OTL
OTL Logfile: Code:
OTL logfile created on: 18.04.2011 19:39:44 - Run 5
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\sushikiste\Desktop
Windows Vista Home Premium Edition (Version = 6.0.6000) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18928)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
3,00 Gb Total Physical Memory | 3,00 Gb Available Physical Memory | 73,00% Memory free
7,00 Gb Paging File | 6,00 Gb Available in Paging File | 87,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 288,04 Gb Total Space | 137,76 Gb Free Space | 47,83% Space Free | Partition Type: NTFS
Drive D: | 10,00 Gb Total Space | 5,84 Gb Free Space | 58,37% Space Free | Partition Type: NTFS
Drive E: | 636,70 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Computer Name: SUSHIKISTE-PC | User Name: sushikiste | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Users\sushikiste\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
PRC - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe (LogMeIn Inc.)
PRC - C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
PRC - C:\Program Files\Winamp\winampa.exe (Nullsoft, Inc.)
PRC - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
PRC - C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
PRC - C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
PRC - C:\Program Files\ICQ6Toolbar\ICQ Service.exe ()
PRC - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
PRC - C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe (TeamViewer GmbH)
PRC - C:\Users\sushikiste\AppData\Roaming\OCS\SM\SearchAnonymizerHelper.exe ()
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Logitech\GamePanel Software\LGDevAgt.exe (Logitech Inc.)
PRC - C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe (Logitech Inc.)
PRC - C:\Program Files\Logitech\GamePanel Software\Applets\LCDRSS.exe (Logitech Inc.)
PRC - C:\Program Files\Logitech\GamePanel Software\Applets\LCDPop3.exe (Logitech Inc.)
PRC - C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe (Logitech Inc.)
PRC - C:\Program Files\Logitech\GamePanel Software\Applets\LCDMedia.exe (Logitech Inc.)
PRC - C:\Program Files\Logitech\GamePanel Software\Applets\LCDCountdown.exe (Logitech Inc.)
PRC - C:\Program Files\Logitech\GamePanel Software\Applets\LCDClock.exe (Logitech Inc.)
PRC - C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Avira GmbH)
PRC - C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe ()
PRC - C:\Program Files\Common Files\LogiShrd\LQCVFX\COCIManager.exe ()
PRC - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.)
PRC - C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe ()
PRC - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe (NVIDIA)
PRC - C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
PRC - C:\Program Files\NETGEAR\WG111v3\WG111v3.exe ()
========== Modules (SafeList) ==========
MOD - C:\Users\sushikiste\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (Hamachi2Svc) -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe (LogMeIn Inc.)
SRV - (AntiVirService) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
SRV - (AntiVirSchedulerService) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
SRV - (ICQ Service) -- C:\Program Files\ICQ6Toolbar\ICQ Service.exe ()
SRV - (Stereo Service) -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
SRV - (TeamViewer5) -- C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe (TeamViewer GmbH)
SRV - (SearchAnonymizer) -- C:\Users\sushikiste\AppData\Roaming\OCS\SM\SearchAnonymizerHelper.exe ()
SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (LVPrcSrv) -- C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.)
SRV - (OMSI download service) -- C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe ()
SRV - (nTuneService) -- C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe (NVIDIA)
========== Driver Services (SafeList) ==========
DRV - (avipbb) -- C:\Windows\System32\drivers\avipbb.sys (Avira GmbH)
DRV - (avgntflt) -- C:\Windows\System32\drivers\avgntflt.sys (Avira GmbH)
DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation)
DRV - (sptd) -- C:\Windows\System32\Drivers\sptd.sys ()
DRV - (SVKP) -- C:\Windows\System32\SVKP.sys (AntiCracking)
DRV - (hamachi) -- C:\Windows\System32\drivers\hamachi.sys (LogMeIn, Inc.)
DRV - (LGVirHid) -- C:\Windows\System32\drivers\LGVirHid.sys (Logitech Inc.)
DRV - (LGBusEnum) -- C:\Windows\System32\drivers\LGBusEnum.sys (Logitech Inc.)
DRV - (LVPr2Mon) -- C:\Windows\System32\drivers\LVPr2Mon.sys ()
DRV - (ssmdrv) -- C:\Windows\System32\drivers\ssmdrv.sys (Avira GmbH)
DRV - (LVRS) -- C:\Windows\System32\drivers\lvrs.sys (Logitech Inc.)
DRV - (PID_PEPI) Logitech QuickCam IM(PID_PEPI) -- C:\Windows\System32\drivers\LV302V32.SYS (Logitech Inc.)
DRV - (pepifilter) -- C:\Windows\System32\drivers\lv302af.sys (Logitech Inc.)
DRV - (s0016unic) Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM) -- C:\Windows\System32\drivers\s0016unic.sys (MCCI Corporation)
DRV - (s0016nd5) Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (NDIS) -- C:\Windows\System32\drivers\s0016nd5.sys (MCCI Corporation)
DRV - (s0016mdfl) -- C:\Windows\System32\drivers\s0016mdfl.sys (MCCI Corporation)
DRV - (s0016mdm) -- C:\Windows\System32\drivers\s0016mdm.sys (MCCI Corporation)
DRV - (s0016mgmt) Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM) -- C:\Windows\System32\drivers\s0016mgmt.sys (MCCI Corporation)
DRV - (s0016obex) -- C:\Windows\System32\drivers\s0016obex.sys (MCCI Corporation)
DRV - (s0016bus) Sony Ericsson Device 0016 driver (WDM) -- C:\Windows\System32\drivers\s0016bus.sys (MCCI Corporation)
DRV - (seehcri) -- C:\Windows\System32\drivers\seehcri.sys (Sony Ericsson Mobile Communications)
DRV - (NVR0Dev) -- C:\Windows\nvoclock.sys (NVidia Corp.)
DRV - (NVENETFD) -- C:\Windows\System32\drivers\nvmfdx32.sys (NVIDIA Corporation)
DRV - (RTL8187B) -- C:\Windows\System32\drivers\wg111v3.sys (NETGEAR Inc. )
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = hxxp://start.facemoods.com/?a=ddr&s={searchTerms}&f=4
IE - HKLM\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKLM\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\1104111824\ICQToolBar.dll (ICQ)
IE - HKLM\..\URLSearchHook: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll (Conduit Ltd.)
IE - HKLM\..\URLSearchHook: {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - C:\Program Files\softonic-de3\tbsoft.dll (Conduit Ltd.)
IE - HKLM\..\URLSearchHook: {e9911ec6-1bcc-40b0-9993-e0eea7f6953f} - C:\Program Files\DVDVideoSoft\tbDVDV.dll (Conduit Ltd.)
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKCU\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\1104111824\ICQToolBar.dll (ICQ)
IE - HKCU\..\URLSearchHook: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll (Conduit Ltd.)
IE - HKCU\..\URLSearchHook: {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - C:\Program Files\softonic-de3\tbsoft.dll (Conduit Ltd.)
IE - HKCU\..\URLSearchHook: {e9911ec6-1bcc-40b0-9993-e0eea7f6953f} - C:\Program Files\DVDVideoSoft\tbDVDV.dll (Conduit Ltd.)
IE - HKCU\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.search.defaultthis.engineName: "softonic-de3 Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "hxxp://www.google.de/search?q="
FF - prefs.js..browser.search.selectedEngine: "ICQ Search"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "hxxp://www.google.de"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {0b38152b-1b20-484d-a11f-5e04a9b0661f}:5.6.12.1
FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.2.5.2
FF - prefs.js..extensions.enabledItems: ffxtlbr@Facemoods.com:1.2.1
FF - prefs.js..extensions.enabledItems: {cc05a3e3-64c3-4af2-bfc1-af0d66b69065}:3.2.5.2
FF - prefs.js..keyword.URL: "hxxp://www.google.de/search?q="
FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.10\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.09.16 23:35:39 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.10\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.04.15 03:05:00 | 000,000,000 | ---D | M]
[2010.09.16 23:36:14 | 000,000,000 | ---D | M] (No name found) -- C:\Users\sushikiste\AppData\Roaming\mozilla\Extensions
[2011.04.11 18:24:01 | 000,000,000 | ---D | M] (No name found) -- C:\Users\sushikiste\AppData\Roaming\mozilla\Firefox\Profiles\aumc5ur9.default\extensions
[2011.02.08 08:32:44 | 000,000,000 | ---D | M] (Winamp Toolbar) -- C:\Users\sushikiste\AppData\Roaming\mozilla\Firefox\Profiles\aumc5ur9.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}
[2010.09.17 19:38:15 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\sushikiste\AppData\Roaming\mozilla\Firefox\Profiles\aumc5ur9.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011.04.11 18:24:05 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Users\sushikiste\AppData\Roaming\mozilla\Firefox\Profiles\aumc5ur9.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2011.03.28 19:53:13 | 000,000,000 | ---D | M] (DVDVideoSoftTB Community Toolbar) -- C:\Users\sushikiste\AppData\Roaming\mozilla\Firefox\Profiles\aumc5ur9.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}
[2011.03.28 19:53:04 | 000,000,000 | ---D | M] ("DVDVideoSoft Menu") -- C:\Users\sushikiste\AppData\Roaming\mozilla\Firefox\Profiles\aumc5ur9.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
[2011.03.11 02:04:25 | 000,000,000 | ---D | M] (softonic-de3 Community Toolbar) -- C:\Users\sushikiste\AppData\Roaming\mozilla\Firefox\Profiles\aumc5ur9.default\extensions\{cc05a3e3-64c3-4af2-bfc1-af0d66b69065}
[2011.03.11 02:04:25 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Users\sushikiste\AppData\Roaming\mozilla\Firefox\Profiles\aumc5ur9.default\extensions\engine@conduit.com
[2011.03.11 02:04:39 | 000,000,000 | ---D | M] (Facemoods) -- C:\Users\sushikiste\AppData\Roaming\mozilla\Firefox\Profiles\aumc5ur9.default\extensions\ffxtlbr@Facemoods.com
[2010.12.08 16:47:52 | 000,000,927 | ---- | M] () -- C:\Users\sushikiste\AppData\Roaming\Mozilla\Firefox\Profiles\aumc5ur9.default\searchplugins\conduit.xml
[2010.05.12 17:40:48 | 000,001,042 | ---- | M] () -- C:\Users\sushikiste\AppData\Roaming\Mozilla\Firefox\Profiles\aumc5ur9.default\searchplugins\icqplugin.xml
[2011.02.22 15:52:49 | 000,001,196 | ---- | M] () -- C:\Users\sushikiste\AppData\Roaming\Mozilla\Firefox\Profiles\aumc5ur9.default\searchplugins\winamp-search.xml
[2011.04.11 22:46:48 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010.11.26 18:26:54 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011.04.11 22:46:48 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011.04.11 22:46:35 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2011.04.12 19:20:57 | 000,001,382 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazondotcom-de.xml
[2010.09.14 23:32:39 | 000,002,344 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay-de.xml
[2010.12.13 14:36:54 | 000,002,035 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fcmdSrchddr.xml
[2010.09.14 23:32:39 | 000,006,805 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\leo_ende_de.xml
[2010.09.14 23:32:39 | 000,001,178 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-de.xml
[2010.09.14 23:32:39 | 000,001,105 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\yahoo-de.xml
Hosts file not found
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O2 - BHO: (Winamp Toolbar Loader) - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll (AOL LLC.)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (DVDVideoSoftTB Toolbar) - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll (Conduit Ltd.)
O2 - BHO: (softonic-de3 Toolbar) - {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - C:\Program Files\softonic-de3\tbsoft.dll (Conduit Ltd.)
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O2 - BHO: (DVDVideoSoft Toolbar) - {e9911ec6-1bcc-40b0-9993-e0eea7f6953f} - C:\Program Files\DVDVideoSoft\tbDVDV.dll (Conduit Ltd.)
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll (Yahoo! Inc)
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\1104111824\ICQToolBar.dll (ICQ)
O3 - HKLM\..\Toolbar: (DVDVideoSoftTB Toolbar) - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (softonic-de3 Toolbar) - {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - C:\Program Files\softonic-de3\tbsoft.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKLM\..\Toolbar: (no name) - {DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - No CLSID value found.
O3 - HKLM\..\Toolbar: (DVDVideoSoft Toolbar) - {e9911ec6-1bcc-40b0-9993-e0eea7f6953f} - C:\Program Files\DVDVideoSoft\tbDVDV.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Winamp Toolbar) - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll (AOL LLC.)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (DVDVideoSoftTB Toolbar) - {872B5B88-9DB5-4310-BDD0-AC189557E5F5} - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (softonic-de3 Toolbar) - {CC05A3E3-64C3-4AF2-BFC1-AF0D66B69065} - C:\Program Files\softonic-de3\tbsoft.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKCU\..\Toolbar\WebBrowser: (DVDVideoSoft Toolbar) - {E9911EC6-1BCC-40B0-9993-E0EEA7F6953F} - C:\Program Files\DVDVideoSoft\tbDVDV.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (Winamp Toolbar) - {EBF2BA02-9094-4C5A-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll (AOL LLC.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [Launch LCDMon] C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe (Logitech Inc.)
O4 - HKLM..\Run: [Launch LGDCore] C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe (Logitech Inc.)
O4 - HKLM..\Run: [Launch LgDeviceAgent] C:\Program Files\Logitech\GamePanel Software\LgDevAgt.exe (Logitech Inc.)
O4 - HKLM..\Run: [LogitechQuickCamRibbon] C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe ()
O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [MSConfig] C:\Windows\System32\msconfig.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Ocs_SM] C:\Users\sushikiste\AppData\Roaming\OCS\SM\SearchAnonymizer.exe (OCS)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O9 - Extra Button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - File not found
O9 - Extra 'Tools' menuitem : ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - File not found
O9 - Extra Button: ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Program Files\ICQ7.4\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Program Files\ICQ7.4\ICQ.exe (ICQ, LLC.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - AppInit_DLLs: ({DLL_Str}) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Program Files\unlgluhp\dtasvuqg.exe) - File not found
O24 - Desktop WallPaper: C:\Users\sushikiste\AppData\Roaming\Microsoft\Windows Photo Gallery\Hintergrundbild der Windows-Fotogalerie.jpg
O24 - Desktop BackupWallPaper: C:\Users\sushikiste\AppData\Roaming\Microsoft\Windows Photo Gallery\Hintergrundbild der Windows-Fotogalerie.jpg
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006.09.18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\L\Shell - "" = AutoRun
O33 - MountPoints2\L\Shell\AutoRun\command - "" = L:\LaunchU3.exe -a
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011.04.18 18:54:24 | 001,377,112 | ---- | C] (Kaspersky Lab ZAO) -- C:\Users\sushikiste\Desktop\tdsskiller.exe
[2011.04.18 16:11:05 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2011.04.18 16:11:04 | 000,000,000 | ---D | C] -- C:\Users\sushikiste\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fraps
[2011.04.18 16:11:04 | 000,000,000 | ---D | C] -- C:\Program Files\Fraps
[2011.04.18 16:10:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2011.04.18 16:10:27 | 000,000,000 | ---D | C] -- C:\Users\sushikiste\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2011.04.18 02:06:52 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Users\sushikiste\Desktop\OTL.exe
[2011.04.18 01:53:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2011.04.15 03:04:45 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2011.04.13 01:38:42 | 000,000,000 | ---D | C] -- C:\Program Files\lol-cb3.game_p
[2011.04.13 01:37:35 | 000,194,376 | ---- | C] (Solid State Networks) -- C:\Program Files\patcher_update_tmp.exe
[2011.04.13 01:37:31 | 000,000,000 | ---D | C] -- C:\Program Files\lol-cb3.patcher_15
[2011.04.13 01:36:25 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_39.dll
[2011.04.13 01:36:25 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_39.dll
[2011.04.13 01:36:23 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_39.dll
[2011.04.13 01:35:55 | 000,000,000 | ---D | C] -- C:\Program Files\html
[2011.04.13 01:29:53 | 000,114,688 | ---- | C] (TODO: <Company name>) -- C:\Program Files\CRiotInternetSecurityManagerCom.dll
[2011.04.13 01:29:53 | 000,110,592 | ---- | C] (Solid State Networks) -- C:\Program Files\CRiotLauncherElevateCOM.dll
[2011.04.13 01:29:53 | 000,000,000 | ---D | C] -- C:\Program Files\air
[2011.04.13 01:29:51 | 000,421,888 | ---- | C] (Solid State Networks) -- C:\Program Files\lol.launcher.exe
[2011.04.13 01:29:51 | 000,194,376 | ---- | C] (Solid State Networks) -- C:\Program Files\patcher_update.exe
[2011.04.13 01:29:51 | 000,176,968 | ---- | C] (Solid State Networks) -- C:\Program Files\patcher_lib.decode.dll
[2011.04.13 01:29:51 | 000,118,784 | ---- | C] (Solid State Networks) -- C:\Program Files\launcher.maestro.dll
[2011.04.13 01:29:51 | 000,000,000 | ---D | C] -- C:\Program Files\game
[2011.04.13 01:29:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games
[2011.04.12 22:32:14 | 000,000,000 | ---D | C] -- C:\Users\sushikiste\Desktop\League of Legends
[2011.04.12 22:30:59 | 000,000,000 | ---D | C] -- C:\Users\sushikiste\AppData\Local\PMB Files
[2011.04.12 22:30:58 | 000,000,000 | ---D | C] -- C:\ProgramData\PMB Files
[2011.04.12 19:43:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Google
[2011.04.11 22:46:56 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2011.04.11 22:46:47 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaws.exe
[2011.04.11 22:46:47 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaw.exe
[2011.04.11 22:46:47 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\java.exe
[2011.04.11 22:46:30 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2011.04.11 18:24:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ICQ7.4
[2011.04.11 18:23:42 | 000,000,000 | ---D | C] -- C:\Program Files\ICQ7.4
[2011.04.11 18:14:34 | 000,000,000 | ---D | C] -- C:\Users\sushikiste\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
[2011.04.11 18:14:26 | 000,000,000 | ---D | C] -- C:\Program Files\Teamspeak3
[2011.04.11 15:37:38 | 000,000,000 | ---D | C] -- C:\Program Files\unlgluhp
[2011.04.03 12:57:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
[2011.04.03 12:57:35 | 000,000,000 | ---D | C] -- C:\Program Files\LogMeIn Hamachi
[2011.03.28 19:53:21 | 000,000,000 | ---D | C] -- C:\Users\sushikiste\AppData\Local\Conduit
[2011.03.21 18:23:37 | 000,000,000 | ---D | C] -- C:\Users\sushikiste\AppData\Roaming\Sun
[2011.02.12 17:09:31 | 000,148,736 | ---- | C] (Avanquest Software) -- C:\ProgramData\hpe5285.dll
[2011.02.12 17:03:44 | 000,148,736 | ---- | C] (Avanquest Software) -- C:\ProgramData\hpe3F8.dll
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\sushikiste\*.tmp files -> C:\Users\sushikiste\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011.04.18 19:28:14 | 000,641,106 | ---- | M] () -- C:\Windows\System32\perfh007.dat
[2011.04.18 19:28:14 | 000,609,944 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011.04.18 19:28:14 | 000,116,500 | ---- | M] () -- C:\Windows\System32\perfc007.dat
[2011.04.18 19:28:14 | 000,103,726 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011.04.18 19:22:36 | 000,037,397 | ---- | M] () -- C:\ProgramData\nvModes.dat
[2011.04.18 19:22:36 | 000,037,397 | ---- | M] () -- C:\ProgramData\nvModes.001
[2011.04.18 19:21:59 | 000,003,680 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011.04.18 19:21:59 | 000,003,680 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011.04.18 19:21:56 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.04.18 18:54:27 | 001,377,112 | ---- | M] (Kaspersky Lab ZAO) -- C:\Users\sushikiste\Desktop\tdsskiller.exe
[2011.04.18 18:52:11 | 000,000,127 | ---- | M] () -- C:\Program Files\launcher_options.ini
[2011.04.18 16:59:22 | 000,109,568 | ---- | M] () -- C:\Users\sushikiste\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.04.18 16:40:12 | 858,282,968 | ---- | M] () -- C:\Users\sushikiste\Documents\KarimZappex.avi
[2011.04.18 16:11:04 | 000,000,730 | ---- | M] () -- C:\Users\sushikiste\Desktop\Fraps.lnk
[2011.04.18 16:10:06 | 001,530,725 | ---- | M] () -- C:\Users\sushikiste\Desktop\wrar400d.exe
[2011.04.18 02:06:52 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\sushikiste\Desktop\OTL.exe
[2011.04.18 01:53:32 | 000,000,764 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011.04.15 16:53:39 | 000,000,190 | ---- | M] () -- C:\Program Files\lol-cb3.game.version
[2011.04.15 16:53:38 | 000,000,020 | ---- | M] () -- C:\Program Files\gameversion_Live_04_11_2011_01
[2011.04.15 16:50:43 | 000,000,010 | ---- | M] () -- C:\Program Files\airversion_v1.33.22
[2011.04.15 03:05:01 | 000,001,852 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader X.lnk
[2011.04.15 02:59:10 | 000,001,574 | ---- | M] () -- C:\Users\Public\Desktop\Opera.lnk
[2011.04.13 01:37:43 | 000,000,190 | ---- | M] () -- C:\Program Files\lol-cb3.patcher.version
[2011.04.13 01:37:40 | 000,001,693 | ---- | M] () -- C:\Program Files\launcher_config.xml
[2011.04.13 01:36:26 | 000,001,513 | ---- | M] () -- C:\Users\Public\Desktop\League of Legends spielen .lnk
[2011.04.12 22:29:40 | 002,257,408 | ---- | M] () -- C:\Users\sushikiste\Desktop\LeagueofLegends.exe
[2011.04.11 22:46:34 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\System32\deployJava1.dll
[2011.04.11 22:46:34 | 000,157,472 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaws.exe
[2011.04.11 22:46:34 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaw.exe
[2011.04.11 22:46:34 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\System32\java.exe
[2011.04.11 18:24:17 | 000,001,569 | ---- | M] () -- C:\Users\Public\Desktop\ICQ7.4.lnk
[2011.04.11 18:14:34 | 000,000,863 | ---- | M] () -- C:\Users\sushikiste\Desktop\TeamSpeak 3 Client.lnk
[2011.04.09 13:17:10 | 000,002,032 | ---- | M] () -- C:\Users\sushikiste\AppData\Local\d3d9caps.dat
[2011.04.03 12:57:36 | 000,000,767 | ---- | M] () -- C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
[2011.03.28 19:52:50 | 000,001,151 | ---- | M] () -- C:\Users\sushikiste\Desktop\Free YouTube to MP3 Converter.lnk
[2011.03.28 10:45:36 | 000,300,176 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\sushikiste\*.tmp files -> C:\Users\sushikiste\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011.04.18 16:39:20 | 858,282,968 | ---- | C] () -- C:\Users\sushikiste\Documents\KarimZappex.avi
[2011.04.18 16:11:04 | 000,000,730 | ---- | C] () -- C:\Users\sushikiste\Desktop\Fraps.lnk
[2011.04.18 16:10:06 | 001,530,725 | ---- | C] () -- C:\Users\sushikiste\Desktop\wrar400d.exe
[2011.04.18 01:53:32 | 000,000,764 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011.04.15 16:53:38 | 000,000,020 | ---- | C] () -- C:\Program Files\gameversion_Live_04_11_2011_01
[2011.04.15 16:50:43 | 000,000,010 | ---- | C] () -- C:\Program Files\airversion_v1.33.22
[2011.04.15 03:05:01 | 000,001,852 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader X.lnk
[2011.04.15 03:05:01 | 000,001,804 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
[2011.04.15 02:59:11 | 000,001,586 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
[2011.04.15 02:59:10 | 000,001,574 | ---- | C] () -- C:\Users\Public\Desktop\Opera.lnk
[2011.04.13 01:36:26 | 000,001,513 | ---- | C] () -- C:\Users\Public\Desktop\League of Legends spielen .lnk
[2011.04.13 01:29:51 | 000,192,512 | ---- | C] () -- C:\Program Files\xdelta.exe
[2011.04.13 01:29:51 | 000,059,904 | ---- | C] () -- C:\Program Files\zlib1.dll
[2011.04.13 01:29:51 | 000,001,693 | ---- | C] () -- C:\Program Files\launcher_config.xml
[2011.04.13 01:29:51 | 000,000,190 | ---- | C] () -- C:\Program Files\lol-cb3.patcher.version
[2011.04.13 01:29:51 | 000,000,190 | ---- | C] () -- C:\Program Files\lol-cb3.game.version
[2011.04.13 01:29:51 | 000,000,127 | ---- | C] () -- C:\Program Files\launcher_options.ini
[2011.04.13 01:29:50 | 000,954,368 | ---- | C] () -- C:\Program Files\launcher.lib.dll
[2011.04.13 01:29:50 | 000,057,344 | ---- | C] () -- C:\Program Files\launcher.lang-fr.dll
[2011.04.13 01:29:50 | 000,057,344 | ---- | C] () -- C:\Program Files\launcher.lang-es.dll
[2011.04.13 01:29:50 | 000,057,344 | ---- | C] () -- C:\Program Files\launcher.lang-de.dll
[2011.04.13 01:29:50 | 000,053,248 | ---- | C] () -- C:\Program Files\launcher.lang-en.dll
[2011.04.12 22:29:37 | 002,257,408 | ---- | C] () -- C:\Users\sushikiste\Desktop\LeagueofLegends.exe
[2011.04.11 18:24:17 | 000,001,569 | ---- | C] () -- C:\Users\Public\Desktop\ICQ7.4.lnk
[2011.03.28 19:52:50 | 000,001,151 | ---- | C] () -- C:\Users\sushikiste\Desktop\Free YouTube to MP3 Converter.lnk
[2011.01.13 18:41:25 | 000,082,289 | ---- | C] () -- C:\Windows\System32\lvcoinst.ini
[2010.10.05 14:54:28 | 000,037,397 | ---- | C] () -- C:\ProgramData\nvModes.001
[2010.10.05 14:54:25 | 000,037,397 | ---- | C] () -- C:\ProgramData\nvModes.dat
[2010.08.08 21:02:18 | 000,017,408 | ---- | C] () -- C:\Users\sushikiste\AppData\Local\WebpageIcons.db
[2010.07.28 15:44:09 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010.06.24 16:49:16 | 000,256,512 | ---- | C] () -- C:\Windows\PEV.exe
[2010.06.24 16:49:16 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2010.06.24 16:49:16 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2010.06.24 16:49:16 | 000,077,312 | ---- | C] () -- C:\Windows\MBR.exe
[2010.06.24 16:49:16 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2010.06.13 18:35:09 | 000,139,152 | ---- | C] () -- C:\Users\sushikiste\AppData\Roaming\PnkBstrK.sys
[2010.04.22 10:48:53 | 000,000,000 | ---- | C] () -- C:\Windows\I531_1013.INI
[2010.04.21 18:51:30 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat
[2010.04.21 13:45:51 | 000,109,568 | ---- | C] () -- C:\Users\sushikiste\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.04.20 20:49:23 | 000,001,732 | ---- | C] () -- C:\Windows\System32\drivers\nvphy.bin
[2010.04.20 20:43:37 | 000,002,032 | ---- | C] () -- C:\Users\sushikiste\AppData\Local\d3d9caps.dat
[2009.10.07 02:46:36 | 000,025,752 | ---- | C] () -- C:\Windows\System32\drivers\LVPr2Mon.sys
[2009.10.07 02:23:08 | 000,013,584 | ---- | C] () -- C:\Windows\System32\drivers\iKeyLFT2.dll
[2007.03.12 12:01:30 | 000,217,088 | ---- | C] () -- C:\Windows\NVGfxOgl.dll
[2006.11.02 17:33:31 | 000,641,106 | ---- | C] () -- C:\Windows\System32\perfh007.dat
[2006.11.02 17:33:31 | 000,290,748 | ---- | C] () -- C:\Windows\System32\perfi007.dat
[2006.11.02 17:33:31 | 000,116,500 | ---- | C] () -- C:\Windows\System32\perfc007.dat
[2006.11.02 17:33:31 | 000,036,916 | ---- | C] () -- C:\Windows\System32\perfd007.dat
[2006.11.02 14:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006.11.02 14:47:37 | 000,300,176 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006.11.02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006.11.02 12:33:01 | 000,609,944 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006.11.02 12:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006.11.02 12:33:01 | 000,103,726 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006.11.02 12:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006.11.02 12:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006.11.02 10:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006.11.02 10:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006.11.02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006.11.02 09:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2006.11.02 09:22:43 | 000,099,999 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2006.11.02 09:22:43 | 000,018,271 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[1996.04.03 21:33:26 | 000,005,248 | ---- | C] () -- C:\Windows\System32\giveio.sys
========== Alternate Data Streams ==========
@Alternate Data Stream - 76 bytes -> C:\Users\sushikiste\Desktop\Zeug:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\sushikiste\Desktop\Videos:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\sushikiste\Desktop\Musik:Roxio EMC Stream
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:05EE1EEF
< End of report > --- --- ---
Extras
OTL Logfile: Code:
OTL Extras logfile created on: 18.04.2011 19:39:44 - Run 5
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\sushikiste\Desktop
Windows Vista Home Premium Edition (Version = 6.0.6000) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18928)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
3,00 Gb Total Physical Memory | 3,00 Gb Available Physical Memory | 73,00% Memory free
7,00 Gb Paging File | 6,00 Gb Available in Paging File | 87,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 288,04 Gb Total Space | 137,76 Gb Free Space | 47,83% Space Free | Partition Type: NTFS
Drive D: | 10,00 Gb Total Space | 5,84 Gb Free Space | 58,37% Space Free | Partition Type: NTFS
Drive E: | 636,70 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Computer Name: SUSHIKISTE-PC | User Name: sushikiste | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software)
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
http [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software)
https [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{134958DB-DFD9-43F6-87AF-F711B35F8DBF}" = lport=6953 | protocol=17 | dir=in | name=league of legends launcher |
"{14176646-394A-41C4-8C2D-7486E00146E3}" = lport=6947 | protocol=17 | dir=in | name=league of legends launcher |
"{161F70BC-06EC-4EF9-96D8-3729DD28E876}" = lport=6885 | protocol=17 | dir=in | name=league of legends launcher |
"{174032D4-5922-4FD3-B911-C93DEE7D08DB}" = lport=2869 | protocol=6 | dir=in | app=system |
"{22C8603C-8F7D-4AA5-BD3D-89E18D04AB6C}" = lport=6951 | protocol=6 | dir=in | name=league of legends launcher |
"{2D52D9CD-4917-4356-878F-52F25D639227}" = lport=8394 | protocol=17 | dir=in | name=league of legends launcher |
"{300A04D8-A4A3-4E05-BE8E-1382D42C422F}" = lport=6904 | protocol=6 | dir=in | name=league of legends launcher |
"{316170C2-B6EF-478D-ACAB-5735C24AE569}" = lport=8395 | protocol=6 | dir=in | name=league of legends launcher |
"{32B94D00-1164-4F0B-8D87-B403C9C7230A}" = lport=6908 | protocol=17 | dir=in | name=league of legends launcher |
"{32D59CD5-85DA-44AF-B7FB-71712020A41C}" = lport=6918 | protocol=17 | dir=in | name=league of legends launcher |
"{395B5EF4-D9A0-436C-A858-9CFDFD1266C2}" = lport=6951 | protocol=17 | dir=in | name=league of legends launcher |
"{41621D54-DB13-4E66-8663-3B298BA7A275}" = lport=6904 | protocol=17 | dir=in | name=league of legends launcher |
"{434802E4-14D3-47A6-93BF-B5E18D5D1664}" = lport=6957 | protocol=6 | dir=in | name=league of legends launcher |
"{4619CF0E-A1E7-4F9E-8E7B-693026BFFCD1}" = lport=8396 | protocol=17 | dir=in | name=league of legends launcher |
"{578754C2-1F38-4284-9877-43D746C3FD89}" = lport=8396 | protocol=6 | dir=in | name=league of legends launcher |
"{6C1BA13D-5C86-49E4-B08D-3A2CB8EF18A4}" = lport=6904 | protocol=6 | dir=in | name=league of legends launcher |
"{7957E408-9DD5-4B54-A6F7-7826F19B5F39}" = lport=8397 | protocol=17 | dir=in | name=league of legends launcher |
"{87E2E196-89F8-43CC-A1D9-C74231FBEFB8}" = lport=6918 | protocol=6 | dir=in | name=league of legends launcher |
"{895B5833-ACBB-44EB-BBDB-23A957760230}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{8A455C22-9424-432E-B188-E7CB0F59C182}" = lport=6886 | protocol=17 | dir=in | name=league of legends launcher |
"{8B920C42-3DB4-4989-A33E-FB076FC96DB3}" = lport=8394 | protocol=17 | dir=in | name=league of legends launcher |
"{8FB0EE13-C11F-48B9-94E9-6585739004F1}" = lport=8395 | protocol=17 | dir=in | name=league of legends launcher |
"{8FD5C8D7-ED5F-48FD-8FD8-349E8EDD01A7}" = lport=6925 | protocol=17 | dir=in | name=league of legends launcher |
"{9561D2F1-D0E0-4F82-9573-2B7B3FEC1D8F}" = lport=6912 | protocol=6 | dir=in | name=league of legends launcher |
"{9DC76A25-C7E6-4E98-98EE-A4027CEE54DC}" = lport=6908 | protocol=6 | dir=in | name=league of legends launcher |
"{A0AE6E0E-96BE-42A3-A4EE-530DAB8367B9}" = lport=6968 | protocol=17 | dir=in | name=league of legends launcher |
"{A101703D-12EE-4407-AD2E-BF1DB1C8AC95}" = lport=8394 | protocol=6 | dir=in | name=league of legends launcher |
"{AD52F745-60A2-419A-AC14-F381C8FAA30E}" = lport=6885 | protocol=6 | dir=in | name=league of legends launcher |
"{BDED8C30-F196-4F7A-8590-80EAED1EE10E}" = lport=8394 | protocol=6 | dir=in | name=league of legends launcher |
"{C454E5BB-604B-4D36-91DC-CF788C27A198}" = lport=6886 | protocol=6 | dir=in | name=league of legends launcher |
"{C553120F-62D6-4B1F-8FD6-58BF057CB91F}" = lport=6925 | protocol=6 | dir=in | name=league of legends launcher |
"{CCE15F3E-75BA-4D78-A261-FC83995DA834}" = lport=6912 | protocol=17 | dir=in | name=league of legends launcher |
"{D70089E2-E681-4D7B-98E7-BF53995529A3}" = lport=6953 | protocol=6 | dir=in | name=league of legends launcher |
"{D8D98E1B-5880-42F9-A299-E7F1FDAF028B}" = lport=6947 | protocol=6 | dir=in | name=league of legends launcher |
"{DE80B1E0-BAE0-4895-9F7F-1A10DAEC1D30}" = lport=6968 | protocol=6 | dir=in | name=league of legends launcher |
"{F37EBBF7-0B35-441D-BD8B-C30B8DA466CC}" = lport=6904 | protocol=17 | dir=in | name=league of legends launcher |
"{F5635713-4D86-4B36-99B1-5BBD8BF5DC35}" = lport=8397 | protocol=6 | dir=in | name=league of legends launcher |
"{F60C41CA-EFDA-428A-8629-10AB282DD9CC}" = lport=6979 | protocol=6 | dir=in | name=league of legends launcher |
"{F8F0952F-BBB7-4A09-80D4-BCF73D573D09}" = lport=6979 | protocol=17 | dir=in | name=league of legends launcher |
"{F903F641-E43C-42DB-A795-57340AAD9FF6}" = lport=6957 | protocol=17 | dir=in | name=league of legends launcher |
"{FCB3E0E7-6CEA-48B6-90CF-6DBB741A0DBC}" = lport=8396 | protocol=6 | dir=in | name=league of legends launcher |
"{FDA7C0E0-306B-4751-8C58-3432C2DECED2}" = lport=8396 | protocol=17 | dir=in | name=league of legends launcher |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{08E95800-5724-409A-AB51-249DFD858CB2}" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe |
"{0D73330A-79DB-4557-B596-664052D93D8B}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version5\teamviewer.exe |
"{1CC92585-F9C1-4BEB-893F-E12F6530687B}" = protocol=6 | dir=in | app=c:\program files\game\league of legends.exe |
"{2933756A-4B30-49CE-9342-B4E8F6A2771D}" = protocol=6 | dir=in | app=c:\program files\icq7.4\icq.exe |
"{2DEDA199-9F24-4AAE-BD0D-58390412D977}" = protocol=6 | dir=in | app=c:\program files\world of warcraft public test\launcher.exe |
"{3342639A-A1A6-4025-BBEC-5193D5B5CA40}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3E7C95C6-EAFA-4060-893B-2D18ABDD5927}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{410821A2-EF28-4CDD-A2DC-257E97C64D5A}" = dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{472B86F3-FE39-47C9-ABC3-A5FEDAA8FF33}" = protocol=17 | dir=in | app=c:\program files\air\lolclient.exe |
"{55668923-92AD-4071-8F65-1AC6146D6675}" = protocol=17 | dir=in | app=c:\program files\game\league of legends.exe |
"{59D014BB-DA4B-41F7-B4FA-2F824616A502}" = dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{7D2C5C15-D284-4E18-B4FE-FE28F81DB722}" = protocol=17 | dir=in | app=c:\program files\icq7.4\icq.exe |
"{8B752F90-3DA3-4145-BBFF-705350D49530}" = protocol=6 | dir=in | app=c:\program files\icq7.4\icq.exe |
"{94D98139-93C4-4AE7-A701-8BB96D145453}" = protocol=6 | dir=in | app=c:\program files\logitech\logitech vid\vid.exe |
"{A7BEBE6F-3F91-48BB-BD2F-D9CA3257599B}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{AD51EDD3-FAB6-47B0-AE47-397CABE3FABC}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{AD7D7896-4C5B-4ECE-B807-5CE2ED46D306}" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe |
"{B08F4550-2409-44EB-9ABB-A1225CA55428}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{B268C401-25FB-4570-9177-4D0DABDACA88}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{B634123A-FDEF-4720-9C26-4B2FD8263097}" = protocol=6 | dir=in | app=c:\program files\air\lolclient.exe |
"{BB21382E-6AB3-4E39-AA02-DBAE3D5B681A}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{BE23A2C2-1DCD-4599-9A05-884083ACD78A}" = protocol=6 | dir=in | app=c:\users\sushikiste\desktop\wow offi\launcher.exe |
"{C1FFA3C9-594E-452A-9115-00F6405E6228}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{C8A2F66C-23B1-47E5-BB86-E1918C0ECD91}" = protocol=17 | dir=in | app=c:\program files\logitech\logitech vid\vid.exe |
"{CF2B2289-F165-4DEC-A10D-A02B52C556BB}" = protocol=17 | dir=in | app=c:\program files\icq7.4\icq.exe |
"{D2286D3D-0B96-4317-9566-62E6FC9F5583}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe |
"{D7676590-6A95-4380-8879-EB47F0F6228B}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version5\teamviewer.exe |
"{DEA1C3EC-5E58-46AF-916B-5F0AEF700848}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{E14D4D6D-D925-4C9B-85B2-D4FA6DBF94E6}" = protocol=17 | dir=in | app=c:\users\sushikiste\desktop\wow offi\launcher.exe |
"{F55A049C-E8C6-4CFE-AFD1-79F74E89363E}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{F70A21E5-86F3-4250-91C8-713138D17FEB}" = protocol=17 | dir=in | app=c:\program files\world of warcraft public test\launcher.exe |
"{F8503D22-A725-4AA5-8B92-4909AED843EC}" = protocol=17 | dir=in | app=c:\program files\itunes\itunes.exe |
"TCP Query User{1F6D77E3-ECBA-484B-A637-6FDE926D6EE7}C:\program files\opera\opera.exe" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe |
"TCP Query User{3A518229-DE3C-47B4-95C4-7C9EE6155B39}C:\program files\ea games\battlefield 2\bf2.exe" = protocol=6 | dir=in | app=c:\program files\ea games\battlefield 2\bf2.exe |
"TCP Query User{4DBB2CA4-39ED-43E6-AD47-AE9143F3F2F6}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe |
"TCP Query User{624BB05E-22DE-4C1B-85E0-451DABB921D4}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe |
"TCP Query User{636C2056-CDFA-4039-A5D9-F93762DD95F5}C:\program files\ea games\battlefield 2\bf2.exe" = protocol=6 | dir=in | app=c:\program files\ea games\battlefield 2\bf2.exe |
"TCP Query User{665CCF3B-AD33-4637-BD66-2022FFC4DF2F}C:\program files\logitech\logitech vid\vid.exe" = protocol=6 | dir=in | app=c:\program files\logitech\logitech vid\vid.exe |
"TCP Query User{789EA55B-22FD-45FE-B7B5-26B361BE5C74}C:\users\sushikiste\desktop\wow offi\launcher.exe" = protocol=6 | dir=in | app=c:\users\sushikiste\desktop\wow offi\launcher.exe |
"TCP Query User{A52B9186-E3DB-4CE2-8A4B-FD83D9337C01}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"TCP Query User{D391F10B-9D60-4DE7-8C1E-AFB77423F92F}C:\program files\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\java.exe |
"TCP Query User{ECDFBF2D-1729-4B09-99B8-FBC2B3449C6C}C:\users\sushikiste\desktop\wow offi\wow-3.3.5.12340-x86-win-dede-bkgnd-downloader.exe" = protocol=6 | dir=in | app=c:\users\sushikiste\desktop\wow offi\wow-3.3.5.12340-x86-win-dede-bkgnd-downloader.exe |
"UDP Query User{30DA3827-0A79-46D3-A2D0-684433F92CC8}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe |
"UDP Query User{5DF47BED-0E00-44E5-85F8-D1E32FF6A91A}C:\program files\opera\opera.exe" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe |
"UDP Query User{740D67FE-DD54-4047-8030-93E3221A00EE}C:\program files\logitech\logitech vid\vid.exe" = protocol=17 | dir=in | app=c:\program files\logitech\logitech vid\vid.exe |
"UDP Query User{97403973-67F3-46A8-ABC9-D4DCC70FAA62}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe |
"UDP Query User{A0C4FCB3-75A4-4229-AD04-C27FFA028820}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"UDP Query User{A2647C15-25DF-44EC-8E7D-0B9F1C41B033}C:\users\sushikiste\desktop\wow offi\wow-3.3.5.12340-x86-win-dede-bkgnd-downloader.exe" = protocol=17 | dir=in | app=c:\users\sushikiste\desktop\wow offi\wow-3.3.5.12340-x86-win-dede-bkgnd-downloader.exe |
"UDP Query User{A502E949-1F50-41A8-B86A-9277DC96F046}C:\program files\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\java.exe |
"UDP Query User{B2C53353-F6AC-4A8E-B2AF-4DDCDB6B3AD3}C:\users\sushikiste\desktop\wow offi\launcher.exe" = protocol=17 | dir=in | app=c:\users\sushikiste\desktop\wow offi\launcher.exe |
"UDP Query User{B91EB6C5-F877-496D-9AC1-77F7C8ACAD55}C:\program files\ea games\battlefield 2\bf2.exe" = protocol=17 | dir=in | app=c:\program files\ea games\battlefield 2\bf2.exe |
"UDP Query User{FE2E8CD0-47F3-44E0-BCE5-3C14D41E2960}C:\program files\ea games\battlefield 2\bf2.exe" = protocol=17 | dir=in | app=c:\program files\ea games\battlefield 2\bf2.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{052FDD78-A6EA-3187-8386-C82F4CA3A929}" = Microsoft .NET Framework 3.5 Language Pack SP1 - deu
"{109945A8-D8D5-48B8-B4A5-195D3F99B56D}" = Logitech GamePanel Software 3.04.143
"{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live-Uploadtool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83216024FF}" = Java(TM) 6 Update 24
"{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}" = QuickTime
"{2FFE93F0-BB72-4E52-8761-354D1AAA9387}" = Sony Ericsson PC Suite 6.009.00
"{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform
"{42929F0F-CE14-47AF-9FC7-FF297A603021}" = Dell Resource CD
"{49058C21-E4F6-4A99-B715-D62715E0A2A2}" = Vegas Pro 9.0
"{491DFBAA-77EF-4B06-8676-2FC66EEE049A}" = LogMeIn Hamachi
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4FBCEA31-5D18-4212-9231-DE7CF1BE7DBB}" = Logitech Vid
"{52B97218-98CB-4B8B-9283-D213C85E1AA4}" = Windows Live Anmelde-Assistent
"{5396FBD8-8BD7-47F9-92AE-F62F13D5A11D}" = NETGEAR WG111v3 wireless USB 2.0 adapter
"{553255F3-78FD-40F1-A6F8-6882140265FE}" = Apple Application Support
"{57C36BD9-856B-4070-8F9C-0D01DC69C8F0}_is1" = Click & Learn 2007
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{73C6DCFB-B606-47F3-BDFA-9A4FBF931E37}" = ICQ7.4
"{76BC2442-0002-47FA-9617-43BAD82BEF4C}" = Bonjour
"{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}" = Avanquest update
"{7C7F30F4-94E7-4AA8-8941-90C4A80C68BF}" = NVIDIA nTune
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{8A809006-C25A-4A3A-9DAB-94659BCDB107}" = NVIDIA PhysX
"{90120000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2007
"{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2007
"{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2007
"{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007
"{90120000-001F-0410-0000-0000000FF1CE}_HOMESTUDENTR_{322296D4-1EAE-4030-9FBC-D2787EB25FA2}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2007
"{90120000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2007
"{90120000-006E-0407-0000-0000000FF1CE}_HOMESTUDENTR_{26454C26-D259-4543-AA60-3189E09C5F76}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2007
"{90120000-00A1-0407-0000-0000000FF1CE}_HOMESTUDENTR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{918A9082-6287-4D25-9002-5E5D5E4971CB}" = League of Legends
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{996A2FAA-7514-4628-9D12-A8FC34A0016E}" = iTunes
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A96BFADF-A159-4395-8E9C-A9E2F059A3BB}" = Camtasia Studio 7
"{AC76BA86-7AD7-1031-7B44-AA0000000001}" = Adobe Reader X (10.0.1) - Deutsch
"{AED2DD42-9853-407E-A6BC-8A1D6B715909}" = Windows Live Messenger
"{B194272D-1F92-46DF-99EB-8D5CE91CB4EC}" = Adobe AIR
"{B5C3B892-0849-476C-9F46-B12F84819D57}" = Apple Mobile Device Support
"{C27BC2A2-30DD-4014-B22E-63EB0DB572F9}" = Logitech Webcam Software
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{CA796D95-C706-4BB9-BDDE-FF228D13D28A}" = Livestream Procaster
"{CAFA57E8-8927-4912-AFCF-B0AA3837E989}" = Windows Live Essentials
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.2
"{D2041A37-5FEC-49F0-AE5C-3F2FFDFAA4F4}" = Windows Live Call
"{DB52432E-3AD8-41A5-A586-0F065FB6A31E}" = Game Cam
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{FB1AC1F1-8F47-4DCE-A1ED-0DFBA0F455B4}" = Driver Mender
"1EC636D2DBA2D9924E02E10DA797DEC16306C1A9" = Windows Driver Package - Logitech HIDClass (10/16/2006 1.0)
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"CCleaner" = CCleaner
"DAEMON Tools Toolbar" = DAEMON Tools Toolbar
"DivX Setup.divx.com" = DivX-Setup
"Driver Cleaner Pro" = DH Driver Cleaner Professional Edition
"DVDVideoSoftTB Toolbar" = DVDVideoSoftTB Toolbar
"EVEREST Home Edition_is1" = EVEREST Home Edition v2.20
"Fraps" = Fraps (remove only)
"Free Audio CD Burner_is1" = Free Audio CD Burner version 1.4.7
"Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.9.35.324
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"ICQToolbar" = ICQ Toolbar
"InstallShield_{5396FBD8-8BD7-47F9-92AE-F62F13D5A11D}" = NETGEAR WG111v3 wireless USB 2.0 adapter
"InstallShield_{7C7F30F4-94E7-4AA8-8941-90C4A80C68BF}" = NVIDIA nTune
"LogMeIn Hamachi" = LogMeIn Hamachi
"lvdrivers_12.10" = Logitech Webcam Software-Treiberpaket
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 3.5 Language Pack SP1 - deu" = Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.6.10)" = Mozilla Firefox (3.6.10)
"NVIDIA Display Control Panel" = NVIDIA Display Control Panel
"NVIDIA Drivers" = NVIDIA Drivers
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"Opera 11.10.2092" = Opera 11.10
"SearchAnonymizer" = SearchAnonymizer
"TeamViewer 5" = TeamViewer 5
"TmNationsForever_is1" = TmNationsForever
"Uninstall_is1" = Uninstall 1.0.0.1
"VLC media player" = VLC media player 1.0.5
"Winamp" = Winamp
"Winamp Toolbar" = Winamp Toolbar
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR 4.00 (32-Bit)
"World of Warcraft" = World of Warcraft
"World of Warcraft Public Test" = World of Warcraft Public Test
"Yahoo! Companion" = Yahoo! Toolbar
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"090215de958f1060" = Curse Client
"f031ef6ac137efc5" = Dell Driver Download Manager
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"Winamp Detect" = Winamp Erkennungs-Plug-in
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 16.04.2011 20:07:26 | Computer Name = sushikiste-PC | Source = Microsoft-Windows-CAPI2 | ID = 131077
Description =
Error - 16.04.2011 20:07:37 | Computer Name = sushikiste-PC | Source = Microsoft-Windows-CAPI2 | ID = 131077
Description =
Error - 16.04.2011 20:07:37 | Computer Name = sushikiste-PC | Source = Microsoft-Windows-CAPI2 | ID = 131077
Description =
Error - 16.04.2011 22:14:38 | Computer Name = sushikiste-PC | Source = Application Hang | ID = 1002
Description = Programm WoW.exe, Version 4.0.6.13623 arbeitet nicht mehr mit Windows
zusammen und wurde beendet. Überprüfen Sie den Problemverlauf im Applet "Lösungen
für Probleme" in der Systemsteuerung, um nach weiteren Informationen über das Problem
zu suchen. Prozess-ID: 1424 Anfangszeit: 01cbfca52aa9cc9b Zeitpunkt der Beendigung:
157
Error - 17.04.2011 10:10:04 | Computer Name = sushikiste-PC | Source = Application Error | ID = 1000
Description = Fehlerhafte Anwendung svchost.exe, Version 6.0.6000.16386, Zeitstempel
0x4549adc4, fehlerhaftes Modul ntdll.dll, Version 6.0.6000.16386, Zeitstempel 0x4549bdc9,
Ausnahmecode 0xc000071b, Fehleroffset 0x0008ac88, Prozess-ID 0x42c, Anwendungsstartzeit
01cbfcf7be59d189.
Error - 17.04.2011 21:10:03 | Computer Name = sushikiste-PC | Source = Application Error | ID = 1000
Description = Fehlerhafte Anwendung svchost.exe, Version 6.0.6000.16386, Zeitstempel
0x4549adc4, fehlerhaftes Modul ntdll.dll, Version 6.0.6000.16386, Zeitstempel 0x4549bdc9,
Ausnahmecode 0xc000071b, Fehleroffset 0x0008ac88, Prozess-ID 0x47c, Anwendungsstartzeit
01cbfd5950137d14.
Error - 18.04.2011 00:50:17 | Computer Name = sushikiste-PC | Source = Application Error | ID = 1000
Description = Fehlerhafte Anwendung svchost.exe, Version 6.0.6000.16386, Zeitstempel
0x4549adc4, fehlerhaftes Modul ntdll.dll, Version 6.0.6000.16386, Zeitstempel 0x4549bdc9,
Ausnahmecode 0xc000071b, Fehleroffset 0x0008ac88, Prozess-ID 0x6c8, Anwendungsstartzeit
01cbfd658e3802bc.
Error - 18.04.2011 10:10:03 | Computer Name = sushikiste-PC | Source = Application Error | ID = 1000
Description = Fehlerhafte Anwendung svchost.exe, Version 6.0.6000.16386, Zeitstempel
0x4549adc4, fehlerhaftes Modul ntdll.dll, Version 6.0.6000.16386, Zeitstempel 0x4549bdc9,
Ausnahmecode 0xc000071b, Fehleroffset 0x0008ac88, Prozess-ID 0x434, Anwendungsstartzeit
01cbfdccfa982681.
Error - 18.04.2011 11:10:01 | Computer Name = sushikiste-PC | Source = Application Error | ID = 1000
Description = Fehlerhafte Anwendung svchost.exe, Version 6.0.6000.16386, Zeitstempel
0x4549adc4, fehlerhaftes Modul ntdll.dll, Version 6.0.6000.16386, Zeitstempel 0x4549bdc9,
Ausnahmecode 0xc000071b, Fehleroffset 0x0008ac88, Prozess-ID 0x1364, Anwendungsstartzeit
01cbfdd26dc4dc9b.
Error - 18.04.2011 12:10:01 | Computer Name = sushikiste-PC | Source = Application Error | ID = 1000
Description = Fehlerhafte Anwendung svchost.exe, Version 6.0.6000.16386, Zeitstempel
0x4549adc4, fehlerhaftes Modul ntdll.dll, Version 6.0.6000.16386, Zeitstempel 0x4549bdc9,
Ausnahmecode 0xc000071b, Fehleroffset 0x0008ac88, Prozess-ID 0x430, Anwendungsstartzeit
01cbfddc5d7bec78.
[ System Events ]
Error - 10.06.2010 09:32:24 | Computer Name = sushikiste-PC | Source = ACPI | ID = 327686
Description = IRQARB: ACPI-BIOS enthält keinen IRQ für das Gerät im PCI-Steckplatz
11, Funktion 0. Wenden Sie sich an den Systemhersteller, um technische Unterstützung
zu erhalten.
Error - 10.06.2010 09:34:22 | Computer Name = sushikiste-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 10.06.2010 09:58:58 | Computer Name = sushikiste-PC | Source = ACPI | ID = 327686
Description = IRQARB: ACPI-BIOS enthält keinen IRQ für das Gerät im PCI-Steckplatz
9, Funktion 0. Wenden Sie sich an den Systemhersteller, um technische Unterstützung
zu erhalten.
Error - 10.06.2010 09:58:58 | Computer Name = sushikiste-PC | Source = ACPI | ID = 327686
Description = IRQARB: ACPI-BIOS enthält keinen IRQ für das Gerät im PCI-Steckplatz
11, Funktion 0. Wenden Sie sich an den Systemhersteller, um technische Unterstützung
zu erhalten.
Error - 10.06.2010 10:00:56 | Computer Name = sushikiste-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 11.06.2010 08:22:22 | Computer Name = sushikiste-PC | Source = ACPI | ID = 327686
Description = IRQARB: ACPI-BIOS enthält keinen IRQ für das Gerät im PCI-Steckplatz
9, Funktion 0. Wenden Sie sich an den Systemhersteller, um technische Unterstützung
zu erhalten.
Error - 11.06.2010 08:22:22 | Computer Name = sushikiste-PC | Source = ACPI | ID = 327686
Description = IRQARB: ACPI-BIOS enthält keinen IRQ für das Gerät im PCI-Steckplatz
11, Funktion 0. Wenden Sie sich an den Systemhersteller, um technische Unterstützung
zu erhalten.
Error - 11.06.2010 08:24:20 | Computer Name = sushikiste-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 11.06.2010 08:37:55 | Computer Name = sushikiste-PC | Source = ACPI | ID = 327686
Description = IRQARB: ACPI-BIOS enthält keinen IRQ für das Gerät im PCI-Steckplatz
9, Funktion 0. Wenden Sie sich an den Systemhersteller, um technische Unterstützung
zu erhalten.
Error - 11.06.2010 08:37:55 | Computer Name = sushikiste-PC | Source = ACPI | ID = 327686
Description = IRQARB: ACPI-BIOS enthält keinen IRQ für das Gerät im PCI-Steckplatz
11, Funktion 0. Wenden Sie sich an den Systemhersteller, um technische Unterstützung
zu erhalten.
< End of report > --- --- --- |