FRST Logfile:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 07-01-2015
Ran by Magic (administrator) on NAME-4E62F3A7F1 on 08-01-2015 22:18:31
Running from C:\FRST\FRST-OlderVersion
Loaded Profile: Magic (Available profiles: Magic & Administrator & Gast)
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 8 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Lavasoft) C:\Programme\Lavasoft\Ad-Aware\aawservice.exe
(Microsoft Corporation) C:\WINDOWS\system32\netdde.exe
(Apple Inc.) C:\Programme\Bonjour\mDNSResponder.exe
(BlueStack Systems, Inc.) C:\Programme\BlueStacks\HD-LogRotatorService.exe
() C:\Programme\CPUCooL\CooLSRV.exe
(AVM Berlin) C:\Programme\FRITZ!DSL\IGDCTRL.EXE
(Oracle Corporation) C:\Programme\Java\jre7\bin\jqs.exe
(Computer Associates) C:\Programme\CA\SharedComponents\CA_LIC\LogWatNT.exe
(Microsoft Corporation) C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7Debug\mdm.exe
() C:\Programme\CDBurnerXP\NMSAccessU.exe
(NVIDIA) C:\Programme\NVIDIA Corporation\nTune\nTuneService.exe
(Prolific Technology Inc.) C:\Programme\Nero\Nero BackItUp 4\IoctlSvc.exe
() C:\Programme\RealNetworks\RealDownloader\rndlresolversvc.exe
(Microsoft Corporation) C:\Programme\UPHClean\uphclean.exe
(Microsoft Corporation) C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\WINDOWS\system32\taskmgr.exe
(Mozilla Corporation) C:\Programme\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(DT Soft Ltd) C:\Programme\DAEMON Tools Pro\DTShellHlp.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
() C:\Programme\Unlocker\UnlockerAssistant.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-1488483606-1045282719-2118933040-1011\...\Run: [swg] => C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [68856 2007-08-09] (Google Inc.)
HKU\S-1-5-21-1488483606-1045282719-2118933040-1011\...\Run: [DAEMON Tools Pro Agent] => C:\Programme\DAEMON Tools Pro\DTAgent.exe [3111744 2012-04-26] (DT Soft Ltd)
HKU\S-1-5-18\...\Run: [CTFMON.EXE] => C:\WINDOWS\system32\CTFMON.EXE [24064 2012-06-29] (Gerhard Schlager)
HKU\S-1-5-18\...\Run: [DWQueuedReporting] => C:\Programme\Gemeinsame Dateien\Microsoft Shared\DW\DWTRIG20.EXE [437160 2007-02-26] (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.aldi.com
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.medion.com
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.aldi.com
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.medion.com
HKU\S-1-5-21-1488483606-1045282719-2118933040-1011\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1488483606-1045282719-2118933040-1011\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO: DivX Plus Web Player HTML5 <video> -> {326E768D-4182-46FD-9C16-1449A49795F4} -> C:\Programme\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
BHO: DivX HiQ -> {593DDEC6-7468-4cdd-90E1-42DADAA222E9} -> C:\Programme\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Programme\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Programme\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll (Google Inc.)
BHO: WEB.DE MailCheck BHO -> {BF42D4A8-016E-4fcd-B1EB-837659FD77C6} -> C:\Programme\WEB.DE MailCheck\IE\WEB.DE_MailCheck.dll No File
BHO: FRITZ!Box Addon BHO -> {C0C86BBE-9509-4296-8459-FDBFDAF4B673} -> C:\Programme\FRITZ!Box\AddOn (IE)\FBoxIESplitButton.dll (AVM Berlin)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Programme\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} hxxp://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.3.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_05-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {C7DB51B4-BCF7-4923-8874-7F1A0DC92277} hxxp://office.microsoft.com/officeupdate/content/opuc4.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_05-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: gmx - {8FAF0273-9CA8-4efc-9536-1E35E254D5CD} - C:\Programme\WEB.DE MailCheck\IE\WEB.DE_MailCheck.dll No File
Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\Ole DB\msdaipp.dll (Microsoft Corporation)
Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\Ole DB\msdaipp.dll (Microsoft Corporation)
Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\Ole DB\msdaipp.dll (Microsoft Corporation)
Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\Ole DB\msdaipp.dll (Microsoft Corporation)
Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\Ole DB\msdaipp.dll (Microsoft Corporation)
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler: mctp - {d7b95390-b1c5-11d0-b111-0080c712fe82} - No File
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\Ole DB\msdaipp.dll (Microsoft Corporation)
Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\Ole DB\msdaipp.dll (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programme\Gemeinsame Dateien\Skype\Skype4COM.dll (Skype Technologies)
Handler: webde - {8FAF0273-9CA8-4efc-9536-1E35E254D5CD} - C:\Programme\WEB.DE MailCheck\IE\WEB.DE_MailCheck.dll No File
Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Programme\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
ShellExecuteHooks: Microsoft AntiMalware ShellExecuteHook - {091EB208-39DD-417D-A5DD-7E2C2D8FB9CB} - C:\Programme\Windows Defender\MpShHook.dll [83224 2006-11-03] (Microsoft Corporation)
Winsock: Catalog5 05 C:\Programme\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Winsock: Catalog5 06 C:\Programme\FRITZ!DSL\\sarah.dll [28472] (AVM Berlin)
FireFox:
========
FF ProfilePath: C:\Dokumente und Einstellungen\Magic\Anwendungsdaten\Mozilla\Firefox\Profiles\i437m79p.default-1383082487453
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\windows\system32\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.)
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Programme\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @divx.com/DivX Browser Plugin,version=1.0.0 -> C:\Programme\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin: @divx.com/DivX Content Upload Plugin,version=1.0.0 -> C:\Programme\DivX\DivX Content Uploader\npUpload.dll (DivX,Inc.)
FF Plugin: @divx.com/DivX OVS Helper,version=1.0.0 -> C:\Programme\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 -> C:\Programme\DivX\DivX Player\npDivxPlayerPlugin.dll No File
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Programme\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.45.2 -> C:\Programme\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 -> C:\Programme\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Programme\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.3 -> C:\Programme\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Programme\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Programme\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @nokia.com/EnablerPlugin -> C:\Programme\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( )
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Programme\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google)
FF Plugin: @real.com/nppl3260;version=16.0.2.32 -> c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlchromebrowserrecordext;version=1.3.2 -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlhtml5videoshim;version=1.3.2 -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlpepperflashvideoshim;version=1.3.2 -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpplugin;version=16.0.2.32 -> c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin: @realnetworks.com/npdlplugin;version=1 -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Programme\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Programme\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.8 -> C:\Programme\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @zylom.com/ZylomGamesPlayer -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll (Zylom)
FF Plugin: Adobe Reader -> C:\Programme\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin: yaxmpb@yahoo.com/YahooActiveXPluginBridge;version=1.0.0.1 -> C:\Programme\Yahoo!\Common\npyaxmpb.dll (Yahoo! Inc.)
FF Plugin HKU\S-1-5-21-1488483606-1045282719-2118933040-1011: @unity3d.com/UnityPlayer,version=1.0 -> C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npDivxPlayerPlugin.dll (DivX, Inc)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npLegitCheckPlugin.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\NPOFFICE.DLL (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\nprjplug.dll (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npzylomgamesplayer.dll (Zylom)
FF Extension: Google Toolbar for Firefox - C:\Programme\Mozilla Firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c} [2015-01-02]
FF Extension: ICQ Toolbar - C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2015-01-02]
FF Extension: Skype Click to Call - C:\Programme\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2015-01-02]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-14]
FF HKLM\...\Firefox\Extensions: [ff-bmboc@bytemobile.com] - C:\Programme\Vodafone\Vodafone Mobile Connect\Optimization Client\addon
FF Extension: Bytemobile Optimization Client - C:\Programme\Vodafone\Vodafone Mobile Connect\Optimization Client\addon [2010-10-16]
FF HKLM\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Programme\DivX\DivX Plus Web Player\firefox\html5video
FF Extension: DivX Plus Web Player HTML5 <video> - C:\Programme\DivX\DivX Plus Web Player\firefox\html5video [2011-01-18]
FF HKLM\...\Firefox\Extensions: [{6904342A-8307-11DF-A508-4AE2DFD72085}] - C:\Programme\DivX\DivX Plus Web Player\firefox\wpa
FF Extension: DivX HiQ - C:\Programme\DivX\DivX Plus Web Player\firefox\wpa [2011-01-18]
FF HKLM\...\Firefox\Extensions: [{FCE04E1F-9378-4f39-96F6-5689A9159E45}] - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-08-18]
FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
Chrome:
=======
CHR Plugin: (Chrome PDF Viewer) - C:\Programme\Google\Chrome\Application\23.0.1271.97\pdf.dll No File
CHR Plugin: (Google Gears 0.5.33.0) - C:\Programme\Google\Chrome\Application\23.0.1271.97\gears.dll No File
CHR Plugin: (Shockwave Flash) - C:\Programme\Google\Chrome\Application\23.0.1271.97\gcswf32.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Programme\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (Java Deployment Toolkit 6.0.220.4) - C:\Programme\Java\jre6\bin\new_plugin\npdeployJava1.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U22) - C:\Programme\Java\jre6\bin\new_plugin\npjp2.dll No File
CHR Plugin: (Ask Toolbar Plugin Stub) - C:\Programme\Mozilla Firefox\plugins\NPAskSBr.dll No File
CHR Plugin: (DivX Player Netscape Plugin) - C:\Programme\Mozilla Firefox\plugins\npDivxPlayerPlugin.dll (DivX, Inc)
CHR Plugin: (Windows Genuine Advantage) - C:\Programme\Mozilla Firefox\plugins\npLegitCheckPlugin.dll (Microsoft Corporation)
CHR Plugin: (My Web Search Plugin Stub) - C:\Programme\Mozilla Firefox\plugins\NPMyWebS.dll No File
CHR Plugin: (RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) ) - C:\Programme\Mozilla Firefox\plugins\nppl3260.dll (RealNetworks, Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Programme\Mozilla Firefox\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Programme\Mozilla Firefox\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Programme\Mozilla Firefox\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Programme\Mozilla Firefox\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Programme\Mozilla Firefox\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Programme\Mozilla Firefox\plugins\npqtplugin6.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Programme\Mozilla Firefox\plugins\npqtplugin7.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Programme\Mozilla Firefox\plugins\npqtplugin8.dll No File
CHR Plugin: (RealJukebox NS Plugin) - C:\Programme\Mozilla Firefox\plugins\nprjplug.dll (RealNetworks, Inc.)
CHR Plugin: (RealPlayer Version Plugin) - C:\Programme\Mozilla Firefox\plugins\nprpjplug.dll (RealNetworks, Inc.)
CHR Plugin: (Zylom Plugin) - C:\Programme\Mozilla Firefox\plugins\npzylomgamesplayer.dll (Zylom)
CHR Plugin: (Microsoft DRM) - C:\Programme\Windows Media Player\npdrmv2.dll (Microsoft Corporation)
CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Programme\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.))
CHR Plugin: (Microsoft DRM) - C:\Programme\Windows Media Player\npwmsdrm.dll (Microsoft Corporation)
CHR Plugin: (RealPlayer(tm) HTML5VideoShim Plug-In (32-bit) ) - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll No File
CHR Plugin: (DivX Content Upload Plugin) - C:\Programme\DivX\DivX Content Uploader\npUpload.dll (DivX,Inc.)
CHR Plugin: (DivX OVS Helper Plug-in) - C:\Programme\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
CHR Plugin: (DivX Web Player) - C:\Programme\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
CHR Plugin: (Google Updater) - C:\Programme\Google\Google Updater\2.4.1399.3742\npCIDetect13.dll No File
CHR Plugin: (Google Update) - C:\Programme\Google\Update\1.2.183.39\npGoogleOneClick8.dll No File
CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Programme\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
CHR Plugin: (MetaStream 3 Plugin) - C:\Programme\Viewpoint\Viewpoint Media Player\npViewpoint.dll No File
CHR Plugin: (Windows Live Photo Gallery) - C:\Programme\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Yahoo! activeX Plug-in Bridge) - C:\Programme\Yahoo!\Common\npyaxmpb.dll (Yahoo! Inc.)
CHR Plugin: (iTunes Application Detector) - C:\Programme\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Windows Presentation Foundation) - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Programme\Microsoft Silverlight\4.0.51204.0\npctrl.dll No File
CHR Plugin: (Default Plug-in) - default_plugin No File
CHR Profile: C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default
CHR Extension: (Ciuvo Preisvergleich) - C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\cbmmkkbjmcidpennbibfkncodjenfpjh [2012-03-09]
CHR Extension: (DivX HiQ) - C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\fnjbmmemklcjgepojigaapkoodmkgbae [2011-01-18]
CHR Extension: (RealPlayer HTML5Video Downloader Extension) - C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk [2010-09-21]
CHR Extension: (DivX Plus Web Player HTML5 video) - C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm [2011-01-18]
CHR HKLM\...\Chrome\Extension: [fnjbmmemklcjgepojigaapkoodmkgbae] - C:\Programme\DivX\DivX Plus Web Player\google_chrome\wpa\wpa.crx [2010-12-08]
CHR HKLM\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-04-16]
CHR HKLM\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Programme\DivX\DivX Plus Web Player\google_chrome\html5video\html5video.crx [2010-12-08]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aawservice; C:\Programme\Lavasoft\Ad-Aware\aawservice.exe [611664 2008-07-07] (Lavasoft)
S4 AcrSch2Svc; C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedul2.exe [817264 2010-06-07] (Acronis)
S3 Apple Mobile Device; C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe [55184 2012-08-11] (Apple Inc.)
S4 BBSvc; C:\Programme\Microsoft\BingBar\BBSvc.EXE [196176 2011-10-21] (Microsoft Corporation.)
S3 BBUpdate; C:\Programme\Microsoft\BingBar\SeaPort.EXE [249648 2011-10-13] (Microsoft Corporation)
R2 Bonjour Service; C:\Programme\Bonjour\mDNSResponder.exe [390504 2011-08-30] (Apple Inc.)
S2 BstHdAndroidSvc; C:\Programme\BlueStacks\HD-Service.exe [393080 2013-02-15] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Programme\BlueStacks\HD-LogRotatorService.exe [384888 2013-02-15] (BlueStack Systems, Inc.)
S3 CA_LIC_CLNT; C:\Programme\CA\SharedComponents\CA_LIC\lic98rmt.exe [77824 2002-09-19] (Computer Associates) [File not signed]
S3 CA_LIC_SRVR; C:\Programme\CA\SharedComponents\CA_LIC\lic98rmtd.exe [77824 2002-09-19] (Computer Associates) [File not signed]
R2 CPUCooLServer; C:\Programme\CPUCooL\CooLSrv.exe [743936 2011-12-01] () [File not signed]
S3 de_serv; C:\Programme\Gemeinsame Dateien\AVM\de_serv.exe [315392 2005-11-21] (AVM Berlin) [File not signed]
S4 DVD-RAM_Service; C:\WINDOWS\system32\DVDRAMSV.exe [110592 2005-12-24] (Matsushita Electric Industrial Co., Ltd.) [File not signed]
S3 FLEXnet Licensing Service; C:\Programme\Gemeinsame Dateien\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2008-10-28] (Macrovision Europe Ltd.) [File not signed]
S3 fsssvc; C:\Programme\Windows Live\Family Safety\fsssvc.exe [704864 2009-08-05] (Microsoft Corporation)
S4 gupdate1c9ece5216cdebe; C:\Programme\Google\Update\GoogleUpdate.exe [133104 2009-06-14] (Google Inc.)
S4 gupdatem; C:\Programme\Google\Update\GoogleUpdate.exe [133104 2009-06-14] (Google Inc.)
S4 gusvc; C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe [194032 2013-05-21] (Google)
S3 Hamachi2Svc; C:\Programme\LogMeIn Hamachi\hamachi-2.exe [1385896 2012-06-27] (LogMeIn Inc.)
S3 IDriverT; C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed]
R2 IGDCTRL; C:\Programme\FRITZ!DSL\IGDCTRL.EXE [73528 2009-07-28] (AVM Berlin)
S3 iPod Service; C:\Programme\iPod\bin\iPodService.exe [553440 2012-12-12] (Apple Inc.)
R2 JavaQuickStarterService; C:\Programme\Java\jre7\bin\jqs.exe [182696 2013-10-08] (Oracle Corporation)
S4 LightScribeService; C:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe [75304 2007-04-19] (Hewlett-Packard Company)
R2 LogWatch; C:\Programme\CA\SharedComponents\CA_LIC\LogWatNT.exe [53248 2002-09-19] (Computer Associates) [File not signed]
R2 MDM; C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7Debug\mdm.exe [322120 2003-06-19] (Microsoft Corporation)
S3 MozillaMaintenance; C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe [114800 2015-01-02] (Mozilla Foundation)
S3 Nero BackItUp Scheduler 4.0; C:\Programme\Gemeinsame Dateien\Nero\Nero BackItUp 4\NBService.exe [935208 2008-12-05] (Nero AG)
S4 NMIndexingService; C:\Programme\Gemeinsame Dateien\Ahead\Lib\NMIndexingService.exe [275752 2008-01-22] (Nero AG)
R2 NMSAccess; C:\Programme\CDBurnerXP\NMSAccessU.exe [71096 2010-03-04] ()
S3 NovacomD; C:\Programme\Palm, Inc\novacom\x86\novacomd.exe [33280 2009-11-06] (Palm) [File not signed]
R2 nTuneService; C:\Programme\NVIDIA Corporation\nTune\nTuneService.exe [191080 2009-11-06] (NVIDIA)
S3 ose; C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE [89136 2003-07-28] (Microsoft Corporation)
R2 PLFlash DeviceIoControl Service; C:\Programme\Nero\Nero BackItUp 4\IoctlSvc.exe [81920 2008-12-05] (Prolific Technology Inc.) [File not signed]
S3 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [75136 2015-01-02] ()
S3 Radio.fx; E:\Tobit Radio.fx\Server\rfx-server.exe [3630936 2011-08-02] ()
R2 RealNetworks Downloader Resolver Service; C:\Programme\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-04-16] ()
S3 SandraAgentSrv; C:\Programme\SiSoftware\SiSoftware Sandra Lite 2012.SP4\RpcAgentSrv.exe [95896 2009-04-26] (SiSoftware) [File not signed]
S3 SbieSvc; C:\Programme\Sandboxie\SbieSvc.exe [75496 2010-08-09] (SANDBOXIE L.T.D)
S3 sdAuxService; C:\Programme\Spyware Doctor\svcntaux.exe [708688 2007-06-12] (PC Tools)
S3 sdCoreService; C:\Programme\Spyware Doctor\swdsvc.exe [1309264 2007-06-12] (PC Tools)
S3 ServiceLayer; C:\Programme\PC Connectivity Solution\ServiceLayer.exe [725400 2012-10-03] (Nokia)
S3 SkypeUpdate; C:\Programme\Skype\Updater\Updater.exe [161384 2013-04-19] (Skype Technologies)
S3 StarWindServiceAE; C:\Programme\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [275968 2007-05-28] (Rocket Division Software) [File not signed]
S3 TomTomHOMEService; C:\Programme\TomTom HOME 2\TomTomHOMEService.exe [93072 2013-03-22] (TomTom)
S3 TuneUp.Defrag; C:\windows\System32\TuneUpDefragService.exe [361288 2009-12-06] (TuneUp Software)
S3 TuneUp.ProgramStatisticsSvc; C:\windows\System32\TUProgSt.exe [604488 2009-12-06] (TuneUp Software)
R2 UPHClean; C:\Programme\UPHClean\uphclean.exe [241725 2005-04-27] (Microsoft Corporation) [File not signed]
S3 VideoAcceleratorService; C:\Programme\SpeedBit Video Accelerator\VideoAcceleratorService.exe [292472 2008-10-05] (Speedbit Ltd.)
S4 VMCService; C:\Programme\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe [9216 2009-09-11] (Vodafone) [File not signed]
S3 windoweyes; C:\Programme\GW Micro\Window-Eyes\weserv.exe [133952 2012-04-23] ()
R2 wlidsvc; C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WLIDSVC.EXE [1529728 2009-08-18] (Microsoft Corporation)
R2 WMPNetworkSvc; C:\Programme\Windows Media Player\WMPNetwk.exe [920576 2006-11-03] (Microsoft Corporation)
S3 x10nets; C:\Programme\Common Files\X10\Common\X10nets.exe [20480 2001-11-12] (X10) [File not signed]
S3 RichVideo; "C:\Programme\CyberLink\Shared Files\RichVideo.exe" [X]
S3 vToolbarUpdater13.2.0; C:\Programme\Gemeinsame Dateien\AVG Secure Search\vToolbarUpdater\13.2.0\ToolbarUpdater.exe [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 3xHybrid; C:\windows\System32\DRIVERS\3xHybrid.sys [945152 2004-10-06] (Philips Semiconductors GmbH)
S3 61883; C:\windows\System32\DRIVERS\61883.sys [48128 2008-04-13] (Microsoft Corporation)
R2 ACEDRV07; C:\WINDOWS\system32\drivers\ACEDRV07.sys [101376 2007-07-29] (Protect Software GmbH) [File not signed]
R3 actser; C:\windows\System32\drivers\actser.sys [29440 2005-09-12] (Siemens AG) [File not signed]
R2 AegisP; C:\windows\System32\DRIVERS\AegisP.sys [19915 2011-03-10] (Meetinghouse Data Communications) [File not signed]
R3 AnyDVD; C:\windows\System32\Drivers\AnyDVD.sys [121248 2012-08-26] (SlySoft, Inc.)
R3 Apowersoft_AudioDevice; C:\windows\System32\drivers\Apowersoft_AudioDevice.sys [26080 2012-10-08] (Wondershare)
R2 Aspi32; C:\windows\system32\Drivers\Aspi32.sys [25244 1999-09-10] (Adaptec) [File not signed]
R1 avgtp; C:\WINDOWS\system32\drivers\avgtpx86.sys [26984 2012-11-15] (AVG Technologies)
U0 BMLoad; C:\windows\System32\drivers\BMLoad.sys [22528 2008-10-09] (Bytemobile, Inc.) [File not signed]
R2 BstHdDrv; C:\Programme\BlueStacks\HD-Hypervisor-x86.sys [63864 2013-02-15] (BlueStack Systems)
S3 CardReaderFilter; C:\WINDOWS\system32\Drivers\USBCRFT.SYS [17408 2012-09-16] (ICSI Technology Ltd.) [File not signed]
S3 CCDECODE; C:\windows\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
R2 CdaC15BA; C:\WINDOWS\system32\drivers\CDAC15BA.SYS [8864 2006-11-04] () [File not signed]
S3 cmudau; C:\windows\System32\drivers\cmudau.sys [1383104 2007-05-23] (C-Media Inc) [File not signed]
R3 cmudax; C:\windows\System32\drivers\cmudax.sys [1287296 2005-05-12] (C-Media Inc.)
R1 dtsoftbus01; C:\windows\System32\DRIVERS\dtsoftbus01.sys [242240 2012-06-13] (DT Soft Ltd)
R1 ElbyCDIO; C:\windows\System32\Drivers\ElbyCDIO.sys [31088 2010-12-16] (Elaborate Bytes AG)
S3 ENTECH; C:\WINDOWS\system32\DRIVERS\ENTECH.sys [27672 2007-09-07] (EnTech Taiwan)
R1 Ext2fs; C:\windows\System32\DRIVERS\ext2fs.sys [181120 2008-09-25] (Stephan Schreiber) [File not signed]
R3 FETNDISB; C:\windows\System32\DRIVERS\fetnd5b.sys [42496 2004-04-15] (VIA Technologies, Inc. )
R2 fssfltr; C:\windows\System32\DRIVERS\fssfltr_tdi.sys [54752 2009-08-05] (Microsoft Corporation)
S3 FTDIBUS; C:\windows\System32\drivers\ftdibus.sys [57672 2009-06-10] (FTDI Ltd.)
S3 GcKernel; C:\windows\System32\DRIVERS\GcKernel.sys [59136 2008-04-13] (Microsoft Corporation)
S3 GigasetGenericUSB; C:\windows\System32\DRIVERS\GigasetGenericUSB.sys [44032 2009-02-20] (Siemens Home and Office Communication Devices GmbH & Co. KG)
R3 gwrdmir; C:\windows\System32\DRIVERS\gwrdmir.sys [9408 2011-09-23] (Windows (R) Win 7 DDK provider)
R3 hamachi; C:\windows\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.)
S3 HdAudAddService; C:\windows\System32\drivers\HdAudio.sys [113664 2004-03-17] (Windows (R) Server 2003 DDK provider)
S3 HIDSwvd; C:\windows\System32\DRIVERS\HIDSwvd.sys [2688 2001-08-17] (Microsoft Corporation)
S3 hipeer20; C:\windows\System32\DRIVERS\remobo32.sys [26112 2010-08-01] (Windows (R) Codename Longhorn DDK provider) [File not signed]
R1 IfsMount; C:\windows\System32\DRIVERS\ifsmount.sys [51072 2008-08-28] (Stephan Schreiber) [File not signed]
S3 IKFileFlt; C:\windows\System32\drivers\ikfileflt.sys [39376 2007-05-23] (PCTools Research Pty Ltd.)
S3 IKFileSec; C:\windows\System32\drivers\ikfilesec.sys [53840 2007-05-23] (PCTools Research Pty Ltd.)
S3 IkSysFlt; C:\windows\System32\drivers\iksysflt.sys [57424 2007-05-23] (PCTools Research Pty Ltd.)
S3 IKSysSec; C:\windows\System32\drivers\iksyssec.sys [83024 2007-05-23] (PCTools Research Pty Ltd.)
R2 ithsgt; C:\windows\System32\DRIVERS\ithsgt.sys [162432 2007-10-17] () [File not signed]
R2 lilsgt; C:\windows\System32\DRIVERS\lilsgt.sys [12032 2007-10-17] () [File not signed]
R1 meiudf; C:\windows\System32\Drivers\meiudf.sys [102384 2005-12-24] (Matsushita Electric Industrial Co.,Ltd.) [File not signed]
S3 MPCSYS; C:\WINDOWS\system32\DRIVERS\mpcsys.sys [15360 2008-12-31] () [File not signed]
S3 MPE; C:\windows\System32\DRIVERS\MPE.sys [15232 2008-04-13] (Microsoft Corporation)
S3 NdisIP; C:\windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
S3 NinjaUSB; C:\windows\System32\drivers\NinjaUSB.sys [24704 2010-02-04] () [File not signed]
R1 ntiopnp; C:\windows\system32\Drivers\ntiopnp.sys [21080 2010-11-11] ()
S3 NTSIM; C:\WINDOWS\system32\ntsim.sys [7040 2003-07-17] (VIA Networking Technologies, Inc. ) [File not signed]
S3 NVHDA; C:\windows\System32\drivers\nvhda32.sys [119272 2011-03-03] (NVIDIA Corporation)
S3 ogo_usb; C:\windows\System32\Drivers\ogo_usb.sys [48384 2006-10-10] (Windows (R) 2000 DDK provider) [File not signed]
S1 oxser; C:\windows\System32\DRIVERS\oxser.sys [51169 2003-04-28] (OEM) [File not signed]
S3 pfc; C:\windows\System32\drivers\pfc.sys [10368 2003-12-05] (Padus, Inc.) [File not signed]
R1 prodrv05; C:\windows\System32\drivers\prodrv05.sys [53728 2002-11-13] (Protection Technology Co.) [File not signed]
R1 prodrv06; C:\windows\System32\drivers\prodrv06.sys [53920 2004-08-09] (Protection Technology) [File not signed]
R0 prohlp01; C:\windows\System32\drivers\prohlp01.sys [60448 2002-11-13] (Protection Technology Co.) [File not signed]
R0 prohlp02; C:\windows\System32\drivers\prohlp02.sys [114016 2004-08-09] (Protection Technology) [File not signed]
R0 prosync1; C:\windows\System32\drivers\prosync1.sys [7040 2004-07-19] (Protection Technology) [File not signed]
R2 PStrip; C:\windows\System32\drivers\pstrip.sys [27992 2007-07-15] (EnTech Taiwan)
S3 QCPro; C:\windows\System32\DRIVERS\p35u.sys [116480 2002-06-10] (Logitech Inc.)
S3 RivaTuner32; C:\Programme\RivaTuner v2.22\RivaTuner32.sys [9088 2008-12-29] () [File not signed]
S3 RT2500USB; C:\windows\System32\DRIVERS\rt2500usb.sys [241536 2005-07-14] (Ralink Technology Inc.)
S3 s116bus; C:\windows\System32\DRIVERS\s116bus.sys [83336 2007-04-03] (MCCI Corporation)
S3 s116mdfl; C:\windows\System32\DRIVERS\s116mdfl.sys [15112 2007-04-03] (MCCI Corporation)
S3 s116mdm; C:\windows\System32\DRIVERS\s116mdm.sys [108680 2007-04-03] (MCCI Corporation)
S3 s116mgmt; C:\windows\System32\DRIVERS\s116mgmt.sys [100488 2007-04-03] (MCCI Corporation)
S3 s116nd5; C:\windows\System32\DRIVERS\s116nd5.sys [23176 2007-04-03] (MCCI Corporation)
S3 s116obex; C:\windows\System32\DRIVERS\s116obex.sys [98696 2007-04-03] (MCCI Corporation)
S3 s116unic; C:\windows\System32\DRIVERS\s116unic.sys [99080 2007-04-03] (MCCI Corporation)
R3 SaiMini; C:\windows\System32\DRIVERS\SaiMini.sys [13824 2006-07-27] (Saitek) [File not signed]
R3 SaiNtBus; C:\windows\System32\drivers\SaiBus.sys [35200 2006-07-27] (Saitek) [File not signed]
S3 SANDRA; C:\Programme\SiSoftware\SiSoftware Sandra Lite 2012.SP4\WNt500x86\Sandra.sys [23112 2009-08-07] (SiSoftware)
R2 sbbotdi; C:\Programme\SpeedBit Video Accelerator\sbbotdi.sys [35584 2008-10-05] (SpeedBit Ltd.) [File not signed]
S3 SbieDrv; C:\Programme\Sandboxie\SbieDrv.sys [123112 2010-08-09] (SANDBOXIE L.T.D)
S3 SCL01132; C:\windows\System32\DRIVERS\SCL01132.sys [61824 2010-05-07] (SCM Microsystems Inc.)
R0 sfdrv01; C:\windows\System32\drivers\sfdrv01.sys [50688 2005-08-10] (Protection Technology) [File not signed]
R0 sfhlp01; C:\windows\System32\drivers\sfhlp01.sys [4832 2003-12-01] (Protection Technology) [File not signed]
R0 sfhlp02; C:\windows\System32\drivers\sfhlp02.sys [6656 2005-05-16] (Protection Technology) [File not signed]
R0 sfvfs02; C:\windows\System32\drivers\sfvfs02.sys [63488 2005-11-03] (Protection Technology) [File not signed]
S3 siusbmod; C:\windows\System32\DRIVERS\siusbmod.sys [27008 2005-09-12] (Siemens AG )
R0 speedfan; C:\windows\System32\speedfan.sys [25240 2011-03-18] (Almico Software)
R0 sptd; C:\windows\System32\Drivers\sptd.sys [477240 2012-06-04] (Duplex Secure Ltd.)
S3 StarOpen; C:\windows\system32\Drivers\StarOpen.sys [7168 2009-11-12] () [File not signed]
S3 STCFUx32; C:\windows\System32\DRIVERS\STCFUx32.SYS [7680 2008-11-13] (SCM Microsystems Inc.)
S3 taphss; C:\windows\System32\DRIVERS\taphss.sys [32768 2010-09-22] (AnchorFree Inc)
R1 tcpipBM; C:\windows\system32\Drivers\tcpipBM.sys [18816 2008-10-09] (Bytemobile, Inc.) [File not signed]
S3 TVicHW32; C:\WINDOWS\system32\DRIVERS\TVICHW32.SYS [24656 2001-08-14] (EnTech Taiwan) [File not signed]
R3 UKBFLT; C:\windows\System32\DRIVERS\UKBFLT.sys [11672 2003-12-19] (Chicony)
S3 usbUDisc; C:\windows\System32\DRIVERS\USBDrv.sys [13824 2012-08-02] (Scott)
S3 usb_rndisx; C:\windows\System32\DRIVERS\usb8023x.sys [12800 2005-10-21] (Microsoft Corporation) [File not signed]
R3 VClone; C:\windows\System32\DRIVERS\VClone.sys [30208 2011-01-15] (Elaborate Bytes AG) [File not signed]
R3 vdrive; C:\windows\System32\DRIVERS\vdrive.sys [36328 2012-11-13] (Fengtao Software Inc.)
S3 vncmirror; C:\windows\System32\DRIVERS\vncmirror.sys [3072 2007-08-15] (RealVNC Ltd.)
R3 vsbus; C:\windows\System32\DRIVERS\vsb.sys [15264 2005-09-12] () [File not signed]
S3 vserial; C:\windows\System32\DRIVERS\vserial.sys [47744 2005-09-12] () [File not signed]
R3 wbscr; C:\windows\System32\drivers\wbscr.sys [19928 2002-04-24] (Winbond Electronics Corp.)
S3 wceusbsh; C:\windows\System32\DRIVERS\wceusbsh.sys [104576 2006-04-10] (Microsoft Corporation)
S3 wip0204; C:\windows\System32\DRIVERS\wip0204.sys [23480 2008-12-30] (Wippien Software)
R3 WmBEnum; C:\windows\System32\drivers\WmBEnum.sys [22856 2010-04-27] (Logitech Inc.)
S3 WmFilter; C:\windows\System32\drivers\WmFilter.sys [37704 2010-04-27] (Logitech Inc.)
S3 WmHidLo; C:\windows\System32\drivers\WmHidLo.sys [31816 2010-04-27] (Logitech Inc.)
S3 WmVirHid; C:\windows\System32\drivers\WmVirHid.sys [15048 2010-04-27] (Logitech Inc.)
R3 WmXlCore; C:\windows\System32\drivers\WmXlCore.sys [66632 2010-04-27] (Logitech Inc.)
R3 XUIF; C:\windows\System32\Drivers\x10ufx2.sys [17792 2005-05-19] (X10 Wireless Technology, Inc.)
U3 anrcco21; C:\windows\system32\Drivers\anrcco21.sys [0 ] (Microsoft Corporation)
U3 ap9emcd3; C:\windows\system32\Drivers\ap9emcd3.sys [0 ] (Microsoft Corporation)
S3 BlueletAudio; system32\DRIVERS\blueletaudio.sys [X]
S3 BT; system32\DRIVERS\btnetdrv.sys [X]
S3 Btcsrusb; System32\Drivers\btcusb.sys [X]
S3 BTHidEnum; system32\DRIVERS\vbtenum.sys [X]
S0 BTHidMgr; System32\Drivers\BTHidMgr.sys [X]
S3 catchme; \??\C:\DOKUME~1\Magic\Lokale Einstellungen\Temp\catchme.sys [X]
U2 CertPropSvc; No ImagePath
S3 hwusbfake; system32\DRIVERS\ewusbfake.sys [X]
S3 NETFWDSL; system32\DRIVERS\NETFWDSL.SYS [X]
S0 rseb; No ImagePath
S3 SCL0102K; system32\DRIVERS\SCL0102K.sys [X]
U5 ScsiPort; C:\windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
U3 TlntSvr; No ImagePath
S3 VComm; system32\DRIVERS\VComm.sys [X]
S3 VcommMgr; System32\Drivers\VcommMgr.sys [X]
S3 wanatw; system32\DRIVERS\wanatw4.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-07 22:05 - 2015-01-07 22:05 - 00000000 __SHD () C:\found.000
2015-01-06 20:33 - 2015-01-08 22:18 - 00000000 ____D () C:\FRST
2015-01-06 00:22 - 2015-01-06 00:22 - 00000000 ____D () C:\windows\ERUNT
2015-01-05 23:15 - 2015-01-06 00:17 - 00000000 ____D () C:\AdwCleaner
2015-01-04 18:59 - 2015-01-08 22:20 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\temp
2015-01-04 18:59 - 2015-01-04 18:59 - 00000000 ____D () C:\Dokumente und Einstellungen\User\Lokale Einstellungen\temp
2015-01-04 18:59 - 2015-01-04 18:59 - 00000000 ____D () C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\temp
2015-01-04 18:59 - 2015-01-04 18:59 - 00000000 ____D () C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\temp
2015-01-04 18:59 - 2015-01-04 18:59 - 00000000 ____D () C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temp
2015-01-04 17:59 - 2015-01-04 17:59 - 00000216 _____ () C:\windows\Tasks\Ende des Supports für Microsoft Windows XP – Monatliche Benachrichtigung.job
2015-01-04 16:36 - 2015-01-04 16:36 - 00000000 __HDC () C:\windows\$NtUninstallKB2893294$
2015-01-04 16:36 - 2015-01-04 16:36 - 00000000 __HDC () C:\windows\$NtUninstallKB2757638$
2015-01-04 16:34 - 2015-01-04 18:12 - 00000000 __HDC () C:\windows\$NtUninstallKB2749655$
2015-01-04 16:23 - 2015-01-04 16:23 - 00008192 ____H () C:\windows\system32\config\default.tmp.LOG
2015-01-04 16:23 - 2015-01-04 16:23 - 00000000 ____H () C:\windows\system32\config\system.tmp.LOG
2015-01-04 16:23 - 2015-01-04 16:23 - 00000000 ____H () C:\windows\system32\config\software.tmp.LOG
2015-01-04 16:23 - 2015-01-04 16:23 - 00000000 ____H () C:\windows\system32\config\SAM.tmp.LOG
2015-01-04 16:22 - 2015-01-04 16:22 - 00008192 ____H () C:\windows\system32\config\SECURITY.tmp.LOG
2015-01-04 16:06 - 2015-01-04 16:33 - 00000000 ____D () C:\windows\system32\MRT
2015-01-04 15:58 - 2015-01-04 15:58 - 00000000 __HDC () C:\windows\$NtUninstallKB2892075$
2015-01-04 15:49 - 2015-01-04 15:49 - 00000000 __HDC () C:\windows\$NtUninstallKB2934207$
2015-01-04 15:49 - 2015-01-04 15:49 - 00000000 __HDC () C:\windows\$NtUninstallKB2862330$
2015-01-04 15:49 - 2015-01-04 15:49 - 00000000 __HDC () C:\windows\$NtUninstallKB2727528$
2015-01-04 15:43 - 2015-01-04 15:43 - 00000000 __HDC () C:\windows\$NtUninstallKB2813345$
2015-01-04 15:07 - 2015-01-04 15:07 - 00000000 __HDC () C:\windows\$NtUninstallKB2914368$
2015-01-04 14:53 - 2011-06-26 07:45 - 00256000 _____ () C:\windows\PEV.exe
2015-01-04 14:53 - 2010-11-07 18:20 - 00208896 _____ () C:\windows\MBR.exe
2015-01-04 14:53 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\windows\NIRCMD.exe
2015-01-04 14:53 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\windows\SWREG.exe
2015-01-04 14:53 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\windows\SWSC.exe
2015-01-04 14:53 - 2000-08-31 01:00 - 00212480 _____ (SteelWerX) C:\windows\SWXCACLS.exe
2015-01-04 14:53 - 2000-08-31 01:00 - 00098816 _____ () C:\windows\sed.exe
2015-01-04 14:53 - 2000-08-31 01:00 - 00080412 _____ () C:\windows\grep.exe
2015-01-04 14:53 - 2000-08-31 01:00 - 00068096 _____ () C:\windows\zip.exe
2015-01-04 14:52 - 2015-01-04 18:59 - 00000000 ____D () C:\Qoobox
2015-01-04 14:52 - 2015-01-04 18:12 - 00000000 ____D () C:\windows\erdnt
2015-01-04 13:43 - 2015-01-04 13:43 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Mumble
2015-01-04 13:42 - 2015-01-04 13:42 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Learn2.com
2015-01-03 15:30 - 2014-02-27 00:28 - 00013312 ____N (Microsoft Corporation) C:\windows\system32\xp_eos.exe
2015-01-03 15:30 - 2014-02-27 00:28 - 00013312 ____C (Microsoft Corporation) C:\windows\system32\dllcache\xp_eos.exe
2015-01-03 15:30 - 2013-08-09 01:55 - 00144128 ____C (Microsoft Corporation) C:\windows\system32\dllcache\usbport.sys
2015-01-03 15:30 - 2013-08-09 01:55 - 00032384 ____C (Microsoft Corporation) C:\windows\system32\dllcache\usbccgp.sys
2015-01-03 15:30 - 2013-08-09 01:55 - 00005376 ____C (Microsoft Corporation) C:\windows\system32\dllcache\usbd.sys
2015-01-03 15:30 - 2009-03-18 12:02 - 00030336 ____C (Microsoft Corporation) C:\windows\system32\dllcache\usbehci.sys
2015-01-03 14:45 - 2015-01-08 22:19 - 01617760 _____ () C:\windows\WindowsUpdate.log
2015-01-03 14:00 - 2015-01-03 16:09 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes' Anti-Malware (portable)
2015-01-03 13:58 - 2015-01-03 16:09 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Desktop\mbar
2015-01-02 11:26 - 2015-01-02 11:26 - 00000000 ____D () C:\Programme\Mozilla Firefox
2015-01-02 09:49 - 2015-01-02 19:00 - 00000000 ____D () C:\Programme\onlineTV 10
2015-01-02 09:49 - 2015-01-02 09:49 - 00000705 _____ () C:\Dokumente und Einstellungen\Magic\Desktop\onlineTV 10.lnk
2015-01-02 09:49 - 2015-01-02 09:49 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Startmenü\Programme\onlineTV 10
2015-01-02 09:49 - 2015-01-02 09:49 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Anwendungsdaten\concept design
2015-01-02 09:49 - 2015-01-02 09:49 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\onlineTV 10
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-08 22:16 - 2004-10-11 20:51 - 00000000 ____D () C:\Programme
2015-01-07 22:09 - 2004-10-11 19:59 - 00000000 __SHD () C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Verlauf
2015-01-07 22:08 - 2004-10-11 20:54 - 00000159 _____ () C:\windows\wiadebug.log
2015-01-07 22:08 - 2004-10-11 20:54 - 00000050 _____ () C:\windows\wiaservc.log
2015-01-07 22:08 - 2004-10-11 19:59 - 00000000 __SHD () C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Verlauf
2015-01-07 22:07 - 2013-04-29 19:54 - 00000000 __SHD () C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Verlauf
2015-01-07 21:59 - 2013-04-29 19:54 - 00000190 ___SH () C:\Dokumente und Einstellungen\Magic\ntuser.ini
2015-01-07 21:58 - 2008-11-19 23:08 - 00000000 __SHD () C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Verlauf
2015-01-07 21:58 - 2004-10-11 20:51 - 00000000 __SHD () C:\Dokumente und Einstellungen\Default User\Lokale Einstellungen\Verlauf
2015-01-06 20:43 - 2013-04-29 19:54 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic
2015-01-06 00:49 - 2013-04-29 19:54 - 00000000 __SHD () C:\Dokumente und Einstellungen\Magic\UserData
2015-01-05 23:55 - 2004-10-11 19:59 - 00000000 __SHD () C:\Dokumente und Einstellungen\NetworkService
2015-01-05 23:51 - 2013-04-29 19:54 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Startmenü
2015-01-05 23:51 - 2009-11-28 20:43 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\ICQ
2015-01-05 23:51 - 2004-10-11 20:51 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme
2015-01-05 23:08 - 2014-04-10 20:11 - 00114904 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2015-01-05 22:32 - 2004-10-11 20:01 - 00000000 ____D () C:\windows\Microsoft.NET
2015-01-04 18:56 - 2004-10-12 04:46 - 00000000 _____ () C:\windows\system.ini
2015-01-04 18:00 - 2004-10-11 19:56 - 00000000 ____D () C:\windows\system32\Restore
2015-01-04 17:58 - 2010-02-13 02:21 - 00000000 ____D () C:\Programme\Microsoft Silverlight
2015-01-04 16:39 - 2004-10-11 21:50 - 72613888 _____ () C:\windows\system32\config\software.bak
2015-01-04 16:35 - 2004-10-12 04:46 - 00000582 _____ () C:\windows\win.ini
2015-01-04 16:17 - 2004-10-11 21:47 - 00000000 ____D () C:\windows\system
2015-01-04 16:02 - 2004-10-11 19:55 - 00000072 ____C () C:\windows\vbaddin.ini
2015-01-04 16:01 - 2010-06-04 14:10 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Microsoft Silverlight
2015-01-04 15:59 - 2004-10-11 21:50 - 18612224 _____ () C:\windows\system32\config\system.bak
2015-01-04 15:48 - 2009-12-02 23:04 - 00000000 ____D () C:\Programme\MW2
2015-01-04 15:45 - 2010-12-11 10:53 - 00000000 ____D () C:\Atari
2015-01-04 15:42 - 2009-06-14 00:36 - 00000000 ____D () C:\windows\ie8updates
2015-01-04 15:35 - 2009-02-14 01:13 - 00000000 ____D () C:\windows\system32\XPSViewer
2015-01-04 15:25 - 2013-05-04 13:04 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Anwendungsdaten\vlc
2015-01-04 15:10 - 2008-03-23 16:16 - 00001010 _____ () C:\Dokumente und Einstellungen\Magic\Desktop\Junk.lnk
2015-01-04 14:50 - 2006-12-29 17:29 - 00000000 ____D () C:\Programme\cod2
2015-01-04 13:46 - 2013-02-09 23:30 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Origin
2015-01-04 13:45 - 2013-02-09 23:30 - 00000000 ____D () C:\Programme\Origin
2015-01-04 13:43 - 2012-04-07 20:38 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Anwendungsdaten\Mumble
2015-01-04 13:38 - 2007-08-11 17:09 - 00000000 ____D () C:\Programme\Internet Download Manager
2015-01-03 15:39 - 2004-10-13 09:49 - 00000000 ___HD () C:\windows\$hf_mig$
2015-01-03 14:59 - 2014-04-10 19:53 - 00055000 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbamchameleon.sys
2015-01-03 14:47 - 2004-10-11 21:50 - 00786432 _____ () C:\windows\system32\config\default.bak
2015-01-03 14:47 - 2004-10-11 20:50 - 00262144 _____ () C:\windows\system32\config\SECURITY.bak
2015-01-03 14:47 - 2004-10-11 20:50 - 00262144 _____ () C:\windows\system32\config\SAM.bak
2015-01-03 12:35 - 2013-04-29 19:54 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Startmenü\Programme
2015-01-03 12:35 - 2013-04-24 20:33 - 00000763 _____ () C:\Dokumente und Einstellungen\Magic\Desktop\Revo Uninstaller.lnk
2015-01-02 19:30 - 2013-08-01 19:53 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Anwendungsdaten\foobar2000
2015-01-02 14:53 - 2014-04-10 19:53 - 00000000 ____D () C:\Programme\Malwarebytes Anti-Malware
2015-01-02 14:53 - 2012-05-06 08:57 - 00000000 ____D () C:\Programme\Mozilla Maintenance Service
2015-01-02 14:53 - 2008-01-03 12:01 - 00000000 ____D () C:\windows\OvtCam
2015-01-02 14:51 - 2004-10-11 20:51 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart
2015-01-02 14:47 - 2013-05-03 20:43 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Anwendungsdaten\Skype
2015-01-02 13:50 - 2012-01-29 21:04 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\LogMeIn Hamachi
2015-01-02 13:28 - 2009-03-07 23:47 - 00271200 _____ () C:\windows\system32\PnkBstrB.xtr
2015-01-02 13:28 - 2008-12-27 18:59 - 00138160 _____ () C:\windows\system32\Drivers\PnkBstrK.sys
2015-01-02 13:28 - 2008-12-27 18:58 - 00271200 _____ () C:\windows\system32\PnkBstrB.exe
2015-01-02 13:28 - 2008-12-27 18:58 - 00075136 _____ () C:\windows\system32\PnkBstrA.exe
2015-01-02 13:09 - 2014-04-10 19:53 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Malwarebytes Anti-Malware
2015-01-02 13:09 - 2012-07-26 19:33 - 00000769 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Malwarebytes Anti-Malware.lnk
2015-01-02 12:34 - 2008-05-07 22:08 - 00000069 _____ () C:\windows\NeroDigital.ini
2015-01-02 12:18 - 2014-11-15 13:49 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Adobe
2015-01-02 12:17 - 2013-01-26 23:44 - 00000884 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2015-01-02 12:17 - 2012-04-09 18:38 - 00701616 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerApp.exe
2015-01-02 12:17 - 2011-05-22 22:06 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerCPLApp.cpl
2015-01-02 11:18 - 2009-10-24 16:40 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Anwendungsdaten\Chilirec
2015-01-02 11:03 - 2006-04-24 10:44 - 00124928 _____ () C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-01-02 10:47 - 2013-05-04 11:40 - 00033032 _____ () C:\Dokumente und Einstellungen\Magic\Anwendungsdaten\wklnhst.dat
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
==================== End Of Log ============================ --- --- ---
--- --- ---
--- --- --- Code:
Results of screen317's Security Check version 0.99.93
Windows XP Service Pack 3 x86
Internet Explorer 8 ``````````````Antivirus/Firewall Check:``````````````
eTrust Antivirus Registration `````````Anti-malware/Other Utilities Check:`````````
Ad-Aware
Spyware Doctor 5.0
Windows Defender
Gmer
TuneUp Utilities 2009
CCleaner
JavaFX 2.1.1
Java 7 Update 45
Java version 32-bit out of Date!
Adobe Flash Player 16.0.0.235
Adobe Reader 8
Adobe Reader XI
Mozilla Firefox (for.)
Google Chrome 27.0.1453.93 Google Chrome out of date! ````````Process Check: objlist.exe by Laurent````````
Ad-Aware AAWService.exe
Ad-Aware AAWTray.exe is disabled!
Firewall Poblem del SecurityCheck.exe `````````````````System Health check`````````````````
Total Fragmentation on Drive C:: ````````````````````End of Log`````````````````````` et voila, klappt immer schneller ;-))
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 07-01-2015
Ran by Magic (administrator) on NAME-4E62F3A7F1 on 08-01-2015 22:28:05
Running from C:\FRST\FRST-OlderVersion
Loaded Profile: Magic (Available profiles: Magic & Administrator & Gast)
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 8 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Lavasoft) C:\Programme\Lavasoft\Ad-Aware\aawservice.exe
(Microsoft Corporation) C:\WINDOWS\system32\netdde.exe
(Apple Inc.) C:\Programme\Bonjour\mDNSResponder.exe
(BlueStack Systems, Inc.) C:\Programme\BlueStacks\HD-LogRotatorService.exe
() C:\Programme\CPUCooL\CooLSRV.exe
(AVM Berlin) C:\Programme\FRITZ!DSL\IGDCTRL.EXE
(Oracle Corporation) C:\Programme\Java\jre7\bin\jqs.exe
(Computer Associates) C:\Programme\CA\SharedComponents\CA_LIC\LogWatNT.exe
(Microsoft Corporation) C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7Debug\mdm.exe
() C:\Programme\CDBurnerXP\NMSAccessU.exe
(NVIDIA) C:\Programme\NVIDIA Corporation\nTune\nTuneService.exe
(Prolific Technology Inc.) C:\Programme\Nero\Nero BackItUp 4\IoctlSvc.exe
() C:\Programme\RealNetworks\RealDownloader\rndlresolversvc.exe
(Microsoft Corporation) C:\Programme\UPHClean\uphclean.exe
(Microsoft Corporation) C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\WINDOWS\system32\taskmgr.exe
(Mozilla Corporation) C:\Programme\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(DT Soft Ltd) C:\Programme\DAEMON Tools Pro\DTShellHlp.exe
() C:\Programme\Unlocker\UnlockerAssistant.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-1488483606-1045282719-2118933040-1011\...\Run: [swg] => C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [68856 2007-08-09] (Google Inc.)
HKU\S-1-5-21-1488483606-1045282719-2118933040-1011\...\Run: [DAEMON Tools Pro Agent] => C:\Programme\DAEMON Tools Pro\DTAgent.exe [3111744 2012-04-26] (DT Soft Ltd)
HKU\S-1-5-18\...\Run: [CTFMON.EXE] => C:\WINDOWS\system32\CTFMON.EXE [24064 2012-06-29] (Gerhard Schlager)
HKU\S-1-5-18\...\Run: [DWQueuedReporting] => C:\Programme\Gemeinsame Dateien\Microsoft Shared\DW\DWTRIG20.EXE [437160 2007-02-26] (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.aldi.com
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.medion.com
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.aldi.com
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.medion.com
HKU\S-1-5-21-1488483606-1045282719-2118933040-1011\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1488483606-1045282719-2118933040-1011\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO: DivX Plus Web Player HTML5 <video> -> {326E768D-4182-46FD-9C16-1449A49795F4} -> C:\Programme\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
BHO: DivX HiQ -> {593DDEC6-7468-4cdd-90E1-42DADAA222E9} -> C:\Programme\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Programme\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Programme\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll (Google Inc.)
BHO: WEB.DE MailCheck BHO -> {BF42D4A8-016E-4fcd-B1EB-837659FD77C6} -> C:\Programme\WEB.DE MailCheck\IE\WEB.DE_MailCheck.dll No File
BHO: FRITZ!Box Addon BHO -> {C0C86BBE-9509-4296-8459-FDBFDAF4B673} -> C:\Programme\FRITZ!Box\AddOn (IE)\FBoxIESplitButton.dll (AVM Berlin)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Programme\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} hxxp://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.3.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_05-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {C7DB51B4-BCF7-4923-8874-7F1A0DC92277} hxxp://office.microsoft.com/officeupdate/content/opuc4.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_05-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: gmx - {8FAF0273-9CA8-4efc-9536-1E35E254D5CD} - C:\Programme\WEB.DE MailCheck\IE\WEB.DE_MailCheck.dll No File
Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\Ole DB\msdaipp.dll (Microsoft Corporation)
Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\Ole DB\msdaipp.dll (Microsoft Corporation)
Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\Ole DB\msdaipp.dll (Microsoft Corporation)
Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\Ole DB\msdaipp.dll (Microsoft Corporation)
Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\Ole DB\msdaipp.dll (Microsoft Corporation)
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler: mctp - {d7b95390-b1c5-11d0-b111-0080c712fe82} - No File
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\Ole DB\msdaipp.dll (Microsoft Corporation)
Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\Ole DB\msdaipp.dll (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programme\Gemeinsame Dateien\Skype\Skype4COM.dll (Skype Technologies)
Handler: webde - {8FAF0273-9CA8-4efc-9536-1E35E254D5CD} - C:\Programme\WEB.DE MailCheck\IE\WEB.DE_MailCheck.dll No File
Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Programme\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
ShellExecuteHooks: Microsoft AntiMalware ShellExecuteHook - {091EB208-39DD-417D-A5DD-7E2C2D8FB9CB} - C:\Programme\Windows Defender\MpShHook.dll [83224 2006-11-03] (Microsoft Corporation)
Winsock: Catalog5 05 C:\Programme\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Winsock: Catalog5 06 C:\Programme\FRITZ!DSL\\sarah.dll [28472] (AVM Berlin)
FireFox:
========
FF ProfilePath: C:\Dokumente und Einstellungen\Magic\Anwendungsdaten\Mozilla\Firefox\Profiles\i437m79p.default-1383082487453
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\windows\system32\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.)
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Programme\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @divx.com/DivX Browser Plugin,version=1.0.0 -> C:\Programme\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin: @divx.com/DivX Content Upload Plugin,version=1.0.0 -> C:\Programme\DivX\DivX Content Uploader\npUpload.dll (DivX,Inc.)
FF Plugin: @divx.com/DivX OVS Helper,version=1.0.0 -> C:\Programme\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 -> C:\Programme\DivX\DivX Player\npDivxPlayerPlugin.dll No File
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Programme\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.45.2 -> C:\Programme\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 -> C:\Programme\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Programme\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.3 -> C:\Programme\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Programme\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Programme\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @nokia.com/EnablerPlugin -> C:\Programme\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( )
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Programme\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google)
FF Plugin: @real.com/nppl3260;version=16.0.2.32 -> c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlchromebrowserrecordext;version=1.3.2 -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlhtml5videoshim;version=1.3.2 -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlpepperflashvideoshim;version=1.3.2 -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpplugin;version=16.0.2.32 -> c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin: @realnetworks.com/npdlplugin;version=1 -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Programme\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Programme\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.8 -> C:\Programme\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @zylom.com/ZylomGamesPlayer -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll (Zylom)
FF Plugin: Adobe Reader -> C:\Programme\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin: yaxmpb@yahoo.com/YahooActiveXPluginBridge;version=1.0.0.1 -> C:\Programme\Yahoo!\Common\npyaxmpb.dll (Yahoo! Inc.)
FF Plugin HKU\S-1-5-21-1488483606-1045282719-2118933040-1011: @unity3d.com/UnityPlayer,version=1.0 -> C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npDivxPlayerPlugin.dll (DivX, Inc)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npLegitCheckPlugin.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\NPOFFICE.DLL (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\nprjplug.dll (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Programme\mozilla firefox\plugins\npzylomgamesplayer.dll (Zylom)
FF Extension: Google Toolbar for Firefox - C:\Programme\Mozilla Firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c} [2015-01-02]
FF Extension: ICQ Toolbar - C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2015-01-02]
FF Extension: Skype Click to Call - C:\Programme\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2015-01-02]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-14]
FF HKLM\...\Firefox\Extensions: [ff-bmboc@bytemobile.com] - C:\Programme\Vodafone\Vodafone Mobile Connect\Optimization Client\addon
FF Extension: Bytemobile Optimization Client - C:\Programme\Vodafone\Vodafone Mobile Connect\Optimization Client\addon [2010-10-16]
FF HKLM\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Programme\DivX\DivX Plus Web Player\firefox\html5video
FF Extension: DivX Plus Web Player HTML5 <video> - C:\Programme\DivX\DivX Plus Web Player\firefox\html5video [2011-01-18]
FF HKLM\...\Firefox\Extensions: [{6904342A-8307-11DF-A508-4AE2DFD72085}] - C:\Programme\DivX\DivX Plus Web Player\firefox\wpa
FF Extension: DivX HiQ - C:\Programme\DivX\DivX Plus Web Player\firefox\wpa [2011-01-18]
FF HKLM\...\Firefox\Extensions: [{FCE04E1F-9378-4f39-96F6-5689A9159E45}] - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-08-18]
FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
Chrome:
=======
CHR Plugin: (Chrome PDF Viewer) - C:\Programme\Google\Chrome\Application\23.0.1271.97\pdf.dll No File
CHR Plugin: (Google Gears 0.5.33.0) - C:\Programme\Google\Chrome\Application\23.0.1271.97\gears.dll No File
CHR Plugin: (Shockwave Flash) - C:\Programme\Google\Chrome\Application\23.0.1271.97\gcswf32.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Programme\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (Java Deployment Toolkit 6.0.220.4) - C:\Programme\Java\jre6\bin\new_plugin\npdeployJava1.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U22) - C:\Programme\Java\jre6\bin\new_plugin\npjp2.dll No File
CHR Plugin: (Ask Toolbar Plugin Stub) - C:\Programme\Mozilla Firefox\plugins\NPAskSBr.dll No File
CHR Plugin: (DivX Player Netscape Plugin) - C:\Programme\Mozilla Firefox\plugins\npDivxPlayerPlugin.dll (DivX, Inc)
CHR Plugin: (Windows Genuine Advantage) - C:\Programme\Mozilla Firefox\plugins\npLegitCheckPlugin.dll (Microsoft Corporation)
CHR Plugin: (My Web Search Plugin Stub) - C:\Programme\Mozilla Firefox\plugins\NPMyWebS.dll No File
CHR Plugin: (RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) ) - C:\Programme\Mozilla Firefox\plugins\nppl3260.dll (RealNetworks, Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Programme\Mozilla Firefox\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Programme\Mozilla Firefox\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Programme\Mozilla Firefox\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Programme\Mozilla Firefox\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Programme\Mozilla Firefox\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Programme\Mozilla Firefox\plugins\npqtplugin6.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Programme\Mozilla Firefox\plugins\npqtplugin7.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Programme\Mozilla Firefox\plugins\npqtplugin8.dll No File
CHR Plugin: (RealJukebox NS Plugin) - C:\Programme\Mozilla Firefox\plugins\nprjplug.dll (RealNetworks, Inc.)
CHR Plugin: (RealPlayer Version Plugin) - C:\Programme\Mozilla Firefox\plugins\nprpjplug.dll (RealNetworks, Inc.)
CHR Plugin: (Zylom Plugin) - C:\Programme\Mozilla Firefox\plugins\npzylomgamesplayer.dll (Zylom)
CHR Plugin: (Microsoft DRM) - C:\Programme\Windows Media Player\npdrmv2.dll (Microsoft Corporation)
CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Programme\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.))
CHR Plugin: (Microsoft DRM) - C:\Programme\Windows Media Player\npwmsdrm.dll (Microsoft Corporation)
CHR Plugin: (RealPlayer(tm) HTML5VideoShim Plug-In (32-bit) ) - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll No File
CHR Plugin: (DivX Content Upload Plugin) - C:\Programme\DivX\DivX Content Uploader\npUpload.dll (DivX,Inc.)
CHR Plugin: (DivX OVS Helper Plug-in) - C:\Programme\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
CHR Plugin: (DivX Web Player) - C:\Programme\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
CHR Plugin: (Google Updater) - C:\Programme\Google\Google Updater\2.4.1399.3742\npCIDetect13.dll No File
CHR Plugin: (Google Update) - C:\Programme\Google\Update\1.2.183.39\npGoogleOneClick8.dll No File
CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Programme\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
CHR Plugin: (MetaStream 3 Plugin) - C:\Programme\Viewpoint\Viewpoint Media Player\npViewpoint.dll No File
CHR Plugin: (Windows Live Photo Gallery) - C:\Programme\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Yahoo! activeX Plug-in Bridge) - C:\Programme\Yahoo!\Common\npyaxmpb.dll (Yahoo! Inc.)
CHR Plugin: (iTunes Application Detector) - C:\Programme\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Windows Presentation Foundation) - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Programme\Microsoft Silverlight\4.0.51204.0\npctrl.dll No File
CHR Plugin: (Default Plug-in) - default_plugin No File
CHR Profile: C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default
CHR Extension: (Ciuvo Preisvergleich) - C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\cbmmkkbjmcidpennbibfkncodjenfpjh [2012-03-09]
CHR Extension: (DivX HiQ) - C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\fnjbmmemklcjgepojigaapkoodmkgbae [2011-01-18]
CHR Extension: (RealPlayer HTML5Video Downloader Extension) - C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk [2010-09-21]
CHR Extension: (DivX Plus Web Player HTML5 video) - C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm [2011-01-18]
CHR HKLM\...\Chrome\Extension: [fnjbmmemklcjgepojigaapkoodmkgbae] - C:\Programme\DivX\DivX Plus Web Player\google_chrome\wpa\wpa.crx [2010-12-08]
CHR HKLM\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-04-16]
CHR HKLM\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Programme\DivX\DivX Plus Web Player\google_chrome\html5video\html5video.crx [2010-12-08]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aawservice; C:\Programme\Lavasoft\Ad-Aware\aawservice.exe [611664 2008-07-07] (Lavasoft)
S4 AcrSch2Svc; C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedul2.exe [817264 2010-06-07] (Acronis)
S3 Apple Mobile Device; C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe [55184 2012-08-11] (Apple Inc.)
S4 BBSvc; C:\Programme\Microsoft\BingBar\BBSvc.EXE [196176 2011-10-21] (Microsoft Corporation.)
S3 BBUpdate; C:\Programme\Microsoft\BingBar\SeaPort.EXE [249648 2011-10-13] (Microsoft Corporation)
R2 Bonjour Service; C:\Programme\Bonjour\mDNSResponder.exe [390504 2011-08-30] (Apple Inc.)
S2 BstHdAndroidSvc; C:\Programme\BlueStacks\HD-Service.exe [393080 2013-02-15] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Programme\BlueStacks\HD-LogRotatorService.exe [384888 2013-02-15] (BlueStack Systems, Inc.)
S3 CA_LIC_CLNT; C:\Programme\CA\SharedComponents\CA_LIC\lic98rmt.exe [77824 2002-09-19] (Computer Associates) [File not signed]
S3 CA_LIC_SRVR; C:\Programme\CA\SharedComponents\CA_LIC\lic98rmtd.exe [77824 2002-09-19] (Computer Associates) [File not signed]
R2 CPUCooLServer; C:\Programme\CPUCooL\CooLSrv.exe [743936 2011-12-01] () [File not signed]
S3 de_serv; C:\Programme\Gemeinsame Dateien\AVM\de_serv.exe [315392 2005-11-21] (AVM Berlin) [File not signed]
S4 DVD-RAM_Service; C:\WINDOWS\system32\DVDRAMSV.exe [110592 2005-12-24] (Matsushita Electric Industrial Co., Ltd.) [File not signed]
S3 FLEXnet Licensing Service; C:\Programme\Gemeinsame Dateien\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2008-10-28] (Macrovision Europe Ltd.) [File not signed]
S3 fsssvc; C:\Programme\Windows Live\Family Safety\fsssvc.exe [704864 2009-08-05] (Microsoft Corporation)
S4 gupdate1c9ece5216cdebe; C:\Programme\Google\Update\GoogleUpdate.exe [133104 2009-06-14] (Google Inc.)
S4 gupdatem; C:\Programme\Google\Update\GoogleUpdate.exe [133104 2009-06-14] (Google Inc.)
S4 gusvc; C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe [194032 2013-05-21] (Google)
S3 Hamachi2Svc; C:\Programme\LogMeIn Hamachi\hamachi-2.exe [1385896 2012-06-27] (LogMeIn Inc.)
S3 IDriverT; C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed]
R2 IGDCTRL; C:\Programme\FRITZ!DSL\IGDCTRL.EXE [73528 2009-07-28] (AVM Berlin)
S3 iPod Service; C:\Programme\iPod\bin\iPodService.exe [553440 2012-12-12] (Apple Inc.)
R2 JavaQuickStarterService; C:\Programme\Java\jre7\bin\jqs.exe [182696 2013-10-08] (Oracle Corporation)
S4 LightScribeService; C:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe [75304 2007-04-19] (Hewlett-Packard Company)
R2 LogWatch; C:\Programme\CA\SharedComponents\CA_LIC\LogWatNT.exe [53248 2002-09-19] (Computer Associates) [File not signed]
R2 MDM; C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7Debug\mdm.exe [322120 2003-06-19] (Microsoft Corporation)
S3 MozillaMaintenance; C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe [114800 2015-01-02] (Mozilla Foundation)
S3 Nero BackItUp Scheduler 4.0; C:\Programme\Gemeinsame Dateien\Nero\Nero BackItUp 4\NBService.exe [935208 2008-12-05] (Nero AG)
S4 NMIndexingService; C:\Programme\Gemeinsame Dateien\Ahead\Lib\NMIndexingService.exe [275752 2008-01-22] (Nero AG)
R2 NMSAccess; C:\Programme\CDBurnerXP\NMSAccessU.exe [71096 2010-03-04] ()
S3 NovacomD; C:\Programme\Palm, Inc\novacom\x86\novacomd.exe [33280 2009-11-06] (Palm) [File not signed]
R2 nTuneService; C:\Programme\NVIDIA Corporation\nTune\nTuneService.exe [191080 2009-11-06] (NVIDIA)
S3 ose; C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE [89136 2003-07-28] (Microsoft Corporation)
R2 PLFlash DeviceIoControl Service; C:\Programme\Nero\Nero BackItUp 4\IoctlSvc.exe [81920 2008-12-05] (Prolific Technology Inc.) [File not signed]
S3 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [75136 2015-01-02] ()
S3 Radio.fx; E:\Tobit Radio.fx\Server\rfx-server.exe [3630936 2011-08-02] ()
R2 RealNetworks Downloader Resolver Service; C:\Programme\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-04-16] ()
S3 SandraAgentSrv; C:\Programme\SiSoftware\SiSoftware Sandra Lite 2012.SP4\RpcAgentSrv.exe [95896 2009-04-26] (SiSoftware) [File not signed]
S3 SbieSvc; C:\Programme\Sandboxie\SbieSvc.exe [75496 2010-08-09] (SANDBOXIE L.T.D)
S3 sdAuxService; C:\Programme\Spyware Doctor\svcntaux.exe [708688 2007-06-12] (PC Tools)
S3 sdCoreService; C:\Programme\Spyware Doctor\swdsvc.exe [1309264 2007-06-12] (PC Tools)
S3 ServiceLayer; C:\Programme\PC Connectivity Solution\ServiceLayer.exe [725400 2012-10-03] (Nokia)
S3 SkypeUpdate; C:\Programme\Skype\Updater\Updater.exe [161384 2013-04-19] (Skype Technologies)
S3 StarWindServiceAE; C:\Programme\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [275968 2007-05-28] (Rocket Division Software) [File not signed]
S3 TomTomHOMEService; C:\Programme\TomTom HOME 2\TomTomHOMEService.exe [93072 2013-03-22] (TomTom)
S3 TuneUp.Defrag; C:\windows\System32\TuneUpDefragService.exe [361288 2009-12-06] (TuneUp Software)
S3 TuneUp.ProgramStatisticsSvc; C:\windows\System32\TUProgSt.exe [604488 2009-12-06] (TuneUp Software)
R2 UPHClean; C:\Programme\UPHClean\uphclean.exe [241725 2005-04-27] (Microsoft Corporation) [File not signed]
S3 VideoAcceleratorService; C:\Programme\SpeedBit Video Accelerator\VideoAcceleratorService.exe [292472 2008-10-05] (Speedbit Ltd.)
S4 VMCService; C:\Programme\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe [9216 2009-09-11] (Vodafone) [File not signed]
S3 windoweyes; C:\Programme\GW Micro\Window-Eyes\weserv.exe [133952 2012-04-23] ()
R2 wlidsvc; C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WLIDSVC.EXE [1529728 2009-08-18] (Microsoft Corporation)
R2 WMPNetworkSvc; C:\Programme\Windows Media Player\WMPNetwk.exe [920576 2006-11-03] (Microsoft Corporation)
S3 x10nets; C:\Programme\Common Files\X10\Common\X10nets.exe [20480 2001-11-12] (X10) [File not signed]
S3 RichVideo; "C:\Programme\CyberLink\Shared Files\RichVideo.exe" [X]
S3 vToolbarUpdater13.2.0; C:\Programme\Gemeinsame Dateien\AVG Secure Search\vToolbarUpdater\13.2.0\ToolbarUpdater.exe [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 3xHybrid; C:\windows\System32\DRIVERS\3xHybrid.sys [945152 2004-10-06] (Philips Semiconductors GmbH)
S3 61883; C:\windows\System32\DRIVERS\61883.sys [48128 2008-04-13] (Microsoft Corporation)
R2 ACEDRV07; C:\WINDOWS\system32\drivers\ACEDRV07.sys [101376 2007-07-29] (Protect Software GmbH) [File not signed]
R3 actser; C:\windows\System32\drivers\actser.sys [29440 2005-09-12] (Siemens AG) [File not signed]
R2 AegisP; C:\windows\System32\DRIVERS\AegisP.sys [19915 2011-03-10] (Meetinghouse Data Communications) [File not signed]
R3 AnyDVD; C:\windows\System32\Drivers\AnyDVD.sys [121248 2012-08-26] (SlySoft, Inc.)
R3 Apowersoft_AudioDevice; C:\windows\System32\drivers\Apowersoft_AudioDevice.sys [26080 2012-10-08] (Wondershare)
R2 Aspi32; C:\windows\system32\Drivers\Aspi32.sys [25244 1999-09-10] (Adaptec) [File not signed]
R1 avgtp; C:\WINDOWS\system32\drivers\avgtpx86.sys [26984 2012-11-15] (AVG Technologies)
U0 BMLoad; C:\windows\System32\drivers\BMLoad.sys [22528 2008-10-09] (Bytemobile, Inc.) [File not signed]
R2 BstHdDrv; C:\Programme\BlueStacks\HD-Hypervisor-x86.sys [63864 2013-02-15] (BlueStack Systems)
S3 CardReaderFilter; C:\WINDOWS\system32\Drivers\USBCRFT.SYS [17408 2012-09-16] (ICSI Technology Ltd.) [File not signed]
S3 CCDECODE; C:\windows\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
R2 CdaC15BA; C:\WINDOWS\system32\drivers\CDAC15BA.SYS [8864 2006-11-04] () [File not signed]
S3 cmudau; C:\windows\System32\drivers\cmudau.sys [1383104 2007-05-23] (C-Media Inc) [File not signed]
R3 cmudax; C:\windows\System32\drivers\cmudax.sys [1287296 2005-05-12] (C-Media Inc.)
R1 dtsoftbus01; C:\windows\System32\DRIVERS\dtsoftbus01.sys [242240 2012-06-13] (DT Soft Ltd)
R1 ElbyCDIO; C:\windows\System32\Drivers\ElbyCDIO.sys [31088 2010-12-16] (Elaborate Bytes AG)
S3 ENTECH; C:\WINDOWS\system32\DRIVERS\ENTECH.sys [27672 2007-09-07] (EnTech Taiwan)
R1 Ext2fs; C:\windows\System32\DRIVERS\ext2fs.sys [181120 2008-09-25] (Stephan Schreiber) [File not signed]
R3 FETNDISB; C:\windows\System32\DRIVERS\fetnd5b.sys [42496 2004-04-15] (VIA Technologies, Inc. )
R2 fssfltr; C:\windows\System32\DRIVERS\fssfltr_tdi.sys [54752 2009-08-05] (Microsoft Corporation)
S3 FTDIBUS; C:\windows\System32\drivers\ftdibus.sys [57672 2009-06-10] (FTDI Ltd.)
S3 GcKernel; C:\windows\System32\DRIVERS\GcKernel.sys [59136 2008-04-13] (Microsoft Corporation)
S3 GigasetGenericUSB; C:\windows\System32\DRIVERS\GigasetGenericUSB.sys [44032 2009-02-20] (Siemens Home and Office Communication Devices GmbH & Co. KG)
R3 gwrdmir; C:\windows\System32\DRIVERS\gwrdmir.sys [9408 2011-09-23] (Windows (R) Win 7 DDK provider)
R3 hamachi; C:\windows\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.)
S3 HdAudAddService; C:\windows\System32\drivers\HdAudio.sys [113664 2004-03-17] (Windows (R) Server 2003 DDK provider)
S3 HIDSwvd; C:\windows\System32\DRIVERS\HIDSwvd.sys [2688 2001-08-17] (Microsoft Corporation)
S3 hipeer20; C:\windows\System32\DRIVERS\remobo32.sys [26112 2010-08-01] (Windows (R) Codename Longhorn DDK provider) [File not signed]
R1 IfsMount; C:\windows\System32\DRIVERS\ifsmount.sys [51072 2008-08-28] (Stephan Schreiber) [File not signed]
S3 IKFileFlt; C:\windows\System32\drivers\ikfileflt.sys [39376 2007-05-23] (PCTools Research Pty Ltd.)
S3 IKFileSec; C:\windows\System32\drivers\ikfilesec.sys [53840 2007-05-23] (PCTools Research Pty Ltd.)
S3 IkSysFlt; C:\windows\System32\drivers\iksysflt.sys [57424 2007-05-23] (PCTools Research Pty Ltd.)
S3 IKSysSec; C:\windows\System32\drivers\iksyssec.sys [83024 2007-05-23] (PCTools Research Pty Ltd.)
R2 ithsgt; C:\windows\System32\DRIVERS\ithsgt.sys [162432 2007-10-17] () [File not signed]
R2 lilsgt; C:\windows\System32\DRIVERS\lilsgt.sys [12032 2007-10-17] () [File not signed]
R1 meiudf; C:\windows\System32\Drivers\meiudf.sys [102384 2005-12-24] (Matsushita Electric Industrial Co.,Ltd.) [File not signed]
S3 MPCSYS; C:\WINDOWS\system32\DRIVERS\mpcsys.sys [15360 2008-12-31] () [File not signed]
S3 MPE; C:\windows\System32\DRIVERS\MPE.sys [15232 2008-04-13] (Microsoft Corporation)
S3 NdisIP; C:\windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
S3 NinjaUSB; C:\windows\System32\drivers\NinjaUSB.sys [24704 2010-02-04] () [File not signed]
R1 ntiopnp; C:\windows\system32\Drivers\ntiopnp.sys [21080 2010-11-11] ()
S3 NTSIM; C:\WINDOWS\system32\ntsim.sys [7040 2003-07-17] (VIA Networking Technologies, Inc. ) [File not signed]
S3 NVHDA; C:\windows\System32\drivers\nvhda32.sys [119272 2011-03-03] (NVIDIA Corporation)
S3 ogo_usb; C:\windows\System32\Drivers\ogo_usb.sys [48384 2006-10-10] (Windows (R) 2000 DDK provider) [File not signed]
S1 oxser; C:\windows\System32\DRIVERS\oxser.sys [51169 2003-04-28] (OEM) [File not signed]
S3 pfc; C:\windows\System32\drivers\pfc.sys [10368 2003-12-05] (Padus, Inc.) [File not signed]
R1 prodrv05; C:\windows\System32\drivers\prodrv05.sys [53728 2002-11-13] (Protection Technology Co.) [File not signed]
R1 prodrv06; C:\windows\System32\drivers\prodrv06.sys [53920 2004-08-09] (Protection Technology) [File not signed]
R0 prohlp01; C:\windows\System32\drivers\prohlp01.sys [60448 2002-11-13] (Protection Technology Co.) [File not signed]
R0 prohlp02; C:\windows\System32\drivers\prohlp02.sys [114016 2004-08-09] (Protection Technology) [File not signed]
R0 prosync1; C:\windows\System32\drivers\prosync1.sys [7040 2004-07-19] (Protection Technology) [File not signed]
R2 PStrip; C:\windows\System32\drivers\pstrip.sys [27992 2007-07-15] (EnTech Taiwan)
S3 QCPro; C:\windows\System32\DRIVERS\p35u.sys [116480 2002-06-10] (Logitech Inc.)
S3 RivaTuner32; C:\Programme\RivaTuner v2.22\RivaTuner32.sys [9088 2008-12-29] () [File not signed]
S3 RT2500USB; C:\windows\System32\DRIVERS\rt2500usb.sys [241536 2005-07-14] (Ralink Technology Inc.)
S3 s116bus; C:\windows\System32\DRIVERS\s116bus.sys [83336 2007-04-03] (MCCI Corporation)
S3 s116mdfl; C:\windows\System32\DRIVERS\s116mdfl.sys [15112 2007-04-03] (MCCI Corporation)
S3 s116mdm; C:\windows\System32\DRIVERS\s116mdm.sys [108680 2007-04-03] (MCCI Corporation)
S3 s116mgmt; C:\windows\System32\DRIVERS\s116mgmt.sys [100488 2007-04-03] (MCCI Corporation)
S3 s116nd5; C:\windows\System32\DRIVERS\s116nd5.sys [23176 2007-04-03] (MCCI Corporation)
S3 s116obex; C:\windows\System32\DRIVERS\s116obex.sys [98696 2007-04-03] (MCCI Corporation)
S3 s116unic; C:\windows\System32\DRIVERS\s116unic.sys [99080 2007-04-03] (MCCI Corporation)
R3 SaiMini; C:\windows\System32\DRIVERS\SaiMini.sys [13824 2006-07-27] (Saitek) [File not signed]
R3 SaiNtBus; C:\windows\System32\drivers\SaiBus.sys [35200 2006-07-27] (Saitek) [File not signed]
S3 SANDRA; C:\Programme\SiSoftware\SiSoftware Sandra Lite 2012.SP4\WNt500x86\Sandra.sys [23112 2009-08-07] (SiSoftware)
R2 sbbotdi; C:\Programme\SpeedBit Video Accelerator\sbbotdi.sys [35584 2008-10-05] (SpeedBit Ltd.) [File not signed]
S3 SbieDrv; C:\Programme\Sandboxie\SbieDrv.sys [123112 2010-08-09] (SANDBOXIE L.T.D)
S3 SCL01132; C:\windows\System32\DRIVERS\SCL01132.sys [61824 2010-05-07] (SCM Microsystems Inc.)
R0 sfdrv01; C:\windows\System32\drivers\sfdrv01.sys [50688 2005-08-10] (Protection Technology) [File not signed]
R0 sfhlp01; C:\windows\System32\drivers\sfhlp01.sys [4832 2003-12-01] (Protection Technology) [File not signed]
R0 sfhlp02; C:\windows\System32\drivers\sfhlp02.sys [6656 2005-05-16] (Protection Technology) [File not signed]
R0 sfvfs02; C:\windows\System32\drivers\sfvfs02.sys [63488 2005-11-03] (Protection Technology) [File not signed]
S3 siusbmod; C:\windows\System32\DRIVERS\siusbmod.sys [27008 2005-09-12] (Siemens AG )
R0 speedfan; C:\windows\System32\speedfan.sys [25240 2011-03-18] (Almico Software)
R0 sptd; C:\windows\System32\Drivers\sptd.sys [477240 2012-06-04] (Duplex Secure Ltd.)
S3 StarOpen; C:\windows\system32\Drivers\StarOpen.sys [7168 2009-11-12] () [File not signed]
S3 STCFUx32; C:\windows\System32\DRIVERS\STCFUx32.SYS [7680 2008-11-13] (SCM Microsystems Inc.)
S3 taphss; C:\windows\System32\DRIVERS\taphss.sys [32768 2010-09-22] (AnchorFree Inc)
R1 tcpipBM; C:\windows\system32\Drivers\tcpipBM.sys [18816 2008-10-09] (Bytemobile, Inc.) [File not signed]
S3 TVicHW32; C:\WINDOWS\system32\DRIVERS\TVICHW32.SYS [24656 2001-08-14] (EnTech Taiwan) [File not signed]
R3 UKBFLT; C:\windows\System32\DRIVERS\UKBFLT.sys [11672 2003-12-19] (Chicony)
S3 usbUDisc; C:\windows\System32\DRIVERS\USBDrv.sys [13824 2012-08-02] (Scott)
S3 usb_rndisx; C:\windows\System32\DRIVERS\usb8023x.sys [12800 2005-10-21] (Microsoft Corporation) [File not signed]
R3 VClone; C:\windows\System32\DRIVERS\VClone.sys [30208 2011-01-15] (Elaborate Bytes AG) [File not signed]
R3 vdrive; C:\windows\System32\DRIVERS\vdrive.sys [36328 2012-11-13] (Fengtao Software Inc.)
S3 vncmirror; C:\windows\System32\DRIVERS\vncmirror.sys [3072 2007-08-15] (RealVNC Ltd.)
R3 vsbus; C:\windows\System32\DRIVERS\vsb.sys [15264 2005-09-12] () [File not signed]
S3 vserial; C:\windows\System32\DRIVERS\vserial.sys [47744 2005-09-12] () [File not signed]
R3 wbscr; C:\windows\System32\drivers\wbscr.sys [19928 2002-04-24] (Winbond Electronics Corp.)
S3 wceusbsh; C:\windows\System32\DRIVERS\wceusbsh.sys [104576 2006-04-10] (Microsoft Corporation)
S3 wip0204; C:\windows\System32\DRIVERS\wip0204.sys [23480 2008-12-30] (Wippien Software)
R3 WmBEnum; C:\windows\System32\drivers\WmBEnum.sys [22856 2010-04-27] (Logitech Inc.)
S3 WmFilter; C:\windows\System32\drivers\WmFilter.sys [37704 2010-04-27] (Logitech Inc.)
S3 WmHidLo; C:\windows\System32\drivers\WmHidLo.sys [31816 2010-04-27] (Logitech Inc.)
S3 WmVirHid; C:\windows\System32\drivers\WmVirHid.sys [15048 2010-04-27] (Logitech Inc.)
R3 WmXlCore; C:\windows\System32\drivers\WmXlCore.sys [66632 2010-04-27] (Logitech Inc.)
R3 XUIF; C:\windows\System32\Drivers\x10ufx2.sys [17792 2005-05-19] (X10 Wireless Technology, Inc.)
U3 anrcco21; C:\windows\system32\Drivers\anrcco21.sys [0 ] (Microsoft Corporation)
U3 ap9emcd3; C:\windows\system32\Drivers\ap9emcd3.sys [0 ] (Microsoft Corporation)
S3 BlueletAudio; system32\DRIVERS\blueletaudio.sys [X]
S3 BT; system32\DRIVERS\btnetdrv.sys [X]
S3 Btcsrusb; System32\Drivers\btcusb.sys [X]
S3 BTHidEnum; system32\DRIVERS\vbtenum.sys [X]
S0 BTHidMgr; System32\Drivers\BTHidMgr.sys [X]
S3 catchme; \??\C:\DOKUME~1\Magic\Lokale Einstellungen\Temp\catchme.sys [X]
U2 CertPropSvc; No ImagePath
S3 hwusbfake; system32\DRIVERS\ewusbfake.sys [X]
S3 NETFWDSL; system32\DRIVERS\NETFWDSL.SYS [X]
S0 rseb; No ImagePath
S3 SCL0102K; system32\DRIVERS\SCL0102K.sys [X]
U5 ScsiPort; C:\windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
U3 TlntSvr; No ImagePath
S3 VComm; system32\DRIVERS\VComm.sys [X]
S3 VcommMgr; System32\Drivers\VcommMgr.sys [X]
S3 wanatw; system32\DRIVERS\wanatw4.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-07 22:05 - 2015-01-07 22:05 - 00000000 __SHD () C:\found.000
2015-01-06 20:33 - 2015-01-08 22:28 - 00000000 ____D () C:\FRST
2015-01-06 00:22 - 2015-01-06 00:22 - 00000000 ____D () C:\windows\ERUNT
2015-01-05 23:15 - 2015-01-06 00:17 - 00000000 ____D () C:\AdwCleaner
2015-01-04 18:59 - 2015-01-08 22:28 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\temp
2015-01-04 18:59 - 2015-01-04 18:59 - 00000000 ____D () C:\Dokumente und Einstellungen\User\Lokale Einstellungen\temp
2015-01-04 18:59 - 2015-01-04 18:59 - 00000000 ____D () C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\temp
2015-01-04 18:59 - 2015-01-04 18:59 - 00000000 ____D () C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\temp
2015-01-04 18:59 - 2015-01-04 18:59 - 00000000 ____D () C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temp
2015-01-04 17:59 - 2015-01-04 17:59 - 00000216 _____ () C:\windows\Tasks\Ende des Supports für Microsoft Windows XP – Monatliche Benachrichtigung.job
2015-01-04 16:36 - 2015-01-04 16:36 - 00000000 __HDC () C:\windows\$NtUninstallKB2893294$
2015-01-04 16:36 - 2015-01-04 16:36 - 00000000 __HDC () C:\windows\$NtUninstallKB2757638$
2015-01-04 16:34 - 2015-01-04 18:12 - 00000000 __HDC () C:\windows\$NtUninstallKB2749655$
2015-01-04 16:23 - 2015-01-04 16:23 - 00008192 ____H () C:\windows\system32\config\default.tmp.LOG
2015-01-04 16:23 - 2015-01-04 16:23 - 00000000 ____H () C:\windows\system32\config\system.tmp.LOG
2015-01-04 16:23 - 2015-01-04 16:23 - 00000000 ____H () C:\windows\system32\config\software.tmp.LOG
2015-01-04 16:23 - 2015-01-04 16:23 - 00000000 ____H () C:\windows\system32\config\SAM.tmp.LOG
2015-01-04 16:22 - 2015-01-04 16:22 - 00008192 ____H () C:\windows\system32\config\SECURITY.tmp.LOG
2015-01-04 16:06 - 2015-01-04 16:33 - 00000000 ____D () C:\windows\system32\MRT
2015-01-04 15:58 - 2015-01-04 15:58 - 00000000 __HDC () C:\windows\$NtUninstallKB2892075$
2015-01-04 15:49 - 2015-01-04 15:49 - 00000000 __HDC () C:\windows\$NtUninstallKB2934207$
2015-01-04 15:49 - 2015-01-04 15:49 - 00000000 __HDC () C:\windows\$NtUninstallKB2862330$
2015-01-04 15:49 - 2015-01-04 15:49 - 00000000 __HDC () C:\windows\$NtUninstallKB2727528$
2015-01-04 15:43 - 2015-01-04 15:43 - 00000000 __HDC () C:\windows\$NtUninstallKB2813345$
2015-01-04 15:07 - 2015-01-04 15:07 - 00000000 __HDC () C:\windows\$NtUninstallKB2914368$
2015-01-04 14:53 - 2011-06-26 07:45 - 00256000 _____ () C:\windows\PEV.exe
2015-01-04 14:53 - 2010-11-07 18:20 - 00208896 _____ () C:\windows\MBR.exe
2015-01-04 14:53 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\windows\NIRCMD.exe
2015-01-04 14:53 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\windows\SWREG.exe
2015-01-04 14:53 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\windows\SWSC.exe
2015-01-04 14:53 - 2000-08-31 01:00 - 00212480 _____ (SteelWerX) C:\windows\SWXCACLS.exe
2015-01-04 14:53 - 2000-08-31 01:00 - 00098816 _____ () C:\windows\sed.exe
2015-01-04 14:53 - 2000-08-31 01:00 - 00080412 _____ () C:\windows\grep.exe
2015-01-04 14:53 - 2000-08-31 01:00 - 00068096 _____ () C:\windows\zip.exe
2015-01-04 14:52 - 2015-01-04 18:59 - 00000000 ____D () C:\Qoobox
2015-01-04 14:52 - 2015-01-04 18:12 - 00000000 ____D () C:\windows\erdnt
2015-01-04 13:43 - 2015-01-04 13:43 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Mumble
2015-01-04 13:42 - 2015-01-04 13:42 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Learn2.com
2015-01-03 15:30 - 2014-02-27 00:28 - 00013312 ____N (Microsoft Corporation) C:\windows\system32\xp_eos.exe
2015-01-03 15:30 - 2014-02-27 00:28 - 00013312 ____C (Microsoft Corporation) C:\windows\system32\dllcache\xp_eos.exe
2015-01-03 15:30 - 2013-08-09 01:55 - 00144128 ____C (Microsoft Corporation) C:\windows\system32\dllcache\usbport.sys
2015-01-03 15:30 - 2013-08-09 01:55 - 00032384 ____C (Microsoft Corporation) C:\windows\system32\dllcache\usbccgp.sys
2015-01-03 15:30 - 2013-08-09 01:55 - 00005376 ____C (Microsoft Corporation) C:\windows\system32\dllcache\usbd.sys
2015-01-03 15:30 - 2009-03-18 12:02 - 00030336 ____C (Microsoft Corporation) C:\windows\system32\dllcache\usbehci.sys
2015-01-03 14:45 - 2015-01-08 22:22 - 01633924 _____ () C:\windows\WindowsUpdate.log
2015-01-03 14:00 - 2015-01-03 16:09 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes' Anti-Malware (portable)
2015-01-03 13:58 - 2015-01-03 16:09 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Desktop\mbar
2015-01-02 11:26 - 2015-01-02 11:26 - 00000000 ____D () C:\Programme\Mozilla Firefox
2015-01-02 09:49 - 2015-01-02 19:00 - 00000000 ____D () C:\Programme\onlineTV 10
2015-01-02 09:49 - 2015-01-02 09:49 - 00000705 _____ () C:\Dokumente und Einstellungen\Magic\Desktop\onlineTV 10.lnk
2015-01-02 09:49 - 2015-01-02 09:49 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Startmenü\Programme\onlineTV 10
2015-01-02 09:49 - 2015-01-02 09:49 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Anwendungsdaten\concept design
2015-01-02 09:49 - 2015-01-02 09:49 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\onlineTV 10
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-08 22:16 - 2004-10-11 20:51 - 00000000 ____D () C:\Programme
2015-01-07 22:09 - 2004-10-11 19:59 - 00000000 __SHD () C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Verlauf
2015-01-07 22:08 - 2004-10-11 20:54 - 00000159 _____ () C:\windows\wiadebug.log
2015-01-07 22:08 - 2004-10-11 20:54 - 00000050 _____ () C:\windows\wiaservc.log
2015-01-07 22:08 - 2004-10-11 19:59 - 00000000 __SHD () C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Verlauf
2015-01-07 22:07 - 2013-04-29 19:54 - 00000000 __SHD () C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Verlauf
2015-01-07 21:59 - 2013-04-29 19:54 - 00000190 ___SH () C:\Dokumente und Einstellungen\Magic\ntuser.ini
2015-01-07 21:58 - 2008-11-19 23:08 - 00000000 __SHD () C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Verlauf
2015-01-07 21:58 - 2004-10-11 20:51 - 00000000 __SHD () C:\Dokumente und Einstellungen\Default User\Lokale Einstellungen\Verlauf
2015-01-06 20:43 - 2013-04-29 19:54 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic
2015-01-06 00:49 - 2013-04-29 19:54 - 00000000 __SHD () C:\Dokumente und Einstellungen\Magic\UserData
2015-01-05 23:55 - 2004-10-11 19:59 - 00000000 __SHD () C:\Dokumente und Einstellungen\NetworkService
2015-01-05 23:51 - 2013-04-29 19:54 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Startmenü
2015-01-05 23:51 - 2009-11-28 20:43 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\ICQ
2015-01-05 23:51 - 2004-10-11 20:51 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme
2015-01-05 23:08 - 2014-04-10 20:11 - 00114904 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2015-01-05 22:32 - 2004-10-11 20:01 - 00000000 ____D () C:\windows\Microsoft.NET
2015-01-04 18:56 - 2004-10-12 04:46 - 00000000 _____ () C:\windows\system.ini
2015-01-04 18:00 - 2004-10-11 19:56 - 00000000 ____D () C:\windows\system32\Restore
2015-01-04 17:58 - 2010-02-13 02:21 - 00000000 ____D () C:\Programme\Microsoft Silverlight
2015-01-04 16:39 - 2004-10-11 21:50 - 72613888 _____ () C:\windows\system32\config\software.bak
2015-01-04 16:35 - 2004-10-12 04:46 - 00000582 _____ () C:\windows\win.ini
2015-01-04 16:17 - 2004-10-11 21:47 - 00000000 ____D () C:\windows\system
2015-01-04 16:02 - 2004-10-11 19:55 - 00000072 ____C () C:\windows\vbaddin.ini
2015-01-04 16:01 - 2010-06-04 14:10 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Microsoft Silverlight
2015-01-04 15:59 - 2004-10-11 21:50 - 18612224 _____ () C:\windows\system32\config\system.bak
2015-01-04 15:48 - 2009-12-02 23:04 - 00000000 ____D () C:\Programme\MW2
2015-01-04 15:45 - 2010-12-11 10:53 - 00000000 ____D () C:\Atari
2015-01-04 15:42 - 2009-06-14 00:36 - 00000000 ____D () C:\windows\ie8updates
2015-01-04 15:35 - 2009-02-14 01:13 - 00000000 ____D () C:\windows\system32\XPSViewer
2015-01-04 15:25 - 2013-05-04 13:04 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Anwendungsdaten\vlc
2015-01-04 15:10 - 2008-03-23 16:16 - 00001010 _____ () C:\Dokumente und Einstellungen\Magic\Desktop\Junk.lnk
2015-01-04 14:50 - 2006-12-29 17:29 - 00000000 ____D () C:\Programme\cod2
2015-01-04 13:46 - 2013-02-09 23:30 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Origin
2015-01-04 13:45 - 2013-02-09 23:30 - 00000000 ____D () C:\Programme\Origin
2015-01-04 13:43 - 2012-04-07 20:38 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Anwendungsdaten\Mumble
2015-01-04 13:38 - 2007-08-11 17:09 - 00000000 ____D () C:\Programme\Internet Download Manager
2015-01-03 15:39 - 2004-10-13 09:49 - 00000000 ___HD () C:\windows\$hf_mig$
2015-01-03 14:59 - 2014-04-10 19:53 - 00055000 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbamchameleon.sys
2015-01-03 14:47 - 2004-10-11 21:50 - 00786432 _____ () C:\windows\system32\config\default.bak
2015-01-03 14:47 - 2004-10-11 20:50 - 00262144 _____ () C:\windows\system32\config\SECURITY.bak
2015-01-03 14:47 - 2004-10-11 20:50 - 00262144 _____ () C:\windows\system32\config\SAM.bak
2015-01-03 12:35 - 2013-04-29 19:54 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Startmenü\Programme
2015-01-03 12:35 - 2013-04-24 20:33 - 00000763 _____ () C:\Dokumente und Einstellungen\Magic\Desktop\Revo Uninstaller.lnk
2015-01-02 19:30 - 2013-08-01 19:53 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Anwendungsdaten\foobar2000
2015-01-02 14:53 - 2014-04-10 19:53 - 00000000 ____D () C:\Programme\Malwarebytes Anti-Malware
2015-01-02 14:53 - 2012-05-06 08:57 - 00000000 ____D () C:\Programme\Mozilla Maintenance Service
2015-01-02 14:53 - 2008-01-03 12:01 - 00000000 ____D () C:\windows\OvtCam
2015-01-02 14:51 - 2004-10-11 20:51 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart
2015-01-02 14:47 - 2013-05-03 20:43 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Anwendungsdaten\Skype
2015-01-02 13:50 - 2012-01-29 21:04 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\LogMeIn Hamachi
2015-01-02 13:28 - 2009-03-07 23:47 - 00271200 _____ () C:\windows\system32\PnkBstrB.xtr
2015-01-02 13:28 - 2008-12-27 18:59 - 00138160 _____ () C:\windows\system32\Drivers\PnkBstrK.sys
2015-01-02 13:28 - 2008-12-27 18:58 - 00271200 _____ () C:\windows\system32\PnkBstrB.exe
2015-01-02 13:28 - 2008-12-27 18:58 - 00075136 _____ () C:\windows\system32\PnkBstrA.exe
2015-01-02 13:09 - 2014-04-10 19:53 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Malwarebytes Anti-Malware
2015-01-02 13:09 - 2012-07-26 19:33 - 00000769 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Malwarebytes Anti-Malware.lnk
2015-01-02 12:34 - 2008-05-07 22:08 - 00000069 _____ () C:\windows\NeroDigital.ini
2015-01-02 12:18 - 2014-11-15 13:49 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\Adobe
2015-01-02 12:17 - 2013-01-26 23:44 - 00000884 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2015-01-02 12:17 - 2012-04-09 18:38 - 00701616 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerApp.exe
2015-01-02 12:17 - 2011-05-22 22:06 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerCPLApp.cpl
2015-01-02 11:18 - 2009-10-24 16:40 - 00000000 ____D () C:\Dokumente und Einstellungen\Magic\Anwendungsdaten\Chilirec
2015-01-02 11:03 - 2006-04-24 10:44 - 00124928 _____ () C:\Dokumente und Einstellungen\Magic\Lokale Einstellungen\Anwendungsdaten\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-01-02 10:47 - 2013-05-04 11:40 - 00033032 _____ () C:\Dokumente und Einstellungen\Magic\Anwendungsdaten\wklnhst.dat
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
==================== End Of Log ============================ --- --- ---
--- --- --- |