multivitamin | 19.04.2011 19:12 | Hallo!
Sorry hat etwas gedauert aber her das neue Log (eine Datei mit dem Namen EXTRAS.TXT gibt es bei mir nicht) Code:
OTL logfile created on: 4/19/2011 11:49:40 PM - Run
OTLPE by OldTimer - Version 3.1.46.0 Folder = X:\Programs\OTLPE
Microsoft Windows XP Service Pack 3 (Version = 5.1.2600) - Type = SYSTEM
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
1,014.00 Mb Total Physical Memory | 827.00 Mb Available Physical Memory | 82.00% Memory free
902.00 Mb Paging File | 848.00 Mb Available in Paging File | 94.00% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programme
Drive C: | 80.01 Gb Total Space | 57.38 Gb Free Space | 71.72% Space Free | Partition Type: NTFS
Drive D: | 62.16 Gb Total Space | 62.07 Gb Free Space | 99.86% Space Free | Partition Type: NTFS
Drive X: | 436.59 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Computer Name: REATOGO | User Name: SYSTEM
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
Using ControlSet: ControlSet001
========== Win32 Services (SafeList) ==========
SRV - File not found [On_Demand] -- -- (AppMgmt)
SRV - [2010/07/08 09:28:56 | 000,815,704 | ---- | M] (GlavSoft LLC.) [Auto] -- C:\Programme\TightVNC\tvnserver.exe -- (tvnserver)
SRV - [2010/06/30 08:26:19 | 001,352,832 | ---- | M] (Lavasoft) [Auto] -- C:\Programme\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service)
SRV - [2010/05/01 11:55:30 | 000,040,960 | ---- | M] () [Auto] -- C:\Dokumente und Einstellungen\Media\Anwendungsdaten\OCS\SM\SearchAnonymizerHelper.exe -- (SearchAnonymizer)
SRV - [2010/03/28 11:47:30 | 000,246,520 | ---- | M] () [Auto] -- C:\Programme\ICQ6Toolbar\ICQ Service.exe -- (ICQ Service)
SRV - [2009/09/14 21:05:56 | 000,044,312 | ---- | M] () [Auto] -- C:\Programme\Asus\Game Park\GameConsole\OberonGameConsoleService.exe -- (OberonGameConsoleService)
SRV - [2008/11/03 20:06:28 | 000,441,712 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv)
SRV - [2006/10/26 18:03:08 | 000,145,184 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE -- (ose)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand] -- -- (PDCOMP)
DRV - File not found [Kernel | System] -- -- (PCIDump)
DRV - File not found [Kernel | System] -- -- (lbrtfdc)
DRV - File not found [Kernel | System] -- -- (i2omgmt)
DRV - File not found [Kernel | On_Demand] -- -- (hwdatacard)
DRV - File not found [Kernel | System] -- -- (Changer)
DRV - File not found [Kernel | On_Demand] -- -- (catchme)
DRV - File not found [Kernel | On_Demand] -- -- (BTWUSB)
DRV - File not found [Kernel | On_Demand] -- -- (btwhid)
DRV - File not found [Kernel | On_Demand] -- -- (BTWDNDIS)
DRV - File not found [Kernel | On_Demand] -- -- (BTDriver)
DRV - File not found [Kernel | On_Demand] -- -- (btaudio)
DRV - [2010/06/05 09:54:49 | 000,064,288 | ---- | M] (Lavasoft AB) [File_System | Boot] -- C:\WINDOWS\system32\drivers\Lbd.sys -- (Lbd)
DRV - [2009/12/16 08:30:35 | 000,013,696 | ---- | M] (Skyhook Wireless) [Kernel | Auto] -- C:\WINDOWS\system32\drivers\wpsnuio.sys -- (Wpsnuio)
DRV - [2009/11/17 07:51:38 | 005,956,608 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2009/10/01 09:39:14 | 000,182,656 | ---- | M] (SMI) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\SMIksdrv.sys -- (usbsmi)
DRV - [2009/08/11 20:04:30 | 001,582,624 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\athw.sys -- (AR5416)
DRV - [2009/08/06 02:48:42 | 000,054,752 | ---- | M] (Microsoft Corporation) [Kernel | Auto] -- C:\WINDOWS\system32\drivers\fssfltr_tdi.sys -- (fssfltr)
DRV - [2009/07/27 03:09:52 | 000,044,032 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\l1c51x86.sys -- (L1c)
DRV - [2009/07/05 22:48:02 | 000,011,448 | ---- | M] () [Kernel | System] -- C:\WINDOWS\system32\drivers\AsUpIO.sys -- (AsUpIO)
DRV - [2008/11/03 03:03:28 | 000,013,880 | ---- | M] ( ) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\kbfiltr.sys -- (kbfiltr)
DRV - [2008/08/05 08:10:12 | 001,684,736 | ---- | M] (Creative) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)
DRV - [2008/04/24 04:56:22 | 000,020,096 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\PCASp50.sys -- (PCASp50)
DRV - [2008/04/08 13:59:28 | 000,010,752 | ---- | M] (ASUSTeK Computer Inc.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\ASUSACPI.SYS -- (AsusACPI)
DRV - [2006/01/04 03:41:48 | 001,389,056 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKLM\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - Reg Error: Key error. File not found
IE - HKU\.DEFAULT\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKU\.DEFAULT\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - Reg Error: Key error. File not found
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\Administrator_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus.msn.com/
IE - HKU\Administrator_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\Media_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie
IE - HKU\Media_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
IE - HKU\Media_ON_C\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = hxxp://www.google.com/ie
IE - HKU\Media_ON_C\Software\Microsoft\Internet Explorer\Search,SearchAssistant = hxxp://www.google.com/ie
IE - HKU\Media_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\Media_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
O1 HOSTS File: ([2011/04/18 18:59:21 | 000,000,098 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programme\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll (Google Inc.)
O3 - HKU\Media_ON_C\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - File not found
O4 - HKLM..\Run: [ASUS VIBE] C:\Programme\ASUS\ASUS VIBE\ASUS VIBE.exe (ecm)
O4 - HKLM..\Run: [AsusACPIServer] C:\Programme\EeePC\ACPI\AsAcpiSvr.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [AsusEPCMonitor] C:\Programme\EeePC\ACPI\AsEPCMon.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [AsusTray] C:\Programme\EeePC\ACPI\AsTray.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [Boingo Wi-Fi] C:\Programme\Boingo\Boingo Wi-Fi\Boingo.lnk ()
O4 - HKLM..\Run: [LiveUpdate] C:\Programme\Asus\LiveUpdate\LiveUpdate.exe ()
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [tvncontrol] C:\Programme\TightVNC\tvnserver.exe (GlavSoft LLC.)
O4 - HKU\Administrator_ON_C..\Run: [Eee Docking] C:\Programme\ASUS\Eee Docking\Eee Docking.exe ()
O4 - HKU\Media_ON_C..\Run: [Eee Docking] C:\Programme\ASUS\Eee Docking\Eee Docking.exe ()
O4 - HKU\Media_ON_C..\Run: [ICQ] C:\Programme\ICQ7.2\ICQ.exe (ICQ, LLC.)
O4 - Startup: C:\Dokumente und Einstellungen\Administrator\Startmenü\Programme\Autostart\OpenOffice.org 3.2.lnk = C:\Programme\OpenOffice.org 3\program\quickstart.exe ()
O4 - Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\SuperHybridEngine.lnk = C:\Programme\ASUS\EeePC\Super Hybrid Engine\SuperHybridEngine.exe (ASUSTeK Computer Inc.)
O4 - Startup: C:\Dokumente und Einstellungen\Media\Startmenü\Programme\Autostart\OpenOffice.org 3.2.lnk = C:\Programme\OpenOffice.org 3\program\quickstart.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\Administrator_ON_C\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\LocalService_ON_C\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\LocalService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\Media_ON_C\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\Media_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\Media_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\Media_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\NetworkService_ON_C\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\NetworkService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\systemprofile_ON_C\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9 - Extra 'Tools' menuitem : My kikin - {0F7195C2-6713-4d93-A1BC-DA5FA33F0A65} - Reg Error: Key error. File not found
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - File not found
O9 - Extra Button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Programme\ICQ7.2\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Programme\ICQ7.2\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Programme\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Programme\qmjsfiji\ysbfplsv.exe) - C:\Programme\qmjsfiji\ysbfplsv.exe ()
O24 - Desktop Components:0 (Die derzeitige Homepage) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Eee PC Seashell_1.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Eee PC Seashell_1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/03/24 07:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - C:\WINDOWS\System32\lsdelete.exe ()
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/04/18 18:59:17 | 002,234,368 | R--- | C] (OldTimer Tools) -- C:\OTLPE.exe
[2011/04/18 13:01:00 | 000,000,000 | ---D | C] -- C:\Programme\qmjsfiji
[2011/04/16 17:47:45 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen\NetworkService\Cookies
[2011/04/15 16:02:12 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Media\Desktop\osam_autorun_manager_5_0_portable(1)
[2011/04/15 14:48:44 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2011/04/13 16:04:54 | 000,000,000 | ---D | C] -- C:\cofi976c
[2011/04/13 15:12:26 | 000,000,000 | ---D | C] -- C:\Avenger
[2011/04/13 15:09:55 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Media\Desktop\avenger
[2011/04/12 15:03:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2011/04/12 14:55:36 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2011/04/12 14:48:21 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2011/04/12 14:48:21 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2011/04/12 14:48:21 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2011/04/12 14:48:21 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2011/04/11 15:34:13 | 000,000,000 | ---D | C] -- C:\cofi
[2011/04/11 15:24:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2011/04/11 15:21:08 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011/04/11 15:19:57 | 000,000,000 | RH-D | C] -- C:\Dokumente und Einstellungen\Administrator\Recent
[2011/04/11 15:18:27 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\CCleaner
[2011/04/11 15:18:26 | 000,000,000 | ---D | C] -- C:\Programme\CCleaner
[2011/04/11 15:17:30 | 003,050,664 | ---- | C] (Piriform Ltd) -- C:\Dokumente und Einstellungen\Administrator\Desktop\ccsetup305.exe
[2011/04/10 16:07:08 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Administrator\Desktop\tdsskiller
[2011/04/10 16:04:00 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Media\Desktop\tdsskiller
[2011/04/10 15:28:31 | 000,000,000 | ---D | C] -- C:\_OTL
[2011/04/10 15:13:27 | 000,751,091 | ---- | C] (OldTimer Tools) -- C:\Dokumente und Einstellungen\Administrator\Eigene Dateien\OTL.exe
[2011/04/10 11:07:33 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\LocalService\Anwendungsdaten\Macromedia
[2011/04/10 09:46:40 | 000,000,000 | -H-D | C] -- C:\WINDOWS\PIF
[2011/04/09 17:10:20 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\Malwarebytes
[2011/04/09 16:54:00 | 000,429,012 | ---- | C] (OldTimer Tools) -- C:\Dokumente und Einstellungen\Media\Desktop\OTH.scr
[2011/04/09 16:39:48 | 007,734,208 | ---- | C] (Malwarebytes Corporation ) -- C:\Dokumente und Einstellungen\Media\Desktop\mbam-setup-1.50.1.1100.com
[2011/04/07 16:44:43 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen\Administrator\PrivacIE
[2011/04/07 16:44:11 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Administrator\Desktop\vrs
[2011/04/02 17:15:55 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen\NetworkService\PrivacIE
[2011/04/02 17:15:23 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\NetworkService\Anwendungsdaten\Google
[2011/04/02 16:56:16 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Media\Anwendungsdaten\TeamViewer
[2011/04/02 16:56:04 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\TeamViewer 6
[2011/04/02 16:55:50 | 000,000,000 | ---D | C] -- C:\Programme\TeamViewer
[2011/04/01 18:30:42 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\NetworkService\Anwendungsdaten\Sun
[2011/03/31 15:47:42 | 000,000,000 | R--D | C] -- C:\Dokumente und Einstellungen\NetworkService\Favoriten
[2011/03/29 13:29:01 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\NetworkService\Anwendungsdaten\Macromedia
[2011/03/29 13:28:56 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\NetworkService\Anwendungsdaten\Adobe
[2011/03/29 13:28:32 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen\NetworkService\IETldCache
[2009/11/04 02:53:14 | 000,013,880 | ---- | C] ( ) -- C:\WINDOWS\System32\drivers\kbfiltr.sys
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/04/18 18:59:21 | 000,000,098 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\Hosts
[2011/04/18 13:14:30 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/04/18 13:02:30 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/04/18 13:01:16 | 000,002,181 | ---- | M] () -- C:\Dokumente und Einstellungen\Media\Anwendungsdaten\Microsoft\Internet Explorer\Quick Launch\Safari.lnk
[2011/04/18 13:01:00 | 000,001,084 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011/04/18 13:00:59 | 000,167,414 | --S- | M] () -- C:\WINDOWS\system32\config\systemprofile\Startmenü\Programme\Autostart\ysbfplsv.exe
[2011/04/18 11:07:00 | 000,012,580 | ---- | M] () -- C:\Neu ZIP-komprimierter Ordner.zip
[2011/04/18 10:56:31 | 000,002,163 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Safari.lnk
[2011/04/18 06:54:05 | 000,001,088 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011/04/14 08:01:36 | 000,250,865 | ---- | M] () -- C:\Dokumente und Einstellungen\Media\Desktop\MBRCheck.exe
[2011/04/13 16:02:24 | 004,320,019 | R--- | M] () -- C:\Dokumente und Einstellungen\Media\Desktop\cofi.exe
[2011/04/13 15:11:38 | 000,000,470 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2011/04/13 15:09:35 | 000,724,952 | ---- | M] () -- C:\Dokumente und Einstellungen\Media\Desktop\avenger.zip
[2011/04/12 14:55:40 | 000,000,327 | RHS- | M] () -- C:\boot.ini
[2011/04/12 14:47:25 | 004,319,653 | R--- | M] () -- C:\Dokumente und Einstellungen\Administrator\Desktop\cofi.exe
[2011/04/11 15:18:27 | 000,000,654 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\CCleaner.lnk
[2011/04/11 15:18:27 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\CCleaner
[2011/04/11 15:17:44 | 003,050,664 | ---- | M] (Piriform Ltd) -- C:\Dokumente und Einstellungen\Administrator\Desktop\ccsetup305.exe
[2011/04/10 16:02:58 | 001,263,721 | ---- | M] () -- C:\Dokumente und Einstellungen\Media\Desktop\tdsskiller.zip
[2011/04/10 16:02:58 | 001,263,721 | ---- | M] () -- C:\Dokumente und Einstellungen\Administrator\Desktop\tdsskiller.zip
[2011/04/10 15:13:36 | 000,751,091 | ---- | M] (OldTimer Tools) -- C:\Dokumente und Einstellungen\Administrator\Eigene Dateien\OTL.exe
[2011/04/09 17:59:12 | 000,001,174 | ---- | M] () -- C:\mbam-log-2011-04-09 (23-53-24).zip
[2011/04/09 16:51:21 | 000,429,012 | ---- | M] (OldTimer Tools) -- C:\Dokumente und Einstellungen\Media\Desktop\OTH.scr
[2011/04/09 16:43:43 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Malwarebytes' Anti-Malware
[2011/04/09 16:36:32 | 007,734,208 | ---- | M] (Malwarebytes Corporation ) -- C:\Dokumente und Einstellungen\Media\Desktop\mbam-setup-1.50.1.1100.com
[2011/04/02 16:56:04 | 000,000,787 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\TeamViewer 6.lnk
[2011/04/02 16:56:04 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\TeamViewer 6
[2011/03/21 16:15:32 | 000,158,889 | ---- | M] () -- C:\Dokumente und Einstellungen\Media\Desktop\B wie beck.odp
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/04/18 13:01:00 | 000,167,414 | --S- | C] () -- C:\WINDOWS\system32\config\systemprofile\Startmenü\Programme\Autostart\ysbfplsv.exe
[2011/04/18 11:06:52 | 000,012,580 | ---- | C] () -- C:\Neu ZIP-komprimierter Ordner.zip
[2011/04/14 08:06:58 | 000,250,865 | ---- | C] () -- C:\Dokumente und Einstellungen\Media\Desktop\MBRCheck.exe
[2011/04/13 16:03:36 | 004,320,019 | R--- | C] () -- C:\Dokumente und Einstellungen\Media\Desktop\cofi.exe
[2011/04/13 15:09:23 | 000,724,952 | ---- | C] () -- C:\Dokumente und Einstellungen\Media\Desktop\avenger.zip
[2011/04/12 14:55:40 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2011/04/12 14:55:37 | 000,262,448 | RHS- | C] () -- C:\cmldr
[2011/04/12 14:48:21 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2011/04/12 14:48:21 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2011/04/12 14:48:21 | 000,089,088 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2011/04/12 14:48:21 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2011/04/12 14:48:21 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2011/04/11 15:18:27 | 000,000,654 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\CCleaner.lnk
[2011/04/11 15:16:35 | 004,319,653 | R--- | C] () -- C:\Dokumente und Einstellungen\Administrator\Desktop\cofi.exe
[2011/04/10 16:06:54 | 001,263,721 | ---- | C] () -- C:\Dokumente und Einstellungen\Administrator\Desktop\tdsskiller.zip
[2011/04/10 16:03:50 | 001,263,721 | ---- | C] () -- C:\Dokumente und Einstellungen\Media\Desktop\tdsskiller.zip
[2011/04/09 17:59:12 | 000,001,174 | ---- | C] () -- C:\mbam-log-2011-04-09 (23-53-24).zip
[2011/04/02 16:56:03 | 000,000,787 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\TeamViewer 6.lnk
[2011/03/21 16:15:31 | 000,158,889 | ---- | C] () -- C:\Dokumente und Einstellungen\Media\Desktop\B wie beck.odp
[2011/03/10 14:43:06 | 000,006,057 | ---- | C] () -- C:\Dokumente und Einstellungen\Media\.recently-used.xbel
[2010/09/21 12:20:56 | 000,162,302 | ---- | C] () -- C:\Dokumente und Einstellungen\Media\Unbenannt.jpg
[2010/08/04 05:55:06 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\Unlha32.dll
[2010/08/04 05:55:06 | 000,087,040 | ---- | C] () -- C:\WINDOWS\UnGins.exe
[2010/08/04 05:55:05 | 000,473,600 | ---- | C] () -- C:\WINDOWS\System32\Harmony.dll
[2010/05/05 10:44:08 | 000,015,880 | ---- | C] () -- C:\WINDOWS\System32\lsdelete.exe
[2010/04/17 09:16:43 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/04/17 09:14:38 | 000,000,141 | ---- | C] () -- C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Anwendungsdaten\fusioncache.dat
[2010/03/22 13:04:03 | 000,007,680 | ---- | C] () -- C:\Dokumente und Einstellungen\Media\Lokale Einstellungen\Anwendungsdaten\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/03/10 15:34:59 | 000,000,000 | ---- | C] () -- C:\Dokumente und Einstellungen\Media\Anwendungsdaten\wklnhst.dat
[2010/03/09 13:35:25 | 000,000,425 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI
[2010/03/09 13:35:25 | 000,000,027 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI
[2010/02/15 13:16:07 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010/02/10 08:27:56 | 000,041,768 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2010/02/04 21:49:20 | 000,006,144 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2010/01/27 13:13:52 | 000,000,138 | ---- | C] () -- C:\Dokumente und Einstellungen\Media\Lokale Einstellungen\Anwendungsdaten\fusioncache.dat
[2009/12/16 09:36:47 | 000,025,616 | ---- | C] () -- C:\WINDOWS\AsAcpiSvrLang.ini
[2009/12/16 09:36:47 | 000,012,208 | ---- | C] () -- C:\WINDOWS\AsTrayLang.ini
[2009/12/11 21:28:45 | 000,163,840 | ---- | C] () -- C:\WINDOWS\System32\SM37XCoInst.dll
[2009/12/11 19:45:13 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2009/12/11 16:47:19 | 000,040,960 | ---- | C] () -- C:\WINDOWS\uvcrecordfix.exe
[2009/12/11 16:47:19 | 000,024,576 | ---- | C] () -- C:\WINDOWS\Sleep.exe
[2009/12/11 16:26:17 | 000,011,448 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsUpIO.sys
[2009/12/11 16:26:08 | 000,001,769 | ---- | C] () -- C:\WINDOWS\Language_trs.ini
[2009/12/11 16:23:35 | 000,004,692 | ---- | C] () -- C:\WINDOWS\System32\drivers\SamSfPa.dat
[2009/12/11 16:21:30 | 000,013,930 | ---- | C] () -- C:\WINDOWS\System32\RaCoInst.dat
[2009/12/10 23:07:28 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2009/12/10 23:03:28 | 000,021,740 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2009/12/10 13:59:50 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2009/12/10 13:59:00 | 000,208,104 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009/12/10 13:53:25 | 000,005,312 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
[2009/12/10 13:53:14 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2009/12/10 13:53:13 | 000,004,562 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2009/12/10 13:53:12 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2009/12/10 13:53:12 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2009/12/10 13:53:10 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2009/12/10 13:53:10 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2009/12/10 13:53:08 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2009/12/10 13:53:06 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
========== LOP Check ==========
[2010/08/30 14:59:11 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\OpenOffice.org
[2010/08/31 13:52:27 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\LocalService\Anwendungsdaten\TightVNC
[2010/03/14 14:54:41 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Media\Anwendungsdaten\ABToolsToolbarEBay
[2010/06/16 15:24:45 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Media\Anwendungsdaten\Asus
[2011/03/10 14:36:40 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Media\Anwendungsdaten\gtk-2.0
[2011/04/18 10:59:25 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Media\Anwendungsdaten\ICQ
[2010/05/01 11:55:29 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Media\Anwendungsdaten\kikin
[2010/05/01 11:55:29 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Media\Anwendungsdaten\OCS
[2010/04/16 14:47:07 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Media\Anwendungsdaten\OpenOffice.org
[2010/05/01 11:55:39 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Media\Anwendungsdaten\Opera
[2010/03/14 14:54:48 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Media\Anwendungsdaten\SchnellSchreiben
[2011/04/02 16:56:16 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Media\Anwendungsdaten\TeamViewer
[2010/03/10 15:35:00 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Media\Anwendungsdaten\Template
[2010/06/16 13:15:21 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\EBI
[2009/12/16 08:30:31 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\GoBoingo
[2011/02/02 16:56:25 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\ICQ
[2009/12/11 16:21:30 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Ralink Driver
[2010/06/16 13:15:21 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\RSMR
[2010/01/30 16:38:48 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\TEMP
[2010/05/05 09:34:55 | 000,000,000 | -H-D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\{74D08EB8-01D1-4BAE-91E3-F30C1B031AC6}
[2011/04/13 15:11:38 | 000,000,470 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job
========== Purity Check ==========
< End of report > Danke für die Hilfe!
gruss Multivitamin |