OTL Extras logfile created on: 7/19/2012 1:24:28 PM - Run 1 OTL by OldTimer - Version Folder = C:\Programs Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000409 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd 2.00 Gb Total Physical Memory | 1.52 Gb Available Physical Memory | 75.89% Memory free 4.00 Gb Paging File | 3.63 Gb Available in Paging File | 90.74% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 223.84 Gb Total Space | 2.17 Gb Free Space | 0.97% Space Free | Partition Type: NTFS Drive E: | 1.55 Gb Total Space | 1.31 Gb Free Space | 84.60% Space Free | Partition Type: NTFS Drive F: | 7.48 Gb Total Space | 0.74 Gb Free Space | 9.90% Space Free | Partition Type: NTFS Drive G: | 246.09 Mb Total Space | 244.55 Mb Free Space | 99.37% Space Free | Partition Type: FAT Computer Name: ARCO-IRIS-PC | User Name: arco-iris | Logged in as Administrator. Boot Mode: SafeMode | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{009732B2-95C4-4A0D-91F2-5C88C951F61D}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{0B7DC0B3-87E2-4A9A-B0B7-987DC2FEA9A5}" = rport=139 | protocol=6 | dir=out | app=system | "{219835BE-9D74-45C3-BC71-BBE7750B4054}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{24B9545F-A1AA-4B1C-839B-974007C377EE}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{29D89B12-26B5-43B3-A123-9F08A1F45832}" = lport=139 | protocol=6 | dir=in | app=system | "{3EFA96A1-775B-42D1-9079-C5ECAD9C6086}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{625020B4-DE7E-4965-8E1B-E1A172B8D2A0}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{700AF04A-D984-41F1-A4CD-E855C33973E4}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{A4377910-21CE-4719-B4B3-55F5D8B74556}" = rport=138 | protocol=17 | dir=out | app=system | "{A53D8541-F838-4974-907F-53A32D25BB1F}" = lport=10243 | protocol=6 | dir=in | app=system | "{ABFF0101-3F3E-449A-9464-CE16DD2EA7FC}" = rport=137 | protocol=17 | dir=out | app=system | "{B64706DC-9015-44E0-87D6-214853D8E3C1}" = lport=138 | protocol=17 | dir=in | app=system | "{BAC71567-C67A-49AA-9D3E-E11CA3126007}" = lport=137 | protocol=17 | dir=in | app=system | "{C584CCE7-4170-4158-AE83-638BFE11DCEF}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{C765CE5D-A123-44FC-BC3B-7B7C6C4DD6EC}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{CF55872D-E364-462F-988D-97E26321545B}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{CF90633C-1410-4943-8498-882CA942ADE6}" = rport=445 | protocol=6 | dir=out | app=system | "{D4472D5F-6DB8-4760-99AC-CDEAD7AE3E36}" = rport=10243 | protocol=6 | dir=out | app=system | "{D8AE2525-3519-43AF-885C-C689F304C6E5}" = lport=445 | protocol=6 | dir=in | app=system | "{E37BBF20-0853-4B3C-B1EE-8E7C4EAF3782}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{EA978268-97EE-4039-9682-18C575BAD17E}" = lport=2869 | protocol=6 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0341A015-A24F-4B44-96A9-AD7C0C5325E6}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{1BD977B7-9D57-4EDA-AA3A-A32AB2A388E5}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{1F29C101-03D9-4192-ABCE-D1D5543BD773}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{2516CFDF-9BF2-4DB8-80A2-B7DAB7DF2C06}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{29C4C7EA-5414-40A9-A625-BA1F846C8F7B}" = protocol=6 | dir=in | app=c:\program files\pandora.tv\panservice\pandoraservice.exe | "{2A04D8CF-2B89-4B33-A3C5-6D9157FB782D}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{304F6F9C-1CD7-4922-A1FD-F3C1C42B1040}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{40C009D9-E4F4-4F88-A73E-44AEE2476372}" = protocol=6 | dir=in | app=c:\program files\pandora.tv\panservice\pandoraservice.exe | "{52161AA3-A59D-44F9-8864-2D390ADCC904}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{670ACCD5-C853-40AF-94F9-858A92B6A44D}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{7D4B3A98-0917-468F-8CA4-1E5DC8908633}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{8387AA28-1DD6-4C46-8D66-729E63C32508}" = protocol=17 | dir=in | app=c:\program files\pandora.tv\panservice\pandoraservice.exe | "{A071C68C-678B-4325-B9F2-A85E9ECA14CF}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{B5E2BAE3-7712-401A-9E6C-1BC28FE927BB}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{BBE6F506-3CB5-438D-88F5-BEF0FC0E72DD}" = protocol=17 | dir=in | app=c:\program files\pandora.tv\panservice\pandoraservice.exe | "{C609948A-638C-4C11-B226-2B2D4236065E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{D47AF0C2-9D96-4679-8C70-040E0C0C6C31}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{DA7C38F2-1F3D-4E43-9FAF-1AED630764FF}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{E1F5EACB-A352-4C4D-99CF-2D685659D412}" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe | "{F20508C9-1B9A-413E-B30D-F4CADCE08420}" = protocol=6 | dir=out | app=system | "{F6D435CB-CBB3-4D95-B45D-08F181468693}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{F78752F4-C8D7-4F7A-A39E-9560D57110ED}" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe | "{F8C8872C-6C5E-4CF6-AECA-2E616E676E68}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "TCP Query User{603E3CE9-33CF-422F-8CB0-F229B1B24942}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{BD04B7CC-2090-4106-8D29-00FD2A8B3E22}C:\windows.old\program files\gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\windows.old\program files\gadu-gadu\gg.exe | "UDP Query User{86E1B032-0D3B-4548-B53C-CF9A6E4CE4FD}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{D94D99CC-477D-40EB-8608-96275522A997}C:\windows.old\program files\gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\windows.old\program files\gadu-gadu\gg.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0141D498-16DA-4221-A529-1D7A64BE8B05}" = OpenOffice.org 3.3 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{670A2206-F20A-490C-8C13-25EA88BF8E54}_is1" = e-pity 2011 wersja 3.0 "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = KMPlayer Toolbar "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.2) "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.8 "4F6D5E84-5826-4394-9F40-3A9A19165651_is1" = Pandora Service "a591470f" = Contextual Tool Extrafind "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "BabylonToolbar" = Babylon toolbar on IE "Browsers Protector" = Browsers Protector "Gadu-Gadu 10" = Gadu-Gadu 10 "GG Tools_is1" = GG Tools "IMCapture for Skype_is1" = IMCapture for Skype "McAfee Security Scan" = McAfee Security Scan Plus "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Multimedia mobilNET" = Multimedia mobilNET "PamelaCR" = Pam Call Recorder 4.8 "PDF Creator" = PDF Creator "StartSearch Toolbar" = StartSearch Toolbar 1.3 "The KMPlayer" = The KMPlayer (remove only) "uTorrent" = µTorrent "uTorrentControl2 Toolbar" = uTorrentControl2 Toolbar "VLC media player" = VLC media player 2.0.1 "WinRAR archiver" = WinRAR 4.11 (32-bit) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1409966539-1473031869-3806934795-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{79A765E1-C399-405B-85AF-466F52E918B0}" = KMPlayer Toolbar Updater "GG" = GG "Google Chrome" = Google Chrome [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 7/18/2012 5:15:57 PM | Computer Name = arco-iris-PC | Source = Software Protection Platform Service | ID = 8193 Description = License Activation Scheduler (sppuinotify.dll) failed with the following error code: 0x80070005 Error - 7/18/2012 6:16:05 PM | Computer Name = arco-iris-PC | Source = Software Protection Platform Service | ID = 8193 Description = License Activation Scheduler (sppuinotify.dll) failed with the following error code: 0x80070005 Error - 7/18/2012 6:47:50 PM | Computer Name = arco-iris-PC | Source = Winlogon | ID = 4103 Description = Windows license activation failed. Error 0x80070005. Error - 7/18/2012 6:52:59 PM | Computer Name = arco-iris-PC | Source = Winlogon | ID = 4103 Description = Windows license activation failed. Error 0x80070005. Error - 7/18/2012 6:55:12 PM | Computer Name = arco-iris-PC | Source = Winlogon | ID = 4103 Description = Windows license activation failed. Error 0x80070005. Error - 7/18/2012 6:59:47 PM | Computer Name = arco-iris-PC | Source = Winlogon | ID = 4103 Description = Windows license activation failed. Error 0x80070005. Error - 7/18/2012 7:11:14 PM | Computer Name = arco-iris-PC | Source = Winlogon | ID = 4103 Description = Windows license activation failed. Error 0x80070005. Error - 7/18/2012 7:13:46 PM | Computer Name = arco-iris-PC | Source = Winlogon | ID = 4103 Description = Windows license activation failed. Error 0x80070005. Error - 7/18/2012 7:23:15 PM | Computer Name = arco-iris-PC | Source = Winlogon | ID = 4103 Description = Windows license activation failed. Error 0x80070005. Error - 7/18/2012 7:27:10 PM | Computer Name = arco-iris-PC | Source = Winlogon | ID = 4103 Description = Windows license activation failed. Error 0x80070005. [ System Events ] Error - 7/19/2012 6:45:13 AM | Computer Name = arco-iris-PC | Source = Service Control Manager | ID = 7001 Description = The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error - 7/19/2012 6:45:14 AM | Computer Name = arco-iris-PC | Source = Service Control Manager | ID = 7001 Description = The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error - 7/19/2012 6:45:16 AM | Computer Name = arco-iris-PC | Source = DCOM | ID = 10005 Description = Error - 7/19/2012 6:45:17 AM | Computer Name = arco-iris-PC | Source = DCOM | ID = 10005 Description = Error - 7/19/2012 6:45:18 AM | Computer Name = arco-iris-PC | Source = Service Control Manager | ID = 7001 Description = The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error - 7/19/2012 6:45:18 AM | Computer Name = arco-iris-PC | Source = Service Control Manager | ID = 7001 Description = The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error - 7/19/2012 6:45:18 AM | Computer Name = arco-iris-PC | Source = Service Control Manager | ID = 7001 Description = The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error - 7/19/2012 6:45:18 AM | Computer Name = arco-iris-PC | Source = Service Control Manager | ID = 7001 Description = The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error - 7/19/2012 6:45:18 AM | Computer Name = arco-iris-PC | Source = Service Control Manager | ID = 7001 Description = The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error - 7/19/2012 6:45:18 AM | Computer Name = arco-iris-PC | Source = Service Control Manager | ID = 7001 Description = The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 < End of report >