Advertisement
Guest User

Untitled

a guest
Sep 21st, 2017
83
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 15.93 KB | None | 0 0
  1. OTL Extras logfile created on: 29.6.2011 20:20:20 - Run 1
  2. OTL by OldTimer - Version 3.2.24.2 Folder = C:\Users\ALMA\Desktop
  3. Windows Vista Home Premium Edition (Version = 6.0.6000) - Type = NTWorkstation
  4. Internet Explorer (Version = 7.0.6000.16386)
  5. Locale: 0000141a | Country: Bosna i Hercegovina | Language: BSB | Date Format: d.M.yyyy
  6.  
  7. 893,56 Mb Total Physical Memory | 301,66 Mb Available Physical Memory | 33,76% Memory free
  8. 1,99 Gb Paging File | 1,08 Gb Available in Paging File | 54,05% Paging File free
  9. Paging file location(s): ?:\pagefile.sys [binary data]
  10.  
  11. %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
  12. Drive C: | 14,65 Gb Total Space | 0,41 Gb Free Space | 2,79% Space Free | Partition Type: NTFS
  13. Drive D: | 51,87 Gb Total Space | 48,77 Gb Free Space | 94,02% Space Free | Partition Type: NTFS
  14.  
  15. Computer Name: ALMA-PC | User Name: ALMA | Logged in as Administrator.
  16. Boot Mode: Normal | Scan Mode: Current user | Quick Scan
  17. Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
  18.  
  19. [color=#E56717]========== Extra Registry (SafeList) ==========[/color]
  20.  
  21.  
  22. [color=#E56717]========== File Associations ==========[/color]
  23.  
  24. [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
  25. .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
  26. .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
  27. .url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l
  28.  
  29. [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
  30. .exe [@ = exefile] -- C:\Users\ALMA\AppData\Local\ied.exe ()
  31. .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
  32.  
  33. [color=#E56717]========== Shell Spawning ==========[/color]
  34.  
  35. [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
  36. batfile [open] -- "%1" %*
  37. cmdfile [open] -- "%1" %*
  38. comfile [open] -- "%1" %*
  39. cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
  40. exefile [open] -- "%1" %*
  41. helpfile [open] -- Reg Error: Key error.
  42. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
  43. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
  44. InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
  45. piffile [open] -- "%1" %*
  46. regfile [merge] -- Reg Error: Key error.
  47. scrfile [config] -- "%1"
  48. scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
  49. scrfile [open] -- "%1" /S
  50. txtfile [edit] -- Reg Error: Key error.
  51. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
  52. Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
  53. Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
  54. Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
  55. Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
  56. Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
  57. Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
  58. Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
  59. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
  60.  
  61. [color=#E56717]========== Security Center Settings ==========[/color]
  62.  
  63. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
  64. "cval" = 1
  65.  
  66. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
  67.  
  68. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
  69. "oobe_av" = 1
  70. "AntiVirusOverride" = 0
  71. "AntiSpywareOverride" = 0
  72. "FirewallOverride" = 0
  73.  
  74. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\S-1-5-21-2130284664-3693486889-3952391431-1000]
  75. "EnableNotifications" = 0
  76. "EnableNotificationsRef" = 1
  77.  
  78. [color=#E56717]========== Firewall Settings ==========[/color]
  79.  
  80. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
  81. "DisableNotifications" = 0
  82. "EnableFirewall" = 1
  83.  
  84. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
  85. "DisableNotifications" = 0
  86. "EnableFirewall" = 1
  87.  
  88. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
  89. "DisableNotifications" = 0
  90. "EnableFirewall" = 1
  91.  
  92. [color=#E56717]========== Authorized Applications List ==========[/color]
  93.  
  94.  
  95. [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]
  96.  
  97. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
  98. "{0BDB7A9A-3750-4BCB-B0B5-AD4754E72E55}" = rport=445 | protocol=6 | dir=out | app=system |
  99. "{0D5115FF-6789-478F-A258-21D3808CC49A}" = rport=137 | protocol=17 | dir=out | app=system |
  100. "{16F89DD6-E2A3-4D1A-9045-3C6F3C3B2FD6}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
  101. "{26222B71-5BAD-487E-B0B9-AAD9F688019D}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office12\outlook.exe |
  102. "{2A467C27-E475-47F9-9E3B-ED76CEBCD6BE}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
  103. "{2ABB9230-5330-439D-B620-B3CD26EF0C9D}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
  104. "{3F72D526-2A6B-4D2E-AF90-AC41A7066D48}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
  105. "{748D2350-DC57-455E-B830-91C50A8C9C5C}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
  106. "{8B9F39FA-98AF-465F-86F3-D685F49EBF6F}" = lport=139 | protocol=6 | dir=in | app=system |
  107. "{91AECBA1-CBEF-408D-A581-F18D7C3C5B42}" = rport=139 | protocol=6 | dir=out | app=system |
  108. "{9F4E9B85-00C8-432C-BB20-06FAA39B9289}" = lport=138 | protocol=17 | dir=in | app=system |
  109. "{A7985FCD-CBF6-4DBE-A1E7-5AA89E6CF6DC}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
  110. "{BC604F7C-4E89-46CC-B2B8-1BD67E536FD4}" = lport=2869 | protocol=6 | dir=in | app=system |
  111. "{D2BFAFEA-9CBC-4E1A-B001-A1786D92A153}" = lport=2869 | protocol=6 | dir=in | app=system |
  112. "{D6E30C11-9EB9-42B5-9B2B-C4540AAFF3AB}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
  113. "{DFE8020F-4AD6-462C-8195-EE0E91859BD7}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
  114. "{E29D1E10-DCEA-46A5-904C-5B861B1FDA9A}" = rport=138 | protocol=17 | dir=out | app=system |
  115. "{E47EE591-9F92-47BB-873F-98DE6A6FC4CB}" = lport=445 | protocol=6 | dir=in | app=system |
  116. "{ECF346DA-4664-46D8-9AB3-DB912CA6A4BA}" = rport=2869 | protocol=6 | dir=out | app=system |
  117. "{EFD61D80-1054-437A-8393-11EB460D557B}" = lport=137 | protocol=17 | dir=in | app=system |
  118. "{FCE27235-7C8C-4CF5-9853-F625F1B26142}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
  119.  
  120. [color=#E56717]========== Vista Active Application Exception List ==========[/color]
  121.  
  122. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
  123. "{0257EE57-FC86-4767-98F8-7A37BDA77953}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\groove.exe |
  124. "{5A7AAB7F-6C2F-481E-ACBD-AC01D31BF829}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 |
  125. "{656A9632-7A54-41DF-8C14-ADFDBB0D96A1}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
  126. "{78FB5319-54B3-4B2B-901B-F7A6889C117D}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\groove.exe |
  127. "{80CE0F8B-EFB1-433E-A63C-79F27B30C3F6}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
  128. "{881C49C3-4980-4A36-8E5C-E3800FF08E9B}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
  129. "{8AC528A8-B852-4099-BC2B-EE90606446F0}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
  130. "{91BAE378-E699-4287-B0AA-8847C3B925CA}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
  131. "{A266A84C-57CC-43F2-8B3B-81028E6B9482}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
  132. "{C158C82C-7731-4EB5-BF22-ED413BC44D12}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
  133. "{E2EEFA8F-A482-4B4B-969D-2AD5A481E267}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
  134. "{ED32BBAA-FF41-4F3B-B036-528B5F4076BC}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
  135.  
  136. [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
  137.  
  138. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
  139. "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
  140. "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
  141. "{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform
  142. "{40B6D0B4-301A-4020-869F-2E3936E02299}" = WebMate
  143. "{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
  144. "{474F25F5-BDC9-40E5-B1B6-F6BF23FC106F}" = Windows Live Essentials
  145. "{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
  146. "{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
  147. "{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
  148. "{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
  149. "{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
  150. "{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
  151. "{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
  152. "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
  153. "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
  154. "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
  155. "{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
  156. "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
  157. "{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
  158. "{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
  159. "{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
  160. "{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007
  161. "{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007
  162. "{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
  163. "{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
  164. "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
  165. "{AC76BA86-7AD7-1033-7B44-A70000000000}" = Adobe Reader 7.0
  166. "{B57EAFF2-D6EE-4C6C-9175-ED9F17BFC1BC}" = Windows Live Messenger
  167. "{BE686891-3C56-4714-AFEF-341A7867BA80}" = AirLive Wireless 11g Wireless Driver and Utility
  168. "{BF5CFD2D-D057-4A98-962F-3FEE6F4580EF}" = CrazyTalk Avatar Creator
  169. "{C679F9B9-C65D-4C65-BD6C-BF90B859E281}" = Eye 110
  170. "{CD104A82-D92A-484B-90F9-4CA044315DEC}" = Driver Updater Pro
  171. "{D1504C77-1B19-4AF0-8DEC-946666123B55}" = CrazyTalk Cam Suite
  172. "{E6158D07-2637-4ECF-B576-37C489669174}" = Windows Live Call
  173. "{F0C1383A-4925-426C-88A6-E384E007DD24}" = Registry Cleaner Pro
  174. "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
  175. "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
  176. "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
  177. "Driver Updater Pro" = Driver Updater Pro
  178. "ENTERPRISE" = Microsoft Office Enterprise 2007
  179. "GOM Player" = GOM Player
  180. "Mozilla Firefox 5.0 (x86 en-US)" = Mozilla Firefox 5.0 (x86 en-US)
  181. "MyWebSearch bar Uninstall" = My Web Search
  182. "Registry Cleaner Pro" = Registry Cleaner Pro
  183. "Winamp" = Winamp
  184. "WinLiveSuite_Wave3" = Windows Live Essentials
  185. "WinRAR archiver" = WinRAR arhiver
  186.  
  187. [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color]
  188.  
  189. [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
  190. "Winamp Detect" = Winamp Detector Plug-in
  191.  
  192. [color=#E56717]========== Last 10 Event Log Errors ==========[/color]
  193.  
  194. [ Application Events ]
  195. Error - 31.5.2011 10:06:45 | Computer Name = ALMA-PC | Source = LoadPerf | ID = 3012
  196. Description =
  197.  
  198. Error - 31.5.2011 10:06:45 | Computer Name = ALMA-PC | Source = LoadPerf | ID = 3011
  199. Description =
  200.  
  201. Error - 31.5.2011 12:37:18 | Computer Name = ALMA-PC | Source = RasClient | ID = 20227
  202. Description =
  203.  
  204. Error - 31.5.2011 12:41:32 | Computer Name = ALMA-PC | Source = LoadPerf | ID = 3012
  205. Description =
  206.  
  207. Error - 31.5.2011 12:41:32 | Computer Name = ALMA-PC | Source = LoadPerf | ID = 3011
  208. Description =
  209.  
  210. Error - 31.5.2011 15:51:51 | Computer Name = ALMA-PC | Source = LoadPerf | ID = 3012
  211. Description =
  212.  
  213. Error - 31.5.2011 15:51:51 | Computer Name = ALMA-PC | Source = LoadPerf | ID = 3011
  214. Description =
  215.  
  216. Error - 1.6.2011 4:41:56 | Computer Name = ALMA-PC | Source = LoadPerf | ID = 3012
  217. Description =
  218.  
  219. Error - 1.6.2011 4:41:56 | Computer Name = ALMA-PC | Source = LoadPerf | ID = 3011
  220. Description =
  221.  
  222. Error - 1.6.2011 10:09:13 | Computer Name = ALMA-PC | Source = RasClient | ID = 20227
  223. Description =
  224.  
  225. [ System Events ]
  226. Error - 28.6.2011 16:40:00 | Computer Name = ALMA-PC | Source = Dhcp | ID = 1002
  227. Description = The IP address lease 10.0.1.10 for the Network Card with network address
  228. 004F78008471 has been denied by the DHCP server 10.0.0.1 (The DHCP Server sent
  229. a DHCPNACK message).
  230.  
  231. Error - 28.6.2011 16:46:47 | Computer Name = ALMA-PC | Source = Dhcp | ID = 1002
  232. Description = The IP address lease 10.0.0.21 for the Network Card with network address
  233. 004F78008471 has been denied by the DHCP server 10.0.1.1 (The DHCP Server sent
  234. a DHCPNACK message).
  235.  
  236. Error - 29.6.2011 4:50:47 | Computer Name = ALMA-PC | Source = Dhcp | ID = 1002
  237. Description = The IP address lease 10.0.1.27 for the Network Card with network address
  238. 004F78008471 has been denied by the DHCP server 10.0.4.1 (The DHCP Server sent
  239. a DHCPNACK message).
  240.  
  241. Error - 29.6.2011 4:50:52 | Computer Name = ALMA-PC | Source = ipnathlp | ID = 31004
  242. Description = The DNS proxy agent was unable to allocate 0 bytes of memory. This
  243. may indicate that the system is low on virtual memory, or that the memory manager
  244. has encountered an internal error.
  245.  
  246. Error - 29.6.2011 4:51:19 | Computer Name = ALMA-PC | Source = ipnathlp | ID = 31004
  247. Description = The DNS proxy agent was unable to allocate 0 bytes of memory. This
  248. may indicate that the system is low on virtual memory, or that the memory manager
  249. has encountered an internal error.
  250.  
  251. Error - 29.6.2011 7:34:43 | Computer Name = ALMA-PC | Source = Dhcp | ID = 1002
  252. Description = The IP address lease 10.0.4.33 for the Network Card with network address
  253. 004F78008471 has been denied by the DHCP server 10.0.1.1 (The DHCP Server sent
  254. a DHCPNACK message).
  255.  
  256. Error - 29.6.2011 7:37:19 | Computer Name = ALMA-PC | Source = Dhcp | ID = 1002
  257. Description = The IP address lease 10.0.1.27 for the Network Card with network address
  258. 004F78008471 has been denied by the DHCP server 10.0.4.1 (The DHCP Server sent
  259. a DHCPNACK message).
  260.  
  261. Error - 29.6.2011 9:55:25 | Computer Name = ALMA-PC | Source = Dhcp | ID = 1002
  262. Description = The IP address lease 10.0.4.83 for the Network Card with network address
  263. 004F78008471 has been denied by the DHCP server 10.0.1.1 (The DHCP Server sent
  264. a DHCPNACK message).
  265.  
  266. Error - 29.6.2011 10:51:06 | Computer Name = ALMA-PC | Source = ipnathlp | ID = 31004
  267. Description = The DNS proxy agent was unable to allocate 0 bytes of memory. This
  268. may indicate that the system is low on virtual memory, or that the memory manager
  269. has encountered an internal error.
  270.  
  271. Error - 29.6.2011 11:57:53 | Computer Name = ALMA-PC | Source = ipnathlp | ID = 31004
  272. Description = The DNS proxy agent was unable to allocate 0 bytes of memory. This
  273. may indicate that the system is low on virtual memory, or that the memory manager
  274. has encountered an internal error.
  275.  
  276.  
  277. < End of report >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement