OTL Extras logfile created on: 14/12/2014 12:46:03 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Magda\Downloads Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy 1.87 Gb Total Physical Memory | 0.76 Gb Available Physical Memory | 40.39% Memory free 3.99 Gb Paging File | 1.84 Gb Available in Paging File | 46.26% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 156.76 Gb Total Space | 89.97 Gb Free Space | 57.39% Space Free | Partition Type: NTFS Drive D: | 102.26 Gb Total Space | 39.70 Gb Free Space | 38.82% Space Free | Partition Type: NTFS Unable to calculate disk information. Drive H: | 39.06 Gb Total Space | 28.90 Gb Free Space | 73.99% Space Free | Partition Type: NTFS Computer Name: TOSHIBA-PC | User Name: Magda | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) http [open] -- Reg Error: Value error. https [open] -- Reg Error: Value error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Browse with FastStone] -- "C:\Program Files\FastStone Image Viewer\FSViewer.exe" "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\S-1-5-21-251121527-2021168873-2295293381-1000] "EnableNotifications" = 0 "EnableNotificationsRef" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{C70A82B3-4DA3-4040-AC5D-C9A36657E676}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\google\chrome\application\chrome.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{22985C0D-ED9A-4667-8987-9AA1ADD6D90A}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{37E87327-531E-4CE7-BBA1-164375CAA261}" = protocol=6 | dir=in | app=c:\program files\k2t\wtw\wtw.exe | "{4CF202E3-903B-42C9-9DE0-E6D00416AB27}" = protocol=17 | dir=in | app=c:\program files\k2t\wtw\wtw.exe | "TCP Query User{1E4B7EEE-41D1-4C1C-BA58-41DF151429D7}C:\program files\skype\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files\skype\phone\skype.exe | "TCP Query User{D615BAB5-CD5D-4CA7-A328-E6CA95A74D85}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{EB3B25B1-31ED-4645-9ECA-EEDDB65457D8}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe | "TCP Query User{ECBC32B8-9EF1-44F5-9464-378D49610547}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe | "UDP Query User{96FBCE37-855D-48F5-B99B-1B8FC6833661}C:\program files\skype\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files\skype\phone\skype.exe | "UDP Query User{9D523123-DB82-42B3-9F5D-76EDEECCB7A4}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{A433FEA5-5A1E-494F-971D-DA2A53FC31C4}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe | "UDP Query User{C9D2BDE3-774F-4123-B31E-F3D4C7679C23}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{04AF207D-9A77-465A-8B76-991F6AB66245}" = Adobe Help Viewer CS3 "{08B32819-6EEF-4057-AEDA-5AB681A36A23}" = Adobe Bridge Start Meeting "{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}" = Adobe WinSoft Linguistics Plugin "{26A24AE4-039D-4CA4-87B4-2F03217071FF}" = Java 7 Update 71 "{293D5729-7C01-4FA4-A4DE-BB6A1587BBB9}" = PDF Settings "{29E5EA97-5F74-4A57-B8B2-D4F169117183}" = Adobe Stock Photos CS3 "{4903D172-DCCB-392F-93A3-34CA9D47FE3D}" = Microsoft .NET Framework 4.5.1 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{54793AA1-5001-42F4-ABB6-C364617C6078}" = Adobe Linguistics CS3 "{6179A7D2-A668-4F1D-BC9A-DCC6A10C7871}" = Adobe Color NA Extra Settings "{6ABE0BEE-D572-4FE8-B434-9E72A289431B}" = Adobe Fonts All "{6D12B99F-EAAA-49D8-8E2F-74FA7459CCB2}" = Adobe Asset Services CS3 "{78EFD06D-7583-42F1-9E77-671D8782EB70}" = Adobe Photoshop CS3 "{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype™ 6.14 "{802771A9-A856-4A41-ACF7-1450E523C923}" = Adobe XMP Panels CS3 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}" = Adobe Device Central CS3 "{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}" = Adobe Type Support "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{90176341-0A8B-4CCC-A78D-F862228A6B95}" = Adobe Anchor Service CS3 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1 "{9C9824D9-9000-4373-A6A5-D0E5D4831394}" = Adobe Bridge CS3 "{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}" = Adobe CMaps "{A2D81E70-2A98-4A08-A628-94388B063C5E}" = Adobe Color - Photoshop Specific "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1045-7B44-AB0000000001}" = Adobe Reader XI (11.0.08) - Polish "{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}" = Adobe Camera Raw 4.0 "{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}" = Adobe Default Language CS3 "{BD087F50-46B2-43E4-BD73-5DB3DC20B47C}" = Adobe Color EU Recommended Settings "{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}" = Adobe ExtendScript Toolkit 2 "{CBF4DADD-974D-49C8-BC83-C6F31554001E}" = Adobe Setup "{D0DFF92A-492E-4C40-B862-A74A173C25C5}" = Adobe Version Cue CS3 Client "{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}" = Adobe PDF Library Files "{D92B72E2-C854-4738-8ED6-4C3661CC17AE}" = Adobe Color JA Extra Settings "{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}" = Adobe Color Common Settings "{E69AE897-9E0B-485C-8552-7841F48D42D8}" = Adobe Update Manager CS3 "7-Zip" = 7-Zip 9.22beta "Adobe Flash Player ActiveX" = Adobe Flash Player 16 ActiveX "Adobe Flash Player NPAPI" = Adobe Flash Player 16 NPAPI "Adobe_678cd98c8365a5647f9a2e539d120a8" = Adobe Photoshop CS3 "Avast" = Avast Free Antivirus "Google Chrome" = Google Chrome "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 2.0.4.1028 "Mozilla Firefox 33.1 (x86 pl)" = Mozilla Firefox 33.1 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Picasa 3" = Picasa 3 "WinRAR archiver" = WinRAR 5.11 (32-bitowy) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-251121527-2021168873-2295293381-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Winamp Detect" = Winamp Detector Plug-in [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 09/12/2014 23:16:31 | Computer Name = Toshiba-PC | Source = Perflib | ID = 1010 Description = Error - 09/12/2014 23:16:36 | Computer Name = Toshiba-PC | Source = Perflib | ID = 1008 Description = [ Media Center Events ] Error - 31/01/2012 17:47:49 | Computer Name = Toshiba-PC | Source = Media Center Guide | ID = 0 Description = Event Info: ERROR: SqmApiWrapper.SqmFlushSession failed; Win32 GetLastError returned 0D Process: DefaultDomain Object Name: Media Center Guide Error - 31/01/2012 17:52:49 | Computer Name = Toshiba-PC | Source = Media Center Guide | ID = 0 Description = Event Info: ERROR: SqmApiWrapper.SqmFlushSession failed; Win32 GetLastError returned 0D Process: DefaultDomain Object Name: Media Center Guide Error - 31/01/2012 17:57:49 | Computer Name = Toshiba-PC | Source = Media Center Guide | ID = 0 Description = Event Info: ERROR: SqmApiWrapper.SqmFlushSession failed; Win32 GetLastError returned 0D Process: DefaultDomain Object Name: Media Center Guide Error - 31/01/2012 18:02:49 | Computer Name = Toshiba-PC | Source = Media Center Guide | ID = 0 Description = Event Info: ERROR: SqmApiWrapper.SqmFlushSession failed; Win32 GetLastError returned 0D Process: DefaultDomain Object Name: Media Center Guide Error - 31/01/2012 18:07:48 | Computer Name = Toshiba-PC | Source = Media Center Guide | ID = 0 Description = Event Info: ERROR: SqmApiWrapper.SqmFlushSession failed; Win32 GetLastError returned 0D Process: DefaultDomain Object Name: Media Center Guide Error - 31/01/2012 18:12:48 | Computer Name = Toshiba-PC | Source = Media Center Guide | ID = 0 Description = Event Info: ERROR: SqmApiWrapper.SqmFlushSession failed; Win32 GetLastError returned 0D Process: DefaultDomain Object Name: Media Center Guide Error - 31/01/2012 18:17:48 | Computer Name = Toshiba-PC | Source = Media Center Guide | ID = 0 Description = Event Info: ERROR: SqmApiWrapper.SqmFlushSession failed; Win32 GetLastError returned 0D Process: DefaultDomain Object Name: Media Center Guide Error - 05/08/2012 12:34:49 | Computer Name = Toshiba-PC | Source = Media Center Guide | ID = 0 Description = Event Info: ERROR: SqmApiWrapper.TimerAccumulate failed; Win32 GetLastError returned 10000105 Process: DefaultDomain Object Name: Media Center Guide Error - 05/08/2012 12:40:35 | Computer Name = Toshiba-PC | Source = Media Center Guide | ID = 0 Description = Event Info: ERROR: SqmApiWrapper.TimerAccumulate failed; Win32 GetLastError returned 10000105 Process: DefaultDomain Object Name: Media Center Guide Error - 05/08/2012 12:40:45 | Computer Name = Toshiba-PC | Source = Media Center Guide | ID = 0 Description = Event Info: ERROR: SqmApiWrapper.TimerAccumulate failed; Win32 GetLastError returned 10000105 Process: DefaultDomain Object Name: Media Center Guide [ System Events ] Error - 09/12/2014 23:22:41 | Computer Name = Toshiba-PC | Source = Service Control Manager | ID = 7009 Description = Error - 09/12/2014 23:22:41 | Computer Name = Toshiba-PC | Source = Service Control Manager | ID = 7000 Description = Error - 09/12/2014 23:22:54 | Computer Name = Toshiba-PC | Source = disk | ID = 262151 Description = The device, \Device\Harddisk0\DR0, has a bad block. Error - 09/12/2014 23:22:58 | Computer Name = Toshiba-PC | Source = disk | ID = 262151 Description = The device, \Device\Harddisk0\DR0, has a bad block. Error - 09/12/2014 23:26:00 | Computer Name = Toshiba-PC | Source = Service Control Manager | ID = 7009 Description = Error - 09/12/2014 23:26:00 | Computer Name = Toshiba-PC | Source = Service Control Manager | ID = 7000 Description = Error - 09/12/2014 23:26:01 | Computer Name = Toshiba-PC | Source = Service Control Manager | ID = 7009 Description = Error - 09/12/2014 23:26:01 | Computer Name = Toshiba-PC | Source = Service Control Manager | ID = 7000 Description = Error - 09/12/2014 23:26:31 | Computer Name = Toshiba-PC | Source = DCOM | ID = 10010 Description = Error - 10/12/2014 02:23:25 | Computer Name = Toshiba-PC | Source = DCOM | ID = 10010 Description = < End of report >