| 
  Code: 
 All processes killed========== OTL ==========
 Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully.
 Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{855F3B16-6D32-4fe6-8A56-BBB695989046} deleted successfully.
 Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4fe6-8A56-BBB695989046}\ not found.
 ========== COMMANDS ==========
 
 [EMPTYTEMP]
 
 User: All Users
 
 User: Besitzer
 ->Temp folder emptied: 49933 bytes
 ->Temporary Internet Files folder emptied: 183252 bytes
 ->Java cache emptied: 0 bytes
 ->FireFox cache emptied: 60569178 bytes
 ->Apple Safari cache emptied: 0 bytes
 ->Flash cache emptied: 1167 bytes
 
 User: Default User
 ->Temp folder emptied: 0 bytes
 ->Temporary Internet Files folder emptied: 0 bytes
 
 User: LocalService
 ->Temp folder emptied: 66016 bytes
 ->Temporary Internet Files folder emptied: 33170 bytes
 ->FireFox cache emptied: 0 bytes
 
 User: NetworkService
 ->Temp folder emptied: 0 bytes
 ->Temporary Internet Files folder emptied: 33170 bytes
 
 %systemdrive% .tmp files removed: 0 bytes
 %systemroot% .tmp files removed: 0 bytes
 %systemroot%\System32 .tmp files removed: 0 bytes
 %systemroot%\System32\dllcache .tmp files removed: 0 bytes
 %systemroot%\System32\drivers .tmp files removed: 0 bytes
 Windows Temp folder emptied: 664 bytes
 RecycleBin emptied: 68921664 bytes
 
 Total Files Cleaned = 124,00 mb
 
 
 OTL by OldTimer - Version 3.2.23.0 log created on 08192011_175918
 
 Files\Folders moved on Reboot...
 
 Registry entries deleted on Reboot...
  Code: 
 SUPERAntiSpyware Scan Loghxxp://www.superantispyware.com
 
 Generated 08/19/2011 at 08:06 PM
 
 Application Version : 5.0.1118
 
 Core Rules Database Version : 7573
 Trace Rules Database Version: 5385
 
 Scan type       : Complete Scan
 Total Scan Time : 01:07:55
 
 Operating System Information
 Windows XP Home Edition 32-bit, Service Pack 3 (Build 5.01.2600)
 Administrator
 
 Memory items scanned      : 599
 Memory threats detected   : 0
 Registry items scanned    : 37814
 Registry threats detected : 6
 File items scanned        : 54660
 File threats detected     : 2
 
 Adware.WhenU
 HKCR\WUSE.1
 HKCR\WUSE.1#WUSE_Id
 
 Trojan.NewDotNet
 HKU\.DEFAULT\Software\New.net
 HKU\S-1-5-18\Software\New.net
 
 Rogue.Component/Trace
 HKU\S-1-5-21-790525478-1844823847-725345543-1003\Software\Microsoft\FIAS4057
 
 Malware.Trace
 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON#SHELL
 
 Adware.Tracking Cookie
 C:\Dokumente und Einstellungen\Besitzer\Cookies\ZDCBJBTB.txt
 C:\Dokumente und Einstellungen\Besitzer\Cookies\BLDTH39P.txt
  Code: 
 OTL Extras logfile created on: 19.08.2011 21:15:02 - Run 3OTL by OldTimer - Version 3.2.23.0     Folder = C:\Dokumente und Einstellungen\Besitzer\Desktop
 Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
 Internet Explorer (Version = 8.0.6001.18702)
 Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
 1022,42 Mb Total Physical Memory | 435,06 Mb Available Physical Memory | 42,55% Memory free
 2,40 Gb Paging File | 1,89 Gb Available in Paging File | 78,71% Paging File free
 Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
 
 %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programme
 Drive C: | 40,00 Gb Total Space | 14,59 Gb Free Space | 36,47% Space Free | Partition Type: NTFS
 Drive D: | 146,30 Gb Total Space | 66,59 Gb Free Space | 45,51% Space Free | Partition Type: NTFS
 Drive G: | 465,76 Gb Total Space | 361,68 Gb Free Space | 77,65% Space Free | Partition Type: NTFS
 Drive H: | 3,73 Gb Total Space | 3,73 Gb Free Space | 99,99% Space Free | Partition Type: FAT32
 
 Computer Name: FREDERICK | User Name: Besitzer | Logged in as Administrator.
 Boot Mode: Normal | Scan Mode: Current user
 Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
 ========== Extra Registry (SafeList) ==========
 
 
 ========== File Associations ==========
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
 .cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
 .html [@ = FirefoxHTML] -- C:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation)
 
 [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
 .html [@ = FirefoxHTML] -- C:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation)
 
 ========== Shell Spawning ==========
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
 batfile [open] -- "%1" %*
 cmdfile [open] -- "%1" %*
 comfile [open] -- "%1" %*
 cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
 exefile [open] -- "%1" %*
 http [open] -- Reg Error: Key error.
 https [open] -- "C:\Programme\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation)
 piffile [open] -- "%1" %*
 regfile [merge] -- Reg Error: Key error.
 scrfile [config] -- "%1"
 scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
 scrfile [open] -- "%1" /S
 txtfile [edit] -- Reg Error: Key error.
 Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 Directory [Winamp.Bookmark] -- "C:\Programme\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
 Directory [Winamp.Enqueue] -- "C:\Programme\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
 Directory [Winamp.Play] -- "C:\Programme\Winamp\winamp.exe" "%1" (Nullsoft)
 Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
 Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
 Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
 ========== Security Center Settings ==========
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 "FirstRunDisabled" = 1
 "AntiVirusDisableNotify" = 0
 "FirewallDisableNotify" = 0
 "AntiVirusOverride" = 0
 "FirewallOverride" = 0
 "UpdatesDisableNotify" = 0
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
 
 ========== System Restore Settings ==========
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
 "DisableSR" = 0
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
 "Start" = 0
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
 "Start" = 2
 
 ========== Firewall Settings ==========
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
 "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
 "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
 "EnableFirewall" = 1
 "DoNotAllowExceptions" = 0
 "DisableNotifications" = 0
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
 "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
 "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
 "139:TCP" = 139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004
 "445:TCP" = 445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005
 "137:UDP" = 137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001
 "138:UDP" = 138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002
 
 ========== Authorized Applications List ==========
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
 "C:\Programme\MSN Messenger\msncall.exe" = C:\Programme\MSN Messenger\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)
 "C:\Programme\MSN Messenger\livecall.exe" = C:\Programme\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)
 "C:\Programme\ICQ7.5\ICQ.exe" = C:\Programme\ICQ7.5\ICQ.exe:*:Enabled:ICQ7.5 -- (ICQ, LLC.)
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
 "C:\Dokumente und Einstellungen\Besitzer\Eigene Dateien\ICQ Lite\250278520\DannY_229677228\Skype.exe" = C:\Dokumente und Einstellungen\Besitzer\Eigene Dateien\ICQ Lite\250278520\DannY_229677228\Skype.exe:*:Enabled:Skype -- ()
 "C:\Programme\Winamp\winamp.exe" = C:\Programme\Winamp\winamp.exe:*:Enabled:Winamp -- (Nullsoft)
 "C:\Programme\Mozilla Firefox\firefox.exe" = C:\Programme\Mozilla Firefox\firefox.exe:*:Enabled:Firefox -- (Mozilla Corporation)
 "C:\Programme\HP\Digital Imaging\bin\hpofxm08.exe" = C:\Programme\HP\Digital Imaging\bin\hpofxm08.exe:*:Enabled:hpofxm08.exe -- (Hewlett-Packard Development Company, L.P.)
 "C:\Programme\HP\Digital Imaging\bin\hposfx08.exe" = C:\Programme\HP\Digital Imaging\bin\hposfx08.exe:*:Enabled:hposfx08.exe -- (Hewlett-Packard Development Company, L.P.)
 "C:\Programme\HP\Digital Imaging\bin\hposid01.exe" = C:\Programme\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe -- (Hewlett-Packard Development Company, L.P.)
 "C:\Programme\HP\Digital Imaging\bin\hpqCopy.exe" = C:\Programme\HP\Digital Imaging\bin\hpqCopy.exe:*:Enabled:hpqcopy.exe -- (Hewlett-Packard Development Company, L.P.)
 "C:\Programme\HP\Digital Imaging\bin\hpfccopy.exe" = C:\Programme\HP\Digital Imaging\bin\hpfccopy.exe:*:Enabled:hpfccopy.exe -- (Hewlett-Packard)
 "C:\Programme\HP\Digital Imaging\bin\hpzwiz01.exe" = C:\Programme\HP\Digital Imaging\bin\hpzwiz01.exe:*:Enabled:hpzwiz01.exe -- (Hewlett-Packard Development Company, L.P.)
 "C:\Programme\HP\Digital Imaging\Unload\HpqPhUnl.exe" = C:\Programme\HP\Digital Imaging\Unload\HpqPhUnl.exe:*:Enabled:hpqphunl.exe -- (Hewlett-Packard)
 "C:\Programme\HP\Digital Imaging\Unload\HpqDIA.exe" = C:\Programme\HP\Digital Imaging\Unload\HpqDIA.exe:*:Enabled:hpqdia.exe -- ( )
 "C:\Programme\HP\Digital Imaging\bin\hpoews01.exe" = C:\Programme\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe -- (Hewlett-Packard Development Company, L.P.)
 "C:\Programme\SiSoftware\SiSoftware Sandra Lite XII.SP2c\RpcAgentSrv.exe" = C:\Programme\SiSoftware\SiSoftware Sandra Lite XII.SP2c\RpcAgentSrv.exe:*:Enabled:SiSoftware Deployment Agent Service -- (SiSoftware)
 "C:\Programme\SiSoftware\SiSoftware Sandra Lite XII.SP2c\WNt500x86\RpcSandraSrv.exe" = C:\Programme\SiSoftware\SiSoftware Sandra Lite XII.SP2c\WNt500x86\RpcSandraSrv.exe:*:Enabled:SiSoftware Sandra Agent Service -- (SiSoftware)
 "C:\Programme\Java\jre6\bin\java.exe" = C:\Programme\Java\jre6\bin\java.exe:*:Enabled:Java(TM) Platform SE binary -- (Sun Microsystems, Inc.)
 "C:\WINDOWS\system32\java.exe" = C:\WINDOWS\system32\java.exe:*:Enabled:Java(TM) Platform SE binary -- (Sun Microsystems, Inc.)
 "C:\Programme\ICQ6.5\ICQ.exe" = C:\Programme\ICQ6.5\ICQ.exe:*:Enabled:ICQ6
 "C:\Programme\Google\Google Earth\plugin\geplugin.exe" = C:\Programme\Google\Google Earth\plugin\geplugin.exe:*:Enabled:Google Earth
 "C:\Programme\Google\Google Earth\client\googleearth.exe" = C:\Programme\Google\Google Earth\client\googleearth.exe:*:Enabled:Google Earth
 "C:\Programme\Sony Ericsson\Update Service\Update Service.exe" = C:\Programme\Sony Ericsson\Update Service\Update Service.exe:*:Enabled:Update Service -- ()
 "C:\Programme\Free Music Zilla\FMZilla.exe" = C:\Programme\Free Music Zilla\FMZilla.exe:*:Enabled:FMZilla -- ()
 "C:\Programme\ICQ7.5\ICQ.exe" = C:\Programme\ICQ7.5\ICQ.exe:*:Enabled:ICQ7.5 -- (ICQ, LLC.)
 "C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\WebKit2WebProcess.exe" = C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\WebKit2WebProcess.exe:*:Enabled:WebKit -- (Apple Inc.)
 "C:\Dokumente und Einstellungen\Besitzer\Desktop\Skype.exe" = C:\Dokumente und Einstellungen\Besitzer\Desktop\Skype.exe:*:Enabled:Skype
 
 
 ========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
 "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
 "{13B792AA-C078-43A4-8A3A-8B12D629940D}" = Counter-Strike 1.6
 "{1ADE1AA0-7F82-4BB1-B1BD-727DE438057B}" = Cool & Quiet
 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
 "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live-Uploadtool
 "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
 "{2376813B-2E5A-4641-B7B3-A0D5ADB55229}" = HPPhotoSmartExpress
 "{26A24AE4-039D-4CA4-87B4-2F83216026FF}" = Java(TM) 6 Update 26
 "{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform
 "{350C97B3-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
 "{363790D2-DA98-41DD-9C9F-69FA36B169DE}" = PanoStandAlone
 "{41E496B5-47F4-11D6-9BBB-00E0987BB2CD}" = CMM PC Camera
 "{45B8A76B-57EC-4242-B019-066400CD8428}" = BufferChm
 "{49FC50FC-F965-40D9-89B4-CBFF80941031}" = Windows Movie Maker 2.0
 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
 "{4EA684E9-5C81-4033-A696-3019EC57AC3A}" = HPProductAssistant
 "{52B97218-98CB-4B8B-9283-D213C85E1AA4}" = Windows Live Anmelde-Assistent
 "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
 "{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
 "{66910000-8B30-4973-A159-6371345AFFA5}" = WebReg
 "{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder
 "{68763C27-235D-4165-A961-FDEA228CE504}" = AiOSoftwareNPI
 "{6909F917-5499-482e-9AA1-FAD06A99F231}" = Toolbox
 "{6994491D-D491-48F1-AE1F-E179C1FFFC2F}" = HP Photosmart Essential
 "{6A3F9D74-BB80-4451-8CA1-4B3A857F1359}" = Apple Application Support
 "{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15}" = CustomerResearchQFolder
 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
 "{735619D4-B42A-437A-958C-199BFCAEDB38}" = Safari
 "{736C803C-DD3B-4015-BC51-AFB9E67B9076}" = Readme
 "{7578ADEA-D65F-4C89-A249-B1C88B6FFC20}" = ICQ7.5
 "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
 "{779DECD7-E072-4B56-9B6B-BEB5973EEEB5}" = MobileMe Control Panel
 "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
 "{7E7B7865-6C80-4373-8BC1-C2EB9431F9DE}" = ProductContextNPI
 "{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1" = PDF24 Creator 3.0.0
 "{8331C3EA-0C91-43AA-A4D4-27221C631139}" = Status
 "{83B26E5D-1795-4DFE-9317-0FA0F3AAB568}" = Paint.NET v3.08
 "{87E2B986-07E8-477a-93DC-AF0B6758B192}" = DocProcQFolder
 "{8A4CE7FD-9657-4B06-9943-E1819F3D5D67}" = DocProc
 "{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}" = Unload
 "{8F1FE0E5-CF86-471F-BC3E-114FA0C973FF}" = OpenOffice.org 2.2
 "{90110407-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
 "{90120000-0020-0407-0000-0000000FF1CE}" = Compatibility Pack für 2007 Office System
 "{90170407-6000-11D3-8CFE-0150048383C9}" = Microsoft Office FrontPage 2003
 "{90510407-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Visio Professional 2003
 "{90850407-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Word Viewer 2003
 "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
 "{996512CF-F35B-48DE-9291-557FA5316967}" = ScannerCopy
 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
 "{9FC8D8F8-AF3A-4488-98AF-51C6DEC732F2}" = c3100_Help
 "{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
 "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
 "{A654A805-41D9-40C7-AA46-4AF04F044D61}" = Adobe® Photoshop® Album Starter Edition 3.2
 "{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
 "{AA59DDE4-B672-4621-A016-4C248204957A}" = Skype™ 5.5
 "{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder
 "{AC76BA86-7AD7-1031-7B44-A70700000002}" = Adobe Reader 7.0.7 - Deutsch
 "{AC76BA86-7AD7-5464-3428-7050000000A7}" = Adobe Reader 7.0.5 Language Support
 "{AED2DD42-9853-407E-A6BC-8A1D6B715909}" = Windows Live Messenger
 "{BB406CEB-6207-4512-9BB2-89950DC9D6B6}_is1" = ConvertXtoDVD 2.0.12
 "{BB85ED9C-AFC9-43BD-B8DC-258C3C7DF72E}" = HP Software Update
 "{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}" = HP Photosmart, Officejet and Deskjet 7.0.A
 "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
 "{C151CE54-E7EA-4804-854B-F515368B0798}" = Athlon 64 Processor Driver
 "{C23CD6DA-1958-43A5-ADD0-59396572E02E}" = Apple Mobile Device Support
 "{C3113E55-7BCB-4de3-8EBF-60E6CE6B2196}_is1" = SiSoftware Sandra Lite XII.SP2c
 "{C7340571-7773-4A8C-9EBC-4E4243B38C76}" = Microsoft XML Parser
 "{C73CA646-73B3-4AEF-A136-C37505745174}" = iTunes
 "{C7F54CF8-D6FB-4E0A-93A3-E68AE0D6C476}" = SolutionCenter
 "{C8753E28-2680-49BF-BD48-DD38FD086EFE}" = AiO_Scan_CDA
 "{CAFA57E8-8927-4912-AFCF-B0AA3837E989}" = Windows Live Essentials
 "{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware
 "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
 "{CFA9C1EE-8D76-477E-9E26-D24C26F11F47}" = USB 2.0 Card Reader
 "{D03482C5-9AD8-496D-B388-692AE04C93AF}" = Bonjour
 "{D2041A37-5FEC-49F0-AE5C-3F2FFDFAA4F4}" = Windows Live Call
 "{DBC20735-34E6-4E97-A9E5-2066B66B243D}" = TrayApp
 "{E1B80DEE-A795-4258-8445-074C06AE3AB8}" = MarketResearch
 "{EB8C9964-09AC-48bf-8B98-027609C78251}" = C3100
 "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
 "{F157460F-720E-482f-8625-AD7843891E5F}" = InstantShareDevicesMFC
 "{F3760724-B29D-465B-BC53-E5D72095BCC4}" = Scan
 "{F428D0FB-765D-40EB-BDD8-A1E7F5C597FA}" = Update Manager
 "{F6076EF9-08E1-442F-B6A2-BFB61B295A14}" = Fax_CDA
 "{F7338FA3-DAB5-49B2-900D-0AFB5760C166}" = PC Probe II
 "{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio
 "{FB15E224-67C3-491F-9F5C-F257BC418412}" = Destinations
 "{FBB980B0-63F8-4B48-8D65-90F1D9F81D9F}" = NewCopy_CDA
 "{FC906D5C-91F9-4DA4-A765-6DCBB669F317}" = Sony Ericsson PC Suite
 "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
 "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
 "Adobe® Photoshop® Album Starter Edition 3.2" = Adobe® Photoshop® Album Starter Edition 3.2
 "AdobeESD" = Adobe Download Manager 2.0 (Nur entfernen)
 "Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
 "CCleaner" = CCleaner
 "CdaC13Ba" = Cda Product Service - shared component
 "CIF USB CAMERA" = CIF USB CAMERA
 "ESET Online Scanner" = ESET Online Scanner v3
 "Free Music Zilla_is1" = Free Music Zilla
 "HijackThis" = HijackThis 2.0.2
 "HP Imaging Device Functions" = HP Imaging Device Functions 7.0
 "HP Solution Center & Imaging Support Tools" = HP Solution Center 7.0
 "HPExtendedCapabilities" = HP Customer Participation Program 7.0
 "HPOCR" = OCR Software by I.R.I.S 7.0
 "ie8" = Windows Internet Explorer 8
 "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware Version 1.51.1.1800
 "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
 "Mozilla Firefox 6.0 (x86 de)" = Mozilla Firefox 6.0 (x86 de)
 "MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
 "MSNINST" = MSN
 "Nero - Burning Rom!UninstallKey" = Nero 6 Ultra Edition
 "NVIDIA Drivers" = NVIDIA Drivers
 "Picasa 3" = Picasa 3
 "PokerStars" = PokerStars
 "Rainbow Client Activator 2.2 English" = Client Activator 2.2 - English (2)
 "Rainbow Client Activator 2.2 English All" = Client Activator 2.2 - English (All)
 "Revo Uninstaller" = Revo Uninstaller 1.93
 "Seven Remix XP" = Seven Remix XP 2.41
 "Syncrosoft's License Control" = Syncrosofts Lizenz Kontrolle
 "Teamspeak 2 RC2_is1" = TeamSpeak 2 RC2
 "Uninstall_is1" = Uninstall 1.0.0.1
 "Update Service" = Sony Ericsson Update Service
 "VLC media player" = VideoLAN VLC media player 0.8.4a
 "WIC" = Windows Imaging Component
 "Winamp" = Winamp (remove only)
 "Windows Live OneCare safety scanner" = Windows Live OneCare safety scanner
 "Windows Media Format Runtime" = Windows Media Format 11 runtime
 "Windows Media Player" = Windows Media Player 11
 "Windows XP Service Pack" = Windows XP Service Pack 3
 "WinLiveSuite_Wave3" = Windows Live Essentials
 "WinRAR archiver" = WinRAR Archivierer
 "WMFDist11" = Windows Media Format 11 runtime
 "wmp11" = Windows Media Player 11
 "Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
 "YTdetect" = Yahoo! Detect
 
 ========== Last 10 Event Log Errors ==========
 
 [ Application Events ]
 Error - 12.06.2011 02:55:20 | Computer Name = FREDERICK | Source = ESENT | ID = 490
 Description = svchost (1104) Versuch, Datei "C:\WINDOWS\system32\CatRoot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb"
 für den Lese-/Schreibzugriff zu öffnen, ist mit Systemfehler 32 (0x00000020): "Der
 Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet
 wird. " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Öffnen von Dateien.
 
 Error - 27.06.2011 07:54:43 | Computer Name = FREDERICK | Source = ESENT | ID = 490
 Description = svchost (1116) Versuch, Datei "C:\WINDOWS\system32\CatRoot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb"
 für den Lese-/Schreibzugriff zu öffnen, ist mit Systemfehler 32 (0x00000020): "Der
 Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet
 wird. " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Öffnen von Dateien.
 
 Error - 27.06.2011 11:39:48 | Computer Name = FREDERICK | Source = Application Hang | ID = 1002
 Description = Stillstehende Anwendung FreeYouTubeToMP3Converter.exe, Version 3.7.17.183,
 Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000.
 
 Error - 05.07.2011 12:16:51 | Computer Name = FREDERICK | Source = Application Error | ID = 1000
 Description = Fehlgeschlagene Anwendung acrord32.exe, Version 7.0.7.142, fehlgeschlagenes
 Modul acrord32.dll, Version 7.0.7.142, Fehleradresse 0x00012223.
 
 Error - 06.07.2011 06:37:43 | Computer Name = FREDERICK | Source = ESENT | ID = 490
 Description = svchost (1112) Versuch, Datei "C:\WINDOWS\system32\CatRoot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb"
 für den Lese-/Schreibzugriff zu öffnen, ist mit Systemfehler 32 (0x00000020): "Der
 Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet
 wird. " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Öffnen von Dateien.
 
 Error - 11.07.2011 12:09:48 | Computer Name = FREDERICK | Source = Application Hang | ID = 1002
 Description = Stillstehende Anwendung firefox.exe, Version 5.0.0.4183, Stillstandmodul
 hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000.
 
 Error - 11.07.2011 14:17:58 | Computer Name = FREDERICK | Source = ESENT | ID = 490
 Description = svchost (1116) Versuch, Datei "C:\WINDOWS\system32\CatRoot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb"
 für den Lese-/Schreibzugriff zu öffnen, ist mit Systemfehler 32 (0x00000020): "Der
 Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet
 wird. " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Öffnen von Dateien.
 
 Error - 13.07.2011 06:59:28 | Computer Name = FREDERICK | Source = ESENT | ID = 490
 Description = svchost (1112) Versuch, Datei "C:\WINDOWS\system32\CatRoot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb"
 für den Lese-/Schreibzugriff zu öffnen, ist mit Systemfehler 32 (0x00000020): "Der
 Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet
 wird. " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Öffnen von Dateien.
 
 Error - 14.07.2011 12:09:24 | Computer Name = FREDERICK | Source = Application Hang | ID = 1002
 Description = Stillstehende Anwendung Picasa3.exe, Version 3.8.117.43, Stillstandmodul
 hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000.
 
 Error - 11.08.2011 12:21:22 | Computer Name = FREDERICK | Source = Application Hang | ID = 1002
 Description = Stillstehende Anwendung firefox.exe, Version 5.0.0.4183, Stillstandmodul
 hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000.
 
 [ System Events ]
 Error - 19.08.2011 14:09:34 | Computer Name = FREDERICK | Source = Service Control Manager | ID = 7000
 Description = Der Dienst "Nsynas32" wurde aufgrund folgenden Fehlers nicht gestartet:
 %%2
 
 Error - 19.08.2011 14:09:34 | Computer Name = FREDERICK | Source = Service Control Manager | ID = 7000
 Description = Der Dienst "Avira Upgrade Service" wurde aufgrund folgenden Fehlers
 nicht gestartet:   %%3
 
 
 < End of report >
  Code: 
 OTL logfile created on: 19.08.2011 21:15:02 - Run 3OTL by OldTimer - Version 3.2.23.0     Folder = C:\Dokumente und Einstellungen\Besitzer\Desktop
 Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
 Internet Explorer (Version = 8.0.6001.18702)
 Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
 1022,42 Mb Total Physical Memory | 435,06 Mb Available Physical Memory | 42,55% Memory free
 2,40 Gb Paging File | 1,89 Gb Available in Paging File | 78,71% Paging File free
 Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
 
 %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programme
 Drive C: | 40,00 Gb Total Space | 14,59 Gb Free Space | 36,47% Space Free | Partition Type: NTFS
 Drive D: | 146,30 Gb Total Space | 66,59 Gb Free Space | 45,51% Space Free | Partition Type: NTFS
 Drive G: | 465,76 Gb Total Space | 361,68 Gb Free Space | 77,65% Space Free | Partition Type: NTFS
 Drive H: | 3,73 Gb Total Space | 3,73 Gb Free Space | 99,99% Space Free | Partition Type: FAT32
 
 Computer Name: FREDERICK | User Name: Besitzer | Logged in as Administrator.
 Boot Mode: Normal | Scan Mode: Current user
 Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
 ========== Processes (SafeList) ==========
 
 PRC - [2011.08.18 21:41:17 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Programme\Mozilla Firefox\firefox.exe
 PRC - [2011.08.12 01:38:07 | 000,116,608 | ---- | M] (SUPERAntiSpyware.com) -- C:\Programme\SUPERAntiSpyware\SASCore.exe
 PRC - [2011.07.05 15:10:04 | 000,269,480 | ---- | M] (Avira GmbH) -- C:\Programme\Avira\AntiVir Desktop\avguard.exe
 PRC - [2011.06.10 13:27:02 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Dokumente und Einstellungen\Besitzer\Desktop\OTL.exe
 PRC - [2011.04.28 09:59:58 | 000,220,552 | ---- | M] (Geek Software GmbH) -- C:\Programme\PDF24\pdf24.exe
 PRC - [2011.04.27 18:00:46 | 000,136,360 | ---- | M] (Avira GmbH) -- C:\Programme\Avira\AntiVir Desktop\sched.exe
 PRC - [2011.04.08 12:59:52 | 000,254,696 | ---- | M] (Sun Microsystems, Inc.) -- C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe
 PRC - [2011.02.18 17:37:16 | 000,037,664 | ---- | M] (Apple Inc.) -- C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe
 PRC - [2010.11.04 17:18:26 | 000,281,768 | ---- | M] (Avira GmbH) -- C:\Programme\Avira\AntiVir Desktop\avgnt.exe
 PRC - [2010.01.14 22:10:53 | 000,076,968 | ---- | M] (Avira GmbH) -- C:\Programme\Avira\AntiVir Desktop\avshadow.exe
 PRC - [2008.04.22 18:23:02 | 000,098,488 | ---- | M] (SiSoftware) -- C:\Programme\SiSoftware\SiSoftware Sandra Lite XII.SP2c\RpcAgentSrv.exe
 PRC - [2008.04.14 04:22:45 | 001,036,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
 PRC - [2006.07.23 13:06:58 | 000,039,936 | ---- | M] (C-Dilla Ltd) -- C:\WINDOWS\system32\drivers\CDAC11BA.EXE
 PRC - [2005.08.11 16:30:30 | 000,081,920 | ---- | M] (Macrovision Corporation) -- C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe
 PRC - [2005.06.20 15:42:20 | 000,077,824 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SOUNDMAN.EXE
 
 
 ========== Modules (SafeList) ==========
 
 MOD - [2011.06.10 13:27:02 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Dokumente und Einstellungen\Besitzer\Desktop\OTL.exe
 MOD - [2010.08.23 18:11:46 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
 
 
 ========== Win32 Services (SafeList) ==========
 
 SRV - File not found [Disabled | Stopped] --  -- (HidServ)
 SRV - File not found [On_Demand | Stopped] --  -- (AppMgmt)
 SRV - File not found [Auto | Stopped] --  -- (AntiVirUpgradeService)
 SRV - [2011.08.12 01:38:07 | 000,116,608 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Programme\SUPERAntiSpyware\SASCORE.EXE -- (!SASCORE)
 SRV - [2011.07.05 15:10:04 | 000,269,480 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Programme\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
 SRV - [2011.04.27 18:00:46 | 000,136,360 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Programme\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
 SRV - [2011.02.18 17:37:16 | 000,037,664 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe -- (Apple Mobile Device)
 SRV - [2008.04.22 18:23:02 | 000,098,488 | ---- | M] (SiSoftware) [Auto | Running] -- C:\Programme\SiSoftware\SiSoftware Sandra Lite XII.SP2c\RpcAgentSrv.exe -- (SandraAgentSrv)
 SRV - [2006.07.23 13:06:58 | 000,039,936 | ---- | M] (C-Dilla Ltd) [Auto | Running] -- C:\WINDOWS\system32\drivers\CDAC11BA.EXE -- (C-DillaCdaC11BA)
 SRV - [2006.03.03 21:03:10 | 000,069,632 | ---- | M] (HP) [Unknown | Stopped] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12)
 SRV - [2005.11.14 01:06:04 | 000,069,632 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1150\Intel 32\IDriverT.exe -- (IDriverT)
 SRV - [2003.07.28 21:28:22 | 000,089,136 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE -- (ose)
 
 
 ========== Driver Services (SafeList) ==========
 
 DRV - [2011.07.22 18:27:02 | 000,012,880 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Programme\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
 DRV - [2011.07.12 23:55:22 | 000,067,664 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Programme\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
 DRV - [2011.07.05 15:10:18 | 000,138,192 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
 DRV - [2011.07.05 15:10:18 | 000,066,616 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt)
 DRV - [2010.10.17 14:09:51 | 000,027,632 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\seehcri.sys -- (seehcri)
 DRV - [2009.05.11 12:49:19 | 000,011,608 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Programme\Avira\AntiVir Desktop\avgio.sys -- (avgio)
 DRV - [2009.05.11 10:12:49 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
 DRV - [2008.09.03 18:35:22 | 000,097,792 | ---- | M] (Protect Software GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ACEDRV05.sys -- (ACEDRV05)
 DRV - [2008.04.13 20:45:29 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
 DRV - [2008.03.10 19:30:36 | 000,021,408 | ---- | M] (SiSoftware) [Kernel | On_Demand | Stopped] -- C:\Programme\SiSoftware\SiSoftware Sandra Lite XII.SP2c\WNt500x86\sandra.sys -- (SANDRA)
 DRV - [2006.09.18 14:59:08 | 000,090,800 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\se27unic.sys -- (se27unic) Sony Ericsson Device 039 USB Ethernet Emulation SEMC39 (WDM)
 DRV - [2006.09.18 14:59:02 | 000,086,560 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SE27obex.sys -- (SE27obex)
 DRV - [2006.09.18 14:59:00 | 000,018,704 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\se27nd5.sys -- (se27nd5) Sony Ericsson Device 039 USB Ethernet Emulation SEMC39 (NDIS)
 DRV - [2006.09.18 14:58:58 | 000,088,688 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SE27mgmt.sys -- (SE27mgmt) Sony Ericsson Device 039 USB WMC Device Management Drivers (WDM)
 DRV - [2006.09.18 14:58:54 | 000,097,184 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SE27mdm.sys -- (SE27mdm)
 DRV - [2006.09.18 14:58:52 | 000,009,360 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SE27mdfl.sys -- (SE27mdfl)
 DRV - [2006.09.18 14:58:48 | 000,061,600 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SE27bus.sys -- (SE27bus) Sony Ericsson Device 039 Driver driver (WDM)
 DRV - [2006.08.17 18:14:55 | 000,223,128 | ---- | M] (DT Soft Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\dtscsi.sys -- (dtscsi)
 DRV - [2006.07.23 13:06:48 | 000,008,864 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\CDAC15BA.SYS -- (CdaC15BA)
 DRV - [2006.05.16 13:58:36 | 000,664,064 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
 DRV - [2006.05.08 21:43:13 | 000,010,345 | ---- | M] (Applied Networking Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
 DRV - [2005.06.20 16:08:44 | 002,324,480 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ALCXWDM.SYS -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
 DRV - [2005.03.09 15:53:00 | 000,043,008 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8)
 DRV - [2004.08.13 04:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor)
 DRV - [2004.06.16 09:14:00 | 000,180,480 | R--- | M] (Marvell) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\yk51x86.sys -- (yukonwxp)
 DRV - [2004.03.10 14:31:18 | 000,003,328 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\AsInsHelp32.sys -- (ASInsHelp)
 DRV - [2004.02.10 13:40:56 | 000,127,692 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pfc027.sys -- (SoC PC-Camera Service)
 DRV - [2001.08.17 15:00:04 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\msmpu401.sys -- (ms_mpu401)
 DRV - [2001.08.17 14:53:32 | 000,003,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\qv2kux.sys -- (QV2KUX)
 
 
 ========== Standard Registry (SafeList) ==========
 
 
 ========== Internet Explorer ==========
 
 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Use Custom Search URL = 1
 IE - HKLM\..\URLSearchHook:  - Reg Error: Key error. File not found
 IE - HKLM\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - Reg Error: Key error. File not found
 
 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Prev Search Page = hxxp://www.google.com
 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0E C8 A4 87 9E 5E CC 01  [binary data]
 IE - HKCU\..\URLSearchHook:  - Reg Error: Key error. File not found
 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 ========== FireFox ==========
 
 FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
 FF - prefs.js..browser.search.defaultthis.engineName: ""
 FF - prefs.js..browser.search.defaulturl: "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.2.9&q="
 FF - prefs.js..browser.search.selectedEngine: "Google"
 FF - prefs.js..browser.search.useDBForOrder: true
 FF - prefs.js..browser.startup.homepage: "chrome://speeddial/content/"
 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
 FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.5
 FF - prefs.js..extensions.enabledItems: {64161300-e22b-11db-8314-0800200c9a66}:0.9.5.8
 FF - prefs.js..keyword.URL: "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.2.9&q="
 FF - prefs.js..network.proxy.no_proxies_on: ""
 FF - prefs.js..network.proxy.type: 4
 
 FF - HKLM\software\mozilla\Mozilla Firefox 6.0\extensions\\Components: C:\Programme\Mozilla Firefox\components [2011.08.18 21:41:18 | 000,000,000 | ---D | M]
 FF - HKLM\software\mozilla\Mozilla Firefox 6.0\extensions\\Plugins: C:\Programme\Mozilla Firefox\plugins [2011.05.24 19:10:28 | 000,000,000 | ---D | M]
 
 [2008.08.27 20:33:13 | 000,000,000 | ---D | M] (No name found) -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Mozilla\Extensions
 [2011.08.18 20:09:41 | 000,000,000 | ---D | M] (No name found) -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Mozilla\Firefox\Profiles\t7se0uxi.default\extensions
 [2010.09.18 21:30:31 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Mozilla\Firefox\Profiles\t7se0uxi.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
 [2011.08.18 20:09:41 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Mozilla\Firefox\Profiles\t7se0uxi.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
 [2011.07.09 19:11:41 | 000,000,000 | ---D | M] (WOT) -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Mozilla\Firefox\Profiles\t7se0uxi.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
 [2011.08.18 20:11:42 | 000,000,950 | ---- | M] () -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Mozilla\Firefox\Profiles\t7se0uxi.default\searchplugins\icqplugin-1.xml
 [2011.08.10 17:33:00 | 000,000,168 | ---- | M] () -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Mozilla\Firefox\Profiles\t7se0uxi.default\searchplugins\icqplugin.gif
 [2011.08.10 17:33:00 | 000,000,618 | ---- | M] () -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Mozilla\Firefox\Profiles\t7se0uxi.default\searchplugins\icqplugin.src
 [2011.08.18 20:24:22 | 000,000,950 | ---- | M] () -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Mozilla\Firefox\Profiles\t7se0uxi.default\searchplugins\icqplugin.xml
 [2011.08.19 18:34:37 | 000,000,000 | ---D | M] (No name found) -- C:\Programme\Mozilla Firefox\extensions
 [2011.05.24 19:10:30 | 000,000,000 | ---D | M] (Java Console) -- C:\Programme\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
 [2011.08.19 18:34:38 | 000,000,000 | ---D | M] (Java Console) -- C:\Programme\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
 File not found (No name found) --
 () (No name found) -- C:\DOKUMENTE UND EINSTELLUNGEN\BESITZER\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\T7SE0UXI.DEFAULT\EXTENSIONS\{64161300-E22B-11DB-8314-0800200C9A66}.XPI
 () (No name found) -- C:\DOKUMENTE UND EINSTELLUNGEN\BESITZER\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\T7SE0UXI.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI
 [2011.08.19 18:34:22 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAMME\JAVA\JRE6\LIB\DEPLOY\JQS\FF
 [2011.08.18 21:41:17 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Programme\Mozilla Firefox\components\browsercomps.dll
 [2011.08.19 18:34:21 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Programme\Mozilla Firefox\plugins\npdeployJava1.dll
 [2010.01.01 10:00:00 | 000,001,392 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\amazondotcom-de.xml
 [2010.01.01 10:00:00 | 000,001,153 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\eBay-de.xml
 [2010.01.01 10:00:00 | 000,006,805 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\leo_ende_de.xml
 [2010.01.01 10:00:00 | 000,001,178 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\wikipedia-de.xml
 
 O1 HOSTS File: ([2011.08.16 05:35:14 | 000,000,098 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts
 O1 - Hosts: 127.0.0.1       localhost
 O1 - Hosts: ::1       localhost
 O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
 O2 - BHO: (Windows Live Anmelde-Hilfsprogramm) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
 O4 - HKLM..\Run: [AppleSyncNotifier] C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleSyncNotifier.exe (Apple Inc.)
 O4 - HKLM..\Run: [avgnt] C:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
 O4 - HKLM..\Run: [ISUSPM Startup] C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\isuspm.exe (Macrovision Corporation)
 O4 - HKLM..\Run: [ISUSScheduler] C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe (Macrovision Corporation)
 O4 - HKLM..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh)
 O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
 O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
 O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
 O4 - HKLM..\Run: [PDFPrint] C:\Programme\PDF24\pdf24.exe (Geek Software GmbH)
 O4 - HKLM..\Run: [Sony Ericsson PC Suite] C:\Programme\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe ()
 O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.)
 O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
 O4 - HKCU..\Run: [SUPERAntiSpyware] C:\Programme\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware.com)
 O4 - Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Adobe Reader - Schnellstart.lnk = C:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe (Adobe Systems Incorporated)
 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
 O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
 O9 - Extra Button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Programme\PokerStars\PokerStarsUpdate.exe (PokerStars)
 O9 - Extra Button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Programme\ICQ7.5\ICQ.exe (ICQ, LLC.)
 O9 - Extra 'Tools' menuitem : ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Programme\ICQ7.5\ICQ.exe (ICQ, LLC.)
 O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Programme\Bonjour\mdnsNSP.dll (Apple Inc.)
 O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
 O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
 O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
 O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.220.18.8 89.246.64.8
 O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
 O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
 O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
 O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
 O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
 O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
 O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
 O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
 O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Components\11\OWC11.DLL (Microsoft Corporation)
 O18 - Protocol\Filter\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation)
 O20 - HKLM Winlogon: Shell - (EXPLORER.EXE) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
 O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Programme\SUPERAntiSpyware\SASWINLO.DLL - C:\Programme\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
 O24 - Desktop Components:0 (Die derzeitige Homepage) - About:Home
 O24 - Desktop WallPaper: C:\Dokumente und Einstellungen\Besitzer\Lokale Einstellungen\Anwendungsdaten\Microsoft\Wallpaper1.bmp
 O24 - Desktop BackupWallPaper: C:\Dokumente und Einstellungen\Besitzer\Lokale Einstellungen\Anwendungsdaten\Microsoft\Wallpaper1.bmp
 O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Programme\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
 O32 - HKLM CDRom: AutoRun - 1
 O32 - AutoRun File - [2006.05.05 15:49:31 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
 O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
 O35 - HKLM\..comfile [open] -- "%1" %*
 O35 - HKLM\..exefile [open] -- "%1" %*
 O37 - HKLM\...com [@ = ComFile] -- "%1" %*
 O37 - HKLM\...exe [@ = exefile] -- "%1" %*
 
 ========== Files/Folders - Created Within 30 Days ==========
 
 [2011.08.19 20:54:52 | 002,322,184 | ---- | C] (ESET) -- C:\Dokumente und Einstellungen\Besitzer\Desktop\esetsmartinstaller_deu.exe
 [2011.08.19 20:41:12 | 000,000,000 | ---D | C] -- C:\Programme\ESET
 [2011.08.19 18:56:46 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\SUPERAntiSpyware.com
 [2011.08.19 18:55:59 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\SUPERAntiSpyware.com
 [2011.08.19 18:55:59 | 000,000,000 | ---D | C] -- C:\Programme\SUPERAntiSpyware
 [2011.08.19 18:46:07 | 000,000,000 | RH-D | C] -- C:\Dokumente und Einstellungen\Besitzer\Recent
 [2011.08.19 18:34:36 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
 [2011.08.19 18:34:36 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
 [2011.08.19 18:34:36 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
 [2011.08.19 18:34:36 | 000,073,728 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl
 [2011.08.19 18:07:23 | 000,000,000 | ---D | C] -- C:\Programme\VS Revo Group
 [2011.08.19 18:07:23 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Besitzer\Startmenü\Programme\Revo Uninstaller
 [2011.08.19 18:02:13 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Besitzer\Desktop\trojaner-board (18.08.2011)
 [2011.08.19 18:01:41 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Besitzer\Desktop\trojaner-board (17.08.2011)
 [2011.08.18 21:06:59 | 000,000,000 | ---D | C] -- C:\Programme\CCleaner
 [2011.08.17 02:52:17 | 002,234,368 | R--- | C] (OldTimer Tools) -- C:\OTLPE.exe
 [2011.08.10 17:44:43 | 000,139,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdpwd.sys
 [2011.08.10 17:43:50 | 000,010,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ndistapi.sys
 [2011.08.03 18:11:34 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Skype
 [2011.08.03 18:11:32 | 000,000,000 | R--D | C] -- C:\Programme\Skype
 [2011.07.25 20:35:47 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\iTunes
 [2011.07.25 20:28:17 | 000,000,000 | ---D | C] -- C:\Programme\Bonjour
 [2007.08.16 14:09:49 | 001,822,520 | ---- | C] (Microsoft Corporation) -- C:\Programme\instmsiW.exe
 [2007.08.16 14:09:42 | 000,245,408 | ---- | C] (Microsoft Corporation) -- C:\Programme\unicows.dll
 [2006.05.16 14:18:06 | 302,548,481 | ---- | C] (InstallShield Software Corporation) -- C:\Programme\Counter Strike 1.6.EXE
 [1999.03.07 08:14:36 | 000,315,392 | ---- | C] (Dialog Medien GmbH / www.dialog-medien.de) -- C:\Programme\ACM.ocx
 [3 C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\*.tmp files -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\*.tmp -> ]
 
 ========== Files - Modified Within 30 Days ==========
 
 [2011.08.19 20:54:54 | 002,322,184 | ---- | M] (ESET) -- C:\Dokumente und Einstellungen\Besitzer\Desktop\esetsmartinstaller_deu.exe
 [2011.08.19 20:53:08 | 000,001,094 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
 [2011.08.19 20:09:46 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
 [2011.08.19 20:09:18 | 000,001,090 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
 [2011.08.19 20:09:15 | 000,043,573 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
 [2011.08.19 20:09:10 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
 [2011.08.19 18:56:02 | 000,001,642 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\SUPERAntiSpyware Free Edition.lnk
 [2011.08.19 18:47:36 | 000,254,272 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
 [2011.08.19 18:34:19 | 000,157,472 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
 [2011.08.19 18:34:19 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
 [2011.08.19 18:34:19 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
 [2011.08.19 18:34:19 | 000,073,728 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl
 [2011.08.19 18:34:18 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\deployJava1.dll
 [2011.08.19 18:07:23 | 000,000,889 | ---- | M] () -- C:\Dokumente und Einstellungen\Besitzer\Desktop\Revo Uninstaller.lnk
 [2011.08.18 22:53:59 | 000,000,202 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
 [2011.08.18 21:07:01 | 000,000,654 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\CCleaner.lnk
 [2011.08.10 22:58:27 | 000,452,736 | ---- | M] () -- C:\WINDOWS\System32\perfh007.dat
 [2011.08.10 22:58:27 | 000,435,832 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
 [2011.08.10 22:58:27 | 000,081,562 | ---- | M] () -- C:\WINDOWS\System32\perfc007.dat
 [2011.08.10 22:58:27 | 000,068,728 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
 [2011.08.03 18:11:34 | 000,001,872 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Skype.lnk
 [2011.07.25 20:42:41 | 000,001,846 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Safari.lnk
 [2011.07.25 20:35:47 | 000,001,522 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\iTunes.lnk
 [2011.07.25 20:25:07 | 000,000,276 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
 [2011.07.25 18:21:34 | 000,216,064 | ---- | M] () -- C:\Dokumente und Einstellungen\Besitzer\Lokale Einstellungen\Anwendungsdaten\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
 [2011.07.25 17:09:56 | 005,969,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtml.dll
 [3 C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\*.tmp files -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\*.tmp -> ]
 
 ========== Files Created - No Company Name ==========
 
 [2011.08.19 18:56:02 | 000,001,642 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\SUPERAntiSpyware Free Edition.lnk
 [2011.08.19 18:07:23 | 000,000,889 | ---- | C] () -- C:\Dokumente und Einstellungen\Besitzer\Desktop\Revo Uninstaller.lnk
 [2011.08.18 21:07:00 | 000,000,654 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\CCleaner.lnk
 [2011.08.03 18:11:34 | 000,001,872 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Skype.lnk
 [2011.07.25 20:35:47 | 000,001,522 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\iTunes.lnk
 [2011.07.25 20:25:07 | 000,000,276 | ---- | C] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
 [2011.07.25 20:25:06 | 000,001,830 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Apple Software Update.lnk
 [2011.06.24 16:38:39 | 000,111,104 | ---- | C] () -- C:\WINDOWS\System32\uharc.exe
 [2010.07.26 15:09:13 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
 [2010.07.26 15:09:13 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
 [2010.07.26 15:09:13 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
 [2010.07.26 15:09:13 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe
 [2010.07.26 15:09:13 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
 [2010.04.15 15:10:08 | 000,000,085 | -HS- | C] () -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\.zreglib
 [2009.11.24 13:53:17 | 000,050,064 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
 [2008.12.16 19:07:35 | 000,502,784 | ---- | C] () -- C:\WINDOWS\x2.64.exe
 [2008.12.16 19:07:35 | 000,240,128 | ---- | C] () -- C:\WINDOWS\System32\x.264.exe
 [2008.12.16 19:07:35 | 000,217,073 | ---- | C] () -- C:\WINDOWS\meta4.exe
 [2008.12.16 19:07:35 | 000,066,560 | ---- | C] () -- C:\WINDOWS\MOTA113.exe
 [2008.12.16 19:07:35 | 000,027,648 | ---- | C] () -- C:\WINDOWS\System32\AVSredirect.dll
 [2008.12.16 18:36:55 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\osclpthread.dll
 [2008.11.29 20:05:36 | 000,000,039 | ---- | C] () -- C:\WINDOWS\Irremote.ini
 [2008.07.30 16:37:02 | 007,118,848 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\sandra.mda
 [2008.05.12 16:25:38 | 000,000,221 | ---- | C] () -- C:\WINDOWS\NCLogConfig.ini
 [2008.05.12 16:20:31 | 000,077,824 | R--- | C] () -- C:\WINDOWS\System32\HPZIDS01.dll
 [2008.05.12 16:14:52 | 000,128,168 | ---- | C] () -- C:\WINDOWS\hpoins11.dat
 [2008.02.07 16:07:08 | 000,000,365 | ---- | C] () -- C:\WINDOWS\WebTranslator.ini
 [2008.02.07 16:05:02 | 000,000,409 | ---- | C] () -- C:\WINDOWS\BusinessTranslator.ini
 [2007.08.16 14:09:49 | 000,718,320 | ---- | C] () -- C:\Programme\ABBYY FineReader 8.0 Professional Edition.msi
 [2007.08.16 14:09:49 | 000,102,912 | ---- | C] () -- C:\Programme\1031.mst
 [2007.08.16 14:09:49 | 000,095,232 | ---- | C] () -- C:\Programme\1036.mst
 [2007.08.16 14:09:49 | 000,094,720 | ---- | C] () -- C:\Programme\1043.mst
 [2007.08.16 14:09:49 | 000,003,584 | ---- | C] () -- C:\Programme\1033.mst
 [2007.08.16 14:09:42 | 000,000,360 | ---- | C] () -- C:\Programme\setup.ini
 [2007.04.20 05:50:01 | 000,011,634 | ---- | C] () -- C:\WINDOWS\hpomdl11.dat
 [2007.03.31 13:01:54 | 000,001,302 | ---- | C] () -- C:\WINDOWS\ARCHPR.INI
 [2007.03.07 14:57:24 | 000,001,554 | ---- | C] () -- C:\WINDOWS\ARPR.INI
 [2007.02.26 15:44:02 | 000,000,400 | ---- | C] () -- C:\WINDOWS\ODBC.INI
 [2007.02.05 19:55:15 | 000,002,560 | ---- | C] () -- C:\WINDOWS\_MSRSTRT.EXE
 [2006.12.16 17:12:18 | 000,000,000 | ---- | C] () -- C:\WINDOWS\musicmaker.INI
 [2006.12.16 17:06:30 | 000,038,912 | ---- | C] () -- C:\WINDOWS\System32\mgxasio.dll
 [2006.12.16 17:05:42 | 000,002,856 | ---- | C] () -- C:\WINDOWS\mgxoschk.ini
 [2006.11.23 19:06:57 | 000,000,244 | ---- | C] () -- C:\WINDOWS\maketorrent.ini
 [2006.08.24 14:08:25 | 000,217,088 | ---- | C] () -- C:\WINDOWS\select3a.exe
 [2006.08.24 14:08:25 | 000,127,692 | ---- | C] () -- C:\WINDOWS\System32\drivers\pfc027.sys
 [2006.08.24 14:08:25 | 000,040,960 | ---- | C] () -- C:\WINDOWS\CleanDev.exe
 [2006.08.24 14:08:25 | 000,011,170 | ---- | C] () -- C:\WINDOWS\System32\PA207Usd.dll
 [2006.08.10 14:25:33 | 000,001,437 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\QTSBandwidthCache
 [2006.08.04 16:25:01 | 000,049,152 | ---- | C] () -- C:\WINDOWS\amcap.exe
 [2006.07.31 16:15:43 | 000,000,000 | ---- | C] () -- C:\WINDOWS\muma2004.INI
 [2006.07.23 13:06:59 | 000,112,128 | RH-- | C] () -- C:\WINDOWS\CdaC14BA.DLL
 [2006.07.23 13:06:59 | 000,030,720 | RH-- | C] () -- C:\WINDOWS\CdaC13BA.EXE
 [2006.07.23 13:06:55 | 000,008,864 | ---- | C] () -- C:\WINDOWS\System32\drivers\CDAC15BA.SYS
 [2006.06.03 14:02:17 | 000,043,520 | ---- | C] () -- C:\WINDOWS\System32\CmdLineExt03.dll
 [2006.05.30 15:49:59 | 000,000,056 | RHS- | C] () -- C:\WINDOWS\System32\F9EFBDCCDC.sys
 [2006.05.30 15:41:58 | 000,003,350 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys
 [2006.05.16 14:16:38 | 000,001,339 | ---- | C] () -- C:\Programme\Kopie von Counter-Strike 1.6.lnk
 [2006.05.16 13:59:29 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
 [2006.05.16 13:59:25 | 000,107,132 | ---- | C] () -- C:\WINDOWS\UninstallFirefox.exe
 [2006.05.16 13:59:16 | 000,003,137 | ---- | C] () -- C:\WINDOWS\mozver.dat
 [2006.05.16 13:58:36 | 000,096,384 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd0733.sys
 [2006.05.12 17:12:54 | 000,000,305 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\addr_file.html
 [2006.05.10 18:02:47 | 000,000,202 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
 [2006.05.09 22:31:29 | 623,409,701 | ---- | C] () -- C:\Programme\SteamBackup Counter-Strike.exe
 [2006.05.09 16:51:33 | 000,216,064 | ---- | C] () -- C:\Dokumente und Einstellungen\Besitzer\Lokale Einstellungen\Anwendungsdaten\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
 [2006.05.09 13:18:06 | 000,000,000 | ---- | C] () -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\dm.ini
 [2006.05.05 23:26:14 | 000,000,169 | ---- | C] () -- C:\WINDOWS\RtlRack.ini
 [2006.05.05 16:39:33 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
 [2006.05.05 16:38:33 | 000,254,272 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
 [2006.05.05 16:04:21 | 000,005,120 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp64.sys
 [2006.05.05 16:04:21 | 000,003,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp32.sys
 [2006.05.05 16:00:25 | 000,000,164 | R--- | C] () -- C:\WINDOWS\avrack.ini
 [2006.05.05 16:00:18 | 000,156,672 | R--- | C] () -- C:\WINDOWS\System32\RTLCPAPI.dll
 [2006.05.05 16:00:18 | 000,040,960 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
 [2006.05.05 15:55:08 | 000,005,810 | R--- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys
 [2006.05.05 15:55:07 | 000,003,951 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
 [2006.05.05 15:55:05 | 000,005,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
 [2006.05.05 15:51:10 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
 [2006.05.05 15:47:12 | 000,021,740 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
 [2005.12.10 03:06:00 | 001,662,976 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
 [2005.12.10 03:06:00 | 001,519,616 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe
 [2005.12.10 03:06:00 | 001,466,368 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
 [2005.12.10 03:06:00 | 001,339,392 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe
 [2005.12.10 03:06:00 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
 [2005.12.10 03:06:00 | 000,573,440 | ---- | C] () -- C:\WINDOWS\System32\nvhwvid.dll
 [2005.12.10 03:06:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
 [2005.12.10 03:06:00 | 000,442,368 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe
 [2005.12.10 03:06:00 | 000,425,984 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe
 [2005.12.10 03:06:00 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
 [2005.12.10 03:06:00 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\nvapi.dll
 [2004.08.04 14:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
 [2004.08.04 14:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
 [2004.08.04 14:00:00 | 000,452,736 | ---- | C] () -- C:\WINDOWS\System32\perfh007.dat
 [2004.08.04 14:00:00 | 000,435,832 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
 [2004.08.04 14:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
 [2004.08.04 14:00:00 | 000,269,480 | ---- | C] () -- C:\WINDOWS\System32\perfi007.dat
 [2004.08.04 14:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
 [2004.08.04 14:00:00 | 000,081,562 | ---- | C] () -- C:\WINDOWS\System32\perfc007.dat
 [2004.08.04 14:00:00 | 000,068,728 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
 [2004.08.04 14:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
 [2004.08.04 14:00:00 | 000,034,478 | ---- | C] () -- C:\WINDOWS\System32\perfd007.dat
 [2004.08.04 14:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
 [2004.08.04 14:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
 [2004.08.04 14:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
 [2004.08.04 14:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
 [2004.08.04 14:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
 [2003.10.16 18:02:58 | 000,000,600 | ---- | C] () -- C:\WINDOWS\System32\smsc.ini
 [2003.10.15 11:45:12 | 000,000,233 | ---- | C] () -- C:\WINDOWS\SwapDrvr223A.ini
 [2003.09.16 19:31:32 | 000,000,233 | ---- | C] () -- C:\WINDOWS\SwapDrvrSP3.ini
 [2003.09.16 19:31:10 | 000,000,233 | ---- | C] () -- C:\WINDOWS\SwapDrvrSP2.ini
 [2003.02.20 18:53:42 | 000,005,702 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI
 [2002.09.18 00:45:00 | 000,119,808 | ---- | C] () -- C:\WINDOWS\lsb_un20.exe
 [2001.07.07 03:00:00 | 000,003,254 | ---- | C] () -- C:\WINDOWS\System32\HPTCPMON.INI
 
 ========== LOP Check ==========
 
 [2008.10.09 00:29:58 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\ashampoo
 [2010.07.06 00:11:58 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Canneverbe Limited
 [2007.03.14 23:35:45 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\enc poll about heart
 [2010.10.28 16:11:14 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\ICQ
 [2006.10.08 12:55:08 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Pinnacle
 [2008.10.24 21:17:31 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Teleca
 [2010.05.11 00:01:51 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
 [2008.10.29 22:18:20 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Ashampoo
 [2007.03.26 15:03:27 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\BitTorrent
 [2010.07.06 00:11:59 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Canneverbe Limited
 [2008.12.02 15:43:45 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\DeepBurner
 [2010.10.10 22:11:01 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\DVDVideoSoft
 [2010.07.29 00:41:33 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\DVDVideoSoftIEHelpers
 [2011.04.18 17:22:22 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\FMZilla
 [2007.04.14 17:09:57 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\gtk-2.0
 [2011.07.20 19:52:03 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\ICQ
 [2007.08.25 00:21:24 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\ICQ Toolbar
 [2006.05.08 17:50:40 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\ICQLite
 [2010.04.26 18:30:47 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Image Zone Express
 [2009.08.06 23:06:14 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\InfraRecorder
 [2007.04.14 17:02:01 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Inkscape
 [2010.12.25 22:47:05 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Local
 [2006.11.24 18:02:50 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\mp3 hide
 [2006.05.14 00:05:12 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\MSNInstaller
 [2010.04.15 22:56:29 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\phonostar-Player
 [2011.04.25 13:01:40 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\PriceGong
 [2008.10.28 22:55:59 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Teleca
 [2006.05.14 22:52:24 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Vso
 [2008.09.03 18:35:38 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\wxMozBrowserLib
 
 ========== Purity Check ==========
 
 
 
 < End of report >
 |