Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- OTL Extras logfile created on: 1/20/2017 12:55:22 AM - Run 1
- OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\benko\My Documents\Downloads
- Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
- Internet Explorer (Version = 8.0.6001.18702)
- Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
- 1023.48 Mb Total Physical Memory | 426.50 Mb Available Physical Memory | 41.67% Memory free
- 2.40 Gb Paging File | 1.91 Gb Available in Paging File | 79.40% Paging File free
- Paging file location(s): c:\pagefile.sys 1536 3072 [binary data]
- %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
- Drive C: | 68.36 Gb Total Space | 38.49 Gb Free Space | 56.31% Space Free | Partition Type: NTFS
- Drive D: | 80.68 Gb Total Space | 53.63 Gb Free Space | 66.46% Space Free | Partition Type: NTFS
- Computer Name: BENKO-5B4EB8A03 | User Name: benko | Logged in as Administrator.
- Boot Mode: Normal | Scan Mode: Current user | Quick Scan
- Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
- [color=#E56717]========== Extra Registry (SafeList) ==========[/color]
- [color=#E56717]========== File Associations ==========[/color]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
- .cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
- [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
- .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
- [color=#E56717]========== Shell Spawning ==========[/color]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
- batfile [open] -- "%1" %*
- cmdfile [open] -- "%1" %*
- comfile [open] -- "%1" %*
- cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
- exefile [open] -- "%1" %*
- htmlfile [edit] -- Reg Error: Key error.
- piffile [open] -- "%1" %*
- regfile [merge] -- Reg Error: Key error.
- scrfile [config] -- "%1"
- scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
- scrfile [open] -- "%1" /S
- txtfile [edit] -- Reg Error: Key error.
- Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
- Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
- Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
- Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
- [color=#E56717]========== Security Center Settings ==========[/color]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
- "FirstRunDisabled" = 1
- "AntiVirusDisableNotify" = 0
- "FirewallDisableNotify" = 0
- "UpdatesDisableNotify" = 0
- "AntiVirusOverride" = 0
- "FirewallOverride" = 0
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
- [color=#E56717]========== System Restore Settings ==========[/color]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
- "DisableSR" = 0
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
- "Start" = 0
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
- "Start" = 2
- [color=#E56717]========== Firewall Settings ==========[/color]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
- "EnableFirewall" = 1
- "DoNotAllowExceptions" = 0
- "DisableNotifications" = 0
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
- "1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
- "2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008
- [color=#E56717]========== Authorized Applications List ==========[/color]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
- "%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
- "%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
- "%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
- "%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
- "D:\Activision\Call of Duty 2\CoD2MP_s.exe" = D:\Activision\Call of Duty 2\CoD2MP_s.exe:*:Enabled:CoD2MP_s -- ()
- "C:\Program Files\Activision\Rome - Total War\RomeTW.exe" = C:\Program Files\Activision\Rome - Total War\RomeTW.exe:*:Enabled:Rome: Total War -- (The Creative Assembly Ltd)
- "D:\Counter-Strike\hl.exe" = D:\Counter-Strike\hl.exe:*:Enabled:Half-Life Launcher -- (Valve)
- "C:\WINDOWS\system32\dxdiag.exe" = C:\WINDOWS\system32\dxdiag.exe:*:Enabled:Microsoft DirectX Diagnostic Tool -- (Microsoft Corporation)
- "C:\WINDOWS\system32\dpnsvr.exe" = C:\WINDOWS\system32\dpnsvr.exe:*:Disabled:Microsoft DirectPlay8 Server -- (Microsoft Corporation)
- "C:\WINDOWS\system32\dpvsetup.exe" = C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test -- (Microsoft Corporation)
- [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
- "{0BEDBD4E-2D34-47B5-9973-57E62B29307C}" = ATI Control Panel
- "{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
- "{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform
- "{26A24AE4-039D-4CA4-87B4-2F32180111F0}" = Java 8 Update 111
- "{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
- "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
- "{4D0A0750-B034-4DF8-97DE-26F1212AC2FF}" = DriverDoc
- "{518FE6AC-3097-4D96-88EB-D971A2AA30FF}_is1" = Lost Heaven Multiplayer version 1.0.6
- "{8054D734-39C7-463D-B764-9C883982B8F9}" = VC_CRT_x86
- "{A642BB6B-CA1D-4142-8DD4-318C3F3DC834}" = Rome - Total War(TM)
- "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
- "{f65db027-aff3-4070-886a-0d87064aabb1}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501
- "{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
- "{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio
- "All ATI Software" = ATI - Software Uninstall Utility
- "ATI Display Driver" = ATI Display Driver
- "AU11_is1" = Advanced Uninstaller PRO - Version 12
- "BSPlayerf" = BS.Player FREE
- "CPUID CPU-Z_is1" = CPUID CPU-Z 1.78
- "DriverAgent_is1" = DriverAgent by eSupport.com
- "DriverDoc" = DriverDoc
- "DriverPack Notifier" = DriverPack Notifier
- "EAX Unified" = EAX Unified
- "GameSpy Arcade" = GameSpy Arcade
- "ie8" = Windows Internet Explorer 8
- "InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Platform Device Manager
- "InstallShield_{A642BB6B-CA1D-4142-8DD4-318C3F3DC834}" = Rome - Total War(TM)
- "Mafia Game" = Mafia Game
- "PowerISO" = PowerISO
- "VN_VUIns_Rhine_VIA" = VIA Rhine-Family Fast-Ethernet Adapter
- "WinRAR archiver" = WinRAR 5.40 (32-bit)
- [color=#E56717]========== Last 20 Event Log Errors ==========[/color]
- [ Application Events ]
- Error - 1/16/2017 12:40:32 AM | Computer Name = BENKO-5B4EB8A03 | Source = MsiInstaller | ID = 1008
- Description = The installation of d:\caf23473095522add3c0b5\vs_setup.ms_ is not
- permitted due to an error in software restriction policy processing. The object
- cannot be trusted.
- Error - 1/16/2017 12:40:32 AM | Computer Name = BENKO-5B4EB8A03 | Source = MsiInstaller | ID = 1008
- Description = The installation of d:\caf23473095522add3c0b5\vs_setup.ms_ is not
- permitted due to an error in software restriction policy processing. The object
- cannot be trusted.
- Error - 1/16/2017 12:40:32 AM | Computer Name = BENKO-5B4EB8A03 | Source = MsiInstaller | ID = 1008
- Description = The installation of d:\caf23473095522add3c0b5\vs_setup.ms_ is not
- permitted due to an error in software restriction policy processing. The object
- cannot be trusted.
- Error - 1/16/2017 12:40:32 AM | Computer Name = BENKO-5B4EB8A03 | Source = MsiInstaller | ID = 1008
- Description = The installation of d:\caf23473095522add3c0b5\vs_setup.ms_ is not
- permitted due to an error in software restriction policy processing. The object
- cannot be trusted.
- Error - 1/16/2017 12:40:33 AM | Computer Name = BENKO-5B4EB8A03 | Source = MsiInstaller | ID = 1008
- Description = The installation of d:\caf23473095522add3c0b5\vs_setup.ms_ is not
- permitted due to an error in software restriction policy processing. The object
- cannot be trusted.
- Error - 1/16/2017 12:40:33 AM | Computer Name = BENKO-5B4EB8A03 | Source = MsiInstaller | ID = 1008
- Description = The installation of d:\caf23473095522add3c0b5\vs_setup.ms_ is not
- permitted due to an error in software restriction policy processing. The object
- cannot be trusted.
- Error - 1/16/2017 12:40:33 AM | Computer Name = BENKO-5B4EB8A03 | Source = MsiInstaller | ID = 1008
- Description = The installation of d:\caf23473095522add3c0b5\vs_setup.ms_ is not
- permitted due to an error in software restriction policy processing. The object
- cannot be trusted.
- Error - 1/16/2017 12:40:33 AM | Computer Name = BENKO-5B4EB8A03 | Source = MsiInstaller | ID = 1008
- Description = The installation of d:\caf23473095522add3c0b5\vs_setup.ms_ is not
- permitted due to an error in software restriction policy processing. The object
- cannot be trusted.
- Error - 1/16/2017 12:40:33 AM | Computer Name = BENKO-5B4EB8A03 | Source = MsiInstaller | ID = 1008
- Description = The installation of d:\caf23473095522add3c0b5\vs_setup.ms_ is not
- permitted due to an error in software restriction policy processing. The object
- cannot be trusted.
- Error - 1/16/2017 12:40:33 AM | Computer Name = BENKO-5B4EB8A03 | Source = MsiInstaller | ID = 1008
- Description = The installation of d:\caf23473095522add3c0b5\vs_setup.ms_ is not
- permitted due to an error in software restriction policy processing. The object
- cannot be trusted.
- [ System Events ]
- Error - 1/16/2017 12:52:40 AM | Computer Name = BENKO-5B4EB8A03 | Source = DCOM | ID = 10005
- Description = DCOM got error "%1084" attempting to start the service wuauserv with
- arguments "" in order to run the server: {E60687F7-01A1-40AA-86AC-DB1CBF673334}
- Error - 1/16/2017 12:52:46 AM | Computer Name = BENKO-5B4EB8A03 | Source = DCOM | ID = 10005
- Description = DCOM got error "%1084" attempting to start the service wuauserv with
- arguments "" in order to run the server: {E60687F7-01A1-40AA-86AC-DB1CBF673334}
- Error - 1/16/2017 12:54:05 AM | Computer Name = BENKO-5B4EB8A03 | Source = DCOM | ID = 10005
- Description = DCOM got error "%1084" attempting to start the service EventSystem
- with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
- Error - 1/16/2017 1:17:04 AM | Computer Name = BENKO-5B4EB8A03 | Source = SRService | ID = 104
- Description = The System Restore initialization process failed.
- Error - 1/16/2017 1:17:04 AM | Computer Name = BENKO-5B4EB8A03 | Source = Service Control Manager | ID = 7023
- Description = The System Restore Service service terminated with the following error:
- %%2
- Error - 1/16/2017 1:19:41 AM | Computer Name = BENKO-5B4EB8A03 | Source = SRService | ID = 104
- Description = The System Restore initialization process failed.
- Error - 1/16/2017 1:19:41 AM | Computer Name = BENKO-5B4EB8A03 | Source = Service Control Manager | ID = 7023
- Description = The System Restore Service service terminated with the following error:
- %%2
- Error - 1/16/2017 1:42:13 AM | Computer Name = BENKO-5B4EB8A03 | Source = SRService | ID = 104
- Description = The System Restore initialization process failed.
- Error - 1/16/2017 1:42:14 AM | Computer Name = BENKO-5B4EB8A03 | Source = Service Control Manager | ID = 7023
- Description = The System Restore Service service terminated with the following error:
- %%2
- Error - 1/16/2017 1:42:37 AM | Computer Name = BENKO-5B4EB8A03 | Source = System Error | ID = 1003
- Description = Error code 1000008e, parameter1 c0000005, parameter2 03020100, parameter3
- f792e4b4, parameter4 00000000.
- < End of report >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement