OTL Extras logfile created on: 10-07-23 09:39:50 - Run 4 OTL by OldTimer - Version 3.2.9.0 Folder = D:\kopia Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yy-MM-dd 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 62,00% Memory free 4,00 Gb Paging File | 3,00 Gb Available in Paging File | 77,00% Paging File free Paging file location(s): c:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files Drive C: | 102,40 Gb Total Space | 76,02 Gb Free Space | 74,24% Space Free | Partition Type: NTFS Drive D: | 94,21 Gb Total Space | 88,55 Gb Free Space | 93,99% Space Free | Partition Type: NTFS E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded Drive H: | 50,00 Gb Total Space | 22,77 Gb Free Space | 45,54% Space Free | Partition Type: NTFS Drive I: | 80,00 Gb Total Space | 8,51 Gb Free Space | 10,64% Space Free | Partition Type: NTFS Drive P: | 130,00 Gb Total Space | 13,96 Gb Free Space | 10,74% Space Free | Partition Type: NTFS Drive R: | 48,83 Gb Total Space | 3,30 Gb Free Space | 6,75% Space Free | Partition Type: NTFS Drive S: | 119,99 Gb Total Space | 8,33 Gb Free Space | 6,94% Space Free | Partition Type: NTFS Drive T: | 77,00 Gb Total Space | 54,84 Gb Free Space | 71,22% Space Free | Partition Type: NTFS Drive U: | 119,99 Gb Total Space | 8,33 Gb Free Space | 6,94% Space Free | Partition Type: NTFS Computer Name: PCAXPLDKR Current User Name: axpldkr Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 90 Days Output = Standard [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /k cd "%L" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "AntiVirusOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List] "3389:TCP" = 3389:TCP:*:Enabled:@xpsp2res.dll,-22009 "5985:TCP" = 5985:TCP:*:Disabled:Zdalne zarządzanie systemem Windows "80:TCP" = 80:TCP:*:Disabled:Zdalne zarządzanie systemem Windows — tryb zgodności (ruch przychodzący HTTP) [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] "3389:TCP" = 3389:TCP:*:Enabled:@xpsp2res.dll,-22009 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "C:\Program Files\Avaya\IP Office\Phone Manager\PhoneManager.exe" = C:\Program Files\Avaya\IP Office\Phone Manager\PhoneManager.exe:*:Enabled:Phone Manager Pro Application -- (Avaya Inc.) "C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" = C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Disabled:Microsoft Office Outlook -- (Microsoft Corporation) "C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe" = C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe:*:Disabled:Sentinel Protection Server -- (SafeNet, Inc) "C:\Program Files\totalcmd\TOTALCMD.EXE" = C:\Program Files\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit international version, file manager replacement for Windows -- (C. Ghisler & Co.) "C:\Documents and Settings\axpldkr\Ustawienia lokalne\Temp\OraInstall2009-02-27_11-30-37AM\jre\1.4.2\bin\javaw.exe" = C:\Documents and Settings\axpldkr\Ustawienia lokalne\Temp\OraInstall2009-02-27_11-30-37AM\jre\1.4.2\bin\javaw.exe:*:Enabled:javaw -- File not found "C:\Program Files\TeamViewer\Version5\TeamViewer.exe" = C:\Program Files\TeamViewer\Version5\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application -- (TeamViewer GmbH) [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" = C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook -- (Microsoft Corporation) "C:\Program Files\McAfee\Common Framework\FrameworkService.exe" = C:\Program Files\McAfee\Common Framework\FrameworkService.exe:*:Enabled:McAfee Framework Service -- (McAfee, Inc.) "C:\Program Files\totalcmd\TOTALCMD.EXE" = C:\Program Files\totalcmd\TOTALCMD.EXE:*:Disabled:Total Commander 32 bit international version, file manager replacement for Windows -- (C. Ghisler & Co.) [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{26A24AE4-039D-4CA4-87B4-2F83216012FF}" = Java(TM) 6 Update 16 "{2AFF2951-86B1-3C53-B34D-B440F11E7D0A}" = Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - PLK "{32A3A4F4-B792-11D6-A78A-00B0D0160110}" = Java(TM) SE Development Kit 6 Update 11 "{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{35C03C04-3F1F-42C2-A989-A757EE691F65}" = McAfee VirusScan Enterprise "{3921A67A-5AB1-4E48-9444-C71814CF3027}" = VCRedistSetup "{404C18ED-873A-4191-BA03-30F627445418}" = Sentinel Protection Installer 7.3.0 "{44CDBD1B-89FB-4E02-8319-2A4C550F664A}" = RTC Client API v1.2 "{5365DAF7-01E2-4746-B474-90B1D1E70A2B}" = IP Office User Suite "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{5A0DDC27-88E5-3CAD-BC3D-28FFD05CA6B9}" = Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - PLK "{6834D086-776B-4202-854E-0B0BBDFC5697}" = "{90120000-0010-0415-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (Polish) 12 "{90120000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2007 "{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581) "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_PROPLUS_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_PROPLUS_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_PROPLUS_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_PROPLUS_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_PROPLUS_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_PROPLUS_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_PROPLUS_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_PROPLUS_{E9EA2604-8AC9-47D2-8F4B-6BF60787A357}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_PROPLUS_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_PROPLUS_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2) "{9AC45672-3A04-409A-A34E-82255CF8C921}" = TAPI "{9C564F6E-729F-4C69-9CD9-F476EFDAC442}" = PhoneManager "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{9FB52CED-19C6-47C0-8F38-078F002C5734}" = AudaShare "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{A8D93648-9F7F-407D-915C-62044644C3DA}" = MSI to redistribute MS VS2005 CRT libraries "{AC76BA86-1033-C470-7760-CE0000000001}" = Adobe Acrobat 6.0 CE Professional "{AC76BA86-7AD7-1045-7B44-A70500000002}" = Adobe Reader 7.0.5 - Polish "{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.2 "{D642E38E-0D24-486C-9A2D-E316DD696F4B}" = Microsoft XML Parser "{E2C00C8C-3D0C-40DF-BC67-44321C9E1045}" = Nero 8 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FE58DBD8-129B-11D7-8D51-005056CAD6CB}" = AudaPen/AudaStation v.2.81 (Remove Only) "{FEFA4CB1-CD75-49B8-8E76-04E36704CC62}" = AudaOptimaInst "ActiveTouchMeetingClient" = WebEx "Adobe Flash Player ActiveX" = Adobe Flash Player ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Bullzip PDF Printer_is1" = Bullzip PDF Printer 6.0.0.865 "CCleaner" = CCleaner "FBDBServer_2_1_is1" = Firebird 2.1.1.17910 (Win32) "FileZilla Client" = FileZilla Client 3.2.8.1 "Free Video to Flash Converter_is1" = Free Video to Flash Converter version 4.2 "Gadu-Gadu" = Gadu-Gadu 7.7 "GPL Ghostscript Lite_is1" = GPL Ghostscript Lite 8.64 "Hardlock Device Drivers" = Hardlock Device Drivers "Help & Manual 3_is1" = Help & Manual 3.60 "Help & Manual_is1" = Help & Manual 5 "Help Workshop" = Help Workshop "HTML Help Workshop" = HTML Help Workshop "IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs "ie8" = Windows Internet Explorer 8 "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Mozilla Firefox (3.6.7)" = Mozilla Firefox (3.6.7) "NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs "Notepad++" = Notepad++ "NVIDIA Drivers" = NVIDIA Drivers "PASSOLO 6.0" = PASSOLO 6.0 "Picasa 3" = Picasa 3 "PROPLUS" = Microsoft Office Professional Plus 2007 "TeamViewer 5" = TeamViewer 5 "Totalcmd" = Total Commander (Remove or Repair) "Uninstall_is1" = Uninstall 1.0.0.1 "Wielki słownik polsko-angielski i angielsko-polski PWN-OXFORD" = Wielki słownik polsko-angielski i angielsko-polski PWN-OXFORD "Windows Media Format Runtime" = Windows Media Format Runtime "Wisdom-soft ScreenHunter 4.0 Free" = Wisdom-soft ScreenHunter 4.0 Free "XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0 [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ OSession Events ] Error - 09-01-28 17:26:58 | Computer Name = PCAXPLDKR | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6331.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 203116 seconds with 1200 seconds of active time. This session ended with a crash. [ System Events ] Error - 10-07-22 03:26:07 | Computer Name = PCAXPLDKR | Source = EventLog | ID = 6004 Description = Pakiet sterownika otrzymany z podsystemu We/Wy był nieprawidłowy. Przedstawione dane to otrzymany pakiet. Error - 10-07-22 05:35:33 | Computer Name = PCAXPLDKR | Source = EventLog | ID = 6004 Description = Pakiet sterownika otrzymany z podsystemu We/Wy był nieprawidłowy. Przedstawione dane to otrzymany pakiet. Error - 10-07-22 05:35:30 | Computer Name = PCAXPLDKR | Source = EventLog | ID = 6004 Description = Pakiet sterownika otrzymany z podsystemu We/Wy był nieprawidłowy. Przedstawione dane to otrzymany pakiet. Error - 10-07-22 05:35:25 | Computer Name = PCAXPLDKR | Source = EventLog | ID = 6004 Description = Pakiet sterownika otrzymany z podsystemu We/Wy był nieprawidłowy. Przedstawione dane to otrzymany pakiet. Error - 10-07-22 05:35:25 | Computer Name = PCAXPLDKR | Source = EventLog | ID = 6004 Description = Pakiet sterownika otrzymany z podsystemu We/Wy był nieprawidłowy. Przedstawione dane to otrzymany pakiet. Error - 10-07-22 08:22:26 | Computer Name = PCAXPLDKR | Source = sr | ID = 1 Description = Filtr Przywracania systemu napotkał nieoczekiwany błąd '0xC0000001' podczas przetwarzania pliku '' w woluminie 'HarddiskVolume1'. W rezultacie zostało zatrzymane monitorowanie woluminu. Error - 10-07-22 08:23:21 | Computer Name = PCAXPLDKR | Source = SideBySide | ID = 16842813 Description = Błąd składniowy w pliku manifestu lub w pliku zasad "C:\Documents and Settings\axpldkr\Ustawienia lokalne\Dane aplikacji\Xenocode\Sandbox\AupdClnt\2.7100.0171\Virtual\SXS\Manifests\AudaUpdt.exe.manifest_0xECDD69D98C4E09F0788B55F498487521.manifest" w wierszu 3. Brak wymaganego atrybutu version w elemencie assemblyIdentity. Error - 10-07-22 08:23:21 | Computer Name = PCAXPLDKR | Source = SideBySide | ID = 16842810 Description = Błąd składniowy w pliku manifestu lub w pliku zasad "C:\Documents and Settings\axpldkr\Ustawienia lokalne\Dane aplikacji\Xenocode\Sandbox\AupdClnt\2.7100.0171\Virtual\SXS\Manifests\AudaUpdt.exe.manifest_0xECDD69D98C4E09F0788B55F498487521.manifest" w wierszu 3. Error - 10-07-22 08:23:21 | Computer Name = PCAXPLDKR | Source = SideBySide | ID = 16842811 Description = Generate Activation Context nie powiodło się dla C:\Documents and Settings\axpldkr\Ustawienia lokalne\Dane aplikacji\Xenocode\Sandbox\AupdClnt\2.7100.0171\Virtual\SXS\Manifests\AudaUpdt.exe.manifest_0xECDD69D98C4E09F0788B55F498487521.manifest. Odpowiedni komunikat o błędzie: Operacja ukończona pomyślnie. . Error - 10-07-22 08:24:01 | Computer Name = PCAXPLDKR | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: i8042prt < End of report >