OTL Extras logfile created on: 2013-04-10 10:06:10 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Lidka\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,97 Gb Total Physical Memory | 2,28 Gb Available Physical Memory | 57,36% Memory free 7,93 Gb Paging File | 6,01 Gb Available in Paging File | 75,80% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 287,62 Gb Total Space | 207,16 Gb Free Space | 72,03% Space Free | Partition Type: NTFS Drive D: | 10,47 Gb Total Space | 1,78 Gb Free Space | 16,97% Space Free | Partition Type: NTFS Computer Name: LIDUSI | User Name: Lidka | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [ChomikBox.Upload] -- "C:\Program Files (x86)\ChomikBox\\ChomikBox.exe" -u"%1" ( ) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [ChomikBox.Upload] -- "C:\Program Files (x86)\ChomikBox\\ChomikBox.exe" -u"%1" ( ) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0C19AA48-6680-4525-BE2A-EEE5C3047396}" = rport=139 | protocol=6 | dir=out | app=system | "{0E1643C9-7B69-4C91-8F43-A50B29C24330}" = lport=2869 | protocol=6 | dir=in | app=system | "{1351AC9E-07F1-4841-9A7F-48B5699E2E26}" = rport=137 | protocol=17 | dir=out | app=system | "{1F248B00-EF20-4845-A06D-4D84B4C2529A}" = lport=137 | protocol=17 | dir=in | app=system | "{2C2809B9-49E8-46FC-A81D-131F48BBEF80}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{3401362A-5121-4609-8FAD-71FF10E6C3C1}" = lport=445 | protocol=6 | dir=in | app=system | "{3956DA2F-689B-495D-A5EB-4F3BDCDE18D5}" = lport=139 | protocol=6 | dir=in | app=system | "{4E270EE9-B88D-434B-A34C-68E2BDA7034E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{62B9025D-557E-4B75-862C-D81218353ED8}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{63267B6D-14F6-456A-80B8-A38204DAD3D0}" = rport=138 | protocol=17 | dir=out | app=system | "{641A5A06-9E19-421F-AAA0-58926B3FE48B}" = rport=10243 | protocol=6 | dir=out | app=system | "{7D6495AB-9FB1-44C0-99D5-AA3181334FAB}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{9E092C49-A060-41A1-8FCD-F938C2D97220}" = rport=445 | protocol=6 | dir=out | app=system | "{A1706368-D84A-4FC0-A7D5-DDF1D91BF594}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{C2C9C9E2-CDC3-4EC2-B314-14FCD962B3CB}" = lport=138 | protocol=17 | dir=in | app=system | "{C79A26F5-8563-4FD1-A0CA-C3BC88B8494C}" = lport=10243 | protocol=6 | dir=in | app=system | "{C943A9B0-894C-49E4-8673-A75DBCDB519C}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{CA38127D-FB7D-462C-ADA1-2C47A0C4492C}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{D1FB4F75-6232-4C58-9516-7941745AAE2B}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{D6340206-E8BB-4920-B653-A036377A4C40}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{D8C7E06A-BDB3-4B20-9F5A-467C2D999371}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{E483D397-DEDE-422E-8EEB-842C322F2595}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{F64470EB-F88B-44B6-8155-A3070838123D}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0E0D4481-7FE0-41D5-8E3D-D8E7E296C7DA}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{0E4184F9-B8A8-48B3-877F-FDC0FACDFFCF}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{15E5FB08-D0E2-45FC-B731-A59EB9620B83}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{168931CE-FB4A-4FDF-9134-D573444FE602}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{18963119-B4B9-48AD-8D82-9D395C276EEB}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{1AE297FA-C0E6-4941-AC9F-63184EE9C39E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{3B1D838D-4C55-4B29-82FF-729CC095C041}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{6C742232-9DD2-4AAE-BF68-ABDE8FB3811E}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{7F29AAAD-3CD6-47D1-9862-48680B0C975A}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{81362780-ECD1-4A84-9689-024D2643D342}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{82EAD360-E6ED-43FD-8B39-BC093A4ECF5C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{A1F651C3-B128-48D5-B6A1-06179F86A418}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{A8559EA6-385E-4628-8A0B-BD6255FB3750}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{C791433E-038B-4630-906B-D4A169F13CFB}" = protocol=6 | dir=in | app=c:\users\lidka\appdata\roaming\dropbox\bin\dropbox.exe | "{CF0B81E0-2042-4363-95BB-072945F3EBE1}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{D54BCB5D-8C32-4A2F-AA51-448023B9FB3A}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{D5C3DC3E-1C97-4194-BB85-B1C55CC4BF10}" = protocol=6 | dir=out | app=system | "{DB8DBF80-773A-4486-BFF6-4A6D510B2BBD}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{DD184BDF-73B8-4A1A-96ED-00A48B1B882F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{EA9D2C6E-2D05-49F6-A5FA-6AFE5330E0E7}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{EB5E99F1-7E13-41D4-BA1E-845A02BEA0C2}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{F3C6045A-DBFB-4734-B9F2-A0A8790FDE24}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{F5EB6054-6C19-4D84-86C8-35A26D6FB08F}" = protocol=17 | dir=in | app=c:\users\lidka\appdata\roaming\dropbox\bin\dropbox.exe | "{F70F39A7-816B-43FE-95E5-78E7E8D2D1EF}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{E62381A7-B1C1-4121-8262-84D38C77786C}" = COMODO Internet Security "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "Bullzip PDF Printer_is1" = Bullzip PDF Printer 9.3.0.1516 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{05F350C6-FA6A-40D0-A130-FB941B39152C}" = Philips SPC230NC Webcam "{26050F54-3928-4D9C-849A-C48A9E831E6F}" = ChomikBox "{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.3 "{615A5951-A1FA-42DD-B786-842926DDC27D}" = EPD_free-7.3-2 "{789C9644-9F82-44d3-B4CA-AC31F46F5882}" = Python 3.2.3 "{90110415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003 "{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A9CE0266-6801-3B33-94AD-00520085CF4B}" = Google Talk Plugin "{CBCF6C86-4738-4A84-9C2C-331804DCEB9B}" = LibreOffice 3.6 "{F075020E-43B2-4F2C-9723-C81CE162E7B6}" = Ad-Aware Antivirus "7-Zip" = 7-Zip 9.20 "ACDLabs in C__ACDFREE12_" = ACD/Labs Software in C:\ACDFREE12\ "Ad-Aware Browsing Protection" = Ad-Aware Browsing Protection "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Anki" = Anki "Comodo Dragon" = Comodo Dragon "FCE_Exam_is1" = FCE Exam Simulation "Foxit Reader_is1" = Foxit Reader "Google Chrome" = Google Chrome "ISIS Draw 2.3 Standalone" = ISIS Draw 2.3 Standalone "Magic ISO Maker v5.5 (build 0281)" = Magic ISO Maker v5.5 (build 0281) "MagicDisc 2.7.106" = MagicDisc 2.7.106 "Picasa 3" = Picasa 3 "PLAY ONLINE" = PLAY ONLINE "Revo Uninstaller" = Revo Uninstaller 1.94 "Unzbin" = Unzbin 1.8 "uTorrent" = µTorrent [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Dropbox" = Dropbox [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-04-10 03:01:36 | Computer Name = Lidusi | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Program Files\DivX\DivX Plus Media Foundation Components\DivXThumbnailProvider.dll". Nie można odnaleźć zestawu zależnego Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-04-10 03:01:37 | Computer Name = Lidusi | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Program Files\DivX\DivX Plus Media Foundation Components\DivXPropertyHandler.dll". Nie można odnaleźć zestawu zależnego Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-04-10 03:15:47 | Computer Name = Lidusi | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Program Files\DivX\DivX Plus Media Foundation Components\DivXMFSource.dll". Nie można odnaleźć zestawu zależnego Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-04-10 03:15:47 | Computer Name = Lidusi | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Program Files\DivX\DivX Plus Media Foundation Components\ACMWrapperDMO.dll". Nie można odnaleźć zestawu zależnego Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-04-10 03:15:48 | Computer Name = Lidusi | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Program Files\DivX\DivX Plus Media Foundation Components\DivXThumbnailProvider.dll". Nie można odnaleźć zestawu zależnego Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-04-10 03:15:48 | Computer Name = Lidusi | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "C:\Program Files\DivX\DivX Plus Media Foundation Components\DivXPropertyHandler.dll". Nie można odnaleźć zestawu zależnego Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-04-10 03:29:58 | Computer Name = Lidusi | Source = Microsoft-Windows-CAPI2 | ID = 513 Description = Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddWin32ServiceFiles: Unable to back up image of service BrowserProtect since QueryServiceConfig API failed System Error: Nie można odnaleźć określonego pliku. . Error - 2013-04-10 03:31:06 | Computer Name = Lidusi | Source = Microsoft-Windows-CAPI2 | ID = 513 Description = Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddWin32ServiceFiles: Unable to back up image of service BrowserProtect since QueryServiceConfig API failed System Error: Nie można odnaleźć określonego pliku. . Error - 2013-04-10 03:38:54 | Computer Name = Lidusi | Source = WinMgmt | ID = 10 Description = Error - 2013-04-10 04:00:08 | Computer Name = Lidusi | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 2013-04-08 18:26:04 | Computer Name = Lidusi | Source = atikmdag | ID = 43029 Description = Display is not active Error - 2013-04-09 00:50:32 | Computer Name = Lidusi | Source = atikmdag | ID = 43029 Description = Display is not active Error - 2013-04-09 02:50:13 | Computer Name = Lidusi | Source = atikmdag | ID = 43029 Description = Display is not active Error - 2013-04-09 10:58:36 | Computer Name = Lidusi | Source = atikmdag | ID = 43029 Description = Display is not active Error - 2013-04-09 23:11:56 | Computer Name = Lidusi | Source = atikmdag | ID = 43029 Description = Display is not active Error - 2013-04-10 01:39:18 | Computer Name = Lidusi | Source = atikmdag | ID = 43029 Description = Display is not active Error - 2013-04-10 03:37:22 | Computer Name = Lidusi | Source = atikmdag | ID = 52236 Description = CPLIB :: General - Invalid Parameter Error - 2013-04-10 03:37:22 | Computer Name = Lidusi | Source = atikmdag | ID = 43029 Description = Display is not active Error - 2013-04-10 03:58:21 | Computer Name = Lidusi | Source = atikmdag | ID = 52236 Description = CPLIB :: General - Invalid Parameter Error - 2013-04-10 03:58:21 | Computer Name = Lidusi | Source = atikmdag | ID = 43029 Description = Display is not active < End of report >