SharKING | 07.04.2011 22:20 | Windows Recovery Problem: Nach Problembehebung zeigt Festplatte keine Ordner an Guten Abend liebes Trojaner-Board Team.
Ich habe mit vor einiger Zeit den "Windows Recovery Virus" eingefangen und hab es heute geschafft mich darum zu kümmern.
Ich habe euer Windows Recovery entfernen Tool benutzt und denke es war einigermaßen erfolgreich ( http://www.trojaner-board.de/96741-w...entfernen.html).
Schon einmal danke dazu.
Jetzt jedoch zeigt "nur" eine meiner Partitionen der Festplatte keine Ordner mehr an und bin mit meinen Fähigkeiten am Ende.
Ich bitte euch hiermit um Hilfe (:
(OTL hat mir noch eine Logdatei ausgespuckt die "Extras.Txt heißt. Kenn mich mit dem nicht so aus & hab es mal mit angehangen)
Malwarebytes: HTML-Code:
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org
Datenbank Version: 6304
Windows 6.0.6002 Service Pack 2
Internet Explorer 7.0.6002.18005
07.04.2011 22:16:29
mbam-log-2011-04-07 (22-16-29).txt
Art des Suchlaufs: Vollständiger Suchlauf (C:\|E:\|F:\|)
Durchsuchte Objekte: 360948
Laufzeit: 56 Minute(n), 50 Sekunde(n)
Infizierte Speicherprozesse: 0
Infizierte Speichermodule: 0
Infizierte Registrierungsschlüssel: 0
Infizierte Registrierungswerte: 0
Infizierte Dateiobjekte der Registrierung: 0
Infizierte Verzeichnisse: 0
Infizierte Dateien: 3
Infizierte Speicherprozesse:
(Keine bösartigen Objekte gefunden)
Infizierte Speichermodule:
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungsschlüssel:
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungswerte:
(Keine bösartigen Objekte gefunden)
Infizierte Dateiobjekte der Registrierung:
(Keine bösartigen Objekte gefunden)
Infizierte Verzeichnisse:
(Keine bösartigen Objekte gefunden)
Infizierte Dateien:
c:\programdata\45539080.exe (Rogue.FakeHDD) -> Quarantined and deleted successfully.
c:\Users\slo\AppData\Local\Temp\0.1830173790576951.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\Users\slo\AppData\Local\Temp\internetexplorerupdate.exe (Trojan.FakeAlert.Gen) -> Quarantined and deleted successfully. OTL: HTML-Code:
OTL logfile created on: 07.04.2011 23:00:12 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\slo\Desktop
64bit-Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6002.18005)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 45,00% Memory free
4,00 Gb Paging File | 2,00 Gb Available in Paging File | 54,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 63,48 Gb Total Space | 2,15 Gb Free Space | 3,38% Space Free | Partition Type: NTFS
Drive E: | 71,75 Gb Total Space | 9,56 Gb Free Space | 13,32% Space Free | Partition Type: NTFS
Drive F: | 97,66 Gb Total Space | 53,79 Gb Free Space | 55,08% Space Free | Partition Type: NTFS
Drive G: | 978,07 Mb Total Space | 968,50 Mb Free Space | 99,02% Space Free | Partition Type: FAT32
Computer Name: SLO-PC | User Name: slo | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - C:\Users\slo\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Windows\SysWOW64\PnkBstrA.exe ()
PRC - C:\Program Files (x86)\Winamp\winampa.exe (Nullsoft, Inc.)
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
PRC - C:\Program Files (x86)\Logitech\Vid HD\Vid.exe (Logitech Inc.)
PRC - C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe ()
PRC - C:\Program Files (x86)\Common Files\Logishrd\LVMVFM\LVPrS64H.exe (Logitech Inc.)
PRC - C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe ()
PRC - C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe (Logitech Inc.)
PRC - C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe ()
PRC - C:\Program Files (x86)\phonostar-Player\phonostarTimer.exe ()
PRC - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
PRC - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe (Safer Networking Ltd.)
[color=#E56717]========== Modules (SafeList) ==========[/color]
MOD - C:\Users\slo\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3\comctl32.dll (Microsoft Corporation)
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV:[b]64bit:[/b] - (LVPrcS64) -- C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.)
SRV - (AntiVirService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
SRV - (PnkBstrA) -- C:\Windows\SysWOW64\PnkBstrA.exe ()
SRV - (AntiVirSchedulerService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
SRV - (ICQ Service) -- C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe ()
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (WinHttpAutoProxySvc) -- winhttp.dll (Microsoft Corporation)
SRV - (Stereo Service) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (SBSDWSCService) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe (Safer Networking Ltd.)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV:[b]64bit:[/b] - (avgntflt) -- C:\Windows\SysNative\DRIVERS\avgntflt.sys (Avira GmbH)
DRV:[b]64bit:[/b] - (LVUVC64) Logitech Webcam C160(UVC) -- C:\Windows\SysNative\DRIVERS\lvuvc64.sys (Logitech Inc.)
DRV:[b]64bit:[/b] - (LVRS64) -- C:\Windows\SysNative\DRIVERS\lvrs64.sys (Logitech Inc.)
DRV:[b]64bit:[/b] - (LVPr2Mon) -- C:\Windows\SysNative\DRIVERS\LVPr2M64.sys ()
DRV:[b]64bit:[/b] - (LVPr2M64) -- C:\Windows\SysNative\DRIVERS\LVPr2M64.sys ()
DRV:[b]64bit:[/b] - (avipbb) -- C:\Windows\SysNative\DRIVERS\avipbb.sys (Avira GmbH)
DRV:[b]64bit:[/b] - (atksgt) -- C:\Windows\SysNative\DRIVERS\atksgt.sys ()
DRV:[b]64bit:[/b] - (lirsgt) -- C:\Windows\SysNative\DRIVERS\lirsgt.sys ()
DRV:[b]64bit:[/b] - (WpdUsb) -- C:\Windows\SysNative\DRIVERS\wpdusb.sys (Microsoft Corporation)
DRV:[b]64bit:[/b] - (GEARAspiWDM) -- C:\Windows\SysNative\DRIVERS\GEARAspiWDM.sys (GEAR Software Inc.)
DRV:[b]64bit:[/b] - (RTL8169) -- C:\Windows\SysNative\DRIVERS\Rtlh64.sys (Realtek )
DRV:[b]64bit:[/b] - (3xHybr64) -- C:\Windows\SysNative\DRIVERS\3xHybr64.sys (Philips Semiconductors GmbH)
DRV:[b]64bit:[/b] - (MTsensor) -- C:\Windows\SysNative\DRIVERS\ASACPI.sys ()
DRV:[b]64bit:[/b] - (Ntfs) -- C:\Windows\SysNative\Wbem\ntfs.mof ()
DRV:[b]64bit:[/b] - (FET5A64) -- C:\Windows\SysNative\DRIVERS\fet5a64.sys (VIA Technologies, Inc. )
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKLM\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.icq.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKCU\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKCU\..\URLSearchHook: {EEE6C35D-6118-11DC-9C72-001320C79847} - Reg Error: Key error. File not found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
[color=#E56717]========== FireFox ==========[/color]
FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..browser.search.defaultthis.engineName: "Search"
FF - prefs.js..browser.search.defaulturl: "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2269050&SearchSource=3&q={searchTerms}"
FF - prefs.js..browser.search.selectedEngine: "ICQ Search"
FF - prefs.js..browser.startup.homepage: "google.de"
FF - prefs.js..extensions.enabledItems: {DDC359D1-844A-42a7-9AA1-88A850A938A8}:1.1.10
FF - prefs.js..extensions.enabledItems: {e9911ec6-1bcc-40b0-9993-e0eea7f6953f}:2.5.8.6
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {ACAA314B-EEBA-48e4-AD47-84E31C44796C}:1.0.1
FF - prefs.js..extensions.enabledItems: {872b5b88-9db5-4310-bdd0-ac189557e5f5}:2.7.2.0
FF - prefs.js..extensions.enabledItems: battlefieldheroespatcher@ea.com:5.0.31.0
FF - prefs.js..keyword.URL: "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.1.7&q="
FF - prefs.js..sweetim.toolbar.previous.keyword.URL: "chrome://browser-region/locale/region.properties"
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.15\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011.03.06 23:27:13 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.15\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011.04.07 22:26:10 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 2.0.0.22\extensions\\Components: K:\Portables Extern\ThunderbirdPortable\App\Thunderbird\components
FF - HKLM\software\mozilla\Mozilla Thunderbird 2.0.0.22\extensions\\Plugins: K:\Portables Extern\ThunderbirdPortable\App\Thunderbird\plugins
FF - HKLM\software\mozilla\Mozilla Thunderbird 3.0.4\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2011.03.21 21:52:46 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 3.0.4\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins [2011.04.07 22:26:10 | 000,000,000 | ---D | M]
[2010.05.19 15:03:58 | 000,000,000 | -H-D | M] (No name found) -- C:\Users\slo\AppData\Roaming\mozilla\Extensions
[2010.05.19 15:03:58 | 000,000,000 | -H-D | M] (No name found) -- C:\Users\slo\AppData\Roaming\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2011.04.07 22:59:44 | 000,000,000 | -H-D | M] (No name found) -- C:\Users\slo\AppData\Roaming\mozilla\Firefox\Profiles\w59t2voi.default\extensions
[2010.06.28 23:36:23 | 000,000,000 | -H-D | M] (Microsoft .NET Framework Assistant) -- C:\Users\slo\AppData\Roaming\mozilla\Firefox\Profiles\w59t2voi.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010.09.04 16:20:30 | 000,000,000 | -H-D | M] (DVDVideoSoftTB Toolbar) -- C:\Users\slo\AppData\Roaming\mozilla\Firefox\Profiles\w59t2voi.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}
[2010.06.23 16:36:07 | 000,000,000 | -H-D | M] ("DVDVideoSoft Menu") -- C:\Users\slo\AppData\Roaming\mozilla\Firefox\Profiles\w59t2voi.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
[2010.06.28 23:36:23 | 000,000,000 | -H-D | M] (DownThemAll!) -- C:\Users\slo\AppData\Roaming\mozilla\Firefox\Profiles\w59t2voi.default\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}
[2010.04.11 05:32:35 | 000,000,000 | -H-D | M] (DVDVideoSoft Toolbar) -- C:\Users\slo\AppData\Roaming\mozilla\Firefox\Profiles\w59t2voi.default\extensions\{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}
[2010.12.26 17:49:36 | 000,000,000 | -H-D | M] (Battlefield Heroes Updater) -- C:\Users\slo\AppData\Roaming\mozilla\Firefox\Profiles\w59t2voi.default\extensions\battlefieldheroespatcher@ea.com
[2010.04.11 11:59:14 | 000,000,873 | -H-- | M] () -- C:\Users\slo\AppData\Roaming\Mozilla\Firefox\Profiles\w59t2voi.default\searchplugins\conduit.xml
[2011.04.07 22:59:44 | 000,001,056 | ---- | M] () -- C:\Users\slo\AppData\Roaming\Mozilla\Firefox\Profiles\w59t2voi.default\searchplugins\icqplugin.xml
[2009.09.22 19:08:36 | 000,003,915 | -H-- | M] () -- C:\Users\slo\AppData\Roaming\Mozilla\Firefox\Profiles\w59t2voi.default\searchplugins\sweetim.xml
[2011.02.01 20:41:09 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
[2010.05.17 08:28:53 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010.04.12 17:29:19 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2010.12.09 12:47:06 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll
[2011.03.06 23:27:06 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
[2011.03.06 23:27:06 | 000,002,344 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
[2011.03.06 23:27:06 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
[2011.03.06 23:27:07 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml
[2011.03.06 23:27:07 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
O1 HOSTS File: ([2006.09.18 23:37:24 | 000,000,761 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll (Safer Networking Limited)
O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {EEE6C35B-6118-11DC-9C72-001320C79847} - No CLSID value found.
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Programme\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [Skytel] C:\Programme\Realtek\Audio\HDA\SkyTel.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe (Logitech Inc.)
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files (x86)\QuickTime Alternative\QTTask.exe (Apple Inc.)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files (x86)\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKCU..\Run: [ISUSPM Startup] File not found
O4 - HKCU..\Run: [Logitech Vid] C:\Program Files (x86)\Logitech\Vid HD\Vid.exe (Logitech Inc.)
O4 - HKCU..\Run: [phonostarTimer] C:\Program Files (x86)\phonostar-Player\phonostarTimer.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O8:[b]64bit:[/b] - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\slo\AppData\Roaming\DVDVideoSoftIEHelpers\youtubetomp3.htm ()
O8:[b]64bit:[/b] - Extra context menu item: Save YouTube Video as MP3 - C:\Program Files (x86)\Common Files\DVDVideoSoft\Dll\IEContextMenuY.dll (DVSTeam)
O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\slo\AppData\Roaming\DVDVideoSoftIEHelpers\youtubetomp3.htm ()
O8 - Extra context menu item: Save YouTube Video as MP3 - C:\Program Files (x86)\Common Files\DVDVideoSoft\Dll\IEContextMenuY.dll (DVSTeam)
O9 - Extra Button: ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Program Files (x86)\ICQ7.4\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Program Files (x86)\ICQ7.4\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll (Safer Networking Limited)
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18:[b]64bit:[/b] - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O18:[b]64bit:[/b] - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\slo\AppData\Roaming\Microsoft\Windows Photo Gallery\Hintergrundbild der Windows-Fotogalerie.jpg
O24 - Desktop BackupWallPaper: C:\Users\slo\AppData\Roaming\Microsoft\Windows Photo Gallery\Hintergrundbild der Windows-Fotogalerie.jpg
O29:[b]64bit:[/b] - HKLM SecurityProviders - (credssp.dll) - credssp.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (credssp.dll) - credssp.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{4781247b-290c-11df-ba2b-00261836c606}\Shell - "" = AutoRun
O33 - MountPoints2\{4781247b-290c-11df-ba2b-00261836c606}\Shell\AutoRun\command - "" = L:\LaunchU3.exe -a
O33 - MountPoints2\{ada11677-82a9-11de-87e6-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{ada11677-82a9-11de-87e6-806e6f6e6963}\Shell\AutoRun\command - "" = G:\.\Bin\Assetup.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2011.04.07 22:59:24 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Users\slo\Desktop\OTL.exe
[2011.04.07 21:18:58 | 001,068,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DWrite.dll
[2011.04.07 21:18:57 | 001,555,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll
[2011.04.07 21:18:57 | 000,479,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll
[2011.04.07 21:18:57 | 000,288,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
[2011.03.22 23:37:36 | 000,000,000 | -H-D | C] -- C:\Users\slo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Recovery
[2011.03.21 21:55:08 | 000,000,000 | -H-D | C] -- C:\Users\slo\AppData\Local\Apple Computer
[2011.03.21 21:55:07 | 000,000,000 | -H-D | C] -- C:\Users\slo\AppData\Roaming\Apple Computer
[2011.03.21 21:54:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2011.03.21 21:54:44 | 000,126,312 | ---- | C] (GEAR Software Inc.) -- C:\Windows\SysNative\GEARAspi64.dll
[2011.03.21 21:54:44 | 000,107,368 | ---- | C] (GEAR Software Inc.) -- C:\Windows\SysWow64\GEARAspi.dll
[2011.03.21 21:54:44 | 000,034,152 | ---- | C] (GEAR Software Inc.) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys
[2011.03.21 21:54:44 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DRVSTORE
[2011.03.21 21:54:04 | 000,000,000 | ---D | C] -- C:\Programme\iPod
[2011.03.21 21:54:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2011.03.21 21:54:03 | 000,000,000 | ---D | C] -- C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
[2011.03.21 21:54:02 | 000,000,000 | ---D | C] -- C:\Programme\iTunes
[2011.03.21 21:52:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
[2011.03.21 21:51:53 | 000,000,000 | -H-D | C] -- C:\Users\slo\AppData\Local\Apple
[2011.03.21 21:51:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Apple Software Update
[2011.03.21 21:49:58 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\Apple
[2011.03.21 21:49:39 | 000,000,000 | ---D | C] -- C:\Programme\Bonjour
[2011.03.21 21:49:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bonjour
[2011.03.21 21:49:20 | 000,000,000 | -H-D | C] -- C:\ProgramData\Apple
[2011.03.21 21:49:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Apple
[2011.03.18 20:09:04 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallJammer Registry
[2011.03.18 20:08:56 | 000,000,000 | -H-D | C] -- C:\Users\slo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ButtonBeats.com Virtual Piano
[2011.03.18 20:08:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ButtonBeats.com Virtual Piano
[2011.03.18 20:04:09 | 000,000,000 | -H-D | C] -- C:\Users\slo\AppData\Roaming\Synthesia
[2011.03.13 19:24:27 | 000,000,000 | -H-D | C] -- C:\Users\slo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamp Erkennungs-Plug-in
[2011.03.13 19:24:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Winamp Detect
[2011.03.13 19:24:11 | 000,000,000 | -H-D | C] -- C:\Users\slo\AppData\Roaming\Winamp
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2011.04.07 22:59:59 | 000,000,426 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{A08E459A-0FF6-4E1B-9C06-B91F4E4BDE12}.job
[2011.04.07 22:59:27 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\slo\Desktop\OTL.exe
[2011.04.07 22:39:30 | 001,445,116 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011.04.07 22:39:30 | 000,628,504 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2011.04.07 22:39:30 | 000,595,798 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011.04.07 22:39:30 | 000,126,054 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2011.04.07 22:39:30 | 000,103,872 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011.04.07 22:33:49 | 000,001,098 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011.04.07 22:33:07 | 000,004,784 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011.04.07 22:33:06 | 000,004,784 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011.04.07 22:32:59 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.04.07 22:32:40 | 2146,623,488 | -HS- | M] () -- C:\hiberfil.sys
[2011.04.07 22:32:09 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\drivers\lvuvc.hs
[2011.04.07 22:26:10 | 000,001,917 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
[2011.04.07 22:19:02 | 000,001,102 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011.04.07 21:03:49 | 000,000,948 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.03.22 23:39:52 | 000,000,400 | -H-- | M] () -- C:\ProgramData\45539080
[2011.03.22 23:37:38 | 000,000,583 | -H-- | M] () -- C:\Users\slo\Desktop\Windows Recovery.lnk
[2011.03.22 23:37:37 | 000,000,128 | -H-- | M] () -- C:\ProgramData\~45539080r
[2011.03.22 23:37:37 | 000,000,096 | -H-- | M] () -- C:\ProgramData\~45539080
[2011.03.22 23:37:16 | 000,095,549 | -H-- | M] () -- C:\ProgramData\nvModes.001
[2011.03.22 19:26:57 | 000,095,549 | -H-- | M] () -- C:\ProgramData\nvModes.dat
[2011.03.21 21:54:53 | 000,001,694 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2011.03.21 21:52:33 | 000,001,816 | ---- | M] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2011.03.18 20:09:04 | 000,000,966 | -H-- | M] () -- C:\Users\slo\Desktop\ButtonBeats.com Virtual Piano.lnk
[2011.03.18 19:54:39 | 000,016,751 | -H-- | M] () -- C:\Users\slo\Desktop\censored.jpg
[2011.03.14 21:33:26 | 000,007,168 | -H-- | M] () -- C:\Users\slo\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.03.13 19:24:27 | 000,000,818 | ---- | M] () -- C:\Users\Public\Desktop\Winamp.lnk
[2011.03.13 19:20:16 | 000,013,532 | -H-- | M] () -- C:\Users\slo\Documents\cc_20110313_182013.reg
[2011.03.13 19:20:01 | 000,109,416 | -H-- | M] () -- C:\Users\slo\Documents\cc_20110313_181955.reg
[2011.03.13 14:22:48 | 000,037,952 | -H-- | M] () -- C:\Users\slo\Desktop\b5ebf973b1.jpeg
[2011.03.13 14:22:25 | 000,039,550 | -H-- | M] () -- C:\Users\slo\Desktop\17417caf3e.jpeg
[2011.03.13 14:21:51 | 000,023,383 | -H-- | M] () -- C:\Users\slo\Desktop\Unbenannt.jpg
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2011.04.07 22:26:10 | 000,001,917 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
[2011.04.07 21:03:49 | 000,000,948 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.03.22 23:37:38 | 000,000,583 | -H-- | C] () -- C:\Users\slo\Desktop\Windows Recovery.lnk
[2011.03.22 23:37:37 | 000,000,128 | -H-- | C] () -- C:\ProgramData\~45539080r
[2011.03.22 23:37:37 | 000,000,096 | -H-- | C] () -- C:\ProgramData\~45539080
[2011.03.22 23:37:29 | 000,000,400 | -H-- | C] () -- C:\ProgramData\45539080
[2011.03.21 21:54:53 | 000,001,694 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2011.03.21 21:52:33 | 000,001,816 | ---- | C] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2011.03.21 21:51:47 | 000,001,830 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2011.03.18 20:09:04 | 000,000,966 | -H-- | C] () -- C:\Users\slo\Desktop\ButtonBeats.com Virtual Piano.lnk
[2011.03.18 19:53:56 | 000,016,751 | -H-- | C] () -- C:\Users\slo\Desktop\censored.jpg
[2011.03.13 19:24:27 | 000,000,818 | ---- | C] () -- C:\Users\Public\Desktop\Winamp.lnk
[2011.03.13 19:20:14 | 000,013,532 | -H-- | C] () -- C:\Users\slo\Documents\cc_20110313_182013.reg
[2011.03.13 19:19:57 | 000,109,416 | -H-- | C] () -- C:\Users\slo\Documents\cc_20110313_181955.reg
[2011.03.13 14:22:48 | 000,037,952 | -H-- | C] () -- C:\Users\slo\Desktop\b5ebf973b1.jpeg
[2011.03.13 14:22:23 | 000,039,550 | -H-- | C] () -- C:\Users\slo\Desktop\17417caf3e.jpeg
[2011.03.13 14:21:51 | 000,023,383 | -H-- | C] () -- C:\Users\slo\Desktop\Unbenannt.jpg
[2011.02.25 21:32:05 | 000,019,456 | -H-- | C] () -- C:\Users\slo\AppData\Local\WebpageIcons.db
[2011.01.30 18:39:08 | 000,007,168 | -H-- | C] () -- C:\Users\slo\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.11.10 04:45:32 | 000,102,744 | ---- | C] () -- C:\Windows\SysWow64\LogiDPPApp.exe
[2010.11.10 04:45:30 | 010,871,128 | ---- | C] () -- C:\Windows\SysWow64\LogiDPP.dll
[2010.11.10 04:45:20 | 000,316,248 | ---- | C] () -- C:\Windows\SysWow64\DevManagerCore.dll
[2010.09.01 17:48:03 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010.07.31 15:36:48 | 000,110,080 | ---- | C] () -- C:\Windows\SysWow64\advd.dll
[2010.07.31 15:36:48 | 000,023,040 | ---- | C] () -- C:\Windows\SysWow64\auth.dll
[2009.10.23 15:42:15 | 002,407,792 | ---- | C] () -- C:\Windows\SysWow64\pbsvc_heroes.exe
[2009.09.24 15:43:37 | 000,117,248 | ---- | C] () -- C:\Windows\SysWow64\EhStorAuthn.dll
[2009.09.24 15:43:04 | 000,107,612 | ---- | C] () -- C:\Windows\SysWow64\StructuredQuerySchema.bin
[2009.09.24 15:42:36 | 000,368,640 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009.09.01 22:10:45 | 000,484,352 | ---- | C] () -- C:\Windows\SysWow64\lame_enc.dll
[2009.08.26 21:32:03 | 000,018,904 | ---- | C] () -- C:\Windows\SysWow64\StructuredQuerySchemaTrivial.bin
[2009.08.23 14:00:23 | 000,060,124 | ---- | C] () -- C:\Windows\SysWow64\tcpmon.ini
[2009.08.20 15:19:11 | 000,000,306 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2009.08.18 19:17:29 | 000,270,240 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2009.08.18 19:17:27 | 000,075,136 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2009.08.18 19:17:25 | 000,000,331 | ---- | C] () -- C:\Windows\game.ini
[2009.08.06 20:50:58 | 000,095,549 | -H-- | C] () -- C:\ProgramData\nvModes.dat
[2009.08.06 20:50:58 | 000,095,549 | -H-- | C] () -- C:\ProgramData\nvModes.001
[2009.08.06 20:39:27 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2009.08.06 19:45:49 | 000,168,448 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2009.08.06 19:45:49 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini
[2009.08.06 19:45:47 | 002,402,304 | ---- | C] () -- C:\Windows\SysWow64\x264vfw.dll
[2009.08.06 19:45:47 | 000,881,664 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2009.08.06 19:45:47 | 000,205,824 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2009.08.06 19:45:45 | 000,085,504 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2009.08.06 19:13:00 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
[2009.08.06 19:12:46 | 000,014,668 | ---- | C] () -- C:\Windows\Ascd_tmp.ini
[2009.08.06 19:12:46 | 000,010,296 | ---- | C] () -- C:\Windows\SysWow64\drivers\ASUSHWIO.SYS
[2008.10.07 09:13:30 | 000,197,912 | ---- | C] () -- C:\Windows\SysWow64\physxcudart_20.dll
[2008.10.07 09:13:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelTraditionalChinese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSwedish.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSpanish.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSimplifiedChinese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelPortugese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelKorean.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelJapanese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelGerman.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelFrench.dll
[2006.11.02 17:37:05 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006.11.02 14:37:14 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2006.11.02 14:24:17 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2006.11.02 14:18:17 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2006.11.02 11:47:54 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin < End of report > Extras: HTML-Code:
OTL Extras logfile created on: 07.04.2011 23:00:12 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\slo\Desktop
64bit-Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6002.18005)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 45,00% Memory free
4,00 Gb Paging File | 2,00 Gb Available in Paging File | 54,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 63,48 Gb Total Space | 2,15 Gb Free Space | 3,38% Space Free | Partition Type: NTFS
Drive E: | 71,75 Gb Total Space | 9,56 Gb Free Space | 13,32% Space Free | Partition Type: NTFS
Drive F: | 97,66 Gb Total Space | 53,79 Gb Free Space | 55,08% Space Free | Partition Type: NTFS
Drive G: | 978,07 Mb Total Space | 968,50 Mb Free Space | 99,02% Space Free | Partition Type: FAT32
Computer Name: SLO-PC | User Name: slo | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Extra Registry (SafeList) ==========[/color]
[color=#E56717]========== File Associations ==========[/color]
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
[color=#E56717]========== Shell Spawning ==========[/color]
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %* File not found
cmdfile [open] -- "%1" %* File not found
comfile [open] -- "%1" %* File not found
exefile [open] -- "%1" %* File not found
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" File not found
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l File not found
InternetShortcut [print] -- rundll32.exe C:\Windows\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %* File not found
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1" File not found
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l File not found
scrfile [open] -- "%1" /S File not found
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[color=#E56717]========== Security Center Settings ==========[/color]
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = 63 C7 55 5F E5 24 CA 01 [binary data]
"VistaSp2" = 14 8F 26 22 60 3D CA 01 [binary data]
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"oobe_av" = 1
[color=#E56717]========== System Restore Settings ==========[/color]
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore]
[color=#E56717]========== Firewall Settings ==========[/color]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[color=#E56717]========== Authorized Applications List ==========[/color]
[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
[color=#E56717]========== Vista Active Application Exception List ==========[/color]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{03ECA569-8865-4C46-B998-BD19A4A793BE}" = protocol=6 | dir=in | app=e:\steamapps\common\call of duty modern warfare 2\iw4mp.exe |
"{0B22E10D-79AD-415A-BDEC-2ADD26282382}" = protocol=17 | dir=in | app=e:\steamapps\common\call of duty modern warfare 2\iw4sp.exe |
"{18016EDB-DAA6-4A13-A24E-651C0C1FABCA}" = protocol=17 | dir=in | app=c:\program files (x86)\logitech\vid hd\vid.exe |
"{38F47087-CA6E-46DA-95AE-317B04E9478F}" = protocol=17 | dir=in | app=c:\program files (x86)\icq7.4\icq.exe |
"{3DA2A22A-F16A-4770-8194-CC266D4F4242}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead\srcds.exe |
"{46E77B63-0C2E-4030-B6C7-6E9D8F418452}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{4788CFAE-419D-43BE-8EF6-F5820E83D59C}" = protocol=6 | dir=in | app=c:\program files (x86)\icq7.4\icq.exe |
"{4886136E-1958-4E75-A2D6-3E8AE9355AC2}" = protocol=17 | dir=in | app=e:\ea games\battlefield ii\bf2.exe |
"{522CD532-C883-4115-8F7A-5FA2E8F6A7BD}" = protocol=17 | dir=in | app=c:\program files (x86)\icq7.4\icq.exe |
"{5543B7B1-15D9-4380-AAA2-F2D2B23AD309}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{568FFE77-7AD6-42D8-BDF8-66ADF904BA50}" = protocol=6 | dir=in | app=e:\world of warcraft\wow-3.2.0-dede-downloader.exe |
"{592A2239-755D-4680-9AD6-5DDFA83FF024}" = protocol=6 | dir=in | app=e:\steam.exe |
"{607B11C6-BB5A-424B-89C6-ED0E395AA3CF}" = protocol=6 | dir=in | app=c:\program files (x86)\logitech\vid hd\vid.exe |
"{71D2FF23-D0EF-432B-898E-AD1DDD31478C}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed\assassinscreed_dx10.exe |
"{764E2297-577C-48FC-8E87-73DD88C1A835}" = protocol=6 | dir=in | app=c:\program files (x86)\icq7.4\icq.exe |
"{7C94BEFE-44C3-43C4-BC43-E3E66CE3FA92}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{904D8417-AF03-4B62-99DF-00DD4005E918}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed\assassinscreed_dx9.exe |
"{980CAAE7-3D0A-4096-91E5-EE72E893B248}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{9FC9658B-0002-4FA8-AE55-317B57E33077}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead\srcds.exe |
"{A342370B-38C5-4D82-984B-B424CD3A1E30}" = protocol=17 | dir=in | app=e:\steam.exe |
"{A58C0379-BF44-46DB-8DBC-CFDDD5901843}" = protocol=6 | dir=in | app=c:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{A72F83F5-7D10-4B2C-B2E4-E70C69FE4F82}" = protocol=6 | dir=in | app=e:\steamapps\common\call of duty modern warfare 2\iw4sp.exe |
"{B39ED5D5-6CF8-4D2E-B1B6-B81CE7BF32B2}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{B4E0F196-DF85-464C-A5B2-0F84B315497A}" = protocol=17 | dir=in | app=c:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{B776A719-ED28-48F8-9778-C24E008FD26E}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{BBDB4B0C-D5BD-421E-90C9-2AFF685D7885}" = protocol=17 | dir=in | app=e:\steamapps\common\call of duty modern warfare 2\iw4mp.exe |
"{BCB84077-47CB-4C96-9351-841E1375BAB6}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed\assassinscreed_launcher.exe |
"{CEBAA428-8C40-4E1D-A5E2-6D03B376E73D}" = protocol=6 | dir=in | app=e:\ea games\battlefield ii\bf2.exe |
"{E7665D2B-97E3-4055-8449-1E5388922266}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed\assassinscreed_dx10.exe |
"{E8113F07-2D1B-43C6-AA74-D3B658284F7F}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{F5B68E2F-5CAD-415D-A1D1-F31444DA85E8}" = protocol=17 | dir=in | app=e:\world of warcraft\wow-3.2.0-dede-downloader.exe |
"{F60E1528-FC23-4B55-A6E0-BBC8ADDFEE35}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{F94C4AA4-DF08-411B-9F46-6723AC0AE57A}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed\assassinscreed_launcher.exe |
"{FA83059E-8E24-4C7B-BBC3-CA1DE2763E71}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed\assassinscreed_dx9.exe |
"TCP Query User{1950B244-EA21-4C70-9B0F-14321A5AD8B6}C:\program files (x86)\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"TCP Query User{1EF3463E-BE86-4CC0-AD2D-2935856652F5}E:\world of warcraft\launcher.exe" = protocol=6 | dir=in | app=e:\world of warcraft\launcher.exe |
"TCP Query User{423EFC92-6559-450E-890E-9E7FD7CEB68B}E:\clients\icq6.5\icq.exe" = protocol=6 | dir=in | app=e:\clients\icq6.5\icq.exe |
"TCP Query User{44E0D118-89DB-4D75-B5BA-7BA208ED00DF}C:\dvdvideosoft\sega\wf.exe" = protocol=6 | dir=in | app=c:\dvdvideosoft\sega\wf.exe |
"TCP Query User{59A8C978-112F-4607-8016-614934E03A83}C:\windows\syswow64\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe |
"TCP Query User{8B10F7DF-78EA-40FA-8E9B-A56205B3891F}E:\activision\call of duty 4 - modern warfare\iw3mp.exe" = protocol=6 | dir=in | app=e:\activision\call of duty 4 - modern warfare\iw3mp.exe |
"TCP Query User{95CF6BAB-86B8-47D1-B81F-FB4E5C774329}C:\users\slo\desktop\games\stronghold crusader\stronghold crusader.exe" = protocol=6 | dir=in | app=c:\users\slo\desktop\games\stronghold crusader\stronghold crusader.exe |
"TCP Query User{A80A25EE-B827-404F-978E-A97EEF66665F}C:\program files (x86)\phonostar\ps_olect.exe" = protocol=6 | dir=in | app=c:\program files (x86)\phonostar\ps_olect.exe |
"TCP Query User{AC4FAA59-DFB8-48C3-83DD-22DB54B49DF1}C:\program files (x86)\icq7.0\icq.exe" = protocol=6 | dir=in | app=c:\program files (x86)\icq7.0\icq.exe |
"TCP Query User{EBCB900F-3C50-4C84-AEE2-80C7DE67A638}C:\program files (x86)\logitech\vid hd\vid.exe" = protocol=6 | dir=in | app=c:\program files (x86)\logitech\vid hd\vid.exe |
"UDP Query User{1949A2FA-5DC0-43E1-A6EB-05BFC7ACC19B}C:\program files (x86)\icq7.0\icq.exe" = protocol=17 | dir=in | app=c:\program files (x86)\icq7.0\icq.exe |
"UDP Query User{285D7525-33C1-4912-AB76-B5DC6A108ED2}E:\activision\call of duty 4 - modern warfare\iw3mp.exe" = protocol=17 | dir=in | app=e:\activision\call of duty 4 - modern warfare\iw3mp.exe |
"UDP Query User{3B5DA52D-D280-4CFD-A54B-AA1A2FEAAF28}C:\program files (x86)\phonostar\ps_olect.exe" = protocol=17 | dir=in | app=c:\program files (x86)\phonostar\ps_olect.exe |
"UDP Query User{40AC65BE-8751-4284-8E48-9FDC212A7807}E:\world of warcraft\launcher.exe" = protocol=17 | dir=in | app=e:\world of warcraft\launcher.exe |
"UDP Query User{6703F631-B918-479E-BDF9-6E7C73DEECD3}C:\dvdvideosoft\sega\wf.exe" = protocol=17 | dir=in | app=c:\dvdvideosoft\sega\wf.exe |
"UDP Query User{8F64A2FF-2381-4AD3-ABBF-770B00BDA8A8}C:\program files (x86)\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"UDP Query User{A2F6C4DB-8D45-4765-99C8-6334EB8B765D}C:\users\slo\desktop\games\stronghold crusader\stronghold crusader.exe" = protocol=17 | dir=in | app=c:\users\slo\desktop\games\stronghold crusader\stronghold crusader.exe |
"UDP Query User{BEFA60A7-6B43-416D-A580-2A306993664B}C:\program files (x86)\logitech\vid hd\vid.exe" = protocol=17 | dir=in | app=c:\program files (x86)\logitech\vid hd\vid.exe |
"UDP Query User{DDB45983-8CA6-416E-83B4-40D71BC1B0BA}C:\windows\syswow64\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe |
"UDP Query User{FC59A852-40C6-46E9-8DD3-CC4B9FCB012B}E:\clients\icq6.5\icq.exe" = protocol=17 | dir=in | app=e:\clients\icq6.5\icq.exe |
[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{052FDD78-A6EA-3187-8386-C82F4CA3A929}" = Microsoft .NET Framework 3.5 Language Pack SP1 - deu
"{0E3DAF3D-FF69-345A-A99E-1FED304CA083}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"{138A4072-9E64-46BD-B5F9-DB2BB395391F}" = LWS VideoEffects
"{8F473675-D702-45F9-8EBC-342B40C17BF5}" = Apple Mobile Device Support
"{9545E9DB-6F4C-4404-BF25-E221BE8B44C5}" = iTunes
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{E4F5E48E-7155-4CF9-88CD-7F377EC9AC54}" = Bonjour
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 3.5 Language Pack SP1 - deu" = Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"NVIDIA Drivers" = NVIDIA Drivers
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0138F525-6C8A-333F-A105-14AE030B9A54}" = Visual C++ 9.0 CRT (x86) WinSXS MSM
"{02B244A2-7F6A-42E8-A36F-8C385D7A1625}" = Gothic III
"{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM)
"{050C1C8E-4A4D-4C2F-B9AE-67E60EE91B7F}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.3 Patch
"{08610298-29AE-445B-B37D-EFBE05802967}" = LWS Pictures And Video
"{15634701-BACE-4449-8B25-1567DA8C9FD3}" = CameraHelperMsi
"{1651216E-E7AD-4250-92A1-FB8ED61391C9}" = LWS Help_main
"{174A3B31-4C43-43DD-866F-73C9DB887B48}" = LWS Twitter
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{21DF0294-6B9D-4741-AB6F-B2ABFBD2387E}" = LWS YouTube Plugin
"{26A24AE4-039D-4CA4-87B4-2F83216014FF}" = Java(TM) 6 Update 20
"{2DC94AFD-A6E2-4AB4-9132-4A3F8E07B386}" = Apple Application Support
"{3BD633E0-4BF8-4499-9149-88F0767D449C}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch
"{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = erLT
"{4286E640-B5FB-11DF-AC4B-005056C00008}" = Google Earth
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{50D4CB89-AF34-4978-96DC-C3034062E901}" = Battlefield 2: Special Forces
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{5D7767FA-7FE8-4627-9F09-AEF7A25F1E07}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.1 Patch
"{6F76EC3C-34B1-436E-97FB-48C58D7BEDCD}" = LWS Gallery
"{71E66D3F-A009-44AB-8784-75E2819BA4BA}" = LWS Motion Detection
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{73C6DCFB-B606-47F3-BDFA-9A4FBF931E37}" = ICQ7.4
"{83C8FA3C-F4EA-46C4-8392-D3CE353738D6}" = LWS Launcher
"{8503C901-85D7-4262-88D2-8D8B2A7B08B8}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.5 Patch
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8136 8168 8169 Ethernet Driver
"{8937D274-C281-42E4-8CDB-A0B2DF979189}" = LWS Webcam Software
"{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"{8CFA9151-6404-409A-AF22-4632D04582FD}" = Assassin's Creed
"{8F50EC3D-C482-4445-9E4B-991A766047D5}_is1" = MAESTIA Version 201101
"{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"{99E862CC-6F69-4D39-99AA-DBF71BF3B585}" = OpenOffice.org 3.1
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9DAEA76B-E50F-4272-A595-0124E826553D}" = LWS WLM Plugin
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1031-7B44-A94000000001}" = Adobe Reader 9.4.3 - Deutsch
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{B83FC356-B7C0-441F-8A4D-D71E088E7974}" = NVIDIA PhysX
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{D40EB009-0499-459c-A8AF-C9C110766215}" = Logitech Webcam Software
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{E5141379-B2D9-4BBC-BB2A-5805541571DD}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.2 Patch
"{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}" = Skype™ 5.1
"{EED027B7-0DB6-404B-8F45-6DFEE34A0441}" = LWS Video Mask Maker
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{FF167195-9EE4-46C0-8CD7-FBA3457E88AB}" = LWS Facebook
"5E025EFD-B619-4240-9C87-818E1CDEE2C1" = ButtonBeats.com Virtual Piano
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"CCleaner" = CCleaner (remove only)
"Euro Truck Simulator" = Euro Truck Simulator 1.00
"EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v4.50
"Free Audio CD Burner_is1" = Free Audio CD Burner version 1.4
"Free M4a to MP3 Converter_is1" = Free M4a to MP3 Converter 6.1
"Free Mp3 Wma Converter_is1" = Free Mp3 Wma Converter V 1.8.0
"Free Studio_is1" = Free Studio version 4.3
"Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.8
"HijackThis" = HijackThis 2.0.2
"ICQToolbar" = ICQ Toolbar
"InstallShield_{050C1C8E-4A4D-4C2F-B9AE-67E60EE91B7F}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.3 Patch
"InstallShield_{3BD633E0-4BF8-4499-9149-88F0767D449C}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch
"InstallShield_{5D7767FA-7FE8-4627-9F09-AEF7A25F1E07}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.1 Patch
"InstallShield_{8503C901-85D7-4262-88D2-8D8B2A7B08B8}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.5 Multiplayer Patch
"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"InstallShield_{E5141379-B2D9-4BBC-BB2A-5805541571DD}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.2 Patch
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 5.0.0
"LemmingballZ_0" = LemmingballZ 3D 8460
"Logitech Vid" = Logitech Vid HD
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Mozilla Firefox (3.6.15)" = Mozilla Firefox (3.6.15)
"Mozilla Thunderbird (2.0.0.22)" = Mozilla Thunderbird (2.0.0.22)
"Mozilla Thunderbird (3.0.4)" = Mozilla Thunderbird (3.0.4)
"NosTale_is1" = Nostale(DE)
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"phonostar3RadioPlayer_is1" = phonostar-Player Version 3.01.7
"PhotoScape" = PhotoScape
"PunkBusterSvc" = PunkBuster Services
"QuicktimeAlt_is1" = QuickTime Alternative 2.8.0
"Uninstall_is1" = Uninstall 1.0.0.1
"VLC media player" = VLC media player 1.0.5
"Winamp" = Winamp
"WinRAR archiver" = WinRAR
[color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{8DC910CD-8EE3-4ffc-A4EB-9B02701059C4}" = Battlefield Heroes
"UnityWebPlayer" = Unity Web Player
"Winamp Detect" = Winamp Erkennungs-Plug-in
[color=#E56717]========== Last 10 Event Log Errors ==========[/color]
[ Application Events ]
Error - 21.03.2011 13:23:28 | Computer Name = slo-PC | Source = Microsoft-Windows-CAPI2 | ID = 131083
Description =
Error - 21.03.2011 15:41:47 | Computer Name = slo-PC | Source = MsiInstaller | ID = 10005
Description =
Error - 22.03.2011 13:26:27 | Computer Name = slo-PC | Source = Microsoft-Windows-CAPI2 | ID = 131083
Description =
Error - 22.03.2011 13:26:27 | Computer Name = slo-PC | Source = Microsoft-Windows-CAPI2 | ID = 131083
Description =
Error - 22.03.2011 17:47:31 | Computer Name = slo-PC | Source = Microsoft-Windows-CAPI2 | ID = 131083
Description =
Error - 22.03.2011 17:47:31 | Computer Name = slo-PC | Source = Microsoft-Windows-CAPI2 | ID = 131083
Description =
Error - 07.04.2011 14:57:14 | Computer Name = slo-PC | Source = Microsoft-Windows-CAPI2 | ID = 131083
Description =
Error - 07.04.2011 14:57:14 | Computer Name = slo-PC | Source = Microsoft-Windows-CAPI2 | ID = 131083
Description =
Error - 07.04.2011 16:19:03 | Computer Name = slo-PC | Source = Microsoft-Windows-CAPI2 | ID = 131083
Description =
Error - 07.04.2011 16:19:03 | Computer Name = slo-PC | Source = Microsoft-Windows-CAPI2 | ID = 131083
Description =
[ Media Center Events ]
Error - 02.03.2010 15:36:59 | Computer Name = slo-PC | Source = ehRecvr | ID = 4
Description =
[ System Events ]
Error - 07.04.2011 14:57:14 | Computer Name = slo-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 07.04.2011 15:03:47 | Computer Name = slo-PC | Source = Service Control Manager | ID = 7022
Description =
Error - 07.04.2011 16:18:52 | Computer Name = slo-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 07.04.2011 16:18:52 | Computer Name = slo-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 07.04.2011 16:26:09 | Computer Name = slo-PC | Source = DCOM | ID = 10005
Description =
Error - 07.04.2011 16:26:09 | Computer Name = slo-PC | Source = Service Control Manager | ID = 7009
Description =
Error - 07.04.2011 16:26:09 | Computer Name = slo-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 07.04.2011 16:32:53 | Computer Name = slo-PC | Source = volsnap | ID = 393229
Description = Die Schattenkopie von Volume "E:" konnte seinen Schattenkopiespeicher
auf Volume "E:" nicht vergrößern.
Error - 07.04.2011 16:33:26 | Computer Name = slo-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 07.04.2011 16:33:26 | Computer Name = slo-PC | Source = Service Control Manager | ID = 7000
Description =
< End of report > |