vielen Dank für die Annahme meines Problemes.
Gruß Vösilo.
hier die OTL-Logs:
OTL Logfile: Code:
OTL logfile created on: 13.07.2010 08:52:42 - Run 1
OTL by OldTimer - Version 3.2.9.0 Folder = C:\Dokumente und Einstellungen\Charlie\Desktop
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
511,00 Mb Total Physical Memory | 342,00 Mb Available Physical Memory | 67,00% Memory free
1,00 Gb Paging File | 1,00 Gb Available in Paging File | 92,00% Paging File free
Paging file location(s): c:\pagefile.sys 768 3500 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programme
Drive C: | 19,53 Gb Total Space | 5,65 Gb Free Space | 28,94% Space Free | Partition Type: NTFS
Drive D: | 29,29 Gb Total Space | 2,70 Gb Free Space | 9,21% Space Free | Partition Type: NTFS
Drive E: | 25,70 Gb Total Space | 9,61 Gb Free Space | 37,38% Space Free | Partition Type: NTFS
Drive F: | 74,52 Gb Total Space | 36,22 Gb Free Space | 48,60% Space Free | Partition Type: NTFS
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: TORSTEN
Current User Name: Charlie
Logged in as Administrator.
Current Boot Mode: SafeMode with Networking
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ==========
PRC - C:\Dokumente und Einstellungen\Charlie\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
========== Modules (SafeList) ==========
MOD - C:\Dokumente und Einstellungen\Charlie\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation)
MOD - C:\WINDOWS\system32\msscript.ocx (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (sdCoreService) -- C:\Programme\Spyware Doctor\pctsSvc.exe (PC Tools)
SRV - (sdAuxService) -- C:\Programme\Spyware Doctor\pctsAuxs.exe (PC Tools)
SRV - (Browser Defender Update Service) -- C:\Programme\Spyware Doctor\BDT\BDTUpdateService.exe (Threat Expert Ltd.)
SRV - (TomTomHOMEService) -- C:\Programme\TomTom HOME 2\TomTomHOMEService.exe (TomTom)
SRV - (AntiVirService) -- C:\Programme\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
SRV - (AntiVirSchedulerService) -- C:\Programme\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
SRV - (Macromedia Licensing Service) -- C:\Programme\Gemeinsame Dateien\Macromedia Shared\Service\Macromedia Licensing.exe ()
SRV - (DVD-RAM_Service) -- C:\WINDOWS\system32\DVDRAMSV.exe (Matsushita Electric Industrial Co., Ltd.)
========== Driver Services (SafeList) ==========
DRV - (USBAAPL) -- C:\WINDOWS\System32\Drivers\usbaapl.sys File not found
DRV - (rtl8139) NT-Treiber für Realtek RTL8139(A/B/C) -- C:\WINDOWS\System32\DRIVERS\RTL8139.SYS File not found
DRV - (rtl8029) NT-Treiber für Realtek RTL8029(AS) -- C:\WINDOWS\System32\DRIVERS\RTL8029.SYS File not found
DRV - (PsSdkLB) -- C:\WINDOWS\System32\Drivers\PsSdkLB.drv File not found
DRV - (PSSdk23) -- C:\WINDOWS\System32\Drivers\PsSdk23.drv File not found
DRV - (PLCMPR5) -- C:\WINDOWS\System32\PLCMPR5.SYS File not found
DRV - (MHIKEY10) -- C:\WINDOWS\System32\Drivers\MHIKEY10.sys File not found
DRV - (ISSCSp50) -- C:\WINDOWS\System32\Drivers\ISSCSp50.sys File not found
DRV - (PCTCore) -- C:\WINDOWS\system32\drivers\PCTCore.sys (PC Tools)
DRV - (AnyDVD) -- C:\WINDOWS\system32\drivers\AnyDVD.sys (SlySoft, Inc.)
DRV - (ElbyCDIO) -- C:\WINDOWS\system32\drivers\ElbyCDIO.sys (Elaborate Bytes AG)
DRV - (avgntflt) -- C:\WINDOWS\system32\drivers\avgntflt.sys (Avira GmbH)
DRV - (ssmdrv) -- C:\WINDOWS\system32\drivers\ssmdrv.sys (Avira GmbH)
DRV - (avipbb) -- C:\WINDOWS\system32\drivers\avipbb.sys (Avira GmbH)
DRV - (avgio) -- C:\Programme\Avira\AntiVir Desktop\avgio.sys (Avira GmbH)
DRV - (KMWDFilter) -- C:\WINDOWS\system32\drivers\KMWDFILTER.sys (Windows (R) Codename Longhorn DDK provider)
DRV - (MaVctrl) -- C:\WINDOWS\system32\drivers\MaVc2K.sys (Mobile Action Technology Inc.)
DRV - (ACEDRV05) -- C:\WINDOWS\system32\drivers\ACEDRV05.sys (Protect Software GmbH)
DRV - (meiudf) -- C:\WINDOWS\system32\drivers\meiudf.sys (Matsushita Electric Industrial Co.,Ltd.)
DRV - (SSHDRV85) -- C:\WINDOWS\system32\drivers\SSHDRV85.sys ()
DRV - (VClone) -- C:\WINDOWS\system32\DRIVERS\VClone.sys (Elaborate Bytes AG)
DRV - (actser) -- C:\WINDOWS\system32\drivers\actser.sys (Siemens AG)
DRV - (gameenum) -- C:\WINDOWS\system32\drivers\gameenum.sys (Microsoft Corporation)
DRV - (LwAdiHid) Logitech WingMan-Digitalgeräte (autom. Erkennung) -- C:\WINDOWS\system32\drivers\LwAdiHid.sys (Logitech Inc.)
DRV - (61883) -- C:\WINDOWS\system32\drivers\61883.sys (Microsoft Corporation)
DRV - (Avc) -- C:\WINDOWS\system32\drivers\avc.sys (Microsoft Corporation)
DRV - (MSDV) -- C:\WINDOWS\system32\drivers\msdv.sys (Microsoft Corporation)
DRV - (GcKernel) -- C:\WINDOWS\system32\drivers\gckernel.sys (Microsoft Corporation)
DRV - (SSHDRV61) -- C:\WINDOWS\system32\drivers\SSHDRV61.sys ()
DRV - (PLCNDIS5) -- C:\WINDOWS\system32\PLCNDIS5.SYS (Intellon, Inc.)
DRV - (imagesrv) -- C:\WINDOWS\system32\DRIVERS\imagesrv.sys (Ahead Software AG)
DRV - (imagedrv) -- C:\WINDOWS\System32\Drivers\imagedrv.sys (Ahead Software AG)
DRV - (nv) -- C:\WINDOWS\system32\drivers\nv4_mini.sys (NVIDIA Corporation)
DRV - (Cinemsup) -- C:\WINDOWS\system32\drivers\cinemsup.sys (Sonic Solutions)
DRV - (ha10kx2k) -- C:\WINDOWS\system32\drivers\ha10kx2k.sys (Creative Technology Ltd)
DRV - (emupia) -- C:\WINDOWS\system32\drivers\EMUPIA2K.SYS (Creative Technology Ltd)
DRV - (ctsfm2k) -- C:\WINDOWS\system32\drivers\CTSFM2K.SYS (Creative Technology Ltd)
DRV - (ctprxy2k) -- C:\WINDOWS\system32\drivers\CTPRXY2K.SYS (Creative Technology Ltd)
DRV - (ossrv) -- C:\WINDOWS\system32\drivers\ctoss2k.sys (Creative Technology Ltd.)
DRV - (ctaud2k) Creative Audio Driver (WDM) -- C:\WINDOWS\system32\drivers\ctaud2k.sys (Creative Technology Ltd)
DRV - (ctac32k) -- C:\WINDOWS\system32\drivers\CTAC32K.SYS (Creative Technology Ltd)
DRV - (NTIOWP) -- C:\WINDOWS\System32\drivers\ntiowp.sys ()
DRV - (sfman) Creative SoundFont Manager Driver (WDM) -- C:\WINDOWS\system32\drivers\sfman.sys (Creative Technology Ltd.)
DRV - (hidgame) -- C:\WINDOWS\system32\drivers\hidgame.sys (Microsoft Corporation)
DRV - (QCDonner) -- C:\WINDOWS\system32\drivers\OVCD.sys (Microsoft Corporation)
DRV - (msgame) -- C:\WINDOWS\system32\drivers\msgame.sys (Microsoft Corporation)
DRV - (irsir) -- C:\WINDOWS\system32\drivers\irsir.sys (Microsoft Corporation)
DRV - (HIDSwvd) -- C:\WINDOWS\system32\drivers\HIDSwvd.sys (Microsoft Corporation)
DRV - (ctlsb16) Creative SB16/AWE32/AWE64-Treiber (WDM) -- C:\WINDOWS\system32\drivers\ctlsb16.sys (Copyright (C) Creative Technology Ltd. 1994-2001)
DRV - (ctljystk) -- C:\WINDOWS\system32\drivers\ctljystk.sys (Creative Technology Ltd.)
DRV - (emu10k) Creative SB Live! series(WDM) -- C:\WINDOWS\system32\drivers\emu10k1f.sys (Creative Technology Ltd.)
DRV - (SBKUPNT) -- C:\WINDOWS\system32\drivers\SBKUPNT.SYS ()
DRV - (emu10k1) Creative Interface Manager Driver (WDM) -- C:\WINDOWS\system32\drivers\ctlface.sys (Creative Technology Ltd.)
DRV - (USB100) -- C:\WINDOWS\system32\drivers\USB100.sys (ELECOM)
DRV - (PfModNT) -- C:\WINDOWS\system32\PFMODNT.SYS (Creative Technology Ltd.)
DRV - (Aspi32) -- C:\WINDOWS\System32\drivers\ASPI32.SYS (Adaptec)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = Google Toolbar
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = Google Toolbar
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Google
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = Google Toolbar
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant_bak = about:blank
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "hxxp://www.google.de/"
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.7.2
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.3
FF - prefs.js..extensions.enabledItems: {ACAA314B-EEBA-48e4-AD47-84E31C44796C}:1.0.1
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Programme\Mozilla Firefox\components [2010.07.11 08:01:17 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Programme\Mozilla Firefox\plugins [2010.07.11 08:01:14 | 000,000,000 | ---D | M]
[2010.03.12 18:37:06 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Charlie\Anwendungsdaten\Mozilla\Extensions
[2008.09.26 22:00:32 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Charlie\Anwendungsdaten\Mozilla\Extensions\home2@tomtom.com
[2010.07.10 18:23:00 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Charlie\Anwendungsdaten\Mozilla\Firefox\Profiles\4y86z1p8.default\extensions
[2010.03.12 18:39:27 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Dokumente und Einstellungen\Charlie\Anwendungsdaten\Mozilla\Firefox\Profiles\4y86z1p8.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010.06.13 07:24:30 | 000,000,000 | ---D | M] (No name found) -- C:\Dokumente und Einstellungen\Charlie\Anwendungsdaten\Mozilla\Firefox\Profiles\4y86z1p8.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
[2010.03.21 16:04:22 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Dokumente und Einstellungen\Charlie\Anwendungsdaten\Mozilla\Firefox\Profiles\4y86z1p8.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2010.03.14 18:12:34 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Dokumente und Einstellungen\Charlie\Anwendungsdaten\Mozilla\Firefox\Profiles\4y86z1p8.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2010.03.12 18:36:46 | 000,000,000 | ---D | M] -- C:\Programme\Mozilla Firefox\extensions
[2010.06.30 07:21:28 | 000,001,392 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\amazondotcom-de.xml
[2010.06.30 07:21:29 | 000,002,344 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\eBay-de.xml
[2010.06.30 07:21:29 | 000,006,805 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\leo_ende_de.xml
[2010.06.30 07:21:29 | 000,001,178 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\wikipedia-de.xml
[2010.06.30 07:21:29 | 000,001,105 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\yahoo-de.xml
O1 HOSTS File: ([2008.02.03 14:50:39 | 000,314,762 | R--- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 0-ol1oiz-xolxii1-oxli10ozl1l1-o-l-11-iizxp-l-0o-oll11iz0oil-ol.com
O1 - Hosts: 127.0.0.1 1000stars.ru
O1 - Hosts: 127.0.0.1 11.rtcode.com
O1 - Hosts: 127.0.0.1 123counter.mycomputer.com
O1 - Hosts: 127.0.0.1 123go.com
O1 - Hosts: 127.0.0.1 123stat.com
O1 - Hosts: 127.0.0.1 192.168.112.2O7.net
O1 - Hosts: 127.0.0.1 1cgi.hitbox.com
O1 - Hosts: 127.0.0.1 1stblaze.com
O1 - Hosts: 127.0.0.1 1stpagehere.com
O1 - Hosts: 127.0.0.1 1us.cqcounter.com
O1 - Hosts: 127.0.0.1 213.133.115.133
O1 - Hosts: 127.0.0.1 2cgi.hitbox.com
O1 - Hosts: 127.0.0.1 2jm.com
O1 - Hosts: 127.0.0.1 344667.offshoreclicks.com
O1 - Hosts: 127.0.0.1 3721.com
O1 - Hosts: 127.0.0.1 3ps.go.com
O1 - Hosts: 127.0.0.1 404.msmn.com
O1 - Hosts: 127.0.0.1 62.4.83.176
O1 - Hosts: 127.0.0.1 64.237.48.170
O1 - Hosts: 127.0.0.1 66.103.153.168
O1 - Hosts: 127.0.0.1 66.230.134.150
O1 - Hosts: 127.0.0.1 66.230.134.150
O1 - Hosts: 127.0.0.1 66.250.66.10
O1 - Hosts: 127.0.0.1 66.250.66.10
O1 - Hosts: 10916 more lines...
O2 - BHO: (Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (no name) - {1F48AA48-C53A-4E21-85E7-AC7CC6B5FFAD} - No CLSID value found.
O2 - BHO: (PC Tools Browser Guard BHO) - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Programme\Spyware Doctor\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.)
O3 - HKLM\..\Toolbar: (PC Tools Browser Guard) - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Programme\Spyware Doctor\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.)
O4 - HKLM..\Run: [avgnt] C:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [CanonMyPrinter] C:\Programme\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
O4 - HKLM..\Run: [DivXUpdate] C:\Programme\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [ISTray] C:\Programme\Spyware Doctor\pctsTray.exe (PC Tools)
O4 - HKLM..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe (NVIDIA Corporation)
O4 - HKLM..\Run: [SystemTray] C:\WINDOWS\system32\systray.exe (Microsoft Corporation)
O4 - HKLM..\Run: [UpdReg] C:\WINDOWS\Updreg.EXE (Creative Technology Ltd.)
O4 - HKLM..\Run: [VirtualCloneDrive] C:\Programme\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe (Elaborate Bytes AG)
O4 - HKCU..\Run: [NBJ] C:\Programme\Ahead\Nero BackItUp\NBJ.exe (Ahead Software AG)
O4 - Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Adobe Reader - Schnellstart.lnk = C:\Programme\Adobe\Reader 8.0\Reader\reader_sl.exe (Adobe Systems Incorporated)
O4 - Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Adobe Reader Synchronizer.lnk = C:\Programme\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe ()
O4 - Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\RAMASST.lnk = C:\WINDOWS\system32\RAMASST.exe (Matsushita Electric Industrial Co., Ltd.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetFolders = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetTaskbar = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSaveSettings = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFind = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoMultiIE = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWA = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWB = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWC = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWD = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWE = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWF = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWG = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWH = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWI = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWJ = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWK = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWL = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWM = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWN = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWO = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWP = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWQ = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWR = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWS = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWT = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWU = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWV = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWW = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWX = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWY = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LWZ = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableClock = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispCPL = 0
O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\Programme\IncrediMail\bin\resources\WebMenuImg.htm ()
O8 - Extra context menu item: Download with GetRight - C:\Programme\GetRight\GRDownload.htm ()
O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Dokumente und Einstellungen\Charlie\Anwendungsdaten\DVDVideoSoftIEHelpers\youtubetomp3.htm ()
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - C:\Programme\Microsoft Office\Office10\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Open with GetRight Browser - C:\Programme\GetRight\GRBrowse.htm ()
O15 - HKCU\..Trusted Domains: fritz.box ([]* in Lokales Intranet)
O15 - HKCU\..Trusted Ranges: Range1 ([*] in Lokales Intranet)
O15 - HKCU\..Trusted Ranges: Range2 ([https] in Vertrauenswürdige Sites)
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} hxxp://www.apple.com/qtactivex/qtplugin.cab (QuickTime Object)
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} hxxp://www.creative.com/su/ocx/15009/CTSUEng.cab (Creative Software AutoUpdate)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {22E5D91F-89E6-4405-AD9C-0AF27BA6F06B} file://G:\components\hidinputmonitorx.ocx (HidInputMonitorX Control)
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} hxxp://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab (Symantec AntiVirus scanner)
O16 - DPF: {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} hxxp://office.microsoft.com/officeupdate/content/opuc.cab (Office Update Installation Engine)
O16 - DPF: {3EA4FA88-E0BE-419A-A732-9B79B87A6ED0} hxxp://dl.tvunetworks.com/TVUAx.cab (CTVUAxCtrl Object)
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} hxxp://207.188.7.150/25c2c84f1bab24d9d905/netzip/RdxIE601_de.cab (Reg Error: Key error.)
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} hxxp://download.bitdefender.com/resources/scanner/sources/de/scan8/oscan8.cab (BDSCANONLINE Control)
O16 - DPF: {7030CC6C-1A88-4591-BB5A-651B9F7F0C30} file://G:\components\wmvhdrating.ocx (WMVHDRatingCtrl Class)
O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} hxxp://bitdefender.buhl.de/scan/Msie/bitdefender.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} hxxp://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?37948.9698958333 (Reg Error: Key error.)
O16 - DPF: {B1953AD6-C50E-11D3-B020-00A0C9251384} hxxp://www.o2c.de/download/o2cplayer.cab (O2C-Player (ELECO Software GmbH))
O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} hxxp://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab (Symantec RuFSI Registry Information Class)
O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab (Java Plug-in 1.6.0_03)
O16 - DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {DEB21AD3-FDA4-42F6-B57D-EE696A675EE8} hxxp://asp03.photoprintit.de/microsite/1384/defaults/activex/IPSUploader.cab (IPSUploader Control)
O16 - DPF: {F00F4763-7355-4725-82F7-0DA94A256D46} hxxp://www2.incredimail.com/contents/setup/downloader/imloader.cab (Reg Error: Key error.)
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://www.creative.com/su/ocx/15009/CTPID.cab (Creative Software AutoUpdate Support Package)
O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
O18 - Protocol\Handler\cdo {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Folders\PKMCDO.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
O24 - Desktop Components:0 (Die derzeitige Homepage) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\ACD Wallpaper.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\ACD Wallpaper.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2003.01.17 09:46:25 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{480045e0-8c05-11dd-b14b-0010dc08bfe9}\Shell\AutoRun\command - "" = I:\InstallTomTomHOME.exe -- File not found
O33 - MountPoints2\{5b9d84e5-caa0-11dd-b1ae-0010dc08bfe9}\Shell\play\Command - "" = C:\Programme\Windows Media Player\wmplayer.exe -- [2004.08.11 20:45:10 | 000,073,728 | ---- | M] (Microsoft Corporation)
O33 - MountPoints2\{c0b388c1-6eef-11df-b463-0010dc08bfe9}\Shell - "" = AutoRun
O33 - MountPoints2\{c0b388c1-6eef-11df-b463-0010dc08bfe9}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{ee3972a1-7889-11dc-a89a-0010dc08bfe9}\Shell\play\Command - "" = C:\Programme\Windows Media Player\wmplayer.exe -- [2004.08.11 20:45:10 | 000,073,728 | ---- | M] (Microsoft Corporation)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2010.07.13 08:51:31 | 000,574,976 | ---- | C] (OldTimer Tools) -- C:\Dokumente und Einstellungen\Charlie\Desktop\OTL.exe
[2010.07.12 08:58:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\TEMP
[2010.07.12 06:14:47 | 000,000,000 | ---D | C] -- C:\Programme\trend micro
[2010.07.12 06:14:46 | 000,000,000 | ---D | C] -- C:\rsit
[2010.07.12 05:59:16 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Charlie\Desktop\Problemprotokolle
[2010.07.12 05:57:39 | 000,000,000 | RH-D | C] -- C:\Dokumente und Einstellungen\Charlie\Recent
[2010.07.11 15:49:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\BDOSCAN8
[2010.07.11 12:29:36 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Charlie\Anwendungsdaten\Malwarebytes
[2010.07.11 12:13:10 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010.07.11 12:13:08 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010.07.11 12:13:08 | 000,000,000 | ---D | C] -- C:\Programme\Malwarebytes' Anti-Malware
[2010.07.11 12:13:08 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes
[2010.07.11 08:19:22 | 001,652,688 | ---- | C] (Threat Expert Ltd.) -- C:\WINDOWS\PCTBDCore.dll
[2010.07.11 08:19:22 | 000,165,840 | ---- | C] (Threat Expert Ltd.) -- C:\WINDOWS\PCTBDRes.dll
[2010.07.11 08:19:22 | 000,149,456 | ---- | C] (PC Tools) -- C:\WINDOWS\SGDetectionTool.dll
[2010.07.11 08:19:10 | 000,233,136 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctgntdi.sys
[2010.07.11 08:19:05 | 000,218,592 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\PCTCore.sys
[2010.07.11 08:19:05 | 000,088,040 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\PCTAppEvent.sys
[2010.07.11 08:18:53 | 000,063,360 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctplsg.sys
[2010.07.11 08:18:25 | 000,000,000 | ---D | C] -- C:\Programme\Spyware Doctor
[2010.07.11 08:18:25 | 000,000,000 | ---D | C] -- C:\Programme\Gemeinsame Dateien\PC Tools
[2010.07.11 08:18:25 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Charlie\Anwendungsdaten\PC Tools
[2010.07.11 08:18:25 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\PC Tools
[2010.07.11 08:18:05 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\TEMP
[2010.07.11 07:42:21 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\NetworkService\Anwendungsdaten\Macromedia
[2010.07.05 06:27:06 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Charlie\Eigene Dateien\Warenkorb icke neu-Dateien
[2010.06.16 07:21:26 | 000,000,000 | ---D | C] -- C:\Programme\SDA
[2010.06.14 09:16:04 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Charlie\Anwendungsdaten\FileZilla
[2010.06.14 09:15:54 | 000,000,000 | ---D | C] -- C:\Programme\FileZilla FTP Client
[1998.10.14 16:03:00 | 000,049,152 | ---- | C] ( ) -- C:\WINDOWS\System32\a3d.dll
[8 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\drivers\*.tmp files -> C:\WINDOWS\System32\drivers\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\Dokumente und Einstellungen\Charlie\*.tmp files -> C:\Dokumente und Einstellungen\Charlie\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2010.07.13 08:50:41 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010.07.13 08:42:44 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Dokumente und Einstellungen\Charlie\Desktop\OTL.exe
[2010.07.12 09:59:45 | 016,252,928 | ---- | M] () -- C:\Dokumente und Einstellungen\Charlie\ntuser.dat
[2010.07.12 09:59:45 | 000,000,190 | -HS- | M] () -- C:\Dokumente und Einstellungen\Charlie\ntuser.ini
[2010.07.12 09:59:40 | 005,824,656 | -H-- | M] () -- C:\Dokumente und Einstellungen\Charlie\Lokale Einstellungen\Anwendungsdaten\IconCache.db
[2010.07.11 17:47:32 | 000,339,991 | ---- | M] () -- C:\Dokumente und Einstellungen\Charlie\Desktop\RSIT.exe
[2010.07.11 12:13:13 | 000,000,682 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.07.11 08:41:34 | 000,063,360 | ---- | M] (PC Tools) -- C:\WINDOWS\System32\drivers\pctplsg.sys
[2010.07.11 08:41:32 | 000,218,592 | ---- | M] (PC Tools) -- C:\WINDOWS\System32\drivers\PCTCore.sys
[2010.07.11 08:19:00 | 000,001,593 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Spyware Doctor.lnk
[2010.07.10 18:29:16 | 000,029,208 | ---- | M] () -- C:\WINDOWS\System32\BMXCtrlState-{00000002-00000000-00000002-00001102-00000002-80611102}.rfx
[2010.07.10 18:29:16 | 000,029,208 | ---- | M] () -- C:\WINDOWS\System32\BMXBkpCtrlState-{00000002-00000000-00000002-00001102-00000002-80611102}.rfx
[2010.07.10 18:29:16 | 000,017,012 | ---- | M] () -- C:\WINDOWS\System32\BMXStateBkp-{00000002-00000000-00000002-00001102-00000002-80611102}.rfx
[2010.07.10 18:29:16 | 000,017,012 | ---- | M] () -- C:\WINDOWS\System32\BMXState-{00000002-00000000-00000002-00001102-00000002-80611102}.rfx
[2010.07.10 18:29:16 | 000,001,080 | ---- | M] () -- C:\WINDOWS\System32\settingsbkup.sfm
[2010.07.10 18:29:16 | 000,001,080 | ---- | M] () -- C:\WINDOWS\System32\settings.sfm
[2010.07.10 18:29:15 | 000,000,024 | ---- | M] () -- C:\WINDOWS\System32\DVCStateBkp-{00000002-00000000-00000002-00001102-00000002-80611102}.dat
[2010.07.10 18:29:15 | 000,000,024 | ---- | M] () -- C:\WINDOWS\System32\DVCState-{00000002-00000000-00000002-00001102-00000002-80611102}.dat
[2010.07.10 17:34:34 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010.07.05 06:32:53 | 000,112,287 | ---- | M] () -- C:\Dokumente und Einstellungen\Charlie\Anwendungsdaten\mdbu.bin
[2010.07.05 06:32:47 | 000,004,078 | ---- | M] () -- C:\Dokumente und Einstellungen\Charlie\Eigene Dateien\Warenkorb icke neu.psc
[2010.06.24 03:04:08 | 000,524,562 | ---- | M] () -- C:\WINDOWS\System32\perfh007.dat
[2010.06.24 03:04:08 | 000,502,126 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010.06.24 03:04:08 | 000,096,168 | ---- | M] () -- C:\WINDOWS\System32\perfc007.dat
[2010.06.24 03:04:08 | 000,080,724 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010.06.21 23:43:51 | 000,000,095 | ---- | M] () -- C:\WINDOWS\winamp.ini
[2010.06.14 09:20:44 | 000,116,008 | ---- | M] () -- C:\Dokumente und Einstellungen\Charlie\Anwendungsdaten\GDIPFONTCACHEV1.DAT
[2010.06.13 09:11:01 | 000,000,139 | ---- | M] () -- C:\WINDOWS\cdplayer.ini
[8 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\drivers\*.tmp files -> C:\WINDOWS\System32\drivers\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\Dokumente und Einstellungen\Charlie\*.tmp files -> C:\Dokumente und Einstellungen\Charlie\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010.07.12 06:14:43 | 000,339,991 | ---- | C] () -- C:\Dokumente und Einstellungen\Charlie\Desktop\RSIT.exe
[2010.07.11 12:13:13 | 000,000,682 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.07.11 08:19:23 | 000,767,952 | ---- | C] () -- C:\WINDOWS\BDTSupport.dll
[2010.07.11 08:19:22 | 001,152,444 | ---- | C] () -- C:\WINDOWS\UDB.zip
[2010.07.11 08:19:22 | 000,000,882 | ---- | C] () -- C:\WINDOWS\RegSDImport.xml
[2010.07.11 08:19:22 | 000,000,879 | ---- | C] () -- C:\WINDOWS\RegISSImport.xml
[2010.07.11 08:19:22 | 000,000,131 | ---- | C] () -- C:\WINDOWS\IDB.zip
[2010.07.11 08:19:10 | 000,007,387 | ---- | C] () -- C:\WINDOWS\System32\drivers\pctgntdi.cat
[2010.07.11 08:19:05 | 000,007,412 | ---- | C] () -- C:\WINDOWS\System32\drivers\PCTAppEvent.cat
[2010.07.11 08:19:05 | 000,007,383 | ---- | C] () -- C:\WINDOWS\System32\drivers\pctcore.cat
[2010.07.11 08:19:00 | 000,001,593 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Spyware Doctor.lnk
[2010.07.11 08:18:53 | 000,007,383 | ---- | C] () -- C:\WINDOWS\System32\drivers\pctplsg.cat
[2010.07.05 06:27:07 | 000,004,078 | ---- | C] () -- C:\Dokumente und Einstellungen\Charlie\Eigene Dateien\Warenkorb icke neu.psc
[2010.06.24 03:00:12 | 016,252,928 | ---- | C] () -- C:\Dokumente und Einstellungen\Charlie\ntuser.dat
[2010.06.12 14:27:53 | 000,000,543 | ---- | C] () -- C:\WINDOWS\SWISV3.INI
[2010.06.12 14:27:52 | 000,000,287 | ---- | C] () -- C:\WINDOWS\SKNIFE.INI
[2009.12.06 15:51:22 | 000,010,588 | ---- | C] () -- C:\WINDOWS\System32\drivers\mpfilt.sys
[2009.09.16 17:47:48 | 000,020,992 | ---- | C] () -- C:\WINDOWS\jestertb.dll
[2009.07.12 16:37:20 | 000,044,544 | ---- | C] () -- C:\WINDOWS\System32\Gif89.dll
[2009.07.12 13:41:10 | 000,000,202 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2009.01.05 14:44:10 | 000,000,483 | ---- | C] () -- C:\WINDOWS\bdoscandellang.ini
[2008.12.22 13:37:51 | 000,014,976 | ---- | C] () -- C:\WINDOWS\System32\drivers\SBKUPNT.SYS
[2008.12.22 13:37:04 | 000,002,799 | ---- | C] () -- C:\WINDOWS\SKLANG.INI
[2008.03.04 19:52:34 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\libcurl.dll
[2008.02.05 10:15:26 | 000,034,308 | ---- | C] () -- C:\WINDOWS\System32\Chip.dll
[2007.12.22 20:59:39 | 000,009,728 | ---- | C] () -- C:\WINDOWS\System32\BASSMOD.dll
[2007.10.31 10:39:54 | 000,059,904 | ---- | C] () -- C:\WINDOWS\System32\zlib1.dll
[2007.07.09 00:14:45 | 000,000,000 | ---- | C] () -- C:\WINDOWS\PanelExe.INI
[2007.07.09 00:14:37 | 000,000,000 | ---- | C] () -- C:\WINDOWS\AlbumExe.INI
[2007.05.17 14:58:10 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\libexpatw.dll
[2006.12.14 17:02:04 | 000,000,098 | ---- | C] () -- C:\WINDOWS\musiceditor.INI
[2006.10.31 17:28:19 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\dprsx.dll
[2006.10.31 17:28:19 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\gpvbd.dll
[2006.08.18 19:15:58 | 000,000,000 | ---- | C] () -- C:\WINDOWS\PROTOCOL.INI
[2006.04.06 22:52:00 | 000,001,640 | ---- | C] () -- C:\WINDOWS\psmplay.ini
[2005.12.18 18:32:16 | 000,000,048 | -H-- | C] () -- C:\WINDOWS\System32\SWCTL.DLL
[2005.11.05 13:06:23 | 000,003,071 | ---- | C] () -- C:\WINDOWS\tm.ini
[2005.10.23 00:12:03 | 000,000,051 | ---- | C] () -- C:\WINDOWS\AKSetup.INI
[2005.10.03 23:53:57 | 000,012,288 | ---- | C] () -- C:\WINDOWS\impborl.dll
[2005.09.16 16:19:28 | 000,078,848 | ---- | C] () -- C:\WINDOWS\System32\drivers\SSHDRV85.sys
[2005.03.13 00:17:50 | 000,000,041 | ---- | C] () -- C:\WINDOWS\pos.ini
[2005.02.26 12:08:15 | 000,000,052 | ---- | C] () -- C:\WINDOWS\videodeLuxe.INI
[2005.02.19 17:57:39 | 000,000,902 | ---- | C] () -- C:\WINDOWS\ARPR.INI
[2005.02.13 16:18:23 | 000,000,046 | ---- | C] () -- C:\WINDOWS\mxcdr.INI
[2005.02.08 22:40:15 | 000,000,116 | ---- | C] () -- C:\WINDOWS\homeDVD-Fotos4_dlx.INI
[2005.02.08 22:37:09 | 000,019,968 | ---- | C] () -- C:\WINDOWS\System32\cpuinf32.dll
[2005.02.08 22:26:48 | 000,000,085 | ---- | C] () -- C:\WINDOWS\magix.ini
[2005.01.31 00:57:40 | 000,000,116 | ---- | C] () -- C:\WINDOWS\homeDVD-Fotos4.INI
[2005.01.09 15:11:27 | 000,000,231 | ---- | C] () -- C:\WINDOWS\AC3API.INI
[2005.01.09 15:10:48 | 000,034,914 | ---- | C] () -- C:\WINDOWS\System32\Emu10kx.ini
[2005.01.09 15:10:48 | 000,000,029 | ---- | C] () -- C:\WINDOWS\System32\ctzapxx.ini
[2005.01.09 15:10:42 | 000,000,166 | ---- | C] () -- C:\WINDOWS\System32\KILL.INI
[2005.01.07 14:27:02 | 000,000,054 | ---- | C] () -- C:\WINDOWS\ClonyDrives.ini
[2005.01.07 14:26:14 | 000,000,153 | ---- | C] () -- C:\WINDOWS\Clony2.ini
[2004.12.10 14:31:37 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\frapsvid.dll
[2004.10.12 07:40:58 | 002,255,360 | ---- | C] () -- C:\WINDOWS\System32\libavcodec.dll
[2004.10.05 09:16:08 | 000,395,776 | ---- | C] () -- C:\WINDOWS\System32\libmplayer.dll
[2004.08.04 02:57:34 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2004.05.18 06:50:10 | 000,022,016 | ---- | C] () -- C:\WINDOWS\System32\Docobj.dll
[2004.05.15 09:08:27 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\drivers\SSHDRV61.sys
[2004.05.13 21:05:01 | 000,026,624 | ---- | C] () -- C:\WINDOWS\System32\PRTmate.dll
[2004.04.26 15:22:06 | 000,006,656 | ---- | C] () -- C:\WINDOWS\System32\pdfxcds.dll
[2004.04.06 06:07:10 | 000,000,000 | ---- | C] () -- C:\WINDOWS\WOC_CDDA.ini
[2004.04.06 05:47:57 | 000,000,052 | ---- | C] () -- C:\WINDOWS\cddabase.ini
[2004.04.06 05:46:09 | 000,000,000 | ---- | C] () -- C:\WINDOWS\check.INI
[2004.04.06 05:42:29 | 000,000,025 | ---- | C] () -- C:\WINDOWS\WinOnCD.ini
[2004.03.26 19:43:59 | 000,000,112 | ---- | C] () -- C:\WINDOWS\ActiveSkin.INI
[2003.12.28 15:10:02 | 000,000,260 | ---- | C] () -- C:\WINDOWS\BUHL.INI
[2003.11.23 10:30:01 | 000,000,000 | ---- | C] () -- C:\WINDOWS\LiveBilliards.INI
[2003.10.19 13:08:02 | 000,004,960 | ---- | C] () -- C:\WINDOWS\System32\drivers\ntiowp.sys
[2003.07.06 20:07:10 | 000,233,472 | ---- | C] () -- C:\WINDOWS\System32\lame_enc.dll
[2003.06.14 07:19:15 | 000,000,518 | ---- | C] () -- C:\WINDOWS\WINLABEL.INI
[2003.05.18 18:20:38 | 000,074,240 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2003.04.18 12:15:44 | 000,000,000 | ---- | C] () -- C:\WINDOWS\CleaningLab.INI
[2003.04.18 11:35:24 | 000,001,104 | ---- | C] () -- C:\WINDOWS\mgxoschk.ini
[2003.04.16 17:17:15 | 000,000,000 | ---- | C] () -- C:\WINDOWS\OPPRIN~1.INI
[2003.04.10 19:56:25 | 000,000,498 | ---- | C] () -- C:\WINDOWS\ltN1.ini
[2003.03.25 17:17:51 | 000,005,905 | ---- | C] () -- C:\WINDOWS\wiso.ini
[2003.02.23 17:08:29 | 000,000,012 | ---- | C] () -- C:\WINDOWS\systju.dll
[2003.02.23 14:16:41 | 000,000,074 | -H-- | C] () -- C:\WINDOWS\YNNHOJED.DLL
[2003.02.19 09:34:51 | 000,000,778 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2003.02.08 20:08:39 | 000,000,139 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
[2003.02.04 14:59:38 | 000,000,463 | ---- | C] () -- C:\WINDOWS\Capictrl.INI
[2003.02.04 14:46:45 | 000,000,059 | ---- | C] () -- C:\WINDOWS\WINPHONE.INI
[2003.02.02 18:01:47 | 000,000,195 | ---- | C] () -- C:\WINDOWS\WININIT.INI
[2003.02.02 16:00:44 | 000,032,784 | ---- | C] () -- C:\WINDOWS\UNARJ.DLL
[2003.02.02 15:22:48 | 000,000,095 | ---- | C] () -- C:\WINDOWS\winamp.ini
[2003.01.24 19:00:18 | 000,002,048 | R--- | C] () -- C:\WINDOWS\System32\anvcinst.dll
[2003.01.24 19:00:13 | 000,006,272 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASLM75.SYS
[2003.01.24 18:21:56 | 000,000,038 | ---- | C] () -- C:\WINDOWS\plugSpk.INI
[2003.01.24 18:16:13 | 000,000,129 | ---- | C] () -- C:\WINDOWS\SBWIN.INI
[2003.01.03 19:07:20 | 000,589,824 | ---- | C] () -- C:\WINDOWS\System32\xvid.dll
[2002.08.20 11:37:50 | 000,093,696 | ---- | C] () -- C:\WINDOWS\System32\zlib.dll
[2002.07.05 16:12:06 | 000,027,136 | ---- | C] () -- C:\WINDOWS\System32\AuthDVD.DLL
[2002.05.16 02:38:40 | 000,091,136 | ---- | C] () -- C:\WINDOWS\System32\mp4fil32.dll
[2002.05.04 16:19:00 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\avisynthEx.dll
[2000.07.22 16:49:46 | 000,431,104 | ---- | C] () -- C:\WINDOWS\System32\VFCodec.dll
[1999.09.20 11:05:32 | 000,013,387 | ---- | C] () -- C:\WINDOWS\System32\CinemSup.sys
========== Alternate Data Streams ==========
@Alternate Data Stream - 24 bytes -> C:\WINDOWS:73C339B2D3156C62
@Alternate Data Stream - 197 bytes -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\TEMP:DFC5A2B2
@Alternate Data Stream - 109 bytes -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\TEMP:A8ADE5D8
< End of report > --- --- ---
OTL Logfile: Code:
OTL Extras logfile created on: 13.07.2010 08:52:42 - Run 1
OTL by OldTimer - Version 3.2.9.0 Folder = C:\Dokumente und Einstellungen\Charlie\Desktop
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
511,00 Mb Total Physical Memory | 342,00 Mb Available Physical Memory | 67,00% Memory free
1,00 Gb Paging File | 1,00 Gb Available in Paging File | 92,00% Paging File free
Paging file location(s): c:\pagefile.sys 768 3500 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programme
Drive C: | 19,53 Gb Total Space | 5,65 Gb Free Space | 28,94% Space Free | Partition Type: NTFS
Drive D: | 29,29 Gb Total Space | 2,70 Gb Free Space | 9,21% Space Free | Partition Type: NTFS
Drive E: | 25,70 Gb Total Space | 9,61 Gb Free Space | 37,38% Space Free | Partition Type: NTFS
Drive F: | 74,52 Gb Total Space | 36,22 Gb Free Space | 48,60% Space Free | Partition Type: NTFS
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: TORSTEN
Current User Name: Charlie
Logged in as Administrator.
Current Boot Mode: SafeMode with Networking
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html [@ = Reg Error: Value error.] -- Reg Error: Key error. File not found
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Programme\Microsoft Office\Office10\msohtmed.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Programme\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation)
https [open] -- "C:\Programme\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "C:\Programme\Winamp\Winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "C:\Programme\Winamp\Winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "C:\Programme\Winamp\Winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Programme\PPStream\PPStream.exe" = C:\Programme\PPStream\PPStream.exe:*:Enabled:PPStream -- File not found
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator
"{00C58EBE-223E-4AB6-8AE9-38F27F4420BD}" = WISO Sparbuch 2009
"{03CAB33F-D1C2-48C6-8766-DAE84DFC25FE}" = Microsoft Sync Framework Services v1.0 (x86)
"{0A7B28CF-6BE3-11D6-A285-00A0CC51B2FE}" = Sound Blaster Live! Web 2K/XP
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP4600_series" = Canon iP4600 series Printer Driver
"{26A24AE4-039D-4CA4-87B4-2F83216013FF}" = Java(TM) 6 Update 13
"{3248F0A8-6813-11D6-A77B-00B0D0160030}" = Java(TM) 6 Update 3
"{350C97B3-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{35CF37D9-6158-4DB7-8D4A-BC36CA7B8C57}" = WinRename
"{3F9FB449-93DB-4C47-BB5B-7334C4D1736E}" = SD Formatter
"{4C6F02E1-D873-45F3-B852-D83F84BEA8D4}" = TMPGEnc Plus 2.5
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{63569CE9-FA00-469C-AF5C-E5D4D93ACF91}" = Windows Genuine Advantage v1.3.0254.0
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{81A34902-9D0B-4920-A25C-4CDC5D14B328}" = Jasc Paint Shop Pro 8
"{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}" = TomTom HOME Visual Studio Merge Modules
"{90280407-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Professional mit FrontPage
"{975C8028-51D8-44A9-9585-82E9810FE96A}" = hp LaserJet 1000
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9D765FA6-F2BC-40AF-8145-50808F9BDF4E}" = DVD-RAM Driver
"{A04BF5DC-6DD3-4B6D-BABD-B1BC5DB23CA0}" = Ulead DVD PowerTools Test
"{A1973A71-BC23-4A8C-A0A0-2B0497B7EAF4}" = WISO Sparbuch 2008
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A8BD5A60-E843-46DC-8271-ABF20756BE0F}" = Microsoft Sync Framework Runtime v1.0 (x86)
"{AC76BA86-7AD7-1031-7B44-A80000000002}" = Adobe Reader 8 - Deutsch
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{BFEDA49F-2E91-4B54-A366-F5A198FE1173}" = DVB-PC TV Star
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C7340571-7773-4A8C-9EBC-4E4243B38C76}" = Microsoft XML Parser
"{C9A87D86-FDFD-418B-BF96-EF09320973B3}" = PC Inspector smart recovery
"{CC038D57-788A-4544-BF8F-179E5CF50D2F}" = Microsoft Visual C++ 2005 SP1 CRT Redistributable
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D032A7F0-8B5C-4603-8B46-235025D5F9C1}" = TechniSat DVB-PC TV Star
"{D050D7362D214723AD585B541FFB6C11}" = DivX Content Uploader
"{D378E8FB-A4D4-46B6-AD3F-ED046B90CFA0}" = WGuardBDE
"{D4576E0D-2295-4B8E-B663-B68086B00EE5}" = Sonic CinePlayer DVD Pack
"{EE642CF1-519C-4D41-8433-1D895A4E39FB}" = Ulead DVD PowerTools Trial
"{F958CA02-BB40-4007-894B-258729456EE4}" = QuickTime
"3DSex_Villa_ThriXXX" = 3DSex_Villa_ThriXXX
"AC3 Decoder v.1.2.4b" = AC3 Decoder v.1.2.4b
"ACDSee Trial-Version" = ACDSee Trial-Version
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Amazon MP3-Downloader" = Amazon MP3-Downloader 1.0.5
"AnyDVD" = AnyDVD
"AudioEdit Deluxe" = AudioEdit Deluxe
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"Avira UnErase Personal" = Avira UnErase Personal
"Browser Defender_is1" = Browser Defender 2.0.6.15
"Canon iP4600 series Benutzerregistrierung" = Canon iP4600 series Benutzerregistrierung
"CanonMyPrinter" = Canon Utilities My Printer
"CCleaner" = CCleaner (remove only)
"CloneDVD2" = CloneDVD2
"CompuApps SwissKnife V3" = CompuApps SwissKnife V3
"Corel Applications" = Corel Applications
"CTSPD" = CTSPD
"Defraggler" = Defraggler (remove only)
"DivX Setup.divx.com" = DivX-Setup
"DVD Shrink_is1" = DVD Shrink 3.2
"EVEREST Home Edition_is1" = EVEREST Home Edition v1.51
"FileZilla Client" = FileZilla Client 3.3.3
"FLV Player" = FLV Player 2.0 (build 25)
"Fonty 98" = Fonty 98
"Free Audio CD Burner_is1" = Free Audio CD Burner version 1.3
"Free Video to iPhone Converter_is1" = Free Video to iPhone Converter version 2.2
"Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.5
"ie8" = Windows Internet Explorer 8
"IncrediMail Xe" = IncrediMail Xe
"InstallShield_{4C6F02E1-D873-45F3-B852-D83F84BEA8D4}" = TMPGEnc Plus 2.5
"IrfanView" = IrfanView (remove only)
"JAP" = JAP
"LameACM" = Lame ACM MP3 Codec
"LIDL Fotoservice_is1" = LIDL Fotoservice
"LiveReg" = LiveReg (Symantec Corporation)
"LiveUpdate1.6" = LiveUpdate 1.6 (Symantec Corporation)
"MAGIX Online Druck Service" = MAGIX Online Druck Service
"MAGIX video deLuxe 2004 2005 PLUS" = MAGIX video deLuxe 2004 2005 PLUS
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"MediaNavigation.CDLabelPrint" = CD-LabelPrint
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3)
"MP3-Cutter" = MP3-Cutter
"Nero - Burning Rom!UninstallKey" = Nero OEM
"NeroVision!UninstallKey" = Nero Digital
"NVIDIA" = NVIDIA Windows 2000/XP Display Drivers
"NVIDIA Drivers" = NVIDIA Drivers
"Print Server" = Print Server
"ProjectX" = ProjectX
"RealPlayer 6.0" = RealPlayer
"Riva FLV Player_is1" = Riva FLV Player
"Rm to Mp3 Wav Convertor_is1" = Rm to Mp3 Wav Convertor 2.15
"SetEditArgus" = SetEditArgus (remove only)
"SetEditMX04" = SetEditMX04 (remove only)
"Shareaza_is1" = Shareaza Version 2.2.1.0
"Shockwave" = Shockwave
"ShockwaveFlash" = Adobe Flash Player 9 ActiveX
"Soulseek" = SoulSeek Client 156c
"Spyware Doctor" = Spyware Doctor 7.0
"The Panorama Factory" = Panorama Factory
"TomTom HOME" = TomTom HOME 2.7.3.1894
"Two Worlds Pinball" = Two Worlds Pinball
"Uninstall_is1" = Uninstall 1.0.0.1
"VideoLAN" = VideoLAN VLC media player 0.6.2
"VirtualCloneDrive" = VirtualCloneDrive
"VSO DivxToDVD_is1" = DivxToDVD 0.5.2b
"whomadewho" = whomadewho Screen Saver
"WIC" = Windows Imaging Component
"Winamp" = Winamp (nur entfernen)
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows Media Player" = Windows Media Player 10
"WinRAR archiver" = WinRAR Archivierer
"xp-AntiSpy" = xp-AntiSpy 3.93
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 11.07.2010 11:41:45 | Computer Name = TORSTEN | Source = crypt32 | ID = 131083
Description = Die Extrahierung der Drittanbieterstammlisten aus der automatischen
Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
ist fehlgeschlagen mit dem Fehler: Ein erforderliches Zertifikat befindet sich
nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel
in der signierten Datei. .
Error - 11.07.2010 11:41:45 | Computer Name = TORSTEN | Source = crypt32 | ID = 131080
Description = Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer
von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
ist fehlgeschlagen mit dem Fehler: Diese Netzwerkverbindung ist nicht vorhanden.
.
Error - 11.07.2010 11:49:10 | Computer Name = TORSTEN | Source = Avira AntiVir | ID = 4110
Description = Während der Initialisierung der Suchengine trat ein unbekannter Fehler
auf! Fehlercode: 0x35
Error - 11.07.2010 14:35:15 | Computer Name = TORSTEN | Source = Avira AntiVir | ID = 4110
Description = Während der Initialisierung der Suchengine trat ein unbekannter Fehler
auf! Fehlercode: 0x35
Error - 11.07.2010 15:16:45 | Computer Name = TORSTEN | Source = Avira AntiVir | ID = 4110
Description = Während der Initialisierung der Suchengine trat ein unbekannter Fehler
auf! Fehlercode: 0x35
Error - 12.07.2010 02:58:17 | Computer Name = TORSTEN | Source = Avira AntiVir | ID = 4110
Description = Während der Initialisierung der Suchengine trat ein unbekannter Fehler
auf! Fehlercode: 0x35
Error - 12.07.2010 03:27:10 | Computer Name = TORSTEN | Source = crypt32 | ID = 131083
Description = Die Extrahierung der Drittanbieterstammlisten aus der automatischen
Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
ist fehlgeschlagen mit dem Fehler: Ein erforderliches Zertifikat befindet sich
nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel
in der signierten Datei. .
Error - 12.07.2010 03:27:10 | Computer Name = TORSTEN | Source = crypt32 | ID = 131083
Description = Die Extrahierung der Drittanbieterstammlisten aus der automatischen
Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
ist fehlgeschlagen mit dem Fehler: Ein erforderliches Zertifikat befindet sich
nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel
in der signierten Datei. .
Error - 12.07.2010 03:27:10 | Computer Name = TORSTEN | Source = crypt32 | ID = 131080
Description = Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer
von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
ist fehlgeschlagen mit dem Fehler: The connection with the server was terminated
abnormally .
Error - 12.07.2010 03:27:11 | Computer Name = TORSTEN | Source = crypt32 | ID = 131083
Description = Die Extrahierung der Drittanbieterstammlisten aus der automatischen
Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
ist fehlgeschlagen mit dem Fehler: Ein erforderliches Zertifikat befindet sich
nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel
in der signierten Datei. .
[ System Events ]
Error - 12.07.2010 03:25:22 | Computer Name = TORSTEN | Source = Service Control Manager | ID = 7026
Description = Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen:
avgio avipbb Cinemsup ElbyCDIO Fips Processor ssmdrv
Error - 12.07.2010 03:29:03 | Computer Name = TORSTEN | Source = Service Control Manager | ID = 7023
Description = Der Dienst "Computerbrowser" wurde mit folgendem Fehler beendet: %%1460
Error - 12.07.2010 03:56:09 | Computer Name = TORSTEN | Source = DCOM | ID = 10005
Description = Bei DCOM ist der Fehler "%1084" aufgetreten, als der Dienst "StiSvc"
mit den Argumenten "" gestartet wurde, um den folgenden Server zu verwenden: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
Error - 12.07.2010 03:59:42 | Computer Name = TORSTEN | Source = DCOM | ID = 10005
Description = Bei DCOM ist der Fehler "%1084" aufgetreten, als der Dienst "EventSystem"
mit den Argumenten "" gestartet wurde, um den folgenden Server zu verwenden: {1BE1F766-5536-11D1-B726-00C04FB926AF}
Error - 13.07.2010 02:50:53 | Computer Name = TORSTEN | Source = Ftdisk | ID = 262189
Description = Das System konnte den Treiber für das Speicherabbild nicht laden.
Error - 13.07.2010 02:50:53 | Computer Name = TORSTEN | Source = Ftdisk | ID = 262193
Description = Die Konfiguration der Auslagerungsdatei für das Speicherabbild ist
fehlgeschlagen. Stellen Sie sicher, dass eine Auslagerungsdatei auf der Startpartition
vorhanden ist und dass diese groß genug ist, um den gesamten physikalischen Speicher
abbilden zu können.
Error - 13.07.2010 02:51:13 | Computer Name = TORSTEN | Source = DCOM | ID = 10005
Description = Bei DCOM ist der Fehler "%1084" aufgetreten, als der Dienst "EventSystem"
mit den Argumenten "" gestartet wurde, um den folgenden Server zu verwenden: {1BE1F766-5536-11D1-B726-00C04FB926AF}
Error - 13.07.2010 02:51:21 | Computer Name = TORSTEN | Source = DCOM | ID = 10005
Description = Bei DCOM ist der Fehler "%1084" aufgetreten, als der Dienst "StiSvc"
mit den Argumenten "" gestartet wurde, um den folgenden Server zu verwenden: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
Error - 13.07.2010 02:52:23 | Computer Name = TORSTEN | Source = Service Control Manager | ID = 7026
Description = Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen:
avgio avipbb Cinemsup ElbyCDIO Fips Processor ssmdrv
Error - 13.07.2010 02:56:02 | Computer Name = TORSTEN | Source = Service Control Manager | ID = 7023
Description = Der Dienst "Computerbrowser" wurde mit folgendem Fehler beendet: %%1460
< End of report > --- --- --- |