Enje - Ñ | 07.03.2011 13:36 | OTL Logfile: Code:
OTL logfile created on: 07.03.2011 13:31:51 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Dokumente und Einstellungen\Agathe\Eigene Dateien\Downloads
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
1.022,00 Mb Total Physical Memory | 422,00 Mb Available Physical Memory | 41,00% Memory free
2,00 Gb Paging File | 2,00 Gb Available in Paging File | 76,00% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programme
Drive C: | 39,06 Gb Total Space | 6,49 Gb Free Space | 16,62% Space Free | Partition Type: NTFS
Drive E: | 12,06 Gb Total Space | 2,40 Gb Free Space | 19,91% Space Free | Partition Type: NTFS
Drive F: | 45,20 Gb Total Space | 8,58 Gb Free Space | 18,98% Space Free | Partition Type: NTFS
Drive H: | 7,31 Gb Total Space | 5,36 Gb Free Space | 73,37% Space Free | Partition Type: FAT32
Computer Name: USER-D64505615D | User Name: Agathe | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Dokumente und Einstellungen\Agathe\Eigene Dateien\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\Microsoft\conhost.exe ()
PRC - C:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe (Check Point Software Technologies LTD)
PRC - C:\Programme\Zone Labs\ZoneAlarm\zlclient.exe (Check Point Software Technologies LTD)
PRC - C:\Programme\CheckPoint\ZAForceField\ISWSVC.exe (Check Point Software Technologies)
PRC - C:\Programme\CheckPoint\ZAForceField\ForceField.exe (Check Point Software Technologies)
PRC - C:\Programme\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
PRC - C:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
PRC - C:\Programme\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
PRC - C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\Programme\OpenOffice.org 3\program\soffice.bin (OpenOffice.org)
PRC - C:\Programme\OpenOffice.org 3\program\soffice.exe (OpenOffice.org)
PRC - C:\Programme\Avira\AntiVir Desktop\avshadow.exe (Avira GmbH)
PRC - C:\Programme\Mindjet\MindManager 8\MmReminderService.exe (Mindjet)
PRC - C:\Programme\Gemeinsame Dateien\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
PRC - C:\Programme\Gemeinsame Dateien\Protexis\License Service\PsiService_2.exe (Protexis Inc.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\WINDOWS\msagent\agentsvr.exe (Microsoft Corporation)
PRC - C:\WINDOWS\system32\HPZipm12.exe (HP)
PRC - C:\Programme\Adobe\Reader 8.0\Reader\AcroRd32.exe (Adobe Systems Incorporated)
PRC - C:\Programme\ahead\InCD\InCD.exe (Nero AG)
PRC - C:\WINDOWS\ATKKBService.exe (ASUSTeK COMPUTER INC.)
PRC - C:\Programme\ahead\InCD\InCDsrv.exe (Nero AG)
PRC - C:\Programme\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe (Tracker Software Products Ltd.)
PRC - C:\Programme\Microsoft Office\Office\WINWORD.EXE (Microsoft Corporation)
========== Modules (SafeList) ==========
MOD - C:\Dokumente und Einstellungen\Agathe\Eigene Dateien\Downloads\OTL.exe (OldTimer Tools)
MOD - C:\Programme\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll (Check Point Software Technologies)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll (Microsoft Corporation)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcr80.dll (Microsoft Corporation)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcp80.dll (Microsoft Corporation)
MOD - C:\Programme\Mindjet\MindManager 8\msscript.ocx (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (HidServ) -- File not found
SRV - (AppMgmt) -- File not found
SRV - (vsmon) -- C:\WINDOWS\System32\ZoneLabs\vsmon.exe (Check Point Software Technologies LTD)
SRV - (IswSvc) -- C:\Programme\CheckPoint\ZAForceField\IswSvc.exe (Check Point Software Technologies)
SRV - (AntiVirService) -- C:\Programme\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
SRV - (AntiVirSchedulerService) -- C:\Programme\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
SRV - (Apple Mobile Device) -- C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (Nero BackItUp Scheduler 4.0) -- C:\Programme\Gemeinsame Dateien\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
SRV - (PSI_SVC_2) -- C:\Programme\Gemeinsame Dateien\Protexis\License Service\PsiService_2.exe (Protexis Inc.)
SRV - (Pml Driver HPZ12) -- C:\WINDOWS\system32\HPZipm12.exe (HP)
SRV - (ATKKeyboardService) -- C:\WINDOWS\ATKKBService.exe (ASUSTeK COMPUTER INC.)
SRV - (InCDsrv) -- C:\Programme\ahead\InCD\InCDsrv.exe (Nero AG)
SRV - (IDriverT) -- C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe (Macrovision Corporation)
========== Driver Services (SafeList) ==========
DRV - (ISWKL) -- C:\Programme\CheckPoint\ZAForceField\ISWKL.sys (Check Point Software Technologies)
DRV - (avipbb) -- C:\WINDOWS\system32\drivers\avipbb.sys (Avira GmbH)
DRV - (avgntflt) -- C:\WINDOWS\system32\drivers\avgntflt.sys (Avira GmbH)
DRV - (vsdatant) -- C:\WINDOWS\system32\vsdatant.sys (Check Point Software Technologies LTD)
DRV - (ssmdrv) -- C:\WINDOWS\system32\drivers\ssmdrv.sys (Avira GmbH)
DRV - (avgio) -- C:\Programme\Avira\AntiVir Desktop\avgio.sys (Avira GmbH)
DRV - (nm) -- C:\WINDOWS\system32\drivers\nmnt.sys (Microsoft Corporation)
DRV - (MIINPazX) -- C:\Programme\Gemeinsame Dateien\Marmiko Shared\MInfraIS\MIINPazx.sys (Deutsche Telekom AG, Marmiko IT-Solutions GmbH)
DRV - (incdrm) -- C:\WINDOWS\System32\drivers\InCDrm.sys (Nero AG)
DRV - (ALCXWDM) Service for Realtek AC97 Audio (WDM) -- C:\WINDOWS\system32\drivers\alcxwdm.sys (Realtek Semiconductor Corp.)
DRV - (AmdK8) -- C:\WINDOWS\system32\drivers\AmdK8.sys (Advanced Micro Devices)
DRV - (VNUSB) -- C:\WINDOWS\system32\drivers\VNUSB.sys (OLYMPUS IMAGING CORP.)
DRV - (EIO) -- C:\WINDOWS\system32\drivers\EIO.sys (ASUSTeK Computer Inc.)
DRV - (asuskbnt) -- C:\WINDOWS\system32\drivers\atkkbnt.sys (ASUSTeK COMPUTER INC.)
DRV - (nvnetbus) -- C:\WINDOWS\system32\drivers\nvnetbus.sys (NVIDIA Corporation)
DRV - (NVENETFD) -- C:\WINDOWS\system32\drivers\NVENETFD.sys (NVIDIA Corporation)
DRV - (nvata) -- C:\WINDOWS\system32\DRIVERS\nvata.sys (NVIDIA Corporation)
DRV - (InCDfs) -- C:\WINDOWS\System32\drivers\InCDfs.sys (Nero AG)
DRV - (InCDPass) -- C:\WINDOWS\system32\drivers\InCDpass.sys (Nero AG)
DRV - (MTsensor) -- C:\WINDOWS\system32\drivers\ASACPI.sys ()
DRV - (rtl8139) NT-Treiber für Realtek RTL8139(A/B/C) -- C:\WINDOWS\system32\drivers\RTL8139.sys (Realtek Semiconductor Corporation)
DRV - (TDSLAdapter) T-DSL-Adapter (T-Online) -- C:\WINDOWS\system32\drivers\TDSLAdap.sys (T-Online International AG)
DRV - (TDSLProtocol) T-DSL-Protocol (T-Online) -- C:\WINDOWS\system32\drivers\TDSLProt.sys (T-Online International AG)
DRV - (PCANDIS5) -- C:\Programme\T-Online\T-DSL Treiber\Pcandis5.sys (Printing Communications Assoc., Inc. (PCAUSA))
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-73586283-573735546-725345543-1004\..\URLSearchHook: {fc2b76fc-2132-4d80-a9a3-1f5c6e49066b} - C:\Programme\ZoneAlarm-Sicherheit\tbZone.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-73586283-573735546-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\S-1-5-21-73586283-573735546-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:61495
IE - HKU\S-1-5-21-73586283-573735546-725345543-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.ecosia.de/
IE - HKU\S-1-5-21-73586283-573735546-725345543-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-73586283-573735546-725345543-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
IE - HKU\S-1-5-21-73586283-573735546-725345543-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 38 25 93 1C 13 36 CB 01 [binary data]
IE - HKU\S-1-5-21-73586283-573735546-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\S-1-5-21-73586283-573735546-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:51798
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "hxxp://de.start3.mozilla.com/firefox?client=firefox-a&rls=org.mozilla:de:official"
FF - prefs.js..extensions.enabledItems: en-GB@dictionaries.addons.mozilla.org:1.19.1
FF - prefs.js..extensions.enabledItems: de-DE@dictionaries.addons.mozilla.org:2.0.2
FF - prefs.js..extensions.enabledItems: es-es@dictionaries.addons.mozilla.org:1.3.1
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: pl@dictionaries.addons.mozilla.org:1.0.20110211
FF - prefs.js..extensions.enabledItems: en-US@dictionaries.addons.mozilla.org:5.0.1
FF - prefs.js..extensions.enabledItems: {FFB96CC1-7EB3-449D-B827-DB661701C6BB}:1.5.265.2
FF - prefs.js..network.proxy.http: "127.0.0.1"
FF - prefs.js..network.proxy.http_port: 51798
FF - prefs.js..network.proxy.type: 1
FF - HKLM\software\mozilla\Firefox\extensions\\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}: C:\Programme\CheckPoint\ZAForceField\TrustChecker [2011.03.05 08:19:38 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.15\extensions\\Components: C:\Programme\Mozilla Firefox\components [2011.03.05 09:01:37 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.15\extensions\\Plugins: C:\Programme\Mozilla Firefox\plugins [2011.03.05 07:39:08 | 000,000,000 | ---D | M]
[2008.08.31 12:50:11 | 000,000,000 | ---D | M] (No name found) -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\Mozilla\Extensions
[2011.03.07 12:16:25 | 000,000,000 | ---D | M] (No name found) -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\Mozilla\Firefox\Profiles\1ff3r8vl.default\extensions
[2010.04.27 16:58:19 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\Mozilla\Firefox\Profiles\1ff3r8vl.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011.02.12 10:19:35 | 000,000,000 | ---D | M] (German Dictionary) -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\Mozilla\Firefox\Profiles\1ff3r8vl.default\extensions\de-DE@dictionaries.addons.mozilla.org
[2011.02.12 10:19:34 | 000,000,000 | ---D | M] (British English Dictionary) -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\Mozilla\Firefox\Profiles\1ff3r8vl.default\extensions\en-GB@dictionaries.addons.mozilla.org
[2011.02.12 10:19:37 | 000,000,000 | ---D | M] (United States English Spellchecker) -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\Mozilla\Firefox\Profiles\1ff3r8vl.default\extensions\en-US@dictionaries.addons.mozilla.org
[2011.02.12 10:19:35 | 000,000,000 | ---D | M] (Diccionario de Español/España) -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\Mozilla\Firefox\Profiles\1ff3r8vl.default\extensions\es-es@dictionaries.addons.mozilla.org
[2010.02.13 12:35:11 | 000,000,000 | ---D | M] (Dictionnaire français «Classique») -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\Mozilla\Firefox\Profiles\1ff3r8vl.default\extensions\fr-FR@dictionaries.addons.mozilla.org
[2011.02.12 10:19:36 | 000,000,000 | ---D | M] (Polski slownik poprawnej pisowni) -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\Mozilla\Firefox\Profiles\1ff3r8vl.default\extensions\pl@dictionaries.addons.mozilla.org
[2011.03.07 12:16:25 | 000,000,000 | ---D | M] (No name found) -- C:\Programme\Mozilla Firefox\extensions
[2011.03.05 08:19:38 | 000,000,000 | ---D | M] (ZoneAlarm Security Engine) -- C:\PROGRAMME\CHECKPOINT\ZAFORCEFIELD\TRUSTCHECKER
[2009.01.09 01:06:02 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAMME\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2010.09.14 21:21:36 | 000,001,392 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\amazondotcom-de.xml
[2010.09.14 21:21:36 | 000,002,344 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\eBay-de.xml
[2010.09.14 21:21:36 | 000,006,805 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\leo_ende_de.xml
[2010.09.14 21:21:36 | 000,001,178 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\wikipedia-de.xml
[2010.09.14 21:21:36 | 000,001,105 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\yahoo-de.xml
O1 HOSTS File: ([2006.02.28 13:00:00 | 000,000,820 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (CmjBrowserHelperObject Object) - {6FE6A929-59D1-4763-91AD-29B61CFFB35B} - C:\Programme\Mindjet\MindManager 8\Mm8InternetExplorer.dll (Mindjet)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (ZoneAlarm Security Engine Registrar) - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Programme\CheckPoint\ZAForceField\Trustchecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
O2 - BHO: (ZoneAlarm-Sicherheit Toolbar) - {fc2b76fc-2132-4d80-a9a3-1f5c6e49066b} - C:\Programme\ZoneAlarm-Sicherheit\tbZone.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (ZoneAlarm Security Engine) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Programme\CheckPoint\ZAForceField\Trustchecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
O3 - HKLM\..\Toolbar: (ZoneAlarm-Sicherheit Toolbar) - {fc2b76fc-2132-4d80-a9a3-1f5c6e49066b} - C:\Programme\ZoneAlarm-Sicherheit\tbZone.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-73586283-573735546-725345543-1004\..\Toolbar\WebBrowser: (ZoneAlarm Security Engine) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Programme\CheckPoint\ZAForceField\Trustchecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
O3 - HKU\S-1-5-21-73586283-573735546-725345543-1004\..\Toolbar\WebBrowser: (ZoneAlarm-Sicherheit Toolbar) - {FC2B76FC-2132-4D80-A9A3-1F5C6E49066B} - C:\Programme\ZoneAlarm-Sicherheit\tbZone.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-73586283-573735546-725345543-1005\..\Toolbar\WebBrowser: (ZoneAlarm Security Engine) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Programme\CheckPoint\ZAForceField\Trustchecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
O4 - HKLM..\Run: [Adobe Photo Downloader] C:\Programme\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AppleSyncNotifier] C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleSyncNotifier.exe (Apple Inc.)
O4 - HKLM..\Run: [avgnt] C:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [conhost] C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\Microsoft\conhost.exe ()
O4 - HKLM..\Run: [ControlCenter3] C:\Programme\Brother\ControlCenter3\brctrcen.exe (Brother Industries, Ltd.)
O4 - HKLM..\Run: [InCD] C:\Programme\ahead\InCD\InCD.exe (Nero AG)
O4 - HKLM..\Run: [ISW] C:\Programme\CheckPoint\ZAForceField\ForceField.exe (Check Point Software Technologies)
O4 - HKLM..\Run: [LGODDFU] C:\Programme\lg_fwupdate\fwupdate.exe (BitLeader)
O4 - HKLM..\Run: [MMReminderService] C:\Programme\Mindjet\MindManager 8\MmReminderService.exe (Mindjet)
O4 - HKLM..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [SSBkgdUpdate] C:\Programme\Gemeinsame Dateien\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [TkBellExe] C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [ZoneAlarm Client] C:\Programme\Zone Labs\ZoneAlarm\zlclient.exe (Check Point Software Technologies LTD)
O4 - HKU\S-1-5-21-73586283-573735546-725345543-1004..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] File not found
O4 - HKU\S-1-5-21-73586283-573735546-725345543-1005..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] File not found
O4 - HKU\S-1-5-21-73586283-573735546-725345543-1005..\Run: [pdfSaver3] C:\Programme\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe (Tracker Software Products Ltd.)
O4 - Startup: C:\Dokumente und Einstellungen\Agathe\Startmenü\Programme\Autostart\OpenOffice.org 3.2.lnk = C:\Programme\OpenOffice.org 3\program\quickstart.exe ()
O4 - Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Microsoft Office.lnk = C:\Programme\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation)
O4 - Startup: C:\Dokumente und Einstellungen\user\Startmenü\Programme\Autostart\iFinger.lnk = C:\Programme\iFinger\iFinger.exe (IFINGER LTD)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-73586283-573735546-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-73586283-573735546-725345543-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: An Mindjet MindManager senden - {2F72393D-2472-4F82-B600-ED77F354B7FF} - C:\Programme\Mindjet\MindManager 8\Mm8InternetExplorer.dll (Mindjet)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Programme\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab (Java Plug-in 1.6.0_11)
O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab (Java Plug-in 1.6.0_02)
O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab (Java Plug-in 1.6.0_03)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Java Plug-in 1.6.0_05)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab (Java Plug-in 1.6.0_11)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab (Java Plug-in 1.6.0_11)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Die derzeitige Homepage) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Grüne Idylle.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Grüne Idylle.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2007.05.30 18:05:42 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2003.09.12 23:21:43 | 000,000,000 | ---- | M] () - E:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{f4c0302c-37ce-11de-94a4-0018f37fbf59}\Shell\verb1\command - "" = desktop.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011.03.07 12:46:43 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\Avira
[2011.03.07 09:47:10 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Agathe\Lokale Einstellungen\Anwendungsdaten\Conduit
[2011.03.07 09:47:07 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Agathe\Lokale Einstellungen\Anwendungsdaten\ZoneAlarm-Sicherheit
[2011.03.05 07:59:57 | 000,000,000 | ---D | C] -- C:\Programme\Conduit
[2011.03.05 07:59:56 | 000,000,000 | ---D | C] -- C:\Programme\ZoneAlarm-Sicherheit
[2011.03.05 07:59:41 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\ZoneAlarm
[2011.02.28 20:28:38 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\OpenOffice.org
[2008.05.30 13:37:10 | 001,694,728 | ---- | C] (Microsoft Corporation) -- C:\Programme\dsetup32.dll
[2008.05.30 13:35:56 | 000,097,288 | ---- | C] (Microsoft Corporation) -- C:\Programme\DSETUP.dll
[2008.05.30 13:34:50 | 000,528,392 | ---- | C] (Microsoft Corporation) -- C:\Programme\DXSETUP.exe
[6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[3 C:\Dokumente und Einstellungen\Agathe\Desktop\*.tmp files -> C:\Dokumente und Einstellungen\Agathe\Desktop\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011.03.07 12:33:56 | 000,006,103 | ---- | M] () -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\29A6.226
[2011.03.07 12:06:12 | 000,000,386 | ---- | M] () -- C:\WINDOWS\lgfwup.ini
[2011.03.07 12:06:02 | 000,045,378 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2011.03.07 12:06:00 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011.03.07 10:58:54 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011.03.05 08:00:34 | 000,427,420 | ---- | M] () -- C:\WINDOWS\System32\vsconfig.xml
[2011.03.05 07:59:41 | 000,004,212 | -H-- | M] () -- C:\WINDOWS\System32\zllictbl.dat
[2011.02.28 20:29:54 | 000,000,836 | ---- | M] () -- C:\Dokumente und Einstellungen\Agathe\Startmenü\Programme\Autostart\OpenOffice.org 3.2.lnk
[2011.02.21 17:35:40 | 000,002,521 | ---- | M] () -- C:\Dokumente und Einstellungen\Agathe\Desktop\Microsoft PowerPoint.lnk
[2011.02.18 17:28:58 | 000,046,592 | ---- | M] (Zone Labs Inc.) -- C:\WINDOWS\System32\vsutil_loc0407.dll
[2011.02.18 17:28:28 | 001,238,528 | ---- | M] (Check Point Software Technologies LTD) -- C:\WINDOWS\System32\zpeng25.dll
[2011.02.18 17:28:24 | 000,110,080 | ---- | M] (Check Point Software Technologies LTD) -- C:\WINDOWS\System32\vsxml.dll
[2011.02.18 17:28:24 | 000,104,448 | ---- | M] (Check Point Software Technologies LTD) -- C:\WINDOWS\System32\zlcommdb.dll
[2011.02.18 17:28:24 | 000,069,120 | ---- | M] (Check Point Software Technologies LTD) -- C:\WINDOWS\System32\zlcomm.dll
[2011.02.18 17:28:24 | 000,043,008 | ---- | M] (Check Point Software Technologies LTD) -- C:\WINDOWS\System32\vswmi.dll
[2011.02.18 17:28:22 | 000,715,264 | ---- | M] (Check Point Software Technologies LTD) -- C:\WINDOWS\System32\vsutil.dll
[2011.02.18 17:28:22 | 000,302,592 | ---- | M] (Check Point Software Technologies LTD) -- C:\WINDOWS\System32\vspubapi.dll
[2011.02.18 17:28:22 | 000,228,864 | ---- | M] (Check Point Software Technologies LTD) -- C:\WINDOWS\System32\vsinit.dll
[2011.02.18 17:28:22 | 000,112,128 | ---- | M] (Check Point Software Technologies LTD) -- C:\WINDOWS\System32\vsdata.dll
[2011.02.18 17:28:22 | 000,108,032 | ---- | M] (Check Point Software Technologies LTD) -- C:\WINDOWS\System32\vsmonapi.dll
[2011.02.18 17:28:22 | 000,058,368 | ---- | M] (Check Point Software Technologies LTD) -- C:\WINDOWS\System32\vsregexp.dll
[2011.02.09 17:49:36 | 000,157,952 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011.02.09 08:10:49 | 000,001,355 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[3 C:\Dokumente und Einstellungen\Agathe\Desktop\*.tmp files -> C:\Dokumente und Einstellungen\Agathe\Desktop\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011.03.07 09:50:27 | 000,006,103 | ---- | C] () -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\29A6.226
[2011.02.28 20:29:54 | 000,000,836 | ---- | C] () -- C:\Dokumente und Einstellungen\Agathe\Startmenü\Programme\Autostart\OpenOffice.org 3.2.lnk
[2011.02.02 18:09:06 | 000,005,632 | ---- | C] () -- C:\Dokumente und Einstellungen\Agathe\Lokale Einstellungen\Anwendungsdaten\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.01.09 12:48:54 | 000,000,425 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI
[2011.01.09 12:47:35 | 000,000,050 | ---- | C] () -- C:\WINDOWS\System32\bridf08b.dat
[2011.01.09 12:42:29 | 000,031,864 | ---- | C] () -- C:\WINDOWS\maxlink.ini
[2010.12.10 17:46:14 | 000,000,084 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
[2010.07.27 23:11:53 | 000,026,380 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2009.08.27 23:13:55 | 000,001,903 | ---- | C] () -- C:\WINDOWS\TLMSTUDENT.INI
[2009.08.27 23:13:54 | 000,000,826 | ---- | C] () -- C:\WINDOWS\SSCE.INI
[2009.08.27 23:13:44 | 000,001,056 | -HS- | C] () -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\KGyGaAvL.sys
[2009.08.27 23:13:44 | 000,000,088 | RHS- | C] () -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\E4729D9A8B.sys
[2009.01.23 17:51:10 | 000,000,386 | ---- | C] () -- C:\WINDOWS\lgfwup.ini
[2009.01.23 17:38:01 | 000,040,960 | ---- | C] () -- C:\Programme\Uninstall_CDS.exe
[2009.01.20 23:16:23 | 000,000,014 | ---- | C] () -- C:\WINDOWS\System32\systeminfo3.dll
[2008.09.28 14:53:34 | 000,116,224 | ---- | C] () -- C:\WINDOWS\System32\pdfcmnnt.dll
[2008.08.06 21:26:18 | 000,284,160 | ---- | C] () -- C:\WINDOWS\unin0407.exe
[2008.05.30 13:38:30 | 001,158,739 | ---- | C] () -- C:\Programme\BDANT.cab
[2008.05.30 13:38:30 | 001,130,465 | ---- | C] () -- C:\Programme\OCT2006_d3dx9_31_x86.cab
[2008.05.30 13:38:30 | 001,118,469 | ---- | C] () -- C:\Programme\Apr2006_d3dx9_30_x86.cab
[2008.05.30 13:38:30 | 001,087,968 | ---- | C] () -- C:\Programme\Feb2006_d3dx9_29_x86.cab
[2008.05.30 13:38:30 | 001,082,704 | ---- | C] () -- C:\Programme\Dec2005_d3dx9_28_x86.cab
[2008.05.30 13:38:30 | 001,082,210 | ---- | C] () -- C:\Programme\Apr2005_d3dx9_25_x86.cab
[2008.05.30 13:38:28 | 001,080,892 | ---- | C] () -- C:\Programme\Aug2005_d3dx9_27_x86.cab
[2008.05.30 13:38:26 | 001,068,173 | ---- | C] () -- C:\Programme\Jun2005_d3dx9_26_x86.cab
[2008.05.30 13:38:26 | 001,016,473 | ---- | C] () -- C:\Programme\Feb2005_d3dx9_24_x86.cab
[2008.05.30 13:38:26 | 000,978,396 | ---- | C] () -- C:\Programme\BDAXP.cab
[2008.05.30 13:38:26 | 000,919,678 | ---- | C] () -- C:\Programme\Apr2006_MDX1_x86.cab
[2008.05.30 13:38:26 | 000,867,848 | ---- | C] () -- C:\Programme\Nov2007_d3dx10_36_x64.cab
[2008.05.30 13:38:26 | 000,855,534 | ---- | C] () -- C:\Programme\AUG2007_d3dx10_35_x64.cab
[2008.05.30 13:38:24 | 000,871,076 | ---- | C] () -- C:\Programme\Jun2008_d3dx10_38_x64.cab
[2008.05.30 13:38:24 | 000,853,167 | ---- | C] () -- C:\Programme\Jun2008_d3dx10_38_x86.cab
[2008.05.30 13:38:24 | 000,848,132 | ---- | C] () -- C:\Programme\Mar2008_d3dx10_37_x64.cab
[2008.05.30 13:38:24 | 000,807,132 | ---- | C] () -- C:\Programme\Nov2007_d3dx10_36_x86.cab
[2008.05.30 13:38:24 | 000,702,292 | ---- | C] () -- C:\Programme\JUN2007_d3dx10_34_x64.cab
[2008.05.30 13:38:22 | 000,821,508 | ---- | C] () -- C:\Programme\Mar2008_d3dx10_37_x86.cab
[2008.05.30 13:38:22 | 000,800,115 | ---- | C] () -- C:\Programme\AUG2007_d3dx10_35_x86.cab
[2008.05.30 13:38:22 | 000,701,860 | ---- | C] () -- C:\Programme\APR2007_d3dx10_33_x64.cab
[2008.05.30 13:38:20 | 000,701,720 | ---- | C] () -- C:\Programme\JUN2007_d3dx10_34_x86.cab
[2008.05.30 13:38:18 | 000,272,876 | ---- | C] () -- C:\Programme\Jun2008_XAudio_x64.cab
[2008.05.30 13:38:16 | 000,699,113 | ---- | C] () -- C:\Programme\APR2007_d3dx10_33_x86.cab
[2008.05.30 13:38:16 | 000,254,442 | ---- | C] () -- C:\Programme\Mar2008_XAudio_x64.cab
[2008.05.30 13:38:14 | 000,272,272 | ---- | C] () -- C:\Programme\Jun2008_XAudio_x86.cab
[2008.05.30 13:38:14 | 000,229,498 | ---- | C] () -- C:\Programme\Mar2008_XAudio_x86.cab
[2008.05.30 13:38:14 | 000,216,055 | ---- | C] () -- C:\Programme\DEC2006_d3dx10_00_x64.cab
[2008.05.30 13:38:12 | 000,201,344 | ---- | C] () -- C:\Programme\AUG2007_XACT_x64.cab
[2008.05.30 13:38:12 | 000,200,370 | ---- | C] () -- C:\Programme\JUN2007_XACT_x64.cab
[2008.05.30 13:38:12 | 000,200,010 | ---- | C] () -- C:\Programme\NOV2007_XACT_x64.cab
[2008.05.30 13:38:12 | 000,197,923 | ---- | C] () -- C:\Programme\FEB2007_XACT_x64.cab
[2008.05.30 13:38:10 | 000,186,151 | ---- | C] () -- C:\Programme\AUG2006_XACT_x64.cab
[2008.05.30 13:38:10 | 000,185,609 | ---- | C] () -- C:\Programme\OCT2006_XACT_x64.cab
[2008.05.30 13:38:08 | 000,199,014 | ---- | C] () -- C:\Programme\APR2007_XACT_x64.cab
[2008.05.30 13:38:08 | 000,194,968 | ---- | C] () -- C:\Programme\DEC2006_d3dx10_00_x86.cab
[2008.05.30 13:38:06 | 000,195,723 | ---- | C] () -- C:\Programme\DEC2006_XACT_x64.cab
[2008.05.30 13:38:06 | 000,184,033 | ---- | C] () -- C:\Programme\JUN2006_XACT_x64.cab
[2008.05.30 13:38:04 | 000,182,381 | ---- | C] () -- C:\Programme\Apr2006_XACT_x64.cab
[2008.05.30 13:38:04 | 000,181,607 | ---- | C] () -- C:\Programme\Feb2006_XACT_x64.cab
[2008.05.30 13:38:04 | 000,156,157 | ---- | C] () -- C:\Programme\JUN2007_XACT_x86.cab
[2008.05.30 13:38:04 | 000,151,512 | ---- | C] () -- C:\Programme\NOV2007_XACT_x86.cab
[2008.05.30 13:38:04 | 000,151,231 | ---- | C] () -- C:\Programme\FEB2007_XACT_x86.cab
[2008.05.30 13:38:02 | 000,156,260 | ---- | C] () -- C:\Programme\AUG2007_XACT_x86.cab
[2008.05.30 13:38:00 | 000,154,473 | ---- | C] () -- C:\Programme\APR2007_XACT_x86.cab
[2008.05.30 13:38:00 | 000,136,351 | ---- | C] () -- C:\Programme\Apr2006_XACT_x86.cab
[2008.05.30 13:37:58 | 000,148,847 | ---- | C] () -- C:\Programme\DEC2006_XACT_x86.cab
[2008.05.30 13:37:58 | 000,135,657 | ---- | C] () -- C:\Programme\Feb2006_XACT_x86.cab
[2008.05.30 13:37:56 | 000,141,265 | ---- | C] () -- C:\Programme\OCT2006_XACT_x86.cab
[2008.05.30 13:37:56 | 000,140,483 | ---- | C] () -- C:\Programme\AUG2006_XACT_x86.cab
[2008.05.30 13:37:56 | 000,136,919 | ---- | C] () -- C:\Programme\JUN2006_XACT_x86.cab
[2008.05.30 13:37:54 | 000,056,550 | ---- | C] () -- C:\Programme\APR2007_xinput_x86.cab
[2008.05.30 13:37:52 | 000,125,584 | ---- | C] () -- C:\Programme\Mar2008_XACT_x64.cab
[2008.05.30 13:37:52 | 000,124,302 | ---- | C] () -- C:\Programme\Jun2008_XACT_x64.cab
[2008.05.30 13:37:52 | 000,100,065 | ---- | C] () -- C:\Programme\APR2007_xinput_x64.cab
[2008.05.30 13:37:52 | 000,058,402 | ---- | C] () -- C:\Programme\Jun2008_X3DAudio_x64.cab
[2008.05.30 13:37:52 | 000,049,306 | ---- | C] () -- C:\Programme\AUG2006_xinput_x86.cab
[2008.05.30 13:37:50 | 000,058,306 | ---- | C] () -- C:\Programme\Mar2008_X3DAudio_x64.cab
[2008.05.30 13:37:50 | 000,025,153 | ---- | C] () -- C:\Programme\Jun2008_X3DAudio_x86.cab
[2008.05.30 13:37:48 | 000,097,916 | ---- | C] () -- C:\Programme\dxupdate.cab
[2008.05.30 13:37:48 | 000,049,258 | ---- | C] () -- C:\Programme\Apr2006_xinput_x86.cab
[2008.05.30 13:37:48 | 000,048,607 | ---- | C] () -- C:\Programme\Oct2005_xinput_x86.cab
[2008.05.30 13:37:46 | 000,090,390 | ---- | C] () -- C:\Programme\AUG2006_xinput_x64.cab
[2008.05.30 13:37:46 | 000,090,349 | ---- | C] () -- C:\Programme\Apr2006_xinput_x64.cab
[2008.05.30 13:37:46 | 000,047,700 | ---- | C] () -- C:\Programme\dxdllreg_x86.cab
[2008.05.30 13:37:44 | 000,049,392 | ---- | C] () -- C:\Programme\NOV2007_X3DAudio_x64.cab
[2008.05.30 13:37:42 | 000,096,982 | ---- | C] () -- C:\Programme\Mar2008_XACT_x86.cab
[2008.05.30 13:37:42 | 000,096,376 | ---- | C] () -- C:\Programme\Jun2008_XACT_x86.cab
[2008.05.30 13:37:42 | 000,089,285 | ---- | C] () -- C:\Programme\Oct2005_xinput_x64.cab
[2008.05.30 13:37:42 | 000,025,115 | ---- | C] () -- C:\Programme\Mar2008_X3DAudio_x86.cab
[2008.05.30 13:37:42 | 000,021,744 | ---- | C] () -- C:\Programme\NOV2007_X3DAudio_x86.cab
[2008.05.30 13:36:04 | 013,267,416 | ---- | C] () -- C:\Programme\dxnt.cab
[2008.05.30 13:36:02 | 004,165,878 | ---- | C] () -- C:\Programme\Apr2006_MDX1_x86_Archive.cab
[2008.05.30 13:36:02 | 001,805,306 | ---- | C] () -- C:\Programme\Nov2007_d3dx9_36_x64.cab
[2008.05.30 13:36:00 | 001,803,408 | ---- | C] () -- C:\Programme\AUG2007_d3dx9_35_x64.cab
[2008.05.30 13:35:56 | 001,795,856 | ---- | C] () -- C:\Programme\Jun2008_d3dx9_38_x64.cab
[2008.05.30 13:35:56 | 001,773,110 | ---- | C] () -- C:\Programme\Mar2008_d3dx9_37_x64.cab
[2008.05.30 13:35:56 | 001,712,608 | ---- | C] () -- C:\Programme\Nov2007_d3dx9_36_x86.cab
[2008.05.30 13:35:56 | 001,711,400 | ---- | C] () -- C:\Programme\AUG2007_d3dx9_35_x86.cab
[2008.05.30 13:35:56 | 001,611,022 | ---- | C] () -- C:\Programme\JUN2007_d3dx9_34_x64.cab
[2008.05.30 13:35:56 | 001,610,606 | ---- | C] () -- C:\Programme\APR2007_d3dx9_33_x64.cab
[2008.05.30 13:35:56 | 001,610,534 | ---- | C] () -- C:\Programme\JUN2007_d3dx9_34_x86.cab
[2008.05.30 13:35:56 | 001,609,287 | ---- | C] () -- C:\Programme\APR2007_d3dx9_33_x86.cab
[2008.05.30 13:35:56 | 001,577,624 | ---- | C] () -- C:\Programme\DEC2006_d3dx9_32_x86.cab
[2008.05.30 13:35:56 | 001,574,402 | ---- | C] () -- C:\Programme\DEC2006_d3dx9_32_x64.cab
[2008.05.30 13:35:56 | 001,467,126 | ---- | C] () -- C:\Programme\Jun2008_d3dx9_38_x86.cab
[2008.05.30 13:35:56 | 001,446,530 | ---- | C] () -- C:\Programme\Mar2008_d3dx9_37_x86.cab
[2008.05.30 13:35:56 | 001,416,150 | ---- | C] () -- C:\Programme\OCT2006_d3dx9_31_x64.cab
[2008.05.30 13:35:56 | 001,401,078 | ---- | C] () -- C:\Programme\Apr2006_d3dx9_30_x64.cab
[2008.05.30 13:35:56 | 001,361,224 | ---- | C] () -- C:\Programme\Dec2005_d3dx9_28_x64.cab
[2008.05.30 13:35:56 | 001,339,250 | ---- | C] () -- C:\Programme\Jun2005_d3dx9_26_x64.cab
[2008.05.30 13:35:54 | 001,366,044 | ---- | C] () -- C:\Programme\Feb2006_d3dx9_29_x64.cab
[2008.05.30 13:35:54 | 001,353,790 | ---- | C] () -- C:\Programme\Aug2005_d3dx9_27_x64.cab
[2008.05.30 13:35:54 | 001,350,602 | ---- | C] () -- C:\Programme\Apr2005_d3dx9_25_x64.cab
[2008.05.30 13:35:54 | 001,250,747 | ---- | C] () -- C:\Programme\Feb2005_d3dx9_24_x64.cab
[2008.04.11 16:11:34 | 000,004,757 | ---- | C] () -- C:\WINDOWS\Irremote.ini
[2007.12.20 12:09:04 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\OdiOlDVR.dll
[2007.12.20 12:09:04 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\OdiAPI.dll
[2007.11.04 13:03:10 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2007.06.20 09:18:10 | 000,000,073 | ---- | C] () -- C:\WINDOWS\MindManager.INI
[2007.06.10 14:30:14 | 000,000,139 | ---- | C] () -- C:\Dokumente und Einstellungen\Agathe\Lokale Einstellungen\Anwendungsdaten\fusioncache.dat
[2007.06.02 11:20:55 | 000,069,489 | ---- | C] () -- C:\WINDOWS\hpoins05.dat
[2007.06.02 11:20:55 | 000,019,696 | ---- | C] () -- C:\WINDOWS\hpomdl05.dat
[2007.05.31 17:52:08 | 000,001,971 | ---- | C] () -- C:\WINDOWS\mozver.dat
[2007.05.31 11:34:29 | 000,000,305 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\addr_file.html
[2007.05.30 18:55:23 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2007.05.30 18:54:13 | 000,157,952 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2007.05.30 18:35:34 | 000,000,403 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2007.05.30 18:27:01 | 000,010,496 | ---- | C] () -- C:\WINDOWS\System32\ATKOSDMini.DLL
[2007.05.30 18:27:01 | 000,000,018 | ---- | C] () -- C:\WINDOWS\System32\atkid.ini
[2007.05.30 18:27:00 | 000,046,592 | ---- | C] () -- C:\WINDOWS\System32\asfrench.dll
[2007.05.30 18:27:00 | 000,046,080 | ---- | C] () -- C:\WINDOWS\System32\asrussian.dll
[2007.05.30 18:27:00 | 000,046,080 | ---- | C] () -- C:\WINDOWS\System32\asgerman.dll
[2007.05.30 18:27:00 | 000,046,080 | ---- | C] () -- C:\WINDOWS\System32\aseng.dll
[2007.05.30 18:27:00 | 000,045,568 | ---- | C] () -- C:\WINDOWS\System32\askorean.dll
[2007.05.30 18:27:00 | 000,045,568 | ---- | C] () -- C:\WINDOWS\System32\asjapan.dll
[2007.05.30 18:27:00 | 000,045,568 | ---- | C] () -- C:\WINDOWS\System32\ASCHT.dll
[2007.05.30 18:27:00 | 000,045,568 | ---- | C] () -- C:\WINDOWS\System32\aschs.dll
[2007.05.30 18:23:12 | 000,020,709 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2007.05.30 18:17:53 | 000,040,960 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2007.05.30 18:17:33 | 000,143,360 | R--- | C] () -- C:\WINDOWS\System32\RtlCPAPI.dll
[2007.05.30 18:11:36 | 000,005,810 | R--- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys
[2007.05.30 18:11:25 | 000,005,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2007.05.30 18:07:36 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2007.05.30 18:03:15 | 000,021,740 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2007.05.30 16:25:00 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll
[2007.05.30 16:25:00 | 000,200,704 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll
[2007.05.30 16:25:00 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll
[2007.05.30 16:25:00 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll
[2007.05.30 16:25:00 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll
[2007.05.30 16:25:00 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll
[2007.05.30 16:24:44 | 000,831,600 | ---- | C] () -- C:\WINDOWS\System32\Ctaa1.dat
[2007.05.30 16:24:44 | 000,122,880 | ---- | C] () -- C:\WINDOWS\System32\cddvdint.dll
[2007.05.30 16:01:39 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2007.05.30 15:44:19 | 000,004,212 | -H-- | C] () -- C:\WINDOWS\System32\zllictbl.dat
[2006.02.28 13:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2006.02.28 13:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2006.02.28 13:00:00 | 000,458,822 | ---- | C] () -- C:\WINDOWS\System32\perfh007.dat
[2006.02.28 13:00:00 | 000,441,124 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2006.02.28 13:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2006.02.28 13:00:00 | 000,269,480 | ---- | C] () -- C:\WINDOWS\System32\perfi007.dat
[2006.02.28 13:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2006.02.28 13:00:00 | 000,084,326 | ---- | C] () -- C:\WINDOWS\System32\perfc007.dat
[2006.02.28 13:00:00 | 000,071,060 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2006.02.28 13:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2006.02.28 13:00:00 | 000,034,478 | ---- | C] () -- C:\WINDOWS\System32\perfd007.dat
[2006.02.28 13:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2006.02.28 13:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2006.02.28 13:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2006.02.28 13:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2006.02.28 13:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2006.02.13 14:05:00 | 001,662,976 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2006.02.13 14:05:00 | 001,519,616 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe
[2006.02.13 14:05:00 | 001,466,368 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2006.02.13 14:05:00 | 001,339,392 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe
[2006.02.13 14:05:00 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2006.02.13 14:05:00 | 000,573,440 | ---- | C] () -- C:\WINDOWS\System32\nvhwvid.dll
[2006.02.13 14:05:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2006.02.13 14:05:00 | 000,442,368 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe
[2006.02.13 14:05:00 | 000,425,984 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe
[2006.02.13 14:05:00 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2006.02.13 14:05:00 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\nvapi.dll
[2005.12.30 19:18:26 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2005.12.30 19:10:30 | 000,761,856 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2004.10.26 23:39:05 | 003,375,104 | ---- | C] () -- C:\WINDOWS\System32\qt-mt331.dll
[2004.10.11 10:19:00 | 000,092,672 | ---- | C] () -- C:\WINDOWS\System32\ASUSASV2.DLL
[1999.01.22 20:46:58 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\MSRTEDIT.DLL
[1997.06.14 10:56:08 | 000,056,832 | ---- | C] () -- C:\WINDOWS\System32\iyvu9_32.dll
========== LOP Check ==========
[2010.08.04 05:27:35 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\CheckPoint
[2007.06.12 16:44:41 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\InterVideo
[2007.09.24 13:55:43 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\Mindjet
[2011.02.28 20:28:38 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\OpenOffice.org
[2011.01.31 20:10:11 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\ScanSoft
[2007.06.01 10:32:28 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\T-Online
[2011.01.31 20:10:24 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Agathe\Anwendungsdaten\Zeon
[2008.08.12 23:54:40 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Age of Empires 3 XPack Trial
[2008.08.18 22:41:16 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Age of Empires 3 YPack Trial
[2009.01.20 23:15:57 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\DVDXStudio
[2008.07.16 18:57:09 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\MailFrontier
[2010.03.06 21:16:17 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Mindjet
[2011.01.09 18:02:35 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\ScanSoft
[2007.05.31 11:51:16 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\T-Online
[2007.05.30 22:19:25 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\T-Online_ZusatzSoftware
[2011.01.09 17:57:09 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Zeon
[2010.05.13 16:17:15 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2010.02.04 15:33:49 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2009.05.29 19:28:21 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[2008.07.05 10:47:02 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\NetworkService\Anwendungsdaten\T-Online
[2010.08.03 22:49:30 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\user\Anwendungsdaten\CheckPoint
[2007.05.30 16:25:45 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\user\Anwendungsdaten\InterVideo
[2010.05.28 18:10:15 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\user\Anwendungsdaten\Leadertech
[2010.03.10 20:46:18 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\user\Anwendungsdaten\Mindjet
[2010.04.06 17:39:35 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\user\Anwendungsdaten\OpenOffice.org
[2009.08.27 23:13:55 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\user\Anwendungsdaten\Progeny
[2011.01.09 17:56:52 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\user\Anwendungsdaten\ScanSoft
[2009.08.27 22:52:32 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\user\Anwendungsdaten\SmartDraw
[2007.05.31 11:51:54 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\user\Anwendungsdaten\T-Online
[2009.01.20 23:16:17 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\user\Anwendungsdaten\Vso
[2011.01.09 17:57:09 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\user\Anwendungsdaten\Zeon
========== Purity Check ==========
< End of report > --- --- --- |