Guten Tag,
Hier ist der inhalt der OTL.Txt Code:
OTL logfile created on: 12/13/2011 1:56:42 PM - Run
OTLPE by OldTimer - Version 3.1.48.0 Folder = X:\Programs\OTLPE
Microsoft Windows XP Service Pack 3 (Version = 5.1.2600) - Type = SYSTEM
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
3.00 Gb Total Physical Memory | 3.00 Gb Available Physical Memory | 92.00% Memory free
3.00 Gb Paging File | 3.00 Gb Available in Paging File | 98.00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Programme
Drive C: | 416.92 Gb Total Space | 3.40 Gb Free Space | 0.82% Space Free | Partition Type: NTFS
Drive D: | 48.83 Gb Total Space | 0.40 Gb Free Space | 0.82% Space Free | Partition Type: NTFS
Drive X: | 436.59 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Computer Name: REATOGO | User Name: SYSTEM
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
Using ControlSet: ControlSet001
========== Win32 Services (SafeList) ==========
SRV - File not found [On_Demand] -- -- (AppMgmt)
SRV - [2009/11/17 06:07:46 | 001,528,624 | ---- | M] (Cisco Systems, Inc.) [Auto] -- D:\Programme\Cisco Systems\VPN Client\cvpnd.exe -- (CVPND)
SRV - [2009/05/14 10:07:14 | 000,759,048 | ---- | M] (ABBYY) [Auto] -- D:\Programme\Gemeinsame Dateien\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe -- (ABBYY.Licensing.FineReader.Sprint.9.0)
SRV - [2008/05/12 16:12:56 | 000,069,632 | ---- | M] (Ralink Technology, Corp.) [Auto] -- D:\Programme\Hama\Common\RalinkRegistryWriter.exe -- (RalinkRegistryWriter)
SRV - [2008/02/28 11:07:48 | 000,529,704 | ---- | M] (Nero AG) [On_Demand] -- D:\Programme\Gemeinsame Dateien\Nero\Lib\NMIndexingService.exe -- (NMIndexingService)
SRV - [2008/01/31 20:05:05 | 000,094,208 | ---- | M] (SigmaTel, Inc.) [Auto] -- D:\Programme\SigmaTel\C-Major Audio\WDM\stacsv.exe -- (STacSV)
SRV - [2004/10/21 21:24:18 | 000,073,728 | ---- | M] (Macrovision Corporation) [On_Demand] -- D:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe -- (IDriverT)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand] -- -- (PDCOMP)
DRV - File not found [Kernel | System] -- -- (PCIDump)
DRV - File not found [Kernel | System] -- -- (lbrtfdc)
DRV - File not found [Kernel | System] -- -- (i2omgmt)
DRV - File not found [Kernel | System] -- -- (Changer)
DRV - [2011/07/04 07:08:54 | 000,271,360 | ---- | M] () [Kernel | Auto] -- D:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt)
DRV - [2011/07/04 07:08:53 | 000,018,048 | ---- | M] () [Kernel | Auto] -- D:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt)
DRV - [2010/11/18 13:33:41 | 000,691,696 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot] -- D:\WINDOWS\system32\drivers\sptd.sys -- (sptd)
DRV - [2010/02/02 23:52:08 | 004,605,952 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2010/01/28 09:12:02 | 000,095,232 | R--- | M] (ATI Technologies, Inc.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV - [2009/11/17 06:07:06 | 000,308,859 | ---- | M] (Cisco Systems, Inc.) [Kernel | Auto] -- D:\WINDOWS\system32\drivers\CVPNDRVA.sys -- (CVPNDRVA)
DRV - [2008/11/16 12:39:44 | 000,131,984 | ---- | M] (Deterministic Networks, Inc.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\dne2000.sys -- (DNE)
DRV - [2008/07/30 08:44:00 | 000,619,136 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\rt2870.sys -- (rt2870)
DRV - [2008/01/31 20:05:05 | 001,222,840 | ---- | M] (SigmaTel, Inc.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\sthda.sys -- (STHDA)
DRV - [2008/01/31 20:05:04 | 000,054,272 | ---- | M] (Sonic Focus, Inc) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\sfng32.sys -- (sfng32)
DRV - [2007/03/13 07:05:30 | 000,044,672 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\HECI.sys -- (HECI) Intel(R)
DRV - [2007/01/18 14:28:02 | 000,005,275 | ---- | M] (Cisco Systems, Inc.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\CVirtA.sys -- (CVirtA)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\Besitzer_ON_D\..\URLSearchHook: {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - D:\Programme\Iminent\SearchTheWeb\Iminent.BHO.NavigationError.dll (Iminent)
IE - HKU\Besitzer_ON_D\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..extensions.enabledItems: webbooster@iminent.com:3.33.0
FF - prefs.js..extensions.enabledItems: {AB2CE124-6272-4b12-94A9-7303C7397BD1}:5.3.0.7280
FF - prefs.js..extensions.enabledItems: {ACAA314B-EEBA-48e4-AD47-84E31C44796C}:1.0.1
FF - prefs.js..extensions.enabledItems: {C9B68337-E93A-44EA-94DC-CB300EC06444}:3.26.0
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: D:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: D:\Programme\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: D:\Programme\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: D:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: D:\Programme\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: D:\Programme\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: D:\Programme\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: D:\Programme\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Components: C:\Programme\Mozilla Firefox\components [2010/11/18 11:59:41 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Plugins: C:\Programme\Mozilla Firefox\plugins [2011/11/22 11:52:23 | 000,000,000 | ---D | M]
[2010/11/18 11:59:48 | 000,000,000 | ---D | M] (No name found) -- D:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\mozilla\Extensions
[2011/04/04 08:58:53 | 000,000,000 | ---D | M] (No name found) -- D:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\mozilla\Firefox\Profiles\kgxzts8j.default\extensions
[2011/05/18 10:35:27 | 000,000,000 | ---D | M] (No name found) -- D:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\mozilla\Firefox\Profiles\kgxzts8j.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011/04/04 08:58:53 | 000,000,000 | ---D | M] ("DVDVideoSoft Menu") -- D:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\mozilla\Firefox\Profiles\kgxzts8j.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
[2011/04/04 08:58:44 | 000,000,000 | ---D | M] (IMinent Toolbar) -- D:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\mozilla\Firefox\Profiles\kgxzts8j.default\extensions\{C9B68337-E93A-44EA-94DC-CB300EC06444}
[2011/05/18 10:35:26 | 000,000,000 | ---D | M] (No name found) -- D:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\mozilla\Firefox\Profiles\kgxzts8j.default\extensions\staged-xpis
[2011/11/22 11:52:24 | 000,000,000 | ---D | M] (No name found) -- D:\Programme\Mozilla Firefox\extensions
[2011/07/21 16:28:54 | 000,000,000 | ---D | M] (Skype extension) -- D:\Programme\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
[2011/11/22 11:52:24 | 000,000,000 | ---D | M] (Java Console) -- D:\Programme\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011/04/04 08:58:58 | 000,000,000 | ---D | M] (Iminent WebBooster) -- D:\Programme\Mozilla Firefox\extensions\webbooster@iminent.com
[2011/11/22 11:52:15 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- D:\Programme\mozilla firefox\plugins\npdeployJava1.dll
[2010/07/12 11:33:56 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- D:\Programme\mozilla firefox\plugins\npwachk.dll
[2010/10/27 00:44:13 | 000,001,392 | ---- | M] () -- D:\Programme\mozilla firefox\searchplugins\amazondotcom-de.xml
[2010/10/27 00:44:13 | 000,002,344 | ---- | M] () -- D:\Programme\mozilla firefox\searchplugins\eBay-de.xml
[2010/10/27 00:44:13 | 000,006,805 | ---- | M] () -- D:\Programme\mozilla firefox\searchplugins\leo_ende_de.xml
[2010/07/09 19:21:02 | 000,002,157 | ---- | M] () -- D:\Programme\mozilla firefox\searchplugins\SearchTheWeb.xml
[2010/10/27 00:44:13 | 000,001,178 | ---- | M] () -- D:\Programme\mozilla firefox\searchplugins\wikipedia-de.xml
[2010/10/27 00:44:13 | 000,001,105 | ---- | M] () -- D:\Programme\mozilla firefox\searchplugins\yahoo-de.xml
O1 HOSTS File: ([2008/04/14 07:00:00 | 000,000,820 | ---- | M]) - D:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx ()
O2 - BHO: (TBSB01620 Class) - {58124A0B-DC32-4180-9BFF-E0E21AE34026} - D:\Programme\IMinent Toolbar\tbcore3.dll ()
O2 - BHO: (Iminent.BHO.NavigationError) - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - D:\Programme\Iminent\SearchTheWeb\Iminent.BHO.NavigationError.dll (Iminent)
O2 - BHO: (Easy Photo Print) - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - D:\Programme\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
O2 - BHO: (IMinent WebBooster (BHO)) - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - D:\Programme\Iminent\IMBooster4Web\Iminent.WebBooster.dll (Iminent)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - D:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3 - HKLM\..\Toolbar: (Easy Photo Print) - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - D:\Programme\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
O3 - HKLM\..\Toolbar: (IMinent Toolbar) - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} - D:\Programme\IMinent Toolbar\tbcore3.dll ()
O3 - HKU\Besitzer_ON_D\..\Toolbar\WebBrowser: (IMinent Toolbar) - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} - D:\Programme\IMinent Toolbar\tbcore3.dll ()
O4 - HKLM..\Run: [EEventManager] D:\Programme\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [IMBooster] D:\Programme\Iminent\IMBooster\imbooster.exe (Iminent)
O4 - HKLM..\Run: [Iminent.Notifier] D:\Programme\Iminent\SearchTheWeb\Iminent.Notifier.exe (Iminent)
O4 - HKLM..\Run: [NeroFilterCheck] D:\Programme\Gemeinsame Dateien\Nero\Lib\NeroCheck.exe (Nero AG)
O4 - HKLM..\Run: [SigmatelSysTrayApp] D:\WINDOWS\sttray.exe (SigmaTel, Inc.)
O4 - HKLM..\Run: [StartCCC] D:\Programme\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [SunJavaUpdateSched] D:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [Update] D:\WINDOWS\system32\0.8777393798159405.exe ()
O4 - HKU\Besitzer_ON_D..\Run: [DAEMON Tools Lite] D:\Programme\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\Besitzer_ON_D..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] D:\Programme\Gemeinsame Dateien\Nero\Lib\NMIndexStoreSvr.exe (Nero AG)
O4 - HKU\Besitzer_ON_D..\Run: [Steam] D:\Programme\Steam\steam.exe (Valve Corporation)
O4 - Startup: D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Hama Wireless LAN Utility.lnk = D:\Programme\Hama\Common\RaUI.exe (Hama GmbH & Co KG)
O4 - Startup: D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\LOLRecorder.lnk = D:\Programme\LOLReplay\LOLRecorder.exe ()
O4 - Startup: D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\VPN Client.lnk = D:\WINDOWS\Installer\{21E247D4-5E27-4BEA-AA4D-19A81203FE2A}\Icon3E5562ED7.ico ()
O4 - Startup: D:\Dokumente und Einstellungen\Besitzer\Startmenü\Programme\Autostart\OpenOffice.org 3.3.lnk = D:\Programme\OpenOffice.org 3\program\quickstart.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\Besitzer_ON_D\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\LocalService_ON_D\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\NetworkService_ON_D\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Free YouTube Download - D:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\DVDVideoSoftIEHelpers\freeyoutubedownload.htm ()
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O12 - Plugin for: .spop - D:\Programme\Internet Explorer\Plugins\NPDocBox.dll (InterTrust Technologies Corporation, Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - D:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - D:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - D:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - D:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - D:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - D:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - D:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - D:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - D:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - D:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop Components:0 (Die derzeitige Homepage) - About:Home
O24 - Desktop WallPaper:
O24 - Desktop BackupWallPaper:
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/11/18 11:23:30 | 000,000,000 | ---- | M] () - D:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2006/03/24 06:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ]
O33 - MountPoints2\{8f4a4c61-65d7-11e0-8bf8-001cc0616485}\Shell - "" = AutoRun
O33 - MountPoints2\{8f4a4c61-65d7-11e0-8bf8-001cc0616485}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{8f4a4c61-65d7-11e0-8bf8-001cc0616485}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -a
O33 - MountPoints2\{cc59787d-fa1f-11df-8b0b-001cc0616485}\Shell\AutoRun\command - "" = K:\PMBP_Win.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/12/11 06:44:24 | 000,000,000 | ---D | C] -- D:\Kaspersky Rescue Disk 10.0
[2011/12/11 04:31:59 | 000,000,000 | ---D | C] -- D:\WINDOWS\Sun
[2011/12/08 14:03:49 | 000,000,000 | ---D | C] -- D:\WINDOWS\Internet Logs
[2011/12/08 14:03:14 | 000,000,000 | ---D | C] -- D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Cisco Systems VPN Client
[2011/12/08 14:03:12 | 000,000,000 | ---D | C] -- D:\Programme\Gemeinsame Dateien\Deterministic Networks
[2011/12/08 14:03:11 | 000,000,000 | ---D | C] -- D:\Programme\Cisco Systems
[2011/12/08 14:01:43 | 000,000,000 | ---D | C] -- D:\Dokumente und Einstellungen\Besitzer\Desktop\Neuer Ordner
[2011/11/23 04:34:42 | 000,000,000 | ---D | C] -- D:\Programme\Gemeinsame Dateien\EPSON
[2011/11/23 04:34:36 | 000,093,696 | ---- | C] (SEIKO EPSON CORPORATION) -- D:\WINDOWS\System32\E_FLBGDE.DLL
[2011/11/23 04:34:36 | 000,063,488 | ---- | C] (SEIKO EPSON CORPORATION) -- D:\WINDOWS\System32\E_FD4BGDE.DLL
[2011/11/23 04:34:36 | 000,008,192 | ---- | C] (SEIKO EPSON CORP.) -- D:\WINDOWS\System32\E_DCINST.DLL
[2011/11/23 04:34:26 | 000,025,856 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\dllcache\usbprint.sys
[2011/11/23 04:34:22 | 000,015,104 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\dllcache\usbscan.sys
[2011/11/22 19:05:40 | 000,000,000 | ---D | C] -- D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Google Earth
[2011/11/22 11:54:55 | 000,000,000 | ---D | C] -- D:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\OpenOffice.org
[2011/11/22 11:53:27 | 000,000,000 | --SD | C] -- D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\OpenOffice.org 3.3
[2011/11/22 11:52:41 | 000,000,000 | ---D | C] -- D:\Programme\OpenOffice.org 3
[2011/11/22 11:52:35 | 000,000,000 | ---D | C] -- D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Sun
[2011/11/22 11:52:35 | 000,000,000 | ---D | C] -- D:\Programme\Gemeinsame Dateien\Java
[2011/11/22 11:52:23 | 000,472,808 | ---- | C] (Sun Microsystems, Inc.) -- D:\WINDOWS\System32\deployJava1.dll
[2011/11/22 11:52:23 | 000,153,376 | ---- | C] (Sun Microsystems, Inc.) -- D:\WINDOWS\System32\javaws.exe
[2011/11/22 11:52:23 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- D:\WINDOWS\System32\javaw.exe
[2011/11/22 11:52:23 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- D:\WINDOWS\System32\java.exe
[2011/11/22 11:52:23 | 000,073,728 | ---- | C] (Sun Microsystems, Inc.) -- D:\WINDOWS\System32\javacpl.cpl
[2011/11/22 11:52:11 | 000,000,000 | ---D | C] -- D:\Programme\Java
[2011/11/22 11:52:05 | 000,000,000 | ---D | C] -- D:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Sun
[2011/11/22 11:51:25 | 000,000,000 | ---D | C] -- D:\Dokumente und Einstellungen\Besitzer\Desktop\OpenOffice.org 3.3 (de) Installation Files
[2011/11/15 07:52:34 | 000,000,000 | ---D | C] -- D:\Dokumente und Einstellungen\Besitzer\Lokale Einstellungen\Anwendungsdaten\Skyrim
[2011/11/15 07:44:50 | 000,000,000 | ---D | C] -- D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Razor 1911
[3 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ]
[14 D:\*.tmp files -> D:\*.tmp -> ]
[1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/12/13 07:39:42 | 000,002,048 | --S- | M] () -- D:\WINDOWS\bootstat.dat
[2011/12/11 07:24:43 | 000,000,664 | ---- | M] () -- D:\WINDOWS\System32\d3d9caps.dat
[2011/12/11 07:24:21 | 000,002,423 | ---- | M] () -- D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\VPN Client.lnk
[2011/12/11 07:24:14 | 000,001,090 | ---- | M] () -- D:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011/12/11 04:34:40 | 000,013,646 | ---- | M] () -- D:\WINDOWS\System32\wpa.dbl
[2011/12/11 04:32:12 | 000,150,528 | ---- | M] () -- D:\WINDOWS\System32\0.8777393798159405.exe
[2011/12/11 04:04:00 | 000,001,094 | ---- | M] () -- D:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011/12/09 16:20:57 | 000,000,069 | ---- | M] () -- D:\WINDOWS\NeroDigital.ini
[2011/12/08 14:04:29 | 000,492,250 | ---- | M] () -- D:\WINDOWS\System32\perfh007.dat
[2011/12/08 14:04:29 | 000,472,740 | ---- | M] () -- D:\WINDOWS\System32\perfh009.dat
[2011/12/08 14:04:29 | 000,090,640 | ---- | M] () -- D:\WINDOWS\System32\perfc007.dat
[2011/12/08 14:04:29 | 000,075,834 | ---- | M] () -- D:\WINDOWS\System32\perfc009.dat
[2011/12/08 14:03:47 | 000,001,594 | ---- | M] () -- D:\WINDOWS\VPNInstall.MIF
[2011/12/08 14:03:14 | 000,000,000 | ---D | M] -- D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Cisco Systems VPN Client
[2011/12/08 14:03:13 | 000,000,000 | R--D | M] -- D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart
[2011/11/29 17:51:03 | 000,131,584 | ---- | M] () -- D:\Dokumente und Einstellungen\Besitzer\Lokale Einstellungen\Anwendungsdaten\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/11/25 05:58:57 | 000,122,928 | ---- | M] () -- D:\WINDOWS\System32\FNTCACHE.DAT
[2011/11/23 04:34:40 | 000,000,000 | ---D | M] -- D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\EPSON
[2011/11/23 04:34:24 | 000,000,000 | R--D | M] -- D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Zubehör
[2011/11/22 19:05:41 | 000,001,887 | ---- | M] () -- D:\Dokumente und Einstellungen\All Users\Desktop\Google Earth.lnk
[2011/11/22 19:05:41 | 000,000,000 | ---D | M] -- D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Google Earth
[2011/11/22 11:55:12 | 000,000,836 | ---- | M] () -- D:\Dokumente und Einstellungen\Besitzer\Startmenü\Programme\Autostart\OpenOffice.org 3.3.lnk
[2011/11/22 11:53:46 | 000,000,000 | --SD | M] -- D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\OpenOffice.org 3.3
[2011/11/22 11:52:14 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- D:\WINDOWS\System32\deployJava1.dll
[2011/11/22 11:52:14 | 000,153,376 | ---- | M] (Sun Microsystems, Inc.) -- D:\WINDOWS\System32\javaws.exe
[2011/11/22 11:52:14 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- D:\WINDOWS\System32\javaw.exe
[2011/11/22 11:52:14 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- D:\WINDOWS\System32\java.exe
[2011/11/22 11:52:14 | 000,073,728 | ---- | M] (Sun Microsystems, Inc.) -- D:\WINDOWS\System32\javacpl.cpl
[2011/11/22 11:39:47 | 168,166,968 | ---- | M] () -- D:\Dokumente und Einstellungen\Besitzer\Desktop\OOo_3.3.0_Win_x86_install-wJRE_de.exe
[2011/11/17 13:26:37 | 000,000,080 | ---- | M] () -- D:\Dokumente und Einstellungen\Besitzer\default.pls
[2011/11/16 12:07:38 | 1278,187,660 | ---- | M] () -- D:\Dokumente und Einstellungen\Besitzer\Desktop\qom-abgehoert.avi
[2011/11/16 11:51:08 | 733,614,080 | ---- | M] () -- D:\Dokumente und Einstellungen\Besitzer\Desktop\fme-abbeauty.avi
[2011/11/15 07:44:50 | 000,000,000 | ---D | M] -- D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Razor 1911
[3 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ]
[14 D:\*.tmp files -> D:\*.tmp -> ]
[1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/12/11 07:24:43 | 000,000,664 | ---- | C] () -- D:\WINDOWS\System32\d3d9caps.dat
[2011/12/11 04:32:14 | 000,150,528 | ---- | C] () -- D:\WINDOWS\System32\0.8777393798159405.exe
[2011/12/08 14:03:13 | 000,002,423 | ---- | C] () -- D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\VPN Client.lnk
[2011/12/08 14:03:05 | 000,001,594 | ---- | C] () -- D:\WINDOWS\VPNInstall.MIF
[2011/11/22 19:05:41 | 000,001,887 | ---- | C] () -- D:\Dokumente und Einstellungen\All Users\Desktop\Google Earth.lnk
[2011/11/22 11:55:12 | 000,000,836 | ---- | C] () -- D:\Dokumente und Einstellungen\Besitzer\Startmenü\Programme\Autostart\OpenOffice.org 3.3.lnk
[2011/11/22 11:35:29 | 168,166,968 | ---- | C] () -- D:\Dokumente und Einstellungen\Besitzer\Desktop\OOo_3.3.0_Win_x86_install-wJRE_de.exe
[2011/11/16 11:27:14 | 733,614,080 | ---- | C] () -- D:\Dokumente und Einstellungen\Besitzer\Desktop\fme-abbeauty.avi
[2011/11/16 11:26:52 | 1278,187,660 | ---- | C] () -- D:\Dokumente und Einstellungen\Besitzer\Desktop\qom-abgehoert.avi
[2011/10/25 13:02:37 | 000,000,000 | ---- | C] () -- D:\Dokumente und Einstellungen\Besitzer\.gtkrc-2.0
[2011/10/06 06:52:32 | 000,013,264 | -H-- | C] () -- D:\WINDOWS\System32\mlfcache.dat
[2011/07/04 07:08:54 | 000,271,360 | ---- | C] () -- D:\WINDOWS\System32\drivers\atksgt.sys
[2011/07/04 07:08:53 | 000,018,048 | ---- | C] () -- D:\WINDOWS\System32\drivers\lirsgt.sys
[2011/05/09 01:19:46 | 000,000,000 | ---- | C] () -- D:\WINDOWS\EEventManager.INI
[2011/05/04 05:16:55 | 000,000,080 | ---- | C] () -- D:\Dokumente und Einstellungen\Besitzer\default.pls
[2011/04/28 12:39:10 | 000,189,248 | ---- | C] () -- D:\WINDOWS\System32\PnkBstrB.exe
[2011/04/28 12:39:09 | 000,075,136 | ---- | C] () -- D:\WINDOWS\System32\PnkBstrA.exe
[2011/04/28 06:00:11 | 000,376,832 | ---- | C] () -- D:\WINDOWS\System32\AegisI5Installer.exe
[2011/04/28 06:00:00 | 000,014,640 | ---- | C] () -- D:\WINDOWS\System32\RaCoInst.dat
[2011/04/22 14:26:29 | 000,000,069 | ---- | C] () -- D:\WINDOWS\NeroDigital.ini
[2011/04/21 10:06:51 | 000,001,024 | ---- | C] () -- D:\Dokumente und Einstellungen\Besitzer\.rnd
[2011/04/09 14:41:32 | 000,000,056 | -H-- | C] () -- D:\WINDOWS\System32\ezsidmv.dat
[2010/12/31 09:20:01 | 000,000,083 | ---- | C] () -- D:\WINDOWS\wwp.INI
[2010/12/27 08:55:07 | 000,354,816 | ---- | C] () -- D:\WINDOWS\System32\psisdecd.dll
[2010/11/30 17:06:59 | 000,000,025 | ---- | C] () -- D:\WINDOWS\popcinfot.dat
[2010/11/18 14:18:02 | 000,131,584 | ---- | C] () -- D:\Dokumente und Einstellungen\Besitzer\Lokale Einstellungen\Anwendungsdaten\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/11/18 11:59:41 | 000,000,000 | ---- | C] () -- D:\WINDOWS\nsreg.dat
[2010/11/18 11:45:05 | 000,000,000 | ---- | C] () -- D:\WINDOWS\ativpsrm.bin
[2010/11/18 11:45:00 | 000,887,724 | R--- | C] () -- D:\WINDOWS\System32\ativva6x.dat
[2010/11/18 11:45:00 | 000,198,341 | R--- | C] () -- D:\WINDOWS\System32\atiicdxx.dat
[2010/11/18 11:45:00 | 000,000,003 | R--- | C] () -- D:\WINDOWS\System32\ativva5x.dat
[2010/11/18 11:44:55 | 000,045,056 | ---- | C] () -- D:\WINDOWS\System32\ATIODCLI.exe
[2010/11/18 11:44:50 | 000,294,912 | ---- | C] () -- D:\WINDOWS\System32\ATIODE.exe
[2010/11/18 11:24:54 | 000,002,048 | --S- | C] () -- D:\WINDOWS\bootstat.dat
[2010/11/18 11:21:11 | 000,021,740 | ---- | C] () -- D:\WINDOWS\System32\emptyregdb.dat
[2010/11/18 09:41:36 | 000,004,161 | ---- | C] () -- D:\WINDOWS\ODBCINST.INI
[2010/11/18 09:40:30 | 000,122,928 | ---- | C] () -- D:\WINDOWS\System32\FNTCACHE.DAT
[2009/11/17 06:08:34 | 000,197,424 | ---- | C] () -- D:\WINDOWS\System32\vpnapi.dll
[2009/11/17 06:07:44 | 000,193,328 | ---- | C] () -- D:\WINDOWS\System32\CSGina.dll
[2008/04/14 07:00:00 | 013,107,200 | ---- | C] () -- D:\WINDOWS\System32\oembios.bin
[2008/04/14 07:00:00 | 000,673,088 | ---- | C] () -- D:\WINDOWS\System32\mlang.dat
[2008/04/14 07:00:00 | 000,492,250 | ---- | C] () -- D:\WINDOWS\System32\perfh007.dat
[2008/04/14 07:00:00 | 000,472,740 | ---- | C] () -- D:\WINDOWS\System32\perfh009.dat
[2008/04/14 07:00:00 | 000,272,128 | ---- | C] () -- D:\WINDOWS\System32\perfi009.dat
[2008/04/14 07:00:00 | 000,269,480 | ---- | C] () -- D:\WINDOWS\System32\perfi007.dat
[2008/04/14 07:00:00 | 000,218,003 | ---- | C] () -- D:\WINDOWS\System32\dssec.dat
[2008/04/14 07:00:00 | 000,090,640 | ---- | C] () -- D:\WINDOWS\System32\perfc007.dat
[2008/04/14 07:00:00 | 000,075,834 | ---- | C] () -- D:\WINDOWS\System32\perfc009.dat
[2008/04/14 07:00:00 | 000,046,258 | ---- | C] () -- D:\WINDOWS\System32\mib.bin
[2008/04/14 07:00:00 | 000,034,478 | ---- | C] () -- D:\WINDOWS\System32\perfd007.dat
[2008/04/14 07:00:00 | 000,028,626 | ---- | C] () -- D:\WINDOWS\System32\perfd009.dat
[2008/04/14 07:00:00 | 000,004,569 | ---- | C] () -- D:\WINDOWS\System32\secupd.dat
[2008/04/14 07:00:00 | 000,004,461 | ---- | C] () -- D:\WINDOWS\System32\oembios.dat
[2008/04/14 07:00:00 | 000,001,804 | ---- | C] () -- D:\WINDOWS\System32\Dcache.bin
[2008/04/14 07:00:00 | 000,000,741 | ---- | C] () -- D:\WINDOWS\System32\noise.dat
[2006/09/28 07:55:34 | 000,053,248 | ---- | C] () -- D:\WINDOWS\System32\PhysXLoader.dll
[2006/09/26 07:01:40 | 000,045,056 | R--- | C] () -- D:\WINDOWS\System32\AgCPanelJapanese.dll
[2006/09/08 02:01:50 | 000,045,056 | R--- | C] () -- D:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
[2006/09/08 02:01:50 | 000,045,056 | R--- | C] () -- D:\WINDOWS\System32\AgCPanelSwedish.dll
[2006/09/08 02:01:50 | 000,045,056 | R--- | C] () -- D:\WINDOWS\System32\AgCPanelSpanish.dll
[2006/09/08 02:01:50 | 000,045,056 | R--- | C] () -- D:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
[2006/09/08 02:01:50 | 000,045,056 | R--- | C] () -- D:\WINDOWS\System32\AgCPanelPortugese.dll
[2006/09/08 02:01:50 | 000,045,056 | R--- | C] () -- D:\WINDOWS\System32\AgCPanelKorean.dll
[2006/09/08 02:01:50 | 000,045,056 | R--- | C] () -- D:\WINDOWS\System32\AgCPanelGerman.dll
[2006/09/08 02:01:50 | 000,045,056 | R--- | C] () -- D:\WINDOWS\System32\AgCPanelFrench.dll
========== LOP Check ==========
[2010/11/18 13:33:19 | 000,000,000 | ---D | M] -- D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\DAEMON Tools Lite
[2011/11/23 04:34:42 | 000,000,000 | ---D | M] -- D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\EPSON
[2011/04/04 08:58:55 | 000,000,000 | ---D | M] -- D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\IMinent
[2010/12/18 04:45:46 | 000,000,000 | ---D | M] -- D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Native Instruments
[2011/12/08 16:01:22 | 000,000,000 | ---D | M] -- D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\PMB Files
[2010/11/30 17:06:31 | 000,000,000 | ---D | M] -- D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\PopCap Games
[2011/04/28 12:46:52 | 000,000,000 | ---D | M] -- D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Ubisoft
[2011/05/08 13:16:09 | 000,000,000 | ---D | M] -- D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\UDL
[2010/12/18 04:45:54 | 000,000,000 | -H-D | M] -- D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\{BC13C66E-D01E-4443-A1D1-35EEDF3A964A}
[2010/12/18 04:45:43 | 000,000,000 | -H-D | M] -- D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\{D7CFB71A-972A-44FF-AE44-8780EB53ABB2}
========== Purity Check ==========
< End of report > MfG |