Ich muss dies in zwei Postings machen, da zuviele Zeichen vorhaben waren und dies verhindert wurde.
Code:
Alles auswählen Aufklappen ATTFilter
OTL logfile created on: 22.01.2012 21:33:01 - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\[Name]\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
5,91 Gb Total Physical Memory | 2,70 Gb Available Physical Memory | 45,74% Memory free
11,83 Gb Paging File | 8,56 Gb Available in Paging File | 72,35% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 196,29 Gb Total Space | 9,02 Gb Free Space | 4,59% Space Free | Partition Type: NTFS
Drive D: | 244,47 Gb Total Space | 22,59 Gb Free Space | 9,24% Space Free | Partition Type: NTFS
Drive E: | 4,82 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
Computer Name: SHAKALAKA-PC | User Name: [Name] | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012.01.22 21:31:56 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\[Name]\Desktop\OTL.exe
PRC - [2011.12.24 17:50:18 | 000,652,872 | ---- | M] (Malwarebytes Corporation) -- D:\Programme\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2011.12.24 17:50:18 | 000,460,872 | ---- | M] (Malwarebytes Corporation) -- D:\Programme\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2011.12.09 16:17:32 | 000,342,480 | ---- | M] (Avira Operations GmbH & Co. KG) -- D:\Programme\Avira\AntiVir Desktop\avmailc.exe
PRC - [2011.10.18 16:13:07 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) -- D:\Programme\Avira\AntiVir Desktop\sched.exe
PRC - [2011.10.18 16:03:45 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) -- D:\Programme\Avira\AntiVir Desktop\avguard.exe
PRC - [2011.10.18 16:03:42 | 000,258,512 | ---- | M] (Avira Operations GmbH & Co. KG) -- D:\Programme\Avira\AntiVir Desktop\avgnt.exe
PRC - [2011.10.18 16:03:33 | 000,616,400 | ---- | M] (Avira Operations GmbH & Co. KG) -- D:\Programme\Avira\AntiVir Desktop\avfwsvc.exe
PRC - [2011.10.18 16:02:49 | 000,306,128 | ---- | M] (Avira Operations GmbH & Co. KG) -- D:\Programme\Avira\AntiVir Desktop\avcenter.exe
PRC - [2011.10.06 21:35:23 | 000,924,632 | ---- | M] (Mozilla Corporation) -- D:\Programme\Mozilla Firefox\firefox.exe
PRC - [2011.08.03 12:50:00 | 002,255,464 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
PRC - [2011.07.15 06:53:01 | 003,058,304 | ---- | M] (ASUS) -- C:\Windows\AsScrPro.exe
PRC - [2011.07.14 13:21:10 | 000,108,032 | ---- | M] () -- D:\Programme\VLC\vlc.exe
PRC - [2011.06.24 06:37:58 | 000,049,340 | ---- | M] (The Pidgin developer community) -- D:\Programme\Pidgin\pidgin.exe
PRC - [2011.06.05 10:16:20 | 002,011,136 | ---- | M] () -- D:\Programme\foobar2000\foobar2000.exe
PRC - [2011.05.24 10:33:30 | 001,840,128 | ---- | M] (MAGIX AG) -- C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
PRC - [2010.10.07 13:05:14 | 000,170,624 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
PRC - [2010.09.23 15:53:16 | 001,601,536 | ---- | M] () -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
PRC - [2010.09.14 04:45:56 | 000,219,496 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
PRC - [2010.09.14 04:45:44 | 000,508,264 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
PRC - [2010.08.17 13:55:42 | 005,732,992 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
PRC - [2010.07.10 06:45:00 | 000,984,400 | ---- | M] (Virage Logic Corporation / Sonic Focus) -- C:\Program Files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe
PRC - [2009.12.15 09:39:38 | 000,096,896 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
PRC - [2009.06.19 09:29:42 | 000,105,016 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
PRC - [2009.06.15 16:30:42 | 000,084,536 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
========== Modules (No Company Name) ==========
MOD - [2011.10.19 18:33:17 | 000,928,256 | ---- | M] () -- C:\Users\[Name]\AppData\Roaming\Mozilla\Firefox\Profiles\vkuuxfit.default\extensions\support@lastpass.com\platform\WINNT_x86-msvc\components\lpxpcom.dll
MOD - [2011.10.06 21:35:22 | 001,833,944 | ---- | M] () -- D:\Programme\Mozilla Firefox\mozjs.dll
MOD - [2011.08.14 20:35:40 | 006,277,280 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
MOD - [2011.08.12 18:22:42 | 000,904,525 | ---- | M] () -- D:\Programme\Pidgin\Gtk\bin\libcairo-2.dll
MOD - [2011.08.12 18:22:42 | 000,535,264 | ---- | M] () -- D:\Programme\Pidgin\Gtk\bin\freetype6.dll
MOD - [2011.08.12 18:22:42 | 000,482,872 | ---- | M] () -- D:\Programme\Pidgin\Gtk\bin\libgio-2.0-0.dll
MOD - [2011.08.12 18:22:42 | 000,279,059 | ---- | M] () -- D:\Programme\Pidgin\Gtk\bin\libfontconfig-1.dll
MOD - [2011.08.12 18:22:42 | 000,219,305 | ---- | M] () -- D:\Programme\Pidgin\Gtk\bin\libpng14-14.dll
MOD - [2011.08.12 18:22:42 | 000,143,096 | ---- | M] () -- D:\Programme\Pidgin\Gtk\bin\libexpat-1.dll
MOD - [2011.08.12 18:22:42 | 000,095,189 | ---- | M] () -- D:\Programme\Pidgin\Gtk\bin\libpangocairo-1.0-0.dll
MOD - [2011.08.12 18:22:42 | 000,090,496 | ---- | M] () -- D:\Programme\Pidgin\Gtk\lib\gtk-2.0\2.10.0\engines\libwimp.dll
MOD - [2011.08.12 18:22:42 | 000,055,808 | ---- | M] () -- D:\Programme\Pidgin\Gtk\bin\zlib1.dll
MOD - [2011.07.14 13:21:22 | 001,712,128 | ---- | M] () -- D:\Programme\VLC\plugins\libvorbis_plugin.dll
MOD - [2011.07.14 13:21:22 | 001,137,664 | ---- | M] () -- D:\Programme\VLC\plugins\libxml_plugin.dll
MOD - [2011.07.14 13:21:22 | 001,108,992 | ---- | M] () -- D:\Programme\VLC\plugins\libtaglib_plugin.dll
MOD - [2011.07.14 13:21:22 | 000,368,640 | ---- | M] () -- D:\Programme\VLC\plugins\libtheora_plugin.dll
MOD - [2011.07.14 13:21:22 | 000,325,120 | ---- | M] () -- D:\Programme\VLC\plugins\libswscale_plugin.dll
MOD - [2011.07.14 13:21:22 | 000,123,392 | ---- | M] () -- D:\Programme\VLC\plugins\libts_plugin.dll
MOD - [2011.07.14 13:21:22 | 000,078,848 | ---- | M] () -- D:\Programme\VLC\plugins\libzip_plugin.dll
MOD - [2011.07.14 13:21:22 | 000,052,736 | ---- | M] () -- D:\Programme\VLC\plugins\libty_plugin.dll
MOD - [2011.07.14 13:21:22 | 000,046,592 | ---- | M] () -- D:\Programme\VLC\plugins\libwaveout_plugin.dll
MOD - [2011.07.14 13:21:22 | 000,040,448 | ---- | M] () -- D:\Programme\VLC\plugins\libyuy2_i420_plugin.dll
MOD - [2011.07.14 13:21:22 | 000,038,912 | ---- | M] () -- D:\Programme\VLC\plugins\libvout_wrapper_plugin.dll
MOD - [2011.07.14 13:21:22 | 000,036,864 | ---- | M] () -- D:\Programme\VLC\plugins\libyuy2_i422_plugin.dll
MOD - [2011.07.14 13:21:22 | 000,036,864 | ---- | M] () -- D:\Programme\VLC\plugins\libwav_plugin.dll
MOD - [2011.07.14 13:21:22 | 000,036,352 | ---- | M] () -- D:\Programme\VLC\plugins\libvoc_plugin.dll
MOD - [2011.07.14 13:21:22 | 000,033,792 | ---- | M] () -- D:\Programme\VLC\plugins\libtta_plugin.dll
MOD - [2011.07.14 13:21:22 | 000,031,744 | ---- | M] () -- D:\Programme\VLC\plugins\libxa_plugin.dll
MOD - [2011.07.14 13:21:22 | 000,031,232 | ---- | M] () -- D:\Programme\VLC\plugins\libyuvp_plugin.dll
MOD - [2011.07.14 13:21:22 | 000,031,232 | ---- | M] () -- D:\Programme\VLC\plugins\libugly_resampler_plugin.dll
MOD - [2011.07.14 13:21:22 | 000,030,720 | ---- | M] () -- D:\Programme\VLC\plugins\libtrivial_mixer_plugin.dll
MOD - [2011.07.14 13:21:20 | 011,496,448 | ---- | M] () -- D:\Programme\VLC\plugins\libqt4_plugin.dll
MOD - [2011.07.14 13:21:20 | 002,169,856 | ---- | M] () -- D:\Programme\VLC\plugins\libskins2_plugin.dll
MOD - [2011.07.14 13:21:20 | 001,013,248 | ---- | M] () -- D:\Programme\VLC\plugins\libschroedinger_plugin.dll
MOD - [2011.07.14 13:21:20 | 000,130,048 | ---- | M] () -- D:\Programme\VLC\plugins\libspeex_plugin.dll
MOD - [2011.07.14 13:21:20 | 000,080,896 | ---- | M] () -- D:\Programme\VLC\plugins\libsap_plugin.dll
MOD - [2011.07.14 13:21:20 | 000,052,224 | ---- | M] () -- D:\Programme\VLC\plugins\libreal_plugin.dll
MOD - [2011.07.14 13:21:20 | 000,036,864 | ---- | M] () -- D:\Programme\VLC\plugins\libsmf_plugin.dll
MOD - [2011.07.14 13:21:20 | 000,036,864 | ---- | M] () -- D:\Programme\VLC\plugins\libscaletempo_plugin.dll
MOD - [2011.07.14 13:21:20 | 000,036,864 | ---- | M] () -- D:\Programme\VLC\plugins\librawvid_plugin.dll
MOD - [2011.07.14 13:21:20 | 000,034,304 | ---- | M] () -- D:\Programme\VLC\plugins\libstream_filter_rar_plugin.dll
MOD - [2011.07.14 13:21:20 | 000,033,792 | ---- | M] () -- D:\Programme\VLC\plugins\libsimple_channel_mixer_plugin.dll
MOD - [2011.07.14 13:21:20 | 000,033,792 | ---- | M] () -- D:\Programme\VLC\plugins\librawdv_plugin.dll
MOD - [2011.07.14 13:21:20 | 000,031,744 | ---- | M] () -- D:\Programme\VLC\plugins\libscale_plugin.dll
MOD - [2011.07.14 13:21:20 | 000,031,232 | ---- | M] () -- D:\Programme\VLC\plugins\libstream_filter_record_plugin.dll
MOD - [2011.07.14 13:21:20 | 000,030,720 | ---- | M] () -- D:\Programme\VLC\plugins\libspdif_mixer_plugin.dll
MOD - [2011.07.14 13:21:18 | 001,231,872 | ---- | M] () -- D:\Programme\VLC\plugins\libmkv_plugin.dll
MOD - [2011.07.14 13:21:18 | 000,441,856 | ---- | M] () -- D:\Programme\VLC\plugins\libmod_plugin.dll
MOD - [2011.07.14 13:21:18 | 000,237,568 | ---- | M] () -- D:\Programme\VLC\plugins\libpng_plugin.dll
MOD - [2011.07.14 13:21:18 | 000,194,048 | ---- | M] () -- D:\Programme\VLC\plugins\libmp4_plugin.dll
MOD - [2011.07.14 13:21:18 | 000,128,000 | ---- | M] () -- D:\Programme\VLC\plugins\libmpgatofixed32_plugin.dll
MOD - [2011.07.14 13:21:18 | 000,108,032 | ---- | M] () -- D:\Programme\VLC\plugins\libplaylist_plugin.dll
MOD - [2011.07.14 13:21:18 | 000,093,184 | ---- | M] () -- D:\Programme\VLC\plugins\libmpc_plugin.dll
MOD - [2011.07.14 13:21:18 | 000,089,600 | ---- | M] () -- D:\Programme\VLC\plugins\libogg_plugin.dll
MOD - [2011.07.14 13:21:18 | 000,051,200 | ---- | M] () -- D:\Programme\VLC\plugins\libps_plugin.dll
MOD - [2011.07.14 13:21:18 | 000,040,960 | ---- | M] () -- D:\Programme\VLC\plugins\libnuv_plugin.dll
MOD - [2011.07.14 13:21:18 | 000,038,912 | ---- | M] () -- D:\Programme\VLC\plugins\libmono_plugin.dll
MOD - [2011.07.14 13:21:18 | 000,037,888 | ---- | M] () -- D:\Programme\VLC\plugins\libmpeg_audio_plugin.dll
MOD - [2011.07.14 13:21:18 | 000,035,840 | ---- | M] () -- D:\Programme\VLC\plugins\libpva_plugin.dll
MOD - [2011.07.14 13:21:18 | 000,035,840 | ---- | M] () -- D:\Programme\VLC\plugins\libnsv_plugin.dll
MOD - [2011.07.14 13:21:18 | 000,033,792 | ---- | M] () -- D:\Programme\VLC\plugins\libnsc_plugin.dll
MOD - [2011.07.14 13:21:18 | 000,031,232 | ---- | M] () -- D:\Programme\VLC\plugins\libmpgv_plugin.dll
MOD - [2011.07.14 13:21:16 | 001,776,128 | ---- | M] () -- D:\Programme\VLC\plugins\liblibass_plugin.dll
MOD - [2011.07.14 13:21:16 | 001,085,440 | ---- | M] () -- D:\Programme\VLC\plugins\liblive555_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,379,904 | ---- | M] () -- D:\Programme\VLC\plugins\libgme_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,338,432 | ---- | M] () -- D:\Programme\VLC\plugins\liblua_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,135,680 | ---- | M] () -- D:\Programme\VLC\plugins\libi420_rgb_sse2_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,073,728 | ---- | M] () -- D:\Programme\VLC\plugins\libi420_rgb_mmx_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,052,224 | ---- | M] () -- D:\Programme\VLC\plugins\libi420_rgb_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,048,640 | ---- | M] () -- D:\Programme\VLC\plugins\libi420_yuy2_sse2_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,046,592 | ---- | M] () -- D:\Programme\VLC\plugins\libhotkeys_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,046,080 | ---- | M] () -- D:\Programme\VLC\plugins\libi422_yuy2_sse2_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,039,936 | ---- | M] () -- D:\Programme\VLC\plugins\libi420_yuy2_mmx_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,038,400 | ---- | M] () -- D:\Programme\VLC\plugins\libi420_yuy2_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,037,888 | ---- | M] () -- D:\Programme\VLC\plugins\libi422_yuy2_mmx_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,036,352 | ---- | M] () -- D:\Programme\VLC\plugins\libi422_yuy2_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,035,840 | ---- | M] () -- D:\Programme\VLC\plugins\liblpcm_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,035,328 | ---- | M] () -- D:\Programme\VLC\plugins\libmjpeg_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,033,792 | ---- | M] () -- D:\Programme\VLC\plugins\libmemcpymmxext_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,033,792 | ---- | M] () -- D:\Programme\VLC\plugins\libglobalhotkeys_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,032,768 | ---- | M] () -- D:\Programme\VLC\plugins\libi422_i420_plugin.dll
MOD - [2011.07.14 13:21:16 | 000,032,768 | ---- | M] () -- D:\Programme\VLC\plugins\libgrey_yuv_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,652,800 | ---- | M] () -- D:\Programme\VLC\plugins\libfreetype_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,309,760 | ---- | M] () -- D:\Programme\VLC\plugins\libfaad_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,265,216 | ---- | M] () -- D:\Programme\VLC\plugins\libflac_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,258,048 | ---- | M] () -- D:\Programme\VLC\plugins\libfluidsynth_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,231,424 | ---- | M] () -- D:\Programme\VLC\plugins\libdvdnav_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,210,944 | ---- | M] () -- D:\Programme\VLC\plugins\libdshow_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,178,176 | ---- | M] () -- D:\Programme\VLC\plugins\libdtstofloat32_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,067,072 | ---- | M] () -- D:\Programme\VLC\plugins\libdirectx_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,061,440 | ---- | M] () -- D:\Programme\VLC\plugins\libdirect3d_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,041,984 | ---- | M] () -- D:\Programme\VLC\plugins\libflacsys_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,041,472 | ---- | M] () -- D:\Programme\VLC\plugins\libes_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,039,424 | ---- | M] () -- D:\Programme\VLC\plugins\libfilesystem_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,039,424 | ---- | M] () -- D:\Programme\VLC\plugins\libdts_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,037,376 | ---- | M] () -- D:\Programme\VLC\plugins\libfake_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,032,256 | ---- | M] () -- D:\Programme\VLC\plugins\libdtstospdif_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,032,256 | ---- | M] () -- D:\Programme\VLC\plugins\libdolby_surround_decoder_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,031,744 | ---- | M] () -- D:\Programme\VLC\plugins\libfloat32_mixer_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,031,744 | ---- | M] () -- D:\Programme\VLC\plugins\libdemux_cdg_plugin.dll
MOD - [2011.07.14 13:21:14 | 000,031,232 | ---- | M] () -- D:\Programme\VLC\plugins\libdrawable_plugin.dll
MOD - [2011.07.14 13:21:12 | 008,248,320 | ---- | M] () -- D:\Programme\VLC\plugins\libavcodec_plugin.dll
MOD - [2011.07.14 13:21:12 | 000,088,064 | ---- | M] () -- D:\Programme\VLC\plugins\libavi_plugin.dll
MOD - [2011.07.14 13:21:12 | 000,072,192 | ---- | M] () -- D:\Programme\VLC\plugins\libasf_plugin.dll
MOD - [2011.07.14 13:21:12 | 000,057,856 | ---- | M] () -- D:\Programme\VLC\plugins\libblend_plugin.dll
MOD - [2011.07.14 13:21:12 | 000,046,592 | ---- | M] () -- D:\Programme\VLC\plugins\libaout_directx_plugin.dll
MOD - [2011.07.14 13:21:12 | 000,045,568 | ---- | M] () -- D:\Programme\VLC\plugins\libaraw_plugin.dll
MOD - [2011.07.14 13:21:12 | 000,041,472 | ---- | M] () -- D:\Programme\VLC\plugins\libaudio_format_plugin.dll
MOD - [2011.07.14 13:21:12 | 000,034,304 | ---- | M] () -- D:\Programme\VLC\plugins\libcdg_plugin.dll
MOD - [2011.07.14 13:21:12 | 000,033,792 | ---- | M] () -- D:\Programme\VLC\plugins\libaiff_plugin.dll
MOD - [2011.07.14 13:21:12 | 000,033,280 | ---- | M] () -- D:\Programme\VLC\plugins\libaes3_plugin.dll
MOD - [2011.07.14 13:21:12 | 000,032,768 | ---- | M] () -- D:\Programme\VLC\plugins\libconverter_fixed_plugin.dll
MOD - [2011.07.14 13:21:12 | 000,032,256 | ---- | M] () -- D:\Programme\VLC\plugins\libau_plugin.dll
MOD - [2011.07.14 13:21:10 | 002,263,552 | ---- | M] () -- D:\Programme\VLC\libvlccore.dll
MOD - [2011.07.14 13:21:10 | 000,108,032 | ---- | M] () -- D:\Programme\VLC\vlc.exe
MOD - [2011.07.14 13:21:10 | 000,101,376 | ---- | M] () -- D:\Programme\VLC\libvlc.dll
MOD - [2011.07.14 13:21:10 | 000,090,112 | ---- | M] () -- D:\Programme\VLC\plugins\libaccess_bd_plugin.dll
MOD - [2011.07.14 13:21:10 | 000,065,536 | ---- | M] () -- D:\Programme\VLC\plugins\liba52tofloat32_plugin.dll
MOD - [2011.07.14 13:21:10 | 000,036,352 | ---- | M] () -- D:\Programme\VLC\plugins\liba52_plugin.dll
MOD - [2011.07.14 13:21:10 | 000,030,720 | ---- | M] () -- D:\Programme\VLC\plugins\liba52tospdif_plugin.dll
MOD - [2011.06.24 06:38:16 | 000,036,068 | ---- | M] () -- D:\Programme\Pidgin\plugins\xmppdisco.dll
MOD - [2011.06.24 06:38:16 | 000,030,333 | ---- | M] () -- D:\Programme\Pidgin\plugins\xmppconsole.dll
MOD - [2011.06.24 06:38:14 | 000,024,106 | ---- | M] () -- D:\Programme\Pidgin\plugins\ticker.dll
MOD - [2011.06.24 06:38:14 | 000,023,455 | ---- | M] () -- D:\Programme\Pidgin\plugins\winprefs.dll
MOD - [2011.06.24 06:38:14 | 000,022,901 | ---- | M] () -- D:\Programme\Pidgin\plugins\win2ktrans.dll
MOD - [2011.06.24 06:38:14 | 000,017,951 | ---- | M] () -- D:\Programme\Pidgin\plugins\timestamp_format.dll
MOD - [2011.06.24 06:38:14 | 000,013,589 | ---- | M] () -- D:\Programme\Pidgin\plugins\timestamp.dll
MOD - [2011.06.24 06:38:12 | 000,063,229 | ---- | M] () -- D:\Programme\Pidgin\plugins\spellchk.dll
MOD - [2011.06.24 06:38:12 | 000,024,487 | ---- | M] () -- D:\Programme\Pidgin\plugins\themeedit.dll
MOD - [2011.06.24 06:38:12 | 000,019,854 | ---- | M] () -- D:\Programme\Pidgin\plugins\ssl-nss.dll
MOD - [2011.06.24 06:38:12 | 000,010,624 | ---- | M] () -- D:\Programme\Pidgin\plugins\statenotify.dll
MOD - [2011.06.24 06:38:12 | 000,007,162 | ---- | M] () -- D:\Programme\Pidgin\plugins\ssl.dll
MOD - [2011.06.24 06:38:10 | 000,023,390 | ---- | M] () -- D:\Programme\Pidgin\plugins\pidginrc.dll
MOD - [2011.06.24 06:38:10 | 000,010,203 | ---- | M] () -- D:\Programme\Pidgin\plugins\sendbutton.dll
MOD - [2011.06.24 06:38:10 | 000,010,075 | ---- | M] () -- D:\Programme\Pidgin\plugins\relnot.dll
MOD - [2011.06.24 06:38:10 | 000,010,026 | ---- | M] () -- D:\Programme\Pidgin\plugins\psychic.dll
MOD - [2011.06.24 06:38:08 | 000,022,335 | ---- | M] () -- D:\Programme\Pidgin\plugins\notify.dll
MOD - [2011.06.24 06:38:08 | 000,014,905 | ---- | M] () -- D:\Programme\Pidgin\plugins\markerline.dll
MOD - [2011.06.24 06:38:08 | 000,011,669 | ---- | M] () -- D:\Programme\Pidgin\plugins\offlinemsg.dll
MOD - [2011.06.24 06:38:08 | 000,009,126 | ---- | M] () -- D:\Programme\Pidgin\plugins\newline.dll
MOD - [2011.06.24 06:38:06 | 000,149,298 | ---- | M] () -- D:\Programme\Pidgin\plugins\libsilc.dll
MOD - [2011.06.24 06:38:06 | 000,045,348 | ---- | M] () -- D:\Programme\Pidgin\plugins\libsimple.dll
MOD - [2011.06.24 06:38:06 | 000,039,509 | ---- | M] () -- D:\Programme\Pidgin\plugins\log_reader.dll
MOD - [2011.06.24 06:38:06 | 000,018,502 | ---- | M] () -- D:\Programme\Pidgin\plugins\libyahoo.dll
MOD - [2011.06.24 06:38:06 | 000,017,519 | ---- | M] () -- D:\Programme\Pidgin\plugins\libxmpp.dll
MOD - [2011.06.24 06:38:06 | 000,014,951 | ---- | M] () -- D:\Programme\Pidgin\plugins\libyahoojp.dll
MOD - [2011.06.24 06:38:04 | 000,301,713 | ---- | M] () -- D:\Programme\Pidgin\plugins\libmsn.dll
MOD - [2011.06.24 06:38:04 | 000,121,433 | ---- | M] () -- D:\Programme\Pidgin\plugins\libmxit.dll
MOD - [2011.06.24 06:38:04 | 000,096,958 | ---- | M] () -- D:\Programme\Pidgin\plugins\libsametime.dll
MOD - [2011.06.24 06:38:04 | 000,092,138 | ---- | M] () -- D:\Programme\Pidgin\plugins\libnovell.dll
MOD - [2011.06.24 06:38:04 | 000,088,548 | ---- | M] () -- D:\Programme\Pidgin\plugins\libmyspace.dll
MOD - [2011.06.24 06:38:02 | 000,183,790 | ---- | M] () -- D:\Programme\Pidgin\plugins\libgg.dll
MOD - [2011.06.24 06:38:02 | 000,079,871 | ---- | M] () -- D:\Programme\Pidgin\plugins\libirc.dll
MOD - [2011.06.24 06:38:02 | 000,073,029 | ---- | M] () -- D:\Programme\Pidgin\plugins\libbonjour.dll
MOD - [2011.06.24 06:38:02 | 000,012,177 | ---- | M] () -- D:\Programme\Pidgin\plugins\joinpart.dll
MOD - [2011.06.24 06:38:02 | 000,011,163 | ---- | M] () -- D:\Programme\Pidgin\plugins\libicq.dll
MOD - [2011.06.24 06:38:02 | 000,010,232 | ---- | M] () -- D:\Programme\Pidgin\plugins\libaim.dll
MOD - [2011.06.24 06:38:00 | 000,013,528 | ---- | M] () -- D:\Programme\Pidgin\plugins\history.dll
MOD - [2011.06.24 06:38:00 | 000,012,665 | ---- | M] () -- D:\Programme\Pidgin\plugins\idle.dll
MOD - [2011.06.24 06:38:00 | 000,010,860 | ---- | M] () -- D:\Programme\Pidgin\plugins\extplacement.dll
MOD - [2011.06.24 06:38:00 | 000,008,793 | ---- | M] () -- D:\Programme\Pidgin\plugins\gtkbuddynote.dll
MOD - [2011.06.24 06:38:00 | 000,007,511 | ---- | M] () -- D:\Programme\Pidgin\plugins\iconaway.dll
MOD - [2011.06.24 06:37:58 | 000,019,058 | ---- | M] () -- D:\Programme\Pidgin\plugins\convcolors.dll
MOD - [2011.06.24 06:37:58 | 000,014,574 | ---- | M] () -- D:\Programme\Pidgin\plugins\autoaccept.dll
MOD - [2011.06.24 06:37:58 | 000,007,899 | ---- | M] () -- D:\Programme\Pidgin\plugins\buddynote.dll
MOD - [2011.06.24 06:37:56 | 000,336,466 | ---- | M] () -- D:\Programme\Pidgin\libjabber.dll
MOD - [2011.06.24 06:37:56 | 000,255,025 | ---- | M] () -- D:\Programme\Pidgin\liboscar.dll
MOD - [2011.06.24 06:37:56 | 000,194,434 | ---- | M] () -- D:\Programme\Pidgin\libymsg.dll
MOD - [2011.06.24 06:37:48 | 000,582,656 | ---- | M] () -- D:\Programme\Pidgin\exchndl.dll
MOD - [2011.06.24 06:37:46 | 000,475,580 | ---- | M] () -- D:\Programme\Pidgin\spellcheck\libgtkspell-0.dll
MOD - [2011.06.24 06:26:34 | 000,417,501 | ---- | M] () -- D:\Programme\Pidgin\sqlite3.dll
MOD - [2011.06.24 06:26:04 | 002,719,062 | ---- | M] () -- D:\Programme\Pidgin\libsilc-1-1-2.dll
MOD - [2011.06.24 06:26:04 | 001,206,642 | ---- | M] () -- D:\Programme\Pidgin\libsilcclient-1-1-2.dll
MOD - [2011.06.24 06:26:00 | 000,173,805 | ---- | M] () -- D:\Programme\Pidgin\libmeanwhile-1.dll
MOD - [2011.06.24 06:24:44 | 001,213,633 | ---- | M] () -- D:\Programme\Pidgin\libxml2-2.dll
MOD - [2011.06.05 10:16:20 | 002,011,136 | ---- | M] () -- D:\Programme\foobar2000\foobar2000.exe
MOD - [2011.06.05 10:14:24 | 001,128,960 | ---- | M] () -- D:\Programme\foobar2000\components\foo_ui_std.dll
MOD - [2011.06.05 10:14:24 | 000,364,544 | ---- | M] () -- D:\Programme\foobar2000\components\foo_albumlist.dll
MOD - [2011.06.05 10:14:22 | 000,275,456 | ---- | M] () -- D:\Programme\foobar2000\components\foo_dsp_std.dll
MOD - [2011.06.05 10:14:20 | 000,299,008 | ---- | M] () -- D:\Programme\foobar2000\components\foo_cdda.dll
MOD - [2011.06.05 10:13:58 | 001,431,040 | ---- | M] () -- D:\Programme\foobar2000\components\foo_input_std.dll
MOD - [2011.06.05 10:13:54 | 000,282,624 | ---- | M] () -- D:\Programme\foobar2000\components\foo_rgscan.dll
MOD - [2011.06.05 10:13:50 | 000,479,744 | ---- | M] () -- D:\Programme\foobar2000\components\foo_converter.dll
MOD - [2011.06.05 10:12:42 | 000,148,480 | ---- | M] () -- D:\Programme\foobar2000\shared.dll
MOD - [2011.05.10 19:47:00 | 000,004,096 | ---- | M] () -- C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll
MOD - [2010.09.23 15:53:16 | 001,601,536 | ---- | M] () -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
MOD - [2010.03.14 19:51:58 | 000,077,876 | ---- | M] () -- D:\Programme\foobar2000\zlib1.dll
========== Win32 Services (SafeList) ==========
SRV:64bit: - [2011.05.02 13:27:50 | 001,517,328 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng)
SRV:64bit: - [2011.05.02 13:10:26 | 000,844,560 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc)
SRV:64bit: - [2011.03.03 15:57:58 | 000,379,520 | ---- | M] (ASUSTeK Computer Inc.) [Auto | Running] -- C:\Windows\SysNative\FBAgent.exe -- (AFBAgent)
SRV:64bit: - [2010.09.23 02:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:64bit: - [2010.04.17 00:07:42 | 000,134,928 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\TurboBoost\TurboBoost.exe -- (TurboBoost)
SRV:64bit: - [2009.07.14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)
SRV - [2011.12.24 17:50:18 | 000,652,872 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- D:\Programme\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2011.12.09 16:17:32 | 000,342,480 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- D:\Programme\Avira\AntiVir Desktop\avmailc.exe -- (AntiVirMailService)
SRV - [2011.11.06 00:29:46 | 000,419,624 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2011.10.18 16:13:07 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- D:\Programme\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2011.10.18 16:05:22 | 000,463,824 | ---- | M] (Avira Operations GmbH & Co. KG) [Disabled | Stopped] -- D:\Programme\Avira\AntiVir Desktop\AVWEBGRD.EXE -- (AntiVirWebService)
SRV - [2011.10.18 16:03:45 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- D:\Programme\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2011.10.18 16:03:33 | 000,616,400 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- D:\Programme\Avira\AntiVir Desktop\avfwsvc.exe -- (AntiVirFirewallService)
SRV - [2011.08.03 12:50:00 | 002,255,464 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe -- (nvUpdatusService)
SRV - [2011.05.24 10:33:30 | 001,840,128 | ---- | M] (MAGIX AG) [Unknown | Running] -- C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe -- (Fabs)
SRV - [2011.04.26 13:54:12 | 002,702,848 | ---- | M] (MAGIX®) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe -- (FirebirdServerMAGIXInstance)
SRV - [2010.09.14 04:45:56 | 000,219,496 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa)
SRV - [2010.09.14 04:45:44 | 000,508,264 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist)
SRV - [2010.03.18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009.12.15 09:39:38 | 000,096,896 | ---- | M] (ASUS) [Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe -- (ATKGFNEXSrv)
SRV - [2009.06.15 16:30:42 | 000,084,536 | ---- | M] (ASUS) [Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe -- (ASLDRService)
SRV - [2009.06.10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2011.12.10 15:24:08 | 000,023,152 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2011.12.10 00:26:48 | 000,088,480 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\atksgt.sys -- (atksgt)
DRV:64bit: - [2011.12.10 00:26:48 | 000,046,400 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\lirsgt.sys -- (lirsgt)
DRV:64bit: - [2011.12.09 16:18:34 | 000,130,760 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:64bit: - [2011.11.17 10:38:32 | 000,047,208 | ---- | M] (RapidSolution Software AG) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tbhsd.sys -- (tbhsd)
DRV:64bit: - [2011.11.17 10:38:28 | 000,037,480 | ---- | M] (RapidSolution Software AG) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rrnetcap.sys -- (RRNetCapMP)
DRV:64bit: - [2011.11.17 10:38:28 | 000,037,480 | ---- | M] (RapidSolution Software AG) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rrnetcap.sys -- (RRNetCap)
DRV:64bit: - [2011.10.21 17:30:04 | 012,310,112 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2011.10.18 16:25:09 | 000,027,760 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avkmgr.sys -- (avkmgr)
DRV:64bit: - [2011.10.18 16:24:51 | 000,097,312 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)
DRV:64bit: - [2011.10.18 16:24:37 | 000,139,512 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avfwot.sys -- (avfwot)
DRV:64bit: - [2011.10.18 16:24:36 | 000,113,768 | ---- | M] (Avira GmbH) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\avfwim.sys -- (avfwim)
DRV:64bit: - [2011.08.14 12:50:29 | 000,270,912 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2011.08.03 12:50:00 | 000,027,240 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\nvpciflt.sys -- (nvpciflt)
DRV:64bit: - [2011.05.01 22:33:06 | 008,593,920 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NETwNs64.sys -- (NETwNs64) ___ Intel(R)
DRV:64bit: - [2011.03.11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011.01.13 12:58:30 | 000,413,800 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2010.12.13 22:12:40 | 000,138,024 | ---- | M] (ELAN Microelectronics Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ETD.sys -- (ETD)
DRV:64bit: - [2010.11.20 14:34:04 | 000,360,832 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcvmm.sys -- (vpcvmm)
DRV:64bit: - [2010.11.20 14:34:04 | 000,194,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpchbus.sys -- (vpcbus)
DRV:64bit: - [2010.11.20 14:33:36 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 12:35:34 | 000,095,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpcusb.sys -- (vpcusb)
DRV:64bit: - [2010.11.20 12:35:22 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcnfltr.sys -- (vpcnfltr)
DRV:64bit: - [2010.11.20 12:07:06 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.11.20 12:07:06 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2010.10.22 01:00:00 | 000,460,800 | ---- | M] (AVM GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fwlanusb.sys -- (FWLANUSB)
DRV:64bit: - [2010.10.22 01:00:00 | 000,014,120 | ---- | M] (AVM Berlin) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\avmeject.sys -- (avmeject)
DRV:64bit: - [2010.10.19 23:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64) Intel(R)
DRV:64bit: - [2010.10.14 17:28:16 | 000,317,440 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud) Intel(R)
DRV:64bit: - [2010.09.23 08:36:48 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2010.09.14 04:45:52 | 000,022,376 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftvollh.sys -- (Sftvol)
DRV:64bit: - [2010.09.14 04:45:50 | 000,025,960 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftredirlh.sys -- (Sftredir)
DRV:64bit: - [2010.09.14 04:45:48 | 000,268,648 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftplaylh.sys -- (Sftplay)
DRV:64bit: - [2010.09.14 04:45:44 | 000,760,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftfslh.sys -- (Sftfs)
DRV:64bit: - [2010.09.13 11:24:26 | 000,437,272 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2010.08.03 19:43:14 | 000,290,920 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rtsuvstor.sys -- (RSUSBVSTOR)
DRV:64bit: - [2010.04.17 00:07:28 | 000,013,832 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\TurboB.sys -- (TurboB)
DRV:64bit: - [2009.10.05 02:34:00 | 001,542,656 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2009.07.20 10:29:40 | 000,015,416 | ---- | M] ( ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kbfiltr.sys -- (kbfiltr)
DRV:64bit: - [2009.07.14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 21:35:57 | 000,056,832 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SiSG664.sys -- (SiSGbeLH)
DRV:64bit: - [2009.06.10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 21:34:18 | 000,057,344 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\L1C62x64.sys -- (L1C) NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20)
DRV:64bit: - [2009.06.10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2008.05.24 01:27:28 | 000,154,168 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WimFltr.sys -- (WimFltr)
DRV:64bit: - [2005.11.03 15:40:56 | 000,089,600 | ---- | M] (Protection Technology) [Kernel | Disabled | Stopped] -- C:\Windows\SysNative\drivers\sfvfs02.sys -- (sfvfs02) StarForce Protection VFS Driver (version 2.x)
DRV:64bit: - [2005.08.10 13:46:20 | 000,068,608 | ---- | M] (Protection Technology) [Kernel | Disabled | Stopped] -- C:\Windows\SysNative\drivers\sfdrv01.sys -- (sfdrv01) StarForce Protection Environment Driver (version 1.x)
DRV:64bit: - [2005.05.16 14:21:16 | 000,007,168 | ---- | M] (Protection Technology) [Kernel | Disabled | Stopped] -- C:\Windows\SysNative\drivers\sfhlp02.sys -- (sfhlp02) StarForce Protection Helper Driver (version 2.x)
DRV - [2010.07.26 12:57:20 | 000,017,024 | ---- | M] (ASUS) [Kernel | System | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys -- (ATKWMIACPIIO)
DRV - [2009.07.14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2009.07.02 16:36:14 | 000,015,416 | ---- | M] (ASUS) [Kernel | Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys -- (ASMMAP64)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus.msn.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus.msn.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus.msn.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus.msn.com
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf: D:\Programme\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF - HKLM\Software\MozillaPlugins\@gamersfirst.com/LiveLauncher: C:\Program Files (x86)\GamersFirst\LIVE!\nplivelauncher.dll File not found
FF - HKLM\Software\MozillaPlugins\@idsoftware.com/QuakeLive: C:\ProgramData\id Software\QuakeLive\npquakezero.dll (id Software Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=8: C:\Program Files (x86)\Google\Update\1.2.183.13\npGoogleOneClick8.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@doubletwist.com/NPPodcast: C:\Program Files (x86)\Common Files\doubleTwist\NPPodcast.dll File not found
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\[Name]\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\[Name]\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0.1\extensions\\Components: D:\Programme\Mozilla Firefox\components [2011.10.06 21:35:24 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0.1\extensions\\Plugins: D:\Programme\Mozilla Firefox\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 7.0.1\extensions\\Components: D:\Programme\Mozilla Thunderbird\components [2011.10.24 10:26:13 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 7.0.1\extensions\\Plugins: D:\Programme\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Components: D:\Programme\Mozilla Firefox\components [2011.10.06 21:35:24 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Plugins: D:\Programme\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 8.0\extensions\\Components: D:\Programme\Mozilla Thunderbird\components [2011.10.24 10:26:13 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 8.0\extensions\\Plugins: D:\Programme\Mozilla Thunderbird\plugins
[2011.08.08 14:39:15 | 000,000,000 | ---D | M] (No name found) -- C:\Users\[Name]\AppData\Roaming\mozilla\Extensions
[2011.10.19 18:33:16 | 000,000,000 | ---D | M] (No name found) -- C:\Users\[Name]\AppData\Roaming\mozilla\Firefox\Profiles\6tnrqupf.Ersatz\extensions
[2011.10.19 18:33:17 | 000,000,000 | ---D | M] (LastPass) -- C:\Users\[Name]\AppData\Roaming\mozilla\Firefox\Profiles\6tnrqupf.Ersatz\extensions\support@lastpass.com
[2011.10.19 18:33:17 | 000,000,000 | ---D | M] (No name found) -- C:\Users\[Name]\AppData\Roaming\mozilla\Firefox\Profiles\7rj9pow9.Server2Go\extensions
[2011.10.19 18:33:17 | 000,000,000 | ---D | M] (LastPass) -- C:\Users\[Name]\AppData\Roaming\mozilla\Firefox\Profiles\7rj9pow9.Server2Go\extensions\support@lastpass.com
[2011.10.19 18:33:17 | 000,000,000 | ---D | M] (No name found) -- C:\Users\[Name]\AppData\Roaming\mozilla\Firefox\Profiles\9tnab3pr.default\extensions
[2011.10.19 18:33:17 | 000,000,000 | ---D | M] (LastPass) -- C:\Users\[Name]\AppData\Roaming\mozilla\Firefox\Profiles\9tnab3pr.default\extensions\support@lastpass.com
[2011.10.19 18:33:17 | 000,000,000 | ---D | M] (No name found) -- C:\Users\[Name]\AppData\Roaming\mozilla\Firefox\Profiles\vkuuxfit.default\extensions
[2011.08.08 14:41:42 | 000,000,000 | ---D | M] (CookieCuller) -- C:\Users\[Name]\AppData\Roaming\mozilla\Firefox\Profiles\vkuuxfit.default\extensions\{99B98C2C-7274-45a3-A640-D9DF1A1C8460}
[2011.08.21 15:53:42 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\[Name]\AppData\Roaming\mozilla\Firefox\Profiles\vkuuxfit.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2011.08.08 14:41:41 | 000,000,000 | ---D | M] (FDislike) -- C:\Users\[Name]\AppData\Roaming\mozilla\Firefox\Profiles\vkuuxfit.default\extensions\fbdislike@doweb.fr
[2011.10.19 18:26:39 | 000,000,000 | ---D | M] ("Xmarks") -- C:\Users\[Name]\AppData\Roaming\mozilla\Firefox\Profiles\vkuuxfit.default\extensions\foxmarks@kei.com
[2011.10.19 18:33:17 | 000,000,000 | ---D | M] (LastPass) -- C:\Users\[Name]\AppData\Roaming\mozilla\Firefox\Profiles\vkuuxfit.default\extensions\support@lastpass.com
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\[Name]\AppData\Local\Google\Chrome\Application\16.0.912.75\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
CHR - plugin: Java Deployment Toolkit 6.0.260.3 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U26 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\[Name]\AppData\Local\Google\Chrome\Application\16.0.912.75\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\[Name]\AppData\Local\Google\Chrome\Application\16.0.912.75\pdf.dll
CHR - plugin: Skype Toolbars (Enabled) = C:\Users\[Name]\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8153_0\npSkypeChromePlugin.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.2.183.13\npGoogleOneClick8.dll
CHR - plugin: Google Update (Enabled) = C:\Users\[Name]\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Foxit Reader Plugin for Mozilla (Enabled) = D:\Programme\Foxit Reader\plugins\npFoxitReaderPlugin.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: di.slik.es - the Facebook Dislike Button = C:\Users\[Name]\AppData\Local\Google\Chrome\User Data\Default\Extensions\acmlfebmbccbmdaihmpefcfehaodlecb\1.2.0.4_0\
CHR - Extension: Xmarks Bookmark Sync = C:\Users\[Name]\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajpgkpeckebdhofmmjfgcjjiiejpodla\1.0.17_0\
CHR - Extension: YouTube = C:\Users\[Name]\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\
CHR - Extension: Adblock Plus (Beta) = C:\Users\[Name]\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.2_0\
CHR - Extension: Google-Suche = C:\Users\[Name]\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\
CHR - Extension: FlashBlock = C:\Users\[Name]\AppData\Local\Google\Chrome\User Data\Default\Extensions\gofhjkjmkpinhpoiabjplobcaignabnl\0.9.31_0\
CHR - Extension: LastPass = C:\Users\[Name]\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd\1.80.5_0\
CHR - Extension: Unfriend Finder = C:\Users\[Name]\AppData\Local\Google\Chrome\User Data\Default\Extensions\kddnblacojpnmjdlpnndlcamnmmkfina\34_0\
CHR - Extension: Google Mail = C:\Users\[Name]\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
O1 HOSTS File: ([2009.06.10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2 - BHO: (Octh Class) - {000123B4-9B42-4900-B3F7-F4B073EFC214} - D:\Programme\Orbitdownloader\orbitcth.dll (Orbitdownloader.com)
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:64bit: - HKLM..\Run: [ETDCtrl] C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corp.)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [ASUSPRP] C:\Program Files (x86)\ASUS\APRP\APRP.EXE (ASUSTek Computer Inc.)
O4 - HKLM..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUS)
O4 - HKLM..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ASUS)
O4 - HKLM..\Run: [avgnt] D:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe (ASUS)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] D:\Programme\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [SonicMasterTray] C:\Program Files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe (Virage Logic Corporation / Sonic Focus)
O4 - HKLM..\Run: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 0
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - D:\Programme\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - D:\Programme\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - D:\Programme\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - D:\Programme\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000016 - D:\Programme\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - D:\Programme\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - D:\Programme\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - D:\Programme\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - D:\Programme\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - D:\Programme\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.178.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0CBB994A-2CC2-4B25-BAE9-B9D6443C3311}: DhcpNameServer = 192.168.178.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C03EC5E9-3525-45E9-A683-9B1500429214}: DhcpNameServer = 192.168.178.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F31A7734-D2A6-4913-B4E3-3CFAF8A0EC04}: DhcpNameServer = 192.168.178.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O20:64bit: - AppInit_DLLs: (C:\Windows\system32\nvinitx.dll) - C:\Windows\SysNative\nvinitx.dll (NVIDIA Corporation)
O20 - AppInit_DLLs: (C:\Windows\SysWOW64\nvinit.dll) -C:\Windows\SysWOW64\nvinit.dll (NVIDIA Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) -C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006.12.01 06:20:01 | 000,009,662 | R--- | M] () - E:\autorun.ico -- [ CDFS ]
O32 - AutoRun File - [2006.12.01 06:20:01 | 000,000,048 | R--- | M] () - E:\autorun.inf -- [ CDFS ]
O33 - MountPoints2\{c211f4e3-c665-11e0-a055-fca256234b13}\Shell - "" = AutoRun
O33 - MountPoints2\{c211f4e3-c665-11e0-a055-fca256234b13}\Shell\AutoRun\command - "" = F:\start.exe
O33 - MountPoints2\{cb0a4f5a-c1ad-11e0-9571-f46d04fc897b}\Shell - "" = AutoRun
O33 - MountPoints2\{cb0a4f5a-c1ad-11e0-9571-f46d04fc897b}\Shell\AutoRun\command - "" = G:\pushinst.exe
O33 - MountPoints2\{e85b5208-aea3-11e0-b182-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{e85b5208-aea3-11e0-b182-806e6f6e6963}\Shell\AutoRun\command - "" = E:\launcher.exe -- [2006.12.01 06:20:01 | 000,126,976 | R--- | M] (InstallShield Software Corporation)
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2012.01.22 21:31:34 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Users\[Name]\Desktop\OTL.exe
[2012.01.22 21:20:06 | 000,000,000 | ---D | C] -- C:\Users\[Name]\Desktop\Neuer Ordner (3)
[2012.01.22 19:19:17 | 000,388,608 | ---- | C] (Trend Micro Inc.) -- C:\Users\[Name]\Desktop\HiJackThis204.exe
[2012.01.17 23:20:39 | 000,000,000 | ---D | C] -- C:\Users\[Name]\Desktop\Cro_Meine_Musik_Mixtape
[2012.01.11 16:58:32 | 001,572,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
[2012.01.11 16:58:32 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2012.01.11 16:58:32 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2012.01.11 16:58:32 | 000,366,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll
[2012.01.11 16:58:26 | 001,731,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2012.01.11 16:58:07 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\packager.dll
[2012.01.11 16:58:07 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\packager.dll
[2012.01.08 22:23:29 | 000,000,000 | ---D | C] -- C:\Users\[Name]\AppData\Roaming\Toribash
[2012.01.08 19:25:54 | 000,000,000 | ---D | C] -- C:\Users\[Name]\AppData\Roaming\1-abc
[2012.01.07 22:34:11 | 155,975,414 | ---- | C] (Macrovision Corporation) -- C:\Users\[Name]\Desktop\rainbow_six_vegas_1.06.exe
[2012.01.03 08:47:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TimeShift
[2012.01.03 02:38:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\id Software
[2012.01.03 02:38:07 | 000,000,000 | ---D | C] -- C:\ProgramData\id Software
[2012.01.03 02:25:17 | 000,000,000 | ---D | C] -- C:\Users\[Name]\AppData\Local\ElevatedDiagnostics
[2012.01.02 22:11:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\directx
[2011.12.31 00:04:39 | 000,306,688 | ---- | C] (InstallShield Software Corporation) -- C:\Windows\IsUninst.exe
[2011.12.31 00:04:30 | 000,000,000 | ---D | C] -- C:\Windows\_ISTMP1.DIR
[2011.12.30 12:21:17 | 000,000,000 | ---D | C] -- C:\Users\[Name]\Desktop\postal 3
[2011.12.29 20:58:49 | 000,000,000 | ---D | C] -- C:\Users\[Name]\Desktop\Wuala Neu
[2011.12.29 14:35:59 | 000,000,000 | ---D | C] -- C:\Users\[Name]\AppData\Roaming\Ashampoo
[2011.12.29 14:35:45 | 000,000,000 | ---D | C] -- C:\Users\[Name]\AppData\Local\ashampoo
[2011.12.29 14:35:45 | 000,000,000 | ---D | C] -- C:\ProgramData\ashampoo
[2011.12.29 14:35:44 | 000,000,000 | ---D | C] -- C:\Users\[Name]\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ashampoo
[2011.12.29 14:34:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ashampoo
[2011.12.28 23:57:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Licenses
[2011.12.28 23:57:10 | 000,000,000 | ---D | C] -- C:\Users\[Name]\AppData\Roaming\Engelmann Media
[2011.12.28 23:55:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Engelmann Media
[2011.12.28 23:55:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\S.A.D
[2011.12.28 23:55:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Ogg+WebM
[2011.12.28 23:55:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\OGG
[2011.12.28 23:55:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\HDX4
[2011.12.28 16:59:50 | 000,000,000 | ---D | C] -- C:\Users\[Name]\Documents\Subscriptions
[2011.12.28 16:50:06 | 000,000,000 | ---D | C] -- C:\Users\[Name]\AppData\Local\doubleTwist Corporation
[2011.12.28 16:34:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
[2011.12.28 15:54:28 | 000,000,000 | ---D | C] -- C:\Users\[Name]\AppData\Local\CrashRpt
[2011.12.28 15:54:17 | 000,000,000 | -HSD | C] -- C:\Windows\SysWow64\AI_RecycleBin
[2011.12.28 15:53:55 | 000,000,000 | ---D | C] -- C:\ProgramData\RapidSolution
[2011.12.28 15:53:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audials 9
[2011.12.28 15:50:21 | 000,000,000 | ---D | C] -- C:\Users\[Name]\AppData\Local\RapidSolution
[2011.12.28 15:36:42 | 000,000,000 | ---D | C] -- C:\Users\[Name]\Desktop\csi Staffel 04
[2011.12.26 19:21:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Advisor
[2011.12.26 19:02:07 | 000,000,000 | ---D | C] -- C:\Users\[Name]\Documents\MAGIX_Music_Maker_17
[2011.12.26 19:02:07 | 000,000,000 | ---D | C] -- C:\Users\[Name]\Documents\MAGIX Downloads
[2011.12.26 18:57:47 | 000,000,000 | ---D | C] -- C:\Users\[Name]\AppData\Roaming\MAGIX
[2011.12.26 18:57:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAGIX
[2011.12.26 18:57:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MAGIX
[2011.12.26 18:56:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSXML 4.0
[2011.12.26 18:56:50 | 000,000,000 | ---D | C] -- C:\ProgramData\MAGIX
[2011.12.26 18:56:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\MAGIX Services
[2011.12.23 21:58:07 | 000,000,000 | ---D | C] -- C:\Users\[Name]\Documents\GTA Vice City User Files
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\[Name]\AppData\Local\*.tmp files -> C:\Users\[Name]\AppData\Local\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012.01.22 21:38:01 | 000,000,912 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012.01.22 21:31:56 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\[Name]\Desktop\OTL.exe
[2012.01.22 21:31:09 | 000,000,000 | ---- | M] () -- C:\Users\[Name]\defogger_reenable
[2012.01.22 21:15:05 | 000,001,120 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-822022335-4213822873-853705237-1001UA.job
[2012.01.22 20:32:15 | 000,050,477 | ---- | M] () -- C:\Users\[Name]\Desktop\Defogger.exe
[2012.01.22 19:38:03 | 000,000,908 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012.01.22 19:19:34 | 000,388,608 | ---- | M] (Trend Micro Inc.) -- C:\Users\[Name]\Desktop\HiJackThis204.exe
[2012.01.22 18:59:24 | 000,009,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012.01.22 18:59:24 | 000,009,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012.01.22 18:51:38 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012.01.22 18:51:30 | 467,492,863 | -HS- | M] () -- C:\hiberfil.sys
[2012.01.22 18:04:15 | 000,000,154 | ---- | M] () -- C:\Windows\SOF.INI
[2012.01.22 18:04:01 | 000,000,600 | ---- | M] () -- C:\Windows\Rtcw.INI
[2012.01.22 17:15:00 | 000,001,068 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-822022335-4213822873-853705237-1001Core.job
[2012.01.20 23:58:06 | 000,000,663 | ---- | M] () -- C:\Users\[Name]\Desktop\Wuala Neu - Verknüpfung.lnk
[2012.01.18 23:09:34 | 000,334,022 | ---- | M] () -- C:\Users\[Name]\Desktop\image (2).jpg
[2012.01.18 23:09:02 | 000,216,715 | ---- | M] () -- C:\Users\[Name]\Desktop\image (1).jpg
[2012.01.18 23:08:02 | 000,216,715 | ---- | M] () -- C:\Users\[Name]\Desktop\image.jpg
[2012.01.14 17:13:07 | 029,880,701 | ---- | M] () -- C:\Users\[Name]\Desktop\PCW_SH_WindowsXXL03_2011_ePaper.pdf
[2012.01.13 17:16:03 | 001,530,778 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012.01.13 17:16:03 | 000,667,896 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2012.01.13 17:16:03 | 000,628,402 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012.01.13 17:16:03 | 000,134,578 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2012.01.13 17:16:03 | 000,110,864 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012.01.10 22:35:15 | 000,000,218 | ---- | M] () -- C:\Users\[Name]\.recently-used.xbel
[2012.01.08 01:35:12 | 000,000,701 | ---- | M] () -- C:\Users\[Name]\Desktop\Toribash.lnk
[2012.01.08 00:00:30 | 155,975,414 | ---- | M] (Macrovision Corporation) -- C:\Users\[Name]\Desktop\rainbow_six_vegas_1.06.exe
[2012.01.07 23:43:46 | 000,014,479 | ---- | M] () -- C:\Users\[Name]\Desktop\windowsill.png
[2011.12.30 17:35:50 | 000,007,597 | ---- | M] () -- C:\Users\[Name]\AppData\Local\Resmon.ResmonCfg
[2011.12.27 10:33:42 | 000,001,345 | ---- | M] () -- C:\Windows\SysNative\ServiceFilter.ini
[2011.12.27 10:33:13 | 000,346,840 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\[Name]\AppData\Local\*.tmp files -> C:\Users\[Name]\AppData\Local\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012.01.22 21:31:09 | 000,000,000 | ---- | C] () -- C:\Users\[Name]\defogger_reenable
[2012.01.22 20:31:19 | 000,050,477 | ---- | C] () -- C:\Users\[Name]\Desktop\Defogger.exe
[2012.01.22 18:52:33 | 000,001,441 | ---- | C] () -- C:\Users\[Name]\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2012.01.21 13:26:34 | 076,542,468 | ---- | C] () -- C:\Users\[Name]\Desktop\Leon.Der.Profi.UNCUT.DC.German.1994.AC3.DVDRiP.CD2.avi
[2012.01.21 13:26:22 | 189,982,724 | ---- | C] () -- C:\Users\[Name]\Desktop\Leon.Der.Profi.UNCUT.DC.German.1994.AC3.DVDRiP.CD1.avi
[2012.01.20 23:58:06 | 000,000,663 | ---- | C] () -- C:\Users\[Name]\Desktop\Wuala Neu - Verknüpfung.lnk
[2012.01.18 23:09:09 | 000,334,022 | ---- | C] () -- C:\Users\[Name]\Desktop\image (2).jpg
[2012.01.18 23:08:52 | 000,216,715 | ---- | C] () -- C:\Users\[Name]\Desktop\image (1).jpg
[2012.01.18 23:07:54 | 000,216,715 | ---- | C] () -- C:\Users\[Name]\Desktop\image.jpg
[2012.01.17 23:19:27 | 015,426,457 | ---- | C] () -- C:\Users\[Name]\Desktop\PCW_SH_AppWelt_03_11_ePaper.pdf
[2012.01.14 17:01:18 | 029,880,701 | ---- | C] () -- C:\Users\[Name]\Desktop\PCW_SH_WindowsXXL03_2011_ePaper.pdf
[2012.01.10 22:35:15 | 000,000,218 | ---- | C] () -- C:\Users\[Name]\.recently-used.xbel
[2012.01.08 01:35:12 | 000,000,701 | ---- | C] () -- C:\Users\[Name]\Desktop\Toribash.lnk
[2012.01.07 23:43:46 | 000,014,479 | ---- | C] () -- C:\Users\[Name]\Desktop\windowsill.png
[2011.12.31 00:06:43 | 000,000,154 | ---- | C] () -- C:\Windows\SOF.INI
[2011.12.24 23:20:24 | 000,007,597 | ---- | C] () -- C:\Users\[Name]\AppData\Local\Resmon.ResmonCfg
[2011.12.24 11:12:50 | 000,018,373 | ---- | C] () -- C:\Users\[Name]\Desktop\pzdgtavc.exe
[2011.11.29 10:28:22 | 000,311,296 | ---- | C] () -- C:\Windows\SysWow64\EMRegSys.dll
[2011.11.19 13:22:57 | 000,000,600 | ---- | C] () -- C:\Windows\Rtcw.INI
[2011.10.21 17:27:54 | 000,217,536 | ---- | C] () -- C:\Windows\SysWow64\igfcg600m.bin
[2011.10.21 17:22:54 | 000,056,832 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
[2011.10.21 17:03:04 | 013,903,872 | ---- | C] () -- C:\Windows\SysWow64\ig4icd32.dll
[2011.10.16 19:27:59 | 000,075,136 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2011.10.16 19:27:51 | 000,281,200 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2011.08.09 19:37:58 | 001,557,708 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011.08.09 12:18:49 | 000,175,616 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2011.05.31 08:01:33 | 000,145,804 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng600.bin
[2011.04.13 03:48:48 | 000,131,472 | ---- | C] () -- C:\ProgramData\FullRemove.exe
[2011.03.26 00:16:10 | 000,963,116 | ---- | C] () -- C:\Windows\SysWow64\igkrng600.bin
[2009.07.29 06:20:40 | 000,000,010 | ---- | C] () -- C:\Windows\SysWow64\ABLKSR.ini
[2009.07.14 17:15:00 | 000,178,432 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2009.07.14 06:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009.07.14 03:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009.07.14 03:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009.07.14 01:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009.07.14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009.07.13 22:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009.06.10 22:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2009.02.26 07:50:32 | 000,000,176 | ---- | C] () -- C:\Windows\explorer.exe.config
[2007.04.27 09:43:58 | 000,120,200 | ---- | C] () -- C:\Windows\SysWow64\DLLDEV32i.dll
========== LOP Check ==========
[2011.12.05 10:40:32 | 000,032,576 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 133 bytes -> C:\ProgramData\Temp:5D458568
< End of report >