OTL Extras logfile created on: 2012-10-24 18:05:47 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Szymon\Downloads Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 1,70 Gb Available Physical Memory | 56,84% Memory free 6,20 Gb Paging File | 4,93 Gb Available in Paging File | 79,56% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 173,00 Gb Total Space | 114,07 Gb Free Space | 65,94% Space Free | Partition Type: NTFS Drive D: | 115,33 Gb Total Space | 103,39 Gb Free Space | 89,65% Space Free | Partition Type: NTFS Drive F: | 930,86 Gb Total Space | 798,21 Gb Free Space | 85,75% Space Free | Partition Type: NTFS Drive G: | 442,98 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: UDF Computer Name: SZYMON-PC | User Name: Szymon | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) [HKEY_USERS\S-1-5-21-2835507053-3087473090-3979529323-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) https [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Browse with &IrfanView] -- "C:\Program Files\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [napiprojekt] -- "C:\Program Files\NapiProjekt\napisy.exe" "%1" () Directory [napiprojekt0] -- "C:\Program Files\NapiProjekt\napisy.exe" "%1" -pobierz_ang () Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 1 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{07B0594C-81F5-4BA0-86EB-8E81BE7068E9}" = lport=445 | protocol=6 | dir=in | app=system | "{0C9962B3-0622-4249-8C30-73DD2F9AEDD6}" = rport=138 | protocol=17 | dir=out | app=system | "{250EA89E-C520-4B2F-A776-C56F742E99A5}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{256CA263-3DC1-48D4-B8DA-F2C327360B53}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{26E49AFA-F4EB-4644-AC0A-D8A0AF82FCF1}" = rport=139 | protocol=6 | dir=out | app=system | "{59613340-2614-4CE4-901D-9CCB302973EF}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{674D633D-DF16-4503-860D-5CB9FF8E3259}" = lport=139 | protocol=6 | dir=in | app=system | "{749E58D8-F0EB-4FF9-9845-30FA6D820BAA}" = lport=138 | protocol=17 | dir=in | app=system | "{772636E9-AE3B-482F-9A6B-8198E491678A}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{826AB3E8-B00E-4B88-B6C1-009A5DD8C399}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{8E59D450-A270-4B32-81A4-03A7123D2602}" = lport=137 | protocol=17 | dir=in | app=system | "{8ED2C574-8100-4CD7-96FE-A19671C033F2}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{97252002-93DF-45FB-9F10-4C32F340DA79}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{9EA6B859-C210-4AC1-A892-EE0407DC26EB}" = rport=137 | protocol=17 | dir=out | app=system | "{B75B96E0-FDD9-48A4-B5F4-9E955A6008DE}" = rport=445 | protocol=6 | dir=out | app=system | "{BC68555F-BCE8-4F4C-A44D-0F006F0A4481}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{C2B67A67-C990-4EEB-B2DA-3FBF0BF84249}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{FB8D0D8C-1679-4422-9E6F-E5AF313B19F1}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{14B962A2-E209-4FD9-8EE6-3E751D76CF58}" = dir=in | app=c:\windows\system32\lxeacoms.exe | "{1FEFA1E0-3085-49FF-AB70-6C41239BD722}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{558152AD-7C86-49A0-B2D8-AFB92911007B}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{649280D5-F869-4D13-BE17-A016F759F8C7}" = protocol=17 | dir=in | app=c:\program files\abbyy finereader 6.0 sprint\scan\scanman6.exe | "{A4D86DA8-0EE7-4723-A6AF-2C95A25AAACC}" = protocol=6 | dir=in | app=c:\program files\abbyy finereader 6.0 sprint\scan\scanman6.exe | "{A5297007-D7B1-4E5C-9D29-767C584360AF}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{A9CEE786-D473-4F90-A7B4-5F1527D438C6}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{B1FA0209-CED1-4092-8490-4125C3AD93C3}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{C15303F9-66E0-4A32-8143-E3FE1DA3D9AD}" = dir=in | app=c:\windows\system32\lxeacoms.exe | "{DC52FE73-32E0-4A5E-992E-20197C01D80D}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{EFA61AFA-F096-4834-83D6-B92CE57E1C1A}" = dir=in | app=c:\windows\system32\lxeacoms.exe | "TCP Query User{19F1CD64-8103-4589-8895-F0D17B69B7B6}C:\windows\system32\wuauclt.exe" = protocol=6 | dir=in | app=c:\windows\system32\wuauclt.exe | "TCP Query User{5A5D2507-C15F-451C-9EDB-F60CC0F58E48}D:\wot\world_of_tanks\worldoftanks.exe" = protocol=6 | dir=in | app=d:\wot\world_of_tanks\worldoftanks.exe | "TCP Query User{6E91BBE7-5DD7-46D5-BDFF-8A2AF90AC8DA}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{7A35169E-F33E-480D-A6D1-261F7BFA4617}C:\program files\emule\emule.exe" = protocol=6 | dir=in | app=c:\program files\emule\emule.exe | "TCP Query User{E5496158-3E4D-4EB1-9034-F3D7983BFC42}D:\wot\world_of_tanks\wotlauncher.exe" = protocol=6 | dir=in | app=d:\wot\world_of_tanks\wotlauncher.exe | "UDP Query User{1B49A0EC-2CD0-4763-BA86-4E4737CD6C2A}C:\windows\system32\wuauclt.exe" = protocol=17 | dir=in | app=c:\windows\system32\wuauclt.exe | "UDP Query User{49A92316-586F-4F10-A647-93A154E55899}D:\wot\world_of_tanks\wotlauncher.exe" = protocol=17 | dir=in | app=d:\wot\world_of_tanks\wotlauncher.exe | "UDP Query User{65C45EF9-90C5-4F42-B21E-268B7C232198}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{80326E83-1BAB-46CA-B05A-FC7A498D297B}C:\program files\emule\emule.exe" = protocol=17 | dir=in | app=c:\program files\emule\emule.exe | "UDP Query User{ADD7B840-9FDF-47B8-9CA9-2930B6ACE1A5}D:\wot\world_of_tanks\worldoftanks.exe" = protocol=17 | dir=in | app=d:\wot\world_of_tanks\worldoftanks.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1017A80C-6F09-4548-A84D-EDD6AC9525F0}" = Lexmark Pasek narzędzi "{1C8521E5-5A7B-4A4E-A9CD-AD53116EAEE0}" = ASUS Data Security Manager "{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}" = ASUS LifeFrame3 "{1EAC1D02-C6AC-4FA6-9A44-96258C37C812}_is1" = World of Tanks "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{2396F815-84E0-4353-83D7-8B190556DA42}" = ASUS CopyProtect "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 7 "{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{33286280-8617-11E1-8FF6-B8AC6F97B88E}" = Google Earth Plug-in "{3912D529-02BC-4CA8-B5ED-0D0C20EB6003}" = ATK Hotkey "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{57B15AD4-8C9D-4164-82BB-E33D8644E757}" = ASUS InstantFun "{5C1DB4ED-E9B4-402D-BB14-D75D97D6C1A6}" = ATKOSD2 "{616B741E-6694-438B-BD02-73A79DE6834C}" = MainConcept MCE Encoder "{786C5747-1437-443D-B06E-79A00FE45110}" = Adobe Stock Photos 1.0 "{80E4B2D6-BFF2-402C-96C4-3942DF24CABB}_is1" = FVD Suite 2.7.3 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{83F73CB1-7705-49D1-9852-84D839CA2A45}" = Wireless Console 2 "{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar "{8AEA4BE2-2B52-41C0-BB7D-9F2D17AF1045}" = Nero 8 "{8EDBA74D-0686-4C99-BFDD-F894678E5102}" = Adobe Common File Installer "{8FFC924C-ED06-44CB-8867-3CA778ECE903}" = Adobe Help Center 2.0 "{90110415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003 "{90120000-0020-0415-0000-0000000FF1CE}" = Pakiet zgodności dla systemu Office 2007 "{9370105C-71BB-4FF9-A85B-36D79B95457A}_is1" = ALLConverter PRO 1.1 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AA59DDE4-B672-4621-A016-4C248204957A}" = Skype™ 5.5 "{AC76BA86-7AD7-1033-7B44-A80000000002}" = Adobe Reader 8 "{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}" = ABBYY FineReader 6.0 Sprint "{AE3D38A6-13B1-40B3-9423-D1FA9982FB6A}" = Adobe Bridge 1.0 "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{C0FC1C14-4824-4A73-87A6-9E888C9C3102}" = ASUS Splendid Video Enhancement Technology "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D2C5E510-BE6D-42CC-9F61-E4F939078474}" = Lexmark "{D3D54F3E-C5C3-443D-978F-87A72E5616E8}" = ATK Generic Function Service "{EFB21DE7-8C19-4A88-BB28-A766E16493BC}" = Adobe Photoshop CS "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FA17A726-B229-4116-B793-A2AB1A4EAE2E}" = Adobe Premiere Pro 2.0 "{FC3D290D-79BE-44B7-ABF9-FDD110925930}" = P4P "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Premiere Pro 2.0" = Adobe Premiere Pro 2.0 "ALLPlayer_is1" = ALLPlayer V4.X "Asus_Camera_ScreenSaver" = Asus_Camera_ScreenSaver "avast" = avast! Free Antivirus "DAEMON Tools Lite" = DAEMON Tools Lite "DAEMON Tools Toolbar" = DAEMON Tools Toolbar "eMule" = eMule "ffdshow_is1" = ffdshow v1.1.4342 [2012-02-28] "Gadu-Gadu 10" = Gadu-Gadu 10 "Google Chrome" = Google Chrome "IrfanView" = IrfanView (remove only) "Lexmark S300-S400 Series" = Lexmark S300-S400 Series "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.65.1.1000 "McAfee Security Scan" = McAfee Security Scan Plus "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Mozilla Firefox 15.0 (x86 pl)" = Mozilla Firefox 15.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NapiProjekt_is1" = NapiProjekt 2.0.0 (build 2151) "NVIDIA Drivers" = NVIDIA Drivers "PIT Format 2011_is1" = PIT Format 2011 "SMSERIAL" = Motorola SM56 Speakerphone Modem "SynTPDeinstKey" = Synaptics Pointing Device Driver "USB 2.0 1.3M UVC WebCam" = USB 2.0 1.3M UVC WebCam "Winamp" = Winamp "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2835507053-3087473090-3979529323-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{79A765E1-C399-405B-85AF-466F52E918B0}" = Ask Toolbar Updater [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-10-18 12:27:38 | Computer Name = Szymon-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-10-18 12:27:38 | Computer Name = Szymon-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-10-18 12:27:38 | Computer Name = Szymon-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-10-18 12:27:38 | Computer Name = Szymon-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-10-18 12:27:38 | Computer Name = Szymon-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-10-18 12:27:38 | Computer Name = Szymon-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-10-18 12:27:38 | Computer Name = Szymon-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-10-18 12:27:38 | Computer Name = Szymon-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-10-18 12:27:39 | Computer Name = Szymon-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2012-10-19 01:09:25 | Computer Name = Szymon-PC | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 2012-10-24 09:35:13 | Computer Name = Szymon-PC | Source = DCOM | ID = 10005 Description = Error - 2012-10-24 09:35:20 | Computer Name = Szymon-PC | Source = DCOM | ID = 10005 Description = Error - 2012-10-24 09:35:21 | Computer Name = Szymon-PC | Source = DCOM | ID = 10005 Description = Error - 2012-10-24 09:35:25 | Computer Name = Szymon-PC | Source = DCOM | ID = 10005 Description = Error - 2012-10-24 09:36:04 | Computer Name = Szymon-PC | Source = Service Control Manager | ID = 7001 Description = Error - 2012-10-24 09:36:04 | Computer Name = Szymon-PC | Source = Service Control Manager | ID = 7026 Description = Error - 2012-10-24 10:00:09 | Computer Name = Szymon-PC | Source = DCOM | ID = 10005 Description = Error - 2012-10-24 11:53:32 | Computer Name = Szymon-PC | Source = Service Control Manager | ID = 7009 Description = Error - 2012-10-24 11:53:32 | Computer Name = Szymon-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2012-10-24 11:55:26 | Computer Name = Szymon-PC | Source = Microsoft-Windows-LanguagePackSetup | ID = 1001 Description = < End of report >