|
Plagegeister aller Art und deren Bekämpfung: tbhcn - was ist das und wie werde ich es los?Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
13.10.2012, 09:58 | #1 | |
| tbhcn - was ist das und wie werde ich es los? Hallo zusammen, ich hoffe ihr könnt mir helfen. Auch mir ist beim Aufräumen die tbhcn.exe im Autostart aufgefallen und ich habe danach gegoogelt. Dadurch bin ich hier gelandet. Was mir sofort ins Auge sprang, war die Aussage: "Rechner ist langsam". Auch das ist bei mir der Fall, obwohl ich ihn vor einigen Monaten neu aufgesetzt habe. Die Anweisungen habe ich befolgt: defogger ausgeführt OTL siehe hier Zitat:
|
13.10.2012, 09:59 | #2 |
| tbhcn - was ist das und wie werde ich es los? und das noch als Nachtrag:
__________________OTL EXTRAS Logfile: Code:
ATTFilter OTL Extras logfile created on: 13.10.2012 10:25:05 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Feuer-Fritz\Desktop 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 3,92 Gb Total Physical Memory | 2,28 Gb Available Physical Memory | 58,18% Memory free 7,84 Gb Paging File | 5,60 Gb Available in Paging File | 71,41% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 465,76 Gb Total Space | 404,61 Gb Free Space | 86,87% Space Free | Partition Type: NTFS Drive D: | 465,66 Gb Total Space | 100,24 Gb Free Space | 21,53% Space Free | Partition Type: NTFS Computer Name: FRITZ-BOOK | User Name: Feuer-Fritz | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = Reg Error: Value error.] -- Reg Error: Key error. File not found [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) ========== Shell Spawning ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. http [open] -- Reg Error: Key error. https [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. http [open] -- Reg Error: Key error. https [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 ========== Authorized Applications List ========== ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0379BC65-2EB3-437D-9366-36FB536EE062}" = lport=2869 | protocol=6 | dir=in | app=system | "{0A8BE932-65F5-423C-904F-D5E399327F90}" = rport=427 | protocol=17 | dir=in | svc=hpslpsvc | app=c:\windows\system32\svchost.exe | "{0D94FC88-ADEE-44F1-A0AF-AE2FB3F92DC6}" = rport=137 | protocol=17 | dir=out | app=system | "{15035EDB-2ABB-41B2-9230-48C0BC1EDE02}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{2FB2D336-07FA-4327-87F4-3EBDC7F7C14B}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{33EF7033-0358-4A4D-862A-6D39295EDB74}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{382A51AB-FADD-4B7C-B435-85321C4FD772}" = lport=138 | protocol=17 | dir=in | app=system | "{3A2BB9AC-3A79-4E42-B32D-3F877072F144}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{4D486966-CB51-4B5C-9C55-117FA38C7447}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4DBAA67A-AFBD-408D-8CA8-9FFAD23B6060}" = rport=445 | protocol=6 | dir=out | app=system | "{57C0379F-0BC3-43E2-8D0F-6B988B3D306A}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{66FE3022-3F2B-4D36-97CF-71E1D818B16D}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe | "{6BFE08AC-F194-44F4-BBDB-990B1F858074}" = lport=10243 | protocol=6 | dir=in | app=system | "{6E4D3594-C369-454B-A93D-5A415678CB99}" = rport=139 | protocol=6 | dir=out | app=system | "{779AF36F-5AAA-4544-A092-5E2C537E6A3E}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{797985DD-280F-4E75-93BC-965AAE790864}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{816FA88A-1409-412F-B96B-F907C6955458}" = lport=445 | protocol=6 | dir=in | app=system | "{8B128EBB-92F7-4790-9EDA-61BE89FD803B}" = lport=139 | protocol=6 | dir=in | app=system | "{94AE731C-6751-4AD6-B600-3A6FFA0BCAF4}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{95175221-0023-4397-B756-FE4F3841F675}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{9D1DEFEE-D877-4FB7-80F1-23EE8CD77679}" = rport=10243 | protocol=6 | dir=out | app=system | "{BAA41875-CF79-4EBF-BFA9-9C60620FD842}" = lport=137 | protocol=17 | dir=in | app=system | "{C9324FD8-C0B3-49C4-A2B2-788C8F53B80C}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{EB087E30-E9AB-4E3B-B721-C28D03A52BA3}" = rport=138 | protocol=17 | dir=out | app=system | "{F3BA38A0-1DA6-4264-AA5A-4B74F0B4C35C}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | ========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{062E846E-5627-4B5B-B8BB-0161A60016CE}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgm.exe | "{077E9B28-EA18-4D60-A032-9873AAB585F8}" = protocol=17 | dir=in | app=c:\program files (x86)\asoft\autoexitwhs\aeclientsvc.exe | "{0B09AD91-B0CF-4837-AC72-DAF4415E8BF0}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{0ECCCFD6-E60C-4185-8A8F-58FCB6A4D626}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{152216A2-D8D2-442C-B022-21CAE6B8FB63}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{15913BFD-36A5-4B7A-BEB7-07344C3FBE04}" = protocol=6 | dir=in | app=c:\program files (x86)\asoft\autoexitwhs\aeclientsvc.exe | "{1D7C4694-65B0-48D5-8BF8-5F644A01D4E4}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqfxt08.exe | "{1F704084-FC2C-4978-83DA-7CD8C8E810D9}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer_service.exe | "{28F46910-0668-4B68-AC84-B75AC67345CE}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{2BFF92F8-B2AB-4DCE-8CED-9266B1016667}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpofxm08.exe | "{3ADE6769-A92E-40E2-B842-021AA6E5202D}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe | "{3C36638E-4E8A-43F0-95F6-BCBD5907DDCB}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{4117980D-E653-4D31-9CB5-A814BA6633DB}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{442DF0AC-40AA-4803-A17C-2E99F5B794B0}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{477A5E53-37D4-4548-884D-927E272FDF96}" = protocol=6 | dir=in | app=c:\program files (x86)\asoft\autoexitwhs\aeclienttray.exe | "{4A76BB04-4800-4D24-8579-1A83AC213BB3}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | "{5177F6CF-4DC7-439F-853E-2AE910783ADB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{56EF4A25-D72E-466A-8260-9B703AFAE970}" = dir=in | app=c:\program files (x86)\hp\hp software update\hpwucli.exe | "{6356D4F9-2EF2-44A4-BE5E-F56C85D752AE}" = dir=in | app=c:\program files (x86)\hp\digital imaging\smart web printing\smartwebprintexe.exe | "{6B4F74B4-D5DB-41DE-ACD5-C62B4BD89B79}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpzwiz01.exe | "{6FD396D2-C0C8-44E8-9445-3621ACB99443}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{7570EB1F-6624-4BAE-8F45-212408B622DC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{76B7C4F4-E8AC-4A2E-9CAB-84366A1DEC72}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{7C62E59F-A6E6-42A1-93C5-CA983317532B}" = dir=in | app=c:\program files (x86)\common files\hp\digital imaging\bin\hpqphotocrm.exe | "{7FAAC671-8C79-4924-AB90-2838C23ADE7B}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpfccopy.exe | "{84301821-FAAF-4D47-B615-4BE15BCD0A8D}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{88276F44-9772-4A82-9857-3747EE5FC390}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{988C25BB-7C2B-4BD6-A6A6-C4FDFCA66776}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{9890D7DD-00B1-40F3-BC20-FE5736BC0916}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgh.exe | "{9B22EFE2-6A9F-40BD-BDB1-FBCEE78861A7}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{A49F01DE-6A66-4C88-9D55-9EF3725E8A16}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpoews01.exe | "{AAA4FF63-F31E-4D59-AAE8-32838D2F829B}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer.exe | "{AAE97B2F-C69E-4591-98DA-3900A5F35BE4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{AB20FA40-8FAE-4C35-852B-DED8C022C10F}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{B5A6011F-C69A-4D21-BDBD-C960DEFB06D0}" = protocol=6 | dir=out | app=system | "{BADA7D5C-429D-407E-AFDE-83CEFBF5527E}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpiscnapp.exe | "{BF7E50CD-3ED2-4C25-BB3F-04FA11923E7B}" = protocol=17 | dir=in | app=c:\program files (x86)\asoft\autoexitwhs\aeclienttray.exe | "{CA113046-4828-40CF-971C-B30682482DF8}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer.exe | "{CEFF8D59-BE45-4CD6-8C2D-5D9DC11E2E33}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{CFFD32FD-226D-4A0C-8ED7-C6ACC10D0552}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposid01.exe | "{D4D4A74F-0686-4926-ADD4-369D782DD4DA}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqste08.exe | "{D772EF77-AEBE-4606-AEF0-B3C6C9653E77}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqkygrp.exe | "{D7EF018C-BEEE-4EB3-BDB3-A12B90DF2FB3}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer_service.exe | "{D824E8A0-14AE-4541-BAEC-BBB3CB203777}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{D97445E3-10FF-465F-954E-D0750BBA1FCC}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgplgtupl.exe | "{DB729CC0-1DDE-4A32-8EF4-80A9907E2F79}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{E27DBB21-6A13-4D6D-9D46-130E62ED69CB}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{E79441AE-4FDB-4DDE-8463-DD03539B5731}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqtra08.exe | "{E968BB55-183C-4D90-9387-D6D8E9722A65}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpofxs08.exe | "{EA643FCA-5E73-4D0A-A438-7C9DCB5977EE}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposfx08.exe | "{F95D5D42-BA91-49EE-AE42-404F2890E3A2}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgpc01.exe | "TCP Query User{03E00BC2-8E74-41B1-B529-BC12EFD5FAE9}C:\rukerneltool\rukerneltool\rukerneltool_x64.exe" = protocol=6 | dir=in | app=c:\rukerneltool\rukerneltool\rukerneltool_x64.exe | "TCP Query User{2D9EBA3A-89CE-4234-BAFB-179CB96B9D6A}C:\users\feuer-fritz\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\feuer-fritz\appdata\roaming\spotify\spotify.exe | "TCP Query User{85C28C6D-D52F-497C-B709-DE5DCA373EBF}C:\users\feuer-fritz\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\feuer-fritz\appdata\roaming\spotify\spotify.exe | "TCP Query User{8E02D2C0-AB40-4C3C-A380-CAA0375C9D51}C:\program files (x86)\asoft\autoexitwhs\aeclienttray.exe" = protocol=6 | dir=in | app=c:\program files (x86)\asoft\autoexitwhs\aeclienttray.exe | "UDP Query User{03B81BB4-B4AE-4243-81D7-332BBA3DC173}C:\users\feuer-fritz\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\feuer-fritz\appdata\roaming\spotify\spotify.exe | "UDP Query User{2C3B43D5-E346-4A6B-AE81-A17F9A63309B}C:\rukerneltool\rukerneltool\rukerneltool_x64.exe" = protocol=17 | dir=in | app=c:\rukerneltool\rukerneltool\rukerneltool_x64.exe | "UDP Query User{4439A7A6-C141-4C67-9FA9-20B6C2CF71E1}C:\users\feuer-fritz\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\feuer-fritz\appdata\roaming\spotify\spotify.exe | "UDP Query User{D1903A50-3376-4627-A4DE-472A669763F2}C:\program files (x86)\asoft\autoexitwhs\aeclienttray.exe" = protocol=17 | dir=in | app=c:\program files (x86)\asoft\autoexitwhs\aeclienttray.exe | ========== HKEY_LOCAL_MACHINE Uninstall List ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{027E5FAB-1476-4C59-AAB4-32EF28520399}" = Windows Live Language Selector "{05EFBF37-0E52-4579-875C-7EEF0DFB4FCB}" = Network64 "{0D87AE67-14EB-4C10-88A5-DA6C3181EB18}" = Windows Live Family Safety "{13F4A7F3-EABC-4261-AF6B-1317777F0755}" = Fast Boot "{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant "{2128559D-BBCD-4744-87F0-7C0CD5CFB464}" = Windows Live Family Safety "{21E49794-7C13-4E84-8659-55BD378267D5}" = Windows Home Server-Connector "{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition) "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}" = Network64 "{6C9365EB-1F9E-4893-9196-3EC77C88D0C5}" = Überwachungstool für die Intel® Turbo-Boost-Technik 2.6 "{7E0E61CC-1C99-429D-BEA7-C4DD5B898D2A}" = HP Officejet 4500 G510n-z "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{88F41EE2-949B-4B52-933D-C7F8F67BC1D2}" = NetSpeedMonitor 2.5.4.0 x64 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-0407-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (German) 2010 "{91EFE3A1-585E-4F66-B5F6-F118F56C4C47}" = ASUS Power4Gear Hybrid "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}" = WIDCOMM Bluetooth Software "{AA5A2780-10FC-913C-B8AA-FE42DFDBAA42}" = ccc-utility64 "{D5876F0A-B2E9-4376-B9F5-CD47B7B8D820}" = Windows Live Remote Client Resources "{D930AF5C-5193-4616-887D-B974CEFC4970}" = Windows Live Remote Service Resources "{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter "{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 "{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client "{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service "{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}" = SRS Premium Sound Control Panel "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "{FF21C3E6-97FD-474F-9518-8DCBE94C2854}" = 64 Bit HP CIO Components Installer "2AA10AB519DC7432D599A0E860206A7DDCC27764" = Windows Driver Package - Broadcom Bluetooth (07/29/2009 6.1.7100.0) "3BA80AB4C7E9F8497C115C844953A3D4BEB84D21" = Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) "6B6B5E96843E55CF5CF8C7E45FB457F1FE642FF1" = Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) "7341A1B43E7FE58942EB1E820A17C18305DFBCE6" = Windows Driver Package - Broadcom Bluetooth (01/19/2010 6.2.0.1417) "85CE3A3657FAE5FD305B143E90E6FC89BA53001C" = Windows Driver Package - Broadcom (BTHUSB) Bluetooth (02/25/2010 6.2.0.9419) "Elantech" = ETDWare PS/2-x64 7.0.5.10_WHQL "HP Document Manager" = HP Document Manager 2.0 "HP Imaging Device Functions" = HP Imaging Device Functions 13.0 "HP Print Projects" = HP Print Projects 1.0 "HP Smart Web Printing" = HP Smart Web Printing 4.5 "HP Solution Center & Imaging Support Tools" = HP Solution Center 13.0 "HPExtendedCapabilities" = HP Customer Participation Program 13.0 "HPOCR" = OCR Software by I.R.I.S. 13.0 "KLiteCodecPack64_is1" = K-Lite Codec Pack 6.4.5 (64-bit) "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Shop for HP Supplies" = Shop for HP Supplies "sp6" = Logitech SetPoint 6.32 "TeraCopy_is1" = TeraCopy 2.27 "VLC media player" = VLC media player 2.0.2 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00000000-2778-5BED-8199-52EB14D8D22F}" = F-Secure CCF Reputation "{0481A2EA-DA1D-4D10-A7C3-F8237948F6B5}" = Messenger Companion "{06585B02-F20D-4AB2-9A64-86EF2AE0F8F0}" = ASUS AI Recovery "{07FB17D8-7DB6-4F06-80C4-8BE1719CB6A1}" = hpWLPGInstaller "{0969AF05-4FF6-4C00-9406-43599238DE0D}" = ASUS Splendid Video Enhancement Technology "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer "{0F367CA3-3B2F-43F9-A44A-25A8EE69E45D}" = Scan "{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1 "{175F0111-2968-4935-8F70-33108C6A4DE3}" = MarketResearch "{182A1405-9660-F35E-4910-2F4804EF9CD1}" = Catalyst Control Center Core Implementation "{1BA1DBDC-5431-46FD-A66F-A17EB1C439EE}" = Windows Live Messenger "{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}" = ASUS LifeFrame3 "{1DDB95A4-FD7B-4517-B3F1-2BCAA96879E6}" = Windows Live Writer Resources "{1E9165D4-D1BB-A8FF-4D81-4769904075BE}" = CCC Help Spanish "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions "{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}" = Wireless Console 3 "{21A2F5EE-1DC5-488A-BE7E-E526F8C61488}" = DeviceDiscovery "{2271DC83-BDCA-B742-0F66-51C548D83878}" = CCC Help Hungarian "{2458E345-90BF-A135-A9F6-7B79E5A1B034}" = Catalyst Control Center Graphics Full New "{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 7 "{2801377C-AED0-9DF8-8C13-DE5B8A255E01}" = CCC Help Italian "{2944D228-BD9D-293C-9207-36F3F83200C7}" = Catalyst Control Center Graphics Full Existing "{2B81872B-A054-48DA-BE3B-FA5C164C303A}" = ASUS FancyStart "{2BE54333-0A35-B568-B9B6-BBAC93363F07}" = CCC Help Polish "{2EEA7AA4-C203-4b90-A34F-19FB7EF1C81C}" = BufferChm "{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}" = HP Update "{321CA409-D308-D275-FD2E-07745286F7B1}" = CCC Help Portuguese "{33286280-8617-11E1-8FF6-B8AC6F97B88E}" = Google Earth Plug-in "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery "{37B33B16-2535-49E7-8990-32668708A0A3}" = Windows Live UX Platform Language Pack "{394B8A28-0984-B687-DC3D-600A83E3D8AB}" = ccc-core-static "{3A4D5E2D-988D-4ee9-8E7F-3AC200A2B8F5}" = 4500G510nz_Software_Min "{3B05F2FB-745B-4012-ADF2-439F36B2E70B}" = ATKOSD2 "{3C168069-602E-D4DE-AAEA-C83395FD7CBB}" = CCC Help German "{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = eReg "{43CDF946-F5D9-4292-B006-BA0D92013021}" = WebReg "{440B915A-0C85-45DB-92AE-75AE14704A64}" = Fax "{461179FC-E2AC-4CC8-AA95-82D35FB3E7EA}" = Dojotech Spotify Recorder "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4A70EF07-7F88-4434-BB61-D1DE8AE93DD4}" = SolutionCenter "{507BF84D-922E-367A-1B91-2C92A8626627}" = CCC Help Finnish "{53E0DD16-FE2D-4A4B-A66A-984397C49204}" = F-Secure Network CCF 1.02.111 "{553C904F-57A2-4113-888E-BA0C3D1C69C0}" = Microsoft VC9 runtime libraries "{56670C91-F1BA-86BC-0AAE-8605B726EF2F}" = CCC Help Russian "{57CB36B6-4884-535F-9379-34560046C912}" = CCC Help Dutch "{5B05FF91-F20C-4832-A8DE-E1912639C17C}" = 4500G510nz "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{6324A1EF-CEF4-43E3-8BCD-9EF3F67317FD}" = NB Probe "{63FF21C9-A810-464F-B60A-3111747B1A6D}" = GPBaseService2 "{64452561-169F-4A36-A2FF-B5E118EC65F5}" = ASUS SmartLogon "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{658FDBCA-B7A1-43E4-A849-9F0812473331}" = Computer Security 12.56.100.0 (release) "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE "{68A10D12-0D0F-4212-BDE6-D87FAD32A8FA}" = SmartWebPrinting "{690879A5-18EF-447B-98D6-B699D51008AB}" = 4500_G510nz_Help "{698E45C8-5054-554F-51CB-68847E4B0BA5}" = CCC Help Greek "{6B2FFB21-AC88-45C3-9A7D-4BB3E744EC91}" = HPSSupply "{6BBA26E9-AB03-4FE7-831A-3535584CA002}" = Toolbox "{719C5E05-B9B2-EBBB-766D-2A1245147DF9}" = Catalyst Control Center Graphics Previews Common "{77498F29-4EFE-159E-DB0E-8E36C3E2B473}" = CCC Help Danish "{788A7564-40B9-4993-78AF-1852D423781E}" = CCC Help Chinese Traditional "{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}" = Windows Live Messenger Companion Core "{7C05592D-424B-46CB-B505-E0013E8E75C9}" = ATK Hotkey "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform "{859D4022-B76D-40DE-96EF-C90CDA263F44}" = Windows Live Writer "{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8F311E72-C27F-4DF0-8254-B739A1831668}_is1" = SUPER © v2012.build.53 (Sep 13, 2012) Version v2012.build.53 "{90140000-0015-0407-0000-0000000FF1CE}" = Microsoft Office Access MUI (German) 2010 "{90140000-0015-0407-0000-0000000FF1CE}_Office14.SingleImage_{69E54534-4569-4639-89E9-305B60A11601}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2010 "{90140000-0016-0407-0000-0000000FF1CE}_Office14.SingleImage_{69E54534-4569-4639-89E9-305B60A11601}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2010 "{90140000-0018-0407-0000-0000000FF1CE}_Office14.SingleImage_{69E54534-4569-4639-89E9-305B60A11601}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-0019-0407-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (German) 2010 "{90140000-0019-0407-0000-0000000FF1CE}_Office14.SingleImage_{69E54534-4569-4639-89E9-305B60A11601}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (German) 2010 "{90140000-001A-0407-0000-0000000FF1CE}_Office14.SingleImage_{69E54534-4569-4639-89E9-305B60A11601}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2010 "{90140000-001B-0407-0000-0000000FF1CE}_Office14.SingleImage_{69E54534-4569-4639-89E9-305B60A11601}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0407-0000-0000000FF1CE}_Office14.SingleImage_{65A2328E-FDFB-4CA3-8582-357EA6825FEA}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010 "{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{46298F6A-1E7E-4D4A-B5F5-106A4F0E48C6}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2010 "{90140000-001F-0410-0000-0000000FF1CE}_Office14.SingleImage_{C0743197-FFEE-4C19-BAEB-8F7437DC4C8A}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002A-0407-1000-0000000FF1CE}_Office14.SingleImage_{594128C9-2CDF-43CE-8103-DC100CF013B6}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2010 "{90140000-002C-0407-0000-0000000FF1CE}_Office14.SingleImage_{4275FB46-ABDF-4456-876C-17CF64294D9A}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-003D-0000-0000-0000000FF1CE}" = Microsoft Office Single Image 2010 "{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2010 "{90140000-006E-0407-0000-0000000FF1CE}_Office14.SingleImage_{98EDFD9F-EA76-40CC-BCE9-92C69413F65B}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90140000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2010 "{90140000-00A1-0407-0000-0000000FF1CE}_Office14.SingleImage_{69E54534-4569-4639-89E9-305B60A11601}" = Microsoft Office 2010 Service Pack 1 (SP1) "{90CD53EC-488B-4B1A-8C6B-3C36E82A84CA}" = EMET "{91D02903-7EDB-2A1F-C19F-8EBB335BA708}" = CCC Help Chinese Standard "{92A51949-EE4C-466D-AAF0-99E74A49A63F}" = DocMgr "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker "{95140000-007A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook Connector "{95F1EE6A-2C0E-5CE9-8042-287E11DFA089}" = Catalyst Control Center InstallProxy "{9933221A-32B7-75A8-A496-713191B260CC}" = CCC Help Norwegian "{9B362566-EC1B-4700-BB9C-EC661BDE2175}" = DocProc "{9C28D1FA-B33F-AA17-9A87-FA556C5B6C2D}" = CCC Help English "{9C976EB6-3C08-3B82-0162-26513153E347}" = CCC Help French "{9D48531D-2135-49FC-BC29-ACCDA5396A76}" = ASUS MultiFrame "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail "{9D6D7811-43B3-463C-BC79-5D1755269989}" = Net4Switch "{9EC8C2B7-74F5-EEDC-E3F2-3E13564ABF8D}" = Catalyst Control Center Graphics Light "{A0306AD8-1D8C-A5BB-6311-81A42370EEB9}" = Catalyst Control Center Graphics Previews Vista "{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common "{A9E5EDA7-2E6C-49E7-924B-A32B89C24A04}" = 1&1 Surf-Stick "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer "{AB77649D-25F2-EC99-67CD-A1B2F9862199}" = CCC Help Turkish "{AC76BA86-7AD7-1031-7B44-AA1000000001}" = Adobe Reader X (10.1.4) - Deutsch "{ACFBE99B-6981-4513-B17E-A2683CEB9EE5}" = Windows Live Mesh "{AE8705FB-E13C-40A9-8A2D-68D6733FBFC2}" = Status "{AF5B3ED5-70D3-48CF-A00F-FC29F5261A37}_is1" = JFritz 0.7.4.1 "{B0474B6D-9508-9D4F-694A-9C78F06BB037}" = CCC Help Swedish "{B113D18C-67B0-4FB7-B329-E89B66194AE6}" = Windows Live Fotogalerie "{B1239994-A850-44E2-BED8-E70A21124E16}" = Windows Live Mail "{B5529701-E380-06B7-14A8-D24EC95B5CD2}" = CCC Help Japanese "{B5A5627C-0173-4DB2-ADA8-740479370F67}" = Express Gate "{BA32FA50-7D3C-F111-9E79-619774EDB517}" = Catalyst Control Center Localization All "{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}" = Destinations "{BD9CA010-1B74-B806-F4B7-C2175EE3AC2C}" = CCC Help Korean "{C2AB7DC4-489E-4BE9-887A-52262FBADBE0}" = Windows Live Photo Common "{C43326F5-F135-4551-8270-7F7ABA0462E1}" = HPProductAssistant "{C5398A89-516C-4DAF-BA07-EE7949090E56}" = Windows Live Mesh ActiveX control for remote connections "{C5DA59CF-2BB8-48D5-8E5B-17F2E0F0FEE4}" = System Requirements Lab for Intel "{C75CDBA2-3C86-481e-BD10-BDDA758F9DFF}" = hpPrintProjects "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64 "{D1E5870E-E3E5-4475-98A6-ADD614524ADF}" = ATK Media "{D3D54F3E-C5C3-443D-978F-87A72E5616E8}" = ATK Generic Function Service "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform "{D7BF9739-8A68-4335-BBEE-37752AD9E86B}" = NEC Electronics USB 3.0 Host Controller Driver "{DC0A5F99-FD66-433F-9D3A-05DCBA64BE42}" = TrayApp "{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E4E88B54-4777-4659-967A-2EED1E6AFD83}" = Windows Live Movie Maker "{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger "{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}" = ASUS Live Update "{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}" = ASUS Virtual Camera "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F4BF5F6B-F695-4762-AEB2-D095A4C34D89}" = Alcor Micro USB Card Reader "{F5E5DFE5-37AC-61A7-1A57-6741C243C96F}" = CCC Help Czech "{F95E4EE0-0C6E-4273-B6B9-91FD6F071D76}" = Windows Live Essentials "{F96077EB-8673-42E0-B87D-6092D94FA0A0}" = F-Secure Launch pad "{FA2092C5-7979-412D-A962-6485274AE1EE}" = ASUS Data Security Manager "{FF250E8C-2925-C0C8-71EF-C456BE470759}" = CCC Help Thai "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.6 "AIDA64 Extreme Edition_is1" = AIDA64 Extreme Edition v1.60 "ASoft AutoExit 2009 for WHS_is1" = ASoft AutoExit 2009 for WHS "BrowserCompanion" = BrowserCompanion "Free YouTube Download_is1" = Free YouTube Download version 3.1.31.706 "F-Secure ServiceEnabler 666" = F-Secure Launch pad "Hardcopy(C__Program Files (x86)_Hardcopy)" = Hardcopy (C:\Program Files (x86)\Hardcopy) "InstallShield_{D7BF9739-8A68-4335-BBEE-37752AD9E86B}" = NEC Electronics USB 3.0 Host Controller Driver "InstallShield_{F4BF5F6B-F695-4762-AEB2-D095A4C34D89}" = Alcor Micro USB Card Reader "IsoBuster_is1" = IsoBuster 2.0 "KLiteCodecPack_is1" = K-Lite Mega Codec Pack 8.9.5 "LastPass" = LastPass (uninstall only) "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware Version 1.65.0.1400 "Messenger Plus!" = Messenger Plus! 5 "Mozilla Firefox 15.0.1 (x86 de)" = Mozilla Firefox 15.0.1 (x86 de) "MozillaMaintenanceService" = Mozilla Maintenance Service "Office14.SingleImage" = Microsoft Office Professional 2010 "Picasa 3" = Picasa 3 "Revo Uninstaller" = Revo Uninstaller 1.94 "s25atonce_is1" = s25atonce 3.8.1 "SoftwareUpdUtility" = Download Updater (AOL Inc.) "TeamViewer 7" = TeamViewer 7 "Winamp" = Winamp "Winamp Toolbar" = Winamp Toolbar "WinLiveSuite" = Windows Live Essentials "ZetaProducer10" = Zeta Producer 10 10.7.1 (nur entfernen) ========== HKEY_CURRENT_USER Uninstall List ========== [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Google Chrome" = Google Chrome "Spotify" = Spotify "Winamp Detect" = Winamp Erkennungs-Plug-in "Winamp Toolbar" = Winamp Toolbar ========== Last 20 Event Log Errors ========== [ Application Events ] Error - 01.10.2012 14:06:02 | Computer Name = Fritz-Book | Source = Application Error | ID = 1000 Description = Name der fehlerhaften Anwendung: firefox.exe, Version: 15.0.1.4631, Zeitstempel: 0x5047f9c5 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000096 Fehleroffset: 0x2096f744 ID des fehlerhaften Prozesses: 0x1e80 Startzeit der fehlerhaften Anwendung: 0x01cd9ff0572b8cbf Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Mozilla Firefox\firefox.exe Pfad des fehlerhaften Moduls: unknown Berichtskennung: a8f34bee-0bf2-11e2-a05c-1c4bd60c3b8a Error - 01.10.2012 14:06:02 | Computer Name = Fritz-Book | Source = Application Error | ID = 1005 Description = Aus einem der folgenden Gründe kann nicht auf die Datei "" zugegriffen werden: Es besteht ein Problem mit der Netzwerkverbindung, dem Datenträger mit der gespeicherten Datei bzw. den auf dem Computer installierten Speichertreibern, oder der Datenträger fehlt. Das Programm Firefox wurde wegen dieses Fehlers geschlossen. Programm: Firefox Datei: Der Fehlerwert ist im Abschnitt "Zusätzliche Dateien" aufgelistet. Benutzeraktion 1. Öffnen Sie die Datei erneut. Diese Situation ist eventuell ein temporäres Problem, das selbstständig behoben wird, wenn das Programm erneut ausgeführt wird. 2. Wenn Sie weiterhin nicht auf die Datei zugreifen können und - diese sich im Netzwerk befindet, dann sollte der Netzwerkadministrator überprüfen, dass kein Netzwerkproblem besteht und dass eine Verbindung mit dem Server hergestellt werden kann. - diese sich auf einem Wechseldatenträger, wie z. B. einer Diskette oder einer CD, befindet, überprüfen Sie, ob der Datenträger richtig in den Computer eingelegt ist. 3. Überprüfen und reparieren Sie das Dateisystem, indem Sie CHKDSK ausführen. Klicken Sie dazu im Menü "Start" auf "Ausführen", geben Sie CMD ein, und klicken Sie auf "OK". Geben Sie an der Eingabeaufforderung CHKDSK /F ein, und drücken Sie die EINGABETASTE. 4. Stellen Sie die Datei von einer Sicherungskopie wieder her, wenn das Problem weiterhin besteht. 5. Überprüfen Sie, ob andere Dateien auf demselben Datenträger geöffnet werden können. Falls dies nicht möglich ist, ist der Datenträger eventuell beschädigt. Wenden Sie sich an den Administrator oder den Hersteller der Computerhardware, um weitere Unterstützung zu erhalten, wenn es sich um eine Festplatte handelt. Zusätzliche Daten Fehlerwert: 00000000 Datenträgertyp: 0 Error - 01.10.2012 14:13:17 | Computer Name = Fritz-Book | Source = AutoExit WHS | ID = 911 Description = Exception while writing to log!(Der Prozess kann nicht auf die Datei "c:\temp\aeunknown.log" zugreifen, da sie von einem anderen Prozess verwendet wird.):Bind Error - 01.10.2012 14:13:19 | Computer Name = Fritz-Book | Source = AutoExit WHS | ID = 911 Description = Exception while writing to log!(Der Prozess kann nicht auf die Datei "c:\temp\aeunknown.log" zugreifen, da sie von einem anderen Prozess verwendet wird.):Listen Error - 04.10.2012 20:44:49 | Computer Name = Fritz-Book | Source = .NET Runtime | ID = 1022 Description = Error - 05.10.2012 01:50:25 | Computer Name = Fritz-Book | Source = AutoExit WHS | ID = 911 Description = Exception while writing to log!(Der Prozess kann nicht auf die Datei "c:\temp\aewhsclient_service.log" zugreifen, da sie von einem anderen Prozess verwendet wird.):Client is up and running after being suspended, PowerStatus:'ResumeSuspend' Error - 06.10.2012 09:21:47 | Computer Name = Fritz-Book | Source = .NET Runtime | ID = 1022 Description = Error - 06.10.2012 09:24:37 | Computer Name = Fritz-Book | Source = .NET Runtime | ID = 1022 Description = Error - 07.10.2012 02:35:05 | Computer Name = Fritz-Book | Source = .NET Runtime | ID = 1022 Description = Error - 13.10.2012 04:24:50 | Computer Name = Fritz-Book | Source = Application Hang | ID = 1002 Description = Programm OTL.exe, Version 3.2.69.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 8ec Startzeit: 01cda91b090f4e63 Endzeit: 0 Anwendungspfad: C:\Users\Feuer-Fritz\Desktop\OTL.exe Berichts-ID: [ System Events ] Error - 28.07.2012 08:30:59 | Computer Name = Fritz-Book | Source = DCOM | ID = 10016 Description = Error - 28.07.2012 12:31:04 | Computer Name = Fritz-Book | Source = Service Control Manager | ID = 7009 Description = Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Live ID Sign-in Assistant erreicht. Error - 28.07.2012 12:31:04 | Computer Name = Fritz-Book | Source = Service Control Manager | ID = 7000 Description = Der Dienst "Windows Live ID Sign-in Assistant" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error - 28.07.2012 12:31:31 | Computer Name = Fritz-Book | Source = DCOM | ID = 10016 Description = Error - 28.07.2012 12:31:34 | Computer Name = Fritz-Book | Source = Service Control Manager | ID = 7009 Description = Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Media Center TV Archive Transfer Service erreicht. Error - 28.07.2012 12:31:34 | Computer Name = Fritz-Book | Source = Service Control Manager | ID = 7000 Description = Der Dienst "Windows Media Center TV Archive Transfer Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error - 28.07.2012 18:09:30 | Computer Name = Fritz-Book | Source = DCOM | ID = 10016 Description = Error - 29.07.2012 07:09:12 | Computer Name = Fritz-Book | Source = Service Control Manager | ID = 7009 Description = Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Media Center TV Archive Transfer Service erreicht. Error - 29.07.2012 07:09:12 | Computer Name = Fritz-Book | Source = Service Control Manager | ID = 7000 Description = Der Dienst "Windows Media Center TV Archive Transfer Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error - 29.07.2012 07:09:47 | Computer Name = Fritz-Book | Source = DCOM | ID = 10016 Description = < End of report > |
17.10.2012, 07:35 | #3 |
| tbhcn - was ist das und wie werde ich es los? Mag da niemand mal drüber schauen?
__________________Ich würde mich echt freuen, danke |
Themen zu tbhcn - was ist das und wie werde ich es los? |
adobe, autorun, bho, document, explorer, firefox, flash player, format, ftp, home, homepage, langsam, logfile, mozilla, neu aufgesetzt, object, plug-in, programme, realtek, registry, scan, senden, server, services.exe, software, spotify web helper, super, usb, usb 3.0, windows, windows xp, wscript.exe |