Hier der Malwarrebyte Log:
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Datenbank Version: 4504
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
24.10.2010 00:08:06
mbam-log-2010-10-24 (00-08-06).txt
Art des Suchlaufs: Quick-Scan
Durchsuchte Objekte: 132077
Laufzeit: 4 Minute(n), 50 Sekunde(n)
Infizierte Speicherprozesse: 0
Infizierte Speichermodule: 0
Infizierte Registrierungsschlüssel: 0
Infizierte Registrierungswerte: 0
Infizierte Dateiobjekte der Registrierung: 0
Infizierte Verzeichnisse: 0
Infizierte Dateien: 0
Infizierte Speicherprozesse:
(Keine bösartigen Objekte gefunden)
Infizierte Speichermodule:
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungsschlüssel:
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungswerte:
(Keine bösartigen Objekte gefunden)
Infizierte Dateiobjekte der Registrierung:
(Keine bösartigen Objekte gefunden)
Infizierte Verzeichnisse:
(Keine bösartigen Objekte gefunden)
Infizierte Dateien:
(Keine bösartigen Objekte gefunden)
Ok hier ist die OTL LOG FILE:
OTL:
OTL Logfile: Code:
OTL logfile created on: 23.10.2010 23:57:28 - Run 1
OTL by OldTimer - Version 3.2.17.0 Folder = E:\Dokumente und Einstellungen\Raphael\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 44,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 74,00% Paging File free
Paging file location(s): E:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = E: | %SystemRoot% = E:\WINDOWS | %ProgramFiles% = E:\Programme
Drive C: | 19,53 Gb Total Space | 4,81 Gb Free Space | 24,64% Space Free | Partition Type: NTFS
Drive E: | 278,55 Gb Total Space | 244,64 Gb Free Space | 87,83% Space Free | Partition Type: NTFS
Drive F: | 244,04 Gb Total Space | 142,64 Gb Free Space | 58,45% Space Free | Partition Type: NTFS
Drive H: | 687,37 Gb Total Space | 364,28 Gb Free Space | 53,00% Space Free | Partition Type: NTFS
Computer Name: RAPHYSPC | User Name: Raphael | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - E:\Dokumente und Einstellungen\Raphael\Desktop\OTL.exe (OldTimer Tools)
PRC - E:\Dokumente und Einstellungen\Raphael\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\Application\chrome.exe (Google Inc.)
PRC - H:\Programme\iTunes\iTunes.exe (Apple Inc.)
PRC - E:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe (Apple Inc.)
PRC - E:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
PRC - E:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\distnoted.exe (Apple Inc.)
PRC - F:\Programme\Tunngle\TnglCtrl.exe (Tunngle.net GmbH)
PRC - E:\Programme\ICQ6Toolbar\ICQ Service.exe ()
PRC - E:\Programme\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
PRC - E:\Programme\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
PRC - F:\Programme\LogMeIn Hamachi\hamachi-2.exe (LogMeIn Inc.)
PRC - E:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
PRC - h:\Programme\Warcraft III\war3.exe (Blizzard Entertainment)
PRC - E:\Programme\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
PRC - E:\Programme\Avira\AntiVir Desktop\avshadow.exe (Avira GmbH)
PRC - E:\Programme\GIGABYTE\EnergySaver\GSvr.exe ()
PRC - E:\Programme\Razer\Arctosa\razerhid.exe (Razer USA Ltd.)
PRC - E:\Programme\Razer\Arctosa\razertra.exe ()
PRC - E:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - F:\Programme\RocketDock\RocketDock.exe ()
========== Modules (SafeList) ==========
MOD - E:\Dokumente und Einstellungen\Raphael\Desktop\OTL.exe (OldTimer Tools)
MOD - E:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll (Microsoft Corporation)
MOD - F:\Programme\RocketDock\RocketDock.dll ()
========== Win32 Services (SafeList) ==========
SRV - (Apple Mobile Device) -- E:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (TunngleService) -- F:\Programme\Tunngle\TnglCtrl.exe (Tunngle.net GmbH)
SRV - (ICQ Service) -- E:\Programme\ICQ6Toolbar\ICQ Service.exe ()
SRV - (AntiVirService) -- E:\Programme\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
SRV - (Hamachi2Svc) -- F:\Programme\LogMeIn Hamachi\hamachi-2.exe (LogMeIn Inc.)
SRV - (AntiVirSchedulerService) -- E:\Programme\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
SRV - (SwitchBoard) -- E:\Programme\Gemeinsame Dateien\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
SRV - (DAUpdaterSvc) -- H:\Programme\Dragon Age\bin_ship\daupdatersvc.service.exe (BioWare)
SRV - (GEST Service) -- E:\Programme\GIGABYTE\EnergySaver\GSvr.exe ()
SRV - (odserv) -- E:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE12\ODSERV.EXE (Microsoft Corporation)
SRV - (ose) -- E:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
SRV - (IDriverT) -- E:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe (Macrovision Corporation)
========== Driver Services (SafeList) ==========
DRV - (XDva370) -- E:\WINDOWS\System32\XDva370.sys File not found
DRV - (XDva362) -- E:\WINDOWS\System32\XDva362.sys File not found
DRV - (gdrv) -- E:\WINDOWS\gdrv.sys (Windows (R) 2000 DDK provider)
DRV - (sptd) -- E:\WINDOWS\System32\Drivers\sptd.sys ()
DRV - (MBAMSwissArmy) -- E:\WINDOWS\system32\drivers\mbamswissarmy.sys (Malwarebytes Corporation)
DRV - (avipbb) -- E:\WINDOWS\system32\drivers\avipbb.sys (Avira GmbH)
DRV - (avgntflt) -- E:\WINDOWS\system32\drivers\avgntflt.sys (Avira GmbH)
DRV - (hamachi) -- E:\WINDOWS\system32\drivers\hamachi.sys (LogMeIn, Inc.)
DRV - (ElbyCDIO) -- E:\WINDOWS\system32\drivers\ElbyCDIO.sys (Elaborate Bytes AG)
DRV - (SCREAMINGBDRIVER) -- E:\WINDOWS\system32\drivers\ScreamingBAudio.sys (Screaming Bee LLC)
DRV - (tap0901t) TAP-Win32 Adapter V9 (Tunngle) -- E:\WINDOWS\system32\drivers\tap0901t.sys (Tunngle.net)
DRV - (VClone) -- E:\WINDOWS\system32\drivers\VClone.sys (Elaborate Bytes AG)
DRV - (nv) -- E:\WINDOWS\system32\drivers\nv4_mini.sys (NVIDIA Corporation)
DRV - (avgio) -- E:\Programme\Avira\AntiVir Desktop\avgio.sys (Avira GmbH)
DRV - (ssmdrv) -- E:\WINDOWS\system32\drivers\ssmdrv.sys (Avira GmbH)
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- E:\WINDOWS\system32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.)
DRV - (RTLE8023xp) -- E:\WINDOWS\system32\drivers\Rtenicxp.sys (Realtek Semiconductor Corporation )
DRV - (ArcFltr) -- E:\WINDOWS\system32\drivers\Arctosa.sys (Razer USA Ltd.)
DRV - (HDAudBus) -- E:\WINDOWS\system32\drivers\hdaudbus.sys (Windows (R) Server 2003 DDK provider)
DRV - (TBPanel) -- E:\WINDOWS\System32\drivers\TBPanel.sys (Windows (R) 2000 DDK provider)
DRV - (Cardex) -- E:\WINDOWS\system32\drivers\TBPanel.sys (Windows (R) 2000 DDK provider)
DRV - (SaiH5F0D) -- E:\WINDOWS\system32\drivers\SaiH5F0D.sys (Saitek)
DRV - (SaiU5F0D) -- E:\WINDOWS\system32\drivers\SaiU5F0D.sys (Saitek)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2431245
IE - HKCU\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKCU\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - E:\Programme\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKCU\..\URLSearchHook: {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - E:\Programme\softonic-de3\tbsoft.dll (Conduit Ltd.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..browser.search.selectedEngine: "ICQ Search"
FF - prefs.js..browser.startup.homepage: "hxxp://search.conduit.com/?ctid=CT2431245&SearchSource=13"
FF - prefs.js..extensions.enabledItems: eafo3fflauncher@ea.com:1.1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {872b5b88-9db5-4310-bdd0-ac189557e5f5}:2.7.0.14
FF - prefs.js..extensions.enabledItems: {ACAA314B-EEBA-48e4-AD47-84E31C44796C}:1.0.1
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {800b5000-a755-47e1-992b-48a1c1357f07}:1.1.6
FF - prefs.js..extensions.enabledItems: {cc05a3e3-64c3-4af2-bfc1-af0d66b69065}:2.7.1.3
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Components: F:\Programme\Mozilla Firefox\components [2010.09.25 13:21:51 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Plugins: F:\Programme\Mozilla Firefox\plugins [2010.09.25 13:21:51 | 000,000,000 | ---D | M]
[2010.06.25 21:37:23 | 000,000,000 | ---D | M] -- E:\Dokumente und Einstellungen\Raphael\Anwendungsdaten\Mozilla\Extensions
[2010.10.23 19:00:27 | 000,000,000 | ---D | M] -- E:\Dokumente und Einstellungen\Raphael\Anwendungsdaten\Mozilla\Firefox\Profiles\ovb6z24h.default\extensions
[2010.07.03 16:48:35 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- E:\Dokumente und Einstellungen\Raphael\Anwendungsdaten\Mozilla\Firefox\Profiles\ovb6z24h.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010.09.24 17:51:16 | 000,000,000 | ---D | M] (No name found) -- E:\Dokumente und Einstellungen\Raphael\Anwendungsdaten\Mozilla\Firefox\Profiles\ovb6z24h.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2010.07.22 22:03:54 | 000,000,000 | ---D | M] (DVDVideoSoftTB Toolbar) -- E:\Dokumente und Einstellungen\Raphael\Anwendungsdaten\Mozilla\Firefox\Profiles\ovb6z24h.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}
[2010.07.22 21:23:18 | 000,000,000 | ---D | M] (No name found) -- E:\Dokumente und Einstellungen\Raphael\Anwendungsdaten\Mozilla\Firefox\Profiles\ovb6z24h.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
[2010.09.24 18:19:07 | 000,000,000 | ---D | M] (softonic-de3 Toolbar) -- E:\Dokumente und Einstellungen\Raphael\Anwendungsdaten\Mozilla\Firefox\Profiles\ovb6z24h.default\extensions\{cc05a3e3-64c3-4af2-bfc1-af0d66b69065}
[2010.07.06 17:12:54 | 000,000,000 | ---D | M] -- E:\Dokumente und Einstellungen\Raphael\Anwendungsdaten\Mozilla\Firefox\Profiles\ovb6z24h.default\extensions\eafo3fflauncher@ea.com
[2010.10.23 19:00:28 | 000,001,056 | ---- | M] () -- E:\Dokumente und Einstellungen\Raphael\Anwendungsdaten\Mozilla\Firefox\Profiles\ovb6z24h.default\searchplugins\icqplugin.xml
O1 HOSTS File: ([2010.10.23 20:53:47 | 000,424,283 | R--- | M]) - E:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 practivate.adobe.com
O1 - Hosts: 127.0.0.1 ereg.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com
O1 - Hosts: 127.0.0.1 wip3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com
O1 - Hosts: 127.0.0.1 activate-sea.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com
O1 - Hosts: 127.0.0.1 adobe.activate.com
O1 - Hosts: 127.0.0.1 adobeereg.com
O1 - Hosts: 127.0.0.1 www.adobeereg.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 125.252.224.90
O1 - Hosts: 127.0.0.1 125.252.224.91
O1 - Hosts: 127.0.0.1 hl2rcv.adobe.com
O1 - Hosts: 127.0.0.1 www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 www.008k.com
O1 - Hosts: 14611 more lines...
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - E:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (softonic-de3 Toolbar) - {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - E:\Programme\softonic-de3\tbsoft.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4FE6-8A56-BBB695989046} - E:\Programme\ICQ6Toolbar\ICQToolBar.dll (ICQ)
O3 - HKLM\..\Toolbar: (softonic-de3 Toolbar) - {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - E:\Programme\softonic-de3\tbsoft.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (softonic-de3 Toolbar) - {CC05A3E3-64C3-4AF2-BFC1-AF0D66B69065} - E:\Programme\softonic-de3\tbsoft.dll (Conduit Ltd.)
O4 - HKLM..\Run: [Alcmtr] E:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [Arctosa] E:\Programme\Razer\Arctosa\razerhid.exe (Razer USA Ltd.)
O4 - HKLM..\Run: [avgnt] E:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [KernelFaultCheck] File not found
O4 - HKLM..\Run: [NvCplDaemon] E:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] E:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKCU..\Run: [ccleaner] F:\Programme\CCleaner\CCleaner.exe (Piriform Ltd)
O4 - HKCU..\Run: [RocketDock] F:\Programme\RocketDock\RocketDock.exe ()
O4 - HKCU..\Run: [Steam] f:\programme\steam\steam.exe (Valve Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Free YouTube to Mp3 Converter - E:\Dokumente und Einstellungen\Raphael\Anwendungsdaten\DVDVideoSoftIEHelpers\youtubetomp3.htm ()
O9 - Extra Button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - E:\Programme\ICQ7.2\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - E:\Programme\ICQ7.2\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - E:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - E:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - E:\Programme\Bonjour\mdnsNSP.dll (Apple Inc.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - E:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - E:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - E:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - E:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - E:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - E:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - E:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - E:\Programme\Gemeinsame Dateien\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - E:\Programme\Gemeinsame Dateien\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - E:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - E:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - E:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Die derzeitige Homepage) - About:Home
O24 - Desktop WallPaper: E:\Dokumente und Einstellungen\Raphael\Lokale Einstellungen\Anwendungsdaten\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: E:\Dokumente und Einstellungen\Raphael\Lokale Einstellungen\Anwendungsdaten\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{f36a1382-a4ce-11df-a8c9-00241dd025a8}\Shell - "" = AutoRun
O33 - MountPoints2\{f36a1382-a4ce-11df-a8c9-00241dd025a8}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{f36a1382-a4ce-11df-a8c9-00241dd025a8}\Shell\AutoRun\command - "" = J:\autorun.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2010.10.23 23:47:06 | 000,575,488 | ---- | C] (OldTimer Tools) -- E:\Dokumente und Einstellungen\Raphael\Desktop\OTL.exe
[2010.10.23 19:52:35 | 000,000,000 | ---D | C] -- E:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy
[2010.10.23 19:19:22 | 000,139,264 | ---- | C] (Blizzard Entertainment) -- E:\WINDOWS\War3Unin.exe
[2010.10.21 18:42:51 | 000,000,000 | ---D | C] -- E:\Dokumente und Einstellungen\Raphael\Desktop\S4
[2010.10.20 14:42:53 | 000,258,352 | ---- | C] (Microsoft Corporation) -- E:\WINDOWS\System32\unicows.dll
[2010.10.16 16:38:27 | 000,000,000 | ---D | C] -- E:\Dokumente und Einstellungen\Raphael\Anwendungsdaten\GetRightToGo
[2010.10.14 18:47:13 | 000,000,000 | ---D | C] -- E:\Programme\Gemeinsame Dateien\Skype
[2010.10.11 20:08:43 | 000,000,000 | ---D | C] -- E:\Dokumente und Einstellungen\All Users\Anwendungsdaten\SanDisk
[2010.10.11 20:07:41 | 000,000,000 | ---D | C] -- E:\Dokumente und Einstellungen\Raphael\Lokale Einstellungen\Anwendungsdaten\SanDisk
[2010.10.11 20:07:33 | 000,000,000 | ---D | C] -- E:\WINDOWS\XSxS
[2010.10.11 20:07:33 | 000,000,000 | ---D | C] -- E:\Programme\Xenocode
[2010.10.11 20:07:33 | 000,000,000 | ---D | C] -- E:\Dokumente und Einstellungen\Raphael\Lokale Einstellungen\Anwendungsdaten\Xenocode
[2010.10.07 17:02:17 | 000,000,000 | ---D | C] -- E:\Dokumente und Einstellungen\Raphael\Anwendungsdaten\Booster
[2010.09.25 13:24:32 | 000,000,000 | ---D | C] -- E:\Programme\iPod
[2010.09.25 13:21:29 | 000,000,000 | ---D | C] -- E:\Programme\QuickTime
[2010.09.25 13:19:58 | 000,000,000 | ---D | C] -- E:\Programme\Bonjour
[2010.09.25 13:14:58 | 000,274,288 | ---- | C] (Microsoft Corporation) -- E:\WINDOWS\System32\mucltui.dll
[2010.09.25 13:14:58 | 000,017,776 | ---- | C] (Microsoft Corporation) -- E:\WINDOWS\System32\mucltui.dll.mui
[2010.09.24 18:19:11 | 000,000,000 | ---D | C] -- E:\Programme\Gemeinsame Dateien\Windows Live
[2010.09.24 18:19:08 | 000,000,000 | ---D | C] -- E:\Programme\softonic-de3
[2010.09.24 18:19:08 | 000,000,000 | ---D | C] -- E:\Dokumente und Einstellungen\Raphael\Lokale Einstellungen\Anwendungsdaten\softonic-de3
[2010.09.24 18:06:02 | 000,000,000 | ---D | C] -- E:\Programme\MessengerPlus! 3
[2010.09.24 17:51:21 | 000,000,000 | ---D | C] -- E:\Programme\ICQ6Toolbar
[2010.09.24 17:51:16 | 000,000,000 | ---D | C] -- E:\Dokumente und Einstellungen\All Users\Anwendungsdaten\ICQ
[2010.09.24 17:50:58 | 000,000,000 | ---D | C] -- E:\Dokumente und Einstellungen\Raphael\Anwendungsdaten\ICQ
[2010.09.24 17:50:55 | 000,000,000 | ---D | C] -- E:\Dokumente und Einstellungen\Raphael\Lokale Einstellungen\Anwendungsdaten\AOL
[2010.09.24 17:50:47 | 000,000,000 | ---D | C] -- E:\Programme\ICQ7.2
========== Files - Modified Within 30 Days ==========
[2010.10.23 23:47:10 | 000,575,488 | ---- | M] (OldTimer Tools) -- E:\Dokumente und Einstellungen\Raphael\Desktop\OTL.exe
[2010.10.23 23:41:00 | 000,001,216 | ---- | M] () -- E:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-583907252-796845957-1547161642-1003UA.job
[2010.10.23 23:20:00 | 000,001,090 | ---- | M] () -- E:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2010.10.23 20:53:47 | 000,424,283 | R--- | M] () -- E:\WINDOWS\System32\drivers\etc\hosts
[2010.10.23 19:52:41 | 000,000,773 | ---- | M] () -- E:\Dokumente und Einstellungen\Raphael\Desktop\Spybot - Search & Destroy.lnk
[2010.10.23 19:46:14 | 000,076,524 | ---- | M] () -- E:\WINDOWS\War3Unin.dat
[2010.10.23 19:31:54 | 000,017,488 | ---- | M] (Windows (R) 2000 DDK provider) -- E:\WINDOWS\gdrv.sys
[2010.10.23 19:31:34 | 000,000,262 | ---- | M] () -- E:\WINDOWS\tasks\WGASetup.job
[2010.10.23 19:31:33 | 000,235,289 | ---- | M] () -- E:\WINDOWS\System32\NvApps.xml
[2010.10.23 19:31:31 | 000,001,086 | ---- | M] () -- E:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2010.10.23 19:31:22 | 000,002,048 | --S- | M] () -- E:\WINDOWS\bootstat.dat
[2010.10.23 19:29:27 | 000,000,000 | ---- | M] () -- E:\WINDOWS\System32\Access.dat
[2010.10.23 19:24:08 | 000,139,264 | ---- | M] (Blizzard Entertainment) -- E:\WINDOWS\War3Unin.exe
[2010.10.23 19:24:08 | 000,002,829 | ---- | M] () -- E:\WINDOWS\War3Unin.pif
[2010.10.23 16:41:00 | 000,001,164 | ---- | M] () -- E:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-583907252-796845957-1547161642-1003Core.job
[2010.10.21 19:21:06 | 000,000,276 | ---- | M] () -- E:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2010.10.20 14:42:46 | 000,258,352 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\System32\unicows.dll
[2010.10.18 13:30:42 | 000,002,206 | ---- | M] () -- E:\WINDOWS\System32\wpa.dbl
[2010.10.17 22:48:06 | 000,013,490 | ---- | M] () -- E:\Dokumente und Einstellungen\Raphael\Desktop\Mannbärschwein.docx
[2010.10.15 13:30:01 | 003,597,832 | ---- | M] () -- E:\WINDOWS\System32\FNTCACHE.DAT
[2010.10.14 22:45:12 | 000,001,393 | ---- | M] () -- E:\WINDOWS\imsins.BAK
[2010.10.12 18:46:29 | 000,002,047 | ---- | M] () -- E:\Dokumente und Einstellungen\All Users\Desktop\iTunes.lnk
[2010.10.11 20:10:34 | 000,000,231 | ---- | M] () -- E:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft.SqlServer.Compact.351.32.bc
[2010.10.08 17:22:35 | 000,086,701 | ---- | M] () -- E:\Dokumente und Einstellungen\Raphael\Desktop\Nexus Wars TPZ.SC2Map
[2010.10.07 22:30:40 | 000,452,310 | ---- | M] () -- E:\WINDOWS\System32\perfh007.dat
[2010.10.07 22:30:40 | 000,435,396 | ---- | M] () -- E:\WINDOWS\System32\perfh009.dat
[2010.10.07 22:30:40 | 000,081,118 | ---- | M] () -- E:\WINDOWS\System32\perfc007.dat
[2010.10.07 22:30:40 | 000,068,292 | ---- | M] () -- E:\WINDOWS\System32\perfc009.dat
[2010.10.07 17:04:11 | 000,000,350 | ---- | M] () -- E:\WINDOWS\tasks\AdobeAAMUpdater-1.0-RAPHYSPC-Raphael.job
[2010.10.06 13:49:46 | 000,139,152 | ---- | M] () -- E:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010.10.06 13:49:46 | 000,139,152 | ---- | M] () -- E:\Dokumente und Einstellungen\Raphael\Anwendungsdaten\PnkBstrK.sys
[2010.10.06 13:49:20 | 000,794,408 | ---- | M] () -- E:\WINDOWS\System32\pbsvc.exe
[2010.09.29 20:29:37 | 000,000,114 | ---- | M] () -- E:\Dokumente und Einstellungen\Raphael\SciTE.session
[2010.09.29 13:20:56 | 000,001,887 | ---- | M] () -- E:\Dokumente und Einstellungen\All Users\Desktop\Google Earth.lnk
[2010.09.25 13:21:44 | 000,001,584 | ---- | M] () -- E:\Dokumente und Einstellungen\All Users\Desktop\QuickTime Player.lnk
[2010.09.24 17:51:38 | 000,001,451 | ---- | M] () -- E:\Dokumente und Einstellungen\All Users\Desktop\ICQ7.2.lnk
========== Files Created - No Company Name ==========
[2010.10.23 19:52:41 | 000,000,773 | ---- | C] () -- E:\Dokumente und Einstellungen\Raphael\Desktop\Spybot - Search & Destroy.lnk
[2010.10.23 19:19:23 | 000,076,524 | ---- | C] () -- E:\WINDOWS\War3Unin.dat
[2010.10.23 19:19:22 | 000,002,829 | ---- | C] () -- E:\WINDOWS\War3Unin.pif
[2010.10.17 22:48:04 | 000,013,490 | ---- | C] () -- E:\Dokumente und Einstellungen\Raphael\Desktop\Mannbärschwein.docx
[2010.10.11 20:08:46 | 000,000,231 | ---- | C] () -- E:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft.SqlServer.Compact.351.32.bc
[2010.10.08 16:36:00 | 000,086,701 | ---- | C] () -- E:\Dokumente und Einstellungen\Raphael\Desktop\Nexus Wars TPZ.SC2Map
[2010.09.29 20:29:01 | 000,000,114 | ---- | C] () -- E:\Dokumente und Einstellungen\Raphael\SciTE.session
[2010.09.29 13:20:56 | 000,001,887 | ---- | C] () -- E:\Dokumente und Einstellungen\All Users\Desktop\Google Earth.lnk
[2010.09.25 13:25:11 | 000,002,047 | ---- | C] () -- E:\Dokumente und Einstellungen\All Users\Desktop\iTunes.lnk
[2010.09.25 13:21:44 | 000,001,584 | ---- | C] () -- E:\Dokumente und Einstellungen\All Users\Desktop\QuickTime Player.lnk
[2010.09.24 17:51:38 | 000,001,451 | ---- | C] () -- E:\Dokumente und Einstellungen\All Users\Desktop\ICQ7.2.lnk
[2010.08.23 00:44:39 | 001,661,864 | ---- | C] () -- E:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\FontCache3.0.0.0.dat
[2010.08.06 14:41:48 | 000,000,002 | ---- | C] () -- E:\Dokumente und Einstellungen\Raphael\Anwendungsdaten\ceville_console_history.txt
[2010.08.04 20:09:45 | 000,000,339 | ---- | C] () -- E:\WINDOWS\CoDUO.INI
[2010.08.04 19:48:23 | 000,000,766 | ---- | C] () -- E:\WINDOWS\CoD.INI
[2010.07.09 21:00:32 | 000,041,872 | ---- | C] () -- E:\WINDOWS\System32\xfcodec.dll
[2010.07.06 17:14:36 | 000,139,152 | ---- | C] () -- E:\Dokumente und Einstellungen\Raphael\Anwendungsdaten\PnkBstrK.sys
[2010.07.02 18:03:32 | 000,354,816 | ---- | C] () -- E:\WINDOWS\System32\psisdecd.dll
[2010.07.01 19:20:22 | 000,000,040 | ---- | C] () -- E:\WINDOWS\System32\Sx5363.ini
[2010.06.30 11:22:19 | 000,697,328 | ---- | C] () -- E:\WINDOWS\System32\drivers\sptd.sys
[2010.06.25 22:45:51 | 000,139,152 | ---- | C] () -- E:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010.06.25 16:26:13 | 000,706,566 | ---- | C] () -- E:\Programme\unins000.exe
[2010.06.25 16:26:13 | 000,035,586 | ---- | C] () -- E:\Programme\unins000.dat
[2010.06.25 00:20:10 | 000,004,161 | ---- | C] () -- E:\WINDOWS\ODBCINST.INI
[2010.06.24 23:38:09 | 000,007,680 | ---- | C] () -- E:\Dokumente und Einstellungen\Raphael\Lokale Einstellungen\Anwendungsdaten\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.01.11 09:24:40 | 000,001,683 | ---- | C] () -- E:\WINDOWS\System32\oeminfo.ini
[2009.07.03 05:11:18 | 000,007,756 | ---- | C] () -- E:\WINDOWS\cadx2.ini
[2009.06.10 08:29:34 | 001,724,416 | ---- | C] () -- E:\WINDOWS\System32\nvwdmcpl.dll
[2009.06.10 08:29:34 | 001,101,824 | ---- | C] () -- E:\WINDOWS\System32\nvwimg.dll
[2009.06.10 08:29:34 | 000,466,944 | ---- | C] () -- E:\WINDOWS\System32\nvshell.dll
[2009.06.10 08:29:32 | 001,507,328 | ---- | C] () -- E:\WINDOWS\System32\nview.dll
[2009.04.22 00:19:06 | 000,172,173 | ---- | C] () -- E:\WINDOWS\System32\xlive.dll.cat
< End of report > --- --- ---
und hier den Etras Log:
OTL Logfile: Code:
OTL Extras logfile created on: 23.10.2010 23:57:28 - Run 1
OTL by OldTimer - Version 3.2.17.0 Folder = E:\Dokumente und Einstellungen\Raphael\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 44,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 74,00% Paging File free
Paging file location(s): E:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = E: | %SystemRoot% = E:\WINDOWS | %ProgramFiles% = E:\Programme
Drive C: | 19,53 Gb Total Space | 4,81 Gb Free Space | 24,64% Space Free | Partition Type: NTFS
Drive E: | 278,55 Gb Total Space | 244,64 Gb Free Space | 87,83% Space Free | Partition Type: NTFS
Drive F: | 244,04 Gb Total Space | 142,64 Gb Free Space | 58,45% Space Free | Partition Type: NTFS
Drive H: | 687,37 Gb Total Space | 364,28 Gb Free Space | 53,00% Space Free | Partition Type: NTFS
Computer Name: RAPHYSPC | User Name: Raphael | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "E:\Programme\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- E:\Programme\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "E:\Programme\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"E:\Programme\ICQ7.2\ICQ.exe" = E:\Programme\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2 -- (ICQ, LLC.)
"E:\Programme\ICQ7.2\aolload.exe" = E:\Programme\ICQ7.2\aolload.exe:*:Enabled:aolload.exe -- (AOL LLC)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"F:\Programme\Steam\Steam.exe" = F:\Programme\Steam\Steam.exe:*:Enabled:Steam -- (Valve Corporation)
"E:\Programme\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe" = E:\Programme\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher -- (Ubisoft)
"H:\Programme\Ubisoft\Assassin's Creed II\AssassinsCreedIIGame.exe" = H:\Programme\Ubisoft\Assassin's Creed II\AssassinsCreedIIGame.exe:*:Enabled:Assassin's Creed II -- ()
"H:\Programme\Ubisoft\Assassin's Creed II\AssassinsCreedII.exe" = H:\Programme\Ubisoft\Assassin's Creed II\AssassinsCreedII.exe:*:Enabled:Assassin's Creed II Update -- (Ubisoft)
"H:\Programme\Ubisoft\Assassin's Creed II\UPlayBrowser.exe" = H:\Programme\Ubisoft\Assassin's Creed II\UPlayBrowser.exe:*:Enabled:Assassin's Creed II Uplay -- (Ubisoft Entertainment)
"H:\Programme\Electronic Arts\Battlefield Bad Company 2\BFBC2Updater.exe" = H:\Programme\Electronic Arts\Battlefield Bad Company 2\BFBC2Updater.exe:*:Enabled:Battlefield: Bad Company™ 2 -- (EA Digital Illusions CE AB)
"E:\Programme\TeamViewer\Version5\TeamViewer.exe" = E:\Programme\TeamViewer\Version5\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application -- (TeamViewer GmbH)
"F:\Programme\BitTorrent\bittorrent.exe" = F:\Programme\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent -- (BitTorrent, Inc.)
"H:\Programme\Electronic Arts\Battlefield Bad Company 2\BFBC2Game.exe" = H:\Programme\Electronic Arts\Battlefield Bad Company 2\BFBC2Game.exe:*:Enabled:Battlefield: Bad Company™ 2 -- (EA Digital Illusions CE AB)
"H:\Programme\Dragon Age\bin_ship\daorigins.exe" = H:\Programme\Dragon Age\bin_ship\daorigins.exe:*:Enabled:Dragon Age Origins -Spiel -- (BioWare)
"H:\Programme\Dragon Age\DAOriginsLauncher.exe" = H:\Programme\Dragon Age\DAOriginsLauncher.exe:*:Enabled:Dragon Age Origins -Launcher -- (BioWare)
"H:\Programme\Dragon Age\bin_ship\daupdatersvc.service.exe" = H:\Programme\Dragon Age\bin_ship\daupdatersvc.service.exe:*:Enabled:Dragon Age Origins -Inhaltsupdater -- (BioWare)
"F:\Programme\Steam\steamapps\common\eve online\bin\ExeFile.exe" = F:\Programme\Steam\steamapps\common\eve online\bin\ExeFile.exe:*:Enabled:CCP ExeFile -- (CCP hf.)
"H:\Programme\505games\1C\Men of War\mow_mp.exe" = H:\Programme\505games\1C\Men of War\mow_mp.exe:*:Enabled:Main executable -- ("Best Way" Corp)
"H:\Programme\Gameforge4D\AirRivals_EN\Launcher.atm" = H:\Programme\Gameforge4D\AirRivals_EN\Launcher.atm:Enabled:GameExe2 -- File not found
"H:\Programme\Gameforge4D\AirRivals_EN\Res-Voip\SCVoIP.exe" = H:\Programme\Gameforge4D\AirRivals_EN\Res-Voip\SCVoIP.exe:Enabled:GameVoIP -- File not found
"H:\Programme\505games\1C\Men of War\outfront_mp.exe" = H:\Programme\505games\1C\Men of War\outfront_mp.exe:*:Enabled:Main executable -- ("Best Way" Corp)
"H:\Programme\Gameforge4D\AirRivals_DE\Launcher.atm" = H:\Programme\Gameforge4D\AirRivals_DE\Launcher.atm:Enabled:GameExe2 -- ()
"H:\Programme\Gameforge4D\AirRivals_DE\Res-Voip\SCVoIP.exe" = H:\Programme\Gameforge4D\AirRivals_DE\Res-Voip\SCVoIP.exe:Enabled:GameVoIP -- (Masang Soft)
"H:\Programme\EA Sports\FIFA 08\FIFA08.exe" = H:\Programme\EA Sports\FIFA 08\FIFA08.exe:*:Enabled:FIFA08 -- ()
"F:\Programme\Tunngle\tnglctrl.exe" = F:\Programme\Tunngle\tnglctrl.exe:*:Enabled:Tunngle Service -- (Tunngle.net GmbH)
"F:\Programme\Tunngle\tunngle.exe" = F:\Programme\Tunngle\tunngle.exe:*:Enabled:Tunngle Client -- (Tunngle.net GmbH)
"H:\Programme\EA Sports\FIFA Online\NFE.exe" = H:\Programme\EA Sports\FIFA Online\NFE.exe:*:Enabled:EA SPORTS™ FIFA Online -- (Electronic Arts)
"H:\Programme\Left 4 Dead 2\left4dead2.exe" = H:\Programme\Left 4 Dead 2\left4dead2.exe:*:Enabled:left4dead2 -- ()
"H:\Programme\Activision\Modern Warfare 2\iw4sp.exe" = H:\Programme\Activision\Modern Warfare 2\iw4sp.exe:*:Enabled:iw4sp -- ()
"H:\Programme\Activision\Modern Warfare 2\TCSB.exe" = H:\Programme\Activision\Modern Warfare 2\TCSB.exe:*:Enabled:TC Server Browser for Tunngle -- ()
"H:\Programme\Activision\Modern Warfare 2\IWNetServer.exe" = H:\Programme\Activision\Modern Warfare 2\IWNetServer.exe:*:Enabled:IWNetServer -- (Microsoft)
"H:\Programme\Activision\Modern Warfare 2\iw4mp.exe" = H:\Programme\Activision\Modern Warfare 2\iw4mp.exe:*:Enabled: -- ()
"F:\Programme\BuddyW\BuddyW.exe" = F:\Programme\BuddyW\BuddyW.exe:*:Enabled:BuddyW -- ()
"H:\Programme\Starcraft II Beta\Versions\Base15392\SC2.exe" = H:\Programme\Starcraft II Beta\Versions\Base15392\SC2.exe:*:Enabled:StarCraft II -- (Blizzard Entertainment)
"H:\Programme\Starcraft II Beta\StarCraft II.exe" = H:\Programme\Starcraft II Beta\StarCraft II.exe:*:Enabled:Blizzard Launcher -- (Blizzard Entertainment)
"F:\Programme\Steam\steamapps\common\napoleon total war\Napoleon.exe" = F:\Programme\Steam\steamapps\common\napoleon total war\Napoleon.exe:*:Enabled:Napoleon: Total War -- (The Creative Assembly Ltd)
"F:\Programme\Steam\steamapps\common\aliens vs predator\AvP_Launcher.exe" = F:\Programme\Steam\steamapps\common\aliens vs predator\AvP_Launcher.exe:*:Enabled:Aliens vs. Predator -- (Sega Europe Limited)
"F:\Programme\Steam\steamapps\common\aliens vs predator\AvP_DX11.exe" = F:\Programme\Steam\steamapps\common\aliens vs predator\AvP_DX11.exe:*:Enabled:Aliens vs. Predator -- (Sega Europe Limited)
"F:\Programme\Steam\steamapps\common\aliens vs predator\AvP.exe" = F:\Programme\Steam\steamapps\common\aliens vs predator\AvP.exe:*:Enabled:Aliens vs. Predator -- (Sega Europe Limited)
"F:\Programme\Steam\steamapps\common\aliens vs predator dedicated server\AvP_CLI.exe" = F:\Programme\Steam\steamapps\common\aliens vs predator dedicated server\AvP_CLI.exe:*:Enabled:Aliens vs Predator Dedicated Server -- ()
"H:\Programme\Ubisoft\Related Designs\ANNO 1404\tools\Anno4Web.exe" = H:\Programme\Ubisoft\Related Designs\ANNO 1404\tools\Anno4Web.exe:*:Enabled:Anno4Web -- ()
"F:\Programme\Steam\steamapps\common\r.u.s.e. free week end\Ruse.exe" = F:\Programme\Steam\steamapps\common\r.u.s.e. free week end\Ruse.exe:*:Enabled:R.U.S.E. Free Week End -- (Eugen Systems)
"F:\Programme\Steam\steamapps\common\alien swarm\srcds.exe" = F:\Programme\Steam\steamapps\common\alien swarm\srcds.exe:*:Enabled:Alien Swarm Dedicated Server -- ()
"F:\Programme\Steam\steamapps\common\lead and gold gangs of the wild west\lag_win32_public_dev.exe" = F:\Programme\Steam\steamapps\common\lead and gold gangs of the wild west\lag_win32_public_dev.exe:*:Enabled:Lead and Gold - Gangs of the Wild West -- ()
"H:\Programme\Electronic Arts\Die Schlacht um Mittelerde II\game.dat" = H:\Programme\Electronic Arts\Die Schlacht um Mittelerde II\game.dat:*:Enabled:Die Schlacht um Mittelerde™ II -- (Electronic Arts Inc.)
"H:\Programme\Electronic Arts\Die Schlacht um Mittelerde II\patchget.dat" = H:\Programme\Electronic Arts\Die Schlacht um Mittelerde II\patchget.dat:*:Enabled:patchgrabber -- (Electronic Arts)
"H:\Programme\EA GAMES\Die Schlacht um Mittelerde(tm)\game.dat" = H:\Programme\EA GAMES\Die Schlacht um Mittelerde(tm)\game.dat:*:Enabled:Die Schlacht um Mittelerde (tm) -- ()
"H:\Programme\EA GAMES\Die Schlacht um Mittelerde(tm)\patchget.dat" = H:\Programme\EA GAMES\Die Schlacht um Mittelerde(tm)\patchget.dat:*:Enabled:patchgrabber -- (Electronic Arts)
"H:\Programme\Electronic Arts\Aufstieg des Hexenkönigs\game.dat" = H:\Programme\Electronic Arts\Aufstieg des Hexenkönigs\game.dat:*:Enabled:Der Herr der Ringe™, Aufstieg des Hexenkönigs™ -- (Electronic Arts Inc.)
"H:\Programme\Electronic Arts\Aufstieg des Hexenkönigs\patchget.dat" = H:\Programme\Electronic Arts\Aufstieg des Hexenkönigs\patchget.dat:*:Enabled:patchgrabber -- (Electronic Arts)
"H:\Programme\Call of Duty - World at War\CoDWaW LanFixed.exe" = H:\Programme\Call of Duty - World at War\CoDWaW LanFixed.exe:*:Enabled:Call of Duty(R): World at War Campaign/Coop -- (Activision Blizzard, Inc.)
"H:\Programme\Call of Duty - World at War\CoDWaWmp.exe" = H:\Programme\Call of Duty - World at War\CoDWaWmp.exe:*:Enabled:Call of Duty(R): World at War Multiplayer -- (Activision Blizzard, Inc.)
"H:\Programme\Electronic Arts\Der Herr der Ringe® - Die Eroberung™\Conquest.exe" = H:\Programme\Electronic Arts\Der Herr der Ringe® - Die Eroberung™\Conquest.exe:*:Enabled:Game -- (Electronic Arts Inc.)
"H:\Programme\Call of Duty\CoDUOMP.exe" = H:\Programme\Call of Duty\CoDUOMP.exe:*:Enabled:CoDUOMP -- ()
"H:\Programme\Call of Duty\CoDMP.exe" = H:\Programme\Call of Duty\CoDMP.exe:*:Enabled:CoDMP -- ()
"H:\Programme\Mass Effect 2 Demo\Binaries\MassEffect2.exe" = H:\Programme\Mass Effect 2 Demo\Binaries\MassEffect2.exe:*:Enabled:Mass Effect 2 Demo -Spiel -- (BioWare)
"H:\Programme\Mass Effect 2 Demo\MassEffect2Launcher.exe" = H:\Programme\Mass Effect 2 Demo\MassEffect2Launcher.exe:*:Enabled:Mass Effect 2 Demo -Launcher -- (BioWare)
"H:\Programme\tasofro\th123\th123.exe" = H:\Programme\tasofro\th123\th123.exe:*:Enabled:th123 -- ()
"H:\Programme\CAPCOM\STREETFIGHTERIV\StreetFighterIV.exe" = H:\Programme\CAPCOM\STREETFIGHTERIV\StreetFighterIV.exe:*:Enabled:STREET FIGHTER IV -- (CAPCOM U.S.A., INC.)
"F:\Programme\Xfire\Xfire.exe" = F:\Programme\Xfire\Xfire.exe:*:Enabled:Xfire -- (Xfire Inc.)
"F:\Programme\Steam\steamapps\common\boostertrooper\BTroopers.exe" = F:\Programme\Steam\steamapps\common\boostertrooper\BTroopers.exe:*:Enabled:Booster Trooper -- (DnS Development)
"H:\Programme\OGPlanet\LostSaga\autoupgrade.exe" = H:\Programme\OGPlanet\LostSaga\autoupgrade.exe:*:Enabled:LostSaga(upgrade) -- (IO Entertainment Co., Ltd.)
"H:\Programme\OGPlanet\LostSaga\lostsaga.exe" = H:\Programme\OGPlanet\LostSaga\lostsaga.exe:*:Enabled:LostSaga(client) -- (IO Entertainment Co., Ltd.)
"E:\Programme\Google\Google Earth\client\googleearth.exe" = E:\Programme\Google\Google Earth\client\googleearth.exe:*:Enabled:Google Earth -- (Google)
"H:\Programme\StarCraft II\StarCraft II.exe" = H:\Programme\StarCraft II\StarCraft II.exe:*:Enabled:Blizzard Launcher -- (Blizzard Entertainment)
"H:\Programme\Electronic Arts\Command & Conquer 4 Tiberian Twilight\Data\CNC4.game" = H:\Programme\Electronic Arts\Command & Conquer 4 Tiberian Twilight\Data\CNC4.game:*:Enabled:Command & Conquer™ 4 -- (Electronic Arts Inc.)
"H:\Programme\StarCraft II\Versions\Base15405\SC2.exe" = H:\Programme\StarCraft II\Versions\Base15405\SC2.exe:*:Enabled:StarCraft II -- (Blizzard Entertainment, Inc.)
"H:\Programme\EA Sports\FIFA 11 Demo\Game\fifa.exe" = H:\Programme\EA Sports\FIFA 11 Demo\Game\fifa.exe:*:Enabled:FIFA 11 -- (Electronic Arts)
"H:\Programme\StarCraft II\Versions\Base16561\SC2.exe" = H:\Programme\StarCraft II\Versions\Base16561\SC2.exe:*:Enabled:StarCraft II -- (Blizzard Entertainment, Inc.)
"F:\Programme\Steam\steamapps\common\america's army 3\Binaries\AA3Game.exe" = F:\Programme\Steam\steamapps\common\america's army 3\Binaries\AA3Game.exe:*:Enabled:America's Army 3 -- ()
"E:\Programme\ICQ7.2\ICQ.exe" = E:\Programme\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2 -- (ICQ, LLC.)
"E:\Programme\ICQ7.2\aolload.exe" = E:\Programme\ICQ7.2\aolload.exe:*:Enabled:aolload.exe -- (AOL LLC)
"H:\Programme\iTunes\iTunes.exe" = H:\Programme\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.)
"H:\Programme\StarCraft II\Versions\Base16605\SC2.exe" = H:\Programme\StarCraft II\Versions\Base16605\SC2.exe:*:Enabled:StarCraft II -- (Blizzard Entertainment, Inc.)
"F:\Programme\Steam\steamapps\mudo121\counter-strike source\hl2.exe" = F:\Programme\Steam\steamapps\mudo121\counter-strike source\hl2.exe:*:Enabled:Counter-Strike: Source -- ()
"F:\Programme\Steam\steamapps\common\alien swarm\swarm.exe" = F:\Programme\Steam\steamapps\common\alien swarm\swarm.exe:*:Enabled:Alien Swarm -- ()
"F:\Programme\Steam\steamapps\common\alien swarm\bin\SDKLauncher.exe" = F:\Programme\Steam\steamapps\common\alien swarm\bin\SDKLauncher.exe:*:Enabled:Alien Swarm - SDK -- ()
"F:\Programme\Steam\steamapps\common\eve online\eve.exe" = F:\Programme\Steam\steamapps\common\eve online\eve.exe:*:Enabled:EVE Online Demo -- (CCP hf.)
"F:\Programme\Steam\steamapps\common\mafia ii\pc\mafia2.exe" = F:\Programme\Steam\steamapps\common\mafia ii\pc\mafia2.exe:*:Enabled:Mafia II -- (2K Czech)
"F:\Listchecker\pickup.listchecker.exe" = F:\Listchecker\pickup.listchecker.exe:*:Enabled:pickup.listchecker -- ()
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{05B49229-22A2-4F88-842A-BBC2EBE1CCF6}" = Microsoft Games for Windows - LIVE Redistributable
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0A2A5039-B37F-489D-B1DC-A5258DF9E697}" = FIFA 08
"{0B5154C0-8F00-4616-B0AB-6240AE80D9CE}" = SimCity™ Societies
"{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{137D91E1-2347-4EAC-BB0B-CC06C6B92A52}_is1" = Men of War (Remove Only)
"{137D91E1-2347-4EAC-BB0B-CC06C6B92A52}_update1.11.3.1" = Update &1 für Spiel Men of War
"{137D91E1-2347-4EAC-BB0B-CC06C6B92A52}_update1.17.5.0" = Update &1 für Spiel Men of War
"{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5
"{19BA95C2-4693-49E5-B454-0C232FFFC452}" = Hearts of Iron 3 - Demo
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{260CA184-10D9-457F-B106-CF5AE0B624A6}_is1" = Elvenstar Mod
"{26A24AE4-039D-4CA4-87B4-2F83216021FF}" = Java(TM) 6 Update 21
"{29650B4B-3CFE-486D-AE07-9ABE8C9C385F}" = SanDisk ® Media Manager
"{2A9F95AB-65A3-432c-8631-B8BC5BF7477A}" = Die Schlacht um Mittelerde™ II
"{2CE5A2E7-3437-4CE7-BCF4-85ED6EEFF9E4}" = iTunes
"{2D9C81F2-CF30-47F9-860E-58DACF92ABC9}" = Razer Arctosa
"{2F989174-840D-40D0-8130-A7EC36321433}" = S4 League_EU
"{350C97B3-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3AC8457C-0385-4BEA-A959-E095F05D6D67}" = Battlefield: Bad Company™ 2
"{3F290582-3F4E-4B96-009C-E0BABAA40C42}" = Die Schlacht um Mittelerde(tm)
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{4286E640-B5FB-11DF-AC4B-005056C00008}" = Google Earth
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4D243BA7-9AC4-46D1-90E5-EEB88974F501}" = Microsoft Games for Windows - LIVE
"{59ABBDF0-E1E5-48AF-85FB-F523A08C3490}" = STREET FIGHTER IV
"{5B616A3F-43D9-4F0B-9F49-D39342A98592}" = Creatures of Darkness
"{628C3D50-F524-4C49-A958-672CE7953756}" = Der Herr der Ringe® - Die Eroberung™
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{6AFCA4E1-9B78-3640-8F72-A7BF33448200}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{6FE3B0CE-37C1-4825-908A-5A84C9B4EC2F}" = EA SPORTS(TM) FIFA Online
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6}" = ICQ7.2
"{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com
"{7E20EFE6-E604-48C6-8B39-BA4742F2CDB4}" = Zune Desktop Theme
"{7ED169D4-5053-4166-93DF-53B12AE6C539}" = Energy Saver Advance B9.0316.1
"{82696435-8572-4D8B-A230-D1AA567D0F0F}" = Command & Conquer™ 4 Tiberian Twilight
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}" = Assassin's Creed II
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{89173B88-384A-459B-B687-9C0BBC934EF4}" = Die*Sims™*3 Erstelle einen Sim
"{8A74DEFD-A224-49CC-AB80-4E88BC730125}" = LogMeIn Hamachi
"{8ACE3311-7E11-4D68-BFC8-FC5E2692627B}" = Mass Effect 2 Demo
"{8C3727F2-8E37-49E4-820C-03B1677F53B6}" = Stronghold Crusader
"{8E5CFA2B-8CC5-4C8D-88CB-C4A1D4AD9790}_is1" = “Œ•û”ñ‘z“V‘¥ Ver1.10ƒAƒbƒvƒf[ƒg
"{90120000-0010-0407-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (German) 12
"{90120000-0015-0407-0000-0000000FF1CE}" = Microsoft Office Access MUI (German) 2007
"{90120000-0015-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2007
"{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2007
"{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0407-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (German) 2007
"{90120000-0019-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (German) 2007
"{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2007
"{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007
"{90120000-001F-0410-0000-0000000FF1CE}_ENTERPRISE_{322296D4-1EAE-4030-9FBC-D2787EB25FA2}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0044-0407-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (German) 2007
"{90120000-0044-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2007
"{90120000-006E-0407-0000-0000000FF1CE}_ENTERPRISE_{26454C26-D259-4543-AA60-3189E09C5F76}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2007
"{90120000-00A1-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00BA-0407-0000-0000000FF1CE}" = Microsoft Office Groove MUI (German) 2007
"{90120000-00BA-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9CD9CD94-76CC-4524-8617-DEB9C2D7C389}" = FIFA 10 - Demo
"{9F7FC1EC-5C07-44A4-8338-22AF90644273}_is1" = German Soldiers Mod Fields of Honor 2
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A662E280-64A8-4CF5-8407-13D0808602B3}" = Call of Duty - United Offensive
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1033-7B44-A93000000001}" = Adobe Reader 9.3.3
"{AEC81925-9C76-4707-84A9-40696C613ED3}" = Dragon Age: Origins
"{B194272D-1F92-46DF-99EB-8D5CE91CB4EC}" = Adobe AIR
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{B931FB80-537A-4600-00AD-AC5DEDB6C25B}" = Aufstieg des Hexenkönigs™
"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = Die Sims™ 3
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver
"{CCA1EEA3-555E-4D05-AC46-4B49C6C5D887}" = Apple Mobile Device Support
"{CD95D125-2992-4858-B3EF-5F6FB52FBAD6}" = Skype Toolbars
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D0106CC2-E34B-4FA3-B6B6-91F0ACEA2CC3}" = Hearts of Iron III
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DAEAFD68-BB4A-4507-A241-C8804D2EA66D}" = Apple Application Support
"{DC158DF7-6B36-4C6F-BC91-109014297994}" = FIFA 11 Demo
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1" = Auslogics Disk Defrag
"{E17141A6-211D-5854-61D9-69827A430D82}" = EA Download Manager UI
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}" = Skype™ 5.0
"{E7004147-2CCA-431C-AA05-2AB166B9785D}" = QuickTime
"{E8AEA11B-E60A-455E-B008-E4E763604612}" = Browser Configuration Utility
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F5346614-B7C4-4E94-826A-E2363155233D}" = EasyCleaner
"{F9942587-59C1-43CC-8B6A-A5DB09CBA735}_is1" = “Œ•û”ê‘z“V
"{FF1C31AE-0CDC-40CE-AB85-406F8B70D643}" = Bonjour
"2Tox_AppBooster_PRO_is1" = appsmaker AppBooster
"7-Zip" = 7-Zip 4.65
"82A44D22-9452-49FB-00FB-CEC7DCAF7E23" = EA SPORTS online 2008
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player
"AirRivals_DE_is1" = AirRivals_DE 1.0.0.44
"AutoItv3" = AutoIt v3.3.6.1
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"BitTorrent" = BitTorrent
"BuddyW_is1" = BuddyW 1.1.10
"Call of Duty" = Call of Duty
"Call of Duty Modern Warfare 2_is1" = Call of Duty Modern Warfare 2
"CCleaner" = CCleaner
"Ceville" = Ceville 1.0
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"com.ea.Vault.919CACB699904AC5D41B606703500DD39747C02D.1" = EA Download Manager UI
"DBBD4687DB2530A2F7D7FAB13E7DF67638CCA3B9" = Windows Driver Package - Razer (HidUsb) HIDClass (01/11/2007 1.0)
"EA Download Manager" = EA Download Manager
"Elvenstar Mod 6.0" = Elvenstar Mod 6.0
"ENTERPRISE" = Microsoft Office Enterprise 2007
"EXPERTool_is1" = EXPERTool 7.5
"Free Audio CD Burner_is1" = Free Audio CD Burner version 1.4
"Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.8
"Guild Wars" = GUILD WARS
"Highway Pursuit_is1" = Highway Pursuit v1.1
"Hisoutensoku English" = NSIS Hisoutensoku English
"ICQToolbar" = ICQ Toolbar
"ie8" = Windows Internet Explorer 8
"InstallShield_{A662E280-64A8-4CF5-8407-13D0808602B3}" = Call of Duty - United Offensive
"LogMeIn Hamachi" = LogMeIn Hamachi
"LostSagaUS" = Lost Saga
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.6.6)" = Mozilla Firefox (3.6.6)
"MsgPlus! Plugin" = Messenger Plus! 3
"NVIDIA Drivers" = NVIDIA Drivers
"OGPlanet Game Launcher US" = OGPlanet Game Launcher
"Patch for "Men of War"_is1" = Patch 1.17.5 for "Men of War"
"PunkBusterSvc" = PunkBuster Services
"RocketDock_is1" = RocketDock 1.3.5
"Seven Remix XP" = Seven Remix XP 2.4
"ShotOnline" = ShotOnline
"softonic-de3 Toolbar" = softonic-de3 Toolbar
"Speccy" = Speccy
"StarCraft II" = StarCraft II
"Steam App 10680" = Aliens vs. Predator
"Steam App 13140" = America's Army 3
"Steam App 27920" = Booster Trooper
"Steam App 33310" = R.U.S.E. Free Week End
"Steam App 34030" = Napoleon: Total War
"Steam App 41010" = Serious Sam HD: The Second Encounter
"Steam App 42120" = Lead and Gold - Gangs of the Wild West
"Steam App 50130" = Mafia II
"Steam App 630" = Alien Swarm
"Steam App 640" = Alien Swarm - SDK
"Steam App 8510" = EVE Online Demo
"TeamViewer 5" = TeamViewer 5
"Tunngle beta_is1" = Tunngle beta
"Uninstall_is1" = Uninstall 1.0.0.1
"VirtualCloneDrive" = VirtualCloneDrive
"VLC media player" = VLC media player 1.1.0
"WinRAR archiver" = WinRAR
"Xfire" = Xfire (remove only)
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"Warcraft III" = Warcraft III: All Products
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 03.09.2010 15:47:09 | Computer Name = RAPHYSPC | Source = Bonjour Service | ID = 100
Description = 420: ERROR: read_msg errno 10054 (Eine vorhandene Verbindung wurde
vom Remotehost geschlossen.)
Error - 04.09.2010 07:55:55 | Computer Name = RAPHYSPC | Source = PerfNet | ID = 2004
Description = Der Serverdienst konnte nicht geöffnet werden. Die Server-Leistungsinformationen
werden
nicht zurückgegeben. Der zurückgegebene Fehlercode befindet sich in DWORD 0.
Error - 04.09.2010 07:55:56 | Computer Name = RAPHYSPC | Source = PerfNet | ID = 2004
Description = Der Serverdienst konnte nicht geöffnet werden. Die Server-Leistungsinformationen
werden
nicht zurückgegeben. Der zurückgegebene Fehlercode befindet sich in DWORD 0.
Error - 04.09.2010 20:07:59 | Computer Name = RAPHYSPC | Source = Bonjour Service | ID = 100
Description = 208: ERROR: read_msg errno 10054 (Eine vorhandene Verbindung wurde
vom Remotehost geschlossen.)
Error - 04.09.2010 20:07:59 | Computer Name = RAPHYSPC | Source = Bonjour Service | ID = 100
Description = 232: ERROR: read_msg errno 10054 (Eine vorhandene Verbindung wurde
vom Remotehost geschlossen.)
Error - 04.09.2010 20:07:59 | Computer Name = RAPHYSPC | Source = Bonjour Service | ID = 100
Description = 424: ERROR: read_msg errno 10054 (Eine vorhandene Verbindung wurde
vom Remotehost geschlossen.)
Error - 04.09.2010 20:07:59 | Computer Name = RAPHYSPC | Source = Bonjour Service | ID = 100
Description = 416: ERROR: read_msg errno 10054 (Eine vorhandene Verbindung wurde
vom Remotehost geschlossen.)
Error - 04.09.2010 20:07:59 | Computer Name = RAPHYSPC | Source = Bonjour Service | ID = 100
Description = 436: ERROR: read_msg errno 10054 (Eine vorhandene Verbindung wurde
vom Remotehost geschlossen.)
Error - 05.09.2010 06:41:14 | Computer Name = RAPHYSPC | Source = PerfNet | ID = 2004
Description = Der Serverdienst konnte nicht geöffnet werden. Die Server-Leistungsinformationen
werden
nicht zurückgegeben. Der zurückgegebene Fehlercode befindet sich in DWORD 0.
Error - 05.09.2010 06:41:15 | Computer Name = RAPHYSPC | Source = PerfNet | ID = 2004
Description = Der Serverdienst konnte nicht geöffnet werden. Die Server-Leistungsinformationen
werden
nicht zurückgegeben. Der zurückgegebene Fehlercode befindet sich in DWORD 0.
[ System Events ]
Error - 09.10.2010 08:20:33 | Computer Name = RAPHYSPC | Source = Dhcp | ID = 1002
Description = Die IP-Adresslease 7.0.104.53 für die Netzwerkkarte mit der Netzwerkadresse
00FF98B69C03 wurde durch den DHCP-Server 7.254.254.254 abgelehnt (der DHCP-Server
hat eine DHCPNACK-Meldung gesendet).
Error - 09.10.2010 15:51:00 | Computer Name = RAPHYSPC | Source = Service Control Manager | ID = 7034
Description = Dienst "LogMeIn Hamachi 2.0 Tunneling Engine" wurde unerwartet beendet.
Dies ist bereits 1 Mal passiert.
Error - 09.10.2010 15:51:05 | Computer Name = RAPHYSPC | Source = Service Control Manager | ID = 7034
Description = Dienst "ICQ Service" wurde unerwartet beendet. Dies ist bereits 1
Mal passiert.
Error - 09.10.2010 15:51:08 | Computer Name = RAPHYSPC | Source = Service Control Manager | ID = 7034
Description = Dienst "PnkBstrA" wurde unerwartet beendet. Dies ist bereits 1 Mal
passiert.
Error - 23.10.2010 07:49:58 | Computer Name = RAPHYSPC | Source = Service Control Manager | ID = 7031
Description = Der Dienst "Apple Mobile Device" wurde unerwartet beendet. Dies ist
bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden
durchgeführt: Starten Sie den Dienst neu..
Error - 23.10.2010 07:50:01 | Computer Name = RAPHYSPC | Source = Service Control Manager | ID = 7034
Description = Dienst "ICQ Service" wurde unerwartet beendet. Dies ist bereits 1
Mal passiert.
Error - 23.10.2010 07:50:05 | Computer Name = RAPHYSPC | Source = Service Control Manager | ID = 7034
Description = Dienst "LogMeIn Hamachi 2.0 Tunneling Engine" wurde unerwartet beendet.
Dies ist bereits 1 Mal passiert.
Error - 23.10.2010 13:27:01 | Computer Name = RAPHYSPC | Source = Cdrom | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden.
Error - 23.10.2010 13:27:05 | Computer Name = RAPHYSPC | Source = Cdrom | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden.
Error - 23.10.2010 15:04:27 | Computer Name = RAPHYSPC | Source = Service Control Manager | ID = 7034
Description = Dienst "PnkBstrA" wurde unerwartet beendet. Dies ist bereits 1 Mal
passiert.
< End of report > --- --- --- |