Hier ist das Log vom OTL-Scan:  
OTL Logfile: 
OTL EXTRAS Logfile:   Code:  
 OTL logfile created on: 07.06.2012 17:02:45 - Run 1 
OTL by OldTimer - Version 3.2.46.2     Folder = C:\Treiber und Programmdownloads 
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation 
Internet Explorer (Version = 7.0.5730.13) 
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 
  
1,49 Gb Total Physical Memory | 1,03 Gb Available Physical Memory | 69,39% Memory free 
2,09 Gb Paging File | 1,74 Gb Available in Paging File | 83,56% Paging File free 
Paging file location(s): C:\pagefile.sys 756 1512 [binary data] 
  
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programme 
Drive C: | 37,25 Gb Total Space | 9,79 Gb Free Space | 26,28% Space Free | Partition Type: NTFS 
  
Computer Name: PC2 | User Name: MUC1 | Logged in as Administrator. 
Boot Mode: Normal | Scan Mode: All users | Quick Scan 
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days 
   ========== Processes (SafeList) ========== 
  
PRC - [2012.06.07 16:59:55 | 000,595,456 | ---- | M] (OldTimer Tools) -- C:\Treiber und Programmdownloads\OTL.exe 
PRC - [2011.10.24 22:32:00 | 000,055,144 | ---- | M] (Apple Inc.) -- C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe 
PRC - [2011.09.09 10:50:09 | 000,269,480 | ---- | M] (Avira GmbH) -- C:\Programme\Avira\AntiVir Desktop\avguard.exe 
PRC - [2011.04.21 07:53:10 | 000,076,968 | ---- | M] (Avira GmbH) -- C:\Programme\Avira\AntiVir Desktop\avshadow.exe 
PRC - [2011.04.21 07:52:51 | 000,136,360 | ---- | M] (Avira GmbH) -- C:\Programme\Avira\AntiVir Desktop\sched.exe 
PRC - [2011.04.21 07:52:36 | 000,281,768 | ---- | M] (Avira GmbH) -- C:\Programme\Avira\AntiVir Desktop\avgnt.exe 
PRC - [2010.02.18 11:43:18 | 000,248,040 | ---- | M] (Sun Microsystems, Inc.) -- C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe 
PRC - [2008.04.14 04:22:45 | 001,036,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe 
PRC - [2007.06.21 14:42:56 | 000,070,952 | R--- | M] (AOL LLC) -- C:\Programme\Gemeinsame Dateien\aol\ACS\AOLDial.exe 
PRC - [2007.02.02 17:26:44 | 000,283,136 | ---- | M] (AVM Berlin) -- C:\Programme\avmwlanstick\FRITZWLANMini.exe 
PRC - [2006.10.23 14:50:35 | 000,046,640 | R--- | M] (AOL LLC) -- C:\Programme\Gemeinsame Dateien\aol\ACS\AOLacsd.exe 
PRC - [2006.09.26 02:52:48 | 000,050,736 | ---- | M] (America Online, Inc.) -- C:\Programme\Gemeinsame Dateien\aol\1206700276\ee\aolsoftware.exe 
PRC - [2006.03.20 20:40:08 | 000,304,640 | ---- | M] (XIMETA, Inc.) -- C:\Programme\NDAS\System\ndassvc.exe 
PRC - [2003.09.11 07:49:06 | 000,356,352 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\ZCfgSvc.exe 
PRC - [2003.09.11 07:46:14 | 000,184,320 | ---- | M] (Intel) -- C:\WINDOWS\system32\1XConfig.exe 
PRC - [2003.09.11 07:45:46 | 000,303,171 | ---- | M] (Intel Corporation ) -- C:\WINDOWS\system32\S24EvMon.exe 
PRC - [2003.09.11 07:45:04 | 000,122,880 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\RegSrvc.exe 
PRC - [2003.08.27 11:29:46 | 000,065,536 | ---- | M] (America Online, Inc.) -- C:\WINDOWS\wanmpsvc.exe 
PRC - [2003.05.28 18:21:22 | 000,086,016 | ---- | M] (Intel(R) Corporation) -- C:\Programme\Intel\NCS\PROSet\PRONoMgr.exe 
  
   ========== Modules (No Company Name) ========== 
  
MOD - [2011.09.27 08:23:00 | 000,087,912 | ---- | M] () -- C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\zlib1.dll 
MOD - [2011.09.27 08:22:40 | 001,242,472 | ---- | M] () -- C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\libxml2.dll 
MOD - [2010.01.28 13:59:50 | 000,355,688 | ---- | M] () -- C:\Programme\Avira\AntiVir Desktop\sqlite3.dll 
MOD - [2003.10.13 07:55:32 | 000,061,440 | ---- | M] () -- C:\Programme\Intel\PROSet\DEU\C1XStDEU.dll 
MOD - [2003.09.11 07:48:52 | 000,204,800 | ---- | M] () -- C:\WINDOWS\system32\C1XStngs.dll 
MOD - [2003.09.10 03:17:24 | 000,651,264 | ---- | M] () -- C:\WINDOWS\system32\libeay32.dll 
MOD - [2003.09.10 03:17:24 | 000,147,456 | ---- | M] () -- C:\WINDOWS\system32\ssleay32.dll 
  
   ========== Win32 Services (SafeList) ========== 
  
SRV - [2011.10.24 22:32:00 | 000,055,144 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe -- (Apple Mobile Device) 
SRV - [2011.09.09 10:50:09 | 000,269,480 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Programme\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService) 
SRV - [2011.04.21 07:52:51 | 000,136,360 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Programme\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService) 
SRV - [2008.04.14 04:23:03 | 000,075,264 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\system32\tlntsvr.exe -- (TlntSvr) 
SRV - [2008.04.14 04:22:55 | 000,114,176 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\system32\netdde.exe -- (NetDDEdsdm) 
SRV - [2008.04.14 04:22:55 | 000,114,176 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\system32\netdde.exe -- (NetDDE) 
SRV - [2008.04.14 04:22:38 | 000,033,280 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\system32\clipsrv.exe -- (ClipSrv) 
SRV - [2008.04.14 04:22:16 | 000,033,792 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\system32\msgsvc.dll -- (Messenger) 
SRV - [2008.04.14 04:22:15 | 000,053,248 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\system32\mprdim.dll -- (RemoteAccess) 
SRV - [2008.04.14 04:22:07 | 000,017,408 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\system32\alrsvc.dll -- (Alerter) 
SRV - [2006.10.23 14:50:35 | 000,046,640 | R--- | M] (AOL LLC) [Auto | Running] -- C:\Programme\Gemeinsame Dateien\aol\ACS\AOLacsd.exe -- (AOL ACS) 
SRV - [2006.03.20 20:40:08 | 000,304,640 | ---- | M] (XIMETA, Inc.) [Auto | Running] -- C:\Programme\NDAS\System\ndassvc.exe -- (ndassvc) 
SRV - [2003.09.11 07:45:46 | 000,303,171 | ---- | M] (Intel Corporation ) [Auto | Running] -- C:\WINDOWS\system32\S24EvMon.exe -- (S24EventMonitor) 
SRV - [2003.09.11 07:45:04 | 000,122,880 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\WINDOWS\system32\RegSrvc.exe -- (RegSrvc) 
SRV - [2003.08.27 11:29:46 | 000,065,536 | ---- | M] (America Online, Inc.) [Auto | Running] -- C:\WINDOWS\wanmpsvc.exe -- (WANMiniportService) WAN Miniport (ATW) 
SRV - [2003.04.29 15:29:54 | 000,139,264 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Programme\Intel\NCS\Sync\NetSvc.exe -- (NetSvc) 
  
   ========== Driver Services (SafeList) ========== 
  
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (WDICA) 
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (PDRFRAME) 
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (PDRELI) 
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (PDFRAME) 
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (PDCOMP) 
DRV - File not found [Kernel | System | Stopped] --  -- (PCIDump) 
DRV - File not found [Kernel | System | Stopped] --  -- (lbrtfdc) 
DRV - File not found [Kernel | System | Stopped] --  -- (i2omgmt) 
DRV - File not found [Kernel | System | Stopped] --  -- (Changer) 
DRV - [2011.09.09 10:50:15 | 000,138,192 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb) 
DRV - [2011.09.09 10:50:15 | 000,066,616 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt) 
DRV - [2009.10.08 17:55:33 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv) 
DRV - [2009.09.29 16:05:15 | 000,011,608 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Programme\Avira\AntiVir Desktop\avgio.sys -- (avgio) 
DRV - [2009.08.05 16:21:14 | 000,041,424 | ---- | M] (Sun Microsystems, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\VBoxUSBMon.sys -- (VBoxUSBMon) 
DRV - [2009.08.05 16:20:00 | 000,099,472 | ---- | M] (Sun Microsystems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\VBoxNetFlt.sys -- (VBoxNetFlt) 
DRV - [2009.08.05 16:20:00 | 000,091,472 | ---- | M] (Sun Microsystems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\VBoxNetAdp.sys -- (VBoxNetAdp) 
DRV - [2009.08.05 16:19:56 | 000,115,856 | ---- | M] (Sun Microsystems, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\VBoxDrv.sys -- (VBoxDrv) 
DRV - [2008.04.14 03:58:13 | 000,800,384 | ---- | M] (Microsoft Corp., Veritas Software) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\drivers\dmboot.sys -- (dmboot) 
DRV - [2008.04.13 21:14:29 | 000,143,744 | ---- | M] (Microsoft Corporation) [File_System | Disabled | Stopped] -- C:\WINDOWS\System32\drivers\fastfat.sys -- (Fastfat) 
DRV - [2008.04.13 20:32:36 | 000,066,048 | ---- | M] (Microsoft Corporation) [File_System | Disabled | Stopped] -- C:\WINDOWS\System32\drivers\udfs.sys -- (Udfs) 
DRV - [2008.03.27 14:22:47 | 000,008,552 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\asctrm.sys -- (ASCTRM) 
DRV - [2008.01.28 18:59:10 | 000,014,037 | ---- | M] (Meetinghouse Data Communications) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\mdc8021x.sys -- (MDC8021X) AEGIS Protocol (IEEE 802.1x) 
DRV - [2007.01.26 01:00:00 | 000,265,088 | ---- | M] (AVM GmbH) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\fwlanusb.sys -- (FWLANUSB) 
DRV - [2007.01.26 01:00:00 | 000,004,352 | ---- | M] (AVM Berlin) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\avmeject.sys -- (avmeject) 
DRV - [2006.03.20 20:40:50 | 000,140,160 | ---- | M] (XIMETA, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\lfsfilt.sys -- (lfsfilt) 
DRV - [2006.03.20 20:39:58 | 000,115,584 | ---- | M] (XIMETA, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ndasscsi.sys -- (ndasscsi) 
DRV - [2006.03.20 20:39:58 | 000,059,136 | ---- | M] (XIMETA, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ndasbus.sys -- (ndasbus) 
DRV - [2006.03.20 20:39:58 | 000,044,288 | ---- | M] (XIMETA, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\lpx.sys -- (lpx) 
DRV - [2005.09.12 11:49:44 | 003,298,432 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\w29n51.sys -- (w29n51) Intel(R) 
DRV - [2004.08.04 14:00:00 | 000,013,952 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\System32\drivers\cbidf2k.sys -- (cbidf2k) 
DRV - [2004.08.04 14:00:00 | 000,012,160 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\System32\drivers\acpiec.sys -- (ACPIEC) 
DRV - [2004.08.04 14:00:00 | 000,012,032 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\drivers\ws2ifsl.sys -- (WS2IFSL) 
DRV - [2003.10.13 07:11:54 | 002,479,104 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\w70n51.sys -- (w70n51) Intel(R) 
DRV - [2003.10.08 11:11:26 | 000,033,847 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\wA301a.sys -- ({E2B953A6-195A-44F9-9BA3-3D5F4E32BB55}) 
DRV - [2003.09.11 07:34:30 | 000,010,970 | ---- | M] (Intel Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\s24trans.sys -- (s24trans) 
DRV - [2003.01.17 07:01:52 | 000,202,480 | ---- | M] (SigmaTel, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\STAC97.sys -- (STAC97) Audio Driver (WDM) 
DRV - [2003.01.10 17:13:04 | 000,033,588 | ---- | M] (America Online, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\wanatw4.sys -- (wanatw) WAN Miniport (ATW) 
DRV - [2002.11.22 12:21:18 | 001,157,856 | ---- | M] (Agere Systems) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AGRSM.sys -- (AgereSoftModem) 
DRV - [2002.10.04 04:04:10 | 000,046,976 | ---- | M] (Realtek Semiconductor Corporation       ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\R8139n51.sys -- (rtl8139) 
DRV - [2002.01.17 13:53:32 | 000,056,573 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Apfiltr.sys -- (ApfiltrService) 
DRV - [2001.08.18 04:35:52 | 000,035,913 | ---- | M] (SMC) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\smcirda.sys -- (SMCIRDA) 
DRV - [2001.08.17 14:51:32 | 000,018,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\irsir.sys -- (irsir) 
DRV - [2001.08.01 22:00:22 | 000,005,248 | ---- | M] (FUJITSU LIMITED) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\fuj02b1.sys -- (FUJ02B1) 
  
   ========== Standard Registry (SafeList) ========== 
  
   ========== Internet Explorer ========== 
  
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm 
IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990} 
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} 
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 
  
  
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 
  
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 
  
  
  
IE - HKU\S-1-5-21-1659004503-1078145449-854245398-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ 
IE - HKU\S-1-5-21-1659004503-1078145449-854245398-1004\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990} 
IE - HKU\S-1-5-21-1659004503-1078145449-854245398-1004\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} 
IE - HKU\S-1-5-21-1659004503-1078145449-854245398-1004\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7ADBR_deDE261 
IE - HKU\S-1-5-21-1659004503-1078145449-854245398-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 
IE - HKU\S-1-5-21-1659004503-1078145449-854245398-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local 
   ========== FireFox ========== 
  
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20 
FF - prefs.js..network.proxy.no_proxies_on: "*.local" 
FF - user.js - File not found 
  
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () 
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:  File not found 
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Programme\iTunes\Mozilla Plugins\npitunes.dll () 
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Programme\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.) 
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Programme\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.) 
FF - HKLM\Software\MozillaPlugins\@viewpoint.com/VMP: C:\Programme\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll () 
  
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.28\extensions\\Components: C:\Programme\Mozilla Firefox\components [2012.03.15 15:05:27 | 000,000,000 | ---D | M] 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.28\extensions\\Plugins: C:\Programme\Mozilla Firefox\plugins [2012.03.15 15:05:27 | 000,000,000 | ---D | M] 
  
[2009.03.13 00:22:49 | 000,000,000 | ---D | M] (No name found) -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\Mozilla\Extensions 
[2009.03.13 00:22:49 | 000,000,000 | ---D | M] (No name found) -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\Mozilla\Firefox\Profiles\779gdji1.default\extensions 
[2012.06.06 08:30:41 | 000,000,000 | ---D | M] (No name found) -- C:\Programme\Mozilla Firefox\extensions 
[2010.07.09 08:07:59 | 000,000,000 | ---D | M] (Java Console) -- C:\Programme\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} 
[2009.01.07 09:42:53 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAMME\JAVA\JRE6\LIB\DEPLOY\JQS\FF 
[2010.04.12 17:29:19 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Programme\mozilla firefox\plugins\npdeployJava1.dll 
[2011.12.16 10:23:32 | 000,001,392 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\amazondotcom-de.xml 
[2011.12.16 10:23:32 | 000,002,344 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\eBay-de.xml 
[2011.12.16 10:23:32 | 000,006,805 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\leo_ende_de.xml 
[2011.12.16 10:23:32 | 000,001,178 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\wikipedia-de.xml 
[2011.12.16 10:23:32 | 000,001,105 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\yahoo-de.xml 
  
O1 HOSTS File: ([2012.06.06 03:17:00 | 000,000,098 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts 
O1 - Hosts: 127.0.0.1       localhost 
O1 - Hosts: ::1       localhost 
O2 - BHO: (Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) 
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programme\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll (Google Inc.) 
O3 - HKU\S-1-5-21-1659004503-1078145449-854245398-1004\..\Toolbar\WebBrowser: (no name) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No CLSID value found. 
O4 - HKLM..\Run: [AOLDialer] C:\Programme\Gemeinsame Dateien\aol\ACS\AOLDial.exe (AOL LLC) 
O4 - HKLM..\Run: [APSDaemon] C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.) 
O4 - HKLM..\Run: [avgnt] C:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH) 
O4 - HKLM..\Run: [AVMWlanClient] C:\Programme\avmwlanstick\FRITZWLANMini.exe (AVM Berlin) 
O4 - HKLM..\Run: [HostManager] C:\Programme\Gemeinsame Dateien\aol\1206700276\ee\aolsoftware.exe (America Online, Inc.) 
O4 - HKLM..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh) 
O4 - HKLM..\Run: [PRONoMgr.exe] C:\Programme\Intel\NCS\PROSet\PRONoMgr.exe (Intel(R) Corporation) 
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe (Sun Microsystems, Inc.) 
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Programme\Bonjour\mdnsNSP.dll (Apple Inc.) 
O15 - HKU\S-1-5-21-1659004503-1078145449-854245398-1004\..Trusted Domains: aol.com ([objects] * is out of zone range -  5) 
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1201540507230 (WUWebControl Class) 
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20) 
O16 - DPF: {CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0-windows-i586.cab (Reg Error: Key error.) 
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Reg Error: Key error.) 
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20) 
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20) 
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) 
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{5BAF6DF6-CD3E-48BC-8B3F-FB9E497A26BA}: DhcpNameServer = 192.168.178.1 
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{BE651528-1AA6-4B9E-9CB2-992D7DFE8E8D}: DhcpNameServer = 192.168.178.1 
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{BFC5AD28-9C6C-4CC7-8A04-6CE0A7BA95DE}: DhcpNameServer = 192.168.178.1 
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\msdaipp.dll (Microsoft Corporation) 
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\msdaipp.dll (Microsoft Corporation) 
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\msdaipp.dll (Microsoft Corporation) 
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) 
O20 - HKLM Winlogon: UserInit - (c:\windows\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) 
O20 - HKU\S-1-5-21-1659004503-1078145449-854245398-1004 Winlogon: Shell - (c:\dokumente und einstellungen\muc1\anwendungsdaten\hw56suzj11.exe) -  File not found 
O20 - HKU\S-1-5-21-1659004503-1078145449-854245398-1004 Winlogon: UserInit - (c:\windows\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) 
O20 - Winlogon\Notify\igfxcui: DllName - (igfxsrvc.dll) - C:\WINDOWS\System32\igfxsrvc.dll (Intel Corporation) 
O20 - Winlogon\Notify\Sebring: DllName - (C:\WINDOWS\system32\LgNotify.dll) - C:\WINDOWS\system32\LgNotify.dll (Intel Corporation) 
O24 - Desktop Components:0 (Die derzeitige Homepage) - About:Home 
O24 - Desktop WallPaper: C:\Dokumente und Einstellungen\MUC1\Lokale Einstellungen\Anwendungsdaten\Microsoft\Wallpaper1.bmp 
O24 - Desktop BackupWallPaper: C:\Dokumente und Einstellungen\MUC1\Lokale Einstellungen\Anwendungsdaten\Microsoft\Wallpaper1.bmp 
O32 - HKLM CDRom: AutoRun - 1 
O33 - MountPoints2\{9fa02a60-d33b-11e0-9acc-0013ce1f526f}\Shell - "" = AutoRun 
O33 - MountPoints2\{9fa02a60-d33b-11e0-9acc-0013ce1f526f}\Shell\AutoRun - "" = Auto&Play 
O33 - MountPoints2\{9fa02a60-d33b-11e0-9acc-0013ce1f526f}\Shell\AutoRun\command - "" = E:\LaunchU3.exe -a 
O34 - HKLM BootExecute: (autocheck autochk *) 
O35 - HKLM\..comfile [open] -- "%1" %* 
O35 - HKLM\..exefile [open] -- "%1" %* 
O37 - HKLM\...com [@ = comfile] -- "%1" %* 
O37 - HKLM\...exe [@ = exefile] -- "%1" %* 
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) 
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) 
  
NetSvcs: 6to4 -  File not found 
NetSvcs: Ias -  File not found 
NetSvcs: Iprip -  File not found 
NetSvcs: NWCWorkstation -  File not found 
NetSvcs: Nwsapagent -  File not found 
NetSvcs: WmdmPmSp -  File not found 
  
  
SafeBootMin: Base - Driver Group 
SafeBootMin: Boot Bus Extender - Driver Group 
SafeBootMin: Boot file system - Driver Group 
SafeBootMin: File system - Driver Group 
SafeBootMin: Filter - Driver Group 
SafeBootMin: PCI Configuration - Driver Group 
SafeBootMin: PNP Filter - Driver Group 
SafeBootMin: Primary disk - Driver Group 
SafeBootMin: SCSI Class - Driver Group 
SafeBootMin: sermouse.sys - Driver 
SafeBootMin: System Bus Extender - Driver Group 
SafeBootMin: vds - Service 
SafeBootMin: vga.sys - Driver 
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers 
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive 
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive 
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller 
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc 
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard 
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse 
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters 
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter 
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System 
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive 
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy 
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume 
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices 
  
SafeBootNet: Base - Driver Group 
SafeBootNet: Boot Bus Extender - Driver Group 
SafeBootNet: Boot file system - Driver Group 
SafeBootNet: File system - Driver Group 
SafeBootNet: Filter - Driver Group 
SafeBootNet: NDIS Wrapper - Driver Group 
SafeBootNet: NetBIOSGroup - Driver Group 
SafeBootNet: NetDDEGroup - Driver Group 
SafeBootNet: Network - Driver Group 
SafeBootNet: NetworkProvider - Driver Group 
SafeBootNet: PCI Configuration - Driver Group 
SafeBootNet: PNP Filter - Driver Group 
SafeBootNet: PNP_TDI - Driver Group 
SafeBootNet: Primary disk - Driver Group 
SafeBootNet: SCSI Class - Driver Group 
SafeBootNet: sermouse.sys - Driver 
SafeBootNet: Streams Drivers - Driver Group 
SafeBootNet: System Bus Extender - Driver Group 
SafeBootNet: TDI - Driver Group 
SafeBootNet: vga.sys - Driver 
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers 
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive 
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive 
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller 
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc 
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard 
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse 
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net 
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient 
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService 
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans 
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters 
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter 
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System 
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive 
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume 
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices 
  
ActiveX: {03F998B2-0E00-11D3-A498-00104B6EB52E} - Viewpoint Media Player 
ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Java (Sun) 
ActiveX: {10072CEC-8CC1-11D1-986E-00A0C955B42F} - Vektorgrafik-Rendering (VML) 
ActiveX: {1B00725B-C455-4DE6-BFB6-AD540AD427CD} - Viewpoint Media Player 
ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - NetShow 
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 6.4 
ActiveX: {283807B5-2C60-11D0-A31D-00AA00B92C03} - DirectAnimation 
ActiveX: {2A3320D6-C805-4280-B423-B665BDE33D8F} - Microsoft .NET Framework 1.1 Security Update (KB979906) 
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll 
ActiveX: {2F6EFCE6-10DF-49F9-9E64-9AE3775B2588} - Microsoft .NET Framework 1.1 Security Update (KB2416447) 
ActiveX: {36f8ec70-c29a-11d1-b5c7-0000f8051515} - Dynamic HTML-Datenbindung für Java 
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack 
ActiveX: {3bf42070-b3b1-11d1-b5c5-0000f8051515} - Uniscribe 
ActiveX: {411EDCF7-755D-414E-A74B-3DCD6583F589} - Microsoft .NET Framework 1.1 Service Pack 1 (KB867460) 
ActiveX: {4278c270-a269-11d1-b5bf-0000f8051515} - Erweitertes Authoring 
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install 
ActiveX: {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT 
ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - DirectShow 
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx 
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help 
ActiveX: {4f216970-c90c-11d1-b5c7-0000f8051515} - DirectAnimation Java Classes 
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.7 
ActiveX: {5056b317-8d4c-43ee-8543-b9d1e234b8f4} - Sicherheitsupdate für Windows XP (KB923789) 
ActiveX: {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser 
ActiveX: {5A8D6EE0-3E18-11D0-821E-444553540000} - ICW 
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools 
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements 
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player 
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access 
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install 
ActiveX: {7PUWzcMk-Mf4p-5xu7-pQUO-GiYsvyVQ39TZ} -  
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll 
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\WINDOWS\system32\ie4uinit.exe -BaseSettings 
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install 
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding 
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts 
ActiveX: {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} - .NET Framework 
ActiveX: {CC2A9BA0-3BDD-11D0-821E-444553540000} - Taskplaner 
ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1 
ActiveX: {D27CDB6E-AE6D-11cf-96B8-444553540000} - Adobe Flash Player 
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help 
ActiveX: {E78BFA60-5393-4C38-82AB-E8019E464EB4} - .NET Framework 
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface 
ActiveX: <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\WINDOWS\system32\ieudinit.exe 
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\inf\unregmp2.exe /ShowWMP 
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - %systemroot%\system32\shmgrate.exe OCInstallUserConfigIE 
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP 
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP 
ActiveX: >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - %systemroot%\system32\shmgrate.exe OCInstallUserConfigOE 
  
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation) 
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS) 
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.) 
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.) 
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.) 
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll () 
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll () 
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation) 
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation) 
  
CREATERESTOREPOINT 
Restore point Set: OTL Restore Point 
   ========== Files/Folders - Created Within 30 Days ========== 
  
[2012.06.06 13:27:50 | 000,000,000 | ---D | C] -- C:\Programme\ESET 
[2012.06.06 08:31:27 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\Malwarebytes 
[2012.06.06 08:31:19 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Malwarebytes' Anti-Malware 
[2012.06.06 08:31:17 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes 
[2012.06.06 08:31:16 | 000,022,344 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys 
[2012.06.06 08:31:16 | 000,000,000 | ---D | C] -- C:\Programme\Malwarebytes' Anti-Malware 
[2012.06.05 00:55:42 | 002,237,440 | R--- | C] (OldTimer Tools) -- C:\OTLPE.exe 
[2012.06.05 00:48:06 | 000,000,000 | ---D | C] -- C:\_OTL 
[2012.06.04 02:39:56 | 000,000,000 | -HSD | C] -- C:\WINDOWS\CSC 
[9 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] 
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] 
[1 C:\Dokumente und Einstellungen\MUC1\Eigene Dateien\*.tmp files -> C:\Dokumente und Einstellungen\MUC1\Eigene Dateien\*.tmp -> ] 
[1 C:\*.tmp files -> C:\*.tmp -> ] 
   ========== Files - Modified Within 30 Days ========== 
  
[2012.06.07 16:57:04 | 000,391,574 | ---- | M] () -- C:\WINDOWS\System32\perfh007.dat 
[2012.06.07 16:57:04 | 000,380,684 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat 
[2012.06.07 16:57:04 | 000,063,976 | ---- | M] () -- C:\WINDOWS\System32\perfc007.dat 
[2012.06.07 16:57:04 | 000,053,098 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat 
[2012.06.07 16:55:39 | 000,001,086 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job 
[2012.06.07 16:55:37 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl 
[2012.06.07 16:54:56 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat 
[2012.06.07 16:54:55 | 1600,704,512 | -HS- | M] () -- C:\hiberfil.sys 
[2012.06.06 15:26:01 | 000,001,090 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job 
[2012.06.06 08:31:20 | 000,000,756 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Malwarebytes Anti-Malware.lnk 
[9 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] 
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] 
[1 C:\Dokumente und Einstellungen\MUC1\Eigene Dateien\*.tmp files -> C:\Dokumente und Einstellungen\MUC1\Eigene Dateien\*.tmp -> ] 
[1 C:\*.tmp files -> C:\*.tmp -> ] 
   ========== Files Created - No Company Name ========== 
  
[2012.06.06 08:31:20 | 000,000,756 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Malwarebytes Anti-Malware.lnk 
[2012.06.05 02:47:35 | 1600,704,512 | -HS- | C] () -- C:\hiberfil.sys 
[2010.09.04 15:11:53 | 000,097,360 | ---- | C] () -- C:\WINDOWS\System32\drivers\Fwusb1b.bin 
   ========== LOP Check ========== 
  
[2008.02.14 16:48:28 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\EPSON 
[2008.09.08 17:37:11 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Philips 
[2008.03.27 14:24:00 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Viewpoint 
[2011.11.29 11:20:17 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\{429CAD59-35B1-4DBC-BB6D-1DB246563521} 
[2009.01.08 11:55:01 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\Cornelsen 
[2011.09.21 15:40:32 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\FileZilla 
   ========== Purity Check ========== 
  
  
   ========== Custom Scans ========== 
   < %ALLUSERSPROFILE%\Application Data\*. > 
   < %ALLUSERSPROFILE%\Application Data\*.exe /s > 
   < %APPDATA%\*. > 
[2008.11.10 01:01:51 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\Adobe 
[2008.03.27 14:24:56 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\AOL 
[2011.11.29 11:29:55 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\Apple Computer 
[2011.09.09 10:46:15 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\Avira 
[2009.01.08 11:55:01 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\Cornelsen 
[2008.03.10 11:27:44 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\CyberLink 
[2011.09.21 15:40:32 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\FileZilla 
[2008.02.05 16:59:00 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\Google 
[2008.03.31 09:27:17 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\Help 
[2008.01.28 18:38:09 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\Identities 
[2008.02.14 09:37:33 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\Macromedia 
[2012.06.06 08:31:27 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\Malwarebytes 
[2009.03.29 17:05:28 | 000,000,000 | --SD | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\Microsoft 
[2009.03.13 00:22:49 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\Mozilla 
[2008.04.09 16:31:59 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\Sun 
[2012.02.28 00:40:15 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\U3 
[2008.03.27 14:24:03 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\You've Got Pictures Screensaver 
   < %APPDATA%\*.exe /s > 
[2007.10.23 10:27:20 | 000,110,592 | ---- | M] () -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\U3\temp\cleanup.exe 
[2008.05.02 11:41:48 | 003,493,888 | -H-- | M] (SanDisk Corporation) -- C:\Dokumente und Einstellungen\MUC1\Anwendungsdaten\U3\temp\Launchpad Removal.exe 
   < %SYSTEMDRIVE%\*.exe > 
[2011.07.13 04:55:05 | 002,237,440 | R--- | M] (OldTimer Tools) -- C:\OTLPE.exe 
[1 C:\*.tmp files -> C:\*.tmp -> ] 
   < MD5 for: AGP440.SYS  > 
[2004.08.04 14:00:00 | 018,782,319 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys 
[2009.01.09 11:18:39 | 023,898,261 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys 
[2009.01.09 11:18:39 | 023,898,261 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys 
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys 
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys 
   < MD5 for: ATAPI.SYS  > 
[2004.08.04 14:00:00 | 018,782,319 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys 
[2009.01.09 11:18:39 | 023,898,261 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys 
[2009.01.09 11:18:39 | 023,898,261 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys 
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys 
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys 
[2004.08.03 23:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys 
[2004.08.03 23:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0000\DriverFiles\i386\atapi.sys 
   < MD5 for: EVENTLOG.DLL  > 
[2008.04.14 04:22:10 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=04955AA695448C181B367D964AF158AA -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll 
[2008.04.14 04:22:10 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=04955AA695448C181B367D964AF158AA -- C:\WINDOWS\system32\eventlog.dll 
[2004.08.04 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=B932C077D5A65B71B4512544AC404CB4 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll 
   < MD5 for: IASTOR.SYS  > 
[2004.09.26 15:24:54 | 000,477,952 | ---- | M] (Intel Corporation) MD5=DD19FDD8BB262F64A11C50CC23FC6F70 -- C:\WINDOWS\OEM\iaStor\iaStor.sys 
   < MD5 for: NETLOGON.DLL  > 
[2008.04.14 04:22:19 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=0098D35F91DEAB9C127360A877F2CF84 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll 
[2008.04.14 04:22:19 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=0098D35F91DEAB9C127360A877F2CF84 -- C:\WINDOWS\system32\netlogon.dll 
[2004.08.04 14:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=D27395EDCD3416AFD125A9370DCB585C -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll 
   < MD5 for: NVATABUS.SYS  > 
[2004.09.02 09:24:38 | 000,082,816 | ---- | M] (NVIDIA Corporation) MD5=EEABD98AA887DD923546F20D400B2907 -- C:\WINDOWS\OEM\nvatabus\nvatabus.sys 
   < MD5 for: SCECLI.DLL  > 
[2008.04.14 04:22:23 | 000,187,904 | ---- | M] (Microsoft Corporation) MD5=5132443DF6FC3771A17AB4AE55DCBC28 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll 
[2008.04.14 04:22:23 | 000,187,904 | ---- | M] (Microsoft Corporation) MD5=5132443DF6FC3771A17AB4AE55DCBC28 -- C:\WINDOWS\system32\scecli.dll 
[2004.08.04 14:00:00 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=64DC26B3CF7BCCAD431CE360A4C625D5 -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll 
   < MD5 for: USER32.DLL  > 
[2005.03.02 20:09:46 | 000,578,560 | ---- | M] (Microsoft Corporation) MD5=3751D7CF0E0A113D84414992146BCE6A -- C:\WINDOWS\$NtUninstallKB925902$\user32.dll 
[2007.03.08 17:36:30 | 000,579,072 | ---- | M] (Microsoft Corporation) MD5=492E166CFD26A50FB9160DB536FF7D2B -- C:\WINDOWS\$NtServicePackUninstall$\user32.dll 
[2005.03.02 20:19:56 | 000,578,560 | ---- | M] (Microsoft Corporation) MD5=4C90159A69A5FD3EB39C71411F28FCFF -- C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\user32.dll 
[2004.08.04 14:00:00 | 000,578,560 | ---- | M] (Microsoft Corporation) MD5=56785FD5236D7B22CF471A6DA9DB46D8 -- C:\WINDOWS\$NtUninstallKB890859$\user32.dll 
[2007.03.08 17:48:39 | 000,579,584 | ---- | M] (Microsoft Corporation) MD5=78785EFF8CB90CEC1862A4CCFD9A3C3A -- C:\WINDOWS\$hf_mig$\KB925902\SP2QFE\user32.dll 
[2008.04.14 04:22:31 | 000,580,096 | ---- | M] (Microsoft Corporation) MD5=B0050CC5340E3A0760DD8B417FF7AEBD -- C:\WINDOWS\ServicePackFiles\i386\user32.dll 
[2008.04.14 04:22:31 | 000,580,096 | ---- | M] (Microsoft Corporation) MD5=B0050CC5340E3A0760DD8B417FF7AEBD -- C:\WINDOWS\system32\user32.dll 
   < MD5 for: USERINIT.EXE  > 
[2008.04.14 04:23:03 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=788F95312E26389D596C0FA55834E106 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe 
[2008.04.14 04:23:03 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=788F95312E26389D596C0FA55834E106 -- C:\WINDOWS\system32\userinit.exe 
[2004.08.04 14:00:00 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=D1E53DC57143F2584B1DD53B036C0633 -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe 
   < MD5 for: VIAMRAID.SYS  > 
[2004.05.18 15:55:26 | 000,074,112 | ---- | M] (VIA Technologies inc,.ltd) MD5=F199939205DCCC7836AE5AB8B5DD5E83 -- C:\WINDOWS\OEM\viapdsk\viamraid.sys 
   < MD5 for: WINLOGON.EXE  > 
[2012.04.04 15:56:38 | 000,199,240 | ---- | M] () MD5=097D0E812D7A9A3101CE46CB2BE0474D -- C:\Programme\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe 
[2004.08.04 14:00:00 | 000,507,392 | ---- | M] (Microsoft Corporation) MD5=2B6A0BAF33A9918F09442D873848FF72 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe 
[2008.04.14 04:23:05 | 000,513,024 | ---- | M] (Microsoft Corporation) MD5=F09A527B422E25C478E38CAA0E44417A -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe 
[2008.04.14 04:23:05 | 000,513,024 | ---- | M] (Microsoft Corporation) MD5=F09A527B422E25C478E38CAA0E44417A -- C:\WINDOWS\system32\winlogon.exe 
   < MD5 for: WS2IFSL.SYS  > 
[2004.08.04 14:00:00 | 000,012,032 | ---- | M] (Microsoft Corporation) MD5=6ABE6E225ADB5A751622A9CC3BC19CE8 -- C:\WINDOWS\system32\dllcache\ws2ifsl.sys 
[2004.08.04 14:00:00 | 000,012,032 | ---- | M] (Microsoft Corporation) MD5=6ABE6E225ADB5A751622A9CC3BC19CE8 -- C:\WINDOWS\system32\drivers\ws2ifsl.sys 
   < %systemroot%\system32\drivers\*.sys /lockedfiles > 
   < %systemroot%\System32\config\*.sav > 
[2008.01.28 19:13:19 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav 
[2008.01.28 19:13:19 | 000,663,552 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav 
[2008.01.28 19:13:19 | 000,430,080 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav 
   < %systemroot%\*. /mp /s > 
   < %systemroot%\system32\*.dll /lockedfiles > 
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ] 
   <           >   
< End of report >   --- --- ---  
--- --- ---   
Gruß  
Martin  
EDIT:  
Und hier ist auch noch das Extras-Log:  
OTL EXTRAS Logfile:   Code:  
 OTL Extras logfile created on: 07.06.2012 17:02:45 - Run 1 
OTL by OldTimer - Version 3.2.46.2     Folder = C:\Treiber und Programmdownloads 
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation 
Internet Explorer (Version = 7.0.5730.13) 
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 
  
1,49 Gb Total Physical Memory | 1,03 Gb Available Physical Memory | 69,39% Memory free 
2,09 Gb Paging File | 1,74 Gb Available in Paging File | 83,56% Paging File free 
Paging file location(s): C:\pagefile.sys 756 1512 [binary data] 
  
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programme 
Drive C: | 37,25 Gb Total Space | 9,79 Gb Free Space | 26,28% Space Free | Partition Type: NTFS 
  
Computer Name: PC2 | User Name: MUC1 | Logged in as Administrator. 
Boot Mode: Normal | Scan Mode: All users | Quick Scan 
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days 
   ========== Extra Registry (SafeList) ========== 
  
   ========== File Associations ========== 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] 
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* 
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l 
  
[HKEY_USERS\S-1-5-21-1659004503-1078145449-854245398-1004\SOFTWARE\Classes\<extension>] 
.html [@ = FirefoxHTML] -- C:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation) 
   ========== Shell Spawning ========== 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] 
batfile [open] -- "%1" %* 
cmdfile [open] -- "%1" %* 
comfile [open] -- "%1" %* 
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* 
exefile [open] -- "%1" %* 
htmlfile [edit] -- Reg Error: Key error. 
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l 
piffile [open] -- "%1" %* 
regfile [merge] -- Reg Error: Key error. 
scrfile [config] -- "%1" 
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l 
scrfile [open] -- "%1" /S 
txtfile [edit] -- Reg Error: Key error. 
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) 
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) 
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) 
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) 
   ========== Security Center Settings ========== 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] 
"FirstRunDisabled" = 1 
"AntiVirusDisableNotify" = 0 
"FirewallDisableNotify" = 0 
"UpdatesDisableNotify" = 0 
"AntiVirusOverride" = 0 
"FirewallOverride" = 0 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] 
   ========== System Restore Settings ========== 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] 
"DisableSR" = 0 
  
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr] 
"Start" = 0 
  
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService] 
"Start" = 2 
   ========== Firewall Settings ========== 
  
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] 
  
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List] 
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004 
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005 
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001 
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002 
  
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 
"EnableFirewall" = 1 
"DoNotAllowExceptions" = 0 
"DisableNotifications" = 0 
  
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] 
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007 
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008 
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004 
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005 
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001 
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002 
   ========== Authorized Applications List ========== 
  
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] 
"C:\Programme\Gemeinsame Dateien\aol\ACS\AOLacsd.exe" = C:\Programme\Gemeinsame Dateien\aol\ACS\AOLacsd.exe:*:Enabled:AOL -- (AOL LLC) 
"C:\Programme\Gemeinsame Dateien\aol\ACS\AOLDial.exe" = C:\Programme\Gemeinsame Dateien\aol\ACS\AOLDial.exe:*:Enabled:AOL -- (AOL LLC) 
"C:\Programme\AOL 9.0\waol.exe" = C:\Programme\AOL 9.0\waol.exe:*:Enabled:AOL 9.0 -- (America Online, Inc.) 
  
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] 
"C:\Programme\EpsonNet\EpsonNet SetupManager\IManager.exe" = C:\Programme\EpsonNet\EpsonNet SetupManager\IManager.exe:*:Enabled:EpsonNet SetupManager -- (SEIKO EPSON CORPORATION) 
"C:\Programme\Gemeinsame Dateien\aol\ACS\AOLacsd.exe" = C:\Programme\Gemeinsame Dateien\aol\ACS\AOLacsd.exe:*:Enabled:AOL -- (AOL LLC) 
"C:\Programme\Gemeinsame Dateien\aol\ACS\AOLDial.exe" = C:\Programme\Gemeinsame Dateien\aol\ACS\AOLDial.exe:*:Enabled:AOL -- (AOL LLC) 
"C:\Programme\AOL 9.0\waol.exe" = C:\Programme\AOL 9.0\waol.exe:*:Enabled:AOL 9.0 -- (America Online, Inc.) 
"C:\Programme\Gemeinsame Dateien\aol\1206700276\ee\aolsoftware.exe" = C:\Programme\Gemeinsame Dateien\aol\1206700276\ee\aolsoftware.exe:*:Enabled:AOL Shared Components -- (America Online, Inc.) 
"C:\Programme\Philips\Network storage wizard\Philips network storage wizard.exe" = C:\Programme\Philips\Network storage wizard\Philips network storage wizard.exe:*:Enabled:Philips network storage wizard -- (Philips Consumer Electronics) 
"C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\WebKit2WebProcess.exe" = C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\WebKit2WebProcess.exe:*:Enabled:WebKit -- (Apple Inc.) 
  
   ========== HKEY_LOCAL_MACHINE Uninstall List ========== 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] 
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer 
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer 
"{26A24AE4-039D-4CA4-87B4-2F83216011FF}" = Java(TM) 6 Update 20 
"{3127F76D-5335-4AC7-BD1E-2F5247A23C24}" = iTunes 
"{3248F0A8-6813-11D6-A77B-00B0D0150000}" = J2SE Runtime Environment 5.0 
"{3248F0A8-6813-11D6-A77B-00B0D0160050}" = Java(TM) 6 Update 5 
"{350C97B3-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP 
"{370AC61A-7701-4066-8095-EFAF84756E21}" = Intellisync® für AOL 
"{39D03604-22DA-48A4-A8EB-E9691C1F9556}" = Xerox Walk-Up Printing-Treiber 2.0 
"{4737AD9F-13AA-4E4C-B86F-B631D557F6A7}" = e-Wörterbücher 
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater 
"{54971F17-9D16-4D43-95D6-3A86E3D20EDB}" = Office-Bibliothek 4.1 
"{5EBEC21B-9C59-455B-890D-E8F7DC492D8D}" = O2Micro SmartCardBus Windows Driver Installer 
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD 
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update 
"{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour 
"{7959721D-8268-4565-9E0E-C41A9F4848A9}" = SigmaTel AC97 Audio Drivers 
"{8153ED9A-C94A-426E-9880-5E6775C08B62}" = Apple Mobile Device Support 
"{8815F011-43AF-4F50-BBD8-D78ED3D6F5B9}" = VR-NetWorld 
"{8A708DD8-A5E6-11D4-A706-000629E95E20}" = Intel(R) Extreme Graphics 2 Driver 
"{97AA0C55-AFAD-4126-B21C-F1318FB6DADA}" = Realtek RTL8139/810x Fast Ethernet NIC Driver Setup 
"{991470F7-1A45-4E49-8905-D554A2A048A0}" = Carnet d'activités À plus! 2 
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 
"{A12A36EB-ACB7-11D9-8E75-000D614181EB}" = TrekStor NDAS-Software 3.11.1327 
"{A83279FD-CA4B-4206-9535-90974DE76654}" = Apple Application Support 
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper 
"{AC76BA86-7AD7-1031-7B44-A81300000003}" = Adobe Reader 8.1.3 - Deutsch 
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 
"{CD41004C-3C24-45E2-9D66-1ADB3EC678A6}" = Sun xVM VirtualBox 
"{DFAF5B6C-47F6-4D1E-BFC8-247659A8056D}" = EpsonNet SetupManager 
"{E75CA5D4-C0FB-42b7-97AE-23F004A74169}" = Intel(R) PROSet 
"{E78BFA60-5393-4C38-82AB-E8019E464EB4}" = Microsoft .NET Framework 1.1 German Language Pack 
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX 
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin 
"Agere Systems Soft Modem" = Agere Systems AC'97 Modem 
"AOL Deinstallation" = AOL Deinstallation 
"AOL YGP Screensaver" = AOL Meine Fotos Bildschirmschoner 
"AOLCoach de" = AOL Coach Version 1.0(Build:20040229.1 de) 
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus 
"EPSON Printer and Utilities" = EPSON-Drucker-Software 
"ESET Online Scanner" = ESET Online Scanner v3 
"FileZilla Client" = FileZilla Client 3.0.7 
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs 
"ie7" = Windows Internet Explorer 7 
"InstallShield_{DFAF5B6C-47F6-4D1E-BFC8-247659A8056D}" = EpsonNet SetupManager 
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware Version 1.61.0.1400 
"Microsoft .NET Framework 1.1  (1033)" = Microsoft .NET Framework 1.1 
"Mozilla Firefox (3.6.28)" = Mozilla Firefox (3.6.28) 
"NeroMultiInstaller!UninstallKey" = Nero Suite 
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs 
"Office8.0" = Microsoft Office 97, Professional Edition 
"Philips Network Attached Storage_is1" = Philips network storage wizard 
"QuickTime" = QuickTime 
"RealPlayer 6.0" = RealPlayer Basic 
"StreetPlugin" = Learn2 Player (Uninstall Only) 
"ViewpointMediaPlayer" = Viewpoint Media Player 
"Windows XP Service Pack" = Windows XP Service Pack 3 
   ========== Last 20 Event Log Errors ========== 
  
[ Application Events ] 
Error - 08.03.2012 10:46:20 | Computer Name = PC2 | Source = Bonjour Service | ID = 100 
Description = Task Scheduling Error: Continuously busy for more than a second 
  
Error - 08.03.2012 10:46:20 | Computer Name = PC2 | Source = Bonjour Service | ID = 100 
Description = Task Scheduling Error: m->NextScheduledEvent 16300048 
  
Error - 08.03.2012 10:46:20 | Computer Name = PC2 | Source = Bonjour Service | ID = 100 
Description = Task Scheduling Error: m->NextScheduledSPRetry 16300048 
  
Error - 19.03.2012 10:25:44 | Computer Name = PC2 | Source = Bonjour Service | ID = 100 
Description = Task Scheduling Error: Continuously busy for more than a second 
  
Error - 19.03.2012 10:25:44 | Computer Name = PC2 | Source = Bonjour Service | ID = 100 
Description = Task Scheduling Error: m->NextScheduledEvent 3405 
  
Error - 19.03.2012 10:25:44 | Computer Name = PC2 | Source = Bonjour Service | ID = 100 
Description = Task Scheduling Error: m->NextScheduledSPRetry 3405 
  
Error - 06.06.2012 07:27:16 | Computer Name = PC2 | Source = crypt32 | ID = 131083 
Description = Die Extrahierung der Drittanbieterstammlisten aus der automatischen 
 Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> 
 ist fehlgeschlagen mit dem Fehler: Ein erforderliches Zertifikat befindet sich  
nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel 
 in der signierten Datei.  . 
  
Error - 06.06.2012 07:27:16 | Computer Name = PC2 | Source = crypt32 | ID = 131083 
Description = Die Extrahierung der Drittanbieterstammlisten aus der automatischen 
 Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> 
 ist fehlgeschlagen mit dem Fehler: Ein erforderliches Zertifikat befindet sich  
nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel 
 in der signierten Datei.  . 
  
Error - 06.06.2012 07:27:31 | Computer Name = PC2 | Source = crypt32 | ID = 131080 
Description = Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer 
 von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> 
 ist fehlgeschlagen mit dem Fehler: Dieser Vorgang wurde wegen Zeitüberschreitung 
 zurückgegeben.  . 
  
Error - 06.06.2012 07:27:36 | Computer Name = PC2 | Source = crypt32 | ID = 131083 
Description = Die Extrahierung der Drittanbieterstammlisten aus der automatischen 
 Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> 
 ist fehlgeschlagen mit dem Fehler: Ein erforderliches Zertifikat befindet sich  
nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel 
 in der signierten Datei.  . 
  
[ System Events ] 
Error - 05.06.2012 16:36:39 | Computer Name = PC2 | Source = W32Time | ID = 39452701 
Description = Der Zeitanbieter "NtpClient" wurde für die Zeiterfassung von mehreren 
 Zeitquellen  konfiguriert. Es ist jedoch Keine der Quellen verfügbar. Innerhalb  der 
 nächsten 14 Minuten wird kein Versuch unternommen, eine Verbindung  mit der Quelle 
 herzustellen.  Der NtpClient verfügt über keine Quelle mit genauer Zeit. 
  
Error - 05.06.2012 16:37:35 | Computer Name = PC2 | Source = DCOM | ID = 10010 
Description = Der Server "{4EB61BAC-A3B6-4760-9581-655041EF4D69}" konnte innerhalb 
 des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. 
  
Error - 05.06.2012 16:51:39 | Computer Name = PC2 | Source = W32Time | ID = 39452689 
Description = Zeitabieter "NtpClient": Beim DNS-Lookup für den manuell konfigurierten 
 Peer  "time.windows.com,0x1" ist ein Fehler aufgetreten. Der DNS-Lookup wird in 30 
 Minuten  wiederholt.  Fehler: Der Host war bei einem Socketvorgang nicht erreichbar. 
 (0x80072751) 
  
Error - 05.06.2012 16:51:39 | Computer Name = PC2 | Source = W32Time | ID = 39452701 
Description = Der Zeitanbieter "NtpClient" wurde für die Zeiterfassung von mehreren 
 Zeitquellen  konfiguriert. Es ist jedoch Keine der Quellen verfügbar. Innerhalb  der 
 nächsten 30 Minuten wird kein Versuch unternommen, eine Verbindung  mit der Quelle 
 herzustellen.  Der NtpClient verfügt über keine Quelle mit genauer Zeit. 
  
Error - 05.06.2012 17:03:46 | Computer Name = PC2 | Source = W32Time | ID = 39452689 
Description = Zeitabieter "NtpClient": Beim DNS-Lookup für den manuell konfigurierten 
 Peer  "time.windows.com,0x1" ist ein Fehler aufgetreten. Der DNS-Lookup wird in 15 
 Minuten  wiederholt.  Fehler: Der Host war bei einem Socketvorgang nicht erreichbar. 
 (0x80072751) 
  
Error - 05.06.2012 17:03:46 | Computer Name = PC2 | Source = W32Time | ID = 39452701 
Description = Der Zeitanbieter "NtpClient" wurde für die Zeiterfassung von mehreren 
 Zeitquellen  konfiguriert. Es ist jedoch Keine der Quellen verfügbar. Innerhalb  der 
 nächsten 14 Minuten wird kein Versuch unternommen, eine Verbindung  mit der Quelle 
 herzustellen.  Der NtpClient verfügt über keine Quelle mit genauer Zeit. 
  
Error - 05.06.2012 17:03:47 | Computer Name = PC2 | Source = W32Time | ID = 39452689 
Description = Zeitabieter "NtpClient": Beim DNS-Lookup für den manuell konfigurierten 
 Peer  "time.windows.com,0x1" ist ein Fehler aufgetreten. Der DNS-Lookup wird in 15 
 Minuten  wiederholt.  Fehler: Der Host war bei einem Socketvorgang nicht erreichbar. 
 (0x80072751) 
  
Error - 05.06.2012 17:03:47 | Computer Name = PC2 | Source = W32Time | ID = 39452701 
Description = Der Zeitanbieter "NtpClient" wurde für die Zeiterfassung von mehreren 
 Zeitquellen  konfiguriert. Es ist jedoch Keine der Quellen verfügbar. Innerhalb  der 
 nächsten 14 Minuten wird kein Versuch unternommen, eine Verbindung  mit der Quelle 
 herzustellen.  Der NtpClient verfügt über keine Quelle mit genauer Zeit. 
  
Error - 05.06.2012 17:04:38 | Computer Name = PC2 | Source = DCOM | ID = 10010 
Description = Der Server "{4EB61BAC-A3B6-4760-9581-655041EF4D69}" konnte innerhalb 
 des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. 
  
Error - 06.06.2012 06:35:20 | Computer Name = PC2 | Source = Service Control Manager | ID = 7026 
Description = Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: 
   IntelIde 
  
  
< End of report >   --- --- ---     |