OTL Extras logfile created on: 2012-12-02 20:24:12 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Marek\Desktop Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,61 Gb Total Physical Memory | 1,65 Gb Available Physical Memory | 63,16% Memory free 5,21 Gb Paging File | 4,09 Gb Available in Paging File | 78,42% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 50,00 Gb Total Space | 34,54 Gb Free Space | 69,08% Space Free | Partition Type: NTFS Drive D: | 97,66 Gb Total Space | 80,14 Gb Free Space | 82,07% Space Free | Partition Type: NTFS Computer Name: NETBOOK-MARKA | User Name: Marek | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. https [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{014CD87E-4A3B-40F1-AC5B-93C1B8C7F98F}" = lport=2869 | protocol=6 | dir=in | app=system | "{0AD97184-F08C-4649-A4B6-CFB9882BCDE2}" = lport=10243 | protocol=6 | dir=in | app=system | "{0DA207A6-AC5A-4A8B-A05D-5990C208B19A}" = rport=138 | protocol=17 | dir=out | app=system | "{405CE624-FAEA-4D18-B498-2A8D18370759}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{40923BCA-DB22-45DD-87B8-C78849111909}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4A5E505E-55DD-447E-BF8F-91AE2046C024}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{507B1A4F-5AAD-461A-AB3A-A8E7BCEEE915}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{50F0AD61-F202-4A18-9C66-4456352623F4}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{5C460081-6CA6-48A6-8FB3-9829330A8D57}" = rport=10243 | protocol=6 | dir=out | app=system | "{5F789C73-C45B-4F13-9555-4BDD2043E3FB}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{77972666-C519-4635-8480-9890892F95E5}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{7D69AC80-4EEB-4B3E-8E88-5BFC96E12B97}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{814D0F7A-3624-4735-9D8D-B598578C4ABB}" = rport=445 | protocol=6 | dir=out | app=system | "{8441C2D6-6C3F-4562-8036-8788E27B6010}" = rport=137 | protocol=17 | dir=out | app=system | "{92DBA984-8F96-4AEB-BC5D-480C26FD602B}" = lport=1900 | protocol=17 | dir=in | name=udp 1900 | "{9D42440D-489B-4685-8480-8B62C2D18BAC}" = rport=139 | protocol=6 | dir=out | app=system | "{A64E4BF0-956C-4FF7-8A47-C87EE152D9FE}" = lport=2869 | protocol=6 | dir=in | name=tcp 2869 | "{D6BDD84E-8E44-4B08-A74C-256B0597FF05}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{DFE21E77-08D5-400F-9D43-CBF8A3697FDE}" = lport=445 | protocol=6 | dir=in | app=system | "{F1E4F4E1-56B8-41B9-B822-1AA5AB3441F5}" = lport=139 | protocol=6 | dir=in | app=system | "{FC7E3303-37EF-4B60-9F7F-AF167B7F1117}" = lport=137 | protocol=17 | dir=in | app=system | "{FEAB7472-CC12-4F68-8DF7-5634D5950BE4}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{FF46429A-63C4-4465-B124-5A42BD87CE97}" = lport=138 | protocol=17 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{016C8B54-5F3B-425F-900B-A00FC1BFB231}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{068BC2F8-479C-4C8E-9A46-7CAE132C582E}" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe | "{0A138D80-C0E9-4D3F-BB53-3F233D1ECF4E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{31FE01D6-6A15-4579-9057-2DB05B4C2BB3}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{4306EA95-8C61-401D-B331-48971E55E1A4}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{54695260-0021-4A13-B0F3-26AE7AFDAC6C}" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe | "{66C962A5-CBF3-4DDA-B6B9-0C5904F506B7}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{7BFCA5AA-6FD7-4CBE-8B13-15D721BA0834}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{7F3CB901-02CB-46B6-A4D8-B656BE8E855C}" = protocol=17 | dir=in | app=c:\windows\system32\muzapp.exe | "{86B07E3A-0C5A-472B-8487-4C2CA7E86382}" = protocol=6 | dir=in | app=c:\windows\system32\muzapp.exe | "{8F110BFF-EC44-40D8-9122-1A505B39CFC4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{A1D0A683-86FF-4ADE-834F-99EC23CFA77A}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{A94465C5-20EF-4560-AD09-B26C1E61633F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{D2307EB8-43CA-4C60-8F10-CAD6C2948BA5}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{D8E1ADDD-44B2-4624-8EE6-548D3438E799}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{D9371B5C-3B9D-4003-B89D-CDC4AFFE64DB}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{E7B138D9-D869-4FD2-9C1D-CC67F9E9E39F}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{EC10D0F7-7DCF-40E0-8381-1EF370A064D3}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{F0D7F508-0583-4EDE-8095-388E1997D28E}" = protocol=6 | dir=out | app=system | "{F24EFA82-8E5A-4E11-AB41-00BA0F31EA29}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{FFB4082B-09E9-4DBF-930F-04F0B64A30A8}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "TCP Query User{4F86507D-7D0B-4649-8F1D-7D7CB28AB9E6}C:\program files\opera\opera.exe" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe | "UDP Query User{7D307CF9-DBB0-4064-A060-71E222D7EAAB}C:\program files\opera\opera.exe" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{15D63299-E3A3-BAAE-FC7B-BB48ECA821D2}" = ccc-utility "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 "{1E8572DC-C6D6-965B-106B-27DFA7E4CF1F}" = CCC Help Swedish "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{266EB54E-3994-EED0-899E-43E8CFB872F9}" = Catalyst Control Center Profiles Mobile "{26A24AE4-039D-4CA4-87B4-2F83216035FF}" = Java(TM) 6 Update 37 "{278F24BF-EEF1-FBB6-318D-9E5D357B0009}" = CCC Help Chinese Traditional "{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1 "{2EFB1FE2-2FAA-6FE4-D377-63373CBEB3D0}" = CCC Help Korean "{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver "{3179697E-914D-2B6D-85A5-0CE497D82116}" = CCC Help Thai "{3395F209-9828-C3FD-C213-0D54F55E2151}" = Catalyst Control Center InstallProxy "{34BA11A6-13A4-16EE-8A05-16FE2D617412}" = CCC Help Spanish "{3EEB1EC9-E1D3-4802-9F17-B7C2486BEE92}" = CCC Help Finnish "{436E0B79-2CFB-4E5F-9380-E17C1B25D0C5}" = WIDCOMM Bluetooth Software "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4FCBCF89-1823-4D97-A6F2-0E8DD66E273A}" = Broadcom Wireless Network Adapter "{5393F70C-808C-850F-DBE6-30BFAA270F64}" = CCC Help Danish "{641BD027-AABE-E9ED-1D07-DA184DD7EE2F}" = CCC Help English "{670A2206-F20A-490C-8C13-25EA88BF8E54}_is1" = e-pity 2011 wersja 3.0 "{67289102-0C70-5784-67A9-07EA2405E4EC}" = CCC Help Dutch "{68585B9A-6009-4C47-CB84-91FA35E1C5D4}" = CCC Help Chinese Standard "{71C0E38E-09F2-4386-9977-404D4F6640CD}" = Hotkey Service "{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime "{7DE4057E-2847-4740-4474-61E8DAC27834}" = Catalyst Control Center Localization All "{7F20CA66-4703-46E9-B870-89D271EE972C}" = Catalyst Control Center - Branding "{83E281A3-4523-8669-C16F-62DF0C1A4714}" = CCC Help German "{8D44C65C-5A26-A90E-282E-81B54F5A02BF}" = CCC Help Hungarian "{AC76BA86-7AD7-1045-7B44-AA1000000001}" = Adobe Reader X (10.1.3) - Polish "{ADD2AF66-071C-592D-24C8-84753A424651}" = CCC Help Norwegian "{B15FBE63-75F8-2621-7CCF-AD4849BEDB6F}" = CCC Help Japanese "{B66FD4B8-8B10-F94E-4079-22BFA1FEDD65}" = CCC Help Polish "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{C1912D48-3EEC-D04B-B552-600ACA4C771D}" = CCC Help French "{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones "{D2E63E42-0C04-788B-98B1-DA5D30999264}" = CCC Help Czech "{DE6787EA-30EA-F90A-EDD9-765B05B387CA}" = CCC Help Portuguese "{DFDABCEF-4E9A-121E-CB01-955014F0078B}" = CCC Help Italian "{E0C09093-7EE4-4BED-99F3-71FF5AB1CDA3}" = ATI Catalyst Install Manager "{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}" = Asmedia ASM104x USB 3.0 Host Controller Driver "{E6BDA893-EF68-9689-91AC-3384BC7A299F}" = ccc-core-static "{E6EC4B0C-E973-2D03-917D-0A414515E2BF}" = CCC Help Russian "{EA5EC051-71FF-4A22-BB2C-7CCA6FD75913}" = ESET NOD32 Antivirus "{EB87675F-5281-4767-A54B-31931794C23D}" = OpenOffice.org 3.3 "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F5346614-B7C4-4E94-826A-E2363155233D}" = EasyCleaner "{F5B0458C-4069-433F-9193-E4E7979CA1BC}" = CCC Help Greek "{FCD1D49C-B20B-9EBC-9139-3054EA9C8551}" = WMV9/VC-1 Video Playback "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Anki" = Anki "CES 4.1" = CES 4.1 "InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "Komputerowy Słownik Niemiecko-Polski_is1" = Komputerowy Słownik Niemiecko-Polski 0.8.1 "Mobile Partner" = Mobile Partner "Opera 12.11.1661" = Opera 12.11 "RealPlayer 12.0" = RealPlayer "SynTPDeinstKey" = Synaptics Pointing Device Driver "WinGimp-2.0_is1" = GIMP 2.6.11 "WinRAR archiver" = WinRAR 4.01 (32-bitowy) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3884069914-3570586909-3483609637-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Google Chrome" = Google Chrome [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-09-14 07:29:51 | Computer Name = Netbook-Marka | Source = WinMgmt | ID = 10 Description = Error - 2012-09-14 11:16:39 | Computer Name = Netbook-Marka | Source = WinMgmt | ID = 10 Description = Error - 2012-09-14 12:07:44 | Computer Name = Netbook-Marka | Source = WinMgmt | ID = 10 Description = Error - 2012-09-14 12:55:00 | Computer Name = Netbook-Marka | Source = WinMgmt | ID = 10 Description = Error - 2012-09-14 14:18:29 | Computer Name = Netbook-Marka | Source = WinMgmt | ID = 10 Description = Error - 2012-09-15 08:28:59 | Computer Name = Netbook-Marka | Source = WinMgmt | ID = 10 Description = Error - 2012-09-15 10:17:25 | Computer Name = Netbook-Marka | Source = WinMgmt | ID = 10 Description = Error - 2012-09-15 10:38:52 | Computer Name = Netbook-Marka | Source = WinMgmt | ID = 10 Description = Error - 2012-09-15 13:01:12 | Computer Name = Netbook-Marka | Source = WinMgmt | ID = 10 Description = Error - 2012-09-16 04:19:47 | Computer Name = Netbook-Marka | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 2012-12-01 13:47:35 | Computer Name = Netbook-Marka | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error - 2012-12-01 17:22:16 | Computer Name = Netbook-Marka | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error - 2012-12-02 05:04:27 | Computer Name = Netbook-Marka | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error - 2012-12-02 07:09:37 | Computer Name = Netbook-Marka | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error - 2012-12-02 07:23:32 | Computer Name = Netbook-Marka | Source = Service Control Manager | ID = 7034 Description = Usługa Skype C2C Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2012-12-02 07:25:19 | Computer Name = Netbook-Marka | Source = Service Control Manager | ID = 7030 Description = Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error - 2012-12-02 07:28:49 | Computer Name = Netbook-Marka | Source = Service Control Manager | ID = 7030 Description = Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error - 2012-12-02 07:32:54 | Computer Name = Netbook-Marka | Source = Service Control Manager | ID = 7030 Description = Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error - 2012-12-02 13:46:38 | Computer Name = Netbook-Marka | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error - 2012-12-02 15:19:13 | Computer Name = Netbook-Marka | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom < End of report >