Guten Morgen, seit gestern bin ich ganz verzweifelt. Es sind keinerlei Downloads auf meinen PC mehr möglich. Ich kann weder E-Mail-Anhänge, noch Fotos oder sonst irgendeine Datei mehr herunterladen.
Die Bemerkung der verschiedenen Browser ist verschieden:
Chrome: Jeder versuchte Download wird mit dem Hinweis: "Fehler- Virus gefunden" abgebrochen.
Firefox: Der Download durchläuft den Virusscan und meldet erfolgreichen Download, aber am Speicherort ist die Datei micht gespeichert.
IE: Der Download von Fotos aus dem Internet ist möglich, E-Mail-Anhänge, wie .doc, enthalten angeblich einen Virus und werden beim Download gelöscht, das speichern oder ausführen von .exe (egal welche)wird wegen Viruswarnung abgebrochen.
Mein Antivirenprogramm ist AVG. Die einzige Virenverschiebung in Quarantäne hatte ich am 30.3.13, dort wurde ein Virus "JS/obfuscated" in die Quarantäne verschoben: Die Beschreibung lautet: C:/Users/Name/Appdata/Local/Temp/plugtmt-8/plugin-changeLog.pdf
Seit dem Datum hat AVG keine weitere Bedrohung gefunden.
Habe ich mir etwas eingefangen? Ich kann ja keinerlei weitere Software aus dem Internet zur genaueren Analyse herunterladen. Bitte Helft mir.
Mein Betriebsystem ist Windows Vista, bitte fragt welche Infos noch nötig sind.
OTL.txt
========== Files/Folders - Created Within 30 Days ==========
[2013.04.08 10:57:48 | 000,000,000 | ---D | C] -- C:\Users\Ilka\Desktop\otl
[2013.04.08 10:36:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2013.04.07 19:31:53 | 000,000,000 | ---D | C] -- C:\Users\Ilka\Desktop\arnie handy photos
[2013.03.29 21:01:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
[2013.03.29 20:56:53 | 000,000,000 | ---D | C] -- C:\Users\Ilka\AppData\Roaming\AVG2013
[2013.03.29 20:55:59 | 000,000,000 | ---D | C] -- C:\Users\Ilka\AppData\Roaming\TuneUp Software
[2013.03.29 20:53:34 | 000,000,000 | -H-D | C] -- C:\$AVG
[2013.03.29 20:53:34 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG2013
[2013.03.29 20:51:08 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files
[2013.03.29 20:51:08 | 000,000,000 | ---D | C] -- C:\Users\Ilka\AppData\Local\MFAData
[2013.03.29 20:51:08 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData
[2013.03.29 20:51:08 | 000,000,000 | ---D | C] -- C:\Users\Ilka\AppData\Local\Avg2013
[2013.03.25 18:46:49 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG8UPG
[2013.03.23 13:09:27 | 000,000,000 | ---D | C] -- C:\Users\Ilka\AppData\Local\Origin
[2013.03.23 13:08:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
[2013.03.22 22:25:34 | 000,000,000 | ---D | C] -- C:\Users\Ilka\AppData\Roaming\Origin
[2013.03.22 22:23:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Origin
[2013.03.22 09:52:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
[2013.03.17 13:08:47 | 000,000,000 | ---D | C] -- C:\Users\Ilka\Desktop\Ilka
[2013.03.13 10:00:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2013.04.08 10:56:00 | 000,001,116 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-301557635-3079252342-3213273295-1003UA.job
[2013.04.08 10:49:59 | 000,001,106 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013.04.08 10:36:16 | 000,000,888 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2013.04.08 10:27:02 | 000,237,225 | ---- | M] () -- C:\Users\Ilka\Desktop\blumentest.jpeg
[2013.04.08 10:23:00 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013.04.08 10:10:00 | 000,000,336 | ---- | M] () -- C:\Windows\tasks\HP Photo Creations Communicator.job
[2013.04.08 09:54:41 | 000,066,747 | ---- | M] () -- C:\Users\Ilka\Desktop\blumen.jpg
[2013.04.08 09:50:00 | 000,001,102 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013.04.08 09:37:21 | 001,751,980 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013.04.08 09:37:21 | 000,743,744 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2013.04.08 09:37:21 | 000,692,124 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013.04.08 09:37:21 | 000,176,562 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2013.04.08 09:37:21 | 000,142,970 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013.04.08 09:31:13 | 000,003,760 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2013.04.08 09:31:13 | 000,003,760 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2013.04.08 09:31:09 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013.04.07 22:17:42 | 000,002,209 | ---- | M] () -- C:\Users\Public\Desktop\Die Sims™ 3 Reiseabenteuer.lnk
[2013.04.07 22:15:27 | 000,002,029 | ---- | M] () -- C:\Users\Public\Desktop\Die Sims™ 3 Traumkarrieren.lnk
[2013.04.07 19:39:50 | 000,006,906 | ---- | M] () -- C:\Users\Ilka\Desktop\badezimmer beispiel.jpg
[2013.04.07 14:05:31 | 000,001,913 | ---- | M] () -- C:\Users\Public\Desktop\Die*Sims™*3.lnk
[2013.04.07 13:30:17 | 000,017,392 | ---- | M] () -- C:\Users\Ilka\Desktop\Schrank beschreibung.odt
[2013.04.06 11:59:30 | 000,017,977 | ---- | M] () -- C:\Users\Ilka\Desktop\defensa multa1.odt
[2013.04.06 10:30:04 | 000,001,064 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-301557635-3079252342-3213273295-1003Core.job
[2013.04.03 21:09:04 | 007,600,116 | ---- | M] () -- C:\Users\Ilka\Desktop\5neu.jpg
[2013.04.03 21:09:03 | 006,978,149 | ---- | M] () -- C:\Users\Ilka\Desktop\4neu.jpg
[2013.04.03 21:08:51 | 005,637,235 | ---- | M] () -- C:\Users\Ilka\Desktop\3neu.jpg
[2013.04.03 21:08:44 | 004,475,545 | ---- | M] () -- C:\Users\Ilka\Desktop\6neu.jpg
[2013.04.03 21:08:22 | 003,226,500 | ---- | M] () -- C:\Users\Ilka\Desktop\2neu.jpg
[2013.04.03 21:08:09 | 002,595,199 | ---- | M] () -- C:\Users\Ilka\Desktop\1neu.jpg
[2013.04.03 19:41:26 | 000,002,029 | ---- | M] () -- C:\Users\Ilka\Desktop\Google Chrome.lnk
[2013.03.27 09:51:00 | 068,191,196 | ---- | M] () -- C:\Windows\SysNative\drivers\Avg\incavi.avm
[2013.03.24 12:01:38 | 000,012,996 | ---- | M] () -- C:\Users\Ilka\Documents\EA beschwerde 24.3.13.odt
[2013.03.23 13:08:17 | 000,000,818 | ---- | M] () -- C:\Users\Public\Desktop\Origin.lnk
[2013.03.22 09:52:15 | 000,002,115 | ---- | M] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2013.03.17 16:56:43 | 000,028,513 | ---- | M] () -- C:\Users\Ilka\Documents\CONTRATO_DE_COMPRAVENTA BESSER!.pdf
[2013.03.17 16:55:11 | 000,060,055 | ---- | M] () -- C:\Users\Ilka\Documents\Compraventa coches internet.pdf
[2013.03.17 16:50:13 | 000,017,937 | ---- | M] () -- C:\Users\Ilka\Documents\Kaufvertrag Auto spanisch neutral.odt
[2013.03.17 13:46:40 | 000,009,709 | ---- | M] () -- C:\Users\Ilka\AppData\Local\recently-used.xbel
[2013.03.14 21:39:39 | 000,075,773 | ---- | M] () -- C:\Users\Ilka\Documents\recibo.jpg
[2013.03.13 11:52:00 | 000,010,842 | ---- | M] () -- C:\Users\Ilka\Documents\Kontoverbindungen.odt
[2013.03.13 10:11:43 | 000,019,815 | ---- | M] () -- C:\Users\Ilka\Documents\Konto kündigung.odt
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ==========
[2013.04.08 10:36:16 | 000,000,900 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2013.04.08 10:36:16 | 000,000,888 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2013.04.08 10:27:02 | 000,237,225 | ---- | C] () -- C:\Users\Ilka\Desktop\blumentest.jpeg
[2013.04.08 09:55:11 | 000,066,747 | ---- | C] () -- C:\Users\Ilka\Desktop\blumen.jpg
[2013.04.07 22:17:42 | 000,002,209 | ---- | C] () -- C:\Users\Public\Desktop\Die Sims™ 3 Reiseabenteuer.lnk
[2013.04.07 22:15:27 | 000,002,029 | ---- | C] () -- C:\Users\Public\Desktop\Die Sims™ 3 Traumkarrieren.lnk
[2013.04.07 19:40:22 | 000,006,906 | ---- | C] () -- C:\Users\Ilka\Desktop\badezimmer beispiel.jpg
[2013.04.07 14:05:31 | 000,001,913 | ---- | C] () -- C:\Users\Public\Desktop\Die*Sims™*3.lnk
[2013.04.07 13:30:14 | 000,017,392 | ---- | C] () -- C:\Users\Ilka\Desktop\Schrank beschreibung.odt
[2013.04.06 11:37:01 | 000,017,977 | ---- | C] () -- C:\Users\Ilka\Desktop\defensa multa1.odt
[2013.04.03 21:06:56 | 007,600,116 | ---- | C] () -- C:\Users\Ilka\Desktop\5neu.jpg
[2013.04.03 21:06:56 | 006,978,149 | ---- | C] () -- C:\Users\Ilka\Desktop\4neu.jpg
[2013.04.03 21:06:56 | 005,637,235 | ---- | C] () -- C:\Users\Ilka\Desktop\3neu.jpg
[2013.04.03 21:06:56 | 004,475,545 | ---- | C] () -- C:\Users\Ilka\Desktop\6neu.jpg
[2013.04.03 21:06:56 | 003,226,500 | ---- | C] () -- C:\Users\Ilka\Desktop\2neu.jpg
[2013.04.03 21:06:56 | 002,595,199 | ---- | C] () -- C:\Users\Ilka\Desktop\1neu.jpg
[2013.03.24 12:01:35 | 000,012,996 | ---- | C] () -- C:\Users\Ilka\Documents\EA beschwerde 24.3.13.odt
[2013.03.23 13:08:17 | 000,000,818 | ---- | C] () -- C:\Users\Public\Desktop\Origin.lnk
[2013.03.17 16:56:42 | 000,028,513 | ---- | C] () -- C:\Users\Ilka\Documents\CONTRATO_DE_COMPRAVENTA BESSER!.pdf
[2013.03.17 16:55:10 | 000,060,055 | ---- | C] () -- C:\Users\Ilka\Documents\Compraventa coches internet.pdf
[2013.03.17 16:50:11 | 000,017,937 | ---- | C] () -- C:\Users\Ilka\Documents\Kaufvertrag Auto spanisch neutral.odt
[2013.03.17 13:46:40 | 000,009,709 | ---- | C] () -- C:\Users\Ilka\AppData\Local\recently-used.xbel
[2013.03.14 21:39:38 | 000,075,773 | ---- | C] () -- C:\Users\Ilka\Documents\recibo.jpg
[2013.03.13 11:51:58 | 000,010,842 | ---- | C] () -- C:\Users\Ilka\Documents\Kontoverbindungen.odt
[2013.03.13 10:11:41 | 000,019,815 | ---- | C] () -- C:\Users\Ilka\Documents\Konto kündigung.odt
[2012.10.21 13:29:54 | 000,015,873 | ---- | C] () -- C:\Windows\SysWow64\Inetde.dll
[2012.08.13 12:08:08 | 000,014,217 | ---- | C] () -- C:\Program Files (x86)\readme.html
[2012.05.08 15:15:36 | 000,000,005 | ---- | C] () -- C:\Program Files (x86)\basis-link
[2010.07.21 08:41:36 | 000,090,624 | ---- | C] () -- C:\Users\Ilka\AppData\Roaming\InstallProxy.exe
[2010.02.06 18:02:02 | 000,079,344 | ---- | C] () -- C:\ProgramData\nvModes.001
[2010.02.06 17:45:37 | 000,079,344 | ---- | C] () -- C:\ProgramData\nvModes.dat
[2010.01.06 17:38:43 | 005,046,640 | ---- | C] () -- C:\Users\Ilka\Paint.NET.3.5.2.Install.exe
[2009.03.19 13:00:28 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2009.02.17 23:58:01 | 074,030,661 | ---- | C] () -- C:\Users\Ilka\dvd-cover.zip
[2009.01.01 20:29:40 | 000,023,552 | ---- | C] () -- C:\Users\Ilka\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008.12.13 17:55:09 | 000,007,916 | ---- | C] () -- C:\Users\Ilka\AppData\Local\d3d9caps.dat
========== ZeroAccess Check ==========
[2006.11.02 17:30:40 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012.06.08 19:59:03 | 012,899,840 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012.06.08 19:47:00 | 011,586,048 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.04.11 01:11:16 | 000,891,392 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2009.04.11 00:28:20 | 000,614,912 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2008.01.21 04:50:58 | 000,513,024 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2012.02.22 22:33:16 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\Ashampoo
[2013.03.29 20:56:53 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\AVG2013
[2013.02.10 22:49:58 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\Babylon
[2010.11.14 22:12:54 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\Bidgood Svcs
[2012.05.19 12:21:57 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\Black Sea Studios
[2012.04.28 14:16:13 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\calibre
[2010.08.22 22:33:16 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\Canneverbe Limited
[2012.12.18 20:48:07 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\Canon
[2013.02.10 11:28:12 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\CustomBrushesMini
[2012.05.20 17:24:08 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\DAEMON Tools Lite
[2011.08.28 23:12:43 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\DAEMON Tools Pro
[2010.10.07 23:24:55 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\de.myphotobook.creator.001F9DF2D0BAABEB11F42CCEE43224607B61109C.1
[2012.11.07 10:54:20 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\Dropbox
[2013.01.03 12:12:27 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\DVDVideoSoft
[2011.02.27 13:00:23 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\DVDVideoSoftIEHelpers
[2009.10.28 00:05:01 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\FileZilla
[2009.12.19 15:07:06 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\Grand Ages Rome
[2009.04.15 21:14:53 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\Grand Ages Rome Demo
[2013.02.18 14:22:00 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\gtk-2.0
[2009.12.20 21:09:29 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\ICQ
[2009.09.20 13:11:37 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\Image Zone Express
[2011.11.10 22:16:59 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\LaunchPad
[2009.01.03 13:21:45 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\OpenOffice.org
[2009.08.27 13:22:05 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\Opera
[2013.03.23 13:09:44 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\Origin
[2009.10.20 22:11:12 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\PC Suite
[2012.11.08 14:05:39 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\pdfforge
[2009.01.08 15:17:50 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\Printer Info Cache
[2011.03.07 15:04:55 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\ProtectDisc
[2009.10.20 22:08:10 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\Samsung
[2013.03.02 10:58:50 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\SPORE
[2011.05.04 23:02:21 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\Spotify
[2012.05.20 17:05:40 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\TeamViewer
[2009.04.09 13:44:17 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\The Games Company
[2008.12.13 18:38:35 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\TMP
[2010.03.21 19:27:40 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\TomTom
[2013.03.29 20:55:59 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\TuneUp Software
[2012.11.15 10:44:01 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\Visan
[2012.03.22 11:33:36 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\VoipStunt
[2010.01.06 18:04:39 | 000,000,000 | ---D | M] -- C:\Users\Ilka\AppData\Roaming\WTouch
========== Purity Check ==========
< End of report >
Extras.txt
OTL EXTRAS Logfile:
Code:
OTL Extras logfile created on: 08.04.2013 10:59:35 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Ilka\Desktop\otl
64bit-Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
8,00 Gb Total Physical Memory | 5,42 Gb Available Physical Memory | 67,73% Memory free
16,19 Gb Paging File | 13,22 Gb Available in Paging File | 81,67% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 698,63 Gb Total Space | 303,49 Gb Free Space | 43,44% Space Free | Partition Type: NTFS
Drive I: | 5,12 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
Computer Name: ILKA-PC | User Name: Ilka | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [CEWE FOTOSCHAU] -- "C:\Program Files (x86)\CeWe Color\Mein CEWE FOTOBUCH\CEWE FOTOSCHAU.exe" -d "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Mein CEWE FOTOBUCH] -- "C:\Program Files (x86)\CeWe Color\Mein CEWE FOTOBUCH\Mein CEWE FOTOBUCH.exe" "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [CEWE FOTOSCHAU] -- "C:\Program Files (x86)\CeWe Color\Mein CEWE FOTOBUCH\CEWE FOTOSCHAU.exe" -d "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Mein CEWE FOTOBUCH] -- "C:\Program Files (x86)\CeWe Color\Mein CEWE FOTOBUCH\Mein CEWE FOTOBUCH.exe" "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = 9F 9E 16 8C DC 5B C8 01 [binary data]
"VistaSp2" = BE A0 B7 2B BF B4 CA 01 [binary data]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"oobe_av" = 1
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0D88DBDF-4DB9-405E-8370-96A128FC8868}" = lport=2869 | protocol=6 | dir=in | app=system |
"{14A0DCB1-97C7-4A41-B013-A54434B2CB88}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe |
"{17115F2A-FB30-4CCB-87EE-7DE37CC5C941}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{1C54907B-C2EA-42E5-BAC3-56EEE23BE884}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{21B44EB0-5DE9-4265-A75F-B17408C46C35}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{29F56DE1-003F-4D3B-AF82-10D992317728}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{2D38CE79-7553-4B96-B181-1F8463AF6562}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{3BBCD80D-B8D4-43A9-81C5-86A5E89FE79E}" = rport=445 | protocol=6 | dir=out | app=system |
"{3BD72789-3CE7-4EDC-AFEA-38AD0AFDBFBC}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{4C205C88-6464-40EB-A9FD-7B241ED0D129}" = rport=137 | protocol=17 | dir=out | app=system |
"{5A8E5508-52CC-4CFE-95F4-AA46FFCCBE30}" = rport=138 | protocol=17 | dir=out | app=system |
"{67D2A658-332C-45C5-944A-1C31F17098B7}" = lport=445 | protocol=6 | dir=in | app=system |
"{80402851-54E9-4698-86C2-DA06B90AB12D}" = rport=139 | protocol=6 | dir=out | app=system |
"{825AF40A-544B-47CA-8207-B9EB2326507B}" = lport=137 | protocol=17 | dir=in | app=system |
"{86305B37-DD58-4273-AE0F-4A8703F501CF}" = lport=138 | protocol=17 | dir=in | app=system |
"{8D53EF5B-686C-4B55-9387-70A5003A7C36}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |
"{A353C321-E512-43AF-A4FD-60632B3B0A58}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{C3EE0451-35C8-4F3F-A003-EB7628682701}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{C8E2B9B1-85D2-4ABB-9284-D8966614EB00}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{CE2427F6-0EE5-45EB-B8A5-2D66962F3231}" = lport=139 | protocol=6 | dir=in | app=system |
"{E9EE68EB-2AAF-4F15-8CBE-85ACD81C6EBA}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{FB1B411F-9C9E-48E1-91E0-395D20916E8A}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{05039092-70A6-4989-90A1-A26993B3CA17}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{0796B10C-E8D5-4397-B909-C9F97329EADF}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\samsung new pc studio\npsvsvr.exe |
"{10AA81E1-5804-48B8-912D-3D444836A62D}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{11291592-8525-4F48-BE1F-BBB6AED834F0}" = protocol=6 | dir=in | app=c:\program files (x86)\firefly studios\stronghold crusader\stronghold crusader.exe |
"{184012D6-15BC-4914-BEB0-25ECC1A7D9BC}" = protocol=17 | dir=in | app=c:\program files (x86)\firefly studios\stronghold 2\stronghold2.exe |
"{1DBEEBCB-C878-4E95-AB24-12DE25441B41}" = protocol=6 | dir=in | app=c:\program files (x86)\firefly studios\stronghold legends\strongholdlegends.exe |
"{25B109FC-1FF1-424A-99F1-4E75EE7BC335}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\samsung new pc studio\npsvsvr.exe |
"{34B5F60F-28A3-4F45-9C98-376AAF502AFA}" = protocol=6 | dir=in | app=c:\program files (x86)\firefly studios\stronghold crusader\stronghold_crusader_extreme.exe |
"{35997B5D-56BF-4BAF-BAA9-DE1C1E1DB7B3}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2013\avgmfapx.exe |
"{3B4ABD1A-C6D1-41DF-91EC-08ADC4CD774F}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed\assassinscreed_dx9.exe |
"{4CAF9FEE-4938-4B46-BDC7-DA37AD29A71E}" = protocol=17 | dir=in | app=c:\program files (x86)\firefly studios\stronghold crusader\stronghold_crusader_extreme.exe |
"{4D13EDB4-3DFF-4019-A80E-0A9B75975563}" = protocol=17 | dir=in | app=c:\program files\windows media player\wmplayer.exe |
"{58EB76C5-3292-43D2-B3F2-B737489F6558}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{5B28EDB7-3B67-49F0-88C9-12909D5D6188}" = protocol=6 | dir=out | app=c:\program files (x86)\windows media player\wmplayer.exe |
"{5F2CF4FC-05D5-42C3-805D-4D708EFAF25A}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed\assassinscreed_dx9.exe |
"{6045DF20-EC3D-48E0-BB27-6B976184551D}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2013\avgdiagex.exe |
"{62F70B98-2850-4622-A319-0766A1878316}" = protocol=17 | dir=in | app=c:\program files (x86)\firefly studios\stronghold legends\strongholdlegends.exe |
"{636D76C3-C536-4A16-B919-C2B74CE1D5C3}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{63B101CF-044D-4F63-ABA0-8C04FB2C43A8}" = protocol=6 | dir=in | app=c:\users\ilka\appdata\local\temp\dsoclient\dlcache\app.n3app |
"{6643CEB0-AF22-4487-8447-D0C2C45CE4FE}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\die siedler - aufstieg eines königreichs\base\bin\settlers6.exe |
"{69C46F40-C5A3-4A7D-BE5C-4BE9D78A96D8}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{6DD99070-EFD0-4660-9F10-A6FDB85A20D2}" = protocol=17 | dir=out | app=c:\program files\windows media player\wmplayer.exe |
"{6E2476FA-EEE8-4A21-B429-44BDA876278E}" = protocol=17 | dir=in | app=c:\program files (x86)\windows media player\wmplayer.exe |
"{6E540632-FA6B-400D-BD8A-36DF3905AE36}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{7838DA94-B79D-436F-A052-247035F2AC6D}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed\assassinscreed_dx10.exe |
"{78D18155-326C-420D-8AEE-E77C711102ED}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{7D0FC3C1-AA20-48EF-9F7B-6CBD19C51076}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{82055371-5BEE-4366-8CF1-6661AB894CD8}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\samsung new pc studio\npsasvr.exe |
"{85241DA0-75A6-4A2A-8C44-268DF73E37C6}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{8B68FB90-82B3-4D33-A230-CE04A628661C}" = protocol=6 | dir=in | app=c:\program files (x86)\ea play\create demo\pc\create.exe |
"{8C3B68F3-EE1C-48B1-99BA-B5F2677F665E}" = protocol=17 | dir=out | app=c:\program files (x86)\windows media player\wmplayer.exe |
"{8D3B5253-252A-4B59-BA8E-8EE48343CE39}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{8F0B18EF-5024-43A0-962F-DC6645FA6B35}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\samsung new pc studio\npsvsvr.exe |
"{8FCC10C2-A955-4B18-BED6-1E999C63F2C4}" = dir=in | app=c:\program files (x86)\avg\avg8\avgupd.exe |
"{9420DD25-01B0-435A-AB6E-ADB5B0FC9FD1}" = protocol=6 | dir=in | app=c:\program files (x86)\firefly studios\stronghold 2\stronghold2.exe |
"{97FFE39E-2F24-4CB6-87EF-B7514D9234DC}" = protocol=17 | dir=in | app=c:\users\ilka\appdata\roaming\dropbox\bin\dropbox.exe |
"{9BD0EFC4-DAD1-4DCE-B3EF-3DCF69D3537E}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\samsung new pc studio\npsasvr.exe |
"{9E433FE2-9B15-4212-B3CF-EBA8084EF0B6}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\samsung new pc studio\npsvsvr.exe |
"{A50D2128-51FA-4832-9F5F-EBB9111372E1}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\samsung new pc studio\npsasvr.exe |
"{ACA95B81-1E55-40B5-A5AF-D2A22C60D0ED}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed\assassinscreed_dx10.exe |
"{B3C20EF0-0CA6-4E44-96C6-E81079546388}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{B6BA87A7-3C76-4C37-B243-DF447A625BEC}" = protocol=6 | dir=in | app=c:\users\ilka\appdata\roaming\dropbox\bin\dropbox.exe |
"{BD81A6CD-62C0-4D29-8162-49159AD5C6BF}" = protocol=6 | dir=in | app=c:\program files (x86)\voipstunt.com\voipstunt\voipstunt.exe |
"{BDD8B7EF-A6C2-4E8A-887E-CD1895B556AD}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{BFA80417-296B-47DF-95E4-D40EE312FD9F}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2013\avgdiagex.exe |
"{C474F0E0-D0E9-474F-87BD-875E37BA4610}" = dir=in | app=c:\program files (x86)\windows live\messenger\wlcsdk.exe |
"{C9E360B6-9B30-4A3A-B57F-A0CE05187CCA}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\die siedler - aufstieg eines königreichs\base\bin\settlers6.exe |
"{CF1889FA-7692-46A1-B4BF-20980E562CB7}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{D3C9A3FA-26EC-439D-8122-DC5B35302078}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{D60572BC-261B-40E4-8192-A2094EAE9042}" = protocol=17 | dir=in | app=c:\program files (x86)\firefly studios\stronghold crusader\stronghold crusader.exe |
"{DBD6EB89-93CA-4B9A-9973-93E941880E06}" = protocol=17 | dir=in | app=c:\users\ilka\appdata\local\temp\dsoclient\dlcache\app.n3app |
"{DC0E5673-1646-4433-835C-CCE71A636885}" = protocol=6 | dir=out | app=c:\program files\windows media player\wmplayer.exe |
"{E4A457A5-204A-4CF2-9551-5869480CCF45}" = protocol=17 | dir=in | app=c:\program files (x86)\ea play\create demo\pc\create.exe |
"{E6644CDC-A268-4C2A-9546-93AEF7EDA1E7}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed\assassinscreed_launcher.exe |
"{E7CF7322-8157-4456-BF09-B3717FF0D8F6}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2013\avgmfapx.exe |
"{EC9D0123-AEB9-44C7-A915-FF8CDF1DEC69}" = protocol=17 | dir=in | app=c:\program files (x86)\voipstunt.com\voipstunt\voipstunt.exe |
"{F2EFBF02-DB3F-4FD6-A43A-1B998286D8A0}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed\assassinscreed_launcher.exe |
"{F430ECB0-D0C8-4070-A4C1-F447E018EEBE}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2013\avgnsa.exe |
"{F48D8FDB-6BDF-4437-B808-7D0909FC8840}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{F82BEC46-D8AB-4823-9DF0-D27BCA2123D2}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\samsung new pc studio\npsasvr.exe |
"{F8427E82-A1E4-4C32-BE8D-54F97D4C0335}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{FBBD68E0-3896-45DA-8E74-5BEEB34127B4}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2013\avgnsa.exe |
"TCP Query User{0128145F-2DAD-4722-939F-DAE9BE787C75}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
"TCP Query User{01C32938-2D91-49CD-BA93-8A84BB5A56C6}C:\program files (x86)\voipstunt.com\voipstunt\voipstunt.exe" = protocol=6 | dir=in | app=c:\program files (x86)\voipstunt.com\voipstunt\voipstunt.exe |
"TCP Query User{0CF2B4BB-8027-472D-89F8-6F98991EF1DD}C:\program files (x86)\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe |
"TCP Query User{362DA526-385C-4A17-9FFB-E2553279112A}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"TCP Query User{3829317E-4822-4A25-8761-EC042EDEFA31}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"TCP Query User{3A290094-8611-4ADB-9607-9A1B8DFF8630}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"TCP Query User{3A69181B-061E-4267-AB97-FB5B42F021C2}C:\program files (x86)\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\program files (x86)\spotify\spotify.exe |
"TCP Query User{4CCEA225-80C9-480C-97DD-CB3CAD9C7025}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
"TCP Query User{69C14B72-FAA7-4A4A-AA30-079443AF52AA}C:\program files (x86)\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\plugin\geplugin.exe |
"TCP Query User{80CFE6B1-73C8-46DE-A7CE-683C7E02157F}C:\program files (x86)\electronic arts\eadm\core.exe" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\eadm\core.exe |
"TCP Query User{8ADA8497-E60E-4364-A00D-9B5B87418D8B}C:\users\ilka\appdata\local\google\chrome\application\chrome.exe" = protocol=6 | dir=in | app=c:\users\ilka\appdata\local\google\chrome\application\chrome.exe |
"TCP Query User{8D2B8D50-0103-44B6-98D2-C77A4BA1787B}C:\program files (x86)\electronic arts\eadm\core.exe" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\eadm\core.exe |
"TCP Query User{969D52E0-3870-4FEF-AC16-FEAC8C1F8686}C:\users\ilka\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\ilka\appdata\roaming\dropbox\bin\dropbox.exe |
"TCP Query User{AD68137F-C826-4DE8-9CED-FEEBAEAACBD0}C:\program files (x86)\icq6.5\icq.exe" = protocol=6 | dir=in | app=c:\program files (x86)\icq6.5\icq.exe |
"TCP Query User{CD76811D-B10C-4CE0-9716-E4F36D3DE657}C:\program files (x86)\firefly studios\stronghold legends\strongholdlegends.exe" = protocol=6 | dir=in | app=c:\program files (x86)\firefly studios\stronghold legends\strongholdlegends.exe |
"TCP Query User{D36EE75B-62FD-413F-8D2D-505169BDB412}C:\program files (x86)\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe |
"UDP Query User{0D0C598E-422A-48DE-9129-F05278BB5A7A}C:\program files (x86)\electronic arts\eadm\core.exe" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\eadm\core.exe |
"UDP Query User{2D1B021B-E543-47F9-97B7-8F82409DC17D}C:\program files (x86)\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files (x86)\sopcast\sopcast.exe |
"UDP Query User{32DA4A59-DD52-4EDB-BC0B-7C78468D309A}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"UDP Query User{34147223-87EF-450E-818C-0B52C04E05E2}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"UDP Query User{4325E441-D755-4707-B44A-2D29A517F5EF}C:\users\ilka\appdata\local\google\chrome\application\chrome.exe" = protocol=17 | dir=in | app=c:\users\ilka\appdata\local\google\chrome\application\chrome.exe |
"UDP Query User{46E82933-FB01-434D-8DEE-4939B3910FD4}C:\program files (x86)\voipstunt.com\voipstunt\voipstunt.exe" = protocol=17 | dir=in | app=c:\program files (x86)\voipstunt.com\voipstunt\voipstunt.exe |
"UDP Query User{656BF307-A25E-4101-BD6F-13C9816D1140}C:\program files (x86)\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe |
"UDP Query User{6C6849C4-DD21-447F-9FA6-C5A8F3C31D21}C:\users\ilka\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\ilka\appdata\roaming\dropbox\bin\dropbox.exe |
"UDP Query User{8B64F133-3B43-4FFF-82A5-C34A1F7FE264}C:\program files (x86)\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\program files (x86)\spotify\spotify.exe |
"UDP Query User{8D903AF8-3113-489B-BEC0-EF8E2F710F09}C:\program files (x86)\electronic arts\eadm\core.exe" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\eadm\core.exe |
"UDP Query User{8ED38220-F977-4754-BAB5-14C363370A41}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
"UDP Query User{BAD9B908-C48F-43CD-9E6A-B91DFDB558A6}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
"UDP Query User{BE9C13F9-E0AB-4BE9-929F-4A4C9F892CF6}C:\program files (x86)\icq6.5\icq.exe" = protocol=17 | dir=in | app=c:\program files (x86)\icq6.5\icq.exe |
"UDP Query User{D964517E-A70C-4F9B-82D7-FE2BF9FCC24D}C:\program files (x86)\firefly studios\stronghold legends\strongholdlegends.exe" = protocol=17 | dir=in | app=c:\program files (x86)\firefly studios\stronghold legends\strongholdlegends.exe |
"UDP Query User{EC03955E-C756-4B67-9261-D93D64E68777}C:\program files (x86)\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\plugin\geplugin.exe |
"UDP Query User{F71FF9A2-8BF9-43EB-9927-07923C6D6012}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{052FDD78-A6EA-3187-8386-C82F4CA3A929}" = Microsoft .NET Framework 3.5 Language Pack SP1 - deu
"{0E3DAF3D-FF69-345A-A99E-1FED304CA083}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP495_series" = Canon MP495 series MP Drivers
"{1FBEA8BA-D40B-48BC-85BC-EE2D5575F27C}" = Microsoft SQL Server VSS Writer
"{21B133D6-5979-47F0-BE1C-F6A6B304693F}" = Visual Studio 2010 x64 Redistributables
"{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022
"{5254156F-AA77-499A-B7C1-D5581D44E788}" = Marvell Miniport Driver
"{529125EF-E3AC-4B74-97E6-F688A7C0F1C0}" = Paint.NET v3.5.10
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6A76BEAF-6D1F-4273-A79B-DA8410A2E56B}" = Apple Mobile Device Support
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{78F697ED-EC97-4D8D-881D-838984EA9855}" = 64 Bit HP CIO Components Installer
"{7C39E0D1-E138-42B1-B083-213EC2CF7692}" = Microsoft SQL Server Native Client
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0407-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (German) 2007
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9F0D08A0-5623-4EF6-A513-40048E20C4E0}" = AVG 2013
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA 3D Vision Treiber 310.90
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Systemsteuerung 310.90
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Grafiktreiber 310.90
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision Controller-Treiber 310.90
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX-Systemsoftware 9.12.1031
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 1.11.3
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
"{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148
"{F5AA006A-1ABE-4F16-B6E1-FEE1F7D38102}" = AVG 2013
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"AVG" = AVG 2013
"BC15EA930074932BB2C4B4493C9FD4EA95087D1A" = Windows-Treiberpaket - Nokia pccsmcfd (10/12/2007 6.85.4.0)
"GIMP-2_is1" = GIMP 2.8.4
"HP Solution Center & Imaging Support Tools" = HP Solution Center 13.0
"Microsoft .NET Framework 3.5 Language Pack SP1 - deu" = Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"NVIDIA Display Control Panel" = NVIDIA Display Control Panel
"SAMSUNG Mobile Composite Device" = SAMSUNG Mobile Composite Device Software
"SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set
"Samsung Mobile Modem Device" = Samsung Mobile Modem Device Software
"Samsung Mobile phone USB driver" = Samsung Mobile phone USB driver Software
"SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software
"SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software
"SAMSUNG USB Mobile Device" = SAMSUNG USB Mobile Device Software
"Shop for HP Supplies" = Shop for HP Supplies
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{021C4C4F-C93C-4425-BFFD-C2D16776BFAE}" = Visual C++ 8.0 Runtime Setup Package (x64)
"{028ED9C4-25EE-4DEE-9CF4-91034BC89B18}" = Microsoft SQL Server 2005 Express Edition (MSSMLBIZ)
"{07629207-FAA0-4F1A-8092-BF5085BE511F}" = Unterstützungsdateien für das Microsoft SQL Server-Setup (Englisch)
"{09298F26-A95C-31E2-9D95-2C60F586F075}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"{122ADF8C-DDA1-480C-9936-C88F2825B265}" = Apple Application Support
"{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime
"{16D2C649-CBA8-44EE-B730-12584667D487}" = Stronghold 2
"{18669FF9-C8FE-407a-9F70-E674896B1DB4}" = GPBaseService
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live-Uploadtool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{2303AEEA-0FA8-4AFD-80A9-8F86BA4B44D2}" = OpenOffice.org 3.4.1
"{259A8A5E-2886-4BED-9EF1-D5485282CCC3}" = Overlord
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 30
"{26A24AE4-039D-4CA4-87B4-2F83217009FF}" = Java 7 Update 9
"{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform
"{3700194C-C5DD-439A-BE06-A66960CA4C70}" = MSVCSetup
"{39AE731B-85B7-4004-8FF7-58989943A68B}" = GoGear SA19xx Device Manager
"{4422D20B-F530-4E65-8504-31396C9BC066}" = Google SketchUp 8
"{468D22C0-8080-11E2-B86E-B8AC6F98CCE3}" = Google Earth
"{471F7EDB-6C75-4195-B65D-800DCE4A9E1D}" = WDtransitionInstall_GD
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A70EF07-7F88-4434-BB61-D1DE8AE93DD4}" = SolutionCenter
"{4C58B5D8-5DCF-4AFF-900C-26ABADE10692}" = Integrity Tool
"{4cb9f93c-9edc-4be9-ae61-af128ddbecfa}" = Business Contact Manager für Outlook 2007 SP2
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.1
"{50120000-1105-0000-0000-0000000FF1CE}" = Microsoft Office 2007 Primary Interop Assemblies
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{60DE4033-9503-48D1-A483-7846BD217CA9}" = ICQ6.5
"{63FF21C9-A810-464F-B60A-3111747B1A6D}" = GPBaseService2
"{65422AD6-A33F-49C6-A02C-A6FD81FAAEB2}_is1" = Tropico Reloaded
"{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites
"{66A405D2-BA14-4594-BF36-B3B544F0754E}" = Stronghold Legends
"{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder
"{687FEF8A-8597-40b4-832C-297EA3F35817}" = BufferChm
"{6AFCA4E1-9B78-3640-8F72-A7BF33448200}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15}" = CustomerResearchQFolder
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7148F0A8-6813-11D6-A77B-00B0D0142000}" = Java 2 Runtime Environment, SE v1.4.2
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7911C404-9AFA-4BB2-B9B7-E47423D87528}" = Knights Of Honor
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{7E84FAC8-C518-40F9-9807-7455301D6D25}" = SamsungConnectivityCableDriver
"{805C9391-883B-4B17-BB31-2893C43230BD}" = AusweisApp
"{83E2CFA9-E0EB-4E08-9F85-43E577FF3D60}" = Windows Live Anmelde-Assistent
"{8405F097-7DC0-4B10-9D17-DF07C95FE61E}" = Create™ Demo
"{87E2B986-07E8-477a-93DC-AF0B6758B192}" = DocProcQFolder
"{8A74E887-8F0F-4017-AF53-CBA42211AAA5}" = Microsoft Sync Framework Runtime Native v1.0 (x86)
"{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}" = NVIDIA PhysX
"{8C3727F2-8E37-49E4-820C-03B1677F53B6}" = Stronghold Crusader Extreme
"{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}" = TomTom HOME Visual Studio Merge Modules
"{90120000-0015-0407-0000-0000000FF1CE}" = Microsoft Office Access MUI (German) 2007
"{90120000-0015-0407-0000-0000000FF1CE}_PROHYBRIDR_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2007
"{90120000-0016-0407-0000-0000000FF1CE}_PROHYBRIDR_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2007
"{90120000-0018-0407-0000-0000000FF1CE}_PROHYBRIDR_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0407-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (German) 2007
"{90120000-0019-0407-0000-0000000FF1CE}_PROHYBRIDR_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (German) 2007
"{90120000-001A-0407-0000-0000000FF1CE}_PROHYBRIDR_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2007
"{90120000-001B-0407-0000-0000000FF1CE}_PROHYBRIDR_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_PROHYBRIDR_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_PROHYBRIDR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_PROHYBRIDR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007
"{90120000-001F-0410-0000-0000000FF1CE}_PROHYBRIDR_{A23BFC95-4A73-410F-9248-4C2B48E38C49}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002A-0000-1000-0000000FF1CE}_PROHYBRIDR_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0407-1000-0000000FF1CE}_PROHYBRIDR_{A6353E8F-5B8D-47CC-8737-DFF032ED3973}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2007
"{90120000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2007
"{90120000-006E-0407-0000-0000000FF1CE}_PROHYBRIDR_{A6353E8F-5B8D-47CC-8737-DFF032ED3973}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{90A40407-6000-11D3-8CFE-0150048383C9}" = Microsoft Office 2003 Web Components
"{910F4A29-1134-49E0-AD8B-56E4A3152BD1}" = Die Sims™ 3 Traumkarrieren
"{91120000-0031-0000-0000-0000000FF1CE}" = Microsoft Office Professional Hybrid 2007
"{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A939D341-5A04-4E0A-BB55-3E65B386432D}" = Microsoft Office Small Business Connectivity Components
"{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder
"{AC599724-5755-48C1-ABE7-ABB857652930}" = PC Connectivity Solution
"{AC76BA86-7AD7-1031-7B44-A95000000001}" = Adobe Reader 9.5.4 - Deutsch
"{AED2DD42-9853-407E-A6BC-8A1D6B715909}" = Windows Live Messenger
"{AF5534DD-5F2C-CD72-3C88-C84C3A50C2D9}" = myphotobook.de
"{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}" = HP Update
"{B194272D-1F92-46DF-99EB-8D5CE91CB4EC}" = Adobe AIR
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{B8DBED1E-8BC3-4d08-B94A-F9D7D88E9BBF}" = HPSSupply
"{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}" = Die Sims™ 3 Reiseabenteuer
"{BD009869-6498-4CF9-9016-E9EA6E3742B2}" = The Whispered World
"{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86)
"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = Die Sims™ 3
"{C43326F5-F135-4551-8270-7F7ABA0462E1}" = HPProductAssistant
"{C66BF9FD-D367-4E13-8EB8-385FFEA20DB3}" = Oblivion
"{C6D91586-9F98-4CFD-9BC3-FC0800911005}" = SmartCard Reader Driver Installation
"{CAFA57E8-8927-4912-AFCF-B0AA3837E989}" = Windows Live Essentials
"{CF35000B-8247-449B-85C9-D9C2A5936683}" = GoGear SA19xx Device Manager
"{D2041A37-5FEC-49F0-AE5C-3F2FFDFAA4F4}" = Windows Live Call
"{D3F80A98-05AB-4D8C-9272-766CCFA6A48D}" = DIE SIEDLER - Aufstieg eines Königreichs
"{D61F7835-65DF-4662-9A71-CD51F8FC0CE4}" = Desktop Notifier
"{DF9F9A90-CEFD-4808-815F-E16932271031}" = Nero BackItUp 2 Essentials
"{E1BBBAC5-2857-4155-82A6-54492CE88620}" = Opera 9.64
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218
"{E6098043-1183-4580-89EF-423CBF807188}" = pdfforge Toolbar v4.6
"{EB21A812-671B-4D08-B974-2A347F0D8F70}" = HP Photosmart Essential
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}" = Microsoft Office Live Add-in 1.5
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"1489-3350-5074-6281" = JDownloader 0.9
"Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Ashampoo Burning Studio Elements_is1" = Ashampoo Burning Studio Elements 10.0.9
"Belltech Greeting Card Designer 5.3.2_is1" = Belltech Greeting Card Designer 5.3.2
"Biet-O-Matic v2.14.8" = Biet-O-Matic v2.14.8
"Business Contact Manager" = Business Contact Manager für Outlook 2007 SP2
"Canon MP495 series Benutzerregistrierung" = Canon MP495 series Benutzerregistrierung
"CANONIJPLM100" = Canon Inkjet Printer/Scanner/Fax Extended Survey Program
"CanonMyPrinter" = Canon My Printer
"CanonSolutionMenuEX" = Canon Solution Menu EX
"Ceville" = Ceville 1.0
"Chronicles of Mystery/DE-German_is1" = Das Vermächtnis: Testament of Sin
"Civitas3" = Grand Ages Rome 1.01
"DAEMON Tools Lite" = DAEMON Tools Lite
"de.myphotobook.creator.001F9DF2D0BAABEB11F42CCEE43224607B61109C.1" = myphotobook.de
"Deponia" = Deponia
"DivX Setup" = DivX-Setup
"Drakensang Online" = Drakensang Online
"Drakensang_is1" = Drakensang
"Drakensang_TRoT_is1" = Drakensang - Am Fluss der Zeit
"DVDVideoSoftTB Toolbar" = DVDVideoSoftTB Toolbar
"Easy-PhotoPrint EX" = Canon Easy-PhotoPrint EX
"Easy-WebPrint EX" = Canon Easy-WebPrint EX
"FileZilla Client" = FileZilla Client 3.2.8.1
"Free Audio CD Burner_is1" = Free Audio CD Burner version 1.4.8
"Free Studio_is1" = Free Studio version 4.7
"Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.11.37.1212
"HP Photo Creations" = HP Photo Creations
"InstallShield_{C6D91586-9F98-4CFD-9BC3-FC0800911005}" = SmartCard Reader Driver Installation
"InstallShield_{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"Mein CEWE FOTOBUCH" = Mein CEWE FOTOBUCH
"Microsoft SQL Server 2005" = Microsoft SQL Server 2005
"Mozilla Firefox 20.0 (x86 de)" = Mozilla Firefox 20.0 (x86 de)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"MP Navigator EX 4.0" = Canon MP Navigator EX 4.0
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"Origin" = Origin
"OWOK-NPAPI-20" = OWOK 2.0.0.4 NPAPI
"Patrizier II Gold_is1" = Patrizier II Gold
"Pen Tablet Driver" = Bamboo
"Picasa 3" = Picasa 3
"Picture Resize_is1" = Free Picture Resize Starter 4.5
"PIXresizer_is1" = PIXresizer 2.0.4
"PROHYBRIDR" = 2007 Microsoft Office system
"ProtectDisc Driver 11" = ProtectDisc Driver, Version 11
"Sam and Max - Season One" = Sam and Max - Season One 1.0
"Software Informer_is1" = Software Informer 1.0 BETA
"Songr" = Songr
"Spotify" = Spotify
"SystemRequirementsLab" = System Requirements Lab
"TomTom HOME" = TomTom HOME 2.7.3.1894
"Uninstall_is1" = Uninstall 1.0.0.1
"VoipStunt_is1" = VoipStunt
"Wacom WebTabletPlugin for IE" = WebTablet IE Plugin
"Wacom WebTabletPlugin for Netscape" = WebTablet Netscape Plugin
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Dropbox" = Dropbox
"Google Chrome" = Google Chrome
"Square Enix Secure Launcher" = Square Enix Secure Launcher
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 05.04.2013 05:19:52 | Computer Name = Ilka-PC | Source = WinMgmt | ID = 10
Description =
Error - 05.04.2013 05:22:11 | Computer Name = Ilka-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second
Error - 05.04.2013 05:22:11 | Computer Name = Ilka-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 1953
Error - 05.04.2013 05:22:11 | Computer Name = Ilka-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 1953
Error - 05.04.2013 05:22:13 | Computer Name = Ilka-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second
Error - 05.04.2013 05:22:13 | Computer Name = Ilka-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 3906
Error - 05.04.2013 05:22:13 | Computer Name = Ilka-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 3906
Error - 07.04.2013 06:27:35 | Computer Name = Ilka-PC | Source = WinMgmt | ID = 10
Description =
Error - 07.04.2013 14:28:22 | Computer Name = Ilka-PC | Source = WinMgmt | ID = 10
Description =
Error - 08.04.2013 03:31:25 | Computer Name = Ilka-PC | Source = TabletServicePen | ID = 0
Description =
Error - 08.04.2013 03:32:38 | Computer Name = Ilka-PC | Source = WinMgmt | ID = 10
Description =
[ System Events ]
Error - 07.04.2013 14:28:25 | Computer Name = Ilka-PC | Source = Service Control Manager | ID = 7006
Description =
Error - 07.04.2013 14:28:25 | Computer Name = Ilka-PC | Source = Service Control Manager | ID = 7026
Description =
Error - 07.04.2013 14:29:11 | Computer Name = Ilka-PC | Source = Service Control Manager | ID = 7038
Description =
Error - 07.04.2013 14:29:11 | Computer Name = Ilka-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 07.04.2013 18:02:58 | Computer Name = Ilka-PC | Source = Service Control Manager | ID = 7006
Description =
Error - 08.04.2013 03:32:40 | Computer Name = Ilka-PC | Source = Service Control Manager | ID = 7006
Description =
Error - 08.04.2013 03:32:40 | Computer Name = Ilka-PC | Source = Service Control Manager | ID = 7006
Description =
Error - 08.04.2013 03:32:40 | Computer Name = Ilka-PC | Source = Service Control Manager | ID = 7026
Description =
Error - 08.04.2013 03:33:39 | Computer Name = Ilka-PC | Source = Service Control Manager | ID = 7038
Description =
Error - 08.04.2013 03:33:39 | Computer Name = Ilka-PC | Source = Service Control Manager | ID = 7000
Description =
< End of report >
--- --- ---