OTL Extras logfile created on: 6/13/2013 1:52:12 PM - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Uesr\Desktop 64bit- Professional (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 3.48 Gb Total Physical Memory | 2.03 Gb Available Physical Memory | 58.53% Memory free 6.95 Gb Paging File | 5.21 Gb Available in Paging File | 74.91% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 97.56 Gb Total Space | 70.51 Gb Free Space | 72.28% Space Free | Partition Type: NTFS Drive D: | 368.10 Gb Total Space | 368.00 Gb Free Space | 99.97% Space Free | Partition Type: NTFS Drive F: | 971.13 Mb Total Space | 970.52 Mb Free Space | 99.94% Space Free | Partition Type: FAT Computer Name: UESR-PC | User Name: Uesr | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{20214DEF-030A-450B-9028-4850E0CE972D}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | "{6D3D0009-DFD9-4A6D-B583-454A18003993}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{7ECD23B3-B934-4AE1-A0E4-4611BC3AB349}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{92F05B7F-30B0-4627-AD4F-5306E2E147FD}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{C42207D0-6DC7-47CF-A8B6-C117F23C56C5}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe | "{C9DDE35C-E120-4811-BAC8-ACCBDCB31AE4}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{19D01830-EF9A-BB4A-2B43-A7A2D191FBCA}" = AMD Accelerated Video Transcoding "{237D687E-9E50-4A30-B810-262764CC491B}" = Garmin Communicator Plugin x64 "{2F72F540-1F60-4266-9506-952B21D6640D}" = Apple Mobile Device Support "{4F709EA4-F300-51D9-78D5-A198A612B929}" = AMD Drag and Drop Transcoding "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime "{53300BE7-7B2A-0057-ED1F-7974D7107EBA}" = AMD Media Foundation Decoders "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour "{76FF0F03-B707-4332-B5D1-A56C8303514E}" = iTunes "{7E6EAAD0-9A32-5169-B3A4-312B7FA1FB26}" = ccc-utility64 "{889DF117-14D1-44EE-9F31-C5FB5D47F68B}" = Yontoo 2.053 "{A83BDD51-65F8-FB49-5B18-42DF72C006CB}" = AMD Catalyst Install Manager "{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 "{F0C04613-00CE-3768-A2D1-AABDE5FF8FC3}" = AMD Fuel "98157A226B40B173301B0F53C8E98C47805D5152" = Windows Driver Package - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1.0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0D5FE880-7A5B-3251-A3F8-E4F6D17C23DE}" = CCC Help Spanish "{11C3B8FE-2319-4ECA-76AD-974A80F8A446}" = CCC Help Russian "{137E05B0-2788-D4FB-DCC5-5D75F61986C5}" = CCC Help Finnish "{13B070AB-1D2D-9B2C-1307-10D1411B3696}" = Catalyst Control Center Localization All "{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693}" = BrowserProtect "{174647F3-CB11-EA87-9C85-8BD86DFFE930}" = CCC Help French "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 "{3D5D6CFC-3097-425A-8D8F-7EAF5D57641D}" = Garmin USB Drivers "{4167ED9F-DF30-AEC9-5144-F47794660060}" = CCC Help Italian "{50A73620-E986-969E-B4E3-CBD0B794D96C}" = CCC Help Polish "{512C09CF-4A85-0D64-DAAC-D621D1EFA6E4}" = AMD VISION Engine Control Center "{52A488C2-7A79-662B-51C7-2214A2671F03}" = CCC Help Chinese Standard "{5629DC44-1FE3-1311-5B00-BDA52916F80C}" = CCC Help Portuguese "{59A255F1-8242-225E-A610-6701B28F7EAA}" = CCC Help German "{5C112F17-9FE7-4CAE-8825-A8295B782C27}" = Catalyst Control Center Graphics Previews Common "{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}" = Apple Application Support "{5DC79B52-A430-4203-A442-B3BAB3F10444}" = CCC Help Danish "{5FB122E9-2902-5C9C-25A8-6186150BA43A}" = CCC Help Swedish "{6445635A-F44C-19BC-700B-DE20E513B0DE}" = CCC Help Turkish "{647BB978-2876-487B-9B0E-FDB73F0EA4A2}" = Garmin Communicator Plugin "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7EEBB8E8-3DFC-76E6-DAAB-D727EBE9AC35}" = CCC Help English "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver For Windows 7 "{8F51C96A-7E10-7722-0E4D-B0719C2F1B72}" = CCC Help Japanese "{99B1E842-6819-984F-D6EB-F4DABD457C3A}" = CCC Help Thai "{A34AF97F-E7A0-F4E2-BE1F-042151CA48B0}" = CCC Help Korean "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.03) "{BA38075B-649D-2B48-FA2D-F584E57DD8C0}" = CCC Help Czech "{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader "{C34856F8-3521-0614-69CB-02322166C196}" = CCC Help Norwegian "{D1830075-2A3A-AF1C-3687-21AD501825E6}" = Catalyst Control Center InstallProxy "{D49ED115-EA74-C95A-0AE5-F652AA494D75}" = CCC Help Chinese Traditional "{E06F9FD8-D444-CFDF-378D-06BF5290417E}" = CCC Help Greek "{E4B05E80-E075-19FD-0532-B7CED6EA4934}" = CCC Help Hungarian "{EB03D098-3D97-4A93-7E39-8FBC2D41DBDC}" = CCC Help Dutch "{EEEDA52B-3C42-4BD7-BE42-FDB596EAFCEF}" = Catalyst Control Center - Branding "1ClickDownload" = TornTV "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "delta" = Delta toolbar "Delta Chrome Toolbar" = Delta Chrome Toolbar "Google Chrome" = Google Chrome "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.75.0.1300 "WinRAR archiver" = WinRAR 4.20 (32-bit) [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 6/13/2013 10:18:58 AM | Computer Name = Uesr-PC | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 998 Error - 6/13/2013 10:18:58 AM | Computer Name = Uesr-PC | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 998 Error - 6/13/2013 10:18:59 AM | Computer Name = Uesr-PC | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 6/13/2013 10:18:59 AM | Computer Name = Uesr-PC | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 2184 Error - 6/13/2013 10:18:59 AM | Computer Name = Uesr-PC | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 2184 Error - 6/13/2013 12:44:15 PM | Computer Name = Uesr-PC | Source = Application Error | ID = 1000 Description = Faulting application name: mbam.exe, version: 1.75.0.1, time stamp: 0x511f8eb2 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x80000000 Faulting process id: 0xc94 Faulting application start time: 0x01ce68549314ca7b Faulting application path: C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe Faulting module path: unknown Report Id: 7b66700d-d448-11e2-be0d-38eaa7f2f2bb Error - 6/13/2013 12:49:28 PM | Computer Name = Uesr-PC | Source = Application Error | ID = 1000 Description = Faulting application name: mbam.exe, version: 1.75.0.1, time stamp: 0x511f8eb2 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x0077006f Faulting process id: 0x3b0 Faulting application start time: 0x01ce6855710b9a24 Faulting application path: C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe Faulting module path: unknown Report Id: 3610e2fc-d449-11e2-be0d-38eaa7f2f2bb Error - 6/13/2013 12:59:24 PM | Computer Name = Uesr-PC | Source = Application Error | ID = 1000 Description = Faulting application name: mbam.exe, version: 1.75.0.1, time stamp: 0x511f8eb2 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x0077006f Faulting process id: 0xa44 Faulting application start time: 0x01ce6856bb4e5a32 Faulting application path: C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe Faulting module path: unknown Report Id: 98c272b6-d44a-11e2-a0ea-38eaa7f2f2bb Error - 6/13/2013 1:41:34 PM | Computer Name = Uesr-PC | Source = Application Error | ID = 1000 Description = Faulting application name: mbam.exe, version: 1.75.0.1, time stamp: 0x511f8eb2 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x008c0012 Faulting process id: 0xd40 Faulting application start time: 0x01ce68596559c738 Faulting application path: C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe Faulting module path: unknown Report Id: 7d18b281-d450-11e2-9256-38eaa7f2f2bb Error - 6/13/2013 1:42:34 PM | Computer Name = Uesr-PC | Source = Application Error | ID = 1000 Description = Faulting application name: mbam.exe, version: 1.75.0.1, time stamp: 0x511f8eb2 Faulting module name: browse~1.dll, version: 2.6.1339.144, time stamp: 0x51ac6848 Exception code: 0xc0000005 Fault offset: 0x00003608 Faulting process id: 0xd40 Faulting application start time: 0x01ce68596559c738 Faulting application path: C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe Faulting module path: c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll Report Id: a0b7ea33-d450-11e2-9256-74e5438aa8ac [ System Events ] Error - 6/6/2013 2:02:28 PM | Computer Name = Uesr-PC | Source = DCOM | ID = 10010 Description = Error - 6/6/2013 2:12:56 PM | Computer Name = Uesr-PC | Source = Service Control Manager | ID = 7023 Description = The SPP Notification Service service terminated with the following error: %%5 Error - 6/6/2013 4:11:45 PM | Computer Name = Uesr-PC | Source = Service Control Manager | ID = 7023 Description = The SPP Notification Service service terminated with the following error: %%5 Error - 6/6/2013 5:51:07 PM | Computer Name = Uesr-PC | Source = Service Control Manager | ID = 7023 Description = The SPP Notification Service service terminated with the following error: %%5 Error - 6/11/2013 4:13:06 PM | Computer Name = Uesr-PC | Source = DCOM | ID = 10010 Description = Error - 6/13/2013 11:15:43 AM | Computer Name = Uesr-PC | Source = DCOM | ID = 10010 Description = Error - 6/13/2013 1:50:38 PM | Computer Name = Uesr-PC | Source = Disk | ID = 262155 Description = The driver detected a controller error on \Device\Harddisk1\DR1. Error - 6/13/2013 1:50:39 PM | Computer Name = Uesr-PC | Source = Disk | ID = 262155 Description = The driver detected a controller error on \Device\Harddisk1\DR1. Error - 6/13/2013 1:50:39 PM | Computer Name = Uesr-PC | Source = Disk | ID = 262155 Description = The driver detected a controller error on \Device\Harddisk1\DR1. Error - 6/13/2013 1:50:40 PM | Computer Name = Uesr-PC | Source = Disk | ID = 262155 Description = The driver detected a controller error on \Device\Harddisk1\DR1. < End of report >