Code:
Alles auswählen Aufklappen ATTFilter
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O29:64bit: - HKLM SecurityProviders - (credssp.dll) - C:\Windows\SysWow64\credssp.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (credssp.dll) - C:\Windows\SysWow64\credssp.dll (Microsoft Corporation)
O30:64bit: - LSA: Authentication Packages - (msv1_0) - C:\Windows\SysNative\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\Windows\SysWow64\msv1_0.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (kerberos) - C:\Windows\SysNative\kerberos.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (msv1_0) - C:\Windows\SysNative\msv1_0.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (schannel) - C:\Windows\SysNative\schannel.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (wdigest) - C:\Windows\SysNative\wdigest.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (tspkg) - C:\Windows\SysNative\tspkg.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (pku2u) - C:\Windows\SysNative\pku2u.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\Windows\SysWow64\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\Windows\SysWow64\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\Windows\SysWow64\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\Windows\SysWow64\wdigest.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (tspkg) - C:\Windows\SysWow64\tspkg.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (pku2u) - C:\Windows\SysWow64\pku2u.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008.03.13 21:39:50 | 00,000,070 | R--- | M] () - G:\Autorun.inf -- [ CDFS ]
O33 - MountPoints2\{3ce85d5d-cf2e-11de-8d3a-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{3ce85d5d-cf2e-11de-8d3a-806e6f6e6963}\Shell\AutoRun\command - "" = G:\setup.exe -- [2008.03.13 19:33:06 | 00,323,584 | R--- | M] (Vodafone)
O33 - MountPoints2\{db906eb5-cf37-11de-b210-00235a34af72}\Shell - "" = AutoRun
O33 - MountPoints2\{db906eb5-cf37-11de-b210-00235a34af72}\Shell\AutoRun\command - "" = G:\setup.exe -- [2008.03.13 19:33:06 | 00,323,584 | R--- | M] (Vodafone)
O33 - MountPoints2\{f5b2afbc-d043-11de-a407-00235a34af72}\Shell - "" = AutoRun
O33 - MountPoints2\{f5b2afbc-d043-11de-a407-00235a34af72}\Shell\AutoRun\command - "" = G:\setup.exe -- [2008.03.13 19:33:06 | 00,323,584 | R--- | M] (Vodafone)
O33 - MountPoints2\G\Shell - "" = AutoRun
O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\setup.exe -- [2008.03.13 19:33:06 | 00,323,584 | R--- | M] (Vodafone)
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\Windows\SysWow64\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - File not found
64bit: O35 - comfile [open] -- "%1" %* File not found
64bit: O35 - exefile [open] -- "%1" %* File not found
O35 - comfile [open] -- "%1" %* File not found
O35 - exefile [open] -- "%1" %* File not found
NetSvcs:64bit: AeLookupSvc - C:\Windows\SysNative\aelupsvc.dll (Microsoft Corporation)
NetSvcs:64bit: CertPropSvc - C:\Windows\SysNative\certprop.dll (Microsoft Corporation)
NetSvcs:64bit: SCPolicySvc - C:\Windows\SysNative\certprop.dll (Microsoft Corporation)
NetSvcs:64bit: lanmanserver - C:\Windows\SysNative\srvsvc.dll (Microsoft Corporation)
NetSvcs:64bit: gpsvc - C:\Windows\SysNative\gpsvc.dll (Microsoft Corporation)
NetSvcs:64bit: IKEEXT - C:\Windows\SysNative\IKEEXT.DLL (Microsoft Corporation)
NetSvcs:64bit: AudioSrv - C:\Windows\SysNative\audiosrv.dll (Microsoft Corporation)
NetSvcs:64bit: Ias - C:\Windows\SysNative\ias [2009.07.14 04:20:14 | 00,000,000 | ---D | M]
NetSvcs:64bit: Irmon - C:\Windows\SysNative\irmon.dll (Microsoft Corporation)
NetSvcs:64bit: Rasauto - C:\Windows\SysNative\rasauto.dll (Microsoft Corporation)
NetSvcs:64bit: Rasman - C:\Windows\SysNative\rasmans.dll (Microsoft Corporation)
NetSvcs:64bit: Remoteaccess - C:\Windows\SysNative\mprdim.dll (Microsoft Corporation)
NetSvcs:64bit: SENS - C:\Windows\SysNative\Sens.dll (Microsoft Corporation)
NetSvcs:64bit: Sharedaccess - C:\Windows\SysNative\ipnathlp.dll (Microsoft Corporation)
NetSvcs:64bit: Tapisrv - C:\Windows\SysNative\tapisrv.dll (Microsoft Corporation)
NetSvcs:64bit: Wmi - C:\Windows\SysNative\wmi.dll (Microsoft Corporation)
NetSvcs:64bit: TermService - C:\Windows\SysNative\termsrv.dll (Microsoft Corporation)
NetSvcs:64bit: wuauserv - C:\Windows\SysNative\wuaueng.dll (Microsoft Corporation)
NetSvcs:64bit: BITS - C:\Windows\SysNative\qmgr.dll (Microsoft Corporation)
NetSvcs:64bit: ShellHWDetection - C:\Windows\SysNative\shsvcs.dll (Microsoft Corporation)
NetSvcs:64bit: iphlpsvc - C:\Windows\SysNative\iphlpsvc.dll (Microsoft Corporation)
NetSvcs:64bit: seclogon - C:\Windows\SysNative\seclogon.dll (Microsoft Corporation)
NetSvcs:64bit: AppInfo - C:\Windows\SysNative\appinfo.dll (Microsoft Corporation)
NetSvcs:64bit: msiscsi - C:\Windows\SysNative\iscsiexe.dll (Microsoft Corporation)
NetSvcs:64bit: MMCSS - C:\Windows\SysNative\mmcss.dll (Microsoft Corporation)
NetSvcs:64bit: winmgmt - C:\Windows\SysNative\wbem\WMIsvc.dll (Microsoft Corporation)
NetSvcs:64bit: SessionEnv - C:\Windows\SysNative\SessEnv.dll (Microsoft Corporation)
NetSvcs:64bit: browser - C:\Windows\SysNative\browser.dll (Microsoft Corporation)
NetSvcs:64bit: EapHost - C:\Windows\SysNative\eapsvc.dll (Microsoft Corporation)
NetSvcs:64bit: schedule - C:\Windows\SysNative\schedsvc.dll (Microsoft Corporation)
NetSvcs:64bit: hkmsvc - C:\Windows\SysNative\KMSVC.DLL (Microsoft Corporation)
NetSvcs:64bit: wercplsupport - C:\Windows\SysNative\wercplsupport.dll (Microsoft Corporation)
NetSvcs:64bit: ProfSvc - C:\Windows\SysNative\profsvc.dll (Microsoft Corporation)
NetSvcs:64bit: Themes - C:\Windows\SysNative\themeservice.dll (Microsoft Corporation)
NetSvcs:64bit: BDESVC - C:\Windows\SysNative\bdesvc.dll (Microsoft Corporation)
NetSvcs: Ias - C:\Windows\SysWOW64\ias [2008.01.21 04:08:35 | 00,000,000 | ---D | M]
NetSvcs: Remoteaccess - C:\Windows\SysWOW64\mprdim.dll (Microsoft Corporation)
NetSvcs: SENS - C:\Windows\SysWOW64\Sens.dll (Microsoft Corporation)
NetSvcs: Tapisrv - C:\Windows\SysWOW64\tapisrv.dll (Microsoft Corporation)
NetSvcs: Wmi - C:\Windows\SysWOW64\wmi.dll (Microsoft Corporation)
NetSvcs: ShellHWDetection - C:\Windows\SysWOW64\shsvcs.dll (Microsoft Corporation)
NetSvcs: SessionEnv - C:\Windows\SysWOW64\SessEnv.dll (Microsoft Corporation)
OTL cannot create restorepoints on Vista OSs!
========== Files/Folders - Created Within 14 Days ==========
[2009.11.27 21:56:28 | 00,532,992 | ---- | C] (OldTimer Tools) -- C:\Users\mnk\Desktop\OTL.exe
[2009.11.27 19:45:26 | 00,000,000 | ---D | C] -- C:\Users\mnk\AppData\Roaming\Malwarebytes
[2009.11.27 19:45:13 | 00,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2009.11.27 19:45:06 | 00,022,104 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2009.11.27 19:45:06 | 00,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2009.11.27 19:45:05 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2009.11.26 21:18:02 | 00,000,000 | ---D | C] -- C:\Users\mnk\AppData\Roaming\BitDefender
[2009.11.26 21:18:02 | 00,000,000 | ---D | C] -- C:\Programme\Common Files\BitDefender
[2009.11.26 21:18:02 | 00,000,000 | ---D | C] -- C:\Programme\BitDefender
[2009.11.26 21:18:02 | 00,000,000 | ---D | C] -- C:\ProgramData\BitDefender
[2009.11.26 21:16:05 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\BitDefender
[2009.11.26 00:54:09 | 00,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[2009.11.26 00:54:09 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Spybot - Search & Destroy
[2009.11.23 15:32:29 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\PostgreSQL2
[2009.11.23 14:59:24 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\PokerTracker 3
[2009.11.21 14:57:16 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Trend Micro
[2009.11.20 18:30:57 | 00,000,000 | ---D | C] -- C:\Users\mnk\AppData\Roaming\CasinoOnNet
[2009.11.20 18:30:37 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\CasinoOnNet
[2009.11.19 16:28:48 | 00,000,000 | ---D | C] -- C:\ProgramData\Vodafone
[2009.11.19 16:28:46 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Vodafone
[2009.11.19 03:52:07 | 00,000,000 | ---D | C] -- C:\Users\mnk\AppData\Local\Diagnostics
[2009.11.18 20:03:27 | 00,000,000 | ---D | C] -- C:\Programme\PlayReady
[2009.05.05 16:36:47 | 01,224,704 | ---- | C] ( ) -- C:\Windows\SysWow64\lxbkserv.dll
[2009.05.05 16:36:47 | 00,991,232 | ---- | C] ( ) -- C:\Windows\SysWow64\lxbkusb1.dll
[2009.05.05 16:36:47 | 00,696,320 | ---- | C] ( ) -- C:\Windows\SysWow64\lxbkhbn3.dll
[2009.05.05 16:36:47 | 00,684,032 | ---- | C] ( ) -- C:\Windows\SysWow64\lxbkcomc.dll
[2009.05.05 16:36:47 | 00,643,072 | ---- | C] ( ) -- C:\Windows\SysWow64\lxbkpmui.dll
[2009.05.05 16:36:47 | 00,585,728 | ---- | C] ( ) -- C:\Windows\SysWow64\lxbklmpm.dll
[2009.05.05 16:36:47 | 00,421,888 | ---- | C] ( ) -- C:\Windows\SysWow64\lxbkcomm.dll
[2009.05.05 16:36:47 | 00,413,696 | ---- | C] ( ) -- C:\Windows\SysWow64\lxbkinpa.dll
[2009.05.05 16:36:47 | 00,397,312 | ---- | C] ( ) -- C:\Windows\SysWow64\lxbkiesc.dll
[2009.05.05 16:36:47 | 00,163,840 | ---- | C] ( ) -- C:\Windows\SysWow64\lxbkprox.dll
[2009.05.05 16:36:47 | 00,094,208 | ---- | C] ( ) -- C:\Windows\SysWow64\lxbkpplc.dll
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 14 Days ==========
[2009.11.27 22:02:17 | 02,883,584 | -HS- | M] () -- C:\Users\mnk\NTUSER.DAT
[2009.11.27 21:59:28 | 00,009,504 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2009.11.27 21:59:28 | 00,009,504 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2009.11.27 21:56:24 | 00,090,855 | ---- | M] () -- C:\ProgramData\nvModes.001
[2009.11.27 21:55:50 | 00,532,992 | ---- | M] (OldTimer Tools) -- C:\Users\mnk\Desktop\OTL.exe
[2009.11.27 21:54:21 | 00,001,064 | ---- | M] () -- C:\Windows\tasks\Google Software Updater.job
[2009.11.27 21:52:59 | 00,000,349 | ---- | M] () -- C:\Users\Public\Documents\PCLECHAL.INI
[2009.11.27 21:52:12 | 00,000,436 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts.ics
[2009.11.27 21:51:22 | 00,001,104 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2009.11.27 21:50:48 | 00,000,385 | ---- | M] () -- C:\Windows\SysNative\user_gensett.xml
[2009.11.27 21:50:37 | 00,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2009.11.27 21:50:30 | 00,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2009.11.27 21:50:19 | 31,952,36352 | -HS- | M] () -- C:\hiberfil.sys
[2009.11.27 21:48:32 | 02,821,359 | -H-- | M] () -- C:\Users\mnk\AppData\Local\IconCache.db
[2009.11.27 21:20:02 | 00,001,108 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2009.11.27 19:45:29 | 45,814,706 | ---- | M] () -- C:\Windows\SysNative\drivers\Avg\incavi.avm
[2009.11.27 19:45:22 | 00,001,015 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2009.11.27 19:45:02 | 00,105,755 | ---- | M] () -- C:\Windows\SysNative\drivers\Avg\microavi.avg
[2009.11.27 19:42:59 | 01,472,002 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2009.11.27 19:42:59 | 00,643,866 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2009.11.27 19:42:59 | 00,607,190 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2009.11.27 19:42:59 | 00,126,394 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2009.11.27 19:42:59 | 00,103,568 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2009.11.26 21:53:41 | 00,000,016 | ---- | M] () -- C:\Windows\SysNative\asdict.dat
[2009.11.26 21:53:41 | 00,000,004 | ---- | M] () -- C:\Windows\SysNative\aspdict-en.dat
[2009.11.26 21:53:41 | 00,000,000 | ---- | M] () -- C:\Windows\SysNative\ab_bl.sig
[2009.11.26 21:41:19 | 00,000,132 | ---- | M] () -- C:\Windows\SysNative\rezumatenoi.dat
[2009.11.26 21:40:43 | 00,000,000 | ---- | M] () -- C:\pcwords2.dat
[2009.11.26 21:40:43 | 00,000,000 | ---- | M] () -- C:\pcwords.dat
[2009.11.26 21:40:43 | 00,000,000 | ---- | M] () -- C:\pcconf.ini
[2009.11.26 21:40:43 | 00,000,000 | ---- | M] () -- C:\pc_sign.slf
[2009.11.26 21:19:06 | 00,002,098 | ---- | M] () -- C:\Users\Public\Desktop\BitDefender Antivirus 2010.lnk
[2009.11.26 12:44:35 | 00,090,855 | ---- | M] () -- C:\ProgramData\nvModes.dat
[2009.11.26 00:54:17 | 00,001,264 | ---- | M] () -- C:\Users\mnk\Desktop\Spybot - Search & Destroy.lnk
[2009.11.25 21:00:28 | 00,013,664 | ---- | M] () -- C:\Users\mnk\Desktop\winamp - Verknüpfung.lnk
[2009.11.23 14:59:46 | 00,004,985 | ---- | M] () -- C:\ProgramData\ojvzdisj.xda
[2009.11.23 14:59:29 | 00,001,075 | ---- | M] () -- C:\Users\mnk\Desktop\PokerTracker 3.lnk
[2009.11.21 14:57:34 | 00,002,099 | ---- | M] () -- C:\Users\mnk\Desktop\HijackThis.lnk
[2009.11.20 18:31:36 | 00,001,986 | ---- | M] () -- C:\Users\mnk\Desktop\Casino-On-Net.lnk
[2009.11.19 16:28:51 | 00,002,767 | ---- | M] () -- C:\Users\Public\Desktop\Vodafone SMS.lnk
[2009.11.19 16:28:51 | 00,002,767 | ---- | M] () -- C:\Users\Public\Desktop\Vodafone Mobile Connect.lnk
[2009.11.17 17:18:46 | 01,019,784 | ---- | M] () -- C:\Users\mnk\Desktop\royal plo2.PNG
[2009.11.17 17:16:20 | 00,000,000 | ---- | M] () -- C:\Users\mnk\Desktop\Neue Bitmap.bmp
[2009.11.15 20:44:17 | 00,001,148 | ---- | M] () -- C:\Users\Public\Desktop\DivX Player.lnk
[2009.11.15 20:43:59 | 00,001,184 | ---- | M] () -- C:\Users\Public\Desktop\DivX Converter.lnk
[2009.11.15 20:43:39 | 00,001,617 | ---- | M] () -- C:\Users\mnk\Desktop\DivX Movies.lnk
[2009.11.14 15:18:33 | 00,101,328 | ---- | M] () -- C:\Users\mnk\AppData\Local\GDIPFONTCACHEV1.DAT
[2009.11.14 15:17:15 | 00,385,600 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]