OTL Extras logfile created on: 2010-06-10 13:03:57 - Run 1 OTL by OldTimer - Version 3.2.1.1 Folder = C:\Tools Windows Vista Home Basic Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18904) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 60,00% Memory free 3,00 Gb Paging File | 2,00 Gb Available in Paging File | 79,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 69,65 Gb Total Space | 51,79 Gb Free Space | 74,37% Space Free | Partition Type: NTFS Drive D: | 2,97 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: EWAA-PC Current User Name: EwaA Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "UacDisableNotify" = 0 "InternetSettingsDisableNotify" = 0 "AutoUpdateDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] "DisableMonitoring" = 1 "" = [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "TCP Query User{093A2CDA-9DAE-425A-8000-BF5A2D1A515C}C:\program files\nowe gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "UDP Query User{4511D32A-13B2-4EA8-A10C-14E7D460CF95}C:\program files\nowe gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1701765B-6D93-43C6-A835-DD423517581F}" = OpenOffice.org 3.2 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{250F0996-1830-40C8-9B1D-6874D808DD95}" = ChkMail "{26A24AE4-039D-4CA4-87B4-2F83216018FF}" = Java(TM) 6 Update 18 "{3912D529-02BC-4CA8-B5ED-0D0C20EB6003}" = ATK Hotkey "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{5C1DB4ED-E9B4-402D-BB14-D75D97D6C1A6}" = ATKOSD2 "{6324A1EF-CEF4-43E3-8BCD-9EF3F67317FD}" = NB Probe "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{83F73CB1-7705-49D1-9852-84D839CA2A45}" = Wireless Console 2 "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8169 PCI, 8168 and 8101E PCIe Ethernet Network Card Driver for Windows Vista "{8CFEBE9C-F29F-4C49-80E0-7106970F8734}" = Power4Gear eXtreme "{9D8B0949-7C47-476F-9F06-F900D3B078EA}" = Kaspersky Internet Security 2010 "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1033-7B44-A70000000000}" = Adobe Reader 7.0 "{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy "{BC14E9A8-E41F-4345-BAB3-2EC6CC315085}" = Eraser 6.0.6.1376 "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{DE10AB76-4756-4913-BE25-55D1C1051F9A}" = WinFlash "{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}" = ASUS Live Update "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Asus_Camera_ScreenSaver" = Asus_Camera_ScreenSaver "InstallWIX_{9D8B0949-7C47-476F-9F06-F900D3B078EA}" = Kaspersky Internet Security 2010 "iPlus manager_is1" = iPlus manager 2.0 "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3) "Mozilla Thunderbird (3.0.4)" = Mozilla Thunderbird (3.0.4) "Nowe Gadu-Gadu" = Nowe Gadu-Gadu "NVIDIA Drivers" = NVIDIA Drivers "SMSERIAL" = Motorola SM56 Data Fax Modem "SynTPDeinstKey" = Synaptics Pointing Device Driver [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2010-06-08 03:31:24 | Computer Name = EwaA-PC | Source = Google Update | ID = 20 Description = Error - 2010-06-08 04:18:18 | Computer Name = EwaA-PC | Source = Google Update | ID = 20 Description = Error - 2010-06-08 04:31:24 | Computer Name = EwaA-PC | Source = Google Update | ID = 20 Description = Error - 2010-06-08 05:18:17 | Computer Name = EwaA-PC | Source = Google Update | ID = 20 Description = Error - 2010-06-08 05:31:29 | Computer Name = EwaA-PC | Source = Google Update | ID = 20 Description = Error - 2010-06-08 06:03:13 | Computer Name = EwaA-PC | Source = Google Update | ID = 20 Description = Error - 2010-06-08 06:16:25 | Computer Name = EwaA-PC | Source = Google Update | ID = 20 Description = Error - 2010-06-08 06:18:07 | Computer Name = EwaA-PC | Source = Google Update | ID = 20 Description = Error - 2010-06-08 06:38:54 | Computer Name = EwaA-PC | Source = WerSvc | ID = 5007 Description = Error - 2010-06-08 06:43:26 | Computer Name = EwaA-PC | Source = Google Update | ID = 20 Description = [ System Events ] Error - 2010-04-09 15:55:16 | Computer Name = EwaA-PC | Source = Microsoft-Windows-Servicing | ID = 4375 Description = Error - 2010-04-09 15:55:16 | Computer Name = EwaA-PC | Source = Microsoft-Windows-Servicing | ID = 4375 Description = Error - 2010-04-21 12:17:07 | Computer Name = EwaA-PC | Source = ACPI | ID = 327686 Description = IRQARB: System ACPI BIOS nie zawiera przerwania dla urządzenia w gnieździe PCI 3, funkcja 0. Skontaktuj się z dostawcą systemu w celu uzyskania pomocy technicznej. Error - 2010-04-21 12:17:07 | Computer Name = EwaA-PC | Source = ACPI | ID = 327686 Description = IRQARB: System ACPI BIOS nie zawiera przerwania dla urządzenia w gnieździe PCI 2, funkcja 0. Skontaktuj się z dostawcą systemu w celu uzyskania pomocy technicznej. Error - 2010-04-21 12:17:07 | Computer Name = EwaA-PC | Source = ACPI | ID = 327686 Description = IRQARB: System ACPI BIOS nie zawiera przerwania dla urządzenia w gnieździe PCI 4, funkcja 0. Skontaktuj się z dostawcą systemu w celu uzyskania pomocy technicznej. Error - 2010-04-26 14:13:06 | Computer Name = EwaA-PC | Source = ACPI | ID = 327686 Description = IRQARB: System ACPI BIOS nie zawiera przerwania dla urządzenia w gnieździe PCI 3, funkcja 0. Skontaktuj się z dostawcą systemu w celu uzyskania pomocy technicznej. Error - 2010-04-26 14:13:06 | Computer Name = EwaA-PC | Source = ACPI | ID = 327686 Description = IRQARB: System ACPI BIOS nie zawiera przerwania dla urządzenia w gnieździe PCI 2, funkcja 0. Skontaktuj się z dostawcą systemu w celu uzyskania pomocy technicznej. Error - 2010-04-26 14:13:06 | Computer Name = EwaA-PC | Source = ACPI | ID = 327686 Description = IRQARB: System ACPI BIOS nie zawiera przerwania dla urządzenia w gnieździe PCI 4, funkcja 0. Skontaktuj się z dostawcą systemu w celu uzyskania pomocy technicznej. Error - 2010-04-26 14:22:14 | Computer Name = EwaA-PC | Source = DCOM | ID = 10010 Description = Error - 2010-04-26 15:41:20 | Computer Name = EwaA-PC | Source = DCOM | ID = 10010 Description = < End of report >