|
Mülltonne: [doppelt] OTL habe ich schon gegeben.was ich jetzt machen soll?Windows 7 Beiträge, die gegen unsere Regeln verstoßen haben, solche, die die Welt nicht braucht oder sonstiger Müll landet hier in der Mülltonne... |
12.01.2012, 15:24 | #1 |
| [doppelt] OTL habe ich schon gegeben.was ich jetzt machen soll? Hello zusammen ich hab ein Problem.Und ich brauche eure Hilfe. Vielleicht könnt ihr mir helfen.OTL Logfile: Code:
ATTFilter OTL Extras logfile created on: 12.01.2012 15:15:55 - Run 5 OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Home\Documents\From Desktop Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 3,25 Gb Total Physical Memory | 2,59 Gb Available Physical Memory | 79,81% Memory free 6,50 Gb Paging File | 5,90 Gb Available in Paging File | 90,79% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 116,44 Gb Total Space | 22,46 Gb Free Space | 19,29% Space Free | Partition Type: NTFS Drive D: | 334,67 Gb Total Space | 334,44 Gb Free Space | 99,93% Space Free | Partition Type: NTFS Computer Name: MTDVD-WINDOWS7 | User Name: Home | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>] .html [@ = htmlfile] -- Reg Error: Key error. File not found ========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS5.1\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- C:\PROGRA~1\MICROS~1\Office12\ONENOTE.EXE "%L" (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 ========== Authorized Applications List ========== ========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86 "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86 "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer "{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86 "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}" = ASUS LifeFrame3 "{1DDB95A4-FD7B-4517-B3F1-2BCAA96879E6}" = Windows Live Writer Resources "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions "{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform "{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}" = Wireless Console 3 "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{26A24AE4-039D-4CA4-87B4-2F83216025FF}" = Java(TM) 6 Update 25 "{27CC6AB1-E72B-4179-AF1A-EAE507EBAF51}_is1" = ConvertHelper 2.2 "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery "{37B33B16-2535-49E7-8990-32668708A0A3}" = Windows Live UX Platform Language Pack "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime "{5B65EF64-1DFA-414A-8C94-7BB726158E21}" = ControlDeck "{5B9C7C4F-A1CB-11E0-9E40-0013D3D69929}" = Vegas Pro 10.0 "{5DF7AA5E-A1CB-11E0-A7D6-0013D3D69929}" = MSVCRT Redists "{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86 "{64452561-169F-4A36-A2FF-B5E118EC65F5}" = ASUS SmartLogon "{65C0025A-2CDE-43C5-82D0-C7A56EF0DB39}" = Bing Bar Platform "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update "{6B77A7F6-DD63-4F13-A6FF-83137A5AC354}" = ASUS CopyProtect "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform "{8686D4FE-62EF-46FB-B9FD-00679EB381FF}_is1" = Trojan Killer 2.1 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{90120000-0015-0407-0000-0000000FF1CE}" = Microsoft Office Access MUI (German) 2007 "{90120000-0015-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2007 "{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2007 "{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0019-0407-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (German) 2007 "{90120000-0019-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (German) 2007 "{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2007 "{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007 "{90120000-001F-0410-0000-0000000FF1CE}_ENTERPRISE_{322296D4-1EAE-4030-9FBC-D2787EB25FA2}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581) "{90120000-0044-0407-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (German) 2007 "{90120000-0044-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2007 "{90120000-006E-0407-0000-0000000FF1CE}_ENTERPRISE_{26454C26-D259-4543-AA60-3189E09C5F76}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2007 "{90120000-00A1-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00BA-0407-0000-0000000FF1CE}" = Microsoft Office Groove MUI (German) 2007 "{90120000-00BA-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{9158FF30-78D7-40EF-B83E-451AC5334640}" = Adobe Photoshop CS5.1 "{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86 "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{95140000-007A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook Connector "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}" = ASUS Power4Gear Hybrid "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9D48531D-2135-49FC-BC29-ACCDA5396A76}" = ASUS MultiFrame "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail "{9FDC7042-CB9F-4336-A14C-DF10F53762E2}" = Topaz Adjust 4 "{a0fe116e-9a8a-466f-aee0-625cb7c207e3}" = Microsoft Visual C++ 2005 Redistributable - KB2467175 "{A1F2C608-32D6-467D-B035-BBEF509042BA}_is1" = Free Opener "{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer "{AC76BA86-7AD7-1031-7B44-AA1000000001}" = Adobe Reader X (10.1.1) - Deutsch "{AF844339-2F8A-4593-81B3-9F4C54038C4E}" = Windows Live MIME IFilter "{AFF7E080-1974-45BF-9310-10DE1A1F5ED0}" = Adobe AIR "{B113D18C-67B0-4FB7-B329-E89B66194AE6}" = Windows Live Fotogalerie "{B1239994-A850-44E2-BED8-E70A21124E16}" = Windows Live Mail "{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy "{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86 "{C13A8E73-7E98-4295-BA94-6931701CD1F9}" = Topaz Vivacity "{C2AB7DC4-489E-4BE9-887A-52262FBADBE0}" = Windows Live Photo Common "{C5398A89-516C-4DAF-BA07-EE7949090E56}" = Windows Live Mesh ActiveX control for remote connections "{C6150D8A-86ED-41D3-87BB-F3BB51B0B77F}" = Windows Live ID Sign-in Assistant "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform "{CFF8B8E8-E086-4DE0-935F-FE22CAB54F80}" = Microsoft Search Enhancement Pack "{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86 "{D1E5870E-E3E5-4475-98A6-ADD614524ADF}" = ATK Media "{D3D54F3E-C5C3-443D-978F-87A72E5616E8}" = ATK Generic Function Service "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform "{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86 "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E1845F1C-068C-F8F4-D31D-D3540D47C453}" = Adobe Download Assistant "{E4E88B54-4777-4659-967A-2EED1E6AFD83}" = Windows Live Movie Maker "{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}" = SRS Premium Sound Control Panel "{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}" = ASUS Live Update "{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}" = ASUS Virtual Camera "{EE6097DD-05F4-4178-9719-D3170BF098E8}" = Apple Application Support "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}" = ASUS FancyStart "{F4BF5F6B-F695-4762-AEB2-D095A4C34D89}" = Alcor Micro USB Card Reader "{F750C986-5310-3A5A-95F8-4EC71C8AC01C}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack "{F95E4EE0-0C6E-4273-B6B9-91FD6F071D76}" = Windows Live Essentials "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "ASUS USB2.0 UVC VGA WebCam" = ASUS USB2.0 UVC VGA WebCam "Attribute Changer" = Attribute Changer 6.0a "Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus "CCleaner" = CCleaner "com.adobe.downloadassistant.AdobeDownloadAssistant" = Adobe Download Assistant "Elantech" = ETDWare PS/2-x86 7.0.5.9_WHQL "ENTERPRISE" = Microsoft Office Enterprise 2007 "GeoGebra" = GeoGebra "InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Plattform-Geräte-Manager "InstallShield_{F4BF5F6B-F695-4762-AEB2-D095A4C34D89}" = Alcor Micro USB Card Reader "KLiteCodecPack_is1" = K-Lite Mega Codec Pack 8.0.0 "Magic Bullet Looks Vegas" = Magic Bullet Looks Vegas "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware Version 1.51.2.1300 "McAfee Security Scan" = McAfee Security Scan Plus "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack "Mozilla Firefox 8.0 (x86 de)" = Mozilla Firefox 8.0 (x86 de) "Nero Micro 9.2.6.02.0" = Nero Micro 9.2.6.0 Build.2.0 "NewBlue 3D Transformations for Vegas" = NewBlue 3D Transformations for Vegas "NewBlue Art Effects for Windows" = NewBlue Art Effects for Windows "NewBlue Film Effects for Windows" = NewBlue Film Effects for Windows "NewBlue Motion Blends for Windows" = NewBlue Motion Blends for Windows "OJOsoft Total Video Converter_is1" = OJOsoft Total Video Converter "Registry Easy_is1" = Registry Easy v5.6 "Security Task Manager" = Security Task Manager 1.8d "Topaz Adjust 4" = Topaz Adjust 4 "Uninstall_is1" = Uninstall 1.0.0.1 "VLC media player" = VLC media player 1.1.10 "WinLiveSuite" = Windows Live Essentials "WinRAR archiver" = WinRAR 4.00 (32-Bit) "Yahoo! Companion" = Yahoo! Toolbar "Yahoo! Search Defender" = Yahoo! Suche Schutzvorkehrung "Yahoo! Software Update" = Yahoo! Software Update ========== HKEY_CURRENT_USER Uninstall List ========== [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Yahoo! BrowserPlus" = Yahoo! BrowserPlus 2.9.8 ========== Last 10 Event Log Errors ========== Error reading Event Logs: The Event Service is not operating properly or the Event Logs are corrupt! < End of report > OTLOTL Logfile: Code:
ATTFilter OTL logfile created on: 12.01.2012 15:15:55 - Run 5 OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Home\Documents\From Desktop Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 3,25 Gb Total Physical Memory | 2,59 Gb Available Physical Memory | 79,81% Memory free 6,50 Gb Paging File | 5,90 Gb Available in Paging File | 90,79% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 116,44 Gb Total Space | 22,46 Gb Free Space | 19,29% Space Free | Partition Type: NTFS Drive D: | 334,67 Gb Total Space | 334,44 Gb Free Space | 99,93% Space Free | Partition Type: NTFS Computer Name: MTDVD-WINDOWS7 | User Name: Home | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - [2011.12.07 16:37:16 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Home\Documents\From Desktop\OTL.exe PRC - [2011.11.11 19:04:07 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Programme\Mozilla Firefox\firefox.exe PRC - [2011.02.26 06:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe ========== Modules (No Company Name) ========== MOD - [2011.12.29 17:59:10 | 008,527,008 | ---- | M] () -- C:\Windows\System32\Macromed\Flash\NPSWF32.dll MOD - [2011.11.11 19:04:07 | 001,989,592 | ---- | M] () -- C:\Programme\Mozilla Firefox\mozjs.dll ========== Win32 Services (SafeList) ========== SRV - [2011.06.28 14:49:09 | 000,269,480 | ---- | M] (Avira GmbH) [Auto | Stopped] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService) SRV - [2011.06.08 21:16:50 | 001,343,400 | ---- | M] () [Unknown | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc) SRV - [2011.06.06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) [Auto | Stopped] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice) SRV - [2011.03.28 15:15:04 | 000,136,360 | ---- | M] (Avira GmbH) [Auto | Stopped] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService) SRV - [2010.02.19 12:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard) SRV - [2010.01.15 13:49:20 | 000,227,232 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe -- (McComponentHostService) SRV - [2009.08.18 01:36:08 | 000,176,128 | ---- | M] (AMD) [Auto | Stopped] -- C:\Windows\System32\atiesrxx.exe -- (AMD External Events Utility) SRV - [2009.07.14 02:16:15 | 000,016,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\StorSvc.dll -- (StorSvc) SRV - [2009.07.14 02:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009.07.14 02:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc) SRV - [2009.07.14 02:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Programme\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2008.11.09 21:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Auto | Stopped] -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService) SRV - [2007.08.07 23:08:40 | 000,094,208 | ---- | M] () [Auto | Stopped] -- C:\Programme\ATKGFNEX\GFNEXSrv.exe -- (ATKGFNEXSrv) ========== Driver Services (SafeList) ========== DRV - [2011.06.28 14:49:09 | 000,138,192 | ---- | M] (Avira GmbH) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\avipbb.sys -- (avipbb) DRV - [2011.06.28 14:49:09 | 000,066,616 | ---- | M] (Avira GmbH) [File_System | Auto | Stopped] -- C:\Windows\System32\drivers\avgntflt.sys -- (avgntflt) DRV - [2010.06.17 14:27:02 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\ssmdrv.sys -- (ssmdrv) DRV - [2009.10.05 15:31:50 | 001,221,632 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athr.sys -- (athr) DRV - [2009.08.18 02:48:06 | 004,994,560 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\atikmdag.sys -- (atikmdag) DRV - [2009.08.12 04:37:32 | 001,759,872 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\snp2uvc.sys -- (SNP2UVC) USB2.0 PC Camera (SNP2UVC) DRV - [2009.07.14 02:19:10 | 000,175,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vmbus.sys -- (vmbus) DRV - [2009.07.14 02:19:10 | 000,040,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\vmstorfl.sys -- (storflt) DRV - [2009.07.14 02:19:10 | 000,028,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\storvsc.sys -- (storvsc) DRV - [2009.07.14 00:52:10 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\vwifimp.sys -- (vwifimp) DRV - [2009.07.14 00:28:47 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vms3cap.sys -- (s3cap) DRV - [2009.07.14 00:28:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\VMBusHID.sys -- (VMBusHID) DRV - [2009.07.09 09:08:30 | 001,066,496 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\viahduaa.sys -- (VIAHdAudAddService) DRV - [2009.06.18 11:18:00 | 000,015,416 | ---- | M] (Windows (R) Win 7 DDK provider) [File_System | Boot | Running] -- C:\Windows\system32\DRIVERS\lullaby.sys -- (lullaby) DRV - [2009.05.13 02:06:48 | 000,014,392 | ---- | M] (ASUS) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ATKACPI.sys -- (MTsensor) DRV - [2007.07.24 10:09:04 | 000,013,880 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Programme\ATKGFNEX\ASMMAP.sys -- (ASMMAP) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://de.yahoo.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://de.yahoo.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://de.msn.com/?ocid=ie9hp IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://de.yahoo.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 96 D3 88 6D 7B 39 CC 01 [binary data] IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - prefs.js..browser.search.defaultengine: "Ask.com" FF - prefs.js..browser.search.defaultenginename: "Ask.com" FF - prefs.js..browser.search.defaulturl: "hxxp://de.search.yahoo.com/search?fr=ffsp1&p=" FF - prefs.js..browser.search.order.1: "Ask.com" FF - prefs.js..browser.search.selectedEngine: "Ask.com" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "bing.de" FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}:6.0.25 FF - prefs.js..keyword.URL: "hxxp://search.sweetim.com/search.asp?src=2&q=" FF - prefs.js..sweetim.toolbar.previous.keyword.URL: "" FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll () FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKCU\Software\MozillaPlugins\@yahoo.com/BrowserPlus,version=2.9.8: C:\Users\Home\AppData\Local\Yahoo!\BrowserPlus\2.9.8\Plugins\npybrowserplus_2.9.8.dll (Yahoo! Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.11.11 19:04:09 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.12.17 19:54:16 | 000,000,000 | ---D | M] [2011.05.09 14:42:21 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Home\AppData\Roaming\mozilla\Extensions [2011.12.23 20:37:03 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Home\AppData\Roaming\mozilla\Firefox\Profiles\dij5s70v.default\extensions [2011.12.12 16:31:39 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Users\Home\AppData\Roaming\mozilla\Firefox\Profiles\dij5s70v.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} [2011.12.23 19:36:00 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\Home\AppData\Roaming\mozilla\Firefox\Profiles\dij5s70v.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2011.11.13 12:29:44 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Users\Home\AppData\Roaming\mozilla\Firefox\Profiles\dij5s70v.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781} [2011.05.28 22:15:06 | 000,002,399 | ---- | M] () -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\dij5s70v.default\searchplugins\askcom.xml [2011.06.17 19:46:24 | 000,003,915 | ---- | M] () -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\dij5s70v.default\searchplugins\sweetim.xml [2011.11.11 19:04:12 | 000,000,000 | ---D | M] (No name found) -- C:\Programme\Mozilla Firefox\extensions [2011.11.11 19:04:08 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2011.05.09 14:30:12 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2011.10.03 12:51:24 | 000,001,392 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazondotcom-de.xml [2011.10.03 12:51:24 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml [2011.10.03 12:51:24 | 000,001,153 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-de.xml [2011.10.03 12:51:24 | 000,006,805 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\leo_ende_de.xml [2011.10.03 12:51:23 | 000,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-de.xml [2011.10.03 12:51:23 | 000,001,105 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-de.xml O1 HOSTS File: ([2011.05.09 15:08:24 | 000,434,034 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 validation.sls.microsoft.com O1 - Hosts: 127.0.0.1 www.007guard.com O1 - Hosts: 127.0.0.1 007guard.com O1 - Hosts: 127.0.0.1 008i.com O1 - Hosts: 127.0.0.1 www.008k.com O1 - Hosts: 127.0.0.1 008k.com O1 - Hosts: 127.0.0.1 www.00hq.com O1 - Hosts: 127.0.0.1 00hq.com O1 - Hosts: 127.0.0.1 010402.com O1 - Hosts: 127.0.0.1 www.032439.com O1 - Hosts: 127.0.0.1 032439.com O1 - Hosts: 127.0.0.1 www.0scan.com O1 - Hosts: 127.0.0.1 0scan.com O1 - Hosts: 127.0.0.1 1000gratisproben.com O1 - Hosts: 127.0.0.1 www.1000gratisproben.com O1 - Hosts: 127.0.0.1 1001namen.com O1 - Hosts: 127.0.0.1 www.1001namen.com O1 - Hosts: 127.0.0.1 100888290cs.com O1 - Hosts: 127.0.0.1 www.100888290cs.com O1 - Hosts: 127.0.0.1 www.100sexlinks.com O1 - Hosts: 127.0.0.1 100sexlinks.com O1 - Hosts: 127.0.0.1 10sek.com O1 - Hosts: 127.0.0.1 www.10sek.com O1 - Hosts: 127.0.0.1 www.1-2005-search.com O1 - Hosts: 127.0.0.1 1-2005-search.com O1 - Hosts: 14935 more lines... O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Programme\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.) O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Programme\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation) O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O2 - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) O2 - BHO: (Bing Bar BHO) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Programme\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll (Microsoft Corporation) O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Programme\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll (Yahoo! Inc) O3 - HKLM\..\Toolbar: (@C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Programme\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll (Microsoft Corporation) O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.) O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {EEE6C35B-6118-11DC-9C72-001320C79847} - No CLSID value found. O4 - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin File not found O4 - HKLM..\Run: [AmIcoSinglun] C:\Programme\AmIcoSingLun\AmIcoSinglun.exe (AlcorMicro Co., Ltd.) O4 - HKLM..\Run: [ATKMEDIA] C:\Programme\ASUS\ATK Media\DMedia.exe (ASUS) O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH) O4 - HKLM..\Run: [ETDWare] C:\Programme\Elantech\ETDCtrl.exe (ELAN Microelectronic Corp.) O4 - HKLM..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe (VIA) O4 - HKLM..\Run: [Malwarebytes' Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation) O4 - HKLM..\Run: [SwitchBoard] C:\Programme\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [YSearchProtection] C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe (Yahoo! Inc) O4 - HKCU..\Run: [AdobeBridge] File not found O4 - HKCU..\Run: [ccleaner] C:\Program Files\CCleaner\CCleaner.exe (Piriform Ltd) O4 - HKCU..\Run: [Mozilla Firefox] C:\Users\Home\AppData\Roaming\Mozilla\Firefox\firefox.exe () O4 - HKCU..\Run: [Search Protection] C:\Programme\Yahoo!\Search Protection\SearchProtection.exe (Yahoo! Inc) O4 - Startup: C:\Users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk = C:\Programme\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Recovery present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: Nach Microsoft E&xel exportieren - C:\Programme\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O9 - Extra Button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programme\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Programme\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.) O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Programme\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.) O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab (Java Plug-in 1.6.0_25) O16 - DPF: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab (Java Plug-in 1.6.0_25) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab (Java Plug-in 1.6.0_25) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{483378A7-563B-49ED-992A-6BD8F61CEDDA}: DhcpNameServer = 192.168.2.1 O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Programme\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programme\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Programme\Windows Live\Mail\mailcomm.dll (Microsoft Corporation) O18 - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Programme\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\System32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) -C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009.06.10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* ========== Files/Folders - Created Within 30 Days ========== [2012.01.11 14:37:20 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\packager.dll [2012.01.11 14:37:18 | 001,328,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quartz.dll [2012.01.11 14:37:18 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qdvd.dll [2012.01.06 17:53:15 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{2D74070F-797A-407F-9FFB-009D8E801F2B} [2012.01.06 17:52:57 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{0BDD9D3D-77A6-4E8D-A934-9317B65C2EB5} [2012.01.05 15:14:15 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{6FEB0CD7-64CB-4DAF-B64F-FE1A77D8F721} [2012.01.05 15:14:03 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{59661B9B-ADF1-44D3-80DC-794DE870585E} [2012.01.04 15:43:54 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{9339CE02-E911-48C7-8E1E-AEF8B992F713} [2012.01.04 15:43:41 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{EA785534-A3FE-4E0E-A66A-770904313553} [2012.01.03 12:35:08 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{00489511-57B5-4D9D-AEDB-155E7A16C798} [2012.01.03 12:34:55 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{D72A5B4D-C270-4A91-9C13-F65A53240D67} [2012.01.02 19:06:07 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{4DF35CDD-7609-4AFC-B45A-7F638B2B645C} [2012.01.02 19:05:55 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{3373F6A7-6C19-4E44-B113-7C52828370FA} [2011.12.31 20:04:43 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{1176F23A-D6D5-4CCE-8910-70C01AA8773E} [2011.12.31 20:04:29 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{57E9D89E-E036-45C3-92B3-F9092D410DA0} [2011.12.30 15:27:56 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{F2AAF887-B893-4158-87B2-699281E39F84} [2011.12.30 15:27:45 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{C8A7802E-1988-46A1-9F37-7FEF7122CEC3} [2011.12.30 00:41:44 | 000,000,000 | ---D | C] -- C:\Users\Home\Desktop\PSD [2011.12.28 19:22:02 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{CFDE6A59-C987-40E7-A1F4-4D7EEC19206E} [2011.12.28 19:21:50 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{3AF891A9-E015-416E-AC56-B18DC57DB2D6} [2011.12.27 22:48:19 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{529A38BD-6F94-4C9C-AF43-0E3376B0E082} [2011.12.27 22:47:54 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{F049530A-C582-422A-9A5B-29620C35C24A} [2011.12.26 13:53:13 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{B869C13E-6788-4A9A-B030-808BFFE3DFE6} [2011.12.26 13:52:48 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{B335205F-7E30-48B5-A5EF-C48B551F031E} [2011.12.25 16:20:27 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Roaming\Media Player Classic [2011.12.25 15:27:16 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Roaming\Opera [2011.12.25 14:08:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack [2011.12.25 14:08:21 | 000,232,448 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\Windows\System32\mp3fhg.acm [2011.12.25 14:08:20 | 000,151,552 | ---- | C] (fccHandler) -- C:\Windows\System32\ac3acm.acm [2011.12.25 14:08:14 | 000,000,000 | ---D | C] -- C:\Program Files\K-Lite Codec Pack [2011.12.25 13:56:33 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{25FA77B3-CF3D-4F6F-9E37-71729BE317C7} [2011.12.25 13:56:15 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{95266E21-4DE1-4BBC-BAB9-BC3139AA5EDE} [2011.12.24 22:23:48 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{9CB177C8-10C2-44BB-B664-5A36A85E0C48} [2011.12.24 22:23:26 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{46D293E1-6180-4458-BD4B-55FD19BD15D2} [2011.12.24 21:30:33 | 000,000,000 | ---D | C] -- C:\Windows\de [2011.12.24 21:26:28 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server Compact Edition [2011.12.24 21:19:57 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\Diagnostics [2011.12.24 16:32:54 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{B3FC3E8A-1C61-43A9-A34F-87A74C9F489D} [2011.12.24 16:28:27 | 000,000,000 | ---D | C] -- C:\ProgramData\{83C3B2FD-37EA-4C06-A228-E9B5E32FF0B1} [2011.12.24 16:06:13 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{C224A62D-E066-49EA-9064-62D0AE34F475} [2011.12.24 15:55:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stuff [2011.12.24 15:19:11 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{3702F4D7-A7F3-49AD-8D8F-FE89F331B02F} [2011.12.24 13:40:00 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{D564B6ED-F505-41A7-8BC3-C5297360082C} [2011.12.24 13:39:45 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{4DF4FFEC-CF02-401A-9252-0C2AE4F5A1D0} [2011.12.23 20:20:15 | 000,000,000 | ---D | C] -- C:\Program Files\Registry Easy [2011.12.23 19:52:57 | 000,000,000 | ---D | C] -- C:\ProgramData\SecTaskMan [2011.12.23 19:52:55 | 000,000,000 | ---D | C] -- C:\Program Files\Security Task Manager [2011.12.23 18:49:27 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{2709AE5F-F16E-4E3A-9E2A-DCE924098D59} [2011.12.23 18:49:15 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{4123E8BC-F9D6-40AF-A62E-47591B604B2B} [2011.12.22 17:11:15 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{A3C95D47-2382-4C7F-B1A0-5FB8F24FA261} [2011.12.22 17:11:00 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{AB4BE6BD-FFBF-4F4C-B230-0E7013B694B2} [2011.12.22 13:57:09 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{900CE9B1-4783-4476-B9AE-9D26728F7A78} [2011.12.22 13:56:53 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{C29E2496-FDC9-4EBE-9442-E6CF2BF705B6} [2011.12.21 22:08:35 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\Microsoft Games [2011.12.21 21:33:02 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Games [2011.12.21 20:58:55 | 000,000,000 | ---D | C] -- C:\Program Files\Romain's Software [2011.12.21 20:04:04 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware [2011.12.21 19:42:57 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{B555D412-1E43-4E12-8673-84C3DE1CCEFD} [2011.12.21 19:42:43 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{CE081762-4BC2-4F18-A4D2-432D70B6DDE8} [2011.12.21 19:21:48 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Fix [2011.12.21 15:18:06 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{3B485CAC-E180-4DCB-96A0-C81E9DCF4ECC} [2011.12.20 14:05:04 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{D7F86697-DBA1-4DA1-8FC0-37993D4E9A8F} [2011.12.20 14:04:50 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{649D19D2-7649-4227-B53D-70C47EDEB847} [2011.12.19 11:30:22 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{E54A69EF-5766-4EFF-8496-C0B2AE999F8D} [2011.12.19 11:30:08 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{F5EB14AD-5A17-4F90-A15E-98F2E3A27942} [2011.12.18 17:56:05 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{EBB7B3F8-785F-4FDF-95DD-6634405AC785} [2011.12.18 17:55:44 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{149467AD-9CA5-4BEB-A4FB-344AD551923D} [2011.12.18 01:30:55 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{CD1CA715-F757-47F3-9281-5832089DA47C} [2011.12.18 01:30:18 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{3BED775C-1452-4438-A3E4-74D0AC40EE6B} [2011.12.17 19:54:30 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee Security Scan [2011.12.17 19:54:28 | 000,000,000 | ---D | C] -- C:\Program Files\McAfee Security Scan [2011.12.17 19:16:33 | 000,000,000 | ---D | C] -- C:\Program Files\Free Opener [2011.12.17 19:14:56 | 000,000,000 | ---D | C] -- C:\Program Files\Free Offers from Freeze.com [2011.12.17 13:29:35 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{B3510769-B838-4DE3-99F7-3EEFD7367070} [2011.12.17 13:29:22 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{6B646B4A-C219-4787-BEEB-E5F40C783BF9} [2011.12.16 21:04:15 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{39348945-0C2F-4D1D-A09C-47AC67E78472} [2011.12.16 21:04:01 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{29DE9D1D-5800-436F-83BE-BC2053BC006B} [2011.12.16 08:12:01 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{FE50F74E-5CCE-4C92-8B6C-8B678E9D71B5} [2011.12.16 08:11:46 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{76DD265F-26A9-483F-A835-9A268B4019CF} [2011.12.15 19:05:55 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{24EF88F6-D0FA-453C-990B-6748EEEDCB84} [2011.12.15 19:02:47 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{63F2C659-38E0-406C-B2F6-73D9BB021FFE} [2011.12.14 14:14:44 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{B0213EAB-700C-4754-99E4-A9A38C566852} [2011.12.14 14:14:31 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{18A183D4-80B3-42C5-8466-D23427CE4003} [2011.12.14 14:14:09 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{00EBCAB5-2426-4AD7-A90D-8DC80390E32C} [2011.12.14 00:05:06 | 002,382,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb [2011.12.14 00:05:04 | 001,798,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll [2011.12.14 00:05:04 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll [2011.12.14 00:05:03 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll [2011.12.14 00:05:03 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll [2011.12.14 00:05:00 | 001,427,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl [2011.12.13 19:32:02 | 002,340,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys [2011.12.13 19:31:54 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll [2011.12.13 19:31:40 | 000,534,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EncDec.dll [2011.12.13 19:31:29 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\csrsrv.dll [2011.12.13 19:31:22 | 003,957,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe [2011.12.13 19:31:22 | 003,901,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe [2011.12.13 19:20:09 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{D58D5671-32D4-4F50-8E38-BFC88E512FE6} [2011.12.13 19:19:53 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{CF7695B0-D6EA-4E06-A985-2EA8C86E5E12} [2011.05.27 13:43:14 | 000,196,608 | ---- | C] ( ) -- C:\Windows\System32\csnp2uvc.dll [2008.08.11 20:45:20 | 000,155,648 | ---- | C] (ASUS) -- C:\Program Files\Common Files\MSIactionall.dll ========== Files - Modified Within 30 Days ========== [2012.01.12 15:18:20 | 000,194,500 | ---- | M] () -- C:\Users\Home\Desktop\iKKUMWm6sPCT9.jpg [2012.01.12 14:32:04 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2012.01.12 14:31:53 | 2616,549,376 | -HS- | M] () -- C:\hiberfil.sys [2012.01.11 23:12:27 | 000,008,208 | ---- | M] () -- C:\Users\Home\Desktop\Untitled-1.jpg [2012.01.11 23:11:59 | 000,019,472 | ---- | M] () -- C:\Users\Home\Desktop\Untitled-1.png [2012.01.11 23:11:59 | 000,000,132 | ---- | M] () -- C:\Users\Home\AppData\Roaming\Adobe PNG Format CS5 Prefs [2012.01.11 22:34:28 | 000,001,090 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2012.01.11 22:34:23 | 000,000,304 | -HS- | M] () -- C:\Windows\tasks\Uuznavpxle.job [2012.01.11 22:16:31 | 002,569,999 | ---- | M] () -- C:\Users\Home\Desktop\23.gif [2012.01.11 22:00:36 | 000,001,049 | ---- | M] () -- C:\Users\Public\Documents\Videos - Verknüpfung.lnk [2012.01.11 22:00:12 | 000,001,094 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2012.01.11 16:29:18 | 000,024,672 | ---- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2012.01.11 16:29:18 | 000,024,672 | ---- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2012.01.07 16:15:58 | 010,819,743 | ---- | M] () -- C:\Users\Home\Desktop\Twinkle_Twinkle_Little_Star.failed-conv.mp4 [2012.01.06 23:56:44 | 000,120,160 | ---- | M] () -- C:\Users\Home\Desktop\Unbenannt.jpg [2012.01.06 23:02:52 | 012,964,835 | ---- | M] () -- C:\Users\Home\Desktop\Dheere_Dheere_song_-_Kyun_Ho_Gaya_Na.failed-conv.mp4 [2012.01.06 18:45:51 | 000,001,456 | ---- | M] () -- C:\Users\Home\AppData\Local\Adobe Save for Web 12.0 Prefs [2012.01.02 22:18:38 | 000,654,166 | ---- | M] () -- C:\Windows\System32\perfh007.dat [2012.01.02 22:18:38 | 000,616,008 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2012.01.02 22:18:38 | 000,130,006 | ---- | M] () -- C:\Windows\System32\perfc007.dat [2012.01.02 22:18:38 | 000,106,388 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2011.12.29 17:59:11 | 000,414,368 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [2011.12.26 18:59:33 | 000,027,617 | -HS- | M] () -- C:\Users\Home\Desktop\Folder.jpg [2011.12.25 00:45:28 | 000,000,132 | ---- | M] () -- C:\Users\Home\AppData\Roaming\Adobe GIF Format CS5 Prefs [2011.12.24 21:10:08 | 000,000,020 | ---- | M] () -- C:\Windows\˜óq [2011.12.23 20:31:13 | 000,000,042 | ---- | M] () -- C:\Windows\System32\RegistryEasy.lie [2011.12.23 20:20:17 | 000,001,032 | ---- | M] () -- C:\Users\Home\Desktop\Registry Easy.lnk [2011.12.23 19:49:17 | 000,000,000 | ---- | M] () -- C:\Users\Home\AppData\Local\{7E8B6734-ECC8-405F-8930-212CE66D640D} [2011.12.22 13:56:03 | 000,870,376 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2011.12.18 19:25:30 | 000,186,591 | ---- | M] () -- C:\Users\Home\Desktop\P7181697.JPG ========== Files Created - No Company Name ========== [2012.01.12 15:18:18 | 000,194,500 | ---- | C] () -- C:\Users\Home\Desktop\iKKUMWm6sPCT9.jpg [2012.01.11 23:12:25 | 000,008,208 | ---- | C] () -- C:\Users\Home\Desktop\Untitled-1.jpg [2012.01.11 23:11:58 | 000,019,472 | ---- | C] () -- C:\Users\Home\Desktop\Untitled-1.png [2012.01.11 22:16:30 | 002,569,999 | ---- | C] () -- C:\Users\Home\Desktop\23.gif [2012.01.11 22:00:36 | 000,001,049 | ---- | C] () -- C:\Users\Public\Documents\Videos - Verknüpfung.lnk [2012.01.07 16:15:08 | 010,819,743 | ---- | C] () -- C:\Users\Home\Desktop\Twinkle_Twinkle_Little_Star.failed-conv.mp4 [2012.01.06 23:56:44 | 000,120,160 | ---- | C] () -- C:\Users\Home\Desktop\Unbenannt.jpg [2012.01.06 23:02:04 | 012,964,835 | ---- | C] () -- C:\Users\Home\Desktop\Dheere_Dheere_song_-_Kyun_Ho_Gaya_Na.failed-conv.mp4 [2011.12.25 14:08:20 | 000,650,752 | ---- | C] () -- C:\Windows\System32\xvidcore.dll [2011.12.25 14:08:20 | 000,243,200 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll [2011.12.25 14:08:19 | 000,074,752 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll [2011.12.24 21:28:21 | 000,001,253 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk [2011.12.24 21:27:12 | 000,001,322 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk [2011.12.24 21:25:04 | 000,001,406 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk [2011.12.24 21:10:07 | 000,000,020 | ---- | C] () -- C:\Windows\˜óq [2011.12.23 20:31:13 | 000,000,042 | ---- | C] () -- C:\Windows\System32\RegistryEasy.lie [2011.12.23 20:20:17 | 000,001,032 | ---- | C] () -- C:\Users\Home\Desktop\Registry Easy.lnk [2011.12.23 19:49:17 | 000,000,000 | ---- | C] () -- C:\Users\Home\AppData\Local\{7E8B6734-ECC8-405F-8930-212CE66D640D} [2011.12.18 19:21:24 | 000,186,591 | ---- | C] () -- C:\Users\Home\Desktop\P7181697.JPG [2011.12.17 19:16:48 | 000,175,616 | ---- | C] () -- C:\Windows\System32\unrar.dll [2011.11.04 22:14:52 | 000,031,758 | ---- | C] () -- C:\Users\Home\AppData\Roaming\UserTile.png [2011.07.05 13:34:15 | 000,000,132 | ---- | C] () -- C:\Users\Home\AppData\Roaming\Adobe PNG Format CS5 Prefs [2011.06.22 21:30:51 | 000,000,132 | ---- | C] () -- C:\Users\Home\AppData\Roaming\Adobe AIFF Format CS5 Prefs [2011.06.07 21:26:47 | 000,001,456 | ---- | C] () -- C:\Users\Home\AppData\Local\Adobe Save for Web 12.0 Prefs [2011.06.07 20:46:41 | 000,000,132 | ---- | C] () -- C:\Users\Home\AppData\Roaming\Adobe GIF Format CS5 Prefs [2011.05.29 11:44:58 | 000,000,048 | ---- | C] () -- C:\Windows\System32\ezsidmv.dat [2011.05.27 15:58:13 | 000,008,704 | ---- | C] () -- C:\Users\Home\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011.05.27 13:43:14 | 001,759,872 | ---- | C] () -- C:\Windows\System32\drivers\snp2uvc.sys [2011.05.27 13:43:14 | 000,028,544 | ---- | C] () -- C:\Windows\System32\drivers\sncduvc.sys [2011.05.27 13:43:14 | 000,015,497 | ---- | C] () -- C:\Windows\snp2uvc.ini [2011.05.23 20:31:45 | 000,000,017 | ---- | C] () -- C:\Users\Home\AppData\Local\resmon.resmoncfg [2011.05.09 14:42:15 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat [2011.05.09 13:51:21 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin [2010.09.15 10:55:52 | 000,179,200 | ---- | C] () -- C:\Windows\System32\NB Key 1.exe [2010.05.26 23:30:15 | 000,528,896 | ---- | C] () -- C:\Windows\System32\RegisterDialog.dll [2009.12.03 08:27:30 | 000,080,416 | ---- | C] () -- C:\Windows\System32\RtNicProp32.dll [2009.07.14 10:04:11 | 000,654,166 | ---- | C] () -- C:\Windows\System32\perfh007.dat [2009.07.14 10:04:11 | 000,295,922 | ---- | C] () -- C:\Windows\System32\perfi007.dat [2009.07.14 10:04:11 | 000,130,006 | ---- | C] () -- C:\Windows\System32\perfc007.dat [2009.07.14 10:04:11 | 000,038,104 | ---- | C] () -- C:\Windows\System32\perfd007.dat [2009.07.14 05:57:37 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat [2009.07.14 05:33:53 | 000,870,376 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT [2009.07.14 03:05:48 | 000,616,008 | ---- | C] () -- C:\Windows\System32\perfh009.dat [2009.07.14 03:05:48 | 000,291,294 | ---- | C] () -- C:\Windows\System32\perfi009.dat [2009.07.14 03:05:48 | 000,106,388 | ---- | C] () -- C:\Windows\System32\perfc009.dat [2009.07.14 03:05:48 | 000,031,548 | ---- | C] () -- C:\Windows\System32\perfd009.dat [2009.07.14 03:05:05 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT [2009.07.14 03:04:11 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat [2009.07.14 01:19:49 | 000,066,048 | ---- | C] () -- C:\Windows\System32\PrintBrmUi.exe [2009.07.14 00:55:01 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin [2009.07.14 00:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll [2009.07.14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll [2009.06.18 18:29:04 | 000,197,654 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat [2009.06.10 22:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat [2009.04.08 09:31:56 | 000,106,496 | ---- | C] () -- C:\Program Files\Common Files\CPInstallAction.dll [2009.02.18 16:55:22 | 000,294,912 | ---- | C] () -- C:\Windows\System32\ATIODE.exe [2009.02.03 19:52:04 | 000,045,056 | ---- | C] () -- C:\Windows\System32\ATIODCLI.exe [2008.05.22 07:35:54 | 000,051,962 | ---- | C] () -- C:\Program Files\Common Files\banner.jpg [2007.12.15 14:55:30 | 005,423,104 | ---- | C] () -- C:\Windows\System32\tlpsplib10.dll ========== LOP Check ========== [2011.05.28 12:11:41 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\AnvSoft [2011.05.22 16:19:35 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Canneverbe Limited [2011.05.22 16:57:05 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant [2011.08.08 13:03:49 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\DVDVideoSoft [2011.08.08 13:03:40 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\DVDVideoSoftIEHelpers [2011.08.10 22:45:37 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\gtk-2.0 [2011.05.28 12:10:16 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\OpenCandy [2011.12.25 15:27:16 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Opera [2011.05.24 20:37:11 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\PDAppFlex [2011.05.25 17:51:47 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Publish Providers [2011.08.22 22:39:09 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Sony [2011.06.03 15:15:50 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Sony Creative Software [2011.08.23 14:42:14 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Sony Creative Software Inc [2011.05.31 19:47:56 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 [2011.05.09 14:40:57 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\TuneUp Software [2011.06.22 12:34:51 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Windows Live Writer [2011.12.24 13:38:55 | 000,032,632 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [2012.01.11 22:34:23 | 000,000,304 | -HS- | M] () -- C:\Windows\Tasks\Uuznavpxle.job ========== Purity Check ========== ========== Alternate Data Streams ========== @Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:89EAFAFC < End of report > |
12.01.2012, 15:40 | #2 |
| [doppelt] OTL habe ich schon gegeben.was ich jetzt machen soll? Kann mir jemand helfen?
__________________ |
Themen zu [doppelt] OTL habe ich schon gegeben.was ich jetzt machen soll? |
adobe, alternate, antivir, avira, bho, converter, defender, error, excel.exe, explorer, firefox, flash player, format, generic, gfnexsrv.exe, home, install.exe, langs, logfile, microsoft office word, mozilla, msvcrt, office 2007, photoshop, plug-in, programme, registry, rundll, safer networking, scan, security, security scan, security update, senden, trojan, usb, vdeck.exe, version=1.0, video converter, webcheck, windows |