Hallo,
so ich hoffe mal, dass ich alles richtig gemacht habe.
OTL.txt:
OTL Logfile: Code:
OTL logfile created on: 16.05.2013 17:05:05 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\tensid\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16576)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
3,87 Gb Total Physical Memory | 2,41 Gb Available Physical Memory | 62,20% Memory free
7,74 Gb Paging File | 5,92 Gb Available in Paging File | 76,46% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 333,00 Gb Total Space | 214,05 Gb Free Space | 64,28% Space Free | Partition Type: NTFS
Drive D: | 1064,17 Gb Total Space | 95,04 Gb Free Space | 8,93% Space Free | Partition Type: NTFS
Computer Name: HEINZ-BECKER | User Name: tensid | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Users\tensid\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_202.exe (Adobe Systems, Inc.)
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
PRC - C:\Program Files (x86)\ICQ7M\ICQ.exe (ICQ, LLC.)
PRC - C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Mozilla Messaging)
PRC - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
PRC - C:\Program Files (x86)\Winamp\winampa.exe (Nullsoft, Inc.)
========== Modules (No Company Name) ==========
MOD - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll ()
MOD - C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ()
MOD - C:\Program Files (x86)\Mozilla Thunderbird\NSLDAP32V60.dll ()
MOD - C:\Program Files (x86)\Mozilla Thunderbird\NSLDAPPR32V60.dll ()
MOD - C:\Program Files (x86)\Win7codecs\filters\ffdshow.ax ()
========== Services (SafeList) ==========
SRV:64bit: - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD)
SRV:64bit: - (AppMgmt) -- C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
SRV - (Steam Client Service) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
SRV - (AntiVirSchedulerService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG)
SRV - (AntiVirService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG)
SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
========== Driver Services (SafeList) ==========
DRV:64bit: - (avipbb) -- C:\Windows\SysNative\drivers\avipbb.sys (Avira Operations GmbH & Co. KG)
DRV:64bit: - (avgntflt) -- C:\Windows\SysNative\drivers\avgntflt.sys (Avira Operations GmbH & Co. KG)
DRV:64bit: - (avkmgr) -- C:\Windows\SysNative\drivers\avkmgr.sys (Avira Operations GmbH & Co. KG)
DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (silabser) -- C:\Windows\SysNative\drivers\silabser.sys (Silicon Laboratories)
DRV:64bit: - (silabenm) -- C:\Windows\SysNative\drivers\silabenm.sys (Silicon Laboratories)
DRV:64bit: - (vpcvmm) -- C:\Windows\SysNative\drivers\vpcvmm.sys (Microsoft Corporation)
DRV:64bit: - (vpcbus) -- C:\Windows\SysNative\drivers\vpchbus.sys (Microsoft Corporation)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (vpcusb) -- C:\Windows\SysNative\drivers\vpcusb.sys (Microsoft Corporation)
DRV:64bit: - (vpcuxd) -- C:\Windows\SysNative\drivers\vpcuxd.sys (Microsoft Corporation)
DRV:64bit: - (vpcnfltr) -- C:\Windows\SysNative\drivers\vpcnfltr.sys (Microsoft Corporation)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (amdkmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV:64bit: - (amdkmdap) -- C:\Windows\SysNative\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
DRV:64bit: - (AtiHDAudioService) -- C:\Windows\SysNative\drivers\AtihdW76.sys (ATI Technologies, Inc.)
DRV:64bit: - (hwdatacard) -- C:\Windows\SysNative\drivers\ewusbmdm.sys (Huawei Technologies Co., Ltd.)
DRV:64bit: - (sptd) -- C:\Windows\SysNative\drivers\sptd.sys ()
DRV:64bit: - (atksgt) -- C:\Windows\SysNative\drivers\atksgt.sys ()
DRV:64bit: - (lirsgt) -- C:\Windows\SysNative\drivers\lirsgt.sys ()
DRV:64bit: - (MTSBDA) -- C:\Windows\SysNative\drivers\MtsBda.sys (TechniSat Provide)
DRV:64bit: - (MtsHID) -- C:\Windows\SysNative\drivers\MtsHID.sys (TechniSat Provide)
DRV:64bit: - (AtiHdmiService) -- C:\Windows\SysNative\drivers\AtiHdmi.sys (ATI Technologies, Inc.)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (ewusbnet) -- C:\Windows\SysNative\drivers\ewusbnet.sys (Huawei Technologies Co., Ltd.)
DRV:64bit: - (hwusbfake) -- C:\Windows\SysNative\drivers\ewusbfake.sys (Huawei Technologies Co., Ltd.)
DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek Corporation )
DRV:64bit: - (netr28ux) -- C:\Windows\SysNative\drivers\netr28ux.sys (Ralink Technology Corp.)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope =
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-348389179-1454518360-288330992-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
IE - HKU\S-1-5-21-348389179-1454518360-288330992-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-348389179-1454518360-288330992-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
IE - HKU\S-1-5-21-348389179-1454518360-288330992-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 59 B1 95 E1 72 BC CA 01 [binary data]
IE - HKU\S-1-5-21-348389179-1454518360-288330992-1000\..\URLSearchHook: - No CLSID value found
IE - HKU\S-1-5-21-348389179-1454518360-288330992-1000\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-348389179-1454518360-288330992-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR
IE - HKU\S-1-5-21-348389179-1454518360-288330992-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "hxxp://www.google.de/"
FF - prefs.js..extensions.enabledAddons: 2020Player%402020Technologies.com:5.0.4.0
FF - prefs.js..extensions.enabledAddons: 2020Player_IKEA%402020Technologies.com:5.0.7.0
FF - prefs.js..extensions.enabledAddons: %7Bb9db16a4-6edc-47ec-a1f4-b86292ed211d%7D:4.9.14
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:20.0.1
FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.9.5
FF - prefs.js..extensions.enabledItems: {35379F86-8CCB-4724-AE33-4278DE266C70}:1.0.5
FF - prefs.js..extensions.enabledItems: 2020Player@2020Technologies.com:5.0.4.0
FF - prefs.js..extensions.enabledItems: 2020Player_IKEA@2020Technologies.com:5.0.7.0
FF - user.js - File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_202.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll ()
FF - HKLM\Software\MozillaPlugins\@innoplus.de/ino3DViewer: C:\Program Files (x86)\INNOVA-engineering GmbH\3D-Viewer-innoPlus\npIno3DViewer.dll (INNOVA-engineering GmbH Dresden)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.17.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.448: C:\Program Files (x86)\Win7codecs\rm\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files (x86)\Win7codecs\rm\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\ff-bmboc@bytemobile.com: C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Optimization Client\addon\
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013.04.26 19:21:06 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013.04.06 02:49:23 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 3.0.11\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2011.03.20 13:31:41 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 3.0.11\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013.04.26 19:21:06 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013.04.06 02:49:23 | 000,000,000 | ---D | M]
[2010.04.16 12:58:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\tensid\AppData\Roaming\mozilla\Extensions
[2010.04.16 12:58:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\tensid\AppData\Roaming\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2013.05.16 11:34:40 | 000,000,000 | ---D | M] (No name found) -- C:\Users\tensid\AppData\Roaming\mozilla\Firefox\Profiles\xbg6c7ta.default\extensions
[2013.02.24 21:45:58 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\tensid\AppData\Roaming\mozilla\Firefox\Profiles\xbg6c7ta.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2011.04.25 16:12:44 | 000,000,000 | ---D | M] (20-20 3D Viewer) -- C:\Users\tensid\AppData\Roaming\mozilla\Firefox\Profiles\xbg6c7ta.default\extensions\2020Player@2020Technologies.com
[2011.06.25 11:25:00 | 000,000,000 | ---D | M] (20-20 3D Viewer - IKEA) -- C:\Users\tensid\AppData\Roaming\mozilla\Firefox\Profiles\xbg6c7ta.default\extensions\2020Player_IKEA@2020Technologies.com
[2013.05.02 11:15:27 | 000,006,471 | ---- | M] () -- C:\Users\tensid\AppData\Roaming\mozilla\firefox\profiles\xbg6c7ta.default\searchplugins\babylon.xml
[2012.06.07 22:02:21 | 000,002,342 | ---- | M] () -- C:\Users\tensid\AppData\Roaming\mozilla\firefox\profiles\xbg6c7ta.default\searchplugins\icq-search.xml
[2013.03.10 21:13:26 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
[2013.04.26 19:21:06 | 000,263,064 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2010.01.14 00:46:00 | 000,063,488 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll
[2012.07.22 19:29:48 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
[2012.10.14 12:48:56 | 000,002,465 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2012.07.22 19:29:48 | 000,001,153 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
[2012.07.22 19:29:48 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
[2012.07.22 19:29:48 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml
[2012.07.22 19:29:48 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (DVDVideoSoft WebPageAdjuster Class) - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.)
O2 - BHO: (Octh Class) - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files (x86)\Orbitdownloader\orbitcth.dll (Orbitdownloader.com)
O2 - BHO: (DVDVideoSoft WebPageAdjuster Class) - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.)
O3 - HKLM\..\Toolbar: (Grab Pro) - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files (x86)\Orbitdownloader\GrabPro.dll ()
O3 - HKU\S-1-5-21-348389179-1454518360-288330992-1000\..\Toolbar\WebBrowser: (Grab Pro) - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files (x86)\Orbitdownloader\GrabPro.dll ()
O4 - HKLM..\Run: [ATICustomerCare] C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files (x86)\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-348389179-1454518360-288330992-1000..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-348389179-1454518360-288330992-1000..\Run: [ICQ] C:\Program Files (x86)\ICQ7M\ICQ.exe (ICQ, LLC.)
O4 - HKU\S-1-5-21-348389179-1454518360-288330992-1000..\Run: [Screenpresso] C:\Users\tensid\AppData\Local\LearnPulse\Screenpresso\Screenpresso.exe (Learnpulse)
O4 - HKU\S-1-5-21-348389179-1454518360-288330992-1000..\Run: [Steam] C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O8:64bit: - Extra context menu item: &Download by Orbit - C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com)
O8:64bit: - Extra context menu item: &Grab video by Orbit - C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com)
O8:64bit: - Extra context menu item: Do&wnload selected by Orbit - C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com)
O8:64bit: - Extra context menu item: Down&load all by Orbit - C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com)
O8:64bit: - Extra context menu item: Free YouTube Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytvdownloader.htm ()
O8:64bit: - Extra context menu item: Free YouTube to MP3 Converter - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm ()
O8 - Extra context menu item: &Download by Orbit - C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com)
O8 - Extra context menu item: &Grab video by Orbit - C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com)
O8 - Extra context menu item: Do&wnload selected by Orbit - C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com)
O8 - Extra context menu item: Down&load all by Orbit - C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com)
O8 - Extra context menu item: Free YouTube Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytvdownloader.htm ()
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm ()
O9:64bit: - Extra Button: Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.)
O9:64bit: - Extra 'Tools' menuitem : Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.)
O9 - Extra Button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files (x86)\ICQ7M\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files (x86)\ICQ7M\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.)
O9 - Extra 'Tools' menuitem : Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0D5D40B3-DD69-4611-8C0B-53EA867D7C0D}: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{243AC630-F712-46EB-90A1-4E68C39ECB97}: DhcpNameServer = 139.7.30.126 139.7.30.125
O20 - AppInit_DLLs: (c:\progra~3\browse~1\261249~1.132\{c16c1~1\browse~1.dll) - File not found
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{085f84ab-1ffc-11e0-842a-001f1f691263}\Shell - "" = AutoRun
O33 - MountPoints2\{085f84ab-1ffc-11e0-842a-001f1f691263}\Shell\AutoRun\command - "" = F:\setup_vmc_lite.exe /checkApplicationPresence
O33 - MountPoints2\{085f854e-1ffc-11e0-842a-001f1f691263}\Shell - "" = AutoRun
O33 - MountPoints2\{085f854e-1ffc-11e0-842a-001f1f691263}\Shell\AutoRun\command - "" = F:\setup_vmc_lite.exe /checkApplicationPresence
O33 - MountPoints2\{3e303c97-642b-11df-8b9f-6cf049720083}\Shell - "" = AutoRun
O33 - MountPoints2\{3e303c97-642b-11df-8b9f-6cf049720083}\Shell\AutoRun\command - "" = L:\autorun.exe
O33 - MountPoints2\{3e303c97-642b-11df-8b9f-6cf049720083}\Shell\install\command - "" = L:\autorun.exe
O33 - MountPoints2\{8b8e56cc-2577-11e0-89de-6cf049720083}\Shell - "" = AutoRun
O33 - MountPoints2\{8b8e56cc-2577-11e0-89de-6cf049720083}\Shell\AutoRun\command - "" = F:\setup_vmc_lite.exe /checkApplicationPresence
O33 - MountPoints2\E\Shell - "" = AutoRun
O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\Setup.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2013.05.16 16:55:00 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\tensid\Desktop\OTL.exe
[2013.05.15 20:52:14 | 000,526,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2013.05.15 20:52:14 | 000,391,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2013.05.15 20:52:13 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2013.05.15 20:52:13 | 000,089,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2013.05.15 20:52:13 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2013.05.15 20:52:13 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2013.05.15 20:52:13 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2013.05.15 20:52:13 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2013.05.15 20:52:13 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2013.05.15 20:52:13 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2013.05.15 20:52:12 | 000,603,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2013.05.15 20:52:12 | 000,136,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2013.05.15 20:52:11 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2013.05.15 20:52:11 | 000,690,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2013.05.15 20:52:10 | 003,958,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2013.05.15 12:44:28 | 000,265,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgmms1.sys
[2013.05.15 12:44:28 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdd.dll
[2013.05.15 12:44:14 | 001,930,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2013.05.15 12:44:14 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2013.05.15 12:44:14 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shdocvw.dll
[2013.05.15 12:44:14 | 000,111,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\consent.exe
[2013.05.15 12:44:10 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanprotdim.dll
[2013.05.02 11:20:49 | 000,083,160 | ---- | C] (Avira GmbH) -- C:\Windows\SysNative\drivers\avnetflt.sys
[2013.04.23 00:13:29 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Extensions
[2013.04.20 09:33:07 | 000,000,000 | ---D | C] -- C:\Users\tensid\Documents\ANNO 2070
========== Files - Modified Within 30 Days ==========
[2013.05.16 16:55:01 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\tensid\Desktop\OTL.exe
[2013.05.16 16:41:00 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013.05.16 13:28:01 | 000,015,168 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013.05.16 13:28:01 | 000,015,168 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013.05.16 13:20:16 | 000,065,536 | ---- | M] () -- C:\Windows\SysNative\Ikeext.etl
[2013.05.16 13:20:03 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013.05.16 13:19:56 | 3117,010,944 | -HS- | M] () -- C:\hiberfil.sys
[2013.05.16 11:42:09 | 000,000,097 | ---- | M] () -- C:\Windows\DeleteOnReboot.bat
[2013.05.15 23:25:28 | 001,498,742 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013.05.15 23:25:28 | 000,656,044 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2013.05.15 23:25:28 | 000,616,590 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013.05.15 23:25:28 | 000,130,676 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2013.05.15 23:25:28 | 000,106,970 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013.05.15 21:28:52 | 000,290,704 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013.05.15 12:42:16 | 000,692,104 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013.05.15 12:42:16 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2013.05.02 11:20:38 | 000,083,160 | ---- | M] (Avira GmbH) -- C:\Windows\SysNative\drivers\avnetflt.sys
========== Files Created - No Company Name ==========
[2013.05.16 11:42:02 | 000,000,097 | ---- | C] () -- C:\Windows\DeleteOnReboot.bat
[2013.04.06 03:45:05 | 000,000,791 | ---- | C] () -- C:\Users\tensid\AppData\Roaming\MPQEditor.ini
[2013.03.31 19:33:17 | 000,036,892 | ---- | C] () -- C:\Windows\SysWow64\bassmod.dll
[2012.12.28 01:15:53 | 000,000,901 | ---- | C] () -- C:\Users\tensid\.recently-used.xbel
[2012.06.29 17:18:01 | 000,000,264 | ---- | C] () -- C:\Windows\_delis32.ini
[2011.11.11 22:26:11 | 000,000,425 | ---- | C] () -- C:\Windows\BRWMARK.INI
[2011.07.27 23:38:55 | 000,008,192 | ---- | C] () -- C:\Windows\d3dx.dat
[2011.01.21 18:20:44 | 000,000,355 | ---- | C] () -- C:\Users\tensid\Computer - Verknüpfung.lnk
[2010.06.04 20:59:32 | 000,017,408 | ---- | C] () -- C:\Users\tensid\AppData\Local\WebpageIcons.db
[2010.05.03 00:52:42 | 000,007,680 | ---- | C] () -- C:\Users\tensid\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
========== ZeroAccess Check ==========
[2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013.02.27 07:52:56 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013.02.27 06:55:05 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 14:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
< End of report > --- --- ---
[/CODE]
Extras.txt
OTL Logfile: Code:
OTL Extras logfile created on: 16.05.2013 17:05:05 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\tensid\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16576)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
3,87 Gb Total Physical Memory | 2,41 Gb Available Physical Memory | 62,20% Memory free
7,74 Gb Paging File | 5,92 Gb Available in Paging File | 76,46% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 333,00 Gb Total Space | 214,05 Gb Free Space | 64,28% Space Free | Partition Type: NTFS
Drive D: | 1064,17 Gb Total Space | 95,04 Gb Free Space | 8,93% Space Free | Partition Type: NTFS
Computer Name: HEINZ-BECKER | User Name: tensid | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
[HKEY_USERS\S-1-5-21-348389179-1454518360-288330992-1000\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files (x86)\Orbitdownloader\orbitdm.exe" = C:\Program Files (x86)\Orbitdownloader\orbitdm.exe:*:Enabled:Orbit -- (Orbitdownloader.com)
"C:\Program Files (x86)\Orbitdownloader\orbitnet.exe" = C:\Program Files (x86)\Orbitdownloader\orbitnet.exe:*:Enabled:Orbit -- (Orbitdownloader.com)
"C:\Program Files (x86)\Orbitdownloader\orbitdm.exe" = C:\Program Files (x86)\Orbitdownloader\orbitdm.exe:*:Enabled:Orbit -- (Orbitdownloader.com)
"C:\Program Files (x86)\Orbitdownloader\orbitnet.exe" = C:\Program Files (x86)\Orbitdownloader\orbitnet.exe:*:Enabled:Orbit -- (Orbitdownloader.com)
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0F244514-0DF9-4DD6-87BA-03A035DBF074}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{1357231A-0971-4BB7-A307-3B24A0EF21A6}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{2F9C81B6-AD41-41C6-941E-397A87D63723}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{4DB2600D-EEB9-434C-809B-A186261F4A08}" = lport=2869 | protocol=6 | dir=in | app=system |
"{50CE58FB-2127-4315-8539-F82608436E44}" = lport=3724 | protocol=6 | dir=in | name=blizzard downloader: 3724 |
"{52659CAD-7201-4804-98CE-D4D7094DC9EE}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{5F203FC2-37B1-4E8E-96A9-A3D8B3BC33D8}" = rport=139 | protocol=6 | dir=out | app=system |
"{647F44F9-109B-4552-ACDC-9B44F8FA87E8}" = rport=445 | protocol=6 | dir=out | app=system |
"{6BA1BF77-663D-45B3-84F1-F71FD0B06165}" = lport=445 | protocol=6 | dir=in | app=system |
"{6FD3B2BB-1F2C-4197-B554-D9C93D1FCC7B}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{736A2831-2E30-4531-AC8C-946AA83B8D2D}" = lport=137 | protocol=17 | dir=in | app=system |
"{748B383F-DC2C-4EFE-9391-F308700E2DEC}" = rport=137 | protocol=17 | dir=out | app=system |
"{7636B6FC-6B59-4DD9-9078-7B43EE6F674A}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{79AC7EEB-2FB4-4C89-B446-F669F7B696AD}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{84B83FEB-7CE1-4BF7-8B99-2BC771B2FDC4}" = lport=10243 | protocol=6 | dir=in | app=system |
"{876E5091-B772-448C-A0C9-326CE230BCE4}" = rport=138 | protocol=17 | dir=out | app=system |
"{882D58A6-11E2-4B75-98E7-3DEA2027A039}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{9D808E1E-9EEC-45EF-8C7B-318D09800DC5}" = rport=10243 | protocol=6 | dir=out | app=system |
"{ACAEB78A-F9EC-4F33-959A-F795DACD76A1}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{C0679392-0D7F-45D1-BFB1-86802A4994FD}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{CBF73074-A882-4DEF-90DD-692594BBBDAE}" = lport=138 | protocol=17 | dir=in | app=system |
"{F7735A69-4335-4591-B12E-F018C1C5B7BF}" = lport=139 | protocol=6 | dir=in | app=system |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{013265B3-C96B-4FFA-B3AC-5BF395E0E216}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\die siedler 7\data\base\_dbg\bin\release\settlers7r.exe |
"{03301C1D-0D3E-451B-B305-8D3DF396AEFC}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{039CA51D-FAEE-47CC-904D-306423821816}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\fallout new vegas\falloutnvlauncher.exe |
"{0409E363-7C32-4B2A-A2A7-B421DC2C7415}" = protocol=17 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"{045B9A84-8DD5-4F85-9907-4374E0FBE8D5}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{07D0329A-8D55-45D2-8115-9B8D24A17F4B}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{09892CB3-4C96-440F-9459-FAB4BD18C39C}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\might & magic heroes vi\might & magic heroes vi.exe |
"{0F7A53A9-DF06-404B-B640-E3AA654CF41A}" = protocol=17 | dir=in | app=c:\program files (x86)\thq\s.t.a.l.k.e.r. - shadow of chernobyl\bin\xr_3da.exe |
"{12C09456-1327-4BD3-87B1-A5B94D8CAB9F}" = protocol=6 | dir=in | app=d:\spiele\anno1404\tools\anno4web.exe |
"{136AFA3B-159C-418A-95B0-CB4AEDD6E7E3}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1675\agent.exe |
"{16BC7C45-52D8-4D83-8909-373ACECE4DBB}" = protocol=17 | dir=in | app=c:\users\tensid\appdata\local\temp\blizzard installer bootstrap - 002dca22\installer.exe |
"{173ED441-23E5-4DD3-9239-49C93AEFF2EF}" = protocol=6 | dir=in | app=d:\spiele\anno 2070\initengine.exe |
"{19B6DAE1-B9F5-4556-9EBD-F19F837709A4}" = protocol=17 | dir=in | app=d:\spiele\anno1404\tools\addonweb.exe |
"{1E599428-8C9E-41B6-8F28-43671DB60DB9}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1675\agent.exe |
"{1FE2DA9D-5BCD-40C3-81B5-ADB82470CABC}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{252FB0F5-0C16-4CFE-9FA2-0D28875BDD13}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{2530A990-22FC-4737-86E2-742806818C3D}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1737\agent.exe |
"{30AA0E23-9E21-4EA0-B4DD-099765738957}" = protocol=17 | dir=in | app=d:\spiele\anno 2070\autopatcher.exe |
"{30C431C9-8390-4453-B4D5-DA1492F8C263}" = protocol=17 | dir=in | app=d:\spiele\starcraft ii\starcraft ii.exe |
"{35D1A615-2571-402A-93A5-23488BCA6BDD}" = protocol=6 | dir=in | app=c:\program files (x86)\thq\s.t.a.l.k.e.r. - shadow of chernobyl\bin\xr_3da.exe |
"{35F273FA-E2C4-42A8-A728-3F92E02C83C6}" = protocol=6 | dir=out | app=system |
"{3A15FB86-A694-43A9-B6AC-C38FF7B3AA15}" = protocol=6 | dir=in | app=d:\spiele\anno1404\anno4.exe |
"{3BA1ADA1-4EEC-4946-A3C1-42F78F0B8189}" = protocol=17 | dir=in | app=d:\spiele\world of warcraft\world of warcraft\launcher.exe |
"{3D273686-B208-485B-889B-78AAEB135422}" = protocol=17 | dir=in | app=d:\spiele\world of warcraft-1\launcher.patch.exe |
"{3EFEC155-065C-4200-8B46-F3BA5A270A17}" = protocol=6 | dir=in | app=c:\program files (x86)\thq\s.t.a.l.k.e.r. - shadow of chernobyl\bin\dedicated\xr_3da.exe |
"{3F31AB1C-DE3C-477F-9A35-708C5BC8E961}" = protocol=17 | dir=in | app=d:\spiele\world of warcraft-1\launcher.exe |
"{4201AEFF-A841-4A21-905C-F6957C699DEA}" = protocol=17 | dir=in | app=d:\spiele\anno1404\tools\anno4web.exe |
"{423BD0A7-56EB-4609-8705-012BF37EDDD8}" = protocol=6 | dir=in | app=d:\spiele\world of warcraft-1\launcher.exe |
"{4CB81775-ED78-41D2-978B-39FC079364D2}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{4D529235-12D5-4501-B5E9-9789700D7BBF}" = protocol=17 | dir=in | app=c:\program files (x86)\sierra\fear\fear.exe |
"{5078BA80-1BB6-4814-8ECF-1A5338332161}" = protocol=17 | dir=in | app=d:\spiele\anno1404\addon.exe |
"{51163828-3FA6-4924-9831-3DAD4BEE9E5E}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{5239D00C-8762-4C30-A12A-0BF223858EED}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{524B0914-51BA-4270-81E0-6F770BECC235}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\fallout new vegas\falloutnvlauncher.exe |
"{5CA82EEE-EB8A-4F9E-B76D-444190438076}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{5FC73385-6704-4601-B847-5B53FF1D7656}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{62005117-1E74-4F61-BE6C-5B57AED3834F}" = protocol=6 | dir=in | app=c:\program files (x86)\sierra\fear\fear.exe |
"{640F6BD6-BB3D-485A-AC7C-C9A45DE345D2}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1737\agent.exe |
"{68C61E0A-D285-4938-A066-82CBCF26EAD5}" = protocol=6 | dir=in | app=d:\spiele\world of warcraft\world of warcraft\launcher.exe |
"{6B3B9958-91E3-4A1F-A1B4-762BC3703629}" = protocol=17 | dir=in | app=c:\users\tensid\appdata\local\temp\blizzard installer bootstrap - 0051df77\installer.exe |
"{6C46D8EC-A28C-4D1C-84D2-7D054E6F526B}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1267\agent.exe |
"{6D429602-990E-4239-918C-03D334EBC39F}" = protocol=17 | dir=in | app=d:\spiele\anno 2070\initengine.exe |
"{71DE217D-33E7-4327-88B1-3D81720494F4}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\die siedler 7\data\base\_dbg\bin\release\settlers7r.exe |
"{7D804AC4-72CB-4428-B786-931BF349A387}" = protocol=17 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"{7D88128B-2F9E-4DDF-BFCD-025B202319D4}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{86E51CC2-FAC7-4AE9-9D73-8422296676E1}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{8BBDE5BF-C9B8-40E3-A348-75C05EEE95D6}" = protocol=6 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"{90C92AA4-BC89-42D6-9CE8-C8FC207ED29F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{919A5CC1-08C4-49A9-8C1E-1C4FE37103A4}" = protocol=6 | dir=in | app=d:\spiele\anno1404\tools\addonweb.exe |
"{941686AD-1BE7-41BA-AC7E-C4CE76726907}" = protocol=6 | dir=in | app=d:\spiele\starcraft ii\starcraft ii public test.exe |
"{97C75407-22AC-4CBC-911C-013DEADDD944}" = protocol=6 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"{9BB00CEB-58F9-4980-B146-E460B3D6CFAF}" = protocol=17 | dir=in | app=d:\spiele\starcraft ii\starcraft ii.exe |
"{9E2793E1-51E9-4738-AFD6-0533A13EAB59}" = protocol=6 | dir=in | app=d:\spiele\world of warcraft-1\wow-x.x.x.x-4.0.0.12911-eu-downloader.exe |
"{9FAD5CFC-9774-4ED5-B8CB-66BDEB370735}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{A03AC367-B12F-4E53-977D-AB80669C21D4}" = protocol=17 | dir=in | app=d:\spiele\world of warcraft\world of warcraft\launcher.patch.exe |
"{A834F352-19A6-4679-AD9F-13E43014616E}" = protocol=6 | dir=in | app=c:\program files (x86)\sierra\fear\fearmp.exe |
"{A902D81B-9B68-4FC5-9D8D-2D4F8BCAD336}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\might & magic heroes vi\might & magic heroes vi.exe |
"{B0E1E239-EAB1-4A06-BED6-BAA60E2245E4}" = protocol=6 | dir=in | app=d:\spiele\anno 2070\autopatcher.exe |
"{B19BB5A1-4EA1-40BE-A9E6-43C3B157D351}" = protocol=17 | dir=in | app=c:\program files (x86)\sierra\fear\fearmp.exe |
"{B2C17B1E-4BDB-4D76-B6AA-41068C383FD5}" = protocol=17 | dir=in | app=d:\spiele\anno1404\anno4.exe |
"{B3474229-804F-4143-972B-9FC06DB4A923}" = protocol=6 | dir=in | app=c:\users\tensid\appdata\local\temp\blizzard installer bootstrap - 002dca22\installer.exe |
"{B53A1BAA-2976-4431-A9D2-EF526E95C990}" = protocol=6 | dir=in | app=d:\spiele\world of warcraft\world of warcraft\launcher.patch.exe |
"{C0387C96-1E79-4DBA-9B31-9C88A3340401}" = protocol=17 | dir=in | app=d:\spiele\anno 2070\anno5.exe |
"{C41E28E3-6AAC-4951-A388-CBBF2A76AE9C}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{CB0123AA-9578-4736-A80D-8B4B6C7D9195}" = protocol=6 | dir=in | app=d:\spiele\anno1404\addon.exe |
"{CD5FE71C-F68F-43B0-85B3-43A690CD4AD9}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{CDB5E034-6D84-40F5-B2E7-11F00FE27159}" = protocol=6 | dir=in | app=d:\spiele\anno 2070\anno5.exe |
"{D6FADE10-DFE7-4B54-8FBB-1A3F363DF4A3}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{D92920B7-CF6C-46B3-A918-8C33CA0DA6A7}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{DA3D1AD0-966F-4441-99E2-5D5307F8EC82}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe |
"{DE5701B8-F090-445F-923B-0DD87D867EF7}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{E2BFD8C8-0A34-4808-8E34-1CBBF214B1A1}" = protocol=17 | dir=in | app=c:\program files (x86)\thq\s.t.a.l.k.e.r. - shadow of chernobyl\bin\dedicated\xr_3da.exe |
"{E4DD1D34-C377-447E-8132-F22B7F94A0C8}" = protocol=6 | dir=in | app=d:\spiele\world of warcraft-1\launcher.patch.exe |
"{E83C1EAA-49E1-4B37-9D5F-BD975C69E705}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{EB83F94C-91BA-4E66-8153-71B73F28B606}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{EDBE3C2F-764F-4B91-B53E-4C6F4B7B90D7}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\die siedler 7\data\base\_dbg\bin\release\settlers7r.exe |
"{EE734307-1BCD-461D-9BB5-65EE1E55C967}" = protocol=17 | dir=in | app=d:\spiele\world of warcraft-1\wow-x.x.x.x-4.0.0.12911-eu-downloader.exe |
"{EFA69A0E-E15B-4C52-8A33-2D8317FF4A69}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{F40ADBBD-FE97-4571-8830-955EEB66174B}" = protocol=6 | dir=in | app=c:\users\tensid\appdata\local\temp\blizzard installer bootstrap - 0051df77\installer.exe |
"{F66CD7B0-6FEA-466F-9978-1F22C5AF9D6B}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1267\agent.exe |
"{F91E6C72-16F0-4541-9478-2EBCBF207307}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\die siedler 7\data\base\_dbg\bin\release\settlers7r.exe |
"{FA31A781-126A-400C-BC24-7520EE13ED17}" = protocol=6 | dir=in | app=d:\spiele\starcraft ii\starcraft ii.exe |
"{FAE66FDC-7AE0-4834-AB7F-3810C7D4A0BC}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{FB820FAE-D7B2-40B1-86F0-8D242C6B50A8}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{FC88FE80-167E-4D59-AF5C-4FB0B3BCA8AB}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1040\agent.exe |
"{FCAB827A-B91A-4D4C-B8F7-FE6D38924E9B}" = protocol=6 | dir=in | app=d:\spiele\starcraft ii\starcraft ii.exe |
"{FF458653-A54A-4617-94D8-E908C907D1B3}" = protocol=17 | dir=in | app=d:\spiele\starcraft ii\starcraft ii public test.exe |
"TCP Query User{06B8ACAA-DECB-434C-9D94-DAD9EA9594DA}D:\spiele\world of warcraft\temp\wow-4.0.0.2104-enus-tools-downloader.exe" = protocol=6 | dir=in | app=d:\spiele\world of warcraft\temp\wow-4.0.0.2104-enus-tools-downloader.exe |
"TCP Query User{06E5EA2F-3028-42B9-9771-2AA1402BFAD8}C:\program files (x86)\mirandafusion\miranda32.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mirandafusion\miranda32.exe |
"TCP Query User{1334E80E-257A-43E7-8622-A6AE5538DC2C}C:\program files (x86)\miranda im\miranda32.exe" = protocol=6 | dir=in | app=c:\program files (x86)\miranda im\miranda32.exe |
"TCP Query User{201DBC2E-3E76-42FC-ABB8-E4691DC2661E}D:\spiele\world of warcraft\launcher.patch.exe" = protocol=6 | dir=in | app=d:\spiele\world of warcraft\launcher.patch.exe |
"TCP Query User{20F353B8-FC4A-45DE-AC2E-149839D00D68}D:\spiele\world of warcraft\launcher.exe" = protocol=6 | dir=in | app=d:\spiele\world of warcraft\launcher.exe |
"TCP Query User{35C7C592-43D0-4676-961B-35F408457ACD}D:\spiele\starcraft ii\versions\base24944\sc2.exe" = protocol=6 | dir=in | app=d:\spiele\starcraft ii\versions\base24944\sc2.exe |
"TCP Query User{3D78F7B3-8A03-45D7-BA6F-A32D8593A40D}D:\spiele\heroes of might and magic v\heroes of might and magic v\bin\h5_game.exe" = protocol=6 | dir=in | app=d:\spiele\heroes of might and magic v\heroes of might and magic v\bin\h5_game.exe |
"TCP Query User{4C5279E1-8D75-4C96-BBEC-3E8DD9541D1C}C:\program files (x86)\orbitdownloader\orbitnet.exe" = protocol=6 | dir=in | app=c:\program files (x86)\orbitdownloader\orbitnet.exe |
"TCP Query User{4EB05021-4230-4B47-94F4-A0CB05794F50}C:\program files (x86)\miranda im\miranda32.exe" = protocol=6 | dir=in | app=c:\program files (x86)\miranda im\miranda32.exe |
"TCP Query User{5C0C2796-9791-495D-B4B1-F3D40DEA7F3B}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
"TCP Query User{6A56AC66-1BBB-4CB4-A16F-35C43CB69D93}C:\program files (x86)\ubisoft\heroes of might and magic v - tribes of the east\bin\h5_game.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\heroes of might and magic v - tribes of the east\bin\h5_game.exe |
"TCP Query User{6C75FB27-E53C-434D-83C9-EDDCC684E4E2}D:\spiele\world of warcraft\world of warcraft\blizzard downloader.exe" = protocol=6 | dir=in | app=d:\spiele\world of warcraft\world of warcraft\blizzard downloader.exe |
"TCP Query User{75966520-C625-4478-AEAA-636A749958B9}D:\spiele\world of warcraft\launcher.patch.exe" = protocol=6 | dir=in | app=d:\spiele\world of warcraft\launcher.patch.exe |
"TCP Query User{79878E62-8200-4DD9-B8B3-B6EDAF7525CD}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
"TCP Query User{8477CCF6-1797-4FF1-8034-A5E4CF536D1D}D:\spiele\catan\catan.exe" = protocol=6 | dir=in | app=d:\spiele\catan\catan.exe |
"TCP Query User{9EE844F8-0585-4A27-B027-999E80C9E95A}D:\spiele\world of warcraft\blizzard downloader.exe" = protocol=6 | dir=in | app=d:\spiele\world of warcraft\blizzard downloader.exe |
"TCP Query User{A2B4837C-A994-4D6D-AAAD-82DAEA3EAE75}C:\windows\syswow64\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe |
"TCP Query User{BB6B9025-D078-4E4F-8992-4A3206CB7B40}C:\users\tensid\downloads\miranda_im_3_0_beta_6\miranda32.exe" = protocol=6 | dir=in | app=c:\users\tensid\downloads\miranda_im_3_0_beta_6\miranda32.exe |
"TCP Query User{C36042B9-1EE0-403D-BF97-121EBF5C413D}C:\program files (x86)\icq7m\icq.exe" = protocol=6 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"TCP Query User{CA760DDD-9F4C-4C05-BC97-E9528F3F8F80}D:\spiele\world of warcraft\world of warcraft\launcher.exe" = protocol=6 | dir=in | app=d:\spiele\world of warcraft\world of warcraft\launcher.exe |
"TCP Query User{D6B07FC0-10B8-441C-98BC-4BCC5CFC1F0D}D:\spiele\anno1404\tools\addonweb.exe" = protocol=6 | dir=in | app=d:\spiele\anno1404\tools\addonweb.exe |
"TCP Query User{D6F5CC5E-E737-4C48-AB60-602C11D047D4}D:\spiele\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe" = protocol=6 | dir=in | app=d:\spiele\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe |
"TCP Query User{E075E3EF-CB25-4745-B1FC-EE9C70ECC0D0}D:\spiele\world of warcraft\world of warcraft\launcher.patch.exe" = protocol=6 | dir=in | app=d:\spiele\world of warcraft\world of warcraft\launcher.patch.exe |
"TCP Query User{E90B594E-F7CA-467A-B094-0BBE5BE07D6C}D:\spiele\titan quest immortal throne\tqit.exe" = protocol=6 | dir=in | app=d:\spiele\titan quest immortal throne\tqit.exe |
"TCP Query User{EEC55E74-00BE-4B05-B2BD-63033AEA44BC}C:\program files (x86)\anno 1701\anno1701.exe" = protocol=6 | dir=in | app=c:\program files (x86)\anno 1701\anno1701.exe |
"TCP Query User{F10562B4-D292-47F4-9B84-6D2CC3E11CA9}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"TCP Query User{F60B115C-2982-4CBC-9739-98C884183056}D:\spiele\world of warcraft\launcher.exe" = protocol=6 | dir=in | app=d:\spiele\world of warcraft\launcher.exe |
"TCP Query User{F82D53E7-A070-4B17-AECD-9CF8D6246416}D:\spiele\starcraft ii\versions\base15405\sc2.exe" = protocol=6 | dir=in | app=d:\spiele\starcraft ii\versions\base15405\sc2.exe |
"TCP Query User{F9EBE2F4-337D-41E1-ACA8-EC83F4052FC0}D:\spiele\world of warcraft\world of warcraft\backgrounddownloader.exe" = protocol=6 | dir=in | app=d:\spiele\world of warcraft\world of warcraft\backgrounddownloader.exe |
"UDP Query User{030DA205-FECC-437E-9A09-F7698757785E}D:\spiele\world of warcraft\blizzard downloader.exe" = protocol=17 | dir=in | app=d:\spiele\world of warcraft\blizzard downloader.exe |
"UDP Query User{07E31B5A-B370-46E5-9716-7F394C8C4C87}D:\spiele\catan\catan.exe" = protocol=17 | dir=in | app=d:\spiele\catan\catan.exe |
"UDP Query User{0DD37EF9-A202-4998-99A0-CDF46294B63E}D:\spiele\heroes of might and magic v\heroes of might and magic v\bin\h5_game.exe" = protocol=17 | dir=in | app=d:\spiele\heroes of might and magic v\heroes of might and magic v\bin\h5_game.exe |
"UDP Query User{0E15B4E5-5FF2-446E-94A2-F339E5631B36}D:\spiele\world of warcraft\world of warcraft\launcher.patch.exe" = protocol=17 | dir=in | app=d:\spiele\world of warcraft\world of warcraft\launcher.patch.exe |
"UDP Query User{20AC0A66-16F0-45BA-8AB1-5D25C8655D77}D:\spiele\world of warcraft\temp\wow-4.0.0.2104-enus-tools-downloader.exe" = protocol=17 | dir=in | app=d:\spiele\world of warcraft\temp\wow-4.0.0.2104-enus-tools-downloader.exe |
"UDP Query User{274BAF9B-7BF3-45F8-9576-BE842B722E27}D:\spiele\starcraft ii\versions\base24944\sc2.exe" = protocol=17 | dir=in | app=d:\spiele\starcraft ii\versions\base24944\sc2.exe |
"UDP Query User{2C5F6813-DF6C-414D-A20D-B28E2433088A}D:\spiele\world of warcraft\launcher.patch.exe" = protocol=17 | dir=in | app=d:\spiele\world of warcraft\launcher.patch.exe |
"UDP Query User{341DEE34-BF4B-4046-90FC-E9B54DBD8BBE}C:\program files (x86)\orbitdownloader\orbitnet.exe" = protocol=17 | dir=in | app=c:\program files (x86)\orbitdownloader\orbitnet.exe |
"UDP Query User{390747A6-BD35-48EF-B651-554AB2E237F3}D:\spiele\starcraft ii\versions\base15405\sc2.exe" = protocol=17 | dir=in | app=d:\spiele\starcraft ii\versions\base15405\sc2.exe |
"UDP Query User{51C7F07A-A822-461D-A39F-723DE0FF60FA}C:\program files (x86)\mirandafusion\miranda32.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mirandafusion\miranda32.exe |
"UDP Query User{557E06A5-CDEE-425D-AAFF-1FD5B05F277A}D:\spiele\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe" = protocol=17 | dir=in | app=d:\spiele\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe |
"UDP Query User{60733FD6-1C55-4443-BD12-33C54CBD6AAC}D:\spiele\world of warcraft\world of warcraft\blizzard downloader.exe" = protocol=17 | dir=in | app=d:\spiele\world of warcraft\world of warcraft\blizzard downloader.exe |
"UDP Query User{60F70BF1-BF84-4216-9D87-F84FF2D9D522}D:\spiele\world of warcraft\world of warcraft\launcher.exe" = protocol=17 | dir=in | app=d:\spiele\world of warcraft\world of warcraft\launcher.exe |
"UDP Query User{6BB33F8A-E0C2-4770-A304-D1F528F0E8FD}D:\spiele\titan quest immortal throne\tqit.exe" = protocol=17 | dir=in | app=d:\spiele\titan quest immortal throne\tqit.exe |
"UDP Query User{78E03DF6-B9CD-4269-8BFF-D599D5C4D1CC}D:\spiele\world of warcraft\launcher.exe" = protocol=17 | dir=in | app=d:\spiele\world of warcraft\launcher.exe |
"UDP Query User{7BD22B4C-3DEF-48DE-8EE0-1EBADB3039E3}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"UDP Query User{7D305CB5-33A8-46A1-BB57-20966EA281A1}D:\spiele\world of warcraft\launcher.patch.exe" = protocol=17 | dir=in | app=d:\spiele\world of warcraft\launcher.patch.exe |
"UDP Query User{831849B4-E7C9-4928-A43E-64E1F9057142}C:\program files (x86)\anno 1701\anno1701.exe" = protocol=17 | dir=in | app=c:\program files (x86)\anno 1701\anno1701.exe |
"UDP Query User{85454250-3D65-47A8-BFBF-FECC5DCFE368}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
"UDP Query User{A7F468A8-CFBA-473E-B06D-FD2518FF3599}C:\users\tensid\downloads\miranda_im_3_0_beta_6\miranda32.exe" = protocol=17 | dir=in | app=c:\users\tensid\downloads\miranda_im_3_0_beta_6\miranda32.exe |
"UDP Query User{AA096B11-8789-464F-87D8-EB2AF0766B82}C:\program files (x86)\ubisoft\heroes of might and magic v - tribes of the east\bin\h5_game.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\heroes of might and magic v - tribes of the east\bin\h5_game.exe |
"UDP Query User{AC38D476-8221-42C4-8DAF-2A3A62661552}C:\program files (x86)\miranda im\miranda32.exe" = protocol=17 | dir=in | app=c:\program files (x86)\miranda im\miranda32.exe |
"UDP Query User{B654BE87-A277-49DA-884D-3266C9165C5B}C:\windows\syswow64\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe |
"UDP Query User{B6E045E0-240C-4E6E-A7A2-2B1FD4F60734}C:\program files (x86)\icq7m\icq.exe" = protocol=17 | dir=in | app=c:\program files (x86)\icq7m\icq.exe |
"UDP Query User{D2C9DF56-D460-4769-9379-3640C5E51EF3}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
"UDP Query User{DA5D3C28-58BD-4A01-9227-5FA836DB9D21}D:\spiele\anno1404\tools\addonweb.exe" = protocol=17 | dir=in | app=d:\spiele\anno1404\tools\addonweb.exe |
"UDP Query User{E20EDC3B-E320-476A-A511-58FDBEFCD713}D:\spiele\world of warcraft\launcher.exe" = protocol=17 | dir=in | app=d:\spiele\world of warcraft\launcher.exe |
"UDP Query User{EC18C231-1BED-47CA-AF0F-5045472E6E73}D:\spiele\world of warcraft\world of warcraft\backgrounddownloader.exe" = protocol=17 | dir=in | app=d:\spiele\world of warcraft\world of warcraft\backgrounddownloader.exe |
"UDP Query User{EF321A2D-98A5-424F-B3DE-6BD5E148A681}C:\program files (x86)\miranda im\miranda32.exe" = protocol=17 | dir=in | app=c:\program files (x86)\miranda im\miranda32.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1374CC63-B520-4f3f-98E8-E9020BF01CFF}" = Windows XP Mode
"{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{AB3FDAEC-7702-3A47-655B-4A34714CBEFA}" = ccc-utility64
"{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}" = PlayReady PC Runtime amd64
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
"{DBB03C04-9E78-6758-94C9-5D128401CFF8}" = WMV9/VC-1 Video Playback
"{E974638C-9F47-48C4-672C-B9C65F2BAD62}" = AMD Drag and Drop Transcoding
"{F3FEB53B-0BD3-F481-A8F9-51BA46466A6A}" = ATI Catalyst Install Manager
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0032D29F-7E8F-40E5-AD12-8857AAB0DBFF}" = Catalyst Control Center - Branding
"{034C3647-3240-B744-D10B-637197A1E5B1}" = Catalyst Control Center InstallProxy
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{0513EE35-E0FB-4166-B663-BD1AE3A803DE}" = Anno 1404
"{077A7810-A937-4465-AD08-ACED9807995F}" = ANNO 1602 Königs-Edition
"{10209B87-55D6-493E-A30A-12A265AA324E}" = TQ Defiler
"{11083C7A-D0D6-4DA4-8C3A-74B8389EC07B}" = ATI Catalyst Registration
"{20071984-5EB1-4881-8EDB-082532ACEC6D}" = Heroes of Might and Magic V
"{2217B0B4-35CB-48C6-B640-864DF2F30F99}" = OpenOffice.org 3.2
"{238DCFCD-70B3-46B2-B90B-2CDCC69A3D03}" = Zoo Tycoon 2 - Zoodirektor-Sammlung
"{2B653229-9854-4989-B780-D978F5F13EAB}" = FEAR
"{2C440596-FD75-9EA6-5472-B2EDBF5D222B}" = ccc-core-static
"{2E660A2A-A55F-43CD-9F73-CAD7382EEB78}" = Microsoft Games for Windows - LIVE Redistributable
"{3D9CF3CA-3AB0-4A82-9853-D7C43FD1D775}" = ANNO 1404
"{412B69AF-C352-4F6F-A318-B92B3CB9ACC6}" = Titan Quest
"{4AA3D64E-9EC3-4B0F-AB91-5885AC55641F}" = Microsoft Games for Windows - LIVE
"{66FF4C48-0083-4E60-8556-B883AB200091}" = Heroes of Might & Magic V: Hammers of Fate
"{66FF4C48-0083-4E60-8556-B883AB200092}" = Heroes of Might and Magic V - Tribes of the East
"{745D37C2-26F4-4B65-BA13-F9840EBFA75B}" = Might & Magic Heroes VI
"{781B39EC-2E18-41FC-9B00-B84E4FFCA85F}" = ICQ7M
"{793FCE60-DE5E-4977-A942-A7B69A45B17D}" = MainConcept DTV Decoder Pro
"{7ACEE78A-537D-2857-1A64-72198BC4A67D}" = Catalyst Control Center Graphics Previews Vista
"{7CD82818-18F2-E4D5-A502-9D1F16C8DF9C}" = Catalyst Control Center Graphics Previews Common
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{8A76CFCA-4BEC-C88E-3A7B-7CD18E3B86EA}" = CCC Help English
"{8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}" = The Lord of the Rings FREE Trial
"{8C0CAA7A-3272-4991-A808-2C7559DE3409}" = Win7codecs
"{974C4B12-4D02-4879-85E0-61C95CC63E9E}" = Fallout 3
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9C916142-C18C-429D-BFED-40094A7E0BEB}" = Die Siedler 7
"{A07B2C21-863B-47AB-AE7E-20BB00BD7D33}" = ANNO 1404 - Venedig
"{A2433A63-5F5D-40E5-B529-9123C2B3E734}" = Anno 1701
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{AC76BA86-7AD7-1031-7B44-AA1000000001}" = Adobe Reader X (10.1.6) - Deutsch
"{B48E264C-C8CD-4617-B0BE-46E977BAD694}" = ANNO 2070
"{B5C5C17E-FEF6-4062-8151-A427AE8AF9D7}" = Titan Quest Immortal Throne
"{B96DB037-DBEA-4186-9081-9CBD537F82E8}" = 3D-Viewer-innoPlus
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{FC1C2427-5954-451C-9ED8-A92D48ED7E07}" = CSI-Eindeutige Beweise
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Avira AntiVir Desktop" = Avira Free Antivirus
"Catan" = Catan - Die erste Insel
"C-Control Pro_is1" = C-Control Pro 1.99
"CSI - Deadly Intent" = CSI - Deadly Intent
"CSI - Tödliche Verschwörung" = CSI - Tödliche Verschwörung
"CSI-Mord in 3 Dimensionen" = CSI-Mord in 3 Dimensionen 1.0
"Die Gilde Gold-Edition" = Die Gilde Gold-Edition
"DVD Shrink_is1" = DVD Shrink 3.2
"Free Audio CD Burner_is1" = Free Audio CD Burner version 1.2
"Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.12.1.320
"InstallShield_{238DCFCD-70B3-46B2-B90B-2CDCC69A3D03}" = Zoo Tycoon 2 - Zoodirektor-Sammlung
"Mozilla Firefox 20.0.1 (x86 de)" = Mozilla Firefox 20.0.1 (x86 de)
"Mozilla Thunderbird (3.0.11)" = Mozilla Thunderbird (3.0.11)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Orbit_is1" = Orbit Downloader
"Return to Castle Wolfenstein" = Return to Castle Wolfenstein
"S.T.A.L.K.E.R. - Shadow of Chernobyl_is1" = S.T.A.L.K.E.R. - Shadow of Chernobyl [v1.0004]
"SpellForce" = SpellForce
"StarCraft II" = StarCraft II
"Steam App 22380" = Fallout: New Vegas
"Tales of Monkey Island" = Tales of Monkey Island
"TheGuild2" = Die Gilde 2
"Thief22DeinstallKey" = Dark Project 2
"Totalcmd" = Total Commander (Remove or Repair)
"Tropico3" = Tropico 3 1.00
"Uninstall_is1" = Uninstall 1.0.0.1
"VLC media player" = VLC media player 1.0.5
"Winamp" = Winamp
"WinGimp-2.0_is1" = GIMP 2.6.8
"WinRAR archiver" = WinRAR
"World of Warcraft" = World of Warcraft
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-348389179-1454518360-288330992-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Screenpresso" = Screenpresso
"Tropico 4" = Tropico 4 1.00
"Winamp Detect" = Winamp Erkennungs-Plug-in
"World of Warcraft Trial" = Probeversion von World of Warcraft
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 02.04.2013 16:10:18 | Computer Name = heinz-becker | Source = Application Hang | ID = 1002
Description = Programm SC2.exe, Version 2.0.6.25180 kann nicht mehr unter Windows
ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung,
um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 7e4 Startzeit:
01ce2fdb0d47daa2 Endzeit: 90 Anwendungspfad: D:\Spiele\StarCraft II\Versions\Base24944\SC2.exe
Berichts-ID:
Error - 02.04.2013 16:34:59 | Computer Name = heinz-becker | Source = Application Hang | ID = 1002
Description = Programm SC2.exe, Version 2.0.6.25180 kann nicht mehr unter Windows
ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung,
um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: fb4 Startzeit:
01ce2fde2b677463 Endzeit: 60 Anwendungspfad: D:\Spiele\StarCraft II\Versions\Base24944\SC2.exe
Berichts-ID:
Error - 03.04.2013 07:16:20 | Computer Name = heinz-becker | Source = Microsoft-Windows-Defrag | ID = 257
Description =
Error - 05.04.2013 07:47:19 | Computer Name = heinz-becker | Source = Microsoft-Windows-Defrag | ID = 257
Description =
Error - 12.04.2013 10:49:38 | Computer Name = heinz-becker | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: ICQ.exe, Version: 7.8.0.6800, Zeitstempel:
0x4f9e81cc Name des fehlerhaften Moduls: ole32.dll, Version: 6.1.7601.17514, Zeitstempel:
0x4ce7b96f Ausnahmecode: 0xc0000096 Fehleroffset: 0x000485fe ID des fehlerhaften Prozesses:
0x964 Startzeit der fehlerhaften Anwendung: 0x01ce378cddc99dc9 Pfad der fehlerhaften
Anwendung: C:\Program Files (x86)\ICQ7M\ICQ.exe Pfad des fehlerhaften Moduls: C:\Windows\syswow64\ole32.dll
Berichtskennung:
32cc3aac-a380-11e2-ba50-6cf049720083
Error - 12.04.2013 10:49:38 | Computer Name = heinz-becker | Source = Application Error | ID = 1005
Description = Aus einem der folgenden Gründe kann nicht auf die Datei "" zugegriffen
werden: Es besteht ein Problem mit der Netzwerkverbindung, dem Datenträger mit der
gespeicherten Datei bzw. den auf dem Computer installierten Speichertreibern, oder
der Datenträger fehlt. Das Programm ICQ wurde wegen dieses Fehlers geschlossen. Programm:
ICQ Datei: Der Fehlerwert ist im Abschnitt "Zusätzliche Dateien" aufgelistet. Benutzeraktion
1.
Öffnen Sie die Datei erneut. Diese Situation ist eventuell ein temporäres Problem,
das selbstständig behoben wird, wenn das Programm erneut ausgeführt wird. 2. Wenn
Sie weiterhin nicht auf die Datei zugreifen können und - diese sich im Netzwerk
befindet, dann sollte der Netzwerkadministrator überprüfen, dass kein Netzwerkproblem
besteht und dass eine Verbindung mit dem Server hergestellt werden kann. - diese
sich auf einem Wechseldatenträger, wie z. B. einer Diskette oder einer CD, befindet,
überprüfen Sie, ob der Datenträger richtig in den Computer eingelegt ist. 3. Überprüfen
und reparieren Sie das Dateisystem, indem Sie CHKDSK ausführen. Klicken Sie dazu
im Menü "Start" auf "Ausführen", geben Sie CMD ein, und klicken Sie auf "OK". Geben
Sie an der Eingabeaufforderung CHKDSK /F ein, und drücken Sie die EINGABETASTE.
4.
Stellen Sie die Datei von einer Sicherungskopie wieder her, wenn das Problem weiterhin
besteht. 5. Überprüfen Sie, ob andere Dateien auf demselben Datenträger geöffnet
werden können. Falls dies nicht möglich ist, ist der Datenträger eventuell beschädigt.
Wenden Sie sich an den Administrator oder den Hersteller der Computerhardware,
um weitere Unterstützung zu erhalten, wenn es sich um eine Festplatte handelt. Zusätzliche
Daten Fehlerwert: 00000000 Datenträgertyp: 0
Error - 29.04.2013 10:08:25 | Computer Name = heinz-becker | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: Uplay.exe, Version: 0.0.0.0, Zeitstempel:
0x5165852c Name des fehlerhaften Moduls: npuplaypchub.dll, Version: 1.0.0.1, Zeitstempel:
0x51658483 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00009a40 ID des fehlerhaften Prozesses:
0xff4 Startzeit der fehlerhaften Anwendung: 0x01ce44d1dffa8062 Pfad der fehlerhaften
Anwendung: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe Pfad des
fehlerhaften Moduls: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypchub.dll
Berichtskennung:
41bc7593-b0d6-11e2-9077-6cf049720083
Error - 14.05.2013 05:12:19 | Computer Name = heinz-becker | Source = Application Hang | ID = 1002
Description = Programm ICQ.exe, Version 7.8.0.6800 kann nicht mehr unter Windows
ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung,
um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 818 Startzeit:
01ce50827c9bc360 Endzeit: 15 Anwendungspfad: C:\Program Files (x86)\ICQ7M\ICQ.exe Berichts-ID:
4ed15945-bc76-11e2-8d58-6cf049720083
Error - 14.05.2013 10:32:47 | Computer Name = heinz-becker | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: firefox.exe, Version: 20.0.1.4847,
Zeitstempel: 0x51650aee Name des fehlerhaften Moduls: xul.dll, Version: 20.0.1.4847,
Zeitstempel: 0x51650a09 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000b10e8 ID des fehlerhaften
Prozesses: 0xaac Startzeit der fehlerhaften Anwendung: 0x01ce50af9fe68d2f Pfad der
fehlerhaften Anwendung: C:\Program Files (x86)\Mozilla Firefox\firefox.exe Pfad
des fehlerhaften Moduls: C:\Program Files (x86)\Mozilla Firefox\xul.dll Berichtskennung:
253e37fb-bca3-11e2-b146-6cf049720083
Error - 15.05.2013 06:32:31 | Computer Name = heinz-becker | Source = Application Hang | ID = 1002
Description = Programm firefox.exe, Version 20.0.1.4847 kann nicht mehr unter Windows
ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung,
um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1390 Startzeit:
01ce51570dede1d0 Endzeit: 45 Anwendungspfad: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
Berichts-ID:
b491834f-bd4a-11e2-a644-6cf049720083
[ Media Center Events ]
Error - 08.06.2010 13:36:16 | Computer Name = heinz-becker | Source = MCUpdate | ID = 0
Description = 19:36:16 - Fehler beim Herstellen der Internetverbindung. 19:36:16
- Serververbindung konnte nicht hergestellt werden..
Error - 08.06.2010 13:36:25 | Computer Name = heinz-becker | Source = MCUpdate | ID = 0
Description = 19:36:21 - Fehler beim Herstellen der Internetverbindung. 19:36:21
- Serververbindung konnte nicht hergestellt werden..
Error - 11.09.2010 15:45:59 | Computer Name = heinz-becker | Source = MCUpdate | ID = 0
Description = 21:45:51 - Fehler beim Herstellen der Internetverbindung. 21:45:51
- Serververbindung konnte nicht hergestellt werden..
[ System Events ]
Error - 13.05.2013 14:26:36 | Computer Name = heinz-becker | Source = bowser | ID = 8003
Description =
Error - 13.05.2013 14:28:07 | Computer Name = heinz-becker | Source = bowser | ID = 8003
Description =
Error - 13.05.2013 14:29:37 | Computer Name = heinz-becker | Source = bowser | ID = 8003
Description =
Error - 13.05.2013 14:31:07 | Computer Name = heinz-becker | Source = bowser | ID = 8003
Description =
Error - 13.05.2013 14:32:37 | Computer Name = heinz-becker | Source = bowser | ID = 8003
Description =
Error - 14.05.2013 10:26:42 | Computer Name = heinz-becker | Source = bowser | ID = 8003
Description =
Error - 15.05.2013 06:14:08 | Computer Name = heinz-becker | Source = bowser | ID = 8003
Description =
Error - 15.05.2013 15:29:54 | Computer Name = heinz-becker | Source = bowser | ID = 8003
Description =
Error - 16.05.2013 05:25:29 | Computer Name = heinz-becker | Source = bowser | ID = 8003
Description =
Error - 16.05.2013 06:17:41 | Computer Name = heinz-becker | Source = VDS Basic Provider | ID = 33554433
Description =
< End of report > --- --- ---
MfG
Tensid |