OTL Extras logfile created on: 2/24/2011 9:02:42 PM - Run 1 OTL by OldTimer - Version 3.2.21.0 Folder = C:\Users\Patrycja\Desktop Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000409 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd 2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 59.00% Memory free 4.00 Gb Paging File | 3.00 Gb Available in Paging File | 77.00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files Drive C: | 60.98 Gb Total Space | 45.11 Gb Free Space | 73.98% Space Free | Partition Type: NTFS Drive D: | 156.81 Gb Total Space | 156.65 Gb Free Space | 99.90% Space Free | Partition Type: NTFS Computer Name: PATRYCJA-PC | User Name: Patrycja | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\windows\winhlp32.exe (Microsoft Corporation) .html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}" = Samsung Recovery Solution 4 "{17283B95-21A8-4996-97DA-547A48DB266F}" = Easy Display Manager "{178EE5F4-0F86-4BF0-A0D1-9790AFF409D1}" = EasyBatteryManager "{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite "{26A24AE4-039D-4CA4-87B4-2F83216022FF}" = Java(TM) 6 Update 22 "{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}" = CyberLink PowerDVD 8 "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{66F1F013-008F-4875-B283-5A814B820347}" = Kaspersky Internet Security 2011 "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{853F8A41-A3C9-43FA-87FA-1AE74FC6F3F7}" = BatteryLifeExtender "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010 "{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010 "{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010 "{90140000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2010 "{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010 "{90140000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010 "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010 "{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010 "{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010 "{90140000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2010 "{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010 "{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010 "{90140000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2010 "{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010 "{90140000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2010 "{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager "{91140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{A5675A9E-F073-414A-9A04-F9BCD50459D7}" = Easy Network Manager "{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0 "{BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}" = User Guide "{CCC2B140-B47A-45FA-AAE3-BD60DA41AE00}" = Samsung Support Center "{D1434266-0486-4469-B338-A60082CC04E1}" = Atheros Client Installation Program "{EF367AA4-070B-493C-9575-85BE59D789C9}" = Easy SpeedUp Manager "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.5 "BFGC" = Big Fish Games: Game Manager "BFG-Chicken Invaders 2" = Chicken Invaders 2 "BFG-Farm Tribe" = Farm Tribe "BFG-Farmers Market" = Farmers Market "BFG-iCarly - iDream in Toons" = iCarly: iDream in Toons "BFG-My Tribe" = My Tribe "BFG-Pengu Wars" = Pengu Wars "BFG-Planet Horse" = Planet Horse "BFG-Slingo Quest" = Slingo Quest "BFG-SpongeBob SquarePants Obstacle Odyssey" = SpongeBob SquarePants Obstacle Odyssey "BFG-Summer Resort Mogul" = Summer Resort Mogul "BFG-Turtle Odyssey 2" = Turtle Odyssey 2 "BFG-Westward IV - All Aboard" = Westward IV: All Aboard "BFG-Zhu Zhu Pets" = Zhu Zhu Pets "Gadu-Gadu 10" = Gadu-Gadu 10 "HDMI" = Intel(R) Graphics Media Accelerator Driver "InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite "InstallShield_{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}" = CyberLink PowerDVD 8 "InstallWIX_{66F1F013-008F-4875-B283-5A814B820347}" = Kaspersky Internet Security 2011 "KLiteCodecPack_is1" = K-Lite Codec Pack 6.4.0 (Full) "Mario_Forever Toolbar" = Mario_Forever Toolbar "Marvell Miniport Driver" = Marvell Miniport Driver "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Office14.PROPLUSR" = Microsoft Office Professional Plus 2010 "Opera 11.01.1190" = Opera 11.01 "Super Mario 3 : Mario Forever" = Super Mario 3 : Mario Forever "SynTPDeinstKey" = Synaptics Pointing Device Driver "Totalcmd" = Total Commander (Remove or Repair) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1871111397-3539990770-1974983793-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Pekka Kana 2" = Pekka Kana 2 [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2/13/2011 6:07:11 PM | Computer Name = Patrycja-PC | Source = Application Error | ID = 1000 Description = Faulting application name: iexplore.exe, version: 8.0.7600.16671, time stamp: 0x4c86f9be Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x00000000 Faulting process id: 0x1640 Faulting application start time: 0x01cbcbb9ace099f8 Faulting application path: C:\Program Files\Internet Explorer\iexplore.exe Faulting module path: unknown Report Id: 9a9a7450-37bd-11e0-8b6f-002454aafaac Error - 2/17/2011 6:41:12 PM | Computer Name = Patrycja-PC | Source = Application Error | ID = 1000 Description = Faulting application name: FlashUtil10k_ActiveX.exe, version: 10.1.85.3, time stamp: 0x4c900e42 Faulting module name: FlashUtil10k_ActiveX.exe, version: 10.1.85.3, time stamp: 0x4c900e42 Exception code: 0xc0000005 Fault offset: 0x0000215c Faulting process id: 0x10c4 Faulting application start time: 0x01cbcef3c57570f0 Faulting application path: C:\windows\system32\Macromed\Flash\FlashUtil10k_ActiveX.exe Faulting module path: C:\windows\system32\Macromed\Flash\FlashUtil10k_ActiveX.exe Report Id: 04eee2f9-3ae7-11e0-86ce-002454aafaac Error - 2/19/2011 8:43:03 AM | Computer Name = Patrycja-PC | Source = Application on Demand - castle | ID = 0 Description = Error - 2/19/2011 8:47:33 AM | Computer Name = Patrycja-PC | Source = Application on Demand - castle | ID = 0 Description = Error - 2/19/2011 11:35:54 AM | Computer Name = Patrycja-PC | Source = Application on Demand - golden_hearts | ID = 0 Description = Error - 2/19/2011 11:36:53 AM | Computer Name = Patrycja-PC | Source = Application on Demand - golden_hearts | ID = 0 Description = Error - 2/19/2011 11:37:47 AM | Computer Name = Patrycja-PC | Source = Application on Demand - golden_hearts | ID = 0 Description = Error - 2/19/2011 11:52:12 AM | Computer Name = Patrycja-PC | Source = Application on Demand - golden_hearts | ID = 0 Description = Error - 2/20/2011 9:00:01 AM | Computer Name = Patrycja-PC | Source = Application on Demand - golden_hearts | ID = 0 Description = Error - 2/20/2011 9:17:35 AM | Computer Name = Patrycja-PC | Source = Application on Demand - golden_hearts | ID = 0 Description = [ System Events ] Error - 1/11/2011 6:54:33 PM | Computer Name = Patrycja-PC | Source = bowser | ID = 8003 Description = Error - 1/13/2011 12:55:41 PM | Computer Name = Patrycja-PC | Source = Tcpip | ID = 4199 Description = The system detected an address conflict for IP address 192.168.1.100 with the system having network hardware address 00-1B-77-39-6D-E5. Network operations on this system may be disrupted as a result. Error - 1/21/2011 1:02:16 PM | Computer Name = Patrycja-PC | Source = Service Control Manager | ID = 7011 Description = A timeout (30000 milliseconds) was reached while waiting for a transaction response from the AVP service. Error - 1/25/2011 11:50:20 AM | Computer Name = Patrycja-PC | Source = EventLog | ID = 6008 Description = The previous system shutdown at 23:21:30 on ?2011-?01-?24 was unexpected. Error - 1/26/2011 3:25:35 PM | Computer Name = Patrycja-PC | Source = EventLog | ID = 6008 Description = The previous system shutdown at 19:14:19 on ?2011-?01-?26 was unexpected. Error - 1/31/2011 2:45:26 PM | Computer Name = Patrycja-PC | Source = EventLog | ID = 6008 Description = The previous system shutdown at 21:54:11 on ?2011-?01-?30 was unexpected. Error - 2/11/2011 7:05:06 PM | Computer Name = Patrycja-PC | Source = EventLog | ID = 6008 Description = The previous system shutdown at 17:30:17 on ?2011-?02-?11 was unexpected. Error - 2/13/2011 4:07:36 PM | Computer Name = Patrycja-PC | Source = DCOM | ID = 10010 Description = Error - 2/17/2011 6:41:46 PM | Computer Name = Patrycja-PC | Source = DCOM | ID = 10010 Description = Error - 2/19/2011 10:35:10 AM | Computer Name = Patrycja-PC | Source = DCOM | ID = 10010 Description = < End of report >