![]() |
|
Alles rund um Windows: Windows Vista Blue ScreenWindows 7 Hilfe zu allen Windows-Betriebssystemen: Windows XP, Windows Vista, Windows 7, Windows 8(.1) und Windows 10 / Windows 11- als auch zu sämtlicher Windows-Software. Alles zu Windows 10 ist auch gerne willkommen. Bitte benenne etwaige Fehler oder Bluescreens unter Windows mit dem Wortlaut der Fehlermeldung und Fehlercode. Erste Schritte für Hilfe unter Windows. |
![]() |
|
![]() | #1 |
![]() ![]() | ![]() Problem: Windows Vista Blue Screen Hallo Forum, Ich habe gestern Abend meinen Laptop ganz normal heruntergefahren er lief den ganzen Tag ganz normal hab dann heute versucht den Laptop anzumachen aber nach kürzester Zeit stürzt mein Laptop ab und es kommt ein Blauesfenster das nach millisekunden verschwindet und dann der Laptop reBootet und dies passiert andauernd. Im Abgesicherten Modus kann ich jedoch den Laptop einwandfrei benutzen. also der Error fängt so an im Blue Screen Stop 0x00000BE (oxC0000005) mehr konnte ich nicht lesen Bitte Dringend um Hilfe MFG Sarah |
![]() | #2 |
/// Mr. Schatten ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows Vista Blue Screen Anleitung / Hilfe![]() lass dir mal die Fehlermeldung komplett anzeigen. Außerdem darfst du bitte schon deine genaue Windows-Version mitteilen ;-) Beim Windows-Start F8 drücken und "Automatischen Neustart deaktivieren" oder (im abgesicherten Modus) Start => Systemsteuerung => System –> Erweitert –> Starten und Wiederherstellen –> Einstellungen => das Hakerl bei "Automatisch Neustart durchführen" entfernen.
__________________ |
![]() | #3 |
![]() ![]() | ![]() Windows Vista Blue Screen Details Windows Vista 32 Bit Version
__________________Habe das Häckchen entfernt wie du gesagt hast ich weiss aber nicht wie ich die Fehlermeldung mir anzeigen lassen kann weil die wirklich nur ne millisekunde sichtbar ist |
![]() | #4 | |||
/// Mr. Schatten ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Lösung: Windows Vista Blue Screen Ungenau ist nicht genau genug. SP? Zitat:
Zitat:
Zitat:
Der PC sollte jetzt mit diesem blauen Bild (BSOD = Blue Screen Of Death) stehen bleiben (zum ganz Ausschalten Einschaltknopf bedienen.) und nicht (automatisch) rebooten.
__________________ alle Tipps + Hilfen aller Helfer sind ohne Gewähr + Haftung keine Hilfe via PN hier ist ein Forum, jeder kann profitieren/kontrollieren - niemand ist fehlerfrei tendenzielle Beachtung der Rechtschreibregeln erhöht die Wahrscheinlichkeit einer Antwort - |
![]() | #5 |
![]() ![]() | ![]() Wie Windows Vista Blue Screen Antworten die Fehlermeldung ist ja in dem Blauenfenster das nach millisekunden verschwindet das Häckchen hat daran nix geändert ich habs mal abfotografiert Stop 0x00000BE (0xC0000005,0xE26522A7,0xF2A4 hier fehlt mir etwas,0xE9F3491C,0x00000000) Habe Windows Vista Home Premium (6.0 ,Build 6001) 32 Bit Version Service Pack 1 Soll ich mal Service Pack 2 Drauf installieren ? |
![]() | #6 |
![]() ![]() | ![]() Wo Windows Vista Blue Screen Lösung! ich weiss auch warum das mit dem Häckchen jetzt nicht geklappt hat weil wenn ich das Häckchen rausnehme und ok klicke kann ich nicht die einstellungen übernehmen weil das Übernehmen kästchen permanent grau ist |
![]() | #7 |
![]() ![]() | ![]() Windows Vista Blue Screen Habs jetzt mir der F8 Variante probiert und hat auch geklappt ! Der Fehler lautet wie folgt: 0x000008E (0xC0000005,0xE265E2A7,0xE82B491C,0x00000000) |
![]() | #8 |
/// Mr. Schatten ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows Vista Blue Screen Sehr gut! ![]() Irgend ein textliche Meldung wie "KERNEL_MODE_EXCEPTION_NOT_HANDLED" ist nicht dabei? Tendenziell bei so etwas: - Windows auf aktuelle Stand bringen (inkl. Treiber) - Virenscan z.B. Malwarebytes Anti-Malware - Festplattenfehlertest z.B. Data Lifeguard Diagnostic für Windows von Western Digital (nur Punkte 1 und 2, NICHT Punkt 3 - Write with Zeros)
__________________ alle Tipps + Hilfen aller Helfer sind ohne Gewähr + Haftung keine Hilfe via PN hier ist ein Forum, jeder kann profitieren/kontrollieren - niemand ist fehlerfrei tendenzielle Beachtung der Rechtschreibregeln erhöht die Wahrscheinlichkeit einer Antwort - Geändert von Shadow (05.04.2011 um 16:23 Uhr) Grund: Wetsern in Western gewandelt |
![]() | #9 |
![]() ![]() | ![]() Windows Vista Blue Screen Malware Test: Malwarebytes' Anti-Malware 1.50.1.1100 www.malwarebytes.org Datenbank Version: 6276 Windows 6.0.6001 Service Pack 1 (Safe Mode) Internet Explorer 8.0.6001.18904 05.04.2011 17:10:34 mbam-log-2011-04-05 (17-10-34).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|) Durchsuchte Objekte: 455890 Laufzeit: 1 Stunde(n), 19 Minute(n), 0 Sekunde(n) Infizierte Speicherprozesse: 0 Infizierte Speichermodule: 0 Infizierte Registrierungsschlüssel: 4 Infizierte Registrierungswerte: 0 Infizierte Dateiobjekte der Registrierung: 0 Infizierte Verzeichnisse: 0 Infizierte Dateien: 20 Infizierte Speicherprozesse: (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: HKEY_CURRENT_USER\SOFTWARE\2SPI9KEA4C (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\A9YA3MI1CF (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\NtWqIVLZEWZU (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\ (Hijack.Zones) -> Quarantined and deleted successfully. Infizierte Registrierungswerte: (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: (Keine bösartigen Objekte gefunden) Infizierte Dateien: c:\Users\Sarah\AppData\Local\Temp\383C.tmp (Trojan.FakeAlert) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\6BF.tmp (Trojan.FakeAlert) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\71D.tmp (Trojan.FakeAlert) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\7A9.tmp (Trojan.FakeAlert) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\911.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\95F.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\96F.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\E30B.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\ecsrwxonam.exe (Trojan.Hiloti) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\jar_cache4251088398415848075.tmp (Trojan.FakeAlert) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\oesancrwmx.exe (Trojan.FakeAlert.Gen) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\Uhf.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\Uhg.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\Uhh.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\Uhi.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\Uhj.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\Uhm.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\Uho.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\Uhp.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\Users\Sarah\AppData\Local\Temp\Uhq.exe (Trojan.Downloader) -> Quarantined and deleted successfully. Hat aber nix geholfen |
![]() | #10 |
![]() ![]() | ![]() Windows Vista Blue Screen [gelöst] Ich weiss nicht wie ich vom Abgesicherten Modus aus Windows Updates installieren kann oder die Treiber aktualisieren kann ich hab jetzt mal service pack 2 heruntergeladen reicht es wenn ich das installiere? |
![]() | #11 | |
/// Mr. Schatten ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows Vista Blue Screen [gelöst]Zitat:
(Und der wiederum eine Folge von unvorsichtigem Surfen und inaktuellem System ist.) Ich schick dir mal einen aus der Malwareecke vorbei bzw. der verwinkelte Allesleser aus der Malwarebekämpfungsfraktion oder ein anderer Heroe (m/w) aus der Liga der außergewöhnlichen Malwarebekämpfer der dies liest, mag "freiwillig" übernehmen.
__________________ alle Tipps + Hilfen aller Helfer sind ohne Gewähr + Haftung keine Hilfe via PN hier ist ein Forum, jeder kann profitieren/kontrollieren - niemand ist fehlerfrei tendenzielle Beachtung der Rechtschreibregeln erhöht die Wahrscheinlichkeit einer Antwort - |
![]() | #12 |
![]() ![]() | ![]() Windows Vista Blue Screen [gelöst] Test Option: EXTENDED TEST Model Number: ST9500325AS Unit Serial Number: 6VE1PVQR Firmware Number: 0002SDM1 Capacity: 500.11 GB SMART Status: PASS Test Result: PASS Test Time: 22:40:56, April 05, 2011 Den Physical Drive habe ich jetzt gecheckt das ist das Ergebniss |
![]() | #13 |
![]() ![]() | ![]() Windows Vista Blue Screen [gelöst] "KERNEL_MODE_EXCEPTION_NOT_HANDLED sowas steht nicht drinnen |
![]() | #14 |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows Vista Blue Screen [gelöst] Ich spring mal für shadow ein: Systemscan mit OTL Lade Dir bitte OTL von Oldtimer herunter und speichere es auf Deinem Desktop
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() | #15 |
![]() ![]() | ![]() Windows Vista Blue Screen [gelöst] 1 Log FileOTL Logfile: Code:
ATTFilter OTL logfile created on: 08.04.2011 11:37:25 - Run 1 OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\Sarah\Desktop Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18904) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 63,00% Memory free 3,00 Gb Paging File | 2,00 Gb Available in Paging File | 73,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 232,88 Gb Total Space | 126,32 Gb Free Space | 54,24% Space Free | Partition Type: NTFS Drive D: | 221,16 Gb Total Space | 221,12 Gb Free Space | 99,98% Space Free | Partition Type: NTFS Computer Name: Sarah-PC | User Name: Sarah | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - C:\Users\Sarah\Desktop\OTL.exe (OldTimer Tools) PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) PRC - C:\Program Files\Microsoft Security Essentials\MsMpEng.exe (Microsoft Corporation) PRC - C:\Program Files\Microsoft Security Essentials\MpCmdRun.exe (Microsoft Corporation) PRC - C:\Windows\explorer.exe (Microsoft Corporation) ========== Modules (SafeList) ========== MOD - C:\Users\Sarah\Desktop\OTL.exe (OldTimer Tools) MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6001.18000_none_5cdbaa5a083979cc\comctl32.dll (Microsoft Corporation) ========== Win32 Services (SafeList) ========== SRV - (AntiVirService) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH) SRV - (Browser Defender Update Service) -- C:\Program Files\PC Tools Security\BDT\BDTUpdateService.exe (Threat Expert Ltd.) SRV - (sdCoreService) -- C:\Program Files\PC Tools Security\pctsSvc.exe (PC Tools) SRV - (AntiVirSchedulerService) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH) SRV - (ICQ Service) -- C:\Program Files\ICQ6Toolbar\ICQ Service.exe () SRV - (vpnagent) -- C:\Program Files\Cisco\Cisco AnyConnect VPN Client\vpnagent.exe (Cisco Systems, Inc.) SRV - (TeamViewer5) -- C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe (TeamViewer GmbH) SRV - (getPlusHelper) getPlus(R) -- C:\Program Files\NOS\bin\getPlus_Helper.dll (NOS Microsystems Ltd.) SRV - (sdAuxService) -- C:\Program Files\PC Tools Security\pctsAuxs.exe (PC Tools) SRV - (MsMpSvc) -- C:\Program Files\Microsoft Security Essentials\MsMpEng.exe (Microsoft Corporation) SRV - (WinHttpAutoProxySvc) -- winhttp.dll (Microsoft Corporation) SRV - (ASLDRService) -- C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe (ASUS) SRV - (YahooAUService) -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe (Yahoo! Inc.) SRV - (ADSMService) -- C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe (ASUSTek Computer Inc.) SRV - (WinDefend) -- C:\Program Files\Windows Defender\mpsvc.dll (Microsoft Corporation) SRV - (ATKGFNEXSrv) -- C:\Program Files\ATKGFNEX\GFNEXSrv.exe () ========== Driver Services (SafeList) ========== DRV - (avipbb) -- C:\Windows\System32\drivers\avipbb.sys (Avira GmbH) DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation) DRV - (PCTCore) -- C:\Windows\system32\drivers\PCTCore.sys (PC Tools) DRV - (avgntflt) -- C:\Windows\System32\drivers\avgntflt.sys (Avira GmbH) DRV - (NVHDA) -- C:\Windows\System32\drivers\nvhda32v.sys (NVIDIA Corporation) DRV - (vpnva) -- C:\Windows\System32\drivers\vpnva.sys (Cisco Systems, Inc.) DRV - (pctEFA) -- C:\Windows\system32\drivers\pctEFA.sys (PC Tools) DRV - (pctDS) -- C:\Windows\system32\drivers\pctDS.sys (PC Tools) DRV - (sptd) -- C:\Windows\System32\Drivers\sptd.sys (Duplex Secure Ltd.) DRV - (MpNWMon) -- C:\Windows\System32\drivers\MpNWMon.sys (Microsoft Corporation) DRV - (AsDsm) -- C:\Windows\System32\drivers\AsDsm.sys (ASUSTek Computer Inc) DRV - (RMCAST) RMCAST (Pgm) -- C:\Windows\System32\drivers\rmcast.sys (Microsoft Corporation) DRV - (L1C) -- C:\Windows\System32\drivers\L1C60x86.sys (Atheros Communications, Inc.) DRV - (lullaby) -- C:\Windows\system32\DRIVERS\lullaby.sys (Windows (R) Win 7 DDK provider) DRV - (athr) -- C:\Windows\System32\drivers\athr.sys (Atheros Communications, Inc.) DRV - (ssmdrv) -- C:\Windows\System32\drivers\ssmdrv.sys (Avira GmbH) DRV - (AmUStor) -- C:\Windows\System32\drivers\AmUStor.sys (Alcor Micro, Corp.) DRV - (MTsensor) -- C:\Windows\System32\drivers\ATKACPI.sys (ATK0100) DRV - (kbfiltr) -- C:\Windows\System32\drivers\kbfiltr.sys ( ) DRV - (SNP2UVC) USB2.0 PC Camera (SNP2UVC) -- C:\Windows\System32\drivers\snp2uvc.sys () DRV - (WimFltr) -- C:\Windows\System32\drivers\WimFltr.sys (Microsoft Corporation) DRV - (ASMMAP) -- C:\Program Files\ATKGFNEX\ASMMAP.sys () DRV - (smserial) -- C:\Windows\System32\drivers\smserial.sys (Motorola Inc.) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=ASUS&bmod=ASUS IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com/ig/redirectdomain?brand=ASUS&bmod=ASUS IE - HKLM\..\URLSearchHook: - Reg Error: Key error. File not found IE - HKLM\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ) IE - HKLM\..\URLSearchHook: {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - C:\Program Files\softonic-de3\tbsoft.dll (Conduit Ltd.) IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus.msn.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://google.de/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1 IE - HKCU\..\URLSearchHook: - Reg Error: Key error. File not found IE - HKCU\..\URLSearchHook: {472734EA-242A-422b-ADF8-83D1E48CC825} - C:\Program Files\PC Tools Security\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.) IE - HKCU\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ) IE - HKCU\..\URLSearchHook: {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - C:\Program Files\softonic-de3\tbsoft.dll (Conduit Ltd.) IE - HKCU\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local> ========== FireFox ========== FF - prefs.js..browser.search.defaultenginename: "ICQ Search" FF - prefs.js..browser.search.selectedEngine: "ICQ Search" FF - prefs.js..browser.search.suggest.enabled: false FF - prefs.js..browser.search.update: false FF - prefs.js..browser.startup.homepage: "hxxp://www.google.de/" FF - prefs.js..extensions.enabledItems: {AB2CE124-6272-4b12-94A9-7303C7397BD1}:5.0.0.6906 FF - prefs.js..extensions.enabledItems: {cc05a3e3-64c3-4af2-bfc1-af0d66b69065}:2.7.1.3 FF - prefs.js..extensions.enabledItems: {800b5000-a755-47e1-992b-48a1c1357f07}:1.1.7 FF - prefs.js..extensions.enabledItems: {35379F86-8CCB-4724-AE33-4278DE266C70}:1.0.5 FF - prefs.js..extensions.enabledItems: {cb84136f-9c44-433a-9048-c5cd9df1dc16}:3.0.0.300 FF - prefs.js..keyword.URL: "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.1.9&q=" FF - prefs.js..network.proxy.ftp: "proxy.hofmann.stw.uni-erlangen.de" FF - prefs.js..network.proxy.ftp_port: 8080 FF - prefs.js..network.proxy.gopher: "proxy.hofmann.stw.uni-erlangen.de" FF - prefs.js..network.proxy.gopher_port: 8080 FF - prefs.js..network.proxy.http: "proxy.hofmann.stw.uni-erlangen.de" FF - prefs.js..network.proxy.http_port: 8080 FF - prefs.js..network.proxy.no_proxies_on: "" FF - prefs.js..network.proxy.socks: "proxy.hofmann.stw.uni-erlangen.de" FF - prefs.js..network.proxy.socks_port: 1080 FF - prefs.js..network.proxy.ssl: "proxy.hofmann.stw.uni-erlangen.de" FF - prefs.js..network.proxy.ssl_port: 8080 FF - prefs.js..network.proxy.type: 4 FF - HKLM\software\mozilla\Firefox\Extensions\\{cb84136f-9c44-433a-9048-c5cd9df1dc16}: C:\Program Files\PC Tools Security\BDT\Firefox\ [2011.02.12 11:04:34 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.03.22 14:56:39 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.03.26 18:58:40 | 000,000,000 | ---D | M] [2010.03.21 20:10:39 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Fatih\AppData\Roaming\mozilla\Extensions [2011.04.02 18:43:06 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Fatih\AppData\Roaming\mozilla\Firefox\Profiles\n3n3q5b7.default\extensions [2011.04.02 13:02:36 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Users\Fatih\AppData\Roaming\mozilla\Firefox\Profiles\n3n3q5b7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2011.04.02 18:43:06 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\Fatih\AppData\Roaming\mozilla\Firefox\Profiles\n3n3q5b7.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2011.04.02 13:02:39 | 000,000,000 | ---D | M] (softonic-de3 Community Toolbar) -- C:\Users\Fatih\AppData\Roaming\mozilla\Firefox\Profiles\n3n3q5b7.default\extensions\{cc05a3e3-64c3-4af2-bfc1-af0d66b69065} [2010.05.27 23:55:41 | 000,000,000 | ---D | M] ("DAEMON Tools Toolbar") -- C:\Users\Fatih\AppData\Roaming\mozilla\Firefox\Profiles\n3n3q5b7.default\extensions\DTToolbar@toolbarnet.com [2011.04.02 13:02:22 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Users\Fatih\AppData\Roaming\mozilla\Firefox\Profiles\n3n3q5b7.default\extensions\engine@conduit.com [2010.06.30 16:06:56 | 000,000,000 | ---D | M] (Ask Toolbar) -- C:\Users\Fatih\AppData\Roaming\mozilla\Firefox\Profiles\n3n3q5b7.default\extensions\toolbar@ask.com [2010.03.22 22:27:22 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Fatih\AppData\Roaming\mozilla\Firefox\Profiles(85)\p4jwr0q8.default\extensions [2010.03.21 20:14:22 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Fatih\AppData\Roaming\mozilla\Firefox\Profiles(85)\p4jwr0q8.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010.05.27 23:55:34 | 000,002,059 | ---- | M] () -- C:\Users\Fatih\AppData\Roaming\Mozilla\Firefox\Profiles\n3n3q5b7.default\searchplugins\daemon-search.xml [2010.10.29 07:12:49 | 000,000,950 | ---- | M] () -- C:\Users\Fatih\AppData\Roaming\Mozilla\Firefox\Profiles\n3n3q5b7.default\searchplugins\icqplugin-1.xml [2011.03.03 14:19:47 | 000,000,950 | ---- | M] () -- C:\Users\Fatih\AppData\Roaming\Mozilla\Firefox\Profiles\n3n3q5b7.default\searchplugins\icqplugin-2.xml [2011.03.05 09:56:18 | 000,000,950 | ---- | M] () -- C:\Users\Fatih\AppData\Roaming\Mozilla\Firefox\Profiles\n3n3q5b7.default\searchplugins\icqplugin-3.xml [2011.03.05 12:06:01 | 000,000,950 | ---- | M] () -- C:\Users\Fatih\AppData\Roaming\Mozilla\Firefox\Profiles\n3n3q5b7.default\searchplugins\icqplugin-4.xml [2011.04.02 15:16:46 | 000,000,950 | ---- | M] () -- C:\Users\Fatih\AppData\Roaming\Mozilla\Firefox\Profiles\n3n3q5b7.default\searchplugins\icqplugin-5.xml [2011.04.02 17:00:51 | 000,000,950 | ---- | M] () -- C:\Users\Fatih\AppData\Roaming\Mozilla\Firefox\Profiles\n3n3q5b7.default\searchplugins\icqplugin-6.xml [2011.02.20 12:21:20 | 000,000,168 | ---- | M] () -- C:\Users\Fatih\AppData\Roaming\Mozilla\Firefox\Profiles\n3n3q5b7.default\searchplugins\icqplugin.gif [2011.02.20 12:21:20 | 000,000,618 | ---- | M] () -- C:\Users\Fatih\AppData\Roaming\Mozilla\Firefox\Profiles\n3n3q5b7.default\searchplugins\icqplugin.src [2010.06.21 16:35:24 | 000,001,042 | ---- | M] () -- C:\Users\Fatih\AppData\Roaming\Mozilla\Firefox\Profiles\n3n3q5b7.default\searchplugins\icqplugin.xml [2011.03.22 14:56:39 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\extensions [2010.12.19 19:54:53 | 000,000,000 | ---D | M] (Skype extension) -- C:\Program Files\mozilla firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1} File not found (No name found) -- [2011.04.02 17:00:07 | 000,000,000 | ---D | M] (OneClick YouTube Downloader) -- C:\PROGRAM FILES\ORBITDOWNLOADER\ADDONS\ONECLICKYOUTUBEDOWNLOADER [2009.11.08 14:38:23 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION [2011.03.18 19:56:37 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2010.01.01 10:00:00 | 000,001,392 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazondotcom-de.xml [2010.01.01 10:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml [2010.01.01 10:00:00 | 000,001,153 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-de.xml [2010.01.01 10:00:00 | 000,006,805 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\leo_ende_de.xml [2010.01.01 10:00:00 | 000,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-de.xml [2010.01.01 10:00:00 | 000,001,105 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-de.xml O1 HOSTS File: ([2009.11.09 00:01:51 | 000,350,680 | R--- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O1 - Hosts: 127.0.0.1 www.007guard.com O1 - Hosts: 127.0.0.1 007guard.com O1 - Hosts: 127.0.0.1 008i.com O1 - Hosts: 127.0.0.1 www.008k.com O1 - Hosts: 127.0.0.1 008k.com O1 - Hosts: 127.0.0.1 www.00hq.com O1 - Hosts: 127.0.0.1 00hq.com O1 - Hosts: 127.0.0.1 010402.com O1 - Hosts: 127.0.0.1 www.032439.com O1 - Hosts: 127.0.0.1 032439.com O1 - Hosts: 127.0.0.1 www.0scan.com O1 - Hosts: 127.0.0.1 0scan.com O1 - Hosts: 127.0.0.1 www.1000gratisproben.com O1 - Hosts: 127.0.0.1 1000gratisproben.com O1 - Hosts: 127.0.0.1 www.1001namen.com O1 - Hosts: 127.0.0.1 1001namen.com O1 - Hosts: 127.0.0.1 100888290cs.com O1 - Hosts: 127.0.0.1 www.100888290cs.com O1 - Hosts: 127.0.0.1 100sexlinks.com O1 - Hosts: 127.0.0.1 www.100sexlinks.com O1 - Hosts: 127.0.0.1 10sek.com O1 - Hosts: 127.0.0.1 www.10sek.com O1 - Hosts: 127.0.0.1 www.1-2005-search.com O1 - Hosts: 12023 more lines... O2 - BHO: (Octh Class) - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files\Orbitdownloader\orbitcth.dll (Orbitdownloader.com) O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found. O2 - BHO: (PC Tools Browser Guard BHO) - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program Files\PC Tools Security\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.) O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll (Safer Networking Limited) O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found. O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL (Microsoft Corporation) O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (softonic-de3 Toolbar) - {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - C:\Program Files\softonic-de3\tbsoft.dll (Conduit Ltd.) O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll () O3 - HKLM\..\Toolbar: (PC Tools Browser Guard) - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\PC Tools Security\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.) O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ) O3 - HKLM\..\Toolbar: (Grab Pro) - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files\Orbitdownloader\GrabPro.dll () O3 - HKLM\..\Toolbar: (softonic-de3 Toolbar) - {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - C:\Program Files\softonic-de3\tbsoft.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll () O3 - HKCU\..\Toolbar\WebBrowser: (PC Tools Browser Guard) - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\PC Tools Security\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.) O3 - HKCU\..\Toolbar\WebBrowser: (Grab Pro) - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files\Orbitdownloader\GrabPro.dll () O3 - HKCU\..\Toolbar\WebBrowser: (softonic-de3 Toolbar) - {CC05A3E3-64C3-4AF2-BFC1-AF0D66B69065} - C:\Program Files\softonic-de3\tbsoft.dll (Conduit Ltd.) O3 - HKCU\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O4 - HKLM..\Run: [Malwarebytes' Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation) O4 - HKCU..\Run: [PlayNC Launcher] File not found O4 - HKCU..\RunOnce: [SPReview] C:\Windows\System32\SPReview\SPReview.exe (Microsoft Corporation) O8 - Extra context menu item: &Download by Orbit - C:\Program Files\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com) O8 - Extra context menu item: &Grab video by Orbit - C:\Program Files\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com) O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr (Google Inc.) O8 - Extra context menu item: Do&wnload selected by Orbit - C:\Program Files\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com) O8 - Extra context menu item: Down&load all by Orbit - C:\Program Files\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com) O9 - Extra Button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe (ICQ, LLC.) O9 - Extra 'Tools' menuitem : ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe (ICQ, LLC.) O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll (Safer Networking Limited) O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - Reg Error: Value error. File not found O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - Reg Error: Value error. File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.) O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.) O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.) O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.) O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.) O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.) O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.) O13 - gopher Prefix: missing O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} hxxp://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab (Checkers Class) O16 - DPF: {4A85DBE0-BFB2-4119-8401-186A7C6EB653} hxxp://messenger.zone.msn.com/MessengerGamesContent/GameContent/de/mjss/MJSS.cab109791.cab () O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} hxxp://messenger.zone.msn.com/MessengerGamesContent/GameContent/Default/uno1/GAME_UNO1.cab (UnoCtrl Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class) O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (get_atlcom Class) O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} hxxp://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab (Minesweeper Flags Class) O16 - DPF: 55963676-2F5E-4BAF-AC28-CF26AA587566 vpnweb.cab (Reg Error: Key error.) O16 - DPF: CabBuilder hxxp://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 131.188.24.34 131.188.0.10 131.188.0.11 O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL (Microsoft Corporation) O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation) O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O24 - Desktop WallPaper: C:\Users\Sarah\AppData\Roaming\Mozilla\Firefox\Desktop-Hintergrund.bmp O24 - Desktop BackupWallPaper: C:\Users\Fatih\AppData\Roaming\Mozilla\Firefox\Desktop-Hintergrund.bmp O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL (Microsoft Corporation) O29 - HKLM SecurityProviders - (credssp.dll) - credssp.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2006.09.18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O33 - MountPoints2\{330bfa9a-eca4-11de-8b3f-90e6ba3b6e5b}\Shell - "" = AutoRun O33 - MountPoints2\{330bfa9a-eca4-11de-8b3f-90e6ba3b6e5b}\Shell\AutoRun\command - "" = F:\autorun.exe O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* ========== Files/Folders - Created Within 30 Days ========== [2011.04.08 11:35:44 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Users\Fatih\Desktop\OTL.exe [2011.04.07 20:10:04 | 005,514,668 | ---- | C] (LIGHTNING UK!) -- C:\Users\Fatih\Desktop\SetupImgBurn_2.5.5.0.exe [2011.04.06 14:04:04 | 000,000,000 | ---D | C] -- C:\bb587e879a5226a37f64d1ae [2011.04.06 14:02:02 | 000,837,224 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvgenco32hda.dll [2011.04.06 14:02:02 | 000,122,984 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvhda32v.sys [2011.04.06 14:02:02 | 000,026,216 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvhdap32.dll [2011.04.06 13:58:25 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation [2011.04.06 13:57:16 | 015,047,272 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvoglv32.dll [2011.04.06 13:57:16 | 013,011,560 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcompiler.dll [2011.04.06 13:57:16 | 010,467,656 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvlddmkm.sys [2011.04.06 13:57:16 | 010,078,312 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvd3dum.dll [2011.04.06 13:57:16 | 005,653,096 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvwgf2um.dll [2011.04.06 13:57:16 | 004,941,928 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuda.dll [2011.04.06 13:57:16 | 002,895,976 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvid.dll [2011.04.06 13:57:16 | 002,251,368 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvenc.dll [2011.04.06 13:57:16 | 001,965,672 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvapi.dll [2011.04.06 13:57:16 | 000,941,160 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvdispco322090.dll [2011.04.06 13:57:16 | 000,837,736 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvgenco322040.dll [2011.04.06 13:57:16 | 000,057,960 | ---- | C] (Khronos Group) -- C:\Windows\System32\OpenCL.dll [2011.04.06 13:57:16 | 000,010,920 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvBridge.kmd [2011.04.06 13:56:49 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation [2011.04.06 13:56:23 | 000,000,000 | ---D | C] -- C:\NVIDIA [2011.04.06 13:55:43 | 139,333,896 | ---- | C] (NVIDIA Corporation) -- C:\Users\Fatih\Desktop\266.58_notebook_winvista_win7_32bit_international_whql.exe [2011.04.06 13:53:31 | 001,039,048 | ---- | C] (PC Drivers HeadQuarters ) -- C:\Users\Fatih\Desktop\driver_detective_EPU.exe [2011.04.06 00:20:49 | 000,000,000 | ---D | C] -- C:\Windows\Sun [2011.04.05 23:22:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\SPReview [2011.04.05 23:01:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\EventProviders [2011.04.05 17:24:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Western Digital Corporation [2011.04.05 17:24:22 | 000,000,000 | ---D | C] -- C:\Program Files\Western Digital Corporation [2011.04.05 17:23:56 | 000,000,000 | ---D | C] -- C:\Users\Fatih\Desktop\WinDlg_122 [2011.04.05 13:03:20 | 498,580,680 | ---- | C] (Microsoft Corporation) -- C:\Users\Fatih\Desktop\Windows6.0-KB948465-X86.exe [2011.04.03 18:12:52 | 000,000,000 | ---D | C] -- C:\Users\Fatih\Desktop\paint [2011.04.02 17:00:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Orbit [2011.03.26 19:28:25 | 000,000,000 | ---D | C] -- C:\Users\Fatih\Desktop\textdokumente [2011.03.26 19:20:49 | 000,000,000 | ---D | C] -- C:\Users\Fatih\Desktop\dsk_09_02_2011 [2011.03.26 18:44:50 | 000,000,000 | ---D | C] -- C:\Users\Fatih\Desktop\dsk klausuren formel [2011.03.22 12:19:42 | 000,000,000 | ---D | C] -- C:\Users\Fatih\Desktop\fard [2011.03.14 23:06:04 | 000,000,000 | ---D | C] -- C:\Users\Fatih\Desktop\groove2 [2008.11.03 09:03:27 | 000,013,880 | ---- | C] ( ) -- C:\Windows\System32\drivers\kbfiltr.sys [2008.08.12 06:45:20 | 000,155,648 | ---- | C] (ASUS) -- C:\Program Files\Common Files\MSIactionall.dll ========== Files - Modified Within 30 Days ========== [2011.04.08 11:35:44 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\Fatih\Desktop\OTL.exe [2011.04.08 10:46:49 | 000,669,960 | ---- | M] () -- C:\Windows\System32\perfh007.dat [2011.04.08 10:46:49 | 000,631,026 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2011.04.08 10:46:49 | 000,143,498 | ---- | M] () -- C:\Windows\System32\perfc007.dat [2011.04.08 10:46:49 | 000,117,652 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2011.04.08 10:41:57 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011.04.08 10:41:47 | 268,435,456 | -HS- | M] () -- C:\Windows\System32\temppf.sys [2011.04.07 22:46:02 | 000,008,484 | ---- | M] () -- C:\Users\Fatih\AppData\Local\d3d9caps.dat [2011.04.07 20:11:56 | 005,514,668 | ---- | M] (LIGHTNING UK!) -- C:\Users\Fatih\Desktop\SetupImgBurn_2.5.5.0.exe [2011.04.07 19:54:27 | 000,653,750 | ---- | M] () -- C:\Users\Fatih\Desktop\TM_3.pdf [2011.04.07 10:21:15 | 000,045,056 | ---- | M] () -- C:\Windows\System32\acovcnt.exe [2011.04.07 09:40:55 | 000,001,118 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-185602744-2463074575-3719456933-1000UA.job [2011.04.06 17:03:44 | 000,078,652 | ---- | M] () -- C:\Users\Fatih\Desktop\seite2antrag.jpg [2011.04.06 17:03:22 | 000,001,215 | ---- | M] () -- C:\Users\Fatih\Desktop\antrag.pl.htm [2011.04.06 14:17:27 | 000,000,774 | ---- | M] () -- C:\Users\Fatih\Desktop\RegCleaner.lnk [2011.04.06 14:06:54 | 002,059,694 | ---- | M] () -- C:\Windows\System32\drivers\Cat.DB [2011.04.06 13:56:10 | 139,333,896 | ---- | M] (NVIDIA Corporation) -- C:\Users\Fatih\Desktop\266.58_notebook_winvista_win7_32bit_international_whql.exe [2011.04.06 13:53:30 | 001,039,048 | ---- | M] (PC Drivers HeadQuarters ) -- C:\Users\Fatih\Desktop\driver_detective_EPU.exe [2011.04.06 12:09:41 | 000,048,639 | ---- | M] () -- C:\ProgramData\nvModes.dat [2011.04.06 12:09:41 | 000,048,639 | ---- | M] () -- C:\ProgramData\nvModes.001 [2011.04.06 12:06:32 | 017,815,040 | ---- | M] () -- C:\Users\Fatih\Desktop\dbg_x86_6.11.1.404.msi [2011.04.06 11:54:39 | 000,107,631 | ---- | M] () -- C:\Users\Fatih\Desktop\Zusammenfassung Kreuzprodukt.pdf [2011.04.06 11:54:26 | 000,069,293 | ---- | M] () -- C:\Users\Fatih\Desktop\Unterlagen zum Stos starrer Korper.pdf [2011.04.05 17:24:22 | 000,001,096 | ---- | M] () -- C:\Users\Public\Desktop\Data Lifeguard Diagnostic for Windows.lnk [2011.04.05 17:10:55 | 000,054,016 | ---- | M] () -- C:\Windows\System32\drivers\gwyiypt.sys [2011.04.05 13:06:48 | 498,580,680 | ---- | M] (Microsoft Corporation) -- C:\Users\Fatih\Desktop\Windows6.0-KB948465-X86.exe [2011.04.05 02:09:56 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 [2011.04.05 02:09:56 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 [2011.04.05 00:11:55 | 000,051,783 | ---- | M] () -- C:\Users\Fatih\Desktop\traffic.jpg [2011.04.04 19:39:00 | 000,001,066 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-185602744-2463074575-3719456933-1000Core.job [2011.04.03 23:08:09 | 003,341,314 | ---- | M] () -- C:\Users\Fatih\Desktop\stream(24).mp3 [2011.04.03 23:06:20 | 006,027,685 | ---- | M] () -- C:\Users\Fatih\Desktop\stream(23).mp3 [2011.04.03 23:05:37 | 005,801,411 | ---- | M] () -- C:\Users\Fatih\Desktop\stream(22).mp3 [2011.04.03 23:02:54 | 004,193,665 | ---- | M] () -- C:\Users\Fatih\Desktop\kursuna gerek yok.mp3 [2011.04.03 23:02:06 | 004,589,568 | ---- | M] () -- C:\Users\Fatih\Desktop\stream(20).mp3 [2011.04.03 23:01:00 | 006,844,065 | ---- | M] () -- C:\Users\Fatih\Desktop\dogus.mp3 [2011.04.03 14:30:28 | 012,568,889 | ---- | M] () -- C:\Users\Fatih\Desktop\kapitel 3 nur.pdf [2011.04.03 14:29:50 | 006,601,562 | ---- | M] () -- C:\Users\Fatih\Desktop\kinematik.pdf [2011.04.03 14:20:38 | 000,942,985 | ---- | M] () -- C:\Users\Fatih\Desktop\dynamik.pdf [2011.03.26 18:49:52 | 014,403,771 | ---- | M] () -- C:\Users\Fatih\Desktop\DSK_Uebungen_WS10-11.pdf [2011.03.26 18:49:36 | 018,167,138 | ---- | M] () -- C:\Users\Fatih\Desktop\TM3-Uebungen-Loesungen.pdf [2011.03.26 18:44:28 | 000,227,109 | ---- | M] () -- C:\Users\Fatih\Desktop\tm3_ws0405.pdf [2011.03.26 18:44:22 | 000,356,305 | ---- | M] () -- C:\Users\Fatih\Desktop\tm3_ss04.pdf [2011.03.26 18:44:17 | 000,289,997 | ---- | M] () -- C:\Users\Fatih\Desktop\tm3_ws0304.pdf [2011.03.26 18:44:05 | 000,411,509 | ---- | M] () -- C:\Users\Fatih\Desktop\tm3_ss03.pdf [2011.03.26 18:43:54 | 003,067,176 | ---- | M] () -- C:\Users\Fatih\Desktop\tm3_94-03.pdf [2011.03.26 18:35:36 | 000,097,383 | ---- | M] () -- C:\Users\Fatih\Desktop\Ubung 13 - Beispielklausur.pdf [2011.03.26 18:33:18 | 000,067,230 | ---- | M] () -- C:\Users\Fatih\Desktop\Musterlosung Tutoriumsaufgaben 01a02.pdf [2011.03.19 11:14:47 | 000,137,656 | ---- | M] (Avira GmbH) -- C:\Windows\System32\drivers\avipbb.sys [2011.03.15 01:18:34 | 000,004,522 | ---- | M] () -- C:\Users\Fatih\.recently-used.xbel [2011.03.13 04:00:09 | 000,000,332 | ---- | M] () -- C:\Windows\tasks\RegInOut Scheduled Scan - Fatih.job ========== Files Created - No Company Name ========== [2011.04.07 19:54:27 | 000,653,750 | ---- | C] () -- C:\Users\Fatih\Desktop\TM_3.pdf [2011.04.06 17:03:44 | 000,078,652 | ---- | C] () -- C:\Users\Fatih\Desktop\seite2antrag.jpg [2011.04.06 17:03:21 | 000,001,215 | ---- | C] () -- C:\Users\Fatih\Desktop\antrag.pl.htm [2011.04.06 14:17:27 | 000,000,774 | ---- | C] () -- C:\Users\Fatih\Desktop\RegCleaner.lnk [2011.04.06 13:57:16 | 000,004,756 | ---- | C] () -- C:\Windows\System32\nvinfo.pb [2011.04.06 12:05:38 | 017,815,040 | ---- | C] () -- C:\Users\Fatih\Desktop\dbg_x86_6.11.1.404.msi [2011.04.06 11:54:41 | 000,107,631 | ---- | C] () -- C:\Users\Fatih\Desktop\Zusammenfassung Kreuzprodukt.pdf [2011.04.06 11:54:29 | 000,069,293 | ---- | C] () -- C:\Users\Fatih\Desktop\Unterlagen zum Stos starrer Korper.pdf [2011.04.05 17:24:22 | 000,001,096 | ---- | C] () -- C:\Users\Public\Desktop\Data Lifeguard Diagnostic for Windows.lnk [2011.04.05 17:10:55 | 000,054,016 | ---- | C] () -- C:\Windows\System32\drivers\gwyiypt.sys [2011.04.05 11:12:01 | 268,435,456 | -HS- | C] () -- C:\Windows\System32\temppf.sys [2011.04.05 00:11:55 | 000,051,783 | ---- | C] () -- C:\Users\Fatih\Desktop\traffic.jpg [2011.04.03 23:08:06 | 003,341,314 | ---- | C] () -- C:\Users\Fatih\Desktop\stream(24).mp3 [2011.04.03 23:06:06 | 006,027,685 | ---- | C] () -- C:\Users\Fatih\Desktop\stream(23).mp3 [2011.04.03 23:05:00 | 005,801,411 | ---- | C] () -- C:\Users\Fatih\Desktop\stream(22).mp3 [2011.04.03 23:02:40 | 004,193,665 | ---- | C] () -- C:\Users\Fatih\Desktop\kursuna gerek yok.mp3 [2011.04.03 23:02:11 | 004,589,568 | ---- | C] () -- C:\Users\Fatih\Desktop\stream(20).mp3 [2011.04.03 23:00:49 | 006,844,065 | ---- | C] () -- C:\Users\Fatih\Desktop\dogus.mp3 [2011.04.03 14:30:15 | 012,568,889 | ---- | C] () -- C:\Users\Fatih\Desktop\kapitel 3 nur.pdf [2011.04.03 14:29:46 | 006,601,562 | ---- | C] () -- C:\Users\Fatih\Desktop\kinematik.pdf [2011.04.03 14:20:38 | 000,942,985 | ---- | C] () -- C:\Users\Fatih\Desktop\dynamik.pdf [2011.03.26 19:20:49 | 000,187,727 | ---- | C] () -- C:\Users\Fatih\Desktop\2006-10.pdf [2011.03.26 19:20:49 | 000,135,973 | ---- | C] () -- C:\Users\Fatih\Desktop\2007-10.pdf [2011.03.26 18:49:41 | 014,403,771 | ---- | C] () -- C:\Users\Fatih\Desktop\DSK_Uebungen_WS10-11.pdf [2011.03.26 18:49:22 | 018,167,138 | ---- | C] () -- C:\Users\Fatih\Desktop\TM3-Uebungen-Loesungen.pdf [2011.03.26 18:44:28 | 000,227,109 | ---- | C] () -- C:\Users\Fatih\Desktop\tm3_ws0405.pdf [2011.03.26 18:44:22 | 000,356,305 | ---- | C] () -- C:\Users\Fatih\Desktop\tm3_ss04.pdf [2011.03.26 18:44:17 | 000,289,997 | ---- | C] () -- C:\Users\Fatih\Desktop\tm3_ws0304.pdf [2011.03.26 18:44:05 | 000,411,509 | ---- | C] () -- C:\Users\Fatih\Desktop\tm3_ss03.pdf [2011.03.26 18:43:54 | 003,067,176 | ---- | C] () -- C:\Users\Fatih\Desktop\tm3_94-03.pdf [2011.03.26 18:35:38 | 000,097,383 | ---- | C] () -- C:\Users\Fatih\Desktop\Ubung 13 - Beispielklausur.pdf [2011.03.26 18:33:17 | 000,067,230 | ---- | C] () -- C:\Users\Fatih\Desktop\Musterlosung Tutoriumsaufgaben 01a02.pdf [2011.03.22 14:56:43 | 000,000,865 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk [2011.03.15 01:18:34 | 000,004,522 | ---- | C] () -- C:\Users\Fatih\.recently-used.xbel [2011.02.12 11:04:23 | 000,767,952 | ---- | C] () -- C:\Windows\BDTSupport.dll [2010.12.22 15:27:17 | 000,116,224 | ---- | C] () -- C:\Windows\System32\pdfcmnnt.dll [2010.12.04 20:27:44 | 000,179,098 | ---- | C] () -- C:\Windows\hpoins27.dat.temp [2010.12.04 20:27:44 | 000,000,932 | ---- | C] () -- C:\Windows\hpomdl27.dat.temp [2010.08.09 22:02:41 | 000,000,530 | ---- | C] () -- C:\Windows\eReg.dat [2010.06.28 21:20:12 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat [2010.06.28 20:22:08 | 000,027,043 | ---- | C] () -- C:\Users\Fatih\AppData\Roaming\UserTile.png [2010.01.10 19:13:37 | 000,008,484 | ---- | C] () -- C:\Users\Fatih\AppData\Local\d3d9caps.dat [2009.12.20 15:37:32 | 000,055,308 | ---- | C] () -- C:\Windows\War3Unin.dat [2009.11.17 20:40:21 | 000,179,098 | ---- | C] () -- C:\Windows\hpoins27.dat [2009.11.10 13:43:36 | 000,000,306 | RHS- | C] () -- C:\ProgramData\ntuser.pol [2009.10.04 19:53:08 | 000,045,056 | ---- | C] () -- C:\Windows\System32\acovcnt.exe [2009.10.04 17:10:51 | 000,006,144 | ---- | C] () -- C:\Users\Fatih\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009.09.14 02:51:39 | 000,053,248 | ---- | C] () -- C:\Windows\System32\LogonStart.dll [2009.09.14 02:43:40 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\SamSfPa.dat [2009.09.14 02:41:56 | 000,048,639 | ---- | C] () -- C:\ProgramData\nvModes.001 [2009.09.14 02:41:48 | 000,048,639 | ---- | C] () -- C:\ProgramData\nvModes.dat [2009.09.14 02:05:50 | 000,106,605 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin [2009.09.14 02:05:50 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin [2009.04.08 19:31:56 | 000,106,496 | ---- | C] () -- C:\Program Files\Common Files\CPInstallAction.dll [2008.12.02 03:32:32 | 000,362,029 | ---- | C] () -- C:\Windows\System32\sqlite3.dll [2008.08.11 04:14:11 | 001,752,704 | ---- | C] () -- C:\Windows\System32\drivers\snp2uvc.sys [2008.05.22 17:35:54 | 000,051,962 | ---- | C] () -- C:\Program Files\Common Files\banner.jpg [2008.05.12 05:20:31 | 000,028,672 | ---- | C] () -- C:\Windows\System32\drivers\sncduvc.sys [2008.04.16 13:11:34 | 000,669,960 | ---- | C] () -- C:\Windows\System32\perfh007.dat [2008.04.16 13:11:34 | 000,290,748 | ---- | C] () -- C:\Windows\System32\perfi007.dat [2008.04.16 13:11:34 | 000,143,498 | ---- | C] () -- C:\Windows\System32\perfc007.dat [2008.04.16 13:11:34 | 000,036,916 | ---- | C] () -- C:\Windows\System32\perfd007.dat [2008.04.16 12:43:39 | 000,000,010 | ---- | C] () -- C:\Windows\System32\ABLKSR.ini [2008.01.21 04:25:01 | 000,589,824 | ---- | C] () -- C:\Windows\System32\jayy68xi.dll [2008.01.18 01:56:22 | 000,000,932 | ---- | C] () -- C:\Windows\hpomdl27.dat [2007.10.14 06:58:32 | 000,147,538 | ---- | C] () -- C:\Windows\hpqins11.dat [2006.11.02 14:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat [2006.11.02 14:47:37 | 000,380,976 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT [2006.11.02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll [2006.11.02 12:33:01 | 000,631,026 | ---- | C] () -- C:\Windows\System32\perfh009.dat [2006.11.02 12:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat [2006.11.02 12:33:01 | 000,117,652 | ---- | C] () -- C:\Windows\System32\perfc009.dat [2006.11.02 12:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat [2006.11.02 12:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat [2006.11.02 10:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin [2006.11.02 10:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT [2006.11.02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini [2006.11.02 09:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat ========== Alternate Data Streams ========== @Alternate Data Stream - 97 bytes -> C:\ProgramData\Temp:CE2C623F @Alternate Data Stream - 127 bytes -> C:\ProgramData\Temp:430C6D84 < End of report > |
![]() |
Themen zu Windows Vista Blue Screen |
abend, abgesicherte, abgesicherten, abgesicherten modus, blue, blue screen, dringend, error, forum, fängt, gestern, heute, konnte, laptop, modus, rebootet, screen, stürzt, verschwindet, versuch, versucht, vista, windows, windows vista |