crobben3 | 14.05.2013 15:57 | Browser dauerhafte Quelltextanzeige (reagiert nicht auf Eingaben), Paint Problem kommt auch vor Hallo,
das Problem ist folgendes:
Wenn ich meinen Browser öffne ( Explorer oder Chrome) tritt das Problem auf, dass sich automatisch Quellcode öffnet , es immer wieder erscheint und das schreiben im browser blockiert sowie möglichkeiten da irgendwas zu machen.
Bei Firefox tritt dieses Problem nicht auf.
Dann , wenn ich auf ein Symbol von der Taskleiste klicke mit der linken maustaste wird das net geöffnet sondern nur kurz angeklickt und ich dann beim selben problem wieder bin.
Beim Paint:
Wenn ich auf scannen klicke kommt ein Fenster :
Wohin möchten sie speichern ? Ich klicke das weg und es erscheint aber immer wieder egal ob ich das schließe oder nicht. Es lässt sich dann nur mit task manager beenden.
Mir wurde geraten mein system/windows neu zu installieren.
Das habe ich getan. Das Problem trat zunächst nicht auf, erst als ich dann Treiber für meine Geräte installiert habe ist es wieder aufgetreten. Alle Treiber sind aber von offiziellen Pages geladen worden und sind sauber und ich brauche die alle damit ich normal arbeiten kann.
Logfiles:
OTL:OTL Logfile: Code:
OTL logfile created on: 14.05.2013 16:33:12 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\King\Downloads
64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
8,00 Gb Total Physical Memory | 5,74 Gb Available Physical Memory | 71,71% Memory free
15,99 Gb Paging File | 13,67 Gb Available in Paging File | 85,47% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 122,07 Gb Total Space | 94,05 Gb Free Space | 77,04% Space Free | Partition Type: NTFS
Drive D: | 2,94 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive L: | 809,34 Gb Total Space | 808,63 Gb Free Space | 99,91% Space Free | Partition Type: NTFS
Computer Name: KING-PC | User Name: King | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2013.05.14 16:31:48 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\King\Downloads\OTL.exe
PRC - [2013.05.12 00:26:08 | 000,920,472 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2013.02.13 06:45:28 | 000,060,216 | ---- | M] (The Pidgin developer community) -- L:\Pidgin\pidgin.exe
PRC - [2012.07.27 18:52:56 | 000,495,616 | ---- | M] (MSI) -- C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe
PRC - [2012.07.25 17:54:02 | 001,374,864 | ---- | M] (Trend Micro Inc.) -- C:\Programme\Trend Micro\Titanium\UIFramework\uiWinMgr.exe
PRC - [2012.06.29 17:56:30 | 000,136,704 | ---- | M] (MSI) -- C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
PRC - [2012.02.03 16:58:26 | 013,150,560 | ---- | M] () -- C:\Program Files (x86)\Sitecom\Common\RaUI.exe
PRC - [2012.02.01 10:57:54 | 000,375,872 | ---- | M] (Ralink Technology, Corp.) -- C:\Program Files (x86)\Sitecom\Common\RaRegistry.exe
PRC - [2011.09.20 09:17:44 | 000,115,048 | ---- | M] (Renesas Electronics Corporation) -- C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\rusb3mon.exe
========== Modules (No Company Name) ==========
MOD - [2013.05.13 23:26:42 | 000,216,992 | ---- | M] () -- L:\Pidgin\Gtk\bin\libpng14-14.dll
MOD - [2013.05.13 23:26:42 | 000,100,352 | ---- | M] () -- L:\Pidgin\Gtk\bin\zlib1.dll
MOD - [2013.05.13 23:26:42 | 000,090,496 | ---- | M] () -- L:\Pidgin\Gtk\lib\gtk-2.0\2.10.0\engines\libwimp.dll
MOD - [2013.05.13 23:26:41 | 000,904,525 | ---- | M] () -- L:\Pidgin\Gtk\bin\libcairo-2.dll
MOD - [2013.05.13 23:26:41 | 000,553,382 | ---- | M] () -- L:\Pidgin\Gtk\bin\freetype6.dll
MOD - [2013.05.13 23:26:41 | 000,279,059 | ---- | M] () -- L:\Pidgin\Gtk\bin\libfontconfig-1.dll
MOD - [2013.05.13 23:26:41 | 000,177,586 | ---- | M] () -- L:\Pidgin\Gtk\bin\libexpat-1.dll
MOD - [2013.05.12 00:26:24 | 003,128,728 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2013.02.13 06:45:08 | 000,069,575 | ---- | M] () -- L:\Pidgin\plugins\spellchk.dll
MOD - [2013.02.13 06:45:08 | 000,044,494 | ---- | M] () -- L:\Pidgin\plugins\xmppdisco.dll
MOD - [2013.02.13 06:45:08 | 000,037,191 | ---- | M] () -- L:\Pidgin\plugins\xmppconsole.dll
MOD - [2013.02.13 06:45:08 | 000,032,020 | ---- | M] () -- L:\Pidgin\plugins\ticker.dll
MOD - [2013.02.13 06:45:08 | 000,030,771 | ---- | M] () -- L:\Pidgin\plugins\winprefs.dll
MOD - [2013.02.13 06:45:08 | 000,030,353 | ---- | M] () -- L:\Pidgin\plugins\themeedit.dll
MOD - [2013.02.13 06:45:08 | 000,029,791 | ---- | M] () -- L:\Pidgin\plugins\win2ktrans.dll
MOD - [2013.02.13 06:45:08 | 000,029,256 | ---- | M] () -- L:\Pidgin\plugins\pidginrc.dll
MOD - [2013.02.13 06:45:08 | 000,027,811 | ---- | M] () -- L:\Pidgin\plugins\ssl-nss.dll
MOD - [2013.02.13 06:45:08 | 000,023,305 | ---- | M] () -- L:\Pidgin\plugins\timestamp_format.dll
MOD - [2013.02.13 06:45:08 | 000,018,399 | ---- | M] () -- L:\Pidgin\plugins\timestamp.dll
MOD - [2013.02.13 06:45:08 | 000,015,978 | ---- | M] () -- L:\Pidgin\plugins\statenotify.dll
MOD - [2013.02.13 06:45:08 | 000,015,429 | ---- | M] () -- L:\Pidgin\plugins\relnot.dll
MOD - [2013.02.13 06:45:08 | 000,015,380 | ---- | M] () -- L:\Pidgin\plugins\psychic.dll
MOD - [2013.02.13 06:45:08 | 000,015,045 | ---- | M] () -- L:\Pidgin\plugins\sendbutton.dll
MOD - [2013.02.13 06:45:08 | 000,012,004 | ---- | M] () -- L:\Pidgin\plugins\ssl.dll
MOD - [2013.02.13 06:45:06 | 000,415,553 | ---- | M] () -- L:\Pidgin\libjabber.dll
MOD - [2013.02.13 06:45:06 | 000,373,657 | ---- | M] () -- L:\Pidgin\plugins\libmsn.dll
MOD - [2013.02.13 06:45:06 | 000,310,491 | ---- | M] () -- L:\Pidgin\liboscar.dll
MOD - [2013.02.13 06:45:06 | 000,228,908 | ---- | M] () -- L:\Pidgin\libymsg.dll
MOD - [2013.02.13 06:45:06 | 000,209,619 | ---- | M] () -- L:\Pidgin\plugins\libgg.dll
MOD - [2013.02.13 06:45:06 | 000,171,090 | ---- | M] () -- L:\Pidgin\plugins\libsilc.dll
MOD - [2013.02.13 06:45:06 | 000,149,933 | ---- | M] () -- L:\Pidgin\plugins\libmxit.dll
MOD - [2013.02.13 06:45:06 | 000,123,540 | ---- | M] () -- L:\Pidgin\plugins\libnovell.dll
MOD - [2013.02.13 06:45:06 | 000,116,583 | ---- | M] () -- L:\Pidgin\plugins\libsametime.dll
MOD - [2013.02.13 06:45:06 | 000,106,670 | ---- | M] () -- L:\Pidgin\plugins\libmyspace.dll
MOD - [2013.02.13 06:45:06 | 000,105,620 | ---- | M] () -- L:\Pidgin\plugins\libirc.dll
MOD - [2013.02.13 06:45:06 | 000,092,874 | ---- | M] () -- L:\Pidgin\plugins\libbonjour.dll
MOD - [2013.02.13 06:45:06 | 000,055,758 | ---- | M] () -- L:\Pidgin\plugins\libsimple.dll
MOD - [2013.02.13 06:45:06 | 000,047,391 | ---- | M] () -- L:\Pidgin\plugins\log_reader.dll
MOD - [2013.02.13 06:45:06 | 000,029,225 | ---- | M] () -- L:\Pidgin\plugins\notify.dll
MOD - [2013.02.13 06:45:06 | 000,024,924 | ---- | M] () -- L:\Pidgin\plugins\convcolors.dll
MOD - [2013.02.13 06:45:06 | 000,022,832 | ---- | M] () -- L:\Pidgin\plugins\libyahoo.dll
MOD - [2013.02.13 06:45:06 | 000,021,795 | ---- | M] () -- L:\Pidgin\plugins\markerline.dll
MOD - [2013.02.13 06:45:06 | 000,021,337 | ---- | M] () -- L:\Pidgin\plugins\libxmpp.dll
MOD - [2013.02.13 06:45:06 | 000,020,997 | ---- | M] () -- L:\Pidgin\plugins\autoaccept.dll
MOD - [2013.02.13 06:45:06 | 000,019,793 | ---- | M] () -- L:\Pidgin\plugins\libyahoojp.dll
MOD - [2013.02.13 06:45:06 | 000,019,043 | ---- | M] () -- L:\Pidgin\plugins\idle.dll
MOD - [2013.02.13 06:45:06 | 000,018,882 | ---- | M] () -- L:\Pidgin\plugins\history.dll
MOD - [2013.02.13 06:45:06 | 000,018,555 | ---- | M] () -- L:\Pidgin\plugins\joinpart.dll
MOD - [2013.02.13 06:45:06 | 000,017,023 | ---- | M] () -- L:\Pidgin\plugins\offlinemsg.dll
MOD - [2013.02.13 06:45:06 | 000,016,005 | ---- | M] () -- L:\Pidgin\plugins\libicq.dll
MOD - [2013.02.13 06:45:06 | 000,015,702 | ---- | M] () -- L:\Pidgin\plugins\extplacement.dll
MOD - [2013.02.13 06:45:06 | 000,015,074 | ---- | M] () -- L:\Pidgin\plugins\libaim.dll
MOD - [2013.02.13 06:45:06 | 000,014,147 | ---- | M] () -- L:\Pidgin\plugins\gtkbuddynote.dll
MOD - [2013.02.13 06:45:06 | 000,013,456 | ---- | M] () -- L:\Pidgin\plugins\newline.dll
MOD - [2013.02.13 06:45:06 | 000,013,253 | ---- | M] () -- L:\Pidgin\plugins\buddynote.dll
MOD - [2013.02.13 06:45:06 | 000,012,865 | ---- | M] () -- L:\Pidgin\plugins\iconaway.dll
MOD - [2013.02.13 06:44:56 | 000,671,031 | ---- | M] () -- L:\Pidgin\exchndl.dll
MOD - [2013.02.13 06:44:56 | 000,028,160 | ---- | M] () -- L:\Pidgin\libssp-0.dll
MOD - [2013.02.13 06:44:54 | 000,475,580 | ---- | M] () -- L:\Pidgin\spellcheck\libgtkspell-0.dll
MOD - [2013.02.13 06:44:00 | 000,425,984 | ---- | M] () -- L:\Pidgin\sqlite3.dll
MOD - [2013.02.13 06:43:54 | 002,097,721 | ---- | M] () -- L:\Pidgin\libsilc-1-1-2.dll
MOD - [2013.02.13 06:43:54 | 000,818,985 | ---- | M] () -- L:\Pidgin\libsilcclient-1-1-3.dll
MOD - [2013.02.13 06:43:54 | 000,152,852 | ---- | M] () -- L:\Pidgin\libmeanwhile-1.dll
MOD - [2013.02.13 06:43:46 | 001,274,655 | ---- | M] () -- L:\Pidgin\libxml2-2.dll
MOD - [2013.02.13 06:43:46 | 000,190,464 | ---- | M] () -- L:\Pidgin\libsasl.dll
MOD - [2013.02.13 06:43:46 | 000,140,288 | ---- | M] () -- L:\Pidgin\sasl2\saslDIGESTMD5.dll
MOD - [2013.02.13 06:43:46 | 000,115,712 | ---- | M] () -- L:\Pidgin\sasl2\saslCRAMMD5.dll
MOD - [2013.02.13 06:43:46 | 000,102,912 | ---- | M] () -- L:\Pidgin\sasl2\saslPLAIN.dll
MOD - [2013.02.13 06:43:46 | 000,102,912 | ---- | M] () -- L:\Pidgin\sasl2\saslLOGIN.dll
MOD - [2013.02.13 06:43:46 | 000,102,400 | ---- | M] () -- L:\Pidgin\sasl2\saslANONYMOUS.dll
MOD - [2012.09.09 15:17:08 | 000,472,576 | ---- | M] () -- L:\Pidgin\plugins\pidgin-otr.dll
MOD - [2012.07.25 17:54:02 | 000,057,344 | ---- | M] () -- C:\Programme\Trend Micro\Titanium\UIFramework\boost_thread-vc80-mt-1_49.dll
MOD - [2012.07.25 17:54:02 | 000,049,152 | ---- | M] () -- C:\Programme\Trend Micro\Titanium\UIFramework\boost_date_time-vc80-mt-1_49.dll
MOD - [2012.02.03 16:58:26 | 013,150,560 | ---- | M] () -- C:\Program Files (x86)\Sitecom\Common\RaUI.exe
MOD - [2012.02.01 10:57:54 | 001,066,856 | ---- | M] () -- C:\Program Files (x86)\Sitecom\Common\RaWLAPI.dll
========== Services (SafeList) ==========
SRV:64bit: - File not found [Auto | Running] -- C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe coreFrameworkHost.exe -- (Amsp)
SRV:64bit: - [2012.05.04 15:40:36 | 000,361,984 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
SRV - [2013.05.13 22:56:01 | 000,256,904 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013.05.12 00:26:17 | 000,117,144 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012.06.29 17:56:30 | 000,136,704 | ---- | M] (MSI) [Auto | Running] -- C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe -- (MSI_SuperCharger)
SRV - [2012.02.01 10:57:56 | 000,625,728 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\Sitecom\Common\RaMediaServer.exe -- (RaMediaServer)
SRV - [2012.02.01 10:57:54 | 000,454,208 | ---- | M] (Ralink Technology, Corp.) [Auto | Running] -- C:\Program Files (x86)\Sitecom\Common\RaRegistry64.exe -- (RalinkRegistryWriter64)
SRV - [2012.02.01 10:57:54 | 000,375,872 | ---- | M] (Ralink Technology, Corp.) [Auto | Running] -- C:\Program Files (x86)\Sitecom\Common\RaRegistry.exe -- (RalinkRegistryWriter)
SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2013.03.07 13:37:54 | 000,019,032 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\pwdrvio.sys -- (pwdrvio)
DRV:64bit: - [2013.03.07 13:37:32 | 000,009,584 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\pwdspio.sys -- (pwdspio)
DRV:64bit: - [2012.08.24 15:07:14 | 000,046,392 | ---- | M] (Trend Micro Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\TMEBC64.sys -- (TMEBC)
DRV:64bit: - [2012.07.12 12:29:40 | 000,106,000 | ---- | M] (Trend Micro Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\tmactmon.sys -- (tmactmon)
DRV:64bit: - [2012.07.12 12:29:26 | 000,076,672 | ---- | M] (Trend Micro Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\tmevtmgr.sys -- (tmevtmgr)
DRV:64bit: - [2012.07.12 12:29:04 | 000,173,504 | ---- | M] (Trend Micro Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tmcomm.sys -- (tmcomm)
DRV:64bit: - [2012.05.02 21:27:22 | 000,105,744 | ---- | M] (Trend Micro Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\tmtdi.sys -- (tmtdi)
DRV:64bit: - [2012.02.23 14:32:04 | 000,095,760 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2012.02.16 07:42:00 | 000,676,968 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2012.02.01 10:56:26 | 001,675,840 | ---- | M] (Ralink Technology Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\netr28ux.sys -- (netr28ux)
DRV:64bit: - [2011.11.21 16:09:36 | 000,217,088 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rusb3xhc.sys -- (rusb3xhc)
DRV:64bit: - [2011.11.21 16:09:34 | 000,101,376 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rusb3hub.sys -- (rusb3hub)
DRV:64bit: - [2011.09.21 17:56:24 | 000,049,760 | ---- | M] (Asmedia Technology) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\asahci64.sys -- (asahci64)
DRV:64bit: - [2011.04.15 08:37:50 | 000,079,488 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_sata.sys -- (amd_sata)
DRV:64bit: - [2011.04.15 08:37:50 | 000,040,064 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_xata.sys -- (amd_xata)
DRV:64bit: - [2010.11.28 22:50:38 | 000,044,672 | R--- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV:64bit: - [2010.06.17 11:15:36 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie64.sys -- (AtiPcie)
DRV:64bit: - [2010.02.18 09:18:24 | 000,046,136 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\amdiox64.sys -- (amdiox64)
DRV:64bit: - [2009.07.14 03:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2009.07.14 03:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009.07.14 03:47:48 | 000,023,104 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2013.05.13 23:37:02 | 000,000,000 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Users\King\AppData\Local\Temp\getbus.sys -- (getbus)
DRV - [2011.11.13 14:31:16 | 000,055,936 | ---- | M] (Advanced Micro Devices) [Kernel | Auto | Running] -- C:\Programme\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys -- (AODDriver4.1)
DRV - [2010.01.18 10:36:44 | 000,014,136 | ---- | M] (MSI) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys -- (NTIOLib_1_0_3)
DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://google.de/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 21 20 EC A0 19 50 CE 01 [binary data]
IE - HKCU\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7MSIM_deDE536
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:21.0
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@TrendMicro.com/FFExtension: C:\Program Files\Trend Micro\Titanium\UIFramework\Toolbar\firefoxextension\components\npToolbarChrome.dll (Trend Micro Inc.)
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\tmbepff-7.5@trendmicro.com: C:\PROGRAM FILES\TREND MICRO\AMSP\MODULE\20002\7.5.1115\7.5.1115\FIREFOXEXTENSION [2013.05.13 22:44:53 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\tmbepff-7.5@trendmicro.com: C:\Program Files\Trend Micro\AMSP\Module\20002\7.5.1115\7.5.1115\firefoxextension [2013.05.13 22:44:53 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{22181a4d-af90-4ca3-a569-faed9118d6bc}: C:\Program Files\Trend Micro\Titanium\UIFramework\Toolbar\firefoxextension [2013.05.13 22:28:44 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{22C7F6C6-8D67-4534-92B5-529A0EC09405}: C:\Program Files\Trend Micro\AMSP\module\20004\FxExt\firefoxextension\ [2013.05.13 22:44:58 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 21.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 21.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
[2013.05.14 16:00:19 | 000,000,000 | ---D | M] (No name found) -- C:\Users\King\AppData\Roaming\mozilla\Extensions
[2013.05.14 15:59:54 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\extensions
[2013.05.14 15:59:54 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter}
CHR - homepage: hxxp://www.google.com
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\gcswf32.dll
CHR - plugin: Browser Exploit Prevention (Enabled) = C:\Users\King\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmiabdepfhhiieiipmeecdmeljggmfee\7.5.0.1115_0\nptmbep.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll
CHR - plugin: Trend Micro Titanium (Enabled) = C:\Program Files\Trend Micro\Titanium\UIFramework\Toolbar\firefoxextension\components\npToolbarChrome.dll
CHR - Extension: TrendMicro BEP Extension = C:\Users\King\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmiabdepfhhiieiipmeecdmeljggmfee\7.5.0.1115_0\
CHR - Extension: Google Mail = C:\Users\King\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (TmIEPlugInBHO Class) - {1CA1377B-DC1D-4A52-9585-6E06050FAC53} - C:\Programme\Trend Micro\AMSP\module\20004\2.5.1331\6.8.1094\TmIEPlg.dll (Trend Micro Inc.)
O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:64bit: - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programme\Google\GoogleToolbarNotifier\5.7.8313.1002\swg64.dll (Google Inc.)
O2:64bit: - BHO: (TmBpIeBHO Class) - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Programme\Trend Micro\AMSP\module\20002\7.5.1115\7.5.1115\TmBpIe64.dll (Trend Micro Inc.)
O2 - BHO: (TmIEPlugInBHO Class) - {1CA1377B-DC1D-4A52-9585-6E06050FAC53} - C:\Programme\Trend Micro\AMSP\module\20004\2.5.1331\6.8.1094\TmIEPlg32.dll (Trend Micro Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll (Google Inc.)
O2 - BHO: (TmBpIeBHO Class) - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Programme\Trend Micro\AMSP\module\20002\7.5.1115\7.5.1115\TmBpIe32.dll (Trend Micro Inc.)
O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [Trend Micro Client Framework] C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe (Trend Micro Inc.)
O4:64bit: - HKLM..\Run: [Trend Micro Titanium] C:\Program Files\Trend Micro\Titanium\UIFramework\uiWinMgr.exe (Trend Micro Inc.)
O4 - HKLM..\Run: [RUSB3MON] C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\rusb3mon.exe (Renesas Electronics Corporation)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [Super-Charger] C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe (MSI)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O8:64bit: - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html File not found
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html File not found
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C3B8560E-3D9E-4D61-8AF9-66EDA4C8EF0C}: DhcpNameServer = 192.168.2.1
O18:64bit: - Protocol\Handler\tmbp {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Programme\Trend Micro\AMSP\module\20002\7.5.1115\7.5.1115\TmBpIe64.dll (Trend Micro Inc.)
O18:64bit: - Protocol\Handler\tmpx {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Programme\Trend Micro\AMSP\module\20004\2.5.1331\6.8.1094\TmIEPlg.dll (Trend Micro Inc.)
O18:64bit: - Protocol\Handler\tmtbim - No CLSID value found
O18 - Protocol\Handler\tmbp {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Programme\Trend Micro\AMSP\module\20002\7.5.1115\7.5.1115\TmBpIe32.dll (Trend Micro Inc.)
O18 - Protocol\Handler\tmpx {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Programme\Trend Micro\AMSP\module\20004\2.5.1331\6.8.1094\TmIEPlg32.dll (Trend Micro Inc.)
O18 - Protocol\Handler\tmtbim {0B37915C-8B98-4B9E-80D4-464D2C830D10} - C:\Programme\Trend Micro\Titanium\UIFramework\ProToolbarIMRatingActiveX.dll (Trend Micro Inc.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010.09.01 10:11:42 | 000,000,049 | R--- | M] () - D:\AUTORUN.INF -- [ CDFS ]
O33 - MountPoints2\{25b66a9b-bc08-11e2-982b-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{25b66a9b-bc08-11e2-982b-806e6f6e6963}\Shell\AutoRun\command - "" = D:\DVDSetup.exe -- [2012.10.16 10:16:04 | 000,571,960 | R--- | M] (Micro-Star International)
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2013.05.14 16:33:40 | 000,000,000 | ---D | C] -- C:\Users\King\AppData\Local\Diagnostics
[2013.05.14 16:00:15 | 000,000,000 | ---D | C] -- C:\Users\King\AppData\Roaming\Mozilla
[2013.05.14 16:00:15 | 000,000,000 | ---D | C] -- C:\Users\King\AppData\Local\Mozilla
[2013.05.14 16:00:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
[2013.05.14 15:59:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2013.05.14 15:59:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2013.05.13 23:38:28 | 000,000,000 | ---D | C] -- C:\Users\King\AppData\Roaming\.purple
[2013.05.13 23:29:55 | 000,000,000 | ---D | C] -- C:\Users\King\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\pidgin-otr
[2013.05.13 23:29:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\pidgin-otr
[2013.05.13 23:29:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\pidgin-otr
[2013.05.13 23:09:40 | 000,000,000 | ---D | C] -- C:\Poker
[2013.05.13 23:02:19 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2013.05.13 22:55:58 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed
[2013.05.13 22:55:57 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed
[2013.05.13 22:44:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Partition Wizard Home Edition 7.8
[2013.05.13 22:44:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MiniTool Partition Wizard Home Edition 7.8
[2013.05.13 22:43:00 | 000,000,000 | ---D | C] -- C:\Users\King\AppData\Roaming\Macromedia
[2013.05.13 22:43:00 | 000,000,000 | ---D | C] -- C:\Users\King\AppData\Roaming\Adobe
[2013.05.13 22:37:04 | 000,000,000 | ---D | C] -- C:\Users\King\AppData\Roaming\Google
[2013.05.13 22:30:20 | 000,000,000 | ---D | C] -- C:\Users\King\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Titanium Internet Security
[2013.05.13 22:30:00 | 000,105,744 | ---- | C] (Trend Micro Inc.) -- C:\Windows\SysNative\drivers\tmtdi.sys
[2013.05.13 22:29:57 | 000,173,504 | ---- | C] (Trend Micro Inc.) -- C:\Windows\SysNative\drivers\tmcomm.sys
[2013.05.13 22:29:57 | 000,106,000 | ---- | C] (Trend Micro Inc.) -- C:\Windows\SysNative\drivers\tmactmon.sys
[2013.05.13 22:29:57 | 000,076,672 | ---- | C] (Trend Micro Inc.) -- C:\Windows\SysNative\drivers\tmevtmgr.sys
[2013.05.13 22:29:56 | 000,046,392 | ---- | C] (Trend Micro Inc.) -- C:\Windows\SysNative\drivers\TMEBC64.sys
[2013.05.13 22:26:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Trend Micro
[2013.05.13 22:25:19 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2013.05.13 22:23:53 | 000,000,000 | ---D | C] -- C:\winki
[2013.05.13 22:23:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
[2013.05.13 22:23:45 | 000,000,000 | -H-D | C] -- C:\SuperChargerProfile
[2013.05.13 22:23:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSI
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\2C0A
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0C0A
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0C04
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0816
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0804
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0424
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\041F
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\041E
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\041D
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\041B
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0419
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0416
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0415
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0414
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0413
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0412
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0411
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0410
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\040E
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\040D
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\040C
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\040B
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\040A
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0409
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0408
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0406
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0405
[2013.05.13 22:23:24 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0404
[2013.05.13 22:23:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Renesas Electronics
[2013.05.13 22:23:23 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0401
[2013.05.13 22:23:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Downloaded Installations
[2013.05.13 22:22:38 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2013.05.13 22:22:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Google
[2013.05.13 22:22:20 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM
[2013.05.13 22:22:20 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2013.05.13 22:22:04 | 002,605,400 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\WavesGUILib.dll
[2013.05.13 22:22:04 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
[2013.05.13 22:22:04 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll
[2013.05.13 22:22:04 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll
[2013.05.13 22:22:04 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
[2013.05.13 22:22:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2013.05.13 22:22:03 | 000,221,024 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFNHK64.dll
[2013.05.13 22:22:03 | 000,081,248 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFCOM64.dll
[2013.05.13 22:22:03 | 000,078,688 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFAPO64.dll
[2013.05.13 22:22:03 | 000,074,064 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysWow64\SFCOM.dll
[2013.05.13 22:21:59 | 000,375,128 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll
[2013.05.13 22:21:59 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll
[2013.05.13 22:21:59 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll
[2013.05.13 22:21:59 | 000,101,208 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll
[2013.05.13 22:21:59 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll
[2013.05.13 22:21:58 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll
[2013.05.13 22:21:54 | 007,163,744 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEP64A.dll
[2013.05.13 22:21:54 | 000,433,504 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EED64A.dll
[2013.05.13 22:21:54 | 000,396,632 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVolumeSDAPO.dll
[2013.05.13 22:21:54 | 000,141,152 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEL64A.dll
[2013.05.13 22:21:54 | 000,123,744 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEA64A.dll
[2013.05.13 22:21:54 | 000,074,592 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEG64A.dll
[2013.05.13 22:21:53 | 001,345,368 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioRealtek264.dll
[2013.05.13 22:21:52 | 008,363,864 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioRealtek.dll
[2013.05.13 22:21:51 | 002,131,288 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioEQ.dll
[2013.05.13 22:21:51 | 001,015,640 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPOShell64.dll
[2013.05.13 22:21:51 | 000,000,000 | ---D | C] -- C:\Users\King\AppData\Local\Google
[2013.05.13 22:21:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
[2013.05.13 22:21:50 | 000,341,336 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO30.dll
[2013.05.13 22:21:50 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO20.dll
[2013.05.13 22:21:49 | 000,603,984 | ---- | C] (Knowles Acoustics ) -- C:\Windows\SysNative\KAAPORT64.dll
[2013.05.13 22:21:38 | 002,533,952 | ---- | C] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll
[2013.05.13 22:21:29 | 000,693,352 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSVoiceClarityDLL64.dll
[2013.05.13 22:21:28 | 000,449,392 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PREC64.dll
[2013.05.13 22:21:26 | 000,537,456 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PLFX64.dll
[2013.05.13 22:21:24 | 000,524,656 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PGFX64.dll
[2013.05.13 22:21:22 | 000,712,296 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSSymmetryDLL64.dll
[2013.05.13 22:21:18 | 001,756,264 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2SpeakerDLL64.dll
[2013.05.13 22:21:14 | 001,568,360 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2HeadphoneDLL64.dll
[2013.05.13 22:21:12 | 000,491,112 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSNeoPCDLL64.dll
[2013.05.13 22:21:12 | 000,432,744 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLimiterDLL64.dll
[2013.05.13 22:21:12 | 000,428,648 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGainCompensatorDLL64.dll
[2013.05.13 22:21:12 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLFXAPO64.dll
[2013.05.13 22:21:11 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPO64.dll
[2013.05.13 22:21:11 | 000,241,768 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPONS64.dll
[2013.05.13 22:21:10 | 001,486,952 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBoostDLL64.dll
[2013.05.13 22:21:09 | 000,728,680 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBassEnhancementDLL64.dll
[2013.05.13 22:21:07 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Temp
[2013.05.13 22:21:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\InstallShield
[2013.05.13 22:20:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Asmedia Technology
[2013.05.13 22:20:43 | 000,676,968 | ---- | C] (Realtek ) -- C:\Windows\SysNative\drivers\Rt64win7.sys
[2013.05.13 22:20:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ASM106xSATA
[2013.05.13 22:20:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek
[2013.05.13 22:20:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD APP
[2013.05.13 22:20:00 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DRVSTORE
[2013.05.13 22:19:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center
[2013.05.13 22:19:05 | 000,000,000 | ---D | C] -- C:\ProgramData\AMD
[2013.05.13 22:19:04 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
[2013.05.13 22:18:46 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
[2013.05.13 22:18:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATI Technologies
[2013.05.13 22:16:39 | 000,000,000 | ---D | C] -- C:\MSI
[2013.05.13 22:13:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Ralink
[2013.05.13 22:11:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sitecom Wireless
[2013.05.13 22:11:18 | 001,675,840 | ---- | C] (Ralink Technology Corp.) -- C:\Windows\SysNative\drivers\netr28ux.sys
[2013.05.13 22:11:18 | 000,327,008 | ---- | C] (Ralink Technology, Inc.) -- C:\Windows\SysNative\RaCoInstx.dll
[2013.05.13 22:11:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Sitecom Driver
[2013.05.13 22:11:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Cisco
[2013.05.13 22:11:09 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2013.05.13 22:11:08 | 002,403,392 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\SysNative\RaCertMgr.dll
[2013.05.13 22:11:08 | 001,608,768 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\SysWow64\RaCertMgr.dll
[2013.05.13 22:11:08 | 001,121,856 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\SysWow64\RAIHV.dll
[2013.05.13 22:11:08 | 001,121,856 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\SysNative\RAIHV.dll
[2013.05.13 22:11:08 | 000,128,864 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\SysWow64\RAEXTUI.dll
[2013.05.13 22:11:08 | 000,128,864 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\SysNative\RAEXTUI.dll
[2013.05.13 22:11:08 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallShield Installation Information
[2013.05.13 22:11:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sitecom
[2013.05.13 22:11:08 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\RaLanguages
[2013.05.13 22:10:52 | 000,000,000 | ---D | C] -- C:\Users\King\AppData\Roaming\InstallShield
[2013.05.13 22:10:00 | 000,000,000 | R--D | C] -- C:\Users\King\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2013.05.13 22:10:00 | 000,000,000 | R--D | C] -- C:\Users\King\Searches
[2013.05.13 22:10:00 | 000,000,000 | R--D | C] -- C:\Users\King\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2013.05.13 22:09:52 | 000,000,000 | ---D | C] -- C:\Users\King\AppData\Roaming\Identities
[2013.05.13 22:09:51 | 000,000,000 | R--D | C] -- C:\Users\King\Contacts
[2013.05.13 22:09:49 | 000,000,000 | ---D | C] -- C:\Users\King\AppData\Local\VirtualStore
[2013.05.13 22:09:39 | 000,000,000 | --SD | C] -- C:\Users\King\AppData\Roaming\Microsoft
[2013.05.13 22:09:39 | 000,000,000 | R--D | C] -- C:\Users\King\Videos
[2013.05.13 22:09:39 | 000,000,000 | R--D | C] -- C:\Users\King\Saved Games
[2013.05.13 22:09:39 | 000,000,000 | R--D | C] -- C:\Users\King\Pictures
[2013.05.13 22:09:39 | 000,000,000 | R--D | C] -- C:\Users\King\Music
[2013.05.13 22:09:39 | 000,000,000 | R--D | C] -- C:\Users\King\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2013.05.13 22:09:39 | 000,000,000 | R--D | C] -- C:\Users\King\Links
[2013.05.13 22:09:39 | 000,000,000 | R--D | C] -- C:\Users\King\Favorites
[2013.05.13 22:09:39 | 000,000,000 | R--D | C] -- C:\Users\King\Downloads
[2013.05.13 22:09:39 | 000,000,000 | R--D | C] -- C:\Users\King\Documents
[2013.05.13 22:09:39 | 000,000,000 | R--D | C] -- C:\Users\King\Desktop
[2013.05.13 22:09:39 | 000,000,000 | R--D | C] -- C:\Users\King\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2013.05.13 22:09:39 | 000,000,000 | -HSD | C] -- C:\Users\King\Vorlagen
[2013.05.13 22:09:39 | 000,000,000 | -HSD | C] -- C:\Users\King\AppData\Local\Verlauf
[2013.05.13 22:09:39 | 000,000,000 | -HSD | C] -- C:\Users\King\AppData\Local\Temporary Internet Files
[2013.05.13 22:09:39 | 000,000,000 | -HSD | C] -- C:\Users\King\Startmenü
[2013.05.13 22:09:39 | 000,000,000 | -HSD | C] -- C:\Users\King\SendTo
[2013.05.13 22:09:39 | 000,000,000 | -HSD | C] -- C:\Users\King\Recent
[2013.05.13 22:09:39 | 000,000,000 | -HSD | C] -- C:\Users\King\Netzwerkumgebung
[2013.05.13 22:09:39 | 000,000,000 | -HSD | C] -- C:\Users\King\Lokale Einstellungen
[2013.05.13 22:09:39 | 000,000,000 | -HSD | C] -- C:\Users\King\Documents\Eigene Videos
[2013.05.13 22:09:39 | 000,000,000 | -HSD | C] -- C:\Users\King\Documents\Eigene Musik
[2013.05.13 22:09:39 | 000,000,000 | -HSD | C] -- C:\Users\King\Eigene Dateien
[2013.05.13 22:09:39 | 000,000,000 | -HSD | C] -- C:\Users\King\Documents\Eigene Bilder
[2013.05.13 22:09:39 | 000,000,000 | -HSD | C] -- C:\Users\King\Druckumgebung
[2013.05.13 22:09:39 | 000,000,000 | -HSD | C] -- C:\Users\King\Cookies
[2013.05.13 22:09:39 | 000,000,000 | -HSD | C] -- C:\Users\King\AppData\Local\Anwendungsdaten
[2013.05.13 22:09:39 | 000,000,000 | -HSD | C] -- C:\Users\King\Anwendungsdaten
[2013.05.13 22:09:39 | 000,000,000 | -H-D | C] -- C:\Users\King\AppData
[2013.05.13 22:09:39 | 000,000,000 | ---D | C] -- C:\Users\King\AppData\Local\Temp
[2013.05.13 22:09:39 | 000,000,000 | ---D | C] -- C:\Users\King\AppData\Local\Microsoft
[2013.05.13 22:09:39 | 000,000,000 | ---D | C] -- C:\Users\King\AppData\Roaming\Media Center Programs
[2013.05.13 22:09:34 | 000,000,000 | -HSD | C] -- C:\ProgramData\Vorlagen
[2013.05.13 22:09:34 | 000,000,000 | -HSD | C] -- C:\ProgramData\Startmenü
[2013.05.13 22:09:34 | 000,000,000 | -HSD | C] -- C:\Recovery
[2013.05.13 22:09:34 | 000,000,000 | -HSD | C] -- C:\Programme
[2013.05.13 22:09:34 | 000,000,000 | -HSD | C] -- C:\Program Files\Gemeinsame Dateien
[2013.05.13 22:09:34 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoriten
[2013.05.13 22:09:34 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Videos
[2013.05.13 22:09:34 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Musik
[2013.05.13 22:09:34 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Bilder
[2013.05.13 22:09:34 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen
[2013.05.13 22:09:34 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumente
[2013.05.13 22:09:34 | 000,000,000 | -HSD | C] -- C:\ProgramData\Anwendungsdaten
[2013.05.13 22:05:58 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2013.05.13 22:03:37 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[2013.05.13 22:03:19 | 000,000,000 | -HSD | C] -- C:\System Volume Information
========== Files - Modified Within 30 Days ==========
[2013.05.14 16:12:45 | 000,000,000 | ---- | M] () -- C:\Users\King\defogger_reenable
[2013.05.14 16:03:46 | 001,472,002 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013.05.14 16:03:46 | 000,643,628 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2013.05.14 16:03:46 | 000,606,992 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013.05.14 16:03:46 | 000,126,188 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2013.05.14 16:03:46 | 000,103,370 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013.05.14 16:00:03 | 000,001,147 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2013.05.14 15:57:03 | 000,001,102 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013.05.14 15:56:39 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013.05.14 15:56:29 | 2146,045,951 | -HS- | M] () -- C:\hiberfil.sys
[2013.05.14 02:44:00 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013.05.14 02:36:00 | 000,001,106 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013.05.14 02:35:08 | 000,009,584 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013.05.14 02:35:08 | 000,009,584 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013.05.14 00:04:43 | 000,002,183 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2013.05.13 23:29:16 | 001,623,752 | ---- | M] () -- C:\Users\King\pidgin-otr-4.0.0-1.exe
[2013.05.13 23:11:29 | 000,000,730 | ---- | M] () -- C:\Users\King\Desktop\Winner Poker.lnk
[2013.05.13 23:09:47 | 000,000,723 | ---- | M] () -- C:\Users\King\Desktop\Titan Poker.lnk
[2013.05.13 22:53:08 | 000,000,597 | ---- | M] () -- C:\Users\King\Desktop\William Hill Poker.lnk
[2013.05.13 22:44:26 | 000,001,282 | ---- | M] () -- C:\Users\Public\Desktop\MiniTool Partition Wizard Home Edition.lnk
[2013.05.13 22:30:26 | 000,001,499 | ---- | M] () -- C:\Users\King\Desktop\Trend Micro Titanium Internet Security.lnk
[2013.05.13 22:28:10 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2013.05.13 22:27:36 | 000,000,059 | ---- | M] () -- C:\Windows\SysNative\SupportTool.exe.bat
[2013.05.13 22:27:33 | 000,000,306 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2013.05.13 22:25:14 | 000,000,036 | ---- | M] () -- C:\Users\King\AppData\Local\housecall.guid.cache
[2013.05.13 22:23:46 | 000,002,063 | ---- | M] () -- C:\Users\Public\Desktop\Super-Charger.lnk
[2013.05.13 22:11:29 | 000,001,995 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Sitecom Wireless Utility.lnk
[2013.05.13 22:10:42 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2013.05.13 22:08:36 | 000,274,464 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013.05.13 22:07:26 | 000,056,735 | ---- | M] () -- C:\Windows\SysWow64\license.rtf
[2013.05.13 22:07:26 | 000,056,735 | ---- | M] () -- C:\Windows\SysNative\license.rtf
========== Files Created - No Company Name ==========
[2013.05.14 16:12:45 | 000,000,000 | ---- | C] () -- C:\Users\King\defogger_reenable
[2013.05.14 16:00:03 | 000,001,147 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2013.05.14 16:00:02 | 000,001,159 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2013.05.13 23:29:43 | 001,623,752 | ---- | C] () -- C:\Users\King\pidgin-otr-4.0.0-1.exe
[2013.05.13 23:26:55 | 000,000,533 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pidgin.lnk
[2013.05.13 23:11:29 | 000,000,760 | ---- | C] () -- C:\Users\King\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winner Poker.lnk
[2013.05.13 23:11:29 | 000,000,730 | ---- | C] () -- C:\Users\King\Desktop\Winner Poker.lnk
[2013.05.13 23:09:47 | 000,000,753 | ---- | C] () -- C:\Users\King\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Titan Poker.lnk
[2013.05.13 23:09:47 | 000,000,723 | ---- | C] () -- C:\Users\King\Desktop\Titan Poker.lnk
[2013.05.13 22:56:02 | 000,000,884 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013.05.13 22:53:08 | 000,000,597 | ---- | C] () -- C:\Users\King\Desktop\William Hill Poker.lnk
[2013.05.13 22:53:08 | 000,000,597 | ---- | C] () -- C:\Users\King\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\William Hill Poker.lnk
[2013.05.13 22:44:43 | 003,074,240 | ---- | C] () -- C:\Windows\SysNative\pwNative.exe
[2013.05.13 22:44:42 | 000,019,032 | ---- | C] () -- C:\Windows\SysNative\pwdrvio.sys
[2013.05.13 22:44:39 | 000,009,584 | ---- | C] () -- C:\Windows\SysNative\pwdspio.sys
[2013.05.13 22:44:26 | 000,001,282 | ---- | C] () -- C:\Users\Public\Desktop\MiniTool Partition Wizard Home Edition.lnk
[2013.05.13 22:30:20 | 000,001,499 | ---- | C] () -- C:\Users\King\Desktop\Trend Micro Titanium Internet Security.lnk
[2013.05.13 22:28:10 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2013.05.13 22:27:36 | 000,000,059 | ---- | C] () -- C:\Windows\SysNative\SupportTool.exe.bat
[2013.05.13 22:27:33 | 000,000,306 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2013.05.13 22:25:14 | 000,000,036 | ---- | C] () -- C:\Users\King\AppData\Local\housecall.guid.cache
[2013.05.13 22:23:46 | 000,002,063 | ---- | C] () -- C:\Users\Public\Desktop\Super-Charger.lnk
[2013.05.13 22:22:04 | 000,002,183 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2013.05.13 22:21:59 | 000,290,813 | ---- | C] () -- C:\Windows\SysNative\drivers\RTAIODAT.DAT
[2013.05.13 22:21:55 | 000,001,106 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013.05.13 22:21:54 | 000,001,102 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013.05.13 22:11:29 | 000,001,995 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Sitecom Wireless Utility.lnk
[2013.05.13 22:11:18 | 000,014,119 | ---- | C] () -- C:\Windows\SysWow64\RaCoInst.dat
[2013.05.13 22:11:18 | 000,014,119 | ---- | C] () -- C:\Windows\SysNative\RaCoInst.dat
[2013.05.13 22:11:08 | 000,792,416 | ---- | C] () -- C:\Windows\SysWow64\DiagFunc.dll
[2013.05.13 22:11:08 | 000,792,416 | ---- | C] () -- C:\Windows\SysNative\DiagFunc.dll
[2013.05.13 22:11:08 | 000,000,451 | ---- | C] () -- C:\Windows\SysWow64\DiagFunc.ini
[2013.05.13 22:11:08 | 000,000,451 | ---- | C] () -- C:\Windows\SysNative\DiagFunc.ini
[2013.05.13 22:10:42 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2013.05.13 22:10:05 | 000,001,405 | ---- | C] () -- C:\Users\King\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
[2013.05.13 22:10:02 | 000,001,439 | ---- | C] () -- C:\Users\King\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2013.05.13 22:07:18 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
[2013.05.13 22:07:15 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
[2013.05.13 22:03:19 | 2146,045,951 | -HS- | C] () -- C:\hiberfil.sys
[2012.05.04 15:37:46 | 000,054,784 | ---- | C] () -- C:\Windows\SysWow64\OVDecode.dll
========== ZeroAccess Check ==========
[2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2009.07.14 03:41:54 | 014,161,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2009.07.14 03:16:14 | 012,866,560 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2009.07.14 03:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2013.05.14 16:37:41 | 000,000,000 | ---D | M] -- C:\Users\King\AppData\Roaming\.purple
========== Purity Check ==========
< End of report > --- --- ---
Extras:OTL Logfile: Code:
OTL Extras logfile created on: 14.05.2013 16:33:12 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\King\Downloads
64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
8,00 Gb Total Physical Memory | 5,74 Gb Available Physical Memory | 71,71% Memory free
15,99 Gb Paging File | 13,67 Gb Available in Paging File | 85,47% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 122,07 Gb Total Space | 94,05 Gb Free Space | 77,04% Space Free | Partition Type: NTFS
Drive D: | 2,94 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive L: | 809,34 Gb Total Space | 808,63 Gb Free Space | 99,91% Space Free | Partition Type: NTFS
Computer Name: KING-PC | User Name: King | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{10B9F0E8-28A0-4AE0-A5A5-4F1BBD8E7806}" = lport=139 | protocol=6 | dir=in | app=system |
"{17B9EA60-0ED8-4FF3-8020-B13A453AD510}" = rport=138 | protocol=17 | dir=out | app=system |
"{18679BEA-9471-4018-8B0F-885C5C42FD34}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{19B050CE-73ED-45B6-9F7E-319F4DC25820}" = rport=445 | protocol=6 | dir=out | app=system |
"{1D18416F-597C-4E8C-A7ED-157B4EC30A48}" = rport=137 | protocol=17 | dir=out | app=system |
"{2DAFF773-AEA4-4D67-8AFC-15CDD5EDD60E}" = lport=10243 | protocol=6 | dir=in | app=system |
"{3BC12169-CAF7-40F8-926A-A8FCBFDA870D}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{480BAEBE-2D02-4C0C-A726-64BDC654793B}" = rport=10243 | protocol=6 | dir=out | app=system |
"{5A290780-F41C-4D36-9AC0-23DFAC590C23}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{5C739949-386B-4DD5-9228-3BD768F91DB0}" = lport=2869 | protocol=6 | dir=in | app=system |
"{642BF148-C1EF-4284-BD89-4ED139B18021}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{73049329-DCF7-49E1-8496-374A56342B97}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{85990C07-DB10-43B4-909D-8CC08C5DC626}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{894054DF-BB59-45B6-A2BD-7332593C1A40}" = lport=137 | protocol=17 | dir=in | app=system |
"{90CCC299-6FCD-4928-95B4-1E50C5033617}" = lport=445 | protocol=6 | dir=in | app=system |
"{B770A708-AF5B-406D-B34A-08C0830D9BBB}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{BFCBFD67-1D87-4F11-943F-BBC314F54E38}" = rport=139 | protocol=6 | dir=out | app=system |
"{C3AB5B17-97CE-46C5-ABA3-52758944FB96}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{CA089583-3FFA-422E-8D0B-E79B63E8F691}" = lport=138 | protocol=17 | dir=in | app=system |
"{CEB2479A-EBB2-4AE7-881E-99F7E648F4F6}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{FD37CC5B-2F85-49B9-B25E-8AD13E8241BC}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00DF1D56-44F1-4E9C-B7D5-A933DBBBA700}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{02CAB711-90FB-4126-B2EC-2A515A997752}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{09F52D19-4C82-48BE-988A-F2BA60B3514C}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{2EC72E8C-F357-4CD8-885D-ECB5A40FECBD}" = protocol=17 | dir=in | app=c:\program files (x86)\sitecom\common\ramediaserver.exe |
"{423CA11A-A792-4C3D-B816-613A4509565F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{4DBAEBEF-FCB7-4F7F-957A-4710E4A9A283}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{544C9E55-0363-4DC4-819B-1D65AB8A639C}" = protocol=6 | dir=in | app=c:\program files (x86)\sitecom\common\raui.exe |
"{732D6320-2776-400A-A195-CAAF684C95B6}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{75A58993-CB30-4323-B051-BB2B8FD5F93E}" = protocol=6 | dir=out | app=system |
"{7A2DED7C-293A-4959-8F08-09E065DDACC5}" = protocol=17 | dir=in | app=c:\program files (x86)\sitecom\common\raui.exe |
"{7C833202-ECE0-4F68-AE5C-1FC7CCDCAF5C}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{8D422C62-3B0D-4A70-891A-4D05BEBDA709}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{91567ED2-BC72-4B3D-8DDD-2E1C8CE62442}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{926B1500-3DFC-41A1-BFB0-70BF4AC7E81B}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{B683056A-9525-4677-BFA5-D647E7B73CDC}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{C22C6113-EA1D-468A-84A4-FD217A8425BB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{C2C290A8-144F-4688-838E-72C3CADA2474}" = protocol=6 | dir=in | app=c:\program files (x86)\sitecom\common\ramediaserver.exe |
"{C767C5B1-1F81-4C8C-9648-333A198ACC37}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{D7EE2EF5-99E6-4251-8A9F-98FF285D1414}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{EACC36A5-FDE2-4F31-9295-9C2AD9657ABB}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{EF6177B3-BE98-4F0B-AE30-CC25823B5A59}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{F02E76CB-0701-4F23-9C2B-9AF29FCD78D0}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{FE499701-D285-42BB-AD37-FAC27CF319D1}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{975290F7-01EE-6256-484A-EDD705037432}" = ccc-utility64
"{ABBD4BA8-6703-40D2-AB1E-5BB1F7DB49A4}" = Trend Micro Titanium Internet Security
"{ABBD4BA9-6703-40D2-AB1E-5BB1F7DB49A4}" = Trend Micro Titanium
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
"{DD562794-C098-A1E5-66ED-10E8BD1C84C5}" = AMD Catalyst Install Manager
"{E94CF53A-B97F-DBCF-17F4-60AEECFC1A62}" = AMD Fuel
"EPSON SX430 Series" = EPSON SX430 Series Printer Uninstall
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1" = MiniTool Partition Wizard Home Edition 7.8
"{0C7B34CC-3C7F-97F6-B989-1259B93E304F}" = CCC Help Turkish
"{17528CE4-C333-48FB-A9E4-D841E795CDCE}" = Renesas Electronics USB 3.0 Host Controller Driver
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{1D437FD2-BEBA-294A-14B0-73DF88537625}" = CCC Help Danish
"{225E3607-953C-EFCF-84C5-727EBE431CAB}" = CCC Help Greek
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{28DA7D8B-F9A4-4F18-8AA0-551B1E084D0D}" = Sitecom WLA-6000 Wireless Dualband Network Adapter N750 X6
"{3567AA55-A730-4EFB-D419-C198EF9C3B51}" = CCC Help English
"{3EA29604-AB1F-00F7-AD0C-11FC133CE7C0}" = CCC Help Thai
"{443F2BDB-67B3-E0BF-0A8D-D1FC7A83FB1C}" = CCC Help Japanese
"{449DC4DE-157B-4CE5-685D-8A0ACCDAEE9F}" = CCC Help Chinese Standard
"{4A85401C-71E6-5487-F1C0-598C10E22D3B}" = CCC Help Spanish
"{501E43C9-C95D-8E8D-8D12-AA5FEFBA09EC}" = CCC Help Swedish
"{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module
"{61942EF5-2CD8-47D4-869C-2E9A8BB085F1}" = Asmedia ASM106x SATA Host Controller Driver
"{6395030F-815F-0948-F166-73ECC57097E3}" = CCC Help Norwegian
"{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
"{69C610F3-4DEC-44C5-D142-E69217E88448}" = CCC Help Russian
"{6A4945F7-5B9C-6DDA-A08A-048816260309}" = CCC Help German
"{777D5DD4-8BBC-EADA-B300-815B68F33D5F}" = CCC Help Finnish
"{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1" = Super-Charger
"{81CF5153-38CF-41e2-AC3C-3D477C987D96}_is1" = Winki
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{9243354A-3075-C91E-6E12-403D932B38E5}" = Catalyst Control Center InstallProxy
"{9D2DD563-E1DD-920B-6E64-C057D4F080EB}" = CCC Help Hungarian
"{9D6D7292-8EA9-B5DD-9C10-D5B2937CFD84}" = CCC Help Italian
"{A5B4707E-CFD3-A08F-ED69-C500D541EAEF}" = CCC Help Korean
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{B6700BBF-1153-FA04-FD0A-ADEF36C564E3}" = CCC Help Dutch
"{B8E7A402-AB25-F1EC-C21A-7E95F2BBDDB0}" = CCC Help Czech
"{D6116D91-A114-671F-D075-73B4154F7390}" = AMD VISION Engine Control Center
"{D87A50FE-11B3-3B70-77EB-E64570E82F9E}" = CCC Help French
"{DF549E6D-193A-0EA3-7C90-F24B631CC2EB}" = CCC Help Portuguese
"{DF7ADC65-EBCE-97DA-4C8A-4F0BCF7C0E73}" = CCC Help Polish
"{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module
"{F0F34B75-C634-8714-D226-9259FC1A7E92}" = Catalyst Control Center Localization All
"{FC53A2BD-6B34-C6FB-C3F4-9D8DC7ED5C92}" = CCC Help Chinese Traditional
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Google Chrome" = Google Chrome
"InstallShield_{17528CE4-C333-48FB-A9E4-D841E795CDCE}" = Renesas Electronics USB 3.0 Host Controller Driver
"Mozilla Firefox 21.0 (x86 de)" = Mozilla Firefox 21.0 (x86 de)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Pidgin" = Pidgin
"pidgin-otr" = pidgin-otr 4.0.0-1
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Titan Poker" = Titan Poker
"William Hill Poker" = William Hill Poker
"winnerpoker" = Winner Poker
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 13.05.2013 16:04:03 | Computer Name = 37L4247E29-32 | Source = Microsoft-Windows-CAPI2 | ID = 257
Description = Vom Kryptografiedienst konnte die Katalogdatenbank nicht initialisiert
werden. "ESENT"-Fehler: -546.
Error - 13.05.2013 16:36:46 | Computer Name = King-PC | Source = VSS | ID = 8194
Description =
Error - 13.05.2013 17:36:23 | Computer Name = King-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: amddriverdownloader.exe, Version:
1.0.2.0, Zeitstempel: 0x4e8c5e14 Name des fehlerhaften Moduls: amddriverdownloader.exe,
Version: 1.0.2.0, Zeitstempel: 0x4e8c5e14 Ausnahmecode: 0x40000015 Fehleroffset:
0x00116384 ID des fehlerhaften Prozesses: 0x119c Startzeit der fehlerhaften Anwendung:
0x01ce5021d9ce315f Pfad der fehlerhaften Anwendung: L:\amddriverdownloader.exe Pfad
des fehlerhaften Moduls: L:\amddriverdownloader.exe Berichtskennung: 27fb29af-bc15-11e2-8cd5-d43d7e4f303c
Error - 13.05.2013 17:36:32 | Computer Name = King-PC | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Fehler beim Extrahieren der Drittanbieterstammliste aus der automatischen
Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>.
Fehler: Es steht nicht genug Speicherplatz auf dem Datenträger zur Verfügung. .
Error - 13.05.2013 17:36:40 | Computer Name = King-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: amddriverdownloader.exe, Version:
1.0.2.0, Zeitstempel: 0x4e8c5e14 Name des fehlerhaften Moduls: amddriverdownloader.exe,
Version: 1.0.2.0, Zeitstempel: 0x4e8c5e14 Ausnahmecode: 0x40000015 Fehleroffset:
0x00116384 ID des fehlerhaften Prozesses: 0x11cc Startzeit der fehlerhaften Anwendung:
0x01ce5021f4552742 Pfad der fehlerhaften Anwendung: L:\amddriverdownloader.exe Pfad
des fehlerhaften Moduls: L:\amddriverdownloader.exe Berichtskennung: 320d9904-bc15-11e2-8cd5-d43d7e4f303c
Error - 13.05.2013 17:36:39 | Computer Name = King-PC | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Fehler beim Extrahieren der Drittanbieterstammliste aus der automatischen
Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>.
Fehler: Es steht nicht genug Speicherplatz auf dem Datenträger zur Verfügung. .
Error - 13.05.2013 17:36:54 | Computer Name = King-PC | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Fehler beim Extrahieren der Drittanbieterstammliste aus der automatischen
Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>.
Fehler: Es steht nicht genug Speicherplatz auf dem Datenträger zur Verfügung. .
Error - 13.05.2013 17:36:55 | Computer Name = King-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: amddriverdownloader.exe, Version:
1.0.2.0, Zeitstempel: 0x4e8c5e14 Name des fehlerhaften Moduls: amddriverdownloader.exe,
Version: 1.0.2.0, Zeitstempel: 0x4e8c5e14 Ausnahmecode: 0x40000015 Fehleroffset:
0x00116384 ID des fehlerhaften Prozesses: 0xf68 Startzeit der fehlerhaften Anwendung:
0x01ce5021fd6e2310 Pfad der fehlerhaften Anwendung: L:\amddriverdownloader.exe Pfad
des fehlerhaften Moduls: L:\amddriverdownloader.exe Berichtskennung: 3b28f632-bc15-11e2-8cd5-d43d7e4f303c
Error - 13.05.2013 17:37:00 | Computer Name = King-PC | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Fehler beim Extrahieren der Drittanbieterstammliste aus der automatischen
Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>.
Fehler: Es steht nicht genug Speicherplatz auf dem Datenträger zur Verfügung. .
Error - 13.05.2013 17:37:02 | Computer Name = King-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: amddriverdownloader.exe, Version:
1.0.2.0, Zeitstempel: 0x4e8c5e14 Name des fehlerhaften Moduls: amddriverdownloader.exe,
Version: 1.0.2.0, Zeitstempel: 0x4e8c5e14 Ausnahmecode: 0x40000015 Fehleroffset:
0x00116384 ID des fehlerhaften Prozesses: 0xd44 Startzeit der fehlerhaften Anwendung:
0x01ce50220137ed22 Pfad der fehlerhaften Anwendung: L:\amddriverdownloader.exe Pfad
des fehlerhaften Moduls: L:\amddriverdownloader.exe Berichtskennung: 3ef521a5-bc15-11e2-8cd5-d43d7e4f303c
[ System Events ]
Error - 13.05.2013 16:46:16 | Computer Name = King-PC | Source = Microsoft-Windows-BitLocker-Driver | ID = 24620
Description = Überprüfung des verschlüsselten Volumes: Die Volumeinformationen auf
"\\?\Volume{3d3c7e09-bc0c-11e2-8cd5-d43d7e4f303c}" können nicht gelesen werden.
Error - 13.05.2013 18:03:08 | Computer Name = King-PC | Source = Microsoft-Windows-BitLocker-Driver | ID = 24620
Description = Überprüfung des verschlüsselten Volumes: Die Volumeinformationen auf
"\\?\Volume{3d3c7e86-bc0c-11e2-8cd5-d43d7e4f303c}" können nicht gelesen werden.
Error - 13.05.2013 18:08:35 | Computer Name = King-PC | Source = volsnap | ID = 393252
Description = Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher
nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte.
< End of report > --- --- ---
Zu Gmer:
Es war nicht möglich das file zu erstellen. Wenn ich auf save klicke passiert gar nichts und es wird nicht gesaved auf desktop. Es scheint als ob irgendwas es einfach blockiert und ich nix machen kann.
Bitte um Hilfe. |