OTL Extras logfile created on: 2012-09-26 13:05:33 - Run 1 OTL by OldTimer - Version 3.2.68.0 Folder = C:\Users\Stachu\Downloads 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,96 Gb Total Physical Memory | 0,86 Gb Available Physical Memory | 44,07% Memory free 3,92 Gb Paging File | 2,42 Gb Available in Paging File | 61,70% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 67,69 Gb Total Space | 19,05 Gb Free Space | 28,15% Space Free | Partition Type: NTFS Computer Name: STACHU-KOMPUTER | User Name: Stachu | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{09A55778-4D78-4C76-885E-0498986123BC}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{3FD71A9F-EA95-48AD-BCDE-6F657C3059D5}" = rport=137 | protocol=17 | dir=out | app=system | "{41891519-52C6-46AC-89A4-7103CBD300B0}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{429F4DFD-E92E-4247-A296-15FCEA1666A9}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4B7FE11B-D6CB-4595-A2C7-99B64C8C5CF4}" = lport=139 | protocol=6 | dir=in | app=system | "{54539E3C-4054-46DB-AB33-2A495516E270}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{580E6264-7886-4638-92C5-B1CBC9F980D1}" = lport=138 | protocol=17 | dir=in | app=system | "{760D0ED1-B641-4EEE-BBC4-243F6862EF49}" = lport=2869 | protocol=6 | dir=in | app=system | "{808E3D08-A458-4778-BA20-2FECDFCE9AE4}" = rport=445 | protocol=6 | dir=out | app=system | "{8CC0310A-25CE-444B-86E2-21A0F731D8F5}" = rport=138 | protocol=17 | dir=out | app=system | "{8D685BE4-6A51-4C9F-98FF-767348166D68}" = lport=445 | protocol=6 | dir=in | app=system | "{A2CA23D7-F0B0-4224-B3F6-C7BFDB28CD32}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{ACD5EF25-5927-4B6F-9BB8-42DF6D2A6A6C}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{ADEA09D2-151A-45CB-8E9D-92DAC21F2588}" = rport=139 | protocol=6 | dir=out | app=system | "{B5B6ACDA-6937-4DB7-B820-FF221D7788CE}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{B8970FAD-3D82-44F9-A4A2-5CF94EBC604F}" = lport=137 | protocol=17 | dir=in | app=system | "{C3DE56C5-C8CE-4AD0-A42C-B7420656B4DD}" = lport=10243 | protocol=6 | dir=in | app=system | "{D2789691-0090-49F9-84B0-BEFD775CB455}" = rport=10243 | protocol=6 | dir=out | app=system | "{D456E8D7-BCF6-47EE-9466-F48C2D599FC2}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{E3499B2A-406D-462D-92EE-FD9B4FC67809}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{FBDECDBC-53A1-4D67-92CB-AF1C7372508D}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{080457A2-D286-4911-AF0A-1E7F8568E2B4}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{10258CC0-257F-4DF6-8CFB-59A28443BC3E}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2013\avgdiagex.exe | "{2074C9B0-24C9-4938-A46B-E2D42A06BE41}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{2814C9F6-C101-49B6-AF13-57AB77C11F51}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2013\avgmfapx.exe | "{2D00BC7D-C1CC-4EC2-AC72-9DC57D00007F}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{2F69BAA6-A443-4B80-B81B-0A4EFE71FA59}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{38033403-4CB8-4363-9906-40315642D375}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2013\avgemca.exe | "{3EF9A4BB-AB94-4722-9DA9-3420895D14F5}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{405F905F-60A5-404E-AAF1-46F3B4BBA661}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{4464F55D-E0E9-4530-BF5D-8F0422F49A68}" = protocol=6 | dir=out | app=system | "{5D599A01-2666-431F-87C8-A4CE5C672EE6}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2013\avgmfapx.exe | "{695F8AD7-FA76-4CE0-AD3F-FCA5B0392F9D}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{72CF565C-4BA4-46A4-8367-A70B1DD4DE0A}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{7A187CFC-CBA5-46A9-B72F-6DDCDD229AFE}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{7D156E59-4212-487F-BC3E-BEC7F3FE7940}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{89E9073B-0F50-4D8B-9D86-EA5C1B41E32B}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{9C975EB6-6805-43ED-ADA0-F7D3ADE71A61}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{B4AE47D9-E19B-4A3D-830E-ABA63AA03CBB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{BC38FD6F-6683-434C-8EFB-5B95AFC9FB69}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2013\avgnsa.exe | "{C5E5E6D7-26FA-47F4-AB83-46394997680C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{C5FE4C5D-9503-4499-AB1D-C3A657933DE0}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{C7166A84-4051-4194-BB9F-0D37CE3C041D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{C76C3800-1D37-4467-AF93-40E1A7684BB9}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{CE42ED9D-156B-43A0-A89A-9A855E55DF80}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2013\avgnsa.exe | "{D81E759A-A1FF-422F-AD76-1EAAE15F1CD1}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2013\avgemca.exe | "{ECC4DE9E-2665-4F5C-BA83-94D653191CD7}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{F871A1E1-E741-4855-A777-FB33E4ACB517}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{FC570118-CB2D-4A3A-846B-14B0C54E977E}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2013\avgdiagex.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{21B133D6-5979-47F0-BE1C-F6A6B304693F}" = Visual Studio 2010 x64 Redistributables "{80A85269-B7D4-4081-903C-0F416E29B6A9}" = AVG 2013 "{825ECBB1-2BCD-4BA5-BB46-63DB8D9ABF45}" = AVG 2013 "{C78D3032-9DFD-41D0-9DE9-58EAE750CBA4}" = Microsoft Security Client "{E79A9906-B06E-4937-8B85-88F1E41A2C0C}" = AVG 2013 "AVG" = AVG 2013 "Bullzip PDF Printer_is1" = Bullzip PDF Printer 8.4.0.1425 "HDMI" = Intel(R) Graphics Media Accelerator Driver "Microsoft Security Client" = Microsoft Security Essentials "Power Management Driver" = ThinkPad Power Management Driver "TrackPoint" = ThinkPad TrackPoint Driver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "_{7C5123A9-30A8-4C44-89CA-A8C87A1FCC91}" = CorelDRAW Graphics Suite X3 "{00030415-78E1-11D2-B60F-006097C998E7}" = Microsoft Office 2000 SR-1 Small Business "{108FAA6F-DEEE-48EA-B3A9-1C5EB2605A6B}" = PL "{23399F7A-D7E9-42D7-A790-3A4F1492A7D5}" = LG United Mobile Drivers "{4E98F23B-1328-4322-A6EC-2EDC8FC3A4FE}" = FontNav "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7C5123A9-30A8-4C44-89CA-A8C87A1FCC91}" = CorelDRAW Graphics Suite X3 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.4) "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{C679F9B9-C65D-4C65-BD6C-BF90B859E281}" = PC Camer@ "{C94E45B0-6AA6-4FB9-9AAE-22085F631880}" = VBA "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F428D0FB-765D-40EB-BDD8-A1E7F5C597FA}" = Update Manager "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "LG PC Suite" = LG PC Suite "NapiProjekt_is1" = NapiProjekt (2.0.0.2151) "Picasa 3" = Picasa 3 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1699719205-547106818-3172960101-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Google Chrome" = Google Chrome [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-09-19 02:35:37 | Computer Name = Stachu-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2012-09-19 03:49:36 | Computer Name = Stachu-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2012-09-19 10:45:28 | Computer Name = Stachu-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: WINWORD.EXE, wersja: 9.0.0.3822, sygnatura czasowa: 0x38b56792 Nazwa modułu powodującego błąd: WINWORD.EXE, wersja: 9.0.0.3822, sygnatura czasowa: 0x38b56792 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000aacda Identyfikator procesu powodującego błąd: 0xa28 Godzina uruchomienia aplikacji powodującej błąd: 0x01cd9673b4844818 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Microsoft Office\Office\WINWORD.EXE Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Microsoft Office\Office\WINWORD.EXE Identyfikator raportu: a6acfae5-0268-11e2-80d2-001d7298cceb Error - 2012-09-19 15:07:41 | Computer Name = Stachu-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2012-09-19 15:34:27 | Computer Name = Stachu-Komputer | Source = Application Hang | ID = 1002 Description = Program Skype.exe w wersji 5.10.0.116 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: cc8 Godzina rozpoczęcia: 01cd9699e8ac40d7 Godzina zakończenia: 214 Ścieżka aplikacji: C:\Program Files (x86)\Skype\Phone\Skype.exe Identyfikator raportu: Error - 2012-09-20 03:01:14 | Computer Name = Stachu-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2012-09-20 04:42:09 | Computer Name = Stachu-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2012-09-20 18:24:43 | Computer Name = Stachu-Komputer | Source = WinMgmt | ID = 10 Description = Error - 2012-09-21 03:08:27 | Computer Name = Stachu-Komputer | Source = MsiInstaller | ID = 1013 Description = Error - 2012-09-22 13:32:35 | Computer Name = Stachu-Komputer | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 2012-09-23 19:25:22 | Computer Name = Stachu-Komputer | Source = DCOM | ID = 10010 Description = Error - 2012-09-23 19:25:45 | Computer Name = Stachu-Komputer | Source = Service Control Manager | ID = 7006 Description = Wywołanie ScRegSetValueExW dla FailureActions nie powiodło się i wystąpił następujący błąd: %%5. Error - 2012-09-24 03:57:56 | Computer Name = Stachu-Komputer | Source = Service Control Manager | ID = 7006 Description = Wywołanie ScRegSetValueExW dla FailureActions nie powiodło się i wystąpił następujący błąd: %%5. Error - 2012-09-24 03:58:07 | Computer Name = Stachu-Komputer | Source = Service Control Manager | ID = 7006 Description = Wywołanie ScRegSetValueExW dla FailureActions nie powiodło się i wystąpił następujący błąd: %%5. Error - 2012-09-24 06:09:06 | Computer Name = Stachu-Komputer | Source = Service Control Manager | ID = 7006 Description = Wywołanie ScRegSetValueExW dla FailureActions nie powiodło się i wystąpił następujący błąd: %%5. Error - 2012-09-24 13:18:55 | Computer Name = Stachu-Komputer | Source = Service Control Manager | ID = 7006 Description = Wywołanie ScRegSetValueExW dla FailureActions nie powiodło się i wystąpił następujący błąd: %%5. Error - 2012-09-24 13:19:08 | Computer Name = Stachu-Komputer | Source = Service Control Manager | ID = 7006 Description = Wywołanie ScRegSetValueExW dla FailureActions nie powiodło się i wystąpił następujący błąd: %%5. Error - 2012-09-24 19:00:29 | Computer Name = Stachu-Komputer | Source = Service Control Manager | ID = 7006 Description = Wywołanie ScRegSetValueExW dla FailureActions nie powiodło się i wystąpił następujący błąd: %%5. Error - 2012-09-25 04:15:50 | Computer Name = Stachu-Komputer | Source = Service Control Manager | ID = 7006 Description = Wywołanie ScRegSetValueExW dla FailureActions nie powiodło się i wystąpił następujący błąd: %%5. Error - 2012-09-25 04:16:07 | Computer Name = Stachu-Komputer | Source = Service Control Manager | ID = 7006 Description = Wywołanie ScRegSetValueExW dla FailureActions nie powiodło się i wystąpił następujący błąd: %%5. < End of report >