OTL Extras logfile created on: 2011-03-20 14:01:15 - Run 1 OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\Astarte\Downloads Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 7.0.6002.18005) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 49,00% Memory free 4,00 Gb Paging File | 3,00 Gb Available in Paging File | 73,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 34,53 Gb Total Space | 9,31 Gb Free Space | 26,95% Space Free | Partition Type: NTFS Drive D: | 40,00 Gb Total Space | 34,74 Gb Free Space | 86,84% Space Free | Partition Type: NTFS Computer Name: ASTARTE-PC | User Name: Astarte | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l [HKEY_USERS\S-1-5-21-967483246-3647120130-2549766778-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{5610F68E-9306-45B0-9168-235807F8CB4F}" = lport=990 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{58823965-9FBC-4701-8E51-429B7E7A54FC}" = lport=990 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{7233CA7D-5DDC-47E6-81D8-DCE19B1088D2}" = rport=5679 | protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | "{9031CA2D-1D48-4C5C-B801-2B114918BD49}" = rport=5679 | protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{22D61A55-E379-454C-AA02-CC94D31514E1}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgnsx.exe | "{47BB7528-44E3-4749-9EF9-1BE4EA36B6DA}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgmfapx.exe | "{4D677390-6DAE-49CC-A286-0E8DDE7AC079}" = protocol=6 | dir=in | app=c:\windows\system32\muzapp.exe | "{9D8C1359-D788-4314-9943-43469EAEDD04}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgemcx.exe | "{B105755D-162F-45B9-8A16-1DB83F888973}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgmfapx.exe | "{DE3E6B91-7310-4F21-88EA-00193FCE94BF}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgemcx.exe | "{EECF52FB-7FF0-43C6-A9C8-DA573645D4CE}" = protocol=17 | dir=in | app=c:\windows\system32\muzapp.exe | "{F982F081-0740-49D5-9752-9EEFA09ACCE0}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgnsx.exe | "TCP Query User{EA7F87C8-FFDF-490B-BD0D-F008064E1CA4}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "UDP Query User{60DD97E4-BF92-4F69-96AD-E81F748E4D6E}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83216012FF}" = Java(TM) 6 Update 24 "{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Program instalacyjny klienta Atheros "{2E47302B-8081-46D3-9FEA-BEB2E5F5C3EC}" = RICOH R5C832/843 Flash Media Driver Ver.1.01.10 "{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{34610DE0-3C13-42CA-8E32-01FFA38AB6E8}" = PC Connectivity Solution "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "{91120415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Standard Edition 2003 "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{A276502A-8979-44FB-8090-90CF72F22ABC}" = AVG 2011 "{AC76BA86-7AD7-1045-7B44-A94000000001}" = Adobe Reader 9.4.2 - Polish "{C63E7C60-25EB-11D3-8EDA-00A0C911E8E5}" = Microsoft Outlook Personal Folders Backup "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones "{E35AF511-B618-4D02-B559-0F2147341D3B}" = AVG 2011 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "504244733D18C8F63FF584AEB290E3904E791693" = Pakiet sterowników systemu Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0) "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Agere Systems Soft Modem" = Agere Systems HDA Modem "All ATI Software" = Narzędzie Software Uninstall Utility firmy ATI "AVG" = AVG 2011 "FileZilla Client" = FileZilla Client 3.3.5.1 "InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "IrfanView" = IrfanView (remove only) "KLiteCodecPack_is1" = K-Lite Codec Pack 7.0.0 (Full) "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Mozilla Firefox (3.6.15)" = Mozilla Firefox (3.6.15) "NapiProjekt_is1" = NapiProjekt 1.0.6.9 "PS3 Media Server" = PS3 Media Server "SubEdit - Vista WMP Patch_is1" = SubEdit - Vista WMP Patch "SubEdit-Player_is1" = SubEdit-Player "SynTPDeinstKey" = Synaptics Pointing Device Driver "WinRAR archiver" = WinRAR 4.00 (32-bit) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-967483246-3647120130-2549766778-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Google Chrome" = Google Chrome [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2011-03-15 17:02:52 | Computer Name = Astarte-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2011-03-15 17:02:52 | Computer Name = Astarte-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2011-03-15 17:12:51 | Computer Name = Astarte-PC | Source = VSS | ID = 8194 Description = Error - 2011-03-15 17:17:07 | Computer Name = Astarte-PC | Source = VSS | ID = 8194 Description = Error - 2011-03-15 17:28:13 | Computer Name = Astarte-PC | Source = VSS | ID = 8194 Description = Error - 2011-03-15 18:36:10 | Computer Name = Astarte-PC | Source = .NET Runtime Optimization Service | ID = 1107 Description = Error - 2011-03-15 18:36:17 | Computer Name = Astarte-PC | Source = .NET Runtime Optimization Service | ID = 1107 Description = Error - 2011-03-15 22:19:10 | Computer Name = Astarte-PC | Source = .NET Runtime Optimization Service | ID = 1101 Description = Error - 2011-03-16 01:12:30 | Computer Name = Astarte-PC | Source = ESENT | ID = 215 Description = WinMail (1924) WindowsMail0: Tworzenie kopii zapasowej zostało zatrzymane, ponieważ zostało przerwane przez klienta lub nie można nawiązać połączenia z klientem. Error - 2011-03-16 12:24:44 | Computer Name = Astarte-PC | Source = Application Hang | ID = 1002 Description = Program Explorer.EXE w wersji 6.0.6002.18005 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania raportami i rozwiązaniami problemów. Identyfikator procesu: 144 Godzina rozpoczęcia: 01cbe398bcaa4280 Godzina zakończenia: 146 [ System Events ] Error - 2011-03-07 04:57:15 | Computer Name = Astarte-PC | Source = ACPI | ID = 327686 Description = IRQARB: System ACPI BIOS nie zawiera przerwania dla urządzenia w gnieździe PCI 6, funkcja 0. Skontaktuj się z dostawcą systemu w celu uzyskania pomocy technicznej. Error - 2011-03-07 04:57:15 | Computer Name = Astarte-PC | Source = ACPI | ID = 327686 Description = IRQARB: System ACPI BIOS nie zawiera przerwania dla urządzenia w gnieździe PCI 7, funkcja 0. Skontaktuj się z dostawcą systemu w celu uzyskania pomocy technicznej. Error - 2011-03-07 05:05:12 | Computer Name = Astarte-PC | Source = Microsoft-Windows-Servicing | ID = 4385 Description = Error - 2011-03-07 05:05:12 | Computer Name = Astarte-PC | Source = Microsoft-Windows-Servicing | ID = 4385 Description = Error - 2011-03-07 05:05:12 | Computer Name = Astarte-PC | Source = Microsoft-Windows-Servicing | ID = 4385 Description = Error - 2011-03-07 05:05:12 | Computer Name = Astarte-PC | Source = Microsoft-Windows-Servicing | ID = 4385 Description = Error - 2011-03-07 05:05:12 | Computer Name = Astarte-PC | Source = Microsoft-Windows-Servicing | ID = 4375 Description = Error - 2011-03-07 05:05:12 | Computer Name = Astarte-PC | Source = Microsoft-Windows-Servicing | ID = 4375 Description = Error - 2011-03-07 05:05:12 | Computer Name = Astarte-PC | Source = Microsoft-Windows-Servicing | ID = 4375 Description = Error - 2011-03-07 05:05:12 | Computer Name = Astarte-PC | Source = Microsoft-Windows-Servicing | ID = 4375 Description = < End of report >