so, hier nun der erste der beiden Logfiles von OTL:
OTL Logfile: Code:
OTL logfile created on: 14.06.2010 12:32:35 - Run 1
OTL by OldTimer - Version 3.2.6.0 Folder = C:\Dokumente und Einstellungen\MP\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
895,00 Mb Total Physical Memory | 398,00 Mb Available Physical Memory | 44,00% Memory free
2,00 Gb Paging File | 2,00 Gb Available in Paging File | 75,00% Paging File free
Paging file location(s): C:\pagefile.sys 1344 2688 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programme
Drive C: | 19,53 Gb Total Space | 4,58 Gb Free Space | 23,45% Space Free | Partition Type: NTFS
Drive D: | 58,59 Gb Total Space | 7,56 Gb Free Space | 12,90% Space Free | Partition Type: NTFS
Drive E: | 108,17 Gb Total Space | 88,38 Gb Free Space | 81,71% Space Free | Partition Type: NTFS
Drive F: | 232,88 Gb Total Space | 19,10 Gb Free Space | 8,20% Space Free | Partition Type: NTFS
Drive G: | 232,88 Gb Total Space | 54,67 Gb Free Space | 23,48% Space Free | Partition Type: NTFS
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: SEMPRON3400
Current User Name: MP
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ==========
PRC - C:\Dokumente und Einstellungen\MP\Desktop\OTL.exe (OldTimer Tools)
PRC - d:\Programme\TomTom HOME 2\TomTomHOMEService.exe (TomTom)
PRC - D:\Programme\TomTom HOME 2\TomTomHOMERunner.exe (TomTom)
PRC - D:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - D:\Programme\Lavasoft\Ad-Aware\AAWTray.exe (Lavasoft)
PRC - D:\Programme\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft)
PRC - D:\Programme\Avira\AntiVir Workstation\avmailc.exe (Avira GmbH)
PRC - D:\Programme\Akademische Arbeitsgemeinschaft\AAVUpdateManager\aavus.exe ()
PRC - D:\Programme\Avira\AntiVir Workstation\sched.exe (Avira GmbH)
PRC - D:\Programme\Avira\AntiVir Workstation\avguard.exe (Avira GmbH)
PRC - D:\Programme\Avira\AntiVir Workstation\avgnt.exe (Avira GmbH)
PRC - D:\Programme\Avira\AntiVir Workstation\avwebgrd.exe (Avira GmbH)
PRC - D:\Programme\Avira\AntiVir Workstation\avesvc.exe (Avira GmbH)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - D:\Programme\Browser MOUSE\mouse32a.exe ()
PRC - C:\Programme\Gemeinsame Dateien\Roxio Shared\SharedCOM8\RoxMediaDB.exe (Sonic Solutions)
PRC - C:\Programme\Gemeinsame Dateien\Roxio Shared\SharedCOM8\RoxWatch.exe (Sonic Solutions)
PRC - C:\WINDOWS\system32\spool\drivers\w32x86\3\fpdisp5a.exe (FinePrint Software, LLC)
========== Modules (SafeList) ==========
MOD - C:\Dokumente und Einstellungen\MP\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\WINDOWS\system32\msscript.ocx (Microsoft Corporation)
MOD - D:\Programme\Browser MOUSE\mouDL32A.dll ()
========== Win32 Services (SafeList) ==========
SRV - (TuneUp.Defrag) -- C:\WINDOWS\system32\TuneUpDefragService.exe (TuneUp Software GmbH)
SRV - (TomTomHOMEService) -- d:\Programme\TomTom HOME 2\TomTomHOMEService.exe (TomTom)
SRV - (ServiceLayer) -- C:\Programme\PC Connectivity Solution\ServiceLayer.exe (Nokia)
SRV - (Lavasoft Ad-Aware Service) -- D:\Programme\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft)
SRV - (AntiVirMailService) -- D:\Programme\Avira\AntiVir Workstation\avmailc.exe (Avira GmbH)
SRV - (AAV UpdateService) -- D:\Programme\Akademische Arbeitsgemeinschaft\AAVUpdateManager\aavus.exe ()
SRV - (AntiVirScheduler) -- D:\Programme\Avira\AntiVir Workstation\sched.exe (Avira GmbH)
SRV - (AntiVirService) -- D:\Programme\Avira\AntiVir Workstation\avguard.exe (Avira GmbH)
SRV - (antivirwebservice) -- D:\Programme\Avira\AntiVir Workstation\AVWEBGRD.EXE (Avira GmbH)
SRV - (AVEService) -- D:\Programme\Avira\AntiVir Workstation\avesvc.exe (Avira GmbH)
SRV - (UxTuneUp) -- C:\WINDOWS\system32\uxtuneup.dll (TuneUp Software GmbH)
SRV - (NMIndexingService) -- C:\Programme\Gemeinsame Dateien\Ahead\Lib\NMIndexingService.exe (Nero AG)
SRV - (FLEXnet Licensing Service) -- C:\Programme\Gemeinsame Dateien\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Macrovision Europe Ltd.)
SRV - (Adobe Version Cue CS3) -- C:\Programme\Gemeinsame Dateien\Adobe\Adobe Version Cue CS3\Server\bin\VersionCueCS3.exe (Adobe Systems Incorporated)
SRV - (Adobe LM Service) -- C:\Programme\Gemeinsame Dateien\Adobe Systems Shared\Service\Adobelmsvc.exe (Adobe Systems)
SRV - (RoxMediaDB) -- C:\Programme\Gemeinsame Dateien\Roxio Shared\SharedCOM8\RoxMediaDB.exe (Sonic Solutions)
SRV - (RoxUpnpServer) -- D:\Programme\Roxio\WinOnCD 8\Digital Home\RoxUpnpServer.exe (Sonic Solutions)
SRV - (RoxLiveShare) -- C:\Programme\Gemeinsame Dateien\Roxio Shared\SharedCOM8\RoxLiveShare.exe (Sonic Solutions)
SRV - (RoxWatch) -- C:\Programme\Gemeinsame Dateien\Roxio Shared\SharedCOM8\RoxWatch.exe (Sonic Solutions)
SRV - (RoxUPnPRenderer) -- C:\Programme\Gemeinsame Dateien\Roxio Shared\SharedCom\RoxUpnpRenderer.exe (Sonic Solutions)
SRV - (de_serv) -- C:\Programme\Gemeinsame Dateien\AVM\De_serv.exe (AVM Berlin)
SRV - (IDriverT) -- C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe (Macrovision Corporation)
SRV - (ose) -- C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
========== Driver Services (SafeList) ==========
DRV - (avipbb) -- C:\WINDOWS\system32\drivers\avipbb.sys (Avira GmbH)
DRV - (avgntflt) -- D:\Programme\Avira\AntiVir Workstation\avgntflt.sys (Avira GmbH)
DRV - (avgio) -- D:\Programme\Avira\AntiVir Workstation\avgio.sys (Avira GmbH)
DRV - (Lbd) -- C:\WINDOWS\system32\DRIVERS\Lbd.sys (Lavasoft AB)
DRV - (ElbyCDIO) -- C:\WINDOWS\system32\drivers\ElbyCDIO.sys (Elaborate Bytes AG)
DRV - (pccsmcfd) -- C:\WINDOWS\system32\drivers\pccsmcfd.sys (Nokia)
DRV - (nm) -- C:\WINDOWS\system32\drivers\nmnt.sys (Microsoft Corporation)
DRV - (61883) -- C:\WINDOWS\system32\drivers\61883.sys (Microsoft Corporation)
DRV - (Avc) -- C:\WINDOWS\system32\drivers\avc.sys (Microsoft Corporation)
DRV - (MSDV) -- C:\WINDOWS\system32\drivers\msdv.sys (Microsoft Corporation)
DRV - (gameenum) -- C:\WINDOWS\system32\drivers\gameenum.sys (Microsoft Corporation)
DRV - (imagesrv) -- C:\WINDOWS\system32\DRIVERS\imagesrv.sys (Ahead Software AG)
DRV - (imagedrv) -- C:\WINDOWS\System32\Drivers\imagedrv.sys (Ahead Software AG)
DRV - (ssmdrv) -- C:\WINDOWS\system32\drivers\ssmdrv.sys (AVIRA GmbH)
DRV - (ElbyCDFL) -- C:\WINDOWS\system32\drivers\ElbyCDFL.sys (SlySoft, Inc.)
DRV - (StarOpen) -- C:\WINDOWS\system32\drivers\StarOpen.sys ()
DRV - (MIINPazX) -- C:\Programme\Gemeinsame Dateien\Marmiko Shared\MInfraIS\MIINPazx.sys (Deutsche Telekom AG, Marmiko IT-Solutions GmbH)
DRV - (MTOnlPktAlyX) -- D:\Programme\T-Online\T-Online_Software_6\Basis-Software\Basis1\MTOnlPktAlyx.sys (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH)
DRV - (cdudf_xp) -- C:\WINDOWS\system32\drivers\Cdudf_xp.sys (Sonic Solutions)
DRV - (pwd_2k) -- C:\WINDOWS\system32\drivers\Pwd_2k.sys (Sonic Solutions)
DRV - (RxFilter) -- C:\WINDOWS\system32\drivers\RxFilter.sys (Sonic Solutions)
DRV - (dvd_2K) -- C:\WINDOWS\system32\drivers\dvd_2k.sys (Sonic Solutions)
DRV - (mmc_2K) -- C:\WINDOWS\system32\drivers\mmc_2k.sys (Sonic Solutions)
DRV - (fpcibase) -- C:\WINDOWS\system32\drivers\fpcibase.sys (AVM Berlin)
DRV - (AVMCOWAN) -- C:\WINDOWS\system32\drivers\avmcowan.sys (AVM GmbH)
DRV - (nv) -- C:\WINDOWS\system32\drivers\nv4_mini.sys (NVIDIA Corporation)
DRV - (NETFRITZ) -- C:\WINDOWS\system32\drivers\NETFRITZ.SYS (AVM Berlin)
DRV - (ALCXWDM) Service for Realtek AC97 Audio (WDM) -- C:\WINDOWS\system32\drivers\alcxwdm.sys (Realtek Semiconductor Corp.)
DRV - (ss_mdm) -- C:\WINDOWS\system32\drivers\ss_mdm.sys (MCCI)
DRV - (ss_mdfl) -- C:\WINDOWS\system32\drivers\ss_mdfl.sys (MCCI)
DRV - (ss_bus) SAMSUNG Mobile USB Device 1.0 driver (WDM) -- C:\WINDOWS\system32\drivers\ss_bus.sys (MCCI)
DRV - (nvnetbus) -- C:\WINDOWS\system32\drivers\nvnetbus.sys (NVIDIA Corporation)
DRV - (NVENETFD) -- C:\WINDOWS\system32\drivers\NVENETFD.sys (NVIDIA Corporation)
DRV - (drvmcdb) -- C:\WINDOWS\system32\drivers\drvmcdb.sys (Sonic Solutions)
DRV - (ms_mpu401) -- C:\WINDOWS\system32\drivers\msmpu401.sys (Microsoft Corporation)
DRV - (AVMWAN) -- C:\WINDOWS\system32\drivers\avmwan.sys (AVM GmbH)
DRV - (PQNTDrv) -- C:\WINDOWS\system32\drivers\PQNTDRV.SYS ()
DRV - (ppsio2) -- C:\WINDOWS\system32\drivers\PPSIO2.SYS ()
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Yahoo! Search
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: ""
FF - prefs.js..extensions.enabledItems: de-DE@dictionaries.addons.mozilla.org:2.0.1
FF - prefs.js..extensions.enabledItems: fr-FR@dictionaries.addons.mozilla.org:3.5
FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.7.3
FF - prefs.js..extensions.enabledItems: {19503e42-ca3c-4c27-b1e2-9cdb2170ee34}:1.2.1.22
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {635abd67-4fe9-1b23-4f01-e679fa7484c1}:2.1.2.20100119091315
FF - prefs.js..extensions.enabledItems: {E78313ED-E64C-451B-9B5F-8A66A8D08A64}:2.5.10.1
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: D:\Programme\Mozilla Firefox\components [2010.04.15 09:57:47 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: D:\Programme\Mozilla Firefox\plugins [2010.04.05 18:44:34 | 000,000,000 | ---D | M]
[2010.04.09 13:31:51 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MP\Anwendungsdaten\mozilla\Extensions
[2010.04.09 13:31:51 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MP\Anwendungsdaten\mozilla\Extensions\home2@tomtom.com
[2010.06.13 07:18:26 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MP\Anwendungsdaten\mozilla\Firefox\Profiles\wvrec36b.default\extensions
[2010.05.14 09:19:05 | 000,000,000 | ---D | M] (FlashGot) -- C:\Dokumente und Einstellungen\MP\Anwendungsdaten\mozilla\Firefox\Profiles\wvrec36b.default\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}
[2010.05.14 09:19:05 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Dokumente und Einstellungen\MP\Anwendungsdaten\mozilla\Firefox\Profiles\wvrec36b.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010.03.17 15:46:44 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Dokumente und Einstellungen\MP\Anwendungsdaten\mozilla\Firefox\Profiles\wvrec36b.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2010.04.17 09:26:27 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Dokumente und Einstellungen\MP\Anwendungsdaten\mozilla\Firefox\Profiles\wvrec36b.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2010.06.10 11:30:08 | 000,000,000 | ---D | M] (FireFox accelerator) -- C:\Dokumente und Einstellungen\MP\Anwendungsdaten\mozilla\Firefox\Profiles\wvrec36b.default\extensions\{E78313ED-E64C-451B-9B5F-8A66A8D08A64}
[2010.02.13 07:38:19 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MP\Anwendungsdaten\mozilla\Firefox\Profiles\wvrec36b.default\extensions\de-DE@dictionaries.addons.mozilla.org
[2010.02.13 07:38:19 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MP\Anwendungsdaten\mozilla\Firefox\Profiles\wvrec36b.default\extensions\fr-FR@dictionaries.addons.mozilla.org
O1 HOSTS File: ([2009.09.27 20:50:25 | 000,000,860 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 72.8.143.154 www.boerse.bz boerse.bz
O2 - BHO: (Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (ContributeBHO Class) - {074C1DC5-9320-4A9A-947D-C042949C6216} - D:\Programme\/Adobe Contribute CS3/contributeieplugin.dll ()
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - D:\Programme\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (kikin Plugin) - {E601996F-E400-41CA-804B-CD6373A7EEE2} - C:\Programme\kikin\ie_kikin.dll (kikin)
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - D:\Programme\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Contribute Toolbar) - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - D:\Programme\/Adobe Contribute CS3/contributeieplugin.dll ()
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar mit Pop-Up-Blocker) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - D:\Programme\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKCU\..\Toolbar\WebBrowser: (Yahoo! Toolbar mit Pop-Up-Blocker) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Adobe Photo Downloader] D:\Programme\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [avgnt] D:\Programme\Avira\AntiVir Workstation\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [FinePrint Dispatcher v5] C:\WINDOWS\system32\spool\drivers\w32x86\3\fpdisp5a.exe (FinePrint Software, LLC)
O4 - HKLM..\Run: [FLMOFFICE4DMOUSE] D:\Programme\Browser MOUSE\mouse32a.exe ()
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKCU..\Run: [TomTomHOME.exe] d:\Programme\TomTom HOME 2\TomTomHOMERunner.exe (TomTom)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 91 00 00 00 [binary data]
O8 - Extra context menu item: An vorhandenes PDF anfügen - D:\Programme\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Ausgewählte Verknüpfungen in Adobe PDF konvertieren - D:\Programme\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Ausgewählte Verknüpfungen in vorhandene PDF-Datei konvertieren - D:\Programme\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Auswahl in Adobe PDF konvertieren - D:\Programme\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Auswahl in vorhandene PDF-Datei konvertieren - D:\Programme\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: In Adobe PDF konvertieren - D:\Programme\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - D:\Programme\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Verknüpfungsziel in Adobe PDF konvertieren - D:\Programme\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Verknüpfungsziel in vorhandene PDF-Datei konvertieren - D:\Programme\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O9 - Extra 'Tools' menuitem : My kikin - {0F7195C2-6713-4d93-A1BC-DA5FA33F0A65} - C:\Programme\kikin\ie_kikin.dll (kikin)
O9 - Extra Button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Programme\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Programme\Bonjour\mdnsNSP.dll (Apple Computer, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - File not found
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0015-0000-0008-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_08-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_09-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Components\11\OWC11.DLL (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - File not found
O24 - Desktop Components:0 (Die derzeitige Homepage) - About:Home
O27 - HKLM IFEO\taskmgr.exe: Debugger - D:\Programme\TuneUp Utilities 2007\PMLauncher.exe File not found
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2005.12.22 21:25:24 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{33d2c437-3afd-11de-af46-00138f67b432}\Shell\AutoRun\command - "" = H:\Start_eBrochure.exe -- File not found
O33 - MountPoints2\{7bde8580-414b-11df-b027-00138f67b432}\Shell\AutoRun\command - "" = H:\InstallTomTomHOME.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - C:\WINDOWS\System32\lsdelete.exe ()
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2010.06.14 12:20:43 | 000,572,416 | ---- | C] (OldTimer Tools) -- C:\Dokumente und Einstellungen\MP\Desktop\OTL.exe
[2010.06.14 11:44:34 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\MP\Anwendungsdaten\Malwarebytes
[2010.06.14 11:44:09 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010.06.14 11:44:03 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes
[2010.06.14 11:44:02 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010.06.14 09:53:02 | 000,000,000 | RH-D | C] -- C:\Dokumente und Einstellungen\MP\Recent
[2010.06.11 11:40:47 | 000,307,968 | ---- | C] (TuneUp Software GmbH) -- C:\WINDOWS\System32\TuneUpDefragService.exe
[2010.06.11 11:40:45 | 000,028,416 | ---- | C] (TuneUp Software GmbH) -- C:\WINDOWS\System32\uxtuneup.dll
[2010.06.09 18:54:30 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedvtool.dll
[2010.06.05 16:56:16 | 000,000,000 | ---D | C] -- F:\Eigene Dateien\2011
[2010.06.01 12:30:52 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\LocalService\Anwendungsdaten\FRITZ!
[7 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[22 C:\*.tmp files -> C:\*.tmp -> ]
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2010.06.14 12:20:45 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Dokumente und Einstellungen\MP\Desktop\OTL.exe
[2010.06.14 12:15:58 | 000,000,486 | ---- | M] () -- C:\WINDOWS\tasks\1-Klick-Wartung.job
[2010.06.14 12:10:22 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010.06.14 12:10:19 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010.06.14 12:09:36 | 016,252,928 | ---- | M] () -- C:\Dokumente und Einstellungen\MP\NTUSER.DAT
[2010.06.14 12:09:23 | 000,000,300 | -HS- | M] () -- C:\Dokumente und Einstellungen\MP\ntuser.ini
[2010.06.14 11:44:13 | 000,000,559 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.06.14 09:50:52 | 000,039,291 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2010.06.14 09:44:27 | 000,021,104 | ---- | M] () -- F:\Eigene Dateien\cc_20100614_094345.reg
[2010.06.14 09:42:19 | 000,000,635 | ---- | M] () -- C:\Dokumente und Einstellungen\MP\Desktop\CCleaner.lnk
[2010.06.13 07:40:21 | 000,013,030 | ---- | M] () -- C:\PDOXUSRS.NET
[2010.06.12 18:13:32 | 000,000,202 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2010.06.12 11:24:54 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn
[2010.06.11 17:42:39 | 000,000,362 | ---- | M] () -- C:\WINDOWS\tasks\1-Click Maintenance.job
[2010.06.11 11:40:47 | 000,307,968 | ---- | M] (TuneUp Software GmbH) -- C:\WINDOWS\System32\TuneUpDefragService.exe
[2010.06.11 09:37:52 | 001,570,424 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010.06.10 08:18:08 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010.06.09 23:38:05 | 001,078,678 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010.06.09 23:38:05 | 000,462,322 | ---- | M] () -- C:\WINDOWS\System32\perfh007.dat
[2010.06.09 23:38:05 | 000,444,028 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010.06.09 23:38:05 | 000,085,344 | ---- | M] () -- C:\WINDOWS\System32\perfc007.dat
[2010.06.09 23:38:05 | 000,071,904 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010.05.25 09:17:45 | 000,071,680 | ---- | M] () -- C:\Dokumente und Einstellungen\MP\Lokale Einstellungen\Anwendungsdaten\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[7 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[22 C:\*.tmp files -> C:\*.tmp -> ]
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010.06.14 11:44:13 | 000,000,559 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.06.14 09:44:05 | 000,021,104 | ---- | C] () -- F:\Eigene Dateien\cc_20100614_094345.reg
[2010.05.05 19:25:09 | 000,000,253 | ---- | C] () -- C:\WINDOWS\tm.ini
[2009.11.16 18:50:45 | 000,000,017 | ---- | C] () -- C:\WINDOWS\Missing.ini
[2009.08.26 10:42:33 | 000,001,202 | ---- | C] () -- C:\WINDOWS\CDPlayer.ini
[2008.09.18 16:34:47 | 000,000,000 | ---- | C] () -- C:\WINDOWS\WinHDM.INI
[2008.07.02 21:12:00 | 000,273,408 | ---- | C] () -- C:\WINDOWS\System32\EMRegSys.dll
[2007.11.04 16:29:35 | 002,463,976 | ---- | C] () -- C:\WINDOWS\System32\NPSWF32.dll
[2007.04.29 15:29:59 | 000,000,889 | ---- | C] () -- C:\WINDOWS\wcx_ftp.ini
[2007.04.29 15:26:49 | 000,001,402 | ---- | C] () -- C:\WINDOWS\wincmd.ini
[2007.03.29 23:00:40 | 000,203,264 | R--- | C] () -- C:\WINDOWS\System32\CddbCdda.dll
[2007.03.06 14:12:22 | 000,000,000 | ---- | C] () -- C:\WINDOWS\PROTOCOL.INI
[2007.02.03 11:09:59 | 000,005,632 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys
[2006.12.09 09:20:21 | 001,138,688 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2006.12.09 09:20:21 | 000,217,088 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2006.12.09 09:20:03 | 000,005,120 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2006.12.09 09:20:03 | 000,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest
[2006.12.06 19:49:25 | 000,006,537 | ---- | C] () -- C:\WINDOWS\mgxoschk.ini
[2006.09.25 12:54:46 | 000,000,772 | ---- | C] () -- C:\WINDOWS\stwin04.ini
[2006.09.22 22:40:44 | 000,000,757 | ---- | C] () -- C:\WINDOWS\stwin05.ini
[2006.09.22 22:01:47 | 000,000,775 | ---- | C] () -- C:\WINDOWS\stwin03.ini
[2006.09.22 21:56:41 | 000,000,448 | ---- | C] () -- C:\WINDOWS\d2hnav.ini
[2006.09.22 21:56:12 | 000,000,773 | ---- | C] () -- C:\WINDOWS\stwin02.ini
[2006.09.19 17:51:20 | 000,000,096 | ---- | C] () -- C:\WINDOWS\WININIT.INI
[2006.09.18 14:51:13 | 000,000,312 | ---- | C] () -- C:\WINDOWS\promillerechner.ini
[2006.09.01 12:45:44 | 000,034,308 | ---- | C] () -- C:\WINDOWS\System32\BASSMOD.dll
[2006.08.27 16:36:11 | 000,000,030 | ---- | C] () -- C:\WINDOWS\Iedit_.INI
[2006.06.23 08:46:32 | 000,003,252 | ---- | C] () -- C:\WINDOWS\System32\drivers\PQNTDRV.SYS
[2006.05.20 17:37:47 | 000,000,059 | ---- | C] () -- C:\WINDOWS\tklcr.ini
[2006.04.28 11:48:28 | 000,000,031 | ---- | C] () -- C:\WINDOWS\HBUser.ini
[2006.04.12 15:19:21 | 000,210,944 | ---- | C] () -- C:\WINDOWS\System32\Msvcrt10.dll
[2006.04.11 15:46:34 | 000,000,151 | ---- | C] () -- C:\WINDOWS\PhotoSnapViewer.INI
[2006.04.06 09:25:02 | 000,000,202 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2006.04.03 08:55:34 | 000,022,400 | ---- | C] () -- C:\WINDOWS\System32\drivers\PPSIO2.SYS
[2006.03.27 19:51:41 | 000,015,873 | ---- | C] () -- C:\WINDOWS\System32\Inetde.dll
[2006.03.27 18:42:09 | 000,007,680 | ---- | C] () -- C:\WINDOWS\System32\CNMVS6j.DLL
[2006.03.27 10:16:14 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Classic.INI
[2006.03.24 09:03:32 | 000,000,512 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2006.02.16 07:43:37 | 003,596,288 | R--- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2006.02.16 07:43:37 | 000,831,488 | R--- | C] () -- C:\WINDOWS\System32\libeay32.dll
[2006.02.16 07:43:37 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\CddbFileTaggerRoxio.dll
[2006.02.16 07:43:37 | 000,159,744 | R--- | C] () -- C:\WINDOWS\System32\ssleay32.dll
[2006.02.16 07:43:37 | 000,110,592 | R--- | C] () -- C:\WINDOWS\System32\dtu100.dll
[2006.02.16 07:43:37 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini
[2005.12.23 19:21:07 | 000,157,184 | R--- | C] () -- C:\WINDOWS\System32\RtlCPAPI.dll
[2005.12.23 19:20:59 | 000,000,164 | R--- | C] () -- C:\WINDOWS\avrack.ini
[2005.12.22 23:16:12 | 000,003,797 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2005.12.22 23:16:07 | 000,005,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2005.10.10 15:49:00 | 001,662,976 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2005.10.10 15:49:00 | 001,466,368 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2005.10.10 15:49:00 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2005.10.10 15:49:00 | 000,573,440 | ---- | C] () -- C:\WINDOWS\System32\nvhwvid.dll
[2005.10.10 15:49:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2005.10.10 15:49:00 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2005.10.10 15:49:00 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\nvapi.dll
[2005.07.13 14:05:56 | 000,000,056 | ---- | C] () -- C:\WINDOWS\System32\winxp32.sys
[2004.11.30 04:10:00 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\besched.dll
[2004.01.22 19:06:32 | 000,157,696 | ---- | C] () -- C:\WINDOWS\System32\UNRAR.DLL
[2003.10.02 01:00:00 | 000,208,896 | ---- | C] () -- C:\WINDOWS\System32\lockout.dll
[2003.10.02 01:00:00 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\lockres.dll
[2003.02.20 18:53:42 | 000,005,702 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI
[2002.03.17 02:00:00 | 000,007,420 | ---- | C] () -- C:\WINDOWS\UA000023.DLL
[2002.03.06 02:00:00 | 000,075,264 | ---- | C] () -- C:\WINDOWS\System32\UNACEV2.DLL
========== Alternate Data Streams ==========
@Alternate Data Stream - 76 bytes -> F:\Eigene Dateien\060329OFD2005b003.BMP:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> F:\Eigene Dateien\060329OFD2005b002.BMP:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> F:\Eigene Dateien\060329OFD2005b001.BMP:Roxio EMC Stream
@Alternate Data Stream - 72 bytes -> C:\WINDOWS:9B935ECDAB6221AF
< End of report > --- --- --- |