Virenscanner sagt nun virenfrei :applaus:
Werde nun einmal neu starten und schauen was dabei raus kommt
OTL: Code:
OTL logfile created on: 28.03.2010 09:50:18 - Run 3
OTL by OldTimer - Version 3.1.37.3 Folder = D:\Downloads
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18882)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 42,00% Memory free
5,00 Gb Paging File | 3,00 Gb Available in Paging File | 67,00% Paging File free
Paging file location(s): c:\pagefile.sys 3067 3067 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 33,66 Gb Total Space | 3,87 Gb Free Space | 11,51% Space Free | Partition Type: NTFS
Drive D: | 78,12 Gb Total Space | 11,46 Gb Free Space | 14,67% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: ***-NOTEBOOK
Current User Name: ***
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ==========
PRC - D:\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Programme\Mozilla Firefox 3\firefox.exe (Mozilla Corporation)
PRC - C:\Programme\Microsoft Security Essentials\msseces.exe (Microsoft Corporation)
PRC - C:\Programme\Microsoft Security Essentials\MsMpEng.exe (Microsoft Corporation)
PRC - C:\Programme\Common Files\microsoft shared\Virtualization Handler\CVH.EXE (Microsoft Corporation)
PRC - C:\Programme\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Microsoft Corporation)
PRC - C:\Programme\Common Files\microsoft shared\Virtualization Handler\OFFICEVIRT.EXE ()
PRC - C:\Programme\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation)
PRC - C:\Programme\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation)
PRC - C:\Programme\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation)
PRC - C:\Programme\TortoiseSVN\bin\TSVNCache.exe (hxxp://tortoisesvn.net)
PRC - C:\Programme\ThinkVantage Fingerprint Software\upeksrvc.exe (UPEK Inc.)
PRC - C:\Programme\ThinkVantage Fingerprint Software\upeksvr.exe (UPEK Inc.)
PRC - C:\Programme\COMODO\Firewall\cfp.exe ()
PRC - C:\Programme\COMODO\Firewall\cmdagent.exe ()
PRC - C:\Programme\Windows Sidebar\sidebar.exe (Microsoft Corporation)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Windows\System32\conime.exe (Microsoft Corporation)
PRC - d:\xampp\mysql\bin\mysqld.exe ()
PRC - D:\Program Files\DAEMON Tools Lite\daemon.exe (DT Soft Ltd)
PRC - D:\xampp\apache\bin\httpd.exe (Apache Software Foundation)
PRC - d:\xampp\apache\bin\httpd.exe (Apache Software Foundation)
PRC - C:\Programme\FreePDF_XP\fpassist.exe (shbox.de)
PRC - D:\Program Files\Common Files\Siemens\S7IEPG\s7oiehsx.exe (SIEMENS AG)
PRC - D:\Program Files\FRITZ!DSL\IGDCTRL.EXE (AVM Berlin)
PRC - C:\Programme\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceServiceX.exe (SIEMENS AG)
PRC - D:\Program Files\Common Files\Siemens\S7UBTOOX\S7ubtoox.exe (SIEMENS AG)
PRC - D:\Program Files\Common Files\Siemens\S7UBTOOX\S7ubTstx.exe (SIEMENS AG)
PRC - D:\Program Files\Siemens\Step7\S7BIN\s7asysvx.exe (SIEMENS AG)
PRC - D:\Program Files\Common Files\Siemens\SWS\almsrv\almsrvx.exe (SIEMENS AG)
PRC - C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
PRC - C:\Programme\Intel\Wireless\Bin\EvtEng.exe (Intel Corporation)
PRC - C:\Programme\Intel\Wireless\Bin\RegSrvc.exe (Intel Corporation)
PRC - D:\Program Files\Common Files\Siemens\SQLANY\dbsrv9.exe (iAnywhere Solutions, Inc.)
PRC - C:\Windows\vsnp2uvc.exe (Sonix)
PRC - D:\Program Files\National Instruments\Shared\Security\nidmsrv.exe (National Instruments, Inc.)
PRC - C:\Windows\System32\lktsrv.exe (National Instruments, Inc.)
PRC - C:\Windows\System32\lkads.exe (National Instruments, Inc.)
PRC - C:\Windows\System32\lkcitdl.exe (National Instruments, Inc.)
PRC - C:\Windows\System32\nisvcloc.exe (National Instruments Corp.)
========== Modules (SafeList) ==========
MOD - D:\Downloads\OTL.exe (OldTimer Tools)
MOD - C:\Windows\System32\guard32.dll ()
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18005_none_5cb72f96088b0de0\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (ServiceLayer) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia)
SRV - (MsMpSvc) -- C:\Program Files\Microsoft Security Essentials\MsMpEng.exe (Microsoft Corporation)
SRV - (cvhsvc) -- C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (Microsoft Corporation)
SRV - (osppsvc) -- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation)
SRV - (FontCache) -- C:\Windows\System32\FntCache.dll (Microsoft Corporation)
SRV - (sftvsa) -- C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation)
SRV - (sftlist) -- C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation)
SRV - (UpekSrvc) -- C:\Program Files\ThinkVantage Fingerprint Software\upeksrvc.exe (UPEK Inc.)
SRV - (FLEXnet Licensing Service) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (cmdAgent) -- C:\Program Files\COMODO\Firewall\cmdagent.exe ()
SRV - (mysql) -- d:\xampp\mysql\bin\mysqld.exe ()
SRV - (rpcapd) Remote Packet Capture Protocol v.0 (experimental) -- C:\Program Files\WinPcap\rpcapd.exe (CACE Technologies, Inc.)
SRV - (Apache2.2) -- d:\xampp\apache\bin\httpd.exe (Apache Software Foundation)
SRV - (WinDefend) -- C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (XAMPP) -- D:\xampp\service.exe ()
SRV - (s7oiehsx) -- D:\Program Files\Common Files\Siemens\S7IEPG\s7oiehsx.exe (SIEMENS AG)
SRV - (IGDCTRL) -- D:\Program Files\FRITZ!DSL\IGDCTRL.EXE (AVM Berlin)
SRV - (S7TraceServiceX) -- C:\Programme\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceServiceX.exe (SIEMENS AG)
SRV - (s7asysvx) -- D:\Program Files\Siemens\Step7\S7BIN\s7asysvx.exe (SIEMENS AG)
SRV - (almservice) -- D:\Program Files\Common Files\Siemens\sws\almsrv\almsrvx.exe (SIEMENS AG)
SRV - (EvtEng) Intel(R) -- C:\Programme\Intel\Wireless\Bin\EvtEng.exe (Intel Corporation)
SRV - (RegSrvc) Intel(R) -- C:\Programme\Intel\Wireless\Bin\RegSrvc.exe (Intel Corporation)
SRV - (NIDomainService) -- D:\Program Files\National Instruments\Shared\Security\nidmsrv.exe (National Instruments, Inc.)
SRV - (lkTimeSync) -- C:\Windows\System32\lktsrv.exe (National Instruments, Inc.)
SRV - (lkClassAds) -- C:\Windows\System32\lkads.exe (National Instruments, Inc.)
SRV - (NILM License Manager) -- D:\Program Files\National Instruments\Shared\License Manager\Bin\lmgrd.exe (Macrovision Corporation)
SRV - (LkCitadelServer) -- C:\Windows\System32\lkcitdl.exe (National Instruments, Inc.)
SRV - (niSvcLoc) -- C:\Windows\System32\nisvcloc.exe (National Instruments Corp.)
SRV - (OpcEnum) -- C:\Windows\System32\OPCENUM.EXE ()
========== Driver Services (SafeList) ==========
DRV - (MpFilter) -- C:\Windows\System32\drivers\MpFilter.sys (Microsoft Corporation)
DRV - (MpNWMon) -- C:\Windows\System32\drivers\MpNWMon.sys (Microsoft Corporation)
DRV - (Sftredir) -- C:\Windows\System32\drivers\Sftredirlh.sys (Microsoft Corporation)
DRV - (sftvol) -- C:\Programme\Microsoft Application Virtualization Client\drivers\SftVollh.sys (Microsoft Corporation)
DRV - (sftplay) -- C:\Programme\Microsoft Application Virtualization Client\drivers\sftplaylh.sys (Microsoft Corporation)
DRV - (sftfs) -- C:\Programme\Microsoft Application Virtualization Client\drivers\SftFSlh.sys (Microsoft Corporation)
DRV - (WinDriver6) -- C:\Windows\System32\drivers\windrvr6.sys (Jungo)
DRV - (BthAvrcp) -- C:\Windows\System32\drivers\BthAvrcp.sys (CSR, plc)
DRV - (PnkBstrK) -- C:\Windows\System32\drivers\PnkBstrK.sys ()
DRV - (smserial) -- C:\Windows\System32\drivers\smserial.sys (Motorola Inc.)
DRV - (cmdGuard) -- C:\Windows\System32\drivers\cmdguard.sys (COMODO)
DRV - (sptd) -- C:\Windows\System32\Drivers\sptd.sys ()
DRV - (smihlp) SMI Helper Driver (smihlp) -- C:\Programme\ThinkVantage Fingerprint Software\smihlp.sys (UPEK Inc.)
DRV - (NPF) -- C:\Windows\System32\drivers\npf.sys (CACE Technologies, Inc.)
DRV - (TcUsb) -- C:\Windows\System32\drivers\tcusb.sys (UPEK Inc.)
DRV - (cmdHlp) -- C:\Windows\System32\drivers\cmdhlp.sys (COMODO)
DRV - (Inspect) -- C:\Windows\System32\drivers\inspect.sys (COMODO)
DRV - (pccsmcfd) -- C:\Windows\System32\drivers\pccsmcfd.sys (Nokia)
DRV - (adfs) -- C:\Windows\System32\drivers\adfs.sys (Adobe Systems, Inc.)
DRV - (ssmdrv) -- C:\Windows\System32\drivers\ssmdrv.sys (AVIRA GmbH)
DRV - (teamviewervpn) -- C:\Windows\System32\drivers\teamviewervpn.sys (TeamViewer GmbH)
DRV - (WSDPrintDevice) -- C:\Windows\System32\drivers\WSDPrint.sys (Microsoft Corporation)
DRV - (ManyCam) -- C:\Windows\System32\drivers\ManyCam.sys (ManyCam LLC.)
DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation)
DRV - (SNTIE) SIMATIC Industrial Ethernet (ISO) -- C:\Windows\System32\drivers\SNTIE.SYS (SIEMENS AG)
DRV - (s7snsrtx) -- C:\Windows\System32\drivers\s7snsrtx.sys (SIEMENS AG)
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- C:\Windows\System32\drivers\RTKVHDA.sys (Realtek Semiconductor Corp.)
DRV - (NETw4v32) Intel(R) -- C:\Windows\System32\drivers\NETw4v32.sys (Intel Corporation)
DRV - (CamFilter) -- C:\Windows\System32\drivers\Camfilter.sys (Compal Inc.)
DRV - (enecir) -- C:\Windows\System32\drivers\enecir.sys (ENE TECHNOLOGY INC.)
DRV - (rimmptsk) -- C:\Windows\System32\drivers\rimmptsk.sys (REDC)
DRV - (EMSC) -- C:\Windows\system32\DRIVERS\EMSC.SYS (Windows (R) Codename Longhorn DDK provider)
DRV - (b57nd60x) -- C:\Windows\System32\drivers\b57nd60x.sys (Broadcom Corporation)
DRV - (rimsptsk) -- C:\Windows\System32\drivers\rimsptsk.sys (REDC)
DRV - (SNP2UVC) USB2.0 PC Camera (SNP2UVC) -- C:\Windows\System32\drivers\snp2uvc.sys ()
DRV - (ql2300) -- C:\Windows\system32\drivers\ql2300.sys (QLogic Corporation)
DRV - (adp94xx) -- C:\Windows\system32\drivers\adp94xx.sys (Adaptec, Inc.)
DRV - (elxstor) -- C:\Windows\system32\drivers\elxstor.sys (Emulex)
DRV - (adpahci) -- C:\Windows\system32\drivers\adpahci.sys (Adaptec, Inc.)
DRV - (uliahci) -- C:\Windows\system32\drivers\uliahci.sys (ULi Electronics Inc.)
DRV - (iaStorV) -- C:\Windows\system32\drivers\iastorv.sys (Intel Corporation)
DRV - (adpu320) -- C:\Windows\system32\drivers\adpu320.sys (Adaptec, Inc.)
DRV - (ulsata2) -- C:\Windows\system32\drivers\ulsata2.sys (Promise Technology, Inc.)
DRV - (vsmraid) -- C:\Windows\system32\drivers\vsmraid.sys (VIA Technologies Inc.,Ltd)
DRV - (ql40xx) -- C:\Windows\system32\drivers\ql40xx.sys (QLogic Corporation)
DRV - (UlSata) -- C:\Windows\system32\drivers\ulsata.sys (Promise Technology, Inc.)
DRV - (adpu160m) -- C:\Windows\system32\drivers\adpu160m.sys (Adaptec, Inc.)
DRV - (nvraid) -- C:\Windows\system32\drivers\nvraid.sys (NVIDIA Corporation)
DRV - (nfrd960) -- C:\Windows\system32\drivers\nfrd960.sys (IBM Corporation)
DRV - (iirsp) -- C:\Windows\system32\drivers\iirsp.sys (Intel Corp./ICP vortex GmbH)
DRV - (SiSRaid4) -- C:\Windows\system32\drivers\sisraid4.sys (Silicon Integrated Systems)
DRV - (nvstor) -- C:\Windows\system32\drivers\nvstor.sys (NVIDIA Corporation)
DRV - (aic78xx) -- C:\Windows\system32\drivers\djsvs.sys (Adaptec, Inc.)
DRV - (arcsas) -- C:\Windows\system32\drivers\arcsas.sys (Adaptec, Inc.)
DRV - (LSI_SCSI) -- C:\Windows\system32\drivers\lsi_scsi.sys (LSI Logic)
DRV - (SiSRaid2) -- C:\Windows\system32\drivers\sisraid2.sys (Silicon Integrated Systems Corp.)
DRV - (HpCISSs) -- C:\Windows\system32\drivers\hpcisss.sys (Hewlett-Packard Company)
DRV - (arc) -- C:\Windows\system32\drivers\arc.sys (Adaptec, Inc.)
DRV - (iteraid) -- C:\Windows\system32\drivers\iteraid.sys (Integrated Technology Express, Inc.)
DRV - (iteatapi) -- C:\Windows\system32\drivers\iteatapi.sys (Integrated Technology Express, Inc.)
DRV - (LSI_SAS) -- C:\Windows\system32\drivers\lsi_sas.sys (LSI Logic)
DRV - (Symc8xx) -- C:\Windows\system32\drivers\symc8xx.sys (LSI Logic)
DRV - (LSI_FC) -- C:\Windows\system32\drivers\lsi_fc.sys (LSI Logic)
DRV - (Sym_u3) -- C:\Windows\system32\drivers\sym_u3.sys (LSI Logic)
DRV - (Mraid35x) -- C:\Windows\system32\drivers\mraid35x.sys (LSI Logic Corporation)
DRV - (Sym_hi) -- C:\Windows\system32\drivers\sym_hi.sys (LSI Logic)
DRV - (megasas) -- C:\Windows\system32\drivers\megasas.sys (LSI Logic Corporation)
DRV - (viaide) -- C:\Windows\system32\drivers\viaide.sys (VIA Technologies, Inc.)
DRV - (cmdide) -- C:\Windows\system32\drivers\cmdide.sys (CMD Technology, Inc.)
DRV - (aliide) -- C:\Windows\system32\drivers\aliide.sys (Acer Laboratories Inc.)
DRV - (Brserid) Brother MFC Serial Port Interface Driver (WDM) -- C:\Windows\system32\drivers\brserid.sys (Brother Industries Ltd.)
DRV - (BrUsbSer) -- C:\Windows\system32\drivers\brusbser.sys (Brother Industries Ltd.)
DRV - (BrFiltUp) -- C:\Windows\system32\drivers\brfiltup.sys (Brother Industries, Ltd.)
DRV - (BrFiltLo) -- C:\Windows\system32\drivers\brfiltlo.sys (Brother Industries, Ltd.)
DRV - (BrSerWdm) -- C:\Windows\system32\drivers\brserwdm.sys (Brother Industries Ltd.)
DRV - (BrUsbMdm) -- C:\Windows\system32\drivers\brusbmdm.sys (Brother Industries Ltd.)
DRV - (ntrigdigi) -- C:\Windows\system32\drivers\ntrigdigi.sys (N-trig Innovative Technologies)
DRV - (NETw3v32) Intel(R) -- C:\Windows\System32\drivers\NETw3v32.sys (Intel® Corporation)
DRV - (E1G60) Intel(R) -- C:\Windows\System32\drivers\E1G60I32.sys (Intel Corporation)
DRV - (speedfan) -- C:\Windows\system32\speedfan.sys (Windows (R) 2000 DDK provider)
DRV - (cvintdrv) -- C:\Windows\System32\drivers\cvintdrv.sys ()
DRV - (dfmirage) -- C:\Windows\System32\drivers\dfmirage.sys (DemoForge, LLC)
DRV - (TVicPort) -- C:\Windows\System32\drivers\TVicPort.sys (EnTech Taiwan)
DRV - (Hardlock) -- C:\Windows\System32\drivers\hardlock.sys (Aladdin Knowledge Systems)
DRV - (FwKbd) -- C:\Windows\System32\drivers\FwKbd.sys ()
DRV - (dpmcslv) -- C:\Windows\System32\drivers\dpmcslv.sys (Siemens AG)
DRV - (giveio) -- C:\Windows\system32\giveio.sys ()
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = FE 58 7E FE 29 C2 CA 01 [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "hxxp://www.google.de/ig?hl=de"
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.3
FF - prefs.js..extensions.enabledItems: elemhidehelper@adblockplus.org:1.0.6
FF - prefs.js..extensions.enabledItems: en-GB@dictionaries.addons.mozilla.org:1.19
FF - prefs.js..extensions.enabledItems: {987311C6-B504-4aa2-90BF-60CC49808D42}:2.2
FF - prefs.js..extensions.enabledItems: check4change-owner@mozdev.org:1.7
FF - prefs.js..extensions.enabledItems: de-DE@dictionaries.addons.mozilla.org:2.0.1
FF - prefs.js..extensions.enabledItems: smarterwiki@wikiatic.com:3.1.2
FF - prefs.js..extensions.enabledItems: firebug@software.joehewitt.com:1.5.3
FF - prefs.js..extensions.enabledItems: firecookie@janodvarko.cz:1.0.2
FF - prefs.js..extensions.enabledItems: {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.2.22
FF - prefs.js..extensions.enabledItems: {f13b157f-b174-47e7-a34d-4815ddfdfeb8}:0.9.87.4
FF - prefs.js..extensions.enabledItems: pencil@evolus.vn:1.0.6
FF - prefs.js..extensions.enabledItems: personas@christopher.beard:1.5.2
FF - prefs.js..extensions.enabledItems: pixelperfectplugin@openhouseconcepts.com:1.5.6
FF - prefs.js..extensions.enabledItems: {02450954-cdd9-410f-b1da-db804e18c671}:0.96.2
FF - prefs.js..extensions.enabledItems: {9c51bd27-6ed8-4000-a2bf-36cb95c0c947}:11.0.1
FF - prefs.js..extensions.enabledItems: youtube2mp3@mondayx.de:1.0.6
FF - prefs.js..extensions.enabledItems: {1d8e98fb-53c3-47a8-9fb9-1b51bbf3890d}:1.2
FF - prefs.js..network.proxy.backup.ftp: "yolno.infp"
FF - prefs.js..network.proxy.backup.ftp_port: 0
FF - prefs.js..network.proxy.backup.gopher: "yolno.infp"
FF - prefs.js..network.proxy.backup.gopher_port: 0
FF - prefs.js..network.proxy.backup.socks: "yolno.infp"
FF - prefs.js..network.proxy.backup.socks_port: 0
FF - prefs.js..network.proxy.backup.ssl: "yolno.infp"
FF - prefs.js..network.proxy.backup.ssl_port: 0
FF - prefs.js..network.proxy.ftp: "74.222.8.26"
FF - prefs.js..network.proxy.ftp_port: 3128
FF - prefs.js..network.proxy.gopher: "74.222.8.26"
FF - prefs.js..network.proxy.gopher_port: 3128
FF - prefs.js..network.proxy.http: "74.222.8.26"
FF - prefs.js..network.proxy.http_port: 3128
FF - prefs.js..network.proxy.share_proxy_settings: true
FF - prefs.js..network.proxy.socks: "74.222.8.26"
FF - prefs.js..network.proxy.socks_port: 3128
FF - prefs.js..network.proxy.ssl: "74.222.8.26"
FF - prefs.js..network.proxy.ssl_port: 3128
FF - HKLM\software\mozilla\Firefox\Extensions\\{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\ [2010.02.26 20:49:31 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.2pre\extensions\\Components: C:\Program Files\Mozilla Firefox 3\components [2010.03.27 19:43:28 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.2pre\extensions\\Plugins: C:\Program Files\Mozilla Firefox 3\plugins [2010.03.24 17:37:24 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\{CCB7D94B-CA92-4E3F-B79D-ADE0F07ADC74}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Thunderbird Connector\ThunderbirdExtension\ [2010.02.26 20:49:32 | 000,000,000 | ---D | M]
[2008.06.18 08:57:54 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Extensions
[2010.03.28 00:49:03 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions
[2009.08.20 22:25:04 | 000,000,000 | ---D | M] (Screengrab) -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\{02450954-cdd9-410f-b1da-db804e18c671}
[2010.01.27 20:58:15 | 000,000,000 | ---D | M] (FetchMP3 Video to Audio Converter) -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\{1d8e98fb-53c3-47a8-9fb9-1b51bbf3890d}
[2009.09.15 22:24:10 | 000,000,000 | ---D | M] (BugMeNot) -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\{987311C6-B504-4aa2-90BF-60CC49808D42}
[2010.02.11 22:51:31 | 000,000,000 | ---D | M] (Tamper Data) -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\{9c51bd27-6ed8-4000-a2bf-36cb95c0c947}
[2009.04.21 22:01:15 | 000,000,000 | ---D | M] (Modify Headers) -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\{b749fc7c-e949-447f-926c-3f4eed6accfe}
[2010.01.08 16:03:26 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2009.08.29 10:39:50 | 000,000,000 | ---D | M] (No name found) -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\{E2082660-5330-49e6-BD84-9978CE15BA72}
[2009.10.20 12:43:33 | 000,000,000 | ---D | M] (JavaScript Debugger) -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\{f13b157f-b174-47e7-a34d-4815ddfdfeb8}
[2009.08.21 17:40:31 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\avg@script.1
[2010.02.18 23:15:21 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\check4change-owner@mozdev.org
[2010.02.13 12:28:17 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\de-DE@dictionaries.addons.mozilla.org
[2009.07.01 20:36:31 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\elemhidehelper@adblockplus.org
[2008.05.04 19:05:11 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\en-GB@dictionaries.addons.mozilla.org
[2010.03.15 00:41:47 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\firebug@software.joehewitt.com
[2010.01.13 23:34:55 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\firecookie@janodvarko.cz
[2009.12.13 01:15:16 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\pencil@evolus.vn
[2010.03.18 22:54:17 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\personas@christopher.beard
[2010.02.08 20:52:43 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\pixelperfectplugin@openhouseconcepts.com
[2010.01.27 17:06:13 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\smarterwiki@wikiatic.com
[2009.05.09 09:07:06 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\sqlime@security.compass
[2009.05.28 16:19:42 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\xssme@security.compass
[2010.03.15 00:41:49 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\youtube2mp3@mondayx.de
O1 HOSTS File: ([2010.01.24 19:09:46 | 000,000,901 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O1 - Hosts: 127.0.0.1 pro_001.mirrow.loc
O1 - Hosts: 192.168.2.103 root.loc
O1 - Hosts: 192.168.2.103 live.loc
O1 - Hosts: 192.168.2.103 phpBB.loc
O1 - Hosts: 192.168.2.103 pma.loc
O2 - BHO: (Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Windows Live Anmelde-Hilfsprogramm) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3 - HKLM\..\Toolbar: (Zend Studio) - {95188727-288F-4581-A48D-EAB3BD027314} - D:\Program Files\Zend\ZendStudio-5.5.0\bin\ZendIEToolbar.dll ()
O4 - HKLM..\Run: [COMODO Firewall Pro] C:\Program Files\COMODO\Firewall\cfp.exe ()
O4 - HKLM..\Run: [COMODO Internet Security] C:\Program Files\COMODO\Firewall\cfp.exe ()
O4 - HKLM..\Run: [FreePDF Assistant] C:\Programme\FreePDF_XP\fpassist.exe (shbox.de)
O4 - HKLM..\Run: [MSSE] C:\Program Files\Microsoft Security Essentials\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvSvc] C:\Windows\System32\nvsvc.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [PSQLLauncher] C:\Program Files\ThinkVantage Fingerprint Software\launcher.exe (UPEK Inc.)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [S7UB Start] D:\Program Files\Common Files\Siemens\S7ubtoox\s7ubtstx.exe (SIEMENS AG)
O4 - HKLM..\Run: [snp2uvc] C:\Windows\vsnp2uvc.exe (Sonix)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKCU..\Run: [] File not found
O4 - HKCU..\Run: [DAEMON Tools Lite] D:\Program Files\DAEMON Tools Lite\daemon.exe (DT Soft Ltd)
O4 - HKCU..\RunOnce: [Shockwave Updater] C:\Windows\System32\Adobe\SHOCKW~1\SWHELP~2.EXE -Update -1100465 -Mozilla\5.0 ( File not found
O4 - Startup: C:\Users\***\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk = C:\Programme\Common Files\microsoft shared\Virtualization Handler\CVH.EXE (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1
O8 - Extra context menu item: Nach Microsoft E&xel exportieren - C:\Programme\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Zend Studio - Debug current page - D:\Program Files\Zend\ZendStudio-5.5.0\bin\ZendIEToolbar.dll ()
O8 - Extra context menu item: Zend Studio - Debug next page - D:\Program Files\Zend\ZendStudio-5.5.0\bin\ZendIEToolbar.dll ()
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programme\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: fritz.box ([]* in Lokales Intranet)
O15 - HKCU\..Trusted Ranges: Range1 ([*] in Lokales Intranet)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programme\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programme\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\psfus: DllName - C:\Program Files\ThinkVantage Fingerprint Software\psqlpwd.dll - C:\Programme\ThinkVantage Fingerprint Software\psqlpwd.dll (UPEK Inc.)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006.09.18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{1c4ac2f5-fa73-11dc-9241-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{1c4ac2f5-fa73-11dc-9241-806e6f6e6963}\Shell\AutoRun\command - "" = E:\setup.exe -- File not found
O33 - MountPoints2\{70a5fedc-8029-11dd-941f-001b3868aa49}\Shell\1\Command - "" = .\recycled\info.exe
O33 - MountPoints2\{b8e4ab6e-47a9-11de-a745-001b3868aa49}\Shell - "" = AutoRun
O33 - MountPoints2\{b8e4ab6e-47a9-11de-a745-001b3868aa49}\Shell\AutoRun\command - "" = G:\autorun.exe -- File not found
O33 - MountPoints2\{de79b896-1b91-11de-bbf3-001b3868aa49}\Shell - "" = AutoRun
O33 - MountPoints2\{de79b896-1b91-11de-bbf3-001b3868aa49}\Shell\AutoRun\command - "" = F:\autorun.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2010.03.27 15:09:50 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\Skype
[2010.03.26 14:26:26 | 000,000,000 | ---D | C] -- C:\Programme\trend micro
[2010.03.26 09:18:17 | 000,000,000 | ---D | C] -- C:\Users\***\AppData\Roaming\Malwarebytes
[2010.03.26 09:18:10 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010.03.26 09:18:07 | 000,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010.03.26 09:18:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010.03.25 09:00:42 | 000,000,000 | ---D | C] -- C:\Programme\Microsoft Security Essentials
[2010.03.17 04:01:52 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browserchoice.exe
[2010.03.11 17:36:41 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nshhttp.dll
[2010.03.11 17:36:35 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\httpapi.dll
[2010.03.08 21:53:03 | 000,000,000 | ---D | C] -- C:\Users\***\dwhelper
[2010.03.03 21:05:42 | 000,000,000 | ---D | C] -- C:\Users\***\AppData\Roaming\ManyCam
[2010.03.02 17:34:36 | 000,209,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Tabctl32.ocx
[2010.02.27 11:56:00 | 000,000,000 | ---D | C] -- C:\Downloads
[2010.02.26 20:48:11 | 000,018,816 | ---- | C] (Nokia) -- C:\Windows\System32\drivers\pccsmcfd.sys
[2010.02.26 20:47:43 | 000,000,000 | ---D | C] -- C:\Programme\PC Connectivity Solution
[2009.08.27 16:43:40 | 000,570,128 | ---- | C] (Microsoft Corporation) -- C:\Programme\Common Files\dao350.dll
[2008.03.25 17:58:16 | 000,081,920 | ---- | C] ( ) -- C:\Windows\System32\rsnp2uvc.dll
[2008.03.25 17:58:16 | 000,053,248 | ---- | C] ( ) -- C:\Windows\System32\csnp2uvc.dll
[2006.01.20 14:11:59 | 000,253,952 | ---- | C] (XtraLogiX GbR) -- C:\Programme\Graph_Pro.exe
[2 C:\Users\***\Documents\*.tmp files -> C:\Users\***\Documents\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2010.03.28 09:50:16 | 010,223,616 | -HS- | M] () -- C:\Users\***\ntuser.dat
[2010.03.28 09:44:50 | 001,575,692 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010.03.28 09:44:50 | 000,676,562 | ---- | M] () -- C:\Windows\System32\perfh007.dat
[2010.03.28 09:44:50 | 000,637,256 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010.03.28 09:44:50 | 000,147,014 | ---- | M] () -- C:\Windows\System32\perfc007.dat
[2010.03.28 09:44:50 | 000,121,564 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010.03.28 09:42:00 | 000,232,348 | ---- | M] () -- C:\Users\***\AppData\Roaming\nvModes.dat
[2010.03.28 09:42:00 | 000,232,348 | ---- | M] () -- C:\Users\***\AppData\Roaming\nvModes.001
[2010.03.28 08:46:03 | 000,004,048 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010.03.28 08:46:03 | 000,004,048 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010.03.28 02:05:39 | 000,000,416 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{A522CF25-CAAB-4EAB-85D9-A6991B693371}.job
[2010.03.28 00:46:14 | 000,123,808 | ---- | M] () -- C:\Users\***\AppData\Local\GDIPFONTCACHEV1.DAT
[2010.03.27 17:18:11 | 000,000,630 | ---- | M] () -- C:\Users\***\Desktop\SpeedFan.lnk
[2010.03.27 17:18:06 | 000,000,045 | ---- | M] () -- C:\Windows\System32\initdebug.nfo
[2010.03.27 16:47:39 | 002,349,632 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010.03.27 16:46:02 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010.03.27 16:43:57 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010.03.27 15:00:31 | 000,001,076 | ---- | M] () -- C:\Windows\bthservsdp.dat
[2010.03.27 14:54:58 | 000,524,288 | -HS- | M] () -- C:\Users\***\ntuser.dat{344485b2-1f31-11df-a36f-001b3868aa49}.TMContainer00000000000000000001.regtrans-ms
[2010.03.27 14:54:58 | 000,065,536 | -HS- | M] () -- C:\Users\***\ntuser.dat{344485b2-1f31-11df-a36f-001b3868aa49}.TM.blf
[2010.03.27 14:54:51 | 002,073,722 | -H-- | M] () -- C:\Users\***\AppData\Local\IconCache.db
[2010.03.27 10:03:30 | 000,019,286 | ---- | M] () -- C:\cleanup.exe
[2010.03.26 23:32:50 | 000,000,732 | ---- | M] () -- C:\Users\***\Desktop\Defraggler.lnk
[2010.03.26 14:19:04 | 000,000,232 | ---- | M] () -- C:\Windows\win.ini
[2010.03.26 14:01:58 | 000,000,708 | ---- | M] () -- C:\Users\***\Desktop\CCleaner.lnk
[2010.03.26 09:18:14 | 000,000,616 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.03.25 09:00:44 | 000,000,940 | ---- | M] () -- C:\Users\Public\Desktop\Microsoft Security Essentials.lnk
[2010.03.24 17:00:28 | 000,000,036 | ---- | M] () -- C:\Users\***\AppData\Local\housecall.guid.cache
[2010.03.17 23:26:54 | 000,000,162 | -H-- | M] () -- C:\Users\***\Documents\~$rmelSammlung_ET.docx
[2010.03.17 23:26:46 | 000,887,725 | ---- | M] () -- C:\Users\***\Documents\FormelSammlung_ET.docx
[2010.03.17 22:57:25 | 000,001,355 | ---- | M] () -- C:\Users\***\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk
[2010.03.06 22:01:29 | 000,001,426 | ---- | M] () -- C:\List.conf
[2010.03.06 16:25:12 | 000,000,316 | ---- | M] () -- C:\Users\***\cinderella2-user.properties
[2010.03.04 16:21:19 | 000,000,354 | ---- | M] () -- C:\Windows\tasks\Install_NSS.job
[2010.03.03 12:42:02 | 000,002,464 | ---- | M] () -- C:\Windows\netdet.ini
[2010.02.27 21:57:43 | 000,000,650 | ---- | M] () -- C:\Users\***\Desktop\CryptLoad.exe - Verknüpfung.lnk
[2010.02.27 20:35:40 | 000,001,393 | ---- | M] () -- C:\Users\***\Documents\#newfile2.lyx#
[2010.02.27 13:45:57 | 000,020,598 | ---- | M] () -- C:\Users\***\Documents\Kalender von ***.ics
[2010.02.26 10:29:54 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_PCCSWpdDriver_01_07_00.Wdf
[2 C:\Users\***\Documents\*.tmp files -> C:\Users\***\Documents\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010.03.27 17:18:11 | 000,000,630 | ---- | C] () -- C:\Users\***\Desktop\SpeedFan.lnk
[2010.03.27 17:18:03 | 000,000,045 | ---- | C] () -- C:\Windows\System32\initdebug.nfo
[2010.03.27 14:53:15 | 000,002,976 | ---- | C] () -- C:\Windows\System32\drivers\FwKbd.sys
[2010.03.27 10:03:30 | 000,019,286 | ---- | C] () -- C:\cleanup.exe
[2010.03.26 23:32:50 | 000,000,732 | ---- | C] () -- C:\Users\***\Desktop\Defraggler.lnk
[2010.03.26 14:01:58 | 000,000,708 | ---- | C] () -- C:\Users\***\Desktop\CCleaner.lnk
[2010.03.26 09:18:14 | 000,000,616 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.03.25 09:00:44 | 000,000,940 | ---- | C] () -- C:\Users\Public\Desktop\Microsoft Security Essentials.lnk
[2010.03.24 17:00:28 | 000,000,036 | ---- | C] () -- C:\Users\***\AppData\Local\housecall.guid.cache
[2010.03.17 23:26:54 | 000,000,162 | -H-- | C] () -- C:\Users\***\Documents\~$rmelSammlung_ET.docx
[2010.03.17 23:25:13 | 000,887,725 | ---- | C] () -- C:\Users\***\Documents\FormelSammlung_ET.docx
[2010.03.17 22:57:25 | 000,001,355 | ---- | C] () -- C:\Users\***\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk
[2010.03.06 16:25:12 | 000,000,316 | ---- | C] () -- C:\Users\***\cinderella2-user.properties
[2010.03.03 21:06:30 | 000,000,354 | ---- | C] () -- C:\Windows\tasks\Install_NSS.job
[2010.02.27 21:57:43 | 000,000,650 | ---- | C] () -- C:\Users\***\Desktop\CryptLoad.exe - Verknüpfung.lnk
[2010.02.27 20:30:40 | 000,001,393 | ---- | C] () -- C:\Users\***\Documents\#newfile2.lyx#
[2010.02.27 13:45:57 | 000,020,598 | ---- | C] () -- C:\Users\***\Documents\Kalender von ***.ics
[2010.02.27 11:44:25 | 000,001,426 | ---- | C] () -- C:\List.conf
[2010.02.26 10:29:54 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_PCCSWpdDriver_01_07_00.Wdf
[2010.02.26 10:24:22 | 000,001,076 | ---- | C] () -- C:\Windows\bthservsdp.dat
[2010.01.16 16:01:13 | 000,002,593 | ---- | C] () -- C:\Windows\SE.INI
[2010.01.05 19:40:21 | 000,290,904 | ---- | C] () -- C:\Windows\System32\vc6-re200l.dll
[2009.12.25 20:53:12 | 000,002,770 | ---- | C] () -- C:\Windows\mgxoschk.ini
[2009.12.23 22:05:41 | 000,000,227 | ---- | C] () -- C:\Windows\FTRUN32.INI
[2009.12.23 21:20:53 | 000,000,032 | ---- | C] () -- C:\Windows\DVD_Start.INI
[2009.11.19 17:31:52 | 000,004,096 | -H-- | C] () -- C:\Users\***\AppData\Local\keyfile3.drm
[2009.10.18 17:11:32 | 000,000,165 | ---- | C] () -- C:\Users\***\AppData\Local\rahistory.xml
[2009.10.07 15:58:16 | 000,000,133 | ---- | C] () -- C:\Windows\Dialux.ini
[2009.09.25 16:47:49 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2009.09.05 11:26:52 | 000,021,840 | ---- | C] () -- C:\Windows\System32\SIntfNT.dll
[2009.09.05 11:26:52 | 000,017,212 | ---- | C] () -- C:\Windows\System32\SIntf32.dll
[2009.09.05 11:26:52 | 000,012,067 | ---- | C] () -- C:\Windows\System32\SIntf16.dll
[2009.09.05 11:22:18 | 000,000,218 | ---- | C] () -- C:\Windows\SIERRA.INI
[2009.08.27 16:55:10 | 000,000,000 | ---- | C] () -- C:\Windows\FwSim.INI
[2009.08.27 16:44:58 | 000,104,633 | ---- | C] () -- C:\Windows\System32\drivers\fwDH485.sys
[2009.08.27 16:44:56 | 000,031,232 | ---- | C] () -- C:\Windows\System32\s7200L2.dll
[2009.03.28 14:11:00 | 000,717,296 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys
[2009.03.25 18:39:04 | 000,116,224 | ---- | C] () -- C:\Windows\System32\redmonnt.dll
[2009.03.13 20:40:55 | 000,002,464 | ---- | C] () -- C:\Windows\netdet.ini
[2009.03.13 20:27:51 | 000,100,352 | ---- | C] () -- C:\Windows\System32\pg32conv.dll
[2009.03.13 20:27:50 | 000,030,793 | ---- | C] () -- C:\Windows\System32\crtslv.dll
[2009.02.11 17:48:52 | 000,000,026 | ---- | C] () -- C:\Windows\NeoSetup.INI
[2009.01.18 21:09:20 | 000,000,146 | ---- | C] () -- C:\Windows\Capture.INI
[2008.12.23 17:33:18 | 000,053,299 | ---- | C] () -- C:\Windows\System32\pthreadVC.dll
[2008.11.01 15:25:03 | 000,000,728 | ---- | C] () -- C:\Users\***\AppData\Local\RAExpertHistory.xml
[2008.11.01 15:05:56 | 000,031,007 | ---- | C] () -- C:\Users\***\AppData\Roaming\UserTile.png
[2008.10.10 20:40:40 | 000,471,161 | ---- | C] () -- C:\Programme\Mozilla Firefox 3__inst.jar
[2008.10.10 17:09:20 | 000,006,783 | ---- | C] () -- C:\Windows\PSPICEEV.INI
[2008.10.10 17:09:14 | 000,176,128 | ---- | C] () -- C:\Windows\System32\lffax60n.dll
[2008.10.10 17:09:14 | 000,141,824 | ---- | C] () -- C:\Windows\System32\lfcmp60n.dll
[2008.10.10 17:09:14 | 000,110,080 | ---- | C] () -- C:\Windows\System32\lfpng60n.dll
[2008.10.10 17:09:14 | 000,046,080 | ---- | C] () -- C:\Windows\System32\lftif60n.dll
[2008.10.10 17:09:14 | 000,043,008 | ---- | C] () -- C:\Windows\System32\ltfil60n.dll
[2008.10.10 17:09:14 | 000,023,552 | ---- | C] () -- C:\Windows\System32\lfpcx60n.dll
[2008.10.10 17:09:14 | 000,022,528 | ---- | C] () -- C:\Windows\System32\lfpct60n.dll
[2008.10.10 17:09:14 | 000,022,528 | ---- | C] () -- C:\Windows\System32\lfeps60n.dll
[2008.10.10 17:09:14 | 000,022,016 | ---- | C] () -- C:\Windows\System32\lfbmp60n.dll
[2008.10.10 17:09:14 | 000,020,480 | ---- | C] () -- C:\Windows\System32\lfpsd60n.dll
[2008.10.10 17:09:14 | 000,019,968 | ---- | C] () -- C:\Windows\System32\lftga60n.dll
[2008.10.10 17:09:14 | 000,019,456 | ---- | C] () -- C:\Windows\System32\lfwpg60n.dll
[2008.10.10 17:09:14 | 000,019,456 | ---- | C] () -- C:\Windows\System32\lfwmf60n.dll
[2008.10.10 17:09:14 | 000,018,432 | ---- | C] () -- C:\Windows\System32\lfmsp60n.dll
[2008.10.10 17:09:14 | 000,017,920 | ---- | C] () -- C:\Windows\System32\lfmac60n.dll
[2008.10.10 17:09:14 | 000,017,920 | ---- | C] () -- C:\Windows\System32\implode.dll
[2008.09.14 14:52:48 | 000,000,057 | ---- | C] () -- C:\Windows\System32\FORM.INI
[2008.09.13 12:53:50 | 000,000,613 | ---- | C] () -- C:\Users\***\AppData\Roaming\UCO.cache
[2008.04.15 18:33:53 | 000,554,496 | ---- | C] () -- C:\Windows\System32\dvmsg.dll
[2008.04.06 18:50:21 | 000,000,032 | ---- | C] () -- C:\Windows\CD_Start.INI
[2008.03.27 22:02:08 | 000,138,920 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2008.03.27 13:42:30 | 000,022,328 | ---- | C] () -- C:\Users\***\AppData\Roaming\PnkBstrK.sys
[2008.03.27 13:38:32 | 000,000,319 | ---- | C] () -- C:\Windows\game.ini
[2008.03.27 10:26:20 | 000,034,304 | ---- | C] () -- C:\Users\***\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008.03.26 21:52:56 | 000,000,306 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2008.03.26 09:48:02 | 000,156,160 | ---- | C] () -- C:\Windows\System32\unrar3.dll
[2008.03.26 09:48:02 | 000,075,264 | ---- | C] () -- C:\Windows\System32\unacev2.dll
[2008.03.26 09:39:04 | 000,000,032 | ---- | C] () -- C:\ProgramData\ezsid.dat
[2008.03.26 07:24:10 | 000,000,305 | ---- | C] () -- C:\ProgramData\addr_file.html
[2008.03.25 23:09:13 | 000,155,384 | ---- | C] () -- C:\Windows\System32\guard32.dll
[2008.03.25 18:25:54 | 000,232,348 | ---- | C] () -- C:\Users\***\AppData\Roaming\nvModes.001
[2008.03.25 18:19:23 | 000,232,348 | ---- | C] () -- C:\Users\***\AppData\Roaming\nvModes.dat
[2008.03.25 17:58:16 | 009,599,872 | ---- | C] () -- C:\Windows\System32\drivers\snp2uvc.sys
[2008.03.25 17:58:16 | 000,015,497 | ---- | C] () -- C:\Windows\snp2uvc.ini
[2008.03.25 17:19:31 | 000,000,552 | ---- | C] () -- C:\Users\***\AppData\Local\d3d8caps.dat
[2008.03.25 17:14:28 | 000,001,356 | ---- | C] () -- C:\Users\***\AppData\Local\d3d9caps.dat
[2007.06.01 11:58:40 | 000,999,424 | ---- | C] () -- C:\Windows\System32\WLIHVUI.dll
[2007.04.17 10:44:28 | 000,266,240 | ---- | C] () -- C:\Windows\System32\EMSC.DLL
[2006.11.02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006.11.02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006.07.27 11:00:00 | 000,004,096 | ---- | C] () -- C:\Windows\System32\drivers\cvintdrv.sys
[2005.06.10 08:46:52 | 000,049,152 | R--- | C] () -- C:\Windows\System32\FDT100.dll
[1999.07.16 14:37:56 | 000,136,704 | ---- | C] () -- C:\Windows\System32\TDCTRL.dll
[1998.03.11 23:15:52 | 000,025,600 | ---- | C] () -- C:\Windows\System32\CBNDLL.DLL
[1998.03.11 23:00:30 | 000,015,408 | ---- | C] () -- C:\Windows\System32\CB560WIN.DLL
[1997.01.29 18:53:26 | 000,240,640 | ---- | C] () -- C:\Windows\System32\NMOCOD.DLL
[1997.01.15 14:33:46 | 000,009,216 | ---- | C] () -- C:\Windows\System32\CBNVDD.DLL
[1996.12.19 14:37:38 | 000,103,360 | ---- | C] () -- C:\Windows\System32\S7OSC16X.DLL
[1996.12.19 14:36:48 | 000,014,848 | ---- | C] () -- C:\Windows\System32\S7OSC32X.DLL
[1996.04.03 21:33:26 | 000,005,248 | ---- | C] () -- C:\Windows\System32\giveio.sys
< End of report > |