delux303 | 06.01.2010 17:33 | Hey
Vielen Dank erstmal für die Schnelle Hilfe.
Zu 1. : Ich habs deinstalliert
Zu 2. : Code:
MD5: dd45f5c6239e54ba67b0f0678640de51
First received: 2009.12.14 15:34:56 UTC
Datum 2009.12.14 15:34:56 UTC [>23D]
Ergebnisse 0/41
Permalink: analisis/25992dcedcc7e4692d807ca2021f2f733c2651f7e1bf00736967decb7f05721b-1260804896 Zu 3. : Kommt ein Fehler wenn ich Rsit ausführe: Line1 Variabel used without beeing declared... Hat trotzdem 1 txt File gespeichert: Code:
Logfile of random's system information tool 1.06 (written by random/random)
Run by Daniel Schubert at 2010-01-06 17:27:09
Microsoft Windows 7 Professional
System drive C: has 173 GB (76%) free of 227 GB
Total RAM: 1944 MB (46% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:27:21, on 06.01.2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
C:\Program Files\Lenovo\HOTKEY\tpfnf6r.exe
C:\Windows\System32\TpShocks.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Lenovo\Message Center Plus\MCPLaunch.exe
C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
C:\Program Files\Lenovo\Zoom\TpScrex.exe
C:\Program Files\Lenovo\Client Security Solution\cssauth.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Lenovo\Client Security Solution\password_manager.exe
C:\Program Files\Apoint2K\ApMsgFwd.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Pidgin\pidgin.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Daniel Schubert\Downloads\RSIT.txt.exe
C:\Program Files\trend micro\Daniel Schubert.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://lenovo.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: IEPlugin Class - {11222041-111B-46E3-BD29-EFB2449479B1} - C:\PROGRA~1\ArcSoft\MEDIAC~1\INTERN~1\ARCURL~1.DLL
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Password Manager Browser Helper Object - {BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [TPHOTKEY] C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
O4 - HKLM\..\Run: [LENOVO.TPFNF6R] C:\Program Files\Lenovo\HOTKEY\TPFNF6R.exe
O4 - HKLM\..\Run: [TpShocks] TpShocks.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [PWMTRV] rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\PWMTR32V.DLL,PwrMgrBkGndMonitor
O4 - HKLM\..\Run: [FingerPrintSoftware] "C:\Program Files\Lenovo Fingerprint Software\fpapp.exe" \s
O4 - HKLM\..\Run: [Message Center Plus] C:\Program Files\LENOVO\Message Center Plus\MCPLaunch.exe /start
O4 - HKLM\..\Run: [AcWin7Hlpr] C:\Program Files\Lenovo\Access Connections\AcTBenabler.exe
O4 - HKLM\..\Run: [cssauth] "C:\Program Files\Lenovo\Client Security Solution\cssauth.exe" silent
O4 - HKLM\..\Run: [LenVolFx] LenVolEx.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETZWERKDIENST')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETZWERKDIENST')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
O9 - Extra button: In Blog veröffentlichen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: In Windows Live Writer in Blog veröffentliche&n - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files\ThinkPad\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\ThinkPad\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @C:\Program Files\ThinkPad\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\ThinkPad\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
O9 - Extra 'Tools' menuitem: Lenovo Password Manager... - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
O13 - Gopher Prefix:
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: AcPrfMgrSvc - Lenovo - C:\Program Files\Lenovo\Access Connections\AcPrfMgrSvc.exe
O23 - Service: AcSvc - Lenovo - C:\Program Files\Lenovo\Access Connections\AcSvc.exe
O23 - Service: AD Monitor (ADMonitor) - Unknown owner - C:\Windows\system32\ADMonitor.exe
O23 - Service: Avira AntiVir Planer (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: AuthenTec Fingerprint Service (ATService) - AuthenTec, Inc. - C:\Windows\system32\AtService.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe
O23 - Service: Data Transfer Service (dtsvc) - Unknown owner - C:\Windows\system32\DTS.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: ThinkPad PM Service (IBMPMSVC) - Lenovo - C:\Windows\system32\ibmpmsvc.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: Lenovo Microphone Mute (LENOVO.MICMUTE) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: Power Manager DBC Service - Lenovo - C:\Program Files\ThinkPad\Utilities\PWMDBSVC.EXE
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: RoxMediaDB10 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: System Update (SUService) - Lenovo Group Limited - c:\Program Files\Lenovo\System Update\SUService.exe
O23 - Service: ThinkVantage Registry Monitor Service - Lenovo Group Limited - C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe
O23 - Service: ThinkPad HDD APS Logging Service (TPHDEXLGSVC) - Lenovo. - C:\Windows\System32\TPHDEXLG.exe
O23 - Service: Anzeige am Bildschirm (TPHKSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
O23 - Service: TVT Backup Service - Lenovo Group Limited - C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe
--
End of file - 9744 bytes
======Scheduled tasks folder======
C:\Windows\tasks\PCDoctorBackgroundMonitorTask.job
C:\Windows\tasks\SystemToolsDailyTest.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11222041-111B-46E3-BD29-EFB2449479B1}]
IEPlugin Class - C:\PROGRA~1\ArcSoft\MEDIAC~1\INTERN~1\ARCURL~1.DLL [2008-12-24 145920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Anmelde-Hilfsprogramm - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BF468356-BB7E-42D7-9F15-4F3B9BCFCED2}]
IePasswordManagerHelper Class - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll [2009-08-26 763192]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-11-24 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
Locked
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2009-03-09 176128]
"TPHOTKEY"=C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe [2009-03-13 68976]
"LENOVO.TPFNF6R"=C:\Program Files\Lenovo\HOTKEY\TPFNF6R.exe [2009-08-20 62752]
""= []
"TpShocks"=C:\Windows\system32\TpShocks.exe [2009-07-08 337184]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-08-03 174104]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-08-03 151064]
"PWMTRV"=rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\PWMTR32V.DLL,PwrMgrBkGndMonitor []
"FingerPrintSoftware"=C:\Program Files\Lenovo Fingerprint Software\fpapp.exe [2009-08-31 1582328]
"Message Center Plus"=C:\Program Files\LENOVO\Message Center Plus\MCPLaunch.exe [2009-05-27 49976]
"AcWin7Hlpr"=C:\Program Files\Lenovo\Access Connections\AcTBenabler.exe [2009-10-13 36864]
"cssauth"=C:\Program Files\Lenovo\Client Security Solution\cssauth.exe [2009-08-26 3089720]
"LenVolFx"=C:\Windows\LenVolEx.exe [2009-11-02 15208]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
"ArcSoft Connection Service"=C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2009-10-10 203264]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe [2009-12-17 39424]
"Malwarebytes Anti-Malware (reboot)"=C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [2009-12-30 1389904]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe
Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-07-28 216576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
ACGina
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vga.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vgasave.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Browser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dhcp]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DnsCache]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ipnat.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanServer]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanWorkstation]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LmHosts]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Messenger]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS Wrapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ndisuio]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOSGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetDDEGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetMan]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Network]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetworkProvider]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP_TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdsessmgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SharedAccess]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Streams Drivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Tcpip]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vga.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vgasave.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E972-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E973-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E974-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E975-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableCAD"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{918c9edf-d907-11de-9f91-806e6f6e6963}]
shell\AutoRun\command - Q:\LenovoQDrive.exe
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-01-06 15:00:14 ----D---- C:\Windows\system32\appmgmt
2010-01-05 13:56:30 ----D---- C:\rsit
2010-01-05 13:55:57 ----D---- C:\Program Files\TrendMicro
2010-01-05 13:49:33 ----D---- C:\Program Files\trend micro
2010-01-05 11:53:29 ----D---- C:\Users\...\AppData\Roaming\Malwarebytes
2010-01-05 11:53:19 ----D---- C:\ProgramData\Malwarebytes
2010-01-05 11:53:19 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-01-05 11:45:49 ----D---- C:\Program Files\CCleaner
2010-01-05 11:12:20 ----D---- C:\Program Files\Spyware Doctor
2010-01-05 11:12:20 ----D---- C:\Program Files\Common Files\PC Tools
2010-01-05 11:12:08 ----AD---- C:\ProgramData\TEMP
2010-01-02 20:47:19 ----D---- C:\Filme
2010-01-02 20:40:02 ----D---- C:\Program Files\DVD Decrypter
2010-01-02 20:39:19 ----D---- C:\ProgramData\DVD Shrink
2010-01-02 20:39:17 ----D---- C:\Program Files\DVD Shrink
2009-12-27 17:56:25 ----D---- C:\Users\...t\AppData\Roaming\gtk-2.0
2009-12-27 17:46:57 ----D---- C:\Windows\SQL9_KB970892_ENU
2009-12-27 14:15:27 ----A---- C:\Windows\ODBC.INI
2009-12-27 14:15:25 ----A---- C:\Windows\system32\mdimon.dll
2009-12-27 00:00:56 ----D---- C:\Users\...t\AppData\Roaming\Nero
2009-12-26 23:30:01 ----D---- C:\Program Files\Nero
2009-12-26 23:29:32 ----D---- C:\ProgramData\Nero
2009-12-26 23:29:31 ----D---- C:\Program Files\Common Files\Nero
2009-12-26 23:05:47 ----D---- C:\Users\...\AppData\Roaming\Vso
2009-12-26 23:05:47 ----A---- C:\Users\...\AppData\Roaming\inst.exe
2009-12-26 23:05:29 ----D---- C:\Program Files\DVDFab 6
2009-12-26 22:53:35 ----D---- C:\Program Files\Winamp Detect
2009-12-26 22:53:15 ----D---- C:\Users\...\AppData\Roaming\Winamp
2009-12-26 22:53:15 ----D---- C:\Program Files\Winamp
2009-12-26 22:50:27 ----D---- C:\Users\...bert\AppData\Roaming\WinRAR
2009-12-26 19:48:31 ----D---- C:\ProgramData\Azureus
2009-12-26 19:48:25 ----D---- C:\Users\...t\AppData\Roaming\Azureus
2009-12-26 19:47:56 ----D---- C:\Program Files\Vuze
2009-12-26 19:46:02 ----D---- C:\Users\...t\AppData\Roaming\vlc
2009-12-26 19:45:17 ----D---- C:\Program Files\VLC
2009-12-26 00:51:54 ----A---- C:\Windows\system32\msv1_0.dll
2009-12-26 00:51:10 ----A---- C:\Windows\system32\tzres.dll
2009-12-26 00:50:52 ----D---- C:\Program Files\MSXML 4.0
2009-12-25 21:57:54 ----D---- C:\Users\...t\AppData\Roaming\.purple
2009-12-25 21:55:49 ----D---- C:\Program Files\Pidgin
2009-12-25 21:55:43 ----D---- C:\Program Files\GTK
2009-12-25 21:46:39 ----D---- C:\Program Files\Miranda IM
2009-12-25 16:51:32 ----D---- C:\MP3's
2009-12-25 16:43:07 ----D---- C:\HS-Esslingen
2009-12-25 15:42:13 ----D---- C:\Users\...\AppData\Roaming\ICQ
2009-12-25 15:07:32 ----A---- C:\Windows\system32\msasn1.dll
2009-12-25 15:07:31 ----A---- C:\Windows\system32\mshtml.dll
2009-12-25 15:07:30 ----A---- C:\Windows\system32\msfeedsbs.dll
2009-12-25 15:07:29 ----A---- C:\Windows\system32\wmp.dll
2009-12-25 15:07:28 ----A---- C:\Windows\system32\wmploc.DLL
2009-12-25 15:07:28 ----A---- C:\Windows\system32\winresume.exe
2009-12-25 15:07:28 ----A---- C:\Windows\system32\winload.exe
2009-12-25 15:07:28 ----A---- C:\Windows\system32\t2embed.dll
2009-12-25 15:07:28 ----A---- C:\Windows\system32\fontsub.dll
2009-12-25 15:07:28 ----A---- C:\Windows\system32\CertEnroll.dll
2009-12-25 15:07:28 ----A---- C:\Windows\system32\atmfd.dll
2009-12-25 15:07:28 ----A---- C:\Windows\explorer.exe
2009-12-25 00:12:51 ----D---- C:\Program Files\ICQ6Toolbar
2009-12-25 00:12:50 ----D---- C:\ProgramData\ICQ
2009-12-24 23:54:52 ----D---- C:\Users\...\AppData\Roaming\ArcSoft
2009-12-24 23:53:30 ----D---- C:\ProgramData\ArcSoft
2009-12-24 23:53:07 ----A---- C:\Windows\system32\gdiplus.dll
2009-12-24 23:53:05 ----D---- C:\Program Files\Common Files\ArcSoft
2009-12-24 23:53:05 ----D---- C:\Program Files\ArcSoft
2009-12-24 23:53:05 ----A---- C:\Windows\system32\unicows.dll
2009-12-24 23:51:24 ----D---- C:\temp
2009-12-24 23:46:14 ----N---- C:\Windows\system32\MpSigStub.exe
2009-12-24 23:44:27 ----D---- C:\Users\...t\AppData\Roaming\Mozilla
2009-12-24 23:44:21 ----D---- C:\Program Files\Mozilla Firefox
2009-12-24 23:41:57 ----D---- C:\ProgramData\Avira
2009-12-24 23:41:57 ----D---- C:\Program Files\Avira
2009-12-24 23:36:55 ----D---- C:\Program Files\WinRAR
2009-12-24 23:34:48 ----D---- C:\Users\Daniel Schubert\AppData\Roaming\Macromedia
2009-12-24 23:34:46 ----D---- C:\Users\...t\AppData\Roaming\Adobe
2009-12-24 23:34:43 ----D---- C:\Downloads
2009-12-24 14:50:59 ----D---- C:\Users\...t\AppData\Roaming\Identities
2009-12-24 14:45:22 ----D---- C:\Users\...\AppData\Roaming\Lenovo
2009-12-24 14:42:47 ----SD---- C:\Users\...t\AppData\Roaming\Microsoft
2009-12-24 14:42:47 ----D---- C:\Users\...\AppData\Roaming\Media Center Programs
2009-12-24 14:42:46 ----RSHD---- C:\RRbackups
2009-12-24 14:42:31 ----SHD---- C:\Programme
2009-12-24 14:42:31 ----SHD---- C:\ProgramData\Vorlagen
2009-12-24 14:42:31 ----SHD---- C:\ProgramData\Startmenü
2009-12-24 14:42:31 ----SHD---- C:\ProgramData\Favoriten
2009-12-24 14:42:31 ----SHD---- C:\ProgramData\Dokumente
2009-12-24 14:42:31 ----SHD---- C:\ProgramData\Anwendungsdaten
2009-12-24 14:42:31 ----SHD---- C:\Program Files\Gemeinsame Dateien
2009-12-24 14:42:31 ----SHD---- C:\Dokumente und Einstellungen
======List of files/folders modified in the last 1 months======
2010-01-06 17:27:10 ----D---- C:\Windows\Temp
2010-01-06 17:24:03 ----HD---- C:\ProgramData
2010-01-06 17:24:02 ----D---- C:\Windows\system32\drivers
2010-01-06 17:24:00 ----D---- C:\Windows
2010-01-06 17:21:01 ----SHD---- C:\Windows\Installer
2010-01-06 15:39:43 ----D---- C:\Windows\system32\config
2010-01-06 15:36:59 ----RD---- C:\Program Files
2010-01-06 15:36:49 ----D---- C:\Windows\System32
2010-01-06 15:36:06 ----D---- C:\Windows\system32\DriverStore
2010-01-06 15:36:06 ----D---- C:\Windows\system32\catroot
2010-01-06 15:36:06 ----D---- C:\Windows\inf
2010-01-06 15:18:29 ----SHD---- C:\System Volume Information
2010-01-06 15:16:37 ----D---- C:\Windows\winsxs
2010-01-06 15:06:34 ----RSD---- C:\Windows\assembly
2010-01-06 15:06:34 ----D---- C:\ProgramData\Microsoft Help
2010-01-06 15:06:11 ----D---- C:\Program Files\Microsoft Office
2010-01-06 15:06:11 ----D---- C:\Program Files\Common Files\microsoft shared
2010-01-06 15:06:00 ----D---- C:\Windows\ShellNew
2010-01-06 15:05:26 ----RSD---- C:\Windows\Fonts
2010-01-06 15:03:18 ----D---- C:\Program Files\Common Files\System
2010-01-06 15:03:15 ----A---- C:\Windows\win.ini
2010-01-06 14:58:58 ----D---- C:\Program Files\Microsoft.NET
2010-01-06 14:58:02 ----D---- C:\Windows\Registration
2010-01-06 14:57:37 ----SD---- C:\ProgramData\Microsoft
2010-01-06 14:57:37 ----D---- C:\Program Files\Microsoft Small Business
2010-01-06 14:57:35 ----D---- C:\Windows\system32\de-DE
2010-01-05 13:41:23 ----D---- C:\Windows\Downloaded Program Files
2010-01-05 11:50:19 ----D---- C:\Windows\debug
2010-01-05 11:12:20 ----D---- C:\Program Files\Common Files
2010-01-05 10:28:55 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-12-31 15:01:38 ----D---- C:\Windows\system32\wdi
2009-12-30 15:33:32 ----D---- C:\Windows\Prefetch
2009-12-28 10:51:26 ----D---- C:\Windows\system32\FxsTmp
2009-12-27 21:12:14 ----D---- C:\Windows\Microsoft.NET
2009-12-27 17:47:09 ----D---- C:\Program Files\Microsoft SQL Server
2009-12-27 14:10:45 ----D---- C:\Windows\system
2009-12-27 00:51:41 ----D---- C:\Windows\system32\catroot2
2009-12-27 00:02:05 ----D---- C:\Windows\rescache
2009-12-26 23:56:35 ----D---- C:\Program Files\Windows Photo Viewer
2009-12-26 23:56:35 ----D---- C:\Program Files\Windows Mail
2009-12-26 23:56:35 ----D---- C:\Program Files\Windows Journal
2009-12-26 23:56:35 ----D---- C:\Program Files\DVD Maker
2009-12-26 23:56:34 ----D---- C:\Program Files\Windows Defender
2009-12-26 23:56:33 ----D---- C:\Windows\PolicyDefinitions
2009-12-26 23:56:33 ----D---- C:\Windows\IME
2009-12-26 23:56:33 ----D---- C:\Windows\DigitalLocker
2009-12-26 23:56:32 ----D---- C:\Windows\system32\winrm
2009-12-26 23:56:32 ----D---- C:\Windows\system32\migwiz
2009-12-26 23:56:31 ----D---- C:\Windows\system32\sysprep
2009-12-26 23:56:31 ----D---- C:\Windows\system32\slmgr
2009-12-26 23:56:31 ----D---- C:\Windows\system32\Setup
2009-12-26 23:56:31 ----D---- C:\Windows\system32\oobe
2009-12-26 23:56:31 ----D---- C:\Windows\system32\migration
2009-12-26 23:56:31 ----D---- C:\Windows\system32\Boot
2009-12-26 23:56:30 ----D---- C:\Windows\system32\en-US
2009-12-26 23:56:18 ----D---- C:\Windows\system32\WCN
2009-12-26 23:56:18 ----D---- C:\Windows\system32\MUI
2009-12-26 23:56:18 ----D---- C:\Windows\system32\Dism
2009-12-26 23:56:16 ----D---- C:\Windows\system32\Printing_Admin_Scripts
2009-12-26 23:56:14 ----D---- C:\Windows\system32\com
2009-12-26 22:53:20 ----D---- C:\Program Files\Common Files\PX Storage Engine
2009-12-26 20:51:00 ----D---- C:\Windows\system32\wbem
2009-12-26 20:50:35 ----D---- C:\Windows\AppPatch
2009-12-26 20:43:03 ----D---- C:\Windows\Logs
2009-12-26 19:30:29 ----D---- C:\Program Files\Internet Explorer
2009-12-26 19:30:28 ----D---- C:\Windows\ehome
2009-12-26 19:30:28 ----D---- C:\Program Files\Windows Media Player
2009-12-26 00:51:42 ----D---- C:\Windows\SoftwareDistribution
2009-12-25 16:37:43 ----HD---- C:\Program Files\InstallShield Installation Information
2009-12-25 15:03:11 ----D---- C:\Windows\system32\LogFiles
2009-12-24 23:40:59 ----D---- C:\Windows\system32\restore
2009-12-24 23:29:03 ----D---- C:\SWTOOLS
2009-12-24 14:53:04 ----D---- C:\ProgramData\PCDr
2009-12-24 14:50:56 ----SHD---- C:\$Recycle.Bin
2009-12-24 14:50:50 ----D---- C:\swshare
2009-12-24 14:43:40 ----D---- C:\Windows\Panther
2009-12-24 14:43:23 ----D---- C:\Program Files\Common Files\Lenovo
2009-12-24 14:42:47 ----RD---- C:\Users
2009-12-24 14:42:31 ----D---- C:\Program Files\Windows NT Zu 4.: Code:
Access Help Lenovo 23.11.2009 3.00
Adobe Flash Player 10 ActiveX Adobe Systems, Inc. 23.11.2009 1,85MB 10.0.32.18
Adobe Flash Player 10 Plugin Adobe Systems, Inc. 23.11.2009 1,82MB 10.0.32.18
Adobe Reader 9.1 - Deutsch Adobe Systems Incorporated 23.11.2009 234,0MB 9.1.0
Anzeige am Bildschirm 23.11.2009 5.32.00
AT&T Service Activation AT&T 23.11.2009 7,13MB 1.8.7.0
Avira AntiVir Personal - Free Antivirus Avira GmbH 23.12.2009
CCleaner Piriform 04.01.2010 2.27
Client Security - Password Manager Lenovo Group Limited 23.11.2009 119,2MB 8.30.0023.00
Conexant 20561 SmartAudio HD Conexant 23.11.2009 4.92.10.0
Create Recovery Media Lenovo Group Limited 23.11.2009 9,50MB 1.20.0.00
Dienstprogramm "ThinkPad UltraNav" Lenovo 23.11.2009 2.11
DVD Decrypter (Remove Only) 01.01.2010
DVD Shrink 3.2 DVD Shrink 01.01.2010
DVDFab 6.2.1.8 (31/12/2009) Fengtao Software Inc. 04.01.2010 36,5MB
GTK+ Runtime 2.14.7 rev a (nur entfernen) 24.12.2009
HiJackThis Trend Micro 04.01.2010 0,36MB 1.0.0
HijackThis 2.0.2 TrendMicro 04.01.2010 2.0.2
Intel(R) Graphics Media Accelerator Driver Intel Corporation 23.11.2009 54,3MB
Intel(R) Management Engine Interface Intel Corporation 23.11.2009
Intel(R) PROSet/Wireless WiFi-Software Intel Corporation 23.11.2009 74,1MB 13.00.0000
InterVideo WinDVD 8 InterVideo Inc. 23.11.2009 155,3MB 8.0.20.129
Java(TM) 6 Update 16 Sun Microsystems, Inc. 23.11.2009 97,7MB 6.0.160
Lenovo Fingerprint Software AuthenTec, Inc. 23.11.2009 29,9MB 3.3.0.50
Lenovo System Interface Driver 23.11.2009 1.01
Lenovo ThinkVantage Toolbox PC-Doctor, Inc. 23.11.2009 6.0.5387.27
Lenovo Welcome Lenovo 23.11.2009 2.0.020.0
Malwarebytes' Anti-Malware Malwarebytes Corporation 04.01.2010 7,61MB
Media Converter for Philips ArcSoft 23.12.2009 2.5.2.191
Message Center Plus Lenovo Group Limited 23.11.2009 1,71MB 2.0.0012.00
Microsoft Office 2003 Web Components Microsoft Corporation 26.12.2009 31,9MB 11.0.8003.0
Microsoft Office Professional Edition 2003 Microsoft Corporation 29.12.2009 382,0MB 11.0.8173.0
Microsoft Office Small Business Connectivity Components Microsoft Corporation 23.11.2009 0,16MB 2.0.7024.0
Microsoft Office Suite Activation Assistant Microsoft Corporation 23.11.2009 8,37MB 2.9
Microsoft Research AutoCollage Touch 2009 Microsoft Research 23.11.2009 16,4MB 2.00.2009
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 23.11.2009 1,72MB 3.1.0000
Microsoft SQL Server Native Client Microsoft Corporation 23.11.2009 2,61MB 9.00.4035.00
Microsoft SQL Server VSS Writer Microsoft Corporation 23.11.2009 0,68MB 9.00.4035.00
Microsoft Sync Framework Runtime Native v1.0 (x86) Microsoft Corporation 23.11.2009 0,61MB 1.0.1215.0
Microsoft Sync Framework Services Native v1.0 (x86) Microsoft Corporation 23.11.2009 1,45MB 1.0.1215.0
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 25.12.2009 0,34MB 8.0.59193
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 Microsoft Corporation 26.12.2009 0,20MB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 23.12.2009 0,58MB 9.0.30729
Mobile Broadband Connect Lenovo 23.11.2009 14,2MB 3.5.0006
Mozilla Firefox (3.5.6) Mozilla 23.12.2009 3.5.6 (de)
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 25.12.2009 35,00KB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 25.12.2009 1,33MB 4.20.9876.0
Nero 9 Trial Nero AG 25.12.2009
Pidgin 24.12.2009 2.6.4
Registry Patch to arrange icons in Device and Printers folder of Windows 7 23.11.2009 1.00
Registry Patch to Enable Maximum Power Saving on WiFi Adapters for Windows 7 23.11.2009 1.00
Rescue and Recovery Lenovo Group Limited 23.11.2009 85,0MB 4.30.0025.00
Roxio Creator Business Edition Roxio 23.11.2009 1.143,6MB 10.3
Sonic Icons for Lenovo Lenovo 23.11.2009 0,12MB 2.0.0
System Update Lenovo 23.11.2009 12,2MB 4.00.0009
ThinkPad Bluetooth with Enhanced Data Rate Software Broadcom Corporation 23.11.2009 88,4MB 6.2.0.9600
ThinkPad Energie-Manager 23.11.2009 3.04
ThinkPad FullScreen Magnifier 23.11.2009 2.10
ThinkPad Modem Adapter Conexant Systems 23.11.2009 7.80.5.0
ThinkPad Power Management Driver 23.11.2009 1.55
ThinkPad UltraNav Driver ALPS ELECTRIC CO., LTD. 23.11.2009 7.2.1616.108
ThinkVantage Access Connections Lenovo 23.11.2009 61,4MB 5.42
ThinkVantage System für aktiven Festplattenschutz Lenovo 23.11.2009 8,77MB 1.70
ThinkVantage System Update 23.11.2009
Unterstützungsdateien für das Microsoft SQL Server-Setup (Englisch) Microsoft Corporation 23.11.2009 24,9MB 9.00.4035.00
Verizon Wireless Mobile Broadband Self Activation Smith Micro Software, Inc. 23.11.2009 3,02MB 3.1.1
VLC media player 1.0.3 VideoLAN Team 25.12.2009 1.0.3
Vuze Vuze Inc. 25.12.2009
Winamp Nullsoft, Inc 25.12.2009 5.57
Winamp Anwendungserkennung Nullsoft, Inc 25.12.2009 0,12MB 1.0.0.1
Windows Live Anmelde-Assistent Microsoft Corporation 23.11.2009 1,94MB 5.000.818.5
Windows Live Essentials Microsoft Corporation 23.11.2009 14.0.8089.0726
Windows Live Sync Microsoft Corporation 23.11.2009 2,79MB 14.0.8089.726
Windows Live-Uploadtool Microsoft Corporation 23.11.2009 0,22MB 14.0.8014.1029
Windows-Treiberpaket - AuthenTec Inc. (ATSwpWDF) Biometric (07/07/2009 8.1.2.56) AuthenTec Inc. 23.11.2009 07/07/2009 8.1.2.56
Windows-Treiberpaket - Intel System (06/04/2009 1.0.0.0002) Intel 23.11.2009 06/04/2009 1.0.0.0002
Windows-Treiberpaket - Lenovo 1.55 (08/18/2009 1.55) Lenovo 23.11.2009 08/18/2009 1.55
Windows-Treiberpaket - Ricoh Company (rimsptsk) hdc (09/03/2009 6.10.01.05) Ricoh Company 23.11.2009 09/03/2009 6.10.01.05
Windows-Treiberpaket - Ricoh Company (rismxdp) hdc (09/03/2009 6.10.01.05) Ricoh Company 23.11.2009 09/03/2009 6.10.01.05
Windows-Treiberpaket - Ricoh Company MMC Host Controller (09/03/2009 6.10.01.05) Ricoh Company 23.11.2009 09/03/2009 6.10.01.05
Windows-Treiberpaket - Sonix (SNP2UVC) Image (08/03/2009 5.8.53003.0) Sonix 23.11.2009 08/03/2009 5.8.53003.0
WinRAR 23.12.2009 Vielen Dank schonmal für deine Mühe...
Würd mich freuen bald rückmeldung zu bekommen.
delux303 |