Virenscanner sagt nun virenfrei :applaus:  
Werde nun einmal neu starten und schauen was dabei raus kommt 
OTL:   Code:  
 OTL logfile created on: 28.03.2010 09:50:18 - Run 3 
OTL by OldTimer - Version 3.1.37.3     Folder = D:\Downloads 
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation 
Internet Explorer (Version = 8.0.6001.18882) 
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 
  
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 42,00% Memory free 
5,00 Gb Paging File | 3,00 Gb Available in Paging File | 67,00% Paging File free 
Paging file location(s): c:\pagefile.sys 3067 3067 [binary data] 
  
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files 
Drive C: | 33,66 Gb Total Space | 3,87 Gb Free Space | 11,51% Space Free | Partition Type: NTFS 
Drive D: | 78,12 Gb Total Space | 11,46 Gb Free Space | 14,67% Space Free | Partition Type: NTFS 
E: Drive not present or media not loaded 
F: Drive not present or media not loaded 
G: Drive not present or media not loaded 
H: Drive not present or media not loaded 
I: Drive not present or media not loaded 
  
Computer Name: ***-NOTEBOOK 
Current User Name: *** 
Logged in as Administrator. 
  
Current Boot Mode: Normal 
Scan Mode: Current user 
Company Name Whitelist: Off 
Skip Microsoft Files: Off 
File Age = 30 Days 
Output = Minimal 
   ========== Processes (SafeList) ========== 
  
PRC - D:\Downloads\OTL.exe (OldTimer Tools) 
PRC - C:\Programme\Mozilla Firefox 3\firefox.exe (Mozilla Corporation) 
PRC - C:\Programme\Microsoft Security Essentials\msseces.exe (Microsoft Corporation) 
PRC - C:\Programme\Microsoft Security Essentials\MsMpEng.exe (Microsoft Corporation) 
PRC - C:\Programme\Common Files\microsoft shared\Virtualization Handler\CVH.EXE (Microsoft Corporation) 
PRC - C:\Programme\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Microsoft Corporation) 
PRC - C:\Programme\Common Files\microsoft shared\Virtualization Handler\OFFICEVIRT.EXE () 
PRC - C:\Programme\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation) 
PRC - C:\Programme\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation) 
PRC - C:\Programme\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) 
PRC - C:\Programme\TortoiseSVN\bin\TSVNCache.exe (hxxp://tortoisesvn.net) 
PRC - C:\Programme\ThinkVantage Fingerprint Software\upeksrvc.exe (UPEK Inc.) 
PRC - C:\Programme\ThinkVantage Fingerprint Software\upeksvr.exe (UPEK Inc.) 
PRC - C:\Programme\COMODO\Firewall\cfp.exe () 
PRC - C:\Programme\COMODO\Firewall\cmdagent.exe () 
PRC - C:\Programme\Windows Sidebar\sidebar.exe (Microsoft Corporation) 
PRC - C:\Windows\explorer.exe (Microsoft Corporation) 
PRC - C:\Windows\System32\conime.exe (Microsoft Corporation) 
PRC - d:\xampp\mysql\bin\mysqld.exe () 
PRC - D:\Program Files\DAEMON Tools Lite\daemon.exe (DT Soft Ltd) 
PRC - D:\xampp\apache\bin\httpd.exe (Apache Software Foundation) 
PRC - d:\xampp\apache\bin\httpd.exe (Apache Software Foundation) 
PRC - C:\Programme\FreePDF_XP\fpassist.exe (shbox.de) 
PRC - D:\Program Files\Common Files\Siemens\S7IEPG\s7oiehsx.exe (SIEMENS AG) 
PRC - D:\Program Files\FRITZ!DSL\IGDCTRL.EXE (AVM Berlin) 
PRC - C:\Programme\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceServiceX.exe (SIEMENS AG) 
PRC - D:\Program Files\Common Files\Siemens\S7UBTOOX\S7ubtoox.exe (SIEMENS AG) 
PRC - D:\Program Files\Common Files\Siemens\S7UBTOOX\S7ubTstx.exe (SIEMENS AG) 
PRC - D:\Program Files\Siemens\Step7\S7BIN\s7asysvx.exe (SIEMENS AG) 
PRC - D:\Program Files\Common Files\Siemens\SWS\almsrv\almsrvx.exe (SIEMENS AG) 
PRC - C:\Windows\RtHDVCpl.exe (Realtek Semiconductor) 
PRC - C:\Programme\Intel\Wireless\Bin\EvtEng.exe (Intel Corporation) 
PRC - C:\Programme\Intel\Wireless\Bin\RegSrvc.exe (Intel Corporation) 
PRC - D:\Program Files\Common Files\Siemens\SQLANY\dbsrv9.exe (iAnywhere Solutions, Inc.) 
PRC - C:\Windows\vsnp2uvc.exe (Sonix) 
PRC - D:\Program Files\National Instruments\Shared\Security\nidmsrv.exe (National Instruments, Inc.) 
PRC - C:\Windows\System32\lktsrv.exe (National Instruments, Inc.) 
PRC - C:\Windows\System32\lkads.exe (National Instruments, Inc.) 
PRC - C:\Windows\System32\lkcitdl.exe (National Instruments, Inc.) 
PRC - C:\Windows\System32\nisvcloc.exe (National Instruments Corp.) 
  
   ========== Modules (SafeList) ========== 
  
MOD - D:\Downloads\OTL.exe (OldTimer Tools) 
MOD - C:\Windows\System32\guard32.dll () 
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18005_none_5cb72f96088b0de0\comctl32.dll (Microsoft Corporation) 
  
   ========== Win32 Services (SafeList) ========== 
  
SRV - (ServiceLayer) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia) 
SRV - (MsMpSvc) -- C:\Program Files\Microsoft Security Essentials\MsMpEng.exe (Microsoft Corporation) 
SRV - (cvhsvc) -- C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (Microsoft Corporation) 
SRV - (osppsvc) -- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation) 
SRV - (FontCache) -- C:\Windows\System32\FntCache.dll (Microsoft Corporation) 
SRV - (sftvsa) -- C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation) 
SRV - (sftlist) -- C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) 
SRV - (UpekSrvc) -- C:\Program Files\ThinkVantage Fingerprint Software\upeksrvc.exe (UPEK Inc.) 
SRV - (FLEXnet Licensing Service) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.) 
SRV - (cmdAgent) -- C:\Program Files\COMODO\Firewall\cmdagent.exe () 
SRV - (mysql) -- d:\xampp\mysql\bin\mysqld.exe () 
SRV - (rpcapd) Remote Packet Capture Protocol v.0 (experimental) -- C:\Program Files\WinPcap\rpcapd.exe (CACE Technologies, Inc.) 
SRV - (Apache2.2) -- d:\xampp\apache\bin\httpd.exe (Apache Software Foundation) 
SRV - (WinDefend) -- C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation) 
SRV - (XAMPP) -- D:\xampp\service.exe () 
SRV - (s7oiehsx) -- D:\Program Files\Common Files\Siemens\S7IEPG\s7oiehsx.exe (SIEMENS AG) 
SRV - (IGDCTRL) -- D:\Program Files\FRITZ!DSL\IGDCTRL.EXE (AVM Berlin) 
SRV - (S7TraceServiceX) -- C:\Programme\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceServiceX.exe (SIEMENS AG) 
SRV - (s7asysvx) -- D:\Program Files\Siemens\Step7\S7BIN\s7asysvx.exe (SIEMENS AG) 
SRV - (almservice) -- D:\Program Files\Common Files\Siemens\sws\almsrv\almsrvx.exe (SIEMENS AG) 
SRV - (EvtEng) Intel(R) -- C:\Programme\Intel\Wireless\Bin\EvtEng.exe (Intel Corporation) 
SRV - (RegSrvc) Intel(R) -- C:\Programme\Intel\Wireless\Bin\RegSrvc.exe (Intel Corporation) 
SRV - (NIDomainService) -- D:\Program Files\National Instruments\Shared\Security\nidmsrv.exe (National Instruments, Inc.) 
SRV - (lkTimeSync) -- C:\Windows\System32\lktsrv.exe (National Instruments, Inc.) 
SRV - (lkClassAds) -- C:\Windows\System32\lkads.exe (National Instruments, Inc.) 
SRV - (NILM License Manager) -- D:\Program Files\National Instruments\Shared\License Manager\Bin\lmgrd.exe (Macrovision Corporation) 
SRV - (LkCitadelServer) -- C:\Windows\System32\lkcitdl.exe (National Instruments, Inc.) 
SRV - (niSvcLoc) -- C:\Windows\System32\nisvcloc.exe (National Instruments Corp.) 
SRV - (OpcEnum) -- C:\Windows\System32\OPCENUM.EXE () 
  
   ========== Driver Services (SafeList) ========== 
  
DRV - (MpFilter) -- C:\Windows\System32\drivers\MpFilter.sys (Microsoft Corporation) 
DRV - (MpNWMon) -- C:\Windows\System32\drivers\MpNWMon.sys (Microsoft Corporation) 
DRV - (Sftredir) -- C:\Windows\System32\drivers\Sftredirlh.sys (Microsoft Corporation) 
DRV - (sftvol) -- C:\Programme\Microsoft Application Virtualization Client\drivers\SftVollh.sys (Microsoft Corporation) 
DRV - (sftplay) -- C:\Programme\Microsoft Application Virtualization Client\drivers\sftplaylh.sys (Microsoft Corporation) 
DRV - (sftfs) -- C:\Programme\Microsoft Application Virtualization Client\drivers\SftFSlh.sys (Microsoft Corporation) 
DRV - (WinDriver6) -- C:\Windows\System32\drivers\windrvr6.sys (Jungo) 
DRV - (BthAvrcp) -- C:\Windows\System32\drivers\BthAvrcp.sys (CSR, plc) 
DRV - (PnkBstrK) -- C:\Windows\System32\drivers\PnkBstrK.sys () 
DRV - (smserial) -- C:\Windows\System32\drivers\smserial.sys (Motorola Inc.) 
DRV - (cmdGuard) -- C:\Windows\System32\drivers\cmdguard.sys (COMODO) 
DRV - (sptd) -- C:\Windows\System32\Drivers\sptd.sys () 
DRV - (smihlp) SMI Helper Driver (smihlp) -- C:\Programme\ThinkVantage Fingerprint Software\smihlp.sys (UPEK Inc.) 
DRV - (NPF) -- C:\Windows\System32\drivers\npf.sys (CACE Technologies, Inc.) 
DRV - (TcUsb) -- C:\Windows\System32\drivers\tcusb.sys (UPEK Inc.) 
DRV - (cmdHlp) -- C:\Windows\System32\drivers\cmdhlp.sys (COMODO) 
DRV - (Inspect) -- C:\Windows\System32\drivers\inspect.sys (COMODO) 
DRV - (pccsmcfd) -- C:\Windows\System32\drivers\pccsmcfd.sys (Nokia) 
DRV - (adfs) -- C:\Windows\System32\drivers\adfs.sys (Adobe Systems, Inc.) 
DRV - (ssmdrv) -- C:\Windows\System32\drivers\ssmdrv.sys (AVIRA GmbH) 
DRV - (teamviewervpn) -- C:\Windows\System32\drivers\teamviewervpn.sys (TeamViewer GmbH) 
DRV - (WSDPrintDevice) -- C:\Windows\System32\drivers\WSDPrint.sys (Microsoft Corporation) 
DRV - (ManyCam) -- C:\Windows\System32\drivers\ManyCam.sys (ManyCam LLC.) 
DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation) 
DRV - (SNTIE) SIMATIC Industrial Ethernet (ISO) -- C:\Windows\System32\drivers\SNTIE.SYS (SIEMENS AG) 
DRV - (s7snsrtx) -- C:\Windows\System32\drivers\s7snsrtx.sys (SIEMENS AG) 
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- C:\Windows\System32\drivers\RTKVHDA.sys (Realtek Semiconductor Corp.) 
DRV - (NETw4v32) Intel(R) -- C:\Windows\System32\drivers\NETw4v32.sys (Intel Corporation) 
DRV - (CamFilter) -- C:\Windows\System32\drivers\Camfilter.sys (Compal Inc.) 
DRV - (enecir) -- C:\Windows\System32\drivers\enecir.sys (ENE TECHNOLOGY INC.) 
DRV - (rimmptsk) -- C:\Windows\System32\drivers\rimmptsk.sys (REDC) 
DRV - (EMSC) -- C:\Windows\system32\DRIVERS\EMSC.SYS (Windows (R) Codename Longhorn DDK provider) 
DRV - (b57nd60x) -- C:\Windows\System32\drivers\b57nd60x.sys (Broadcom Corporation) 
DRV - (rimsptsk) -- C:\Windows\System32\drivers\rimsptsk.sys (REDC) 
DRV - (SNP2UVC) USB2.0 PC Camera (SNP2UVC) -- C:\Windows\System32\drivers\snp2uvc.sys () 
DRV - (ql2300) -- C:\Windows\system32\drivers\ql2300.sys (QLogic Corporation) 
DRV - (adp94xx) -- C:\Windows\system32\drivers\adp94xx.sys (Adaptec, Inc.) 
DRV - (elxstor) -- C:\Windows\system32\drivers\elxstor.sys (Emulex) 
DRV - (adpahci) -- C:\Windows\system32\drivers\adpahci.sys (Adaptec, Inc.) 
DRV - (uliahci) -- C:\Windows\system32\drivers\uliahci.sys (ULi Electronics Inc.) 
DRV - (iaStorV) -- C:\Windows\system32\drivers\iastorv.sys (Intel Corporation) 
DRV - (adpu320) -- C:\Windows\system32\drivers\adpu320.sys (Adaptec, Inc.) 
DRV - (ulsata2) -- C:\Windows\system32\drivers\ulsata2.sys (Promise Technology, Inc.) 
DRV - (vsmraid) -- C:\Windows\system32\drivers\vsmraid.sys (VIA Technologies Inc.,Ltd) 
DRV - (ql40xx) -- C:\Windows\system32\drivers\ql40xx.sys (QLogic Corporation) 
DRV - (UlSata) -- C:\Windows\system32\drivers\ulsata.sys (Promise Technology, Inc.) 
DRV - (adpu160m) -- C:\Windows\system32\drivers\adpu160m.sys (Adaptec, Inc.) 
DRV - (nvraid) -- C:\Windows\system32\drivers\nvraid.sys (NVIDIA Corporation) 
DRV - (nfrd960) -- C:\Windows\system32\drivers\nfrd960.sys (IBM Corporation) 
DRV - (iirsp) -- C:\Windows\system32\drivers\iirsp.sys (Intel Corp./ICP vortex GmbH) 
DRV - (SiSRaid4) -- C:\Windows\system32\drivers\sisraid4.sys (Silicon Integrated Systems) 
DRV - (nvstor) -- C:\Windows\system32\drivers\nvstor.sys (NVIDIA Corporation) 
DRV - (aic78xx) -- C:\Windows\system32\drivers\djsvs.sys (Adaptec, Inc.) 
DRV - (arcsas) -- C:\Windows\system32\drivers\arcsas.sys (Adaptec, Inc.) 
DRV - (LSI_SCSI) -- C:\Windows\system32\drivers\lsi_scsi.sys (LSI Logic) 
DRV - (SiSRaid2) -- C:\Windows\system32\drivers\sisraid2.sys (Silicon Integrated Systems Corp.) 
DRV - (HpCISSs) -- C:\Windows\system32\drivers\hpcisss.sys (Hewlett-Packard Company) 
DRV - (arc) -- C:\Windows\system32\drivers\arc.sys (Adaptec, Inc.) 
DRV - (iteraid) -- C:\Windows\system32\drivers\iteraid.sys (Integrated Technology Express, Inc.) 
DRV - (iteatapi) -- C:\Windows\system32\drivers\iteatapi.sys (Integrated Technology Express, Inc.) 
DRV - (LSI_SAS) -- C:\Windows\system32\drivers\lsi_sas.sys (LSI Logic) 
DRV - (Symc8xx) -- C:\Windows\system32\drivers\symc8xx.sys (LSI Logic) 
DRV - (LSI_FC) -- C:\Windows\system32\drivers\lsi_fc.sys (LSI Logic) 
DRV - (Sym_u3) -- C:\Windows\system32\drivers\sym_u3.sys (LSI Logic) 
DRV - (Mraid35x) -- C:\Windows\system32\drivers\mraid35x.sys (LSI Logic Corporation) 
DRV - (Sym_hi) -- C:\Windows\system32\drivers\sym_hi.sys (LSI Logic) 
DRV - (megasas) -- C:\Windows\system32\drivers\megasas.sys (LSI Logic Corporation) 
DRV - (viaide) -- C:\Windows\system32\drivers\viaide.sys (VIA Technologies, Inc.) 
DRV - (cmdide) -- C:\Windows\system32\drivers\cmdide.sys (CMD Technology, Inc.) 
DRV - (aliide) -- C:\Windows\system32\drivers\aliide.sys (Acer Laboratories Inc.) 
DRV - (Brserid) Brother MFC Serial Port Interface Driver (WDM) -- C:\Windows\system32\drivers\brserid.sys (Brother Industries Ltd.) 
DRV - (BrUsbSer) -- C:\Windows\system32\drivers\brusbser.sys (Brother Industries Ltd.) 
DRV - (BrFiltUp) -- C:\Windows\system32\drivers\brfiltup.sys (Brother Industries, Ltd.) 
DRV - (BrFiltLo) -- C:\Windows\system32\drivers\brfiltlo.sys (Brother Industries, Ltd.) 
DRV - (BrSerWdm) -- C:\Windows\system32\drivers\brserwdm.sys (Brother Industries Ltd.) 
DRV - (BrUsbMdm) -- C:\Windows\system32\drivers\brusbmdm.sys (Brother Industries Ltd.) 
DRV - (ntrigdigi) -- C:\Windows\system32\drivers\ntrigdigi.sys (N-trig Innovative Technologies) 
DRV - (NETw3v32) Intel(R) -- C:\Windows\System32\drivers\NETw3v32.sys (Intel® Corporation) 
DRV - (E1G60) Intel(R) -- C:\Windows\System32\drivers\E1G60I32.sys (Intel Corporation) 
DRV - (speedfan) -- C:\Windows\system32\speedfan.sys (Windows (R) 2000 DDK provider) 
DRV - (cvintdrv) -- C:\Windows\System32\drivers\cvintdrv.sys () 
DRV - (dfmirage) -- C:\Windows\System32\drivers\dfmirage.sys (DemoForge, LLC) 
DRV - (TVicPort) -- C:\Windows\System32\drivers\TVicPort.sys (EnTech Taiwan) 
DRV - (Hardlock) -- C:\Windows\System32\drivers\hardlock.sys (Aladdin Knowledge Systems) 
DRV - (FwKbd) -- C:\Windows\System32\drivers\FwKbd.sys () 
DRV - (dpmcslv) -- C:\Windows\System32\drivers\dpmcslv.sys (Siemens AG) 
DRV - (giveio) -- C:\Windows\system32\giveio.sys () 
  
   ========== Standard Registry (SafeList) ========== 
  
   ========== Internet Explorer ========== 
  
  
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp 
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de 
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = FE 58 7E FE 29 C2 CA 01  [binary data] 
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1 
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 
   ========== FireFox ========== 
  
FF - prefs.js..browser.startup.homepage: "hxxp://www.google.de/ig?hl=de" 
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.3 
FF - prefs.js..extensions.enabledItems: elemhidehelper@adblockplus.org:1.0.6 
FF - prefs.js..extensions.enabledItems: en-GB@dictionaries.addons.mozilla.org:1.19 
FF - prefs.js..extensions.enabledItems: {987311C6-B504-4aa2-90BF-60CC49808D42}:2.2 
FF - prefs.js..extensions.enabledItems: check4change-owner@mozdev.org:1.7 
FF - prefs.js..extensions.enabledItems: de-DE@dictionaries.addons.mozilla.org:2.0.1 
FF - prefs.js..extensions.enabledItems: smarterwiki@wikiatic.com:3.1.2 
FF - prefs.js..extensions.enabledItems: firebug@software.joehewitt.com:1.5.3 
FF - prefs.js..extensions.enabledItems: firecookie@janodvarko.cz:1.0.2 
FF - prefs.js..extensions.enabledItems: {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.2.22 
FF - prefs.js..extensions.enabledItems: {f13b157f-b174-47e7-a34d-4815ddfdfeb8}:0.9.87.4 
FF - prefs.js..extensions.enabledItems: pencil@evolus.vn:1.0.6 
FF - prefs.js..extensions.enabledItems: personas@christopher.beard:1.5.2 
FF - prefs.js..extensions.enabledItems: pixelperfectplugin@openhouseconcepts.com:1.5.6 
FF - prefs.js..extensions.enabledItems: {02450954-cdd9-410f-b1da-db804e18c671}:0.96.2 
FF - prefs.js..extensions.enabledItems: {9c51bd27-6ed8-4000-a2bf-36cb95c0c947}:11.0.1 
FF - prefs.js..extensions.enabledItems: youtube2mp3@mondayx.de:1.0.6 
FF - prefs.js..extensions.enabledItems: {1d8e98fb-53c3-47a8-9fb9-1b51bbf3890d}:1.2 
FF - prefs.js..network.proxy.backup.ftp: "yolno.infp" 
FF - prefs.js..network.proxy.backup.ftp_port: 0 
FF - prefs.js..network.proxy.backup.gopher: "yolno.infp" 
FF - prefs.js..network.proxy.backup.gopher_port: 0 
FF - prefs.js..network.proxy.backup.socks: "yolno.infp" 
FF - prefs.js..network.proxy.backup.socks_port: 0 
FF - prefs.js..network.proxy.backup.ssl: "yolno.infp" 
FF - prefs.js..network.proxy.backup.ssl_port: 0 
FF - prefs.js..network.proxy.ftp: "74.222.8.26" 
FF - prefs.js..network.proxy.ftp_port: 3128 
FF - prefs.js..network.proxy.gopher: "74.222.8.26" 
FF - prefs.js..network.proxy.gopher_port: 3128 
FF - prefs.js..network.proxy.http: "74.222.8.26" 
FF - prefs.js..network.proxy.http_port: 3128 
FF - prefs.js..network.proxy.share_proxy_settings: true 
FF - prefs.js..network.proxy.socks: "74.222.8.26" 
FF - prefs.js..network.proxy.socks_port: 3128 
FF - prefs.js..network.proxy.ssl: "74.222.8.26" 
FF - prefs.js..network.proxy.ssl_port: 3128 
  
  
FF - HKLM\software\mozilla\Firefox\Extensions\\{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\ [2010.02.26 20:49:31 | 000,000,000 | ---D | M] 
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.2pre\extensions\\Components: C:\Program Files\Mozilla Firefox 3\components [2010.03.27 19:43:28 | 000,000,000 | ---D | M] 
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.2pre\extensions\\Plugins: C:\Program Files\Mozilla Firefox 3\plugins [2010.03.24 17:37:24 | 000,000,000 | ---D | M] 
FF - HKLM\software\mozilla\Thunderbird\Extensions\\{CCB7D94B-CA92-4E3F-B79D-ADE0F07ADC74}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Thunderbird Connector\ThunderbirdExtension\ [2010.02.26 20:49:32 | 000,000,000 | ---D | M] 
  
[2008.06.18 08:57:54 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Extensions 
[2010.03.28 00:49:03 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions 
[2009.08.20 22:25:04 | 000,000,000 | ---D | M] (Screengrab) -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\{02450954-cdd9-410f-b1da-db804e18c671} 
[2010.01.27 20:58:15 | 000,000,000 | ---D | M] (FetchMP3 Video to Audio Converter) -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\{1d8e98fb-53c3-47a8-9fb9-1b51bbf3890d} 
[2009.09.15 22:24:10 | 000,000,000 | ---D | M] (BugMeNot) -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\{987311C6-B504-4aa2-90BF-60CC49808D42} 
[2010.02.11 22:51:31 | 000,000,000 | ---D | M] (Tamper Data) -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\{9c51bd27-6ed8-4000-a2bf-36cb95c0c947} 
[2009.04.21 22:01:15 | 000,000,000 | ---D | M] (Modify Headers) -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\{b749fc7c-e949-447f-926c-3f4eed6accfe} 
[2010.01.08 16:03:26 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} 
[2009.08.29 10:39:50 | 000,000,000 | ---D | M] (No name found) -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\{E2082660-5330-49e6-BD84-9978CE15BA72} 
[2009.10.20 12:43:33 | 000,000,000 | ---D | M] (JavaScript Debugger) -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\{f13b157f-b174-47e7-a34d-4815ddfdfeb8} 
[2009.08.21 17:40:31 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\avg@script.1 
[2010.02.18 23:15:21 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\check4change-owner@mozdev.org 
[2010.02.13 12:28:17 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\de-DE@dictionaries.addons.mozilla.org 
[2009.07.01 20:36:31 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\elemhidehelper@adblockplus.org 
[2008.05.04 19:05:11 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\en-GB@dictionaries.addons.mozilla.org 
[2010.03.15 00:41:47 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\firebug@software.joehewitt.com 
[2010.01.13 23:34:55 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\firecookie@janodvarko.cz 
[2009.12.13 01:15:16 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\pencil@evolus.vn 
[2010.03.18 22:54:17 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\personas@christopher.beard 
[2010.02.08 20:52:43 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\pixelperfectplugin@openhouseconcepts.com 
[2010.01.27 17:06:13 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\smarterwiki@wikiatic.com 
[2009.05.09 09:07:06 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\sqlime@security.compass 
[2009.05.28 16:19:42 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\xssme@security.compass 
[2010.03.15 00:41:49 | 000,000,000 | ---D | M] -- C:\Users\***\AppData\Roaming\mozilla\Firefox\Profiles\3v0eu4xy.default\extensions\youtube2mp3@mondayx.de 
  
O1 HOSTS File: ([2010.01.24 19:09:46 | 000,000,901 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts 
O1 - Hosts: 127.0.0.1       localhost 
O1 - Hosts: ::1             localhost 
O1 - Hosts: 127.0.0.1          pro_001.mirrow.loc 
O1 - Hosts: 192.168.2.103   root.loc 
O1 - Hosts: 192.168.2.103   live.loc 
O1 - Hosts: 192.168.2.103   phpBB.loc 
O1 - Hosts: 192.168.2.103   pma.loc 
O2 - BHO: (Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) 
O2 - BHO: (Windows Live Anmelde-Hilfsprogramm) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) 
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) 
O3 - HKLM\..\Toolbar: (Zend Studio) - {95188727-288F-4581-A48D-EAB3BD027314} - D:\Program Files\Zend\ZendStudio-5.5.0\bin\ZendIEToolbar.dll () 
O4 - HKLM..\Run: [COMODO Firewall Pro] C:\Program Files\COMODO\Firewall\cfp.exe () 
O4 - HKLM..\Run: [COMODO Internet Security] C:\Program Files\COMODO\Firewall\cfp.exe () 
O4 - HKLM..\Run: [FreePDF Assistant] C:\Programme\FreePDF_XP\fpassist.exe (shbox.de) 
O4 - HKLM..\Run: [MSSE] C:\Program Files\Microsoft Security Essentials\msseces.exe (Microsoft Corporation) 
O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.DLL (NVIDIA Corporation) 
O4 - HKLM..\Run: [NvSvc] C:\Windows\System32\nvsvc.DLL (NVIDIA Corporation) 
O4 - HKLM..\Run: [PSQLLauncher] C:\Program Files\ThinkVantage Fingerprint Software\launcher.exe (UPEK Inc.) 
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor) 
O4 - HKLM..\Run: [S7UB Start] D:\Program Files\Common Files\Siemens\S7ubtoox\s7ubtstx.exe (SIEMENS AG) 
O4 - HKLM..\Run: [snp2uvc] C:\Windows\vsnp2uvc.exe (Sonix) 
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation) 
O4 - HKCU..\Run: []  File not found 
O4 - HKCU..\Run: [DAEMON Tools Lite] D:\Program Files\DAEMON Tools Lite\daemon.exe (DT Soft Ltd) 
O4 - HKCU..\RunOnce: [Shockwave Updater] C:\Windows\System32\Adobe\SHOCKW~1\SWHELP~2.EXE -Update -1100465 -Mozilla\5.0 ( File not found 
O4 - Startup: C:\Users\***\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk = C:\Programme\Common Files\microsoft shared\Virtualization Handler\CVH.EXE (Microsoft Corporation) 
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1 
O8 - Extra context menu item: Nach Microsoft E&xel exportieren - C:\Programme\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) 
O8 - Extra context menu item: Zend Studio - Debug current page - D:\Program Files\Zend\ZendStudio-5.5.0\bin\ZendIEToolbar.dll () 
O8 - Extra context menu item: Zend Studio - Debug next page - D:\Program Files\Zend\ZendStudio-5.5.0\bin\ZendIEToolbar.dll () 
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) 
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) 
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programme\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) 
O13 - gopher Prefix: missing 
O15 - HKCU\..Trusted Domains: fritz.box ([]* in Lokales Intranet) 
O15 - HKCU\..Trusted Ranges: Range1 ([*] in Lokales Intranet) 
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) 
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.) 
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07) 
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) 
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) 
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programme\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation) 
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programme\Common Files\Skype\Skype4COM.dll (Skype Technologies) 
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) 
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) 
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) 
O20 - Winlogon\Notify\psfus: DllName - C:\Program Files\ThinkVantage Fingerprint Software\psqlpwd.dll - C:\Programme\ThinkVantage Fingerprint Software\psqlpwd.dll (UPEK Inc.) 
O32 - HKLM CDRom: AutoRun - 1 
O32 - AutoRun File - [2006.09.18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] 
O33 - MountPoints2\{1c4ac2f5-fa73-11dc-9241-806e6f6e6963}\Shell - "" = AutoRun 
O33 - MountPoints2\{1c4ac2f5-fa73-11dc-9241-806e6f6e6963}\Shell\AutoRun\command - "" = E:\setup.exe -- File not found 
O33 - MountPoints2\{70a5fedc-8029-11dd-941f-001b3868aa49}\Shell\1\Command - "" = .\recycled\info.exe 
O33 - MountPoints2\{b8e4ab6e-47a9-11de-a745-001b3868aa49}\Shell - "" = AutoRun 
O33 - MountPoints2\{b8e4ab6e-47a9-11de-a745-001b3868aa49}\Shell\AutoRun\command - "" = G:\autorun.exe -- File not found 
O33 - MountPoints2\{de79b896-1b91-11de-bbf3-001b3868aa49}\Shell - "" = AutoRun 
O33 - MountPoints2\{de79b896-1b91-11de-bbf3-001b3868aa49}\Shell\AutoRun\command - "" = F:\autorun.exe -- File not found 
O34 - HKLM BootExecute: (autocheck autochk *) -  File not found 
O35 - HKLM\..comfile [open] -- "%1" %* 
O35 - HKLM\..exefile [open] -- "%1" %* 
O37 - HKLM\...com [@ = comfile] -- "%1" %* 
O37 - HKLM\...exe [@ = exefile] -- "%1" %* 
   ========== Files/Folders - Created Within 30 Days ========== 
  
[2010.03.27 15:09:50 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\Skype 
[2010.03.26 14:26:26 | 000,000,000 | ---D | C] -- C:\Programme\trend micro 
[2010.03.26 09:18:17 | 000,000,000 | ---D | C] -- C:\Users\***\AppData\Roaming\Malwarebytes 
[2010.03.26 09:18:10 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys 
[2010.03.26 09:18:07 | 000,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys 
[2010.03.26 09:18:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes 
[2010.03.25 09:00:42 | 000,000,000 | ---D | C] -- C:\Programme\Microsoft Security Essentials 
[2010.03.17 04:01:52 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browserchoice.exe 
[2010.03.11 17:36:41 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nshhttp.dll 
[2010.03.11 17:36:35 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\httpapi.dll 
[2010.03.08 21:53:03 | 000,000,000 | ---D | C] -- C:\Users\***\dwhelper 
[2010.03.03 21:05:42 | 000,000,000 | ---D | C] -- C:\Users\***\AppData\Roaming\ManyCam 
[2010.03.02 17:34:36 | 000,209,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Tabctl32.ocx 
[2010.02.27 11:56:00 | 000,000,000 | ---D | C] -- C:\Downloads 
[2010.02.26 20:48:11 | 000,018,816 | ---- | C] (Nokia) -- C:\Windows\System32\drivers\pccsmcfd.sys 
[2010.02.26 20:47:43 | 000,000,000 | ---D | C] -- C:\Programme\PC Connectivity Solution 
[2009.08.27 16:43:40 | 000,570,128 | ---- | C] (Microsoft Corporation) -- C:\Programme\Common Files\dao350.dll 
[2008.03.25 17:58:16 | 000,081,920 | ---- | C] ( ) -- C:\Windows\System32\rsnp2uvc.dll 
[2008.03.25 17:58:16 | 000,053,248 | ---- | C] ( ) -- C:\Windows\System32\csnp2uvc.dll 
[2006.01.20 14:11:59 | 000,253,952 | ---- | C] (XtraLogiX GbR) -- C:\Programme\Graph_Pro.exe 
[2 C:\Users\***\Documents\*.tmp files -> C:\Users\***\Documents\*.tmp -> ] 
   ========== Files - Modified Within 30 Days ========== 
  
[2010.03.28 09:50:16 | 010,223,616 | -HS- | M] () -- C:\Users\***\ntuser.dat 
[2010.03.28 09:44:50 | 001,575,692 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI 
[2010.03.28 09:44:50 | 000,676,562 | ---- | M] () -- C:\Windows\System32\perfh007.dat 
[2010.03.28 09:44:50 | 000,637,256 | ---- | M] () -- C:\Windows\System32\perfh009.dat 
[2010.03.28 09:44:50 | 000,147,014 | ---- | M] () -- C:\Windows\System32\perfc007.dat 
[2010.03.28 09:44:50 | 000,121,564 | ---- | M] () -- C:\Windows\System32\perfc009.dat 
[2010.03.28 09:42:00 | 000,232,348 | ---- | M] () -- C:\Users\***\AppData\Roaming\nvModes.dat 
[2010.03.28 09:42:00 | 000,232,348 | ---- | M] () -- C:\Users\***\AppData\Roaming\nvModes.001 
[2010.03.28 08:46:03 | 000,004,048 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 
[2010.03.28 08:46:03 | 000,004,048 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 
[2010.03.28 02:05:39 | 000,000,416 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{A522CF25-CAAB-4EAB-85D9-A6991B693371}.job 
[2010.03.28 00:46:14 | 000,123,808 | ---- | M] () -- C:\Users\***\AppData\Local\GDIPFONTCACHEV1.DAT 
[2010.03.27 17:18:11 | 000,000,630 | ---- | M] () -- C:\Users\***\Desktop\SpeedFan.lnk 
[2010.03.27 17:18:06 | 000,000,045 | ---- | M] () -- C:\Windows\System32\initdebug.nfo 
[2010.03.27 16:47:39 | 002,349,632 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT 
[2010.03.27 16:46:02 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT 
[2010.03.27 16:43:57 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat 
[2010.03.27 15:00:31 | 000,001,076 | ---- | M] () -- C:\Windows\bthservsdp.dat 
[2010.03.27 14:54:58 | 000,524,288 | -HS- | M] () -- C:\Users\***\ntuser.dat{344485b2-1f31-11df-a36f-001b3868aa49}.TMContainer00000000000000000001.regtrans-ms 
[2010.03.27 14:54:58 | 000,065,536 | -HS- | M] () -- C:\Users\***\ntuser.dat{344485b2-1f31-11df-a36f-001b3868aa49}.TM.blf 
[2010.03.27 14:54:51 | 002,073,722 | -H-- | M] () -- C:\Users\***\AppData\Local\IconCache.db 
[2010.03.27 10:03:30 | 000,019,286 | ---- | M] () -- C:\cleanup.exe 
[2010.03.26 23:32:50 | 000,000,732 | ---- | M] () -- C:\Users\***\Desktop\Defraggler.lnk 
[2010.03.26 14:19:04 | 000,000,232 | ---- | M] () -- C:\Windows\win.ini 
[2010.03.26 14:01:58 | 000,000,708 | ---- | M] () -- C:\Users\***\Desktop\CCleaner.lnk 
[2010.03.26 09:18:14 | 000,000,616 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk 
[2010.03.25 09:00:44 | 000,000,940 | ---- | M] () -- C:\Users\Public\Desktop\Microsoft Security Essentials.lnk 
[2010.03.24 17:00:28 | 000,000,036 | ---- | M] () -- C:\Users\***\AppData\Local\housecall.guid.cache 
[2010.03.17 23:26:54 | 000,000,162 | -H-- | M] () -- C:\Users\***\Documents\~$rmelSammlung_ET.docx 
[2010.03.17 23:26:46 | 000,887,725 | ---- | M] () -- C:\Users\***\Documents\FormelSammlung_ET.docx 
[2010.03.17 22:57:25 | 000,001,355 | ---- | M] () -- C:\Users\***\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk 
[2010.03.06 22:01:29 | 000,001,426 | ---- | M] () -- C:\List.conf 
[2010.03.06 16:25:12 | 000,000,316 | ---- | M] () -- C:\Users\***\cinderella2-user.properties 
[2010.03.04 16:21:19 | 000,000,354 | ---- | M] () -- C:\Windows\tasks\Install_NSS.job 
[2010.03.03 12:42:02 | 000,002,464 | ---- | M] () -- C:\Windows\netdet.ini 
[2010.02.27 21:57:43 | 000,000,650 | ---- | M] () -- C:\Users\***\Desktop\CryptLoad.exe - Verknüpfung.lnk 
[2010.02.27 20:35:40 | 000,001,393 | ---- | M] () -- C:\Users\***\Documents\#newfile2.lyx# 
[2010.02.27 13:45:57 | 000,020,598 | ---- | M] () -- C:\Users\***\Documents\Kalender von ***.ics 
[2010.02.26 10:29:54 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_PCCSWpdDriver_01_07_00.Wdf 
[2 C:\Users\***\Documents\*.tmp files -> C:\Users\***\Documents\*.tmp -> ] 
   ========== Files Created - No Company Name ========== 
  
[2010.03.27 17:18:11 | 000,000,630 | ---- | C] () -- C:\Users\***\Desktop\SpeedFan.lnk 
[2010.03.27 17:18:03 | 000,000,045 | ---- | C] () -- C:\Windows\System32\initdebug.nfo 
[2010.03.27 14:53:15 | 000,002,976 | ---- | C] () -- C:\Windows\System32\drivers\FwKbd.sys 
[2010.03.27 10:03:30 | 000,019,286 | ---- | C] () -- C:\cleanup.exe 
[2010.03.26 23:32:50 | 000,000,732 | ---- | C] () -- C:\Users\***\Desktop\Defraggler.lnk 
[2010.03.26 14:01:58 | 000,000,708 | ---- | C] () -- C:\Users\***\Desktop\CCleaner.lnk 
[2010.03.26 09:18:14 | 000,000,616 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk 
[2010.03.25 09:00:44 | 000,000,940 | ---- | C] () -- C:\Users\Public\Desktop\Microsoft Security Essentials.lnk 
[2010.03.24 17:00:28 | 000,000,036 | ---- | C] () -- C:\Users\***\AppData\Local\housecall.guid.cache 
[2010.03.17 23:26:54 | 000,000,162 | -H-- | C] () -- C:\Users\***\Documents\~$rmelSammlung_ET.docx 
[2010.03.17 23:25:13 | 000,887,725 | ---- | C] () -- C:\Users\***\Documents\FormelSammlung_ET.docx 
[2010.03.17 22:57:25 | 000,001,355 | ---- | C] () -- C:\Users\***\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk 
[2010.03.06 16:25:12 | 000,000,316 | ---- | C] () -- C:\Users\***\cinderella2-user.properties 
[2010.03.03 21:06:30 | 000,000,354 | ---- | C] () -- C:\Windows\tasks\Install_NSS.job 
[2010.02.27 21:57:43 | 000,000,650 | ---- | C] () -- C:\Users\***\Desktop\CryptLoad.exe - Verknüpfung.lnk 
[2010.02.27 20:30:40 | 000,001,393 | ---- | C] () -- C:\Users\***\Documents\#newfile2.lyx# 
[2010.02.27 13:45:57 | 000,020,598 | ---- | C] () -- C:\Users\***\Documents\Kalender von ***.ics 
[2010.02.27 11:44:25 | 000,001,426 | ---- | C] () -- C:\List.conf 
[2010.02.26 10:29:54 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_PCCSWpdDriver_01_07_00.Wdf 
[2010.02.26 10:24:22 | 000,001,076 | ---- | C] () -- C:\Windows\bthservsdp.dat 
[2010.01.16 16:01:13 | 000,002,593 | ---- | C] () -- C:\Windows\SE.INI 
[2010.01.05 19:40:21 | 000,290,904 | ---- | C] () -- C:\Windows\System32\vc6-re200l.dll 
[2009.12.25 20:53:12 | 000,002,770 | ---- | C] () -- C:\Windows\mgxoschk.ini 
[2009.12.23 22:05:41 | 000,000,227 | ---- | C] () -- C:\Windows\FTRUN32.INI 
[2009.12.23 21:20:53 | 000,000,032 | ---- | C] () -- C:\Windows\DVD_Start.INI 
[2009.11.19 17:31:52 | 000,004,096 | -H-- | C] () -- C:\Users\***\AppData\Local\keyfile3.drm 
[2009.10.18 17:11:32 | 000,000,165 | ---- | C] () -- C:\Users\***\AppData\Local\rahistory.xml 
[2009.10.07 15:58:16 | 000,000,133 | ---- | C] () -- C:\Windows\Dialux.ini 
[2009.09.25 16:47:49 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll 
[2009.09.05 11:26:52 | 000,021,840 | ---- | C] () -- C:\Windows\System32\SIntfNT.dll 
[2009.09.05 11:26:52 | 000,017,212 | ---- | C] () -- C:\Windows\System32\SIntf32.dll 
[2009.09.05 11:26:52 | 000,012,067 | ---- | C] () -- C:\Windows\System32\SIntf16.dll 
[2009.09.05 11:22:18 | 000,000,218 | ---- | C] () -- C:\Windows\SIERRA.INI 
[2009.08.27 16:55:10 | 000,000,000 | ---- | C] () -- C:\Windows\FwSim.INI 
[2009.08.27 16:44:58 | 000,104,633 | ---- | C] () -- C:\Windows\System32\drivers\fwDH485.sys 
[2009.08.27 16:44:56 | 000,031,232 | ---- | C] () -- C:\Windows\System32\s7200L2.dll 
[2009.03.28 14:11:00 | 000,717,296 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys 
[2009.03.25 18:39:04 | 000,116,224 | ---- | C] () -- C:\Windows\System32\redmonnt.dll 
[2009.03.13 20:40:55 | 000,002,464 | ---- | C] () -- C:\Windows\netdet.ini 
[2009.03.13 20:27:51 | 000,100,352 | ---- | C] () -- C:\Windows\System32\pg32conv.dll 
[2009.03.13 20:27:50 | 000,030,793 | ---- | C] () -- C:\Windows\System32\crtslv.dll 
[2009.02.11 17:48:52 | 000,000,026 | ---- | C] () -- C:\Windows\NeoSetup.INI 
[2009.01.18 21:09:20 | 000,000,146 | ---- | C] () -- C:\Windows\Capture.INI 
[2008.12.23 17:33:18 | 000,053,299 | ---- | C] () -- C:\Windows\System32\pthreadVC.dll 
[2008.11.01 15:25:03 | 000,000,728 | ---- | C] () -- C:\Users\***\AppData\Local\RAExpertHistory.xml 
[2008.11.01 15:05:56 | 000,031,007 | ---- | C] () -- C:\Users\***\AppData\Roaming\UserTile.png 
[2008.10.10 20:40:40 | 000,471,161 | ---- | C] () -- C:\Programme\Mozilla Firefox 3__inst.jar 
[2008.10.10 17:09:20 | 000,006,783 | ---- | C] () -- C:\Windows\PSPICEEV.INI 
[2008.10.10 17:09:14 | 000,176,128 | ---- | C] () -- C:\Windows\System32\lffax60n.dll 
[2008.10.10 17:09:14 | 000,141,824 | ---- | C] () -- C:\Windows\System32\lfcmp60n.dll 
[2008.10.10 17:09:14 | 000,110,080 | ---- | C] () -- C:\Windows\System32\lfpng60n.dll 
[2008.10.10 17:09:14 | 000,046,080 | ---- | C] () -- C:\Windows\System32\lftif60n.dll 
[2008.10.10 17:09:14 | 000,043,008 | ---- | C] () -- C:\Windows\System32\ltfil60n.dll 
[2008.10.10 17:09:14 | 000,023,552 | ---- | C] () -- C:\Windows\System32\lfpcx60n.dll 
[2008.10.10 17:09:14 | 000,022,528 | ---- | C] () -- C:\Windows\System32\lfpct60n.dll 
[2008.10.10 17:09:14 | 000,022,528 | ---- | C] () -- C:\Windows\System32\lfeps60n.dll 
[2008.10.10 17:09:14 | 000,022,016 | ---- | C] () -- C:\Windows\System32\lfbmp60n.dll 
[2008.10.10 17:09:14 | 000,020,480 | ---- | C] () -- C:\Windows\System32\lfpsd60n.dll 
[2008.10.10 17:09:14 | 000,019,968 | ---- | C] () -- C:\Windows\System32\lftga60n.dll 
[2008.10.10 17:09:14 | 000,019,456 | ---- | C] () -- C:\Windows\System32\lfwpg60n.dll 
[2008.10.10 17:09:14 | 000,019,456 | ---- | C] () -- C:\Windows\System32\lfwmf60n.dll 
[2008.10.10 17:09:14 | 000,018,432 | ---- | C] () -- C:\Windows\System32\lfmsp60n.dll 
[2008.10.10 17:09:14 | 000,017,920 | ---- | C] () -- C:\Windows\System32\lfmac60n.dll 
[2008.10.10 17:09:14 | 000,017,920 | ---- | C] () -- C:\Windows\System32\implode.dll 
[2008.09.14 14:52:48 | 000,000,057 | ---- | C] () -- C:\Windows\System32\FORM.INI 
[2008.09.13 12:53:50 | 000,000,613 | ---- | C] () -- C:\Users\***\AppData\Roaming\UCO.cache 
[2008.04.15 18:33:53 | 000,554,496 | ---- | C] () -- C:\Windows\System32\dvmsg.dll 
[2008.04.06 18:50:21 | 000,000,032 | ---- | C] () -- C:\Windows\CD_Start.INI 
[2008.03.27 22:02:08 | 000,138,920 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys 
[2008.03.27 13:42:30 | 000,022,328 | ---- | C] () -- C:\Users\***\AppData\Roaming\PnkBstrK.sys 
[2008.03.27 13:38:32 | 000,000,319 | ---- | C] () -- C:\Windows\game.ini 
[2008.03.27 10:26:20 | 000,034,304 | ---- | C] () -- C:\Users\***\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 
[2008.03.26 21:52:56 | 000,000,306 | RHS- | C] () -- C:\ProgramData\ntuser.pol 
[2008.03.26 09:48:02 | 000,156,160 | ---- | C] () -- C:\Windows\System32\unrar3.dll 
[2008.03.26 09:48:02 | 000,075,264 | ---- | C] () -- C:\Windows\System32\unacev2.dll 
[2008.03.26 09:39:04 | 000,000,032 | ---- | C] () -- C:\ProgramData\ezsid.dat 
[2008.03.26 07:24:10 | 000,000,305 | ---- | C] () -- C:\ProgramData\addr_file.html 
[2008.03.25 23:09:13 | 000,155,384 | ---- | C] () -- C:\Windows\System32\guard32.dll 
[2008.03.25 18:25:54 | 000,232,348 | ---- | C] () -- C:\Users\***\AppData\Roaming\nvModes.001 
[2008.03.25 18:19:23 | 000,232,348 | ---- | C] () -- C:\Users\***\AppData\Roaming\nvModes.dat 
[2008.03.25 17:58:16 | 009,599,872 | ---- | C] () -- C:\Windows\System32\drivers\snp2uvc.sys 
[2008.03.25 17:58:16 | 000,015,497 | ---- | C] () -- C:\Windows\snp2uvc.ini 
[2008.03.25 17:19:31 | 000,000,552 | ---- | C] () -- C:\Users\***\AppData\Local\d3d8caps.dat 
[2008.03.25 17:14:28 | 000,001,356 | ---- | C] () -- C:\Users\***\AppData\Local\d3d9caps.dat 
[2007.06.01 11:58:40 | 000,999,424 | ---- | C] () -- C:\Windows\System32\WLIHVUI.dll 
[2007.04.17 10:44:28 | 000,266,240 | ---- | C] () -- C:\Windows\System32\EMSC.DLL 
[2006.11.02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll 
[2006.11.02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini 
[2006.07.27 11:00:00 | 000,004,096 | ---- | C] () -- C:\Windows\System32\drivers\cvintdrv.sys 
[2005.06.10 08:46:52 | 000,049,152 | R--- | C] () -- C:\Windows\System32\FDT100.dll 
[1999.07.16 14:37:56 | 000,136,704 | ---- | C] () -- C:\Windows\System32\TDCTRL.dll 
[1998.03.11 23:15:52 | 000,025,600 | ---- | C] () -- C:\Windows\System32\CBNDLL.DLL 
[1998.03.11 23:00:30 | 000,015,408 | ---- | C] () -- C:\Windows\System32\CB560WIN.DLL 
[1997.01.29 18:53:26 | 000,240,640 | ---- | C] () -- C:\Windows\System32\NMOCOD.DLL 
[1997.01.15 14:33:46 | 000,009,216 | ---- | C] () -- C:\Windows\System32\CBNVDD.DLL 
[1996.12.19 14:37:38 | 000,103,360 | ---- | C] () -- C:\Windows\System32\S7OSC16X.DLL 
[1996.12.19 14:36:48 | 000,014,848 | ---- | C] () -- C:\Windows\System32\S7OSC32X.DLL 
[1996.04.03 21:33:26 | 000,005,248 | ---- | C] () -- C:\Windows\System32\giveio.sys 
< End of report >      |