OTL Extras logfile created on: 2013-11-03 13:57:35 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jakub\Downloads Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16721) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,03 Gb Available Physical Memory | 51,32% Memory free 4,00 Gb Paging File | 2,54 Gb Available in Paging File | 63,51% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 80,44 Gb Total Space | 53,01 Gb Free Space | 65,90% Space Free | Partition Type: NTFS Drive D: | 152,34 Gb Total Space | 50,24 Gb Free Space | 32,98% Space Free | Partition Type: NTFS Drive F: | 931,48 Gb Total Space | 522,92 Gb Free Space | 56,14% Space Free | Partition Type: NTFS Computer Name: JAKUB-KOMPUTER | User Name: Jakub | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2688773689-1415993320-211456013-1000\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0079F07C-FB0E-4A06-BF5D-FC2D22B30F53}" = rport=138 | protocol=17 | dir=out | app=system | "{133B1213-707D-4CCF-8F77-47C4C5E9A0DC}" = lport=139 | protocol=6 | dir=in | app=system | "{19145228-BA7B-4778-8845-9B4244B963D0}" = lport=137 | protocol=17 | dir=in | app=system | "{2E5A0E2B-6986-4ADC-AF6E-E7A3FF328FEC}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{7164CC3F-4160-45BD-BC30-8A3F859E439E}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{84252FD2-5E96-47E8-A8C6-D12C7139AC5F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{90BBD601-F73B-4831-A6AB-9A999B8DC570}" = rport=137 | protocol=17 | dir=out | app=system | "{BCC03DFC-508D-462F-90E6-C3D9F853A8C3}" = lport=138 | protocol=17 | dir=in | app=system | "{C48F19BC-D65E-4BAD-B44A-BAD4590D3231}" = rport=445 | protocol=6 | dir=out | app=system | "{CA3125EC-C92B-41F5-959D-84433B2E4B8D}" = rport=139 | protocol=6 | dir=out | app=system | "{EF354720-77F2-4704-8FF7-460A655651C0}" = lport=445 | protocol=6 | dir=in | app=system | "{F3FDC77A-2D1F-4AE8-A438-3BA0580F48B4}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0A978428-4E1A-4FE3-892D-F1523254CDAD}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{0FE74E91-6EBB-440A-994A-1ECAD07749FA}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{109599FF-B9CC-4CF9-8AB4-4623FA63CAFB}" = protocol=17 | dir=in | app=d:\gry\steam\steam.exe | "{32569200-1C2B-4233-889C-9A3B0F5AA4BD}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{3F9F9F5D-C54D-43D5-A073-43738E865F16}" = protocol=6 | dir=in | app=c:\programdata\esafe\egdpsvc.exe | "{81EEC80F-F392-4625-81C7-DD1AD4D0597C}" = protocol=17 | dir=in | app=c:\users\jakub\desktop\utorrent.exe | "{AC91F2C9-A362-4DF6-B149-C2CAAADF1138}" = protocol=6 | dir=in | app=d:\gry\steam\steamapps\common\half-life\hl.exe | "{B5371F50-24B7-459C-8FE4-50E5ABE768C2}" = protocol=17 | dir=in | app=d:\gry\steam\steamapps\common\half-life\hl.exe | "{BDE98A75-6D3A-49A2-8AD2-99D38D24C57C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{CFAF39BC-D80E-422B-937D-A3E079977ADB}" = protocol=6 | dir=in | app=c:\users\jakub\desktop\utorrent.exe | "{D805A3F0-1B3B-4736-8170-916D8CAD8573}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{E1522419-F728-44D1-8059-488434BCD20C}" = protocol=6 | dir=in | app=d:\gry\steam\steam.exe | "{E7C8B80E-53E1-4C7B-8D15-125DE899E4F3}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{F653B487-65D7-4E97-B899-CF2AA4221B80}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "TCP Query User{2CE697D5-DD4B-406C-AE4F-A828EBEF2EA2}C:\program files\mirc\mirc.exe" = protocol=6 | dir=in | app=c:\program files\mirc\mirc.exe | "TCP Query User{F0FAE0D6-B5B2-4742-9AB2-9A10B80DBA95}C:\users\jakub\appdata\local\jdownloader 2.0\jdownloader2.exe" = protocol=6 | dir=in | app=c:\users\jakub\appdata\local\jdownloader 2.0\jdownloader2.exe | "UDP Query User{AFF027FD-B12C-4211-A6A0-04220501961A}C:\users\jakub\appdata\local\jdownloader 2.0\jdownloader2.exe" = protocol=17 | dir=in | app=c:\users\jakub\appdata\local\jdownloader 2.0\jdownloader2.exe | "UDP Query User{BF565F2E-1DF1-4F66-9F75-0FB6F3CB6C1D}C:\program files\mirc\mirc.exe" = protocol=17 | dir=in | app=c:\program files\mirc\mirc.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{7B5AA67E-FEA0-40BB-BAB5-CA56645A589C}" = NVIDIA PhysX "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 331.58 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 331.58 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 331.58 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 331.58 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.13.0725 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Avast" = avast! Free Antivirus "CWK" = CWK (Czasowy Wyłącznik Komputera) "FileZilla Client" = FileZilla Client 3.7.3 "foobar2000" = foobar2000 v1.2.9 "Google Chrome" = Google Chrome "jdownloader2" = JDownloader 2.0 "KLiteCodecPack_is1" = K-Lite Mega Codec Pack 10.1.0 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "mIRC" = mIRC "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Steam App 10" = Counter-Strike "TeamSpeak 3 Client" = TeamSpeak 3 Client "WinRAR archiver" = WinRAR 4.20 (32-bitowy) "WsysControl" = Wsys Control 10.2.1.2634 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2688773689-1415993320-211456013-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2013-10-26 15:47:11 | Computer Name = Jakub-Komputer | Source = VSS | ID = 8194 Description = Error - 2013-10-26 16:05:40 | Computer Name = Jakub-Komputer | Source = VSS | ID = 8194 Description = Error - 2013-10-26 16:16:24 | Computer Name = Jakub-Komputer | Source = VSS | ID = 8194 Description = Error - 2013-10-28 15:49:02 | Computer Name = Jakub-Komputer | Source = ESENT | ID = 215 Description = WinMail (2296) WindowsMail0: Tworzenie kopii zapasowej zostało zatrzymane, ponieważ zostało przerwane przez klienta lub nie można nawiązać połączenia z klientem. Error - 2013-11-01 12:08:53 | Computer Name = Jakub-Komputer | Source = Application Hang | ID = 1002 Description = Program uTorrent.exe w wersji 3.3.2.30260 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: dc4 Godzina rozpoczęcia: 01ced71c6694ff51 Godzina zakończenia: 12 Ścieżka aplikacji: C:\Users\Jakub\AppData\Roaming\uTorrent\uTorrent.exe Identyfikator raportu: e4cb5aea-430f-11e3-9223-0018f3120149 Error - 2013-11-02 17:48:56 | Computer Name = Jakub-Komputer | Source = VSS | ID = 8194 Description = Error - 2013-11-02 17:48:59 | Computer Name = Jakub-Komputer | Source = Microsoft-Windows-CAPI2 | ID = 513 Description = Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddLegacyDriverFiles: Unable to back up image of binary zabcophe. System Error: Nie można odnaleźć określonego pliku. . [ System Events ] Error - 2013-11-02 19:24:25 | Computer Name = Jakub-Komputer | Source = Schannel | ID = 36888 Description = Został wygenerowany następujący alert krytyczny: 10. Stan błędu wewnętrznego: 10. Error - 2013-11-02 19:34:30 | Computer Name = Jakub-Komputer | Source = Schannel | ID = 36888 Description = Został wygenerowany następujący alert krytyczny: 10. Stan błędu wewnętrznego: 10. Error - 2013-11-02 19:39:24 | Computer Name = Jakub-Komputer | Source = Schannel | ID = 36888 Description = Został wygenerowany następujący alert krytyczny: 10. Stan błędu wewnętrznego: 10. Error - 2013-11-02 19:44:20 | Computer Name = Jakub-Komputer | Source = Schannel | ID = 36888 Description = Został wygenerowany następujący alert krytyczny: 10. Stan błędu wewnętrznego: 10. Error - 2013-11-02 19:49:14 | Computer Name = Jakub-Komputer | Source = Schannel | ID = 36888 Description = Został wygenerowany następujący alert krytyczny: 10. Stan błędu wewnętrznego: 10. Error - 2013-11-02 19:54:10 | Computer Name = Jakub-Komputer | Source = Schannel | ID = 36888 Description = Został wygenerowany następujący alert krytyczny: 10. Stan błędu wewnętrznego: 10. Error - 2013-11-02 19:59:07 | Computer Name = Jakub-Komputer | Source = Schannel | ID = 36888 Description = Został wygenerowany następujący alert krytyczny: 10. Stan błędu wewnętrznego: 10. Error - 2013-11-03 06:36:48 | Computer Name = Jakub-Komputer | Source = volmgr | ID = 262190 Description = Inicjowanie zrzutu awaryjnego nie powiodło się! Error - 2013-11-03 06:38:45 | Computer Name = Jakub-Komputer | Source = Service Control Manager | ID = 7022 Description = Usługa Wsys Service zawiesiła się podczas uruchamiania. Error - 2013-11-03 08:20:48 | Computer Name = Jakub-Komputer | Source = Service Control Manager | ID = 7022 Description = Usługa Wsys Service zawiesiła się podczas uruchamiania. < End of report >