![]() |
|
Plagegeister aller Art und deren Bekämpfung: appround.net - ChromeWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() | #1 |
| ![]() appround.net - Chrome Sehr geehrtes Forum, nach dem ich mich damit beschäftigt habe, dieses Problem anzugehen, habe ich mich dazu entschlossen das trojaner-board eindeutig die Beste alternative zur Lösung ist. Nach dem ich die Anleitung zur Beseitigung der anderen Betroffenen durchgearbeitet habe, hatte ich mich zunächst entschlossen die Reinigung selbst zu probieren, jedoch schnell Festgestellt das OTL doch fortgeschrittenere Kenntnisse erfordert. Immerhin habe ich schon einmal den Log der Durchsuchung: Ich würde mich sehr freuen wenn Ihr mir dabei helfen könntet das Problem zu lösen, da ich auf anderen Seiten schlimme folgen von appround.net gelesen habe. Liebe Grüße, der Nusserdt Code:
ATTFilter OTL Extras logfile created on: 20.02.2014 11:28:57 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\****\Desktop 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.16518) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 7,86 Gb Total Physical Memory | 3,53 Gb Available Physical Memory | 44,88% Memory free 15,72 Gb Paging File | 10,69 Gb Available in Paging File | 68,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 465,66 Gb Total Space | 27,84 Gb Free Space | 5,98% Space Free | Partition Type: NTFS Drive G: | 3,73 Gb Total Space | 3,63 Gb Free Space | 97,48% Space Free | Partition Type: FAT32 Computer Name: **** | User Name: **** | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 360 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) ========== Shell Spawning ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L" Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L" Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. ========== Security Center Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 ========== Authorized Applications List ========== ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{01E1BED7-4C81-4164-8745-320F2E752AFB}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{04FD1119-8DCC-413E-88D9-1C07151DF523}" = lport=2869 | protocol=6 | dir=in | app=system | "{066F7877-FAB0-4AE4-9C11-7FD410B99A36}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{07E35CD7-0FE5-4C34-99AD-EA8FC2B7745B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{0B1E4367-DEA7-49A8-A3A6-CDC14FF09D00}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{0BE6951D-AEF5-493F-9759-2FEE47AD0BC6}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{1093473C-61C0-4F06-92DC-EEA3A54413B2}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe | "{16D044F9-6293-4F08-A09B-0B20B039F92C}" = rport=137 | protocol=17 | dir=out | app=system | "{22964A8E-9824-446F-A664-9B736F6425AD}" = rport=445 | protocol=6 | dir=out | app=system | "{2349009A-0FF9-47AE-9230-1D06FCFB0A04}" = lport=445 | protocol=6 | dir=in | app=system | "{23CCB981-D908-486D-A664-D4144BB1E1DE}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{26726A3A-2A87-47F3-A6B5-261853E32ED9}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{36B246FE-FC20-4300-9D3C-1CE0617513E7}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{3D948D73-9E05-4DDD-8C9F-AEA661D98DEA}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{418EC15B-8379-4071-9F91-13B3CD3ABC18}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{42B6B081-1684-4991-A097-7627D85C251E}" = lport=137 | protocol=17 | dir=in | app=system | "{457721B2-786C-46F9-A064-8FCEDF2580E3}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{48EADBAA-1079-4908-9587-B534892BD9B3}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{4A3EF1B7-F41C-42D1-A5B3-FD1D492EE446}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4A429843-F32A-473F-8111-B5A491EE361B}" = rport=10243 | protocol=6 | dir=out | app=system | "{4D63C884-A5B2-49FC-BDC9-35E61AC94C66}" = lport=139 | protocol=6 | dir=in | app=system | "{5B127816-AFEF-458A-8657-05D9276438F8}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{673C7319-DC34-4C71-A13C-C0F53061DA70}" = rport=80 | protocol=6 | dir=out | app=c:\users\****\appdata\local\warframe\downloaded\public\tools\launcher.exe | "{673E008C-E9F9-4D47-A115-9C48BA4396D7}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{6BA6241B-3587-4221-975C-1359128DDE77}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{6D9F7D0E-9407-44DD-812F-40C864E26557}" = rport=80 | protocol=6 | dir=out | app=c:\****\games\downloaded\public\warframe.x64.exe | "{71D59C4C-8B08-4F69-A35D-F45E79BAE504}" = lport=138 | protocol=17 | dir=in | app=system | "{788B9C99-9FA4-4F31-8FA9-38F2EDED5C3B}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{7FB5727F-BDBE-48C1-A1D1-3C191F2056B9}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{810A0A28-8FFF-415F-9B9A-D6E1FABC33AC}" = rport=2869 | protocol=6 | dir=out | app=system | "{84BFC7A9-8196-4338-8103-F50290195CEA}" = rport=80 | protocol=6 | dir=out | app=c:\****\games\downloaded\public\warframe.exe | "{87FE6DB4-6F28-4648-8592-41C119D5A8F6}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe | "{9A12221C-FBDE-4432-943F-78B9E48DE7ED}" = rport=138 | protocol=17 | dir=out | app=system | "{A1710599-F0F0-4EFA-808F-29C97A58DA82}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{A1AE8847-CEE8-4D63-BB35-AD1E41176A76}" = lport=2869 | protocol=6 | dir=in | app=system | "{AB5D219C-ACE0-410B-AAD8-9032F152F9E1}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{B5071A72-475D-498D-9663-03FD01D11FDD}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{B5341EDA-47F2-4D25-A994-5FD43E22AD0D}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{BA9C7BDD-2D7C-424F-8393-42DE4C776D98}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{C5A150AD-1080-4702-B3A0-6D82E5CA0105}" = rport=139 | protocol=6 | dir=out | app=system | "{C7A9C6FD-4CF5-4E2E-B5CA-E3C7A6662AD3}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{D2D06E6C-04BD-49C7-8262-DD69ACFABB5E}" = lport=2869 | protocol=6 | dir=in | app=system | "{D4EC5744-5F16-4EDB-AB48-924E08271CA8}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{DE03B9B1-8CF8-4EFF-999B-CA115EBF6F77}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{DEEF1D83-FA64-43F8-9DEE-E31D0E790C42}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{E0348E7A-4B4E-4265-AA07-E24297B6DDA5}" = lport=10243 | protocol=6 | dir=in | app=system | "{E82CE86D-ACF8-434F-9C8B-4BCF1027518F}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{EB8B22C6-F39C-4936-AA00-F72A5458C26F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{F0F7FA9D-935A-4C47-A3C7-34DBEFC95900}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{F3EE4A93-BA45-4D97-A99A-C9A099442FD9}" = lport=2869 | protocol=6 | dir=in | app=system | ========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0349690D-4EF6-4FF4-AF0B-67A70069FD67}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2689\agent.exe | "{05182F19-C4E7-4C19-A883-28462F1B563A}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2680\agent.exe | "{0762C9E1-6F90-40F1-B432-179D5731BDC1}" = protocol=17 | dir=in | app=c:\****\games\ assassin's creed ii\assassinscreedii.exe | "{0F7E0241-D4D7-40BF-BFB7-E5729DF5A997}" = dir=in | app=c:\program files\hp\hp officejet pro 8600\bin\hpnetworkcommunicatorcom.exe | "{10DDB289-2DA5-4A99-A0EF-99A71FE7276F}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{1372C910-E06D-4BCE-92F5-573254991BF7}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe | "{13BD9966-8BA2-450E-93CA-6BBC32DDD85A}" = protocol=17 | dir=in | app=c:\****\games\riot games\league of legends\lol.launcher.exe | "{189E8AEE-D9C0-4B47-91ED-15893DE7486A}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.954\agent.exe | "{1989586F-4E6F-4BC1-8073-76E8D0CF89B1}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2689\agent.exe | "{1C88DEEF-02C4-436F-AF48-C33BE0B25212}" = protocol=6 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe | "{1E6C411D-0203-4A2B-B6BD-FF7CBABD0C77}" = protocol=17 | dir=in | app=c:\program files (x86)\icq7.6\icq.exe | "{1ED458B4-D476-46B9-A218-E18A0C3AE4E2}" = protocol=17 | dir=in | app=c:\users\****\appdata\roaming\dropbox\bin\dropbox.exe | "{215A5AE2-1A82-4215-9F37-0D8EF895156B}" = protocol=17 | dir=out | app=c:\****\games\downloaded\public\warframe.x64.exe | "{2444505E-F8B3-46EC-81CE-C3241AAF32ED}" = protocol=6 | dir=in | app=c:\users\****\appdata\roaming\dropbox\bin\dropbox.exe | "{29930BB5-A5D9-4CBB-A60B-363131EBCAF8}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2638\agent.exe | "{2A3DAEF2-56FB-4B3F-B4F1-8C27A2B5554C}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{2D9E98B7-899F-4E1A-9D10-27F85E0D720E}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{31AF0C14-1A49-4FA5-8397-0A4304DF902D}" = protocol=6 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe | "{3528044B-B4D0-4A3F-922E-6ADA4C152F14}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1199\agent.exe | "{3A2558AC-D34F-46D0-A5AA-CD746225B91A}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{3A6AC613-8759-44C9-87BB-6BF1EAEEA39F}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{3B8F87DD-0B44-41EB-A95B-AFAF0FA6F2B0}" = protocol=6 | dir=in | app=c:\programdata\esafe\egdpsvc.exe | "{3C20A693-E03A-49FC-8DF6-65AC829DDB31}" = protocol=6 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{3E3085AB-9A7B-4279-B20C-20D81ECB82AC}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{411A3CD7-6DDC-48B5-819E-FFBCE2C6AB03}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe | "{42E20069-731F-4553-B921-71FE62E1FA13}" = protocol=6 | dir=in | app=c:\martin\games\ assassin's creed ii\server.exe | "{4483BDCF-519F-4085-9866-824A3D54058A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{4756EC11-7F0F-492F-9418-54A5B45DBDEA}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2680\agent.exe | "{4E59AA9B-1DD8-4A6A-BB91-9F88CBB67A6B}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1363\agent.exe | "{4EC989F1-9046-4EAD-8564-4F1AD2C812E7}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1199\agent.exe | "{53019F2A-04CA-4A41-94D7-8DF52C1B1CFB}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{53B54FB0-0967-4787-912A-3BFE3B892C03}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.524\agent.exe | "{546B5B21-489F-4761-ABAC-FA96FB9432F6}" = protocol=17 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe | "{549C32EB-BF0F-4A44-AD57-226496391FE9}" = protocol=6 | dir=in | app=c:\martin\games\ assassin's creed ii\assassinscreedii.exe | "{587B45FF-DC87-4DCD-932A-5B4EC6A13401}" = protocol=6 | dir=in | app=c:\martin\games\two worlds ii\twoworlds2.exe | "{592C72D1-4C0C-4FAA-91CA-6F0155DAEAF6}" = dir=in | app=c:\program files\hp\hp officejet pro 8600\bin\faxapplications.exe | "{5ACF43D6-16A0-4040-BB08-BDECD9C909A1}" = protocol=17 | dir=in | app=c:\program files (x86)\spyware terminator\spywareterminator.exe | "{5C30FE63-7D80-4279-AECA-E68235266D45}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{6183558E-C7AE-4C98-A6BD-84130730BAF4}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 | "{622E3104-E577-4B19-B30C-5A7E951A3841}" = protocol=6 | dir=in | app=c:\martin\games\ assassin's creed ii\uplaybrowser.exe | "{6942907F-13B7-46E1-8714-5D9C264CD588}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | "{6BBE79A0-6B08-4FB3-A3AB-F5C178D6F673}" = protocol=6 | dir=in | app=c:\program files (x86)\spyware terminator\spywareterminatorupdate.exe | "{6E5A004F-A9CD-41D2-BAEE-BD6C836DBD34}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{7165C847-72E5-47B5-8C20-7140F351E6A7}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.524\agent.exe | "{7ED0A258-94D5-44C1-8524-F7675522722C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{80075E41-D098-428D-8D22-5D4F1AB6AE15}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{83217C83-42EB-4C94-9EA8-6CD0639D6E31}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{83CA28A3-3F97-460F-A637-D8E9B0432849}" = protocol=6 | dir=out | app=%systemroot%\system32\wudfhost.exe | "{89A35DD1-BF0E-44BE-A343-0EDD5874E75D}" = protocol=17 | dir=in | app=c:\martin\games\downloaded\public\warframe.x64.exe | "{8B7202AA-297A-458F-8259-99CDD0E2934F}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | "{8C7D163A-3FA1-4C1F-8BC1-F200BA2F3971}" = protocol=17 | dir=in | app=c:\program files (x86)\hearthstone\hearthstone.exe | "{8CCFB3F9-F876-4A61-A730-31AC2EEFD753}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{8D769A7B-FFE7-44FC-98E4-AB38D4F81A3A}" = protocol=6 | dir=in | app=c:\martin\games\ assassin's creed ii\assassinscreediigame.exe | "{8F96E0CE-EF1D-4296-85F1-27BD6CE88728}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{9059AA0A-0A62-4B76-8E37-0E193AE8614C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe | "{90FBE3CD-0261-424E-84A3-344AB2F88893}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe | "{979F161F-F673-4ABA-BA71-970BEC21F939}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2638\agent.exe | "{9817DE67-43F9-431C-B1F6-2FB4F97EF726}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | "{9968ADBE-8308-4379-B460-7DDEAD315C62}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{9996D592-8A8C-4271-9F80-26056C6665A5}" = dir=in | app=c:\program files\hp\hp officejet pro 8600\bin\sendafax.exe | "{9D0CD84E-F271-468B-B9AC-6E4DEFAD204D}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1199\agent.exe | "{A24B3966-5AE8-406A-8477-2BE317B70EEE}" = dir=in | app=c:\program files\hp\hp officejet pro 8600\bin\hpnetworkcommunicator.exe | "{A25763C3-8FBC-4809-95F5-39EA67319AED}" = protocol=6 | dir=in | app=c:\martin\games\bulletstorm\binaries\win32\shippingpc-stormgame.exe | "{A45402CA-B0A8-47D3-BECA-B0F38BE77B85}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{A8BC3C2B-6B56-4578-87C5-74C8C3FA01D7}" = protocol=6 | dir=in | app=c:\program files (x86)\icq7.6\icq.exe | "{AD1DFD22-0D1B-4BE0-8CF5-E959E236A00D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{AD6DB4FF-A546-4433-918A-78EF6E6C965B}" = protocol=6 | dir=out | app=system | "{AD71F2E5-1622-4A8B-B17B-C36130EBF391}" = protocol=6 | dir=in | app=c:\program files (x86)\spyware terminator\spywareterminator.exe | "{B122BD1D-2487-4019-9736-5FF8AE451C78}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{B211450C-15E0-4463-85F3-A7F2369615F5}" = protocol=17 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe | "{B259BC98-57D4-4D6F-832A-A7799BEEF216}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{B79AD748-157A-4BE2-8AD8-D3B9D2331106}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{BCDFADCE-A114-4A3F-84BA-9E16C2E15EA6}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{BE5A909E-0D8C-4088-A982-861A2D9D7A49}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{C231512A-83A2-4244-9D0F-D224F20BD4D1}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{C375CBD5-6F92-43AF-AC5B-578D69CCCB29}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{C5F3428E-D0F7-4F41-9FB9-BA10A4C98676}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{C9384AEC-DC5D-4070-B819-D11F84BA081E}" = protocol=17 | dir=in | app=c:\program files (x86)\spyware terminator\spywareterminatorupdate.exe | "{C9C59982-3390-47DF-925E-0D7C1B4B11A1}" = protocol=17 | dir=in | app=c:\martin\games\ assassin's creed ii\uplaybrowser.exe | "{CAA52AF7-DA8F-4CFA-BA41-66BA8CF5A8FA}" = protocol=6 | dir=in | app=c:\program files (x86)\hearthstone\hearthstone.exe | "{CADD9D9E-7C3D-4D9F-9F65-7E9F7B01004E}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1199\agent.exe | "{CB226DED-BA3A-478F-91A1-DF604E85C27C}" = protocol=17 | dir=in | app=c:\martin\games\downloaded\public\warframe.exe | "{CBE1399A-A20C-411E-9DF4-C7C45A5376AB}" = protocol=17 | dir=in | app=c:\martin\games\ assassin's creed ii\assassinscreediigame.exe | "{CD12D500-EB61-4D85-B94E-B0EC326673A1}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{CD531F04-4087-40A2-8E5B-A4BD4665290D}" = dir=in | app=c:\program files\hp\hp officejet pro 8600\bin\digitalwizards.exe | "{CF80A98F-3900-4693-895F-6B41D19D315C}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2638\agent.exe | "{D2734395-1FA0-4C30-B48A-75535DD4AF6E}" = protocol=17 | dir=in | app=c:\martin\games\two worlds ii\twoworlds2.exe | "{D432304F-40C3-4117-91EE-03AA155B68D3}" = protocol=17 | dir=in | app=c:\windows\syswow64\muzapp.exe | "{D7ADEE35-CE17-4975-BD11-376FFE461EB5}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.954\agent.exe | "{DF2430D8-B27B-4DDA-B3A4-8E8C292A3DE8}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe | "{DFF965D1-1473-4870-AA5B-77142E43755E}" = protocol=6 | dir=in | app=c:\windows\syswow64\muzapp.exe | "{E07794C3-2AB5-4E4A-80C5-FB2900F971E3}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2638\agent.exe | "{E139BCB2-7F12-4D1D-BCFF-605B0F5AAA0A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{E2FFAE43-334A-4EC1-9E27-6CAE613D6CAB}" = protocol=17 | dir=in | app=c:\martin\games\bulletstorm\binaries\win32\shippingpc-stormgame.exe | "{E8761386-2042-4C53-B291-8CAD71D01CE2}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1363\agent.exe | "{EBD663BB-F73A-4C78-8253-E20FC527A455}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe | "{ECA00F09-3616-4C46-BBF3-D4EF60771378}" = protocol=6 | dir=in | app=c:\martin\games\riot games\league of legends\lol.launcher.exe | "{ED15FEC8-7430-45D5-B191-561B37DF47BC}" = protocol=17 | dir=out | app=c:\martin\games\downloaded\public\warframe.exe | "{ED2A6605-9E3A-477D-A361-94A0254FF75A}" = protocol=17 | dir=in | app=c:\martin\games\ assassin's creed ii\server.exe | "{F5510E23-5471-48ED-AD7E-7B8065CC10FB}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | "{F7DD132F-5B62-4AE1-9994-17B666C59B9F}" = protocol=6 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{FD1BC40F-D66C-4A86-8411-AACA910CFD4E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{FD3D6BE8-E5F0-4850-960B-5EF87F5059C7}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{FE4A04C1-4484-4ED7-8432-40617FE7A71B}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{FFF37E9D-B24F-4ACA-A3EF-80A21B19466C}" = dir=in | app=c:\program files\hp\hp officejet pro 8600\bin\devicesetup.exe | "TCP Query User{1EEA7344-E317-4970-AFAC-5C636010C6B4}C:\programdata\battle.net\agent\agent.976\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.976\agent.exe | "TCP Query User{42FE6811-5B00-4A96-9770-B79B5520D6E2}C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\planetside 2\planetside2.exe | "TCP Query User{5A8AF425-6503-469F-AFAA-E8A68DE99E26}C:\programdata\battle.net\agent\agent.998\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.998\agent.exe | "TCP Query User{6ED2FF9C-03CC-48E6-BD1E-2E9B6B35EC7E}C:\programdata\battle.net\agent\agent.1225\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1225\agent.exe | "TCP Query User{7EB8DD4C-6718-408D-B35B-2F98BCD39AB7}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | "TCP Query User{86F2284B-077F-467F-B8C2-7C75AEE6FB70}C:\programdata\battle.net\agent\agent.998\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.998\agent.exe | "TCP Query User{B05BCDB9-3634-4903-8DB0-0C4533E69D5F}C:\programdata\battle.net\agent\agent.1737\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1737\agent.exe | "TCP Query User{C08A4D9B-DE9F-41F1-8BDA-2F1D20FBE88C}C:\martin\games\dead island\deadislandgame.exe" = protocol=6 | dir=in | app=c:\martin\games\dead island\deadislandgame.exe | "TCP Query User{C583D710-78CD-4906-A72E-32D09FFDDA70}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "TCP Query User{CBEE09BF-6FD8-4526-886E-A622C0506425}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "TCP Query User{D6987827-F4D9-4A03-BFAF-7A1554C75339}C:\program files (x86)\diablo iii\diablo iii.exe" = protocol=6 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe | "TCP Query User{E403079F-E871-4B64-B7A1-26CF9D50FEF1}C:\programdata\battle.net\agent\agent.976\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.976\agent.exe | "TCP Query User{ECFC734F-D92D-4532-8F92-C62012178051}C:\martin\games\dead island\deadislandgame.exe" = protocol=6 | dir=in | app=c:\martin\games\dead island\deadislandgame.exe | "TCP Query User{F0BED8A7-B6D3-4F52-A892-3F9D2CD31957}C:\program files\onone software\perfect effects 4\perfect effects 4.exe" = protocol=6 | dir=in | app=c:\program files\onone software\perfect effects 4\perfect effects 4.exe | "TCP Query User{F274DA56-0DFC-4517-8958-6C6839DF40B8}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "TCP Query User{FDB9CAC6-3387-4FC4-9EA0-20D97B93E63D}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | "UDP Query User{0A3C0836-CC0A-472A-9BA4-BFDBC2A3B153}C:\program files\onone software\perfect effects 4\perfect effects 4.exe" = protocol=17 | dir=in | app=c:\program files\onone software\perfect effects 4\perfect effects 4.exe | "UDP Query User{5B4D5CB6-B4D6-4F91-9173-6326ABDBA21C}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "UDP Query User{73F36140-7FDA-4501-B69A-975C1B0B14B1}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "UDP Query User{8F558C4A-C048-4EED-B47D-F3D4F0039978}C:\martin\games\dead island\deadislandgame.exe" = protocol=17 | dir=in | app=c:\martin\games\dead island\deadislandgame.exe | "UDP Query User{93C53445-6608-46CA-B5A9-2BE0B025AE68}C:\programdata\battle.net\agent\agent.998\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.998\agent.exe | "UDP Query User{951CD9AB-BD3A-45AF-B65C-19C8FCB71710}C:\martin\games\dead island\deadislandgame.exe" = protocol=17 | dir=in | app=c:\martin\games\dead island\deadislandgame.exe | "UDP Query User{97071E3E-BF08-40D3-8625-C3AA2F4757D7}C:\programdata\battle.net\agent\agent.976\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.976\agent.exe | "UDP Query User{A2E53270-3B82-48A6-9101-AD211FDB2020}C:\programdata\battle.net\agent\agent.998\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.998\agent.exe | "UDP Query User{A59378C8-772B-4CF8-A37F-1C755ACFDBB3}C:\program files (x86)\diablo iii\diablo iii.exe" = protocol=17 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe | "UDP Query User{ADFDC36A-2AE1-4760-A97C-2CC984DB322F}C:\programdata\battle.net\agent\agent.1737\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1737\agent.exe | "UDP Query User{B4FFC6B8-568F-4458-9FB9-3AA594A58743}C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\planetside 2\planetside2.exe | "UDP Query User{C63DA2A4-2A53-47ED-ADF0-9AF2ACF998BB}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | "UDP Query User{E2AB5F8F-0B66-4B2C-995D-6FA83815603B}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | "UDP Query User{E5AAC63A-55AE-4E9B-B43F-B610EAE036DE}C:\programdata\battle.net\agent\agent.1225\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1225\agent.exe | "UDP Query User{F1175E72-011C-471B-A949-D0C8642C399E}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "UDP Query User{F4E55292-6D4E-4DEB-8A12-346A889A57D0}C:\programdata\battle.net\agent\agent.976\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.976\agent.exe | ========== HKEY_LOCAL_MACHINE Uninstall List ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{02382870-19C7-3ACD-BBAE-F6E3760947DC}" = Microsoft .NET Framework 4 Extended DEU Language Pack "{0E3DAF3D-FF69-345A-A99E-1FED304CA083}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack "{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition) "{2DD893C5-ABC1-4E27-B6D4-279E01AEB4E2}" = OZ711 SCR Driver (x64) "{4108974B-DE87-4AD4-9167-930C62C45691}" = Fujitsu Display Manager "{47220B83-D895-4262-9227-E5D8FA7F7384}" = Nitro Reader 3 "{4B1CF482-AD0E-48F3-8032-BCF5F071C123}" = O2Micro Flash Memory Card Windows Driver "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{51692C66-5505-41B8-92A7-548C69FB867C}" = Wireless Selector "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{6226477E-444F-4DFE-BA19-9F4F7D4565BC}" = LifeBook Application Panel "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0407-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (German) 2007 "{ABE8CE7E-01CC-4500-BAF5-FFC29EA108A1}" = Shock Sensor Utility "{B2F4C332-2359-4ADE-AF0C-C631768BBB89}" = Bluetooth Feature Pack 5.0 "{B9824225-2055-4700-BCD4-64B25EC88264}" = Studie zur Verbesserung von HP Officejet Pro 8600 Produkten "{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones "{D2D05FDB-4EDA-462D-8DB6-E0B9AD4FA25F}" = HP Officejet Pro 8600 - Grundlegende Software für das Gerät "{E8A34AC8-0137-4515-A94B-0A0946DDC251}" = Scan To "{E8A5B78F-4456-4511-AB3D-E7BFFB974A7A}" = Fujitsu System Extension Utility "{EC314CDF-3521-482B-A21C-65AC95664814}" = Fujitsu MobilityCenter Extension Utility "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "HP LaserJet Professional M1130-M1210 MFP Series" = HP LaserJet Professional M1130-M1210 MFP Series "LSI Soft Modem" = LSI HDA Modem "LTMOH" = LSI V92 MOH Application "McAfee Security Scan" = McAfee Security Scan Plus "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft .NET Framework 4 Extended DEU Language Pack" = Microsoft .NET Framework 4 Extended DEU Language Pack "NVIDIA Drivers" = NVIDIA Drivers "NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager "PROSet" = Intel(R) Network Connections Drivers "sp6" = Logitech SetPoint 6.30 "SynTPDeinstKey" = Synaptics Pointing Device Driver "VLC media player" = VLC media player 2.0.2 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1 "{150E7499-BC35-4416-917D-5D16FBE2602B}" = Warframe "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 51 "{385E6A4D-A440-43E2-9BAF-A012FB5FC2E2}" = Perfect Effects 4.0.4 "{399C37FB-08AF-493B-BFED-20FBD85EDF7F}" = FJ Camera "{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}" = Smite "{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}" = Hi-Rez Studios Authenticate and Update Service "{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = eReg "{415FA9AD-DA10-4ABE-97B6-5051D4795C90}" = HP FWUpdateEDO2 "{45410935-B52C-468A-A836-0D1000018201}" = BulletStorm "{48DEAAF2-8276-4BBD-B7B6-91E454938476}" = CambridgeSoft ChemDraw Ultra 12.0 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{501451DE-5808-4599-B544-8BD0915B6B24}_is1" = FreeRIP 3.80 "{56736259-613E-4A3B-B428-6235F2E76F44}_is1" = Spyware Terminator 2012 "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{6F1C00D2-25C2-4CBA-8126-AE9A6E2E9CD5}" = HP Update "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "{80A07844-CA64-4DE4-AB61-D37DDBE8074F}" = PDF Architect "{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1" = PDF24 Creator 5.4.0 "{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}" = Assassin's Creed II "{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher "{8A809006-C25A-4A3A-9DAB-94659BCDB107}" = NVIDIA PhysX "{8FB1B528-E260-451E-9B55-E9152F94B80B}" = Microsoft Games for Windows - LIVE Redistributable "{90120000-0015-0407-0000-0000000FF1CE}" = Microsoft Office Access MUI (German) 2007 "{90120000-0015-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2007 "{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2007 "{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-0407-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (German) 2007 "{90120000-0019-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (German) 2007 "{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2007 "{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007 "{90120000-001F-0410-0000-0000000FF1CE}_ENTERPRISE_{A23BFC95-4A73-410F-9248-4C2B48E38C49}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002A-0407-1000-0000000FF1CE}_ENTERPRISE_{A6353E8F-5B8D-47CC-8737-DFF032ED3973}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0044-0407-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (German) 2007 "{90120000-0044-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2007 "{90120000-006E-0407-0000-0000000FF1CE}_ENTERPRISE_{A6353E8F-5B8D-47CC-8737-DFF032ED3973}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2007 "{90120000-00A1-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00BA-0407-0000-0000000FF1CE}" = Microsoft Office Groove MUI (German) 2007 "{90120000-00BA-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{918A9082-6287-4D25-9002-5E5D5E4971CB}" = League of Legends "{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1031-7B44-AA1000000001}" = Adobe Reader X (10.1.9) - Deutsch "{BA0CC975-682B-4678-A35C-05E607F36387}" = Fujitsu Hotkey Utility "{CA6BCA2F-EDEB-408F-850B-31404BE16A61}" = I.R.I.S. OCR "{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}" = Intel(R) Turbo Boost Technology Driver "{E773E0B9-6ABE-4F9E-816C-56B2DD8613B9}" = CambridgeSoft Activation Client "{E87022D3-C8C9-4C76-8E27-BC7F18F9B8FB}" = Google Drive "{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}" = Microsoft Office Live Add-in 1.5 "{F7708742-E734-4BC1-BEEB-F200DE21C5FC}" = Qualcomm Gobi 2000 Package for Sierra "{F97E3841-CA9D-4964-9D64-26066241D26F}" = Microsoft Games for Windows - LIVE "{FDE820DD-CC88-4395-AD5C-801365B8F316}" = HP Officejet Pro 8600 Hilfe "5513-1208-7298-9440" = JDownloader 0.9 "64F02083-9C18-41fd-A5BB-54FC8E5A376E_is1" = Jagged Alliance 2 v1.13 (DE) [1.0.0.2085] "Amazon Browser Settings" = Amazon Browser Settings "Audacity_is1" = Audacity 2.0 "Battle.net" = Battle.net "DAEMON Tools Lite" = DAEMON Tools Lite "Dead Island" = Dead Island "Diablo III" = Diablo III "DivX Setup" = DivX-Setup "DSMT6" = MathType 6 "ElsterFormular" = ElsterFormular "ENTERPRISE" = Microsoft Office Enterprise 2007 "Free Audio Converter_is1" = Free Audio Converter version 5.0.17.903 "Free Image Convert and Resize_is1" = Free Image Convert and Resize version 2.1.26.1230 "Free Studio_is1" = Free Studio version 5.6.2.627 "Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.11.32.918 "Hearthstone" = Hearthstone "InstallShield_{2DD893C5-ABC1-4E27-B6D4-279E01AEB4E2}" = OZ711 SCR Driver (x64) "InstallShield_{4108974B-DE87-4AD4-9167-930C62C45691}" = Fujitsu Display Manager "InstallShield_{4B1CF482-AD0E-48F3-8032-BCF5F071C123}" = O2Micro Flash Memory Card Windows Driver "InstallShield_{51692C66-5505-41B8-92A7-548C69FB867C}" = Wireless Selector "InstallShield_{6226477E-444F-4DFE-BA19-9F4F7D4565BC}" = LifeBook Application Panel "InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "InstallShield_{ABE8CE7E-01CC-4500-BAF5-FFC29EA108A1}" = Shock Sensor Utility "InstallShield_{BA0CC975-682B-4678-A35C-05E607F36387}" = Fujitsu Hotkey Utility "InstallShield_{E8A5B78F-4456-4511-AB3D-E7BFFB974A7A}" = Fujitsu System Extension Utility "InstallShield_{EC314CDF-3521-482B-A21C-65AC95664814}" = Fujitsu MobilityCenter Extension Utility "Jagged Alliance 2" = Jagged Alliance 2 "LAME_is1" = LAME v3.99.3 (for Windows) "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware Version 1.75.0.1300 "MestReNova LITE" = MestReNova LITE 5.2.5-5780 "Steam App 10190" = Call of Duty: Modern Warfare 2 - Multiplayer "SystemRequirementsLab" = System Requirements Lab "TeamViewer 9" = TeamViewer 9 "WinRAR archiver" = WinRAR Archivierer ========== HKEY_USERS Uninstall List ========== [HKEY_USERS\S-1-5-21-3359158749-1672355249-3210524210-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Dropbox" = Dropbox "Google Chrome" = Google Chrome "MyFreeCodec" = MyFreeCodec "UnityWebPlayer" = Unity Web Player ========== Last 20 Event Log Errors ========== [ Application Events ] Error - 11.02.2014 16:46:12 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 12.02.2014 02:24:24 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 13.02.2014 02:11:04 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 14.02.2014 02:26:18 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 14.02.2014 09:16:40 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 16.02.2014 08:24:27 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 17.02.2014 02:39:36 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 18.02.2014 01:40:32 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 18.02.2014 17:29:20 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 18.02.2014 18:24:54 | Computer Name = Martin-PC | Source = Application Error | ID = 1000 Description = Name der fehlerhaften Anwendung: League of Legends.exe, Version: 4.2.0.2723, Zeitstempel: 0x52fc0fab Name des fehlerhaften Moduls: League of Legends.exe, Version: 4.2.0.2723, Zeitstempel: 0x52fc0fab Ausnahmecode: 0xc0000005 Fehleroffset: 0x00431de0 ID des fehlerhaften Prozesses: 0x828 Startzeit der fehlerhaften Anwendung: 0x01cf2cf2b3639635 Pfad der fehlerhaften Anwendung: C:\Martin\Games\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.9\deploy\League of Legends.exe Pfad des fehlerhaften Moduls: C:\Martin\Games\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.9\deploy\League of Legends.exe Berichtskennung: 7d4450ec-98eb-11e3-ac28-4cedde5219df Error - 19.02.2014 02:01:23 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 19.02.2014 06:52:54 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 19.02.2014 12:28:00 | Computer Name = Martin-PC | Source = Application Hang | ID = 1002 Description = Programm EXCEL.EXE, Version 12.0.6683.5002 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 2a2c Startzeit: 01cf2d8e3c38b286 Endzeit: 38 Anwendungspfad: C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE Berichts-ID: b2e8130e-9982-11e3-a80f-4cedde5219df Error - 20.02.2014 02:31:50 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = [ OSession Events ] Error - 25.09.2013 03:19:43 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6679.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 3291 seconds with 2160 seconds of active time. This session ended with a crash. Error - 26.09.2013 03:00:33 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6679.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 260 seconds with 180 seconds of active time. This session ended with a crash. Error - 26.09.2013 03:01:26 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6679.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 3 seconds with 0 seconds of active time. This session ended with a crash. Error - 26.09.2013 10:51:30 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6679.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 6 seconds with 0 seconds of active time. This session ended with a crash. Error - 26.09.2013 10:52:13 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6679.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 18 seconds with 0 seconds of active time. This session ended with a crash. Error - 12.01.2014 11:35:12 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 3420 seconds with 3420 seconds of active time. This session ended with a crash. Error - 12.01.2014 12:15:35 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 2290 seconds with 2160 seconds of active time. This session ended with a crash. Error - 12.01.2014 12:28:16 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 508 seconds with 480 seconds of active time. This session ended with a crash. Error - 12.01.2014 12:38:09 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 225 seconds with 180 seconds of active time. This session ended with a crash. Error - 08.02.2014 08:51:08 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 251 seconds with 180 seconds of active time. This session ended with a crash. [ System Events ] Error - 17.02.2014 18:23:01 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = Error - 18.02.2014 01:42:42 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = Error - 18.02.2014 01:43:56 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = Error - 18.02.2014 12:22:19 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = Error - 19.02.2014 02:00:04 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = Error - 19.02.2014 06:50:13 | Computer Name = Martin-PC | Source = DCOM | ID = 10010 Description = Error - 19.02.2014 06:51:26 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = Error - 19.02.2014 06:52:40 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = Error - 20.02.2014 02:30:29 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = Error - 20.02.2014 04:01:23 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = < End of report > EXTRAS: Code:
ATTFilter OTL Extras logfile created on: 20.02.2014 11:28:57 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\****\Desktop 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.16518) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 7,86 Gb Total Physical Memory | 3,53 Gb Available Physical Memory | 44,88% Memory free 15,72 Gb Paging File | 10,69 Gb Available in Paging File | 68,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 465,66 Gb Total Space | 27,84 Gb Free Space | 5,98% Space Free | Partition Type: NTFS Drive G: | 3,73 Gb Total Space | 3,63 Gb Free Space | 97,48% Space Free | Partition Type: FAT32 Computer Name: **** | User Name: **** | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 360 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) ========== Shell Spawning ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L" Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L" Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. ========== Security Center Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 ========== Authorized Applications List ========== ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{01E1BED7-4C81-4164-8745-320F2E752AFB}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{04FD1119-8DCC-413E-88D9-1C07151DF523}" = lport=2869 | protocol=6 | dir=in | app=system | "{066F7877-FAB0-4AE4-9C11-7FD410B99A36}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{07E35CD7-0FE5-4C34-99AD-EA8FC2B7745B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{0B1E4367-DEA7-49A8-A3A6-CDC14FF09D00}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{0BE6951D-AEF5-493F-9759-2FEE47AD0BC6}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{1093473C-61C0-4F06-92DC-EEA3A54413B2}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe | "{16D044F9-6293-4F08-A09B-0B20B039F92C}" = rport=137 | protocol=17 | dir=out | app=system | "{22964A8E-9824-446F-A664-9B736F6425AD}" = rport=445 | protocol=6 | dir=out | app=system | "{2349009A-0FF9-47AE-9230-1D06FCFB0A04}" = lport=445 | protocol=6 | dir=in | app=system | "{23CCB981-D908-486D-A664-D4144BB1E1DE}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{26726A3A-2A87-47F3-A6B5-261853E32ED9}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{36B246FE-FC20-4300-9D3C-1CE0617513E7}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{3D948D73-9E05-4DDD-8C9F-AEA661D98DEA}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{418EC15B-8379-4071-9F91-13B3CD3ABC18}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{42B6B081-1684-4991-A097-7627D85C251E}" = lport=137 | protocol=17 | dir=in | app=system | "{457721B2-786C-46F9-A064-8FCEDF2580E3}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{48EADBAA-1079-4908-9587-B534892BD9B3}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{4A3EF1B7-F41C-42D1-A5B3-FD1D492EE446}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4A429843-F32A-473F-8111-B5A491EE361B}" = rport=10243 | protocol=6 | dir=out | app=system | "{4D63C884-A5B2-49FC-BDC9-35E61AC94C66}" = lport=139 | protocol=6 | dir=in | app=system | "{5B127816-AFEF-458A-8657-05D9276438F8}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{673C7319-DC34-4C71-A13C-C0F53061DA70}" = rport=80 | protocol=6 | dir=out | app=c:\users\martin\appdata\local\warframe\downloaded\public\tools\launcher.exe | "{673E008C-E9F9-4D47-A115-9C48BA4396D7}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{6BA6241B-3587-4221-975C-1359128DDE77}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{6D9F7D0E-9407-44DD-812F-40C864E26557}" = rport=80 | protocol=6 | dir=out | app=c:\martin\games\downloaded\public\warframe.x64.exe | "{71D59C4C-8B08-4F69-A35D-F45E79BAE504}" = lport=138 | protocol=17 | dir=in | app=system | "{788B9C99-9FA4-4F31-8FA9-38F2EDED5C3B}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{7FB5727F-BDBE-48C1-A1D1-3C191F2056B9}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{810A0A28-8FFF-415F-9B9A-D6E1FABC33AC}" = rport=2869 | protocol=6 | dir=out | app=system | "{84BFC7A9-8196-4338-8103-F50290195CEA}" = rport=80 | protocol=6 | dir=out | app=c:\martin\games\downloaded\public\warframe.exe | "{87FE6DB4-6F28-4648-8592-41C119D5A8F6}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe | "{9A12221C-FBDE-4432-943F-78B9E48DE7ED}" = rport=138 | protocol=17 | dir=out | app=system | "{A1710599-F0F0-4EFA-808F-29C97A58DA82}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{A1AE8847-CEE8-4D63-BB35-AD1E41176A76}" = lport=2869 | protocol=6 | dir=in | app=system | "{AB5D219C-ACE0-410B-AAD8-9032F152F9E1}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{B5071A72-475D-498D-9663-03FD01D11FDD}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{B5341EDA-47F2-4D25-A994-5FD43E22AD0D}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{BA9C7BDD-2D7C-424F-8393-42DE4C776D98}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{C5A150AD-1080-4702-B3A0-6D82E5CA0105}" = rport=139 | protocol=6 | dir=out | app=system | "{C7A9C6FD-4CF5-4E2E-B5CA-E3C7A6662AD3}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{D2D06E6C-04BD-49C7-8262-DD69ACFABB5E}" = lport=2869 | protocol=6 | dir=in | app=system | "{D4EC5744-5F16-4EDB-AB48-924E08271CA8}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{DE03B9B1-8CF8-4EFF-999B-CA115EBF6F77}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{DEEF1D83-FA64-43F8-9DEE-E31D0E790C42}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{E0348E7A-4B4E-4265-AA07-E24297B6DDA5}" = lport=10243 | protocol=6 | dir=in | app=system | "{E82CE86D-ACF8-434F-9C8B-4BCF1027518F}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{EB8B22C6-F39C-4936-AA00-F72A5458C26F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{F0F7FA9D-935A-4C47-A3C7-34DBEFC95900}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{F3EE4A93-BA45-4D97-A99A-C9A099442FD9}" = lport=2869 | protocol=6 | dir=in | app=system | ========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0349690D-4EF6-4FF4-AF0B-67A70069FD67}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2689\agent.exe | "{05182F19-C4E7-4C19-A883-28462F1B563A}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2680\agent.exe | "{0762C9E1-6F90-40F1-B432-179D5731BDC1}" = protocol=17 | dir=in | app=c:\martin\games\ assassin's creed ii\assassinscreedii.exe | "{0F7E0241-D4D7-40BF-BFB7-E5729DF5A997}" = dir=in | app=c:\program files\hp\hp officejet pro 8600\bin\hpnetworkcommunicatorcom.exe | "{10DDB289-2DA5-4A99-A0EF-99A71FE7276F}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{1372C910-E06D-4BCE-92F5-573254991BF7}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe | "{13BD9966-8BA2-450E-93CA-6BBC32DDD85A}" = protocol=17 | dir=in | app=c:\martin\games\riot games\league of legends\lol.launcher.exe | "{189E8AEE-D9C0-4B47-91ED-15893DE7486A}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.954\agent.exe | "{1989586F-4E6F-4BC1-8073-76E8D0CF89B1}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2689\agent.exe | "{1C88DEEF-02C4-436F-AF48-C33BE0B25212}" = protocol=6 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe | "{1E6C411D-0203-4A2B-B6BD-FF7CBABD0C77}" = protocol=17 | dir=in | app=c:\program files (x86)\icq7.6\icq.exe | "{1ED458B4-D476-46B9-A218-E18A0C3AE4E2}" = protocol=17 | dir=in | app=c:\users\martin\appdata\roaming\dropbox\bin\dropbox.exe | "{215A5AE2-1A82-4215-9F37-0D8EF895156B}" = protocol=17 | dir=out | app=c:\martin\games\downloaded\public\warframe.x64.exe | "{2444505E-F8B3-46EC-81CE-C3241AAF32ED}" = protocol=6 | dir=in | app=c:\users\martin\appdata\roaming\dropbox\bin\dropbox.exe | "{29930BB5-A5D9-4CBB-A60B-363131EBCAF8}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2638\agent.exe | "{2A3DAEF2-56FB-4B3F-B4F1-8C27A2B5554C}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{2D9E98B7-899F-4E1A-9D10-27F85E0D720E}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{31AF0C14-1A49-4FA5-8397-0A4304DF902D}" = protocol=6 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe | "{3528044B-B4D0-4A3F-922E-6ADA4C152F14}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1199\agent.exe | "{3A2558AC-D34F-46D0-A5AA-CD746225B91A}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{3A6AC613-8759-44C9-87BB-6BF1EAEEA39F}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{3B8F87DD-0B44-41EB-A95B-AFAF0FA6F2B0}" = protocol=6 | dir=in | app=c:\programdata\esafe\egdpsvc.exe | "{3C20A693-E03A-49FC-8DF6-65AC829DDB31}" = protocol=6 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{3E3085AB-9A7B-4279-B20C-20D81ECB82AC}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{411A3CD7-6DDC-48B5-819E-FFBCE2C6AB03}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe | "{42E20069-731F-4553-B921-71FE62E1FA13}" = protocol=6 | dir=in | app=c:\martin\games\ assassin's creed ii\server.exe | "{4483BDCF-519F-4085-9866-824A3D54058A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{4756EC11-7F0F-492F-9418-54A5B45DBDEA}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2680\agent.exe | "{4E59AA9B-1DD8-4A6A-BB91-9F88CBB67A6B}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1363\agent.exe | "{4EC989F1-9046-4EAD-8564-4F1AD2C812E7}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1199\agent.exe | "{53019F2A-04CA-4A41-94D7-8DF52C1B1CFB}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{53B54FB0-0967-4787-912A-3BFE3B892C03}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.524\agent.exe | "{546B5B21-489F-4761-ABAC-FA96FB9432F6}" = protocol=17 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe | "{549C32EB-BF0F-4A44-AD57-226496391FE9}" = protocol=6 | dir=in | app=c:\martin\games\ assassin's creed ii\assassinscreedii.exe | "{587B45FF-DC87-4DCD-932A-5B4EC6A13401}" = protocol=6 | dir=in | app=c:\martin\games\two worlds ii\twoworlds2.exe | "{592C72D1-4C0C-4FAA-91CA-6F0155DAEAF6}" = dir=in | app=c:\program files\hp\hp officejet pro 8600\bin\faxapplications.exe | "{5ACF43D6-16A0-4040-BB08-BDECD9C909A1}" = protocol=17 | dir=in | app=c:\program files (x86)\spyware terminator\spywareterminator.exe | "{5C30FE63-7D80-4279-AECA-E68235266D45}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{6183558E-C7AE-4C98-A6BD-84130730BAF4}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 | "{622E3104-E577-4B19-B30C-5A7E951A3841}" = protocol=6 | dir=in | app=c:\martin\games\ assassin's creed ii\uplaybrowser.exe | "{6942907F-13B7-46E1-8714-5D9C264CD588}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | "{6BBE79A0-6B08-4FB3-A3AB-F5C178D6F673}" = protocol=6 | dir=in | app=c:\program files (x86)\spyware terminator\spywareterminatorupdate.exe | "{6E5A004F-A9CD-41D2-BAEE-BD6C836DBD34}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{7165C847-72E5-47B5-8C20-7140F351E6A7}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.524\agent.exe | "{7ED0A258-94D5-44C1-8524-F7675522722C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{80075E41-D098-428D-8D22-5D4F1AB6AE15}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{83217C83-42EB-4C94-9EA8-6CD0639D6E31}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{83CA28A3-3F97-460F-A637-D8E9B0432849}" = protocol=6 | dir=out | app=%systemroot%\system32\wudfhost.exe | "{89A35DD1-BF0E-44BE-A343-0EDD5874E75D}" = protocol=17 | dir=in | app=c:\martin\games\downloaded\public\warframe.x64.exe | "{8B7202AA-297A-458F-8259-99CDD0E2934F}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | "{8C7D163A-3FA1-4C1F-8BC1-F200BA2F3971}" = protocol=17 | dir=in | app=c:\program files (x86)\hearthstone\hearthstone.exe | "{8CCFB3F9-F876-4A61-A730-31AC2EEFD753}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{8D769A7B-FFE7-44FC-98E4-AB38D4F81A3A}" = protocol=6 | dir=in | app=c:\martin\games\ assassin's creed ii\assassinscreediigame.exe | "{8F96E0CE-EF1D-4296-85F1-27BD6CE88728}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | "{9059AA0A-0A62-4B76-8E37-0E193AE8614C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe | "{90FBE3CD-0261-424E-84A3-344AB2F88893}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe | "{979F161F-F673-4ABA-BA71-970BEC21F939}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2638\agent.exe | "{9817DE67-43F9-431C-B1F6-2FB4F97EF726}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | "{9968ADBE-8308-4379-B460-7DDEAD315C62}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{9996D592-8A8C-4271-9F80-26056C6665A5}" = dir=in | app=c:\program files\hp\hp officejet pro 8600\bin\sendafax.exe | "{9D0CD84E-F271-468B-B9AC-6E4DEFAD204D}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1199\agent.exe | "{A24B3966-5AE8-406A-8477-2BE317B70EEE}" = dir=in | app=c:\program files\hp\hp officejet pro 8600\bin\hpnetworkcommunicator.exe | "{A25763C3-8FBC-4809-95F5-39EA67319AED}" = protocol=6 | dir=in | app=c:\martin\games\bulletstorm\binaries\win32\shippingpc-stormgame.exe | "{A45402CA-B0A8-47D3-BECA-B0F38BE77B85}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{A8BC3C2B-6B56-4578-87C5-74C8C3FA01D7}" = protocol=6 | dir=in | app=c:\program files (x86)\icq7.6\icq.exe | "{AD1DFD22-0D1B-4BE0-8CF5-E959E236A00D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{AD6DB4FF-A546-4433-918A-78EF6E6C965B}" = protocol=6 | dir=out | app=system | "{AD71F2E5-1622-4A8B-B17B-C36130EBF391}" = protocol=6 | dir=in | app=c:\program files (x86)\spyware terminator\spywareterminator.exe | "{B122BD1D-2487-4019-9736-5FF8AE451C78}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{B211450C-15E0-4463-85F3-A7F2369615F5}" = protocol=17 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe | "{B259BC98-57D4-4D6F-832A-A7799BEEF216}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{B79AD748-157A-4BE2-8AD8-D3B9D2331106}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{BCDFADCE-A114-4A3F-84BA-9E16C2E15EA6}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{BE5A909E-0D8C-4088-A982-861A2D9D7A49}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{C231512A-83A2-4244-9D0F-D224F20BD4D1}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{C375CBD5-6F92-43AF-AC5B-578D69CCCB29}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{C5F3428E-D0F7-4F41-9FB9-BA10A4C98676}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{C9384AEC-DC5D-4070-B819-D11F84BA081E}" = protocol=17 | dir=in | app=c:\program files (x86)\spyware terminator\spywareterminatorupdate.exe | "{C9C59982-3390-47DF-925E-0D7C1B4B11A1}" = protocol=17 | dir=in | app=c:\martin\games\ assassin's creed ii\uplaybrowser.exe | "{CAA52AF7-DA8F-4CFA-BA41-66BA8CF5A8FA}" = protocol=6 | dir=in | app=c:\program files (x86)\hearthstone\hearthstone.exe | "{CADD9D9E-7C3D-4D9F-9F65-7E9F7B01004E}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1199\agent.exe | "{CB226DED-BA3A-478F-91A1-DF604E85C27C}" = protocol=17 | dir=in | app=c:\martin\games\downloaded\public\warframe.exe | "{CBE1399A-A20C-411E-9DF4-C7C45A5376AB}" = protocol=17 | dir=in | app=c:\martin\games\ assassin's creed ii\assassinscreediigame.exe | "{CD12D500-EB61-4D85-B94E-B0EC326673A1}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{CD531F04-4087-40A2-8E5B-A4BD4665290D}" = dir=in | app=c:\program files\hp\hp officejet pro 8600\bin\digitalwizards.exe | "{CF80A98F-3900-4693-895F-6B41D19D315C}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2638\agent.exe | "{D2734395-1FA0-4C30-B48A-75535DD4AF6E}" = protocol=17 | dir=in | app=c:\martin\games\two worlds ii\twoworlds2.exe | "{D432304F-40C3-4117-91EE-03AA155B68D3}" = protocol=17 | dir=in | app=c:\windows\syswow64\muzapp.exe | "{D7ADEE35-CE17-4975-BD11-376FFE461EB5}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.954\agent.exe | "{DF2430D8-B27B-4DDA-B3A4-8E8C292A3DE8}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe | "{DFF965D1-1473-4870-AA5B-77142E43755E}" = protocol=6 | dir=in | app=c:\windows\syswow64\muzapp.exe | "{E07794C3-2AB5-4E4A-80C5-FB2900F971E3}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2638\agent.exe | "{E139BCB2-7F12-4D1D-BCFF-605B0F5AAA0A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{E2FFAE43-334A-4EC1-9E27-6CAE613D6CAB}" = protocol=17 | dir=in | app=c:\martin\games\bulletstorm\binaries\win32\shippingpc-stormgame.exe | "{E8761386-2042-4C53-B291-8CAD71D01CE2}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1363\agent.exe | "{EBD663BB-F73A-4C78-8253-E20FC527A455}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe | "{ECA00F09-3616-4C46-BBF3-D4EF60771378}" = protocol=6 | dir=in | app=c:\martin\games\riot games\league of legends\lol.launcher.exe | "{ED15FEC8-7430-45D5-B191-561B37DF47BC}" = protocol=17 | dir=out | app=c:\martin\games\downloaded\public\warframe.exe | "{ED2A6605-9E3A-477D-A361-94A0254FF75A}" = protocol=17 | dir=in | app=c:\martin\games\ assassin's creed ii\server.exe | "{F5510E23-5471-48ED-AD7E-7B8065CC10FB}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | "{F7DD132F-5B62-4AE1-9994-17B666C59B9F}" = protocol=6 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{FD1BC40F-D66C-4A86-8411-AACA910CFD4E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{FD3D6BE8-E5F0-4850-960B-5EF87F5059C7}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{FE4A04C1-4484-4ED7-8432-40617FE7A71B}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{FFF37E9D-B24F-4ACA-A3EF-80A21B19466C}" = dir=in | app=c:\program files\hp\hp officejet pro 8600\bin\devicesetup.exe | "TCP Query User{1EEA7344-E317-4970-AFAC-5C636010C6B4}C:\programdata\battle.net\agent\agent.976\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.976\agent.exe | "TCP Query User{42FE6811-5B00-4A96-9770-B79B5520D6E2}C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\planetside 2\planetside2.exe | "TCP Query User{5A8AF425-6503-469F-AFAA-E8A68DE99E26}C:\programdata\battle.net\agent\agent.998\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.998\agent.exe | "TCP Query User{6ED2FF9C-03CC-48E6-BD1E-2E9B6B35EC7E}C:\programdata\battle.net\agent\agent.1225\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1225\agent.exe | "TCP Query User{7EB8DD4C-6718-408D-B35B-2F98BCD39AB7}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | "TCP Query User{86F2284B-077F-467F-B8C2-7C75AEE6FB70}C:\programdata\battle.net\agent\agent.998\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.998\agent.exe | "TCP Query User{B05BCDB9-3634-4903-8DB0-0C4533E69D5F}C:\programdata\battle.net\agent\agent.1737\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1737\agent.exe | "TCP Query User{C08A4D9B-DE9F-41F1-8BDA-2F1D20FBE88C}C:\martin\games\dead island\deadislandgame.exe" = protocol=6 | dir=in | app=c:\martin\games\dead island\deadislandgame.exe | "TCP Query User{C583D710-78CD-4906-A72E-32D09FFDDA70}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "TCP Query User{CBEE09BF-6FD8-4526-886E-A622C0506425}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "TCP Query User{D6987827-F4D9-4A03-BFAF-7A1554C75339}C:\program files (x86)\diablo iii\diablo iii.exe" = protocol=6 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe | "TCP Query User{E403079F-E871-4B64-B7A1-26CF9D50FEF1}C:\programdata\battle.net\agent\agent.976\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.976\agent.exe | "TCP Query User{ECFC734F-D92D-4532-8F92-C62012178051}C:\martin\games\dead island\deadislandgame.exe" = protocol=6 | dir=in | app=c:\martin\games\dead island\deadislandgame.exe | "TCP Query User{F0BED8A7-B6D3-4F52-A892-3F9D2CD31957}C:\program files\onone software\perfect effects 4\perfect effects 4.exe" = protocol=6 | dir=in | app=c:\program files\onone software\perfect effects 4\perfect effects 4.exe | "TCP Query User{F274DA56-0DFC-4517-8958-6C6839DF40B8}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "TCP Query User{FDB9CAC6-3387-4FC4-9EA0-20D97B93E63D}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | "UDP Query User{0A3C0836-CC0A-472A-9BA4-BFDBC2A3B153}C:\program files\onone software\perfect effects 4\perfect effects 4.exe" = protocol=17 | dir=in | app=c:\program files\onone software\perfect effects 4\perfect effects 4.exe | "UDP Query User{5B4D5CB6-B4D6-4F91-9173-6326ABDBA21C}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "UDP Query User{73F36140-7FDA-4501-B69A-975C1B0B14B1}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "UDP Query User{8F558C4A-C048-4EED-B47D-F3D4F0039978}C:\martin\games\dead island\deadislandgame.exe" = protocol=17 | dir=in | app=c:\martin\games\dead island\deadislandgame.exe | "UDP Query User{93C53445-6608-46CA-B5A9-2BE0B025AE68}C:\programdata\battle.net\agent\agent.998\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.998\agent.exe | "UDP Query User{951CD9AB-BD3A-45AF-B65C-19C8FCB71710}C:\martin\games\dead island\deadislandgame.exe" = protocol=17 | dir=in | app=c:\martin\games\dead island\deadislandgame.exe | "UDP Query User{97071E3E-BF08-40D3-8625-C3AA2F4757D7}C:\programdata\battle.net\agent\agent.976\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.976\agent.exe | "UDP Query User{A2E53270-3B82-48A6-9101-AD211FDB2020}C:\programdata\battle.net\agent\agent.998\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.998\agent.exe | "UDP Query User{A59378C8-772B-4CF8-A37F-1C755ACFDBB3}C:\program files (x86)\diablo iii\diablo iii.exe" = protocol=17 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe | "UDP Query User{ADFDC36A-2AE1-4760-A97C-2CC984DB322F}C:\programdata\battle.net\agent\agent.1737\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1737\agent.exe | "UDP Query User{B4FFC6B8-568F-4458-9FB9-3AA594A58743}C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\planetside 2\planetside2.exe | "UDP Query User{C63DA2A4-2A53-47ED-ADF0-9AF2ACF998BB}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | "UDP Query User{E2AB5F8F-0B66-4B2C-995D-6FA83815603B}C:\programdata\battle.net\agent\agent.1040\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe | "UDP Query User{E5AAC63A-55AE-4E9B-B43F-B610EAE036DE}C:\programdata\battle.net\agent\agent.1225\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1225\agent.exe | "UDP Query User{F1175E72-011C-471B-A949-D0C8642C399E}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe | "UDP Query User{F4E55292-6D4E-4DEB-8A12-346A889A57D0}C:\programdata\battle.net\agent\agent.976\agent.exe" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.976\agent.exe | ========== HKEY_LOCAL_MACHINE Uninstall List ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{02382870-19C7-3ACD-BBAE-F6E3760947DC}" = Microsoft .NET Framework 4 Extended DEU Language Pack "{0E3DAF3D-FF69-345A-A99E-1FED304CA083}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack "{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition) "{2DD893C5-ABC1-4E27-B6D4-279E01AEB4E2}" = OZ711 SCR Driver (x64) "{4108974B-DE87-4AD4-9167-930C62C45691}" = Fujitsu Display Manager "{47220B83-D895-4262-9227-E5D8FA7F7384}" = Nitro Reader 3 "{4B1CF482-AD0E-48F3-8032-BCF5F071C123}" = O2Micro Flash Memory Card Windows Driver "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{51692C66-5505-41B8-92A7-548C69FB867C}" = Wireless Selector "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{6226477E-444F-4DFE-BA19-9F4F7D4565BC}" = LifeBook Application Panel "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0407-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (German) 2007 "{ABE8CE7E-01CC-4500-BAF5-FFC29EA108A1}" = Shock Sensor Utility "{B2F4C332-2359-4ADE-AF0C-C631768BBB89}" = Bluetooth Feature Pack 5.0 "{B9824225-2055-4700-BCD4-64B25EC88264}" = Studie zur Verbesserung von HP Officejet Pro 8600 Produkten "{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones "{D2D05FDB-4EDA-462D-8DB6-E0B9AD4FA25F}" = HP Officejet Pro 8600 - Grundlegende Software für das Gerät "{E8A34AC8-0137-4515-A94B-0A0946DDC251}" = Scan To "{E8A5B78F-4456-4511-AB3D-E7BFFB974A7A}" = Fujitsu System Extension Utility "{EC314CDF-3521-482B-A21C-65AC95664814}" = Fujitsu MobilityCenter Extension Utility "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "HP LaserJet Professional M1130-M1210 MFP Series" = HP LaserJet Professional M1130-M1210 MFP Series "LSI Soft Modem" = LSI HDA Modem "LTMOH" = LSI V92 MOH Application "McAfee Security Scan" = McAfee Security Scan Plus "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft .NET Framework 4 Extended DEU Language Pack" = Microsoft .NET Framework 4 Extended DEU Language Pack "NVIDIA Drivers" = NVIDIA Drivers "NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager "PROSet" = Intel(R) Network Connections Drivers "sp6" = Logitech SetPoint 6.30 "SynTPDeinstKey" = Synaptics Pointing Device Driver "VLC media player" = VLC media player 2.0.2 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1 "{150E7499-BC35-4416-917D-5D16FBE2602B}" = Warframe "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 51 "{385E6A4D-A440-43E2-9BAF-A012FB5FC2E2}" = Perfect Effects 4.0.4 "{399C37FB-08AF-493B-BFED-20FBD85EDF7F}" = FJ Camera "{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}" = Smite "{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}" = Hi-Rez Studios Authenticate and Update Service "{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = eReg "{415FA9AD-DA10-4ABE-97B6-5051D4795C90}" = HP FWUpdateEDO2 "{45410935-B52C-468A-A836-0D1000018201}" = BulletStorm "{48DEAAF2-8276-4BBD-B7B6-91E454938476}" = CambridgeSoft ChemDraw Ultra 12.0 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{501451DE-5808-4599-B544-8BD0915B6B24}_is1" = FreeRIP 3.80 "{56736259-613E-4A3B-B428-6235F2E76F44}_is1" = Spyware Terminator 2012 "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{6F1C00D2-25C2-4CBA-8126-AE9A6E2E9CD5}" = HP Update "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "{80A07844-CA64-4DE4-AB61-D37DDBE8074F}" = PDF Architect "{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1" = PDF24 Creator 5.4.0 "{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}" = Assassin's Creed II "{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher "{8A809006-C25A-4A3A-9DAB-94659BCDB107}" = NVIDIA PhysX "{8FB1B528-E260-451E-9B55-E9152F94B80B}" = Microsoft Games for Windows - LIVE Redistributable "{90120000-0015-0407-0000-0000000FF1CE}" = Microsoft Office Access MUI (German) 2007 "{90120000-0015-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2007 "{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2007 "{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-0407-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (German) 2007 "{90120000-0019-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (German) 2007 "{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2007 "{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007 "{90120000-001F-0410-0000-0000000FF1CE}_ENTERPRISE_{A23BFC95-4A73-410F-9248-4C2B48E38C49}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002A-0407-1000-0000000FF1CE}_ENTERPRISE_{A6353E8F-5B8D-47CC-8737-DFF032ED3973}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0044-0407-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (German) 2007 "{90120000-0044-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2007 "{90120000-006E-0407-0000-0000000FF1CE}_ENTERPRISE_{A6353E8F-5B8D-47CC-8737-DFF032ED3973}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2007 "{90120000-00A1-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00BA-0407-0000-0000000FF1CE}" = Microsoft Office Groove MUI (German) 2007 "{90120000-00BA-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{918A9082-6287-4D25-9002-5E5D5E4971CB}" = League of Legends "{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1031-7B44-AA1000000001}" = Adobe Reader X (10.1.9) - Deutsch "{BA0CC975-682B-4678-A35C-05E607F36387}" = Fujitsu Hotkey Utility "{CA6BCA2F-EDEB-408F-850B-31404BE16A61}" = I.R.I.S. OCR "{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}" = Intel(R) Turbo Boost Technology Driver "{E773E0B9-6ABE-4F9E-816C-56B2DD8613B9}" = CambridgeSoft Activation Client "{E87022D3-C8C9-4C76-8E27-BC7F18F9B8FB}" = Google Drive "{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}" = Microsoft Office Live Add-in 1.5 "{F7708742-E734-4BC1-BEEB-F200DE21C5FC}" = Qualcomm Gobi 2000 Package for Sierra "{F97E3841-CA9D-4964-9D64-26066241D26F}" = Microsoft Games for Windows - LIVE "{FDE820DD-CC88-4395-AD5C-801365B8F316}" = HP Officejet Pro 8600 Hilfe "5513-1208-7298-9440" = JDownloader 0.9 "64F02083-9C18-41fd-A5BB-54FC8E5A376E_is1" = Jagged Alliance 2 v1.13 (DE) [1.0.0.2085] "Amazon Browser Settings" = Amazon Browser Settings "Audacity_is1" = Audacity 2.0 "Battle.net" = Battle.net "DAEMON Tools Lite" = DAEMON Tools Lite "Dead Island" = Dead Island "Diablo III" = Diablo III "DivX Setup" = DivX-Setup "DSMT6" = MathType 6 "ElsterFormular" = ElsterFormular "ENTERPRISE" = Microsoft Office Enterprise 2007 "Free Audio Converter_is1" = Free Audio Converter version 5.0.17.903 "Free Image Convert and Resize_is1" = Free Image Convert and Resize version 2.1.26.1230 "Free Studio_is1" = Free Studio version 5.6.2.627 "Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.11.32.918 "Hearthstone" = Hearthstone "InstallShield_{2DD893C5-ABC1-4E27-B6D4-279E01AEB4E2}" = OZ711 SCR Driver (x64) "InstallShield_{4108974B-DE87-4AD4-9167-930C62C45691}" = Fujitsu Display Manager "InstallShield_{4B1CF482-AD0E-48F3-8032-BCF5F071C123}" = O2Micro Flash Memory Card Windows Driver "InstallShield_{51692C66-5505-41B8-92A7-548C69FB867C}" = Wireless Selector "InstallShield_{6226477E-444F-4DFE-BA19-9F4F7D4565BC}" = LifeBook Application Panel "InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "InstallShield_{ABE8CE7E-01CC-4500-BAF5-FFC29EA108A1}" = Shock Sensor Utility "InstallShield_{BA0CC975-682B-4678-A35C-05E607F36387}" = Fujitsu Hotkey Utility "InstallShield_{E8A5B78F-4456-4511-AB3D-E7BFFB974A7A}" = Fujitsu System Extension Utility "InstallShield_{EC314CDF-3521-482B-A21C-65AC95664814}" = Fujitsu MobilityCenter Extension Utility "Jagged Alliance 2" = Jagged Alliance 2 "LAME_is1" = LAME v3.99.3 (for Windows) "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware Version 1.75.0.1300 "MestReNova LITE" = MestReNova LITE 5.2.5-5780 "Steam App 10190" = Call of Duty: Modern Warfare 2 - Multiplayer "SystemRequirementsLab" = System Requirements Lab "TeamViewer 9" = TeamViewer 9 "WinRAR archiver" = WinRAR Archivierer ========== HKEY_USERS Uninstall List ========== [HKEY_USERS\S-1-5-21-3359158749-1672355249-3210524210-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Dropbox" = Dropbox "Google Chrome" = Google Chrome "MyFreeCodec" = MyFreeCodec "UnityWebPlayer" = Unity Web Player ========== Last 20 Event Log Errors ========== [ Application Events ] Error - 11.02.2014 16:46:12 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 12.02.2014 02:24:24 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 13.02.2014 02:11:04 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 14.02.2014 02:26:18 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 14.02.2014 09:16:40 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 16.02.2014 08:24:27 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 17.02.2014 02:39:36 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 18.02.2014 01:40:32 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 18.02.2014 17:29:20 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 18.02.2014 18:24:54 | Computer Name = Martin-PC | Source = Application Error | ID = 1000 Description = Name der fehlerhaften Anwendung: League of Legends.exe, Version: 4.2.0.2723, Zeitstempel: 0x52fc0fab Name des fehlerhaften Moduls: League of Legends.exe, Version: 4.2.0.2723, Zeitstempel: 0x52fc0fab Ausnahmecode: 0xc0000005 Fehleroffset: 0x00431de0 ID des fehlerhaften Prozesses: 0x828 Startzeit der fehlerhaften Anwendung: 0x01cf2cf2b3639635 Pfad der fehlerhaften Anwendung: C:\Martin\Games\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.9\deploy\League of Legends.exe Pfad des fehlerhaften Moduls: C:\Martin\Games\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.9\deploy\League of Legends.exe Berichtskennung: 7d4450ec-98eb-11e3-ac28-4cedde5219df Error - 19.02.2014 02:01:23 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 19.02.2014 06:52:54 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = Error - 19.02.2014 12:28:00 | Computer Name = Martin-PC | Source = Application Hang | ID = 1002 Description = Programm EXCEL.EXE, Version 12.0.6683.5002 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 2a2c Startzeit: 01cf2d8e3c38b286 Endzeit: 38 Anwendungspfad: C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE Berichts-ID: b2e8130e-9982-11e3-a80f-4cedde5219df Error - 20.02.2014 02:31:50 | Computer Name = Martin-PC | Source = WinMgmt | ID = 10 Description = [ OSession Events ] Error - 25.09.2013 03:19:43 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6679.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 3291 seconds with 2160 seconds of active time. This session ended with a crash. Error - 26.09.2013 03:00:33 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6679.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 260 seconds with 180 seconds of active time. This session ended with a crash. Error - 26.09.2013 03:01:26 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6679.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 3 seconds with 0 seconds of active time. This session ended with a crash. Error - 26.09.2013 10:51:30 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6679.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 6 seconds with 0 seconds of active time. This session ended with a crash. Error - 26.09.2013 10:52:13 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6679.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 18 seconds with 0 seconds of active time. This session ended with a crash. Error - 12.01.2014 11:35:12 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 3420 seconds with 3420 seconds of active time. This session ended with a crash. Error - 12.01.2014 12:15:35 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 2290 seconds with 2160 seconds of active time. This session ended with a crash. Error - 12.01.2014 12:28:16 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 508 seconds with 480 seconds of active time. This session ended with a crash. Error - 12.01.2014 12:38:09 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 225 seconds with 180 seconds of active time. This session ended with a crash. Error - 08.02.2014 08:51:08 | Computer Name = Martin-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 251 seconds with 180 seconds of active time. This session ended with a crash. [ System Events ] Error - 17.02.2014 18:23:01 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = Error - 18.02.2014 01:42:42 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = Error - 18.02.2014 01:43:56 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = Error - 18.02.2014 12:22:19 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = Error - 19.02.2014 02:00:04 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = Error - 19.02.2014 06:50:13 | Computer Name = Martin-PC | Source = DCOM | ID = 10010 Description = Error - 19.02.2014 06:51:26 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = Error - 19.02.2014 06:52:40 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = Error - 20.02.2014 02:30:29 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = Error - 20.02.2014 04:01:23 | Computer Name = Martin-PC | Source = ipnathlp | ID = 31004 Description = < End of report > |
Themen zu appround.net - Chrome |
adobe, battle.net, beseitigung, converter, error, excel, explorer, format, google, homepage, iexplore.exe, install.exe, league of legends, logfile, mp3, officejet, problem, programm, registry, rundll, scan, security, seiten, software, svchost.exe, tcp, udp, usb, windows |