Hier weiter mit OTL.txt:OTL Logfile: Code:
OTL logfile created on: 16.02.2011 18:49:07 - Run 1
OTL by OldTimer - Version 3.2.20.6 Folder = C:\Documents and Settings\HP\Desktop
Windows XP Tablet PC Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 40,00% Memory free
3,00 Gb Paging File | 2,00 Gb Available in Paging File | 64,00% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 55,89 Gb Total Space | 20,67 Gb Free Space | 36,98% Space Free | Partition Type: NTFS
Drive Z: | 50,11 Gb Total Space | 47,97 Gb Free Space | 95,74% Space Free | Partition Type: NTFS
Computer Name: ****** | User Name: ***** | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Documents and Settings\HP\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG10\avgnsx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG10\avgemcx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSMonitor.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe (TeamViewer GmbH)
PRC - C:\Program Files\TeamViewer\Version6\TeamViewer.exe (TeamViewer GmbH)
PRC - C:\Program Files\TeamViewer\Version6\tv_w32.exe (TeamViewer GmbH)
PRC - C:\Program Files\AVG\AVG10\avgrsx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG10\avgchsvx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG10\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG10\avgcsrvx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\Program Files\OpenOffice.org 3\program\soffice.bin (OpenOffice.org)
PRC - C:\Program Files\OpenOffice.org 3\program\soffice.exe (OpenOffice.org)
PRC - C:\Program Files\IPP\ipp.bin ()
PRC - C:\Program Files\IPP\jre\bin\javaw.exe (Sun Microsystems, Inc.)
PRC - C:\WINDOWS\system32\wisptis.exe (Microsoft Corporation)
PRC - C:\Program Files\Outlook Express\msimn.exe (Microsoft Corporation)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Ets\EtsNg.exe (KNX Association)
PRC - C:\Program Files\HP\ToolboxFX\bin\HPTLBXFX.exe (HP)
PRC - C:\Program Files\HP\HP UT\bin\hppusg.exe ()
PRC - C:\WINDOWS\vsnpstd3.exe ()
PRC - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\pthosttr.exe (Hewlett-Packard Development Company, L.P.)
PRC - C:\Program Files\ProtectTools\Embedded Security Software\PSDrt.exe (Infineon Technologies AG)
PRC - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
PRC - C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe (Broadcom Corporation.)
PRC - C:\Program Files\Common Files\EIBA sc\Eagle\SybaseRT8\Win32\rteng8.exe (iAnywhere Solutions, Inc.)
PRC - C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe (Analog Devices, Inc.)
PRC - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe (Analog Devices, Inc.)
PRC - C:\WINDOWS\system32\tabbtnu.exe (Microsoft Corporation)
========== Modules (SafeList) ==========
MOD - C:\Documents and Settings\HP\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Program Files\TeamViewer\Version6\tv_w32.dll (TeamViewer GmbH)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll (Microsoft Corporation)
MOD - C:\WINDOWS\system32\msvcp60.dll (Microsoft Corporation)
MOD - C:\WINDOWS\system32\crtdll.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (HidServ) -- File not found
SRV - (helpsvc) -- File not found
SRV - (FastUserSwitchingCompatibility) -- File not found
SRV - (AVGIDSAgent) -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe (AVG Technologies CZ, s.r.o.)
SRV - (TeamViewer6) -- C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe (TeamViewer GmbH)
SRV - (avgwd) -- C:\Program Files\AVG\AVG10\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
SRV - (Apple Mobile Device) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (SoundMAX Agent Service (default)) -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe (Analog Devices, Inc.)
========== Driver Services (SafeList) ==========
DRV - (Avgldx86) -- C:\WINDOWS\system32\drivers\avgldx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (Avgtdix) -- C:\WINDOWS\system32\drivers\avgtdix.sys (AVG Technologies CZ, s.r.o.)
DRV - (AVGIDSEH) -- C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys (AVG Technologies CZ, s.r.o. )
DRV - (Avgmfx86) -- C:\WINDOWS\system32\drivers\avgmfx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (Avgrkx86) -- C:\WINDOWS\system32\DRIVERS\avgrkx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (AVGIDSFilter) -- C:\WINDOWS\system32\drivers\AVGIDSFilter.sys (AVG Technologies CZ, s.r.o. )
DRV - (AVGIDSDriver) -- C:\WINDOWS\system32\drivers\AVGIDSDriver.sys (AVG Technologies CZ, s.r.o. )
DRV - (AVGIDSShim) -- C:\WINDOWS\system32\drivers\AVGIDSShim.sys (AVG Technologies CZ, s.r.o. )
DRV - (Haspnt) -- C:\WINDOWS\system32\drivers\Haspnt.sys (Aladdin Knowledge Systems)
DRV - (HPFXBULK) -- C:\WINDOWS\system32\drivers\hpfxbulk.sys (Hewlett Packard)
DRV - (HpqKbFiltr) -- C:\WINDOWS\system32\drivers\HpqKbFiltr.sys (Hewlett-Packard Development Company, L.P.)
DRV - (SNPSTD3) USB PC Camera (SNPSTD3) -- C:\WINDOWS\system32\drivers\snpstd3.sys (Sonix Co. Ltd.)
DRV - (w29n51) Intel(R) -- C:\WINDOWS\system32\drivers\w29n51.sys (Intel® Corporation)
DRV - (slabser) -- C:\WINDOWS\system32\drivers\slabser.sys (MCCI Corporation)
DRV - (slabbus) CP210x USB Composite Device driver (WDM) -- C:\WINDOWS\system32\drivers\slabbus.sys (MCCI Corporation)
DRV - (wisdpen) -- C:\WINDOWS\system32\drivers\wisdpen.sys (Wacom Technology)
DRV - (Hardlock) -- C:\WINDOWS\system32\drivers\hardlock.sys (Aladdin Knowledge Systems Ltd.)
DRV - (HBtnKey) -- C:\WINDOWS\system32\drivers\CPQBttn.sys (Hewlett-Packard Development Company, L.P.)
DRV - (eabfiltr) -- C:\WINDOWS\system32\drivers\eabfiltr.sys (Hewlett-Packard Development Company, L.P.)
DRV - (eabusb) -- C:\WINDOWS\system32\drivers\EabUsb.sys (Hewlett-Packard Development Company, L.P.)
DRV - (tifm21) -- C:\WINDOWS\system32\drivers\tifm21.sys (Texas Instruments)
DRV - (GTIPCI21) -- C:\WINDOWS\system32\drivers\gtipci21.sys (Texas Instruments)
DRV - (PersonalSecureDrive) -- C:\WINDOWS\System32\drivers\psd.sys (Infineon Technologies AG)
DRV - (AgereSoftModem) -- C:\WINDOWS\system32\drivers\AGRSM.sys (Agere Systems)
DRV - (IFXTPM) -- C:\WINDOWS\system32\drivers\ifxtpm.sys (Infineon Technologies AG)
DRV - (MarvinBus) -- C:\WINDOWS\system32\drivers\MarvinBus.sys (Pinnacle Systems GmbH)
DRV - (btaudio) -- C:\WINDOWS\system32\drivers\btaudio.sys (Broadcom Corporation.)
DRV - (BTKRNL) -- C:\WINDOWS\system32\drivers\btkrnl.sys (Broadcom Corporation.)
DRV - (BTDriver) -- C:\WINDOWS\system32\drivers\btport.sys (Broadcom Corporation.)
DRV - (BTWUSB) -- C:\WINDOWS\system32\drivers\btwusb.sys (Broadcom Corporation.)
DRV - (BTWDNDIS) -- C:\WINDOWS\system32\drivers\btwdndis.sys (Broadcom Corporation.)
DRV - (b57w2k) -- C:\WINDOWS\system32\drivers\b57xp32.sys (Broadcom Corporation)
DRV - (Vcs) -- C:\WINDOWS\system32\drivers\Vcs.sys ()
DRV - (Pei16Wdm) -- C:\WINDOWS\system32\drivers\Pei16Wdm.sys (EIBA s.c.)
DRV - (Pei10Wdm) -- C:\WINDOWS\system32\drivers\Pei10Wdm.sys (EIBA s.c.)
DRV - (SMCIRDA) -- C:\WINDOWS\system32\drivers\smcirda.sys (SMC)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.payback.de/pb/gsf/true/sst/GUTSCHEINE%252C_COUPONS_UND_AKTIONEN_IM_PAYBACK_BONUSPROGRAMM/s_ixcid/20_001_101/area/PORTAL/st/ebay/id/105532/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Bing"
FF - prefs.js..browser.search.defaulturl: "hxxp://www.bing.com/search?FORM=VE3D01&q="
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "hxxp://www.msn.com/"
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..keyword.URL: "hxxp://www.bing.com/search?FORM=VE3D01&q="
FF - HKLM\software\mozilla\Firefox\extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Program Files\AVG\AVG10\Firefox\ [2011.01.02 18:34:50 | 000,000,000 | ---D | M]
[2010.04.04 18:00:59 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\HP\Application Data\mozilla\Extensions
[2010.10.27 14:10:42 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\HP\Application Data\mozilla\Firefox\Profiles\gct615lo.default\extensions
[2010.05.27 16:04:57 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\HP\Application Data\mozilla\Firefox\Profiles\gct615lo.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010.10.27 21:13:22 | 000,000,000 | ---D | M] (Microsoft Choice Guard) -- C:\Documents and Settings\HP\Application Data\mozilla\Firefox\Profiles\gct615lo.default\extensions\ChoiceGuard@Microsoft
[2010.10.17 16:12:38 | 000,001,820 | ---- | M] () -- C:\Documents and Settings\HP\Application Data\Mozilla\Firefox\Profiles\gct615lo.default\searchplugins\bing.xml
[2010.11.13 12:15:45 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010.10.20 19:49:18 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2010.03.31 19:01:52 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2010.09.15 03:50:38 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
O1 HOSTS File: ([2006.02.28 13:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [HPPQVideo] File not found
O4 - HKLM..\Run: [HPUsageTracking] C:\Program Files\HP\HP UT\bin\hppusg.exe ()
O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [PTHOSTTR] C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE (Hewlett-Packard Development Company, L.P.)
O4 - HKLM..\Run: [snpstd3] C:\WINDOWS\vsnpstd3.exe ()
O4 - HKLM..\Run: [SoundMAX] C:\Program Files\Analog Devices\SoundMAX\Smax4.exe (Analog Devices, Inc.)
O4 - HKLM..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe (Analog Devices, Inc.)
O4 - HKLM..\Run: [TabletWizard] C:\WINDOWS\Help\splshwrp.exe (Microsoft Corporation)
O4 - HKLM..\Run: [ToolBoxFX] C:\Program Files\HP\ToolBoxFX\bin\HPTLBXFX.exe (HP)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\BTTray.lnk = C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
O4 - Startup: C:\Documents and Settings\HP\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Senden an &Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O16 - DPF: {14E35D5F-DEBA-4DB3-B2ED-17542BA12D1F} hxxp://192.168.2.13/AVC_AX_DVR.cab (CV781Object Object)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1297762087531 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\IfxWlxEN: DllName - IfxWlxEN.dll - C:\WINDOWS\System32\IfxWlxEN.dll (Infineon Technologies AG)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O20 - Winlogon\Notify\TabBtnWL: DllName - TabBtnWL.dll - C:\WINDOWS\System32\tabbtnwl.dll (Microsoft Corporation)
O20 - Winlogon\Notify\tpgwlnotify: DllName - tpgwlnot.dll - C:\WINDOWS\System32\tpgwlnot.dll (Microsoft Corporation)
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.10.15 17:13:26 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{0fbca1ff-b3a1-11df-a45f-00164125c165}\Shell - "" = AutoRun
O33 - MountPoints2\{0fbca1ff-b3a1-11df-a45f-00164125c165}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{0fbca1ff-b3a1-11df-a45f-00164125c165}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Start.hta
O33 - MountPoints2\{ac034703-726a-11df-a431-00164125c165}\Shell\AutoRun\command - "" = D:\Menu.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgchsvx.exe /sync) - C:\Program Files\AVG\AVG10\avgchsvx.exe (AVG Technologies CZ, s.r.o.)
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgrsx.exe /sync /restart) - C:\Program Files\AVG\AVG10\avgrsx.exe (AVG Technologies CZ, s.r.o.)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011.02.16 18:47:11 | 000,602,624 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\HP\Desktop\OTL.exe
[2011.02.16 18:31:19 | 000,000,000 | ---D | C] -- C:\IPP Data
[2011.02.16 18:26:35 | 000,000,000 | ---D | C] -- C:\Program Files\IT Tools for ETS3
[2011.02.16 07:29:27 | 000,274,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mucltui.dll
[2011.02.16 07:29:27 | 000,016,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mucltui.dll.mui
[2011.02.15 11:58:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\HP\My Documents\GlovePIEWithEmotiv043
[2011.02.15 11:58:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\HP\My Documents\GlovePIE030
[2011.02.15 10:30:06 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft CAPICOM 2.1.0.2
[2011.02.09 18:29:58 | 000,005,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstee.sys
[2011.02.09 18:29:53 | 000,010,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ndisip.sys
[2011.02.09 18:29:49 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ipsink.ax
[2011.02.09 18:29:49 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ipsink.ax
[2011.02.09 18:29:49 | 000,015,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\streamip.sys
[2011.02.09 18:29:46 | 000,011,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\slip.sys
[2011.02.09 18:29:42 | 000,019,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wstcodec.sys
[2011.02.09 18:29:37 | 000,085,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nabtsfec.sys
[2011.02.09 18:29:34 | 000,017,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ccdecode.sys
[2011.02.09 18:29:10 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\vfwwdm32.dll
[2011.02.09 18:29:10 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\vfwwdm32.dll
[2011.02.09 18:29:09 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kswdmcap.ax
[2011.02.09 18:29:09 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kswdmcap.ax
[2011.02.09 18:29:09 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksxbar.ax
[2011.02.09 18:29:09 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ksxbar.ax
[2011.02.09 18:29:08 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kstvtune.ax
[2011.02.09 18:29:08 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kstvtune.ax
[2011.02.07 20:42:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\HP\Application Data\Malwarebytes
[2011.02.07 20:42:44 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2011.02.07 20:42:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011.02.07 20:42:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2011.02.07 20:42:40 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011.02.07 20:42:40 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011.02.06 16:14:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Adobe
[2011.02.06 16:04:44 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\WindowsPowerShell
[2011.02.06 16:04:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\$968930Uinstall_KB968930$
[2011.02.06 16:03:39 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Desktop Search
[2011.02.06 16:03:38 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\GroupPolicy
[2011.02.02 20:33:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\HP\My Documents\Bluetooth-Exchange-Ordner
[2011.02.02 20:33:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\HP\Bluetooth Software
[2011.02.02 20:31:01 | 000,000,000 | ---D | C] -- C:\Program Files\WIDCOMM
[2011.01.31 20:37:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\HP\Application Data\JFritz
[2011.01.22 22:47:27 | 001,626,614 | ---- | C] (Siemens) -- C:\Documents and Settings\HP\My Documents\Sylcom 1.80c rel 8 Patch.exe
[2011.01.22 22:47:25 | 000,935,151 | ---- | C] (Siemens Switzerland Ltd, Siemens Building Technologies) -- C:\Documents and Settings\HP\My Documents\Sylcom 1.80c rel 8c Patch.exe
[2011.01.22 18:58:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\HP\My Documents\document_2514
[2011.01.21 15:44:37 | 000,439,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shimgvw.dll
[2011.01.19 19:51:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\HP\My Documents\BJE_V20
[2011.01.18 18:36:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\HP\AppData
[2011.01.18 18:34:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\HP\My Documents\iPhone Ringtones
[2011.01.18 18:33:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\HP\Local Settings\Application Data\iRinger
[2011.01.18 18:32:18 | 003,439,104 | ---- | C] (Mouse Industries) -- C:\Documents and Settings\HP\My Documents\iRinger.exe
[2007.03.12 11:41:52 | 000,061,440 | ---- | C] ( ) -- C:\WINDOWS\System32\vsnpstd3.dll
[2005.11.23 12:55:32 | 000,053,248 | ---- | C] ( ) -- C:\WINDOWS\System32\csnpstd3.dll
[5 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011.02.16 18:47:13 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\HP\Desktop\OTL.exe
[2011.02.16 18:29:44 | 000,007,543 | ---- | M] () -- C:\WINDOWS\ODBC.INI
[2011.02.16 18:05:32 | 106,241,920 | ---- | M] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm
[2011.02.16 15:27:23 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011.02.15 11:12:34 | 000,229,235 | ---- | M] () -- C:\Documents and Settings\HP\My Documents\IMG_4296.JPG
[2011.02.15 11:08:16 | 000,204,314 | ---- | M] () -- C:\Documents and Settings\HP\My Documents\IMG_4295.JPG
[2011.02.15 10:29:21 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011.02.15 08:59:00 | 000,000,256 | ---- | M] () -- C:\WINDOWS\tasks\WebReg .job
[2011.02.12 23:39:40 | 000,000,279 | ---- | M] () -- C:\WINDOWS\{D9C15833-DBC0-418C-B27E-921E2534F834}_WiseFW.ini
[2011.02.12 21:14:14 | 000,000,662 | ---- | M] () -- C:\Documents and Settings\HP\My Documents\2.xml
[2011.02.12 20:22:03 | 000,000,662 | ---- | M] () -- C:\Documents and Settings\HP\My Documents\33.xml
[2011.02.12 18:21:41 | 000,000,662 | ---- | M] () -- C:\Documents and Settings\HP\My Documents\13.xml
[2011.02.12 17:16:40 | 000,000,662 | ---- | M] () -- C:\Documents and Settings\HP\My Documents\1.xml
[2011.02.12 16:41:18 | 000,226,616 | ---- | M] () -- C:\Documents and Settings\HP\My Documents\Neues Projekt.pr5
[2011.02.12 16:37:43 | 000,006,678 | ---- | M] () -- C:\Documents and Settings\HP\My Documents\li unten.xml
[2011.02.12 16:37:17 | 000,000,600 | ---- | M] () -- C:\Documents and Settings\HP\My Documents\re.xml
[2011.02.12 13:56:46 | 000,003,814 | ---- | M] () -- C:\Documents and Settings\HP\My Documents\5-fach taster.xml
[2011.02.12 13:08:54 | 000,013,062 | ---- | M] () -- C:\Documents and Settings\HP\My Documents\test2.xml
[2011.02.11 08:20:51 | 000,243,920 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011.02.11 08:03:49 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2011.02.10 08:27:01 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2011.02.06 20:47:24 | 000,078,336 | ---- | M] () -- C:\Documents and Settings\HP\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.02.06 16:21:07 | 000,441,458 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011.02.06 16:21:07 | 000,071,394 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011.02.05 23:33:22 | 000,000,159 | ---- | M] () -- C:\Documents and Settings\HP\My Documents\adrsen zum panel.csv
[2011.02.02 22:13:50 | 002,399,902 | ---- | M] () -- C:\Documents and Settings\HP\My Documents\GlovePIE030.zip
[2011.02.02 20:31:14 | 000,000,701 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\BTTray.lnk
[2011.02.02 20:17:56 | 000,000,027 | ---- | M] () -- C:\WINDOWS\BRPP2KA.INI
[2011.02.02 20:17:55 | 000,000,479 | ---- | M] () -- C:\WINDOWS\BRWMARK.INI
[2011.02.02 19:57:30 | 004,698,995 | ---- | M] () -- C:\Documents and Settings\HP\My Documents\GlovePIEWithEmotiv043.zip
[2011.01.31 20:37:12 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\HP\Application Data\JFritz.lock
[2011.01.31 13:01:27 | 000,013,030 | ---- | M] () -- C:\PDOXUSRS.NET
[2011.01.22 18:58:05 | 000,926,723 | ---- | M] () -- C:\Documents and Settings\HP\My Documents\document_2514.zip
[2011.01.21 15:44:37 | 008,462,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shell32.dll
[2011.01.21 15:44:37 | 000,439,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shimgvw.dll
[2011.01.19 19:50:43 | 000,523,376 | ---- | M] () -- C:\Documents and Settings\HP\My Documents\BJE_V20.zip
[2011.01.18 18:32:18 | 003,439,104 | ---- | M] (Mouse Industries) -- C:\Documents and Settings\HP\My Documents\iRinger.exe
[5 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011.02.15 11:58:44 | 004,698,995 | ---- | C] () -- C:\Documents and Settings\HP\My Documents\GlovePIEWithEmotiv043.zip
[2011.02.15 11:58:44 | 000,226,616 | ---- | C] () -- C:\Documents and Settings\HP\My Documents\Neues Projekt.pr5
[2011.02.15 11:58:44 | 000,013,062 | ---- | C] () -- C:\Documents and Settings\HP\My Documents\test2.xml
[2011.02.15 11:58:44 | 000,003,814 | ---- | C] () -- C:\Documents and Settings\HP\My Documents\5-fach taster.xml
[2011.02.15 11:58:44 | 000,000,662 | ---- | C] () -- C:\Documents and Settings\HP\My Documents\13.xml
[2011.02.15 11:58:44 | 000,000,662 | ---- | C] () -- C:\Documents and Settings\HP\My Documents\1.xml
[2011.02.15 11:58:43 | 002,399,902 | ---- | C] () -- C:\Documents and Settings\HP\My Documents\GlovePIE030.zip
[2011.02.15 11:58:43 | 000,000,159 | ---- | C] () -- C:\Documents and Settings\HP\My Documents\adrsen zum panel.csv
[2011.02.15 11:58:07 | 000,229,235 | ---- | C] () -- C:\Documents and Settings\HP\My Documents\IMG_4296.JPG
[2011.02.15 11:58:07 | 000,204,314 | ---- | C] () -- C:\Documents and Settings\HP\My Documents\IMG_4295.JPG
[2011.02.15 11:58:06 | 000,006,678 | ---- | C] () -- C:\Documents and Settings\HP\My Documents\li unten.xml
[2011.02.15 11:58:06 | 000,000,662 | ---- | C] () -- C:\Documents and Settings\HP\My Documents\33.xml
[2011.02.15 11:58:06 | 000,000,662 | ---- | C] () -- C:\Documents and Settings\HP\My Documents\2.xml
[2011.02.15 11:58:06 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\HP\My Documents\re.xml
[2011.02.12 23:39:21 | 000,000,279 | ---- | C] () -- C:\WINDOWS\{D9C15833-DBC0-418C-B27E-921E2534F834}_WiseFW.ini
[2011.02.08 08:59:08 | 000,000,256 | ---- | C] () -- C:\WINDOWS\tasks\WebReg .job
[2011.02.02 20:31:14 | 000,000,701 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\BTTray.lnk
[2011.01.31 20:37:12 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\HP\Application Data\JFritz.lock
[2011.01.22 18:57:59 | 000,926,723 | ---- | C] () -- C:\Documents and Settings\HP\My Documents\document_2514.zip
[2011.01.19 19:50:43 | 000,523,376 | ---- | C] () -- C:\Documents and Settings\HP\My Documents\BJE_V20.zip
[2011.01.13 09:56:16 | 000,006,852 | ---- | C] () -- C:\WINDOWS\System32\drivers\Vcs.sys
[2010.12.20 12:38:13 | 019,985,265 | ---- | C] () -- C:\Program Files\vlc-1.1.5-win32.exe
[2010.12.10 20:18:50 | 000,000,354 | ---- | C] () -- C:\WINDOWS\hpbvspst.ini
[2010.12.10 19:08:17 | 000,000,132 | ---- | C] () -- C:\WINDOWS\System32\AddPort.ini
[2010.12.10 19:04:55 | 000,000,817 | ---- | C] () -- C:\WINDOWS\hpntwksetup.ini
[2010.12.10 18:59:35 | 000,002,075 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\hpzinstall.log
[2010.11.24 10:53:19 | 000,026,624 | ---- | C] () -- C:\WINDOWS\System32\wifemand.dll
[2010.11.12 20:04:33 | 000,000,347 | ---- | C] () -- C:\WINDOWS\_1bluHomepageBuilder.INI
[2010.06.11 20:57:33 | 000,007,543 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2010.06.11 20:54:29 | 000,000,383 | ---- | C] () -- C:\WINDOWS\System32\haspdos.sys
[2010.04.24 09:28:57 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\HP\Local Settings\Application Data\FnF4.txt
[2010.04.15 20:37:22 | 000,003,654 | ---- | C] () -- C:\WINDOWS\System32\drivers\Sonyhcp.dll
[2010.02.15 15:12:26 | 000,078,336 | ---- | C] () -- C:\Documents and Settings\HP\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.01.23 22:02:27 | 000,102,912 | ---- | C] () -- C:\WINDOWS\System32\swscale-0.7.2.dll
[2010.01.23 22:02:27 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\avutil-50.7.0.dll
[2010.01.23 22:02:26 | 000,877,056 | ---- | C] () -- C:\WINDOWS\System32\avcodec-52.45.0.dll
[2010.01.23 22:02:26 | 000,176,128 | ---- | C] () -- C:\WINDOWS\System32\AVC_AP_H264.dll
[2010.01.23 22:02:26 | 000,077,312 | ---- | C] () -- C:\WINDOWS\System32\avformat-52.46.0.dll
[2010.01.23 22:02:26 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\AVC_AP_JPEG.dll
[2010.01.23 22:02:26 | 000,005,632 | ---- | C] () -- C:\WINDOWS\System32\AVC_AP_SCALE.dll
[2010.01.23 22:02:26 | 000,004,608 | ---- | C] () -- C:\WINDOWS\System32\avdevice-52.2.0.dll
[2010.01.23 22:02:23 | 000,877,568 | ---- | C] () -- C:\WINDOWS\System32\avcodec-52.dll
[2010.01.23 22:02:23 | 000,323,584 | ---- | C] () -- C:\WINDOWS\System32\Deinterlace.dll
[2010.01.23 22:02:23 | 000,120,320 | ---- | C] () -- C:\WINDOWS\System32\swscale-0.dll
[2010.01.23 22:02:23 | 000,075,776 | ---- | C] () -- C:\WINDOWS\System32\avformat-52.dll
[2010.01.23 22:02:23 | 000,046,592 | ---- | C] () -- C:\WINDOWS\System32\avutil-50.dll
[2010.01.23 22:02:23 | 000,004,608 | ---- | C] () -- C:\WINDOWS\System32\avdevice-52.dll
[2010.01.23 22:02:17 | 000,176,128 | ---- | C] () -- C:\WINDOWS\System32\AVC_H264.dll
[2010.01.23 22:02:17 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\AVC_JPEG.dll
[2010.01.01 02:49:01 | 000,000,479 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI
[2010.01.01 02:49:01 | 000,000,027 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI
[2009.10.15 17:44:37 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\HP\Local Settings\Application Data\QSwitch.txt
[2009.10.15 17:44:37 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\HP\Local Settings\Application Data\DSwitch.txt
[2009.10.15 17:44:37 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\HP\Local Settings\Application Data\AtStart.txt
[2009.10.15 17:35:21 | 000,172,032 | ---- | C] () -- C:\WINDOWS\System32\tifmicon.dll
[2009.10.15 17:21:16 | 000,000,125 | ---- | C] () -- C:\Documents and Settings\HP\Local Settings\Application Data\fusioncache.dat
[2009.10.15 10:01:17 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2008.04.02 17:05:04 | 000,163,840 | ---- | C] () -- C:\WINDOWS\System32\AVC718Viewer.dll
[2005.12.21 16:57:36 | 000,139,264 | ---- | C] () -- C:\WINDOWS\System32\nsldap32v50.dll
[2005.12.21 16:57:04 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\nsldappr32v50.dll
[2005.12.21 16:54:34 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\nsldapssl32v50.dll
[2005.08.16 11:45:36 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\btprn2k.dll
[2004.02.27 16:36:18 | 000,015,498 | ---- | C] () -- C:\WINDOWS\snpstd3.ini
[2001.11.14 13:56:00 | 001,802,240 | ---- | C] () -- C:\WINDOWS\System32\lcppn21.dll
[2001.07.07 04:00:00 | 000,003,254 | ---- | C] () -- C:\WINDOWS\System32\HPTCPMON.INI
========== LOP Check ==========
[2011.01.24 13:04:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG10
[2011.01.02 18:36:27 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2009.12.05 19:11:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DriverCure
[2010.06.11 20:54:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Elka Shared
[2009.10.15 17:36:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Infineon
[2009.10.15 08:55:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Macrium
[2011.01.02 18:34:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2009.12.05 19:07:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ParetoLogic
[2010.04.16 13:31:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Pinnacle
[2011.02.06 15:44:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2010.12.15 20:58:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TuneUp Software
[2010.12.15 20:48:25 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Application Data\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
[2010.12.17 22:21:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 88 bytes -> C:\Show Desktop.scf:SummaryInformation
@Alternate Data Stream - 124 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:0B4227B4
< End of report > --- --- --- |