Total Space | 21,79 Gb Free Space | 55,79% Space Free | Partition Type: NTFS Drive D: | 109,98 Gb Total Space | 5,56 Gb Free Space | 5,06% Space Free | Partition Type: NTFS Computer Name: BHP-D696E675499 | User Name: Adrian Lipa | Logged in as Administrator. Boot Mode: SafeMode | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) .url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l [HKEY_USERS\S-1-5-21-515967899-1993962763-1417001333-1002\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* exefile [open] -- "%1" %* http [open] -- "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation) https [open] -- "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation) InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr] "Start" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService] "Start" = 2 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List] "26675:TCP" = 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] "26675:TCP" = 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe" = C:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3 [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended "{1485B7CD-4CBD-4039-8EAE-5A22993D7F54}" = hp LaserJet 1150 / 1300 "{18435829-4E75-4CD1-9796-A62DBBAE2ED7}" = DeepSkyStacker "{197A3012-8C85-4FD3-AB66-9EC7E13DB92E}" = Adobe AIR "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{249AF4F3-0353-4C75-988D-019FCD52B4D4}" = OLYMPUS Digital Camera Updater "{26A24AE4-039D-4CA4-87B4-2F83216022FF}" = Java(TM) 6 Update 22 "{2ADE2157-7A5E-122C-B51D-EB8A01B15943}" = DeepBurner v1.9.0.228 "{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{35A81F0A-A1CA-458D-8FCD-7D838E3D95FF}" = Microsoft WorldWide Telescope "{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}" = Adobe Media Player "{3A6829EF-0791-4FDD-9382-C690DD0821B9}" = Adobe Flash Player 10 ActiveX "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{5783F2D7-A028-0409-0000-0060B0CE6BBA}" = DWG TrueView 2012 "{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}" = Google Earth "{670A2206-F20A-490C-8C13-25EA88BF8E54}_is1" = e-pity 2011 wersja 3.0 "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{7131646D-CD3C-40F4-97B9-CD9E4E6262EF}" = Microsoft .NET Framework 2.0 "{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{89A43E80-AC6C-4DA8-9800-F4B30ED577C0}" = OLYMPUS ib "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90110415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003 "{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system "{98D1A713-438C-4A23-8AB6-41B37C4A2D47}" = VMware Workstation "{99052DB7-9592-4522-A558-5417BBAD48EE}" = Microsoft ActiveSync "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{A8D93648-9F7F-407D-915C-62044644C3DA}" = MSI to redistribute MS VS2005 CRT libraries "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A93944F2-D2D4-4750-BFE7-9A288FEAF2CF}" = Apple Application Support "{AAF4238F-7C29-451D-9925-C753271A5728}" = Microsoft Visual C++ Run Time Lib Setup "{AAF80000-22B9-4CE9-98D6-2CCF359BAC07}" = ABBYY FineReader 8.0 Professional Edition "{AC1E4C93-C1E7-11D6-9D10-00010240CE95}" = Java 2 Runtime Environment, SE v1.4.0_03 "{AC76BA86-7AD7-1045-7B44-A70000000000}" = Adobe Reader 7.0 - Polish "{AE112F6D-D1B3-11D4-8577-00105ADDC431}" = mb Software ArCon 6 "{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Atheros Driver Installation Program "{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}" = NVIDIA PhysX "{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver "{d08d9f98-1c78-4704-87e6-368b0023d831}" = RelevantKnowledge "{D46D081B-F60E-467E-A7C4-117B70D76731}" = HP Update "{D7A6C517-11F2-419F-B5BB-27772B939698}" = NvMixer "{DC4E86E2-50D5-41F8-82E3-DB8BBA944B2B}" = Wymarzony Ogród "{EB900AF8-CC61-4E15-871B-98D1EA3E8025}" = QuickTime "{FBB850CF-999E-44B3-BC11-C96661873BFF}_is1" = Testy na Prawo Jazdy 2011 - kat. C - ver. 4.1 "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "A106663FD3361BDFACB045D83EBA03858EB1E411" = Windows Driver Package - FTDI CDM Driver Package (03/13/2008 2.04.06) "Adobe AIR" = Adobe AIR "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Photoshop 7.0 CE" = Adobe Photoshop 7.0 CE "AIMP2" = AIMP2 "AP Guitar Tuner" = AP Guitar Tuner "ArmageddonChess" = ArmageddonChess "Asystent BHP 2.0_is1" = Asystent BHP 2.0 "Asystent BHP 3.0_is1" = Asystent BHP 3.0 "Asystent Faktura 2011_is1" = Asystent Faktura 2011 (v11.1.24) "Asystent Faktura 2012_is1" = Asystent Faktura 2012 (v12.2.21) "AVG9Uninstall" = AVG Free 9.0 "Broadcom 802.11b Network Adapter" = Broadcom 802.11 Wireless LAN Adapter "CCleaner" = CCleaner "CNXT_AUDIO_HDA" = Conexant HD Audio "com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player "DRUKI IPS_is1" = DRUKI IPS "DWG TrueView 2012" = DWG TrueView 2012 "Dziobas Rar Player_is1" = Dziobas Rar Player 0.009.39 "E77704EF5E71F4F18CADFBFA68595AFE036D5D97" = Windows Driver Package - OLYMPUS IMAGING CORP. Camera Communication Driver Package (09/09/2009 1.0.0.0) "F2F24872454C7CAEAABD8BB063F70FBEFF01989D" = Windows Driver Package - FTDI CDM Driver Package (03/13/2008 2.04.06) "FBDBServer_2_1_is1" = Firebird 2.1.3.18185 (Win32) "FileZilla Client" = FileZilla Client 3.3.4.1 "Freez FLV to AVI/MPEG/WMV Converter v1.6_is1" = Freez FLV to AVI/MPEG/WMV Converter "FTDICOMM" = FTDI USB Serial Converter Drivers "Gadu-Gadu" = Gadu-Gadu 7.7 "GoldWave v5.57" = GoldWave v5.57 "Guitar Pro 5_is1" = Guitar Pro 5.1 "InstallShield_{89A43E80-AC6C-4DA8-9800-F4B30ED577C0}" = OLYMPUS ib "Internet w Cyfrowym Polsacie" = Internet w Cyfrowym Polsacie "Java Web Start" = Java Web Start "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.62.0.1300 "Microsoft .NET Framework 2.0" = Microsoft .NET Framework 2.0 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft Silverlight" = Microsoft Silverlight "Mozilla Firefox (3.6.18)" = Mozilla Firefox (3.6.18) "NapiProjekt_is1" = NapiProjekt 1.0.6.9 "Notepad++" = Notepad++ "NVIDIA Display Control Panel" = NVIDIA Display Control Panel "NVIDIA Drivers" = NVIDIA Drivers "NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager "Picasa 3" = Picasa 3 "PIT Format 2011_is1" = PIT Format 2011 "Polski VAG 2.5_is1" = Polski VAG 2.5 "Prezentacje Szkoleniowe z zakresu BHP i PPOŻ_is1" = Prezentacje Szkoleniowe z zakresu BHP i PPOŻ v.1.20 "RMVB Player_is1" = RMVB Player 1.0.1 "Stellarium_is1" = Stellarium 0.10.2 "Szachy 98" = Szachy 98 "Ultra AVI Converter_is1" = Ultra AVI Converter 6.2.0411 "Wdf01009" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.9 "WinAce Archiver" = WinAce Archiver "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-03-06 14:36:43 | Computer Name = BHP-D696E675499 | Source = Userenv | ID = 1090 Description = Windows couldn't log the RSoP (Resultant Set of Policies) session status. An attempt to connect to WMI failed. No more RSoP logging will be done for this application of policy. Error - 2012-03-06 16:13:43 | Computer Name = BHP-D696E675499 | Source = Userenv | ID = 1090 Description = Windows couldn't log the RSoP (Resultant Set of Policies) session status. An attempt to connect to WMI failed. No more RSoP logging will be done for this application of policy. Error - 2012-03-06 16:13:43 | Computer Name = BHP-D696E675499 | Source = Userenv | ID = 1090 Description = Windows couldn't log the RSoP (Resultant Set of Policies) session status. An attempt to connect to WMI failed. No more RSoP logging will be done for this application of policy. Error - 2012-03-07 03:29:54 | Computer Name = BHP-D696E675499 | Source = Userenv | ID = 1090 Description = Windows couldn't log the RSoP (Resultant Set of Policies) session status. An attempt to connect to WMI failed. No more RSoP logging will be done for this application of policy. Error - 2012-03-07 03:29:54 | Computer Name = BHP-D696E675499 | Source = Userenv | ID = 1090 Description = Windows couldn't log the RSoP (Resultant Set of Policies) session status. An attempt to connect to WMI failed. No more RSoP logging will be done for this application of policy. Error - 2012-03-07 05:09:54 | Computer Name = BHP-D696E675499 | Source = Userenv | ID = 1090 Description = Windows couldn't log the RSoP (Resultant Set of Policies) session status. An attempt to connect to WMI failed. No more RSoP logging will be done for this application of policy. Error - 2012-03-07 05:25:54 | Computer Name = BHP-D696E675499 | Source = Userenv | ID = 1090 Description = Windows couldn't log the RSoP (Resultant Set of Policies) session status. An attempt to connect to WMI failed. No more RSoP logging will be done for this application of policy. Error - 2012-03-07 08:43:44 | Computer Name = BHP-D696E675499 | Source = Userenv | ID = 1090 Description = Windows couldn't log the RSoP (Resultant Set of Policies) session status. An attempt to connect to WMI failed. No more RSoP logging will be done for this application of policy. Error - 2012-03-07 08:43:44 | Computer Name = BHP-D696E675499 | Source = Userenv | ID = 1090 Description = Windows couldn't log the RSoP (Resultant Set of Policies) session status. An attempt to connect to WMI failed. No more RSoP logging will be done for this application of policy. Error - 2012-03-07 10:01:49 | Computer Name = BHP-D696E675499 | Source = Userenv | ID = 1090 Description = Windows couldn't log the RSoP (Resultant Set of Policies) session status. An attempt to connect to WMI failed. No more RSoP logging will be done for this application of policy. [ System Events ] Error - 2011-10-28 11:30:31 | Computer Name = BHP-D696E675499 | Source = W32Time | ID = 39452701 Description = The time provider NtpClient is configured to acquire time from one or more time sources, however none of the sources are currently accessible. No attempt to contact a source will be made for 14 minutes. NtpClient has no source of accurate time. Error - 2011-10-28 11:30:33 | Computer Name = BHP-D696E675499 | Source = W32Time | ID = 39452689 Description = Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751) Error - 2011-10-28 11:30:33 | Computer Name = BHP-D696E675499 | Source = W32Time | ID = 39452701 Description = The time provider NtpClient is configured to acquire time from one or more time sources, however none of the sources are currently accessible. No attempt to contact a source will be made for 14 minutes. NtpClient has no source of accurate time. Error - 2011-10-29 03:26:49 | Computer Name = BHP-D696E675499 | Source = Dhcp | ID = 1000 Description = Your computer has lost the lease to its IP address 192.168.118.1 on the Network Card with network address 005056C00008. Error - 2011-10-29 03:26:49 | Computer Name = BHP-D696E675499 | Source = Dhcp | ID = 1000 Description = Your computer has lost the lease to its IP address 192.168.133.1 on the Network Card with network address 005056C00001. Error - 2011-10-29 05:50:47 | Computer Name = BHP-D696E675499 | Source = Dhcp | ID = 1000 Description = Your computer has lost the lease to its IP address 192.168.133.1 on the Network Card with network address 005056C00001. Error - 2011-10-29 05:50:47 | Computer Name = BHP-D696E675499 | Source = Dhcp | ID = 1000 Description = Your computer has lost the lease to its IP address 192.168.118.1 on the Network Card with network address 005056C00008. Error - 2011-10-31 07:18:38 | Computer Name = BHP-D696E675499 | Source = Dhcp | ID = 1000 Description = Your computer has lost the lease to its IP address 192.168.1.101 on the Network Card with network address 00265E49BC29. Error - 2011-10-31 07:18:38 | Computer Name = BHP-D696E675499 | Source = Dhcp | ID = 1000 Description = Your computer has lost the lease to its IP address 192.168.133.1 on the Network Card with network address 005056C00001. Error - 2011-10-31 07:18:38 | Computer Name = BHP-D696E675499 | Source = Dhcp | ID = 1000 Description = Your computer has lost the lease to its IP address 192.168.118.1 on the Network Card with network address 005056C00008. < End of report >