OTL Extras logfile created on: 2012-11-24 13:13:23 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\SKARB\Downloads Windows Vista Home Basic Edition (Version = 6.0.6000) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18904) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1013,81 Mb Total Physical Memory | 184,48 Mb Available Physical Memory | 18,20% Memory free 2,23 Gb Paging File | 1,28 Gb Available in Paging File | 57,39% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 67,37 Gb Total Space | 28,72 Gb Free Space | 42,64% Space Free | Partition Type: NTFS Drive D: | 32,70 Gb Total Space | 8,77 Gb Free Space | 26,80% Space Free | Partition Type: NTFS Computer Name: SKARB-PC | User Name: SKARB | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-1824532634-733924903-4071680558-1000\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "UacDisableNotify" = 1 "InternetSettingsDisableNotify" = 1 "AutoUpdateDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 1 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{016A8AB4-637A-4AF3-97BE-EE82268C26AA}" = rport=3540 | protocol=17 | dir=out | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe | "{01FEDBCB-8FCF-41EC-9F14-8518EB1B4E6E}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{144F55F8-6C85-47B1-B650-9F4D9CC1E15C}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{1C6DAB85-CFA0-41AA-9725-4D982D27C31D}" = lport=137 | protocol=17 | dir=in | app=system | "{23D533C5-037B-439F-86BB-4F492CD9D670}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\p2phost.exe | "{267FB1E2-CA94-4C5F-A862-83180D2B1D6D}" = lport=3540 | protocol=17 | dir=in | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe | "{2C135095-5C75-4961-8FD1-8D8656FB8958}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{3007A1A5-E57B-4D5D-93C2-FA2276B01CD4}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{3995E2F7-446F-4755-B56F-B5F8D1C4EF10}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{3A67AF90-AC75-4C3D-B9C2-078BA4240476}" = lport=990 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{3C70D7B4-5654-406E-BF94-1209E4CBDEA6}" = rport=137 | protocol=17 | dir=out | app=system | "{3C7CEC9F-D3FA-4C65-8818-FC11B00E341E}" = lport=445 | protocol=6 | dir=in | app=system | "{504961E3-047A-4BFA-BFC7-62F2A4CE03FC}" = lport=3540 | protocol=17 | dir=in | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe | "{677F664E-04B8-466F-879A-A6E9C483C294}" = lport=138 | protocol=17 | dir=in | app=system | "{67C22BC3-E9FE-4376-8264-2CCF671FA92C}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{8BAA951A-2C27-4874-BFC1-4C74200DAA19}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\p2phost.exe | "{8DB68A33-5560-4B75-A704-A87FD343533A}" = rport=139 | protocol=6 | dir=out | app=system | "{93B50506-AF93-47AA-8015-A9C8EAFA1948}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{98C019C6-6584-427E-B21A-38B8C88C7CBA}" = rport=138 | protocol=17 | dir=out | app=system | "{A1FE1A01-227D-45F2-8AC6-BAE8FE6CA7EE}" = rport=445 | protocol=6 | dir=out | app=system | "{ACF4DD93-0F48-4082-98E0-7D8DE700D244}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{ADC2E7C7-D9B9-441D-B5D1-393DC31CF587}" = rport=3540 | protocol=17 | dir=out | svc=pnrpsvc | app=%systemroot%\system32\svchost.exe | "{DCA3CE36-9798-4F45-8AE3-646F74F73FAD}" = rport=5679 | protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{F2D945E7-236C-45DA-B41C-8ED94D58E677}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\p2phost.exe | "{F70D0ADC-1691-4D84-ADEC-795E884EE4F4}" = lport=139 | protocol=6 | dir=in | app=system | "{FB4C8894-0C97-49A0-88D2-65CD46387C50}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\p2phost.exe | "{FDBE77D3-4374-437E-9508-919B43F5EB8C}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{FECA7A5D-E2E2-4D85-887F-1F992BFD0B21}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{00F48FF3-F59A-44C5-9B19-9DB4EA706E33}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{06A03FCC-2DFC-454D-9891-6249B35428F0}" = protocol=6 | dir=out | app=%systemroot%\system32\p2phost.exe | "{1FBB3B6C-CF7E-41BF-9409-4B2D367872BA}" = protocol=17 | dir=in | app=c:\program files\bitcomet\bitcomet.exe | "{3134E5C6-05A6-4FD7-9FC9-4B310E45099D}" = protocol=6 | dir=in | app=%systemroot%\system32\p2phost.exe | "{418588AA-E337-4314-8FD3-213277ED822F}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{58DAD08C-E86F-4978-808A-CC76EB2A1BE2}" = protocol=6 | dir=in | app=c:\program files\bitcomet\bitcomet.exe | "{5B178F0B-F9A1-45AB-932D-A10061E57D74}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{5EC154DE-EBAE-4571-98E5-B69FF7E947E6}" = protocol=17 | dir=in | app=c:\program files\bitcomet\bitcomet.exe | "{600C4F42-6D3C-49BD-9F79-9440E2FAE714}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{6C649DE5-7B7A-4B68-A90A-25459F07AB1B}" = protocol=6 | dir=in | app=c:\program files\myplaycity toolbar\toolbarupdate.exe | "{8045205A-EB9F-4550-A6CB-238D89422CEC}" = protocol=17 | dir=in | app=c:\program files\myplaycity toolbar\troubleshooter.exe | "{8989C922-1F74-4BCB-BD75-E902C5071146}" = protocol=17 | dir=in | app=c:\program files\myplaycity toolbar\toolbarupdate.exe | "{A1ED8C5D-CA52-44F3-96E2-17E174587284}" = protocol=6 | dir=in | app=c:\program files\bitcomet\bitcomet.exe | "{B8FC67AE-18A6-46C5-87BD-8825EBA0DEBC}" = protocol=6 | dir=in | app=c:\program files\myplaycity toolbar\troubleshooter.exe | "{CDB681B7-BF97-4F20-9CD9-AF6477FA5BD3}" = protocol=6 | dir=in | app=%systemroot%\system32\p2phost.exe | "{E0408C49-35E5-4E8A-9053-4A3F2AF42563}" = protocol=6 | dir=out | app=%systemroot%\system32\p2phost.exe | "{E1212B98-FFEF-4935-83C7-C685BF97AF0F}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{F6B89F34-145D-49C9-BFD5-93AD53633496}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1 "{4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F}" = SAGEM F@st 800-840 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime "{81CD6232-10F5-4832-B3DA-1B88B1571045}" = Nero 7 Essentials "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90120000-00D1-0409-0000-0000000FF1CE}" = Microsoft Office Access database engine 2007 (English) "{94D66D71-12F0-48A5-B46A-D4B835A0F1B7}" = FirstSteps Diagnostics "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1045-7B44-A80000000000}" = Adobe Reader 8 - Polish "{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0 "{C82185E8-C27B-4EF4-2009-2222BC2C2B6D}" = Microsoft MapPoint Europe 2009 "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D0846526-66DD-4DC9-A02C-98F9A2806812}" = Launch Manager V1.4.9 "{D5068583-D569-468B-9755-5FBF5848F46F}" = Sony Picture Utility "{DA7684FA-7C03-42B1-8AA1-6052E475AEED}_is1" = NitroFx 3.2 "{DBA4DB9D-EE51-4944-A419-98AB1F1249C8}" = LiveUpdate Notice (Symantec Corporation) "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "866d52967205b177710c450f2f7eea49187731047" = Moja pierwsza niezwykła encyklopedia historii "BitComet" = BitComet 1.24 "FBDBServer_2_0_is1" = Firebird 2.0.3 "Google Chrome" = Google Chrome "HDMI" = Intel(R) Graphics Media Accelerator Driver "KLiteCodecPack_is1" = K-Lite Mega Codec Pack 1.16 "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.65.1.1000 "MaxUp Video Downloader_is1" = MaxUp Video Downloader 1.0 "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "My Free Mahjong_is1" = My Free Mahjong "NSS" = Norton Security Scan "Online TV Player 3_is1" = Online TV Player 5 "RealPlayer 15.0" = RealPlayer "SynTPDeinstKey" = Synaptics Pointing Device Driver "TTM70" = Talk to Me "WinRAR archiver" = WinRAR archiver [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1824532634-733924903-4071680558-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-11-21 12:09:14 | Computer Name = SKARB-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd cinemaplayer.exe, wersja 1.5.2.0, sygnatura czasowa 0x2a425e19, moduł powodujący błąd ff_libmad.dll, wersja 0.0.0.0, sygnatura czasowa 0x47541be7, kod wyjątku 0xc0000005, przesunięcie błędu 0x00003d45, identyfikator procesu 0xe9c, godzina rozpoczęcia aplikacji 0x01cdc80225e71760. Error - 2012-11-22 07:44:49 | Computer Name = SKARB-PC | Source = Application Error | ID = 1000 Error - 2012-11-23 04:09:11 | Computer Name = SKARB-PC | Source = WerSvc | ID = 5007 Description = Error - 2012-11-24 06:05:39 | Computer Name = SKARB-PC | Source = WerSvc | ID = 5007 Description = Error - 2012-11-24 06:13:26 | Computer Name = SKARB-PC | Source = Microsoft-Windows-CAPI2 | ID = 131083 Description = Error - 2012-11-24 06:17:45 | Computer Name = SKARB-PC | Source = Application Hang | ID = 1002 Description = Program RegCleanPro.exe w wersji 6.21.65.2191 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania raportami i rozwiązaniami problemów. Identyfikator procesu: db4 Godzina rozpoczęcia: 01cdca2a2fca7760 Godzina zakończenia: 33920 Error - 2012-11-24 06:37:27 | Computer Name = SKARB-PC | Source = WerSvc | ID = 5007 Description = Error - 2012-11-24 06:50:44 | Computer Name = SKARB-PC | Source = WerSvc | ID = 5007 Description = Error - 2012-11-24 07:17:09 | Computer Name = SKARB-PC | Source = WerSvc | ID = 5007 Description = Error - 2012-11-24 07:38:52 | Computer Name = SKARB-PC | Source = WerSvc | ID = 5007 Description = Error - 2012-11-24 08:09:43 | Computer Name = SKARB-PC | Source = Microsoft-Windows-CAPI2 | ID = 131083 Description = Error - 2012-11-24 08:10:09 | Computer Name = SKARB-PC | Source = Microsoft-Windows-CAPI2 | ID = 131083 Description = Error encountered while reading event logs. < End of report >