OTL Extras logfile created on: 2010-09-12 15:15:43 - Run 2 OTL by OldTimer - Version 3.2.12.0 Folder = D:\robert Windows Vista Business Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18943) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 54,00% Memory free 6,00 Gb Paging File | 5,00 Gb Available in Paging File | 78,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 117,54 Gb Total Space | 69,92 Gb Free Space | 59,48% Space Free | Partition Type: NTFS Drive D: | 3,73 Gb Total Space | 3,69 Gb Free Space | 99,13% Space Free | Partition Type: FAT32 Drive E: | 113,88 Gb Total Space | 92,57 Gb Free Space | 81,28% Space Free | Partition Type: NTFS F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: ROBERTF-PC Current User Name: Robert Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2121021179-2380161755-872617078-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiSpyware] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{077FA099-C190-4C50-AA0B-D5AC4B6AD7C4}" = lport=990 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{16F02C77-9281-4D90-8C5B-2899B4A5CE2C}" = rport=5679 | protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{372A7916-CF68-42D0-85CC-8B06B0DE7A8F}" = lport=990 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{445829C9-E005-47BF-B64F-130EA13E121F}" = rport=5679 | protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{5ACACAF9-780C-443B-92A9-9EE0CF807E13}" = lport=990 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{DD8F634E-74D4-46D3-8CC9-C46404E8302A}" = rport=5679 | protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{24065B21-178E-458B-9B8A-2F2BD2562AF7}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{373DD15C-713B-445F-A24C-A58E22DA4F21}" = protocol=17 | dir=in | app=c:\windows\system32\muzapp.exe | "{52B47A36-C45C-4C11-BA37-8150482CEE7F}" = protocol=6 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "{545921D5-B58B-4E0C-8C70-E38737168EBB}" = protocol=6 | dir=in | app=c:\program files\norton 360\engine\3.0.0.134\uistub.exe | "{7DCA013D-5D4B-4B9A-BB1B-D158095B5CE4}" = protocol=17 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "{8DD22EFA-E5A8-4FE8-89C3-4D713829438A}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{9003E7A9-A72B-452E-9F05-D7F79AF35B9E}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe | "{9132255C-8EBC-487C-A687-14F047334FDA}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{9719236F-1CA5-4B80-B4B0-106B20F56361}" = protocol=6 | dir=in | app=c:\windows\system32\muzapp.exe | "{CC2A19E3-F772-4EF5-AF51-A7B2F9850B66}" = protocol=17 | dir=in | app=c:\program files\norton 360\engine\3.0.0.134\uistub.exe | "{D7FB0E4A-8D1D-4872-9631-07EE339D4078}" = protocol=17 | dir=in | app=c:\program files\itunes\itunes.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 "{03FAA727-E2B7-471C-AC41-2E1C7F29C7EA}" = Toshiba TEMPRO "{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour "{0D5D0BEE-FBA9-4928-A50D-6CDFAB827755}" = TOSHIBA ConfigFree "{10DFB03F-845F-4BC6-BE9E-7FEC377A0CD0}" = Podreczniki TOSHIBA "{12B3A009-A080-4619-9A2A-C6DB151D8D67}" = TOSHIBA Assist "{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime "{156E98D0-1AEC-4013-A41A-94A1A01BFD68}" = O2Micro Flash Memory Card Reader Driver (x86) "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Narzędzie do przekazywania usługi Windows Live "{206FD69B-F9FE-4164-81BD-D52552BC9C23}" = GearDrvs "{2290A680-4083-410A-ADCC-7092C67FC052}" = Toshiba Online Product Information "{26A24AE4-039D-4CA4-87B4-2F83216013FF}" = Java(TM) 6 Update 21 "{26B878A8-5704-3B64-BDBC-4F0EACA38121}" = Google Talk Plugin "{3248F0A8-6813-11D6-A77B-00B0D0160060}" = Java(TM) 6 Update 6 "{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java(TM) 6 Update 7 "{37C866E4-AA67-4725-9E95-A39968DD7960}" = Camera Assistant Software for Toshiba "{3F92ABBB-6BBF-11D5-B229-002078017FBF}" = NetWaiting "{3FA365DF-2D68-45ED-8F83-8C8A33E65143}" = Apple Application Support "{491DD193-1B57-4D1C-8B14-18B96992A89F}" = TOSHIBA Supervisor Password "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{51958BA7-21E4-4A8B-9098-CD8375BD17B2}" = Asystent rejestracji usługi Windows Live "{52573F8D-F099-4CB5-9EDE-5C27ECB4A02B}" = TOSHIBA Hardware Setup "{5DA0E02F-970B-424B-BF41-513A5018E4C0}" = TOSHIBA Disc Creator "{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center "{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites "{685A56F8-75B6-44AD-B3DA-FB0A3266B47C}" = Adobe Flash Player 9 ActiveX "{688690A3-795B-4A7F-9F3F-AAD4160BF2E4}" = Reference Manager 11 Demo "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6C5F3BDC-0A1B-4436-A696-5939629D5C31}" = TOSHIBA DVD PLAYER "{6FF543AB-99B3-4120-902C-70A38314ABD8}" = Norton Security Scan "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{773970F1-5EBA-4474-ADEE-1EA3B0A59492}" = TRDCReminder "{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager "{94A90C69-71C1-470A-88F5-AA47ECC96B40}" = TOSHIBA HDD Protection "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = ALPS Touch Pad Driver "{9FE35071-CAB2-4E79-93E7-BFC6A2DC5C5D}" = CD/DVD Drive Acoustic Silencer "{A2075A09-28AA-4D30-9BCC-82EAD9FA51BD}" = TrueSuite Access Manager "{A6FDF86A-F541-4E7B-AEA0-8849A2A700D5}" = iTunes "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}" = Apple Mobile Device Support "{AC76BA86-7AD7-1045-7B44-A81200000003}" = Adobe Reader 8 - Polish "{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}" = TOSHIBA Recovery Disc Creator "{C20CE592-B0F8-4D20-BF31-0151CA6331A6}" = Samsung Media Studio "{C730E42C-935A-45BB-A0C5-37E5234D111B}" = TOSHIBA Face Recognition "{C950420B-4182-49EA-850A-A6A2ABF06C6B}" = Marvell Miniport Driver "{CB84F0F2-927B-458D-9DC5-87832E3DC653}" = GearDrvs "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba "{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.2 "{D2D3D146-67BC-43D0-9015-2E7BAC2E032B}" = OpenOffice.org 3.1 "{E65C7D8E-186D-484B-BEA8-DEF0331CE600}" = TRORDCLauncher "{EBFF48F5-3CFA-436F-8FD5-94FB01D3A0A7}" = TOSHIBA SD Memory Utilities "{FEDD27A0-B306-45EF-BF58-B527406B42C8}" = TOSHIBA Value Added Package "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "41978AA3537FE156CA0678A15CD1FC997E3070F4" = Pakiet sterowników systemu Windows - AnyDATA Corporation (adusbser) Ports (12/21/2006 2.0.3.7) "5CAA468D5260C976817F43472B09AECA6964F1FB" = Pakiet sterowników systemu Windows - AnyDATA Corporated (adusbser) Modem (12/21/2006 2.0.3.7) "Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.5 "CCleaner" = CCleaner "CNXT_AUDIO_HDA" = Conexant HD Audio "CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_5051&SUBSYS_1179" = HDAUDIO Soft Data Fax Modem with SmartCP "Easy Wireless Net" = Easy Wireless Net V3.240.06 "eMPendium" = Medycyna Praktyczna eMPendium "FastStone Capture" = FastStone Capture 5.3 "HDMI" = Intel(R) Graphics Media Accelerator Driver "InstallShield_{491DD193-1B57-4D1C-8B14-18B96992A89F}" = TOSHIBA Supervisor Password "InstallShield_{52573F8D-F099-4CB5-9EDE-5C27ECB4A02B}" = TOSHIBA Hardware Setup "InstallShield_{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center "InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492}" = TRDCReminder "InstallShield_{C730E42C-935A-45BB-A0C5-37E5234D111B}" = TOSHIBA Face Recognition "InstallShield_{E65C7D8E-186D-484B-BEA8-DEF0331CE600}" = TRORDCLauncher "InstallShield_{FEDD27A0-B306-45EF-BF58-B527406B42C8}" = TOSHIBA Value Added Package "ISI ResearchSoft - Export Helper" = ISI ResearchSoft - Export Helper "KLiteCodecPack_is1" = K-Lite Codec Pack 3.6.5 Full "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "MDI2PDF (Microsoft Office Document Image) Converter_is1" = MDI2PDF 2.5 "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Mobile Partner" = Mobile Partner "Mozilla Firefox (3.6.8)" = Mozilla Firefox (3.6.8) "N360" = Norton 360 "Nowe Gadu-Gadu" = Nowe Gadu-Gadu "NSSSetup.{6FF543AB-99B3-4120-902C-70A38314ABD8}" = Norton Security Scan (Symantec Corporation) "OpenAL" = OpenAL "Profesor Klaus 5.0 - Gramatyka_is1" = Profesor Klaus 5.0 - Gramatyka "Sophos-AntiRootkit" = Sophos Anti-Rootkit 1.5.4 "SuperMemo UX - Extremes Deutsch Multi" = SuperMemo UX - Extremes Deutsch Multi "SuperMemo UX - Mit Erfolg zum Zertifikat Deutsch" = SuperMemo UX - Mit Erfolg zum Zertifikat Deutsch "WinRAR archiver" = Archiwizator WinRAR "XviD_is1" = XviD MPEG-4 Video Codec [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2121021179-2380161755-872617078-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "TransDePl4" = Tłumacz i Słownik Języka Niemieckiego 4 [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2010-08-22 13:07:05 | Computer Name = Robertf-PC | Source = Google Update | ID = 20 Description = Error - 2010-08-22 13:53:05 | Computer Name = Robertf-PC | Source = Google Update | ID = 20 Description = Error - 2010-08-22 14:07:05 | Computer Name = Robertf-PC | Source = Google Update | ID = 20 Description = Error - 2010-08-22 14:53:05 | Computer Name = Robertf-PC | Source = Google Update | ID = 20 Description = Error - 2010-08-22 15:07:05 | Computer Name = Robertf-PC | Source = Google Update | ID = 20 Description = Error - 2010-08-22 15:53:05 | Computer Name = Robertf-PC | Source = Google Update | ID = 20 Description = Error - 2010-08-22 16:07:05 | Computer Name = Robertf-PC | Source = Google Update | ID = 20 Description = Error - 2010-08-23 16:16:37 | Computer Name = Robertf-PC | Source = WinMgmt | ID = 10 Description = Error - 2010-08-23 16:53:07 | Computer Name = Robertf-PC | Source = Google Update | ID = 20 Description = Error - 2010-08-28 04:00:57 | Computer Name = Robertf-PC | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 2009-06-11 03:32:31 | Computer Name = Robertf-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 14:46:02 na 2009-05-29 było nieoczekiwane. Error - 2009-06-11 03:32:32 | Computer Name = Robertf-PC | Source = HTTP | ID = 15016 Description = Error - 2009-06-24 13:33:51 | Computer Name = Robertf-PC | Source = HTTP | ID = 15016 Description = Error - 2009-06-24 15:30:32 | Computer Name = Robertf-PC | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20 Description = Error - 2009-06-24 15:31:44 | Computer Name = Robertf-PC | Source = DCOM | ID = 10010 Description = Error - 2009-06-24 15:33:50 | Computer Name = Robertf-PC | Source = HTTP | ID = 15016 Description = Error - 2009-06-29 01:10:05 | Computer Name = Robertf-PC | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 15:23:15 na 2009-06-27 było nieoczekiwane. Error - 2009-06-29 01:10:06 | Computer Name = Robertf-PC | Source = HTTP | ID = 15016 Description = Error - 2009-06-29 01:10:17 | Computer Name = Robertf-PC | Source = Dhcp | ID = 1001 Description = Komputerowi nie został przypisany adres z sieci (przez serwer DHCP) dla karty sieciowej o adresie 00238B04B6DD. Wystąpił następujący błąd: %%258. Komputer będzie dalej próbował sam uzyskać adres z serwera adresów sieciowych (DHCP). Error - 2009-07-03 01:13:58 | Computer Name = Robertf-PC | Source = HTTP | ID = 15016 Description = < End of report >