| 
 Hallo, 
danke für die schnelle Antwort. 
Ergebniss Otl.txtOTL Logfile:   Code: 
 OTL logfile created on: 12.02.2012 17:56:21 - Run 1OTL by OldTimer - Version 3.2.31.0     Folder = C:\Users\Steve\Desktop
 Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
 Internet Explorer (Version = 7.0.6001.18000)
 Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
 3,00 Gb Total Physical Memory | 2,56 Gb Available Physical Memory | 85,35% Memory free
 6,19 Gb Paging File | 5,94 Gb Available in Paging File | 95,86% Paging File free
 Paging file location(s): ?:\pagefile.sys [binary data]
 
 %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
 Drive C: | 287,03 Gb Total Space | 168,10 Gb Free Space | 58,56% Space Free | Partition Type: NTFS
 Drive D: | 11,06 Gb Total Space | 1,78 Gb Free Space | 16,08% Space Free | Partition Type: NTFS
 
 Computer Name: STEVE-PC | User Name: Steve | Logged in as Administrator.
 Boot Mode: SafeMode with Networking | Scan Mode: Current user
 Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
 ========== Processes (SafeList) ==========
 
 PRC - [2012.02.12 17:53:27 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Steve\Desktop\24960-OTL.exe
 PRC - [2009.02.26 17:33:57 | 002,927,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
 
 
 ========== Modules (No Company Name) ==========
 
 
 ========== Win32 Services (SafeList) ==========
 
 SRV - File not found [Auto | Stopped] --  -- (Norton Internet Security)
 SRV - [2011.12.09 12:40:05 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Stopped] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
 SRV - [2011.12.09 12:39:54 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Stopped] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
 SRV - [2011.08.17 11:04:36 | 000,247,872 | ---- | M] () [Auto | Stopped] -- C:\Program Files\ICQ6Toolbar\ICQ Service.exe -- (ICQ Service)
 SRV - [2009.01.13 16:18:40 | 000,077,824 | ---- | M] (Andrea Electronics Corporation) [Auto | Stopped] -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_c92065b9\AEstSrv.exe -- (AESTFilters)
 SRV - [2009.01.08 12:07:56 | 000,237,661 | ---- | M] (IDT, Inc.) [Auto | Stopped] -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_c92065b9\stacsv.exe -- (STacSV)
 SRV - [2008.12.17 16:11:40 | 000,365,952 | ---- | M] () [Auto | Stopped] -- C:\Program Files\SMINST\BLService.exe -- (Recovery Service for Windows)
 SRV - [2008.11.26 17:13:08 | 000,296,320 | ---- | M] () [Auto | Stopped] -- C:\Program Files\Hewlett-Packard\Media\TV\Kernel\TV\TVCapSvc.exe -- (TVCapSvc) TV Background Capture Service (TVBCS)
 SRV - [2008.11.26 17:13:08 | 000,116,096 | ---- | M] () [Auto | Stopped] -- C:\Program Files\Hewlett-Packard\Media\TV\Kernel\TV\TVSched.exe -- (TVSched) TV Task Scheduler (TVTS)
 SRV - [2008.02.03 12:00:00 | 000,129,992 | ---- | M] (EasyBits Sofware AS) [Auto | Stopped] -- C:\Windows\System32\ezsvc7.dll -- (ezSharedSvc)
 SRV - [2008.01.21 03:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
 
 
 ========== Driver Services (SafeList) ==========
 
 DRV - [2011.12.09 12:40:20 | 000,134,856 | ---- | M] (Avira GmbH) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\avipbb.sys -- (avipbb)
 DRV - [2011.12.09 12:40:20 | 000,074,640 | ---- | M] (Avira GmbH) [File_System | Auto | Stopped] -- C:\Windows\System32\drivers\avgntflt.sys -- (avgntflt)
 DRV - [2011.12.09 12:40:20 | 000,036,000 | ---- | M] (Avira GmbH) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\avkmgr.sys -- (avkmgr)
 DRV - [2010.06.17 14:14:27 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\ssmdrv.sys -- (ssmdrv)
 DRV - [2009.01.22 02:00:24 | 004,257,280 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\atikmdag.sys -- (atikmdag)
 DRV - [2009.01.20 15:49:26 | 000,142,848 | ---- | M] (Realtek Corporation                                            ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rtlh86.sys -- (RTL8169)
 DRV - [2009.01.08 12:07:56 | 000,391,168 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\stwrt.sys -- (STHDA)
 DRV - [2008.12.20 00:01:46 | 001,093,120 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athr.sys -- (athr)
 DRV - [2008.12.05 12:06:06 | 000,109,408 | ---- | M] (JMicron Technology Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\jmcr.sys -- (JMCR)
 DRV - [2008.11.28 18:04:24 | 000,087,536 | ---- | M] (CyberLink Corp.) [2010/12/13 19:01:31] [Kernel | Auto | Stopped] -- C:\Program Files\Hewlett-Packard\Media\DVD\000.fcl -- ({55662437-DA8C-40c0-AADA-2C816A897A49})
 DRV - [2008.09.04 18:47:00 | 000,054,784 | ---- | M] (ENE TECHNOLOGY INC.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\enecir.sys -- (enecir)
 DRV - [2008.05.28 17:54:20 | 000,022,072 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\usbfilter.sys -- (usbfilter)
 DRV - [2008.04.28 09:26:42 | 000,014,352 | ---- | M] (ATI Technologies Inc.) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\AtiPcie.sys -- (AtiPcie) ATI PCI Express (3GIO)
 DRV - [2008.03.27 12:12:12 | 000,024,424 | ---- | M] (Hewlett-Packard Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\hpdskflt.sys -- (hpdskflt)
 DRV - [2008.03.27 12:11:34 | 000,034,664 | ---- | M] (Hewlett-Packard Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Accelerometer.sys -- (Accelerometer)
 DRV - [2008.01.21 03:23:20 | 002,225,664 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NETw3v32.sys -- (NETw3v32) Intel(R)
 DRV - [2007.06.18 16:12:04 | 000,016,768 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HpqKbFiltr.sys -- (HpqKbFiltr)
 
 
 ========== Standard Registry (SafeList) ==========
 
 
 ========== Internet Explorer ==========
 
 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
 
 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = HP | MSN
 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = ICQ.com Suche
 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
 IE - HKCU\..\URLSearchHook:  - No CLSID value found
 IE - HKCU\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
 
 ========== FireFox ==========
 
 FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
 FF - prefs.js..browser.search.selectedEngine: "ICQ Search"
 FF - prefs.js..browser.startup.homepage: "hxxp://start.icq.com/"
 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
 FF - prefs.js..extensions.enabledItems: antiphishing@bullguard:1.0
 
 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
 FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
 FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:  File not found
 FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
 FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
 FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
 FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Steve\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
 
 FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.12.30 09:51:27 | 000,000,000 | ---D | M]
 FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.12.30 01:26:03 | 000,000,000 | ---D | M]
 
 [2010.12.13 20:46:52 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Steve\AppData\Roaming\mozilla\Extensions
 [2012.01.27 16:59:26 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Steve\AppData\Roaming\mozilla\Firefox\Profiles\svk126ud.default\extensions
 [2010.12.21 16:56:04 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Steve\AppData\Roaming\mozilla\Firefox\Profiles\svk126ud.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
 [2012.01.08 18:53:51 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Users\Steve\AppData\Roaming\mozilla\Firefox\Profiles\svk126ud.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
 [2012.02.07 17:57:47 | 000,001,056 | ---- | M] () -- C:\Users\Steve\AppData\Roaming\Mozilla\Firefox\Profiles\svk126ud.default\searchplugins\icqplugin.xml
 [2011.11.10 19:14:50 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
 [2011.12.30 09:51:26 | 000,121,816 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
 [2010.09.15 04:50:38 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
 [2011.12.09 18:23:32 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\mozilla firefox\plugins\npwachk.dll
 [2011.10.06 18:28:01 | 000,001,392 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazondotcom-de.xml
 [2011.10.06 18:28:01 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
 [2011.10.06 18:28:01 | 000,001,153 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-de.xml
 [2011.10.06 18:28:00 | 000,006,805 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\leo_ende_de.xml
 [2011.10.06 18:28:00 | 000,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-de.xml
 [2011.10.06 18:28:00 | 000,001,105 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-de.xml
 
 O1 HOSTS File: ([2006.09.18 22:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
 O1 - Hosts: 127.0.0.1       localhost
 O1 - Hosts: ::1             localhost
 O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - No CLSID value found.
 O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
 O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
 O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
 O4 - HKLM..\Run: [CLMLServer for HP TouchSmart] C:\Program Files\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe (CyberLink)
 O4 - HKLM..\Run: [DVDAgent] C:\Program Files\Hewlett-Packard\Media\DVD\DVDAgent.exe (CyberLink Corp.)
 O4 - HKLM..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe (Hewlett-Packard)
 O4 - HKLM..\Run: [SmartMenu] C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe (Hewlett-Packard)
 O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
 O4 - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe (IDT, Inc.)
 O4 - HKLM..\Run: [TSMAgent] C:\Program Files\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe (CyberLink Corp.)
 O4 - HKLM..\Run: [TVAgent] C:\Program Files\Hewlett-Packard\Media\TV\TVAgent.exe (CyberLink Corp.)
 O4 - HKLM..\Run: [UCam_Menu] C:\Program Files\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
 O4 - HKLM..\Run: [UpdateLBPShortCut] C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
 O4 - HKLM..\Run: [UpdateP2GoShortCut] C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
 O4 - HKLM..\Run: [UpdatePDIRShortCut] C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
 O4 - HKLM..\Run: [UpdatePSTShortCut] C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
 O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe (Nullsoft, Inc.)
 O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
 O4 - HKCU..\Run: [Facebook Update] C:\Users\Steve\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
 O4 - HKCU..\Run: [ffdwnd] C:\Users\Steve\AppData\Local\Mozilla\Firefox\firefox.exe (3M Touch Systems, Inc.)
 O4 - HKCU..\Run: [fsm]  File not found
 O4 - Startup: C:\Users\Steve\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
 O9 - Extra Button: ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files\ICQ7.7\ICQ.exe (ICQ, LLC.)
 O9 - Extra 'Tools' menuitem : ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files\ICQ7.7\ICQ.exe (ICQ, LLC.)
 O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
 O13 - gopher Prefix: missing
 O15 - HKCU\..Trusted Ranges: Range1 ([http] in Local intranet)
 O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
 O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
 O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{62BF4394-8445-45D6-AE14-A52352C39744}: DhcpNameServer = 192.168.2.1
 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C098FAA7-CB37-4EFB-8924-EC1343E35A58}: DhcpNameServer = 192.168.2.1
 O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\explorer.exe (Microsoft Corporation)
 O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\System32\userinit.exe (Microsoft Corporation)
 O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\BlackGold2.jpg
 O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\BlackGold2.jpg
 O32 - HKLM CDRom: AutoRun - 1
 O32 - AutoRun File - [2006.09.18 22:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
 O34 - HKLM BootExecute: (autocheck autochk *)
 O35 - HKLM\..comfile [open] -- "%1" %*
 O35 - HKLM\..exefile [open] -- "%1" %*
 O37 - HKLM\...com [@ = comfile] -- "%1" %*
 O37 - HKLM\...exe [@ = exefile] -- "%1" %*
 
 ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Java (Sun)
 ActiveX: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "C:\Program Files\Common Files\LightScribe\LSRunOnce.exe"
 ActiveX: {166B1BCA-3F9C-11CF-8075-444553540000} - Macromedia Shockwave Director 10.1
 ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} -
 ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 11.0
 ActiveX: {25FFAAD0-F4A3-4164-95FF-4461E9F35D51} - .NET Framework
 ActiveX: {2A202491-F00D-11cf-87CC-0020AFEECF20} - Macromedia Shockwave Director 10.1
 ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
 ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
 ActiveX: {3C3901C5-3455-3E0A-A214-0B093A5070A6} - .NET Framework
 ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
 ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} -
 ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
 ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
 ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.7
 ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
 ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
 ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
 ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
 ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
 ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
 ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
 ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\system32\ie4uinit.exe -BaseSettings
 ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
 ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
 ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
 ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1
 ActiveX: {D27CDB6E-AE6D-11CF-96B8-444553540000} - Adobe Flash Player
 ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
 ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
 ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\system32\unregmp2.exe /ShowWMP
 ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\system32\ie4uinit.exe -UserIconConfig
 ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
 
 NetSvcs: FastUserSwitchingCompatibility -  File not found
 NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
 NetSvcs: Nla -  File not found
 NetSvcs: Ntmssvc -  File not found
 NetSvcs: NWCWorkstation -  File not found
 NetSvcs: Nwsapagent -  File not found
 NetSvcs: SRService -  File not found
 NetSvcs: WmdmPmSp -  File not found
 NetSvcs: LogonHours -  File not found
 NetSvcs: PCAudit -  File not found
 NetSvcs: helpsvc -  File not found
 NetSvcs: uploadmgr -  File not found
 NetSvcs: ezSharedSvc - C:\Windows\System32\ezsvc7.dll (EasyBits Sofware AS)
 
 
 CREATERESTOREPOINT
 Error creating restore point.
 
 ========== Files/Folders - Created Within 30 Days ==========
 
 [2012.02.12 17:53:27 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Users\Steve\Desktop\24960-OTL.exe
 [2012.01.24 16:46:23 | 000,000,000 | ---D | C] -- C:\Users\Steve\Desktop\sonstiges
 
 ========== Files - Modified Within 30 Days ==========
 
 [2012.02.12 17:53:27 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Steve\Desktop\24960-OTL.exe
 [2012.02.12 17:52:47 | 000,007,512 | ---- | M] () -- C:\Users\Steve\AppData\Local\d3d9caps.dat
 [2012.02.12 17:47:35 | 000,627,756 | ---- | M] () -- C:\Windows\System32\perfh007.dat
 [2012.02.12 17:47:35 | 000,595,386 | ---- | M] () -- C:\Windows\System32\perfh009.dat
 [2012.02.12 17:47:35 | 000,125,870 | ---- | M] () -- C:\Windows\System32\perfc007.dat
 [2012.02.12 17:47:35 | 000,103,460 | ---- | M] () -- C:\Windows\System32\perfc009.dat
 [2012.02.12 17:45:21 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
 [2012.02.12 16:41:01 | 000,000,928 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1819962109-301207760-2542353026-1000UA.job
 [2012.02.12 16:21:55 | 000,000,893 | ---- | M] () -- C:\Users\Steve\Desktop\cmd.lnk
 [2012.02.12 16:04:24 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
 [2012.02.12 16:04:24 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
 [2012.02.11 22:41:01 | 000,000,906 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1819962109-301207760-2542353026-1000Core.job
 [2012.02.07 19:41:36 | 000,001,099 | ---- | M] () -- C:\Users\Steve\Desktop\Mansions.lnk
 [2012.02.04 17:02:12 | 000,022,528 | ---- | M] () -- C:\Users\Steve\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
 [2012.01.29 22:32:09 | 000,010,701 | ---- | M] () -- C:\Users\Steve\Desktop\usa.odt
 [2012.01.28 11:32:23 | 000,154,780 | ---- | M] () -- C:\Users\Steve\Desktop\auto.JPG
 [2012.01.28 00:32:15 | 000,009,937 | ---- | M] () -- C:\Users\Steve\Desktop\Unbenannt 1.odt
 [2012.01.27 00:21:24 | 000,237,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\MpSigStub.exe
 [2012.01.24 16:37:14 | 000,221,184 | ---- | M] () -- C:\Users\Steve\Desktop\Rechnungswesen 2.anki
 [2012.01.14 10:27:24 | 000,249,856 | ---- | M] () -- C:\Users\Steve\Desktop\Rechnungswesen2.anki
 [2012.01.14 10:26:39 | 000,208,896 | ---- | M] () -- C:\Users\Steve\Desktop\Physik.anki
 
 ========== Files Created - No Company Name ==========
 
 [2012.02.12 16:16:24 | 000,000,893 | ---- | C] () -- C:\Users\Steve\Desktop\cmd.lnk
 [2012.01.29 22:32:07 | 000,010,701 | ---- | C] () -- C:\Users\Steve\Desktop\usa.odt
 [2012.01.28 11:32:20 | 000,154,780 | ---- | C] () -- C:\Users\Steve\Desktop\auto.JPG
 [2012.01.28 00:32:13 | 000,009,937 | ---- | C] () -- C:\Users\Steve\Desktop\Unbenannt 1.odt
 [2012.01.23 20:04:32 | 000,221,184 | ---- | C] () -- C:\Users\Steve\Desktop\Rechnungswesen 2.anki
 [2011.02.04 19:54:28 | 000,007,512 | ---- | C] () -- C:\Users\Steve\AppData\Local\d3d9caps.dat
 [2011.01.15 10:25:21 | 000,000,804 | ---- | C] () -- C:\Windows\wiso.ini
 [2010.12.21 16:55:57 | 000,000,056 | -H-- | C] () -- C:\Windows\System32\ezsidmv.dat
 [2010.12.14 17:03:25 | 000,022,528 | ---- | C] () -- C:\Users\Steve\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
 [2010.12.13 18:56:57 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
 [2009.02.26 17:00:22 | 000,106,605 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
 [2009.02.26 17:00:22 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
 [2009.02.26 16:56:04 | 000,627,756 | ---- | C] () -- C:\Windows\System32\perfh007.dat
 [2009.02.26 16:56:04 | 000,290,748 | ---- | C] () -- C:\Windows\System32\perfi007.dat
 [2009.02.26 16:56:04 | 000,125,870 | ---- | C] () -- C:\Windows\System32\perfc007.dat
 [2009.02.26 16:56:04 | 000,036,916 | ---- | C] () -- C:\Windows\System32\perfd007.dat
 [2009.02.26 10:27:50 | 000,000,428 | ---- | C] () -- C:\Windows\System32\ezdigsgn.dat
 [2009.01.22 01:34:38 | 000,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll
 [2009.01.22 00:51:52 | 003,107,788 | ---- | C] () -- C:\Windows\System32\atiumdva.dat
 [2008.10.29 18:13:34 | 000,180,720 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat
 [2008.10.21 13:40:00 | 000,081,920 | ---- | C] () -- C:\Windows\System32\ATIODE.exe
 [2008.10.21 13:40:00 | 000,045,056 | ---- | C] () -- C:\Windows\System32\ATIODCLI.exe
 [2006.11.02 13:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
 [2006.11.02 13:47:37 | 000,328,232 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
 [2006.11.02 13:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
 [2006.11.02 11:33:01 | 000,595,386 | ---- | C] () -- C:\Windows\System32\perfh009.dat
 [2006.11.02 11:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
 [2006.11.02 11:33:01 | 000,103,460 | ---- | C] () -- C:\Windows\System32\perfc009.dat
 [2006.11.02 11:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
 [2006.11.02 11:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
 [2006.11.02 09:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
 [2006.11.02 09:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
 [2006.11.02 08:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
 [2006.11.02 08:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
 
 ========== Custom Scans ==========
 
 
 < %SYSTEMDRIVE%\*. >
 [2010.12.13 20:43:18 | 000,000,000 | -HSD | M] -- C:\$RECYCLE.BIN
 [2009.02.26 20:05:52 | 000,000,000 | -HSD | M] -- C:\boot
 [2006.11.02 14:02:03 | 000,000,000 | -HSD | M] -- C:\Documents and Settings
 [2010.12.13 20:34:39 | 000,000,000 | -HSD | M] -- C:\Dokumente und Einstellungen
 [2010.12.13 20:36:41 | 000,000,000 | -H-D | M] -- C:\HP
 [2009.02.26 10:10:49 | 000,000,000 | RH-D | M] -- C:\MSOCache
 [2008.01.21 03:32:31 | 000,000,000 | ---D | M] -- C:\PerfLogs
 [2012.01.08 18:51:34 | 000,000,000 | ---D | M] -- C:\Program Files
 [2012.02.12 16:16:09 | 000,000,000 | -H-D | M] -- C:\ProgramData
 [2010.12.13 20:34:39 | 000,000,000 | -HSD | M] -- C:\Programme
 [2010.12.13 20:37:17 | 000,000,000 | ---D | M] -- C:\SWSetup
 [2012.02.12 15:59:31 | 000,000,000 | -HSD | M] -- C:\System Volume Information
 [2010.12.13 20:37:17 | 000,000,000 | -H-D | M] -- C:\System.sav
 [2012.02.12 16:52:13 | 000,000,000 | R--D | M] -- C:\Users
 [2012.02.12 16:04:06 | 000,000,000 | ---D | M] -- C:\Windows
 
 < %PROGRAMFILES%\*.exe >
 
 < %LOCALAPPDATA%\*.exe >
 
 < %systemroot%\*. /mp /s >
 
 
 < MD5 for: AGP440.SYS  >
 [2008.01.21 03:23:01 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\System32\drivers\AGP440.sys
 [2008.01.21 03:23:01 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_f750e484\AGP440.sys
 [2008.01.21 03:23:01 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6001.18000_none_ba12ed3bbeb0d97a\AGP440.sys
 [2008.01.21 03:23:01 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6002.18005_none_bbfe6647bbd2a4c6\AGP440.sys
 [2006.11.02 10:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_920a2c1f\AGP440.sys
 
 < MD5 for: ATAPI.SYS  >
 [2009.04.11 07:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\SoftwareDistribution\Download\bcfed137e95e2bc1b83ef80262a82b16\x86_mshdc.inf_31bf3856ad364e35_6.0.6002.18005_none_df23a1261eab99e8\atapi.sys
 [2008.01.21 03:23:00 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_cc18792d\atapi.sys
 [2008.01.21 03:23:00 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.18000_none_dd38281a2189ce9c\atapi.sys
 [2006.11.02 10:49:36 | 000,019,048 | ---- | M] (Microsoft Corporation) MD5=4F4FCB8B6EA06784FB6D475B7EC7300F -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_c6c2e699\atapi.sys
 [2008.08.16 13:03:39 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=66A1A71D66C5235A31C16F30147E7AF6 -- C:\Windows\System32\drivers\atapi.sys
 [2008.08.16 13:03:39 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=66A1A71D66C5235A31C16F30147E7AF6 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_181d523c\atapi.sys
 [2008.08.16 13:03:39 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=66A1A71D66C5235A31C16F30147E7AF6 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.22245_none_dd9b888d3ac35a04\atapi.sys
 [2009.02.26 17:16:30 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=9C0E70031905ADBF94EDB9EA14AF943B -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_7f3e4ed9\atapi.sys
 [2009.02.26 17:16:30 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=9C0E70031905ADBF94EDB9EA14AF943B -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.22193_none_dd6376773aedb5e4\atapi.sys
 [2009.02.26 17:16:30 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=E26DDFE464B464DAF1C739122978D1D6 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_b7393fc6\atapi.sys
 [2009.02.26 17:16:30 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=E26DDFE464B464DAF1C739122978D1D6 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.20847_none_dbb74a7b3d9afbc1\atapi.sys
 
 < MD5 for: CNGAUDIT.DLL  >
 [2006.11.02 10:46:03 | 000,011,776 | ---- | M] (Microsoft Corporation) MD5=7F15B4953378C8B5161D65C26D5FED4D -- C:\Windows\System32\cngaudit.dll
 [2006.11.02 10:46:03 | 000,011,776 | ---- | M] (Microsoft Corporation) MD5=7F15B4953378C8B5161D65C26D5FED4D -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.0.6000.16386_none_e62d292932a96ce6\cngaudit.dll
 
 < MD5 for: EVENTLOG.DLL  >
 [2007.05.17 21:34:04 | 000,007,216 | ---- | M] () MD5=C2A279A458A06DE2C83D842AA042B5A8 -- C:\Program Files\CyberLink\PowerDirector\EventLog.dll
 
 < MD5 for: EXPLORER.EXE  >
 [2009.02.26 17:33:58 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=37440D09DEAE0B672A04DCCF7ABF06BE -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.16771_none_4f83bb287ccdb7e3\explorer.exe
 [2009.02.26 17:33:57 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=4F554999D7D5F05DAAEBBA7B5BA1089D -- C:\Windows\explorer.exe
 [2009.02.26 17:33:57 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=4F554999D7D5F05DAAEBBA7B5BA1089D -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18164_none_5177ca9879e978e8\explorer.exe
 [2009.02.26 17:33:57 | 002,927,616 | ---- | M] (Microsoft Corporation) MD5=50BA5850147410CDE89C523AD3BC606E -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.22298_none_51e4f8c7931bd1e1\explorer.exe
 [2009.04.11 07:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) MD5=D07D4C3038F3578FFCE1C0237F2A1253 -- C:\Windows\SoftwareDistribution\Download\bcfed137e95e2bc1b83ef80262a82b16\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6002.18005_none_53a0201e76de3a0b\explorer.exe
 [2009.02.26 17:33:57 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=E7156B0B74762D9DE0E66BDCDE06E5FB -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.20947_none_5033cb5995cd990b\explorer.exe
 [2008.01.21 03:24:24 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=FFA764631CB70A30065C12EF8E174F9F -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18000_none_51b4a71279bc6ebf\explorer.exe
 
 < MD5 for: IASTORV.SYS  >
 [2008.01.21 03:23:23 | 000,235,064 | ---- | M] (Intel Corporation) MD5=54155EA1B0DF185878E0FC9EC3AC3A14 -- C:\Windows\System32\drivers\iaStorV.sys
 [2008.01.21 03:23:23 | 000,235,064 | ---- | M] (Intel Corporation) MD5=54155EA1B0DF185878E0FC9EC3AC3A14 -- C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_c9df7691\iaStorV.sys
 [2008.01.21 03:23:23 | 000,235,064 | ---- | M] (Intel Corporation) MD5=54155EA1B0DF185878E0FC9EC3AC3A14 -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.0.6001.18000_none_af11527887c7fa8f\iaStorV.sys
 [2006.11.02 10:51:25 | 000,232,040 | ---- | M] (Intel Corporation) MD5=C957BF4B5D80B46C5017BF0101E6C906 -- C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_37cdafa4\iaStorV.sys
 
 < MD5 for: NETLOGON.DLL  >
 [2009.04.11 07:28:23 | 000,592,896 | ---- | M] (Microsoft Corporation) MD5=95DAECF0FB120A7B5DA679CC54E37DDE -- C:\Windows\SoftwareDistribution\Download\bcfed137e95e2bc1b83ef80262a82b16\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6002.18005_none_ffa3304f351bb3a3\netlogon.dll
 [2008.01.21 03:24:05 | 000,592,384 | ---- | M] (Microsoft Corporation) MD5=A8EFC0B6E75B789F7FD3BA5025D4E37F -- C:\Windows\System32\netlogon.dll
 [2008.01.21 03:24:05 | 000,592,384 | ---- | M] (Microsoft Corporation) MD5=A8EFC0B6E75B789F7FD3BA5025D4E37F -- C:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6001.18000_none_fdb7b74337f9e857\netlogon.dll
 
 < MD5 for: NVSTOR.SYS  >
 [2006.11.02 10:50:13 | 000,040,040 | ---- | M] (NVIDIA Corporation) MD5=9E0BA19A28C498A6D323D065DB76DFFC -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_733654ff\nvstor.sys
 [2008.01.21 03:23:21 | 000,045,112 | ---- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 -- C:\Windows\System32\drivers\nvstor.sys
 [2008.01.21 03:23:21 | 000,045,112 | ---- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_31c3d71d\nvstor.sys
 [2008.01.21 03:23:21 | 000,045,112 | ---- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.0.6001.18000_none_39dac327befea467\nvstor.sys
 
 < MD5 for: SCECLI.DLL  >
 [2008.01.21 03:24:50 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=28B84EB538F7E8A0FE8B9299D591E0B9 -- C:\Windows\System32\scecli.dll
 [2008.01.21 03:24:50 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=28B84EB538F7E8A0FE8B9299D591E0B9 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6001.18000_none_380de25bd91b6f12\scecli.dll
 [2009.04.11 07:28:24 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=8FC182167381E9915651267044105EE1 -- C:\Windows\SoftwareDistribution\Download\bcfed137e95e2bc1b83ef80262a82b16\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6002.18005_none_39f95b67d63d3a5e\scecli.dll
 
 < MD5 for: USER32.DLL  >
 [2009.04.11 07:28:25 | 000,627,712 | ---- | M] (Microsoft Corporation) MD5=75510147B94598407666F4802797C75A -- C:\Windows\SoftwareDistribution\Download\bcfed137e95e2bc1b83ef80262a82b16\x86_microsoft-windows-user32_31bf3856ad364e35_6.0.6002.18005_none_cf23e54d6a7e4a7e\user32.dll
 [2008.01.21 03:24:21 | 000,627,200 | ---- | M] (Microsoft Corporation) MD5=B974D9F06DC7D1908E825DC201681269 -- C:\Windows\System32\user32.dll
 [2008.01.21 03:24:21 | 000,627,200 | ---- | M] (Microsoft Corporation) MD5=B974D9F06DC7D1908E825DC201681269 -- C:\Windows\winsxs\x86_microsoft-windows-user32_31bf3856ad364e35_6.0.6001.18000_none_cd386c416d5c7f32\user32.dll
 
 < MD5 for: USERINIT.EXE  >
 [2008.01.21 03:24:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 -- C:\Windows\System32\userinit.exe
 [2008.01.21 03:24:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.0.6001.18000_none_dc28ba15d1aff80b\userinit.exe
 
 < MD5 for: WINLOGON.EXE  >
 [2009.04.11 07:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\SoftwareDistribution\Download\bcfed137e95e2bc1b83ef80262a82b16\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6002.18005_none_71ae7a22d2134741\winlogon.exe
 [2008.01.21 03:24:49 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\Windows\System32\winlogon.exe
 [2008.01.21 03:24:49 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6001.18000_none_6fc30116d4f17bf5\winlogon.exe
 
 < MD5 for: WS2IFSL.SYS  >
 [2008.01.21 03:24:47 | 000,015,872 | ---- | M] (Microsoft Corporation) MD5=E3A3CB253C0EC2494D4A61F5E43A389C -- C:\Windows\System32\drivers\ws2ifsl.sys
 [2008.01.21 03:24:47 | 000,015,872 | ---- | M] (Microsoft Corporation) MD5=E3A3CB253C0EC2494D4A61F5E43A389C -- C:\Windows\winsxs\x86_microsoft-windows-w..rastructure-ws2ifsl_31bf3856ad364e35_6.0.6001.18000_none_4f86a0d4c7cda641\ws2ifsl.sys
 
 < %systemroot%\system32\drivers\*.sys /lockedfiles >
 
 < %systemroot%\System32\config\*.sav >
 [2008.01.21 04:14:18 | 016,846,848 | ---- | M] () -- C:\Windows\System32\config\COMPONENTS.SAV
 [2008.01.21 04:14:08 | 000,106,496 | ---- | M] () -- C:\Windows\System32\config\DEFAULT.SAV
 [2008.01.21 04:14:18 | 000,020,480 | ---- | M] () -- C:\Windows\System32\config\SECURITY.SAV
 [2006.11.02 11:34:08 | 010,133,504 | ---- | M] () -- C:\Windows\System32\config\SOFTWARE.SAV
 [2006.11.02 11:34:08 | 001,826,816 | ---- | M] () -- C:\Windows\System32\config\SYSTEM.SAV
 
 < %systemroot%\system32\*.dll /lockedfiles >
 
 < %USERPROFILE%\*.* >
 [2012.02.12 17:56:54 | 001,835,008 | -HS- | M] () -- C:\Users\Steve\ntuser.dat
 [2012.02.12 17:56:54 | 000,262,144 | -H-- | M] () -- C:\Users\Steve\ntuser.dat.LOG1
 [2010.12.13 20:35:03 | 000,000,000 | -H-- | M] () -- C:\Users\Steve\ntuser.dat.LOG2
 [2012.02.12 16:52:00 | 000,065,536 | -HS- | M] () -- C:\Users\Steve\NTUSER.DAT{0b0b1001-6b73-11e0-a2d8-00269e20d7ae}.TM.blf
 [2012.02.12 16:52:00 | 000,524,288 | -HS- | M] () -- C:\Users\Steve\NTUSER.DAT{0b0b1001-6b73-11e0-a2d8-00269e20d7ae}.TMContainer00000000000000000001.regtrans-ms
 [2011.04.20 18:28:24 | 000,524,288 | -HS- | M] () -- C:\Users\Steve\NTUSER.DAT{0b0b1001-6b73-11e0-a2d8-00269e20d7ae}.TMContainer00000000000000000002.regtrans-ms
 [2011.04.20 18:16:55 | 000,065,536 | -HS- | M] () -- C:\Users\Steve\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TM.blf
 [2011.04.20 18:16:55 | 000,524,288 | -HS- | M] () -- C:\Users\Steve\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000001.regtrans-ms
 [2010.12.13 21:47:57 | 000,524,288 | -HS- | M] () -- C:\Users\Steve\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000002.regtrans-ms
 [2010.12.13 20:35:04 | 000,000,020 | -HS- | M] () -- C:\Users\Steve\ntuser.ini
 
 < %USERPROFILE%\Local Settings\Temp\*.exe >
 
 < %USERPROFILE%\Local Settings\Temp\*.dll >
 
 < %USERPROFILE%\Application Data\*.exe >
 
 < HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems|Windows /rs >
 HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems\\Required: DebugWindows [binary data]
 HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems\\Windows: %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,12288,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
 
 <           >
 
 < End of report >
 --- --- ---   
Ergebniss Extras.txtOTL Logfile:   Code: 
 OTL Extras logfile created on: 12.02.2012 17:56:21 - Run 1OTL by OldTimer - Version 3.2.31.0     Folder = C:\Users\Steve\Desktop
 Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
 Internet Explorer (Version = 7.0.6001.18000)
 Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
 3,00 Gb Total Physical Memory | 2,56 Gb Available Physical Memory | 85,35% Memory free
 6,19 Gb Paging File | 5,94 Gb Available in Paging File | 95,86% Paging File free
 Paging file location(s): ?:\pagefile.sys [binary data]
 
 %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
 Drive C: | 287,03 Gb Total Space | 168,10 Gb Free Space | 58,56% Space Free | Partition Type: NTFS
 Drive D: | 11,06 Gb Total Space | 1,78 Gb Free Space | 16,08% Space Free | Partition Type: NTFS
 
 Computer Name: STEVE-PC | User Name: Steve | Logged in as Administrator.
 Boot Mode: SafeMode with Networking | Scan Mode: Current user
 Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
 ========== Extra Registry (SafeList) ==========
 
 
 ========== File Associations ==========
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
 .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
 .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
 .url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l
 
 [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
 .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
 
 ========== Shell Spawning ==========
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
 batfile [open] -- "%1" %*
 cmdfile [open] -- "%1" %*
 comfile [open] -- "%1" %*
 cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
 exefile [open] -- "%1" %*
 helpfile [open] -- Reg Error: Key error.
 hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
 inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
 InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
 piffile [open] -- "%1" %*
 regfile [merge] -- Reg Error: Key error.
 scrfile [config] -- "%1"
 scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
 scrfile [open] -- "%1" /S
 txtfile [edit] -- Reg Error: Key error.
 Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
 Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
 Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
 Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
 Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
 Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
 Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
 ========== Security Center Settings ==========
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 "cval" = 1
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 "AntiVirusOverride" = 0
 "AntiSpywareOverride" = 0
 "FirewallOverride" = 0
 "VistaSp1" = Reg Error: Unknown registry data type -- File not found
 
 ========== Firewall Settings ==========
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
 "EnableFirewall" = 1
 "DisableNotifications" = 0
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
 "EnableFirewall" = 1
 "DisableNotifications" = 0
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
 "EnableFirewall" = 1
 "DisableNotifications" = 0
 
 ========== Authorized Applications List ==========
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
 "C:\Program Files\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe" = C:\Program Files\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe:*:Enabled:Logitech Harmony Remote Software 7 -- ()
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
 "C:\Program Files\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe" = C:\Program Files\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe:*:Enabled:Logitech Harmony Remote Software 7 -- ()
 
 
 ========== Vista Active Open Ports Exception List ==========
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
 "{3C389DB3-E83E-4229-B3E1-D91C065729C4}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
 "{A9C34A91-E054-4141-87D6-6FB1546F11D5}" = lport=2869 | protocol=6 | dir=in | app=system |
 
 ========== Vista Active Application Exception List ==========
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
 "{09CA7391-81D1-4101-B061-D447A28FD052}" = dir=in | app=c:\program files\hewlett-packard\touchsmart\media\kernel\clml\clmlsvc.exe |
 "{0D3418E0-AE93-4B86-913F-406E205A9582}" = protocol=6 | dir=in | app=c:\program files\icq7.7\icq.exe |
 "{1031BAF5-977E-4CE3-9B68-D6BD8EE24A1C}" = dir=in | app=c:\program files\msn messenger\livecall.exe |
 "{222FB292-83BD-4DBE-BBC0-BEAFA627257E}" = dir=in | app=c:\program files\hewlett-packard\touchsmart\media\hptouchsmartvideo.exe |
 "{2E19927B-DF79-407E-ADC0-370688E20604}" = dir=in | app=c:\program files\hewlett-packard\media\dvd\kernel\clml\clmlsvc.exe |
 "{303386BA-3EC0-404E-B5D1-F4D0B6974789}" = dir=in | app=c:\program files\hewlett-packard\media\dvd\hpdvdsmart.exe |
 "{43B0407B-0CDF-43F8-B365-7BD65F415094}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe |
 "{4BB5A4D6-9015-4B85-8A18-13D6D72DCE30}" = dir=in | app=c:\program files\hewlett-packard\touchsmart\media\tsmagent.exe |
 "{5211B490-0A4C-4DCA-BC51-3EA605AB4717}" = dir=in | app=c:\program files\hewlett-packard\touchsmart\media\hptouchsmartmusic.exe |
 "{538633F1-3B4C-475A-91C3-53ED5959B95B}" = protocol=17 | dir=in | app=c:\program files\icq7.7\icq.exe |
 "{56627F28-3BBA-4D5F-9E59-8789EBC65B52}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
 "{5BCD17A0-D140-4984-82D1-BDEBC0B3AC2C}" = dir=in | app=c:\program files\hewlett-packard\media\tv\qp.exe |
 "{79A387FF-E15B-4D64-B866-517AAC85C740}" = dir=in | app=c:\program files\hewlett-packard\media\dvd\hptouchsmartvideo.exe |
 "{7C52AFE3-4FB6-494E-8B44-5C8B0671D875}" = protocol=6 | dir=in | app=c:\program files\icq7.7\icq.exe |
 "{7C63B681-EC25-4C4B-AACD-33BC07BAA367}" = protocol=6 | dir=in | app=c:\program files\icq7.7\icq.exe |
 "{889EB534-C21F-4C4D-9E81-752D8EC6B845}" = dir=in | app=c:\program files\hewlett-packard\media\dvd\hptouchsmartmusic.exe |
 "{8DC4D0C8-5BC0-400F-9857-6C79FB98D3D9}" = protocol=17 | dir=in | app=c:\program files\icq7.7\icq.exe |
 "{92575D48-3166-4D18-8533-12C0AFCB9259}" = dir=in | app=c:\program files\hewlett-packard\media\dvd\hptouchsmartphoto.exe |
 "{935E4008-E5C6-4ACF-AD6E-8F23DEF0C95C}" = protocol=6 | dir=in | app=c:\program files\frostwire\frostwire.exe |
 "{941A5FDE-45E4-4BEC-B56C-CCBADAE44689}" = dir=in | app=c:\program files\hewlett-packard\touchsmart\media\hptouchsmartphoto.exe |
 "{98CC43B9-49ED-4863-9CF8-630B66C2E719}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
 "{99E47B40-A197-4698-8508-509EF8489625}" = dir=in | app=c:\users\steve\appdata\local\facebook\video\skype\facebookvideocalling.exe |
 "{9A00201A-FCD0-4EF5-A6D0-C3E7C3DEF64E}" = dir=in | app=c:\program files\msn messenger\msnmsgr.exe |
 "{AE1C1026-BDA3-4910-8E87-30277E37DD84}" = protocol=17 | dir=in | app=c:\program files\icq7.7\icq.exe |
 "{BBC97940-D99A-4EE1-BC6A-ACE1AE636493}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
 "{CC73667A-B19C-4077-9F11-D3FFB515F603}" = dir=in | app=c:\program files\cyberlink\powerdirector\pdr.exe |
 "{D386B964-C093-49E1-93A9-C635931BE368}" = dir=in | app=c:\program files\hewlett-packard\media\dvd\tsmagent.exe |
 "{D4FA5FB7-5AE2-4F6F-950C-977727C5B760}" = protocol=17 | dir=in | app=c:\program files\frostwire\frostwire.exe |
 "{DA69575C-3ED2-4065-9BF5-BC76732F0E67}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
 "{E0F88863-FDD2-4F84-9BDA-9C32170514DB}" = dir=in | app=c:\program files\itunes\itunes.exe |
 "{F02C7EC2-CCB9-4038-9091-4D1EB6FB3924}" = dir=in | app=c:\program files\hewlett-packard\media\tv\qpservice.exe |
 "TCP Query User{561F230E-51FD-41A0-8A5D-1E934B952425}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
 "TCP Query User{7C026705-0762-4C0B-9CE4-F2581F6DC73F}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe |
 "TCP Query User{B4B19DCF-84C0-4B18-9DBB-4E23C29D34E2}C:\program files\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe |
 "UDP Query User{02AB9E80-B4F8-4E97-B8A9-8F480831D086}C:\program files\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe |
 "UDP Query User{750D6954-9F43-4878-8A26-397C8C38AA5E}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
 "UDP Query User{F1AE4E65-86A2-4A3D-A9DE-4970F5884073}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe |
 
 ========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
 "{0054A0F6-00C9-4498-B821-B5C9578F433E}" = HP Help and Support
 "{0138F525-6C8A-333F-A105-14AE030B9A54}" = Visual C++ 9.0 CRT (x86) WinSXS MSM
 "{018A980E-99CC-E6E1-1103-460538A91B39}" = CCC Help Dutch
 "{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = HP MediaSmart Webcam
 "{02F0B8AE-7501-4333-AFBE-6BAABFEC7637}" = WISO Steuer 2011
 "{04758F02-79E9-A64D-6C95-65EF84E435EA}" = ccc-core-static
 "{052FDD78-A6EA-3187-8386-C82F4CA3A929}" = Microsoft .NET Framework 3.5 Language Pack SP1 - deu
 "{0766C1B9-B2DC-46E5-8934-4F3D6B42B1BD}" = ICQ Sparberater
 "{0C1EBF39-FB4C-106D-56C6-91F926F5E283}" = Catalyst Control Center Graphics Light
 "{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}" = LightScribe System Software  1.14.17.1
 "{0F2C3198-6FA0-78E7-48CF-82F766D0AD60}" = Catalyst Control Center Core Implementation
 "{154A4184-1A3D-4BF9-A5AE-4FA1660445F3}" = HP Total Care Advisor
 "{187817E2-6407-461C-B59B-56CE73363D34}" = Catalyst Control Center - Branding
 "{1E8FDA17-C7AB-4610-1F54-B5A6695E8B6F}" = CCC Help Danish
 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
 "{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite
 "{228C6B46-64E2-404E-898A-EF0830603EF4}" = HPNetworkAssistant
 "{254C37AA-6B72-4300-84F6-98A82419187E}" = ActiveCheck component for HP Active Support Library
 "{26604C7E-A313-4D12-867F-7C6E7820BE4C}" = JMicron Flash Media Controller Driver
 "{26A24AE4-039D-4CA4-87B4-2F83216011FF}" = Java(TM) 6 Update 22
 "{279DB581-239C-4E13-97F8-0F48E40BE75C}" = Windows Live Messenger
 "{2FD8E82F-55A4-358A-D74A-DA017F011200}" = Catalyst Control Center Graphics Previews Vista
 "{343666E2-A059-48AC-AD67-230BF74E2DB2}" = Apple Application Support
 "{34D2AB40-150D-475D-AE32-BD23FB5EE355}" = HP Quick Launch Buttons 6.40 L1
 "{34FB8E02-74B4-8018-A2D3-ADB69E06A24A}" = Catalyst Control Center Graphics Previews Common
 "{367BC374-0115-EEF1-8471-6EC87AF0D8C3}" = CCC Help Norwegian
 "{36E90C09-EB23-4EAC-8B47-12C0CA5DBD3A}" = HP User Guides 0126
 "{37BD3ECA-C926-8CF1-4FFF-BC473CF892E1}" = Catalyst Control Center Graphics Full Existing
 "{37D31156-0666-0A8B-1313-6120E0FA40D0}" = CCC Help Italian
 "{3877C901-7B90-4727-A639-B6ED2DD59D43}" = ESU for Microsoft Vista
 "{39D0E034-1042-4905-BECB-5502909FCB7C}" = Microsoft Works
 "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
 "{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
 "{3FA73E2A-50B6-DCAE-0BDD-FAA128934EE8}" = Catalyst Control Center Graphics Full New
 "{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
 "{478FAEA5-00EB-F676-89C1-3822B94B09A7}" = CCC Help Japanese
 "{47F36D92-E58E-456D-B73C-3382737E4C42}" = HP Update
 "{490951ED-21E8-0B65-0BF5-32F1A3242F28}" = CCC Help English
 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
 "{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
 "{57A5AEC1-97FC-474D-92C4-908FCC2253D4}" = HP Customer Experience Enhancements
 "{5BAB951D-956E-4D20-CCD5-10BB8E1D4AF0}" = CCC Help Czech
 "{5C6F884D-680C-448B-B4C9-22296EE1B206}" = Logitech Harmony Remote Software 7
 "{624E54D0-E4F4-434F-9EF6-D4D066EE4348}" = Facebook Video Calling 1.1.1.1
 "{632240E4-0BC9-704E-D71F-4C5D396D2CCF}" = CCC Help Chinese Standard
 "{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites
 "{669D4A35-146B-4314-89F1-1AC3D7B88367}" = HPAsset component for HP Active Support Library
 "{67626E09-5366-4480-8F1E-93FADF50CA15}" = HP MediaSmart TV
 "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
 "{6C1E7AA1-44E9-446D-AAB2-0DE6D9EFEAB1}" = Safari
 "{720FEF0C-7CE6-C8F6-2CF1-41FBB8846700}" = ATI Catalyst Install Manager
 "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
 "{732A3F80-008B-4350-BD58-EC5AE98707B8}" = HP Common Access Service Library
 "{779DECD7-E072-4B56-9B6B-BEB5973EEEB5}" = MobileMe Control Panel
 "{77F665FD-3F60-4B0A-AE14-EC124B7A7FCE}" = ICQ7.7
 "{78605EFA-1076-A2B3-AA59-526536BA93E3}" = CCC Help Polish
 "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
 "{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour
 "{79CB708A-AD4F-A11B-4CA0-713A152C1705}" = CCC Help Portuguese
 "{7A9531EF-11A2-D53C-FCB9-8DFCCAD7F2B7}" = CCC Help Spanish
 "{7B15D70E-9449-4CFB-B9BC-798465B2BD5C}" = Norton Internet Security
 "{8153ED9A-C94A-426E-9880-5E6775C08B62}" = Apple Mobile Device Support
 "{8471021C-F529-43DE-84DF-3612E10F58C4}" = Remote Control USB Driver
 "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8169 8168 8101E 8102E Ethernet Driver
 "{885F5AC6-4413-4D30-99A9-F4494BFA4923}" = Logitech Harmony Remote Software 7
 "{8D1E61D1-1395-4E97-997F-D002DB3A5074}" = OpenOffice.org 3.2
 "{90120000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2007
 "{90120000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2007
 "{90120000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2007
 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
 "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
 "{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007
 "{90120000-0020-0407-0000-0000000FF1CE}" = Compatibility Pack für 2007 Office System
 "{90120000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2007
 "{90120000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2007
 "{90120000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2007
 "{90EB79E8-6A0F-1660-86C2-9E36A8B01D4A}" = CCC Help Korean
 "{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
 "{95120000-00AF-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (German)
 "{95A747E0-DF19-46CB-A622-20A0107201BD}" = HP Total Care Setup
 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
 "{A1D37D8A-876C-5A1E-AC00-454D0C024C9B}" = Skins
 "{A3AB35FA-943E-4799-99DC-46EFD59E998F}" = AMD USB Audio Driver Filter
 "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
 "{A7AC8E69-01FF-494E-9A2C-423B82CEA604}" = HP MediaSmart SmartMenu
 "{AC76BA86-7AD7-1031-7B44-A90000000001}" = Adobe Reader 9 - Deutsch
 "{AD72CFB4-C2BF-424E-9DF0-C7BAD1F30A11}" = Adobe Shockwave Player
 "{B2AD681E-6741-AB24-90BC-51B2326F8680}" = CCC Help Russian
 "{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}" = HP MediaSmart Music/Photo/Video
 "{B7DBF6E8-0D17-4BE4-853B-ACD6EFBD4A1F}" = iTunes
 "{BA3733E3-CABE-EA21-F351-69BCFC30CF88}" = CCC Help Hungarian
 "{BDFA1F29-03E7-C59F-F9A5-E727F6E1A857}" = ccc-utility
 "{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Atheros Driver Installation Program
 "{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
 "{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
 "{CB71A20E-B1B4-4562-81FA-33E1DBD0342F}" = ProtectSmart Hard Drive Protection
 "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
 "{CE7E3BE0-2DD3-4416-A690-F9E4A99A8CFF}" = HP Active Support Library
 "{D0379E71-7CB9-893E-1A20-9581E10999EC}" = Catalyst Control Center InstallProxy
 "{D2F31CF3-F83D-6863-4F8A-C8502802E0DD}" = CCC Help Thai
 "{D3887E31-A821-9D46-48B2-240E0613EB12}" = CCC Help Chinese Traditional
 "{DB5B22F8-D4C2-A320-5151-B3D4CFEF733C}" = CCC Help German
 "{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
 "{DD35C328-F115-BEDA-6EEE-E00C5AACCCBC}" = muvee Reveal
 "{DD74F03D-8DDC-E124-C971-C3217832EE19}" = CCC Help Turkish
 "{E1060959-A299-9D88-60EC-187A55809145}" = CCC Help Swedish
 "{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio
 "{E551D855-4EE6-852E-5AB8-E9AE95F73B37}" = CCC Help French
 "{E5E29403-3D25-40C6-892B-F9FEE2A95585}" = HP Wireless Assistant
 "{E6B042BC-3F10-609E-CDC1-2DE2AEB2552F}" = CCC Help Greek
 "{EE656C90-7D67-ECAA-B2E4-F4A768CDA1D0}" = CCC Help Finnish
 "{EFB7727F-76AF-43B0-E9AC-3F89181A188B}" = Catalyst Control Center Localization All
 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
 "{F750C986-5310-3A5A-95F8-4EC71C8AC01C}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
 "7DE39862CC26DCE2446838AAF7CD5C163F835A57" = Windows-Treiberpaket - ENE (enecir) HIDClass  (09/04/2008 2.6.0.0)
 "Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites
 "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
 "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
 "Amazon MP3-Downloader" = Amazon MP3-Downloader 1.0.9
 "Anki" = Anki
 "Avira AntiVir Desktop" = Avira Free Antivirus
 "HOMESTUDENTR" = Microsoft Office Home and Student 2007
 "ICQToolbar" = ICQ Toolbar
 "InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = HP MediaSmart Webcam
 "InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite
 "InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
 "InstallShield_{67626E09-5366-4480-8F1E-93FADF50CA15}" = HP MediaSmart TV
 "InstallShield_{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}" = HP MediaSmart Music/Photo/Video
 "InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
 "InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
 "InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
 "Microsoft .NET Framework 3.5 Language Pack SP1 - deu" = Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
 "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
 "Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
 "Mozilla Firefox 9.0.1 (x86 de)" = Mozilla Firefox 9.0.1 (x86 de)
 "Software Informer_is1" = Software Informer 1.1
 "SynTPDeinstKey" = Synaptics Pointing Device Driver
 "VLC media player" = VLC media player 1.1.7
 "Winamp" = Winamp
 
 ========== HKEY_CURRENT_USER Uninstall List ==========
 
 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
 "Winamp Detect" = Winamp Erkennungs-Plug-in
 
 ========== Last 10 Event Log Errors ==========
 
 [ Application Events ]
 Error - 12.02.2012 10:57:25 | Computer Name = Steve-PC | Source = WinMgmt | ID = 10
 Description =
 
 Error - 12.02.2012 10:57:48 | Computer Name = Steve-PC | Source = System Restore | ID = 8209
 Description =
 
 Error - 12.02.2012 10:59:23 | Computer Name = Steve-PC | Source = Microsoft-Windows-CAPI2 | ID = 131585
 Description =
 
 Error - 12.02.2012 11:05:51 | Computer Name = Steve-PC | Source = WinMgmt | ID = 10
 Description =
 
 Error - 12.02.2012 11:06:31 | Computer Name = Steve-PC | Source = System Restore | ID = 8209
 Description =
 
 Error - 12.02.2012 11:51:11 | Computer Name = Steve-PC | Source = WinMgmt | ID = 10
 Description =
 
 Error - 12.02.2012 12:45:51 | Computer Name = Steve-PC | Source = EventSystem | ID = 4609
 Description =
 
 Error - 12.02.2012 12:46:48 | Computer Name = Steve-PC | Source = WinMgmt | ID = 10
 Description =
 
 Error - 12.02.2012 12:53:23 | Computer Name = Steve-PC | Source = SideBySide | ID = 16842785
 Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Users\Steve\Downloads\iTunes64Setup.exe".
 Die
 abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
 Error - 12.02.2012 12:59:44 | Computer Name = Steve-PC | Source = System Restore | ID = 8193
 Description =
 
 [ System Events ]
 Error - 26.06.2011 12:07:45 | Computer Name = Steve-PC | Source = Service Control Manager | ID = 7026
 Description =
 
 Error - 27.06.2011 14:04:55 | Computer Name = Steve-PC | Source = HTTP | ID = 15016
 Description =
 
 Error - 27.06.2011 14:05:26 | Computer Name = Steve-PC | Source = Service Control Manager | ID = 7000
 Description =
 
 Error - 27.06.2011 14:05:26 | Computer Name = Steve-PC | Source = Service Control Manager | ID = 7000
 Description =
 
 Error - 27.06.2011 14:05:26 | Computer Name = Steve-PC | Source = Service Control Manager | ID = 7026
 Description =
 
 Error - 28.06.2011 16:24:13 | Computer Name = Steve-PC | Source = HTTP | ID = 15016
 Description =
 
 Error - 28.06.2011 16:25:12 | Computer Name = Steve-PC | Source = Service Control Manager | ID = 7000
 Description =
 
 Error - 28.06.2011 16:25:12 | Computer Name = Steve-PC | Source = Service Control Manager | ID = 7000
 Description =
 
 Error - 28.06.2011 16:25:12 | Computer Name = Steve-PC | Source = Service Control Manager | ID = 7026
 Description =
 
 Error - 30.06.2011 11:23:56 | Computer Name = Steve-PC | Source = HTTP | ID = 15016
 Description =
 
 
 < End of report >
 --- --- ---  |