OTL Extras logfile created on: 8/8/2012 5:41:35 PM - Run 1 OTL by OldTimer - Version 3.2.56.0 Folder = C:\Users\as\Downloads Starter Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000409 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1014.18 Mb Total Physical Memory | 302.71 Mb Available Physical Memory | 29.85% Memory free 1.99 Gb Paging File | 1.33 Gb Available in Paging File | 66.82% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files Drive C: | 222.87 Gb Total Space | 175.97 Gb Free Space | 78.96% Space Free | Partition Type: NTFS Computer Name: AS-KOMPUTER | User Name: as | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\windows\winhlp32.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Users\as\P-7-78-8964-9648-3874\winpvc.exe" = "C:\Users\as\M-10-5364-2978-3464\winmgr.exe" = C:\Users\as\M-10-5364-2978-3464\winmgr.exe:*:Enabled:Microsoft® Windows Manager -- () "C:\Users\as\M-10-6897-8685-3464\winmgr.exe" = C:\Users\as\M-10-6897-8685-3464\winmgr.exe:*:Enabled:Microsoft Windows Manager -- () "C:\Users\as\M-10-8754-86589-5555h5\windogr.exe" = C:\Users\as\M-10-8754-86589-5555h5\windogr.exe:*:Enabled:Mjjicrtuhgug ddd Manager [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0A63C6FA-6439-49FC-AF70-69033044A242}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{1320E22F-3D21-4D15-928D-270EBB4B46AA}" = rport=139 | protocol=6 | dir=out | app=system | "{191E104F-1E8E-444C-9E1F-984D232417BA}" = lport=137 | protocol=17 | dir=in | app=system | "{66541BA4-EEA8-4D54-BB41-01EB2339E38C}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{6A407C83-6701-4F8F-8F6C-C1873032088C}" = lport=445 | protocol=6 | dir=in | app=system | "{6DB9079C-7495-460F-929A-F91E47C0F9EA}" = rport=445 | protocol=6 | dir=out | app=system | "{77AB0139-3D70-44F3-B3DD-9CA7810FE471}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{7B85396F-30D7-46B1-942F-69FCFA65DDB0}" = rport=137 | protocol=17 | dir=out | app=system | "{97208D3B-B80A-419A-9904-3B4EFEEE965D}" = lport=139 | protocol=6 | dir=in | app=system | "{AFE589C2-9495-44EF-8EEA-3D6269498EB7}" = rport=138 | protocol=17 | dir=out | app=system | "{B648450E-D2E6-43B0-B643-3D8890D388C8}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | "{BF6BBBD6-2894-460F-8A9D-ACD95B37364C}" = lport=2869 | protocol=6 | dir=in | app=system | "{CE0C2146-7CCF-4553-ADDF-F364F803715F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{EB3B8825-7F4C-47C5-A6AC-6CCC05DBF83C}" = lport=138 | protocol=17 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{100E9A7B-0588-4E61-A28E-19AFC5CA6707}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{2B6F4287-ED8A-43F2-A682-93B7A84DC099}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe | "{32B9CF2F-2B79-4037-929E-DF5A2268403E}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{5B19701D-4888-4ECD-A98F-6DA1B18D1C70}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpiscnapp.exe | "{710CCC21-47C9-4BD2-8223-7B602BB35763}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{7830D188-3F39-4C47-AB00-3C93C520F395}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{8E623DB9-0F03-45A1-AFB4-AB87D1AB9B75}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{9CC64416-508B-475D-AD9C-3E2A6FC7D971}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqkygrp.exe | "{9FEEF839-CEE9-4A8C-B274-01D35C87AF7C}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe | "{A95D230C-BCF6-49B4-B894-C2DBE628DACA}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpfccopy.exe | "{C222201F-03A2-45D6-AD67-6A04076D294F}" = dir=in | app=c:\users\as\appdata\local\facebook\video\skype\facebookvideocalling.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{06A1D88C-E102-4527-AF70-29FFD7AF215A}" = Scan "{0A50CB27-D2D5-4B7D-A001-30B1782A450B}" = DJ_AIO_06_K209a-z_SW_Min "{0F842B77-56EA-4AAF-8295-81A022350B5E}" = Microsoft Security Client "{17780F99-A9DF-450B-81B3-6781B20A17A8}" = FontResizer "{185AFA7A-F63E-450B-94AA-011CAC18090E}" = E-Cam "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Narzędzie do przekazywania usługi Windows Live "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT "{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Atheros Client Installation Program "{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com "{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1 "{292F0F52-B62D-4E71-921B-89A682402201}" = Toolbox "{2E522ED6-01E2-4207-82D5-B3BFB31B8BD4}" = Windows Live Sync "{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver "{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{38E5A3B1-ADF1-47E0-8024-76310A30EB36}" = LiveUpdate "{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{4B5092B6-F231-4D18-83BC-2618B729CA45}" = CapsHook "{51958BA7-21E4-4A8B-9098-CD8375BD17B2}" = Asystent rejestracji usługi Windows Live "{587178E7-B1DF-494E-9838-FA4DD36E873C}" = ASUSUpdate for Eee PC "{6051912A-F7B8-445C-A99D-81AA4C118836}" = HP Deskjet Ink Advant K209a-z All-in-One Driver 14.0 Rel. 6 "{60FFB3E0-6D5B-4D73-AE5B-07E58B83AF0C}" = 32 Bit HP CIO Components Installer "{6333FC29-BFE5-4024-AC78-958A1A7555D1}" = EeeSplendid "{71C0E38E-09F2-4386-9977-404D4F6640CD}" = Hotkey Service "{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime "{7CAC6A44-C3DE-4153-ACA6-7524602C789E}" = Facebook Video Calling 1.2.0.159 "{859D40CF-8491-44AD-8FA8-7389CB418C64}" = 32 Bit HP CIO Components Installer "{88F08F98-12BC-4613-81A2-8F9B88CFC73E}" = Super Hybrid Engine "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8A74E887-8F0F-4017-AF53-CBA42211AAA5}" = Microsoft Sync Framework Runtime Native v1.0 (x86) "{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}" = Ralink RT2860 Wireless LAN Card "{90140000-006D-0415-0000-0000000FF1CE}" = Moduł Szybka instalacja pakietu Microsoft Office 2010 "{90140011-0066-0415-0000-0000000FF1CE}" = Microsoft Office Starter 2010 - Polski "{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010 "{9862473C-E063-4C68-A161-2CDE0E8048A5}" = Podstawowe programy Windows Live "{9AB614A6-719C-4A6E-A63E-831E0A35F62A}" = Windows Live Writer "{9CDEAEC9-2F14-4D39-8541-C1EEC4B5D1CB}" = Galeria fotografii usługi Windows Live "{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR "{AA59DDE4-B672-4621-A016-4C248204957A}" = Skype™ 5.5 "{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.1 MUI "{B4089055-D468-45A4-A6BA-5A138DD715FC}" = Bing Bar "{B47A9C26-F1D1-4498-A337-6C4C58F2E5E8}" = Microsoft Producer for Microsoft Office PowerPoint "{BB21B808-F784-4883-A4D4-B1473384C1C6}" = LibreOffice 3.5 "{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86) "{C35FE07E-24B5-410F-85B7-122087A0C7DD}" = Poczta usługi Windows Live "{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86 "{D1803CD4-0CE7-4484-98E3-88D7A2D629A4}" = Windows Live Messenger "{D802DD00-16A8-4A58-AFC9-020C2380ECDA}" = EeeSplendid "{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F3D2DEDC-4732-4188-8A3A-1A3FFBD4D6C8}" = ebi.BookReader3J "{F88335A8-CA7B-41DE-B37D-81306C73B507}" = Bezpieczeństwo rodzinne usługi Windows Live "ActiveScan 2.0" = Panda ActiveScan 2.0 "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "ASUS VIBE" = ASUS VIBE "ASUS WebStorage" = ASUS WebStorage "B41C7C96D83162A676DA7365ADEFD6C1AF62A4EE" = Windows Driver Package - Broadcom Bluetooth (07/17/2009 6.2.0.9403) "B5C82F3814F82FB37F1513B3185399BD88892B08" = Windows Driver Package - Broadcom Bluetooth (07/29/2009 6.1.7100.0) "BF20603967CFDCB2BBF91950E8A56DFBC5C833FE" = Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) "Eee Docking_is1" = Eee Docking 3.7.0 "HDMI" = Intel(R) Graphics Media Accelerator Driver "InstallShield_{17780F99-A9DF-450B-81B3-6781B20A17A8}" = FontResizer "ipla" = ipla 2.3.5 "KLiteCodecPack_is1" = K-Lite Codec Pack 6.2.0 (Basic) "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.62.0.1300 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Microsoft Security Client" = Microsoft Security Essentials "Office14.Click2Run" = Moduł Szybka instalacja pakietu Microsoft Office 2010 "RealPlayer 15.0" = RealPlayer "SkanerOnline" = mks_vir - online scanner "Softonic" = Softonic toolbar on IE and Chrome "SynTPDeinstKey" = Synaptics Pointing Device Driver "WinLiveSuite_Wave3" = Podstawowe programy Windows Live "WinRAR archiver" = WinRAR 4.11 (32-bitowy) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-983518882-2340408370-3074222720-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Google Chrome" = Google Chrome [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 8/5/2012 3:47:08 PM | Computer Name = as-Komputer | Source = CVHSVC | ID = 100 Description = Tylko informacje. (Stream product id=0x0066): Streaming Failed Error - 8/5/2012 5:58:41 PM | Computer Name = as-Komputer | Source = CVHSVC | ID = 100 Description = Tylko informacje. Too many failures while downloading ranges: 2 Error - 8/5/2012 5:59:11 PM | Computer Name = as-Komputer | Source = CVHSVC | ID = 100 Description = Tylko informacje. (Stream product id=0x0066): Streaming Failed Error - 8/5/2012 6:05:11 PM | Computer Name = as-Komputer | Source = CVHSVC | ID = 100 Description = Tylko informacje. (Patch task for {90140011-0066-0415-0000-0000000FF1CE}): DownloadLatest Failed: Error - 8/6/2012 2:27:13 AM | Computer Name = as-Komputer | Source = CVHSVC | ID = 100 Description = Tylko informacje. Too many failures while downloading ranges: 2 Error - 8/6/2012 2:28:01 AM | Computer Name = as-Komputer | Source = CVHSVC | ID = 100 Description = Tylko informacje. (Stream product id=0x0066): Streaming Failed Error - 8/6/2012 12:49:17 PM | Computer Name = as-Komputer | Source = CVHSVC | ID = 100 Description = Tylko informacje. Too many failures while downloading ranges: 2 Error - 8/6/2012 12:50:03 PM | Computer Name = as-Komputer | Source = CVHSVC | ID = 100 Description = Tylko informacje. (Stream product id=0x0066): Streaming Failed Error - 8/7/2012 8:23:42 AM | Computer Name = as-Komputer | Source = CVHSVC | ID = 100 Description = Tylko informacje. Too many failures while downloading ranges: 2 Error - 8/7/2012 8:24:12 AM | Computer Name = as-Komputer | Source = CVHSVC | ID = 100 Description = Tylko informacje. (Stream product id=0x0066): Streaming Failed [ System Events ] Error - 6/21/2012 3:24:38 PM | Computer Name = as-Komputer | Source = Service Control Manager | ID = 7011 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi Netman. Error - 6/21/2012 4:09:23 PM | Computer Name = as-Komputer | Source = Service Control Manager | ID = 7011 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi ShellHWDetection. Error - 6/22/2012 11:02:43 AM | Computer Name = as-Komputer | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error - 6/22/2012 2:39:23 PM | Computer Name = as-Komputer | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error - 6/22/2012 5:40:44 PM | Computer Name = as-Komputer | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR9. Error - 6/22/2012 5:40:46 PM | Computer Name = as-Komputer | Source = Disk | ID = 262155 Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR9. Error - 6/23/2012 4:09:23 AM | Computer Name = as-Komputer | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error - 6/23/2012 7:29:38 AM | Computer Name = as-Komputer | Source = DCOM | ID = 10010 Description = Error - 6/23/2012 9:21:28 AM | Computer Name = as-Komputer | Source = Service Control Manager | ID = 7011 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi Wlansvc. Error - 6/23/2012 9:49:32 AM | Computer Name = as-Komputer | Source = Service Control Manager | ID = 7011 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi ShellHWDetection. < End of report >