OTL Extras logfile created on: 11-01-02 13:27:13 - Run 13 OTL by OldTimer - Version 3.2.20.0 Folder = C:\ Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yy-MM-dd 255,00 Mb Total Physical Memory | 101,00 Mb Available Physical Memory | 39,00% Memory free 938,00 Mb Paging File | 769,00 Mb Available in Paging File | 82,00% Paging File free Paging file location(s): C:\pagefile.sys 704 768 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 14,66 Gb Total Space | 0,49 Gb Free Space | 3,33% Space Free | Partition Type: FAT32 Drive D: | 3,97 Gb Total Space | 0,29 Gb Free Space | 7,37% Space Free | Partition Type: NTFS Computer Name: TRAXTER-EBE67FC | User Name: Admin | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software) [HKEY_USERS\S-1-5-21-1957994488-299502267-725345543-1007\SOFTWARE\Classes\] .html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* htmlfile [edit] -- Reg Error: Key error. http [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Przeglądaj w XnView] -- "C:\Program Files\XnView\xnview.exe" "%1" (XnView, http://www.xnview.com) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr] "Start" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService] "Start" = 2 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\Nowe Gadu-Gadu\gg.exe" = C:\Program Files\Nowe Gadu-Gadu\gg.exe:*:Enabled:Nowe Gadu-Gadu -- File not found "C:\WINDOWS\System32\usmt\migwiz.exe" = C:\WINDOWS\System32\usmt\migwiz.exe:*:Enabled:Kreator transferu plików i ustawień -- (Microsoft Corporation) "C:\Program Files\Gadu-Gadu 10\gg.exe" = C:\Program Files\Gadu-Gadu 10\gg.exe:*:Disabled:Gadu-Gadu 10 -- (GG Network S.A.) "C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software) "D:\WinSCPPortable\App\winscp\WinSCP.exe" = D:\WinSCPPortable\App\winscp\WinSCP.exe:*:Enabled:SFTP, FTP and SCP client -- File not found [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 "{1350C638-BE69-4DF1-85BC-E05B450A0039}" = Cameyo "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83216023FF}" = Java(TM) 6 Update 23 "{2AFF2951-86B1-3C53-B34D-B440F11E7D0A}" = Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - PLK "{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{5A0DDC27-88E5-3CAD-BC3D-28FFD05CA6B9}" = Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - PLK "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D5A6D02F-3CBB-4FBF-8F65-C3A6D721E8A4}" = OpenOffice.org 3.2 "{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX "{FEB2D0CA-9912-4AA1-8FBE-CFD852F9F1FC}" = Panda Cloud Antivirus "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "7-Zip" = 7-Zip 9.20 "AC3Filter_is1" = AC3Filter 1.63b "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.5 "AIMP2" = AIMP2 "ATI Display Driver" = ATI Display Driver "ChomikBox" = ChomikBox "Free Download Manager_is1" = Free Download Manager 3.0 "Gadu-Gadu 10" = Gadu-Gadu 10 "GOM Player" = GOM Player "hp deskjet 840c series" = hp deskjet 840c series (Tylko usuń) "hp deskjet 840c series_Driver" = hp deskjet 840c series "ie8" = Windows Internet Explorer 8 "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "MPEG2 Codec(libmpeg2/mad)" = MPEG2 Codec(libmpeg2/mad) "Opera 11.00.1156" = Opera 11.00 "Panda Cloud Antivirus" = Panda Cloud Antivirus "Rainlendar" = Rainlendar (remove only) "RealAlt_is1" = Real Alternative 2.0.2 Lite "Sandboxie" = Sandboxie 3.50 "Windows Media Format Runtime" = Windows Media Format 11 runtime "Windows Media Player" = Windows Media Player 11 "WMFDist11" = Windows Media Format 11 runtime "wmp11" = Windows Media Player 11 "XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0 [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 10-11-20 06:07:24 | Computer Name = TRAXTER-EBE67FC | Source = MsiInstaller | ID = 10005 Description = Produkt: Microsoft .NET Framework 3.0 Service Pack 2 -- Błąd 2004. Method SHGetFolderPath failed. HRESULT: 0x80004005. Error - 10-11-20 06:07:24 | Computer Name = TRAXTER-EBE67FC | Source = MsiInstaller | ID = 10005 Description = Produkt: Microsoft .NET Framework 3.0 Service Pack 2 -- Błąd 2004. Method GetFontCacheDataFolder failed. HRESULT: 0x80004005. Error - 10-11-20 06:43:40 | Computer Name = TRAXTER-EBE67FC | Source = MsiInstaller | ID = 10005 Description = Produkt: Microsoft .NET Framework 3.0 Service Pack 2 -- Błąd 2004. Method SHGetFolderPath failed. HRESULT: 0x80004005. Error - 10-11-20 06:43:41 | Computer Name = TRAXTER-EBE67FC | Source = MsiInstaller | ID = 10005 Description = Produkt: Microsoft .NET Framework 3.0 Service Pack 2 -- Błąd 2004. Method GetFontCacheDataFolder failed. HRESULT: 0x80004005. Error - 10-11-27 11:40:44 | Computer Name = TRAXTER-EBE67FC | Source = PerfNet | ID = 2004 Description = Nie można otworzyć usługi Server. Dane wydajności usługi Server nie zostaną zwrócone. Zwrócony kod stanu to dane DWORD 0. Error - 10-11-27 15:34:52 | Computer Name = TRAXTER-EBE67FC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd gom.exe, wersja 2.1.28.5039, moduł powodujący błąd realmediasplitter.ax, wersja 1.3.1572.0, adres błędu 0x00005a21. Error - 10-12-05 04:02:11 | Computer Name = TRAXTER-EBE67FC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd truetransparency.exe, wersja 1.4.1.189, moduł powodujący błąd truetransparency.exe, wersja 1.4.1.189, adres błędu 0x0000e730. Error - 10-12-12 05:59:58 | Computer Name = TRAXTER-EBE67FC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd start.exe, wersja 2.5.0.0, moduł powodujący błąd unknown, wersja 0.0.0.0, adres błędu 0x00000000. Error - 10-12-12 10:23:48 | Computer Name = TRAXTER-EBE67FC | Source = MsiInstaller | ID = 10005 Description = Product: Adobe Reader X -- You do not have sufficient privileges to complete this installation for all users of the machine. Log on as an administrator and then retry this installation. Error - 10-12-13 15:17:38 | Computer Name = TRAXTER-EBE67FC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd gom.exe, wersja 2.1.28.5039, moduł powodujący błąd realmediasplitter.ax, wersja 1.3.1572.0, adres błędu 0x00005a21. [ System Events ] Error - 10-12-26 02:21:40 | Computer Name = TRAXTER-EBE67FC | Source = Dhcp | ID = 1000 Description = Komputer utracił połączenie dla swojego adresu IP 77.252.58.19 na karcie sieciowej o adresie sieciowym 0008741B95D9. Error - 10-12-27 04:41:33 | Computer Name = TRAXTER-EBE67FC | Source = Dhcp | ID = 1000 Description = Komputer utracił połączenie dla swojego adresu IP 77.252.58.19 na karcie sieciowej o adresie sieciowym 0008741B95D9. Error - 10-12-29 04:21:45 | Computer Name = TRAXTER-EBE67FC | Source = Dhcp | ID = 1000 Description = Komputer utracił połączenie dla swojego adresu IP 77.252.58.19 na karcie sieciowej o adresie sieciowym 0008741B95D9. Error - 10-12-30 11:07:27 | Computer Name = TRAXTER-EBE67FC | Source = Service Control Manager | ID = 7011 Description = Limit czasu (30000 milisekund) podczas oczekiwania na odpowiedź transakcji z usługi NanoServiceMain. Error - 10-12-31 04:17:34 | Computer Name = TRAXTER-EBE67FC | Source = Dhcp | ID = 1000 Description = Komputer utracił połączenie dla swojego adresu IP 77.252.58.19 na karcie sieciowej o adresie sieciowym 0008741B95D9. Error - 11-01-01 05:20:16 | Computer Name = TRAXTER-EBE67FC | Source = Service Control Manager | ID = 7022 Description = Usługa Panda Cloud Antivirus Service zawiesiła się podczas uruchamiania. Error - 11-01-01 10:43:18 | Computer Name = TRAXTER-EBE67FC | Source = DCOM | ID = 10005 Description = Model DCOM odebrał błąd „%1058” podczas próby uruchomienia usługi helpsvc z argumentami „” w celu uruchomienia serwera: {833E4010-AFF7-4AC3-AAC2-9F24C1457BCE} Error - 11-01-01 10:49:12 | Computer Name = TRAXTER-EBE67FC | Source = Service Control Manager | ID = 7034 Description = Usługa Sandboxie Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 11-01-01 10:49:17 | Computer Name = TRAXTER-EBE67FC | Source = Service Control Manager | ID = 7031 Description = Usługa Panda Cloud Antivirus Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error - 11-01-01 11:07:27 | Computer Name = TRAXTER-EBE67FC | Source = Service Control Manager | ID = 7022 Description = Usługa Panda Cloud Antivirus Service zawiesiła się podczas uruchamiania. < End of report >