Albertshagen | 19.06.2014 12:07 | ADW Code:
# AdwCleaner v3.212 - Bericht erstellt am 19/06/2014 um 14:46:11
# Aktualisiert 05/06/2014 von Xplode
# Betriebssystem : Microsoft Windows XP Service Pack 3 (32 bits)
# Benutzername : Alexander - ALEX
# Gestartet von : C:\Dokumente und Einstellungen\Alexander\Desktop\adwcleaner_3.212.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\optimizer pro v3.2
Ordner Gelöscht : C:\Programme\Optimizer Pro
Ordner Gelöscht : C:\Dokumente und Einstellungen\Alexander\Lokale Einstellungen\Anwendungsdaten\PackageAware
Ordner Gelöscht : C:\Dokumente und Einstellungen\Alexander\Anwendungsdaten\Systweak
Ordner Gelöscht : C:\Dokumente und Einstellungen\Alexander\Anwendungsdaten\Uniblue
Datei Gelöscht : C:\END
Datei Gelöscht : C:\Dokumente und Einstellungen\Alexander\Desktop\Optimizer Pro.lnk
Datei Gelöscht : C:\Dokumente und Einstellungen\Alexander\Anwendungsdaten\Mozilla\Firefox\Profiles\0qgqdyu2.default\user.js
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\Optimizer Pro v3.2
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{0EEDB912-C5FA-486F-8334-57288578C627}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0EEDB912-C5FA-486F-8334-57288578C627}
Schlüssel Gelöscht : HKCU\Software\Optimizer Pro
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKCU\Software\systweak
Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKLM\Software\Uniblue
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Optimizer Pro_is1
***** [ Browser ] *****
-\\ Internet Explorer v7.0.6000.16762
-\\ Mozilla Firefox v27.0.1 (de)
[ Datei : C:\Dokumente und Einstellungen\Alexander\Anwendungsdaten\Mozilla\Firefox\Profiles\0qgqdyu2.default\prefs.js ]
Zeile gelöscht : user_pref("extensions.3L5DA.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorobo.n[...]
Zeile gelöscht : user_pref("extensions.enabledItems", "firefox@tvunetworks.com:2,5,3,1,vshare@toolbar:1.0.0,{972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.27");
Zeile gelöscht : user_pref("extensions.vshare@toolbar.update.enabled", false);
-\\ Google Chrome v34.0.1847.137
*************************
AdwCleaner[R0].txt - [3381 octets] - [19/06/2014 14:29:08]
AdwCleaner[S0].txt - [3302 octets] - [19/06/2014 14:46:11]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3362 octets] ##########
Maleware Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 19.06.2014
Suchlauf-Zeit: 14:56:24
Logdatei: malware.txt
Administrator: Ja
Version: 2.00.2.1012
Malware Datenbank: v2014.06.19.04
Rootkit Datenbank: v2014.06.02.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Self-protection: Deaktiviert
Betriebssystem: Windows XP Service Pack 3
CPU: x86
Dateisystem: NTFS
Benutzer: Alexander
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 265498
Verstrichene Zeit: 9 Min, 46 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristics: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registrierungsschlüssel: 0
(No malicious items detected)
Registrierungswerte: 0
(No malicious items detected)
Registrierungsdaten: 0
(No malicious items detected)
Ordner: 0
(No malicious items detected)
Dateien: 0
(No malicious items detected)
Physische Sektoren: 0
(No malicious items detected)
(end)
ZOEK Code:
Zoek.exe v5.0.0.0 Updated 16-June-2014
Tool run by Alexander on 19.06.2014 at 15:14:28,53.
Microsoft Windows XP Professional 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Dokumente und Einstellungen\Alexander\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
19.06.2014 15:17:12 Zoek.exe System Restore Point Created Succesfully.
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{AEB6717E-7E19-11d0-97EE-00C04FD91972} deleted successfully
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Dokumente und Einstellungen\ALEXAN~1\Anwendungsdaten\KompoZer\Profiles\p2hogzwa.default\prefs.js:
Added to C:\Dokumente und Einstellungen\ALEXAN~1\Anwendungsdaten\KompoZer\Profiles\p2hogzwa.default\prefs.js:
user_pref("browser.startup.homepage", "hxxp://www.google.com");
user_pref("browser.search.defaulturl", "hxxp://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "hxxp://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "hxxp://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);
Deleted from C:\Dokumente und Einstellungen\ALEXAN~1\Anwendungsdaten\Mozilla\Firefox\Profiles\0qgqdyu2.default\prefs.js:
user_pref("browser.startup.homepage", "hxxp://www.google.de/");
user_pref("browser.newtab.url", "hxxp://www.google.de/");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.suggest.enabled", false);
user_pref("browser.search.useDBForOrder", true);
Added to C:\Dokumente und Einstellungen\ALEXAN~1\Anwendungsdaten\Mozilla\Firefox\Profiles\0qgqdyu2.default\prefs.js:
user_pref("browser.startup.homepage", "hxxp://www.google.com");
user_pref("browser.search.defaulturl", "hxxp://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "hxxp://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "hxxp://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);
ProfilePath: C:\Dokumente und Einstellungen\ALEXAN~1\Anwendungsdaten\KompoZer\Profiles\p2hogzwa.default
user.js not found
---- FireFox user.js and prefs.js backups ----
prefs__1526_.backup
ProfilePath: C:\Dokumente und Einstellungen\ALEXAN~1\Anwendungsdaten\Mozilla\Firefox\Profiles\0qgqdyu2.default
user.js not found
---- Lines extensions.3L5DA removed from prefs.js ----
user_pref("extensions.3L5DA.epoch", "1403184122");
---- FireFox user.js and prefs.js backups ----
prefs__1526_.backup
==== Deleting Files \ Folders ======================
C:\Dokumente und Einstellungen\Alexander\AppData\LocalLow\{457F4232-25B9-652C-660B-CF18CA19A2FD} deleted
C:\DOKUME~1\ALLUSE~1\ANWEND~1\fb1af47af1947238 deleted
C:\Dokumente und Einstellungen\Alexander\.android deleted
C:\DOKUME~1\ALLUSE~1\ANWEND~1\Raealdeal deleted
C:\Programme\Gemeinsame Dateien\DVDVideoSoft\bin deleted
C:\WINXP\SET3.tmp deleted
C:\WINXP\SET4.tmp deleted
C:\WINXP\SET8.tmp deleted
"C:\Dokumente und Einstellungen\Alexander\Anwendungsdaten\Sozo\odadv.tmp" deleted
"C:\Dokumente und Einstellungen\Alexander\Anwendungsdaten\Sozo\odadv.ugl" deleted
"C:\Dokumente und Einstellungen\Alexander\Anwendungsdaten\Ykawl\incuzus.pui" deleted
"C:\Dokumente und Einstellungen\Alexander\Anwendungsdaten\Puiv" deleted
"C:\Dokumente und Einstellungen\Alexander\Anwendungsdaten\Sozo" deleted
"C:\Dokumente und Einstellungen\Alexander\Anwendungsdaten\Ykawl" deleted
"C:\Dokumente und Einstellungen\Alexander\Anwendungsdaten\Zafie" deleted
"C:\Dokumente und Einstellungen\Alexander\Anwendungsdaten\Tyhouz" deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"{20a82645-c095-46ed-80e3-08825760534b}"="C:\WINXP\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension" [15.10.2010 23:11]
==== Firefox Extensions ======================
ProfilePath: C:\Dokumente und Einstellungen\ALEXAN~1\Anwendungsdaten\KompoZer\Profiles\p2hogzwa.default
- Undetermined - %ProfilePath%\extensions\installed-extensions.txt
- KompoZer classic - %ProfilePath%\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
ProfilePath: C:\Dokumente und Einstellungen\ALEXAN~1\Anwendungsdaten\Mozilla\Firefox\Profiles\0qgqdyu2.default
- TVU Web Player - %ProfilePath%\extensions\firefox@tvunetworks.com
- Tab Utilities - %ProfilePath%\extensions\tabutils@ithinc.cn.xpi
==== Firefox Plugins ======================
Profilepath: C:\Dokumente und Einstellungen\Alexander\Anwendungsdaten\Mozilla\Firefox\Profiles\0qgqdyu2.default
738C29EAC995029E13333034C1402F56 - C:\WINXP\system32\Macromed\Flash\NPSWF32_14_0_0_125.dll - Shockwave Flash
785105A23650755A8F7A72405EB0D923 - C:\Programme\Google\Update\1.3.24.7\npGoogleUpdate3.dll - Google Update
025BBEF5A248B09BDC6684747F6EB5BC - C:\Programme\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U55
290A0130C74ADCD4546BC6900D1665D9 - C:\Programme\Java\jre7\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 7.0.550.14
F00A0EF5835E1B96F783D617F1948704 - C:\Programme\iTunes\Mozilla Plugins\npitunes.dll - iTunes Application Detector
667CB7D2CAF917608421E5250462C0AA - C:\Programme\Adobe\Reader 9.0\Reader\browser\nppdf32.dll - Adobe Acrobat
667CB7D2CAF917608421E5250462C0AA - C:\Programme\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll - Adobe Acrobat
C88608E5783923369E28FC923CDA93C6 - C:\Programme\QuickTime\Plugins\npqtplugin7.dll - QuickTime Plug-in 7.7.2
3F9020DCBF863B86E7960632E612B2C8 - C:\Programme\QuickTime\Plugins\npqtplugin6.dll - QuickTime Plug-in 7.7.2
EBFEBE105BA936529CB7D35640E358A6 - C:\Programme\QuickTime\Plugins\npqtplugin5.dll - QuickTime Plug-in 7.7.2
3245033EBD85FE35C8B3255F1350C7EF - C:\Programme\QuickTime\Plugins\npqtplugin4.dll - QuickTime Plug-in 7.7.2
B0974502837C3DF3665A11C1B79F0EB1 - C:\Programme\QuickTime\Plugins\npqtplugin3.dll - QuickTime Plug-in 7.7.2
9F272BED5CE931D6D1444FAC6ECF3B6B - C:\Programme\QuickTime\Plugins\npqtplugin2.dll - QuickTime Plug-in 7.7.2
26D2308F97CED4E9090B7A20DC869F9E - C:\Programme\QuickTime\Plugins\npqtplugin.dll - QuickTime Plug-in 7.7.2
9013599B12923A45C029C34E8D2211AC - C:\Programme\Microsoft Silverlight\5.1.10411.0\npctrl.dll - Silverlight Plug-In
C50B22C8D91A76069A993A2B5197A296 - C:\Programme\Veetle\plugins\npVeetle.dll - Veetle TV Core
866B027053F3A40BC36126D265C78E96 - C:\Programme\Veetle\Player\npvlc.dll - Veetle TV Player
6827CA29D7AD3595660271F3F05C79B5 - C:\Programme\DivX\DivX Plus Web Player\npdivx32.dll - DivX Web Player
8E9A08E2092B3E1ADFF3C46BC1A5124B - C:\WINXP\system32\TVUAx\npTVUAx.dll - TVU Web Player for FireFox
09B4E13D25623D879D35286E2D29FF13 - C:\Dokumente und Einstellungen\Alexander\Lokale Einstellungen\Anwendungsdaten\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player
AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\WINXP\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation
38A1E65626558B8776C3546BE4491993 - C:\Programme\Windows Media Player\npdrmv2.dll - Microsoft® DRM
AE3A029E3DC4EEB5EF5A4C2C997F78F8 - C:\Programme\Windows Media Player\npdsplay.dll - Windows Media Player Plug-in Dynamic Link Library
1D187905079ACC40C420E7C8BD167731 - C:\Programme\Windows Media Player\npwmsdrm.dll - Microsoft® DRM
BF2AD333C79072EEBE5AE0D72670E64E - C:\Programme\Microsoft Silverlight\5.1.10411.0\npctrlui.dll - Microsoft® Silverlight
==== Chrome Look ======================
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="hxxp://www.google.de/"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="hxxp://www.google.de/"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"
{853106B3-C3EB-414B-B7BE-77F3506B532A} Google Url="hxxp://www.google.de/search?q={searchTerms}"
==== Reset Google Chrome ======================
C:\Dokumente und Einstellungen\Alexander\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Web Data was reset successfully
==== Reset IE Proxy ======================
Value(s) before fix:
"ProxyOverride"="*.local"
"ProxyEnable"=dword:00000000
Value(s) after fix:
"ProxyEnable"=dword:00000000
==== Empty IE Cache ======================
C:\Dokumente und Einstellungen\Default User\Lokale Einstellungen\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINXP\system32\config\systemprofile\Lokale Einstellungen\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINXP\system32\config\systemprofile\Lokale Einstellungen\Temporary Internet Files\Content.IE5 emptied successfully
C:\Dokumente und Einstellungen\Alexander\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
==== Empty FireFox Cache ======================
C:\Dokumente und Einstellungen\Alexander\Lokale Einstellungen\Anwendungsdaten\Mozilla\Firefox\Profiles\0qgqdyu2.default\Cache emptied successfully
==== Empty Chrome Cache ======================
C:\Dokumente und Einstellungen\Alexander\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=152 folders=31 25286478 bytes)
==== Empty Temp Folders ======================
C:\Dokumente und Einstellungen\Alexander\Lokale Einstellungen\Temp will be emptied at reboot
C:\Dokumente und Einstellungen\Default User\Lokale Einstellungen\Temp emptied successfully
C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\temp emptied successfully
C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\temp emptied successfully
C:\WINXP\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINXP\Temp successfully emptied
C:\DOKUME~1\ALEXAN~1\LOKALE~1\Temp successfully emptied
==== Deleting Files / Folders ======================
"C:\Dokumente und Einstellungen\Alexander\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat" not found
==== EOF on 19.06.2014 at 15:32:19,79 ====================== FRST
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:18-06-2014
Ran by Alexander (administrator) on ALEX on 19-06-2014 15:35:35
Running from C:\Dokumente und Einstellungen\Alexander\Desktop
Platform: Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 7
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Microsoft Corporation) C:\WINXP\system32\smss.exe
(Microsoft Corporation) C:\WINXP\system32\winlogon.exe
(Microsoft Corporation) C:\WINXP\system32\services.exe
(Microsoft Corporation) C:\WINXP\system32\lsass.exe
(Microsoft Corporation) C:\WINXP\system32\svchost.exe
(SANDBOXIE L.T.D) D:\Sandbox\SbieSvc.exe
(Microsoft Corporation) C:\WINXP\system32\svchost.exe
(Microsoft Corporation) C:\WINXP\system32\svchost.exe
(Microsoft Corporation) C:\WINXP\system32\spoolsv.exe
(Avira GmbH) C:\Programme\Avira\AntiVir Desktop\sched.exe
(Google Inc.) C:\Programme\Google\Update\GoogleUpdate.exe
(Microsoft Corporation) C:\WINXP\explorer.exe
(Microsoft Corporation) D:\Programme\Microsoft Office\Office12\GrooveMonitor.exe
(Avira GmbH) C:\Programme\Avira\AntiVir Desktop\avgnt.exe
(Microsoft Corporation) C:\WINXP\system32\rundll32.exe
(shbox.de) C:\Programme\FreePDF_XP\fpassist.exe
() C:\Programme\DivX\DivX Update\DivXUpdate.exe
(CANON INC.) C:\Programme\Canon\MyPrinter\BJMYPRT.EXE
(Adobe Systems Incorporated) C:\Programme\Adobe\Reader 9.0\Reader\reader_sl.exe
(Apple Inc.) C:\Programme\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe
(SANDBOXIE L.T.D) D:\Sandbox\SbieCtrl.exe
(Microsoft Corporation) C:\WINXP\system32\ctfmon.exe
(Mozilla Corporation) D:\Firefox\firefox.exe
(Avira GmbH) C:\Programme\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Programme\Bonjour\mDNSResponder.exe
(Oracle Corporation) C:\Programme\Java\jre7\bin\jqs.exe
(Microsoft Corporation) C:\WINXP\system32\svchost.exe
(Palm) C:\Programme\Palm, Inc\novacomd\x86\novacomd.exe
(NVIDIA Corporation) C:\WINXP\system32\nvsvc32.exe
(Microsoft Corporation) C:\WINXP\system32\svchost.exe
(Microsoft Corporation) C:\WINXP\system32\svchost.exe
(Microsoft Corporation) C:\WINXP\system32\wscntfy.exe
(Apple Inc.) C:\Programme\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\WINXP\system32\wbem\wmiapsrv.exe
(Microsoft Corporation) C:\WINXP\system32\svchost.exe
(Microsoft Corporation) C:\WINXP\system32\wuauclt.exe
(Microsoft Corporation) C:\WINXP\system32\notepad.exe
(Microsoft Corporation) C:\WINXP\system32\wuauclt.exe
(Mozilla Corporation) D:\Firefox\plugin-container.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [GrooveMonitor] => D:\Programme\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM\...\Run: [NvCplDaemon] => C:\WINXP\system32\NvCpl.dll [13594624 2009-01-30] (NVIDIA Corporation)
HKLM\...\Run: [nwiz] => nwiz.exe /install
HKLM\...\Run: [avgnt] => C:\Programme\Avira\AntiVir Desktop\avgnt.exe [209153 2009-03-02] (Avira GmbH)
HKLM\...\Run: [AdobeCS4ServiceManager] => C:\Programme\Gemeinsame Dateien\Adobe\CS4ServiceManager\CS4ServiceManager.exe [611712 2008-08-14] (Adobe Systems Incorporated)
HKLM\...\Run: [BluetoothAuthenticationAgent] => rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
HKLM\...\Run: [FreePDF Assistant] => C:\Programme\FreePDF_XP\fpassist.exe [385024 2009-09-05] (shbox.de)
HKLM\...\Run: [DivXUpdate] => C:\Programme\DivX\DivX Update\DivXUpdate.exe [1164584 2010-08-21] ()
HKLM\...\Run: [CanonMyPrinter] => C:\Programme\Canon\MyPrinter\BJMyPrt.exe [2516296 2010-03-25] (CANON INC.)
HKLM\...\Run: [CanonSolutionMenuEx] => C:\Programme\Canon\Solution Menu EX\CNSEMAIN.EXE [1185112 2010-04-02] (CANON INC.)
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Programme\Adobe\Reader 9.0\Reader\Reader_sl.exe [41208 2012-12-19] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe ARM] => C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-05] (Adobe Systems Incorporated)
HKLM\...\Run: [APSDaemon] => C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\APSDaemon.exe [59720 2013-01-28] (Apple Inc.)
HKLM\...\Run: [QuickTime Task] => C:\Programme\QuickTime\QTTask.exe [421888 2012-04-18] (Apple Inc.)
HKLM\...\Run: [iTunesHelper] => C:\Programme\iTunes\iTunesHelper.exe [152392 2013-02-20] (Apple Inc.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Winlogon: [Userinit] C:\WINXP\system32\userinit.exe,
HKLM\...\Winlogon: [Shell] Explorer.exe [x ] ()
HKLM\...\Winlogon: [UIHost] logonui.exe [x ] ()
Winlogon\Notify\crypt32chain: C:\WINXP\system32\crypt32.dll (Microsoft Corporation)
Winlogon\Notify\cryptnet: C:\WINXP\system32\cryptnet.dll (Microsoft Corporation)
Winlogon\Notify\cscdll: C:\WINXP\system32\cscdll.dll (Microsoft Corporation)
Winlogon\Notify\dimsntfy: C:\WINXP\System32\dimsntfy.dll (Microsoft Corporation)
Winlogon\Notify\ScCertProp: C:\WINXP\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\Schedule: C:\WINXP\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\sclgntfy: C:\WINXP\system32\sclgntfy.dll (Microsoft Corporation)
Winlogon\Notify\SensLogn: C:\WINXP\system32\WlNotify.dll (Microsoft Corporation)
Winlogon\Notify\termsrv: C:\WINXP\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\WgaLogon: C:\WINXP\system32\WgaLogon.dll (Microsoft Corporation)
Winlogon\Notify\wlballoon: C:\WINXP\system32\wlnotify.dll (Microsoft Corporation)
HKU\.DEFAULT\...\Run: [CTFMON.EXE] => C:\WINXP\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKU\.DEFAULT\...\RunOnce: [_nltide_2] - regsvr32 /s /n /i:U shell32
HKU\S-1-5-21-1935655697-1229272821-1417001333-1003\...\Run: [SandboxieControl] => D:\Sandbox\SbieCtrl.exe [389352 2010-08-09] (SANDBOXIE L.T.D)
HKU\S-1-5-21-1935655697-1229272821-1417001333-1003\...\Run: [DAEMON Tools Lite] => D:\DAEMON Tools Lite\DTLite.exe [3672384 2012-04-11] (DT Soft Ltd)
HKU\S-1-5-21-1935655697-1229272821-1417001333-1003\...\Run: [ctfmon.exe] => C:\WINXP\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation)
SSODL: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\WINXP\system32\CbFsMntNtf3.dll (EldoS Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINXP\system32\blank.htm
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
SearchScopes: HKCU - {853106B3-C3EB-414B-B7BE-77F3506B532A} URL = hxxp://www.google.de/search?q={searchTerms}
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Programme\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Programme\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
Toolbar: HKCU - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Programme\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINXP\system32\urlmon.dll (Microsoft Corporation)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\Programme\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: vw-wi - {0F3C833F-FB28-40EA-8CB9-6A55B996C3F6} - g:\elsawin\installation\bin\wiProt.dll No File
Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINXP\system32\wiascr.dll (Microsoft Corporation)
Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINXP\system32\SHELL32.dll (Microsoft Corporation)
Winsock: Catalog5 04 C:\Programme\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Dokumente und Einstellungen\Alexander\Anwendungsdaten\Mozilla\Firefox\Profiles\0qgqdyu2.default
FF NewTab: hxxp://www.google.com
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.google.com
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF Plugin: @adobe.com/FlashPlayer - C:\WINXP\system32\Macromed\Flash\NPSWF32_14_0_0_125.dll ()
FF Plugin: @Apple.com/iTunes,version=1.0 - C:\Programme\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Programme\DivX\DivX Plus Web Player\npdivx32.dll (DivX,Inc.)
FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Programme\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Programme\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Programme\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINXP\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @pages.tvunetworks.com/WebPlayer - C:\WINXP\system32\TVUAx\npTVUAx.dll (TVU networks)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Programme\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Programme\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @veetle.com/veetleCorePlugin,version=0.9.18 - C:\Programme\Veetle\plugins\npVeetle.dll (Veetle Inc)
FF Plugin: @veetle.com/veetlePlayerPlugin,version=0.9.18 - C:\Programme\Veetle\Player\npvlc.dll (Veetle Inc)
FF Plugin: Adobe Reader - C:\Programme\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Dokumente und Einstellungen\Alexander\Lokale Einstellungen\Anwendungsdaten\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Extension: TVU Web Player - C:\Dokumente und Einstellungen\Alexander\Anwendungsdaten\Mozilla\Firefox\Profiles\0qgqdyu2.default\Extensions\firefox@tvunetworks.com [2010-12-07]
FF Extension: Tab Utilities - C:\Dokumente und Einstellungen\Alexander\Anwendungsdaten\Mozilla\Firefox\Profiles\0qgqdyu2.default\Extensions\tabutils@ithinc.cn.xpi [2013-01-08]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINXP\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - C:\WINXP\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []
FF StartMenuInternet: FIREFOX.EXE - D:\Firefox\firefox.exe
========================== Services (Whitelisted) =================
S4 Alerter; C:\WINXP\system32\alrsvc.dll [17408 2008-04-14] (Microsoft Corporation)
R3 ALG; C:\WINXP\System32\alg.exe [44544 2008-04-14] (Microsoft Corporation)
R2 AntiVirSchedulerService; C:\Programme\Avira\AntiVir Desktop\sched.exe [108289 2009-05-13] (Avira GmbH) [File not signed]
R2 AntiVirService; C:\Programme\Avira\AntiVir Desktop\avguard.exe [185089 2009-07-21] (Avira GmbH) [File not signed]
R2 Apple Mobile Device; C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe [57008 2012-12-21] (Apple Inc.)
S3 AppMgmt; C:\WINXP\System32\appmgmts.dll [175616 2008-04-14] (Microsoft Corporation)
S3 aspnet_state; C:\WINXP\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [35160 2010-03-18] (Microsoft Corporation)
R2 AudioSrv; C:\WINXP\System32\audiosrv.dll [42496 2008-04-14] (Microsoft Corporation)
S3 BITS; C:\WINXP\system32\qmgr.dll [409088 2008-04-14] (Microsoft Corporation)
R2 Bonjour Service; C:\Programme\Bonjour\mDNSResponder.exe [390504 2011-08-30] (Apple Inc.)
S2 Browser; C:\WINXP\System32\browser.dll [77824 2008-04-14] (Microsoft Corporation)
R2 BthServ; C:\WINXP\System32\bthserv.dll [30208 2008-04-14] (Microsoft Corporation)
S3 CiSvc; C:\WINXP\system32\cisvc.exe [5632 2008-04-14] (Microsoft Corporation)
S3 ClipSrv; C:\WINXP\system32\clipsrv.exe [33280 2008-04-14] (Microsoft Corporation)
S4 clr_optimization_v2.0.50727_32; C:\WINXP\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [69632 2008-07-25] (Microsoft Corporation)
S2 clr_optimization_v4.0.30319_32; C:\WINXP\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [130384 2010-03-18] (Microsoft Corporation)
S3 COMSysApp; C:\WINXP\system32\dllhost.exe [5120 2008-04-14] (Microsoft Corporation)
R2 CryptSvc; C:\WINXP\System32\cryptsvc.dll [62464 2008-04-14] (Microsoft Corporation)
R2 DcomLaunch; C:\WINXP\system32\rpcss.dll [399360 2008-04-14] (Microsoft Corporation)
R2 Dhcp; C:\WINXP\System32\dhcpcsvc.dll [127488 2008-04-14] (Microsoft Corporation)
S3 dmadmin; C:\WINXP\System32\dmadmin.exe [225280 2008-04-14] (Microsoft Corp., Veritas Software)
R2 dmserver; C:\WINXP\System32\dmserver.dll [24064 2008-04-14] (Microsoft Corp.)
R2 Dnscache; C:\WINXP\System32\dnsrslvr.dll [45568 2008-04-14] (Microsoft Corporation)
S3 Dot3svc; C:\WINXP\System32\dot3svc.dll [133120 2008-04-14] (Microsoft Corporation)
S3 EapHost; C:\WINXP\System32\eapsvc.dll [33792 2008-04-14] (Microsoft Corporation)
R2 ERSvc; C:\WINXP\System32\ersvc.dll [23040 2008-04-14] (Microsoft Corporation)
R2 Eventlog; C:\WINXP\system32\services.exe [109056 2008-04-14] (Microsoft Corporation)
R3 EventSystem; C:\WINXP\system32\es.dll [253952 2008-12-10] (Microsoft Corporation)
R3 FastUserSwitchingCompatibility; C:\WINXP\System32\shsvcs.dll [135168 2008-04-14] (Microsoft Corporation)
S3 FLEXnet Licensing Service; C:\Programme\Gemeinsame Dateien\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [655624 2010-03-11] (Acresso Software Inc.)
S3 FontCache3.0.0.0; C:\WINXP\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [46104 2008-07-29] (Microsoft Corporation)
S2 gupdate; C:\Programme\Google\Update\GoogleUpdate.exe [116648 2013-04-17] (Google Inc.)
S3 gupdatem; C:\Programme\Google\Update\GoogleUpdate.exe [116648 2013-04-17] (Google Inc.)
R2 helpsvc; C:\WINXP\PCHealth\HelpCtr\Binaries\pchsvc.dll [38400 2008-04-14] (Microsoft Corporation)
R2 HidServ; C:\WINXP\System32\hidserv.dll [21504 2008-04-14] (Microsoft Corporation)
S3 hkmsvc; C:\WINXP\System32\kmsvc.dll [61440 2008-04-14] (Microsoft Corporation)
R3 HTTPFilter; C:\WINXP\System32\w3ssl.dll [15872 2008-04-14] (Microsoft Corporation)
S3 idsvc; C:\WINXP\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [881664 2008-07-29] (Microsoft Corporation)
S3 ImapiService; C:\WINXP\system32\imapi.exe [150528 2008-04-14] (Microsoft Corporation)
R3 iPod Service; C:\Programme\iPod\bin\iPodService.exe [553288 2013-02-20] (Apple Inc.)
R2 JavaQuickStarterService; C:\Programme\Java\jre7\bin\jqs.exe [182696 2014-04-14] (Oracle Corporation)
R2 LanmanServer; C:\WINXP\System32\srvsvc.dll [96768 2008-04-14] (Microsoft Corporation)
R2 lanmanworkstation; C:\WINXP\System32\wkssvc.dll [132096 2008-04-14] (Microsoft Corporation)
R2 LmHosts; C:\WINXP\System32\lmhsvc.dll [13824 2008-04-14] (Microsoft Corporation)
S4 Messenger; C:\WINXP\System32\msgsvc.dll [33792 2008-04-14] (Microsoft Corporation)
S3 Microsoft Office Groove Audit Service; D:\Programme\Microsoft Office\Office12\GrooveAuditService.exe [65824 2006-10-27] (Microsoft Corporation)
S3 mnmsrvc; C:\WINXP\system32\mnmsrvc.exe [32768 2008-04-14] (Microsoft Corporation)
S3 MozillaMaintenance; C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe [118896 2014-02-22] (Mozilla Foundation)
S3 MSDTC; C:\WINXP\system32\msdtc.exe [6144 2008-04-14] (Microsoft Corporation)
S3 MSIServer; C:\WINXP\System32\msiexec.exe [95744 2008-05-19] (Microsoft Corporation)
S3 napagent; C:\WINXP\System32\qagentrt.dll [294400 2008-04-14] (Microsoft Corporation)
S3 NBService; C:\Programme\Nero\Nero 7\Nero BackItUp\NBService.exe [800040 2007-11-28] (Nero AG)
R2 Net Driver HPZ12; C:\WINXP\system32\HPZinw12.dll [44032 2010-04-07] (Hewlett-Packard) [File not signed]
S4 NetDDE; C:\WINXP\system32\netdde.exe [114176 2008-04-14] (Microsoft Corporation)
S4 NetDDEdsdm; C:\WINXP\system32\netdde.exe [114176 2008-04-14] (Microsoft Corporation)
S3 Netlogon; C:\WINXP\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
R3 Netman; C:\WINXP\System32\netman.dll [198144 2008-04-14] (Microsoft Corporation)
S4 NetTcpPortSharing; C:\WINXP\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [124240 2010-03-18] (Microsoft Corporation)
R3 Nla; C:\WINXP\System32\mswsock.dll [247296 2008-04-14] (Microsoft Corporation)
S4 NMIndexingService; C:\Programme\Gemeinsame Dateien\Ahead\Lib\NMIndexingService.exe [275752 2008-01-22] (Nero AG)
R2 NovacomD; C:\Programme\Palm, Inc\novacomd\x86\novacomd.exe [61440 2011-06-24] (Palm) [File not signed]
S3 NtLmSsp; C:\WINXP\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
S3 NtmsSvc; C:\WINXP\system32\ntmssvc.dll [438272 2008-04-14] (Microsoft Corporation)
R2 NVSvc; C:\WINXP\system32\nvsvc32.exe [168004 2009-01-30] (NVIDIA Corporation)
S3 odserv; C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE12\ODSERV.EXE [441136 2006-10-26] (Microsoft Corporation)
S3 ose; C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE [145184 2006-10-26] (Microsoft Corporation)
R2 PlugPlay; C:\WINXP\system32\services.exe [109056 2008-04-14] (Microsoft Corporation)
R2 Pml Driver HPZ12; C:\WINXP\system32\HPZipm12.dll [53760 2010-04-07] (Hewlett-Packard) [File not signed]
R2 PolicyAgent; C:\WINXP\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
R2 ProtectedStorage; C:\WINXP\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
S3 RasAuto; C:\WINXP\System32\rasauto.dll [88576 2008-04-14] (Microsoft Corporation)
R3 RasMan; C:\WINXP\System32\rasmans.dll [186368 2008-04-14] (Microsoft Corporation)
S3 RDSessMgr; C:\WINXP\system32\sessmgr.exe [143360 2008-04-14] (Microsoft Corporation)
S4 RemoteAccess; C:\WINXP\System32\mprdim.dll [53248 2008-04-14] (Microsoft Corporation)
R2 RemoteRegistry; C:\WINXP\system32\regsvc.dll [59904 2008-04-14] (Microsoft Corporation)
S3 RpcLocator; C:\WINXP\system32\locator.exe [75264 2008-04-14] (Microsoft Corporation)
R2 RpcSs; C:\WINXP\System32\rpcss.dll [399360 2008-04-14] (Microsoft Corporation)
S3 RSVP; C:\WINXP\system32\rsvp.exe [132608 2008-04-14] (Microsoft Corporation)
R2 SamSs; C:\WINXP\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
R2 SbieSvc; D:\Sandbox\SbieSvc.exe [75496 2010-08-09] (SANDBOXIE L.T.D)
S3 SCardSvr; C:\WINXP\System32\SCardSvr.exe [99840 2008-04-14] (Microsoft Corporation)
R2 Schedule; C:\WINXP\system32\schedsvc.dll [193536 2008-04-14] (Microsoft Corporation)
R2 seclogon; C:\WINXP\System32\seclogon.dll [18944 2008-04-14] (Microsoft Corporation)
R2 SENS; C:\WINXP\system32\sens.dll [39424 2008-04-14] (Microsoft Corporation)
R2 SharedAccess; C:\WINXP\System32\ipnathlp.dll [334336 2008-04-14] (Microsoft Corporation)
R2 ShellHWDetection; C:\WINXP\System32\shsvcs.dll [135168 2008-04-14] (Microsoft Corporation)
R2 Spooler; C:\WINXP\system32\spoolsv.exe [57856 2008-04-14] (Microsoft Corporation)
R2 srservice; C:\WINXP\system32\srsvc.dll [171520 2008-04-14] (Microsoft Corporation)
R3 SSDPSRV; C:\WINXP\System32\ssdpsrv.dll [71680 2008-04-14] (Microsoft Corporation)
R2 stisvc; C:\WINXP\system32\wiaservc.dll [334336 2008-04-14] (Microsoft Corporation)
S3 SwPrv; C:\WINXP\system32\dllhost.exe [5120 2008-04-14] (Microsoft Corporation)
S3 SysmonLog; C:\WINXP\system32\smlogsvc.exe [94208 2008-04-14] (Microsoft Corporation)
R3 TapiSrv; C:\WINXP\System32\tapisrv.dll [249856 2008-04-14] (Microsoft Corporation)
R3 TermService; C:\WINXP\System32\termsrv.dll [297472 2008-04-14] (Microsoft Corporation)
R2 Themes; C:\WINXP\System32\shsvcs.dll [135168 2008-04-14] (Microsoft Corporation)
S3 TlntSvr; C:\WINXP\system32\tlntsvr.exe [75264 2008-04-14] (Microsoft Corporation)
R2 TrkWks; C:\WINXP\system32\trkwks.dll [90112 2008-04-14] (Microsoft Corporation)
S3 upnphost; C:\WINXP\System32\upnphost.dll [186880 2008-04-14] (Microsoft Corporation)
S3 UPS; C:\WINXP\System32\ups.exe [18432 2008-04-14] (Microsoft Corporation)
S3 VSS; C:\WINXP\System32\vssvc.exe [292864 2008-04-14] (Microsoft Corporation)
R2 W32Time; C:\WINXP\system32\w32time.dll [177152 2008-04-14] (Microsoft Corporation)
U2 WebClient; C:\WINXP\System32\webclnt.dll [68096 2008-04-14] (Microsoft Corporation)
R2 winmgmt; C:\WINXP\system32\wbem\WMIsvc.dll [145408 2008-04-14] (Microsoft Corporation)
S3 WmdmPmSN; C:\WINXP\system32\mspmsnsv.dll [27136 2008-12-10] (Microsoft Corporation)
S3 Wmi; C:\WINXP\System32\advapi32.dll [678400 2008-04-14] (Microsoft Corporation)
R3 WmiApSrv; C:\WINXP\system32\wbem\wmiapsrv.exe [126464 2008-04-14] (Microsoft Corporation)
S3 WMPNetworkSvc; C:\Programme\Windows Media Player\WMPNetwk.exe [920576 2006-11-03] (Microsoft Corporation)
S3 WPFFontCache_v0400; C:\WINXP\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [753504 2010-03-18] (Microsoft Corporation)
R2 wscsvc; C:\WINXP\system32\wscsvc.dll [80896 2008-04-14] (Microsoft Corporation)
R2 wuauserv; C:\WINXP\system32\wuauserv.dll [6656 2008-04-14] (Microsoft Corporation)
R2 WudfSvc; C:\WINXP\System32\WUDFSvc.dll [55296 2008-01-19] (Microsoft Corporation)
R2 WZCSVC; C:\WINXP\System32\wzcsvc.dll [483840 2008-12-10] (Microsoft Corporation)
S3 xmlprov; C:\WINXP\System32\xmlprov.dll [129024 2008-04-14] (Microsoft Corporation)
S2 313369ca; "C:\WINXP\system32\rundll32.exe" "c:\progra~1\optimi~1\OptProCrashSvc.dll",ServiceMain
S2 LcSvrAdm; g:\elsawin\installation\bin\LcSvrAdm.exe [X]
S3 LcSvrAuf; g:\elsawin\installation\bin\LcSvrAuf.exe [X]
S2 LcSvrDba; g:\elsawin\installation\bin\LcSvrDba.exe [X]
S2 LcSvrHis; g:\elsawin\installation\bin\LcSvrHis.exe [X]
S2 LcSvrPAS; g:\elsawin\installation\bin\LcSvrPas.exe [X]
S2 LcSvrSaz; g:\elsawin\installation\bin\LcSvrSaz.exe [X]
==================== Drivers (Whitelisted) ====================
R0 ACPI; C:\WINXP\System32\DRIVERS\ACPI.sys [188800 2008-04-14] (Microsoft Corporation)
R0 ACPIEC; C:\WINXP\System32\DRIVERS\ACPIEC.sys [12160 2008-04-14] (Microsoft Corporation)
S3 aec; C:\WINXP\System32\drivers\aec.sys [142592 2008-04-13] (Microsoft Corporation)
R1 AFD; C:\WINXP\System32\drivers\afd.sys [138496 2008-12-10] (Microsoft Corporation)
R3 Arp1394; C:\WINXP\System32\DRIVERS\arp1394.sys [60800 2008-12-10] (Microsoft Corporation)
S3 AsyncMac; C:\WINXP\System32\DRIVERS\asyncmac.sys [14336 2008-04-14] (Microsoft Corporation)
R0 atapi; C:\WINXP\System32\DRIVERS\atapi.sys [96512 2008-04-14] (Microsoft Corporation)
S3 Atmarpc; C:\WINXP\System32\DRIVERS\atmarpc.sys [59904 2008-04-14] (Microsoft Corporation)
R3 audstub; C:\WINXP\System32\DRIVERS\audstub.sys [3072 2001-08-17] (Microsoft Corporation)
R1 avgio; C:\Programme\Avira\AntiVir Desktop\avgio.sys [11608 2009-02-13] (Avira GmbH)
R2 avgntflt; C:\WINXP\System32\DRIVERS\avgntflt.sys [56816 2009-11-25] (Avira GmbH)
R1 avipbb; C:\WINXP\System32\DRIVERS\avipbb.sys [96104 2009-03-30] (Avira GmbH)
R1 Beep; C:\WINXP\system32\Drivers\Beep.sys [4224 2008-04-14] (Microsoft Corporation)
S3 BthEnum; C:\WINXP\System32\DRIVERS\BthEnum.sys [17024 2008-04-13] (Microsoft Corporation)
S3 BTHMODEM; C:\WINXP\System32\DRIVERS\bthmodem.sys [37888 2008-04-13] (Microsoft Corporation)
S3 BthPan; C:\WINXP\System32\DRIVERS\bthpan.sys [101120 2008-04-13] (Microsoft Corporation)
S3 BTHPORT; C:\WINXP\System32\Drivers\BTHport.sys [273024 2008-12-10] (Microsoft Corporation)
S3 BTHUSB; C:\WINXP\System32\Drivers\BTHUSB.sys [18944 2008-04-13] (Microsoft Corporation)
R3 cbfs3; C:\WINXP\System32\DRIVERS\cbfs3.sys [299024 2012-04-09] (EldoS Corporation)
S4 cbidf2k; C:\WINXP\system32\Drivers\cbidf2k.sys [13952 2008-04-14] (Microsoft Corporation)
S1 Cdaudio; C:\WINXP\system32\Drivers\Cdaudio.sys [18688 2008-12-10] (Microsoft Corporation)
R4 Cdfs; C:\WINXP\system32\Drivers\Cdfs.sys [63744 2008-04-14] (Microsoft Corporation)
R1 Cdrom; C:\WINXP\System32\DRIVERS\cdrom.sys [62976 2008-04-14] (Microsoft Corporation)
R3 CmBatt; C:\WINXP\System32\DRIVERS\CmBatt.sys [13952 2008-04-14] (Microsoft Corporation)
R0 Compbatt; C:\WINXP\System32\DRIVERS\compbatt.sys [10240 2008-04-14] (Microsoft Corporation)
R0 Disk; C:\WINXP\System32\DRIVERS\disk.sys [36352 2008-04-14] (Microsoft Corporation)
S4 dmboot; C:\WINXP\System32\drivers\dmboot.sys [800384 2008-04-14] (Microsoft Corp., Veritas Software)
R0 dmio; C:\WINXP\System32\drivers\dmio.sys [154112 2008-04-14] (Microsoft Corp., Veritas Software)
R0 dmload; C:\WINXP\System32\drivers\dmload.sys [5888 2008-04-14] (Microsoft Corp., Veritas Software.)
S3 DMusic; C:\WINXP\System32\drivers\DMusic.sys [52864 2008-04-13] (Microsoft Corporation)
S3 drmkaud; C:\WINXP\System32\drivers\drmkaud.sys [2944 2008-04-13] (Microsoft Corporation)
R1 dtsoftbus01; C:\WINXP\System32\DRIVERS\dtsoftbus01.sys [242240 2012-06-21] (DT Soft Ltd)
R4 Fastfat; C:\WINXP\system32\Drivers\Fastfat.sys [143744 2008-04-14] (Microsoft Corporation)
S1 Fdc; C:\WINXP\system32\Drivers\Fdc.sys [27392 2008-04-14] (Microsoft Corporation)
R1 Fips; C:\WINXP\system32\Drivers\Fips.sys [44672 2008-04-14] (Microsoft Corporation)
S1 Flpydisk; C:\WINXP\system32\Drivers\Flpydisk.sys [20480 2008-04-14] (Microsoft Corporation)
R0 FltMgr; C:\WINXP\System32\DRIVERS\fltMgr.sys [129792 2008-04-14] (Microsoft Corporation)
U1 Fs_Rec; C:\WINXP\system32\Drivers\Fs_Rec.sys [7936 2008-04-14] (Microsoft Corporation)
R0 Ftdisk; C:\WINXP\System32\DRIVERS\ftdisk.sys [126336 2008-04-14] (Microsoft Corporation)
R3 GEARAspiWDM; C:\WINXP\System32\DRIVERS\GEARAspiWDM.sys [26840 2012-08-21] (GEAR Software Inc.)
R3 Gpc; C:\WINXP\System32\DRIVERS\msgpc.sys [35072 2008-04-14] (Microsoft Corporation)
R2 Hardlock; C:\WINXP\system32\drivers\hardlock.sys [693760 2006-11-22] (Aladdin Knowledge Systems Ltd.)
R3 HDAudBus; C:\WINXP\System32\DRIVERS\HDAudBus.sys [144384 2008-04-14] (Windows (R) Server 2003 DDK provider)
R3 HidUsb; C:\WINXP\System32\DRIVERS\hidusb.sys [10368 2008-04-13] (Microsoft Corporation)
R0 hotcore3; C:\WINXP\System32\DRIVERS\hotcore3.sys [40560 2010-05-20] (Paragon Software Group)
R3 HTTP; C:\WINXP\System32\Drivers\HTTP.sys [264832 2008-04-14] (Microsoft Corporation)
R1 i8042prt; C:\WINXP\System32\DRIVERS\i8042prt.sys [52992 2008-04-14] (Microsoft Corporation)
R0 iaStor; C:\WINXP\System32\DRIVERS\iaStor.sys [330264 2010-01-05] (Intel Corporation)
R1 Imapi; C:\WINXP\System32\DRIVERS\imapi.sys [42112 2008-04-14] (Microsoft Corporation)
R3 IntcAzAudAddService; C:\WINXP\System32\drivers\RtkHDAud.sys [4241920 2006-02-27] (Realtek Semiconductor Corp.)
R1 intelppm; C:\WINXP\System32\DRIVERS\intelppm.sys [40448 2008-04-14] (Microsoft Corporation)
S3 Ip6Fw; C:\WINXP\System32\DRIVERS\Ip6Fw.sys [36608 2008-04-14] (Microsoft Corporation)
S3 IpFilterDriver; C:\WINXP\System32\DRIVERS\ipfltdrv.sys [32896 2008-04-14] (Microsoft Corporation)
S3 IpInIp; C:\WINXP\System32\DRIVERS\ipinip.sys [20864 2008-04-14] (Microsoft Corporation)
R3 IpNat; C:\WINXP\System32\DRIVERS\ipnat.sys [152832 2008-04-14] (Microsoft Corporation)
R1 IPSec; C:\WINXP\System32\DRIVERS\ipsec.sys [75264 2008-04-14] (Microsoft Corporation)
S3 IRENUM; C:\WINXP\System32\DRIVERS\irenum.sys [11264 2008-04-14] (Microsoft Corporation)
R0 isapnp; C:\WINXP\System32\DRIVERS\isapnp.sys [37632 2008-04-14] (Microsoft Corporation)
R1 Kbdclass; C:\WINXP\System32\DRIVERS\kbdclass.sys [25216 2008-04-14] (Microsoft Corporation)
R1 kbdhid; C:\WINXP\System32\DRIVERS\kbdhid.sys [14720 2008-04-14] (Microsoft Corporation)
R3 kmixer; C:\WINXP\System32\drivers\kmixer.sys [172416 2008-04-13] (Microsoft Corporation)
R0 KSecDD; C:\WINXP\system32\Drivers\KSecDD.sys [92288 2008-04-14] (Microsoft Corporation)
R1 mnmdd; C:\WINXP\system32\Drivers\mnmdd.sys [4224 2008-04-14] (Microsoft Corporation)
S3 Modem; C:\WINXP\system32\Drivers\Modem.sys [30336 2008-12-10] (Microsoft Corporation)
R1 Mouclass; C:\WINXP\System32\DRIVERS\mouclass.sys [23552 2008-12-10] (Microsoft Corporation)
R3 mouhid; C:\WINXP\System32\DRIVERS\mouhid.sys [12288 2001-08-18] (Microsoft Corporation)
R0 MountMgr; C:\WINXP\system32\Drivers\MountMgr.sys [42368 2008-04-14] (Microsoft Corporation)
R3 MRxDAV; C:\WINXP\System32\DRIVERS\mrxdav.sys [180608 2008-04-14] (Microsoft Corporation)
R1 MRxSmb; C:\WINXP\System32\DRIVERS\mrxsmb.sys [455936 2008-12-10] (Microsoft Corporation)
R1 Msfs; C:\WINXP\system32\Drivers\Msfs.sys [19072 2008-04-14] (Microsoft Corporation)
S3 MSKSSRV; C:\WINXP\System32\drivers\MSKSSRV.sys [7552 2008-04-13] (Microsoft Corporation)
S3 MSPCLOCK; C:\WINXP\System32\drivers\MSPCLOCK.sys [5376 2008-04-13] (Microsoft Corporation)
S3 MSPQM; C:\WINXP\System32\drivers\MSPQM.sys [4992 2008-04-13] (Microsoft Corporation)
R3 mssmbios; C:\WINXP\System32\DRIVERS\mssmbios.sys [15488 2008-12-10] (Microsoft Corporation)
R0 Mup; C:\WINXP\system32\Drivers\Mup.sys [105344 2008-04-14] (Microsoft Corporation)
R0 NDIS; C:\WINXP\system32\Drivers\NDIS.sys [182656 2008-04-14] (Microsoft Corporation)
R3 NdisTapi; C:\WINXP\System32\DRIVERS\ndistapi.sys [10112 2008-04-14] (Microsoft Corporation)
R3 Ndisuio; C:\WINXP\System32\DRIVERS\ndisuio.sys [14592 2008-12-10] (Microsoft Corporation)
R3 NdisWan; C:\WINXP\System32\DRIVERS\ndiswan.sys [91520 2008-04-14] (Microsoft Corporation)
R3 NDProxy; C:\WINXP\system32\Drivers\NDProxy.sys [40576 2008-04-14] (Microsoft Corporation)
R1 NetBIOS; C:\WINXP\System32\DRIVERS\netbios.sys [34688 2008-04-14] (Microsoft Corporation)
R1 NetBT; C:\WINXP\System32\DRIVERS\netbt.sys [162816 2008-04-14] (Microsoft Corporation)
R3 NETw3x32; C:\WINXP\System32\DRIVERS\NETw3x32.sys [1709696 2006-09-27] (Intel® Corporation)
R3 NIC1394; C:\WINXP\System32\DRIVERS\nic1394.sys [61824 2008-12-10] (Microsoft Corporation)
R1 Npfs; C:\WINXP\system32\Drivers\Npfs.sys [30848 2008-04-14] (Microsoft Corporation)
R2 NSHE; C:\WINXP\system32\Drivers\NSHE.SYS [97792 2008-11-23] (T0r0 2008) [File not signed]
R4 Ntfs; C:\WINXP\system32\Drivers\Ntfs.sys [574976 2008-04-14] (Microsoft Corporation)
R1 Null; C:\WINXP\system32\Drivers\Null.sys [2944 2008-04-14] (Microsoft Corporation)
R3 nv; C:\WINXP\System32\DRIVERS\nv4_mini.sys [6250848 2009-01-30] (NVIDIA Corporation)
S3 NwlnkFlt; C:\WINXP\System32\DRIVERS\nwlnkflt.sys [12416 2008-04-14] (Microsoft Corporation)
S3 NwlnkFwd; C:\WINXP\System32\DRIVERS\nwlnkfwd.sys [32512 2008-04-14] (Microsoft Corporation)
R0 ohci1394; C:\WINXP\System32\DRIVERS\ohci1394.sys [61696 2008-04-14] (Microsoft Corporation)
S3 Parport; C:\WINXP\system32\Drivers\Parport.sys [80384 2008-12-10] (Microsoft Corporation)
R0 PartMgr; C:\WINXP\system32\Drivers\PartMgr.sys [19712 2008-04-14] (Microsoft Corporation)
S2 ParVdm; C:\WINXP\system32\Drivers\ParVdm.sys [7040 2008-04-14] (Microsoft Corporation)
R0 PCI; C:\WINXP\System32\DRIVERS\pci.sys [68224 2008-04-14] (Microsoft Corporation)
R0 PCIIde; C:\WINXP\System32\DRIVERS\pciide.sys [3328 2001-08-18] (Microsoft Corporation)
S4 Pcmcia; C:\WINXP\system32\Drivers\Pcmcia.sys [120576 2008-04-14] (Microsoft Corporation)
R3 PptpMiniport; C:\WINXP\System32\DRIVERS\raspptp.sys [48384 2008-04-14] (Microsoft Corporation)
R3 PSched; C:\WINXP\System32\DRIVERS\psched.sys [69120 2008-04-14] (Microsoft Corporation)
R3 Ptilink; C:\WINXP\System32\DRIVERS\ptilink.sys [17792 2008-04-14] (Parallel Technologies, Inc.)
S3 pwdrvio; C:\WINXP\system32\pwdrvio.sys [16472 2012-01-18] ()
S3 pwdspio; C:\WINXP\system32\pwdspio.sys [11104 2012-01-18] ()
R0 PxHelp20; C:\WINXP\System32\Drivers\PxHelp20.sys [45648 2010-08-12] (Sonic Solutions)
R1 RasAcd; C:\WINXP\System32\DRIVERS\rasacd.sys [8832 2008-04-14] (Microsoft Corporation)
R3 Rasl2tp; C:\WINXP\System32\DRIVERS\rasl2tp.sys [51328 2008-04-14] (Microsoft Corporation)
R3 RasPppoe; C:\WINXP\System32\DRIVERS\raspppoe.sys [41472 2008-04-14] (Microsoft Corporation)
R3 Raspti; C:\WINXP\System32\DRIVERS\raspti.sys [16512 2008-04-14] (Microsoft Corporation)
R1 Rdbss; C:\WINXP\System32\DRIVERS\rdbss.sys [175744 2008-04-14] (Microsoft Corporation)
R1 RDPCDD; C:\WINXP\System32\DRIVERS\RDPCDD.sys [4224 2008-04-14] (Microsoft Corporation)
R3 rdpdr; C:\WINXP\System32\DRIVERS\rdpdr.sys [196224 2008-04-14] (Microsoft Corporation)
S3 RDPWD; C:\WINXP\system32\Drivers\RDPWD.sys [139656 2008-04-14] (Microsoft Corporation)
R1 redbook; C:\WINXP\System32\DRIVERS\redbook.sys [57728 2008-04-14] (Microsoft Corporation)
S3 RFCOMM; C:\WINXP\System32\DRIVERS\rfcomm.sys [59136 2008-04-13] (Microsoft Corporation)
R3 SbieDrv; D:\Sandbox\SbieDrv.sys [123112 2010-08-09] (SANDBOXIE L.T.D)
S3 Secdrv; C:\WINXP\System32\DRIVERS\secdrv.sys [20480 2008-04-14] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
S2 Serial; C:\WINXP\system32\Drivers\Serial.sys [65536 2008-04-14] (Microsoft Corporation)
S1 Sfloppy; C:\WINXP\system32\Drivers\Sfloppy.sys [11392 2008-04-14] (Microsoft Corporation)
S3 splitter; C:\WINXP\System32\drivers\splitter.sys [6272 2008-04-13] (Microsoft Corporation)
R0 sr; C:\WINXP\System32\DRIVERS\sr.sys [73472 2008-04-14] (Microsoft Corporation)
R3 Srv; C:\WINXP\System32\DRIVERS\srv.sys [333824 2008-12-10] (Microsoft Corporation)
R1 ssmdrv; C:\WINXP\System32\DRIVERS\ssmdrv.sys [28520 2009-05-11] (Avira GmbH)
R3 swenum; C:\WINXP\System32\DRIVERS\swenum.sys [4352 2008-12-10] (Microsoft Corporation)
S3 swmidi; C:\WINXP\System32\drivers\swmidi.sys [56576 2008-04-13] (Microsoft Corporation)
R3 sysaudio; C:\WINXP\System32\drivers\sysaudio.sys [60800 2008-04-13] (Microsoft Corporation)
R1 Tcpip; C:\WINXP\System32\DRIVERS\tcpip.sys [361344 2008-04-14] (Microsoft Corporation)
S3 TDPIPE; C:\WINXP\system32\Drivers\TDPIPE.sys [12040 2008-04-14] (Microsoft Corporation)
S3 TDTCP; C:\WINXP\system32\Drivers\TDTCP.sys [21896 2008-04-14] (Microsoft Corporation)
R1 TermDD; C:\WINXP\System32\DRIVERS\termdd.sys [40840 2008-04-14] (Microsoft Corporation)
S4 Udfs; C:\WINXP\system32\Drivers\Udfs.sys [66048 2008-04-14] (Microsoft Corporation)
R3 Update; C:\WINXP\System32\DRIVERS\update.sys [384768 2008-04-14] (Microsoft Corporation)
S3 USBAAPL; C:\WINXP\System32\Drivers\usbaapl.sys [45056 2012-12-13] (Apple, Inc.)
R3 usbccgp; C:\WINXP\System32\DRIVERS\usbccgp.sys [32128 2008-04-13] (Microsoft Corporation)
R3 usbehci; C:\WINXP\System32\DRIVERS\usbehci.sys [30208 2008-04-14] (Microsoft Corporation)
R3 usbhub; C:\WINXP\System32\DRIVERS\usbhub.sys [59520 2008-04-14] (Microsoft Corporation)
S3 usbprint; C:\WINXP\System32\DRIVERS\usbprint.sys [25856 2008-04-13] (Microsoft Corporation)
S3 usbscan; C:\WINXP\System32\DRIVERS\usbscan.sys [15104 2008-04-13] (Microsoft Corporation)
S3 USBSTOR; C:\WINXP\System32\DRIVERS\USBSTOR.SYS [26368 2008-04-13] (Microsoft Corporation)
R3 usbuhci; C:\WINXP\System32\DRIVERS\usbuhci.sys [20608 2008-04-14] (Microsoft Corporation)
R1 VgaSave; C:\WINXP\System32\drivers\vga.sys [20992 2008-04-14] (Microsoft Corporation)
R0 VolSnap; C:\WINXP\system32\Drivers\VolSnap.sys [53760 2008-04-14] (Microsoft Corporation)
R3 Wanarp; C:\WINXP\System32\DRIVERS\wanarp.sys [34560 2008-04-14] (Microsoft Corporation)
S3 wceusbsh; C:\WINXP\System32\DRIVERS\wceusbsh.sys [28672 2006-11-06] (Microsoft Corporation)
S3 Wdf01000; C:\WINXP\System32\Drivers\wdf01000.sys [444136 2009-07-14] (Microsoft Corporation)
R3 wdmaud; C:\WINXP\System32\drivers\wdmaud.sys [83072 2008-04-13] (Microsoft Corporation)
S3 WinUSB; C:\WINXP\System32\DRIVERS\WinUSB.sys [34944 2009-07-13] (Microsoft Corporation)
R1 WmiAcpi; C:\WINXP\System32\DRIVERS\wmiacpi.sys [8832 2008-04-14] (Microsoft Corporation)
S3 WpdUsb; C:\WINXP\System32\DRIVERS\wpdusb.sys [38528 2008-12-10] (Microsoft Corporation)
R1 WS2IFSL; C:\WINXP\System32\drivers\ws2ifsl.sys [12032 2008-04-14] (Microsoft Corporation)
R0 WudfPf; C:\WINXP\System32\DRIVERS\WudfPf.sys [77696 2008-01-18] (Microsoft Corporation)
S3 WudfRd; C:\WINXP\System32\DRIVERS\wudfrd.sys [83328 2008-01-18] (Microsoft Corporation)
S3 catchme; \??\C:\DOKUME~1\ALEXAN~1\LOKALE~1\Temp\catchme.sys [X]
S4 IntelIde; No ImagePath
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-06-19 15:35 - 2014-06-19 15:35 - 00000000 ____D () C:\Dokumente und Einstellungen\Alexander\Desktop\FRST-OlderVersion
2014-06-19 15:32 - 2014-06-19 15:32 - 00012146 _____ () C:\Dokumente und Einstellungen\Alexander\Eigene Dateien\zoek-results.txt
2014-06-19 15:32 - 2014-06-19 15:32 - 00012146 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\zoek-results.txt
2014-06-19 15:29 - 2014-06-19 15:36 - 00000000 ____D () C:\Dokumente und Einstellungen\Alexander\Lokale Einstellungen\Temp
2014-06-19 15:29 - 2014-06-19 15:33 - 00000000 ____D () C:\WINXP\Temp
2014-06-19 15:29 - 2014-06-19 15:29 - 00000000 ____D () C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\temp
2014-06-19 15:29 - 2014-06-19 15:29 - 00000000 ____D () C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\temp
2014-06-19 15:29 - 2014-06-19 15:29 - 00000000 ____D () C:\Dokumente und Einstellungen\Default User\Lokale Einstellungen\Temp
2014-06-19 15:29 - 2014-06-19 15:14 - 00024064 _____ () C:\WINXP\zoek-delete.exe
2014-06-19 15:17 - 2014-06-19 15:32 - 00012146 _____ () C:\zoek-results.log
2014-06-19 15:14 - 2014-06-19 15:26 - 00000000 ____D () C:\zoek_backup
2014-06-19 15:13 - 2014-06-19 15:13 - 01285120 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\zoek.exe
2014-06-19 15:11 - 2014-06-19 15:11 - 00001166 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\malware.txt
2014-06-19 14:52 - 2014-06-19 14:52 - 17292760 _____ (Malwarebytes Corporation ) C:\Dokumente und Einstellungen\Alexander\Desktop\mbam-setup-2.0.2.1012.exe
2014-06-19 14:29 - 2014-06-19 14:46 - 00000000 ____D () C:\AdwCleaner
2014-06-19 14:29 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINXP\system32\sqlite3.dll
2014-06-19 14:28 - 2014-06-19 14:28 - 01333465 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\adwcleaner_3.212.exe
2014-06-19 14:17 - 2014-06-19 15:33 - 00008397 _____ () C:\WINXP\WindowsUpdate.log
2014-06-18 18:55 - 2014-06-18 18:55 - 00016247 _____ () C:\ComboFix.txt
2014-06-18 18:00 - 2014-06-18 18:00 - 00000000 _RSHD () C:\cmdcons
2014-06-18 18:00 - 2013-04-25 16:37 - 00000207 _____ () C:\Boot.bak
2014-06-18 18:00 - 2004-08-03 23:00 - 00262448 __RSH () C:\cmldr
2014-06-18 17:56 - 2014-06-18 18:55 - 00000000 ____D () C:\Qoobox
2014-06-18 17:56 - 2014-06-18 18:53 - 00000000 ____D () C:\WINXP\erdnt
2014-06-18 17:56 - 2011-06-26 11:15 - 00256000 _____ () C:\WINXP\PEV.exe
2014-06-18 17:56 - 2010-11-07 21:50 - 00208896 _____ () C:\WINXP\MBR.exe
2014-06-18 17:56 - 2009-04-20 09:26 - 00060416 _____ (NirSoft) C:\WINXP\NIRCMD.exe
2014-06-18 17:56 - 2000-08-31 04:30 - 00518144 _____ (SteelWerX) C:\WINXP\SWREG.exe
2014-06-18 17:56 - 2000-08-31 04:30 - 00406528 _____ (SteelWerX) C:\WINXP\SWSC.exe
2014-06-18 17:56 - 2000-08-31 04:30 - 00212480 _____ (SteelWerX) C:\WINXP\SWXCACLS.exe
2014-06-18 17:56 - 2000-08-31 04:30 - 00098816 _____ () C:\WINXP\sed.exe
2014-06-18 17:56 - 2000-08-31 04:30 - 00080412 _____ () C:\WINXP\grep.exe
2014-06-18 17:56 - 2000-08-31 04:30 - 00068096 _____ () C:\WINXP\zip.exe
2014-06-18 17:54 - 2014-06-18 17:55 - 05206841 ____R (Swearware) C:\Dokumente und Einstellungen\Alexander\Desktop\ComboFix.exe
2014-06-17 20:46 - 2014-06-17 20:47 - 00025091 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\Addition.txt
2014-06-17 20:45 - 2014-06-19 15:36 - 00039611 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\FRST.txt
2014-06-17 20:44 - 2014-06-19 15:35 - 01072128 _____ (Farbar) C:\Dokumente und Einstellungen\Alexander\Desktop\FRST.exe
2014-06-17 20:44 - 2014-06-19 15:35 - 00000000 ____D () C:\FRST
2014-06-16 21:23 - 2014-06-16 21:23 - 00007763 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\malware_1.txt
2014-06-16 21:01 - 2014-06-19 14:54 - 00110296 _____ (Malwarebytes Corporation) C:\WINXP\system32\Drivers\MBAMSwissArmy.sys
2014-06-16 21:00 - 2014-06-16 21:00 - 00000751 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Malwarebytes Anti-Malware.lnk
2014-06-16 21:00 - 2014-06-16 21:00 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Malwarebytes Anti-Malware
2014-06-16 20:59 - 2014-06-16 21:00 - 00000000 ____D () C:\Programme\Malwarebytes Anti-Malware
2014-06-16 20:59 - 2014-06-16 20:59 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes
2014-06-16 20:59 - 2014-05-12 07:26 - 00053208 _____ (Malwarebytes Corporation) C:\WINXP\system32\Drivers\mbamchameleon.sys
2014-06-16 20:59 - 2014-05-12 07:25 - 00023256 _____ (Malwarebytes Corporation) C:\WINXP\system32\Drivers\mbam.sys
2014-06-16 20:36 - 2014-06-16 20:36 - 00386154 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\fehler.bmp
2014-06-11 20:56 - 2014-06-11 20:56 - 03932214 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\Unbenannt99.bmp
2014-06-04 21:05 - 2014-06-04 21:06 - 00000000 ____D () C:\Dokumente und Einstellungen\Alexander\Eigene Dateien\Alemmannia Aachen - FC Koeln
2014-05-20 17:44 - 2014-04-14 20:13 - 00094632 _____ (Oracle Corporation) C:\WINXP\system32\WindowsAccessBridge.dll
2014-05-20 17:44 - 2014-04-14 20:05 - 00264616 _____ (Oracle Corporation) C:\WINXP\system32\javaws.exe
2014-05-20 17:44 - 2014-04-14 20:05 - 00175528 _____ (Oracle Corporation) C:\WINXP\system32\javaw.exe
2014-05-20 17:44 - 2014-04-14 20:04 - 00175016 _____ (Oracle Corporation) C:\WINXP\system32\java.exe
2014-05-20 17:40 - 2014-05-20 17:44 - 00005539 _____ () C:\WINXP\system32\jupdate-1.7.0_55-b14.log
==================== One Month Modified Files and Folders =======
2014-06-19 15:36 - 2014-06-19 15:29 - 00000000 ____D () C:\Dokumente und Einstellungen\Alexander\Lokale Einstellungen\Temp
2014-06-19 15:36 - 2014-06-17 20:45 - 00039611 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\FRST.txt
2014-06-19 15:35 - 2014-06-19 15:35 - 00000000 ____D () C:\Dokumente und Einstellungen\Alexander\Desktop\FRST-OlderVersion
2014-06-19 15:35 - 2014-06-17 20:44 - 01072128 _____ (Farbar) C:\Dokumente und Einstellungen\Alexander\Desktop\FRST.exe
2014-06-19 15:35 - 2014-06-17 20:44 - 00000000 ____D () C:\FRST
2014-06-19 15:33 - 2014-06-19 15:29 - 00000000 ____D () C:\WINXP\Temp
2014-06-19 15:33 - 2014-06-19 14:17 - 00008397 _____ () C:\WINXP\WindowsUpdate.log
2014-06-19 15:33 - 2010-01-05 22:55 - 00000159 _____ () C:\WINXP\wiadebug.log
2014-06-19 15:33 - 2010-01-05 22:55 - 00000050 _____ () C:\WINXP\wiaservc.log
2014-06-19 15:32 - 2014-06-19 15:32 - 00012146 _____ () C:\Dokumente und Einstellungen\Alexander\Eigene Dateien\zoek-results.txt
2014-06-19 15:32 - 2014-06-19 15:32 - 00012146 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\zoek-results.txt
2014-06-19 15:32 - 2014-06-19 15:17 - 00012146 _____ () C:\zoek-results.log
2014-06-19 15:32 - 2013-04-17 19:36 - 00001092 _____ () C:\WINXP\Tasks\GoogleUpdateTaskMachineCore.job
2014-06-19 15:32 - 2010-01-06 01:04 - 00202011 _____ () C:\WINXP\system32\nvapps.xml
2014-06-19 15:32 - 2010-01-05 23:46 - 00000000 ____D () C:\WINXP
2014-06-19 15:32 - 2010-01-05 23:42 - 00000006 ____H () C:\WINXP\Tasks\SA.DAT
2014-06-19 15:31 - 2010-01-05 23:42 - 00032488 _____ () C:\WINXP\SchedLgU.Txt
2014-06-19 15:29 - 2014-06-19 15:29 - 00000000 ____D () C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\temp
2014-06-19 15:29 - 2014-06-19 15:29 - 00000000 ____D () C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\temp
2014-06-19 15:29 - 2014-06-19 15:29 - 00000000 ____D () C:\Dokumente und Einstellungen\Default User\Lokale Einstellungen\Temp
2014-06-19 15:26 - 2014-06-19 15:14 - 00000000 ____D () C:\zoek_backup
2014-06-19 15:26 - 2014-05-02 10:40 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\DVDVideoSoft
2014-06-19 15:26 - 2010-01-05 23:48 - 00000000 ____D () C:\Dokumente und Einstellungen\Alexander
2014-06-19 15:14 - 2014-06-19 15:29 - 00024064 _____ () C:\WINXP\zoek-delete.exe
2014-06-19 15:13 - 2014-06-19 15:13 - 01285120 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\zoek.exe
2014-06-19 15:11 - 2014-06-19 15:11 - 00001166 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\malware.txt
2014-06-19 15:09 - 2013-04-17 19:36 - 00001096 _____ () C:\WINXP\Tasks\GoogleUpdateTaskMachineUA.job
2014-06-19 14:54 - 2014-06-16 21:01 - 00110296 _____ (Malwarebytes Corporation) C:\WINXP\system32\Drivers\MBAMSwissArmy.sys
2014-06-19 14:52 - 2014-06-19 14:52 - 17292760 _____ (Malwarebytes Corporation ) C:\Dokumente und Einstellungen\Alexander\Desktop\mbam-setup-2.0.2.1012.exe
2014-06-19 14:46 - 2014-06-19 14:29 - 00000000 ____D () C:\AdwCleaner
2014-06-19 14:46 - 2010-01-05 22:53 - 00000000 ____D () C:\Programme
2014-06-19 14:28 - 2014-06-19 14:28 - 01333465 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\adwcleaner_3.212.exe
2014-06-18 20:23 - 2012-04-28 11:06 - 00000000 ____D () C:\Dokumente und Einstellungen\Alexander\Eigene Dateien\FILSHtray
2014-06-18 18:55 - 2014-06-18 18:55 - 00016247 _____ () C:\ComboFix.txt
2014-06-18 18:55 - 2014-06-18 17:56 - 00000000 ____D () C:\Qoobox
2014-06-18 18:55 - 2010-01-05 23:42 - 00000000 __SHD () C:\Dokumente und Einstellungen\LocalService
2014-06-18 18:53 - 2014-06-18 17:56 - 00000000 ____D () C:\WINXP\erdnt
2014-06-18 18:51 - 2008-04-14 14:30 - 00000227 _____ () C:\WINXP\system.ini
2014-06-18 18:00 - 2014-06-18 18:00 - 00000000 _RSHD () C:\cmdcons
2014-06-18 18:00 - 2010-01-05 23:51 - 00000323 __RSH () C:\boot.ini
2014-06-18 17:55 - 2014-06-18 17:54 - 05206841 ____R (Swearware) C:\Dokumente und Einstellungen\Alexander\Desktop\ComboFix.exe
2014-06-17 20:47 - 2014-06-17 20:46 - 00025091 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\Addition.txt
2014-06-17 17:59 - 2012-05-29 16:21 - 00000000 __HDC () C:\WINXP\$NtUninstallwinusb0200$
2014-06-16 21:23 - 2014-06-16 21:23 - 00007763 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\malware_1.txt
2014-06-16 21:00 - 2014-06-16 21:00 - 00000751 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Malwarebytes Anti-Malware.lnk
2014-06-16 21:00 - 2014-06-16 21:00 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Malwarebytes Anti-Malware
2014-06-16 21:00 - 2014-06-16 20:59 - 00000000 ____D () C:\Programme\Malwarebytes Anti-Malware
2014-06-16 21:00 - 2010-01-05 22:53 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme
2014-06-16 20:59 - 2014-06-16 20:59 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes
2014-06-16 20:36 - 2014-06-16 20:36 - 00386154 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\fehler.bmp
2014-06-16 20:17 - 2008-04-14 14:30 - 00002206 _____ () C:\WINXP\system32\wpa.dbl
2014-06-11 20:56 - 2014-06-11 20:56 - 03932214 _____ () C:\Dokumente und Einstellungen\Alexander\Desktop\Unbenannt99.bmp
2014-06-11 20:47 - 2013-04-17 19:36 - 00699056 _____ (Adobe Systems Incorporated) C:\WINXP\system32\FlashPlayerApp.exe
2014-06-11 20:47 - 2011-12-13 16:41 - 00071344 _____ (Adobe Systems Incorporated) C:\WINXP\system32\FlashPlayerCPLApp.cpl
2014-06-04 21:06 - 2014-06-04 21:05 - 00000000 ____D () C:\Dokumente und Einstellungen\Alexander\Eigene Dateien\Alemmannia Aachen - FC Koeln
2014-06-02 17:54 - 2010-03-09 15:40 - 00000000 ____D () C:\Dokumente und Einstellungen\Alexander\Anwendungsdaten\FileZilla
2014-05-26 20:01 - 2012-06-02 11:22 - 00065536 _____ () C:\WINXP\system32\config\TuneUp.evt
2014-05-26 17:53 - 2013-10-14 15:28 - 00000664 _____ () C:\WINXP\system32\d3d9caps.dat
2014-05-20 17:44 - 2014-05-20 17:40 - 00005539 _____ () C:\WINXP\system32\jupdate-1.7.0_55-b14.log
2014-05-20 17:44 - 2010-01-14 01:04 - 00000000 ____D () C:\Programme\Java
2014-05-20 14:14 - 2013-04-17 19:38 - 00001771 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Google Chrome.lnk
==================== Bamital & volsnap Check =================
C:\WINXP\explorer.exe => File is digitally signed
C:\WINXP\system32\winlogon.exe => File is digitally signed
C:\WINXP\system32\svchost.exe => File is digitally signed
C:\WINXP\system32\services.exe => File is digitally signed
C:\WINXP\system32\User32.dll => File is digitally signed
C:\WINXP\system32\userinit.exe => File is digitally signed
C:\WINXP\system32\rpcss.dll => File is digitally signed
C:\WINXP\system32\Drivers\volsnap.sys => File is digitally signed
==================== End Of Log ============================ --- --- ---
--- --- ---
[/CODE]
Addition Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version:18-06-2014
Ran by Alexander at 2014-06-19 15:36:31
Running from C:\Dokumente und Einstellungen\Alexander\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: AntiVir Desktop (Disabled - Up to date) {AD166499-45F9-482A-A743-FDD3350758C7}
==================== Installed Programs ======================
32 Bit HP CIO Components Installer (Version: 7.1.5 - Hewlett-Packard) Hidden
7-Zip 4.65 (HKLM\...\7-Zip) (Version: - )
Adobe AIR (HKLM\...\Adobe AIR) (Version: 3.2.0.2070 - Adobe Systems Incorporated)
Adobe AIR (Version: 3.2.0.2070 - Adobe Systems Incorporated) Hidden
Adobe Anchor Service CS4 (Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe Bridge CS4 (Version: 3 - Adobe Systems Incorporated) Hidden
Adobe CMaps CS4 (Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe CSI CS4 (Version: 1 - Adobe Systems Incorporated) Hidden
Adobe Default Language CS4 (Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe Device Central CS4 (Version: 2 - Adobe Systems Incorporated) Hidden
Adobe Download Assistant (HKLM\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2 - Adobe Systems Incorporated)
Adobe Download Assistant (Version: 1.2 - Adobe Systems Incorporated) Hidden
Adobe Dreamweaver CS4 (HKLM\...\Adobe_acce07fd2c8fe7f9e3f26243e626578) (Version: 10.0 - Adobe Systems Incorporated)
Adobe Dreamweaver CS4 (Version: 10.0 - Adobe Systems Incorporated) Hidden
Adobe ExtendScript Toolkit CS4 (Version: 3.0.0 - Adobe Systems Incorporated) Hidden
Adobe Extension Manager CS4 (Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 11 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 11.7.700.169 - Adobe Systems Incorporated)
Adobe Flash Player 14 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 14.0.0.125 - Adobe Systems Incorporated)
Adobe Media Player (HKLM\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1 - Adobe Systems Incorporated)
Adobe Media Player (Version: 0.0.0 - Adobe Systems Incorporated) Hidden
Adobe Output Module (Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe PDF Library Files CS4 (Version: 9.0 - Adobe Systems Incorporated) Hidden
Adobe Photoshop Lightroom 3.2 (HKLM\...\{EDD235BB-9FB4-4604-85ED-1B14A256F4E0}) (Version: 3.2.1 - Adobe)
Adobe Reader 9.5.3 - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-A95000000001}) (Version: 9.5.3 - Adobe Systems Incorporated)
Adobe Search for Help (Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Service Manager Extension (Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Setup (Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe Type Support CS4 (Version: 9.0 - Adobe Systems Incorporated) Hidden
Adobe Update Manager CS4 (Version: 6.0.0 - Adobe Systems Incorporated) Hidden
Adobe XMP Panels CS4 (Version: 2.0 - Adobe Systems Incorporated) Hidden
Apple Application Support (HKLM\...\{45C56AA7-ED1B-4800-A97F-EDDF3F3520B1}) (Version: 2.3.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{E14ADE0E-75F3-4A46-87E5-26692DD626EC}) (Version: 6.1.0.13 - Apple Inc.)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Avidemux 2.5 (32-bit) (HKLM\...\Avidemux 2.5) (Version: 2.5.6.7716 - )
Avira AntiVir Personal - Free Antivirus (HKLM\...\Avira AntiVir Desktop) (Version: - Avira GmbH)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
Canon Easy-WebPrint EX (HKLM\...\Easy-WebPrint EX) (Version: - )
Canon MP Navigator EX 4.0 (HKLM\...\MP Navigator EX 4.0) (Version: - )
Canon MP495 series Benutzerregistrierung (HKLM\...\Canon MP495 series Benutzerregistrierung) (Version: - )
Canon MP495 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP495_series) (Version: - )
Canon My Printer (HKLM\...\CanonMyPrinter) (Version: - )
Canon Solution Menu EX (HKLM\...\CanonSolutionMenuEX) (Version: - )
Connect (Version: 1.0.0.1 - Adobe Systems Incorporated) Hidden
CrystalDiskInfo 6.0.4 (HKLM\...\CrystalDiskInfo_is1) (Version: 6.0.4 - Crystal Dew World)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 4.45.4.0314 - DT Soft Ltd)
dBpoweramp Music Converter (HKLM\...\dBpoweramp Music Converter) (Version: Release 13.3 - Illustrate)
DivX-Setup (HKLM\...\DivX Setup.divx.com) (Version: 2.0.0.86 - DivX, Inc. )
Dropbox (HKCU\...\Dropbox) (Version: 2.4.11 - Dropbox, Inc.)
FileZilla Client 3.3.3 (HKLM\...\FileZilla Client) (Version: 3.3.3 - )
FILSHtray (HKLM\...\{5928359F-BF46-4646-BF19-B64E55171EB5}) (Version: 0.12 - FILSH Media GmbH)
FormatFactory 3.3.4.0 (HKLM\...\FormatFactory) (Version: 3.3.4.0 - Format Factory)
Free AVI Video Converter version 5.0.39.430 (HKLM\...\Free AVI Video Converter_is1) (Version: 5.0.39.430 - DVDVideoSoft Ltd.)
Free Video to iPad Converter version 5.0.38.423 (HKLM\...\Free Video to iPad Converter_is1) (Version: 5.0.38.423 - DVDVideoSoft Ltd.)
FreePDF (Remove only) (HKLM\...\FreePDF_XP) (Version: - )
Google Chrome (HKLM\...\Google Chrome) (Version: 34.0.1847.137 - Google Inc.)
Google Update Helper (Version: 1.3.24.7 - Google Inc.) Hidden
GPL Ghostscript 8.71 (HKLM\...\GPL Ghostscript 8.71) (Version: - )
HandBrake 0.9.9 (HKLM\...\HandBrake) (Version: 0.9.9 - )
HD2 Toolkit Version 4.1 (HKLM\...\{12EE0B2A-84C6-494E-A7AC-6771E898F6A0}_is1) (Version: 4.1 - Kaushal Subedi (KSubedi))
Hotfix für Windows XP (KB942288-v3) (HKLM\...\KB942288-v3) (Version: 3 - Microsoft Corporation)
iExplorer 3.1.0.2 (HKLM\...\{7FD8B0C1-CDDA-4B4D-A577-B2E3570EA3A3}_is1) (Version: - Macroplant LLC)
IrfanView (remove only) (HKLM\...\IrfanView) (Version: - )
iTunes (HKLM\...\{268278CF-FB69-4D98-B70E-BFEC1CDCA225}) (Version: 11.0.2.26 - Apple Inc.)
Java 7 Update 55 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217040FF}) (Version: 7.0.550 - Oracle)
Java Auto Updater (Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Java(TM) 6 Update 15 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216015FF}) (Version: 6.0.150 - Sun Microsystems, Inc.)
JDownloader (HKLM\...\JDownloader) (Version: 0.89 - AppWork UG (haftungsbeschränkt))
kuler (Version: 2.0 - Adobe Systems Incorporated) Hidden
Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - DEU (HKLM\...\{C314CE45-3392-3B73-B4E1-139CD41CA933}) (Version: 2.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - DEU (HKLM\...\{C2C284D2-6BD7-3B34-B0C5-B2CAED168DF7}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - deu) (Version: - Microsoft Corporation)
Microsoft .NET Framework 3.5 Language Pack SP1 - deu (Version: 3.5.30729 - Microsoft Corporation) Hidden
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Kernel-Mode Driver Framework Feature Pack 1.9 (Version: - Microsoft Corporation) Hidden
Microsoft Office Access MUI (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.10411.0 - Microsoft Corporation)
Microsoft Software Update for Web Folders (German) 12 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft User-Mode Driver Framework Feature Pack 1.7 (HKLM\...\Wudf01007) (Version: - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft WinUsb 1.0 (HKLM\...\winusb0100) (Version: - Microsoft Corporation)
Microsoft WinUsb 2.0 (HKLM\...\winusb0200) (Version: - Microsoft Corporation)
MiniTool Partition Wizard Home Edition 7.1 (HKLM\...\{34A153FE-6926-4C14-B48A-B71E68C672A8}_is1) (Version: - MiniTool Solution Ltd.)
Mozilla Firefox 27.0.1 (x86 de) (HKLM\...\Mozilla Firefox 27.0.1 (x86 de)) (Version: 27.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 27.0.1 - Mozilla)
MSVCRT Redists (Version: 1.0 - Sony Creative Software Inc.) Hidden
MyPhoneExplorer (HKLM\...\MPE) (Version: 1.8.5 - F.J. Wechselberger)
myphotobook.de (HKLM\...\de.myphotobook.creator.001F9DF2D0BAABEB11F42CCEE43224607B61109C.1) (Version: 1.3.5 - myphotobook GmbH)
myphotobook.de (Version: 1.3.5 - myphotobook GmbH) Hidden
Nero 7 Ultra Edition (HKLM\...\{22FB6750-ADDF-4726-B67F-6901E1991031}) (Version: 7.03.0993 - Nero AG)
neroxml (Version: 1.0.0 - Nero AG) Hidden
Novacomd (HKLM\...\{BA9A297F-0198-4EE8-90CB-F5036C180E1D}) (Version: 1.0.0.76 - Palm, Inc.)
Nur Entfernen der CopyTrans Suite möglich (HKCU\...\CopyTrans Suite) (Version: 2.37 - WindSolutions)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.3 - NVIDIA Corporation)
NVIDIA PhysX (HKLM\...\{8AAB4176-A747-493A-A42C-B63CFADFD8E3}) (Version: 9.09.0010 - NVIDIA Corporation)
Paint.NET v3.5.5 (HKLM\...\{F0E2B312-D7FD-4349-A9B6-E90B36DB1BD0}) (Version: 3.55.0 - dotPDN LLC)
Paragon Partition Manager™ 11 Professional (HKLM\...\{A35001F0-F1E4-11DD-A38B-005056C00008}) (Version: 90.00.0003 - Paragon Software)
PhotoFiltre (HKCU\...\PhotoFiltre) (Version: - )
Photoshop Camera Raw (Version: 5.0 - Adobe Systems Incorporated) Hidden
QuickTime (HKLM\...\{0E64B098-8018-4256-BA23-C316A43AD9B0}) (Version: 7.72.80.56 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 2.04 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.49 - Piriform)
RedMon - Redirection Port Monitor (HKLM\...\Redirection Port Monitor) (Version: - )
Sandboxie 3.48 (HKLM\...\Sandboxie) (Version: - )
SDFormatter (HKLM\...\{15EB20D6-5F13-41D0-BEF9-C9C44D6AC620}) (Version: 3.0.0 - SD Association)
Sicherheitsupdate für Windows Internet Explorer 7 (KB938127-v2) (HKLM\...\KB938127-v2-IE7) (Version: 2 - Microsoft Corporation)
Sicherheitsupdate für Windows Internet Explorer 7 (KB958215) (HKLM\...\KB958215-IE7) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows Media Player 11 (KB954154) (HKLM\...\KB954154_WM11) (Version: - Microsoft Corporation)
Sicherheitsupdate für Windows XP (KB923789) (HKLM\...\KB923789) (Version: - Microsoft Corporation)
Sicherheitsupdate für Windows XP (KB941569) (HKLM\...\KB941569) (Version: - Microsoft Corporation)
Sicherheitsupdate für Windows XP (KB956391) (HKLM\...\KB956391) (Version: 1 - Microsoft Corporation)
Suite Shared Configuration CS4 (Version: 1.0 - Adobe Systems Incorporated) Hidden
SUPER © v2012.build.51 (April 7, 2012) Version v2012.build.51 (HKLM\...\{B93DCF58-AA57-41EC-8D69-B05C66C6312D}_is1) (Version: v2012.build.51 - eRightSoft)
Syncios Version 2.0.3 (HKLM\...\{068A5D84-8419-4BDE-9689-FE65F412EFBB}_is1) (Version: 2.0.3 - Anvsoft, Inc.)
Unity Web Player (HKCU\...\UnityWebPlayer) (Version: 2.6.1f3_31223 - Unity Technologies ApS)
Update für Windows XP (KB898461) (HKLM\...\KB898461) (Version: 1 - Microsoft Corporation)
Update für Windows XP (KB943729) (HKLM\...\KB943729) (Version: - Microsoft Corporation)
VC80CRTRedist - 8.0.50727.4053 (Version: 1.1.0 - DivX, Inc) Hidden
Veetle TV 0.9.18 (HKLM\...\Veetle TV) (Version: 0.9.18 - Veetle, Inc)
Vegas Movie Studio HD Platinum 11.0 (HKLM\...\{4A62FED1-759A-11E0-8248-0013D3D69929}) (Version: 11.0.220 - Sony)
VisualLightBox (HKLM\...\VisualLightBox) (Version: - )
WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden
Winamp (HKLM\...\Winamp) (Version: 5.571 - Nullsoft, Inc)
Windows Driver Package - Intel (NETw3x32) net (09/27/2006 10.5.1.68) (HKLM\...\BBAD1A7054D7B16ED03E62627C123F5CBA70A4E7) (Version: 09/27/2006 10.5.1.68 - Intel)
Windows Driver Package - Intel (w29n51) net (06/26/2006 9.0.4.17) (HKLM\...\D16AA00FE65B9D2C6E0A57F54400303BF3259CC3) (Version: 06/26/2006 9.0.4.17 - Intel)
Windows Driver Package - Palm (WinUSB) Palm Devices (10/09/2009 1.0.1) (HKLM\...\332CCC08910F1AE2E4D90D25DEDE87E3EF797832) (Version: 10/09/2009 1.0.1 - Palm)
Windows Feature Pack for Storage (32-bit) - IMAPI update for Blu-Ray (HKLM\...\KB952011) (Version: 1.0 - Microsoft Corporation)
Windows Genuine Advantage Notifications (KB905474) (HKLM\...\WgaNotify) (Version: 1.8.0031.9 - Microsoft Corporation)
Windows Movie Maker 2.0 (Version: 2.0.0000 - Microsoft Corporation) Hidden
WinSetupFromUSB (HKCU\...\WinSetupFromUSB) (Version: - )
XMedia Recode 3.0.8.5 (HKLM\...\XMedia Recode) (Version: 3.0.8.5 - Sebastian Dörfler)
XML Paper Specification Shared Components Language Pack 1.0 (Version: - Microsoft Corporation) Hidden
XP Codec Pack (HKLM\...\XP Codec Pack) (Version: - )
==================== Restore Points =========================
20-05-2014 15:09:31 Systemprüfpunkt
20-05-2014 13:09:32 Installed Java 7 Update 55
22-05-2014 16:49:19 Systemprüfpunkt
26-05-2014 13:51:23 Systemprüfpunkt
26-05-2014 15:28:31 TuneUp Utilities 2014 wird entfernt
26-05-2014 15:29:00 TuneUp Utilities 2014 (de-DE) wird entfernt
17-06-2014 13:23:33 Systemprüfpunkt
18-06-2014 15:01:47 Systemprüfpunkt
19-06-2014 10:47:12 zoek.exe restore point
==================== Hosts content: ==========================
2008-04-14 14:30 - 2014-06-18 18:51 - 00000027 ____A C:\WINXP\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: C:\WINXP\Tasks\GoogleUpdateTaskMachineCore.job => C:\Programme\Google\Update\GoogleUpdate.exe
Task: C:\WINXP\Tasks\GoogleUpdateTaskMachineUA.job => C:\Programme\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2010-08-24 18:15 - 2005-01-06 18:33 - 00116224 _____ () C:\WINXP\system32\redmonnt.dll
2010-01-08 13:20 - 2009-01-28 15:03 - 00326401 _____ () C:\Programme\Avira\AntiVir Desktop\sqlite3.dll
2009-02-27 16:41 - 2009-02-27 16:41 - 00311296 _____ () C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\PDFShell.DEU
2010-08-21 00:15 - 2010-08-21 00:15 - 01164584 _____ () C:\Programme\DivX\DivX Update\DivXUpdate.exe
2010-08-21 00:15 - 2010-08-21 00:15 - 00095528 _____ () C:\Programme\DivX\DivX Update\DivXUpdateCheck.dll
2012-02-20 21:29 - 2012-02-20 21:29 - 00087912 _____ () C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\zlib1.dll
2012-02-20 21:28 - 2012-02-20 21:28 - 01242472 _____ () C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\libxml2.dll
2014-02-22 15:10 - 2014-02-22 15:10 - 03578992 _____ () D:\Firefox\mozjs.dll
2014-06-11 20:44 - 2014-06-11 20:47 - 17024688 _____ () C:\WINXP\system32\Macromed\Flash\NPSWF32_14_0_0_125.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\Dokumente und Einstellungen\Alexander\Eigene Dateien\Anni und ich_Bennys Geburtstag.JPG:com.dropbox.attributes
AlternateDataStreams: C:\Dokumente und Einstellungen\Alexander\Eigene Dateien\Mareike und ich_Bennys Geburtstag.JPG:com.dropbox.attributes
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
==================== EXE Association (whitelisted) =============
==================== MSCONFIG/TASK MANAGER disabled items =========
MSCONFIG\startupreg: BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} => "C:\Programme\Gemeinsame Dateien\Ahead\Lib\NMBgMonitor.exe"
MSCONFIG\startupreg: NeroFilterCheck => C:\Programme\Gemeinsame Dateien\Ahead\Lib\NeroCheck.exe
MSCONFIG\startupreg: RTHDCPL => RTHDCPL.EXE
MSCONFIG\startupreg: WinampAgent => D:\Winamp\winampa.exe
==================== Faulty Device Manager Devices =============
Name: Modemgerät auf High Definition Audio-Bus
Description: Modemgerät auf High Definition Audio-Bus
Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Ethernet-Controller
Description: Ethernet-Controller
Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: SM-Bus-Controller
Description: SM-Bus-Controller
Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (06/18/2014 06:25:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Fehlgeschlagene Anwendung pev.exe, Version 0.0.0.0, fehlgeschlagenes Modul pev.exe, Version 0.0.0.0, Fehleradresse 0x0008d1c0.
Das medienspezifische Ereignis für [pev.exe!ws!] wird verarbeitet.
Error: (06/18/2014 05:56:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Fehlgeschlagene Anwendung iexplore.exe, Version 0.0.0.0, fehlgeschlagenes Modul unknown, Version 0.0.0.0, Fehleradresse 0x00340fdf.
Das medienspezifische Ereignis für [iexplore.exe!ws!] wird verarbeitet.
Error: (06/18/2014 05:56:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Fehlgeschlagene Anwendung iexplore.exe, Version 0.0.0.0, fehlgeschlagenes Modul unknown, Version 0.0.0.0, Fehleradresse 0x00340fdf.
Das medienspezifische Ereignis für [iexplore.exe!ws!] wird verarbeitet.
Error: (06/18/2014 05:56:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Fehlgeschlagene Anwendung iexplore.exe, Version 0.0.0.0, fehlgeschlagenes Modul unknown, Version 0.0.0.0, Fehleradresse 0x00340fdf.
Das medienspezifische Ereignis für [iexplore.exe!ws!] wird verarbeitet.
Error: (06/18/2014 05:56:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Fehlgeschlagene Anwendung iexplore.exe, Version 0.0.0.0, fehlgeschlagenes Modul unknown, Version 0.0.0.0, Fehleradresse 0x00340fdf.
Das medienspezifische Ereignis für [iexplore.exe!ws!] wird verarbeitet.
Error: (06/18/2014 05:56:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Fehlgeschlagene Anwendung iexplore.exe, Version 0.0.0.0, fehlgeschlagenes Modul unknown, Version 0.0.0.0, Fehleradresse 0x00340fdf.
Das medienspezifische Ereignis für [iexplore.exe!ws!] wird verarbeitet.
Error: (06/18/2014 05:56:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Fehlgeschlagene Anwendung iexplore.exe, Version 0.0.0.0, fehlgeschlagenes Modul unknown, Version 0.0.0.0, Fehleradresse 0x00340fdf.
Das medienspezifische Ereignis für [iexplore.exe!ws!] wird verarbeitet.
Error: (06/17/2014 08:35:13 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2063
Error: (06/17/2014 08:35:13 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2063
Error: (06/17/2014 08:35:13 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
System errors:
=============
Error: (06/19/2014 03:33:17 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "ELSA APOSpro Server" wurde aufgrund folgenden Fehlers nicht gestartet:
%%3
Error: (06/19/2014 03:33:17 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "ELSA PASS Server" wurde aufgrund folgenden Fehlers nicht gestartet:
%%3
Error: (06/19/2014 03:33:17 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "ELSA Historie Server" wurde aufgrund folgenden Fehlers nicht gestartet:
%%3
Error: (06/19/2014 03:33:17 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "ELSA DBA Server" wurde aufgrund folgenden Fehlers nicht gestartet:
%%3
Error: (06/19/2014 03:33:17 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "ELSA Administration Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%3
Error: (06/19/2014 03:33:17 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Zeitüberschreitung (30000 ms) beim Verbindungsversuch mit Dienst Optimizer Pro Crash Monitor.
Error: (06/19/2014 02:48:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "ELSA APOSpro Server" wurde aufgrund folgenden Fehlers nicht gestartet:
%%3
Error: (06/19/2014 02:48:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "ELSA PASS Server" wurde aufgrund folgenden Fehlers nicht gestartet:
%%3
Error: (06/19/2014 02:48:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "ELSA Historie Server" wurde aufgrund folgenden Fehlers nicht gestartet:
%%3
Error: (06/19/2014 02:48:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "ELSA DBA Server" wurde aufgrund folgenden Fehlers nicht gestartet:
%%3
Microsoft Office Sessions:
=========================
==================== Memory info ===========================
Percentage of memory in use: 64%
Total physical RAM: 1022.11 MB
Available physical RAM: 364.82 MB
Total Pagefile: 2459.36 MB
Available Pagefile: 1885.66 MB
Total Virtual: 2047.88 MB
Available Virtual: 1929.5 MB
==================== Drives ================================
Drive c: (OS) (Fixed) (Total:19.53 GB) (Free:6.26 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: (Software) (Fixed) (Total:11.9 GB) (Free:3.14 GB) NTFS
Drive e: (Musik) (Fixed) (Total:27.16 GB) (Free:13.44 GB) NTFS
Drive g: (Bilder) (Fixed) (Total:53.19 GB) (Free:11.41 GB) NTFS
Drive i: (HBCD 15.2) (CDROM) (Total:0.58 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 112 GB) (Disk ID: 7597FE3A)
Partition 1: (Active) - (Size=20 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=92 GB) - (Type=OF Extended)
==================== End Of Log ============================ |