Also bei mir stehen die genannten Begriffe nicht so dar,
Output ist dort "Ausgabe"
Und RunScan gibts dort nicht, hab einfach auf Scan geklickt und die Häckchen sind eh überall bei "Benutze SafeList",
denke wird soweit richtig sein.
OTL:
OTL Logfile: Code:
OTL logfile created on: 25.04.2011 21:52:15 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\Flo\Desktop
Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6001.18000)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 56,00% Memory free
6,00 Gb Paging File | 5,00 Gb Available in Paging File | 77,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 916,87 Gb Total Space | 643,97 Gb Free Space | 70,24% Space Free | Partition Type: NTFS
Drive D: | 14,63 Gb Total Space | 9,70 Gb Free Space | 66,28% Space Free | Partition Type: FAT32
Computer Name: MEIN-PC | User Name: Flo | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Users\Flo\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Programme\ICQ7.4\ICQ.exe (ICQ, LLC.)
PRC - C:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Windows\System32\FsUsbExService.Exe (Teruten)
PRC - C:\Programme\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.)
PRC - C:\Programme\ICQ6Toolbar\ICQ Service.exe ()
PRC - C:\Programme\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.)
PRC - C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe (Avira GmbH)
PRC - C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe (Avira GmbH)
PRC - C:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe (Avira GmbH)
PRC - C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
PRC - C:\Programme\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
PRC - C:\Programme\Windows Media Player\wmpnscfg.exe (Microsoft Corporation)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Programme\Windows Defender\MSASCui.exe (Microsoft Corporation)
PRC - C:\Windows\System32\nvraidservice.exe (NVIDIA Corporation)
PRC - C:\Programme\Common Files\Nero\Lib\NMIndexStoreSvr.exe (Nero AG)
PRC - C:\Programme\Common Files\Nero\Lib\NMBgMonitor.exe (Nero AG)
========== Modules (SafeList) ==========
MOD - C:\Users\Flo\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6001.18000_none_5cdbaa5a083979cc\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (Akamai) -- c:\Programme\Common Files\Akamai\netsession_win_a35e6b9.dll ()
SRV - (FsUsbExService) -- C:\Windows\System32\FsUsbExService.Exe (Teruten)
SRV - (ICQ Service) -- C:\Programme\ICQ6Toolbar\ICQ Service.exe ()
SRV - (LVPrcSrv) -- C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.)
SRV - (FLEXnet Licensing Service) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Macrovision Europe Ltd.)
SRV - (AntiVirScheduler) -- C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe (Avira GmbH)
SRV - (AntiVirService) -- C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe (Avira GmbH)
SRV - (WinDefend) -- C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation)
========== Driver Services (SafeList) ==========
DRV - (FsUsbExDisk) -- C:\Windows\System32\FsUsbExDisk.Sys ()
DRV - (ss_bmdm) -- C:\Windows\System32\drivers\ss_bmdm.sys (MCCI Corporation)
DRV - (ss_bserd) -- C:\Windows\System32\drivers\ss_bserd.sys (MCCI Corporation)
DRV - (ss_bbus) SAMSUNG USB Mobile Device (WDM) -- C:\Windows\System32\drivers\ss_bbus.sys (MCCI)
DRV - (ss_bmdfl) SAMSUNG USB Mobile Modem (Filter) -- C:\Windows\System32\drivers\ss_bmdfl.sys (MCCI Corporation)
DRV - (atksgt) -- C:\Windows\System32\drivers\atksgt.sys ()
DRV - (hamachi) -- C:\Windows\System32\drivers\hamachi.sys (LogMeIn, Inc.)
DRV - (LVUVC) Logitech Webcam 200(UVC) -- C:\Windows\System32\drivers\lvuvc.sys (Logitech Inc.)
DRV - (LVRS) -- C:\Windows\System32\drivers\lvrs.sys (Logitech Inc.)
DRV - (lvpopflt) -- C:\Windows\System32\drivers\lvpopflt.sys (Logitech Inc.)
DRV - (LVPr2Mon) -- C:\Windows\System32\drivers\LVPr2Mon.sys ()
DRV - (avipbb) -- C:\Windows\System32\drivers\avipbb.sys (Avira GmbH)
DRV - (avgntflt) -- C:\Programme\Avira\AntiVir PersonalEdition Classic\avgntflt.sys (Avira GmbH)
DRV - (avgio) -- C:\Programme\Avira\AntiVir PersonalEdition Classic\avgio.sys (Avira GmbH)
DRV - (lirsgt) -- C:\Windows\System32\drivers\lirsgt.sys ()
DRV - (JRAID) -- C:\Windows\system32\DRIVERS\jraid.sys (JMicron Technology Corp.)
DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation)
DRV - (NVENETFD) -- C:\Windows\System32\drivers\nvmfdx32.sys (NVIDIA Corporation)
DRV - (ssmdrv) -- C:\Windows\System32\drivers\ssmdrv.sys (AVIRA GmbH)
DRV - (nvrd32) -- C:\Windows\system32\DRIVERS\nvrd32.sys (NVIDIA Corporation)
DRV - (nvstor32) -- C:\Windows\system32\DRIVERS\nvstor32.sys (NVIDIA Corporation)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.medion.com/
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.medion.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.icq.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKCU\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Programme\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.suggest.enabled: false
FF - prefs.js..browser.startup.homepage: "hxxp://www.google.de"
FF - prefs.js..extensions.charles.settings.disabled.network.proxy.http: ""
FF - prefs.js..extensions.charles.settings.disabled.network.proxy.http_port: 0
FF - prefs.js..extensions.charles.settings.disabled.network.proxy.no_proxies_on: "localhost, 127.0.0.1"
FF - prefs.js..extensions.charles.settings.disabled.network.proxy.share_proxy_settings: false
FF - prefs.js..extensions.charles.settings.disabled.network.proxy.socks: ""
FF - prefs.js..extensions.charles.settings.disabled.network.proxy.socks_port: 0
FF - prefs.js..extensions.charles.settings.disabled.network.proxy.ssl: ""
FF - prefs.js..extensions.charles.settings.disabled.network.proxy.ssl_port: 0
FF - prefs.js..extensions.charles.settings.disabled.network.proxy.type: 2
FF - prefs.js..extensions.charles.settings.enabled.network.proxy.http: "127.0.0.1"
FF - prefs.js..extensions.charles.settings.enabled.network.proxy.http_port: 8888
FF - prefs.js..extensions.charles.settings.enabled.network.proxy.no_proxies_on: ""
FF - prefs.js..extensions.charles.settings.enabled.network.proxy.share_proxy_settings: false
FF - prefs.js..extensions.charles.settings.enabled.network.proxy.socks: ""
FF - prefs.js..extensions.charles.settings.enabled.network.proxy.socks_port: 0
FF - prefs.js..extensions.charles.settings.enabled.network.proxy.ssl: "127.0.0.1"
FF - prefs.js..extensions.charles.settings.enabled.network.proxy.ssl_port: 8888
FF - prefs.js..extensions.charles.settings.enabled.network.proxy.type: 1
FF - prefs.js..extensions.enabledItems: {888d99e7-e8b5-46a3-851e-1ec45da1e644}:4.0.2
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.6
FF - prefs.js..extensions.enabledItems: personas@christopher.beard:1.6.2
FF - prefs.js..extensions.enabledItems: {e2c58150-9d72-11dd-ad8b-0800200c9a66}:1.3.1
FF - prefs.js..extensions.enabledItems: {d122ad80-ff45-11dd-87af-0800200c9a66}:3.6.29.01.10
FF - prefs.js..keyword.URL: "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=2.0.0.0&q="
FF - prefs.js..network.proxy.type: 2
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.03.24 16:54:33 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.03.24 16:54:33 | 000,000,000 | ---D | M]
[2009.05.28 18:32:39 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Flo\AppData\Roaming\mozilla\Extensions
[2011.04.25 19:24:17 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Flo\AppData\Roaming\mozilla\Firefox\Profiles\wk8iotiv.default\extensions
[2011.04.15 22:30:06 | 000,000,000 | ---D | M] (NoScript) -- C:\Users\Flo\AppData\Roaming\mozilla\Firefox\Profiles\wk8iotiv.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}
[2011.03.28 20:52:15 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Users\Flo\AppData\Roaming\mozilla\Firefox\Profiles\wk8iotiv.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2011.03.04 17:12:21 | 000,000,000 | ---D | M] (ReloadEvery) -- C:\Users\Flo\AppData\Roaming\mozilla\Firefox\Profiles\wk8iotiv.default\extensions\{888d99e7-e8b5-46a3-851e-1ec45da1e644}
[2011.04.08 15:01:02 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Users\Flo\AppData\Roaming\mozilla\Firefox\Profiles\wk8iotiv.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2010.04.14 13:49:19 | 000,000,000 | ---D | M] (Green Fox) -- C:\Users\Flo\AppData\Roaming\mozilla\Firefox\Profiles\wk8iotiv.default\extensions\{d122ad80-ff45-11dd-87af-0800200c9a66}
[2009.11.18 17:58:10 | 000,000,000 | ---D | M] (Black Steel) -- C:\Users\Flo\AppData\Roaming\mozilla\Firefox\Profiles\wk8iotiv.default\extensions\{e2c58150-9d72-11dd-ad8b-0800200c9a66}
[2011.03.13 22:07:53 | 000,000,000 | ---D | M] (Personas) -- C:\Users\Flo\AppData\Roaming\mozilla\Firefox\Profiles\wk8iotiv.default\extensions\personas@christopher.beard
[2011.04.15 22:30:06 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Flo\AppData\Roaming\mozilla\Firefox\Profiles\wk8iotiv.default\extensions\staged-xpis
[2011.04.18 19:15:10 | 000,001,056 | ---- | M] () -- C:\Users\Flo\AppData\Roaming\Mozilla\Firefox\Profiles\wk8iotiv.default\searchplugins\icqplugin.xml
[2011.04.25 17:30:20 | 000,000,000 | ---D | M] (No name found) -- C:\Programme\Mozilla Firefox\extensions
[2010.01.19 17:37:50 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2010.05.27 16:48:10 | 000,000,000 | ---D | M] (Java Console) -- C:\Programme\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010.08.24 16:58:47 | 000,000,000 | ---D | M] (Java Console) -- C:\Programme\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2009.05.28 18:32:33 | 000,000,000 | ---D | M] (No name found) -- C:\Programme\Mozilla Firefox\extensions\talkback@mozilla.org
[2009.03.28 20:42:03 | 000,000,000 | ---D | M] (Java Console) -- C:\PROGRAM FILES\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
[2009.09.13 16:25:27 | 000,000,000 | ---D | M] (Java Console) -- C:\PROGRAM FILES\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
[2010.05.27 16:48:10 | 000,000,000 | ---D | M] (Java Console) -- C:\PROGRAM FILES\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010.08.24 16:58:47 | 000,000,000 | ---D | M] (Java Console) -- C:\PROGRAM FILES\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010.09.15 04:50:38 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Programme\Mozilla Firefox\plugins\npdeployJava1.dll
[2010.07.26 11:26:27 | 000,001,392 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\amazondotcom-de.xml
[2010.07.26 11:26:27 | 000,002,344 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\eBay-de.xml
[2010.07.26 11:26:27 | 000,006,805 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\leo_ende_de.xml
[2010.07.26 11:26:27 | 000,001,178 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\wikipedia-de.xml
[2010.07.26 11:26:27 | 000,001,105 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\yahoo-de.xml
O1 HOSTS File: ([2006.09.18 23:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Windows Live Anmelde-Hilfsprogramm) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - File not found
O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Programme\ICQ6Toolbar\ICQToolBar.dll (ICQ)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {B24BA06E-FB7B-4757-95C2-DC01125F750E} - No CLSID value found.
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [LogitechQuickCamRibbon] C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe ()
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [NeroFilterCheck] C:\Programme\Common Files\Nero\Lib\NeroCheck.exe (Nero AG)
O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\Windows\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NVRaidService] C:\Windows\System32\nvraidservice.exe (NVIDIA Corporation)
O4 - HKLM..\Run: [NvSvc] C:\Windows\System32\nvsvc.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [toolbar_eula_launcher] C:\Programme\GoogleEULA\EULALauncher.exe ( )
O4 - HKLM..\Run: [WinampAgent] File not found
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKCU..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe (Nero AG)
O4 - HKCU..\Run: [KiesTrayAgent] C:\Programme\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.)
O4 - HKCU..\Run: [WMPNSCFG] C:\Programme\Windows Media Player\wmpnscfg.exe (Microsoft Corporation)
O4 - HKLM..\RunOnce: [InnoSetupRegFile.0000000001] C:\Windows\is-RE049.exe ()
O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware (registration)] C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll (Malwarebytes Corporation)
O4 - Startup: C:\Users\Flo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip ()
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - C:\Programme\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: eBay - Der weltweite Online-Marktplatz - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - File not found
O9 - Extra 'Tools' menuitem : eBay - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - File not found
O9 - Extra Button: In Blog veröffentlichen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programme\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : In Windows Live Writer in Blog veröffentliche&n - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programme\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra Button: ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Programme\ICQ7.4\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Programme\ICQ7.4\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programme\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Programme\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Programme\Common Files\microsoft shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\Programme\Common Files\microsoft shared\Web Components\11\OWC11.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programme\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Programme\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\microsoft shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\Flo\AppData\Roaming\Microsoft\Windows Photo Gallery\Hintergrundbild der Windows-Fotogalerie.jpg
O24 - Desktop BackupWallPaper: C:\Users\Flo\AppData\Roaming\Microsoft\Windows Photo Gallery\Hintergrundbild der Windows-Fotogalerie.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006.09.18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{11320210-0911-11df-a71b-0022152ff855}\Shell\1\Command - "" = .\recycled\info.exe
O33 - MountPoints2\{11320210-0911-11df-a71b-0022152ff855}\Shell\AutoRun\command - "" = C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL .\recycled\info.exe
O33 - MountPoints2\{13cf631f-03f3-11de-a1d5-0022152ff855}\Shell\verb1\command - "" = desktop.exe
O33 - MountPoints2\{3079f74e-01b1-11de-ac5a-0022152ff855}\Shell\AutoRun\command - "" = C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe TANNE-AE8F0470A.vbs
O33 - MountPoints2\{44415b0f-2f7c-11df-a74d-0022152ff855}\Shell\1\Command - "" =
O33 - MountPoints2\{44415b0f-2f7c-11df-a74d-0022152ff855}\Shell\AutoRun\command - "" = C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL
O33 - MountPoints2\{776d5b8f-5685-11de-b952-0022152ff855}\Shell\AutoRun\command - "" = J:\Menu.exe
O33 - MountPoints2\{9588059c-f665-11dd-9f7a-0022152ff855}\Shell\1\Command - "" = .\recycled\info.exe
O33 - MountPoints2\{9588059c-f665-11dd-9f7a-0022152ff855}\Shell\AutoRun\command - "" = C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL .\recycled\info.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011.04.25 21:50:51 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Users\Flo\Desktop\OTL.exe
[2011.04.23 17:26:18 | 000,000,000 | ---D | C] -- C:\Users\Flo\Desktop\kkleid
[2011.04.20 10:55:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2011.04.20 10:54:56 | 000,000,000 | ---D | C] -- C:\Programme\iPod
[2011.04.20 10:54:55 | 000,000,000 | ---D | C] -- C:\Programme\iTunes
[2011.04.12 20:39:18 | 000,000,000 | ---D | C] -- C:\Users\Flo\Desktop\snes
[2011.04.06 16:20:16 | 000,197,920 | ---- | C] (Apple Inc.) -- C:\Windows\System32\dnssdX.dll
[2011.04.06 16:20:16 | 000,107,808 | ---- | C] (Apple Inc.) -- C:\Windows\System32\dns-sd.exe
[2011.04.06 16:20:16 | 000,091,424 | ---- | C] (Apple Inc.) -- C:\Windows\System32\dnssd.dll
[2011.04.06 16:20:16 | 000,075,040 | ---- | C] (Apple Inc.) -- C:\Windows\System32\jdns_sd.dll
[2011.04.03 18:28:40 | 000,000,000 | ---D | C] -- C:\Users\Flo\Desktop\Emigrate
[2011.03.28 20:52:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ICQ7.4
[2011.03.28 20:51:58 | 000,000,000 | ---D | C] -- C:\Programme\ICQ7.4
========== Files - Modified Within 30 Days ==========
[2011.04.25 21:50:57 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\Flo\Desktop\OTL.exe
[2011.04.25 21:50:52 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011.04.25 21:50:52 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011.04.25 21:26:00 | 000,001,096 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011.04.25 18:28:58 | 000,054,016 | ---- | M] () -- C:\Windows\System32\drivers\fqcvbln.sys
[2011.04.25 17:20:02 | 000,709,456 | ---- | M] () -- C:\Windows\is-RE049.exe
[2011.04.25 17:20:02 | 000,012,846 | ---- | M] () -- C:\Windows\is-RE049.msg
[2011.04.25 17:20:02 | 000,000,361 | ---- | M] () -- C:\Windows\is-RE049.lst
[2011.04.25 16:37:04 | 000,000,000 | ---- | M] () -- C:\Windows\System32\drivers\lvuvc.hs
[2011.04.25 16:26:00 | 000,001,092 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011.04.25 13:09:38 | 000,628,492 | ---- | M] () -- C:\Windows\System32\perfh007.dat
[2011.04.25 13:09:38 | 000,595,798 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011.04.25 13:09:38 | 000,126,248 | ---- | M] () -- C:\Windows\System32\perfc007.dat
[2011.04.25 13:09:38 | 000,103,872 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011.04.25 10:25:25 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.04.25 10:25:21 | 3219,595,264 | -HS- | M] () -- C:\hiberfil.sys
[2011.04.20 10:55:27 | 000,001,668 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2011.04.11 20:15:46 | 000,005,661 | ---- | M] () -- C:\Users\Flo\Desktop\ommelbommel.rtf
[2011.04.06 16:20:16 | 000,197,920 | ---- | M] (Apple Inc.) -- C:\Windows\System32\dnssdX.dll
[2011.04.06 16:20:16 | 000,107,808 | ---- | M] (Apple Inc.) -- C:\Windows\System32\dns-sd.exe
[2011.04.06 16:20:16 | 000,091,424 | ---- | M] (Apple Inc.) -- C:\Windows\System32\dnssd.dll
[2011.04.06 16:20:16 | 000,075,040 | ---- | M] (Apple Inc.) -- C:\Windows\System32\jdns_sd.dll
[2011.03.31 21:08:30 | 000,000,505 | ---- | M] () -- C:\Users\Flo\Desktop\popelmon.rtf
[2011.03.28 20:52:36 | 000,001,613 | ---- | M] () -- C:\Users\Public\Desktop\ICQ7.4.lnk
========== Files Created - No Company Name ==========
[2011.04.25 18:28:58 | 000,054,016 | ---- | C] () -- C:\Windows\System32\drivers\fqcvbln.sys
[2011.04.25 17:20:02 | 000,709,456 | ---- | C] () -- C:\Windows\is-RE049.exe
[2011.04.25 17:20:02 | 000,012,846 | ---- | C] () -- C:\Windows\is-RE049.msg
[2011.04.25 17:20:02 | 000,000,361 | ---- | C] () -- C:\Windows\is-RE049.lst
[2011.04.20 10:55:27 | 000,001,668 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2011.04.11 20:15:46 | 000,005,661 | ---- | C] () -- C:\Users\Flo\Desktop\ommelbommel.rtf
[2011.03.28 20:52:36 | 000,001,613 | ---- | C] () -- C:\Users\Public\Desktop\ICQ7.4.lnk
[2011.01.14 22:41:17 | 000,110,592 | ---- | C] () -- C:\Windows\System32\FsUsbExDevice.Dll
[2011.01.14 22:41:17 | 000,042,112 | ---- | C] () -- C:\Windows\System32\FsUsbExDisk.Sys
[2011.01.04 17:10:58 | 000,030,568 | ---- | C] () -- C:\Windows\MusiccityDownload.exe
[2011.01.04 17:10:56 | 000,974,848 | ---- | C] () -- C:\Windows\System32\cis-2.4.dll
[2011.01.04 17:10:56 | 000,081,920 | ---- | C] () -- C:\Windows\System32\issacapi_bs-2.3.dll
[2011.01.04 17:10:56 | 000,065,536 | ---- | C] () -- C:\Windows\System32\issacapi_pe-2.3.dll
[2011.01.04 17:10:56 | 000,057,344 | ---- | C] () -- C:\Windows\System32\issacapi_se-2.3.dll
[2010.12.19 21:19:31 | 000,069,632 | ---- | C] () -- C:\Windows\System32\xmltok.dll
[2010.12.19 21:19:31 | 000,036,864 | ---- | C] () -- C:\Windows\System32\xmlparse.dll
[2010.07.09 21:04:40 | 000,041,872 | ---- | C] () -- C:\Windows\System32\xfcodec.dll
[2010.05.26 14:11:29 | 000,082,289 | ---- | C] () -- C:\Windows\System32\lvcoinst.ini
[2009.11.01 20:09:44 | 000,000,032 | ---- | C] () -- C:\Windows\Menu.INI
[2009.10.07 01:46:36 | 000,025,752 | ---- | C] () -- C:\Windows\System32\drivers\LVPr2Mon.sys
[2009.10.07 01:23:08 | 000,013,584 | ---- | C] () -- C:\Windows\System32\drivers\iKeyLFT2.dll
[2009.03.21 15:33:48 | 000,012,288 | ---- | C] () -- C:\Windows\impborl.dll
[2009.03.12 18:42:49 | 000,000,400 | ---- | C] () -- C:\Windows\ODBC.INI
[2009.03.09 18:29:49 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2009.03.06 22:17:13 | 000,066,680 | ---- | C] () -- C:\Users\Flo\AppData\Roaming\UserTile.png
[2009.02.16 16:03:29 | 000,278,984 | ---- | C] () -- C:\Windows\System32\drivers\atksgt.sys
[2009.02.16 16:03:29 | 000,018,048 | ---- | C] () -- C:\Windows\System32\drivers\lirsgt.sys
[2009.02.16 14:21:48 | 002,250,024 | ---- | C] () -- C:\Windows\System32\pbsvc.exe
[2009.02.15 04:20:31 | 000,000,680 | ---- | C] () -- C:\Users\Flo\AppData\Local\d3d9caps.dat
[2009.01.31 19:50:03 | 000,022,328 | ---- | C] () -- C:\Users\Flo\AppData\Roaming\PnkBstrK.sys
[2009.01.28 19:16:20 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2009.01.26 10:34:44 | 000,164,864 | ---- | C] () -- C:\Users\Flo\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009.01.25 19:24:47 | 000,138,160 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2009.01.25 19:24:41 | 000,103,736 | ---- | C] () -- C:\Windows\System32\PnkBstrB.exe
[2009.01.25 19:24:18 | 000,075,136 | ---- | C] () -- C:\Windows\System32\PnkBstrA.exe
[2009.01.25 19:04:50 | 000,000,319 | ---- | C] () -- C:\Windows\game.ini
[2009.01.25 15:44:09 | 000,003,636 | ---- | C] () -- C:\Windows\System32\drivers\nvphy.bin
[2008.11.06 18:37:32 | 003,596,288 | ---- | C] () -- C:\Windows\System32\qt-dx331.dll
[2008.01.21 09:15:58 | 000,628,492 | ---- | C] () -- C:\Windows\System32\perfh007.dat
[2008.01.21 09:15:58 | 000,290,748 | ---- | C] () -- C:\Windows\System32\perfi007.dat
[2008.01.21 09:15:58 | 000,126,248 | ---- | C] () -- C:\Windows\System32\perfc007.dat
[2008.01.21 09:15:58 | 000,036,916 | ---- | C] () -- C:\Windows\System32\perfd007.dat
[2008.01.21 04:24:14 | 000,100,043 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2007.02.20 14:59:08 | 000,053,248 | ---- | C] () -- C:\Windows\System32\AgCPanelJapanese.dll
[2007.02.20 14:59:06 | 000,053,248 | ---- | C] () -- C:\Windows\System32\AgCPanelTraditionalChinese.dll
[2007.02.20 14:59:06 | 000,053,248 | ---- | C] () -- C:\Windows\System32\AgCPanelSwedish.dll
[2007.02.20 14:59:06 | 000,053,248 | ---- | C] () -- C:\Windows\System32\AgCPanelSimplifiedChinese.dll
[2007.02.20 14:59:06 | 000,053,248 | ---- | C] () -- C:\Windows\System32\AgCPanelPortugese.dll
[2007.02.20 14:59:06 | 000,053,248 | ---- | C] () -- C:\Windows\System32\AgCPanelKorean.dll
[2007.02.20 14:59:06 | 000,053,248 | ---- | C] () -- C:\Windows\System32\AgCPanelGerman.dll
[2007.02.20 14:59:06 | 000,053,248 | ---- | C] () -- C:\Windows\System32\AgCPanelFrench.dll
[2007.02.20 14:59:04 | 000,053,248 | ---- | C] () -- C:\Windows\System32\AgCPanelSpanish.dll
[2007.02.20 13:24:46 | 000,071,208 | ---- | C] () -- C:\Windows\System32\PhysXLoader.dll
[2006.11.02 14:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006.11.02 14:47:37 | 001,700,536 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006.11.02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006.11.02 12:33:01 | 000,595,798 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006.11.02 12:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006.11.02 12:33:01 | 000,103,872 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006.11.02 12:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006.11.02 12:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006.11.02 10:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006.11.02 10:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006.11.02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006.11.02 09:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2006.11.02 09:22:43 | 000,018,271 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2003.02.20 18:53:42 | 000,005,702 | ---- | C] () -- C:\Windows\System32\OUTLPERF.INI
< End of report > --- --- ---
OTL Extra:
OTL Logfile: Code:
OTL Extras logfile created on: 25.04.2011 21:52:15 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\Flo\Desktop
Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6001.18000)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 56,00% Memory free
6,00 Gb Paging File | 5,00 Gb Available in Paging File | 77,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 916,87 Gb Total Space | 643,97 Gb Free Space | 70,24% Space Free | Partition Type: NTFS
Drive D: | 14,63 Gb Total Space | 9,70 Gb Free Space | 66,28% Space Free | Partition Type: FAT32
Computer Name: MEIN-PC | User Name: Flo | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = Opera.HTML] -- C:\Program Files\Opera\opera.exe (Opera Software)
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files\Opera\opera.exe" (Opera Software)
https [open] -- "C:\Program Files\Opera\opera.exe" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- C:\Program Files\VideoLAN\VLC\vlc.exe --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- C:\Program Files\VideoLAN\VLC\vlc.exe --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 1
"AntiSpywareOverride" = 1
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{05A39737-3D8D-4724-895C-447EBFCCA1F2}" = lport=138 | protocol=17 | dir=in | app=system |
"{0BD34328-B8EF-487A-AA48-5F8B7037429F}" = lport=3724 | protocol=6 | dir=in | name=blizzard downloader: 3724 |
"{0C708E90-4123-477F-B6A0-BCE82EBB326F}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{23470927-194B-4436-AF9B-B43416C0D637}" = lport=137 | protocol=17 | dir=in | app=system |
"{2B4753C4-56D7-47E3-8B3B-C19F70E13E4E}" = lport=139 | protocol=6 | dir=in | app=system |
"{33F77A79-90C6-4EEF-924A-7ADD2309C9A7}" = lport=5000 | protocol=17 | dir=in | name=akamai netsession interface |
"{34E47AFD-6D0E-43A8-A848-EF0B2DEFF7FA}" = lport=49159 | protocol=6 | dir=in | name=akamai netsession interface |
"{3EC5FB27-DC6D-4756-BA24-8A4D9BD6E2A0}" = lport=2869 | protocol=6 | dir=in | app=system |
"{69E0F77D-3705-4D7D-8F85-3A75C276F7EF}" = lport=445 | protocol=6 | dir=in | app=system |
"{7BC09A23-2594-4D69-946E-7491EBBE688C}" = rport=139 | protocol=6 | dir=out | app=system |
"{805A2EA5-0BEE-4063-B35D-0C9DB5AC6649}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{82B1F42B-834C-4EA0-8591-F671C4D231B6}" = lport=49163 | protocol=6 | dir=in | name=akamai netsession interface |
"{8845FB38-FDD6-4803-8111-E0E569A82AB1}" = lport=5000 | protocol=17 | dir=in | name=akamai netsession interface |
"{9F780239-0D86-4723-8440-9BE262ED869B}" = rport=445 | protocol=6 | dir=out | app=system |
"{AD487279-A640-4CD4-AF8E-72C7C217F436}" = rport=137 | protocol=17 | dir=out | app=system |
"{CA0173DE-0EDA-4EE0-B909-CF631B4216CA}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{ECAD183F-025E-4578-ABD4-3CF202892ACC}" = rport=138 | protocol=17 | dir=out | app=system |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00436695-620D-4D8D-817A-BBF2E4234719}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{03D1A7BC-19E8-4B21-8E6A-A13E8E7E18FD}" = dir=in | app=c:\program files\itunes\itunes.exe |
"{044E1747-BA86-4F04-8C07-C88A06AE2951}" = protocol=6 | dir=in | app=c:\program files\world of warcraft\launcher.patch.exe |
"{0F29FEA4-E334-44BE-BA38-22F86E7A74D6}" = protocol=17 | dir=in | app=c:\program files\sierra\fear\fear.exe |
"{12769EC2-418D-4DB9-9609-7DD7C3A8FF99}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{26B31B1E-48A6-472C-97E8-9233F6E26DD0}" = protocol=17 | dir=in | app=c:\program files\world of warcraft_orig\wow-3.3.5.12340-x86-win-engb-bkgnd-downloader.exe |
"{44E05C2D-D144-4695-B879-DAC1B5A062FA}" = protocol=17 | dir=in | app=c:\program files\ubisoft\far cry 2\bin\fc2editor.exe |
"{49F801A9-2628-4996-8BF6-9376D1822C26}" = protocol=17 | dir=in | app=c:\program files\icq7.4\icq.exe |
"{4B0BE557-EB97-43C5-9D06-D01431039BF5}" = protocol=17 | dir=in | app=c:\program files\icq7.4\icq.exe |
"{4B7ECDB3-BC6D-454A-ABDB-7608FAD5A066}" = protocol=17 | dir=in | app=c:\program files\sierra\fear\fearmp.exe |
"{4E5575DE-3D98-43A9-8017-51199E20C6F5}" = protocol=6 | dir=in | app=c:\program files\world of warcraft_ - wrath of the lich king\launcher.patch.exe |
"{5439DB82-5421-48E7-ADA9-CAEA0149DC58}" = protocol=17 | dir=in | app=c:\program files\thq\s.t.a.l.k.e.r. - shadow of chernobyl\bin\xr_3da.exe |
"{62A5A531-3CF8-42FB-8281-B39A57B29DDF}" = protocol=6 | dir=in | app=c:\program files\ubisoft\far cry 2\bin\fc2launcher.exe |
"{679433BD-84C4-46CF-B0C1-7C13057B23D6}" = protocol=6 | dir=in | app=c:\users\public\documents\blizzard entertainment\world of warcraft\wow-3.1.3.9947-to-3.2.0.10192-dede-downloader.exe |
"{6998ED4E-FBE7-46AE-94D7-CC54B654821F}" = protocol=6 | dir=in | app=c:\program files\ubisoft\far cry 2\bin\fc2editor.exe |
"{6E39F2F2-2088-485A-81C9-B96863E251A4}" = protocol=6 | dir=in | app=c:\program files\thq\s.t.a.l.k.e.r. - shadow of chernobyl\bin\dedicated\xr_3da.exe |
"{75961E50-1939-4F21-9D3B-498547411A5A}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{7D7CD959-085D-40D9-951F-7D3FEB399C97}" = protocol=17 | dir=in | app=c:\windows\system32\muzapp.exe |
"{81800C30-6CDB-492E-813F-A8E81D3B6B04}" = protocol=6 | dir=in | app=c:\windows\system32\muzapp.exe |
"{8789B6B4-2486-489D-873F-440B2EF03607}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{8A73BB64-212A-470D-B672-5433BBF118DE}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe |
"{8E99EAB8-A911-4C36-8519-4D04D91E178C}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{8F544C5F-FF9D-4615-80F5-CF1C3D52C587}" = protocol=17 | dir=in | app=c:\program files\thq\s.t.a.l.k.e.r. - shadow of chernobyl\bin\dedicated\xr_3da.exe |
"{94420438-47BC-4A9F-9457-3CD59F2E0412}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{95C5004F-3225-4982-AECC-4284D8B72982}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A3D0C965-F76D-4378-AF40-D45E0EF89452}" = protocol=17 | dir=in | app=c:\program files\world of warcraft\launcher.patch.exe |
"{AE590C9F-9555-494C-83A2-D446CB9B2E1D}" = protocol=17 | dir=in | app=c:\program files\world of warcraft_ - wrath of the lich king\launcher.patch.exe |
"{B0548FD7-6F1A-4F36-93DA-0D9381C1800C}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{B1BCA051-01CE-4B03-9406-BAB9E5E77BA7}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{B5E707C2-1B5F-4311-AC9C-64D85F4CCEDE}" = protocol=6 | dir=in | app=c:\program files\thq\s.t.a.l.k.e.r. - shadow of chernobyl\bin\xr_3da.exe |
"{B860D459-AAE4-4735-B3E5-44434F7745CB}" = protocol=6 | dir=in | app=c:\program files\icq7.4\icq.exe |
"{BDF62716-0769-47C9-B050-16B0B84ABB29}" = protocol=17 | dir=in | app=c:\program files\ubisoft\far cry 2\bin\farcry2.exe |
"{C550A047-4200-43D7-B923-EE18E36150D0}" = protocol=6 | dir=in | app=c:\program files\icq7.4\icq.exe |
"{CE917EFD-574F-488E-A669-2C7476A2A9E6}" = protocol=6 | dir=in | app=c:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{D1674B24-7F9C-4DA5-A8C4-E74F1968CEF0}" = protocol=17 | dir=in | app=c:\program files\ubisoft\far cry 2\bin\fc2launcher.exe |
"{D202DE54-D6B9-4202-918B-69AE791B41C5}" = protocol=6 | dir=in | app=c:\program files\sierra\fear\fearmp.exe |
"{D7869C3C-04AD-4352-A6C7-CC6B23C1FBD1}" = protocol=6 | dir=in | app=c:\program files\sierra\fear\fear.exe |
"{D8ABF9B3-6616-48BB-A466-E314E0B68A3E}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{DD8EB7E1-8BC5-4E81-8F5C-433ABF389CFC}" = protocol=6 | dir=in | app=c:\program files\world of warcraft_orig\wow-3.3.5.12340-x86-win-engb-bkgnd-downloader.exe |
"{EB1292AD-FBCB-44C8-BC72-8B73E6EA977A}" = protocol=17 | dir=in | app=c:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{F2AFDAC4-3C97-41DA-9EFD-4B332419136F}" = protocol=17 | dir=in | app=c:\users\public\documents\blizzard entertainment\world of warcraft\wow-3.1.3.9947-to-3.2.0.10192-dede-downloader.exe |
"{F5C66448-DDFE-4EF0-9EEA-35D321B848C4}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{F65D34E5-BAFB-421B-81E8-03566CDA05DD}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{FB9A197C-0ED7-46D7-A9A1-1FF7792AE61F}" = protocol=6 | dir=in | app=c:\program files\ubisoft\far cry 2\bin\farcry2.exe |
"TCP Query User{0B7FCF1C-F7A5-4627-ADD0-900476BEF929}C:\users\flo\appdata\locallow\dyyno receiver\dppm.exe" = protocol=6 | dir=in | app=c:\users\flo\appdata\locallow\dyyno receiver\dppm.exe |
"TCP Query User{0C86A3B0-0477-413C-B64D-013F506B741F}C:\program files\jowood\spellforce 2 shadow wars\spellforce2.exe" = protocol=6 | dir=in | app=c:\program files\jowood\spellforce 2 shadow wars\spellforce2.exe |
"TCP Query User{11CA2E2D-87FD-494E-BB8C-9D5207E1B192}C:\program files\world of warcraft_ - wrath of the lich king\launcher.exe" = protocol=6 | dir=in | app=c:\program files\world of warcraft_ - wrath of the lich king\launcher.exe |
"TCP Query User{33B2CF4F-86BC-4CBC-A585-7847D7C59770}C:\program files\runes of magic\client.exe" = protocol=6 | dir=in | app=c:\program files\runes of magic\client.exe |
"TCP Query User{42F3C3C0-8B4C-4A49-8CF7-E2D446C65EB6}C:\program files\world of warcraft 2\backgrounddownloader.exe" = protocol=6 | dir=in | app=c:\program files\world of warcraft 2\backgrounddownloader.exe |
"TCP Query User{4AA510D9-541E-4A33-8B05-5ACC0313B870}C:\program files\world of warcraft 2\launcher.exe" = protocol=6 | dir=in | app=c:\program files\world of warcraft 2\launcher.exe |
"TCP Query User{4CB7EF55-8993-4C35-A688-E1A1BAEDB87E}I:\wow\world of warcraft\backgrounddownloader.exe" = protocol=6 | dir=in | app=i:\wow\world of warcraft\backgrounddownloader.exe |
"TCP Query User{51A5B28C-3791-4FC4-BA9D-A7D78BED89C6}C:\program files\world of warcraft\launcher.exe" = protocol=6 | dir=in | app=c:\program files\world of warcraft\launcher.exe |
"TCP Query User{5CD74F19-2903-4055-841E-BCC2FD979B88}C:\program files\charles\charles.exe" = protocol=6 | dir=in | app=c:\program files\charles\charles.exe |
"TCP Query User{67E3818D-1E16-472B-8722-EF511A80F80B}C:\users\flo\appdata\local\temp\7zipsfx.000\cf_downloader.exe" = protocol=6 | dir=in | app=c:\users\flo\appdata\local\temp\7zipsfx.000\cf_downloader.exe |
"TCP Query User{6E4F5096-81B4-4356-9A43-094F70F8B8EE}C:\users\flo\desktop\yuleech-runes_of_magic_3_0_5_2262_slim.exe" = protocol=6 | dir=in | app=c:\users\flo\desktop\yuleech-runes_of_magic_3_0_5_2262_slim.exe |
"TCP Query User{7C37CF1B-532B-4053-9CD8-C292D0ECAF88}C:\program files\activision\call of duty 2\cod2mp_s.exe" = protocol=6 | dir=in | app=c:\program files\activision\call of duty 2\cod2mp_s.exe |
"TCP Query User{7C9AF964-3E8A-48E0-9056-CD89ACCC906D}C:\program files\world of warcraft_orig\launcher.exe" = protocol=6 | dir=in | app=c:\program files\world of warcraft_orig\launcher.exe |
"TCP Query User{986351D7-34FC-42B5-807A-6CBE6D0DC047}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"TCP Query User{A587039F-3919-4C94-9236-ED1D8E25FCF2}C:\program files\xfire\xfire.exe" = protocol=6 | dir=in | app=c:\program files\xfire\xfire.exe |
"TCP Query User{B4086EA4-7D18-4072-9AD0-465E86872AC3}C:\users\flo\temp\teamviewer3\teamviewer.exe" = protocol=6 | dir=in | app=c:\users\flo\temp\teamviewer3\teamviewer.exe |
"TCP Query User{B4F570AF-64EE-48AA-A4E0-9FFDD326D771}C:\users\flo\desktop\yuleech-runes_of_magic_3_0_5_2262.exe" = protocol=6 | dir=in | app=c:\users\flo\desktop\yuleech-runes_of_magic_3_0_5_2262.exe |
"TCP Query User{B786DB3E-00B9-45F9-B26B-E35773287493}C:\program files\xfire\xfire.exe" = protocol=6 | dir=in | app=c:\program files\xfire\xfire.exe |
"TCP Query User{C75AFF4C-3AF2-4A7D-AF13-F0ADF952035C}C:\program files\icq6.5\icq.exe" = protocol=6 | dir=in | app=c:\program files\icq6.5\icq.exe |
"TCP Query User{DC560DFD-19CF-4411-920A-56B7562C3BE3}C:\users\flo\desktop\fogdownloader-rom_2_1_0_1871.exe" = protocol=6 | dir=in | app=c:\users\flo\desktop\fogdownloader-rom_2_1_0_1871.exe |
"UDP Query User{0400DB48-CDA0-4383-BE76-06573869E788}C:\program files\world of warcraft 2\launcher.exe" = protocol=17 | dir=in | app=c:\program files\world of warcraft 2\launcher.exe |
"UDP Query User{0FD28AF3-7FDF-4CAE-9273-1A88F86A6BBA}C:\program files\world of warcraft\launcher.exe" = protocol=17 | dir=in | app=c:\program files\world of warcraft\launcher.exe |
"UDP Query User{22198F94-7984-48B7-A4B0-305D62C7FEF7}C:\users\flo\appdata\local\temp\7zipsfx.000\cf_downloader.exe" = protocol=17 | dir=in | app=c:\users\flo\appdata\local\temp\7zipsfx.000\cf_downloader.exe |
"UDP Query User{24639E99-231D-4DFD-A469-C5AE0D69A68D}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"UDP Query User{2CBA61A6-BA75-4358-A88E-F0BF27CC2148}C:\program files\xfire\xfire.exe" = protocol=17 | dir=in | app=c:\program files\xfire\xfire.exe |
"UDP Query User{481A335E-DBDE-4E37-8E34-D68884C380D6}C:\program files\icq6.5\icq.exe" = protocol=17 | dir=in | app=c:\program files\icq6.5\icq.exe |
"UDP Query User{49182C68-16DE-45A7-9F3D-EA66BF56C93F}C:\users\flo\appdata\locallow\dyyno receiver\dppm.exe" = protocol=17 | dir=in | app=c:\users\flo\appdata\locallow\dyyno receiver\dppm.exe |
"UDP Query User{5165C936-A4B1-45F2-AE7C-12285AB5C4C6}C:\users\flo\desktop\yuleech-runes_of_magic_3_0_5_2262.exe" = protocol=17 | dir=in | app=c:\users\flo\desktop\yuleech-runes_of_magic_3_0_5_2262.exe |
"UDP Query User{5C9E170C-5B88-41C4-8D19-E24B4401C45D}C:\users\flo\temp\teamviewer3\teamviewer.exe" = protocol=17 | dir=in | app=c:\users\flo\temp\teamviewer3\teamviewer.exe |
"UDP Query User{6D7D0B66-0484-4EAF-93C4-829AC1808B94}C:\program files\charles\charles.exe" = protocol=17 | dir=in | app=c:\program files\charles\charles.exe |
"UDP Query User{7C00BD2D-1D44-45EF-B356-CA7A0633FD12}C:\program files\world of warcraft 2\backgrounddownloader.exe" = protocol=17 | dir=in | app=c:\program files\world of warcraft 2\backgrounddownloader.exe |
"UDP Query User{846711B4-24A1-4A79-9BAF-8821D7005020}C:\program files\runes of magic\client.exe" = protocol=17 | dir=in | app=c:\program files\runes of magic\client.exe |
"UDP Query User{90F40B32-D867-4238-931B-154AD2BD4488}C:\program files\world of warcraft_ - wrath of the lich king\launcher.exe" = protocol=17 | dir=in | app=c:\program files\world of warcraft_ - wrath of the lich king\launcher.exe |
"UDP Query User{9803D14A-2E15-4E0C-A821-8BA10765E2A8}C:\program files\xfire\xfire.exe" = protocol=17 | dir=in | app=c:\program files\xfire\xfire.exe |
"UDP Query User{A21A3A75-FF21-4061-9578-1DBC7E34B3CD}C:\users\flo\desktop\yuleech-runes_of_magic_3_0_5_2262_slim.exe" = protocol=17 | dir=in | app=c:\users\flo\desktop\yuleech-runes_of_magic_3_0_5_2262_slim.exe |
"UDP Query User{C2971521-1775-4608-BB88-D696C4477AA2}C:\users\flo\desktop\fogdownloader-rom_2_1_0_1871.exe" = protocol=17 | dir=in | app=c:\users\flo\desktop\fogdownloader-rom_2_1_0_1871.exe |
"UDP Query User{C77881D5-1E7F-43C3-A2E4-FD1B58F200B1}C:\program files\activision\call of duty 2\cod2mp_s.exe" = protocol=17 | dir=in | app=c:\program files\activision\call of duty 2\cod2mp_s.exe |
"UDP Query User{C9A01C5E-EEE9-45E1-8D37-FD950F26B08F}I:\wow\world of warcraft\backgrounddownloader.exe" = protocol=17 | dir=in | app=i:\wow\world of warcraft\backgrounddownloader.exe |
"UDP Query User{E17D14B9-A06C-41E1-A3D9-72FB97257A13}C:\program files\jowood\spellforce 2 shadow wars\spellforce2.exe" = protocol=17 | dir=in | app=c:\program files\jowood\spellforce 2 shadow wars\spellforce2.exe |
"UDP Query User{EBAD3816-3414-4223-87BF-5BB99FBF8E9D}C:\program files\world of warcraft_orig\launcher.exe" = protocol=17 | dir=in | app=c:\program files\world of warcraft_orig\launcher.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{04AF207D-9A77-465A-8B76-991F6AB66245}" = Adobe Help Viewer CS3
"{052FDD78-A6EA-3187-8386-C82F4CA3A929}" = Microsoft .NET Framework 3.5 Language Pack SP1 - deu
"{08B32819-6EEF-4057-AEDA-5AB681A36A23}" = Adobe Bridge Start Meeting
"{119B7481-0216-40D2-A5CC-C3E1F461ECC1}" = Windows Live Fotogalerie
"{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}" = Adobe WinSoft Linguistics Plugin
"{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate
"{1A4E47DC-6701-4A85-AA16-C1F99A44598C}" = Spellforce 2 - Shadow Wars
"{1BC4026B-1957-4514-9058-2B542557F143}" = Opera 9.63
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live-Uploadtool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{29E5EA97-5F74-4A57-B8B2-D4F169117183}" = Adobe Stock Photos CS3
"{2B0C9858-8D78-48B2-BC37-4CAEBB2CA510}" = SpellForce 2 Shadow Wars
"{2B653229-9854-4989-B780-D978F5F13EAB}" = FEAR
"{2EA870FA-585F-4187-903D-CB9FFD21E2E0}" = DHTML Editing Component
"{353FE16B-30FE-469A-BF55-B978F4218003}" = iTunes
"{3921A67A-5AB1-4E48-9444-C71814CF3027}" = VCRedistSetup
"{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3FC7CBBC4C1E11DCA1A752EA55D89593}" = DivX Version Checker
"{41E654A9-26D0-4EAC-854B-0FA824FFFABB}" = Windows Live Messenger
"{4393DE35-AD67-4F37-95E4-30F06EA0FDB2}" = Adobe Creative Suite 3 Design Premium
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{52B97218-98CB-4B8B-9283-D213C85E1AA4}" = Windows Live Anmelde-Assistent
"{54793AA1-5001-42F4-ABB6-C364617C6078}" = Adobe Linguistics CS3
"{54B1E5A3-1B29-4582-A226-172A1FC7BA6C}" = Windows Live Family Safety
"{5518E08A-2053-4A3E-85B2-F912D4666C9F}" = Adobe Setup
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{5BB977A4-E843-4E31-9859-745F442B1031}" = Nero 8 Essentials
"{5FC68772-6D56-41C6-9DF1-24E868198AE6}" = Windows Live Call
"{6ABE0BEE-D572-4FE8-B434-9E72A289431B}" = Adobe Fonts All
"{6B708481-748A-4EB4-97C1-CD386244FF77}" = Adobe MotionPicture Color Files
"{6BBAA81D-6A7E-43AD-8889-2F002DCAAFDD}" = AHV content for Acrobat and Flash
"{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}" = Adobe Asset Services CS3
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{73B5D990-04EA-4751-B10F-5534770B91F2}" = Adobe Color EU Recommended Settings
"{73C6DCFB-B606-47F3-BDFA-9A4FBF931E37}" = ICQ7.4
"{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"{76618402-179D-4699-A66B-D351C59436BC}" = Windows Live Sync
"{767CC44C-9BBC-438D-BAD3-FD4595DD148B}" = VC80CRTRedist - 8.0.50727.762
"{802771A9-A856-4A41-ACF7-1450E523C923}" = Adobe XMP Panels CS3
"{81821BF8-DA20-4F8C-AA87-F70A274828D4}" = Windows Live Writer
"{853A4763-6643-4604-8D64-28BDD8925F4C}" = Apple Application Support
"{8927E07C-97F7-4A54-88FB-D976F50DD46E}" = Turbo Lister 2
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player
"{8C453F13-6877-4D34-8816-009ABDE306DB}" = Prince of Persia The Sands of Time
"{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}" = Adobe Device Central CS3
"{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}" = Adobe Type Support
"{90110407-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{90176341-0A8B-4CCC-A78D-F862228A6B95}" = Adobe Anchor Service CS3
"{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95120000-0120-0407-0000-0000000FF1CE}" = Microsoft Office Outlook Connector
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9C9824D9-9000-4373-A6A5-D0E5D4831394}" = Adobe Bridge CS3
"{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}" = Adobe CMaps
"{A2D81E70-2A98-4A08-A628-94388B063C5E}" = Adobe Color - Photoshop Specific
"{A2F166A0-F031-4E27-A057-C69733219434}_is1" = Runes of Magic
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}" = PDF Settings
"{AC76BA86-7AD7-1031-7B44-A81200000003}" = Adobe Reader 8.1.2 - Deutsch
"{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}" = Adobe Camera Raw 4.0
"{B671CBFD-4109-4D35-9252-3062D3CCB7B2}" = Adobe SING CS3
"{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Web Player
"{B73CFB12-C814-4638-AFFD-7E3AAFAF0B4E}" = Adobe BridgeTalk Plugin CS3
"{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}" = Adobe Default Language CS3
"{BC4F8E84-5E29-49EC-B4E7-E6F9CB50986C}" = Adobe Flash Player 9 ActiveX
"{BE5F3842-8309-4754-92D5-83E02E6077A3}" = Adobe Extension Manager CS3
"{C27BC2A2-30DD-4014-B22E-63EB0DB572F9}" = Logitech Webcam Software
"{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}" = Adobe ExtendScript Toolkit 2
"{C2E4B5BD-32DB-4817-A060-341AB17C3F90}" = Bonjour
"{C3C9EB3D-24FA-4462-B784-0EC6AAFCD2DD}" = Fable - The Lost Chapters
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{C4D738F7-996A-4C81-B8FA-C4E26D767E41}" = Windows Live Mail
"{C5BD220A-EFE8-48A5-B70E-9503D535FACE}" = Adobe WAS CS3
"{C6996F17-9233-49EB-8084-E73E5272DAF4}" = AGEIA PhysX v7.05.05
"{CACAEB5F-174D-4C7C-AC56-A33289A807CA}" = Apple Mobile Device Support
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones
"{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty(R) 2
"{D0DFF92A-492E-4C40-B862-A74A173C25C5}" = Adobe Version Cue CS3 Client
"{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}" = Adobe PDF Library Files
"{D3C605D8-3A5E-4BAD-965D-2C61441BF2AC}" = Adobe Photoshop CS3
"{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}" = Adobe Color Common Settings
"{DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029}" = Adobe Color JA Extra Settings
"{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}" = Skype™ 5.1
"{E69AE897-9E0B-485C-8552-7841F48D42D8}" = Adobe Update Manager CS3
"{EA7B3CC4-366D-4CF6-8350-FD7A7034116E}" = Adobe InDesign CS3 Icon Handler
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F138762F-5A1F-4CF0-A5E1-1588EF6088A4}" = The Witcher
"{F2835483-37F2-4123-B4FE-0E77D58447F2}" = Far Cry 2
"{F8FF18EE-264A-43FD-B2F6-5EAD40798C2F}" = Windows Live Essentials
"{FF29A7E2-FF40-4D07-B7E4-2093DE59E10A}" = Adobe Color NA Extra Settings
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11
"Adobe_061850775b1c6d22bf2a145678e05e0" = Adobe Creative Suite 3 Design Premium hinzufügen oder entfernen
"Agatha Christie - Mord im Orient Express" = Agatha Christie - Mord im Orient Express
"Agatha Christie - Und dann gabs keines mehr" = Agatha Christie - Und dann gabs keines mehr
"Akamai" = Akamai NetSession Interface
"AntiVir PersonalEdition Classic" = Avira AntiVir Personal - Free Antivirus
"Cellfactor Revolution" = Cellfactor Revolution
"DyynoPlayer" = DyynoPlayer 0.8.6f.2
"ICQToolbar" = ICQ Toolbar
"InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{C3C9EB3D-24FA-4462-B784-0EC6AAFCD2DD}" = Fable - The Lost Chapters
"InstallShield_{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty(R) 2
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"IrfanView" = IrfanView (remove only)
"Launch of the Screaming Narwhal" = Tales of Monkey Island - Launch of the Screaming Narwhal
"lvdrivers_12.10" = Logitech Webcam Software-Treiberpaket
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 3.5 Language Pack SP1 - deu" = Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Mozilla Firefox (3.6.16)" = Mozilla Firefox (3.6.16)
"NVIDIA Drivers" = NVIDIA Drivers
"PunkBusterSvc" = PunkBuster Services
"S.T.A.L.K.E.R. - Shadow of Chernobyl_is1" = S.T.A.L.K.E.R. - Shadow of Chernobyl
"secretmaryo" = Secret Maryo Chronicles
"Teamspeak 2 RC2_is1" = TeamSpeak 2 RC2
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"VLC media player" = VLC media player 0.9.8a
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR
"Wondershare Photo Collage Studio_is1" = Wondershare Photo Collage Studio 4.2.9.2
"World of Warcraft" = World of Warcraft
"Xfire" = Xfire (remove only)
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 01.04.2011 11:56:02 | Computer Name = Mein-PC | Source = WinMgmt | ID = 10
Description =
Error - 02.04.2011 02:45:15 | Computer Name = Mein-PC | Source = WinMgmt | ID = 10
Description =
Error - 02.04.2011 11:50:52 | Computer Name = Mein-PC | Source = WinMgmt | ID = 10
Description =
Error - 03.04.2011 04:05:24 | Computer Name = Mein-PC | Source = WinMgmt | ID = 10
Description =
Error - 04.04.2011 09:50:27 | Computer Name = Mein-PC | Source = WinMgmt | ID = 10
Description =
Error - 05.04.2011 07:52:43 | Computer Name = Mein-PC | Source = WinMgmt | ID = 10
Description =
Error - 06.04.2011 11:05:42 | Computer Name = Mein-PC | Source = WinMgmt | ID = 10
Description =
Error - 07.04.2011 06:38:59 | Computer Name = Mein-PC | Source = WinMgmt | ID = 10
Description =
Error - 08.04.2011 08:56:13 | Computer Name = Mein-PC | Source = WinMgmt | ID = 10
Description =
Error - 09.04.2011 10:26:14 | Computer Name = Mein-PC | Source = WinMgmt | ID = 10
Description =
[ System Events ]
Error - 18.04.2011 12:58:23 | Computer Name = Mein-PC | Source = HTTP | ID = 15016
Description =
Error - 19.04.2011 06:04:29 | Computer Name = Mein-PC | Source = HTTP | ID = 15016
Description =
Error - 19.04.2011 08:48:36 | Computer Name = Mein-PC | Source = HTTP | ID = 15016
Description =
Error - 20.04.2011 04:38:25 | Computer Name = Mein-PC | Source = HTTP | ID = 15016
Description =
Error - 21.04.2011 05:47:31 | Computer Name = Mein-PC | Source = HTTP | ID = 15016
Description =
Error - 22.04.2011 04:00:34 | Computer Name = Mein-PC | Source = HTTP | ID = 15016
Description =
Error - 23.04.2011 06:20:04 | Computer Name = Mein-PC | Source = HTTP | ID = 15016
Description =
Error - 24.04.2011 04:57:24 | Computer Name = Mein-PC | Source = HTTP | ID = 15016
Description =
Error - 24.04.2011 08:15:50 | Computer Name = Mein-PC | Source = HTTP | ID = 15016
Description =
Error - 25.04.2011 04:25:27 | Computer Name = Mein-PC | Source = HTTP | ID = 15016
Description =
< End of report > --- --- --- |