|   | enerlein | 07.10.2010 17:57 |  
 So, hab OTL durchlaufen lassen, hier beide logs:OTL.txt OTL Logfile:   Code: 
 OTL logfile created on: 07.10.2010 14:17:49 - Run 1OTL by OldTimer - Version 3.2.14.1     Folder = C:\Users\Nadine\Desktop
 Ultimate Edition  (Version = 6.1.7100) - Type = NTWorkstation
 Internet Explorer (Version = 8.0.7100.0)
 Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 61,00% Memory free
 6,00 Gb Paging File | 5,00 Gb Available in Paging File | 78,00% Paging File free
 Paging file location(s): ?:\pagefile.sys [binary data]
 
 %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
 Drive C: | 232,88 Gb Total Space | 35,02 Gb Free Space | 15,04% Space Free | Partition Type: NTFS
 D: Drive not present or media not loaded
 E: Drive not present or media not loaded
 F: Drive not present or media not loaded
 G: Drive not present or media not loaded
 H: Drive not present or media not loaded
 I: Drive not present or media not loaded
 
 Computer Name: NADINE-PC
 Current User Name: Nadine
 Logged in as Administrator.
 
 Current Boot Mode: Normal
 Scan Mode: All users
 Company Name Whitelist: Off
 Skip Microsoft Files: Off
 File Age = 30 Days
 Output = Minimal
 
 ========== Processes (SafeList) ==========
 
 PRC - C:\Users\Nadine\Desktop\OTL.exe (OldTimer Tools)
 PRC - C:\Programme\Lavasoft\Ad-Aware\AAWTray.exe (Lavasoft)
 PRC - C:\Programme\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft)
 PRC - C:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation)
 PRC - C:\Programme\DivX\DivX Update\DivXUpdate.exe ()
 PRC - C:\Programme\TomTom HOME 2\TomTomHOMEService.exe (TomTom)
 PRC - C:\Programme\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
 PRC - C:\Programme\TeamViewer\Version5\TeamViewer_Service.exe (TeamViewer GmbH)
 PRC - C:\Programme\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
 PRC - C:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
 PRC - C:\Programme\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
 PRC - C:\Programme\Avira\AntiVir Desktop\avcenter.exe (Avira GmbH)
 PRC - C:\Programme\Avira\AntiVir Desktop\avshadow.exe (Avira GmbH)
 PRC - C:\Programme\Common Files\Native Instruments\Hardware\NIHardwareService.exe (Native Instruments GmbH)
 PRC - C:\Programme\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.)
 PRC - C:\Programme\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
 PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation)
 PRC - C:\Programme\Windows Sidebar\sidebar.exe (Microsoft Corporation)
 PRC - C:\Windows\explorer.exe (Microsoft Corporation)
 PRC - C:\Windows\System32\conhost.exe (Microsoft Corporation)
 PRC - C:\Windows\System32\audiodg.exe (Microsoft Corporation)
 PRC - C:\mysql\bin\mysqld-nt.exe ()
 
 
 ========== Modules (SafeList) ==========
 
 MOD - C:\Users\Nadine\Desktop\OTL.exe (OldTimer Tools)
 MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7100.19_none_b6a32c7c247ee542\comctl32.dll (Microsoft Corporation)
 MOD - C:\Windows\System32\sspicli.dll (Microsoft Corporation)
 MOD - C:\Windows\System32\sechost.dll (Microsoft Corporation)
 MOD - C:\Windows\System32\samcli.dll (Microsoft Corporation)
 MOD - C:\Windows\System32\profapi.dll (Microsoft Corporation)
 MOD - C:\Windows\System32\netutils.dll (Microsoft Corporation)
 MOD - C:\Windows\System32\KernelBase.dll (Microsoft Corporation)
 MOD - C:\Windows\System32\dwmapi.dll (Microsoft Corporation)
 MOD - C:\Windows\System32\devobj.dll (Microsoft Corporation)
 MOD - C:\Windows\System32\cryptbase.dll (Microsoft Corporation)
 MOD - C:\Windows\System32\cfgmgr32.dll (Microsoft Corporation)
 MOD - C:\Windows\System32\msscript.ocx (Microsoft Corporation)
 
 
 ========== Win32 Services (SafeList) ==========
 
 SRV - (NMIndexingService) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe File not found
 SRV - (Lavasoft Ad-Aware Service) -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft)
 SRV - (TomTomHOMEService) -- C:\Programme\TomTom HOME 2\TomTomHOMEService.exe (TomTom)
 SRV - (Apple Mobile Device) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
 SRV - (TeamViewer5) -- C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe (TeamViewer GmbH)
 SRV - (AntiVirService) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
 SRV - (AntiVirSchedulerService) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
 SRV - (WatAdminSvc) -- C:\Windows\System32\Wat\WatAdminSvc.exe (Microsoft Corporation)
 SRV - (SwitchBoard) -- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
 SRV - (npggsvc) -- C:\Windows\System32\GameMon.des (INCA Internet Co., Ltd.)
 SRV - (NIHardwareService) -- C:\Programme\Common Files\Native Instruments\Hardware\NIHardwareService.exe (Native Instruments GmbH)
 SRV - (WPFFontCache_v0400) -- C:\Windows\Microsoft.NET\Framework\v4.0.21006\WPF\WPFFontCache_v0400.exe (Microsoft Corporation)
 SRV - (clr_optimization_v4.0.21006_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.21006\mscorsvw.exe (Microsoft Corporation)
 SRV - (NetTcpPortSharing) -- C:\Windows\Microsoft.NET\Framework\v4.0.21006\SMSvcHost.exe (Microsoft Corporation)
 SRV - (NetTcpActivator) -- C:\Windows\Microsoft.NET\Framework\v4.0.21006\SMSvcHost.exe (Microsoft Corporation)
 SRV - (NetPipeActivator) -- C:\Windows\Microsoft.NET\Framework\v4.0.21006\SMSvcHost.exe (Microsoft Corporation)
 SRV - (NetMsmqActivator) -- C:\Windows\Microsoft.NET\Framework\v4.0.21006\SMSvcHost.exe (Microsoft Corporation)
 SRV - (LVPrcSrv) -- C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.)
 SRV - (HomeGroupListener) -- C:\Windows\System32\ListSvc.dll (Microsoft Corporation)
 SRV - (WwanSvc) -- C:\Windows\System32\wwansvc.dll (Microsoft Corporation)
 SRV - (WbioSrvc) -- C:\Windows\System32\wbiosrvc.dll (Microsoft Corporation)
 SRV - (Power) -- C:\Windows\System32\umpo.dll (Microsoft Corporation)
 SRV - (Themes) -- C:\Windows\System32\themeservice.dll (Microsoft Corporation)
 SRV - (sppuinotify) -- C:\Windows\System32\sppuinotify.dll (Microsoft Corporation)
 SRV - (SensrSvc) -- C:\Windows\System32\sensrsvc.dll (Microsoft Corporation)
 SRV - (RpcEptMapper) -- C:\Windows\System32\RpcEpMap.dll (Microsoft Corporation)
 SRV - (HomeGroupProvider) -- C:\Windows\System32\provsvc.dll (Microsoft Corporation)
 SRV - (PNRPsvc) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
 SRV - (p2pimsvc) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
 SRV - (PNRPAutoReg) -- C:\Windows\System32\pnrpauto.dll (Microsoft Corporation)
 SRV - (PeerDistSvc) -- C:\Windows\System32\PeerDistSvc.dll (Microsoft Corporation)
 SRV - (WinDefend) -- C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation)
 SRV - (FontCache) -- C:\Windows\System32\FntCache.dll (Microsoft Corporation)
 SRV - (Dhcp) -- C:\Windows\System32\dhcpcore.dll (Microsoft Corporation)
 SRV - (defragsvc) -- C:\Windows\System32\defragsvc.dll (Microsoft Corporation)
 SRV - (BDESVC) -- C:\Windows\System32\bdesvc.dll (Microsoft Corporation)
 SRV - (AxInstSV) ActiveX-Installer (AxInstSV) -- C:\Windows\System32\AxInstSv.dll (Microsoft Corporation)
 SRV - (AppIDSvc) -- C:\Windows\System32\appidsvc.dll (Microsoft Corporation)
 SRV - (sppsvc) -- C:\Windows\System32\sppsvc.exe (Microsoft Corporation)
 SRV - (WcesComm) -- C:\Windows\WindowsMobile\wcescomm.dll (Microsoft Corporation)
 SRV - (RapiMgr) -- C:\Windows\WindowsMobile\rapimgr.dll (Microsoft Corporation)
 SRV - (ServiceLayer) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia.)
 SRV - (MySQL) -- C:\mysql\bin\mysqld-nt.exe ()
 
 
 ========== Driver Services (SafeList) ==========
 
 DRV - (ZTEusbser6k) -- C:\Windows\System32\DRIVERS\ZTEusbser6k.sys File not found
 DRV - (ZTEusbnmea) -- C:\Windows\System32\DRIVERS\ZTEusbnmea.sys File not found
 DRV - (ZTEusbmdm6k) -- C:\Windows\System32\DRIVERS\ZTEusbmdm6k.sys File not found
 DRV - (pepifilter) -- C:\Windows\System32\DRIVERS\lv302af.sys File not found
 DRV - (massfilter) -- C:\Windows\System32\drivers\massfilter.sys File not found
 DRV - (LVRS) -- C:\Windows\System32\DRIVERS\lvrs.sys File not found
 DRV - (EagleNT) -- C:\Windows\System32\drivers\EagleNT.sys File not found
 DRV - (athr) -- C:\Windows\System32\drivers\athr.sys (Atheros Communications, Inc.)
 DRV - (Lbd) -- C:\Windows\system32\DRIVERS\Lbd.sys (Lavasoft AB)
 DRV - (igfx) -- C:\Windows\System32\drivers\igdkmd32.sys (Intel Corporation)
 DRV - (avipbb) -- C:\Windows\System32\drivers\avipbb.sys (Avira GmbH)
 DRV - (avgntflt) -- C:\Windows\System32\drivers\avgntflt.sys (Avira GmbH)
 DRV - (hamachi) -- C:\Windows\System32\drivers\hamachi.sys (LogMeIn, Inc.)
 DRV - (sptd) -- C:\Windows\System32\Drivers\sptd.sys ()
 DRV - (LVPr2Mon) -- C:\Windows\System32\drivers\LVPr2Mon.sys ()
 DRV - (yukonw7) -- C:\Windows\System32\drivers\yk62x86.sys ()
 DRV - (SynTP) -- C:\Windows\System32\drivers\SynTP.sys (Synaptics Incorporated)
 DRV - (ssmdrv) -- C:\Windows\System32\drivers\ssmdrv.sys (Avira GmbH)
 DRV - (adp94xx) -- C:\Windows\system32\DRIVERS\adp94xx.sys (Adaptec, Inc.)
 DRV - (adpahci) -- C:\Windows\system32\DRIVERS\adpahci.sys (Adaptec, Inc.)
 DRV - (elxstor) -- C:\Windows\system32\DRIVERS\elxstor.sys (Emulex)
 DRV - (iaStorV) -- C:\Windows\system32\DRIVERS\iaStorV.sys (Intel Corporation)
 DRV - (amdsbs) -- C:\Windows\system32\DRIVERS\amdsbs.sys (AMD Technologies Inc.)
 DRV - (adpu320) -- C:\Windows\system32\DRIVERS\adpu320.sys (Adaptec, Inc.)
 DRV - (MegaSR) -- C:\Windows\system32\DRIVERS\MegaSR.sys (LSI Corporation, Inc.)
 DRV - (arcsas) -- C:\Windows\system32\DRIVERS\arcsas.sys (Adaptec, Inc.)
 DRV - (nvstor) -- C:\Windows\system32\DRIVERS\nvstor.sys (NVIDIA Corporation)
 DRV - (KSecPkg) -- C:\Windows\System32\Drivers\ksecpkg.sys (Microsoft Corporation)
 DRV - (nvraid) -- C:\Windows\system32\DRIVERS\nvraid.sys (NVIDIA Corporation)
 DRV - (LSI_FC) -- C:\Windows\system32\DRIVERS\lsi_fc.sys (LSI Corporation)
 DRV - (LSI_SCSI) -- C:\Windows\system32\DRIVERS\lsi_scsi.sys (LSI Corporation)
 DRV - (amdsata) -- C:\Windows\system32\DRIVERS\amdsata.sys (AMD)
 DRV - (LSI_SAS) -- C:\Windows\system32\DRIVERS\lsi_sas.sys (LSI Corporation)
 DRV - (arc) -- C:\Windows\system32\DRIVERS\arc.sys (Adaptec, Inc.)
 DRV - (aic78xx) -- C:\Windows\system32\DRIVERS\djsvs.sys (Adaptec, Inc.)
 DRV - (HpSAMD) -- C:\Windows\system32\DRIVERS\HpSAMD.sys (Hewlett-Packard Company)
 DRV - (LSI_SAS2) -- C:\Windows\system32\DRIVERS\lsi_sas2.sys (LSI Corporation)
 DRV - (FsDepends) -- C:\Windows\System32\drivers\fsdepends.sys (Microsoft Corporation)
 DRV - (nfrd960) -- C:\Windows\system32\DRIVERS\nfrd960.sys (IBM Corporation)
 DRV - (pcw) -- C:\Windows\System32\drivers\pcw.sys (Microsoft Corporation)
 DRV - (amdxata) -- C:\Windows\system32\DRIVERS\amdxata.sys (AMD)
 DRV - (cmdide) -- C:\Windows\system32\DRIVERS\cmdide.sys (CMD Technology, Inc.)
 DRV - (aliide) -- C:\Windows\system32\DRIVERS\aliide.sys (Acer Laboratories Inc.)
 DRV - (iirsp) -- C:\Windows\system32\DRIVERS\iirsp.sys (Intel Corp./ICP vortex GmbH)
 DRV - (megasas) -- C:\Windows\system32\DRIVERS\megasas.sys (LSI Corporation)
 DRV - (ql2300) -- C:\Windows\system32\DRIVERS\ql2300.sys (QLogic Corporation)
 DRV - (vmbus) -- C:\Windows\system32\DRIVERS\vmbus.sys (Microsoft Corporation)
 DRV - (rdyboost) -- C:\Windows\System32\drivers\rdyboost.sys (Microsoft Corporation)
 DRV - (hwpolicy) -- C:\Windows\System32\drivers\hwpolicy.sys (Microsoft Corporation)
 DRV - (vhdmp) -- C:\Windows\system32\DRIVERS\vhdmp.sys (Microsoft Corporation)
 DRV - (vsmraid) -- C:\Windows\system32\DRIVERS\vsmraid.sys (VIA Technologies Inc.,Ltd)
 DRV - (ql40xx) -- C:\Windows\system32\DRIVERS\ql40xx.sys (QLogic Corporation)
 DRV - (SiSRaid4) -- C:\Windows\system32\DRIVERS\sisraid4.sys (Silicon Integrated Systems)
 DRV - (storflt) -- C:\Windows\system32\DRIVERS\vmstorfl.sys (Microsoft Corporation)
 DRV - (SiSRaid2) -- C:\Windows\system32\DRIVERS\SiSRaid2.sys (Silicon Integrated Systems Corp.)
 DRV - (vdrvroot) -- C:\Windows\system32\DRIVERS\vdrvroot.sys (Microsoft Corporation)
 DRV - (storvsc) -- C:\Windows\system32\DRIVERS\storvsc.sys (Microsoft Corporation)
 DRV - (stexstor) -- C:\Windows\system32\DRIVERS\stexstor.sys (Promise Technology)
 DRV - (WIMMount) -- C:\Windows\System32\drivers\wimmount.sys (Microsoft Corporation)
 DRV - (viaide) -- C:\Windows\system32\DRIVERS\viaide.sys (VIA Technologies, Inc.)
 DRV - (CNG) -- C:\Windows\System32\Drivers\cng.sys (Microsoft Corporation)
 DRV - (Brserid) Brother MFC Serial Port Interface Driver (WDM) -- C:\Windows\System32\Drivers\Brserid.sys (Brother Industries Ltd.)
 DRV - (rdpbus) -- C:\Windows\System32\drivers\rdpbus.sys (Microsoft Corporation)
 DRV - (RDPREFMP) -- C:\Windows\System32\drivers\RDPREFMP.sys (Microsoft Corporation)
 DRV - (RasAgileVpn) WAN Miniport (IKEv2) -- C:\Windows\System32\drivers\agilevpn.sys (Microsoft Corporation)
 DRV - (WfpLwf) -- C:\Windows\System32\drivers\wfplwf.sys (Microsoft Corporation)
 DRV - (RMCAST) -- C:\Windows\System32\drivers\rmcast.sys (Microsoft Corporation)
 DRV - (NdisCap) -- C:\Windows\System32\drivers\ndiscap.sys (Microsoft Corporation)
 DRV - (vwifimp) -- C:\Windows\System32\drivers\vwifimp.sys (Microsoft Corporation)
 DRV - (vwififlt) -- C:\Windows\System32\drivers\vwififlt.sys (Microsoft Corporation)
 DRV - (vwifibus) -- C:\Windows\System32\drivers\vwifibus.sys (Microsoft Corporation)
 DRV - (1394ohci) -- C:\Windows\system32\DRIVERS\1394ohci.sys (Microsoft Corporation)
 DRV - (UmPass) -- C:\Windows\System32\drivers\umpass.sys (Microsoft Corporation)
 DRV - (usbaudio) USB-Audiotreiber (WDM) -- C:\Windows\System32\drivers\USBAUDIO.sys (Microsoft Corporation)
 DRV - (WinUsb) -- C:\Windows\System32\drivers\winusb.sys (Microsoft Corporation)
 DRV - (mshidkmdf) -- C:\Windows\System32\drivers\mshidkmdf.sys (Microsoft Corporation)
 DRV - (MTConfig) -- C:\Windows\system32\DRIVERS\MTConfig.sys (Microsoft Corporation)
 DRV - (CompositeBus) -- C:\Windows\System32\drivers\CompositeBus.sys (Microsoft Corporation)
 DRV - (AppID) -- C:\Windows\system32\drivers\appid.sys (Microsoft Corporation)
 DRV - (scfilter) -- C:\Windows\System32\drivers\scfilter.sys (Microsoft Corporation)
 DRV - (s3cap) -- C:\Windows\system32\DRIVERS\vms3cap.sys (Microsoft Corporation)
 DRV - (VMBusHID) -- C:\Windows\system32\DRIVERS\VMBusHID.sys (Microsoft Corporation)
 DRV - (discache) -- C:\Windows\System32\drivers\discache.sys (Microsoft Corporation)
 DRV - (HidBatt) -- C:\Windows\system32\DRIVERS\HidBatt.sys (Microsoft Corporation)
 DRV - (AcpiPmi) -- C:\Windows\system32\DRIVERS\acpipmi.sys (Microsoft Corporation)
 DRV - (AmdPPM) -- C:\Windows\system32\DRIVERS\amdppm.sys (Microsoft Corporation)
 DRV - (hcw85cir) -- C:\Windows\system32\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
 DRV - (BrUsbMdm) -- C:\Windows\System32\Drivers\BrUsbMdm.sys (Brother Industries Ltd.)
 DRV - (BrUsbSer) -- C:\Windows\System32\Drivers\BrUsbSer.sys (Brother Industries Ltd.)
 DRV - (BrSerWdm) -- C:\Windows\System32\Drivers\BrSerWdm.sys (Brother Industries Ltd.)
 DRV - (BrFiltLo) -- C:\Windows\system32\DRIVERS\BrFiltLo.sys (Brother Industries, Ltd.)
 DRV - (BrFiltUp) -- C:\Windows\system32\DRIVERS\BrFiltUp.sys (Brother Industries, Ltd.)
 DRV - (ebdrv) -- C:\Windows\system32\DRIVERS\evbdx.sys (Broadcom Corporation)
 DRV - (b06bdrv) -- C:\Windows\system32\DRIVERS\bxvbdx.sys (Broadcom Corporation)
 DRV - (b57nd60x) -- C:\Windows\System32\drivers\b57nd60x.sys (Broadcom Corporation)
 DRV - (LVUSBSta) -- C:\Windows\System32\drivers\LVUSBSta.sys (Logitech Inc.)
 DRV - (PID_PEPI) Logitech QuickCam IM(PID_PEPI) -- C:\Windows\System32\drivers\LV302V32.SYS (Logitech Inc.)
 DRV - (nmwcd) -- C:\Windows\System32\drivers\nmwcd.sys (Nokia)
 DRV - (nmwcdcm) -- C:\Windows\System32\drivers\nmwcdcm.sys (Nokia)
 DRV - (nmwcdcj) -- C:\Windows\System32\drivers\nmwcdcj.sys (Nokia)
 DRV - (nmwcdc) -- C:\Windows\System32\drivers\nmwcdc.sys (Nokia)
 DRV - (Ser2pl) -- C:\Windows\System32\drivers\ser2pl.sys (Prolific Technology Inc.)
 
 
 ========== Standard Registry (SafeList) ==========
 
 
 ========== Internet Explorer ==========
 
 
 
 IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 
 
 IE - HKU\S-1-5-21-1627382377-2090316224-11462107-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de
 IE - HKU\S-1-5-21-1627382377-2090316224-11462107-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
 IE - HKU\S-1-5-21-1627382377-2090316224-11462107-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
 IE - HKU\S-1-5-21-1627382377-2090316224-11462107-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = D7 88 81 76 BB 08 CA 01  [binary data]
 IE - HKU\S-1-5-21-1627382377-2090316224-11462107-1000\..\URLSearchHook:  - Reg Error: Key error. File not found
 IE - HKU\S-1-5-21-1627382377-2090316224-11462107-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 IE - HKU\S-1-5-21-1627382377-2090316224-11462107-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
 
 ========== FireFox ==========
 
 FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
 FF - prefs.js..browser.search.defaulturl: "hxxp://www.google.de/search?q="
 FF - prefs.js..browser.search.useDBForOrder: true
 FF - prefs.js..browser.startup.homepage: "hxxp://de.start3.mozilla.com/firefox?client=firefox-a&rls=org.mozilla:de:official"
 FF - prefs.js..extensions.enabledItems: personas@christopher.beard:1.6.1
 FF - prefs.js..extensions.enabledItems: youtube2mp3@mondayx.de:1.0.7
 FF - prefs.js..extensions.enabledItems: {1de0de3c-0b5c-4f67-90c6-689623894991}:0.3
 FF - prefs.js..extensions.enabledItems: YoutubeDownloader@PeterOlayev.com:1.5
 FF - prefs.js..extensions.enabledItems: {9fb7d178-155a-4318-9173-1a8eaaea7fe4}:2.1.10
 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
 FF - prefs.js..extensions.enabledItems: {ACAA314B-EEBA-48e4-AD47-84E31C44796C}:1.0.1
 FF - prefs.js..keyword.URL: "hxxp://www.google.de/search?q="
 
 
 FF - HKLM\software\mozilla\Mozilla Firefox 3.6.10\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.09.19 15:37:55 | 000,000,000 | ---D | M]
 FF - HKLM\software\mozilla\Mozilla Firefox 3.6.10\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.09.16 21:21:05 | 000,000,000 | ---D | M]
 
 [2010.09.16 22:18:35 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\mozilla\Extensions
 [2010.09.16 22:18:35 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\mozilla\Extensions\home2@tomtom.com
 [2010.10.06 21:19:22 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\mozilla\Firefox\Profiles\l3ma7jeq.default\extensions
 [2010.04.03 14:28:23 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Nadine\AppData\Roaming\mozilla\Firefox\Profiles\l3ma7jeq.default\extensions\{1de0de3c-0b5c-4f67-90c6-689623894991}
 [2010.04.27 20:33:12 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Nadine\AppData\Roaming\mozilla\Firefox\Profiles\l3ma7jeq.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
 [2010.06.24 23:12:19 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Nadine\AppData\Roaming\mozilla\Firefox\Profiles\l3ma7jeq.default\extensions\{9fb7d178-155a-4318-9173-1a8eaaea7fe4}
 [2010.10.03 15:25:42 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Nadine\AppData\Roaming\mozilla\Firefox\Profiles\l3ma7jeq.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
 [2010.09.12 15:56:50 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\mozilla\Firefox\Profiles\l3ma7jeq.default\extensions\personas@christopher.beard
 [2010.04.27 20:33:12 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\mozilla\Firefox\Profiles\l3ma7jeq.default\extensions\youtube2mp3@mondayx.de
 [2010.09.10 16:59:25 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\mozilla\Firefox\Profiles\l3ma7jeq.default\extensions\YoutubeDownloader@PeterOlayev.com
 [2010.06.24 23:12:32 | 000,005,310 | ---- | M] () -- C:\Users\Nadine\AppData\Roaming\Mozilla\FireFox\Profiles\l3ma7jeq.default\searchplugins\footiefox.xml
 [2010.04.10 11:10:29 | 000,001,115 | ---- | M] () -- C:\Users\Nadine\AppData\Roaming\Mozilla\FireFox\Profiles\l3ma7jeq.default\searchplugins\rapidshare-filefinder.xml
 [2010.10.06 21:19:22 | 000,000,000 | ---D | M] -- C:\Programme\Mozilla Firefox\extensions
 [2010.05.03 12:47:34 | 000,000,000 | ---D | M] (Java Console) -- C:\Programme\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
 [2010.08.08 19:27:36 | 000,000,000 | ---D | M] (Java Console) -- C:\Programme\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
 [2010.07.17 05:00:04 | 000,423,656 | ---- | M] (Sun Microsystems, Inc.) -- C:\Programme\Mozilla Firefox\plugins\npdeployJava1.dll
 [2009.10.26 16:45:36 | 000,102,400 | ---- | M] (Zylom) -- C:\Programme\Mozilla Firefox\plugins\npzylomgamesplayer.dll
 [2010.06.24 23:03:23 | 000,001,392 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\amazondotcom-de.xml
 [2010.06.24 23:03:23 | 000,002,344 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\eBay-de.xml
 [2010.06.24 23:03:24 | 000,006,805 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\leo_ende_de.xml
 [2010.06.24 23:03:24 | 000,001,178 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\wikipedia-de.xml
 [2010.06.24 23:03:24 | 000,001,105 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\yahoo-de.xml
 
 O1 HOSTS File: ([2010.09.09 17:47:14 | 000,000,810 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
 O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
 O2 - BHO: (Windows Live Anmelde-Hilfsprogramm) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
 O4 - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
 O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated)
 O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
 O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
 O4 - HKLM..\Run: [SwitchBoard] C:\Programme\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
 O4 - HKU\S-1-5-21-1627382377-2090316224-11462107-1000..\Run: [TomTomHOME.exe] C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe (TomTom)
 O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
 O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 1
 O7 - HKU\S-1-5-21-1627382377-2090316224-11462107-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutorun = 0
 O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\Nadine\AppData\Roaming\DVDVideoSoftIEHelpers\youtubetomp3.htm ()
 O8 - Extra context menu item: Nach Microsoft E&xel exportieren - C:\Programme\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
 O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
 O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
 O9 - Extra Button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Programme\ICQ7.2\ICQ.exe (ICQ, LLC.)
 O9 - Extra 'Tools' menuitem : ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Programme\ICQ7.2\ICQ.exe (ICQ, LLC.)
 O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Programme\Bonjour\mdnsNSP.dll (Apple Inc.)
 O13 - gopher Prefix: missing
 O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
 O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
 O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
 O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
 O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programme\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
 O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
 O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
 O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
 O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
 O20 - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
 O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\Windows\System32\igfxdev.dll (Intel Corporation)
 O30 - LSA: Security Packages - (pku2u) - C:\Windows\System32\pku2u.dll (Microsoft Corporation)
 O32 - HKLM CDRom: AutoRun - 1
 O32 - AutoRun File - [2009.03.20 17:42:25 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
 O33 - MountPoints2\{1601b747-f96d-11de-9307-001986001fd2}\Shell - "" = AutoRun
 O33 - MountPoints2\{1601b747-f96d-11de-9307-001986001fd2}\Shell\AutoRun\command - "" = G:\Autorun.exe -- File not found
 O33 - MountPoints2\{1e7779eb-ce3f-11df-95a4-001377984176}\Shell - "" = AutoRun
 O33 - MountPoints2\{1e7779eb-ce3f-11df-95a4-001377984176}\Shell\AutoRun\command - "" = E:\Startme.exe -- File not found
 O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
 O34 - HKLM BootExecute: (lsdelete) - C:\Windows\System32\lsdelete.exe ()
 O35 - HKLM\..comfile [open] -- "%1" %*
 O35 - HKLM\..exefile [open] -- "%1" %*
 O37 - HKLM\...com [@ = comfile] -- "%1" %*
 O37 - HKLM\...exe [@ = exefile] -- "%1" %*
 
 NetSvcs: FastUserSwitchingCompatibility -  File not found
 NetSvcs: Ias -  File not found
 NetSvcs: Nla -  File not found
 NetSvcs: Ntmssvc -  File not found
 NetSvcs: NWCWorkstation -  File not found
 NetSvcs: Nwsapagent -  File not found
 NetSvcs: SRService -  File not found
 NetSvcs: Wmi - C:\Windows\System32\wmi.dll (Microsoft Corporation)
 NetSvcs: WmdmPmSp -  File not found
 NetSvcs: LogonHours -  File not found
 NetSvcs: PCAudit -  File not found
 NetSvcs: helpsvc -  File not found
 NetSvcs: uploadmgr -  File not found
 NetSvcs: BDESVC - C:\Windows\System32\bdesvc.dll (Microsoft Corporation)
 NetSvcs: Themes - C:\Windows\System32\themeservice.dll (Microsoft Corporation)
 
 MsConfig - StartUpFolder: C:^Users^Nadine^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Logitech . Produktregistrierung.lnk - C:\Programme\Logitech\Logitech WebCam Software\eReg.exe - (Leader Technologies/Logitech)
 MsConfig - StartUpReg: Adobe ARM - hkey= - key= - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
 MsConfig - StartUpReg: Adobe Reader Speed Launcher - hkey= - key= - C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
 MsConfig - StartUpReg: BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} - hkey= - key= - C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe File not found
 MsConfig - StartUpReg: ICQ - hkey= - key= - C:\Program Files\ICQ6.5\ICQ.exe File not found
 MsConfig - StartUpReg: iTunesHelper - hkey= - key= - C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc.)
 MsConfig - StartUpReg: KTSInit - hkey= - key= -  File not found
 MsConfig - StartUpReg: LightScribe Control Panel - hkey= - key= - C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe File not found
 MsConfig - StartUpReg: Logitech Vid - hkey= - key= - C:\Program Files\Logitech\Logitech Vid\vid.exe File not found
 MsConfig - StartUpReg: LogitechQuickCamRibbon - hkey= - key= - C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe ()
 MsConfig - StartUpReg: LogMeIn Hamachi Ui - hkey= - key= - C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe File not found
 MsConfig - StartUpReg: Messenger (Yahoo!) - hkey= - key= - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe File not found
 MsConfig - StartUpReg: msnmsgr - hkey= - key= - C:\Program Files\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation)
 MsConfig - StartUpReg: NBKeyScan - hkey= - key= - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBKeyScan.exe File not found
 MsConfig - StartUpReg: NeroFilterCheck - hkey= - key= -  File not found
 MsConfig - StartUpReg: NSLauncher - hkey= - key= - C:\Program Files\Nokia\Nokia Software Launcher\NSLauncher.exe ()
 MsConfig - StartUpReg: Pando Media Booster - hkey= - key= - C:\Program Files\Pando Networks\Media Booster\PMB.exe File not found
 MsConfig - StartUpReg: QuickTime Task - hkey= - key= - C:\Program Files\QuickTime\QTTask.exe (Apple Inc.)
 MsConfig - StartUpReg: shuzgty - hkey= - key= - c:\users\nadine\appdata\local\shuzgty.exe File not found
 MsConfig - StartUpReg: UnlockerAssistant - hkey= - key= - C:\Program Files\Unlocker\UnlockerAssistant.exe File not found
 MsConfig - State: "startup" - 2
 MsConfig - State: "services" - 0
 
 SafeBootMin: Base - Driver Group
 SafeBootMin: Boot Bus Extender - Driver Group
 SafeBootMin: Boot file system - Driver Group
 SafeBootMin: File system - Driver Group
 SafeBootMin: Filter - Driver Group
 SafeBootMin: HelpSvc - Service
 SafeBootMin: Lavasoft Ad-Aware Service - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft)
 SafeBootMin: NTDS -  File not found
 SafeBootMin: PCI Configuration - Driver Group
 SafeBootMin: PNP Filter - Driver Group
 SafeBootMin: Power - C:\Windows\System32\umpo.dll (Microsoft Corporation)
 SafeBootMin: Primary disk - Driver Group
 SafeBootMin: RpcEptMapper - C:\Windows\System32\RpcEpMap.dll (Microsoft Corporation)
 SafeBootMin: sacsvr - Service
 SafeBootMin: SCSI Class - Driver Group
 SafeBootMin: System Bus Extender - Driver Group
 SafeBootMin: vmms - Service
 SafeBootMin: WinDefend - C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation)
 SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
 SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
 SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
 SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
 SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
 SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
 SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
 SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
 SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
 SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
 SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
 SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
 SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
 SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
 SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
 SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
 SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
 
 SafeBootNet: Base - Driver Group
 SafeBootNet: Boot Bus Extender - Driver Group
 SafeBootNet: Boot file system - Driver Group
 SafeBootNet: Dhcp - C:\Windows\System32\dhcpcore.dll (Microsoft Corporation)
 SafeBootNet: File system - Driver Group
 SafeBootNet: Filter - Driver Group
 SafeBootNet: HelpSvc - Service
 SafeBootNet: Lavasoft Ad-Aware Service - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft)
 SafeBootNet: Messenger - Service
 SafeBootNet: NDIS Wrapper - Driver Group
 SafeBootNet: ndiscap - C:\Windows\System32\drivers\ndiscap.sys (Microsoft Corporation)
 SafeBootNet: NetBIOSGroup - Driver Group
 SafeBootNet: NetDDEGroup - Driver Group
 SafeBootNet: Network - Driver Group
 SafeBootNet: NetworkProvider - Driver Group
 SafeBootNet: NTDS -  File not found
 SafeBootNet: PCI Configuration - Driver Group
 SafeBootNet: PNP Filter - Driver Group
 SafeBootNet: PNP_TDI - Driver Group
 SafeBootNet: Power - C:\Windows\System32\umpo.dll (Microsoft Corporation)
 SafeBootNet: Primary disk - Driver Group
 SafeBootNet: rdsessmgr - Service
 SafeBootNet: RpcEptMapper - C:\Windows\System32\RpcEpMap.dll (Microsoft Corporation)
 SafeBootNet: sacsvr - Service
 SafeBootNet: SCSI Class - Driver Group
 SafeBootNet: Streams Drivers - Driver Group
 SafeBootNet: System Bus Extender - Driver Group
 SafeBootNet: TDI - Driver Group
 SafeBootNet: vmms - Service
 SafeBootNet: WinDefend - C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation)
 SafeBootNet: WudfUsbccidDriver - Driver
 SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
 SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
 SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
 SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
 SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
 SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
 SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
 SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
 SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
 SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
 SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
 SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
 SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
 SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
 SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
 SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
 SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
 SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
 SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
 SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
 SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
 SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
 
 ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Microsoft VM
 ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
 ActiveX: {23A20C3C-2ADD-4A80-AFB4-C146F8847D79} - .NET Framework
 ActiveX: {25FFAAD0-F4A3-4164-95FF-4461E9F35D51} - .NET Framework
 ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
 ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
 ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
 ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
 ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
 ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
 ActiveX: {57EC5BFE-7CB7-3057-8385-C9D72918511C} - .NET Framework
 ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
 ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
 ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
 ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
 ActiveX: {76C19B34-F0C8-11cf-87CC-0020AFEECF20} - Simp Chinese Language Pack
 ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
 ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
 ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
 ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\System32\ie4uinit.exe -BaseSettings
 ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
 ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
 ActiveX: {A59B76D1-5E3B-4893-BB7F-AF69B2570A73} - .NET Framework
 ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
 ActiveX: {D27CDB6E-AE6D-11CF-96B8-444553540000} - Adobe Flash Player
 ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
 ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
 ActiveX: {FE600E50-2C69-46D5-ACAA-2B617006245C} - .NET Framework
 ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP
 ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\System32\ie4uinit.exe -UserIconConfig
 ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
 
 Drivers32: msacm.ac3filter - C:\Windows\System32\ac3filter.acm ()
 Drivers32: msacm.avis - C:\Windows\System32\ff_acm.acm ()
 Drivers32: msacm.divxa32 - C:\Windows\System32\DivXa32.acm (Packed With Joy !)
 Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
 Drivers32: msacm.lameacm - C:\Windows\System32\lameACM.acm (hxxp://www.mp3dev.org/)
 Drivers32: msacm.lhacm - C:\Windows\System32\lhacm.acm (Microsoft Corporation)
 Drivers32: msacm.siren - C:\Windows\System32\sirenacm.dll (Microsoft Corporation)
 Drivers32: MSVideo - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
 Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
 Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
 Drivers32: vidc.DIVX - C:\Windows\System32\DivX.dll (DivX, Inc.)
 Drivers32: VIDC.FFDS - C:\Windows\System32\ff_vfw.dll ()
 Drivers32: VIDC.I420 - C:\Windows\System32\lvcodec2.dll (Logitech Inc.)
 Drivers32: vidc.VP60 - C:\Windows\System32\vp6vfw.dll (On2.com)
 Drivers32: vidc.VP61 - C:\Windows\System32\vp6vfw.dll (On2.com)
 Drivers32: vidc.vp62 - C:\Windows\System32\vp6vfw.dll (On2.com)
 Drivers32: vidc.XVID - C:\Windows\System32\xvidvfw.dll ()
 Drivers32: vidc.yv12 - C:\Windows\System32\DivX.dll (DivX, Inc.)
 
 ========== Files/Folders - Created Within 30 Days ==========
 
 [2010.10.07 14:16:08 | 000,576,512 | ---- | C] (OldTimer Tools) -- C:\Users\Nadine\Desktop\OTL.exe
 [2010.10.07 12:02:05 | 000,000,000 | ---D | C] -- C:\Users\Nadine\Documents\Native Instruments
 [2010.10.07 12:01:26 | 000,000,000 | -H-D | C] -- C:\ProgramData\{4E1B117F-A681-406A-88B5-AF868CF9CB04}
 [2010.10.07 12:00:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Native Instruments
 [2010.10.07 12:00:30 | 000,000,000 | -H-D | C] -- C:\ProgramData\{4E70D107-00B1-4793-A17B-C6B6D7EF3151}
 [2010.10.07 12:00:09 | 000,000,000 | -H-D | C] -- C:\ProgramData\{D7CFB71A-972A-44FF-AE44-8780EB53ABB2}
 [2010.10.07 12:00:06 | 000,000,000 | ---D | C] -- C:\Programme\Native Instruments
 [2010.10.07 12:00:06 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\Native Instruments
 [2010.10.05 16:17:24 | 000,000,000 | ---D | C] -- C:\Users\Nadine\AppData\Roaming\Avira
 [2010.10.04 22:41:44 | 000,124,784 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\avipbb.sys
 [2010.10.04 22:41:44 | 000,060,936 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\avgntflt.sys
 [2010.10.04 22:41:44 | 000,051,992 | ---- | C] (AVIRA GmbH) -- C:\Windows\System32\drivers\avgntdd.sys
 [2010.10.04 22:41:44 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\ssmdrv.sys
 [2010.10.04 22:41:44 | 000,017,016 | ---- | C] (AVIRA GmbH) -- C:\Windows\System32\drivers\avgntmgr.sys
 [2010.10.04 22:41:43 | 000,000,000 | ---D | C] -- C:\Programme\Avira
 [2010.10.04 22:41:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
 [2010.10.03 20:57:56 | 000,000,000 | ---D | C] -- C:\Users\Nadine\AppData\Local\Sunbelt Software
 [2010.10.03 20:57:31 | 000,000,000 | -H-D | C] -- C:\ProgramData\{ECC164E0-3133-4C70-A831-F08DB2940F70}
 [2010.10.03 16:52:58 | 000,000,000 | ---D | C] -- C:\Users\Nadine\Documents\VirtualDJ
 [2010.10.03 16:52:58 | 000,000,000 | ---D | C] -- C:\Programme\VirtualDJ
 [2010.10.03 15:25:42 | 000,000,000 | ---D | C] -- C:\Users\Nadine\AppData\Roaming\DVDVideoSoftIEHelpers
 [2010.10.03 15:23:48 | 000,000,000 | ---D | C] -- C:\Windows\Minidump
 [2010.10.03 15:16:56 | 000,000,000 | ---D | C] -- C:\Users\Nadine\Desktop\mix grooves
 [2010.10.03 14:37:44 | 000,000,000 | ---D | C] -- C:\Programme\SpacialAudio
 [2010.10.03 14:37:22 | 000,000,000 | ---D | C] -- C:\mysql
 [2010.10.02 21:48:45 | 000,000,000 | ---D | C] -- C:\Users\Nadine\Documents\Sony Ericsson
 [2010.10.02 21:46:34 | 000,000,000 | ---D | C] -- C:\ProgramData\BVRP Software
 [2010.10.02 21:46:15 | 000,000,000 | ---D | C] -- C:\Users\Nadine\Podcasts
 [2010.10.02 21:46:15 | 000,000,000 | ---D | C] -- C:\Users\Nadine\Documents\Media Go
 [2010.10.02 21:45:09 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\Sony Shared
 [2010.10.02 21:44:55 | 000,000,000 | ---D | C] -- C:\Users\Nadine\AppData\Local\Downloaded Installations
 [2010.10.02 21:44:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Sony Corporation
 [2010.10.02 21:44:51 | 000,000,000 | ---D | C] -- C:\Programme\Sony
 [2010.10.02 21:44:09 | 000,000,000 | ---D | C] -- C:\Users\Nadine\AppData\Roaming\Sony Setup
 [2010.10.02 21:44:07 | 000,000,000 | ---D | C] -- C:\Programme\Sony Setup
 [2010.10.02 21:43:03 | 000,000,000 | ---D | C] -- C:\Users\Nadine\AppData\Local\Sony Ericsson
 [2010.10.02 21:43:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Sony Ericsson
 [2010.09.27 15:00:10 | 000,000,000 | ---D | C] -- C:\Users\Nadine\Documents\Neuer Ordner
 [2010.09.24 22:01:09 | 000,000,000 | ---D | C] -- C:\Programme\MSECache
 [2010.09.18 17:10:26 | 000,299,520 | ---- | C] (InstallShield Corporation, Inc.) -- C:\Windows\uninst.exe
 [2010.09.16 22:18:55 | 000,000,000 | ---D | C] -- C:\Users\Nadine\Documents\TomTom
 [2010.09.16 22:18:52 | 000,000,000 | ---D | C] -- C:\ProgramData\TomTom
 [2010.09.16 22:18:29 | 000,000,000 | ---D | C] -- C:\Users\Nadine\AppData\Roaming\TomTom
 [2010.09.16 22:18:29 | 000,000,000 | ---D | C] -- C:\Users\Nadine\AppData\Local\TomTom
 [2010.09.16 22:18:22 | 000,000,000 | ---D | C] -- C:\Programme\TomTom International B.V
 [2010.09.16 22:18:08 | 000,000,000 | ---D | C] -- C:\Programme\TomTom HOME 2
 [2010.09.16 22:16:54 | 000,000,000 | ---D | C] -- C:\Programme\TomTom DesktopSuite
 [2010.09.10 17:19:43 | 000,000,000 | ---D | C] -- C:\Programme\iPod
 [2010.09.10 17:19:42 | 000,000,000 | ---D | C] -- C:\Programme\iTunes
 [2010.09.09 18:38:28 | 000,000,000 | ---D | C] -- C:\ProgramData\regid.1986-12.com.adobe
 [2010.09.09 17:32:43 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\Adobe AIR
 [2010.04.21 17:32:38 | 000,004,096 | ---- | C] ( ) -- C:\Windows\System32\IGFXDEVLib.dll
 
 ========== Files - Modified Within 30 Days ==========
 
 [2010.10.07 14:20:52 | 004,456,448 | -HS- | M] () -- C:\Users\Nadine\ntuser.dat
 [2010.10.07 14:16:12 | 000,576,512 | ---- | M] (OldTimer Tools) -- C:\Users\Nadine\Desktop\OTL.exe
 [2010.10.07 13:23:00 | 000,001,096 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
 [2010.10.07 12:01:24 | 000,000,990 | ---- | M] () -- C:\Users\Public\Desktop\Traktor.lnk
 [2010.10.07 11:47:48 | 000,001,092 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
 [2010.10.07 11:47:46 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
 [2010.10.07 11:34:01 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
 [2010.10.07 11:33:49 | 2384,941,056 | -HS- | M] () -- C:\hiberfil.sys
 [2010.10.06 23:10:27 | 008,580,584 | -H-- | M] () -- C:\Users\Nadine\AppData\Local\IconCache.db
 [2010.10.06 12:52:44 | 000,013,661 | ---- | M] () -- C:\Users\Nadine\Desktop\Renes Arbeitszeiten - Firma Joormann.xlsx
 [2010.10.04 17:28:44 | 000,096,664 | ---- | M] () -- C:\Users\Nadine\AppData\Local\GDIPFONTCACHEV1.DAT
 [2010.10.03 21:02:25 | 003,706,952 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
 [2010.10.03 17:13:05 | 000,000,977 | ---- | M] () -- C:\Users\Nadine\Desktop\Virtual DJ.lnk
 [2010.10.03 15:25:40 | 000,001,197 | ---- | M] () -- C:\Users\Nadine\Desktop\DVDVideoSoft Free Studio.lnk
 [2010.10.03 15:23:31 | 303,824,526 | ---- | M] () -- C:\Windows\MEMORY.DMP
 [2010.10.03 14:37:46 | 000,001,960 | ---- | M] () -- C:\Users\Nadine\Desktop\SAM Broadcaster.lnk
 [2010.10.03 13:33:08 | 000,023,280 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
 [2010.10.03 13:33:08 | 000,023,280 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
 [2010.10.03 11:54:15 | 002,954,114 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
 [2010.10.03 11:54:15 | 000,657,316 | ---- | M] () -- C:\Windows\System32\perfh007.dat
 [2010.10.03 11:54:15 | 000,618,884 | ---- | M] () -- C:\Windows\System32\perfh009.dat
 [2010.10.03 11:54:15 | 000,390,492 | ---- | M] () -- C:\Windows\System32\perfh011.dat
 [2010.10.03 11:54:15 | 000,379,650 | ---- | M] () -- C:\Windows\System32\prfh0404.dat
 [2010.10.03 11:54:15 | 000,363,516 | ---- | M] () -- C:\Windows\System32\prfh0804.dat
 [2010.10.03 11:54:15 | 000,131,684 | ---- | M] () -- C:\Windows\System32\perfc007.dat
 [2010.10.03 11:54:15 | 000,107,870 | ---- | M] () -- C:\Windows\System32\perfc011.dat
 [2010.10.03 11:54:15 | 000,107,870 | ---- | M] () -- C:\Windows\System32\perfc009.dat
 [2010.10.03 11:54:15 | 000,107,464 | ---- | M] () -- C:\Windows\System32\prfc0804.dat
 [2010.10.03 11:54:15 | 000,100,504 | ---- | M] () -- C:\Windows\System32\prfc0404.dat
 [2010.09.30 21:31:14 | 000,001,811 | ---- | M] () -- C:\Users\Nadine\Desktop\ImgBurn.lnk
 [2010.09.25 14:32:58 | 000,003,584 | ---- | M] () -- C:\Users\Nadine\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
 [2010.09.08 17:31:13 | 000,002,562 | ---- | M] () -- C:\Windows\diagwrn.xml
 [2010.09.08 17:31:13 | 000,001,908 | ---- | M] () -- C:\Windows\diagerr.xml
 
 ========== Files Created - No Company Name ==========
 
 [2010.10.07 12:01:24 | 000,000,990 | ---- | C] () -- C:\Users\Public\Desktop\Traktor.lnk
 [2010.10.03 17:13:05 | 000,000,977 | ---- | C] () -- C:\Users\Nadine\Desktop\Virtual DJ.lnk
 [2010.10.03 15:25:18 | 000,001,197 | ---- | C] () -- C:\Users\Nadine\Desktop\DVDVideoSoft Free Studio.lnk
 [2010.10.03 15:23:31 | 303,824,526 | ---- | C] () -- C:\Windows\MEMORY.DMP
 [2010.10.03 14:37:46 | 000,001,960 | ---- | C] () -- C:\Users\Nadine\Desktop\SAM Broadcaster.lnk
 [2010.09.30 21:31:14 | 000,001,811 | ---- | C] () -- C:\Users\Nadine\Desktop\ImgBurn.lnk
 [2010.09.18 17:10:19 | 000,069,632 | ---- | C] () -- C:\Windows\RAUNINST.EXE
 [2010.09.15 18:03:17 | 000,003,584 | ---- | C] () -- C:\Users\Nadine\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
 [2010.05.24 21:33:00 | 004,670,829 | ---- | C] () -- C:\Windows\System32\libavcodec.dll
 [2010.05.24 21:33:00 | 001,529,856 | ---- | C] () -- C:\Windows\System32\ff_samplerate.dll
 [2010.05.24 21:33:00 | 001,447,921 | ---- | C] () -- C:\Windows\System32\ffmpegmt.dll
 [2010.05.24 21:33:00 | 000,877,385 | ---- | C] () -- C:\Windows\System32\ff_x264.dll
 [2010.05.24 21:33:00 | 000,810,113 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
 [2010.05.24 21:33:00 | 000,336,384 | ---- | C] () -- C:\Windows\System32\ff_libfaad2.dll
 [2010.05.24 21:33:00 | 000,324,096 | ---- | C] () -- C:\Windows\System32\TomsMoComp_ff.dll
 [2010.05.24 21:33:00 | 000,248,320 | ---- | C] () -- C:\Windows\System32\ff_kernelDeint.dll
 [2010.05.24 21:33:00 | 000,216,576 | ---- | C] () -- C:\Windows\System32\ff_libdts.dll
 [2010.05.24 21:33:00 | 000,151,552 | ---- | C] () -- C:\Windows\System32\ff_libmad.dll
 [2010.05.24 21:33:00 | 000,145,408 | ---- | C] () -- C:\Windows\System32\libmpeg2_ff.dll
 [2010.05.24 21:33:00 | 000,139,944 | ---- | C] () -- C:\Windows\System32\libmplayer.dll
 [2010.05.24 21:33:00 | 000,121,856 | ---- | C] () -- C:\Windows\System32\ff_liba52.dll
 [2010.05.24 21:33:00 | 000,116,736 | ---- | C] () -- C:\Windows\System32\ff_tremor.dll
 [2010.05.24 21:33:00 | 000,108,032 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
 [2010.05.24 21:33:00 | 000,100,864 | ---- | C] () -- C:\Windows\System32\ff_wmv9.dll
 [2010.05.24 21:33:00 | 000,097,792 | ---- | C] () -- C:\Windows\System32\ff_unrar.dll
 [2010.05.20 13:11:29 | 000,000,016 | ---- | C] () -- C:\Windows\System32\settings.ini
 [2010.05.19 22:59:20 | 000,150,528 | ---- | C] () -- C:\Windows\System32\mkx.dll
 [2010.05.19 22:59:10 | 000,109,568 | ---- | C] () -- C:\Windows\System32\avi.dll
 [2010.05.19 22:59:02 | 000,141,824 | ---- | C] () -- C:\Windows\System32\mp4.dll
 [2010.05.19 22:58:52 | 000,123,392 | ---- | C] () -- C:\Windows\System32\ogm.dll
 [2010.05.19 22:58:18 | 000,154,112 | ---- | C] () -- C:\Windows\System32\ts.dll
 [2010.05.19 22:58:08 | 000,249,856 | ---- | C] () -- C:\Windows\System32\dxr.dll
 [2010.05.19 22:57:42 | 000,097,792 | ---- | C] () -- C:\Windows\System32\avs.dll
 [2010.05.19 22:57:26 | 000,093,184 | ---- | C] () -- C:\Windows\System32\avss.dll
 [2010.05.19 22:55:40 | 000,080,384 | ---- | C] () -- C:\Windows\System32\mkzlib.dll
 [2010.05.19 22:55:36 | 000,024,576 | ---- | C] () -- C:\Windows\System32\mkunicode.dll
 [2010.05.19 22:06:20 | 000,039,424 | ---- | C] () -- C:\Windows\System32\NMEVTRPT.dll
 [2010.05.19 21:26:10 | 000,100,352 | ---- | C] () -- C:\Windows\System32\CCCHNG32.DLL
 [2010.05.15 19:40:57 | 000,000,085 | -HS- | C] () -- C:\ProgramData\.zreglib
 [2010.05.04 18:02:05 | 000,002,922 | RHS- | C] () -- C:\ProgramData\ntuser.pol
 [2010.04.16 17:38:16 | 000,000,028 | ---- | C] () -- C:\Windows\Robota.INI
 [2010.04.07 02:07:56 | 000,002,137 | ---- | C] () -- C:\Windows\RBSystem.ini
 [2010.04.07 02:06:22 | 000,655,360 | ---- | C] () -- C:\Windows\System32\dslang32.dll
 [2010.04.07 02:06:22 | 000,327,680 | ---- | C] () -- C:\Windows\System32\ldf251.dll
 [2010.04.07 02:05:43 | 000,000,693 | ---- | C] () -- C:\Windows\ESIDATA.ini
 [2010.03.07 18:58:19 | 000,055,808 | ---- | C] () -- C:\Windows\System32\zlib1.dll
 [2010.02.27 03:06:51 | 000,120,200 | ---- | C] () -- C:\Windows\System32\DLLDEV32i.dll
 [2010.02.24 00:44:16 | 001,589,248 | ---- | C] () -- C:\Windows\System32\libmysql_d.dll
 [2010.02.19 00:00:15 | 000,058,163 | ---- | C] () -- C:\Windows\System32\lvcoinst.ini
 [2010.02.06 10:10:15 | 000,000,288 | ---- | C] () -- C:\Windows\ODBC.INI
 [2009.12.15 02:42:44 | 000,208,896 | ---- | C] () -- C:\Windows\System32\iglhsip32.dll
 [2009.12.15 02:42:44 | 000,143,360 | ---- | C] () -- C:\Windows\System32\iglhcp32.dll
 [2009.12.03 09:33:55 | 000,000,530 | ---- | C] () -- C:\Windows\System32\tx14_ic.ini
 [2009.10.07 02:46:36 | 000,025,752 | ---- | C] () -- C:\Windows\System32\drivers\LVPr2Mon.sys
 [2009.10.07 02:23:08 | 000,013,584 | ---- | C] () -- C:\Windows\System32\drivers\iKeyLFT2.dll
 [2009.09.28 10:22:00 | 000,315,392 | ---- | C] () -- C:\Windows\System32\drivers\yk62x86.sys
 [2009.09.05 00:56:52 | 000,691,696 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys
 [2009.08.16 11:08:36 | 000,178,176 | ---- | C] () -- C:\Windows\System32\unrar.dll
 [2009.08.08 02:33:44 | 000,140,288 | ---- | C] () -- C:\Windows\System32\igfxtvcx.dll
 [2009.06.07 18:24:04 | 000,180,224 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
 [2009.04.22 05:50:07 | 000,073,216 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
 [2009.04.22 05:40:32 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
 [2009.01.11 00:15:44 | 000,159,744 | ---- | C] () -- C:\Windows\System32\mmfinfo.dll
 [2008.11.06 17:37:32 | 003,596,288 | ---- | C] () -- C:\Windows\System32\qt-dx331.dll
 [2007.10.13 11:30:20 | 000,000,137 | ---- | C] () -- C:\Windows\System32\Registration.ini
 [2007.02.05 20:05:26 | 000,000,038 | ---- | C] () -- C:\Windows\AviSplitter.INI
 [1998.06.10 01:00:00 | 000,015,120 | ---- | C] () -- C:\Windows\System32\REPUTIL.DLL
 
 ========== LOP Check ==========
 
 [2010.09.06 23:37:54 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\becker
 [2009.11.13 23:46:53 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\DAEMON Tools Lite
 [2009.11.13 23:38:54 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\DAEMON Tools Pro
 [2009.12.07 20:54:15 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\DeepBurner
 [2009.12.20 23:28:53 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\DTgrafic
 [2010.10.03 15:25:42 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\DVDVideoSoftIEHelpers
 [2009.10.19 23:49:56 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\EA
 [2010.05.05 05:33:31 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\FUPPES
 [2010.10.05 21:58:30 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\ICQ
 [2009.07.28 17:37:47 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\ImgBurn
 [2010.02.19 00:27:13 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Leadertech
 [2010.02.27 03:10:42 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\MAGIX
 [2010.03.07 15:08:44 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\McLoad
 [2009.08.23 14:20:33 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Nokia
 [2009.09.05 13:18:09 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\NSeries
 [2009.08.23 14:14:52 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\PC Suite
 [2010.04.18 02:01:09 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Propellerhead Software
 [2010.02.21 18:45:05 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Publish Providers
 [2010.05.13 19:31:34 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\QuickScan
 [2010.10.02 21:46:14 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Sony
 [2010.10.02 21:44:09 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Sony Setup
 [2010.02.23 23:54:53 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Subversion
 [2009.11.07 04:32:58 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\TeamViewer
 [2010.09.16 22:18:29 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\TomTom
 [2010.06.28 20:03:04 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\TS3Client
 [2009.12.23 22:05:00 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Win7codecs
 [2010.04.02 13:50:18 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Youtube Downloader HD
 [2010.02.06 11:38:33 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Z-Software
 [2010.07.03 02:38:48 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Zylom
 [2010.10.07 11:46:45 | 000,032,604 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
 
 ========== Purity Check ==========
 
 
 
 ========== Custom Scans ==========
 
 
 < %ALLUSERSPROFILE%\Application Data\*. >
 
 < %ALLUSERSPROFILE%\Application Data\*.exe /s >
 
 < %APPDATA%\*. >
 [2010.09.09 17:56:25 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Adobe
 [2010.04.03 11:23:32 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Ahead
 [2010.08.20 23:11:02 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Apple Computer
 [2010.10.05 16:17:24 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Avira
 [2010.03.28 12:45:49 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\AVS4YOU
 [2010.09.06 23:37:54 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\becker
 [2009.11.13 23:46:53 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\DAEMON Tools Lite
 [2009.11.13 23:38:54 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\DAEMON Tools Pro
 [2009.12.07 20:54:15 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\DeepBurner
 [2010.09.25 01:50:24 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\DivX
 [2009.12.20 23:28:53 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\DTgrafic
 [2010.08.01 15:27:13 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\dvdcss
 [2010.10.03 15:25:42 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\DVDVideoSoftIEHelpers
 [2009.10.19 23:49:56 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\EA
 [2010.05.05 05:33:31 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\FUPPES
 [2010.10.05 21:58:30 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\ICQ
 [2010.07.03 02:38:48 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Identities
 [2009.07.28 17:37:47 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\ImgBurn
 [2010.02.19 00:27:13 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Leadertech
 [2009.07.19 23:57:03 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Macromedia
 [2010.02.27 03:10:42 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\MAGIX
 [2010.03.07 15:08:44 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\McLoad
 [2009.04.22 13:07:50 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Media Center Programs
 [2010.09.06 19:09:01 | 000,000,000 | --SD | M] -- C:\Users\Nadine\AppData\Roaming\Microsoft
 [2010.05.02 00:58:31 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\mIRC
 [2009.07.19 23:56:01 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Mozilla
 [2010.04.08 11:59:26 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Nero
 [2009.08.23 14:20:33 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Nokia
 [2009.09.05 13:18:09 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\NSeries
 [2009.08.23 14:14:52 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\PC Suite
 [2010.04.18 02:01:09 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Propellerhead Software
 [2010.02.21 18:45:05 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Publish Providers
 [2010.05.13 19:31:34 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\QuickScan
 [2010.02.15 15:18:19 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Real
 [2010.10.02 21:46:14 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Sony
 [2010.10.02 21:44:09 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Sony Setup
 [2010.02.23 23:54:53 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Subversion
 [2009.11.22 20:39:24 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\teamspeak2
 [2009.11.07 04:32:58 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\TeamViewer
 [2010.09.16 22:18:29 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\TomTom
 [2010.02.26 19:54:56 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\TortoiseSVN
 [2010.06.28 20:03:04 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\TS3Client
 [2010.10.05 16:23:36 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\vlc
 [2009.12.23 22:05:00 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Win7codecs
 [2009.07.20 00:00:22 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\WinRAR
 [2009.07.22 02:07:30 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Yahoo!
 [2010.04.02 13:50:18 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Youtube Downloader HD
 [2010.02.06 11:38:33 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Z-Software
 [2010.07.03 02:38:48 | 000,000,000 | ---D | M] -- C:\Users\Nadine\AppData\Roaming\Zylom
 
 < %APPDATA%\*.exe /s >
 [2009.09.29 20:29:08 | 000,006,144 | ---- | M] (Electronic Arts Canada) -- C:\Users\Nadine\AppData\Roaming\EA\EASW\GameFace\DetectOpenGLConsole.exe
 [2009.09.29 20:29:08 | 000,005,120 | ---- | M] (Electronic Arts Canada) -- C:\Users\Nadine\AppData\Roaming\EA\EASW\GameFace\DownloadSourcePhotoConsole.exe
 [2009.10.19 23:50:00 | 000,030,208 | ---- | M] (Electronic Arts Canada) -- C:\Users\Nadine\AppData\Roaming\EA\EASW\GameFace\FileDownloadConsole.exe
 [2009.10.08 10:30:41 | 000,013,312 | ---- | M] (Electronic Arts Canada) -- C:\Users\Nadine\AppData\Roaming\EA\EASW\GameFace\PhotoFaceConsole.exe
 [2009.09.29 20:29:04 | 000,009,216 | ---- | M] (Electronic Arts Canada) -- C:\Users\Nadine\AppData\Roaming\EA\EASW\GameFace\UploadPhotofitConsole.exe
 [2010.10.02 21:44:58 | 000,010,134 | R--- | M] () -- C:\Users\Nadine\AppData\Roaming\Microsoft\Installer\{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}\ARPPRODUCTICON.exe
 [2009.11.01 02:01:37 | 000,029,926 | R--- | M] () -- C:\Users\Nadine\AppData\Roaming\Microsoft\Installer\{394BE3D9-7F57-4638-A8D1-1D88671913B7}\_18be6784.exe
 [2009.11.01 02:01:37 | 000,029,422 | R--- | M] () -- C:\Users\Nadine\AppData\Roaming\Microsoft\Installer\{394BE3D9-7F57-4638-A8D1-1D88671913B7}\_294823.exe
 [2010.02.24 01:00:09 | 000,025,214 | R--- | M] () -- C:\Users\Nadine\AppData\Roaming\Microsoft\Installer\{5FD88490-011C-4DF1-B886-F298D955171B}\SunReg.exe
 [2009.12.06 15:31:39 | 000,010,134 | R--- | M] () -- C:\Users\Nadine\AppData\Roaming\Microsoft\Installer\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}\ARPPRODUCTICON.exe
 
 < %SYSTEMDRIVE%\*.exe >
 
 
 < MD5 for: AGP440.SYS  >
 [2009.04.22 07:24:12 | 000,053,328 | ---- | M] (Microsoft Corporation) MD5=7DFFC1CD425BCD998D9FDA0192383A19 -- C:\Windows\System32\drivers\AGP440.sys
 [2009.04.22 07:24:12 | 000,053,328 | ---- | M] (Microsoft Corporation) MD5=7DFFC1CD425BCD998D9FDA0192383A19 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_x86_neutral_e13b2b757efc5205\AGP440.sys
 [2009.04.22 07:24:12 | 000,053,328 | ---- | M] (Microsoft Corporation) MD5=7DFFC1CD425BCD998D9FDA0192383A19 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.1.7100.0_none_2b05e59d13c6aac3\AGP440.sys
 
 < MD5 for: ATAPI.SYS  >
 [2009.04.22 07:24:04 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=80C40F7FDFC376E4C5FEEC28B41C119E -- C:\Windows\System32\drivers\atapi.sys
 [2009.04.22 07:24:04 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=80C40F7FDFC376E4C5FEEC28B41C119E -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_b27d5421375ad1cd\atapi.sys
 [2009.04.22 07:24:04 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=80C40F7FDFC376E4C5FEEC28B41C119E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7100.0_none_4e2b207b769f9fe5\atapi.sys
 
 < MD5 for: CNGAUDIT.DLL  >
 [2009.04.22 07:20:04 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=EC9930C8CDF46295A1354256435CB5DE -- C:\Windows\System32\cngaudit.dll
 [2009.04.22 07:20:04 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=EC9930C8CDF46295A1354256435CB5DE -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7100.0_none_5956e38684aa4f03\cngaudit.dll
 
 < MD5 for: EXPLORER.EXE  >
 [2009.04.22 07:19:02 | 002,607,616 | ---- | M] (Microsoft Corporation) MD5=C133788B393EEC01439AD997D24E66ED -- C:\Windows\explorer.exe
 [2009.04.22 07:19:02 | 002,607,616 | ---- | M] (Microsoft Corporation) MD5=C133788B393EEC01439AD997D24E66ED -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7100.0_none_c2a79f73ced24008\explorer.exe
 
 < MD5 for: IASTORV.SYS  >
 [2009.04.22 07:24:21 | 000,332,368 | ---- | M] (Intel Corporation) MD5=AC958B65CDE27ADFDEC628BF7ECCEB8C -- C:\Windows\System32\drivers\iaStorV.sys
 [2009.04.22 07:24:21 | 000,332,368 | ---- | M] (Intel Corporation) MD5=AC958B65CDE27ADFDEC628BF7ECCEB8C -- C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_x86_neutral_18cccb83b34e1453\iaStorV.sys
 [2009.04.22 07:24:21 | 000,332,368 | ---- | M] (Intel Corporation) MD5=AC958B65CDE27ADFDEC628BF7ECCEB8C -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.1.7100.0_none_20044ad9dcddcbd8\iaStorV.sys
 
 < MD5 for: NETLOGON.DLL  >
 [2009.04.22 07:21:18 | 000,561,152 | ---- | M] (Microsoft Corporation) MD5=A3EA8619FBBC2D270D79C241CE426618 -- C:\Windows\System32\netlogon.dll
 [2009.04.22 07:21:18 | 000,561,152 | ---- | M] (Microsoft Corporation) MD5=A3EA8619FBBC2D270D79C241CE426618 -- C:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7100.0_none_6eaaafa48d0fb9a0\netlogon.dll
 
 < MD5 for: NVSTOR.SYS  >
 [2009.04.22 07:24:17 | 000,142,416 | ---- | M] (NVIDIA Corporation) MD5=93CF6F974095F7D146AA273F3BF418D7 -- C:\Windows\System32\drivers\nvstor.sys
 [2009.04.22 07:24:17 | 000,142,416 | ---- | M] (NVIDIA Corporation) MD5=93CF6F974095F7D146AA273F3BF418D7 -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_x86_neutral_4d1b6b7b67c54c8c\nvstor.sys
 [2009.04.22 07:24:17 | 000,142,416 | ---- | M] (NVIDIA Corporation) MD5=93CF6F974095F7D146AA273F3BF418D7 -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7100.0_none_aacdbb89141475b0\nvstor.sys
 
 < MD5 for: SCECLI.DLL  >
 [2009.04.22 07:21:47 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=686BAFE6AF35AF1C8D5EB536A8500430 -- C:\Windows\System32\scecli.dll
 [2009.04.22 07:21:47 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=686BAFE6AF35AF1C8D5EB536A8500430 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7100.0_none_a900dabd2e31405b\scecli.dll
 
 < MD5 for: USER32.DLL  >
 [2009.04.22 07:22:10 | 000,811,520 | ---- | M] (Microsoft Corporation) MD5=5CF35E5261DAA5C68DEBA4618DBE4121 -- C:\Windows\winsxs\x86_microsoft-windows-user32_31bf3856ad364e35_6.1.7100.0_none_3e2b64a2c272507b\user32.dll
 [2010.02.20 21:55:53 | 000,811,520 | ---- | M] (Microsoft Corporation) MD5=7BD7F45FF37FA0669CD32CA0EF46E22C -- C:\Windows\System32\user32.dll
 [2009.05.13 08:28:15 | 000,811,520 | ---- | M] (Microsoft Corporation) MD5=A025B11D116A571FCFAEB5B1FB61346A -- C:\Windows\winsxs\x86_microsoft-windows-user32_31bf3856ad364e35_6.1.7100.19_none_a5ee7d3f0db7112d\user32.dll
 [2009.05.13 09:10:36 | 000,811,520 | ---- | M] (Microsoft Corporation) MD5=F8EFD2F06AF7F6BD2C0E3E83A4E686E4 -- C:\Windows\winsxs\x86_microsoft-windows-user32_31bf3856ad364e35_6.1.7100.4108_none_0290fef204ee491c\user32.dll
 
 < MD5 for: USERINIT.EXE  >
 [2009.04.22 07:19:37 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=50771CA86FF1ADAF5FD1920F8CB5665E -- C:\Windows\System32\userinit.exe
 [2009.04.22 07:19:37 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=50771CA86FF1ADAF5FD1920F8CB5665E -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7100.0_none_4d1bb27726c5c954\userinit.exe
 
 < MD5 for: WINLOGON.EXE  >
 [2009.04.22 07:19:40 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=B9CFF761509E6C95E964B29B279D7721 -- C:\Windows\System32\winlogon.exe
 [2009.04.22 07:19:40 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=B9CFF761509E6C95E964B29B279D7721 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7100.0_none_e0b5f9782a074d3e\winlogon.exe
 
 < MD5 for: WS2IFSL.SYS  >
 [2009.04.22 05:53:36 | 000,016,384 | ---- | M] (Microsoft Corporation) MD5=2482D8B39E0010AD1BB2EA08703E4783 -- C:\Windows\System32\drivers\ws2ifsl.sys
 [2009.04.22 05:53:36 | 000,016,384 | ---- | M] (Microsoft Corporation) MD5=2482D8B39E0010AD1BB2EA08703E4783 -- C:\Windows\winsxs\x86_microsoft-windows-w..rastructure-ws2ifsl_31bf3856ad364e35_6.1.7100.0_none_c07999361ce3778a\ws2ifsl.sys
 
 < %systemroot%\system32\drivers\*.sys /lockedfiles >
 [2009.11.13 23:44:07 | 000,691,696 | ---- | M] () Unable to obtain MD5 -- C:\Windows\System32\drivers\sptd.sys
 
 < %systemroot%\System32\config\*.sav >
 
 < %systemroot%\*. /mp /s >
 
 < %systemroot%\system32\*.dll /lockedfiles >
 [2009.04.22 07:20:46 | 000,225,792 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\LocationApi.dll
 [2009.04.22 07:22:16 | 000,488,960 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\win32spl.dll
 
 ========== Alternate Data Streams ==========
 
 @Alternate Data Stream - 48 bytes -> C:\Windows:538BE93748637EF0
 @Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:DBC416F8
 @Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:242231A9
 @Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:0B9D8E22
 
 < End of report >
 --- --- ---  Extras.txt OTL Logfile:   Code: 
 OTL Extras logfile created on: 07.10.2010 14:17:49 - Run 1OTL by OldTimer - Version 3.2.14.1     Folder = C:\Users\Nadine\Desktop
 Ultimate Edition  (Version = 6.1.7100) - Type = NTWorkstation
 Internet Explorer (Version = 8.0.7100.0)
 Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 61,00% Memory free
 6,00 Gb Paging File | 5,00 Gb Available in Paging File | 78,00% Paging File free
 Paging file location(s): ?:\pagefile.sys [binary data]
 
 %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
 Drive C: | 232,88 Gb Total Space | 35,02 Gb Free Space | 15,04% Space Free | Partition Type: NTFS
 D: Drive not present or media not loaded
 E: Drive not present or media not loaded
 F: Drive not present or media not loaded
 G: Drive not present or media not loaded
 H: Drive not present or media not loaded
 I: Drive not present or media not loaded
 
 Computer Name: NADINE-PC
 Current User Name: Nadine
 Logged in as Administrator.
 
 Current Boot Mode: Normal
 Scan Mode: All users
 Company Name Whitelist: Off
 Skip Microsoft Files: Off
 File Age = 30 Days
 Output = Minimal
 
 ========== Extra Registry (SafeList) ==========
 
 
 ========== File Associations ==========
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
 .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
 .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
 
 [HKEY_USERS\S-1-5-21-1627382377-2090316224-11462107-1000\SOFTWARE\Classes\<extension>]
 .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
 
 ========== Shell Spawning ==========
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
 batfile [open] -- "%1" %*
 cmdfile [open] -- "%1" %*
 comfile [open] -- "%1" %*
 cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
 exefile [open] -- "%1" %*
 helpfile [open] -- Reg Error: Key error.
 hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
 htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
 htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation)
 inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
 piffile [open] -- "%1" %*
 regfile [merge] -- Reg Error: Key error.
 scrfile [config] -- "%1"
 scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
 scrfile [open] -- "%1" /S
 txtfile [edit] -- Reg Error: Key error.
 Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
 Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
 Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 Folder [explore] -- Reg Error: Value error.
 Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
 ========== Security Center Settings ==========
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 "cval" = 1
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 "VistaSp1" = Reg Error: Unknown registry data type -- File not found
 "AntiVirusOverride" = 0
 "AntiSpywareOverride" = 0
 "FirewallOverride" = 0
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
 ========== Firewall Settings ==========
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
 "PolicyVersion" = 522
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
 "DisableNotifications" = 0
 "DisableUnicastResponsesToMulticastBroadcast" = 0
 "AllowLocalPolicyMerge" = 1
 "AllowLocalIPsecPolicyMerge" = 1
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\PrivateProfile]
 "DisableNotifications" = 0
 "DisableUnicastResponsesToMulticastBroadcast" = 0
 "AllowLocalPolicyMerge" = 1
 "AllowLocalIPsecPolicyMerge" = 1
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\PublicProfile]
 "DisableNotifications" = 0
 "DisableUnicastResponsesToMulticastBroadcast" = 0
 "AllowLocalPolicyMerge" = 1
 "AllowLocalIPsecPolicyMerge" = 1
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
 "EnableFirewall" = 1
 "DisableNotifications" = 0
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
 "EnableFirewall" = 0
 "DisableNotifications" = 0
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
 "EnableFirewall" = 0
 "DisableNotifications" = 0
 
 ========== Authorized Applications List ==========
 
 
 ========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
 "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
 "{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
 "{0886900B-B2F3-452C-B580-60F1253F7F80}" = Native Instruments Controller Editor
 "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
 "{0B8565BA-BAD5-4732-B122-5FD78EFC50A9}" = Native Instruments Service Center
 "{0CB9668D-F979-4F31-B8B8-67FE90F929F8}" = Bonjour
 "{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
 "{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}" = PlayStation(R)Store
 "{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
 "{13F3917B56CD4C25848BDC69916971BB}" = DivX Converter
 "{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5
 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
 "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live-Uploadtool
 "{2133CB3F-F891-4081-8681-FEE2B2419FF4}" = Orb Runtime libraries
 "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
 "{26A24AE4-039D-4CA4-87B4-2F83216014FF}" = Java(TM) 6 Update 21
 "{2AAC4085-DCBF-417B-AEBD-182197839240}" = Native Instruments Traktor
 "{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform
 "{350FB27C-CF62-4EF3-AF9D-70FF313FE221}" = iTunes
 "{37A9BF0C-775D-4431-9E53-946F35C3E041}" = Nokia Software Launcher
 "{394BE3D9-7F57-4638-A8D1-1D88671913B7}" = Microsoft AppLocale
 "{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}" = Adobe Media Player
 "{3FC7CBBC4C1E11DCA1A752EA55D89593}" = DivX Version Checker
 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
 "{52B97218-98CB-4B8B-9283-D213C85E1AA4}" = Windows Live Anmelde-Assistent
 "{537575D6-3B96-474C-BD8F-DFF667363DBD}" = Naviextras Toolbox Prerequesities
 "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
 "{57EC5BFE-7CB7-3057-8385-C9D72918511C}" = Microsoft .NET Framework 4 Client Profile Beta 2
 "{586509F0-350D-48B5-B763-9CC2F8D96C4C}" = Windows Live Sync
 "{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
 "{6094AB91-4CC8-498E-9DFF-134CC0B159DE}" = PC Connectivity Solution
 "{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
 "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
 "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
 "{6E405B40-3879-3C9B-9286-8D5E71258C35}" = Microsoft .NET Framework 4 Extended Beta 2
 "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
 "{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6}" = ICQ7.2
 "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
 "{7B3F0113-E63C-4D6D-AF19-111A3165CCA2}" = Text-To-Speech-Runtime
 "{7B63B2922B174135AFC0E1377DD81EC2}" =
 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
 "{850C7BD3-9F3F-46AD-9396-E7985B38C55E}" = Windows Live Fotogalerie
 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
 "{8C0CAA7A-3272-4991-A808-2C7559DE3409}" = Win7codecs
 "{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}" = TomTom HOME Visual Studio Merge Modules
 "{90120000-0015-0407-0000-0000000FF1CE}" = Microsoft Office Access MUI (German) 2007
 "{90120000-0015-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
 "{90120000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2007
 "{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
 "{90120000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2007
 "{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
 "{90120000-0019-0407-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (German) 2007
 "{90120000-0019-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
 "{90120000-001A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (German) 2007
 "{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
 "{90120000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2007
 "{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
 "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
 "{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
 "{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007
 "{90120000-001F-0410-0000-0000000FF1CE}_ENTERPRISE_{322296D4-1EAE-4030-9FBC-D2787EB25FA2}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
 "{90120000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2007
 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
 "{90120000-0044-0407-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (German) 2007
 "{90120000-0044-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
 "{90120000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2007
 "{90120000-006E-0407-0000-0000000FF1CE}_ENTERPRISE_{26454C26-D259-4543-AA60-3189E09C5F76}" = Microsoft Office 2007 Service Pack 2 (SP2)
 "{90120000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2007
 "{90120000-00A1-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
 "{90120000-00BA-0407-0000-0000000FF1CE}" = Microsoft Office Groove MUI (German) 2007
 "{90120000-00BA-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
 "{904CCF62-818D-4675-BC76-D37EB399F917}" = Windows Mobile-Gerätecenter
 "{90850409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Word Viewer 2003
 "{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
 "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
 "{95F2AFB0-8BC9-4E40-A4E1-B9066D2469C0}" = Nokia Software Updater
 "{972B1D9B-0EAD-49E8-B7D6-3B83FD5665B1}" = Nokia Connectivity Cable Driver
 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
 "{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
 "{A7496F46-78AE-4DB2-BCF5-95F210FA6F96}" = Windows Live Movie Maker
 "{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
 "{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
 "{AC76BA86-7AD7-1031-7B44-A93000000001}" = Adobe Reader 9.3.4 - Deutsch
 "{AED2DD42-9853-407E-A6BC-8A1D6B715909}" = Windows Live Messenger
 "{B13A7C41581B411290FBC0395694E2A9}" = DivX Converter
 "{B1ADF008-E898-4FE2-8A1F-690D9A06ACAF}" = DolbyFiles
 "{B2EC4A38-B545-4A00-8214-13FE0E915E6D}" = Advertising Center
 "{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
 "{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}" = PlayStation(R)Network Downloader
 "{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Plus Web Player
 "{BD5CA0DA-71AD-43DA-B19E-6EEE0C9ADC9A}" = Nero ControlCenter
 "{BF1EC9C0-9C10-11DF-BBC7-005056C00008}" = Google Earth
 "{C27BC2A2-30DD-4014-B22E-63EB0DB572F9}" = Logitech Webcam Software
 "{CAFA57E8-8927-4912-AFCF-B0AA3837E989}" = Windows Live Essentials
 "{CCA1EEA3-555E-4D05-AC46-4B49C6C5D887}" = Apple Mobile Device Support
 "{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
 "{D2041A37-5FEC-49F0-AE5C-3F2FFDFAA4F4}" = Windows Live Call
 "{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
 "{DAEAFD68-BB4A-4507-A241-C8804D2EA66D}" = Apple Application Support
 "{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb" = Microsoft Windows Application Compatibility Database
 "{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware
 "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
 "{E7044E25-3038-4A76-9064-344AC038043E}" = Windows Mobile-Gerätecenter: Treiberupdate
 "{E8A80433-302B-4FF1-815D-FCC8EAC482FF}" = Nero Installer
 "{EB900AF8-CC61-4E15-871B-98D1EA3E8025}" = QuickTime
 "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
 "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
 "{F1932E56-8A95-40E0-A15B-E06B45969845}" = Nokia NSeries System Utilities
 "{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
 "{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
 "{FBE5AA96-22F0-4C4A-8E92-4BE3498D4CCB}" = Media Go
 "7-Zip" = 7-Zip 4.65
 "AC3Filter_is1" = AC3Filter 1.63b
 "Ad-Aware" = Ad-Aware
 "Adobe AIR" = Adobe AIR
 "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
 "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
 "Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
 "AVS Update Manager_is1" = AVS Update Manager 1.0
 "AVS Video Editor 4_is1" = AVS Video Editor 4 4.2.1.166
 "AVS Video Recorder_is1" = AVS Video Recorder 2.4 (Service Version)
 "AVS4YOU Software Navigator_is1" = AVS4YOU Software Navigator 1.3
 "CARSOFT Mercedes - Diagnosis V7.4" = CARSOFT Mercedes - Diagnosis V7.4
 "chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
 "com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
 "Content Manager 2" = Content Manager 2
 "Digital Camera Driver" = Digital Camera Driver
 "DivX Plus DirectShow Filters" = DivX Plus DirectShow Filters
 "DivX Setup.divx.com" = DivX-Setup
 "ENTERPRISE" = Microsoft Office Enterprise 2007
 "Free Audio CD Burner_is1" = Free Audio CD Burner version 1.4
 "Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.8
 "HDMI" = Intel(R) Graphics Media Accelerator Driver
 "ImgBurn" = ImgBurn
 "Media Player - Codec Pack" = Media Player Codec Pack 3.9.6
 "Microsoft .NET Framework 4 Client Profile Beta 2" = Microsoft .NET Framework 4 Client Profile Beta 2
 "Microsoft .NET Framework 4 Extended Beta 2" = Microsoft .NET Framework 4 Extended Beta 2
 "Mozilla Firefox (3.6.10)" = Mozilla Firefox (3.6.10)
 "MySQL Servers and Clients 4.0.26" = MySQL Servers and Clients 4.0.26
 "Native Instruments Controller Editor" = Native Instruments Controller Editor
 "Native Instruments Service Center" = Native Instruments Service Center
 "Native Instruments Traktor" = Native Instruments Traktor
 "SAM3" = SAM Broadcaster (remove only)
 "SmartCheck" = NuMega SmartCheck
 "ST6UNST #1" = Visual Basic 6.0 Runtime&Steuerelemente
 "SynTPDeinstKey" = Synaptics Pointing Device Driver
 "SystemRequirementsLab" = System Requirements Lab
 "TeamViewer 5" = TeamViewer 5
 "TomTom HOME" = TomTom HOME 2.7.6.2056
 "TVWiz" = Intel(R) TV Wizard
 "Uninstall_is1" = Uninstall 1.0.0.1
 "Virtual DJ - Atomix Productions" = Virtual DJ - Atomix Productions
 "Visual Basic 6.0 Professional Edition (deu)" = Microsoft Visual Basic 6.0 Professional Edition (Deutsch)
 "VLC media player" = VLC media player 1.0.5
 "WBFS Manager 3.0" = WBFS Manager 3.0
 "WebPost" = Microsoft Web Publishing Wizard 1.53
 "WinLiveSuite_Wave3" = Windows Live Essentials
 "WinRAR archiver" = WinRAR
 
 ========== HKEY_USERS Uninstall List ==========
 
 [HKEY_USERS\S-1-5-21-1627382377-2090316224-11462107-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
 "360WAVESPATCHERCLT" = 360WavesPatcher (Client setup)
 "UnityWebPlayer" = Unity Web Player
 
 ========== Last 10 Event Log Errors ==========
 
 [ Application Events ]
 Error - 06.10.2010 06:23:56 | Computer Name = Nadine-PC | Source = MsiInstaller | ID = 11606
 Description =
 
 Error - 06.10.2010 06:23:56 | Computer Name = Nadine-PC | Source = MsiInstaller | ID = 11606
 Description =
 
 Error - 06.10.2010 13:18:32 | Computer Name = Nadine-PC | Source = SideBySide | ID = 16842815
 Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files\Common
 Files\Adobe AIR\Versions\1.0\Adobe AIR.dll". Fehler in Manifest- oder Richtliniendatei
 "C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll" in Zeile 3.
 Der
 Wert "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" des "version"-Attributs
 im assemblyIdentity-Element ist ungültig.
 
 Error - 06.10.2010 13:20:10 | Computer Name = Nadine-PC | Source = SideBySide | ID = 16842815
 Description = Fehler beim Generieren des Aktivierungskontextes für "c:\program files\spybot
 - search & destroy\DelZip179.dll". Fehler in Manifest- oder Richtliniendatei "c:\program
 files\spybot - search & destroy\DelZip179.dll" in Zeile 8.  Der Wert "*" des "language"-Attributs
 im assemblyIdentity-Element ist ungültig.
 
 Error - 06.10.2010 13:23:52 | Computer Name = Nadine-PC | Source = MsiInstaller | ID = 11606
 Description =
 
 Error - 06.10.2010 13:23:52 | Computer Name = Nadine-PC | Source = MsiInstaller | ID = 11606
 Description =
 
 Error - 06.10.2010 13:24:30 | Computer Name = Nadine-PC | Source = VSS | ID = 8193
 Description =
 
 Error - 06.10.2010 13:40:30 | Computer Name = Nadine-PC | Source = MySQL | ID = 100
 Description = MySQL: Normal shutdown     For more information, see Help and Support Center
 at hxxp://www.mysql.com.
 
 Error - 06.10.2010 17:01:34 | Computer Name = Nadine-PC | Source = Bonjour Service | ID = 100
 Description = 200: ERROR: read_msg errno 10054 (Eine vorhandene Verbindung wurde
 vom Remotehost geschlossen.)
 
 Error - 07.10.2010 05:46:43 | Computer Name = Nadine-PC | Source = Application Error | ID = 1000
 Description = Name der fehlerhaften Anwendung: svchost.exe, Version: 6.1.7100.0,
 Zeitstempel: 0x49ee8c24  Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7100.0,
 Zeitstempel: 0x49eea66e  Ausnahmecode: 0xc0000005  Fehleroffset: 0x00066be4  ID des fehlerhaften
 Prozesses: 0x3a8  Startzeit der fehlerhaften Anwendung: 0x01cb6602ca0afce5  Pfad der
 fehlerhaften Anwendung: C:\Windows\system32\svchost.exe  Pfad des fehlerhaften Moduls:
 C:\Windows\SYSTEM32\ntdll.dll  Berichtskennung: ca76a67e-d1f7-11df-8f82-001377984176
 
 [ Media Center Events ]
 Error - 20.07.2010 00:35:27 | Computer Name = Nadine-PC | Source = Microsoft-Windows-Media Center Extender | ID = 538
 Description =
 
 Error - 20.07.2010 00:39:17 | Computer Name = Nadine-PC | Source = Microsoft-Windows-Media Center Extender | ID = 538
 Description =
 
 Error - 20.07.2010 13:18:26 | Computer Name = Nadine-PC | Source = Microsoft-Windows-Media Center Extender | ID = 538
 Description =
 
 Error - 20.07.2010 13:24:29 | Computer Name = Nadine-PC | Source = Microsoft-Windows-Media Center Extender | ID = 538
 Description =
 
 Error - 21.07.2010 06:14:32 | Computer Name = Nadine-PC | Source = Microsoft-Windows-Media Center Extender | ID = 538
 Description =
 
 Error - 21.07.2010 06:46:41 | Computer Name = Nadine-PC | Source = Microsoft-Windows-Media Center Extender | ID = 538
 Description =
 
 Error - 06.08.2010 06:54:36 | Computer Name = Nadine-PC | Source = MCUpdate | ID = 0
 Description = 12:54:35 - Fehler beim Herstellen der Internetverbindung.  12:54:35
 -     Serververbindung konnte nicht hergestellt werden..
 
 Error - 06.08.2010 06:54:53 | Computer Name = Nadine-PC | Source = MCUpdate | ID = 0
 Description = 12:54:41 - Fehler beim Herstellen der Internetverbindung.  12:54:41
 -     Serververbindung konnte nicht hergestellt werden..
 
 Error - 06.08.2010 07:54:56 | Computer Name = Nadine-PC | Source = MCUpdate | ID = 0
 Description = 13:54:56 - Fehler beim Herstellen der Internetverbindung.  13:54:56
 -     Serververbindung konnte nicht hergestellt werden..
 
 Error - 06.08.2010 07:55:04 | Computer Name = Nadine-PC | Source = MCUpdate | ID = 0
 Description = 13:55:02 - Fehler beim Herstellen der Internetverbindung.  13:55:02
 -     Serververbindung konnte nicht hergestellt werden..
 
 [ System Events ]
 Error - 07.10.2010 05:46:46 | Computer Name = Nadine-PC | Source = Service Control Manager | ID = 7031
 Description = Der Dienst "Benachrichtigungsdienst für Systemereignisse" wurde unerwartet
 beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden
 in 120000 Millisekunden durchgeführt: Neustart des Diensts.
 
 Error - 07.10.2010 05:46:46 | Computer Name = Nadine-PC | Source = Service Control Manager | ID = 7031
 Description = Der Dienst "Remote Desktop Configuration" wurde unerwartet beendet.
 Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000
 Millisekunden durchgeführt: Neustart des Diensts.
 
 Error - 07.10.2010 05:46:46 | Computer Name = Nadine-PC | Source = Service Control Manager | ID = 7031
 Description = Der Dienst "Shellhardwareerkennung" wurde unerwartet beendet. Dies
 ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden
 durchgeführt: Neustart des Diensts.
 
 Error - 07.10.2010 05:46:46 | Computer Name = Nadine-PC | Source = Service Control Manager | ID = 7031
 Description = Der Dienst "Designs" wurde unerwartet beendet. Dies ist bereits 1
 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt:
 Neustart des Diensts.
 
 Error - 07.10.2010 05:46:46 | Computer Name = Nadine-PC | Source = Service Control Manager | ID = 7031
 Description = Der Dienst "Windows-Verwaltungsinstrumentation" wurde unerwartet beendet.
 Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 120000
 Millisekunden durchgeführt: Neustart des Diensts.
 
 Error - 07.10.2010 05:46:46 | Computer Name = Nadine-PC | Source = Service Control Manager | ID = 7031
 Description = Der Dienst "Windows Update" wurde unerwartet beendet. Dies ist bereits
 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt:
 Neustart des Diensts.
 
 Error - 07.10.2010 05:47:46 | Computer Name = Nadine-PC | Source = Service Control Manager | ID = 7032
 Description = Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden
 des Dienstes "Server" Korrekturmaßnahmen (Neustart des Diensts) durchzuführen,
 ist fehlgeschlagen. Fehler:   %%1056
 
 Error - 07.10.2010 05:48:46 | Computer Name = Nadine-PC | Source = Service Control Manager | ID = 7032
 Description = Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden
 des Dienstes "Computerbrowser" Korrekturmaßnahmen (Neustart des Diensts) durchzuführen,
 ist fehlgeschlagen. Fehler:   %%1056
 
 Error - 07.10.2010 05:48:46 | Computer Name = Nadine-PC | Source = Service Control Manager | ID = 7032
 Description = Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden
 des Dienstes "IKE- und AuthIP IPsec-Schlüsselerstellungsmodule" Korrekturmaßnahmen
 (Neustart des Diensts) durchzuführen, ist fehlgeschlagen. Fehler:   %%1056
 
 Error - 07.10.2010 05:48:46 | Computer Name = Nadine-PC | Source = Service Control Manager | ID = 7032
 Description = Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden
 des Dienstes "Windows-Verwaltungsinstrumentation" Korrekturmaßnahmen (Neustart
 des Diensts) durchzuführen, ist fehlgeschlagen. Fehler:   %%1056
 
 
 < End of report >
 --- --- ---   
Kann man daraus was erkennen? |