mystart incredibar bei einem Softtonic Download eingefangen

Diskutiere und helfe bei mystart incredibar bei einem Softtonic Download eingefangen im Bereich freie Fragen im SysProfile Forum bei einer Lösung; Nein, nicht unbdingt. Hast Du versucht diese Toolbar über Systemsteuerung > Programme deinstallieren zu entfernen? Dieses Thema im Forum "freie Fragen" wurde erstellt von Leari, 8. Juli 2012.

  1. Unregistriert
    Unregistriert Gast

    Nein, nicht unbdingt.

    Hast Du versucht diese Toolbar über Systemsteuerung > Programme deinstallieren zu entfernen?
     
    #16 Unregistriert, 11. Juli 2012
  2. Leari
    Leari Grünschnabel
    Themenstarter
    Registriert seit:
    8. Juli 2012
    Beiträge:
    11
    Zustimmungen:
    0

    jetzt ist es wieder da.
     
  3. Unregistriert
    Unregistriert Gast
    OTL logfile created on: 30.09.2012 13:08:05 - Run 1
    OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\NB-Admin\Downloads
    Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
    Internet Explorer (Version = 9.0.8112.16421)
    Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy

    2,91 Gb Total Physical Memory | 0,94 Gb Available Physical Memory | 32,26% Memory free
    10,91 Gb Paging File | 7,91 Gb Available in Paging File | 72,48% Paging File free
    Paging file location(s): c:\pagefile.sys 8192 8192 [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
    Drive C: | 200,34 Gb Total Space | 26,11 Gb Free Space | 13,04% Space Free | Partition Type: NTFS
    Drive D: | 97,66 Gb Total Space | 65,40 Gb Free Space | 66,97% Space Free | Partition Type: NTFS
    Drive G: | 1,27 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
    Drive H: | 482,74 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
    Drive I: | 1,37 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS

    Computer Name: LT520 | User Name: NB-Admin | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: All users
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 90 Days

    ========== Processes (SafeList) ==========

    PRC - C:\Users\NB-Admin\Downloads\OTL.exe (OldTimer Tools)
    PRC - C:\Programme\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
    PRC - C:\Programme\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
    PRC - C:\Programme\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
    PRC - C:\Programme\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
    PRC - C:\Programme\Microsoft Security Client\msseces.exe (Microsoft Corporation)
    PRC - c:\Programme\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation)
    PRC - C:\Programme\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe (Logitech Inc.)
    PRC - C:\Programme\Adobe\Acrobat 9.0\Acrobat\acrotray.exe (Adobe Systems Inc.)
    PRC - C:\Programme\Winamp\winampa.exe (Nullsoft, Inc.)
    PRC - C:\Programme\Logitech\LWS\Webcam Software\LWS.exe (Logitech Inc.)
    PRC - C:\Programme\Logitech\LWS\Webcam Software\CameraHelperShell.exe ()
    PRC - C:\Programme\Common Files\LogiShrd\LQCVFX\COCIManager.exe ()
    PRC - C:\Programme\DivX\DivX Update\DivXUpdate.exe ()
    PRC - C:\Programme\Lenovo\System Update\SUService.exe (Lenovo Group Limited)
    PRC - C:\Programme\Synaptics\SynTP\SynTPLpr.exe (Synaptics Incorporated)
    PRC - C:\Programme\Lenovo\AutoLock\ALCKRESI.exe (Lenovo Group Limited)
    PRC - C:\Programme\ThinkPad\Utilities\DOZESVC.EXE (Lenovo.)
    PRC - C:\Programme\ThinkPad\Utilities\PWMEWSVC.exe (Lenovo Group Limited)
    PRC - C:\Programme\ThinkPad\Utilities\SCHTASK.EXE (Lenovo Group Limited)
    PRC - C:\Programme\Lenovo\HOTKEY\TPONSCR.exe (Lenovo Group Limited)
    PRC - C:\Programme\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (NVIDIA Corporation)
    PRC - C:\Programme\NVIDIA Corporation\Display\NvXDSync.exe (NVIDIA Corporation)
    PRC - C:\Programme\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
    PRC - C:\Programme\Lenovo\HOTKEY\tphkload.exe (Lenovo Group Limited)
    PRC - C:\Programme\Lenovo\Access Connections\SvcGuiHlpr.exe (Lenovo)
    PRC - C:\Programme\Lenovo\Access Connections\AcSvc.exe (Lenovo)
    PRC - C:\Programme\Lenovo\Access Connections\AcPrfMgrSvc.exe (Lenovo)
    PRC - C:\Programme\Lenovo\ZOOM\TpScrex.exe (Lenovo Group Limited)
    PRC - C:\Programme\Lenovo\HOTKEY\tpnumlkd.exe (Lenovo Group Limited)
    PRC - C:\Programme\Lenovo\HOTKEY\micmute.exe (Lenovo Group Limited)
    PRC - C:\Programme\Lenovo\Screen Reading Optimizer\SRORest.exe (Lenovo Group Limited)
    PRC - C:\Programme\Lenovo\HOTKEY\TPHKSVC.exe (Lenovo Group Limited)
    PRC - C:\Windows\System32\SASrv.exe (Conexant Systems, Inc.)
    PRC - C:\Programme\Lenovo\Screen Reading Optimizer\SROSVC.exe (Lenovo Group Limited)
    PRC - C:\Windows\explorer.exe (Microsoft Corporation)
    PRC - C:\Programme\Intel\Services\IPT\jhi_service.exe (Intel Corporation)
    PRC - C:\Programme\OpenOffice.org 3\program\soffice.exe (OpenOffice.org)
    PRC - C:\Programme\OpenOffice.org 3\program\soffice.bin (OpenOffice.org)
    PRC - C:\Programme\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation)
    PRC - C:\Programme\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation)
    PRC - C:\Programme\Logitech\Vid HD\Vid.exe (Logitech Inc.)
    PRC - C:\Windows\System32\CxAudMsg32.exe (Conexant Systems Inc.)
    PRC - C:\Programme\Lenovo\Communications Utility\TPKNRSVC.exe (Lenovo Group Limited)
    PRC - C:\Programme\Lenovo\Communications Utility\TpKnrres.exe (Lenovo Group Limited)
    PRC - C:\Programme\Lenovo\Communications Utility\CamMute.exe (Lenovo Group Limited)
    PRC - C:\Programme\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
    PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation)
    PRC - C:\Programme\o2\Mobile Connection Manager\ImpWiFiSvc.exe (Telefónica I+D)
    PRC - C:\Programme\Lenovo\HOTKEY\tpnumlk.exe (Lenovo Group Limited)
    PRC - C:\Programme\CONEXANT\ForteConfig\fmapp.exe ()
    PRC - C:\Programme\Motorola\MotoHelper\MotoHelperService.exe ()
    PRC - C:\Programme\Motorola\MotoHelper\MotoHelperAgent.exe ()
    PRC - C:\Programme\Common Files\SNP2UVC\tsnp2uvc.exe (Sonix Technology Co., Ltd.)
    PRC - C:\Programme\Lenovo\VIRTSCRL\lvvsst.exe (Lenovo Group Limited)
    PRC - C:\Programme\Lenovo\VIRTSCRL\virtscrl.exe (Lenovo Group Limited)
    PRC - C:\Programme\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe (Adobe Systems Incorporated)
    PRC - C:\Windows\System32\spool\drivers\w32x86\3\E_FATIGGE.EXE (SEIKO EPSON CORPORATION)
    PRC - C:\Programme\Common Files\EPSON\EPW!3 SSRP\E_S50ST7.EXE (SEIKO EPSON CORPORATION)
    PRC - C:\Programme\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE (SEIKO EPSON CORPORATION)
    PRC - C:\Windows\vsnp2uvc.exe (Sonix)
    PRC - C:\Programme\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
    PRC - C:\Programme\Nero\Nero BackItUp 4\IoctlSvc.exe (Prolific Technology Inc.)
    PRC - C:\Programme\Integrated Camera Driver\RCIMGDIR.exe (Ricoh co.,Ltd.)
    PRC - C:\Windows\System32\ICO.EXE (Primax Electronics Ltd.)


    ========== Modules (No Company Name) ==========

    MOD - C:\Users\NB-Admin\AppData\Local\Google\Chrome\Application\22.0.1229.79\ppGoogleNaClPluginChrome.dll ()
    MOD - C:\Users\NB-Admin\AppData\Local\Google\Chrome\Application\22.0.1229.79\PepperFlash\pepflashplayer.dll ()
    MOD - C:\Users\NB-Admin\AppData\Local\Google\Chrome\Application\22.0.1229.79\pdf.dll ()
    MOD - C:\Users\NB-Admin\AppData\Local\Google\Chrome\Application\22.0.1229.79\libglesv2.dll ()
    MOD - C:\Users\NB-Admin\AppData\Local\Google\Chrome\Application\22.0.1229.79\libegl.dll ()
    MOD - C:\Users\NB-Admin\AppData\Local\Google\Chrome\Application\22.0.1229.79\avutil-51.dll ()
    MOD - C:\Users\NB-Admin\AppData\Local\Google\Chrome\Application\22.0.1229.79\avformat-54.dll ()
    MOD - C:\Users\NB-Admin\AppData\Local\Google\Chrome\Application\22.0.1229.79\avcodec-54.dll ()
    MOD - C:\Programme\Common Files\LogiShrd\LWSPlugins\LWS\Applets\CameraHelper\DevManagerCore.dll ()
    MOD - C:\Programme\Logitech\LWS\Webcam Software\CameraHelperShell.exe ()
    MOD - C:\Programme\OpenOffice.org 3\program\libxml2.dll ()
    MOD - C:\Programme\Common Files\LogiShrd\LQCVFX\COCIManager.exe ()
    MOD - C:\Programme\DivX\DivX Update\DivXUpdateCheck.dll ()
    MOD - C:\Programme\DivX\DivX Update\DivXUpdate.exe ()
    MOD - C:\Programme\Synaptics\SynTP\SynTPEnhPS.dll ()
    MOD - C:\Programme\ThinkPad\Utilities\GR\PWMRT32V.DLL ()
    MOD - C:\Programme\Lenovo\AutoLock\cxcore210.dll ()
    MOD - C:\Programme\Lenovo\AutoLock\cv210.dll ()
    MOD - C:\Programme\NVIDIA Corporation\coprocmanager\detoured.dll ()
    MOD - C:\Windows\System32\IccLibDll.dll ()
    MOD - C:\Programme\Logitech\LWS\Webcam Software\ImageFormats\QJpeg4.dll ()
    MOD - C:\Programme\Logitech\LWS\Webcam Software\ImageFormats\QGif4.dll ()
    MOD - C:\Programme\Logitech\LWS\Webcam Software\QTXml4.dll ()
    MOD - C:\Programme\Logitech\LWS\Webcam Software\QTGui4.dll ()
    MOD - C:\Programme\Logitech\LWS\Webcam Software\QTCore4.dll ()
    MOD - C:\Programme\Logitech\Vid HD\vpxmd.dll ()
    MOD - C:\Programme\Logitech\Vid HD\SDL.dll ()
    MOD - C:\Programme\CONEXANT\ForteConfig\fmapp.exe ()
    MOD - C:\Programme\Motorola\MotoHelper\MotoHelperAgent.exe ()
    MOD - C:\Programme\Logitech\Vid HD\QtNetwork4.dll ()
    MOD - C:\Programme\Logitech\Vid HD\QtCore4.dll ()
    MOD - C:\Programme\Logitech\Vid HD\plugins\imageformats\qjpeg4.dll ()
    MOD - C:\Programme\Logitech\Vid HD\plugins\imageformats\qico4.dll ()
    MOD - C:\Programme\Logitech\Vid HD\plugins\imageformats\qgif4.dll ()
    MOD - C:\Programme\Logitech\Vid HD\QtWebKit4.dll ()
    MOD - C:\Programme\Logitech\Vid HD\QtXml4.dll ()
    MOD - C:\Programme\Logitech\Vid HD\QtSql4.dll ()
    MOD - C:\Programme\Logitech\Vid HD\QtOpenGL4.dll ()
    MOD - C:\Programme\Logitech\Vid HD\QtGui4.dll ()
    MOD - C:\Programme\Logitech\Vid HD\phonon4.dll ()
    MOD - C:\Programme\Adobe\Acrobat 9.0\Acrobat\AcroTray.DEU ()
    MOD - C:\Programme\WinRAR\RarExt.dll ()


    ========== Services (SafeList) ==========

    SRV - (MBAMService) -- C:\Programme\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
    SRV - (MBAMScheduler) -- C:\Programme\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
    SRV - (FLEXnet Licensing Service) -- C:\Programme\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
    SRV - (AdobeARMservice) -- C:\Programme\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
    SRV - (DraftSight API Service) -- C:\Programme\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe (Dassault Systèmes)
    SRV - (NisSrv) -- c:\Programme\Microsoft Security Client\NisSrv.exe (Microsoft Corporation)
    SRV - (MsMpSvc) -- c:\Programme\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation)
    SRV - (SkypeUpdate) -- C:\Programme\Skype\Updater\Updater.exe (Skype Technologies)
    SRV - (UMVPFSrv) -- C:\Programme\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe (Logitech Inc.)
    SRV - (SUService) -- C:\Programme\Lenovo\System Update\SUService.exe (Lenovo Group Limited)
    SRV - (DozeSvc) -- C:\Programme\ThinkPad\Utilities\DOZESVC.EXE (Lenovo.)
    SRV - (PwmEWSvc) -- C:\Programme\ThinkPad\Utilities\PWMEWSVC.exe (Lenovo Group Limited)
    SRV - (Power Manager DBC Service) -- C:\Programme\ThinkPad\Utilities\PWMDBSVC.exe (Lenovo)
    SRV - (nvUpdatusService) -- C:\Programme\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (NVIDIA Corporation)
    SRV - (Stereo Service) -- C:\Programme\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
    SRV - (TPHKLOAD) -- C:\Programme\Lenovo\HOTKEY\tphkload.exe (Lenovo Group Limited)
    SRV - (AcSvc) -- C:\Programme\Lenovo\Access Connections\AcSvc.exe (Lenovo)
    SRV - (AcPrfMgrSvc) -- C:\Programme\Lenovo\Access Connections\AcPrfMgrSvc.exe (Lenovo)
    SRV - (LENOVO.MICMUTE) -- C:\Programme\Lenovo\HOTKEY\micmute.exe (Lenovo Group Limited)
    SRV - (TPHKSVC) -- C:\Programme\Lenovo\HOTKEY\TPHKSVC.exe (Lenovo Group Limited)
    SRV - (SAService) -- C:\Windows\System32\SASrv.exe (Conexant Systems, Inc.)
    SRV - (SROSVC) -- C:\Programme\Lenovo\Screen Reading Optimizer\SROSVC.exe (Lenovo Group Limited)
    SRV - (jhi_service) -- C:\Programme\Intel\Services\IPT\jhi_service.exe (Intel Corporation)
    SRV - (UNS) -- C:\Programme\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation)
    SRV - (LMS) -- C:\Programme\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation)
    SRV - (CxAudMsg) -- C:\Windows\System32\CxAudMsg32.exe (Conexant Systems Inc.)
    SRV - (LENOVO.TPKNRSVC) -- C:\Programme\Lenovo\Communications Utility\TPKNRSVC.exe (Lenovo Group Limited)
    SRV - (LENOVO.CAMMUTE) -- C:\Programme\Lenovo\Communications Utility\CamMute.exe (Lenovo Group Limited)
    SRV - (WinHttpAutoProxySvc) -- winhttp.dll (Microsoft Corporation)
    SRV - (WMPNetworkSvc) -- C:\Programme\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
    SRV - (TGCM_ImportWiFiSvc) -- C:\Programme\o2\Mobile Connection Manager\ImpWiFiSvc.exe (Telefónica I+D)
    SRV - (MotoHelper) -- C:\Programme\Motorola\MotoHelper\MotoHelperService.exe ()
    SRV - (Lenovo.VIRTSCRLSVC) -- C:\Programme\Lenovo\VIRTSCRL\lvvsst.exe (Lenovo Group Limited)
    SRV - (SwitchBoard) -- C:\Programme\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
    SRV - (EPSON_EB_RPCV4_04) -- C:\Programme\Common Files\EPSON\EPW!3 SSRP\E_S50ST7.EXE (SEIKO EPSON CORPORATION)
    SRV - (EPSON_PM_RPCV4_04) -- C:\Programme\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE (SEIKO EPSON CORPORATION)
    SRV - (StorSvc) -- C:\Windows\System32\StorSvc.dll (Microsoft Corporation)
    SRV - (SensrSvc) -- C:\Windows\System32\sensrsvc.dll (Microsoft Corporation)
    SRV - (PeerDistSvc) -- C:\Windows\System32\PeerDistSvc.dll (Microsoft Corporation)
    SRV - (WinDefend) -- C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation)
    SRV - (Nero BackItUp Scheduler 4.0) -- C:\Programme\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
    SRV - (PLFlash DeviceIoControl Service) -- C:\Programme\Nero\Nero BackItUp 4\IoctlSvc.exe (Prolific Technology Inc.)


    ========== Driver Services (SafeList) ==========

    DRV - (MBAMProtector) -- C:\Windows\System32\drivers\mbam.sys (Malwarebytes Corporation)
    DRV - (dtsoftbus01) -- C:\Windows\System32\drivers\dtsoftbus01.sys (DT Soft Ltd)
    DRV - (NisDrv) -- C:\Windows\System32\drivers\NisDrvWFP.sys (Microsoft Corporation)
    DRV - (LVUVC) -- C:\Windows\System32\drivers\lvuvc.sys (Logitech Inc.)
    DRV - (LVRS) -- C:\Windows\System32\drivers\lvrs.sys (Logitech Inc.)
    DRV - (DozeHDD) -- C:\Windows\System32\drivers\DOZEHDD.SYS (Lenovo.)
    DRV - (TPPWRIF) -- C:\Windows\System32\drivers\TPPWR32V.SYS (Lenovo Group Limited)
    DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation)
    DRV - (nvpciflt) -- C:\Windows\System32\drivers\nvpciflt.sys (NVIDIA Corporation)
    DRV - (NVHDA) -- C:\Windows\System32\drivers\nvhda32v.sys (NVIDIA Corporation)
    DRV - (RTL8192Ce) -- C:\Windows\System32\drivers\rtl8192ce.sys (Realtek Semiconductor Corporation )
    DRV - (Shockprf) -- C:\Windows\System32\drivers\ApsX86.sys (Lenovo.)
    DRV - (TPDIGIMN) -- C:\Windows\System32\drivers\ApsHM86.sys (Lenovo.)
    DRV - (risdxc) -- C:\Windows\System32\drivers\risdxc86.sys (REDC)
    DRV - (5U877) -- C:\Windows\System32\drivers\5U877.sys (Ricoh co.,Ltd.)
    DRV - (CnxtHdAudService) -- C:\Windows\System32\drivers\CHDRT32.sys (Conexant Systems Inc.)
    DRV - (e1cexpress) -- C:\Windows\System32\drivers\e1c6232.sys (Intel Corporation)
    DRV - (vmbus) -- C:\Windows\System32\drivers\vmbus.sys (Microsoft Corporation)
    DRV - (storflt) -- C:\Windows\System32\drivers\vmstorfl.sys (Microsoft Corporation)
    DRV - (storvsc) -- C:\Windows\System32\drivers\storvsc.sys (Microsoft Corporation)
    DRV - (TsUsbFlt) -- C:\Windows\System32\drivers\TsUsbFlt.sys (Microsoft Corporation)
    DRV - (WinUsb) -- C:\Windows\System32\drivers\winusb.sys (Microsoft Corporation)
    DRV - (VMBusHID) -- C:\Windows\System32\drivers\VMBusHID.sys (Microsoft Corporation)
    DRV - (s3cap) -- C:\Windows\System32\drivers\vms3cap.sys (Microsoft Corporation)
    DRV - (MEI) -- C:\Windows\System32\drivers\HECI.sys (Intel Corporation)
    DRV - (lenovo.smi) -- C:\Windows\System32\drivers\smiif32.sys (Lenovo Group Limited)
    DRV - (SNP2UVC) -- C:\Windows\System32\drivers\snp2uvc.sys ()
    DRV - (motmodem) -- C:\Windows\System32\drivers\motmodem.sys (Motorola)
    DRV - (motccgp) -- C:\Windows\System32\drivers\motccgp.sys (Motorola)
    DRV - (Motousbnet) -- C:\Windows\System32\drivers\Motousbnet.sys (Motorola)
    DRV - (ZTEusbser6k) -- C:\Windows\System32\drivers\ZTEusbser6k.sys (ZTE Incorporated)
    DRV - (ZTEusbnmea) -- C:\Windows\System32\drivers\ZTEusbnmea.sys (ZTE Incorporated)
    DRV - (ZTEusbmdm6k) -- C:\Windows\System32\drivers\ZTEusbmdm6k.sys (ZTE Incorporated)
    DRV - (motusbdevice) -- C:\Windows\System32\drivers\motusbdevice.sys (Motorola Inc)
    DRV - (massfilter) -- C:\Windows\System32\drivers\massfilter.sys (ZTE Incorporated)
    DRV - (vwifimp) -- C:\Windows\System32\drivers\vwifimp.sys (Microsoft Corporation)
    DRV - (TPM) -- C:\Windows\System32\drivers\tpm.sys (Microsoft Corporation)
    DRV - (massfilter_hs) -- C:\Windows\System32\drivers\massfilter_hs.sys (ZTE Incorporated)
    DRV - (motccgpfl) -- C:\Windows\System32\drivers\motccgpfl.sys (Motorola)
    DRV - (BTCFilterService) -- C:\Windows\System32\drivers\motfilt.sys (Motorola Inc)
    DRV - (pelmouse) -- C:\Windows\System32\drivers\PELMOUSE.SYS (Primax Electronics Ltd.)
    DRV - (MotoSwitchService) -- C:\Windows\System32\drivers\motswch.sys (Motorola)
    DRV - (psadd) -- C:\Windows\System32\drivers\psadd.sys (Lenovo (United States) Inc.)
    DRV - (pelusblf) -- C:\Windows\System32\drivers\PELUSBlf.SYS (Primax Electronics Ltd.)


    ========== Standard Registry (SafeList) ==========


    ========== Internet Explorer ==========

    IE - HKLM\..\URLSearchHook: {c840e246-6b95-475e-9bd7-caa1c7eca9f2} - C:\Programme\uTorrentBar_DE\prxtbuTor.dll (Conduit Ltd.)
    IE - HKLM\..\SearchScopes,DefaultScope = {006ee092-9658-4fd6-bd8e-a21a348e59f5}
    IE - HKLM\..\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}: "URL" = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=DE&userid=663de060-4375-493e-b91f-92ad708471f0&affid=111585&searchtype=ds&babsrc=lnkry&q={searchTerms}
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


    IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



    IE - HKU\S-1-5-21-4236169059-776943552-3619825814-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDY&co=DE&userid=663de060-4375-493e-b91f-92ad708471f0&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms}
    IE - HKU\S-1-5-21-4236169059-776943552-3619825814-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDY&co=DE&userid=663de060-4375-493e-b91f-92ad708471f0&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms}
    IE - HKU\S-1-5-21-4236169059-776943552-3619825814-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Suche
    IE - HKU\S-1-5-21-4236169059-776943552-3619825814-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN Deutschland: Hotmail, Skype Download und Messenger sowie Nachrichten, Unterhaltung, Video, Sport, Lifestyle, Finanzen, Auto uvm. bei MSN
    IE - HKU\S-1-5-21-4236169059-776943552-3619825814-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
    IE - HKU\S-1-5-21-4236169059-776943552-3619825814-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 3E 36 D3 71 33 83 CC 01 [binary data]
    IE - HKU\S-1-5-21-4236169059-776943552-3619825814-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDY&co=DE&userid=663de060-4375-493e-b91f-92ad708471f0&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms}
    IE - HKU\S-1-5-21-4236169059-776943552-3619825814-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDY&co=DE&userid=663de060-4375-493e-b91f-92ad708471f0&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms}
    IE - HKU\S-1-5-21-4236169059-776943552-3619825814-1000\..\SearchScopes,DefaultScope = {CFF4DB9B-135F-47c0-9269-B4C6572FD61A}
    IE - HKU\S-1-5-21-4236169059-776943552-3619825814-1000\..\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}: "URL" = http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDY&co=DE&userid=663de060-4375-493e-b91f-92ad708471f0&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms}
    IE - HKU\S-1-5-21-4236169059-776943552-3619825814-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
    IE - HKU\S-1-5-21-4236169059-776943552-3619825814-1000\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/web/{searchTerms}?babsrc=browsersearch
    IE - HKU\S-1-5-21-4236169059-776943552-3619825814-1000\..\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}: "URL" = http://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
    IE - HKU\S-1-5-21-4236169059-776943552-3619825814-1000\..\SearchScopes\{886688C9-92E8-41EC-87D2-1770DE349ED6}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2851647
    IE - HKU\S-1-5-21-4236169059-776943552-3619825814-1000\..\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}: "URL" = http://mystart.incredibar.com/mb155/?search={searchTerms}&loc=IB_DS&a=6PQKWWd28Z&i=26
    IE - HKU\S-1-5-21-4236169059-776943552-3619825814-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


    ========== FireFox ==========

    FF - prefs.js..browser.search.defaultenginename: "MyStart Search"
    FF - prefs.js..browser.search.defaultthis.engineName: "uTorrentBar_DE Customized Web Search"
    FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2851647&SearchSource=3&q={searchTerms}"
    FF - prefs.js..browser.search.order.1: "Search the web (Babylon)"
    FF - prefs.js..browser.search.selectedEngine: "ICQ Search"
    FF - prefs.js..browser.startup.homepage: "http://search.conduit.com/?ctid=CT2851647&SearchSource=13"
    FF - prefs.js..extensions.enabledAddons: {3b56bcc7-54e5-44a2-9b44-66c3ef58c13e}:0.9.5.1
    FF - prefs.js..extensions.enabledAddons: {800b5000-a755-47e1-992b-48a1c1357f07}:1.5.0
    FF - prefs.js..extensions.enabledAddons: crossriderapp3491@crossrider.com:0.81.20
    FF - prefs.js..extensions.enabledAddons: {c840e246-6b95-475e-9bd7-caa1c7eca9f2}:3.13.0.6
    FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2851647&SearchSource=2&q="
    FF - prefs.js..network.proxy.type: 0


    FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
    FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
    FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
    FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.5.1: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
    FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1: C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
    FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
    FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
    FF - HKLM\Software\MozillaPlugins\Adobe Acrobat: C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
    FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
    FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\NB-Admin\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
    FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\NB-Admin\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)

    FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012.08.18 21:03:13 | 000,000,000 | ---D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012.09.27 10:22:00 | 000,000,000 | ---D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012.09.27 10:22:00 | 000,000,000 | ---D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 7.0.1\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2012.09.27 10:22:00 | 000,000,000 | ---D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 7.0.1\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins [2012.09.27 10:22:00 | 000,000,000 | ---D | M]

    [2011.10.06 07:28:33 | 000,000,000 | ---D | M] (No name found) -- C:\Users\NB-Admin\AppData\Roaming\mozilla\Extensions
    [2012.09.27 23:46:08 | 000,000,000 | ---D | M] (No name found) -- C:\Users\NB-Admin\AppData\Roaming\mozilla\Firefox\Profiles\6jk2j9wl.default\extensions
    [2012.01.07 20:56:59 | 000,000,000 | ---D | M] (Html Validator) -- C:\Users\NB-Admin\AppData\Roaming\mozilla\Firefox\Profiles\6jk2j9wl.default\extensions\{3b56bcc7-54e5-44a2-9b44-66c3ef58c13e}
    [2012.05.07 22:00:30 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Users\NB-Admin\AppData\Roaming\mozilla\Firefox\Profiles\6jk2j9wl.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
    [2012.06.28 22:27:39 | 000,000,000 | ---D | M] (uTorrentBar_DE Community Toolbar) -- C:\Users\NB-Admin\AppData\Roaming\mozilla\Firefox\Profiles\6jk2j9wl.default\extensions\{c840e246-6b95-475e-9bd7-caa1c7eca9f2}
    [2012.06.28 22:27:03 | 000,000,000 | ---D | M] ("Vid-Saver") -- C:\Users\NB-Admin\AppData\Roaming\mozilla\Firefox\Profiles\6jk2j9wl.default\extensions\crossriderapp3491@crossrider.com
    [2012.01.03 10:47:54 | 000,000,000 | ---D | M] (Babylon) -- C:\Users\NB-Admin\AppData\Roaming\mozilla\Firefox\Profiles\6jk2j9wl.default\extensions\ffxtlbr@babylon.com
    [2012.05.30 12:37:46 | 000,000,931 | ---- | M] () -- C:\Users\NB-Admin\AppData\Roaming\mozilla\firefox\profiles\6jk2j9wl.default\searchplugins\conduit.xml
    [2012.09.27 23:46:17 | 000,000,950 | ---- | M] () -- C:\Users\NB-Admin\AppData\Roaming\mozilla\firefox\profiles\6jk2j9wl.default\searchplugins\icqplugin-1.xml
    [2011.03.30 15:14:34 | 000,001,042 | ---- | M] () -- C:\Users\NB-Admin\AppData\Roaming\mozilla\firefox\profiles\6jk2j9wl.default\searchplugins\icqplugin.xml
    [2011.12.01 22:36:47 | 000,005,604 | ---- | M] () -- C:\Users\NB-Admin\AppData\Roaming\mozilla\firefox\profiles\6jk2j9wl.default\searchplugins\Linkury Smartbar Search.xml
    [2012.09.27 23:45:49 | 000,002,203 | ---- | M] () -- C:\Users\NB-Admin\AppData\Roaming\mozilla\firefox\profiles\6jk2j9wl.default\searchplugins\MyStart Search.xml
    [2012.09.04 13:39:18 | 000,002,469 | ---- | M] () -- C:\Users\NB-Admin\AppData\Roaming\mozilla\firefox\profiles\6jk2j9wl.default\searchplugins\Web Search.xml
    [2011.12.31 22:41:05 | 000,000,000 | ---D | M] (No name found) -- C:\Programme\Mozilla Firefox\extensions
    [2011.11.22 15:25:46 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
    [2011.12.09 19:23:32 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\mozilla firefox\plugins\npwachk.dll
    [2011.09.23 03:52:52 | 000,001,392 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazondotcom-de.xml
    [2011.12.31 22:36:45 | 000,002,191 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml
    [2011.09.23 03:46:24 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
    [2011.09.23 03:52:52 | 000,001,153 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-de.xml
    [2011.09.23 03:52:52 | 000,006,805 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\leo_ende_de.xml
    [2011.09.23 03:52:52 | 000,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-de.xml
    [2011.09.23 03:52:52 | 000,001,105 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-de.xml

    ========== Chrome ==========

    CHR - homepage: Babylon Search
    CHR - default_search_provider: Google (Enabled)
    CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
    CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}
    CHR - homepage: Babylon Search
    CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
    CHR - plugin: Native Client (Enabled) = C:\Users\NB-Admin\AppData\Local\Google\Chrome\Application\22.0.1229.79\ppGoogleNaClPluginChrome.dll
    CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\NB-Admin\AppData\Local\Google\Chrome\Application\22.0.1229.79\pdf.dll
    CHR - plugin: Shockwave Flash (Enabled) = C:\Users\NB-Admin\AppData\Local\Google\Chrome\Application\22.0.1229.79\gcswf32.dll
    CHR - plugin: Shockwave Flash (Enabled) = C:\Users\NB-Admin\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
    CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32.dll
    CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
    CHR - plugin: Winamp Application Detector (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npwachk.dll
    CHR - plugin: NVIDIA 3D Vision (Enabled) = C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll
    CHR - plugin: NVIDIA 3D VISION (Enabled) = C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
    CHR - plugin: Java(TM) Platform SE 7 U4 (Enabled) = C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll
    CHR - plugin: Java Deployment Toolkit 7.0.40.255 (Enabled) = C:\Windows\system32\npDeployJava1.dll
    CHR - plugin: Google Update (Enabled) = C:\Users\NB-Admin\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll
    CHR - Extension: New tab for Chrome\u2122 = C:\Users\NB-Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\jifflliplgeajjdhmkcfnngfpgbjonjg\1.0.0_0\
    CHR - Extension: Mehr Leistung und Videoformate f\\u00FCr dein HTML5 \\u003Cvideo\\u003E = C:\Users\NB-Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\

    O1 HOSTS File: ([2009.06.10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
    O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Programme\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
    O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation)
    O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Programme\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O2 - BHO: (uTorrentBar_DE Toolbar) - {c840e246-6b95-475e-9bd7-caa1c7eca9f2} - C:\Programme\uTorrentBar_DE\prxtbuTor.dll (Conduit Ltd.)
    O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation)
    O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Programme\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Programme\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O3 - HKLM\..\Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - No CLSID value found.
    O3 - HKLM\..\Toolbar: (uTorrentBar_DE Toolbar) - {c840e246-6b95-475e-9bd7-caa1c7eca9f2} - C:\Programme\uTorrentBar_DE\prxtbuTor.dll (Conduit Ltd.)
    O3 - HKU\S-1-5-21-4236169059-776943552-3619825814-1000\..\Toolbar\WebBrowser: (uTorrentBar_DE Toolbar) - {C840E246-6B95-475E-9BD7-CAA1C7ECA9F2} - C:\Programme\uTorrentBar_DE\prxtbuTor.dll (Conduit Ltd.)
    O4 - HKLM..\Run: [] File not found
    O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
    O4 - HKLM..\Run: [AcWin7Hlpr] C:\Programme\Lenovo\Access Connections\AcTBenabler.exe (Lenovo)
    O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
    O4 - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
    O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated)
    O4 - HKLM..\Run: [ALCKRESI.EXE] C:\Programme\Lenovo\AutoLock\ALCKRESI.exe (Lenovo Group Limited)
    O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
    O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
    O4 - HKLM..\Run: [ForteConfig] C:\Programme\CONEXANT\ForteConfig\fmapp.exe ()
    O4 - HKLM..\Run: [LENOVO.TPKNRRES] C:\Programme\Lenovo\Communications Utility\TpKnrres.exe (Lenovo Group Limited)
    O4 - HKLM..\Run: [LWS] C:\Program Files\Logitech\LWS\Webcam Software\LWS.exe (Logitech Inc.)
    O4 - HKLM..\Run: [Mouse Suite 98 Daemon] ICO.EXE (Primax Electronics Ltd.)
    O4 - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
    O4 - HKLM..\Run: [NBKeyScan] C:\Program Files\Nero\Nero BackItUp 4\NBKeyScan.exe (Nero AG)
    O4 - HKLM..\Run: [Nikon Message Center 2] C:\Program Files\Nikon\Nikon Message Center 2\NkMC2.exe (Nikon Corporation)
    O4 - HKLM..\Run: [PWMTRV] C:\Programme\ThinkPad\Utilities\PWMTR32V.DLL (Lenovo Group Limited)
    O4 - HKLM..\Run: [RotateImage] C:\Programme\Integrated Camera Driver\RCIMGDIR.exe (Ricoh co.,Ltd.)
    O4 - HKLM..\Run: [SmartAudio] C:\Program Files\CONEXANT\SAII\SAIICpl.exe (Conexant systems, Inc.)
    O4 - HKLM..\Run: [snp2uvc] C:\Windows\vsnp2uvc.exe (Sonix)
    O4 - HKLM..\Run: [SwitchBoard] C:\Programme\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
    O4 - HKLM..\Run: [TpShocks] TpShocks.exe (Lenovo.)
    O4 - HKLM..\Run: [tsnp2uvc] C:\Programme\Common Files\SNP2UVC\tsnp2uvc.exe (Sonix Technology Co., Ltd.)
    O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe (Nullsoft, Inc.)
    O4 - HKU\S-1-5-21-4236169059-776943552-3619825814-1000..\Run: [AdobeBridge] File not found
    O4 - HKU\S-1-5-21-4236169059-776943552-3619825814-1000..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
    O4 - HKU\S-1-5-21-4236169059-776943552-3619825814-1000..\Run: [EPSON SX125 Series] C:\Windows\System32\spool\DRIVERS\W32X86\3\E_FATIGGE.EXE (SEIKO EPSON CORPORATION)
    O4 - HKU\S-1-5-21-4236169059-776943552-3619825814-1000..\Run: [Logitech Vid] C:\Program Files\Logitech\Vid HD\Vid.exe (Logitech Inc.)
    O4 - HKLM..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
    O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
    O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
    O4 - HKU\S-1-5-21-4236169059-776943552-3619825814-1000..\RunOnce: [FlashPlayerUpdate] C:\Windows\System32\Macromed\Flash\FlashUtil10g_Plugin.exe (Adobe Systems, Inc.)
    O4 - HKU\S-1-5-21-4236169059-776943552-3619825814-1001..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
    O4 - Startup: C:\Users\NB-Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk = C:\Programme\OpenOffice.org 3\program\quickstart.exe ()
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
    O8 - Extra context menu item: An vorhandenes PDF anfügen - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: In Adobe PDF konvertieren - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: Verknüpfungsziel in Adobe PDF konvertieren - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: Verknüpfungsziel in vorhandene PDF-Datei konvertieren - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O13 - gopher Prefix: missing
    O16 - DPF: {816BE035-1450-40D0-8A3B-BA7825A83A77} http://support.lenovo.com/Resources/Lenovo/AutoDetect/Lenovo_AutoDetect2.cab (IASRunner Class)
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 10.5.1)
    O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
    O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 10.5.1)
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A3661B4A-E6DC-4346-A1CD-F10AC93221C0}: DhcpNameServer = 192.168.2.1
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C1CEA6E2-3AA5-42D7-A916-3DCBA9D7C171}: DhcpNameServer = 192.168.1.1
    O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programme\Common Files\Skype\Skype4COM.dll (Skype Technologies)
    O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
    O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
    O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
    O20 - AppInit_DLLs: (C:\Windows\system32\nvinit.dll) - C:\Windows\System32\nvinit.dll (NVIDIA Corporation)
    O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - SystemPropertiesPerformance.exe (Microsoft Corporation)
    O20 - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - igfxdev.dll (Intel Corporation)
    O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
    O29 - HKLM SecurityProviders - (credssp.dll) - credssp.dll (Microsoft Corporation)
    O32 - HKLM CDRom: AutoRun - 1
    O32 - AutoRun File - [2009.06.10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
    O32 - AutoRun File - [2007.06.29 10:29:55 | 000,000,000 | R--D | M] - G:\Autorun -- [ UDF ]
    O32 - AutoRun File - [2007.06.11 08:25:04 | 000,263,744 | R--- | M] (Firaxis Games) - G:\autorun.exe -- [ UDF ]
    O32 - AutoRun File - [2007.06.28 22:34:01 | 000,006,299 | R--- | M] () - G:\autorun.inf -- [ UDF ]
    O32 - AutoRun File - [2006.06.27 23:45:47 | 000,000,000 | ---D | M] - H:\Autorun -- [ CDFS ]
    O32 - AutoRun File - [2006.03.13 20:57:19 | 000,253,952 | R--- | M] (Firaxis Games) - H:\autorun.exe -- [ CDFS ]
    O32 - AutoRun File - [2006.06.27 20:05:39 | 000,011,089 | R--- | M] () - H:\autorun.inf -- [ CDFS ]
    O32 - AutoRun File - [2005.10.18 23:01:12 | 000,000,000 | ---D | M] - I:\Autorun -- [ CDFS ]
    O32 - AutoRun File - [2005.10.15 08:42:09 | 000,253,952 | R--- | M] (Firaxis Games) - I:\autorun.exe -- [ CDFS ]
    O32 - AutoRun File - [2005.10.15 08:42:09 | 000,004,118 | R--- | M] () - I:\autorun.inf -- [ CDFS ]
    O33 - MountPoints2\{310e2a3c-9699-11e1-b8ef-f0def19cde8c}\Shell - "" = AutoRun
    O33 - MountPoints2\{310e2a3c-9699-11e1-b8ef-f0def19cde8c}\Shell\AutoRun\command - "" = F:\AutoRun.exe
    O33 - MountPoints2\{aa73e8f1-f05e-11e1-9dfd-f0def19cde8c}\Shell - "" = AutoRun
    O33 - MountPoints2\{aa73e8f1-f05e-11e1-9dfd-f0def19cde8c}\Shell\AutoRun\command - "" = G:\autorun.exe -- [2007.06.11 08:25:04 | 000,263,744 | R--- | M] (Firaxis Games)
    O33 - MountPoints2\{aa73e91d-f05e-11e1-9dfd-f0def19cde8c}\Shell - "" = AutoRun
    O33 - MountPoints2\{aa73e91d-f05e-11e1-9dfd-f0def19cde8c}\Shell\AutoRun\command - "" = H:\autorun.exe -- [2006.03.13 20:57:19 | 000,253,952 | R--- | M] (Firaxis Games)
    O33 - MountPoints2\{aa73e920-f05e-11e1-9dfd-f0def19cde8c}\Shell - "" = AutoRun
    O33 - MountPoints2\{aa73e920-f05e-11e1-9dfd-f0def19cde8c}\Shell\AutoRun\command - "" = I:\autorun.exe -- [2005.10.15 08:42:09 | 000,253,952 | R--- | M] (Firaxis Games)
    O33 - MountPoints2\{b9c18af6-1735-11e1-9ac3-f0def19cde8c}\Shell - "" = AutoRun
    O33 - MountPoints2\{b9c18af6-1735-11e1-9ac3-f0def19cde8c}\Shell\AutoRun\command - "" = F:\setup.exe -a
    O34 - HKLM BootExecute: (autocheck autochk *)
    O35 - HKLM\..comfile [open] -- "%1" %*
    O35 - HKLM\..exefile [open] -- "%1" %*
    O37 - HKLM\...com [@ = comfile] -- "%1" %*
    O37 - HKLM\...exe [@ = exefile] -- "%1" %*
    O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
    O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
    O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

    ========== Files/Folders - Created Within 90 Days ==========

    [2012.09.29 22:18:35 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
    [2012.09.28 21:32:29 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\AppData\Roaming\Malwarebytes
    [2012.09.28 21:32:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
    [2012.09.28 21:32:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
    [2012.09.28 21:32:11 | 000,022,856 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
    [2012.09.28 21:32:11 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
    [2012.09.28 12:18:30 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\AppData\Roaming\Apple Computer
    [2012.09.27 23:46:10 | 000,000,000 | ---D | C] -- C:\Program Files\Perion
    [2012.09.27 22:13:54 | 000,245,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\OxpsConverter.exe
    [2012.09.27 10:23:18 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\AppData\Local\Apple Computer
    [2012.09.27 10:21:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
    [2012.09.27 10:21:30 | 000,000,000 | ---D | C] -- C:\Program Files\QuickTime
    [2012.09.27 10:21:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
    [2012.09.27 10:20:18 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
    [2012.09.27 10:20:05 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\AppData\Local\Apple
    [2012.09.27 10:20:01 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update
    [2012.09.27 10:20:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
    [2012.09.27 08:27:26 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\Desktop\divers
    [2012.09.27 08:25:17 | 002,382,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
    [2012.09.27 08:25:15 | 000,607,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
    [2012.09.27 08:25:15 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
    [2012.09.27 08:25:15 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
    [2012.09.27 08:25:15 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
    [2012.09.27 08:25:14 | 001,800,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
    [2012.09.27 08:25:14 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll
    [2012.09.27 08:25:12 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
    [2012.09.20 09:39:20 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\Desktop\MMP 20.09.2012
    [2012.09.16 15:08:28 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\RNDISMP.sys
    [2012.09.16 15:08:27 | 000,240,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\netio.sys
    [2012.09.16 15:08:27 | 000,187,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\FWPKCLNT.SYS
    [2012.09.16 15:08:26 | 000,490,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10level9.dll
    [2012.09.13 10:38:40 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\Desktop\KMT Kalender
    [2012.09.13 09:53:30 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\Desktop\MMP 13.09.2012
    [2012.08.31 19:35:47 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\Documents\My Games
    [2012.08.31 19:35:47 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\AppData\Roaming\My Games
    [2012.08.31 19:21:50 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_7.dll
    [2012.08.31 19:21:50 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_3.dll
    [2012.08.31 19:21:49 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_33.dll
    [2012.08.31 19:21:49 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_6.dll
    [2012.08.31 19:21:49 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_5.dll
    [2012.08.31 19:21:48 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_32.dll
    [2012.08.31 19:21:48 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_4.dll
    [2012.08.31 19:21:48 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\x3daudio1_1.dll
    [2012.08.31 19:21:47 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_3.dll
    [2012.08.31 19:21:47 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_2.dll
    [2012.08.31 19:21:47 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_2.dll
    [2012.08.31 19:21:46 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_1.dll
    [2012.08.31 19:21:46 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_1.dll
    [2012.08.31 19:21:40 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_0.dll
    [2012.08.31 19:21:40 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\x3daudio1_0.dll
    [2012.08.31 19:21:39 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_29.dll
    [2012.08.31 19:21:39 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_28.dll
    [2012.08.31 19:21:37 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_24.dll
    [2012.08.31 17:48:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firaxis Games
    [2012.08.31 17:35:57 | 000,000,000 | ---D | C] -- C:\Program Files\Firaxis Games
    [2012.08.31 15:51:51 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Games
    [2012.08.31 15:44:56 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
    [2012.08.31 15:42:30 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_26.dll
    [2012.08.31 15:42:25 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_25.dll
    [2012.08.31 15:24:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
    [2012.08.31 15:23:39 | 000,242,240 | ---- | C] (DT Soft Ltd) -- C:\Windows\System32\drivers\dtsoftbus01.sys
    [2012.08.31 15:23:34 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
    [2012.08.24 17:45:21 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\Desktop\Speicherkarte anna
    [2012.08.23 19:01:50 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
    [2012.08.23 18:59:38 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Planetside Software
    [2012.08.22 12:50:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
    [2012.08.22 12:50:13 | 000,000,000 | ---D | C] -- C:\Program Files\7-Zip
    [2012.08.21 23:53:59 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\CS6 Design and Web Premium
    [2012.08.21 23:49:27 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
    [2012.08.21 23:49:25 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe Download Assistant
    [2012.08.21 23:35:40 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\AppData\Roaming\uk.co.planetside
    [2012.08.21 23:35:40 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\AppData\Roaming\Planetside Software
    [2012.08.21 23:33:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Planetside Software
    [2012.08.21 23:33:29 | 000,000,000 | ---D | C] -- C:\Program Files\Planetside Software
    [2012.08.18 21:06:17 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\AppData\Local\DDMSettings
    [2012.08.18 21:03:00 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\AppData\Roaming\DivX
    [2012.08.18 21:02:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX Plus
    [2012.08.18 21:02:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DivX Shared
    [2012.08.18 21:01:23 | 000,000,000 | ---D | C] -- C:\Program Files\DivX
    [2012.08.18 21:00:44 | 000,000,000 | ---D | C] -- C:\ProgramData\DivX
    [2012.08.16 14:29:40 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\srcore.dll
    [2012.08.16 14:29:39 | 002,345,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
    [2012.08.16 14:29:34 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browcli.dll
    [2012.07.13 22:24:27 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msxml3r.dll
    [2012.07.13 22:24:09 | 000,219,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ncrypt.dll
    [2012.07.13 22:21:31 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cdosys.dll
    [2012.07.13 10:16:35 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\AppData\Local\CrashRpt
    [2012.07.13 10:16:17 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\AppData\Local\Dassault Systemes
    [2012.07.13 10:16:13 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\Documents\My Drawings
    [2012.07.13 10:16:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dassault Systemes
    [2012.07.13 10:16:02 | 000,000,000 | ---D | C] -- C:\Users\NB-Admin\AppData\Roaming\DraftSight
    [2012.07.13 10:16:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Dassault Systemes
    [2012.07.13 10:15:48 | 000,000,000 | ---D | C] -- C:\Program Files\Dassault Systemes
    [2012.07.05 19:09:13 | 000,000,000 | ---D | C] -- C:\Program Files\Oracle
    [2012.07.05 19:08:58 | 000,227,720 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\javaws.exe
    [2012.07.05 19:08:30 | 000,174,064 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\javaw.exe
    [2012.07.05 19:08:30 | 000,174,064 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\java.exe
    [2011.02.07 16:15:50 | 000,020,944 | ---- | C] (Intel Corporation) -- C:\Users\NB-Admin\AppData\Roaming\JomCap.dll

    ========== Files - Modified Within 90 Days ==========

    [2012.09.30 12:46:19 | 000,001,067 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    [2012.09.30 12:36:00 | 000,001,132 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4236169059-776943552-3619825814-1000UA.job
    [2012.09.30 12:28:16 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
    [2012.09.29 22:36:05 | 000,001,080 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4236169059-776943552-3619825814-1000Core.job
    [2012.09.29 22:16:22 | 000,014,960 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    [2012.09.29 22:16:22 | 000,014,960 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    [2012.09.29 22:13:46 | 000,656,266 | ---- | M] () -- C:\Windows\System32\perfh007.dat
    [2012.09.29 22:13:46 | 000,618,108 | ---- | M] () -- C:\Windows\System32\perfh009.dat
    [2012.09.29 22:13:46 | 000,131,006 | ---- | M] () -- C:\Windows\System32\perfc007.dat
    [2012.09.29 22:13:46 | 000,107,388 | ---- | M] () -- C:\Windows\System32\perfc009.dat
    [2012.09.29 22:08:48 | 2344,538,112 | -HS- | M] () -- C:\hiberfil.sys
    [2012.09.28 22:51:09 | 554,220,595 | ---- | M] () -- C:\Windows\MEMORY.DMP
    [2012.09.28 21:38:38 | 000,002,495 | ---- | M] () -- C:\Users\NB-Admin\Desktop\Google Chrome.lnk
    [2012.09.27 23:46:06 | 000,000,842 | ---- | M] () -- C:\user.js
    [2012.09.27 10:21:48 | 000,001,815 | ---- | M] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
    [2012.09.27 08:27:35 | 000,001,211 | ---- | M] () -- C:\Users\NB-Admin\Desktop\eclipse.exe - Verknüpfung.lnk
    [2012.09.21 14:54:07 | 000,000,132 | ---- | M] () -- C:\Users\NB-Admin\AppData\Roaming\Adobe GIF Format CS5 Prefs
    [2012.09.19 11:25:27 | 000,036,190 | ---- | M] () -- C:\Users\NB-Admin\Desktop\NONAME_2.dwg
    [2012.09.07 17:04:46 | 000,022,856 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
    [2012.08.31 19:23:55 | 000,001,274 | ---- | M] () -- C:\Users\Public\Desktop\Sid Meier's Civilization 4 - Warlords starten.lnk
    [2012.08.31 19:22:15 | 000,001,282 | ---- | M] () -- C:\Users\Public\Desktop\Sid Meier's Civilization 4 starten.lnk
    [2012.08.31 15:27:23 | 000,001,896 | ---- | M] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
    [2012.08.31 15:23:40 | 000,242,240 | ---- | M] (DT Soft Ltd) -- C:\Windows\System32\drivers\dtsoftbus01.sys
    [2012.08.26 20:15:08 | 003,658,888 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
    [2012.08.24 08:59:17 | 001,800,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
    [2012.08.24 08:51:02 | 001,427,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
    [2012.08.24 08:49:57 | 000,231,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\url.dll
    [2012.08.24 08:48:38 | 000,065,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
    [2012.08.24 08:47:26 | 000,142,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
    [2012.08.24 08:45:46 | 000,607,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
    [2012.08.24 08:43:58 | 002,382,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
    [2012.08.24 08:40:11 | 000,176,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
    [2012.08.23 18:59:38 | 000,003,057 | ---- | M] () -- C:\Users\NB-Admin\Desktop\Terragen 2 Deep Edition.lnk
    [2012.08.22 19:16:46 | 000,240,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\netio.sys
    [2012.08.22 19:16:36 | 000,187,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\FWPKCLNT.SYS
    [2012.08.22 13:23:32 | 000,001,277 | ---- | M] () -- C:\Users\NB-Admin\Desktop\Adobe After Effects CS4.lnk
    [2012.08.22 12:31:59 | 000,015,819 | ---- | M] () -- C:\Users\NB-Admin\Documents\Untitled.tgd
    [2012.08.21 22:12:27 | 000,245,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\OxpsConverter.exe
    [2012.08.18 21:03:16 | 000,002,062 | ---- | M] () -- C:\Users\Public\Desktop\DivX Plus Converter.lnk
    [2012.08.18 21:02:55 | 000,001,082 | ---- | M] () -- C:\Users\Public\Desktop\DivX Plus Player.lnk
    [2012.08.13 20:11:31 | 000,000,640 | ---- | M] () -- C:\Users\NB-Admin\Desktop\Essensplan.rtf
    [2012.08.02 18:57:20 | 000,490,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10level9.dll
    [2012.07.18 19:47:53 | 002,345,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
    [2012.07.13 10:16:04 | 000,002,761 | ---- | M] () -- C:\Users\Public\Desktop\DraftSight.lnk
    [2012.07.04 23:14:34 | 000,041,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\browcli.dll
    [2012.07.04 21:45:31 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\RNDISMP.sys

    ========== Files Created - No Company Name ==========

    [2012.09.28 21:32:18 | 000,001,067 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    [2012.09.27 23:46:03 | 000,000,842 | ---- | C] () -- C:\user.js
    [2012.09.27 10:21:48 | 000,001,815 | ---- | C] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
    [2012.09.27 10:20:03 | 000,002,519 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
    [2012.09.21 14:54:07 | 000,000,132 | ---- | C] () -- C:\Users\NB-Admin\AppData\Roaming\Adobe GIF Format CS5 Prefs
    [2012.09.19 11:25:26 | 000,036,190 | ---- | C] () -- C:\Users\NB-Admin\Desktop\NONAME_2.dwg
    [2012.08.31 19:18:39 | 000,001,274 | ---- | C] () -- C:\Users\Public\Desktop\Sid Meier's Civilization 4 - Warlords starten.lnk
    [2012.08.31 18:34:21 | 000,001,282 | ---- | C] () -- C:\Users\Public\Desktop\Sid Meier's Civilization 4 starten.lnk
    [2012.08.31 15:27:23 | 000,001,896 | ---- | C] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
    [2012.08.23 19:01:36 | 000,003,057 | ---- | C] () -- C:\Users\NB-Admin\Desktop\Terragen 2 Deep Edition.lnk
    [2012.08.22 13:23:32 | 000,001,277 | ---- | C] () -- C:\Users\NB-Admin\Desktop\Adobe After Effects CS4.lnk
    [2012.08.22 13:17:34 | 000,001,389 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mocha for After Effects CS4.lnk
    [2012.08.22 12:58:08 | 000,001,277 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects CS4.lnk
    [2012.08.22 12:56:56 | 000,001,057 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS4.lnk
    [2012.08.22 12:56:17 | 000,001,173 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Media Encoder CS4.lnk
    [2012.08.22 12:55:37 | 000,002,285 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Pixel Bender Toolkit.lnk
    [2012.08.22 12:54:36 | 000,001,150 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Device Central CS4.lnk
    [2012.08.22 12:53:21 | 000,001,241 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS4.lnk
    [2012.08.22 12:53:08 | 000,001,365 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS4.lnk
    [2012.08.22 12:31:59 | 000,015,819 | ---- | C] () -- C:\Users\NB-Admin\Documents\Untitled.tgd
    [2012.08.21 23:49:26 | 000,001,013 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Download Assistant.lnk
    [2012.08.18 21:02:55 | 000,001,082 | ---- | C] () -- C:\Users\Public\Desktop\DivX Plus Player.lnk
    [2012.08.18 21:02:30 | 000,002,062 | ---- | C] () -- C:\Users\Public\Desktop\DivX Plus Converter.lnk
    [2012.08.13 20:11:31 | 000,000,640 | ---- | C] () -- C:\Users\NB-Admin\Desktop\Essensplan.rtf
    [2012.07.13 10:16:04 | 000,002,761 | ---- | C] () -- C:\Users\Public\Desktop\DraftSight.lnk
    [2012.06.06 17:55:32 | 000,239,616 | ---- | C] ( ) -- C:\Windows\System32\rsnp2uvc.dll
    [2012.06.06 17:55:30 | 000,196,608 | ---- | C] ( ) -- C:\Windows\System32\csnp2uvc.dll
    [2012.06.06 17:55:30 | 000,015,497 | ---- | C] () -- C:\Windows\snp2uvc.ini
    [2012.05.10 22:03:38 | 000,000,036 | ---- | C] () -- C:\Users\NB-Admin\AstroViewer 3.1.5-Path
    [2012.03.29 17:09:52 | 000,000,268 | RH-- | C] () -- C:\ProgramData\Galaxy Swirl
    [2012.03.29 17:09:52 | 000,000,268 | RH-- | C] () -- C:\Users\NB-Admin\AppData\Roaming\Frameworks
    [2012.03.29 17:09:52 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLes.DAT
    [2012.03.29 17:09:52 | 000,000,012 | RH-- | C] () -- C:\ProgramData\Home
    [2012.03.29 17:09:17 | 000,000,268 | RH-- | C] () -- C:\ProgramData\Gems
    [2012.03.29 17:09:17 | 000,000,268 | RH-- | C] () -- C:\ProgramData\Galactic Static
    [2012.03.29 17:09:17 | 000,000,268 | RH-- | C] () -- C:\Users\NB-Admin\AppData\Roaming\Fruit
    [2012.03.29 17:09:17 | 000,000,268 | RH-- | C] () -- C:\Users\NB-Admin\AppData\Roaming\Framework
    [2012.03.29 17:09:17 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLev.DAT
    [2012.03.29 17:09:17 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLet.DAT
    [2012.03.29 17:09:17 | 000,000,012 | RH-- | C] () -- C:\ProgramData\Horn Section
    [2012.03.29 17:09:17 | 000,000,012 | RH-- | C] () -- C:\ProgramData\Helper Scripts
    [2012.02.21 14:49:45 | 000,000,132 | ---- | C] () -- C:\Users\NB-Admin\AppData\Roaming\Adobe PNG Format CS5 Prefs
    [2012.01.18 06:44:00 | 010,920,984 | ---- | C] () -- C:\Windows\System32\LogiDPP.dll
    [2012.01.18 06:44:00 | 000,336,408 | ---- | C] () -- C:\Windows\System32\DevManagerCore.dll
    [2012.01.18 06:44:00 | 000,104,472 | ---- | C] () -- C:\Windows\System32\LogiDPPApp.exe
    [2012.01.18 06:22:54 | 000,028,418 | ---- | C] () -- C:\Windows\System32\lvcoinst.ini
    [2012.01.10 14:30:08 | 000,001,456 | ---- | C] () -- C:\Users\NB-Admin\AppData\Local\Adobe Für Web speichern 12.0 Prefs
    [2012.01.04 16:26:57 | 003,563,520 | ---- | C] () -- C:\Windows\System32\drivers\snp2uvc.sys
    [2012.01.04 16:26:56 | 000,028,544 | ---- | C] () -- C:\Windows\System32\drivers\sncduvc.sys
    [2011.12.02 11:02:38 | 000,000,036 | ---- | C] () -- C:\Users\NB-Admin\.org.eclipse.epp.usagedata.recording.userId
    [2011.11.22 13:04:42 | 000,009,855 | ---- | C] () -- C:\Windows\System32\Setup2k.ini
    [2011.11.22 13:04:42 | 000,000,231 | ---- | C] () -- C:\Windows\System32\presetup.ini
    [2011.11.22 13:04:35 | 000,348,160 | ---- | C] () -- C:\Windows\System32\HPWHEEL.DLL
    [2011.11.22 13:04:35 | 000,171,238 | ---- | C] () -- C:\Windows\PMUninst.ini
    [2011.11.22 13:04:35 | 000,055,664 | ---- | C] () -- C:\Windows\System32\KST_SiXX.ini
    [2011.11.22 13:04:35 | 000,000,554 | ---- | C] () -- C:\Windows\xUninstEx.ini
    [2011.11.22 13:04:35 | 000,000,162 | ---- | C] () -- C:\Windows\xUninst.ini
    [2011.11.22 13:04:34 | 000,647,168 | ---- | C] () -- C:\Windows\System32\HPBDO.DLL
    [2011.10.06 10:42:09 | 000,000,029 | ---- | C] () -- C:\Users\NB-Admin\AppData\Roaming\default.rss
    [2011.10.06 10:42:09 | 000,000,000 | ---- | C] () -- C:\Users\NB-Admin\AppData\Roaming\downloads.m3u
    [2011.10.05 11:46:28 | 000,066,048 | ---- | C] () -- C:\Windows\System32\PrintBrmUi.exe
    [2011.10.05 10:28:29 | 000,002,064 | ---- | C] () -- C:\Windows\System32\drivers\SamSfPa.dat
    [2011.10.05 10:28:02 | 000,001,372 | ---- | C] () -- C:\Windows\System32\VoipUpdate.ini
    [2011.10.05 10:28:01 | 000,030,893 | ---- | C] () -- C:\Windows\System32\drivers\Mixer.ini
    [2011.10.05 10:28:01 | 000,001,816 | ---- | C] () -- C:\Windows\System32\drivers\Altmixer.ini
    [2011.10.05 10:25:50 | 000,963,116 | ---- | C] () -- C:\Windows\System32\igkrng600.bin
    [2011.10.05 10:25:50 | 000,213,332 | ---- | C] () -- C:\Windows\System32\igfcg600m.bin
    [2011.10.05 10:25:50 | 000,004,096 | ---- | C] ( ) -- C:\Windows\System32\IGFXDEVLib.dll
    [2011.10.05 10:25:49 | 000,145,804 | ---- | C] () -- C:\Windows\System32\igcompkrng600.bin
    [2011.10.05 10:25:49 | 000,094,208 | ---- | C] () -- C:\Windows\System32\IccLibDll.dll
    [2011.10.05 10:25:49 | 000,000,151 | ---- | C] () -- C:\Windows\System32\GfxUI.exe.config
    [2011.10.05 10:25:00 | 000,008,192 | ---- | C] () -- C:\Windows\System32\drivers\IntelMEFWVer.dll
    [2011.08.12 12:20:14 | 000,015,896 | ---- | C] () -- C:\Windows\System32\drivers\iKeyLFT2.dll
    [2011.05.25 19:56:02 | 001,285,594 | ---- | C] () -- C:\Windows\System32\nvcoproc.bin

    ========== ZeroAccess Check ==========

    [2009.07.14 06:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

    [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

    [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
    "" = %SystemRoot%\system32\shell32.dll -- [2012.06.09 06:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Apartment

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
    "" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 14:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Free

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
    "" = %systemroot%\system32\wbem\wbemess.dll -- [2009.07.14 03:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Both

    ========== LOP Check ==========

    [2011.11.23 23:24:33 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\aborange
    [2011.10.06 09:54:48 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
    [2012.08.21 23:49:27 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
    [2012.03.21 17:15:29 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\Crayon Physics Deluxe
    [2012.08.31 15:27:35 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\DAEMON Tools Lite
    [2012.07.13 10:16:12 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\DraftSight
    [2012.05.07 22:00:50 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\ICQ Search
    [2012.04.14 14:42:40 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\Leadertech
    [2011.10.06 15:21:14 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\MAXON
    [2011.12.31 22:28:48 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\multilizer
    [2012.08.31 19:35:47 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\My Games
    [2012.03.29 17:11:27 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\Nikon
    [2012.08.31 15:23:38 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\OpenCandy
    [2011.10.06 12:38:57 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\OpenOffice.org
    [2012.08.21 23:35:40 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\Planetside Software
    [2011.10.05 10:40:01 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\PwrMgr
    [2011.11.18 10:29:29 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
    [2012.05.06 18:38:53 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\Telefónica
    [2011.10.06 07:47:59 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\Thunderbird
    [2012.05.25 12:53:51 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\TreeCardGames
    [2012.08.21 23:35:40 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\uk.co.planetside
    [2012.09.28 22:53:35 | 000,000,000 | ---D | M] -- C:\Users\NB-Admin\AppData\Roaming\uTorrent

    ========== Purity Check ==========



    ========== Alternate Data Streams ==========

    @Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:C8B8CEBD

    < End of report >


    OTL Extras logfile created on: 30.09.2012 13:08:05 - Run 1
    OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\NB-Admin\Downloads
    Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
    Internet Explorer (Version = 9.0.8112.16421)
    Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy

    2,91 Gb Total Physical Memory | 0,94 Gb Available Physical Memory | 32,26% Memory free
    10,91 Gb Paging File | 7,91 Gb Available in Paging File | 72,48% Paging File free
    Paging file location(s): c:\pagefile.sys 8192 8192 [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
    Drive C: | 200,34 Gb Total Space | 26,11 Gb Free Space | 13,04% Space Free | Partition Type: NTFS
    Drive D: | 97,66 Gb Total Space | 65,40 Gb Free Space | 66,97% Space Free | Partition Type: NTFS
    Drive G: | 1,27 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
    Drive H: | 482,74 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
    Drive I: | 1,37 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS

    Computer Name: LT520 | User Name: NB-Admin | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: All users
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 90 Days

    ========== Extra Registry (SafeList) ==========


    ========== File Associations ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
    .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)

    ========== Shell Spawning ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
    exefile [open] -- "%1" %*
    helpfile [open] -- Reg Error: Key error.
    hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
    htmlfile
    Editiert:
    -- Reg Error: Key error.
    htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
    inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
    scrfile [open] -- "%1" /S
    txtfile
    Editiert:
    -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
    Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
    Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
    Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
    Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
    Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
    Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [explore] -- Reg Error: Value error.
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

    ========== Security Center Settings ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "cval" = 1

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
    "VistaSp1" = Reg Error: Unknown registry data type -- File not found
    "AntiVirusOverride" = 0
    "AntiSpywareOverride" = 0
    "FirewallOverride" = 0

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

    ========== Firewall Settings ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1

    ========== Authorized Applications List ==========


    ========== Vista Active Open Ports Exception List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{0BBBFAA0-2D40-45D6-A0C8-5D0DBBE7AF04}" = lport=139 | protocol=6 | dir=in | app=system |
    "{0EDDF4CE-9D4D-4A8F-AFF2-AC78DA11617D}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
    "{18DB84E0-DC99-4387-9470-0C3EBCE49DA2}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
    "{22A00C70-9256-47DD-B7EA-4E7C07BFFAD1}" = rport=445 | protocol=6 | dir=out | app=system |
    "{306D9E4D-4AF0-4EF7-B872-F664E0CD0389}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
    "{31B466EB-045D-45EA-9041-270780C5CF14}" = lport=2869 | protocol=6 | dir=in | app=system |
    "{3D0AAEB3-020F-4DCE-8FAC-2EC4D48DAD2A}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
    "{3EC81D15-A3C2-4B97-8F39-BA814E1F1EE7}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{40112E49-0DDA-4D43-9468-E95569762A25}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{46030D7D-65F7-473A-A76D-039E2B26C093}" = rport=138 | protocol=17 | dir=out | app=system |
    "{4A0F90A9-0E2B-4AB2-B150-36E34262200B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{4EC88A90-5F36-48B9-865D-B2691350F0AC}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{51B02508-9E89-4862-B07A-4A4CF1C8AAB1}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{572D8EE4-6600-4F3D-886E-388754B4E1D5}" = lport=2869 | protocol=6 | dir=in | app=system |
    "{5F732D35-ED36-4E8C-8803-0A522BCA8561}" = rport=139 | protocol=6 | dir=out | app=system |
    "{6EA747FA-3C0E-4D1C-B35F-851E7B414B6B}" = lport=138 | protocol=17 | dir=in | app=system |
    "{7093D766-CD2D-4AD3-AA5C-4E818FCF1BDF}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{7798E7BE-35B5-4C58-A609-0593A5787BFE}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
    "{7A52F931-48AA-4985-991E-8BD379C7ED64}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
    "{7E8C8FA9-3547-4F4A-BA06-AB8871FE03CF}" = rport=137 | protocol=17 | dir=out | app=system |
    "{806FC943-0B99-4126-842B-909E49C32D40}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
    "{852654D4-9652-4DCA-A916-B68EA4510F46}" = lport=10243 | protocol=6 | dir=in | app=system |
    "{9292F4DE-1125-4791-9E44-0BD3E400F94A}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
    "{92CBDE74-4F21-40C9-BF99-2F26D8A99B53}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
    "{9CD0367B-23F4-4EAD-AF4E-14040ED08328}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
    "{9CEABC4F-12ED-47CB-A380-FB4088B997C9}" = rport=10243 | protocol=6 | dir=out | app=system |
    "{A414ECE0-A7EC-4E3C-868B-E51EB0FFF54B}" = lport=445 | protocol=6 | dir=in | app=system |
    "{AFAD1065-FDF5-4FED-9222-BDE583781EE1}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
    "{B8EE370F-05D6-4929-BB3E-BF7D51E42209}" = rport=2869 | protocol=6 | dir=out | app=system |
    "{BB809835-AC8C-40C4-ADB1-7787063495A2}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
    "{BDB4D544-6C82-472D-AFF8-FBDFF6C38106}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
    "{CE106671-8F47-4D50-93AE-0B3B3993B46B}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
    "{D207B00F-CFF3-4340-8505-8C28090E65D8}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
    "{D7F63E57-5467-487F-BDD4-0D1E19716EA5}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
    "{DE5CFA2C-FCE1-47A2-911B-1474BB56B887}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
    "{DF53792E-4872-4039-8F60-26B63EA1211D}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
    "{EFDD8D5A-32EF-4E19-89C2-47FA483712D7}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
    "{F7AC8FC3-79C1-4ACB-963F-C793D9022F29}" = lport=137 | protocol=17 | dir=in | app=system |
    "{FB8FC4C1-7F39-461B-BACF-F540F6C9B32F}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |

    ========== Vista Active Application Exception List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{16564818-DC56-42F2-9FA2-B0051CC721FE}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
    "{1A7DD29C-D4E2-488B-8226-61A068B14765}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{1C89DB4E-EAAD-41AD-81EB-9D1D02E36355}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
    "{2143B49E-CFCA-41C1-BB7D-9E4E940B3FDB}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
    "{30657A20-093A-4BF2-A65B-0938ADCAF878}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{33E1DAC8-8D29-488C-B86D-4AD95134F985}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
    "{3754DA10-89B0-43A5-8DF9-E33635CC0893}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
    "{396F08CC-55DC-4EF3-9450-764B255B6BE8}" = protocol=17 | dir=in | app=c:\program files\firaxis games\sid meier's civilization 4\beyond the sword\civ4beyondsword_pitboss.exe |
    "{3ECC8CC4-EAAF-4164-A6B8-73AA82A66115}" = protocol=17 | dir=in | app=c:\program files\firaxis games\sid meier's civilization 4\civilization4.exe |
    "{448D23C8-FEF2-4F46-9BE3-05EA140DFBCF}" = protocol=6 | dir=in | app=c:\program files\firaxis games\sid meier's civilization 4\beyond the sword\civ4beyondsword.exe |
    "{4ECD3136-374B-4FB0-BFB0-389701409ED8}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
    "{50631DC1-C015-41B7-AE4A-F598DD9BEE02}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
    "{51E4C781-EC85-41A2-9015-82E91AED2C5A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
    "{55D7ACDB-590E-4146-A840-EEFBD4C0338C}" = protocol=6 | dir=in | app=c:\program files\firaxis games\sid meier's civilization 4\beyond the sword\civ4beyondsword_pitboss.exe |
    "{56B1E4EA-DB4D-448C-9BEB-67DC527841BE}" = protocol=6 | dir=in | app=c:\program files\lenovo\system update\uncserver.exe |
    "{56DF0702-8A61-4385-A6B9-90320C7A302F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
    "{59B03417-A781-40E4-AA7E-173085E17813}" = protocol=17 | dir=in | app=c:\program files\firaxis games\sid meier's civilization 4\beyond the sword\civ4beyondsword.exe |
    "{64727F3E-A3A2-4190-94E8-E75C20E9A228}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{741B1397-4744-4B1A-8C04-B45A413D709F}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe |
    "{7E110BFB-22C2-4E67-B696-2BD84BBCD9D4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
    "{A6649D19-E032-4C8D-9A19-08595B456EE5}" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe |
    "{A6911C70-CE16-4E96-8EB9-5915553304B9}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
    "{AA7A5AD9-D7BE-4F3B-8B0E-75A0C6135FD4}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
    "{B7050121-62BA-40AC-BB19-E4B69FB35056}" = dir=in | app=c:\program files\skype\phone\skype.exe |
    "{BF66E62D-0539-4CD6-8224-F36E7FF8402C}" = protocol=6 | dir=out | app=system |
    "{C1092497-6F87-4349-87EB-8628E4904870}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
    "{C82F32DC-AAE5-4323-942A-735A9FE28293}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{C89233A8-AC15-4BE2-A06A-A84FA3F00CF1}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 |
    "{CF3848AF-3D17-4716-B7E6-010ECD4F024D}" = protocol=17 | dir=in | app=c:\program files\lenovo\system update\uncserver.exe |
    "{F4C9B1DB-1D73-4688-815A-F5DB77AC2D4F}" = protocol=6 | dir=in | app=c:\program files\firaxis games\sid meier's civilization 4\civilization4.exe |
    "{F8BFF685-731F-45F4-8756-40F532E8F05C}" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe |
    "{FDC4E0E8-0566-4E44-9F3C-087B09200DDC}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
    "TCP Query User{2FA9C24E-6480-4FD5-B894-769C9559523C}C:\program files\logitech\vid hd\vid.exe" = protocol=6 | dir=in | app=c:\program files\logitech\vid hd\vid.exe |
    "TCP Query User{AE4AC9CF-9DDE-49FF-B25F-F5A7DBD585BB}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe |
    "TCP Query User{C1620343-A7BA-422A-942E-C9866D1944DF}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe |
    "TCP Query User{C3B737A6-47FF-4C56-97D5-1C4F72C7DD3B}C:\program files\logitech\vid hd\vid.exe" = protocol=6 | dir=in | app=c:\program files\logitech\vid hd\vid.exe |
    "TCP Query User{DE2D79AE-A127-47A8-BE6A-2405AE60F31B}C:\program files\videolan\vlc\vlc.exe" = protocol=6 | dir=in | app=c:\program files\videolan\vlc\vlc.exe |
    "UDP Query User{1B8BC849-A031-4248-BECE-5B3F24A3FE9D}C:\program files\logitech\vid hd\vid.exe" = protocol=17 | dir=in | app=c:\program files\logitech\vid hd\vid.exe |
    "UDP Query User{49EB8736-7FFE-4507-AC2F-1662A1C77C41}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe |
    "UDP Query User{55D5AEE1-1D00-4D69-A189-CFC86427A9BC}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe |
    "UDP Query User{60C34823-9E12-430A-A995-8076D68B7964}C:\program files\videolan\vlc\vlc.exe" = protocol=17 | dir=in | app=c:\program files\videolan\vlc\vlc.exe |
    "UDP Query User{9AFC6108-C4B5-44AB-96F0-D8DFD4428683}C:\program files\logitech\vid hd\vid.exe" = protocol=17 | dir=in | app=c:\program files\logitech\vid hd\vid.exe |

    ========== HKEY_LOCAL_MACHINE Uninstall List ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{02627ee5-eaca-4742-a9cc-e687631773e4}" = Nero ShowTime
    "{02698606-3A21-489D-9D2A-75C9E8D3E5BD}" = Adobe Creative Suite 5 Design Premium
    "{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
    "{05308C4E-7285-4066-BAE3-6B50DA6ED755}" = Adobe Update Manager CS4
    "{054EFA56-2AC1-48F4-A883-0AB89874B972}" = Adobe Extension Manager CS4
    "{08610298-29AE-445B-B37D-EFBE05802967}" = LWS Pictures And Video
    "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
    "{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
    "{0E64B098-8018-4256-BA23-C316A43AD9B0}" = QuickTime
    "{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
    "{0F842B77-56EA-4AAF-8295-81A022350B5E}" = Microsoft Security Client
    "{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1
    "{1280E900-35DA-4E08-A700-B79A5B2B8532}" = Microsoft Antimalware Service DE-DE Language Pack
    "{138A4072-9E64-46BD-B5F9-DB2BB395391F}" = LWS VideoEffects
    "{15634701-BACE-4449-8B25-1567DA8C9FD3}" = CameraHelperMsi
    "{1618734A-3957-4ADD-8199-F973763109A8}" = Adobe Anchor Service CS4
    "{1651216E-E7AD-4250-92A1-FB8ED61391C9}" = LWS Help_main
    "{174A3B31-4C43-43DD-866F-73C9DB887B48}" = LWS Twitter
    "{17CBC505-D1AE-459D-B445-3D2000A85842}" = Dienstprogramm "ThinkPad UltraNav"
    "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    "{20400dbd-e6db-45b8-9b6b-1dd7033818ec}" = Nero InfoTool Help
    "{21DF0294-6B9D-4741-AB6F-B2ABFBD2387E}" = LWS YouTube Plugin
    "{2348b586-c9ae-46ce-936c-a68e9426e214}" = Nero StartSmart Help
    "{25C64847-B900-48AD-A164-1B4F9B774650}" = System Update
    "{26A24AE4-039D-4CA4-87B4-2F83216022FF}" = Java(TM) 6 Update 26
    "{26A24AE4-039D-4CA4-87B4-2F83217004FF}" = Java(TM) 7 Update 5
    "{32A3A4F4-B792-11D6-A78A-00B0D0170010}" = Java(TM) SE Development Kit 7 Update 1
    "{32E4F0D2-C135-475E-A841-1D59A0D22989}" = Sid Meier's Civilization 4 - Beyond the Sword
    "{33cf58f5-48d8-4575-83d6-96f574e4d83a}" = Nero DriveSpeed
    "{368ba326-73ad-4351-84ed-3c0a7a52cc53}" = Nero Rescue Agent
    "{399C37FB-08AF-493B-BFED-20FBD85EDF7F}" = USB Video Device
    "{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}" = Adobe XMP Panels CS4
    "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
    "{3E4B349F-10B5-4586-9D99-489A90A8B228}" = Sid Meier's Civilization 4 - Warlords
    "{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = erLT
    "{411F3ABA-2AB5-4799-AA19-6ADF0A8F7424}" = Adobe Setup
    "{4286716B-1287-48E7-9078-3DC8248DBA96}" = OpenOffice.org 3.3
    "{43509E18-076E-40FE-AF38-CA5ED400A5A9}" = Pixel Bender Toolkit
    "{4377F918-E6C9-4ECA-A7F5-754B310B7ED8}" = Sid Meier's Civilization 4
    "{43e39830-1826-415d-8bae-86845787b54b}" = Nero Vision
    "{44E240EC-2224-4078-A88B-2CEE0D3016EF}" = Adobe After Effects CS4 Presets
    "{45EC816C-0771-4C14-AE6D-72D1B578F4C8}" = Adobe After Effects CS4
    "{46A84694-59EC-48F0-964C-7E76E9F8A2ED}" = ThinkVantage System für aktiven Festplattenschutz
    "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
    "{4D43D635-6FDA-4fa5-AA9B-23CF73D058EA}" = Nero StartSmart OEM
    "{4EFD0178-748B-4AEF-BF64-51BEF3048F8B}" = Terragen 2 Free Edition
    "{50779A29-834E-4E36-BBEB-B7CABC67A825}" = Microsoft Security Client DE-DE Language Pack
    "{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module
    "{56aba277-ee53-4478-a607-fa42208ff5a9}" = Menu Templates - Pack 1
    "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
    "{595a3116-40bb-4e0f-a2e8-d7951da56270}" = NeroExpress
    "{5CAD3393-EEC0-44CE-9F93-BCAA365B77FB}" = Nikon Movie Editor
    "{5d9be3c1-8ba4-4e7e-82fd-9f74fa6815d1}" = Nero Vision Help
    "{5e08ecd1-c98e-4711-bf65-8fd736b3f969}" = Nero RescueAgent Help
    "{60DB5894-B5A1-4B62-B0F3-669A22C0EE5D}" = Adobe Dynamiclink Support
    "{60E42E2F-3F72-4325-AEE1-780E301B8EA9}" = DraftSight
    "{62ac81f6-bdd3-4110-9d36-3e9eaab40999}" = Nero CoverDesigner
    "{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
    "{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
    "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
    "{65883ddf-2152-4cb7-8e13-b99194b13498}" = Nero BackItUp
    "{67A9747A-E1F5-4E9A-81CC-12B5D5B81B6E}" = Adobe After Effects CS4 Third Party Content
    "{67F0E67A-8E93-4C2C-B29D-47C48262738A}" = Adobe Device Central CS4
    "{6E9EF98E-259E-416D-B5F8-0ABDB99942CE}" = Adobe Flash Player 10 ActiveX
    "{6F3D2F66-F050-45E3-BEB1-6523FE6D6690}" = MotoHelper MergeModules
    "{6F76EC3C-34B1-436E-97FB-48C58D7BEDCD}" = LWS Gallery
    "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
    "{71E66D3F-A009-44AB-8784-75E2819BA4BA}" = LWS Motion Detection
    "{75c53f52-398b-4d66-b28a-f9ef170b3b34}" = Nero BackItUp
    "{7748ac8c-18e3-43bb-959b-088faea16fb2}" = Nero StartSmart
    "{7829db6f-a066-4e40-8912-cb07887c20bb}" = Nero BurnRights
    "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
    "{7BB493F6-1E56-4748-B3A3-D7B1FB6EE2FE}" = Motorola Mobile Drivers Installation 4.7.1
    "{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}" = Adobe Type Support CS4
    "{83202942-84b3-4c50-8622-b8c0aa2d2885}" = Nero Express Help
    "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
    "{83877DB1-8B77-45BC-AB43-2BAC22E093E0}" = Adobe Bridge CS4
    "{83C8FA3C-F4EA-46C4-8392-D3CE353738D6}" = LWS Launcher
    "{842B4B72-9E8F-4962-B3C1-1C422A5C4434}" = Suite Shared Configuration CS4
    "{869200db-287a-4dc0-b02b-2b6787fbcd4c}" = Nero DiscSpeed
    "{87441A59-5E64-4096-A170-14EFE67200C3}" = Picture Control Utility
    "{88C6A6D9-324C-46E8-BA87-563D14021442}_is1" = ThinkVantage Communications Utility
    "{8937D274-C281-42E4-8CDB-A0B2DF979189}" = LWS Webcam Software
    "{8d15c9c9-105b-43a4-a09e-a42214f5b1b4}" = Nero 9 Essentials
    "{8E537894-A559-4D60-B3CB-F4485E3D24E3}" = ThinkVantage Access Connections
    "{8ea3688e-15a0-430d-9492-f44ae4a01b47}" = Nero BackItUp 4 Essentials
    "{8EB8E60B-315D-44EB-A896-10D88602EE46}" = Adobe Setup
    "{91A29166-4E1B-4664-B70B-4C4A3B6B3372}" = Lenovo Screen Reading Optimizer
    "{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
    "{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
    "{94D398EB-D2FD-4FD1-B8C4-592635E8A191}" = Adobe CMaps CS4
    "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
    "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    "{9CA0DEE4-E84B-466F-9B96-FC255F3A929F}" = Integrated Camera TWAIN
    "{9D3D2C60-A55F-4fed-B2B9-17311226DF01}" = ThinkPad Wireless LAN Adapter Software
    "{9DAEA76B-E50F-4272-A595-0124E826553D}" = LWS WLM Plugin
    "{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
    "{A892C5E6-B04D-4CAB-95DA-A52038B97B01}" = Terragen 2 Deep Edition
    "{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
    "{AC76BA86-1033-F400-7760-000000000004}" = Adobe Acrobat 9 Pro - English, Français, Deutsch
    "{AC76BA86-1033-F400-7760-000000000004}_950" = Adobe Acrobat 9.5.0 - CPSID_83708
    "{AC76BA86-1033-F400-7760-000000000004}{AC76BA86-1033-F400-7760-000000000004}" = Adobe Acrobat 9 Pro - English, Français, Deutsch
    "{AC76BA86-7AD7-1031-7B44-AA1000000001}" = Adobe Reader X (10.1.4) - Deutsch
    "{B014EE44-9197-4513-9613-71E6EB1B514E}" = Nikon Message Center 2
    "{B05DE7B7-0B40-4411-BD4B-222CAE2D8F15}" = Adobe MotionPicture Color Files CS4
    "{B15381DD-FF97-4FCD-A881-ED4DB0975500}" = Adobe Color Video Profiles AE CS4
    "{b1adf008-e898-4fe2-8a1f-690d9a06acaf}" = DolbyFiles
    "{B2CA6F37-1602-4823-81B5-0384B6888AA6}" = Integrated Camera Driver Installer Package Ver.1.1.0.1147
    "{b2ec4a38-b545-4a00-8214-13fe0e915e6d}" = Advertising Center
    "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA 3D Vision Treiber 268.71
    "{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Display Control Panel
    "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Grafiktreiber 268.71
    "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus 1.0.21
    "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA HD-Audiotreiber 1.2.23.3
    "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
    "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
    "{b78120a0-cf84-4366-a393-4d0a59bc546c}" = Menu Templates - Starter Kit
    "{BB4E33EC-8181-4685-96F7-8554293DEC6A}" = Adobe Output Module
    "{BC41C09D-FAA9-4346-9FE6-1E0017BC551A}" = Adobe Flash Player 10 Plugin
    "{bd5ca0da-71ad-43da-b19e-6eee0c9adc9a}" = Nero ControlCenter
    "{BE9CEAAA-F069-4331-BF2F-8D350F6504F4}" = Adobe Media Encoder CS4 Additional Exporter
    "{C52E3EC1-048C-45E1-8D53-10B0C6509683}" = Adobe Default Language CS4
    "{C6D4B05A-EA7E-1027-80EF-C925E740E99C}" = Intel(R) Identity Protection Technology 1.0.74.0
    "{C9E91711-8600-4919-AEF0-D4821F886797}_is1" = Gigaflat
    "{cc019e3f-59d2-4486-8d4b-878105b62a71}" = Nero DiscSpeed Help
    "{CC75AB5C-2110-4A7F-AF52-708680D22FE8}" = Photoshop Camera Raw
    "{ce96f5a5-584d-4f8f-aa3e-9baed413db72}" = Nero CoverDesigner Help
    "{CFBCE791-2D53-4FCE-B3FB-D6E01F4112E8}" = Sid Meier's Civilization 4
    "{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
    "{D40EB009-0499-459c-A8AF-C9C110766215}" = Logitech Webcam Software
    "{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
    "{d9dcf92e-72eb-412d-ac71-3b01276e5f8b}" = Nero ShowTime
    "{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}" = ThinkPad Energie-Manager
    "{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
    "{DEB90B8E-0DCB-48CE-B90E-8842A2BD643E}" = Adobe Media Encoder CS4
    "{E224B44B-B5EB-4af3-A80A-A255358E241A}_is1" = ThinkVantage AutoLock
    "{e498385e-1c51-459a-b45f-1721e37aa1a0}" = Movie Templates - Starter Kit
    "{e5c7d048-f9b4-4219-b323-8bdb01a2563d}" = Nero DriveSpeed Help
    "{E64C137C-D0B7-467A-B47F-460AAB30F0A3}" = ViewNX 2
    "{e8a80433-302b-4ff1-815d-fcc8eac482ff}" = Nero Installer
    "{EA5F34F3-3911-B4DB-63CA-1E44B2AB13A1}" = Adobe Download Assistant
    "{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}" = Apple Application Support
    "{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module
    "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.8
    "{EED027B7-0DB6-404B-8F45-6DFEE34A0441}" = LWS Video Mask Maker
    "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
    "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
    "{f4041dce-3fe1-4e18-8a9e-9de65231ee36}" = Nero ControlCenter
    "{f6bdd7c5-89ed-4569-9318-469aa9732572}" = Nero BurnRights Help
    "{F750C986-5310-3A5A-95F8-4EC71C8AC01C}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
    "{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center
    "{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}" = Adobe ExtendScript Toolkit CS4
    "{F93C84A6-0DC6-42AF-89FA-776F7C377353}" = Adobe PDF Library Files CS4
    "{fbcdfd61-7dcf-4e71-9226-873ba0053139}" = Nero InfoTool
    "{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794}" = Adobe Fonts All
    "{FDB3B167-F4FA-461D-976F-286304A57B2A}" = Adobe AIR
    "{FE041B02-234C-4AAA-9511-80DF6482A458}" = RICOH_Media_Driver_v2.13.18.02
    "{FF167195-9EE4-46C0-8CD7-FBA3457E88AB}" = LWS Facebook
    "123 Free Solitaire_is1" = 123 Free Solitaire 2011 v8.0
    "7-Zip" = 7-Zip 4.60 beta
    "aborange Crypter_is1" = aborange Crypter - Deinstallation
    "Adobe AIR" = Adobe AIR
    "Adobe_3dcb365ab9e01871fb8c6f27b0ea079" = Adobe After Effects CS4
    "Adobe_5aab5a491a3a52ae624fd639f6aaa95" = Adobe After Effects CS4 Third Party Content
    "AstroViewer 3.1.5" = AstroViewer 3.1.5
    "chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
    "CNXT_AUDIO_HDA" = Conexant 20672 SmartAudio HD
    "com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
    "com.adobe.downloadassistant.AdobeDownloadAssistant" = Adobe Download Assistant
    "Crayon Physics Deluxe_is1" = Crayon Physics Deluxe - release 51
    "DAEMON Tools Lite" = DAEMON Tools Lite
    "DivX Setup" = DivX-Setup
    "EPSON SX125 Series" = Druckerdeinstallation für EPSON SX125 Series
    "ESET Online Scanner" = ESET Online Scanner v3
    "Free Spider_is1" = Free Spider Solitaire 2010 v2.1
    "Hallo northern sky planetarium program_is1" = HNSKY 2.3.0N
    "iPrep 101" = iPrep 101 v007.1
    "LastFM_is1" = Last.fm 1.5.4.27091
    "LENOVO.SMIIF" = Lenovo System Interface Driver
    "LenovoAutoScrollUtility" = Lenovo Auto Scroll Utility
    "Logitech Vid" = Logitech Vid HD
    "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware Version 1.65.0.1400
    "MAXON8C02D5E0" = CINEMA 4D 12.048
    "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
    "Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
    "Microsoft Security Client" = Microsoft Security Essentials
    "MotoHelper" = MotoHelper 2.0.24 Driver 4.7.1
    "MouseSuite98" = Mouse Suite
    "Mozilla Firefox 8.0.1 (x86 de)" = Mozilla Firefox 8.0.1 (x86 de)
    "Mozilla Thunderbird (7.0.1)" = Mozilla Thunderbird (7.0.1)
    "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
    "o2DE" = Mobile Connection Manager
    "OnScreenDisplay" = Anzeige am Bildschirm
    "Power Management Driver" = ThinkPad Power Management Driver
    "PROSet" = Intel(R) Network Connections Drivers
    "Schülerduden Referatemanager" = Duden Referatemanager
    "SSC Service Utility_is1" = SSC Service Utility v4.30
    "SuperTux 0.3.1" = SuperTux 0.3.1
    "SuperTux_is1" = SuperTux 0.1.3
    "SynTPDeinstKey" = ThinkPad UltraNav Driver
    "ThinkPad FullScreen Magnifier" = ThinkPad FullScreen Magnifier
    "uTorrent" = µTorrent
    "uTorrentBar_DE Toolbar" = uTorrentBar_DE Toolbar
    "Vid-Saver" = Vid-Saver
    "VLC media player" = VLC media player 1.1.11
    "Winamp" = Winamp
    "WinRAR archiver" = WinRAR archiver
    "ZTE USB Driver" = ZTE USB Driver

    ========== HKEY_USERS Uninstall List ==========

    [HKEY_USERS\S-1-5-21-4236169059-776943552-3619825814-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "Google Chrome" = Google Chrome
    "Winamp Detect" = Winamp Erkennungs-Plug-in

    ========== Last 20 Event Log Errors ==========

    [ Application Events ]
    Error - 27.09.2012 02:58:56 | Computer Name = LT520 | Source = Application Error | ID = 1000
    Description = Name der fehlerhaften Anwendung: Photoshop.exe, Version: 12.0.4.0,
    Zeitstempel: 0x4d9d8cbc Name des fehlerhaften Moduls: Save for Web.8BE, Version:
    12.0.0.1, Zeitstempel: 0x4d9d94b1 Ausnahmecode: 0xc0000005 Fehleroffset: 0x002d302d
    ID
    des fehlerhaften Prozesses: 0x30c Startzeit der fehlerhaften Anwendung: 0x01cd9c7d51572748
    Pfad
    der fehlerhaften Anwendung: C:\Program Files\Adobe\Adobe Photoshop CS5\Photoshop.exe
    Pfad
    des fehlerhaften Moduls: C:\Program Files\Adobe\Adobe Photoshop CS5\Plug-ins\Import-Export\Save
    for Web.8BE Berichtskennung: cd9b032f-0870-11e2-b133-f0def19cde8c

    Error - 27.09.2012 03:01:12 | Computer Name = LT520 | Source = Application Error | ID = 1000
    Description = Name der fehlerhaften Anwendung: Photoshop.exe, Version: 12.0.4.0,
    Zeitstempel: 0x4d9d8cbc Name des fehlerhaften Moduls: Save for Web.8BE, Version:
    12.0.0.1, Zeitstempel: 0x4d9d94b1 Ausnahmecode: 0xc0000005 Fehleroffset: 0x002d302d
    ID
    des fehlerhaften Prozesses: 0x1618 Startzeit der fehlerhaften Anwendung: 0x01cd9c7d9c42b79d
    Pfad
    der fehlerhaften Anwendung: C:\Program Files\Adobe\Adobe Photoshop CS5\Photoshop.exe
    Pfad
    des fehlerhaften Moduls: C:\Program Files\Adobe\Adobe Photoshop CS5\Plug-ins\Import-Export\Save
    for Web.8BE Berichtskennung: 1eb63955-0871-11e2-b133-f0def19cde8c

    Error - 27.09.2012 17:46:39 | Computer Name = LT520 | Source = Application Hang | ID = 1002
    Description = Programm SETUP.EXE, Version 1.14.0.0 kann nicht mehr unter Windows
    ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung,
    um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 7d8 Startzeit:
    01cd9cf95a273b04 Endzeit: 42 Anwendungspfad: C:\Users\NB-Admin\Downloads\SETUP.EXE

    Berichts-ID:


    Error - 27.09.2012 17:51:12 | Computer Name = LT520 | Source = Application Hang | ID = 1002
    Description = Programm SETUP.EXE, Version 1.14.0.0 kann nicht mehr unter Windows
    ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung,
    um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: a80 Startzeit:
    01cd9cfa0a92560f Endzeit: 20 Anwendungspfad: C:\Users\NB-Admin\Downloads\SETUP.EXE

    Berichts-ID:


    Error - 27.09.2012 17:52:52 | Computer Name = LT520 | Source = Application Hang | ID = 1002
    Description = Programm setup.exe, Version 1.14.0.0 kann nicht mehr unter Windows
    ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung,
    um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: e64 Startzeit:
    01cd9cfa55245365 Endzeit: 5 Anwendungspfad: C:\Users\NB-Admin\Downloads\setup.exe Berichts-ID:


    Error - 28.09.2012 06:22:37 | Computer Name = LT520 | Source = MsiInstaller | ID = 11316
    Description =

    Error - 29.09.2012 09:31:22 | Computer Name = LT520 | Source = MsiInstaller | ID = 11316
    Description =

    Error - 29.09.2012 15:57:54 | Computer Name = LT520 | Source = Application Error | ID = 1000
    Description = Name der fehlerhaften Anwendung: DivXUpdate.exe, Version: 1.0.6.15,
    Zeitstempel: 0x4e31ebcf Name des fehlerhaften Moduls: pelscrll.dll_unloaded, Version:
    0.0.0.0, Zeitstempel: 0x4a373f03 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00564c10
    ID
    des fehlerhaften Prozesses: 0x1038 Startzeit der fehlerhaften Anwendung: 0x01cd9e7ca0bebe4c
    Pfad
    der fehlerhaften Anwendung: C:\Program Files\DivX\DivX Update\DivXUpdate.exe Pfad
    des fehlerhaften Moduls: pelscrll.dll Berichtskennung: f4a19784-0a6f-11e2-af6d-f0def19cde8c

    Error - 29.09.2012 15:58:08 | Computer Name = LT520 | Source = Application Error | ID = 1000
    Description = Name der fehlerhaften Anwendung: DivXUpdate.exe, Version: 1.0.6.15,
    Zeitstempel: 0x4e31ebcf Name des fehlerhaften Moduls: pelscrll.dll_unloaded, Version:
    0.0.0.0, Zeitstempel: 0x4a373f03 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00564c10
    ID
    des fehlerhaften Prozesses: 0x1038 Startzeit der fehlerhaften Anwendung: 0x01cd9e7ca0bebe4c
    Pfad
    der fehlerhaften Anwendung: C:\Program Files\DivX\DivX Update\DivXUpdate.exe Pfad
    des fehlerhaften Moduls: pelscrll.dll Berichtskennung: fd1e1154-0a6f-11e2-af6d-f0def19cde8c

    Error - 30.09.2012 06:28:59 | Computer Name = LT520 | Source = MsiInstaller | ID = 11316
    Description =

    [ System Events ]
    Error - 30.03.2012 02:41:42 | Computer Name = LT520 | Source = Microsoft Antimalware | ID = 2001
    Description = Beim Aktualisieren der Signaturen wurde von %%860 ein Fehler festgestellt.

    Neue
    Signaturversion: Vorherige Signaturversion: 1.123.583.0 Aktualisierungsquelle: %%859

    Aktualisierungsphase:
    %%852 Quellpfad: Microsoft Home Page | Devices and Services Signaturtyp: %%800 Aktualisierungstyp: %%803

    Benutzer:
    NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: Vorherige Modulversion: 1.1.8202.0 Fehlercode:
    0x8024402c Fehlerbeschreibung: Unerwartetes Problem bei der Überprüfung auf Updates.
    Informationen zum Installieren von Updates oder zur Problembehandlung finden Sie
    unter "Hilfe und Support".

    Error - 30.03.2012 03:49:31 | Computer Name = LT520 | Source = Microsoft Antimalware | ID = 2001
    Description = Beim Aktualisieren der Signaturen wurde von %%860 ein Fehler festgestellt.

    Neue
    Signaturversion: Vorherige Signaturversion: 1.123.583.0 Aktualisierungsquelle: %%859

    Aktualisierungsphase:
    %%852 Quellpfad: Microsoft Home Page | Devices and Services Signaturtyp: %%800 Aktualisierungstyp: %%803

    Benutzer:
    NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: Vorherige Modulversion: 1.1.8202.0 Fehlercode:
    0x8024402c Fehlerbeschreibung: Unerwartetes Problem bei der Überprüfung auf Updates.
    Informationen zum Installieren von Updates oder zur Problembehandlung finden Sie
    unter "Hilfe und Support".

    Error - 30.03.2012 13:33:18 | Computer Name = LT520 | Source = Microsoft Antimalware | ID = 3002
    Description = Vom Echtzeitschutz-Feature von %%860 wurde ein Fehler festgestellt

    Feature:
    %%835 Fehlercode: 0x80004005 Fehlerbeschreibung: Unbekannter Fehler Grund: %%842

    Error - 31.03.2012 07:29:10 | Computer Name = LT520 | Source = DCOM | ID = 10010
    Description =

    Error - 10.04.2012 14:20:06 | Computer Name = LT520 | Source = Microsoft Antimalware | ID = 2001
    Description = Beim Aktualisieren der Signaturen wurde von %%860 ein Fehler festgestellt.

    Neue
    Signaturversion: Vorherige Signaturversion: 1.123.1375.0 Aktualisierungsquelle:
    %%859 Aktualisierungsphase: %%852 Quellpfad: Microsoft Home Page | Devices and Services Signaturtyp:
    %%800 Aktualisierungstyp: %%803 Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion:
    Vorherige Modulversion: 1.1.8202.0 Fehlercode: 0x8024001e Fehlerbeschreibung: Unerwartetes
    Problem bei der Überprüfung auf Updates. Informationen zum Installieren von Updates
    oder zur Problembehandlung finden Sie unter "Hilfe und Support".

    Error - 12.04.2012 08:50:39 | Computer Name = LT520 | Source = Microsoft Antimalware | ID = 3002
    Description = Vom Echtzeitschutz-Feature von %%860 wurde ein Fehler festgestellt

    Feature:
    %%835 Fehlercode: 0x80004005 Fehlerbeschreibung: Unbekannter Fehler Grund: %%842

    Error - 15.04.2012 07:44:54 | Computer Name = LT520 | Source = EventLog | ID = 6008
    Description = Das System wurde zuvor am ?15.?04.?2012 um 13:42:53 unerwartet heruntergefahren.

    Error - 15.04.2012 07:46:09 | Computer Name = LT520 | Source = bowser | ID = 8003
    Description =

    Error - 15.04.2012 07:55:18 | Computer Name = LT520 | Source = Microsoft Antimalware | ID = 2001
    Description = Beim Aktualisieren der Signaturen wurde von %%860 ein Fehler festgestellt.

    Neue
    Signaturversion: Vorherige Signaturversion: 1.123.1712.0 Aktualisierungsquelle:
    %%859 Aktualisierungsphase: %%854 Quellpfad: Microsoft Home Page | Devices and Services Signaturtyp:
    %%800 Aktualisierungstyp: %%803 Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion:
    Vorherige Modulversion: 1.1.8202.0 Fehlercode: 0x80070643 Fehlerbeschreibung: Schwerwiegender
    Fehler bei der Installation.

    Error - 15.04.2012 07:55:23 | Computer Name = LT520 | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
    Description = Installationsfehler: Die Installation des folgenden Updates ist mit
    Fehler 0x80070643 fehlgeschlagen: Definitionsupdate für Microsoft Security Essentials
    – KB2310138 (Definition 1.123.1801.0)


    < End of report >


    Hilfe?

     
    #18 Unregistriert, 30. September 2012
Thema:

mystart incredibar bei einem Softtonic Download eingefangen

Andere User suchten nach Lösung und weiteren Infos nach:

  1. file:///C:/Users/Henry.LAPTOP-N7QPENT8.000.001/Pictures/Youre Not Connected.pdf

    ,
  2. file:///C:/Users/Henry.LAPTOP-N7QPENT8.000.001/Downloads/undefined

    ,
  3. file:///C:/Users/Henry.LAPTOP-N7QPENT8.000.001/Pictures/Prime Video.pdf

  1. Diese Seite verwendet Cookies. Wenn du dich weiterhin auf dieser Seite aufhältst, akzeptierst du unseren Einsatz von Cookies.
    Information ausblenden