PrimaWilli | 02.04.2012 09:15 | Hier ist die Extra.txtOTL EXTRAS Logfile: Code:
OTL Extras logfile created on: 31.03.2012 11:38:53 - Run 1
OTL by OldTimer - Version 3.2.39.2 Folder = C:\Users\Meiner Einer\Downloads
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
2,00 Gb Total Physical Memory | 1,40 Gb Available Physical Memory | 69,94% Memory free
4,22 Gb Paging File | 3,81 Gb Available in Paging File | 90,28% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 220,27 Gb Total Space | 130,31 Gb Free Space | 59,16% Space Free | Partition Type: NTFS
Drive D: | 10,00 Gb Total Space | 5,82 Gb Free Space | 58,24% Space Free | Partition Type: NTFS
Computer Name: MEINEREINER | User Name: Meiner Einer | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiSpyware]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{03835D39-5F61-4E77-A2F9-EC8E962B2D03}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=c:\windows\system32\svchost.exe |
"{139CD614-780E-46D1-BE38-2AFC24976451}" = rport=138 | protocol=17 | dir=out | app=system |
"{1BA08EC2-368B-4173-B0A5-0333AAE5BE20}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{2683D74D-28DB-4DE5-AC88-56C58F99A527}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{28CBFB1F-EA45-4F46-984D-E22DE3710EF1}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{386FEBB5-D319-4174-A283-406977889372}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{39CA0A71-9597-4408-8BF4-EDB5616712CE}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{424401AA-38F4-4030-A3EB-1CA594934E2D}" = lport=445 | protocol=6 | dir=in | app=system |
"{59567D13-8164-4B0D-A512-10D14A4CB55A}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{84476ADD-006D-4831-8DDF-79E88BC30839}" = lport=2869 | protocol=6 | dir=in | app=system |
"{86D7E6C0-87C8-43BE-95D9-E8A288B9CB1C}" = lport=139 | protocol=6 | dir=in | app=system |
"{8DF9D37A-A655-480F-A326-19C819EA006E}" = lport=138 | protocol=17 | dir=in | app=system |
"{B0AD8C43-E05B-42F5-B216-0C06E913FC5A}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{B9ABFE1B-BFE3-44D3-B1C4-769D68F7A052}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{BC492FBE-186F-45DC-AD45-35220455B1DC}" = rport=137 | protocol=17 | dir=out | app=system |
"{C1059585-E726-4EC5-955D-9B7E6AC9A9F5}" = rport=445 | protocol=6 | dir=out | app=system |
"{C1951F1A-8F8F-43D9-BD15-9454402B0AEA}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{D5649367-861B-463C-A6D9-EBC9E289A771}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office14\outlook.exe |
"{E3C59E78-FD02-4C30-9B9E-AEEDD1A1B7C0}" = lport=137 | protocol=17 | dir=in | app=system |
"{EB0C2A3E-7369-4C21-9DE3-0E09189B9510}" = rport=139 | protocol=6 | dir=out | app=system |
"{ECB23FB3-D40E-4E6E-9C71-C1FC3AD8E420}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=c:\windows\system32\svchost.exe |
"{ECD84D98-A0DC-4B04-A685-949D8335C71D}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{021FFE26-E972-4129-8A19-5D915E984A4D}" = protocol=6 | dir=in | app=c:\program files\splashtop\splashtop remote\server\inputserv.exe |
"{02AA5443-74FA-4352-8344-6D314AD7AC04}" = protocol=6 | dir=in | app=c:\program files\splashtop\splashtop remote\server\srserver.exe |
"{055B0040-41E5-4863-8720-55CEF1754006}" = protocol=17 | dir=in | app=c:\windows\system32\muzapp.exe |
"{05F7605F-2E74-4745-9B81-D562360AF287}" = protocol=6 | dir=out | app=c:\windows\system32\wudfhost.exe |
"{0E056AF2-5191-499E-B7A4-B783298B7C54}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{12AA07E3-3487-438F-A14E-15F9436799B6}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{13A417D1-A524-485B-88E8-A44C5DDED801}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgnsx.exe |
"{1A0E5732-F11B-4A12-9BA9-7FDCCB0A36DD}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgnsx.exe |
"{1BF1A314-DEE5-4542-B068-5FDA75208A2B}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgmfapx.exe |
"{1E643337-52D2-40AE-9032-7501F669AB9F}" = protocol=6 | dir=out | app=system |
"{216E9051-DBA6-411D-A89F-6EDEAC2C5AAD}" = protocol=6 | dir=in | app=c:\program files\samsung\kies\kies.exe |
"{21BBA9EC-7797-44FE-A670-CDE2376CFEDB}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgdiagex.exe |
"{228DCE91-0C5B-4E80-82E4-9C327087E829}" = protocol=6 | dir=in | app=c:\windows\system32\muzapp.exe |
"{265E485D-8327-4670-B123-0FFEB2B0EA40}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgmfapx.exe |
"{2D1AE64D-C9F3-46ED-B026-DDBFC043A77A}" = protocol=17 | dir=in | app=c:\program files\splashtop\splashtop remote\server\inputserv.exe |
"{2E2DBA44-78A6-486A-87EC-22FFB4E527E9}" = protocol=17 | dir=in | app=c:\program files\samsung\kies\kies.exe |
"{2FF28FBA-EA65-4BB6-85AE-285CE1313327}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgdiagex.exe |
"{36946582-4564-4D5C-A66C-E86B0203223C}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version6\teamviewer_service.exe |
"{3DDB1505-A41B-4EDB-BCC6-7E327E26904A}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgmfapx.exe |
"{3F41F284-54E5-4185-AA52-725ED31CDFA5}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgemcx.exe |
"{420B67F7-FC47-432F-81C6-7F6F19522FE1}" = protocol=17 | dir=in | app=c:\program files\splashtop\splashtop remote\server\srfeature.exe |
"{5150CE98-C026-4260-9BA8-DF0E494E2603}" = protocol=17 | dir=in | app=c:\windows\system32\lxducoms.exe |
"{549FCFDC-59BA-4D34-9297-40AEA0172E0F}" = protocol=6 | dir=in | app=c:\program files\splashtop\splashtop remote\server\srserver.exe |
"{598980DC-995E-40C5-B302-67806961422C}" = dir=in | app=c:\program files\dell\mediadirect\pcmservice.exe |
"{64BAC768-73AB-49F7-84A2-43F1FDDFCFED}" = protocol=6 | dir=in | app=c:\program files\splashtop\splashtop remote\server\srfeature.exe |
"{68A39DF4-331F-482D-9788-6B108F20D9C7}" = protocol=17 | dir=in | app=c:\program files\splashtop\splashtop remote\server\inputserv.exe |
"{6E25CB91-DC0F-43DA-893A-C93C000E704F}" = protocol=6 | dir=in | app=c:\program files\splashtop\splashtop remote\server\dataproxy.exe |
"{7B25AC77-98BC-4011-B20D-19BDC8C2D89A}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgemcx.exe |
"{7F9371F4-2B3A-43D1-8F21-2EF252747E00}" = protocol=6 | dir=in | app=c:\program files\lexmark 5600-6600 series\frun.exe |
"{895CDAB4-A5CC-4618-93E4-FB66D0BE6318}" = protocol=6 | dir=in | app=c:\program files\lexmark 5600-6600 series\lxduamon.exe |
"{89D9F9AC-6A72-4542-AD3D-5B48FE52672D}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{8BA05DF7-FEDD-4EF2-8595-BA3E2B7677A5}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgemcx.exe |
"{8FBF0576-CD8D-4ACC-AD1E-7CE25EE0D804}" = protocol=6 | dir=in | app=c:\program files\splashtop\splashtop remote\server\srlogin.exe |
"{9063B0F0-A352-423C-957E-1F227A9DF83A}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{927C92CD-61E8-4CD7-9936-E906BB98831D}" = protocol=6 | dir=in | app=c:\windows\system32\lxducoms.exe |
"{9764FDDC-A073-4F4F-8358-E3BCD6C1D682}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgmfapx.exe |
"{9AF16F1D-923C-4294-ADC9-232F91AD2BED}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgmfapx.exe |
"{9C27B896-49A6-422B-825E-4370C390481B}" = protocol=6 | dir=in | app=c:\program files\splashtop\splashtop remote\server\dataproxy.exe |
"{A7B28CC3-3CAC-4421-A3F6-BE6296E2465B}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{A95E1740-9FD8-4F80-ACFA-CCC5A8587EDC}" = protocol=6 | dir=out | svc=upnphost | app=c:\windows\system32\svchost.exe |
"{AA5DE8AB-5044-4BB2-9027-B0959C85BCC0}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgdiagex.exe |
"{AA73FC0B-269F-4CFB-9BB9-C03C70B3D6EB}" = protocol=17 | dir=in | app=c:\program files\abbyy finereader 6.0 sprint\scan\scanman6.exe |
"{AAEAF877-BA60-4FEA-9DB5-723A7FA1F475}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{B050A268-6C1A-4851-BD0B-94BDFE436B9A}" = protocol=17 | dir=in | app=c:\program files\splashtop\splashtop remote\server\dataproxy.exe |
"{B2A05982-4429-4CFA-9A78-34C7390AD6AB}" = protocol=17 | dir=in | app=c:\program files\splashtop\splashtop remote\server\srlogin.exe |
"{B58A1DD8-14A8-4D80-A3B8-D5D31A5C41E0}" = protocol=17 | dir=in | app=c:\program files\splashtop\splashtop remote\server\srfeature.exe |
"{B6CB4AD2-AC04-4605-A701-C916539F04B6}" = protocol=17 | dir=in | app=c:\windows\system32\muzapp.exe |
"{BC76A02A-D017-4377-AD48-60195CAB951B}" = protocol=17 | dir=in | app=c:\program files\splashtop\splashtop remote\server\srserver.exe |
"{C3DA25F0-02C5-46C1-9D11-2530C5B40B57}" = protocol=6 | dir=in | app=c:\program files\splashtop\splashtop remote\server\srfeature.exe |
"{C95C6D65-3D85-459E-A20F-9F4AE64D7AB3}" = protocol=17 | dir=in | app=c:\program files\splashtop\splashtop remote\server\srlogin.exe |
"{CA684880-C262-43D7-8222-F3BA5813BFBB}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version6\teamviewer.exe |
"{CE933F02-284E-4315-9891-5EF5A9C101D3}" = protocol=17 | dir=in | app=c:\program files\avg\avg2012\avgemcx.exe |
"{D06C9112-8F8D-4327-9899-A4BBC917C09D}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgmfapx.exe |
"{D5C8AB34-EA35-4BD4-AE4C-FF6C66EA4E72}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{DC8E980E-6D53-49B0-BBA4-C18F9CC7B18E}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version6\teamviewer_service.exe |
"{DEF08A36-D476-4D01-8DA8-C1486FC0CEBF}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{DF3C99AF-C7C0-48D1-AD71-DC6A544CCB19}" = protocol=6 | dir=in | app=c:\program files\avg\avg2012\avgnsx.exe |
"{DF530CC8-607A-4851-B2EB-99AD34C26259}" = protocol=6 | dir=in | app=c:\windows\system32\muzapp.exe |
"{DF9A88D6-5524-424E-BAFA-06F35BDC1EB8}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgnsx.exe |
"{E3DF0F5F-3F29-4A4D-B4E4-D9B20BF5ACEF}" = protocol=6 | dir=in | app=c:\program files\abbyy finereader 6.0 sprint\scan\scanman6.exe |
"{E5FD8F46-690E-4485-8C3A-66C09219067F}" = protocol=6 | dir=in | app=c:\program files\splashtop\splashtop remote\server\inputserv.exe |
"{E7CB802C-A8CA-484C-935B-3DA8EF9C88DE}" = protocol=17 | dir=in | app=c:\program files\splashtop\splashtop remote\server\srserver.exe |
"{EA32385D-B443-47C3-80ED-4A9A1161E2D9}" = protocol=17 | dir=in | app=c:\program files\splashtop\splashtop remote\server\dataproxy.exe |
"{EB324740-9F21-43C8-A44F-7B6E7CD7CCB4}" = protocol=17 | dir=in | app=c:\program files\lexmark 5600-6600 series\frun.exe |
"{EB6D368B-FEF9-49E6-914F-C7B22D36BF0B}" = protocol=17 | dir=in | app=c:\program files\lexmark 5600-6600 series\lxduamon.exe |
"{EE6D34CD-12EF-4291-887D-BDDC69C3DC46}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgdiagex.exe |
"{F1B9D780-0750-47B3-B2FA-7923434B9C08}" = protocol=6 | dir=in | app=c:\program files\splashtop\splashtop remote\server\srlogin.exe |
"{F5E4F8FC-BC21-41ED-953E-DB12BA7EE5F8}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version6\teamviewer.exe |
"TCP Query User{141DFB13-41FF-468E-9E61-440607302299}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe |
"TCP Query User{4909446A-8B6F-41D7-BE68-C062DEA94600}C:\program files\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=c:\program files\sopcast\adv\sopadver.exe |
"TCP Query User{7A7EA46D-1310-452E-B404-B426D42DF7D4}C:\program files\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files\sopcast\sopcast.exe |
"TCP Query User{A941EDED-FBB4-470D-A9A4-662F281D164B}C:\program files\counterpath\x-lite\x-lite.exe" = protocol=6 | dir=in | app=c:\program files\counterpath\x-lite\x-lite.exe |
"TCP Query User{B61374C2-5D09-4E27-851C-B9B5EEB2CF29}C:\program files\counterpath\x-lite\x-lite.exe" = protocol=6 | dir=in | app=c:\program files\counterpath\x-lite\x-lite.exe |
"UDP Query User{31992164-63E0-4713-B056-A14C92F4F6F0}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe |
"UDP Query User{5F1CB95E-800B-4BFF-B380-06BCB19CCDB6}C:\program files\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files\sopcast\sopcast.exe |
"UDP Query User{8785C536-35CC-44E6-8329-2CF8C99C2807}C:\program files\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=c:\program files\sopcast\adv\sopadver.exe |
"UDP Query User{901530D0-095C-4049-8415-1102BA2FB105}C:\program files\counterpath\x-lite\x-lite.exe" = protocol=17 | dir=in | app=c:\program files\counterpath\x-lite\x-lite.exe |
"UDP Query User{91C43103-E5AC-44E5-8953-66434A649038}C:\program files\counterpath\x-lite\x-lite.exe" = protocol=17 | dir=in | app=c:\program files\counterpath\x-lite\x-lite.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0090A87C-3E0E-43D4-AA71-A71B06563A4A}" = Dell Support Center
"{025C3792-E9C6-432A-92C1-661F99D021CA}" = Ulead Photo Explorer 8.6
"{052FDD78-A6EA-3187-8386-C82F4CA3A929}" = Microsoft .NET Framework 3.5 Language Pack SP1 - deu
"{08E81ABD-79F7-49C2-881F-FD6CB0975693}" = Roxio Creator Data
"{09760D42-E223-42AD-8C3E-55B47D0DDAC3}" = Roxio Creator DE
"{0ACE36CD-64F0-4828-A8E9-86B4916D6BD5}" = CIB pdf brewer
"{13702021-43FB-480C-912F-D9B74A538288}" = OpenProj
"{15401497-932B-4D0A-B982-D1AC7BB0B7AB}" = TOSHIBA dynadock
"{1A3E23D7-7A1E-43EC-B35D-EB2A31BED943}" = Video DVD Maker v3.32.0.80
"{1D5E29AD-39A9-4D0A-A8B6-46A6FCD8C995}" = Live! Cam Avatar
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F54DAFA-9261-4A62-B59D-6C9F26B48FE4}" = Roxio Creator Tools
"{224444F5-A49B-41C7-AF93-085508FDBE4C}" = Wireless USB
"{26A24AE4-039D-4CA4-87B4-2F83216023FF}" = Java(TM) 6 Update 29
"{2934DCB0-F8EE-11E0-A4A5-B8AC6F97B88E}" = Google Earth Plug-in
"{2EFEAD58-3311-4B2B-9D8A-8D663581D109}" = Splashtop Streamer
"{30465B6C-B53F-49A1-9EBA-A3F187AD502E}" = Roxio Update Manager
"{3248F0A8-6813-11D6-A77B-00B0D0160000}" = Java(TM) SE Runtime Environment 6
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3CEA4CA8-CDD4-451C-B673-E8F17BE01B15}" = Ulead COOL 360 1.0
"{3F92ABBB-6BBF-11D5-B229-002078017FBF}" = NetWaiting
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4EFC72DA-2314-4E5D-AC8E-1C954CDB8BBF}" = AVG 2012
"{5CD29180-A95E-11D3-A4EB-00C04F7BDB2C}" = Benutzerhandbuch
"{62230596-37E5-4618-A329-0D21F529A86F}" = Browser Address Error Redirector
"{65D0C510-D7B6-4438-9FC8-E6B91115AB0D}" = Live! Cam Avatar Creator
"{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{73A4F29F-31AC-4EBD-AA1B-0CC5F18C8F83}" = Roxio Creator Audio
"{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7F0C4457-8E64-491B-8D7B-991504365D1E}" = QuickSet
"{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1" = PDF24 Creator 4.1.2
"{825E9A84-1E03-4526-9F8E-45015C938A7C}" = WBFS Manager 4.0
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90120000-0020-0407-0000-0000000FF1CE}" = Compatibility Pack für 2007 Office System
"{90140000-0015-0407-0000-0000000FF1CE}" = Microsoft Office Access MUI (German) 2010
"{90140000-0015-0407-0000-0000000FF1CE}_Office14.SingleImage_{69E54534-4569-4639-89E9-305B60A11601}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2010
"{90140000-0016-0407-0000-0000000FF1CE}_Office14.SingleImage_{69E54534-4569-4639-89E9-305B60A11601}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2010
"{90140000-0018-0407-0000-0000000FF1CE}_Office14.SingleImage_{69E54534-4569-4639-89E9-305B60A11601}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0019-0407-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (German) 2010
"{90140000-0019-0407-0000-0000000FF1CE}_Office14.SingleImage_{69E54534-4569-4639-89E9-305B60A11601}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (German) 2010
"{90140000-001A-0407-0000-0000000FF1CE}_Office14.SingleImage_{69E54534-4569-4639-89E9-305B60A11601}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2010
"{90140000-001B-0407-0000-0000000FF1CE}_Office14.SingleImage_{69E54534-4569-4639-89E9-305B60A11601}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010
"{90140000-001F-0407-0000-0000000FF1CE}_Office14.SingleImage_{65A2328E-FDFB-4CA3-8582-357EA6825FEA}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010
"{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{46298F6A-1E7E-4D4A-B5F5-106A4F0E48C6}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2010
"{90140000-001F-0410-0000-0000000FF1CE}_Office14.SingleImage_{C0743197-FFEE-4C19-BAEB-8F7437DC4C8A}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2010
"{90140000-002C-0407-0000-0000000FF1CE}_Office14.SingleImage_{4275FB46-ABDF-4456-876C-17CF64294D9A}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-003D-0000-0000-0000000FF1CE}" = Microsoft Office Single Image 2010
"{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2010
"{90140000-006E-0407-0000-0000000FF1CE}_Office14.SingleImage_{98EDFD9F-EA76-40CC-BCE9-92C69413F65B}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2010
"{90140000-00A1-0407-0000-0000000FF1CE}_Office14.SingleImage_{69E54534-4569-4639-89E9-305B60A11601}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English)
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BDEF074-020E-458D-ADC5-8FF68E0C9B56}" = OutlookAddinSetup
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9C6978E8-B6D0-4AB7-A7A0-D81A74FBF745}" = MediaDirect
"{A78A5C61-2397-407E-A41F-0A0FFAD2572F}" = TubeBox!
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AA59DDE4-B672-4621-A016-4C248204957A}" = Skype™ 5.5
"{AC76BA86-7AD7-1031-7B44-AA1000000001}" = Adobe Reader X (10.1.2) - Deutsch
"{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}" = ABBYY FineReader 6.0 Sprint
"{B6A26DE5-F2B5-4D58-9570-4FC760E00FCD}" = Roxio Creator Copy
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{BFDC2A9E-70DB-4A33-BAAF-1F995CE33902}" = Ulead COOL 3D Production Studio
"{C3C9DAEE-6E0C-4A00-9EBE-B237DB5EAD14}" = SMath Studio
"{C8550C86-A712-4219-AD4C-038C9FD1D149}" = Ulead PhotoImpact 11
"{C99C0593-3B48-41D9-B42F-6E035B320449}" = Broadcom Management Programs
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones
"{DB44F479-789A-4D76-A31E-663C5658F576}" = Mindjet MindManager 9
"{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Windows Media Encoder 9-Reihe
"{E646DCF0-5A68-11D5-B229-002078017FBF}" = Digital Line Detect
"{E7E84E23-C5C0-4B15-B13A-C63149E59C98}" = AVG 2012
"{ED439A64-F018-4DD4-8BA5-328D85AB09AB}" = Roxio Creator DE
"{F63A3748-B93D-4360-9AD4-B064481A5C7B}" = Modem-Diagnose-Tool
"{F750C986-5310-3A5A-95F8-4EC71C8AC01C}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"{F7F10613-0F49-4001-AC23-B6F5163F838D}" = DisplayLink Core Software
"{FD023F61-65E9-465C-B558-7C64EB2B97E6}" = Dell Handbuch zum Einstieg
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Advanced Audio FX Engine" = Advanced Audio FX Engine
"Advanced Video FX Engine" = Advanced Video FX Engine
"Algebrus_is1" = Algebrus 3.1
"ASUS WebStorage" = ASUS WebStorage
"AVG" = AVG 2012
"bada SDK 1.2.1" = bada SDK 1.2.1
"Biet-O-Matic v2.14.8" = Biet-O-Matic v2.14.8
"Broadcom 802.11b Network Adapter" = Dell Wireless WLAN Card
"Calc 3D Pro_is1" = Calc 3D Pro Deutsch 2.1.10
"CCleaner" = CCleaner
"CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2C06&SUBSYS_14F1000F" = Conexant HDA D330 MDC V.92 Modem
"Creative OEM002" = Laptop Integrated Webcam Driver (1.04.01.1011)
"Dell Support Center" = Dell Support Center
"Dell Webcam Center" = Dell Webcam Center
"Dell Webcam Manager" = Dell Webcam Manager
"HP48g,49g,50g series Calculator Connectivity Kit" = HP48g,49g,50g series Calculator Connectivity Kit
"InstallShield_{2EFEAD58-3311-4B2B-9D8A-8D663581D109}" = Splashtop Streamer
"InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"KLiteCodecPack_is1" = K-Lite Codec Pack 5.2.0 (Full)
"Lexmark 5600-6600 Series" = Lexmark 5600-6600 Series
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware Version 1.60.1.1000
"Microsoft .NET Framework 3.5 Language Pack SP1 - deu" = Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"Mozilla Firefox 11.0 (x86 de)" = Mozilla Firefox 11.0 (x86 de)
"NVIDIA Drivers" = NVIDIA Drivers
"Office14.SingleImage" = Microsoft Office Professional 2010
"PDF-XChange 3_is1" = PDF-XChange 3
"PIXO RESCUE_is1" = PIXO RESCUE Version 1.0
"RuckZuck 4.0" = RuckZuck 4.0
"SopCast" = SopCast 3.3.2
"SynTPDeinstKey" = Dell Touchpad
"TeamViewer 6" = TeamViewer 6
"VLC media player" = VLC media player 1.1.7
"Windows Media Encoder 9" = Windows Media Encoder 9-Reihe
"WinRAR archiver" = WinRAR
"WinSPS-S7 5.025" = WinSPS-S7 5.025
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Game Organizer" = EasyBits GO
"GeoGebra WebStart" = GeoGebra WebStart
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 10.03.2012 07:55:19 | Computer Name = MeinerEiner | Source = Perflib | ID = 1008
Description =
Error - 13.03.2012 06:53:10 | Computer Name = MeinerEiner | Source = Perflib | ID = 1010
Description =
Error - 13.03.2012 06:53:14 | Computer Name = MeinerEiner | Source = Perflib | ID = 1008
Description =
Error - 13.03.2012 07:06:00 | Computer Name = MeinerEiner | Source = EventSystem | ID = 4621
Description =
Error - 15.03.2012 12:41:08 | Computer Name = MeinerEiner | Source = Perflib | ID = 1010
Description =
Error - 15.03.2012 12:41:10 | Computer Name = MeinerEiner | Source = Perflib | ID = 1008
Description =
Error - 16.03.2012 08:44:26 | Computer Name = MeinerEiner | Source = Perflib | ID = 1008
Description =
Error - 18.03.2012 07:19:04 | Computer Name = MeinerEiner | Source = Perflib | ID = 1010
Description =
Error - 18.03.2012 07:19:06 | Computer Name = MeinerEiner | Source = Perflib | ID = 1008
Description =
Error - 18.03.2012 07:32:07 | Computer Name = MeinerEiner | Source = EventSystem | ID = 4621
Description =
[ System Events ]
Error - 31.03.2012 05:14:14 | Computer Name = MeinerEiner | Source = Service Control Manager | ID = 7000
Description =
Error - 31.03.2012 05:14:14 | Computer Name = MeinerEiner | Source = Service Control Manager | ID = 7026
Description =
Error - 31.03.2012 05:14:38 | Computer Name = MeinerEiner | Source = DCOM | ID = 10016
Description =
Error - 31.03.2012 05:18:10 | Computer Name = MeinerEiner | Source = DCOM | ID = 10005
Description =
Error - 31.03.2012 05:18:21 | Computer Name = MeinerEiner | Source = DCOM | ID = 10005
Description =
Error - 31.03.2012 05:18:23 | Computer Name = MeinerEiner | Source = DCOM | ID = 10005
Description =
Error - 31.03.2012 05:18:37 | Computer Name = MeinerEiner | Source = DCOM | ID = 10005
Description =
Error - 31.03.2012 05:19:24 | Computer Name = MeinerEiner | Source = Service Control Manager | ID = 7001
Description =
Error - 31.03.2012 05:19:24 | Computer Name = MeinerEiner | Source = Service Control Manager | ID = 7026
Description =
Error - 31.03.2012 05:20:05 | Computer Name = MeinerEiner | Source = Service Control Manager | ID = 7001
Description =
< End of report > --- --- ---
Und die OTL.txtOTL Logfile: Code:
OTL logfile created on: 31.03.2012 11:38:53 - Run 1
OTL by OldTimer - Version 3.2.39.2 Folder = C:\Users\Meiner Einer\Downloads
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
2,00 Gb Total Physical Memory | 1,40 Gb Available Physical Memory | 69,94% Memory free
4,22 Gb Paging File | 3,81 Gb Available in Paging File | 90,28% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 220,27 Gb Total Space | 130,31 Gb Free Space | 59,16% Space Free | Partition Type: NTFS
Drive D: | 10,00 Gb Total Space | 5,82 Gb Free Space | 58,24% Space Free | Partition Type: NTFS
Computer Name: MEINEREINER | User Name: Meiner Einer | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Users\Meiner Einer\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Programme\Windows Media Player\wmpnscfg.exe (Microsoft Corporation)
========== Modules (No Company Name) ==========
MOD - C:\Windows\System32\Macromed\Flash\NPSWF32_11_2_202_228.dll ()
MOD - C:\Programme\Mozilla Firefox\mozjs.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\b6632a8b2f276a8e31f5b0f6b2006cd1\mscorlib.ni.dll ()
MOD - C:\Programme\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF ()
MOD - C:\Windows\System32\bcmwlrmt.dll ()
========== Win32 Services (SafeList) ==========
SRV - (sprtsvc_dellsupportcenter) SupportSoft Sprocket Service (dellsupportcenter) -- C:\Program Files\Dell Support Center\bin\sprtsvc.exe /service /p dellsupportcenter File not found
SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (SSUService) -- C:\Programme\Splashtop\Splashtop Software Updater\SSUService.exe (Splashtop Inc.)
SRV - (SplashtopRemoteService) -- C:\Programme\Splashtop\Splashtop Remote\Server\SRService.exe (Splashtop Inc.)
SRV - (MBAMService) -- C:\Programme\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (AdobeARMservice) -- C:\Programme\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
SRV - (AVGIDSAgent) -- C:\Programme\AVG\AVG2012\AVGIDSAgent.exe (AVG Technologies CZ, s.r.o.)
SRV - (avgwd) -- C:\Programme\AVG\AVG2012\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
SRV - (TeamViewer6) -- C:\Programme\TeamViewer\Version6\TeamViewer_Service.exe (TeamViewer GmbH)
SRV - (aluwbservice) -- C:\Programme\TOSHIBA\Wireless USB\AlUwbService.exe (Alereon)
SRV - (FsUsbExService) -- C:\Windows\System32\FsUsbExService.Exe (Teruten)
SRV - (DisplayLinkService) -- C:\Programme\DisplayLink Core Software\DisplayLinkManager.exe (DisplayLink Corp.)
SRV - (osppsvc) -- C:\Programme\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation)
SRV - (ose) -- C:\Programme\Common Files\microsoft shared\Source Engine\OSE.EXE (Microsoft Corporation)
SRV - (lxdu_device) -- C:\Windows\System32\lxducoms.exe ( )
SRV - (lxduCATSCustConnectService) -- C:\Windows\System32\spool\DRIVERS\W32X86\3\\lxduserv.exe ()
SRV - (WinDefend) -- C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (WMPNetworkSvc) -- C:\Programme\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
SRV - (STacSV) -- C:\Windows\System32\stacsv.exe (IDT, Inc.)
SRV - (AESTFilters) -- C:\Windows\System32\AEstSrv.exe (Andrea Electronics Corporation)
========== Driver Services (SafeList) ==========
DRV - (NwlnkFwd) -- system32\DRIVERS\nwlnkfwd.sys File not found
DRV - (NwlnkFlt) -- system32\DRIVERS\nwlnkflt.sys File not found
DRV - (ntiomin) -- File not found
DRV - (IpInIp) -- system32\DRIVERS\ipinip.sys File not found
DRV - (blbdrive) -- C:\Windows\system32\drivers\blbdrive.sys File not found
DRV - (MBAMProtector) -- C:\Windows\System32\drivers\mbam.sys (Malwarebytes Corporation)
DRV - (Avgldx86) -- C:\Windows\System32\drivers\avgldx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (AVGIDSShim) -- C:\Windows\System32\drivers\AVGIDSShim.sys (AVG Technologies CZ, s.r.o. )
DRV - (Avgrkx86) -- C:\Windows\System32\drivers\avgrkx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (Avgmfx86) -- C:\Windows\System32\drivers\avgmfx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (Avgtdix) -- C:\Windows\System32\drivers\avgtdix.sys (AVG Technologies CZ, s.r.o.)
DRV - (AVGIDSFilter) -- C:\Windows\System32\drivers\AVGIDSFilter.sys (AVG Technologies CZ, s.r.o. )
DRV - (AVGIDSEH) -- C:\Windows\System32\drivers\AVGIDSEH.sys (AVG Technologies CZ, s.r.o. )
DRV - (AVGIDSDriver) -- C:\Windows\System32\drivers\AVGIDSDriver.sys (AVG Technologies CZ, s.r.o. )
DRV - (DisplayLinkUsbPort) -- C:\Windows\System32\drivers\DisplayLinkUsbPort_5.3.24903.0.sys (libusb-Win32)
DRV - (ssadmdm) -- C:\Windows\System32\drivers\ssadmdm.sys (MCCI Corporation)
DRV - (ssadbus) SAMSUNG Android USB Composite Device driver (WDM) -- C:\Windows\System32\drivers\ssadbus.sys (MCCI Corporation)
DRV - (ssadmdfl) SAMSUNG Android USB Modem (Filter) -- C:\Windows\System32\drivers\ssadmdfl.sys (MCCI Corporation)
DRV - (dgderdrv) -- C:\Windows\System32\drivers\dgderdrv.sys (Devguru Co., Ltd)
DRV - (sscemdm) -- C:\Windows\System32\drivers\sscemdm.sys (MCCI Corporation)
DRV - (ss_bmdm) -- C:\Windows\System32\drivers\ss_bmdm.sys (MCCI Corporation)
DRV - (ssceserd) SAMSUNG Mobile Modem Diagnostic Serial Port V2 (WDM) -- C:\Windows\System32\drivers\ssceserd.sys (MCCI Corporation)
DRV - (ss_bserd) -- C:\Windows\System32\drivers\ss_bserd.sys (MCCI Corporation)
DRV - (sscebus) SAMSUNG USB Composite Device V2 driver (WDM) -- C:\Windows\System32\drivers\sscebus.sys (MCCI Corporation)
DRV - (ss_bbus) SAMSUNG USB Mobile Device (WDM) -- C:\Windows\System32\drivers\ss_bbus.sys (MCCI)
DRV - (androidusb) -- C:\Windows\System32\drivers\ssadadb.sys (Google Inc)
DRV - (sscemdfl) -- C:\Windows\System32\drivers\sscemdfl.sys (MCCI Corporation)
DRV - (ss_bmdfl) SAMSUNG USB Mobile Modem (Filter) -- C:\Windows\System32\drivers\ss_bmdfl.sys (MCCI Corporation)
DRV - (ALHWA) -- C:\Windows\System32\drivers\ALHWA.sys (Alereon, Inc.)
DRV - (ALDWA) -- C:\Windows\System32\drivers\ALDWA.sys (Alereon, Inc.)
DRV - (ALCBAF) -- C:\Windows\System32\drivers\ALCBAF.sys (Alereon, Inc.)
DRV - (ALURCU) -- C:\Windows\System32\drivers\ALURCU.sys (Alereon, Inc.)
DRV - (al56xxpt) -- C:\Windows\System32\drivers\al56xxpt.sys (Alereon Inc.)
DRV - (FsUsbExDisk) -- C:\Windows\System32\FsUsbExDisk.Sys ()
DRV - (dlkmd) -- C:\Windows\System32\drivers\dlkmd.sys (DisplayLink Corp.)
DRV - (dlkmdldr) -- C:\Windows\System32\drivers\dlkmdldr.sys (DisplayLink Corp.)
DRV - (HPx9G+) -- C:\Windows\System32\drivers\HPx9G2k.sys (Hewlett Packard Development LLC)
DRV - (WSDPrintDevice) -- C:\Windows\System32\drivers\WSDPrint.sys (Microsoft Corporation)
DRV - (STHDA) -- C:\Windows\System32\drivers\stwrt.sys (IDT, Inc.)
DRV - (OEM02Vfx) -- C:\Windows\System32\drivers\OEM02Vfx.sys (EyePower Games Pte. Ltd.)
DRV - (OEM02Dev) -- C:\Windows\System32\drivers\OEM02Dev.sys (Creative Technology Ltd.)
DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation)
DRV - (rismxdp) -- C:\Windows\System32\drivers\rixdptsk.sys (REDC)
DRV - (rimsptsk) -- C:\Windows\System32\drivers\rimsptsk.sys (REDC)
DRV - (rimmptsk) -- C:\Windows\System32\drivers\rimmptsk.sys (REDC)
DRV - (bcm4sbxp) -- C:\Windows\System32\drivers\bcm4sbxp.sys (Broadcom Corporation)
DRV - (R300) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (e1express) Intel(R) -- C:\Windows\System32\drivers\e1e6032.sys (Intel Corporation)
DRV - (XAudio) -- C:\Windows\System32\drivers\XAudio.sys (Conexant Systems, Inc.)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7DADE
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Ask.com Deutschland - die andere Suchmaschine
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\SearchScopes,DefaultScope = {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = hxxp://websearch.ask.com/redirect?client=ie&tb=SPC2&o=15000&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=PV&apn_dtid=YYYYYYYYDE&apn_uid=1983A5E2-D19E-4CC5-B17D-C61D49983A5C&apn_sauid=DEAEF289-3955-4159-BD8F-3E8731A1369C
IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7DADE
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "hxxp://www.google.de/ig"
FF - prefs.js..extensions.enabledItems: {1E73965B-8B48-48be-9C8D-68B920ABC1C4}:10.0.0.1209
FF - prefs.js..network.proxy.type: 0
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_11_2_202_228.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files\AVG\AVG2012\Firefox4\ [2012.02.02 18:03:09 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 11.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012.03.21 21:21:12 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 11.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
[2011.02.27 15:10:37 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Meiner Einer\AppData\Roaming\mozilla\Extensions
[2011.01.11 21:53:56 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Meiner Einer\AppData\Roaming\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2011.11.27 19:58:48 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Meiner Einer\AppData\Roaming\mozilla\Firefox\Profiles\dsfvfakb.default\extensions
[2011.02.28 21:33:48 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Meiner Einer\AppData\Roaming\mozilla\Firefox\Profiles\dsfvfakb.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011.04.02 17:07:56 | 000,002,396 | ---- | M] () -- C:\Users\Meiner Einer\AppData\Roaming\Mozilla\Firefox\Profiles\dsfvfakb.default\searchplugins\askcom.xml
[2012.01.07 20:27:34 | 000,000,000 | ---D | M] (No name found) -- C:\Programme\Mozilla Firefox\extensions
[2011.11.03 20:29:46 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Programme\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2012.03.21 21:21:12 | 000,097,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2012.03.16 14:45:43 | 000,001,392 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazondotcom-de.xml
[2012.03.16 14:45:43 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2012.03.16 14:45:43 | 000,001,153 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-de.xml
[2012.03.16 14:45:43 | 000,006,805 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\leo_ende_de.xml
[2012.03.16 14:45:43 | 000,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-de.xml
[2012.03.16 14:45:43 | 000,001,105 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-de.xml
O1 HOSTS File: ([2006.09.18 23:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Programme\AVG\AVG2012\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (CmjBrowserHelperObject Object) - {6FE6A929-59D1-4763-91AD-29B61CFFB35B} - C:\Programme\Mindjet\MindManager 9\Mm8InternetExplorer.dll (Mindjet)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Programme\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (CBrowserHelperObject Object) - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Programme\Dell\BAE\BAE.dll (Dell Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4 - HKLM..\Run: [ASUSWebStorage] C:\Program Files\ASUS\ASUS WebStorage\3.0.137.286\AsusWSPanel.exe (ASUS Cloud Corporation)
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG2012\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [DELL Webcam Manager] C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe (Creative Technology Ltd.)
O4 - HKLM..\Run: [ECenter] C:\DELL\E-Center\EULALauncher.exe ( )
O4 - HKLM..\Run: [lxduamon] C:\Program Files\Lexmark 5600-6600 Series\lxduamon.exe ()
O4 - HKLM..\Run: [lxdumon.exe] C:\Program Files\Lexmark 5600-6600 Series\lxdumon.exe ()
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NVHotkey] C:\Windows\System32\nvHotkey.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\Windows\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvSvc] C:\Windows\System32\nvsvc.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [OEM02Mon.exe] C:\Windows\OEM02Mon.exe (Creative Technology Ltd.)
O4 - HKLM..\Run: [PCMService] C:\Program Files\Dell\MediaDirect\PCMService.exe (CyberLink Corp.)
O4 - HKLM..\Run: [PDFPrint] C:\Programme\PDF24\pdf24.exe (Geek Software GmbH)
O4 - HKLM..\Run: [SigmatelSysTrayApp] C:\Programme\Sigmatel\C-Major Audio\WDM\sttray.exe (IDT, Inc.)
O4 - HKLM..\Run: [Ulead AutoDetector v2] C:\Programme\Common Files\Ulead Systems\AutoDetector\Monitor.exe (Ulead Systems, Inc.)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKCU..\Run: [eyeBeam SIP Client] File not found
O4 - HKCU..\Run: [KiesHelper] C:\Program Files\Samsung\Kies\KiesHelper.exe (Samsung)
O4 - HKCU..\Run: [KiesPDLR] C:\Programme\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe ()
O4 - HKCU..\Run: [SkypePM] C:\Users\Meiner Einer\AppData\Local\Skype\SkypePM.exe ()
O4 - HKCU..\Run: [WMPNSCFG] C:\Programme\Windows Media Player\wmpnscfg.exe (Microsoft Corporation)
O4 - HKCU..\Run: [X-Lite 4] "C:\Program Files\CounterPath\X-Lite 4\X-Lite4.exe" File not found
O4 - Startup: C:\Users\Meiner Einer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk = C:\Programme\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation)
O8 - Extra context menu item: An OneNote s&enden - C:\Programme\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O8 - Extra context menu item: Nach Microsoft E&xcel exportieren - C:\Programme\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: An Mindjet MindManager senden - {2F72393D-2472-4F82-B600-ED77F354B7FF} - C:\Programme\Mindjet\MindManager 9\Mm8InternetExplorer.dll (Mindjet)
O9 - Extra Button: Verknüpfte &OneNote-Notizen - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Verknüpfte &OneNote-Notizen - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab (Java Plug-in 1.6.0)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.178.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1400B13B-C2B1-4263-A7D9-5596B54D1309}: DhcpNameServer = 192.168.178.1
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Programme\AVG\AVG2012\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programme\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\img19.jpg
O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\img19.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006.09.18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG2012\avgrsx.exe /sync /restart)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2012.03.31 10:54:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012.03.31 10:54:20 | 000,020,464 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2012.03.31 10:54:20 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2012.03.31 10:49:16 | 000,418,464 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
[2012.03.15 19:05:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RuckZuck
[2012.03.15 19:05:39 | 001,045,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msjet35.dll
[2012.03.15 19:05:39 | 000,407,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrepl35.dll
[2012.03.15 19:05:39 | 000,368,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vbar332.dll
[2012.03.15 19:05:39 | 000,037,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Msjint35.dll
[2012.03.15 19:05:39 | 000,024,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msjter35.dll
[2012.03.15 19:05:38 | 000,000,000 | ---D | C] -- C:\Program Files\Mursoft
[2012.03.15 19:05:29 | 000,305,664 | ---- | C] (InstallShield Software Corporation ) -- C:\Windows\IsUn0407.exe
[2012.03.15 18:44:37 | 002,044,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2012.03.15 18:44:36 | 001,172,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10warp.dll
[2012.03.15 18:44:36 | 001,068,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DWrite.dll
[2012.03.15 18:44:36 | 000,683,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d2d1.dll
[2012.03.15 18:44:36 | 000,219,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1core.dll
[2012.03.15 18:44:36 | 000,160,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1.dll
[2012.03.15 18:44:25 | 000,613,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpencom.dll
[2012.03.01 23:23:18 | 000,000,000 | ---D | C] -- C:\Users\Meiner Einer\AppData\Local\{FFFA2FB9-4857-4475-8379-F36343DA5801}
[9 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
[9 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
[1 C:\Windows\System32\drivers\*.tmp files -> C:\Windows\System32\drivers\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Meiner Einer\AppData\Roaming\*.tmp files -> C:\Users\Meiner Einer\AppData\Roaming\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012.03.31 11:22:23 | 000,627,756 | ---- | M] () -- C:\Windows\System32\perfh007.dat
[2012.03.31 11:22:23 | 000,595,386 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2012.03.31 11:22:23 | 000,125,676 | ---- | M] () -- C:\Windows\System32\perfc007.dat
[2012.03.31 11:22:23 | 000,103,460 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2012.03.31 11:20:43 | 000,001,356 | ---- | M] () -- C:\Users\Meiner Einer\AppData\Local\d3d9caps.dat
[2012.03.31 11:17:57 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012.03.31 11:16:39 | 000,004,268 | ---- | M] () -- C:\Windows\bthservsdp.dat
[2012.03.31 11:15:18 | 000,001,858 | ---- | M] () -- C:\Users\Meiner Einer\Desktop\MySyncFolder.lnk
[2012.03.31 11:13:49 | 000,136,968 | ---- | M] () -- C:\Users\Meiner Einer\AppData\Roaming\nvModes.001
[2012.03.31 11:13:05 | 000,001,106 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012.03.31 11:13:03 | 000,003,568 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2012.03.31 11:13:03 | 000,003,568 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2012.03.31 11:13:03 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012.03.31 10:54:22 | 000,000,908 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012.03.31 10:49:16 | 000,418,464 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
[2012.03.31 10:49:16 | 000,070,304 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
[2012.03.31 10:46:58 | 000,000,506 | ---- | M] () -- C:\Windows\tasks\SystemToolsDailyTest.job
[2012.03.31 10:44:00 | 000,001,110 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012.03.31 10:30:51 | 000,136,968 | ---- | M] () -- C:\Users\Meiner Einer\AppData\Roaming\nvModes.dat
[2012.03.31 08:55:02 | 093,165,119 | ---- | M] () -- C:\Windows\System32\drivers\AVG\incavi.avm
[2012.03.26 18:54:15 | 000,118,784 | ---- | M] () -- C:\Users\Meiner Einer\Documents\IMG_7760.jpg
[2012.03.26 17:36:11 | 000,398,906 | ---- | M] () -- C:\Windows\System32\drivers\AVG\iavichjg.avm
[2012.03.26 16:50:05 | 000,002,617 | ---- | M] () -- C:\Users\Meiner Einer\Desktop\Microsoft Word 2010.lnk
[2012.03.18 13:40:43 | 000,002,531 | ---- | M] () -- C:\Users\Meiner Einer\Desktop\TubeBox! starten.lnk
[2012.03.18 13:05:13 | 197,516,543 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2012.03.16 14:41:19 | 000,685,704 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2012.03.05 19:35:04 | 000,000,564 | ---- | M] () -- C:\Windows\tasks\PCDoctorBackgroundMonitorTask.job
[9 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
[9 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
[1 C:\Windows\System32\drivers\*.tmp files -> C:\Windows\System32\drivers\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Meiner Einer\AppData\Roaming\*.tmp files -> C:\Users\Meiner Einer\AppData\Roaming\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012.03.31 10:54:22 | 000,000,908 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012.03.31 10:49:17 | 000,000,884 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012.03.26 18:54:15 | 000,118,784 | ---- | C] () -- C:\Users\Meiner Einer\Documents\IMG_7760.jpg
[2012.01.08 21:46:28 | 000,015,873 | ---- | C] () -- C:\Windows\System32\Inetde.dll
[2011.12.18 22:53:28 | 000,807,424 | ---- | C] () -- C:\Windows\System32\WS7_S7AG.dll
[2011.09.05 09:19:56 | 000,000,176 | ---- | C] () -- C:\Windows\explorer.exe.config
[2011.06.15 11:47:43 | 000,000,000 | ---- | C] () -- C:\Windows\System32\dlumd9.dll
[2011.06.15 11:47:43 | 000,000,000 | ---- | C] () -- C:\Windows\System32\dlumd10.dll
[2011.05.28 18:52:29 | 000,000,204 | ---- | C] () -- C:\Windows\ulead32.ini
[2011.05.28 18:35:22 | 000,178,176 | ---- | C] () -- C:\Windows\System32\unrar.dll
[2011.05.28 18:35:21 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini
[2011.05.28 18:35:20 | 000,881,664 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2011.05.28 18:35:20 | 000,205,824 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2011.04.03 19:37:52 | 000,000,000 | ---- | C] () -- C:\Users\Meiner Einer\AppData\Local\prvlcl.dat
[2011.03.14 14:32:36 | 000,110,592 | ---- | C] () -- C:\Windows\System32\FsUsbExDevice.Dll
[2011.03.14 14:32:36 | 000,036,608 | ---- | C] () -- C:\Windows\System32\FsUsbExDisk.Sys
[2011.03.09 19:16:36 | 000,000,118 | ---- | C] () -- C:\Windows\System32\MRT.INI
[2011.02.27 22:53:26 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2011.02.17 22:20:00 | 000,183,248 | ---- | C] () -- C:\Users\Meiner Einer\AppData\Roaming\AcroFF.dll
[2011.02.16 18:52:42 | 000,028,160 | ---- | C] () -- C:\Users\Meiner Einer\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.01.29 18:00:24 | 000,030,568 | ---- | C] () -- C:\Windows\MusiccityDownload.exe
[2011.01.29 18:00:22 | 000,974,848 | ---- | C] () -- C:\Windows\System32\cis-2.4.dll
[2011.01.29 18:00:22 | 000,081,920 | ---- | C] () -- C:\Windows\System32\issacapi_bs-2.3.dll
[2011.01.29 18:00:22 | 000,065,536 | ---- | C] () -- C:\Windows\System32\issacapi_pe-2.3.dll
[2011.01.29 18:00:22 | 000,057,344 | ---- | C] () -- C:\Windows\System32\issacapi_se-2.3.dll
[2011.01.22 12:13:20 | 000,001,356 | ---- | C] () -- C:\Users\Meiner Einer\AppData\Local\d3d9caps.dat
[2011.01.15 23:38:55 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2011.01.15 23:14:16 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2011.01.15 23:14:16 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2011.01.14 04:14:05 | 000,136,968 | ---- | C] () -- C:\Users\Meiner Einer\AppData\Roaming\nvModes.001
[2011.01.13 08:00:09 | 000,136,968 | ---- | C] () -- C:\Users\Meiner Einer\AppData\Roaming\nvModes.dat
[2011.01.11 22:13:25 | 000,004,268 | ---- | C] () -- C:\Windows\bthservsdp.dat
[2011.01.11 21:39:36 | 000,360,448 | ---- | C] () -- C:\Windows\System32\lxducoin.dll
[2011.01.11 21:34:38 | 000,040,960 | ---- | C] () -- C:\Windows\System32\lxduvs.dll
[2011.01.11 21:31:45 | 000,081,920 | ---- | C] () -- C:\Windows\System32\lxducaps.dll
[2011.01.11 21:31:45 | 000,069,632 | ---- | C] () -- C:\Windows\System32\lxducnv4.dll
[2011.01.11 21:31:44 | 001,036,288 | ---- | C] () -- C:\Windows\System32\lxdudrs.dll
[2011.01.11 21:28:58 | 000,000,044 | ---- | C] () -- C:\Windows\System32\lxdurwrd.ini
[2011.01.11 21:25:47 | 000,438,272 | ---- | C] ( ) -- C:\Windows\System32\LXDUhcp.dll
[2011.01.11 21:25:47 | 000,389,120 | ---- | C] () -- C:\Windows\System32\LXDUinst.dll
[2011.01.11 21:25:46 | 000,364,544 | ---- | C] ( ) -- C:\Windows\System32\lxduinpa.dll
[2011.01.11 21:25:46 | 000,339,968 | ---- | C] ( ) -- C:\Windows\System32\lxduiesc.dll
[2011.01.11 21:25:45 | 001,069,056 | ---- | C] ( ) -- C:\Windows\System32\lxduserv.dll
[2011.01.11 21:25:45 | 000,851,968 | ---- | C] ( ) -- C:\Windows\System32\lxduusb1.dll
[2011.01.11 21:25:44 | 000,651,264 | ---- | C] ( ) -- C:\Windows\System32\lxdupmui.dll
[2011.01.11 21:25:44 | 000,577,536 | ---- | C] ( ) -- C:\Windows\System32\lxdulmpm.dll
[2011.01.11 21:25:42 | 000,679,936 | ---- | C] ( ) -- C:\Windows\System32\lxduhbn3.dll
[2011.01.11 21:25:42 | 000,328,360 | ---- | C] ( ) -- C:\Windows\System32\lxduih.exe
[2011.01.11 21:25:41 | 000,208,896 | ---- | C] () -- C:\Windows\System32\lxdugrd.dll
[2011.01.11 21:25:40 | 000,594,600 | ---- | C] ( ) -- C:\Windows\System32\lxducoms.exe
[2011.01.11 21:25:39 | 000,765,952 | ---- | C] ( ) -- C:\Windows\System32\lxducomc.dll
[2011.01.11 21:25:39 | 000,376,832 | ---- | C] ( ) -- C:\Windows\System32\lxducomm.dll
[2011.01.11 21:25:39 | 000,369,320 | ---- | C] ( ) -- C:\Windows\System32\lxducfg.exe
========== LOP Check ==========
[2011.02.17 22:20:00 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\5011
[2011.02.27 14:49:36 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\Acxuil
[2012.03.31 11:15:17 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\ASUS WebStorage
[2012.01.30 15:24:09 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\AVG2012
[2011.06.15 11:43:55 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\Downloaded Installations
[2011.10.23 12:43:07 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\DVDVideoSoft
[2011.10.23 12:42:55 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\DVDVideoSoftIEHelpers
[2011.08.01 21:35:01 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\Emulators
[2011.08.06 18:32:09 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\go
[2011.10.23 12:37:03 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\Jens Lorek
[2011.02.17 22:19:47 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\kock
[2011.01.20 17:48:16 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\Lexmark Productivity Studio
[2011.01.13 20:31:29 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\OpenOffice.org
[2011.01.12 20:19:54 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\PCDr
[2011.02.23 22:28:03 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\Samsung
[2011.01.14 19:31:52 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\TeamViewer
[2011.12.08 23:31:42 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\Temp
[2011.01.11 21:53:56 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\Thunderbird
[2011.05.28 15:38:09 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\TubeBox
[2011.03.09 19:14:44 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\Tuxiiq
[2011.02.27 00:29:07 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\UAs
[2011.05.28 18:38:05 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\Video DVD Maker FREE
[2011.02.27 00:29:07 | 000,000,000 | ---D | M] -- C:\Users\Meiner Einer\AppData\Roaming\xmldm
[2012.03.05 19:35:04 | 000,000,564 | ---- | M] () -- C:\Windows\Tasks\PCDoctorBackgroundMonitorTask.job
[2012.03.31 11:16:39 | 000,032,578 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2012.03.31 10:46:58 | 000,000,506 | ---- | M] () -- C:\Windows\Tasks\SystemToolsDailyTest.job
========== Purity Check ==========
< End of report > --- --- --- |