OTL Extras logfile created on: 2011-06-29 10:34:45 - Run 2 OTL by OldTimer - Version 3.2.20.3 Folder = C:\Users\Petrus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs 64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 62,00% Memory free 7,00 Gb Paging File | 5,00 Gb Available in Paging File | 77,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 60,00 Gb Total Space | 31,26 Gb Free Space | 52,09% Space Free | Partition Type: NTFS Drive D: | 350,00 Gb Total Space | 215,60 Gb Free Space | 61,60% Space Free | Partition Type: NTFS Computer Name: PETRUS-PC | User Name: Petrus | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\System32\ieframe.DLL (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .url [@ = InternetShortcut] -- C:\Windows\System32\ieframe.DLL (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2210288905-3839313819-1038517492-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* File not found cmdfile [open] -- "%1" %* File not found comfile [open] -- "%1" %* File not found exefile [open] -- "%1" %* File not found helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" File not found inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* File not found regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" File not found scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S File not found txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64) "{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 "{A3DA3F12-1B0A-F9AB-F10B-749A6729028F}" = ccc-utility64 "{CC6B1BB4-4E06-4A5B-A166-B371B551324B}" = COMODO Internet Security "{D3364347-0A05-CA85-1DAD-80A7A75BF677}" = ATI Catalyst Install Manager "WinRAR archiver" = Archiwizator WinRAR [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{029A0C75-B319-64B2-883B-9D99C51D8408}" = CCC Help German "{0919F4CB-3593-3190-D7C9-E97493DD6121}" = CCC Help French "{12C70AB0-2885-22A5-8924-7C8CE8A45F42}" = CCC Help Polish "{16C16789-E67A-C4FA-7661-9552BC0F0ADA}" = Catalyst Control Center Core Implementation "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{2110AF8F-F6E9-4712-A185-1B839C60822E}" = Rosetta Stone Ltd Services "{26A24AE4-039D-4CA4-87B4-2F83216020F0}" = Java(TM) 6 Update 20 "{26A24AE4-039D-4CA4-87B4-2F83216021FF}" = Java(TM) 6 Update 21 "{3074C0DC-5D9E-354C-5191-C14338255B60}" = CCC Help Korean "{35EBF726-9116-A9B4-5308-A95BC510613A}" = Catalyst Control Center InstallProxy "{426497EB-B45F-717D-54FB-C9DFC63E74ED}" = Catalyst Control Center Graphics Previews Vista "{44290AEA-81C0-D601-E619-DF434E8BB193}" = Catalyst Control Center Localization All "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{52A4E146-A102-4ED0-970F-6B1715EB3C86}" = Quake Live Mozilla Plugin "{587F9585-DBA6-22A6-8EB7-5AC659690045}" = CCC Help Dutch "{5A93149E-F607-B06F-5628-DBB1974ED70F}" = CCC Help Chinese Standard "{5DA50254-CD41-24E9-C62D-DBDDC0C344BD}" = CCC Help Portuguese "{60E2C8C9-6CF3-4B1A-9618-E304946C94E6}" = Python 2.4.4 "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6BDEC548-2EE5-C9B8-DE57-46958EC26BE3}" = CCC Help Czech "{70F92AAA-6733-1DDA-F122-257472015804}" = CCC Help Greek "{7CE8B930-7D89-24BD-380C-C849FF9C73D2}" = CCC Help Turkish "{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP "{836A1F7E-14EA-BB9E-9E40-32C7A6A5466F}" = CCC Help Chinese Traditional "{84A610B0-28F5-6972-506C-F5F62D489CF3}" = CCC Help Japanese "{8727531E-6C58-4852-A90B-39CF45E269A9}" = OpenOffice.org 3.2 "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{8E20D261-7119-6849-3E6D-6A29B420C3A8}" = CCC Help Russian "{93A96BEE-4DA9-E3FE-A949-77CE694B98B9}" = CCC Help Swedish "{99011A6E-5200-11DE-BDB8-7ACD56D89593}" = Rosetta Stone Version 3 "{9ABFB92D-93DA-49EE-8ABF-F8195DE45CA9}" = Counter-Strike 1.6 "{9D2459C7-8BE6-69C8-40B6-E448AEE5D832}" = ccc-core-static "{A9F9FBB1-FE0F-33AA-53F0-CB5BF9ACE918}" = CCC Help Italian "{AC76BA86-7AD7-1033-7B44-A94000000001}" = Adobe Reader 9.4.1 "{AE5A01BD-1D3A-AEF5-B88F-D2079500F049}" = CCC Help Danish "{B194272D-1F92-46DF-99EB-8D5CE91CB4EC}" = Adobe AIR "{B682AB6E-809D-9A4B-8228-84CA26989B2C}" = CCC Help English "{B6B4C0B7-0559-CB46-6D9C-643A22E6176A}" = Catalyst Control Center Graphics Light "{B86B0578-EC9F-CDB0-54D1-3BC743BE3759}" = CCC Help Hungarian "{C2D129C0-7508-11DF-9F1B-005056806466}" = Google Earth "{CD265392-DB7D-5A01-5D7A-EE642B73B63A}" = Catalyst Control Center Graphics Full Existing "{D7DF59F2-04CE-9C87-BBBB-10CA6A328C68}" = CCC Help Finnish "{DB3226BB-36E8-FB39-66E5-58B43AE6621A}" = CCC Help Norwegian "{F2346BDF-6F47-55E2-492E-48903FE7DF5E}" = CCC Help Spanish "{F9605212-7EEF-8B69-B4EA-C4D8DF66C53E}" = Catalyst Control Center Graphics Full New "{FE0C5EC2-17FB-60F2-C43D-F294F961AF1C}" = CCC Help Thai "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Any Video Converter_is1" = Any Video Converter 3.2.3 "AssaultCube_v1.1.0.4" = AssaultCube v1.1.0.4 "Audacity_is1" = Audacity 1.2.6 "AudioCS" = Creative Audio Console "Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus "Creative Software AutoUpdate" = Creative Software AutoUpdate "foobar2000" = foobar2000 v1.0.3 "Free WMA to MP3 Converter_is1" = Free WMA to MP3 Converter 1.16 "Gadu-Gadu" = Gadu-Gadu 7.7 "IrfanView" = IrfanView (remove only) "JDownloader" = JDownloader "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware version 1.51.0.1200 "Mozilla Firefox 5.0 (x86 pl)" = Mozilla Firefox 5.0 (x86 pl) "Namoroka (64-bit) (3.6.3)" = Namoroka (64-bit) (3.6.3) "NapiProjekt_is1" = NapiProjekt 1.0.6.9 "OpenAL" = OpenAL "Tibia Auto" = NSIS Example2 "Tibia_is1" = Tibia "TMIPC" = Tibia MULTI-ip changer "TreeSize Free_is1" = TreeSize Free V2.5 "uTorrent" = µTorrent "VLC media player" = VLC media player 1.1.2 "Wielki słownik angielsko-polski i polsko-angielski PWN-OXFORD" = Wielki słownik angielsko-polski i polsko-angielski PWN-OXFORD "World of Warcraft" = World of Warcraft [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2210288905-3839313819-1038517492-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2011-06-26 03:54:28 | Computer Name = Petrus-PC | Source = Winlogon | ID = 4103 Description = Windows license activation failed. Error 0x80070005. Error - 2011-06-26 08:46:54 | Computer Name = Petrus-PC | Source = Application Error | ID = 1000 Description = Faulting application name: tibiaauto.exe, version: 1.0.0.1, time stamp: 0x4d4398de Faulting module name: MFC42.DLL, version: 6.6.8063.0, time stamp: 0x4a5bda30 Exception code: 0xc0000005 Fault offset: 0x00013613 Faulting process id: 0x13dc Faulting application start time: 0x01cc33f8d9a7fd97 Faulting application path: C:\Program Files (x86)\Tibia Auto\tibiaauto.exe Faulting module path: C:\Windows\system32\MFC42.DLL Report Id: 5e2979d0-9ff2-11e0-afe4-002522335f3f Error - 2011-06-26 08:46:56 | Computer Name = Petrus-PC | Source = Application Error | ID = 1000 Description = Faulting application name: tibiaauto.exe, version: 1.0.0.1, time stamp: 0x4d4398de Faulting module name: MFC42.DLL, version: 6.6.8063.0, time stamp: 0x4a5bda30 Exception code: 0xc0000005 Fault offset: 0x00013613 Faulting process id: 0x13dc Faulting application start time: 0x01cc33f8d9a7fd97 Faulting application path: C:\Program Files (x86)\Tibia Auto\tibiaauto.exe Faulting module path: C:\Windows\system32\MFC42.DLL Report Id: 5f955cb8-9ff2-11e0-afe4-002522335f3f Error - 2011-06-26 18:28:38 | Computer Name = Petrus-PC | Source = Application Error | ID = 1000 Description = Faulting application name: tibiaauto.exe, version: 1.0.0.1, time stamp: 0x4c6fcff3 Faulting module name: MFC42.DLL, version: 6.6.8063.0, time stamp: 0x4a5bda30 Exception code: 0xc0000005 Fault offset: 0x00013613 Faulting process id: 0xc3c Faulting application start time: 0x01cc3448578088ad Faulting application path: C:\Program Files (x86)\Tibia Auto\tibiaauto.exe Faulting module path: C:\Windows\system32\MFC42.DLL Report Id: a30d563d-a043-11e0-afe4-002522335f3f Error - 2011-06-26 18:28:40 | Computer Name = Petrus-PC | Source = Application Error | ID = 1000 Description = Faulting application name: tibiaauto.exe, version: 1.0.0.1, time stamp: 0x4c6fcff3 Faulting module name: MFC42.DLL, version: 6.6.8063.0, time stamp: 0x4a5bda30 Exception code: 0xc0000005 Fault offset: 0x00013613 Faulting process id: 0xc3c Faulting application start time: 0x01cc3448578088ad Faulting application path: C:\Program Files (x86)\Tibia Auto\tibiaauto.exe Faulting module path: C:\Windows\system32\MFC42.DLL Report Id: a3fd18b8-a043-11e0-afe4-002522335f3f Error - 2011-06-27 03:53:24 | Computer Name = Petrus-PC | Source = Winlogon | ID = 4103 Description = Windows license activation failed. Error 0x80070005. Error - 2011-06-28 03:50:55 | Computer Name = Petrus-PC | Source = Winlogon | ID = 4103 Description = Windows license activation failed. Error 0x80070005. Error - 2011-06-28 13:09:34 | Computer Name = Petrus-PC | Source = Winlogon | ID = 4103 Description = Windows license activation failed. Error 0x80070005. Error - 2011-06-28 13:12:01 | Computer Name = Petrus-PC | Source = Application Error | ID = 1000 Description = Faulting application name: mservice32_t.exe, version: 0.0.0.0, time stamp: 0x4dfb44c3 Faulting module name: mservice32_t.exe, version: 0.0.0.0, time stamp: 0x4dfb44c3 Exception code: 0xc0000005 Fault offset: 0x000ad1ab Faulting process id: 0xb20 Faulting application start time: 0x01cc35b629010c1a Faulting application path: C:\Users\Petrus\AppData\Roaming\mservice32_t.exe Faulting module path: C:\Users\Petrus\AppData\Roaming\mservice32_t.exe Report Id: bc680616-a1a9-11e0-b3fa-002522335f3f Error - 2011-06-29 04:21:05 | Computer Name = Petrus-PC | Source = Winlogon | ID = 4103 Description = Windows license activation failed. Error 0x80070005. [ System Events ] Error - 2011-05-15 04:43:27 | Computer Name = Petrus-PC | Source = Service Control Manager | ID = 7022 Description = The Avira AntiVir Guard service hung on starting. Error - 2011-05-15 10:07:31 | Computer Name = Petrus-PC | Source = DCOM | ID = 10010 Description = Error - 2011-05-18 12:17:44 | Computer Name = Petrus-PC | Source = volsnap | ID = 393252 Description = The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. Error - 2011-05-19 11:13:36 | Computer Name = Petrus-PC | Source = Service Control Manager | ID = 7022 Description = The Avira AntiVir Guard service hung on starting. Error - 2011-05-25 07:14:37 | Computer Name = Petrus-PC | Source = Service Control Manager | ID = 7022 Description = The Avira AntiVir Guard service hung on starting. Error - 2011-05-26 06:51:45 | Computer Name = Petrus-PC | Source = Service Control Manager | ID = 7022 Description = The Avira AntiVir Guard service hung on starting. Error - 2011-06-02 07:42:15 | Computer Name = Petrus-PC | Source = volsnap | ID = 393252 Description = The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. Error - 2011-06-08 08:46:41 | Computer Name = Petrus-PC | Source = volsnap | ID = 393252 Description = The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. Error - 2011-06-10 10:43:37 | Computer Name = Petrus-PC | Source = EventLog | ID = 6008 Description = The previous system shutdown at 16:42:16 on ?2011-?06-?10 was unexpected. Error - 2011-06-14 05:35:47 | Computer Name = Petrus-PC | Source = volsnap | ID = 393252 Description = The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. < End of report >