Advertisement
Guest User

Untitled

a guest
Jul 4th, 2017
148
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 13.81 KB | None | 0 0
  1. OTL Extras logfile created on: 10.12.2010 19:12:10 - Run 1
  2. OTL by OldTimer - Version 3.2.17.3 Folder = C:\Documents and Settings\Slaven\Desktop
  3. Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
  4. Internet Explorer (Version = 6.0.2900.5512)
  5. Locale: 0000041A | Country: Croatia | Language: HRV | Date Format: d.M.yyyy
  6.  
  7. 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 69,00% Memory free
  8. 4,00 Gb Paging File | 3,00 Gb Available in Paging File | 88,00% Paging File free
  9. Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
  10.  
  11. %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
  12. Drive C: | 9,77 Gb Total Space | 3,88 Gb Free Space | 39,72% Space Free | Partition Type: NTFS
  13. Drive D: | 53,71 Gb Total Space | 16,06 Gb Free Space | 29,90% Space Free | Partition Type: NTFS
  14. Drive E: | 48,30 Gb Total Space | 12,16 Gb Free Space | 25,17% Space Free | Partition Type: NTFS
  15.  
  16. Computer Name: SLAWEN | User Name: Slaven | Logged in as Administrator.
  17. Boot Mode: Normal | Scan Mode: Current user | Quick Scan
  18. Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
  19.  
  20. [color=#E56717]========== Extra Registry (SafeList) ==========[/color]
  21.  
  22.  
  23. [color=#E56717]========== File Associations ==========[/color]
  24.  
  25. [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
  26.  
  27. [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
  28. .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
  29.  
  30. [color=#E56717]========== Shell Spawning ==========[/color]
  31.  
  32. [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
  33. batfile [open] -- "%1" %*
  34. cmdfile [open] -- "%1" %*
  35. comfile [open] -- "%1" %*
  36. exefile [open] -- "%1" %*
  37. htmlfile [edit] -- Reg Error: Key error.
  38. piffile [open] -- "%1" %*
  39. regfile [merge] -- Reg Error: Key error.
  40. scrfile [config] -- "%1"
  41. scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
  42. scrfile [open] -- "%1" /S
  43. txtfile [edit] -- Reg Error: Key error.
  44. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
  45. Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
  46. Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
  47. Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
  48. Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
  49. Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
  50. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
  51.  
  52. [color=#E56717]========== Security Center Settings ==========[/color]
  53.  
  54. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
  55. "FirstRunDisabled" = 1
  56. "AntiVirusDisableNotify" = 0
  57. "FirewallDisableNotify" = 0
  58. "UpdatesDisableNotify" = 0
  59. "AntiVirusOverride" = 0
  60. "FirewallOverride" = 0
  61.  
  62. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
  63.  
  64. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
  65.  
  66. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
  67.  
  68. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
  69. "DisableMonitoring" = 1
  70.  
  71. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
  72.  
  73. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
  74.  
  75. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
  76.  
  77. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
  78.  
  79. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
  80.  
  81. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
  82.  
  83. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
  84.  
  85. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
  86.  
  87. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
  88.  
  89. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
  90.  
  91. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
  92.  
  93. [color=#E56717]========== System Restore Settings ==========[/color]
  94.  
  95. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
  96. "DisableSR" = 0
  97.  
  98. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
  99. "Start" = 0
  100.  
  101. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
  102. "Start" = 2
  103.  
  104. [color=#E56717]========== Firewall Settings ==========[/color]
  105.  
  106. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
  107.  
  108. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
  109. "139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
  110. "445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
  111. "137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
  112. "138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
  113.  
  114. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
  115. "EnableFirewall" = 1
  116. "DoNotAllowExceptions" = 0
  117.  
  118. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
  119. "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
  120. "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
  121. "139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
  122. "445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
  123. "137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
  124. "138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
  125. "3521:TCP" = 3521:TCP:*:Enabled:njfrwp
  126.  
  127. [color=#E56717]========== Authorized Applications List ==========[/color]
  128.  
  129. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
  130.  
  131. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
  132. "C:\Program Files\NX Client for Windows\nxclient.exe" = C:\Program Files\NX Client for Windows\nxclient.exe:*:Enabled:nxclient -- ()
  133. "C:\Program Files\NX Client for Windows\bin\nxssh.exe" = C:\Program Files\NX Client for Windows\bin\nxssh.exe:*:Enabled:nxssh -- ()
  134. "D:\Games\RA2+YR\gamemd.exe" = D:\Games\RA2+YR\gamemd.exe:*:Enabled:Main executable for Yuri's Revenge -- (Westwood Studios)
  135. "D:\Games\UnrealTournament\System\UnrealTournament.exe" = D:\Games\UnrealTournament\System\UnrealTournament.exe:*:Enabled:UnrealTournament -- ()
  136. "C:\Program Files\Java\jre6\bin\java.exe" = C:\Program Files\Java\jre6\bin\java.exe:*:Enabled:Java(TM) Platform SE binary -- (Sun Microsystems, Inc.)
  137. "C:\Program Files\uTorrent\uTorrent.exe" = C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.)
  138.  
  139.  
  140. [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
  141.  
  142. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
  143. "{065A7AFE-195D-4DFB-A4B2-A83842C0F79F}" = Wireless Select Switch
  144. "{26A24AE4-039D-4CA4-87B4-2F83216022FF}" = Java(TM) 6 Update 22
  145. "{28006915-2739-4EBE-B5E8-49B25D32EB33}" = GIGABYTE Super Wireless Card Setup
  146. "{3248F0A8-6813-11D6-A77B-00B0D0150060}" = J2SE Runtime Environment 5.0 Update 6
  147. "{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
  148. "{399C37FB-08AF-493B-BFED-20FBD85EDF7F}" = USB Video Device
  149. "{449A16C4-83B3-426C-AA4A-00A34E80C093}" = Smart Battery
  150. "{4999B2F1-3E74-409A-B8B5-E94448AA9EA6}" = USB Vibration Joystick
  151. "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
  152. "{59F6A514-9813-47A3-948C-8A155460CC2A}" = RICOH R5C83x/84x Flash Media Controller Driver Ver.3.51.01
  153. "{66F1F013-008F-4875-B283-5A814B820347}" = Kaspersky Anti-Virus 2011
  154. "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
  155. "{7243A264-7401-445E-99E6-2CC334960047}" = Smart Watchdog
  156. "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
  157. "{84814E6B-2581-46EC-926A-823BD1C670F6}" = WIDCOMM Bluetooth Software
  158. "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
  159. "{A2289997-10A3-48F2-AA03-99180D761661}" = Protector Suite QL 5.6
  160. "{AC76BA86-7AD7-1033-7B44-A94000000001}" = Adobe Reader 9.4.1
  161. "{CD95D125-2992-4858-B3EF-5F6FB52FBAD6}" = Skype Toolbars
  162. "{D3B3B9B2-FE73-44CB-8C0A-F737D92F991B}" = Broadcom Gigabit Integrated Controller
  163. "{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}" = Skype™ 5.0
  164. "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
  165. "{F408DA6B-DA75-4D95-B87D-49AFF0B4EBB0}" = Wow Video&Audio utility
  166. "{FEF06E73-A519-4510-8CF3-B66041B91D8A}" = EMSC
  167. "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
  168. "BSPlayer1" = BSPlayer
  169. "Elantech" = KTP Ware PS/2-x86 5.0.3.13
  170. "FileZilla Client" = FileZilla Client 3.3.2
  171. "InstallShield_{065A7AFE-195D-4DFB-A4B2-A83842C0F79F}" = Wireless Select Switch
  172. "InstallShield_{449A16C4-83B3-426C-AA4A-00A34E80C093}" = Smart Battery
  173. "InstallShield_{7243A264-7401-445E-99E6-2CC334960047}" = Smart Watchdog
  174. "InstallShield_{F408DA6B-DA75-4D95-B87D-49AFF0B4EBB0}" = Wow Video&Audio utility
  175. "InstallWIX_{66F1F013-008F-4875-B283-5A814B820347}" = Kaspersky Anti-Virus 2011
  176. "KLiteCodecPack_is1" = K-Lite Codec Pack 2.54 Full
  177. "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
  178. "MediaInfo" = MediaInfo 0.7.28
  179. "MozBackup" = MozBackup 1.4.9
  180. "Mozilla Firefox (3.6.12)" = Mozilla Firefox (3.6.12)
  181. "Nero - Burning Rom!UninstallKey" = Nero 6 Ultra Edition
  182. "NVIDIA Drivers" = NVIDIA Drivers
  183. "nxclient_is1" = NX Client for Windows 3.4.0-7
  184. "PIXresizer_is1" = PIXresizer
  185. "SMSERIAL" = Motorola SM56 Data Fax Modem
  186. "Visual Watermark_is1" = Visual Watermark 2.9.14
  187. "VLC media player" = VLC media player 1.1.5
  188. "Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
  189. "WinRAR archiver" = WinRAR archiver
  190.  
  191. [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color]
  192.  
  193. [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
  194. "uTorrent" = µTorrent
  195.  
  196. [color=#E56717]========== Last 10 Event Log Errors ==========[/color]
  197.  
  198. [ Application Events ]
  199. Error - 26.11.2010 13:46:12 | Computer Name = SLAWEN | Source = Application Hang | ID = 1002
  200. Description = Hanging application rundll32.exe, version 5.1.2600.5512, hang module
  201. hungapp, version 0.0.0.0, hang address 0x00000000.
  202.  
  203. Error - 8.12.2010 8:04:58 | Computer Name = SLAWEN | Source = Application Error | ID = 1000
  204. Description = Faulting application firefox.exe, version 1.9.2.3951, faulting module
  205. ole32.dll, version 5.1.2600.5512, fault address 0x0007413b.
  206.  
  207. Error - 8.12.2010 8:46:32 | Computer Name = SLAWEN | Source = Application Error | ID = 1000
  208. Description = Faulting application firefox.exe, version 1.9.2.3951, faulting module
  209. ole32.dll, version 5.1.2600.5512, fault address 0x0007413b.
  210.  
  211. Error - 8.12.2010 8:56:22 | Computer Name = SLAWEN | Source = Application Error | ID = 1000
  212. Description = Faulting application firefox.exe, version 1.9.2.3951, faulting module
  213. ole32.dll, version 5.1.2600.5512, fault address 0x0007413b.
  214.  
  215. Error - 8.12.2010 9:24:14 | Computer Name = SLAWEN | Source = Application Error | ID = 1000
  216. Description = Faulting application filezilla.exe, version 3.3.2.0, faulting module
  217. unknown, version 0.0.0.0, fault address 0x00260025.
  218.  
  219. [ System Events ]
  220. Error - 10.12.2010 6:35:06 | Computer Name = SLAWEN | Source = DCOM | ID = 10005
  221. Description = DCOM got error "%1058" attempting to start the service wuauserv with
  222. arguments "" in order to run the server: {E60687F7-01A1-40AA-86AC-DB1CBF673334}
  223.  
  224. Error - 10.12.2010 6:35:34 | Computer Name = SLAWEN | Source = Service Control Manager | ID = 7023
  225. Description = The Time Image service terminated with the following error: %%126
  226.  
  227. Error - 10.12.2010 6:46:05 | Computer Name = SLAWEN | Source = DCOM | ID = 10005
  228. Description = DCOM got error "%1058" attempting to start the service BITS with arguments
  229. "" in order to run the server: {4991D34B-80A1-4291-83B6-3328366B9097}
  230.  
  231. Error - 10.12.2010 7:50:06 | Computer Name = SLAWEN | Source = DCOM | ID = 10005
  232. Description = DCOM got error "%1058" attempting to start the service wuauserv with
  233. arguments "" in order to run the server: {E60687F7-01A1-40AA-86AC-DB1CBF673334}
  234.  
  235. Error - 10.12.2010 9:05:06 | Computer Name = SLAWEN | Source = DCOM | ID = 10005
  236. Description = DCOM got error "%1058" attempting to start the service wuauserv with
  237. arguments "" in order to run the server: {E60687F7-01A1-40AA-86AC-DB1CBF673334}
  238.  
  239. Error - 10.12.2010 9:27:42 | Computer Name = SLAWEN | Source = NetBT | ID = 4319
  240. Description = A duplicate name has been detected on the TCP network. The IP address
  241. of the machine that sent the message is in the data. Use nbtstat -n in a command
  242. window to see which name is in the Conflict state.
  243.  
  244. Error - 10.12.2010 9:27:46 | Computer Name = SLAWEN | Source = MRxSmb | ID = 8003
  245. Description = The master browser has received a server announcement from the computer
  246. DRAGE-PC that believes that it is the master browser for the domain on transport
  247. NetBT_Tcpip_{13DB7B36-2BBA-4892-. The master browser is stopping or an election
  248. is being forced.
  249.  
  250. Error - 10.12.2010 12:32:44 | Computer Name = SLAWEN | Source = Service Control Manager | ID = 7023
  251. Description = The Time Image service terminated with the following error: %%126
  252.  
  253. Error - 10.12.2010 12:38:44 | Computer Name = SLAWEN | Source = Service Control Manager | ID = 7023
  254. Description = The Time Image service terminated with the following error: %%126
  255.  
  256. Error - 10.12.2010 13:30:48 | Computer Name = SLAWEN | Source = Service Control Manager | ID = 7023
  257. Description = The Time Image service terminated with the following error: %%126
  258.  
  259.  
  260. < End of report >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement