OTL Extras logfile created on: 2013-10-06 10:49:07 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Windows 7\Downloads Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16660) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,99 Gb Total Physical Memory | 1,33 Gb Available Physical Memory | 66,59% Memory free 3,98 Gb Paging File | 3,40 Gb Available in Paging File | 85,40% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 68,26 Gb Total Space | 33,93 Gb Free Space | 49,71% Space Free | Partition Type: NTFS Drive D: | 80,69 Gb Total Space | 75,09 Gb Free Space | 93,06% Space Free | Partition Type: NTFS Computer Name: WINDOWS7 | User Name: Windows 7 | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2367962612-3515411905-871642171-1001\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) http [open] -- Reg Error: Key error. https [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [[ Odkurz tutaj ]] -- C:\Program Files\Odkurzacz\odkurzacz.exe %1 (FranmoSoftware) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{1C33D2CC-6230-4C30-80D2-C3B8B136ACF7}" = rport=137 | protocol=17 | dir=out | app=system | "{2B93C955-C3AD-4A21-8BB1-37858E2C60A3}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{3743E61D-B93A-46BE-B844-AC21193139EC}" = rport=139 | protocol=6 | dir=out | app=system | "{3B03973E-51A2-46D8-B3C6-71CD44602AF8}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4162EAE3-FF41-4FD2-A232-FC8A05728BF6}" = lport=445 | protocol=6 | dir=in | app=system | "{52512005-2C93-4851-8EAC-DB53EE1D7085}" = lport=10243 | protocol=6 | dir=in | app=system | "{605C4401-4D5A-4051-A8C0-6691D0CD72A2}" = lport=138 | protocol=17 | dir=in | app=system | "{6C2DAF37-F711-432B-8E8A-782CE7101303}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{6C8594B8-9921-46DF-AD29-B0945DECB89A}" = lport=139 | protocol=6 | dir=in | app=system | "{7FF4238B-9E62-4072-9701-6BE885216AB7}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{894F9147-532D-4AB9-BADD-0CA7B7376D78}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{89EC2FE1-D106-472F-83DF-8CE2557D9C98}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{9C2E65C3-5392-410D-B9BC-0847FE84B243}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{A3AACA1C-C248-4D28-9630-0B193685F97E}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{AC569E0C-44E0-41A1-AA95-59127B40D786}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{AF045963-521C-42E9-9BED-34EC3090ACD4}" = lport=137 | protocol=17 | dir=in | app=system | "{B9BEA4AC-E1C5-4F50-9B6D-0B6145617E24}" = rport=10243 | protocol=6 | dir=out | app=system | "{E2115C6F-7107-4DA6-8A43-DCA24621229D}" = lport=2869 | protocol=6 | dir=in | app=system | "{E76E893B-4430-4CE7-9F0D-A4B4B386E317}" = rport=445 | protocol=6 | dir=out | app=system | "{FB0C193A-6BE1-4D65-9A1F-13F86FB66E18}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{FB5DE244-6ECC-4400-8382-13482C71725A}" = rport=138 | protocol=17 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{06D13164-72FA-46EC-96E7-8851AB142788}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{089A292A-7314-4B1A-AA85-D1F2A8FBC42F}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{193FEA73-79BD-4BD0-9D58-B7DB49473E26}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{1EF14F4A-B88D-4929-A081-D18289E5660A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{2915587F-F853-474D-8F9D-AD20433E91C0}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{2D9B9226-96BB-4704-BFE5-504CB98425F0}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{3F0F7C53-A398-4D6D-8B79-9A9C5D31F5E1}" = protocol=17 | dir=in | app=d:\riot games\league of legends\lol.launcher.admin.exe | "{40DBA037-9536-4364-A73F-F5F5D6771E60}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{4BBFED0B-156D-492A-B471-3046086AE5ED}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{4C826178-AD47-4230-A20E-66813457890A}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{5B48EC49-3D17-438E-B647-722BB876CF46}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{6378C547-FC74-4141-A985-B8B9FCDAF84B}" = protocol=6 | dir=in | app=c:\users\windows 7\appdata\roaming\utorrent\utorrent.exe | "{6B0E3B29-9591-4944-9B6B-2F2E5F69F687}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{8EF32BE4-5BD1-47F3-92C8-FF1440F521B5}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{9CD1C27D-38F1-4B8E-AAD0-1032728860CC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{9FB9CE7F-D270-4CED-BF55-444056CD3C7C}" = protocol=6 | dir=out | app=system | "{B48B5A49-2716-4662-83DC-828C597BAA83}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{CAD4E873-896B-46CB-8BB2-55CF0ACACAD0}" = protocol=17 | dir=in | app=c:\users\windows 7\appdata\roaming\utorrent\utorrent.exe | "{D6C52B73-DD69-4B25-9793-1AA851593571}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{E38963DC-9FC3-47A6-BE35-E0B2973B4320}" = protocol=6 | dir=in | app=d:\riot games\league of legends\lol.launcher.admin.exe | "{ED9A9962-ABB4-4B27-840B-0BA7ADF1AD7E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "TCP Query User{43911979-3EB2-4D4C-8676-F24F55772A2D}C:\windows\system32\rundll32.exe" = protocol=6 | dir=in | app=c:\windows\system32\rundll32.exe | "TCP Query User{76C5E983-97DC-4033-A867-A99C77159136}C:\windows\system32\rundll32.exe" = protocol=6 | dir=in | app=c:\windows\system32\rundll32.exe | "UDP Query User{4A823859-0D09-4BE6-B4DA-440A8A23DF90}C:\windows\system32\rundll32.exe" = protocol=17 | dir=in | app=c:\windows\system32\rundll32.exe | "UDP Query User{6B18E9DE-A6F6-479A-BC3A-182FBBEC271A}C:\windows\system32\rundll32.exe" = protocol=17 | dir=in | app=c:\windows\system32\rundll32.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1" = Core Temp 1.0 RC5 "{12688FD7-CB92-4A5B-BEE4-5C8E0574434F}" = Utility Common Driver "{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 25 "{37C866E4-AA67-4725-9E95-A39968DD7960}" = Camera Assistant Software for Toshiba "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.7 "{5DE67937-45D5-45E4-923C-0B7F7EC929A7}" = League of Legends "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8136 8168 8169 Ethernet Driver "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90850415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Word Viewer 2003 "{912A2205-1E54-3CE5-A1EB-997B64A0B539}" = Microsoft .NET Framework 4.5 PLK Language Pack "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Polski pakiet językowy dla programu Microsoft .NET Framework 4.5 PLK "{95120000-003F-0409-0000-0000000FF1CE}" = Microsoft Office Excel Viewer "{9F612429-4A00-3D44-88CF-146DA2EE1F92}" = Microsoft .NET Framework 4.5 "{A6690C0E-B96E-4F0F-A8EB-D5B332454AC6}" = TOSHIBA Controls "{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F3529665-D75E-4D6D-98F0-745C78C68E9B}" = TOSHIBA ConfigFree "{FEDD27A0-B306-45EF-BF58-B527406B42C8}" = TOSHIBA Value Added Package "84BA15BD1DFEAA8A233F801B29BDC48DEE17B71F" = Pakiet sterowników systemu Windows - Chicony (usbvideo) Image (05/12/2009 6.3.251.0512) "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 12.0 "bi_uninstaller" = Bundled software uninstaller "CCleaner" = CCleaner "DAEMON Tools Lite" = DAEMON Tools Lite "Defraggler" = Defraggler "facemoods" = facemoods "FastImageResizer" = FastImageResizer (remove only) "HDMI" = Intel(R) Graphics Media Accelerator Driver "InstallShield_{FEDD27A0-B306-45EF-BF58-B527406B42C8}" = TOSHIBA Value Added Package "JDownloader" = JDownloader "jdownloader2" = JDownloader 2 "League of Legends 3.0.1" = League of Legends "LTMOH" = LSI V92 MOH Application "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.75.0.1300 "Mount&Blade Warband" = Mount&Blade Warband "Mozilla Firefox 24.0 (x86 pl)" = Mozilla Firefox 24.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "Odkurzacz 13.4_is1" = Odkurzacz "PhotoScape" = PhotoScape "Picasa 3" = Picasa 3 "SynTPDeinstKey" = Synaptics Pointing Device Driver "TeamSpeak 3 Client" = TeamSpeak 3 Client "The KMPlayer" = The KMPlayer (remove only) "TOSHIBA Software Modem" = TOSHIBA Software Modem "TVWiz" = Intel(R) TV Wizard "Unlocker" = Unlocker 1.9.2 "WebConnect" = WebConnect 3.0.0 "WinRAR archiver" = WinRAR 4.20 (32-bitowy) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2367962612-3515411905-871642171-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "GG" = GG "Search Protection" = Search Protection "uTorrent" = µTorrent "uTorrent Packages" = uTorrent Packages [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-10-05 17:15:05 | Computer Name = WINDOWS7 | Source = Application Error | ID = 1005 Description = System Windows nie może uzyskać dostępu do pliku C:\Windows\System32\msvcrt.dll z jednej z następujących przyczyn: problem z połączeniem sieciowym; problem z dyskiem, na którym jest przechowywany plik; problem ze sterownikami magazynu zainstalowanymi na tym komputerze; brak dysku. System Windows zamknął program Proces hosta dla usług systemu Windows z powodu tego błędu. Program: Proces hosta dla usług systemu Windows Plik: C:\Windows\System32\msvcrt.dll Wartość błędu jest wyświetlona w sekcji Dodatkowe dane. Akcja użytkownika 1. Otwórz plik ponownie. Ta sytuacja może być przejściowym problemem, który sam się rozwiąże po ponownym uruchomieniu programu. 2. Jeśli nadal nie można uzyskać dostępu do pliku i - jest w sieci, administrator sieci powinien sprawdzić, czy nie ma problemu z siecią i czy można skontaktować się z serwerem. - jest na dysku wymiennym, na przykład dyskietce lub dysku CD-ROM, sprawdź, czy cały dysk jest włożony do komputera. 3. Sprawdź i napraw system plików, uruchamiając program CHKDSK. Aby uruchomić program CHKDSK, kliknij przycisk Start, kliknij polecenie Uruchom, wpisz polecenie CMD, a następnie kliknij przycisk OK. W wierszu polecenia wpisz polecenie CHKDSK /F, a następnie naciśnij klawisz ENTER. 4. Jeżeli problem nie ustąpi, przywróć plik z kopii zapasowej. 5. Ustal, czy można otworzyć inne pliki na tym samym dysku. Jeśli nie, dysk może być uszkodzony. Jeśli jest to dysk twardy, skontaktuj się z administratorem komputera lub dostawcą sprzętu komputerowego, aby uzyskać dalszą pomoc. Dodatkowe dane Wartość błędu: C0000185 Typ dysku: 3 Error - 2013-10-05 17:15:14 | Computer Name = Windows7 | Source = VSS | ID = 13 Description = Error - 2013-10-05 17:15:14 | Computer Name = Windows7 | Source = VSS | ID = 8193 Description = Error - 2013-10-05 17:15:14 | Computer Name = Windows7 | Source = Microsoft-Windows-CAPI2 | ID = 512 Description = Zainicjowanie obiektu System Writer kopii zapasowej VSS przez Usługi kryptograficzne nie powiodło się. Details: System Writer object failed to subscribe to VSS. System Error: 0x80042302 (unresolvable). Error - 2013-10-05 17:16:18 | Computer Name = Windows7 | Source = WinMgmt | ID = 10 Description = Error - 2013-10-05 23:03:00 | Computer Name = Windows7 | Source = WinMgmt | ID = 10 Description = Error - 2013-10-05 23:31:17 | Computer Name = Windows7 | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files\camera assistant software for toshiba\drivers\Vista\64bit\DPInst.exe". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-10-05 23:31:17 | Computer Name = Windows7 | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files\camera assistant software for toshiba\drivers\Win7\64bit\DPInst.exe". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-10-05 23:31:18 | Computer Name = Windows7 | Source = SideBySide | ID = 16842785 Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files\camera assistant software for toshiba\drivers\XP\x64\DPInst.exe". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error - 2013-10-06 04:16:37 | Computer Name = Windows7 | Source = Microsoft-Windows-CAPI2 | ID = 512 Description = Zainicjowanie obiektu System Writer kopii zapasowej VSS przez Usługi kryptograficzne nie powiodło się. Details: Could not query the status of the EventSystem service. System Error: Trwa proces zamykania systemu. . Error encountered while reading event logs. < End of report >