LastDrow | 26.07.2010 16:56 | So, jetzt habe ich den Win7 Rechner mal an mein Speedport angeschlossen und das Internet lief ganz normal. An der Netzwerkkarte dürfte es demnach nicht liegen.
Als ich den Rechner wieder im anderen Zimmer angeschlossen hatte, kam gleich ein neues Problem dazu: Plötzlich konnte er zum Netzwerk nicht mehr verbinden, weil der "Standartgatewaynicht verfügbar" war. Das habe ich dann hinbekommen, weil in einem Forum empfohlen war manuell auf einen anderen nforce Treiber umzustelen.
Das lahme Internet (2 kb/s) habe ich immer noch, langsam krieg ichs Brechen!
OK, Malwarebytes hat nix gefunden.
OTL gab das hier aus:
OTL Logfile: Code:
OTL Extras logfile created on: 26.07.2010 17:43:02 - Run 2
OTL by OldTimer - Version 3.2.9.1 Folder = E:\
Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 68,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 78,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 465,66 Gb Total Space | 448,69 Gb Free Space | 96,36% Space Free | Partition Type: NTFS
Drive D: | 3,54 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
Drive E: | 7,46 Gb Total Space | 4,92 Gb Free Space | 66,01% Space Free | Partition Type: FAT32
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: NUTZER-PC
Current User Name: Nutzer
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{20071984-5EB1-4881-8EDB-082532ACEC6D}" = Heroes of Might and Magic V
"{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform
"{D9E52CD1-9DF1-4A8A-9BDC-1E5E53982F2B}" = Black & White® 2
"{DEA314C4-0929-4250-BC92-98E4C105F28D}" = NVIDIA PhysX
"ASRock InstantBoot_is1" = ASRock InstantBoot v1.24
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Plattform-Geräte-Manager
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"NVIDIA Display Control Panel" = NVIDIA Display Control Panel
"NVIDIA Drivers" = NVIDIA Drivers
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 22.07.2010 17:02:27 | Computer Name = Nutzer-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: svchost.exe_iphlpsvc, Version: 6.1.7600.16385,
Zeitstempel: 0x4a5bc100 Name des fehlerhaften Moduls: wmiprvsd.dll, Version: 6.1.7600.16385,
Zeitstempel: 0x4a5bdb79 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000153b ID des fehlerhaften
Prozesses: 0x364 Startzeit der fehlerhaften Anwendung: 0x01cb29e12bf982c6 Pfad der
fehlerhaften Anwendung: C:\Windows\system32\svchost.exe Pfad des fehlerhaften Moduls:
C:\Windows\system32\wbem\wmiprvsd.dll Berichtskennung: 6ecc830a-95d4-11df-9550-0025224ed3f2
Error - 22.07.2010 17:02:27 | Computer Name = Nutzer-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: spoolsv.exe, Version: 6.1.7600.16385,
Zeitstempel: 0x4a5bced7 Name des fehlerhaften Moduls: win32spl.dll, Version: 6.1.7600.16385,
Zeitstempel: 0x4a5bdb38 Ausnahmecode: 0xc0000409 Fehleroffset: 0x0000cea7 ID des fehlerhaften
Prozesses: 0x4ac Startzeit der fehlerhaften Anwendung: 0x01cb29e12d38fde2 Pfad der
fehlerhaften Anwendung: C:\Windows\System32\spoolsv.exe Pfad des fehlerhaften Moduls:
C:\Windows\System32\win32spl.dll Berichtskennung: 6eccaa1a-95d4-11df-9550-0025224ed3f2
Error - 22.07.2010 17:02:27 | Computer Name = Nutzer-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: Dwm.exe, Version: 6.1.7600.16385,
Zeitstempel: 0x4a5bc225 Name des fehlerhaften Moduls: nvwgf2um.dll_unloaded, Version:
0.0.0.0, Zeitstempel: 0x4a5bdaed Ausnahmecode: 0xc0000005 Fehleroffset: 0x70bad09e
ID
des fehlerhaften Prozesses: 0x6e0 Startzeit der fehlerhaften Anwendung: 0x01cb29e12f4320e0
Pfad
der fehlerhaften Anwendung: C:\Windows\system32\Dwm.exe Pfad des fehlerhaften Moduls:
nvwgf2um.dll Berichtskennung: 6eccd12a-95d4-11df-9550-0025224ed3f2
Error - 22.07.2010 17:02:30 | Computer Name = Nutzer-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: WerFault.exe, Version: 6.1.7600.16385,
Zeitstempel: 0x4a5bc2d9 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0,
Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000fa072 ID des fehlerhaften
Prozesses: 0x7f8 Startzeit der fehlerhaften Anwendung: 0x01cb29e13105bd52 Pfad der
fehlerhaften Anwendung: C:\Windows\system32\WerFault.exe Pfad des fehlerhaften Moduls:
unknown Berichtskennung: 7061d2ce-95d4-11df-9550-0025224ed3f2
Error - 22.07.2010 17:08:49 | Computer Name = Nutzer-PC | Source = VSS | ID = 8194
Description =
Error - 22.07.2010 17:08:59 | Computer Name = Nutzer-PC | Source = Software Protection Platform Service | ID = 8200
Description = Lizenzerwerb-Fehlerdetails. hr=0xC004C008
Error - 22.07.2010 17:08:59 | Computer Name = Nutzer-PC | Source = Software Protection Platform Service | ID = 1014
Description = Fehler beim Erwerb der Endbenutzerlizenz. hr=0xC004C008 SKU-ID=586bc076-c93d-429a-afe5-a69fbc644e88
Error - 23.07.2010 15:02:46 | Computer Name = Nutzer-PC | Source = VSS | ID = 8194
Description =
Error - 24.07.2010 05:21:03 | Computer Name = Nutzer-PC | Source = VSS | ID = 8194
Description =
Error - 24.07.2010 08:49:13 | Computer Name = Nutzer-PC | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Users\Nutzer\AppData\Local\Temp\RarSFX0\redist.dll".
Die
abhängige Assemblierung "Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.30729.4148""
konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm
"sxstrace.exe".
[ System Events ]
Error - 27.07.2010 10:42:14 | Computer Name = Nutzer-PC | Source = Service Control Manager | ID = 7023
Description = Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler
beendet: %%-2140993535
Error - 27.07.2010 10:42:14 | Computer Name = Nutzer-PC | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name
Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet
wurde: %%-2140993535
Error - 27.07.2010 10:42:14 | Computer Name = Nutzer-PC | Source = Service Control Manager | ID = 7023
Description = Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler
beendet: %%-2140993535
Error - 27.07.2010 10:42:14 | Computer Name = Nutzer-PC | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name
Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet
wurde: %%-2140993535
Error - 27.07.2010 11:02:45 | Computer Name = Nutzer-PC | Source = PNRPSvc | ID = 102
Description =
Error - 27.07.2010 11:02:45 | Computer Name = Nutzer-PC | Source = Service Control Manager | ID = 7023
Description = Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler
beendet: %%-2140993535
Error - 27.07.2010 11:02:45 | Computer Name = Nutzer-PC | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name
Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet
wurde: %%-2140993535
Error - 27.07.2010 11:04:06 | Computer Name = Nutzer-PC | Source = Service Control Manager | ID = 7016
Description = Der Dienst "NVIDIA Stereoscopic 3D Driver Service" hat einen ungültigen
aktuellen Status gemeldet: 0
Error - 27.07.2010 11:14:30 | Computer Name = Nutzer-PC | Source = Service Control Manager | ID = 7016
Description = Der Dienst "NVIDIA Stereoscopic 3D Driver Service" hat einen ungültigen
aktuellen Status gemeldet: 0
Error - 26.07.2010 11:37:43 | Computer Name = Nutzer-PC | Source = Service Control Manager | ID = 7016
Description = Der Dienst "NVIDIA Stereoscopic 3D Driver Service" hat einen ungültigen
aktuellen Status gemeldet: 0
< End of report > --- --- ---
und das:
OTL Logfile: Code:
OTL logfile created on: 26.07.2010 17:43:02 - Run 2
OTL by OldTimer - Version 3.2.9.1 Folder = E:\
Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 68,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 78,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 465,66 Gb Total Space | 448,69 Gb Free Space | 96,36% Space Free | Partition Type: NTFS
Drive D: | 3,54 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
Drive E: | 7,46 Gb Total Space | 4,92 Gb Free Space | 66,01% Space Free | Partition Type: FAT32
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: NUTZER-PC
Current User Name: Nutzer
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ==========
PRC - C:\Programme\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
PRC - E:\OTL.exe (OldTimer Tools)
PRC - C:\Programme\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
PRC - C:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
PRC - C:\Programme\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
PRC - C:\Programme\Avira\AntiVir Desktop\avshadow.exe (Avira GmbH)
PRC - C:\Programme\VIA\VIAudioi\VDeck\VDeck.exe (VIA)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Programme\Internet Explorer\iexplore.exe (Microsoft Corporation)
PRC - C:\Programme\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
PRC - \\?\C:\Windows\System32\wbem\WMIADAP.EXE ()
PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation)
PRC - C:\Windows\System32\sppsvc.exe (Microsoft Corporation)
PRC - C:\Windows\System32\conhost.exe (Microsoft Corporation)
PRC - C:\Windows\System32\audiodg.exe (Microsoft Corporation)
========== Modules (SafeList) ==========
MOD - E:\OTL.exe (OldTimer Tools)
MOD - C:\Windows\System32\WindowsCodecs.dll (Microsoft Corporation)
MOD - C:\Windows\System32\sspicli.dll (Microsoft Corporation)
MOD - C:\Windows\System32\srvcli.dll (Microsoft Corporation)
MOD - C:\Windows\System32\slc.dll (Microsoft Corporation)
MOD - C:\Windows\System32\sechost.dll (Microsoft Corporation)
MOD - C:\Windows\System32\samcli.dll (Microsoft Corporation)
MOD - C:\Windows\System32\profapi.dll (Microsoft Corporation)
MOD - C:\Windows\System32\netutils.dll (Microsoft Corporation)
MOD - C:\Windows\System32\KernelBase.dll (Microsoft Corporation)
MOD - C:\Windows\System32\EhStorShell.dll (Microsoft Corporation)
MOD - C:\Windows\System32\dwmapi.dll (Microsoft Corporation)
MOD - C:\Windows\System32\devobj.dll (Microsoft Corporation)
MOD - C:\Windows\System32\cryptbase.dll (Microsoft Corporation)
MOD - C:\Windows\System32\cscapi.dll (Microsoft Corporation)
MOD - C:\Windows\System32\cfgmgr32.dll (Microsoft Corporation)
MOD - C:\Windows\System32\msscript.ocx (Microsoft Corporation)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (AntiVirService) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
SRV - (Stereo Service) -- C:\Programme\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
SRV - (AntiVirSchedulerService) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
SRV - (WwanSvc) -- C:\Windows\System32\wwansvc.dll (Microsoft Corporation)
SRV - (WbioSrvc) -- C:\Windows\System32\wbiosrvc.dll (Microsoft Corporation)
SRV - (Power) -- C:\Windows\System32\umpo.dll (Microsoft Corporation)
SRV - (Themes) -- C:\Windows\System32\themeservice.dll (Microsoft Corporation)
SRV - (sppuinotify) -- C:\Windows\System32\sppuinotify.dll (Microsoft Corporation)
SRV - (RpcEptMapper) -- C:\Windows\System32\RpcEpMap.dll (Microsoft Corporation)
SRV - (SensrSvc) -- C:\Windows\System32\sensrsvc.dll (Microsoft Corporation)
SRV - (PNRPsvc) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
SRV - (p2pimsvc) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
SRV - (HomeGroupProvider) -- C:\Windows\System32\provsvc.dll (Microsoft Corporation)
SRV - (PNRPAutoReg) -- C:\Windows\System32\pnrpauto.dll (Microsoft Corporation)
SRV - (WinDefend) -- C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (HomeGroupListener) -- C:\Windows\System32\ListSvc.dll (Microsoft Corporation)
SRV - (FontCache) -- C:\Windows\System32\FntCache.dll (Microsoft Corporation)
SRV - (Dhcp) -- C:\Windows\System32\dhcpcore.dll (Microsoft Corporation)
SRV - (defragsvc) -- C:\Windows\System32\defragsvc.dll (Microsoft Corporation)
SRV - (BDESVC) -- C:\Windows\System32\bdesvc.dll (Microsoft Corporation)
SRV - (AxInstSV) ActiveX-Installer (AxInstSV) -- C:\Windows\System32\AxInstSv.dll (Microsoft Corporation)
SRV - (AppIDSvc) -- C:\Windows\System32\appidsvc.dll (Microsoft Corporation)
SRV - (sppsvc) -- C:\Windows\System32\sppsvc.exe (Microsoft Corporation)
========== Driver Services (SafeList) ==========
DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation)
DRV - (avipbb) -- C:\Windows\System32\drivers\avipbb.sys (Avira GmbH)
DRV - (avgntflt) -- C:\Windows\System32\drivers\avgntflt.sys (Avira GmbH)
DRV - (KSecPkg) -- C:\Windows\System32\Drivers\ksecpkg.sys (Microsoft Corporation)
DRV - (VIAHdAudAddService) -- C:\Windows\System32\drivers\viahduaa.sys (VIA Technologies, Inc.)
DRV - (cmdide) -- C:\Windows\system32\DRIVERS\cmdide.sys (CMD Technology, Inc.)
DRV - (adpahci) -- C:\Windows\system32\DRIVERS\adpahci.sys (Adaptec, Inc.)
DRV - (adp94xx) -- C:\Windows\system32\DRIVERS\adp94xx.sys (Adaptec, Inc.)
DRV - (amdsbs) -- C:\Windows\system32\DRIVERS\amdsbs.sys (AMD Technologies Inc.)
DRV - (adpu320) -- C:\Windows\system32\DRIVERS\adpu320.sys (Adaptec, Inc.)
DRV - (arcsas) -- C:\Windows\system32\DRIVERS\arcsas.sys (Adaptec, Inc.)
DRV - (amdsata) -- C:\Windows\system32\DRIVERS\amdsata.sys (Advanced Micro Devices)
DRV - (arc) -- C:\Windows\system32\DRIVERS\arc.sys (Adaptec, Inc.)
DRV - (amdxata) -- C:\Windows\system32\DRIVERS\amdxata.sys (Advanced Micro Devices)
DRV - (aliide) -- C:\Windows\system32\DRIVERS\aliide.sys (Acer Laboratories Inc.)
DRV - (nvstor) -- C:\Windows\system32\DRIVERS\nvstor.sys (NVIDIA Corporation)
DRV - (nvraid) -- C:\Windows\system32\DRIVERS\nvraid.sys (NVIDIA Corporation)
DRV - (nfrd960) -- C:\Windows\system32\DRIVERS\nfrd960.sys (IBM Corporation)
DRV - (LSI_SAS) -- C:\Windows\system32\DRIVERS\lsi_sas.sys (LSI Corporation)
DRV - (iaStorV) -- C:\Windows\system32\DRIVERS\iaStorV.sys (Intel Corporation)
DRV - (MegaSR) -- C:\Windows\system32\DRIVERS\MegaSR.sys (LSI Corporation, Inc.)
DRV - (LSI_SCSI) -- C:\Windows\system32\DRIVERS\lsi_scsi.sys (LSI Corporation)
DRV - (LSI_FC) -- C:\Windows\system32\DRIVERS\lsi_fc.sys (LSI Corporation)
DRV - (LSI_SAS2) -- C:\Windows\system32\DRIVERS\lsi_sas2.sys (LSI Corporation)
DRV - (iirsp) -- C:\Windows\system32\DRIVERS\iirsp.sys (Intel Corp./ICP vortex GmbH)
DRV - (megasas) -- C:\Windows\system32\DRIVERS\megasas.sys (LSI Corporation)
DRV - (hwpolicy) -- C:\Windows\System32\drivers\hwpolicy.sys (Microsoft Corporation)
DRV - (elxstor) -- C:\Windows\system32\DRIVERS\elxstor.sys (Emulex)
DRV - (aic78xx) -- C:\Windows\system32\DRIVERS\djsvs.sys (Adaptec, Inc.)
DRV - (HpSAMD) -- C:\Windows\system32\DRIVERS\HpSAMD.sys (Hewlett-Packard Company)
DRV - (FsDepends) -- C:\Windows\System32\drivers\fsdepends.sys (Microsoft Corporation)
DRV - (vsmraid) -- C:\Windows\system32\DRIVERS\vsmraid.sys (VIA Technologies Inc.,Ltd)
DRV - (vhdmp) -- C:\Windows\system32\DRIVERS\vhdmp.sys (Microsoft Corporation)
DRV - (vdrvroot) -- C:\Windows\system32\DRIVERS\vdrvroot.sys (Microsoft Corporation)
DRV - (WIMMount) -- C:\Windows\System32\drivers\wimmount.sys (Microsoft Corporation)
DRV - (viaide) -- C:\Windows\system32\DRIVERS\viaide.sys (VIA Technologies, Inc.)
DRV - (ql2300) -- C:\Windows\system32\DRIVERS\ql2300.sys (QLogic Corporation)
DRV - (rdyboost) -- C:\Windows\System32\drivers\rdyboost.sys (Microsoft Corporation)
DRV - (ql40xx) -- C:\Windows\system32\DRIVERS\ql40xx.sys (QLogic Corporation)
DRV - (SiSRaid4) -- C:\Windows\system32\DRIVERS\sisraid4.sys (Silicon Integrated Systems)
DRV - (pcw) -- C:\Windows\System32\drivers\pcw.sys (Microsoft Corporation)
DRV - (SiSRaid2) -- C:\Windows\system32\DRIVERS\SiSRaid2.sys (Silicon Integrated Systems Corp.)
DRV - (stexstor) -- C:\Windows\system32\DRIVERS\stexstor.sys (Promise Technology)
DRV - (CNG) -- C:\Windows\System32\Drivers\cng.sys (Microsoft Corporation)
DRV - (Brserid) Brother MFC Serial Port Interface Driver (WDM) -- C:\Windows\System32\Drivers\Brserid.sys (Brother Industries Ltd.)
DRV - (rdpbus) -- C:\Windows\system32\DRIVERS\rdpbus.sys (Microsoft Corporation)
DRV - (RDPREFMP) -- C:\Windows\System32\drivers\RDPREFMP.sys (Microsoft Corporation)
DRV - (RasAgileVpn) WAN Miniport (IKEv2) -- C:\Windows\System32\drivers\agilevpn.sys (Microsoft Corporation)
DRV - (WfpLwf) -- C:\Windows\System32\drivers\wfplwf.sys (Microsoft Corporation)
DRV - (NdisCap) -- C:\Windows\System32\drivers\ndiscap.sys (Microsoft Corporation)
DRV - (vwifibus) -- C:\Windows\System32\drivers\vwifibus.sys (Microsoft Corporation)
DRV - (1394ohci) -- C:\Windows\system32\DRIVERS\1394ohci.sys (Microsoft Corporation)
DRV - (UmPass) -- C:\Windows\system32\DRIVERS\umpass.sys (Microsoft Corporation)
DRV - (mshidkmdf) -- C:\Windows\System32\drivers\mshidkmdf.sys (Microsoft Corporation)
DRV - (MTConfig) -- C:\Windows\system32\DRIVERS\MTConfig.sys (Microsoft Corporation)
DRV - (CompositeBus) -- C:\Windows\System32\drivers\CompositeBus.sys (Microsoft Corporation)
DRV - (AppID) -- C:\Windows\system32\drivers\appid.sys (Microsoft Corporation)
DRV - (scfilter) -- C:\Windows\System32\drivers\scfilter.sys (Microsoft Corporation)
DRV - (discache) -- C:\Windows\System32\drivers\discache.sys (Microsoft Corporation)
DRV - (HidBatt) -- C:\Windows\system32\DRIVERS\HidBatt.sys (Microsoft Corporation)
DRV - (AcpiPmi) -- C:\Windows\system32\DRIVERS\acpipmi.sys (Microsoft Corporation)
DRV - (AmdPPM) -- C:\Windows\System32\drivers\amdppm.sys (Microsoft Corporation)
DRV - (hcw85cir) -- C:\Windows\system32\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV - (BrUsbMdm) -- C:\Windows\System32\Drivers\BrUsbMdm.sys (Brother Industries Ltd.)
DRV - (BrUsbSer) -- C:\Windows\System32\Drivers\BrUsbSer.sys (Brother Industries Ltd.)
DRV - (BrSerWdm) -- C:\Windows\System32\Drivers\BrSerWdm.sys (Brother Industries Ltd.)
DRV - (BrFiltLo) -- C:\Windows\system32\DRIVERS\BrFiltLo.sys (Brother Industries, Ltd.)
DRV - (BrFiltUp) -- C:\Windows\system32\DRIVERS\BrFiltUp.sys (Brother Industries, Ltd.)
DRV - (NVENETFD) -- C:\Windows\System32\drivers\nvm60x32.sys (NVIDIA Corporation)
DRV - (b57nd60x) -- C:\Windows\System32\drivers\b57nd60x.sys (Broadcom Corporation)
DRV - (ebdrv) -- C:\Windows\system32\DRIVERS\evbdx.sys (Broadcom Corporation)
DRV - (b06bdrv) -- C:\Windows\system32\DRIVERS\bxvbdx.sys (Broadcom Corporation)
DRV - (nvstor32) -- C:\Windows\system32\DRIVERS\nvstor32.sys (NVIDIA Corporation)
DRV - (ssmdrv) -- C:\Windows\System32\drivers\ssmdrv.sys (Avira GmbH)
DRV - (NVNET) -- C:\Windows\System32\drivers\nvmf6232.sys (NVIDIA Corporation)
DRV - (PLCNDIS5) -- C:\Windows\system32\plcndis5.sys (Intellon, Inc.)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN, Messenger und Hotmail sowie Nachrichten, Unterhaltung, Video, Sport, Lifestyle, Finanzen, Auto uvm. bei MSN
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = E7 F3 49 AD 96 2A CB 01 [binary data]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
O1 HOSTS File: ([2009.06.10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe (VIA)
O4 - HKLM..\Run: [VIAAUD] C:\Program Files\VIA\VIAudioi\VDeck\VIAAUD.exe File not found
O4 - HKCU..\Run: [zASRockInstantBoot] File not found
O4 - Startup: C:\Users\Nutzer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Registration Heroes of Might & Magic 5.LNK = C:\Programme\Ubisoft\Heroes of Might and Magic V\registration\RegistrationReminder.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O30 - LSA: Security Packages - (pku2u) - C:\Windows\System32\pku2u.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.06.10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2005.10.11 16:50:01 | 000,000,000 | R--D | M] - D:\AutoRun -- [ UDF ]
O32 - AutoRun File - [2005.04.15 23:22:23 | 000,000,038 | R--- | M] () - D:\Autorun.inf -- [ UDF ]
O33 - MountPoints2\{0059899d-95ce-11df-afcc-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{0059899d-95ce-11df-afcc-806e6f6e6963}\Shell\AutoRun\command - "" = D:\arun.exe -- [2005.09.06 21:36:22 | 001,445,888 | R--- | M] (Lionhead Studios Ltd.)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2010.07.27 17:03:48 | 000,295,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationHost.exe
[2010.07.27 17:03:48 | 000,099,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationHostProxy.dll
[2010.07.27 17:03:48 | 000,049,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netfxperf.dll
[2010.07.27 16:56:27 | 001,037,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\lsasrv.dll
[2010.07.27 16:56:27 | 000,133,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\ksecpkg.sys
[2010.07.27 16:51:18 | 001,320,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CertEnroll.dll
[2010.07.27 16:51:17 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2010.07.27 16:51:17 | 000,507,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winload.exe
[2010.07.27 16:51:17 | 000,442,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winresume.exe
[2010.07.27 16:50:32 | 000,641,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CPFilters.dll
[2010.07.27 16:50:31 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\psisdecd.dll
[2010.07.27 16:50:31 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdri.dll
[2010.07.27 16:50:31 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSNP.ax
[2010.07.27 16:50:31 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mpg2splt.ax
[2010.07.27 16:50:23 | 000,606,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2010.07.27 16:50:23 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2010.07.27 16:50:22 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2010.07.27 16:50:22 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2010.07.27 16:50:20 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll
[2010.07.27 16:44:01 | 000,000,000 | ---D | C] -- C:\Users\Nutzer\AppData\Roaming\Malwarebytes
[2010.07.27 16:43:54 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010.07.27 16:43:52 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010.07.27 16:43:52 | 000,000,000 | ---D | C] -- C:\Programme\Malwarebytes' Anti-Malware
[2010.07.27 16:43:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010.07.25 14:17:26 | 002,614,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2010.07.25 12:50:58 | 002,326,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2010.07.25 11:45:28 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\asycfilt.dll
[2010.07.25 11:40:25 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript.dll
[2010.07.25 11:05:58 | 000,108,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\t2embed.dll
[2010.07.25 10:59:07 | 001,328,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quartz.dll
[2010.07.25 10:59:07 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mciavi32.dll
[2010.07.25 10:59:06 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\avifil32.dll
[2010.07.25 10:57:50 | 000,369,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc.dll
[2010.07.25 10:57:50 | 000,365,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_isv.dll
[2010.07.25 10:57:50 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_isv.exe
[2010.07.25 10:57:49 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate.exe
[2010.07.25 10:57:49 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp.exe
[2010.07.25 10:57:49 | 000,277,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp_isv.exe
[2010.07.25 10:57:49 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp_isv.dll
[2010.07.25 10:57:49 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp.dll
[2010.07.24 15:49:10 | 003,954,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2010.07.24 15:49:10 | 003,899,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2010.07.24 15:47:01 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vbscript.dll
[2010.07.24 15:24:59 | 000,000,000 | ---D | C] -- C:\Users\Nutzer\AppData\Roaming\Avira
[2010.07.24 15:21:17 | 000,000,000 | ---D | C] -- C:\Programme\devolo AG
[2010.07.24 15:06:53 | 000,000,000 | ---D | C] -- C:\Programme\devolo
[2010.07.24 14:53:29 | 000,000,000 | ---D | C] -- C:\Users\Nutzer\AppData\Local\ElevatedDiagnostics
[2010.07.24 14:52:34 | 000,293,888 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll
[2010.07.24 14:52:34 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fontsub.dll
[2010.07.24 14:52:34 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\System32\atmlib.dll
[2010.07.24 14:50:06 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\ssmdrv.sys
[2010.07.24 14:50:05 | 000,124,784 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\avipbb.sys
[2010.07.24 14:50:05 | 000,060,936 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\avgntflt.sys
[2010.07.24 14:50:05 | 000,051,992 | ---- | C] (AVIRA GmbH) -- C:\Windows\System32\drivers\avgntdd.sys
[2010.07.24 14:50:05 | 000,017,016 | ---- | C] (AVIRA GmbH) -- C:\Windows\System32\drivers\avgntmgr.sys
[2010.07.24 14:50:05 | 000,000,000 | ---D | C] -- C:\Programme\Avira
[2010.07.24 14:50:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2010.07.24 11:27:24 | 000,000,000 | ---D | C] -- C:\Users\Nutzer\Documents\My Games
[2010.07.24 11:21:13 | 000,000,000 | ---D | C] -- C:\Programme\Ubisoft
[2010.07.23 22:23:26 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browserchoice.exe
[2010.07.23 21:09:52 | 000,000,000 | ---D | C] -- C:\Users\Nutzer\Documents\Black & White 2
[2010.07.23 21:06:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed
[2010.07.23 21:03:04 | 000,000,000 | ---D | C] -- C:\Programme\Lionhead Studios
[2010.07.23 21:02:58 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_25.dll
[2010.07.23 02:10:46 | 000,000,000 | ---D | C] -- C:\Users\Nutzer\AppData\Local\Diagnostics
[2010.07.22 23:22:14 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA
[2010.07.22 23:21:53 | 000,000,000 | ---D | C] -- C:\Programme\NVIDIA Corporation
[2010.07.22 23:17:35 | 015,227,496 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvoglv32.dll
[2010.07.22 23:17:35 | 011,573,800 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvlddmkm.sys
[2010.07.22 23:17:35 | 000,795,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dpinst.exe
[2010.07.22 23:17:35 | 000,056,424 | ---- | C] (Khronos Group) -- C:\Windows\System32\OpenCL.dll
[2010.07.22 23:17:35 | 000,010,920 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvBridge.kmd
[2010.07.22 23:17:33 | 011,647,592 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcompiler.dll
[2010.07.22 23:17:33 | 009,386,600 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvd3dum.dll
[2010.07.22 23:17:33 | 004,029,544 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuda.dll
[2010.07.22 23:17:33 | 002,907,752 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvencodemft.dll
[2010.07.22 23:17:33 | 002,646,632 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvenc.dll
[2010.07.22 23:17:33 | 002,009,704 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvid.dll
[2010.07.22 23:17:33 | 000,316,008 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvdecodemft.dll
[2010.07.22 23:17:33 | 000,227,944 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcod1914.dll
[2010.07.22 23:17:33 | 000,227,944 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcod.dll
[2010.07.22 23:17:32 | 001,296,488 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvapi.dll
[2010.07.22 23:17:29 | 000,000,000 | ---D | C] -- C:\NVIDIA
[2010.07.22 23:15:48 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2010.07.22 23:15:37 | 000,000,000 | -H-D | C] -- C:\Programme\InstallShield Installation Information
[2010.07.22 23:15:15 | 001,108,480 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\System32\drivers\viahduaa.sys
[2010.07.22 23:15:15 | 000,868,352 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\System32\VIAPropPageExt.dll
[2010.07.22 23:15:15 | 000,524,288 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\System32\VMAPO32.DLL
[2010.07.22 23:15:15 | 000,502,784 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\System32\VIASysFx.dll
[2010.07.22 23:15:15 | 000,211,456 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\System32\Dts2APO.dll
[2010.07.22 23:15:15 | 000,181,248 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\System32\ViaMicArrayAPO.dll
[2010.07.22 23:15:15 | 000,076,288 | ---- | C] (QSound Labs, Inc.) -- C:\Windows\System32\nQPropPageExt.dll
[2010.07.22 23:15:15 | 000,075,776 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\System32\Dts2PropPageExt.dll
[2010.07.22 23:15:15 | 000,071,680 | ---- | C] (QSound Labs, Inc.) -- C:\Windows\System32\nQAPO.dll
[2010.07.22 23:15:15 | 000,068,608 | ---- | C] (VIA Technologies,Inc.) -- C:\Windows\System32\ViaMicArrayPropPageExt.dll
[2010.07.22 23:15:15 | 000,062,464 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\System32\VMWRP32.DLL
[2010.07.22 23:15:15 | 000,047,104 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\System32\VMPPLD32.DLL
[2010.07.22 23:15:15 | 000,044,032 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\System32\VMPPCN32.DLL
[2010.07.22 23:08:57 | 000,000,000 | ---D | C] -- C:\Programme\VIA
[2010.07.22 23:08:48 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\InstallShield
[2010.07.22 23:08:40 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2010.07.22 23:06:50 | 000,000,000 | ---D | C] -- C:\Programme\ASRock Utility
[2010.07.22 23:06:34 | 000,372,768 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvraiins.dll
[2010.07.22 23:06:34 | 000,372,768 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvraidco.dll
[2010.07.22 23:06:34 | 000,212,000 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvstor32.sys
[2010.07.22 23:06:34 | 000,017,952 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoPtb.dll
[2010.07.22 23:06:34 | 000,017,952 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoIt.dll
[2010.07.22 23:06:34 | 000,017,952 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoFr.dll
[2010.07.22 23:06:34 | 000,017,952 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoEsm.dll
[2010.07.22 23:06:34 | 000,017,952 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoEs.dll
[2010.07.22 23:06:34 | 000,017,952 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoDe.dll
[2010.07.22 23:06:34 | 000,017,440 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoSv.dll
[2010.07.22 23:06:34 | 000,017,440 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoRu.dll
[2010.07.22 23:06:34 | 000,017,440 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoNo.dll
[2010.07.22 23:06:34 | 000,017,440 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoNl.dll
[2010.07.22 23:06:34 | 000,017,440 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoFi.dll
[2010.07.22 23:06:34 | 000,016,928 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoENU.dll
[2010.07.22 23:06:34 | 000,016,928 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoEng.dll
[2010.07.22 23:06:34 | 000,015,392 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoKo.dll
[2010.07.22 23:06:34 | 000,015,392 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoJa.dll
[2010.07.22 23:06:34 | 000,014,880 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoZht.dll
[2010.07.22 23:06:34 | 000,014,880 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoZhc.dll
[2010.07.22 23:06:26 | 000,017,440 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoDa.dll
[2010.07.22 23:01:06 | 000,898,048 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\fdco1.dll
[2010.07.22 23:01:06 | 000,287,008 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvmf6232.sys
[2010.07.22 23:01:06 | 000,143,360 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvconrm.dll
[2010.07.22 23:01:03 | 000,600,680 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NVUNINST.EXE
[2010.07.22 23:00:59 | 000,457,248 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvunrm.exe
[2010.07.22 22:57:58 | 000,000,000 | R--D | C] -- C:\Users\Nutzer\Searches
[2010.07.22 22:57:50 | 000,000,000 | ---D | C] -- C:\Users\Nutzer\AppData\Roaming\Identities
[2010.07.22 22:57:49 | 000,000,000 | R--D | C] -- C:\Users\Nutzer\Contacts
[2010.07.22 22:57:45 | 000,000,000 | ---D | C] -- C:\Users\Nutzer\AppData\Local\VirtualStore
[2010.07.22 22:57:41 | 000,000,000 | --SD | C] -- C:\Users\Nutzer\AppData\Roaming\Microsoft
[2010.07.22 22:57:41 | 000,000,000 | R--D | C] -- C:\Users\Nutzer\Downloads
[2010.07.22 22:57:41 | 000,000,000 | R--D | C] -- C:\Users\Nutzer\Documents
[2010.07.22 22:57:41 | 000,000,000 | R--D | C] -- C:\Users\Nutzer\Desktop
[2010.07.22 22:57:41 | 000,000,000 | -HSD | C] -- C:\Users\Nutzer\Vorlagen
[2010.07.22 22:57:41 | 000,000,000 | -HSD | C] -- C:\Users\Nutzer\AppData\Local\Verlauf
[2010.07.22 22:57:41 | 000,000,000 | -HSD | C] -- C:\Users\Nutzer\AppData\Local\Temporary Internet Files
[2010.07.22 22:57:41 | 000,000,000 | -HSD | C] -- C:\Users\Nutzer\Startmenü
[2010.07.22 22:57:41 | 000,000,000 | -HSD | C] -- C:\Users\Nutzer\SendTo
[2010.07.22 22:57:41 | 000,000,000 | -HSD | C] -- C:\Users\Nutzer\Recent
[2010.07.22 22:57:41 | 000,000,000 | -HSD | C] -- C:\Users\Nutzer\Netzwerkumgebung
[2010.07.22 22:57:41 | 000,000,000 | -HSD | C] -- C:\Users\Nutzer\Lokale Einstellungen
[2010.07.22 22:57:41 | 000,000,000 | -HSD | C] -- C:\Users\Nutzer\Documents\Eigene Videos
[2010.07.22 22:57:41 | 000,000,000 | -HSD | C] -- C:\Users\Nutzer\Documents\Eigene Musik
[2010.07.22 22:57:41 | 000,000,000 | -HSD | C] -- C:\Users\Nutzer\Eigene Dateien
[2010.07.22 22:57:41 | 000,000,000 | -HSD | C] -- C:\Users\Nutzer\Documents\Eigene Bilder
[2010.07.22 22:57:41 | 000,000,000 | -HSD | C] -- C:\Users\Nutzer\Druckumgebung
[2010.07.22 22:57:41 | 000,000,000 | -HSD | C] -- C:\Users\Nutzer\Cookies
[2010.07.22 22:57:41 | 000,000,000 | -HSD | C] -- C:\Users\Nutzer\AppData\Local\Anwendungsdaten
[2010.07.22 22:57:41 | 000,000,000 | -HSD | C] -- C:\Users\Nutzer\Anwendungsdaten
[2010.07.22 22:57:41 | 000,000,000 | -H-D | C] -- C:\Users\Nutzer\AppData
[2010.07.22 22:57:41 | 000,000,000 | ---D | C] -- C:\Users\Nutzer\AppData\Local\Temp
[2010.07.22 22:57:41 | 000,000,000 | ---D | C] -- C:\Users\Nutzer\AppData\Local\Microsoft
[2010.07.22 22:57:41 | 000,000,000 | ---D | C] -- C:\Users\Nutzer\AppData\Roaming\Media Center Programs
[2010.07.22 22:57:40 | 000,000,000 | R--D | C] -- C:\Users\Nutzer\Videos
[2010.07.22 22:57:40 | 000,000,000 | R--D | C] -- C:\Users\Nutzer\Saved Games
[2010.07.22 22:57:40 | 000,000,000 | R--D | C] -- C:\Users\Nutzer\Pictures
[2010.07.22 22:57:40 | 000,000,000 | R--D | C] -- C:\Users\Nutzer\Music
[2010.07.22 22:57:40 | 000,000,000 | R--D | C] -- C:\Users\Nutzer\Links
[2010.07.22 22:57:40 | 000,000,000 | R--D | C] -- C:\Users\Nutzer\Favorites
[2010.07.22 22:57:34 | 000,000,000 | -HSD | C] -- C:\ProgramData\Vorlagen
[2010.07.22 22:57:34 | 000,000,000 | -HSD | C] -- C:\ProgramData\Startmenü
[2010.07.22 22:57:34 | 000,000,000 | -HSD | C] -- C:\Recovery
[2010.07.22 22:57:34 | 000,000,000 | -HSD | C] -- C:\Programme
[2010.07.22 22:57:34 | 000,000,000 | -HSD | C] -- C:\Programme\Gemeinsame Dateien
[2010.07.22 22:57:34 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoriten
[2010.07.22 22:57:34 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Videos
[2010.07.22 22:57:34 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Musik
[2010.07.22 22:57:34 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Bilder
[2010.07.22 22:57:34 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen
[2010.07.22 22:57:34 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumente
[2010.07.22 22:57:34 | 000,000,000 | -HSD | C] -- C:\ProgramData\Anwendungsdaten
[2010.07.22 22:57:32 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2010.07.22 22:20:40 | 000,000,000 | ---D | C] -- C:\Windows\Minidump
[2010.07.22 22:18:01 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[2010.07.22 22:16:29 | 000,000,000 | -HSD | C] -- C:\System Volume Information
========== Files - Modified Within 30 Days ==========
[2010.07.27 17:19:38 | 001,472,002 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010.07.27 17:19:38 | 000,643,628 | ---- | M] () -- C:\Windows\System32\perfh007.dat
[2010.07.27 17:19:38 | 000,606,992 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010.07.27 17:19:38 | 000,126,188 | ---- | M] () -- C:\Windows\System32\perfc007.dat
[2010.07.27 17:19:38 | 000,103,370 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010.07.27 16:43:57 | 000,000,983 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.07.26 17:38:28 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010.07.26 17:38:25 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010.07.26 17:38:20 | 1610,063,872 | -HS- | M] () -- C:\hiberfil.sys
[2010.07.26 17:37:42 | 000,786,432 | -HS- | M] () -- C:\Users\Nutzer\NTUSER.DAT
[2010.07.26 17:37:39 | 001,357,500 | -H-- | M] () -- C:\Users\Nutzer\AppData\Local\IconCache.db
[2010.07.26 17:22:30 | 000,015,632 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010.07.26 17:22:30 | 000,015,632 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010.07.25 13:45:29 | 000,265,640 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010.07.24 14:50:11 | 000,002,016 | ---- | M] () -- C:\Users\Public\Desktop\Avira AntiVir Control Center.lnk
[2010.07.24 11:23:31 | 000,001,541 | ---- | M] () -- C:\Users\Nutzer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Registration Heroes of Might & Magic 5.LNK
[2010.07.24 11:23:06 | 000,001,307 | ---- | M] () -- C:\Users\Public\Desktop\Heroes of Might and Magic V.lnk
[2010.07.24 11:17:45 | 000,001,754 | ---- | M] () -- C:\Users\Public\Desktop\Browserwahl.lnk
[2010.07.23 21:06:39 | 000,001,864 | ---- | M] () -- C:\Users\Public\Desktop\Black & White 2.lnk
[2010.07.22 23:35:37 | 000,057,560 | ---- | M] () -- C:\Users\Nutzer\AppData\Local\GDIPFONTCACHEV1.DAT
[2010.07.22 23:16:38 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2010.07.22 23:15:19 | 000,001,088 | ---- | M] () -- C:\Users\Public\Desktop\HD VDeck.lnk
[2010.07.22 23:06:50 | 000,001,090 | ---- | M] () -- C:\Users\Public\Desktop\ASRock InstantBoot.lnk
[2010.07.22 23:05:53 | 135,732,141 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2010.07.22 23:01:38 | 000,524,288 | -HS- | M] () -- C:\Users\Nutzer\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms
[2010.07.22 23:01:38 | 000,524,288 | -HS- | M] () -- C:\Users\Nutzer\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms
[2010.07.22 23:01:38 | 000,065,536 | -HS- | M] () -- C:\Users\Nutzer\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf
[2010.07.22 22:57:44 | 000,000,020 | -HS- | M] () -- C:\Users\Nutzer\ntuser.ini
[2010.07.22 22:22:40 | 000,052,953 | ---- | M] () -- C:\Windows\System32\license.rtf
========== Files Created - No Company Name ==========
[2010.07.27 16:43:57 | 000,000,983 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.07.24 14:50:11 | 000,002,016 | ---- | C] () -- C:\Users\Public\Desktop\Avira AntiVir Control Center.lnk
[2010.07.24 11:23:31 | 000,001,541 | ---- | C] () -- C:\Users\Nutzer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Registration Heroes of Might & Magic 5.LNK
[2010.07.24 11:23:06 | 000,001,307 | ---- | C] () -- C:\Users\Public\Desktop\Heroes of Might and Magic V.lnk
[2010.07.24 11:17:45 | 000,001,754 | ---- | C] () -- C:\Users\Public\Desktop\Browserwahl.lnk
[2010.07.23 21:06:39 | 000,001,864 | ---- | C] () -- C:\Users\Public\Desktop\Black & White 2.lnk
[2010.07.22 23:17:35 | 000,007,772 | ---- | C] () -- C:\Windows\System32\nvinfo.pb
[2010.07.22 23:16:38 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2010.07.22 23:15:19 | 000,001,088 | ---- | C] () -- C:\Users\Public\Desktop\HD VDeck.lnk
[2010.07.22 23:06:50 | 000,001,090 | ---- | C] () -- C:\Users\Public\Desktop\ASRock InstantBoot.lnk
[2010.07.22 23:01:07 | 000,704,512 | R--- | C] () -- C:\Windows\System32\cohelper.dll
[2010.07.22 23:01:07 | 000,005,940 | R--- | C] () -- C:\Windows\System32\drivers\nvphy.bin
[2010.07.22 23:00:59 | 000,006,076 | R--- | C] () -- C:\Windows\System32\nvnrm.nvu
[2010.07.22 22:57:44 | 000,000,020 | -HS- | C] () -- C:\Users\Nutzer\ntuser.ini
[2010.07.22 22:57:41 | 000,524,288 | -HS- | C] () -- C:\Users\Nutzer\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms
[2010.07.22 22:57:41 | 000,524,288 | -HS- | C] () -- C:\Users\Nutzer\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms
[2010.07.22 22:57:41 | 000,262,144 | -HS- | C] () -- C:\Users\Nutzer\ntuser.dat.LOG1
[2010.07.22 22:57:41 | 000,065,536 | -HS- | C] () -- C:\Users\Nutzer\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf
[2010.07.22 22:57:41 | 000,000,000 | -HS- | C] () -- C:\Users\Nutzer\ntuser.dat.LOG2
[2010.07.22 22:57:40 | 000,786,432 | -HS- | C] () -- C:\Users\Nutzer\NTUSER.DAT
[2010.07.22 22:17:53 | 135,732,141 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2010.07.22 22:16:29 | 1610,063,872 | -HS- | C] () -- C:\hiberfil.sys
[2009.07.14 01:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2009.07.14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
< End of report > --- --- ---
Danke! |