OTL Logfile:   Code:  
 OTL logfile created on: 12.07.2012 08:28:39 - Run 1 
OTL by OldTimer - Version 3.2.54.0     Folder = C:\Users\Kerstin\Desktop 
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation 
Internet Explorer (Version = 8.0.7601.17514) 
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 
  
4,00 Gb Total Physical Memory | 2,65 Gb Available Physical Memory | 66,23% Memory free 
7,99 Gb Paging File | 6,47 Gb Available in Paging File | 80,99% Paging File free 
Paging file location(s): ?:\pagefile.sys [binary data] 
  
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) 
Drive C: | 451,50 Gb Total Space | 333,10 Gb Free Space | 73,78% Space Free | Partition Type: NTFS 
  
Computer Name: KERSTIN-PC | User Name: Kerstin | Logged in as Administrator. 
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans 
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days 
   ========== Processes (SafeList) ========== 
  
PRC - C:\Users\Kerstin\Desktop\OTL.exe (OldTimer Tools) 
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) 
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG) 
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) 
PRC - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation) 
PRC - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) 
PRC - C:\Program Files (x86)\Launch Manager\LManager.exe (Dritek System Inc.) 
PRC - C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Dritek System Inc.) 
PRC - C:\Program Files (x86)\Launch Manager\LMworker.exe (Dritek System Inc.) 
PRC - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe (NewTech Infosystems, Inc.) 
PRC - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe (NewTech Infosystems, Inc.) 
PRC - C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe (Egis Technology Inc.) 
PRC - C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe (Egis Technology Inc.) 
PRC - C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe (Egis Technology Inc.) 
PRC - C:\Programme\Acer\Acer Updater\UpdaterService.exe (Acer Group) 
PRC - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (Acer Incorporated) 
  
   ========== Modules (No Company Name) ========== 
  
MOD - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\sqlite3.dll () 
MOD - C:\Program Files (x86)\Launch Manager\CdDirIo.dll () 
  
   ========== Win32 Services (SafeList) ========== 
  
SRV:64bit: - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD) 
SRV - (AntiVirSchedulerService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) 
SRV - (AntiVirService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG) 
SRV - (sftvsa) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation) 
SRV - (sftlist) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) 
SRV - (wlcrasvc) -- C:\Programme\Windows Live\Mesh\wlcrasvc.exe (Microsoft Corporation) 
SRV - (wlidsvc) -- C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) 
SRV - (DsiWMIService) -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Dritek System Inc.) 
SRV - (NTI IScheduleSvc) -- C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe (NewTech Infosystems, Inc.) 
SRV - (ePowerSvc) -- C:\Programme\Acer\Acer ePower Management\ePowerSvc.exe (Acer Incorporated) 
SRV - (MWLService) -- C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe (Egis Technology Inc.) 
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) 
SRV - (Updater Service) -- C:\Programme\Acer\Acer Updater\UpdaterService.exe (Acer Group) 
SRV - (osppsvc) -- C:\Programme\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation) 
SRV - (GREGService) -- C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (Acer Incorporated) 
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation) 
  
   ========== Driver Services (SafeList) ========== 
  
DRV:64bit: - (avkmgr) -- C:\Windows\SysNative\drivers\avkmgr.sys (Avira GmbH) 
DRV:64bit: - (avipbb) -- C:\Windows\SysNative\drivers\avipbb.sys (Avira GmbH) 
DRV:64bit: - (avgntflt) -- C:\Windows\SysNative\drivers\avgntflt.sys (Avira GmbH) 
DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation) 
DRV:64bit: - (Sftvol) -- C:\Windows\SysNative\drivers\Sftvollh.sys (Microsoft Corporation) 
DRV:64bit: - (Sftplay) -- C:\Windows\SysNative\drivers\Sftplaylh.sys (Microsoft Corporation) 
DRV:64bit: - (Sftredir) -- C:\Windows\SysNative\drivers\Sftredirlh.sys (Microsoft Corporation) 
DRV:64bit: - (Sftfs) -- C:\Windows\SysNative\drivers\Sftfslh.sys (Microsoft Corporation) 
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices) 
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices) 
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company) 
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation) 
DRV:64bit: - (amdkmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.) 
DRV:64bit: - (amdkmdap) -- C:\Windows\SysNative\drivers\atikmpag.sys (Advanced Micro Devices, Inc.) 
DRV:64bit: - (AtiHDAudioService) -- C:\Windows\SysNative\drivers\AtihdW76.sys (ATI Technologies, Inc.) 
DRV:64bit: - (AtiPcie) AMD PCI Express (3GIO) -- C:\Windows\SysNative\drivers\AtiPcie64.sys (Advanced Micro Devices Inc.) 
DRV:64bit: - (AmUStor) -- C:\Windows\SysNative\drivers\AmUStor.sys (Alcor Micro, Corp.) 
DRV:64bit: - (k57nd60a) Broadcom NetLink (TM) -- C:\Windows\SysNative\drivers\k57nd60a.sys (Broadcom Corporation) 
DRV:64bit: - (athr) -- C:\Windows\SysNative\drivers\athrx.sys (Atheros Communications, Inc.) 
DRV:64bit: - (usbfilter) -- C:\Windows\SysNative\drivers\usbfilter.sys (Advanced Micro Devices) 
DRV:64bit: - (NTIDrvr) -- C:\Windows\SysNative\drivers\NTIDrvr.sys (NTI Corporation) 
DRV:64bit: - (UBHelper) -- C:\Windows\SysNative\drivers\UBHelper.sys (NTI Corporation) 
DRV:64bit: - (ApfiltrService) -- C:\Windows\SysNative\drivers\Apfiltr.sys (Alps Electric Co., Ltd.) 
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.) 
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation) 
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology) 
DRV:64bit: - (L1E) NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller(NDIS6.20) -- C:\Windows\SysNative\drivers\L1E62x64.sys (Atheros Communications, Inc.) 
DRV:64bit: - (igfx) -- C:\Windows\SysNative\drivers\igdkmd64.sys (Intel Corporation) 
DRV:64bit: - (BCM43XX) -- C:\Windows\SysNative\drivers\BCMWL664.SYS (Broadcom Corporation) 
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation) 
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation) 
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation) 
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.) 
DRV:64bit: - (mwlPSDVDisk) -- C:\Windows\SysNative\drivers\mwlPSDVDisk.sys (Egis Technology Inc.) 
DRV:64bit: - (mwlPSDFilter) -- C:\Windows\SysNative\drivers\mwlPSDFilter.sys (Egis Technology Inc.) 
DRV:64bit: - (mwlPSDNServ) -- C:\Windows\SysNative\drivers\mwlPSDNserv.sys (Egis Technology Inc.) 
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation) 
  
   ========== Standard Registry (SafeList) ========== 
  
   ========== Internet Explorer ========== 
  
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer.msn.com 
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer.msn.com 
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} 
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox 
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer.msn.com 
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm 
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer.msn.com 
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} 
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox 
  
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer.msn.com 
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ 
IE - HKCU\..\SearchScopes,DefaultScope = {1AC1763C-5AC6-4EBA-8545-C73A85BC055B} 
IE - HKCU\..\SearchScopes\{1AC1763C-5AC6-4EBA-8545-C73A85BC055B}: "URL" = hxxp://www.google.de/search?q={searchTerms} 
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 
   ========== FireFox ========== 
  
FF - prefs.js..browser.startup.homepage: "hxxp://www.google.de/" 
FF - user.js - File not found 
  
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll File not found 
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) 
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll () 
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) 
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation) 
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) 
  
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011.12.17 14:00:45 | 000,000,000 | ---D | M] 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins 
  
[2011.12.17 14:01:38 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Kerstin\AppData\Roaming\mozilla\Extensions 
[2011.12.17 14:00:44 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions 
[2011.11.21 05:21:43 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll 
[2011.11.21 02:17:49 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml 
[2011.11.21 02:09:48 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml 
[2011.11.21 02:17:49 | 000,001,153 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml 
[2011.11.21 02:17:49 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml 
[2011.11.21 02:17:49 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml 
[2011.11.21 02:17:49 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml 
  
O1 HOSTS File: ([2009.06.10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts 
O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) 
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. 
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. 
O4:64bit: - HKLM..\Run: [Acer ePower Management] C:\Programme\Acer\Acer ePower Management\ePowerTray.exe (Acer Incorporated) 
O4:64bit: - HKLM..\Run: [AmIcoSinglun64] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (Alcor Micro Corp.) 
O4:64bit: - HKLM..\Run: [mwlDaemon] C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe (Egis Technology Inc.) 
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) 
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) 
O4 - HKLM..\Run: [BackupManagerTray] C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe (NewTech Infosystems, Inc.) 
O4 - HKLM..\Run: [EgisTecPMMUpdate] C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe (Egis Technology Inc.) 
O4 - HKLM..\Run: [EgisUpdate] C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe (Egis Technology Inc.) 
O4 - HKLM..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe (Dritek System Inc.) 
O4 - HKLM..\Run: [SuiteTray] C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe (Egis Technology Inc.) 
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000005 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.) 
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000006 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.) 
O1364bit: - gopher Prefix: missing 
O13 - gopher Prefix: missing 
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{20CDB386-217D-4959-9891-700E62EAC72E}: DhcpNameServer = 192.168.2.1 
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9C52E12A-553A-4850-8E9C-E25E4D39B601}: DhcpNameServer = 192.168.2.1 
O18:64bit: - Protocol\Handler\livecall - No CLSID value found 
O18:64bit: - Protocol\Handler\msnim - No CLSID value found 
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found 
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found 
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) 
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) 
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation) 
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) -  File not found 
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) 
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation) 
O20 - HKLM Winlogon: VMApplet - (/pagefile) -  File not found 
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. 
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. 
O32 - HKLM CDRom: AutoRun - 1 
O33 - MountPoints2\{eaf5ac22-42dd-11e1-8fcf-206a8a338388}\Shell - "" = AutoRun 
O33 - MountPoints2\{eaf5ac22-42dd-11e1-8fcf-206a8a338388}\Shell\AutoRun\command - "" = E:\Startme.exe 
O34 - HKLM BootExecute: (autocheck autochk *) 
O35:64bit: - HKLM\..comfile [open] -- "%1" %* 
O35:64bit: - HKLM\..exefile [open] -- "%1" %* 
O35 - HKLM\..comfile [open] -- "%1" %* 
O35 - HKLM\..exefile [open] -- "%1" %* 
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %* 
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %* 
O37 - HKLM\...com [@ = comfile] -- "%1" %* 
O37 - HKLM\...exe [@ = exefile] -- "%1" %* 
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) 
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) 
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) 
  
ActiveX:64bit: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0 
ActiveX:64bit: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll 
ActiveX:64bit: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack 
ActiveX:64bit: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE 
ActiveX:64bit: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx 
ActiveX:64bit: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help 
ActiveX:64bit: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6 
ActiveX:64bit: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools 
ActiveX:64bit: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements 
ActiveX:64bit: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player 
ActiveX:64bit: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access 
ActiveX:64bit: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7 
ActiveX:64bit: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll 
ActiveX:64bit: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\System32\ie4uinit.exe -BaseSettings 
ActiveX:64bit: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install 
ActiveX:64bit: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding 
ActiveX:64bit: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts 
ActiveX:64bit: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help 
ActiveX:64bit: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface 
ActiveX:64bit: {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} - .NET Framework 
ActiveX:64bit: {FEBEF00C-046D-438D-8A88-BF94A6C9E703} - .NET Framework 
ActiveX:64bit: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP 
ActiveX:64bit: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\System32\ie4uinit.exe -UserIconConfig 
ActiveX:64bit: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP 
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0 
ActiveX: {25FFAAD0-F4A3-4164-95FF-4461E9F35D51} - .NET Framework 
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll 
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack 
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles(x86)%\Windows Mail\WinMail.exe" OCInstallUserConfigOE 
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx 
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help 
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6 
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools 
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements 
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player 
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access 
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7 
ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework 
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll 
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\SysWOW64\ie4uinit.exe -BaseSettings 
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install 
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding 
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts 
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help 
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface 
ActiveX: {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} - .NET Framework 
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP 
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\SysWOW64\ie4uinit.exe -UserIconConfig 
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\Windows\SysWOW64\rundll32.exe" "C:\Windows\SysWOW64\iedkcs32.dll",BrandIEActiveSetup SIGNUP 
  
  
MsConfig:64bit - StartUpReg: Adobe Reader Speed Launcher - hkey= - key= - c:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated) 
MsConfig:64bit - StartUpReg: StartCCC - hkey= - key= - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) 
  
CREATERESTOREPOINT 
Restore point Set: OTL Restore Point 
   ========== Files/Folders - Created Within 30 Days ========== 
  
[2012.07.12 08:19:27 | 000,596,480 | ---- | C] (OldTimer Tools) -- C:\Users\Kerstin\Desktop\OTL.exe 
[2012.07.09 15:31:26 | 000,000,000 | ---D | C] -- C:\Users\Kerstin\Documents\Papas 60. Geburtstag 
   ========== Files - Modified Within 30 Days ========== 
  
[2012.07.12 08:20:25 | 000,017,376 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 
[2012.07.12 08:20:25 | 000,017,376 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 
[2012.07.12 08:19:46 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Kerstin\Desktop\OTL.exe 
[2012.07.12 08:11:19 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat 
[2012.07.12 08:11:12 | 3219,787,776 | -HS- | M] () -- C:\hiberfil.sys 
[2012.07.09 18:37:12 | 000,065,994 | ---- | M] () -- C:\Users\Kerstin\Desktop\09.07.2012.PNG 
[2012.07.02 14:38:35 | 001,500,266 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI 
[2012.07.02 14:38:35 | 000,654,846 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat 
[2012.07.02 14:38:35 | 000,616,688 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat 
[2012.07.02 14:38:35 | 000,130,428 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat 
[2012.07.02 14:38:35 | 000,106,810 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat 
[2012.06.15 14:10:02 | 000,274,464 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT 
   ========== Files Created - No Company Name ========== 
  
[2012.07.09 18:37:12 | 000,065,994 | ---- | C] () -- C:\Users\Kerstin\Desktop\09.07.2012.PNG 
[2012.04.17 15:40:34 | 001,526,948 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI 
[2011.12.16 00:03:58 | 000,000,267 | ---- | C] () -- C:\Windows\LaunApp.ini 
[2011.12.15 23:55:02 | 000,002,857 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat 
[2011.12.15 23:54:10 | 000,001,549 | ---- | C] () -- C:\Windows\WPatchProgress.ini 
[2011.12.15 15:29:31 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin 
[2010.11.19 05:11:21 | 000,131,984 | ---- | C] () -- C:\ProgramData\FullRemove.exe 
[2010.11.19 05:01:05 | 000,000,079 | ---- | C] () -- C:\Windows\WISGAPas.ini 
[2010.11.19 03:50:00 | 000,000,321 | ---- | C] () -- C:\Windows\Prelaunch.ini 
[2010.11.19 03:50:00 | 000,000,271 | ---- | C] () -- C:\Windows\WisPriority.ini 
[2010.11.19 03:50:00 | 000,000,168 | ---- | C] () -- C:\Windows\WisLangCode.ini 
   ========== LOP Check ========== 
  
[2012.04.29 20:06:31 | 000,000,000 | ---D | M] -- C:\Users\Kerstin\AppData\Roaming\SoftGrid Client 
[2012.02.22 18:37:57 | 000,000,000 | ---D | M] -- C:\Users\Kerstin\AppData\Roaming\TestApp 
[2012.04.17 15:42:01 | 000,000,000 | ---D | M] -- C:\Users\Kerstin\AppData\Roaming\TP 
[2012.05.31 06:39:37 | 000,032,632 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT 
   ========== Purity Check ========== 
  
  
   ========== Custom Scans ========== 
   < %SYSTEMDRIVE%\*. > 
[2012.04.01 13:34:42 | 000,000,000 | -HSD | M] -- C:\$RECYCLE.BIN 
[2011.12.15 23:37:34 | 000,000,000 | ---D | M] -- C:\Backup 
[2011.03.06 18:30:09 | 000,000,000 | ---D | M] -- C:\BOOK 
[2012.06.15 14:08:50 | 000,000,000 | -HSD | M] -- C:\Config.Msi 
[2009.07.14 06:08:56 | 000,000,000 | -HSD | M] -- C:\Documents and Settings 
[2011.08.15 20:25:00 | 000,000,000 | -HSD | M] -- C:\Dokumente und Einstellungen 
[2011.12.15 22:17:17 | 000,000,000 | ---D | M] -- C:\elements 
[2011.10.23 16:56:26 | 000,000,000 | RH-D | M] -- C:\MSOCache 
[2011.12.15 22:15:00 | 000,000,000 | -H-D | M] -- C:\oem 
[2009.07.14 04:20:08 | 000,000,000 | ---D | M] -- C:\PerfLogs 
[2012.05.21 21:57:38 | 000,000,000 | R--D | M] -- C:\Program Files 
[2012.06.10 20:34:10 | 000,000,000 | R--D | M] -- C:\Program Files (x86) 
[2012.06.10 20:34:10 | 000,000,000 | -H-D | M] -- C:\ProgramData 
[2011.08.15 20:25:00 | 000,000,000 | -HSD | M] -- C:\Programme 
[2011.12.15 22:14:06 | 000,000,000 | -HSD | M] -- C:\Recovery 
[2012.07.12 08:34:30 | 000,000,000 | -HSD | M] -- C:\System Volume Information 
[2011.12.15 22:14:32 | 000,000,000 | R--D | M] -- C:\Users 
[2012.07.12 08:11:21 | 000,000,000 | ---D | M] -- C:\Windows 
[2011.11.07 22:10:04 | 000,000,000 | ---D | M] -- C:\_OTL 
   < %PROGRAMFILES%\*.exe > 
   < %LOCALAPPDATA%\*.exe > 
   < %systemroot%\*. /mp /s > 
   < MD5 for: AGP440.SYS  > 
[2009.07.14 02:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\drivers\AGP440.sys 
[2009.07.14 02:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\AGP440.sys 
[2009.07.14 02:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\AGP440.sys 
[2009.07.14 02:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\AGP440.sys 
   < MD5 for: ATAPI.SYS  > 
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys 
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys 
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys 
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys 
   < MD5 for: CNGAUDIT.DLL  > 
[2009.07.14 02:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\SysWOW64\cngaudit.dll 
[2009.07.14 02:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll 
[2009.07.14 02:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\SysNative\cngaudit.dll 
[2009.07.14 02:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\winsxs\amd64_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_4458dccc49458461\cngaudit.dll 
   < MD5 for: EXPLORER.EXE  > 
[2011.02.26 07:23:14 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=0862495E0C825893DB75EF44FAEA8E93 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_adc24107935a7e25\explorer.exe 
[2011.02.26 06:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe 
[2009.07.14 02:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe 
[2011.02.26 06:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_b8ce9756e0b786a4\explorer.exe 
[2010.11.19 04:27:29 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe 
[2011.02.26 06:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_b816eb59c7bb4020\explorer.exe 
[2011.02.25 07:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe 
[2011.02.25 07:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe 
[2011.02.26 07:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe 
[2010.11.20 13:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe 
[2010.11.19 04:16:39 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe 
[2011.02.25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe 
[2011.02.25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe 
[2010.11.19 04:27:29 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe 
[2010.11.19 04:16:39 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe 
[2010.11.20 14:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe 
[2010.11.19 04:27:29 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe 
[2010.11.19 04:16:39 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe 
[2009.07.14 02:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe 
[2010.11.19 04:27:29 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe 
[2011.02.26 07:26:45 | 002,870,784 | ---- | M] (Microsoft Corporation) MD5=E38899074D4951D31B4040E994DD7C8D -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_ae79ed04ac56c4a9\explorer.exe 
[2010.11.19 04:16:39 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe 
   < MD5 for: IASTORV.SYS  > 
[2010.11.20 14:33:38 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_668286aa35d55928\iaStorV.sys 
[2010.11.20 14:33:38 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17514_none_0d3757e79e6784d0\iaStorV.sys 
[2011.03.11 07:19:16 | 000,410,496 | ---- | M] (Intel Corporation) MD5=5B3DE7208E5000D5B451B9D290D2579C -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.21680_none_0d714416b7c182d5\iaStorV.sys 
[2011.03.11 07:41:26 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\SysNative\drivers\iaStorV.sys 
[2011.03.11 07:41:26 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_0bcee2057afcc090\iaStorV.sys 
[2011.03.11 07:41:26 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17577_none_0cf9793d9e95787b\iaStorV.sys 
[2011.03.11 07:23:00 | 000,410,496 | ---- | M] (Intel Corporation) MD5=B75E45C564E944A2657167D197AB29DA -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.16778_none_0b141c81a16e25e6\iaStorV.sys 
[2011.03.11 07:25:49 | 000,410,496 | ---- | M] (Intel Corporation) MD5=BFDC9D75698800CFE4D1698BF2750EA2 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.20921_none_0bccc8c8ba6985c1\iaStorV.sys 
[2009.07.14 02:48:04 | 000,410,688 | ---- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.16385_none_0b06441fa1790136\iaStorV.sys 
   < MD5 for: NETLOGON.DLL  > 
[2009.07.14 02:41:52 | 000,692,736 | ---- | M] (Microsoft Corporation) MD5=956D030D375F207B22FB111E06EF9C35 -- C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_59aca8ea51aaeefe\netlogon.dll 
[2010.11.20 14:27:22 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\SysNative\netlogon.dll 
[2010.11.20 14:27:22 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_5bddbcb24e997298\netlogon.dll 
[2010.11.20 13:20:28 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\SysWOW64\netlogon.dll 
[2010.11.20 13:20:28 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_6632670482fa3493\netlogon.dll 
[2009.07.14 02:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_6401533c860bb0f9\netlogon.dll 
   < MD5 for: NVSTOR.SYS  > 
[2009.07.14 02:45:45 | 000,167,488 | ---- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_95cfb4ced8afab0e\nvstor.sys 
[2011.03.11 07:23:06 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=6C1D5F70E7A6A3FD1C90D840EDC048B9 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16778_none_95dd8d30d8a4cfbe\nvstor.sys 
[2011.03.11 07:25:53 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=AE274836BA56518E279087363A781214 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.20921_none_96963977f1a02f99\nvstor.sys 
[2011.03.11 07:19:21 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=D23C7E8566DA2B8A7C0DBBB761D54888 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.21680_none_983ab4c5eef82cad\nvstor.sys 
[2011.03.11 07:41:34 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\SysNative\drivers\nvstor.sys 
[2011.03.11 07:41:34 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_0276fc3b3ea60d41\nvstor.sys 
[2011.03.11 07:41:34 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17577_none_97c2e9ecd5cc2253\nvstor.sys 
[2010.11.20 14:33:48 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_dd659ed032d28a14\nvstor.sys 
[2010.11.20 14:33:48 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_9800c896d59e2ea8\nvstor.sys 
   < MD5 for: SCECLI.DLL  > 
[2009.07.14 02:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll 
[2009.07.14 02:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll 
[2010.11.20 13:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll 
[2010.11.20 13:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll 
[2010.11.20 14:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll 
[2010.11.20 14:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll 
   < MD5 for: USER32.DLL  > 
[2010.11.20 13:08:57 | 000,833,024 | ---- | M] (Microsoft Corporation) MD5=5E0DB2D8B2750543CD2EBB9EA8E6CDD3 -- C:\Windows\SysWOW64\user32.dll 
[2010.11.20 13:08:57 | 000,833,024 | ---- | M] (Microsoft Corporation) MD5=5E0DB2D8B2750543CD2EBB9EA8E6CDD3 -- C:\Windows\winsxs\wow64_microsoft-windows-user32_31bf3856ad364e35_6.1.7601.17514_none_35b31c02b85ccb6e\user32.dll 
[2009.07.14 02:41:56 | 001,008,640 | ---- | M] (Microsoft Corporation) MD5=72D7B3EA16946E8F0CF7458150031CC6 -- C:\Windows\winsxs\amd64_microsoft-windows-user32_31bf3856ad364e35_6.1.7600.16385_none_292d5de8870d85d9\user32.dll 
[2009.07.14 02:11:24 | 000,833,024 | ---- | M] (Microsoft Corporation) MD5=E8B0FFC209E504CB7E79FC24E6C085F0 -- C:\Windows\winsxs\wow64_microsoft-windows-user32_31bf3856ad364e35_6.1.7600.16385_none_3382083abb6e47d4\user32.dll 
[2010.11.20 14:27:27 | 001,008,128 | ---- | M] (Microsoft Corporation) MD5=FE70103391A64039A921DBFFF9C7AB1B -- C:\Windows\SysNative\user32.dll 
[2010.11.20 14:27:27 | 001,008,128 | ---- | M] (Microsoft Corporation) MD5=FE70103391A64039A921DBFFF9C7AB1B -- C:\Windows\winsxs\amd64_microsoft-windows-user32_31bf3856ad364e35_6.1.7601.17514_none_2b5e71b083fc0973\user32.dll 
   < MD5 for: USERINIT.EXE  > 
[2010.11.20 13:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe 
[2010.11.20 13:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe 
[2009.07.14 02:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe 
[2009.07.14 02:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe 
[2010.11.20 14:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe 
[2010.11.20 14:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe 
   < MD5 for: WINLOGON.EXE  > 
[2010.11.20 14:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe 
[2010.11.20 14:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe 
[2009.07.14 02:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe 
[2010.11.19 04:27:29 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe 
[2010.11.19 04:27:29 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe 
   < MD5 for: WS2IFSL.SYS  > 
[2009.07.14 01:10:33 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=6BCC1D7D2FD2453957C5479A32364E52 -- C:\Windows\SysNative\drivers\ws2ifsl.sys 
[2009.07.14 01:10:33 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=6BCC1D7D2FD2453957C5479A32364E52 -- C:\Windows\winsxs\amd64_microsoft-windows-w..rastructure-ws2ifsl_31bf3856ad364e35_6.1.7600.16385_none_ab7b927be17eace8\ws2ifsl.sys 
   < %systemroot%\system32\drivers\*.sys /lockedfiles > 
   < %systemroot%\System32\config\*.sav > 
   < %systemroot%\system32\*.dll /lockedfiles > 
   < %USERPROFILE%\*.* > 
[2012.07.12 08:33:55 | 001,310,720 | -HS- | M] () -- C:\Users\Kerstin\NTUSER.DAT 
[2012.07.12 08:33:55 | 000,262,144 | -HS- | M] () -- C:\Users\Kerstin\ntuser.dat.LOG1 
[2011.12.15 22:14:34 | 000,000,000 | -HS- | M] () -- C:\Users\Kerstin\ntuser.dat.LOG2 
[2011.12.15 22:23:51 | 000,065,536 | -HS- | M] () -- C:\Users\Kerstin\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TM.blf 
[2011.12.15 22:23:51 | 000,524,288 | -HS- | M] () -- C:\Users\Kerstin\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000001.regtrans-ms 
[2011.12.15 22:23:51 | 000,524,288 | -HS- | M] () -- C:\Users\Kerstin\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000002.regtrans-ms 
[2011.12.15 22:14:34 | 000,000,020 | -HS- | M] () -- C:\Users\Kerstin\ntuser.ini 
   < %USERPROFILE%\Local Settings\Temp\*.exe > 
   < %USERPROFILE%\Local Settings\Temp\*.dll > 
   < %USERPROFILE%\Application Data\*.exe > 
   < HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems|Windows /rs > 
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems\\Required: DebugWindows [binary data] 
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems\\Windows: %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 
   <           > 
   ========== Alternate Data Streams ========== 
  
@Alternate Data Stream - 124 bytes -> C:\ProgramData\Temp:798A3728 
@Alternate Data Stream - 121 bytes -> C:\ProgramData\Temp:0B9176C0 
@Alternate Data Stream - 119 bytes -> C:\ProgramData\Temp:E3C56885   
< End of report >   --- --- ---   
OTL EXTRAS Logfile:   Code:  
 OTL Extras logfile created on: 12.07.2012 08:28:39 - Run 1 
OTL by OldTimer - Version 3.2.54.0     Folder = C:\Users\Kerstin\Desktop 
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation 
Internet Explorer (Version = 8.0.7601.17514) 
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 
  
4,00 Gb Total Physical Memory | 2,65 Gb Available Physical Memory | 66,23% Memory free 
7,99 Gb Paging File | 6,47 Gb Available in Paging File | 80,99% Paging File free 
Paging file location(s): ?:\pagefile.sys [binary data] 
  
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) 
Drive C: | 451,50 Gb Total Space | 333,10 Gb Free Space | 73,78% Space Free | Partition Type: NTFS 
  
Computer Name: KERSTIN-PC | User Name: Kerstin | Logged in as Administrator. 
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans 
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days 
   ========== Extra Registry (SafeList) ========== 
  
   ========== File Associations ========== 
   64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] 
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] 
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) 
  
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>] 
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) 
   ========== Shell Spawning ========== 
   64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] 
batfile [open] -- "%1" %* 
cmdfile [open] -- "%1" %* 
comfile [open] -- "%1" %* 
exefile [open] -- "%1" %* 
helpfile [open] -- Reg Error: Key error. 
htmlfile [edit] -- Reg Error: Key error. 
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" 
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) 
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) 
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) 
piffile [open] -- "%1" %* 
regfile [merge] -- Reg Error: Key error. 
scrfile [config] -- "%1" 
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l 
scrfile [open] -- "%1" /S 
txtfile [edit] -- Reg Error: Key error. 
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) 
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) 
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) 
Folder [explore] -- Reg Error: Value error. 
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] 
batfile [open] -- "%1" %* 
cmdfile [open] -- "%1" %* 
comfile [open] -- "%1" %* 
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) 
exefile [open] -- "%1" %* 
helpfile [open] -- Reg Error: Key error. 
htmlfile [edit] -- Reg Error: Key error. 
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" 
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) 
piffile [open] -- "%1" %* 
regfile [merge] -- Reg Error: Key error. 
scrfile [config] -- "%1" 
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l 
scrfile [open] -- "%1" /S 
txtfile [edit] -- Reg Error: Key error. 
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) 
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) 
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) 
Folder [explore] -- Reg Error: Value error. 
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) 
   ========== Security Center Settings ========== 
   64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] 
"cval" = 1 
   64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] 
   64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] 
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data] 
"AntiVirusOverride" = 0 
"AntiSpywareOverride" = 0 
"FirewallOverride" = 0 
   64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] 
   ========== Firewall Settings ========== 
  
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] 
"DisableNotifications" = 0 
"EnableFirewall" = 1 
  
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 
"DisableNotifications" = 0 
"EnableFirewall" = 1 
  
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] 
"DisableNotifications" = 0 
"EnableFirewall" = 1 
   ========== Authorized Applications List ========== 
  
   ========== Vista Active Open Ports Exception List ========== 
  
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] 
"{0AB790D2-9FF6-4CDE-B2B6-BC0FC854AB9B}" = lport=139 | protocol=6 | dir=in | app=system |  
"{1D988E59-DA5D-4CE8-A733-A624B3559900}" = rport=138 | protocol=17 | dir=out | app=system |  
"{20C2C132-8A52-442A-9428-800E5CB0ABFD}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |  
"{28F246D6-C396-4761-AE02-7C3BEDCDF0B5}" = lport=137 | protocol=17 | dir=in | app=system |  
"{340C0788-AE99-4BDE-9908-081AD2DDC07C}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |  
"{425079D4-4DE3-44E2-81B4-7BD3F2DAE699}" = lport=2869 | protocol=6 | dir=in | app=system |  
"{45FA93BB-9254-4531-9971-23CF212A34C8}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |  
"{4DD00977-E222-41C8-B1E1-3072D4B43274}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |  
"{552F47AC-44A2-438B-9C12-2D5678B77024}" = lport=138 | protocol=17 | dir=in | app=system |  
"{56275CA9-5AE6-4FFC-B7FF-4A8CB71AAF1A}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |  
"{5BC47C63-FDC7-4FBB-8A5D-3C1F9B908E2F}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |  
"{5FDD262E-FAE6-4671-8D39-240DEC7CBB0D}" = lport=445 | protocol=6 | dir=in | app=system |  
"{74510262-8A53-4E95-801D-10761AA7C9DC}" = lport=10243 | protocol=6 | dir=in | app=system |  
"{78DBB696-8786-4127-B6A9-E5F346D62C21}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |  
"{81BDCDBA-481F-437F-B094-10503936E9E2}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |  
"{9A682148-9100-4069-8CA0-AD1B55B12BFA}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |  
"{A106BD69-9D22-4753-8318-82C345189A95}" = rport=10243 | protocol=6 | dir=out | app=system |  
"{A64F5A2E-E28E-4602-8B77-FA5267A995A3}" = rport=139 | protocol=6 | dir=out | app=system |  
"{B2B01874-C16C-4F87-A265-B5DC3ADCE175}" = rport=137 | protocol=17 | dir=out | app=system |  
"{B312938A-5EC9-474D-A618-EFE846C193FA}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |  
"{B633E714-3442-4A3B-AF86-D83C71138B77}" = rport=445 | protocol=6 | dir=out | app=system |  
"{E6CC908B-13C0-40EA-960D-000A5608C17C}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |  
"{EA4A2A76-8807-4A7B-9E94-71C7F5D705FB}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |  
   ========== Vista Active Application Exception List ========== 
  
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] 
"{004D98DC-865B-4D54-8916-9C119C20309F}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe |  
"{186DDA16-BECF-481C-8FA6-4D504CCAD384}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |  
"{24B7BF3E-71F0-4D5F-BF58-4911BC5FB037}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |  
"{29959A32-8B14-4C49-AFA5-29871A831034}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe |  
"{4349ADE6-34A2-4516-A847-71CFA33AB190}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |  
"{4772CCE5-A56B-49E0-AB77-BA512411249A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |  
"{485407DA-94FC-4FBA-B9D4-54D567D5C6C9}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |  
"{490F6D70-916C-4F5C-8BB8-90D3483A0FC2}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |  
"{55F7176A-E4E4-4E55-BCAF-C7A8956DF950}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |  
"{60E17930-6ADF-4EC0-982A-78DFC29D3587}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |  
"{69E2A059-8139-48B1-82F6-6C7A07E4BC8A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |  
"{6DAD178C-71B3-4302-B4BA-86697A2AF9CF}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |  
"{70102189-5886-4D1F-AE83-5B89E756182C}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |  
"{82686C04-3783-42BA-811C-5A94D516953A}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |  
"{A3B54C86-7AE3-45A0-B6D3-81AB1265AD77}" = protocol=17 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\backupsvc.exe |  
"{A952A1B6-C9EA-4529-B69A-EDF2900874E8}" = protocol=6 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\schedulersvc.exe |  
"{AB42A684-3102-4A5F-A913-CC94AFEB8DAB}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd9\powerdvd9.exe |  
"{BC18187F-4D11-4ACC-B8D9-9BA50C1873DD}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |  
"{C06B0204-533B-425C-A8C2-86CD5410B468}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |  
"{C188D65D-215E-49E8-81F8-989E590899A2}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |  
"{C5F5F016-1413-407D-8965-1FB3813FA868}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe |  
"{C69BB884-3AF3-424D-8418-5B8B098D82A4}" = protocol=17 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\schedulersvc.exe |  
"{D0C8D5EA-A4BA-4B32-AECB-63EA5C96CA29}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |  
"{D25E6C4B-793A-4BF4-80F9-5F9ADB17DEAE}" = protocol=6 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\backupsvc.exe |  
"{D452995D-1CB4-4624-98D2-42095158C325}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |  
"{DC701606-7F4D-47B1-9B1B-30B6BFC351C6}" = protocol=6 | dir=out | app=system |  
"{F317F11A-EB2F-4181-9E28-742825BFC37B}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |  
"{FA43822B-5D0C-4535-9C7E-7672BC32C51A}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |  
"{FE8E75E1-5D0B-4E53-ACD1-5D227106BD38}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |  
   ========== HKEY_LOCAL_MACHINE Uninstall List ========== 
  
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] 
"{0E3DAF3D-FF69-345A-A99E-1FED304CA083}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack 
"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant 
"{1F557316-CFC0-41BD-AFF7-8BC49CE444D7}" = Shredder 
"{2023DAEC-90C2-E042-909F-BFAD8AC9B60C}" = ATI Catalyst Install Manager 
"{5EB6F3CB-46F4-451F-A028-7F6D8D35D7D0}" = Windows Live Language Selector 
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight 
"{90140000-006D-0407-1000-0000000FF1CE}" = Microsoft Office Klick-und-Los 2010 
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting 
"{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = ALPS Touch Pad Driver 
"{A84DB02B-9C2B-4272-9D2D-A80E00A56513}" = Broadcom Gigabit NetLink Controller 
"{B112FEE4-3837-420D-9C10-1C5D5436407A}" = ccc-utility64 
"{D5876F0A-B2E9-4376-B9F5-CD47B7B8D820}" = Windows Live Remote Client Resources 
"{D930AF5C-5193-4616-887D-B974CEFC4970}" = Windows Live Remote Service Resources 
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter 
"{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client 
"{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service 
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile 
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin 64-bit 
"CCleaner" = CCleaner 
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile 
"Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack 
"WinRAR archiver" = WinRAR 4.01 (64-Bit) 
  
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] 
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer 
"{0D7CD0D9-4A88-4A63-8F91-3F4E8F371768}" = MyWinLocker 
"{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now Standard 
"{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2 
"{1DDB95A4-FD7B-4517-B3F1-2BCAA96879E6}" = Windows Live Writer Resources 
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update 
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions 
"{212BA4B5-4ED0-CCFD-9675-9D3DE3D049B4}" = Catalyst Control Center Localization All 
"{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8 
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com 
"{28DFDEAD-1084-0F3F-E068-9135FC876027}" = Catalyst Control Center InstallProxy 
"{2FCA5F46-55AA-B96E-87FA-47F5811E33AD}" = CCC Help Dutch 
"{30026C82-13BA-D7FF-E155-3D2B0C192A28}" = CCC Help Chinese Standard 
"{32022218-B297-B983-025B-A03A1C2B202C}" = CCC Help Finnish 
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery 
"{3DB0448D-AD82-4923-B305-D001E521A964}" = Acer ePower Management 
"{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}" = Windows Live PIMT Platform 
"{51F026FA-5146-4232-A8BA-1364740BD053}" = Acer Crystal Eye webcam 
"{58F4D244-314F-4D26-B5EF-C28AB32E22CB}_is1" = Acer GameZone Console 
"{6617E770-55EE-587D-06FA-B49A8A6F2EF4}" = CCC Help Korean 
"{679E3E0C-E913-CA59-6664-A54BE85193E2}" = CCC Help Spanish 
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE 
"{68A408B2-80E0-9191-6FDF-6F8318E94B71}" = CCC Help Portuguese 
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable 
"{72B776E5-4530-4C4B-9453-751DF87D9D93}" = Backup Manager Basic 
"{738BF5C3-AF7B-4BB0-B7EF-E505EFC756BE}" = MyWinLocker Suite 
"{76A32E41-F8B9-50B3-5CEE-DD42115DF9A2}" = CCC Help Chinese Traditional 
"{7EA8CE23-0C8C-6784-635C-D4F8AFB59AB5}" = ccc-core-static 
"{7F811A54-5A09-4579-90E1-C93498E230D9}" = Acer eRecovery Management 
"{813CFC98-FE1C-7249-49C8-017A227F8574}" = CCC Help Danish 
"{8218F4EC-35C0-2CEB-1ABC-24E114270157}" = CCC Help Italian 
"{823FB107-94F5-405C-8B3D-6F6E66C3A310}" = Catalyst Control Center - Branding 
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111199750}" = Cake Mania 
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111307457}" = Galapago 
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111355427}" = Poker Pop 
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112662477}" = Merriam Websters Spell Jam 
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11273477}" = Amazonia 
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113786380}" = Heroes of Hellas 
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}" = Dream Day First Home 
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11505173}" = Airport Mania First Flight 
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11531173}" = Farm Frenzy 2 
"{83C1DE40-C1D3-9F4B-C5E1-12A3835FE1F0}" = CCC Help Polish 
"{859D4022-B76D-40DE-96EF-C90CDA263F44}" = Windows Live Writer 
"{873E4648-6F6E-47F6-A7B2-A6F8DFABDCE6}" = Windows Live Messenger 
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime 
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT 
"{8FDE7841-D6E0-26FE-B923-D2F3533C7C9C}" = CCC Help Swedish 
"{90140011-0066-0407-0000-0000000FF1CE}" = Microsoft Office Starter 2010 - Deutsch 
"{91C6CFF0-F3A1-CB93-9072-446C8B8774C1}" = CCC Help Japanese 
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker 
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010 
"{98ADCC35-E388-B4D7-1353-6964CEF74CF1}" = CCC Help French 
"{98EE2259-4D34-6709-1447-6759E0C7C4E8}" = CCC Help Greek 
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail 
"{9E48FF52-082C-4CC2-BB67-6E10D09C0431}" = Windows Live UX Platform Language Pack 
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR 
"{A38939B8-4DE7-896D-01FA-C183EA33BBDA}" = CCC Help Russian 
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer 
"{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}" = CyberLink PowerDVD 9 
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common 
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer 
"{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.1 MUI 
"{ACFBE99B-6981-4513-B17E-A2683CEB9EE5}" = Windows Live Mesh 
"{B113D18C-67B0-4FB7-B329-E89B66194AE6}" = Windows Live Fotogalerie 
"{B1239994-A850-44E2-BED8-E70A21124E16}" = Windows Live Mail 
"{B60119FB-0A43-69BC-1D2C-EE3A91A85300}" = CCC Help Hungarian 
"{BE1738EB-A0EA-0A4F-F9A8-A8731F1B88CC}" = Catalyst Control Center Graphics Previews Common 
"{C2695E83-CF1D-43D1-84FE-B3BEC561012A}" = Shredder 
"{C2AB7DC4-489E-4BE9-887A-52262FBADBE0}" = Windows Live Photo Common 
"{C5398A89-516C-4DAF-BA07-EE7949090E56}" = Windows Live Mesh ActiveX control for remote connections 
"{CAAB5F83-B7D1-6AD9-1D86-D37C3E1277C5}" = CCC Help Thai 
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform 
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64 
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform 
"{D7AE3689-D40E-DAFE-385D-2B45308E59B6}" = CCC Help English 
"{DD3E3DAA-B005-54D2-CF94-0C919F55CFCE}" = CCC Help Norwegian 
"{DD89CE29-BC88-40C6-A845-E2548682C5D6}" = Alcor Micro USB Card Reader 
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh 
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 
"{E11A86A7-B346-5FA0-A84B-8805B87580B4}" = CCC Help Turkish 
"{E4E88B54-4777-4659-967A-2EED1E6AFD83}" = Windows Live Movie Maker 
"{E8ED6EE9-B477-CD27-048A-6291A719A8A1}" = CCC Help German 
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger 
"{EE171732-BEB4-4576-887D-CB62727F01CA}" = Acer Updater 
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] 
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver 
"{F95E4EE0-0C6E-4273-B6B9-91FD6F071D76}" = Windows Live Essentials 
"{FB3EB614-9284-5C13-6BDB-C8915F180881}" = CCC Help Czech 
"Acer Registration" = Acer Registration 
"Acer Screensaver" = Acer ScreenSaver 
"Acer Welcome Center" = Welcome Center 
"Adobe AIR" = Adobe AIR 
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX 
"Avira AntiVir Desktop" = Avira Free Antivirus 
"Identity Card" = Identity Card 
"InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now 5 
"InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2 
"InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8 
"InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93}" = Acer Backup Manager 
"InstallShield_{738BF5C3-AF7B-4BB0-B7EF-E505EFC756BE}" = MyWinLocker Suite 
"InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}" = CyberLink PowerDVD 9 
"InstallShield_{DD89CE29-BC88-40C6-A845-E2548682C5D6}" = Alcor Micro USB Card Reader 
"LManager" = Launch Manager 
"Mozilla Firefox 8.0.1 (x86 de)" = Mozilla Firefox 8.0.1 (x86 de) 
"Office14.Click2Run" = Microsoft Office Klick-und-Los 2010 
"WinLiveSuite" = Windows Live Essentials 
   ========== Last 20 Event Log Errors ========== 
  
[ Application Events ] 
Error - 24.04.2012 04:17:00 | Computer Name = Kerstin-PC | Source = SideBySide | ID = 16842815 
Description = Fehler beim Generieren des Aktivierungskontextes für "c:\Program Files 
 (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll". Fehler in Manifest- oder 
 Richtliniendatei "c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe 
 AIR.dll" in Zeile 3.  Der Wert "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" 
 des "version"-Attributs im assemblyIdentity-Element ist ungültig. 
  
Error - 29.04.2012 09:06:02 | Computer Name = Kerstin-PC | Source = Application Virtualization Client | ID = 5009 
Description = {tid=8BC} Application Virtualization Client konnte keine Verbindung 
 mit der Datenstrom-URL 'file://C:\ProgramData\VirtualizedApplications\Patch_ready\{90140011-0066-0407-0000-0000000FF1CE}\8ee090cd-1715-42d5-884a-7b98498ad09f.dsft' 
 herstellen (Rückgabecode 27A02A0A-30007003, ursprünglicher Rückgabecode 27A02A0A-30007003). 
  
Error - 29.04.2012 09:15:54 | Computer Name = Kerstin-PC | Source = CVHSVC | ID = 100 
Description = Nur zur Information.  (Patch task for {90140011-0066-0407-0000-0000000FF1CE}): 
 DownloadLatest Failed: Zurzeit sind keine aktiven Netzwerkverbindungen verfügbar. 
 Der Vorgang wird von BITS wiederholt, sobald der Adapter über eine Verbindung verfügt.   
  
Error - 29.04.2012 14:40:31 | Computer Name = Kerstin-PC | Source = CVHSVC | ID = 100 
Description = Nur zur Information.  (Patch task for {90140011-0066-0407-0000-0000000FF1CE}): 
 DownloadLatest Failed: Zurzeit sind keine aktiven Netzwerkverbindungen verfügbar. 
 Der Vorgang wird von BITS wiederholt, sobald der Adapter über eine Verbindung verfügt.   
  
Error - 01.05.2012 09:47:05 | Computer Name = Kerstin-PC | Source = SideBySide | ID = 16842815 
Description = Fehler beim Generieren des Aktivierungskontextes für "c:\Program Files 
 (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll". Fehler in Manifest- oder 
 Richtliniendatei "c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe 
 AIR.dll" in Zeile 3.  Der Wert "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" 
 des "version"-Attributs im assemblyIdentity-Element ist ungültig. 
  
Error - 07.05.2012 03:22:44 | Computer Name = Kerstin-PC | Source = CVHSVC | ID = 100 
Description = Nur zur Information.  (Patch task for {90140011-0066-0407-0000-0000000FF1CE}): 
 DownloadLatest Failed: Der Servername oder die Serveradresse konnte nicht verarbeitet 
 werden.   
  
Error - 14.05.2012 13:28:03 | Computer Name = Kerstin-PC | Source = CVHSVC | ID = 100 
Description = Nur zur Information.  (Patch task for {90140011-0066-0407-0000-0000000FF1CE}): 
 DownloadLatest Failed: Der Servername oder die Serveradresse konnte nicht verarbeitet 
 werden.   
  
Error - 16.05.2012 00:07:33 | Computer Name = Kerstin-PC | Source = CVHSVC | ID = 100 
Description = Nur zur Information.  (Patch task for {90140011-0066-0407-0000-0000000FF1CE}): 
 DownloadLatest Failed: Zurzeit sind keine aktiven Netzwerkverbindungen verfügbar. 
 Der Vorgang wird von BITS wiederholt, sobald der Adapter über eine Verbindung verfügt.   
  
Error - 27.05.2012 03:22:09 | Computer Name = Kerstin-PC | Source = CVHSVC | ID = 100 
Description = Nur zur Information.  (Patch task for {90140011-0066-0407-0000-0000000FF1CE}): 
 DownloadLatest Failed: Zurzeit sind keine aktiven Netzwerkverbindungen verfügbar. 
 Der Vorgang wird von BITS wiederholt, sobald der Adapter über eine Verbindung verfügt.   
  
Error - 03.06.2012 09:19:13 | Computer Name = Kerstin-PC | Source = CVHSVC | ID = 100 
Description = Nur zur Information.  (Patch task for {90140011-0066-0407-0000-0000000FF1CE}): 
 DownloadLatest Failed: Zurzeit sind keine aktiven Netzwerkverbindungen verfügbar. 
 Der Vorgang wird von BITS wiederholt, sobald der Adapter über eine Verbindung verfügt.   
  
[ System Events ] 
Error - 19.06.2012 08:29:46 | Computer Name = Kerstin-PC | Source = bowser | ID = 8003 
Description =  
  
Error - 19.06.2012 08:42:25 | Computer Name = Kerstin-PC | Source = bowser | ID = 8003 
Description =  
  
Error - 19.06.2012 14:19:02 | Computer Name = Kerstin-PC | Source = bowser | ID = 8003 
Description =  
  
Error - 22.06.2012 04:45:15 | Computer Name = Kerstin-PC | Source = bowser | ID = 8003 
Description =  
  
Error - 22.06.2012 09:24:55 | Computer Name = Kerstin-PC | Source = bowser | ID = 8003 
Description =  
  
Error - 02.07.2012 08:54:26 | Computer Name = Kerstin-PC | Source = bowser | ID = 8003 
Description =  
  
Error - 02.07.2012 10:09:51 | Computer Name = Kerstin-PC | Source = bowser | ID = 8003 
Description =  
  
Error - 02.07.2012 11:50:33 | Computer Name = Kerstin-PC | Source = bowser | ID = 8003 
Description =  
  
Error - 03.07.2012 09:37:52 | Computer Name = Kerstin-PC | Source = bowser | ID = 8003 
Description =  
  
Error - 05.07.2012 10:11:55 | Computer Name = Kerstin-PC | Source = bowser | ID = 8003 
Description =  
  
  
< End of report >   --- --- ---  
es gibt noch keinerlei probleme mit meinem pc, bzw. habe ich noch keine bemerkt. 
ich hoffe, dass es auch keine geben wird ;)  
super, dass du dir die zeit nimmst mein wehwehchen zu untersuchen :D  
VIELEN DANK, lg kerstin    |