OTL Extras logfile created on: 23.12.2012 23:47:39 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\User\Desktop 64bit- Home Basic Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000419 | Country: Россия | Language: RUS | Date Format: dd.MM.yyyy 3,86 Gb Total Physical Memory | 1,80 Gb Available Physical Memory | 46,69% Memory free 7,73 Gb Paging File | 5,56 Gb Available in Paging File | 71,93% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 50,00 Gb Total Space | 26,93 Gb Free Space | 53,86% Space Free | Partition Type: NTFS Drive D: | 415,76 Gb Total Space | 199,54 Gb Free Space | 47,99% Space Free | Partition Type: NTFS Computer Name: USER-ПК | User Name: User | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = ChromeHTML.2PR5BKN2QUZPMVOLRMED7MHKQI] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Обзор с XnView] -- "C:\Program Files (x86)\XnView\xnview.exe" "%1" (XnView, http://www.xnview.com) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Обзор с XnView] -- "C:\Program Files (x86)\XnView\xnview.exe" "%1" (XnView, http://www.xnview.com) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 0 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{823E4EE2-049E-442E-9C4C-A11F8D7C268B}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{21DC7BD8-EDAD-49B8-A386-353E4BCC9461}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0857F88E-C72B-B4C4-6019-5A6D2050229C}" = AMD Catalyst Install Manager "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition) "{26A24AE4-039D-4CA4-87B4-2F86416030FF}" = Java(TM) 6 Update 30 (64-bit) "{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1" = MPC-HC 1.6.3.4992 (64-bit) "{2BA8381A-F47A-0A1A-8CDC-9EED42CBF73A}" = AMD Media Foundation Decoders "{328EAC95-9299-BF47-BDBE-83F94AE07D71}" = AMD Drag and Drop Transcoding "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime "{529125EF-E3AC-4B74-97E6-F688A7C0F1C0}" = Paint.NET v3.5.10 "{6B541117-2CEB-4403-89AE-229FBFC33B2E}" = ESET NOD32 Antivirus "{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0419-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Russian) 2007 "{C5CFDA3B-64EC-21EE-6652-0E9AFC41FF8F}" = ccc-utility64 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "GIMP-2_is1" = GIMP 2.6.10 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "SynTPDeinstKey" = Synaptics Pointing Device Driver "WinRAR archiver" = WinRAR 4.00 (64-bit) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{01B9D184-F3C5-48B2-6DBA-56D5DCD85E97}" = CCC Help Chinese Traditional "{04AA3EBD-05AE-4405-AE63-B313B837A398}" = 2ГИС 3.12.0.2 "{062BC4B4-891A-C58D-B335-7A6358BB438C}" = CCC Help English "{0E4545D7-2B4B-1EF1-505E-1B9E512980F1}" = CCC Help Portuguese "{15DA32B6-4726-AABE-E3BD-761DA0DE4132}" = CCC Help Norwegian "{26A24AE4-039D-4CA4-87B4-2F83216030FF}" = Java(TM) 6 Update 30 "{2764C49D-4BFD-A240-F64D-E11AF855C714}" = CCC Help Swedish "{28C70D19-6DE9-43EF-BFA3-342F4A11B727}" = LibreOffice 3.5 "{29E21CFC-5DEE-6441-AD4A-C15655BFC146}" = CCC Help Chinese Standard "{2C03DD9D-D28B-9D33-22DA-AB1C007B8412}" = CCC Help Spanish "{2DE1BCDB-48F7-723F-1DF0-FAB7B4184CE4}" = CCC Help Danish "{2FF505C2-318E-7B51-FA77-51B9E6F0677D}" = CCC Help Czech "{30E02033-8A23-ABF8-474C-1CD0C7504659}" = CCC Help French "{43BAB72A-5430-FD3B-ADBD-02105E4AEE03}" = CCC Help Thai "{492B292A-8A5E-EE0D-5EAA-B303CCB1F14D}" = CCC Help Italian "{4B487EAF-EC47-EDEF-599B-CA45F17DD5D0}" = Catalyst Control Center Graphics Previews Common "{59FB5F5C-B127-D725-72CF-D8ECEF40163D}" = CCC Help Finnish "{6DFCEE0F-17DA-93D0-65EE-C280DA539FFD}" = CCC Help Korean "{78482808-3AE8-5650-52AD-2E73D0C6BB43}" = Catalyst Control Center Localization All "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8D4B4AB4-C554-66E3-1214-5C109C504220}" = Catalyst Control Center InstallProxy "{90120000-0018-0000-0000-0000000FF1CE}" = Microsoft Office PowerPoint 2007 "{90120000-0018-0000-0000-0000000FF1CE}_POWERPOINT_{00E877D5-CDF8-4DDC-9AE0-E541B4BB6487}" = "{90120000-0018-0419-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Russian) 2007 "{90120000-001B-0000-0000-0000000FF1CE}" = Microsoft Office Word 2007 "{90120000-001B-0000-0000-0000000FF1CE}_WORD_{6FD7AB43-423B-4DC4-BCCD-A18B81D72946}" = "{90120000-001B-0419-0000-0000000FF1CE}" = Microsoft Office Word MUI (Russian) 2007 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0419-0000-0000000FF1CE}" = Microsoft Office Proof (Russian) 2007 "{90120000-001F-0422-0000-0000000FF1CE}" = Microsoft Office Proof (Ukrainian) 2007 "{90120000-002C-0419-0000-0000000FF1CE}" = Microsoft Office Proofing (Russian) 2007 "{90120000-006E-0419-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Russian) 2007 "{95140000-00AF-0419-0000-0000000FF1CE}" = Microsoft PowerPoint Viewer "{A60C5BE1-9644-01E7-5E8A-5F0318D268C6}" = Catalyst Control Center "{A9674831-B5FC-32DA-D7F7-067DB3FC36C8}" = CCC Help Polish "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.4) "{B24A294A-5BA2-E73D-2064-80BB7A940102}" = CCC Help Japanese "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{B92C5909-1D37-4C51-8397-A28BB28E5DC3}" = Facebook Video Calling 1.2.0.287 "{BECC92A2-F74A-9003-214D-7F2B059B61D1}" = CCC Help Turkish "{C5F83335-F90D-4D27-8B8B-980905608D87}" = Данные 2ГИС г.Братск 01.12.2012 "{D1953F1B-F323-B5BC-4513-BC82EFED21DD}" = CCC Help Dutch "{DDB9AF26-1CA1-99F6-A3E5-3D76D6D45BE7}" = CCC Help Greek "{E0FA217A-9661-02A8-E259-A2702CBD8C40}" = CCC Help German "{E3C5F6E4-C491-4384-84C6-479FDEC01682}" = Данные 2ГИС г.Иркутск 01.12.2012 "{E72F1051-B87E-4EF4-AE9F-8FDD229CC438}" = Catalyst Control Center - Branding "{EBD2E918-2C91-A25B-DFA8-E9E96673061D}" = CCC Help Russian "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F950EC87-8370-F6BC-4996-1C2A0B486E5F}" = CCC Help Hungarian "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "AIMP3" = AIMP3 "Combined Community Codec Pack_is1" = Combined Community Codec Pack 2010-10-10 "Nimbuzz" = Nimbuzz 2.4.0 "Opera 12.12.1707" = Opera 12.12 "POWERPOINT" = Microsoft Office PowerPoint 2007 "SuperCopier2" = SuperCopier2 "uTorrent" = µTorrent "VKMusic 4_is1" = VKMusic 4 "WORD" = Microsoft Office Word 2007 "XnView_is1" = XnView 1.97 [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Webalta Toolbar" = Webalta Toolbar [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 30.11.2012 23:14:05 | Computer Name = User-ПК | Source = Google Update | ID = 20 Description = Error - 01.12.2012 5:26:53 | Computer Name = User-ПК | Source = Google Update | ID = 20 Description = Error - 01.12.2012 8:10:03 | Computer Name = User-ПК | Source = WinMgmt | ID = 10 Description = Error - 01.12.2012 10:42:27 | Computer Name = User-ПК | Source = WinMgmt | ID = 10 Description = Error - 01.12.2012 23:44:38 | Computer Name = User-ПК | Source = WinMgmt | ID = 10 Description = Error - 02.12.2012 21:46:39 | Computer Name = User-ПК | Source = WinMgmt | ID = 10 Description = Error - 03.12.2012 1:47:14 | Computer Name = User-ПК | Source = WinMgmt | ID = 10 Description = Error - 03.12.2012 6:11:55 | Computer Name = User-ПК | Source = WinMgmt | ID = 10 Description = Error - 04.12.2012 1:02:34 | Computer Name = User-ПК | Source = WinMgmt | ID = 10 Description = Error - 05.12.2012 3:46:28 | Computer Name = User-ПК | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 02.12.2012 22:11:34 | Computer Name = User-ПК | Source = Service Control Manager | ID = 7038 Description = Службе "upnphost" не удалось войти в систему с именем "NT AUTHORITY\LocalService" и текущим паролем, поскольку произошла ошибка: %%1352 Чтобы правильно настроить эту службу, используйте оснастку "Службы" в Консоли управления (MMC). Error - 02.12.2012 22:11:34 | Computer Name = User-ПК | Source = Service Control Manager | ID = 7000 Description = Сбой при запуске службы "Узел универсальных PNP-устройств" из-за ошибки %%1069 Error - 02.12.2012 22:11:34 | Computer Name = User-ПК | Source = Service Control Manager | ID = 7038 Description = Службе "upnphost" не удалось войти в систему с именем "NT AUTHORITY\LocalService" и текущим паролем, поскольку произошла ошибка: %%1352 Чтобы правильно настроить эту службу, используйте оснастку "Службы" в Консоли управления (MMC). Error - 02.12.2012 22:11:34 | Computer Name = User-ПК | Source = Service Control Manager | ID = 7000 Description = Сбой при запуске службы "Узел универсальных PNP-устройств" из-за ошибки %%1069 Error - 09.12.2012 19:09:03 | Computer Name = User-ПК | Source = Service Control Manager | ID = 7038 Description = Службе "upnphost" не удалось войти в систему с именем "NT AUTHORITY\LocalService" и текущим паролем, поскольку произошла ошибка: %%50 Чтобы правильно настроить эту службу, используйте оснастку "Службы" в Консоли управления (MMC). Error - 09.12.2012 19:09:03 | Computer Name = User-ПК | Source = Service Control Manager | ID = 7000 Description = Сбой при запуске службы "Узел универсальных PNP-устройств" из-за ошибки %%1069 Error - 14.12.2012 21:14:14 | Computer Name = User-ПК | Source = DCOM | ID = 10005 Description = Error - 14.12.2012 21:14:14 | Computer Name = User-ПК | Source = Service Control Manager | ID = 7038 Description = Службе "upnphost" не удалось войти в систему с именем "NT AUTHORITY\LocalService" и текущим паролем, поскольку произошла ошибка: %%50 Чтобы правильно настроить эту службу, используйте оснастку "Службы" в Консоли управления (MMC). Error - 14.12.2012 21:14:14 | Computer Name = User-ПК | Source = Service Control Manager | ID = 7000 Description = Сбой при запуске службы "Узел универсальных PNP-устройств" из-за ошибки %%1069 Error - 19.12.2012 5:50:01 | Computer Name = User-ПК | Source = bowser | ID = 8003 Description = < End of report >