OTL Extras logfile created on: 2012-11-29 12:38:15 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = D:\ 64bit-Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation Internet Explorer (Version = 7.0.6001.18000) Locale: 00000415 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd 3,90 Gb Total Physical Memory | 2,45 Gb Available Physical Memory | 62,74% Memory free 7,98 Gb Paging File | 6,41 Gb Available in Paging File | 80,32% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 283,09 Gb Total Space | 198,66 Gb Free Space | 70,18% Space Free | Partition Type: NTFS Drive D: | 1,95 Gb Total Space | 1,95 Gb Free Space | 99,94% Space Free | Partition Type: FAT Computer Name: STANLEY | User Name: s | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l [HKEY_USERS\S-1-5-21-2200192804-83013167-2968474413-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "oobe_av" = 1 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{CD83583C-95FB-457D-BA1D-BF5FB48F3100}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | "{F3CAF33A-48A9-4F53-A33A-CC4A66BC1E0C}" = lport=2869 | protocol=6 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{5740EB9B-F4A9-46E9-B554-D32B35F92267}" = dir=in | app=c:\program files (x86)\windows live\messenger\wlcsdk.exe | "{705FA95F-058B-47D4-8C3E-5BA0FFEDF226}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | "{872232F6-CFA2-4EB6-B498-9361B03BCD39}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{8CA94067-1E14-4529-A1E2-074B91ADA3E7}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd\powerdvd.exe | "{A4313C74-579B-48E8-9C63-0396E8CE4DB7}" = dir=in | app=c:\program files (x86)\windows live\sync\windowslivesync.exe | "{B99C7C8A-276B-4685-83D2-8331A574919D}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{BA7ECD96-001F-4D34-B797-7383F3EA7AF3}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{EAB008E3-2AF0-418C-B4FA-E43E4DD54886}" = dir=in | app=c:\program files (x86)\acer\acer vcm\vc.exe | "{F748CFE9-3145-46A2-B076-FA26000891E7}" = dir=in | app=c:\program files (x86)\acer\acer vcm\rs_service.exe | "TCP Query User{19307395-DB4B-42E0-B66A-D5A68F979351}C:\users\s\appdata\roaming\sonio\iknia.exe" = protocol=6 | dir=in | app=c:\users\s\appdata\roaming\sonio\iknia.exe | "TCP Query User{48681EE5-9657-484D-8086-33243082F307}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe | "TCP Query User{C09CC468-75A2-4EFB-811A-E5A7FE93859D}C:\users\s\appdata\roaming\mjusbsp\magicjack.exe" = protocol=6 | dir=in | app=c:\users\s\appdata\roaming\mjusbsp\magicjack.exe | "UDP Query User{468AE56D-26E7-47CF-9DEE-54F842E1A692}C:\users\s\appdata\roaming\sonio\iknia.exe" = protocol=17 | dir=in | app=c:\users\s\appdata\roaming\sonio\iknia.exe | "UDP Query User{769E0938-9B66-43EF-8CC7-DFF19E81DF5F}C:\users\s\appdata\roaming\mjusbsp\magicjack.exe" = protocol=17 | dir=in | app=c:\users\s\appdata\roaming\mjusbsp\magicjack.exe | "UDP Query User{93A57367-1E20-4E18-B193-545BDFB13F33}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR "{020D8396-D6D9-4B53-A9A1-83C47E2E27AA}" = Windows Live Call "{047F790A-7A2A-4B6A-AD02-38092BA63DAC}" = Acer VCM "{0AAA9C97-74D4-47CE-B089-0B147EF3553C}" = Windows Live Messenger "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{3DB0448D-AD82-4923-B305-D001E521A964}" = Acer PowerSmart Manager "{4AB8B41B-3AF1-46BE-99B0-0ACD3B300C0A}" = Junk Mail filter update "{505DF7A3-88D5-4DD6-9AD5-C98C2ED0CEC4}" = Windows Live Sign-in Assistant "{5B63A470-9334-44D1-AF61-6CE2DB565AE9}" = Orion "{63C1109E-D977-49ED-BCE3-D00D0BF187D6}" = Windows Live Mail "{67E03279-F703-408F-B4BF-46B5FC8D70CD}" = Microsoft Works "{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD "{68301905-2DEA-41CE-A4D4-E8B443B099BA}" = MyWinLocker "{6A92E5C5-0578-443D-91F3-92ECE5F2CAE2}" = Windows Live Writer "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{72B776E5-4530-4C4B-9453-751DF87D9D93}" = Backup Manager Basic "{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com "{7F811A54-5A09-4579-90E1-C93498E230D9}" = Acer eRecovery Management "{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}" = Choice Guard "{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007 "{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007 "{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007 "{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{3EC77D26-799B-4CD8-914F-C1565E796173}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{430971B1-C31E-45DA-81E0-72C095BAB72C}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007 "{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{F7A31780-33C4-4E39-951A-5EC9B91D7BF1}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system "{90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{00C5525B-3CB3-467D-8100-2E6FB306CD86}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-002A-0409-1000-0000000FF1CE}_HOMESTUDENTR_{FAD8A83E-9BAC-4179-9268-A35948034D85}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007 "{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007 "{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{FAD8A83E-9BAC-4179-9268-A35948034D85}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007 "{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007 "{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{FAD8A83E-9BAC-4179-9268-A35948034D85}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0116-0409-1000-0000000FF1CE}_HOMESTUDENTR_{FAD8A83E-9BAC-4179-9268-A35948034D85}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007 "{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{BEE75E01-DD3F-4D5F-B96C-609E6538D419}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English) "{9ED3C484-D002-4D4D-9BF3-C3DF9048EE7D}" = StuffIt 12 "{A77255C4-AFCB-44A3-BF0F-2091A71FFD9E}" = Acer Crystal Eye Webcam "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1033-7B44-A90000000001}" = Adobe Reader 9 "{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{D9D754A1-EAC5-406C-A28B-C49B1E846711}" = Windows Live Essentials "{DC24971E-1946-445D-8A82-CE685433FA7D}" = Realtek USB 2.0 Card Reader "{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}" = Microsoft Office Suite Activation Assistant "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.9 "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F69E83CF-B440-43F8-89E6-6EA80712109B}" = Windows Live Communications Platform "{F73A5B18-EB75-4B2C-B32D-9457576E2417}" = Windows Live Photo Gallery "{FDD810CA-D5E3-40E9-AB7B-36440B0D41EF}" = Windows Live Sync "Acer Assist" = Acer Assist "Acer Registration" = Acer Registration "Acer Screensaver" = Acer ScreenSaver "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com "GridVista" = GridVista "HOMESTUDENTR" = Microsoft Office Home and Student 2007 "InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93}" = Acer Backup Manager "LManager" = Launch Manager "Mozilla Firefox 15.0 (x86 pl)" = Mozilla Firefox 15.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "WinLiveSuite_Wave3" = Windows Live Essentials [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2200192804-83013167-2968474413-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Mozilla Firefox 15.0.1 (x86 pl)" = Mozilla Firefox 15.0.1 (x86 pl) [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-05-31 09:47:35 | Computer Name = STANLEY | Source = Windows Search Service | ID = 3013 Description = Error - 2012-05-31 09:47:35 | Computer Name = STANLEY | Source = Windows Search Service | ID = 3013 Description = Error - 2012-05-31 09:47:35 | Computer Name = STANLEY | Source = Windows Search Service | ID = 3013 Description = Error - 2012-05-31 09:47:36 | Computer Name = STANLEY | Source = Windows Search Service | ID = 3013 Description = Error - 2012-05-31 09:47:36 | Computer Name = STANLEY | Source = Windows Search Service | ID = 3013 Description = Error - 2012-06-01 03:27:25 | Computer Name = STANLEY | Source = WinMgmt | ID = 10 Description = Error - 2012-06-01 03:30:09 | Computer Name = STANLEY | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Windows\Installer\{67E03279-F703-408F-B4BF-46B5FC8D70CD}\WksCal.exe". Dependent Assembly msadctls,processorArchitecture="x86",type="win32",version="1.0.1801.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 2012-06-01 03:30:09 | Computer Name = STANLEY | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Windows\Installer\{67E03279-F703-408F-B4BF-46B5FC8D70CD}\wksdb.exe". Dependent Assembly msadctls,processorArchitecture="x86",type="win32",version="1.0.1801.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 2012-06-01 03:30:09 | Computer Name = STANLEY | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Windows\Installer\{67E03279-F703-408F-B4BF-46B5FC8D70CD}\wksss.exe". Dependent Assembly msadctls,processorArchitecture="x86",type="win32",version="1.0.1801.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 2012-06-01 03:30:09 | Computer Name = STANLEY | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Windows\Installer\{67E03279-F703-408F-B4BF-46B5FC8D70CD}\WksWP.exe". Dependent Assembly msadctls,processorArchitecture="x86",type="win32",version="1.0.1801.0" could not be found. Please use sxstrace.exe for detailed diagnosis. [ System Events ] Error - 2009-06-29 19:21:35 | Computer Name = STANLEY | Source = EventLog | ID = 6008 Description = The previous system shutdown at 6:14:59 PM on 6/29/2009 was unexpected. Error - 2009-06-29 19:21:37 | Computer Name = STANLEY | Source = HTTP | ID = 15016 Description = Error - 2009-06-29 23:15:18 | Computer Name = STANLEY | Source = HTTP | ID = 15016 Description = Error - 2009-06-30 13:06:14 | Computer Name = STANLEY | Source = HTTP | ID = 15016 Description = Error - 2009-06-30 15:44:00 | Computer Name = STANLEY | Source = HTTP | ID = 15016 Description = Error - 2009-07-01 16:19:53 | Computer Name = STANLEY | Source = HTTP | ID = 15016 Description = Error - 2009-07-01 19:37:09 | Computer Name = STANLEY | Source = HTTP | ID = 15016 Description = Error - 2009-07-01 23:25:30 | Computer Name = STANLEY | Source = HTTP | ID = 15016 Description = Error - 2009-07-02 13:37:51 | Computer Name = STANLEY | Source = HTTP | ID = 15016 Description = Error - 2009-07-02 23:39:47 | Computer Name = STANLEY | Source = EventLog | ID = 6008 Description = The previous system shutdown at 12:41:40 PM on 7/2/2009 was unexpected. < End of report >