OTL Extras logfile created on: 2014-10-27 16:33:20 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = E:\ 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17358) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,93 Gb Total Physical Memory | 1,13 Gb Available Physical Memory | 58,33% Memory free 3,86 Gb Paging File | 2,75 Gb Available in Paging File | 71,22% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 219,79 Gb Total Space | 172,05 Gb Free Space | 78,28% Space Free | Partition Type: NTFS Drive E: | 7,48 Gb Total Space | 6,70 Gb Free Space | 89,53% Space Free | Partition Type: FAT32 Computer Name: BEKA-KOMPUTER | User Name: beka | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{036D809F-5A35-46DE-AB6C-AF26FEB59FFA}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | "{7A322FC2-C291-4CDA-BD96-3763E1F634C0}" = lport=2869 | protocol=6 | dir=in | app=system | "{DEF3C85B-5D5C-47A2-B7E5-A7585AFA80D4}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{215735ED-261D-4ACE-BD5B-3DF11B281A29}" = protocol=6 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\backupsvc.exe | "{5108CAB7-7F95-4930-99E0-153D7A348CC9}" = protocol=17 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\schedulersvc.exe | "{5BD86CA0-AB50-422C-B91F-3DD6E29FEBE9}" = protocol=17 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\backupsvc.exe | "{6DBA9D37-BF8F-4238-8C49-D681C9E6DEF9}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | "{CF82F96E-16F7-4474-898E-96CCD47DB2BC}" = protocol=6 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\schedulersvc.exe | "{F94E268D-A4A1-4332-8133-13784F03B027}" = dir=in | app=c:\program files (x86)\windows live\sync\windowslivesync.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{27D28586-BEF1-4E06-8787-3B1FC3A41489}" = Internet Manager "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{DA90EF7B-F289-4B9F-A041-02F236DD26D6}" = Panda Cloud Antivirus "CCleaner" = CCleaner "CNXT_AUDIO_HDA" = Conexant HD Audio "HDMI" = Intel(R) Graphics Media Accelerator Driver "SynTPDeinstKey" = Synaptics Pointing Device Driver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now Standard "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Narzędzie do przekazywania usługi Windows Live "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT "{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8 "{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com "{2E522ED6-01E2-4207-82D5-B3BFB31B8BD4}" = Windows Live Sync "{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform "{3DB0448D-AD82-4923-B305-D001E521A964}" = eMachines Power Management "{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology "{51958BA7-21E4-4A8B-9098-CD8375BD17B2}" = Asystent rejestracji usługi Windows Live "{6053FE9B-5473-41D6-AEBF-AD6F98138191}" = Windows Live Movie Maker "{62D1C755-74C9-4BA0-841B-B7D795DEA9C7}" = Video Web Camera "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7F811A54-5A09-4579-90E1-C93498E230D9}" = eMachines Recovery Management "{81BF6353-3C5B-4E6E-A566-7E162A00BF72}_is1" = Wtyczka e-Deklaracje "{949F1EA1-D3E2-472E-BC7C-CB72374C0E55}" = Panda Devices Agent "{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010 "{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader "{9862473C-E063-4C68-A161-2CDE0E8048A5}" = Podstawowe programy Windows Live "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9AB614A6-719C-4A6E-A63E-831E0A35F62A}" = Windows Live Writer "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9CDEAEC9-2F14-4D39-8541-C1EEC4B5D1CB}" = Galeria fotografii usługi Windows Live "{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.5.5 MUI "{C35FE07E-24B5-410F-85B7-122087A0C7DD}" = Poczta usługi Windows Live "{D1803CD4-0CE7-4484-98E3-88D7A2D629A4}" = Windows Live Messenger "{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update "{EE171732-BEB4-4576-887D-CB62727F01CA}" = eMachines Updater "{EE7F8F98-B75B-4E3D-B595-43DC522080A1}" = Brother DCP-365CN "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard "{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "eMachines Game Console" = eMachines Game Console "eMachines Registration" = eMachines Registration "eMachines Screensaver" = eMachines ScreenSaver "eMachines Welcome Center" = Welcome Center "Google Chrome" = Google Chrome "Identity Card" = Identity Card "InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now 5 "InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8 "LManager" = Launch Manager "Panda Devices Agent" = Panda Devices Agent "Panda Universal Agent Endpoint" = Panda Cloud Antivirus "SMPlayer" = SMPlayer 14.3.0 "WildTangent emachines Master Uninstall" = eMachines Games "WinLiveSuite_Wave3" = Podstawowe programy Windows Live "WT088147" = Agatha Christie - Death on the Nile "WT088155" = Bejeweled 2 Deluxe "WT088159" = Build-a-lot 2 "WT088166" = Chuzzle Deluxe "WT088175" = Diner Dash 2 Restaurant Rescue "WT088181" = Farm Frenzy "WT088189" = Insaniquarium Deluxe "WT088194" = Jewel Quest Solitaire 2 "WT088203" = Plants vs. Zombies "WT088215" = Zuma Deluxe "WT088414" = FATE "WT088418" = Final Drive Nitro "WT088446" = John Deere Drive Green "WT088450" = Penguins! "WT088454" = Polar Bowler "WT088458" = Polar Golfer "WT088506" = Virtual Villagers 4 - The Tree of Life "WT088521" = Zuma's Revenge [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2014-09-22 09:54:58 | Computer Name = beka-Komputer | Source = SideBySide | ID = 16842787 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files (x86)\windows live\photo gallery\MovieMaker.Exe". Błąd w pliku manifestu lub w pliku zasad "c:\program files (x86)\windows live\photo gallery\WLMFDS.DLL" w wierszu 8. Tożsamość składnika znaleziona w manifeście nie odpowiada tożsamości składnika żądanego. Odwołanie to WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1". Definicja to WLMFDS,processorArchitecture="x86",type="win32",version="1.0.0.1". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2014-09-24 08:33:23 | Computer Name = beka-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: GoogleUpdate.exe, wersja: 1.3.21.103, sygnatura czasowa: 0x4f3c6d6c Nazwa modułu powodującego błąd: goopdate.dll_unloaded, wersja: 0.0.0.0, sygnatura czasowa: 0x538cadac Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x6a3dc5b5 Identyfikator procesu powodującego błąd: 0x10c8 Godzina uruchomienia aplikacji powodującej błąd: 0x01cfd76511ccc8c0 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Ścieżka modułu powodującego błąd: goopdate.dll Identyfikator raportu: f8e6250d-43e6-11e4-aaca-60eb692cdc52 Error - 2014-09-27 11:38:32 | Computer Name = beka-Komputer | Source = RasClient | ID = 20227 Description = Error - 2014-09-27 11:41:35 | Computer Name = beka-Komputer | Source = RasClient | ID = 20227 Description = Error - 2014-09-27 11:42:00 | Computer Name = beka-Komputer | Source = RasClient | ID = 20227 Description = Error - 2014-09-27 11:42:01 | Computer Name = beka-Komputer | Source = RasClient | ID = 20227 Description = Error - 2014-09-27 11:43:28 | Computer Name = beka-Komputer | Source = RasClient | ID = 20227 Description = Error - 2014-09-27 11:48:00 | Computer Name = beka-Komputer | Source = RasClient | ID = 20227 Description = Error - 2014-09-27 12:08:40 | Computer Name = beka-Komputer | Source = RasClient | ID = 20227 Description = Error - 2014-09-27 12:09:55 | Computer Name = beka-Komputer | Source = RasClient | ID = 20227 Description = [ System Events ] Error - 2014-10-20 06:35:13 | Computer Name = beka-Komputer | Source = Service Control Manager | ID = 7011 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi ShellHWDetection. Error - 2014-10-20 08:36:50 | Computer Name = beka-Komputer | Source = DCOM | ID = 10010 Description = Error - 2014-10-20 12:42:17 | Computer Name = beka-Komputer | Source = DCOM | ID = 10010 Description = Error - 2014-10-21 05:12:24 | Computer Name = beka-Komputer | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 10:43:20 na ?2014-?10-?21 było nieoczekiwane. Error - 2014-10-21 05:13:03 | Computer Name = beka-Komputer | Source = BugCheck | ID = 1005 Description = Error - 2014-10-21 05:13:07 | Computer Name = beka-Komputer | Source = BugCheck | ID = 1001 Description = Error - 2014-10-21 05:15:13 | Computer Name = beka-Komputer | Source = Service Control Manager | ID = 7006 Description = Wywołanie ScRegSetValueExW dla FailureActions nie powiodło się i wystąpił następujący błąd: %%5. Error - 2014-10-21 05:18:32 | Computer Name = beka-Komputer | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Usługa raportowania błędów systemu Windows. Error - 2014-10-21 05:19:02 | Computer Name = beka-Komputer | Source = Service Control Manager | ID = 7009 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Usługa raportowania błędów systemu Windows. Error - 2014-10-21 08:36:11 | Computer Name = beka-Komputer | Source = Service Control Manager | ID = 7011 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi NanoServiceMain. < End of report >