Versch. Ports blockiert - Verbindung zu einigen Netzwerken nicht möglich

#0
19.11.2010, 12:51
Member

Beiträge: 79
#1 Hallo, seit gestern Abend habe ich Problem:
- MSN Netzwerk nicht erreichbar
- Yahoo auch nicht erreichbar
- win Update geht neht (Fehler wird auf die Uhrzeit verwiesen)
- einige Spiele (CoH Online) gehen nicht mehr
- MSN verweist auf "Main Ports" das etwas nicht mit Proxy/Firewall stimmt
- dies betrifft nur diesen PC, anderer PC im Netzwerk geht ohne Probleme
- irgendetwas blockiert nach aussen hin ;/

Desweiteren habe ich mehr als 300 Tunneladapter im System und im Gerätemanager über 300 Microsoft 6zu4 Adapter

- ICQ, Skype, IE, Mozilla etc geht aber noch!

Es betrifft nur einige Ports!

-------------------------------------------------

Scan OTL

Code

OTL logfile created on: 19.11.2010 12:24:43 - Run 1
OTL by OldTimer - Version 3.2.17.3     Folder = C:\Users\Home\Desktop
64bit- Ultimate Edition  (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy

4,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 57,00% Memory free
8,00 Gb Paging File | 6,00 Gb Available in Paging File | 74,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 46,56 Gb Total Space | 11,30 Gb Free Space | 24,26% Space Free | Partition Type: NTFS
Drive E: | 249,59 Gb Total Space | 134,54 Gb Free Space | 53,91% Space Free | Partition Type: NTFS
Drive F: | 39,06 Gb Total Space | 38,31 Gb Free Space | 98,08% Space Free | Partition Type: NTFS
Drive G: | 234,74 Gb Total Space | 42,72 Gb Free Space | 18,20% Space Free | Partition Type: NTFS
Drive H: | 231,02 Gb Total Space | 12,31 Gb Free Space | 5,33% Space Free | Partition Type: NTFS
Drive I: | 195,31 Gb Total Space | 131,04 Gb Free Space | 67,09% Space Free | Partition Type: NTFS
Drive J: | 270,45 Gb Total Space | 3,79 Gb Free Space | 1,40% Space Free | Partition Type: NTFS
Drive K: | 240,40 Gb Total Space | 79,98 Gb Free Space | 33,27% Space Free | Partition Type: NTFS
Drive L: | 503,02 Gb Total Space | 5,05 Gb Free Space | 1,00% Space Free | Partition Type: NTFS
Drive M: | 341,80 Gb Total Space | 29,74 Gb Free Space | 8,70% Space Free | Partition Type: NTFS
Drive N: | 123,96 Gb Total Space | 12,62 Gb Free Space | 10,18% Space Free | Partition Type: NTFS
Drive O: | 428,49 Gb Total Space | 3,87 Gb Free Space | 0,90% Space Free | Partition Type: NTFS
Drive R: | 1033,98 Gb Total Space | 582,17 Gb Free Space | 56,30% Space Free | Partition Type: NTFS
Drive S: | 363,29 Gb Total Space | 333,50 Gb Free Space | 91,80% Space Free | Partition Type: NTFS

Computer Name: HOME-PC | User Name: Home | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - C:\Users\Home\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files (x86)\Ray Adams\ATI Tray Tools\atitray.exe (Ray Adams)
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
PRC - E:\50_Firefox\App\Firefox\firefox.exe (Mozilla Corporation)
PRC - E:\30_TomTom HOME 2\TomTomHOMEService.exe (TomTom)
PRC - C:\Windows\SysWOW64\PnkBstrA.exe ()
PRC - E:\91_ever-23\Everest Ultimate Edition v.5.50.2123 beta (portable)\everest.exe (Lavalys, Inc.)
PRC - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
PRC - C:\Programme\ASUS\GPU Boost Driver\GpuBoostServer.exe (
ASUSTeK Computer Inc.)
PRC - C:\Programme\ASUS\TurboV EVO\TurboVHelp.exe (ASUSTeK Computer Inc.)
PRC - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe (ASUSTeK Computer Inc.)
PRC - C:\ASUS.SYS\config\DVMExportService.exe (DeviceVM, Inc.)
PRC - C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\LVPrS64H.exe (Logitech Inc.)
PRC - E:\50_Firefox\FirefoxPortable.exe (PortableApps.com)
PRC - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
PRC - E:\85_Sony\SupServ.exe ()
PRC - C:\Windows\DAODx.exe ()
PRC - C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe (Yahoo! Inc.)
PRC - C:\Windows\SysWOW64\WN311BFCS.exe (NetGear)
PRC - E:\97_RocketDock\RocketDock.exe ()


[color=#E56717]========== Modules (SafeList) ==========[/color]

MOD - C:\Users\Home\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll (Microsoft Corporation)
MOD - C:\Program Files (x86)\Ray Adams\ATI Tray Tools\raphook.dll ()
MOD - C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4926_none_508ed732bcbc0e5a\msvcr90.dll (Microsoft Corporation)
MOD - E:\97_RocketDock\RocketDock.dll ()


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - (WN311BFCS) -- C:\Windows\SysNative\WN311BFCS.exe File not found
SRV:[b]64bit:[/b] - (PnkBstrA) -- C:\Windows\SysNative\PnkBstrA.exe File not found
SRV:[b]64bit:[/b] - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD)
SRV:[b]64bit:[/b] - (LVPrcS64) -- C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.)
SRV:[b]64bit:[/b] - (AppMgmt) -- C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
SRV - (AntiVirService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
SRV - (AntiVirSchedulerService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
SRV - (TomTomHOMEService) -- E:\30_TomTom HOME 2\TomTomHOMEService.exe (TomTom)
SRV - (EmmaDevMgmtSvc) -- C:\Program Files (x86)\Common Files\Sony Ericsson\Emma Core\Services64\EmmaDeviceMgmt.exe (Sony Ericsson Mobile Communications)
SRV - (EmmaUpdMgmtSvc) -- C:\Program Files (x86)\Common Files\Sony Ericsson\Emma Core\Services64\EmmaUpdateMgmt.exe (Sony Ericsson Mobile Communications)
SRV - (PnkBstrA) -- C:\Windows\SysWOW64\PnkBstrA.exe ()
SRV - (Steam Client Service) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
SRV - (AODService) -- E:\90_AMD_Overdrive\AODAssist.exe ()
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (AsSysCtrlService) -- C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe (ASUSTeK Computer Inc.)
SRV - (DvmMDES) -- C:\ASUS.SYS\config\DVMExportService.exe (DeviceVM, Inc.)
SRV - (O&O Defrag) -- E:\56_ooDefrag\oodag.exe (O&O Software GmbH)
SRV - (Nero BackItUp Scheduler 4.0) -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (OMSI download service) -- E:\85_Sony\SupServ.exe ()
SRV - (YahooAUService) -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe (Yahoo! Inc.)
SRV - (WN311BFCS) -- C:\Windows\SysWOW64\WN311BFCS.exe (NetGear)
SRV - (WcesComm) -- C:\Windows\WindowsMobile\wcescomm.dll (Microsoft Corporation)
SRV - (RapiMgr) -- C:\Windows\WindowsMobile\rapimgr.dll (Microsoft Corporation)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - (avgntflt) -- C:\Windows\SysNative\drivers\avgntflt.sys (Avira GmbH)
DRV:[b]64bit:[/b] - (amdkmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV:[b]64bit:[/b] - (amdkmdap) -- C:\Windows\SysNative\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
DRV:[b]64bit:[/b] - (AtiHDAudioService) -- C:\Windows\SysNative\drivers\AtihdW76.sys (ATI Technologies, Inc.)
DRV:[b]64bit:[/b] - (sptd) -- C:\Windows\SysNative\drivers\sptd.sys ()
DRV:[b]64bit:[/b] - (AtiHdmiService) -- C:\Windows\SysNative\drivers\AtiHdmi.sys (ATI Technologies, Inc.)
DRV:[b]64bit:[/b] - (avipbb) -- C:\Windows\SysNative\drivers\avipbb.sys (Avira GmbH)
DRV:[b]64bit:[/b] - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek                                            )
DRV:[b]64bit:[/b] - (vpcvmm) -- C:\Windows\SysNative\drivers\vpcvmm.sys (Microsoft Corporation)
DRV:[b]64bit:[/b] - (vpcbus) -- C:\Windows\SysNative\drivers\vpchbus.sys (Microsoft Corporation)
DRV:[b]64bit:[/b] - (vpcusb) -- C:\Windows\SysNative\drivers\vpcusb.sys (Microsoft Corporation)
DRV:[b]64bit:[/b] - (vpcnfltr) -- C:\Windows\SysNative\drivers\vpcnfltr.sys (Microsoft Corporation)
DRV:[b]64bit:[/b] - (JRAID) -- C:\Windows\SysNative\drivers\jraid.sys (JMicron Technology Corp.)
DRV:[b]64bit:[/b] - (usbfilter) -- C:\Windows\SysNative\drivers\usbfilter.sys (Advanced Micro Devices)
DRV:[b]64bit:[/b] - (LGVirHid) -- C:\Windows\SysNative\drivers\LGVirHid.sys (Logitech Inc.)
DRV:[b]64bit:[/b] - (LGBusEnum) -- C:\Windows\SysNative\drivers\LGBusEnum.sys (Logitech Inc.)
DRV:[b]64bit:[/b] - (ahcix64s) -- C:\Windows\SysNative\drivers\ahcix64s.sys (Advanced Micro Devices, Inc)
DRV:[b]64bit:[/b] - (LVUVC64) Logitech QuickCam S5500(UVC) -- C:\Windows\SysNative\drivers\lvuvc64.sys (Logitech Inc.)
DRV:[b]64bit:[/b] - (LVRS64) -- C:\Windows\SysNative\drivers\lvrs64.sys (Logitech Inc.)
DRV:[b]64bit:[/b] - (LVPr2Mon) -- C:\Windows\SysNative\drivers\LVPr2M64.sys ()
DRV:[b]64bit:[/b] - (LVPr2M64) -- C:\Windows\SysNative\drivers\LVPr2M64.sys ()
DRV:[b]64bit:[/b] - (AtiPcie) AMD PCI Express (3GIO) -- C:\Windows\SysNative\drivers\AtiPcie.sys (Advanced Micro Devices Inc.)
DRV:[b]64bit:[/b] - (MTsensor) -- C:\Windows\SysNative\drivers\ASACPI.sys ()
DRV:[b]64bit:[/b] - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:[b]64bit:[/b] - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:[b]64bit:[/b] - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:[b]64bit:[/b] - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:[b]64bit:[/b] - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:[b]64bit:[/b] - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:[b]64bit:[/b] - (usb_rndisx) -- C:\Windows\SysNative\drivers\usb8023x.sys (Microsoft Corporation)
DRV:[b]64bit:[/b] - (Ntfs) -- C:\Windows\SysNative\wbem\ntfs.mof ()
DRV:[b]64bit:[/b] - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:[b]64bit:[/b] - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:[b]64bit:[/b] - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:[b]64bit:[/b] - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:[b]64bit:[/b] - (s1029unic) Sony Ericsson Device 1029 USB Ethernet Emulation (WDM) -- C:\Windows\SysNative\drivers\s1029unic.sys (MCCI Corporation)
DRV:[b]64bit:[/b] - (s1029mgmt) Sony Ericsson Device 1029 USB WMC Device Management Drivers (WDM) -- C:\Windows\SysNative\drivers\s1029mgmt.sys (MCCI Corporation)
DRV:[b]64bit:[/b] - (s1029obex) -- C:\Windows\SysNative\drivers\s1029obex.sys (MCCI Corporation)
DRV:[b]64bit:[/b] - (s1029mdm) -- C:\Windows\SysNative\drivers\s1029mdm.sys (MCCI Corporation)
DRV:[b]64bit:[/b] - (s1029nd5) Sony Ericsson Device 1029 USB Ethernet Emulation (NDIS) -- C:\Windows\SysNative\drivers\s1029nd5.sys (MCCI Corporation)
DRV:[b]64bit:[/b] - (s1029mdfl) -- C:\Windows\SysNative\drivers\s1029mdfl.sys (MCCI Corporation)
DRV:[b]64bit:[/b] - (s1029bus) Sony Ericsson Device 1029 driver (WDM) -- C:\Windows\SysNative\drivers\s1029bus.sys (MCCI Corporation)
DRV:[b]64bit:[/b] - (ggsemc) -- C:\Windows\SysNative\drivers\ggsemc.sys (Sony Ericsson Mobile Communications)
DRV:[b]64bit:[/b] - (ggflt) -- C:\Windows\SysNative\drivers\ggflt.sys (Sony Ericsson Mobile Communications)
DRV:[b]64bit:[/b] - (VCSVADHWSer) Avnex Virtual Audio Device (WDM) -- C:\Windows\SysNative\drivers\vcsvad.sys (Avnex)
DRV:[b]64bit:[/b] - (s0017unic) Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (WDM) -- C:\Windows\SysNative\drivers\s0017unic.sys (MCCI Corporation)
DRV:[b]64bit:[/b] - (s0017obex) -- C:\Windows\SysNative\drivers\s0017obex.sys (MCCI Corporation)
DRV:[b]64bit:[/b] - (s0017nd5) Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (NDIS) -- C:\Windows\SysNative\drivers\s0017nd5.sys (MCCI Corporation)
DRV:[b]64bit:[/b] - (s0017mdm) -- C:\Windows\SysNative\drivers\s0017mdm.sys (MCCI Corporation)
DRV:[b]64bit:[/b] - (s0017mgmt) Sony Ericsson Device 0017 USB WMC Device Management Drivers (WDM) -- C:\Windows\SysNative\drivers\s0017mgmt.sys (MCCI Corporation)
DRV:[b]64bit:[/b] - (s0017mdfl) -- C:\Windows\SysNative\drivers\s0017mdfl.sys (MCCI Corporation)
DRV:[b]64bit:[/b] - (s0017bus) Sony Ericsson Device 0017 driver (WDM) -- C:\Windows\SysNative\drivers\s0017bus.sys (MCCI Corporation)
DRV:[b]64bit:[/b] - (Ctafiltv) -- C:\Windows\SysNative\drivers\Ctafiltv.sys (Creative Technology Ltd.)
DRV:[b]64bit:[/b] - (NETGEAR) -- C:\Windows\SysNative\drivers\wn311b64.SYS (Broadcom Corporation)
DRV:[b]64bit:[/b] - (ManyCam) -- C:\Windows\SysNative\drivers\ManyCam_x64.sys (ManyCam LLC.)
DRV:[b]64bit:[/b] - (ENTECH64) -- C:\Windows\SysNative\drivers\Entech64.sys (EnTech Taiwan)
DRV:[b]64bit:[/b] - (Si3114r5) -- C:\Windows\SysNative\drivers\Si3114r5.sys (Silicon Image, Inc)
DRV:[b]64bit:[/b] - (SiRemFil) -- C:\Windows\SysNative\drivers\SiRemFil.sys (Silicon Image, Inc.)
DRV:[b]64bit:[/b] - (SiFilter) -- C:\Windows\SysNative\drivers\SiWinAcc.sys (Silicon Image, Inc.)
DRV - (EverestDriver) -- E:\91_ever-23\Everest Ultimate Edition v.5.50.2123 beta (portable)\kerneld.amd64 ()


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.de/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


[2010.11.19 12:15:15 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\mozilla\Extensions
[2010.11.13 22:28:38 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\mozilla\Extensions-BackupByFirefoxPortable
[2010.11.13 22:28:38 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Home\AppData\Roaming\mozilla\Extensions-BackupByFirefoxPortable\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}

O1 HOSTS File: ([2010.08.19 17:10:36 | 000,000,853 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 www.audio4fun.com
O2:[b]64bit:[/b] - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O4:[b]64bit:[/b] - HKLM..\Run: [Launch LGDCore] C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe (Logitech Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [Launch LgDeviceAgent] C:\Program Files\Logitech\GamePanel Software\LgDevAgt.exe (Logitech Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [ATICustomerCare] C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe ()
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\Run: [AtiTrayTools] C:\Program Files (x86)\Ray Adams\ATI Tray Tools\atitray.exe (Ray Adams)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKCU..\Run: [RocketDock] E:\97_RocketDock\RocketDock.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:[b]64bit:[/b] - Extra context menu item: Nach Microsoft E&xel exportieren - E:\10_Office07\Office12\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Nach Microsoft E&xel exportieren - E:\10_Office07\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files (x86)\ICQ7.2\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files (x86)\ICQ7.2\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\10_Office07\Office12\REFIEBAR.DLL (Microsoft Corporation)
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18:[b]64bit:[/b] - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O18:[b]64bit:[/b] - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O32 - Unable to obtain root file information for disk M:\
O33 - MountPoints2\{7bdf8596-5dfc-11df-b4b0-a2114dda1428}\Shell - "" = AutoRun
O33 - MountPoints2\{7bdf8596-5dfc-11df-b4b0-a2114dda1428}\Shell\AutoRun\command - "" = Q:\Startme.exe -- File not found
O33 - MountPoints2\{a8dc1cbb-5703-11df-9dc5-e2ead9ae333d}\Shell - "" = AutoRun
O33 - MountPoints2\{a8dc1cbb-5703-11df-9dc5-e2ead9ae333d}\Shell\AutoRun\command - "" = P:\SETUP.EXE -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
O34 - HKLM BootExecute: (OODBS) -  File not found
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2010.11.19 12:23:38 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Users\Home\Desktop\OTL.exe
[2010.11.19 11:32:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Trend Micro
[2010.11.19 01:21:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Creative Labs
[2010.11.18 18:49:59 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Roaming\Creative
[2010.11.18 18:42:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Creative
[2010.11.18 18:38:48 | 000,647,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Mscomct2.ocx
[2010.11.18 18:38:48 | 000,053,248 | ---- | C] (Creative Technology Ltd ) -- C:\Windows\Ctregrun.exe
[2010.11.18 18:35:44 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Creative Installation Information
[2010.11.18 18:35:37 | 000,600,576 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\CHAPO64.dll
[2010.11.18 18:35:37 | 000,524,288 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysWow64\CHAPO32.dll
[2010.11.18 18:35:37 | 000,285,184 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\CHECFX64.dll
[2010.11.18 18:35:37 | 000,235,520 | ---- | C] (Creative Technology Limited) -- C:\Windows\SysNative\CtaCInst.dll
[2010.11.18 18:35:37 | 000,218,624 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysWow64\CHECFX32.dll
[2010.11.18 18:35:37 | 000,057,856 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\CHppld64.dll
[2010.11.18 18:35:37 | 000,024,064 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\drivers\Ctafiltv.sys
[2010.11.18 18:35:22 | 001,908,736 | ---- | C] (Creative) -- C:\Windows\SysNative\Sens_oal.dll
[2010.11.18 18:34:40 | 000,000,000 | ---D | C] -- C:\Programme\Creative
[2010.11.18 18:34:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Creative
[2010.11.14 19:51:00 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2010.11.14 19:43:27 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
[2010.11.14 10:58:07 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Roaming\ATI
[2010.11.14 10:58:07 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\ATI
[2010.11.14 10:58:01 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Roaming\atitray
[2010.11.14 10:55:32 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\ATI Technologies
[2010.11.14 10:55:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ATI Technologies
[2010.11.14 10:55:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATI
[2010.11.14 10:55:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATI Technologies
[2010.11.14 10:55:08 | 000,000,000 | ---D | C] -- C:\Programme\ATI
[2010.11.14 10:45:16 | 000,000,000 | ---D | C] -- C:\Programme\ATI Technologies
[2010.11.14 10:44:58 | 000,000,000 | ---D | C] -- C:\ATI
[2010.11.13 23:16:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ray Adams
[2010.11.13 22:46:38 | 000,000,000 | ---D | C] -- C:\AMD
[2010.11.13 22:34:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Phyxion.net
[2010.11.13 22:28:38 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Roaming\Mozilla
[2010.11.12 20:50:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATI Stream
[2010.11.12 15:01:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Driver Cleaner Pro
[2010.11.11 16:05:48 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\Activision
[2010.11.11 16:04:41 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_43.dll
[2010.11.11 16:04:41 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_43.dll
[2010.11.11 16:04:41 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_7.dll
[2010.11.11 16:04:41 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_7.dll
[2010.11.11 16:04:41 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_7.dll
[2010.11.11 16:04:41 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_7.dll
[2010.11.11 16:04:41 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_5.dll
[2010.11.11 16:04:41 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_5.dll
[2010.11.11 16:04:40 | 001,907,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dcsx_43.dll
[2010.11.11 16:04:40 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dcsx_43.dll
[2010.11.11 16:04:40 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_43.dll
[2010.11.11 16:04:40 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_43.dll
[2010.11.11 16:04:39 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_43.dll
[2010.11.11 16:04:39 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_43.dll
[2010.11.11 16:04:39 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_43.dll
[2010.11.11 16:04:39 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_43.dll
[2010.11.11 16:04:38 | 000,530,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_6.dll
[2010.11.11 16:04:38 | 000,528,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_6.dll
[2010.11.11 16:04:38 | 000,517,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_5.dll
[2010.11.11 16:04:38 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_5.dll
[2010.11.11 16:04:38 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_6.dll
[2010.11.11 16:04:38 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_5.dll
[2010.11.11 16:04:38 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_6.dll
[2010.11.11 16:04:38 | 000,176,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_5.dll
[2010.11.11 16:04:38 | 000,078,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_4.dll
[2010.11.11 16:04:38 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_4.dll
[2010.11.11 16:04:38 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_7.dll
[2010.11.11 16:04:38 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_7.dll
[2010.11.11 16:04:37 | 002,582,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_42.dll
[2010.11.11 16:04:37 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_42.dll
[2010.11.11 16:04:36 | 005,554,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dcsx_42.dll
[2010.11.11 16:04:36 | 005,501,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dcsx_42.dll
[2010.11.11 16:04:36 | 000,285,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_42.dll
[2010.11.11 16:04:36 | 000,235,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_42.dll
[2010.11.11 16:04:35 | 002,475,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_42.dll
[2010.11.11 16:04:35 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_42.dll
[2010.11.11 16:04:35 | 000,523,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_42.dll
[2010.11.11 16:04:35 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_42.dll
[2010.11.11 16:04:34 | 002,430,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_41.dll
[2010.11.11 16:04:34 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_41.dll
[2010.11.11 16:04:34 | 000,520,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_41.dll
[2010.11.11 16:04:34 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_41.dll
[2010.11.11 16:04:33 | 005,425,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_41.dll
[2010.11.11 16:04:33 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_41.dll
[2010.11.11 16:04:33 | 000,521,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_4.dll
[2010.11.11 16:04:33 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_4.dll
[2010.11.11 16:04:33 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_4.dll
[2010.11.11 16:04:33 | 000,174,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_4.dll
[2010.11.11 16:04:33 | 000,073,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_3.dll
[2010.11.11 16:04:33 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_3.dll
[2010.11.11 16:04:33 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_6.dll
[2010.11.11 16:04:33 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_6.dll
[2010.11.11 16:04:32 | 002,605,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_40.dll
[2010.11.11 16:04:32 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_40.dll
[2010.11.11 16:04:32 | 000,519,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_40.dll
[2010.11.11 16:04:32 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_40.dll
[2010.11.11 16:04:31 | 005,631,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_40.dll
[2010.11.11 16:04:31 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_40.dll
[2010.11.11 16:04:31 | 000,518,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_3.dll
[2010.11.11 16:04:31 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_3.dll
[2010.11.11 16:04:31 | 000,074,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_2.dll
[2010.11.11 16:04:31 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_2.dll
[2010.11.11 16:04:30 | 000,513,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_2.dll
[2010.11.11 16:04:30 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_2.dll
[2010.11.11 16:04:30 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_2.dll
[2010.11.11 16:04:30 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_3.dll
[2010.11.11 16:04:30 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_2.dll
[2010.11.11 16:04:30 | 000,175,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_3.dll
[2010.11.11 16:04:30 | 000,072,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_1.dll
[2010.11.11 16:04:30 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_1.dll
[2010.11.11 16:04:30 | 000,025,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_5.dll
[2010.11.11 16:04:30 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_5.dll
[2010.11.11 16:04:29 | 001,942,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_39.dll
[2010.11.11 16:04:29 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_39.dll
[2010.11.11 16:04:28 | 004,992,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_39.dll
[2010.11.11 16:04:28 | 000,511,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_1.dll
[2010.11.11 16:04:28 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_1.dll
[2010.11.11 16:04:28 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_1.dll
[2010.11.11 16:04:28 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_1.dll
[2010.11.11 16:04:28 | 000,068,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_0.dll
[2010.11.11 16:04:28 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_0.dll
[2010.11.11 16:04:28 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_4.dll
[2010.11.11 16:04:28 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_4.dll
[2010.11.11 16:04:27 | 001,941,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_38.dll
[2010.11.11 16:04:27 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_38.dll
[2010.11.11 16:04:27 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_38.dll
[2010.11.11 16:04:27 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_38.dll
[2010.11.11 16:04:26 | 004,991,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_38.dll
[2010.11.11 16:04:26 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_38.dll
[2010.11.11 16:04:26 | 000,489,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_0.dll
[2010.11.11 16:04:26 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_0.dll
[2010.11.11 16:04:25 | 001,860,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_37.dll
[2010.11.11 16:04:25 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_37.dll
[2010.11.11 16:04:25 | 000,529,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_37.dll
[2010.11.11 16:04:25 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_37.dll
[2010.11.11 16:04:25 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_0.dll
[2010.11.11 16:04:25 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_0.dll
[2010.11.11 16:04:25 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_3.dll
[2010.11.11 16:04:25 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_3.dll
[2010.11.11 16:04:24 | 004,910,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_37.dll
[2010.11.11 16:04:24 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_37.dll
[2010.11.11 16:04:23 | 002,006,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_36.dll
[2010.11.11 16:04:23 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_36.dll
[2010.11.11 16:04:23 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_36.dll
[2010.11.11 16:04:23 | 000,411,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_10.dll
[2010.11.11 16:04:23 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_10.dll
[2010.11.11 16:04:22 | 005,081,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_36.dll
[2010.11.11 16:04:22 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_36.dll
[2010.11.11 16:04:21 | 000,411,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_9.dll
[2010.11.11 16:04:21 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_9.dll
[2010.11.11 16:04:20 | 001,985,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_35.dll
[2010.11.11 16:04:20 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_35.dll
[2010.11.11 16:04:20 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_35.dll
[2010.11.11 16:04:20 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_35.dll
[2010.11.11 16:04:19 | 005,073,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_35.dll
[2010.11.11 16:04:19 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_35.dll
[2010.11.11 16:04:19 | 000,409,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_8.dll
[2010.11.11 16:04:19 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_8.dll
[2010.11.11 16:04:19 | 000,021,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_2.dll
[2010.11.11 16:04:19 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_2.dll
[2010.11.11 16:04:18 | 004,496,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_34.dll
[2010.11.11 16:04:18 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_34.dll
[2010.11.11 16:04:18 | 001,401,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_34.dll
[2010.11.11 16:04:18 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_34.dll
[2010.11.11 16:04:18 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_34.dll
[2010.11.11 16:04:18 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_34.dll
[2010.11.11 16:04:17 | 000,403,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_7.dll
[2010.11.11 16:04:17 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_7.dll
[2010.11.11 16:04:17 | 000,107,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_3.dll
[2010.11.11 16:04:17 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_3.dll
[2010.11.11 16:04:16 | 001,400,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_33.dll
[2010.11.11 16:04:16 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_33.dll
[2010.11.11 16:04:16 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_33.dll
[2010.11.11 16:04:16 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_33.dll
[2010.11.11 16:04:15 | 004,494,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_33.dll
[2010.11.11 16:04:15 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_33.dll
[2010.11.11 16:04:15 | 000,393,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_6.dll
[2010.11.11 16:04:15 | 000,390,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_5.dll
[2010.11.11 16:04:15 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_6.dll
[2010.11.11 16:04:15 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_5.dll
[2010.11.11 16:04:14 | 004,398,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_32.dll
[2010.11.11 16:04:14 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_32.dll
[2010.11.11 16:04:14 | 000,469,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10.dll
[2010.11.11 16:04:14 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10.dll
[2010.11.11 16:04:13 | 000,364,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_4.dll
[2010.11.11 16:04:13 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_4.dll
[2010.11.11 16:04:13 | 000,017,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_1.dll
[2010.11.11 16:04:13 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_1.dll
[2010.11.11 16:04:12 | 003,977,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_31.dll
[2010.11.11 16:04:12 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_31.dll
[2010.11.11 16:04:12 | 000,363,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_3.dll
[2010.11.11 16:04:12 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_3.dll
[2010.11.11 16:04:12 | 000,083,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_2.dll
[2010.11.11 16:04:12 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_2.dll
[2010.11.11 16:04:11 | 000,354,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_2.dll
[2010.11.11 16:04:11 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_2.dll
[2010.11.11 16:04:11 | 000,083,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_1.dll
[2010.11.11 16:04:11 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_1.dll
[2010.11.11 16:04:10 | 000,352,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_1.dll
[2010.11.11 16:04:10 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_1.dll
[2010.11.11 16:04:07 | 003,927,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_30.dll
[2010.11.11 16:04:06 | 003,830,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_29.dll
[2010.11.11 16:04:06 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_29.dll
[2010.11.11 16:04:06 | 000,355,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_0.dll
[2010.11.11 16:04:06 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_0.dll
[2010.11.11 16:04:06 | 000,016,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_0.dll
[2010.11.11 16:04:06 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_0.dll
[2010.11.11 16:04:05 | 003,815,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_28.dll
[2010.11.11 16:04:05 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_28.dll
[2010.11.11 16:04:04 | 003,807,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_27.dll
[2010.11.11 16:04:04 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_27.dll
[2010.11.11 16:04:03 | 003,767,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_26.dll
[2010.11.11 16:04:03 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_26.dll
[2010.11.11 16:04:02 | 003,823,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_25.dll
[2010.11.11 16:04:02 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_25.dll
[2010.11.11 16:04:01 | 003,544,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_24.dll
[2010.11.11 16:04:01 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_24.dll
[2010.11.08 19:09:42 | 000,000,000 | ---D | C] -- C:\Programme\CCleaner
[2010.11.07 13:57:04 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\Thunderbird
[2010.11.06 15:57:37 | 000,000,000 | ---D | C] -- C:\Users\Home\Documents\Battlefield Heroes
[2010.11.05 17:50:29 | 000,153,376 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaws.exe
[2010.11.05 17:50:29 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaw.exe
[2010.11.05 17:50:29 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\java.exe
[2010.11.05 06:07:06 | 007,883,264 | ---- | C] (ATI Technologies Inc.) -- C:\Windows\SysNative\drivers\atikmdag.sys
[2010.11.05 05:06:12 | 000,051,200 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalrt64.dll
[2010.11.05 05:06:10 | 000,046,080 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalrt.dll
[2010.11.05 05:06:02 | 000,044,544 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalcl64.dll
[2010.11.05 05:06:00 | 000,044,032 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalcl.dll
[2010.11.05 05:05:50 | 005,470,720 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticaldd64.dll
[2010.11.05 05:04:54 | 004,407,808 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticaldd.dll
[2010.11.05 05:03:26 | 021,616,128 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atio6axx.dll
[2010.11.05 04:46:08 | 016,695,296 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atioglxx.dll
[2010.11.05 04:24:02 | 003,222,016 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiumd6a.dll
[2010.11.05 04:21:14 | 000,143,360 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atiapfxx.exe
[2010.11.05 04:18:22 | 000,053,248 | ---- | C] (ATI Technologies Inc.) -- C:\Windows\SysNative\drivers\ati2erec.dll
[2010.11.05 04:18:08 | 000,450,560 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\ATIDEMGX.dll
[2010.11.05 04:17:58 | 000,462,336 | ---- | C] (AMD) -- C:\Windows\SysNative\atieclxx.exe
[2010.11.05 04:17:24 | 000,203,264 | ---- | C] (AMD) -- C:\Windows\SysNative\atiesrxx.exe
[2010.11.05 04:16:18 | 000,120,320 | ---- | C] (AMD) -- C:\Windows\SysNative\atitmm64.dll
[2010.11.05 04:16:00 | 000,421,376 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\SysNative\atipdl64.dll
[2010.11.05 04:15:42 | 000,278,528 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\SysWow64\Oemdspif.dll
[2010.11.05 04:15:38 | 000,012,288 | ---- | C] (AMD) -- C:\Windows\SysNative\atimuixx.dll
[2010.11.05 04:15:34 | 000,059,392 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\SysNative\atiedu64.dll
[2010.11.05 04:15:28 | 000,043,520 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\SysWow64\ati2edxx.dll
[2010.11.05 04:12:38 | 004,020,736 | ---- | C] (ATI Technologies Inc. ) -- C:\Windows\SysWow64\atidxx32.dll
[2010.11.05 04:04:22 | 000,053,760 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atimpc64.dll
[2010.11.05 04:04:22 | 000,053,760 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\amdpcom64.dll
[2010.11.05 04:04:16 | 000,052,736 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atimpc32.dll
[2010.11.05 04:04:16 | 000,052,736 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\amdpcom32.dll
[2010.11.05 03:48:32 | 005,246,464 | ---- | C] (ATI Technologies Inc. ) -- C:\Windows\SysNative\atiumd64.dll
[2010.11.05 03:41:42 | 000,340,480 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atiadlxx.dll
[2010.11.05 03:41:36 | 000,241,664 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atiadlxy.dll
[2010.11.05 03:41:28 | 000,014,848 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6pxx.dll
[2010.11.05 03:41:24 | 000,012,800 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiglpxx.dll
[2010.11.05 03:41:24 | 000,012,800 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiglpxx.dll
[2010.11.05 03:41:22 | 000,021,504 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6txx.dll
[2010.11.05 03:41:18 | 000,019,968 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atigktxx.dll
[2010.11.05 03:41:14 | 000,285,696 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\atikmpag.sys
[2010.11.05 03:40:22 | 000,037,888 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiu9p64.dll
[2010.10.27 14:24:21 | 000,961,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CPFilters.dll
[2010.10.27 14:24:21 | 000,641,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CPFilters.dll
[2010.10.27 14:24:21 | 000,552,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdri.dll
[2010.10.27 14:24:21 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSNP.ax
[2010.10.27 14:24:21 | 000,258,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mpg2splt.ax
[2010.10.27 14:24:21 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSNP.ax
[2010.10.27 14:24:21 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mpg2splt.ax
[2010.10.27 14:24:12 | 000,027,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Diskdump.sys
[2010.10.24 08:05:48 | 000,000,000 | ---D | C] -- C:\Users\Home\Documents\Electronic Arts
[2010.10.24 08:02:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft WSE
[2010.10.21 00:10:22 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee
[2010.06.11 08:23:04 | 000,148,736 | ---- | C] (Avanquest Software) -- C:\ProgramData\hpe7C8E.dll
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\SysNative\*.tmp files -> C:\Windows\SysNative\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2010.11.19 12:23:55 | 000,000,177 | -H-- | M] () -- C:\dvmexp.idx
[2010.11.19 12:23:39 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Home\Desktop\OTL.exe
[2010.11.19 12:20:17 | 007,387,498 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2010.11.19 12:20:17 | 002,584,056 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2010.11.19 12:20:17 | 002,246,370 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2010.11.19 12:20:17 | 001,995,716 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2010.11.19 12:20:17 | 000,005,218 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2010.11.19 12:18:55 | 000,013,728 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010.11.19 12:18:55 | 000,013,728 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010.11.19 12:14:19 | 000,000,434 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts.ics
[2010.11.19 12:13:58 | 000,001,100 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2010.11.19 12:13:51 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010.11.19 12:13:50 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\drivers\lvuvc.hs
[2010.11.19 12:13:49 | 3207,663,616 | -HS- | M] () -- C:\hiberfil.sys
[2010.11.19 12:13:48 | 000,458,176 | ---- | M] () -- C:\Windows\SysNative\oodbs.lor
[2010.11.19 12:01:11 | 000,000,206 | ---- | M] () -- C:\Windows\SysNative\cc_20101119_120109.reg
[2010.11.19 11:58:49 | 000,005,102 | ---- | M] () -- C:\Windows\SysNative\cc_20101119_115847.reg
[2010.11.19 11:58:00 | 000,001,104 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2010.11.19 11:32:45 | 000,002,971 | ---- | M] () -- C:\Users\Home\Desktop\HiJackThis.lnk
[2010.11.19 01:22:08 | 000,002,320 | ---- | M] () -- C:\Users\Public\Desktop\Creative-Produktregistrierung.lnk
[2010.11.19 01:20:59 | 000,000,946 | ---- | M] () -- C:\Windows\SysNative\cc_20101119_012054.reg
[2010.11.18 22:24:34 | 000,234,280 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2010.11.18 22:02:17 | 000,234,280 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2010.11.18 19:49:57 | 000,001,590 | ---- | M] () -- C:\Windows\SysNative\cc_20101118_194954.reg
[2010.11.18 19:11:26 | 003,099,848 | ---- | M] () -- C:\Users\Home\Desktop\TeamViewer_Setup.exe
[2010.11.17 00:01:39 | 000,000,901 | ---- | M] () -- C:\Users\Home\Desktop\BFBC2Game - Verknüpfung.lnk
[2010.11.15 02:35:54 | 000,100,864 | ---- | M] () -- C:\Users\Home\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.11.14 19:53:52 | 000,001,098 | ---- | M] () -- C:\Windows\SysNative\cc_20101114_195350.reg
[2010.11.14 10:33:07 | 000,001,806 | ---- | M] () -- C:\Windows\SysNative\cc_20101114_103305.reg
[2010.11.14 10:32:57 | 000,003,088 | ---- | M] () -- C:\Windows\SysNative\cc_20101114_103256.reg
[2010.11.12 15:05:56 | 000,003,446 | ---- | M] () -- C:\Windows\SysNative\cc_20101112_150555.reg
[2010.11.12 14:36:42 | 000,008,504 | ---- | M] () -- C:\Users\Home\Desktop\1.xsl
[2010.11.11 16:01:36 | 000,000,756 | ---- | M] () -- C:\Users\Public\Desktop\Call of Duty - Black Ops Call MP.lnk
[2010.11.11 16:01:36 | 000,000,746 | ---- | M] () -- C:\Users\Public\Desktop\Call of Duty - Black Ops.lnk
[2010.11.09 23:52:25 | 000,001,294 | ---- | M] () -- C:\Windows\SysNative\cc_20101109_235221.reg
[2010.11.08 19:05:35 | 000,002,910 | ---- | M] () -- C:\Users\Home\Documents\cc_20101108_190531.reg
[2010.11.07 13:57:06 | 000,000,000 | ---- | M] () -- C:\Windows\nsreg.dat
[2010.11.06 15:43:17 | 002,427,248 | ---- | M] () -- C:\Windows\SysWow64\pbsvc_heroes.exe
[2010.11.05 14:44:17 | 000,081,584 | ---- | M] (Avira GmbH) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2010.11.05 06:07:06 | 007,883,264 | ---- | M] (ATI Technologies Inc.) -- C:\Windows\SysNative\drivers\atikmdag.sys
[2010.11.05 05:06:12 | 000,051,200 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalrt64.dll
[2010.11.05 05:06:10 | 000,046,080 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalrt.dll
[2010.11.05 05:06:02 | 000,044,544 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalcl64.dll
[2010.11.05 05:06:00 | 000,044,032 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalcl.dll
[2010.11.05 05:05:50 | 005,470,720 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticaldd64.dll
[2010.11.05 05:04:54 | 004,407,808 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticaldd.dll
[2010.11.05 05:03:26 | 021,616,128 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atio6axx.dll
[2010.11.05 04:46:08 | 016,695,296 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atioglxx.dll
[2010.11.05 04:24:02 | 003,222,016 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiumd6a.dll
[2010.11.05 04:21:40 | 000,614,400 | ---- | M] () -- C:\Windows\SysNative\atiumd6a.cap
[2010.11.05 04:21:34 | 000,084,976 | ---- | M] () -- C:\Windows\SysNative\atiapfxx.blb
[2010.11.05 04:21:14 | 000,143,360 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atiapfxx.exe
[2010.11.05 04:21:04 | 000,537,088 | ---- | M] (ATI Technologies Inc. ) -- C:\Windows\SysWow64\aticfx32.dll
[2010.11.05 04:20:08 | 000,629,760 | ---- | M] (ATI Technologies Inc. ) -- C:\Windows\SysNative\aticfx64.dll
[2010.11.05 04:19:52 | 000,058,880 | ---- | M] (AMD) -- C:\Windows\SysNative\coinst.dll
[2010.11.05 04:18:22 | 000,053,248 | ---- | M] (ATI Technologies Inc.) -- C:\Windows\SysNative\drivers\ati2erec.dll
[2010.11.05 04:18:08 | 000,450,560 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\ATIDEMGX.dll
[2010.11.05 04:17:58 | 000,462,336 | ---- | M] (AMD) -- C:\Windows\SysNative\atieclxx.exe
[2010.11.05 04:17:24 | 000,203,264 | ---- | M] (AMD) -- C:\Windows\SysNative\atiesrxx.exe
[2010.11.05 04:17:02 | 003,460,096 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiumdva.dll
[2010.11.05 04:16:40 | 000,614,400 | ---- | M] () -- C:\Windows\SysWow64\atiumdva.cap
[2010.11.05 04:16:18 | 000,120,320 | ---- | M] (AMD) -- C:\Windows\SysNative\atitmm64.dll
[2010.11.05 04:16:00 | 000,421,376 | ---- | M] (ATI Technologies, Inc.) -- C:\Windows\SysNative\atipdl64.dll
[2010.11.05 04:15:52 | 000,356,352 | ---- | M] (ATI Technologies, Inc.) -- C:\Windows\SysWow64\atipdlxx.dll
[2010.11.05 04:15:42 | 000,278,528 | ---- | M] (ATI Technologies, Inc.) -- C:\Windows\SysWow64\Oemdspif.dll
[2010.11.05 04:15:38 | 000,012,288 | ---- | M] (AMD) -- C:\Windows\SysNative\atimuixx.dll
[2010.11.05 04:15:34 | 000,059,392 | ---- | M] (ATI Technologies, Inc.) -- C:\Windows\SysNative\atiedu64.dll
[2010.11.05 04:15:28 | 000,043,520 | ---- | M] (ATI Technologies, Inc.) -- C:\Windows\SysWow64\ati2edxx.dll
[2010.11.05 04:12:38 | 004,020,736 | ---- | M] (ATI Technologies Inc. ) -- C:\Windows\SysWow64\atidxx32.dll
[2010.11.05 04:04:30 | 004,744,192 | ---- | M] (ATI Technologies Inc. ) -- C:\Windows\SysNative\atidxx64.dll
[2010.11.05 04:04:22 | 000,053,760 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atimpc64.dll
[2010.11.05 04:04:22 | 000,053,760 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\amdpcom64.dll
[2010.11.05 04:04:16 | 000,052,736 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atimpc32.dll
[2010.11.05 04:04:16 | 000,052,736 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\amdpcom32.dll
[2010.11.05 03:54:42 | 004,120,064 | ---- | M] (ATI Technologies Inc. ) -- C:\Windows\SysWow64\atiumdag.dll
[2010.11.05 03:48:32 | 005,246,464 | ---- | M] (ATI Technologies Inc. ) -- C:\Windows\SysNative\atiumd64.dll
[2010.11.05 03:41:42 | 000,340,480 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atiadlxx.dll
[2010.11.05 03:41:36 | 000,241,664 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atiadlxy.dll
[2010.11.05 03:41:28 | 000,014,848 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6pxx.dll
[2010.11.05 03:41:24 | 000,012,800 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiglpxx.dll
[2010.11.05 03:41:24 | 000,012,800 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiglpxx.dll
[2010.11.05 03:41:22 | 000,021,504 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6txx.dll
[2010.11.05 03:41:18 | 000,019,968 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atigktxx.dll
[2010.11.05 03:41:14 | 000,285,696 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\atikmpag.sys
[2010.11.05 03:40:34 | 000,039,936 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiuxp64.dll
[2010.11.05 03:40:28 | 000,030,720 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiuxpag.dll
[2010.11.05 03:40:22 | 000,037,888 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiu9p64.dll
[2010.11.05 03:40:14 | 000,028,672 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiu9pag.dll
[2010.10.30 02:23:48 | 000,003,074 | ---- | M] () -- C:\Users\Home\Documents\cc_20101030_032346.reg
[2010.10.24 20:15:01 | 000,011,432 | ---- | M] () -- C:\Users\Home\Documents\cc_20101024_211458.reg
[2010.10.23 17:12:52 | 000,260,060 | ---- | M] () -- C:\Users\Home\Desktop\Screenshot.jpg
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\SysNative\*.tmp files -> C:\Windows\SysNative\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2010.11.19 12:01:10 | 000,000,206 | ---- | C] () -- C:\Windows\SysNative\cc_20101119_120109.reg
[2010.11.19 11:58:48 | 000,005,102 | ---- | C] () -- C:\Windows\SysNative\cc_20101119_115847.reg
[2010.11.19 11:32:45 | 000,002,971 | ---- | C] () -- C:\Users\Home\Desktop\HiJackThis.lnk
[2010.11.19 01:22:08 | 000,002,320 | ---- | C] () -- C:\Users\Public\Desktop\Creative-Produktregistrierung.lnk
[2010.11.19 01:20:55 | 000,000,946 | ---- | C] () -- C:\Windows\SysNative\cc_20101119_012054.reg
[2010.11.18 19:49:56 | 000,001,590 | ---- | C] () -- C:\Windows\SysNative\cc_20101118_194954.reg
[2010.11.18 19:11:22 | 003,099,848 | ---- | C] () -- C:\Users\Home\Desktop\TeamViewer_Setup.exe
[2010.11.18 18:39:04 | 000,007,062 | ---- | C] () -- C:\Windows\SysWow64\audiopid.vxd
[2010.11.17 00:01:30 | 000,000,901 | ---- | C] () -- C:\Users\Home\Desktop\BFBC2Game - Verknüpfung.lnk
[2010.11.14 19:53:51 | 000,001,098 | ---- | C] () -- C:\Windows\SysNative\cc_20101114_195350.reg
[2010.11.14 10:33:06 | 000,001,806 | ---- | C] () -- C:\Windows\SysNative\cc_20101114_103305.reg
[2010.11.14 10:32:57 | 000,003,088 | ---- | C] () -- C:\Windows\SysNative\cc_20101114_103256.reg
[2010.11.12 15:05:55 | 000,003,446 | ---- | C] () -- C:\Windows\SysNative\cc_20101112_150555.reg
[2010.11.12 14:36:42 | 000,008,504 | ---- | C] () -- C:\Users\Home\Desktop\1.xsl
[2010.11.11 16:01:36 | 000,000,756 | ---- | C] () -- C:\Users\Public\Desktop\Call of Duty - Black Ops Call MP.lnk
[2010.11.11 16:01:36 | 000,000,746 | ---- | C] () -- C:\Users\Public\Desktop\Call of Duty - Black Ops.lnk
[2010.11.09 23:52:23 | 000,001,294 | ---- | C] () -- C:\Windows\SysNative\cc_20101109_235221.reg
[2010.11.08 19:05:33 | 000,002,910 | ---- | C] () -- C:\Users\Home\Documents\cc_20101108_190531.reg
[2010.11.07 13:57:06 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2010.11.06 15:43:17 | 002,427,248 | ---- | C] () -- C:\Windows\SysWow64\pbsvc_heroes.exe
[2010.11.05 04:21:40 | 000,614,400 | ---- | C] () -- C:\Windows\SysNative\atiumd6a.cap
[2010.11.05 04:21:34 | 000,084,976 | ---- | C] () -- C:\Windows\SysNative\atiapfxx.blb
[2010.11.05 04:16:40 | 000,614,400 | ---- | C] () -- C:\Windows\SysWow64\atiumdva.cap
[2010.10.30 02:23:47 | 000,003,074 | ---- | C] () -- C:\Users\Home\Documents\cc_20101030_032346.reg
[2010.10.24 20:15:00 | 000,011,432 | ---- | C] () -- C:\Users\Home\Documents\cc_20101024_211458.reg
[2010.10.23 17:02:41 | 000,260,060 | ---- | C] () -- C:\Users\Home\Desktop\Screenshot.jpg
[2010.10.14 01:36:44 | 000,179,263 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2010.07.09 20:04:40 | 000,041,872 | ---- | C] () -- C:\Windows\SysWow64\xfcodec.dll
[2010.05.22 22:31:34 | 000,000,030 | ---- | C] () -- C:\ProgramData\Gpu.log
[2010.05.20 00:44:45 | 000,000,152 | ---- | C] () -- C:\Users\Home\AppData\Roaming\default.rss
[2010.05.19 02:07:40 | 000,598,016 | ---- | C] () -- C:\Windows\SysWow64\viscomqtde.dll
[2010.05.19 02:07:40 | 000,262,144 | ---- | C] () -- C:\Windows\SysWow64\lame_enc.dll
[2010.05.19 01:59:14 | 000,027,648 | ---- | C] () -- C:\Windows\SysWow64\AVSredirect.dll
[2010.05.11 21:27:59 | 000,100,864 | ---- | C] () -- C:\Users\Home\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.05.07 16:59:28 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2010.05.07 16:46:30 | 000,004,767 | ---- | C] () -- C:\Windows\Irremote.ini
[2010.05.03 23:36:45 | 000,036,864 | ---- | C] () -- C:\Windows\SysWow64\kill.dll
[2010.05.03 23:36:17 | 000,024,576 | R--- | C] () -- C:\Windows\SysWow64\AsIO.dll
[2010.05.03 23:36:17 | 000,013,440 | R--- | C] () -- C:\Windows\SysWow64\drivers\AsIO.sys
[2010.05.03 23:36:15 | 000,011,832 | ---- | C] () -- C:\Windows\SysWow64\drivers\AsInsHelp64.sys
[2010.05.03 23:36:15 | 000,010,216 | ---- | C] () -- C:\Windows\SysWow64\drivers\AsInsHelp32.sys
[2010.05.03 23:27:41 | 000,039,527 | ---- | C] () -- C:\Windows\Ascd_log.ini
[2010.05.03 23:26:39 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
[2010.05.03 23:25:51 | 000,032,239 | ---- | C] () -- C:\Windows\Ascd_tmp.ini
[2009.08.02 23:21:54 | 000,197,912 | ---- | C] () -- C:\Windows\SysWow64\physxcudart_20.dll
[2009.08.02 23:21:54 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelTraditionalChinese.dll
[2009.08.02 23:21:54 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSwedish.dll
[2009.08.02 23:21:54 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSpanish.dll
[2009.08.02 23:21:54 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSimplifiedChinese.dll
[2009.08.02 23:21:54 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelPortugese.dll
[2009.08.02 23:21:54 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelKorean.dll
[2009.08.02 23:21:54 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelJapanese.dll
[2009.08.02 23:21:52 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelGerman.dll
[2009.08.02 23:21:52 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelFrench.dll
[2009.07.14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009.07.13 22:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009.07.06 03:48:34 | 000,013,368 | R--- | C] () -- C:\Windows\SysWow64\drivers\AsUpIO.sys
[2009.04.02 13:30:14 | 000,010,296 | ---- | C] () -- C:\Windows\SysWow64\drivers\ASUSHWIO.SYS
[2008.12.01 17:32:32 | 000,362,029 | ---- | C] () -- C:\Windows\SysWow64\sqlite3.dll

[color=#E56717]========== LOP Check ==========[/color]

[2010.05.28 12:44:29 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\57_Winamp
[2010.08.19 17:12:48 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Avnex
[2010.05.19 02:32:09 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\COWON
[2010.05.06 13:25:28 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\DAEMON Tools Lite
[2010.05.28 20:56:14 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\EleFun Games
[2010.05.05 15:28:37 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\gtk-2.0
[2010.11.07 20:52:33 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\ICQ
[2010.05.05 02:30:58 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Leadertech
[2010.05.28 12:13:00 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\LegacyInteractive
[2010.05.19 22:22:42 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\LolClient
[2010.05.06 17:11:49 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\ManyCam
[2010.11.11 20:51:30 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Mumble
[2010.05.14 20:44:18 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Need for Speed World
[2010.05.14 20:44:20 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Need for Speed World Online
[2010.11.18 12:33:17 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\TeamViewer
[2010.11.18 12:35:24 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\TeraCopy
[2010.11.07 13:57:05 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Thunderbird
[2010.08.26 18:45:22 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\TomTom
[2010.05.04 21:54:13 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\TS3Client
[2010.07.30 11:46:38 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\TubeBox
[2010.09.23 19:01:58 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\W
[2010.09.23 19:01:01 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\wargaming.net
[2010.11.13 23:12:25 | 000,032,632 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

[color=#E56717]========== Purity Check ==========[/color]



< End of report >


2. Scan

Code

OTL Extras logfile created on: 19.11.2010 12:24:43 - Run 1
OTL by OldTimer - Version 3.2.17.3     Folder = C:\Users\Home\Desktop
64bit- Ultimate Edition  (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy

4,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 57,00% Memory free
8,00 Gb Paging File | 6,00 Gb Available in Paging File | 74,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 46,56 Gb Total Space | 11,30 Gb Free Space | 24,26% Space Free | Partition Type: NTFS
Drive E: | 249,59 Gb Total Space | 134,54 Gb Free Space | 53,91% Space Free | Partition Type: NTFS
Drive F: | 39,06 Gb Total Space | 38,31 Gb Free Space | 98,08% Space Free | Partition Type: NTFS
Drive G: | 234,74 Gb Total Space | 42,72 Gb Free Space | 18,20% Space Free | Partition Type: NTFS
Drive H: | 231,02 Gb Total Space | 12,31 Gb Free Space | 5,33% Space Free | Partition Type: NTFS
Drive I: | 195,31 Gb Total Space | 131,04 Gb Free Space | 67,09% Space Free | Partition Type: NTFS
Drive J: | 270,45 Gb Total Space | 3,79 Gb Free Space | 1,40% Space Free | Partition Type: NTFS
Drive K: | 240,40 Gb Total Space | 79,98 Gb Free Space | 33,27% Space Free | Partition Type: NTFS
Drive L: | 503,02 Gb Total Space | 5,05 Gb Free Space | 1,00% Space Free | Partition Type: NTFS
Drive M: | 341,80 Gb Total Space | 29,74 Gb Free Space | 8,70% Space Free | Partition Type: NTFS
Drive N: | 123,96 Gb Total Space | 12,62 Gb Free Space | 10,18% Space Free | Partition Type: NTFS
Drive O: | 428,49 Gb Total Space | 3,87 Gb Free Space | 0,90% Space Free | Partition Type: NTFS
Drive R: | 1033,98 Gb Total Space | 582,17 Gb Free Space | 56,30% Space Free | Partition Type: NTFS
Drive S: | 363,29 Gb Total Space | 333,50 Gb Free Space | 91,80% Space Free | Partition Type: NTFS

Computer Name: HOME-PC | User Name: Home | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\System32\ieframe.DLL (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.url [@ = InternetShortcut] -- C:\Windows\System32\ieframe.DLL (Microsoft Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %* File not found
cmdfile [open] -- "%1" %* File not found
comfile [open] -- "%1" %* File not found
exefile [open] -- "%1" %* File not found
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- "E:\10_Office07\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "E:\10_Office07\Office12\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %* File not found
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1" File not found
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S File not found
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found
Directory [AddToPlaylistVLC] -- "E:\52_VLC 1.1.0\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "E:\52_VLC 1.1.0\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [runas] -- cmd.exe /c takeown /f "%1" /r /d y && icacls "%1" /grant *S-1-5-32-544:F /t (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "E:\57_Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "E:\57_Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "E:\57_Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- "E:\10_Office07\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "E:\10_Office07\Office12\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "E:\52_VLC 1.1.0\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "E:\52_VLC 1.1.0\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [runas] -- cmd.exe /c takeown /f "%1" /r /d y && icacls "%1" /grant *S-1-5-32-544:F /t (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "E:\57_Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "E:\57_Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "E:\57_Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[color=#E56717]========== Authorized Applications List ==========[/color]


[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0E3DAF3D-FF69-345A-A99E-1FED304CA083}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"{109945A8-D8D5-48B8-B4A5-195D3F99B56D}" = Logitech GamePanel Software 3.04.143
"{1374CC63-B520-4f3f-98E8-E9020BF01CFF}" = Windows XP Mode
"{26A24AE4-039D-4CA4-87B4-2F86416017FF}" = Java(TM) 6 Update 17 (64-bit)
"{3D3E663D-4E7E-4577-A560-7ECDDD45548A}" = PVSonyDll
"{4B0748C5-2E63-B954-8C3F-71918C599800}" = WMV9/VC-1 Video Playback
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}" = Windows Mobile-Gerätecenter
"{680EDC0C-A625-E1B4-3D5C-44BAAFC89466}" = ATI AVIVO64 Codecs
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{6E50E80C-87DD-A1A3-C962-C173DC3F8C7A}" = ccc-utility64
"{74A5C3D5-FC37-5588-E6E5-4C41943B6255}" = ATI Catalyst Install Manager
"{80C27FE9-C6C4-F5C8-EAD3-09E7E0102E78}" = ATI Stream SDK v2 Developer
"{8DCC09D6-CE9E-4C3D-AB58-7989BF5CE74B}" = O&O PartitionManager Professional
"{8FCBB6DA-069C-8D08-DD99-F0881B9EECC3}" = AMD Drag and Drop Transcoding
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0407-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (German) 2007
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{987FE247-4E69-4A2E-A961-D14F901FDBF6}" = Logitech Webcam Software
"{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant
"{BC84C1E9-F4D4-4B8E-B35C-C88EEA0A5201}" = O&O Defrag Professional
"{CAD041C0-915A-D164-FE87-D621D724052C}" = ATI Problem Report Wizard
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"CCleaner" = CCleaner
"lvdrivers_12.10" = Logitech Webcam Software-Treiberpaket
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"NVIDIA Display Control Panel" = NVIDIA Display Control Panel
"NVIDIA Drivers" = NVIDIA Drivers
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"TeraCopy_is1" = TeraCopy 2.12
"WinRAR archiver" = WinRAR

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00354244-97B1-C361-E658-DC106C3FAC08}" = CCC Help Danish
"{02627EE5-EACA-4742-A9CC-E687631773E4}" = Nero ShowTime
"{036F1508-5D80-E572-6D05-2617865AD128}" = CCC Help Thai
"{07C87A2C-FB78-82A2-3EBB-F7BDC7275000}" = ccc-core-static
"{086A7D8C-0A38-4C7F-819A-620275550D5C}" = Nero Burning ROM Help
"{0B7C79A5-5CB2-4ABD-A9C1-92A6213CE8DD}_is1" = Geeks3D PhysX FluidMark v1.2.0
"{0C77A3D6-2B9B-2B2E-6E91-E24D9C8E5756}" = CCC Help Turkish
"{0D5FAD7E-C1A2-4753-8A28-346A5CD42813}" = Defense Grid: The Awakening
"{0FEA4BAE-FB2A-C014-ECDD-4A62A65DC597}" = CCC Help Hungarian
"{1047106F-3AED-4661-B919-6D377BF641CF}" = RangeMax(tm) NEXT Wireless Adapter WN311B
"{11083C7A-D0D6-4DA4-8C3A-74B8389EC07B}" = ATI Catalyst Registration
"{14574B7F-75D1-4718-B7F2-EBF6E2862A35}" = Company of Heroes - FAKEMSI
"{15C47A4F-1E9F-4497-32D2-22D3F1027EDF}" = CCC Help Japanese
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319
"{199E6632-EB28-4F73-AECB-3E192EB92D18}" = Company of Heroes - FAKEMSI
"{1B0963E5-4492-7F6B-DDCC-D229B498049D}" = CCC Help Korean
"{1C00C7C5-E615-4139-B817-7F4003DE68C0}" = Nero PhotoSnap Help
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1FDA5A37-B22D-43FF-B582-B8964050DC13}" = Microsoft Games for Windows - LIVE Redistributable
"{20400DBD-E6DB-45B8-9B6B-1DD7033818EC}" = Nero InfoTool Help
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live-Uploadtool
"{20AB57C7-FED7-4394-8166-A409DEA20253}" = TubeBox!
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{2348B586-C9AE-46CE-936C-A68E9426E214}" = Nero StartSmart Help
"{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1" = oZone3D.Net FurMark v1.8.2
"{25724802-CC14-4B90-9F3B-3D6955EE27B1}" = Company of Heroes - FAKEMSI
"{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java(TM) 6 Update 22
"{289338AE-2213-4509-AED2-450414C1260C}_is1" = ICQ Update Patch 1.7
"{2FFE93F0-BB72-4E52-8761-354D1AAA9387}" = Sony Ericsson PC Suite 6.011.00
"{310BC5E2-31AF-49BB-904D-E71EB93645DC}" = AI Suite
"{32C4A4EB-C97D-414E-99C5-38F8DFD31D5D}" = Company of Heroes - FAKEMSI
"{33CF58F5-48D8-4575-83D6-96F574E4D83A}" = Nero DriveSpeed
"{34BDF3BF-AA61-42E7-8818-C16A304910FC}" = Emma Core
"{3552F940-0FA6-8848-D130-C73A3DF84ACB}" = Catalyst Control Center Localization All
"{359CFC0A-BEB1-440D-95BA-CF63A86DA34F}" = Nero Recode
"{368BA326-73AD-4351-84ED-3C0A7A52CC53}" = Nero Rescue Agent
"{38468127-9E6F-4FC9-B5F7-42D4AD437D96}" = Unigine Heaven Benchmark v2.1
"{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = JMicron JMB36X Driver
"{3AC8457C-0385-4BEA-A959-E095F05D6D67}" = Battlefield: Bad Company™ 2
"{409C6E05-9C41-6083-D8D7-8EE08D702255}" = Catalyst Control Center Graphics Previews Vista
"{415030B8-3E8B-462A-8C03-41D95AA3AB3B}" = Medal of Honor (TM)
"{41E654A9-26D0-4EAC-854B-0FA824FFFABB}" = Windows Live Messenger
"{4286E640-B5FB-11DF-AC4B-005056C00008}" = Google Earth
"{43172b7a-0a4d-4c49-9a36-e13e7a5ab801}" =
"{43E39830-1826-415D-8BAE-86845787B54B}" = Nero Vision
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{491D92A9-69CA-4EB4-81D3-0106F9337957}" = TurboV EVO
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4AD507C7-E015-291F-2FA7-1A089B6F720D}" = HydraVision
"{4D39C6F5-7BFA-7C66-B54C-3695D0006515}" = CCC Help Dutch
"{50193078-F553-4EBA-AA77-64C9FAA12F98}" = Company of Heroes - FAKEMSI
"{51D718D1-DA81-4FAD-919F-5C1CE3C33379}" = Company of Heroes - FAKEMSI
"{520006D6-8F6E-4AB3-97D9-46D466D2B3EE}" = Company of Heroes Online (THQ)
"{547AAEB1-372D-08D3-5449-65606545B46C}" = CCC Help Portuguese
"{54862F37-FB81-FDD7-0E47-8E01858213FD}" = Application Profiles
"{56ABA277-EE53-4478-A607-FA42208FF5A9}" = Menu Templates - Pack 1
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{57250E78-F6E2-4DCE-9A84-50B28A70AB84}" = Menu Templates - Pack 3
"{587178E7-B1DF-494E-9838-FA4DD36E873C}" = ASUSUpdate
"{595A3116-40BB-4E0F-A2E8-D7951DA56270}" = NeroExpress
"{5D9BE3C1-8BA4-4E7E-82FD-9F74FA6815D1}" = Nero Vision Help
"{5E08ECD1-C98E-4711-BF65-8FD736B3F969}" = Nero RescueAgent Help
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{5FC68772-6D56-41C6-9DF1-24E868198AE6}" = Windows Live Call
"{60C731FB-C951-41CE-AD41-8E54C8594609}" = Nero Disc Copy Gadget Help
"{626DA86E-49D5-BD53-0953-83E437A6EEE7}" = CCC Help English
"{62AC81F6-BDD3-4110-9D36-3E9EAAB40999}" = Nero CoverDesigner
"{65212C14-87CC-0ED8-8B9B-E079B56B7F34}" = CCC Help Greek
"{66F78C51-D108-4F0C-A93C-1CBE74CE338F}" = Company of Heroes - FAKEMSI
"{68714069-8DD6-040F-8331-46AB2E36CEBD}" = Catalyst Control Center Graphics Previews Common
"{69FB248E-690D-434F-94A7-248D5F1ECD70}" = AMD OverDrive
"{6AB57823-3580-4CE0-9CF0-072E2A39460C}" = Catalyst Control Center - Branding
"{6B391A20-6F1D-1357-0802-C3573C0737A7}" = CCC Help Italian
"{6D30A596-9EF4-513D-5190-C40BBA0C8DA9}" = CCC Help Norwegian
"{71828142-5A24-4BD0-97E7-976DA08CE6CF}" = Die Sims™ 3 Luxus-Accessoires
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6}" = ICQ7.2
"{7519EB2C-B727-F894-FADA-2C6F5D33BB70}" = CCC Help Czech
"{7748AC8C-18E3-43BB-959B-088FAEA16FB2}" = Nero StartSmart
"{77E33D87-255E-413E-9C8D-EED2A7F9BEBF}" = Nero Live Help
"{7829DB6F-A066-4E40-8912-CB07887C20BB}" = Nero BurnRights
"{7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1" = Need For Speed™ World
"{7BE1318C-DB1D-7DA4-70ED-000E95B2673D}" = CCC Help Polish
"{7EE5FCA7-6902-F7FA-0716-962DAD525F59}" = CCC Help Swedish
"{7F4B1592-222F-4E5F-A100-E5AFD61A0BB3}" = Company of Heroes - FAKEMSI
"{80D03817-7943-4839-8E96-B9F924C5E67D}" = Company of Heroes - FAKEMSI
"{82102CBA-DF94-4E8B-8F1C-06072BD6301O}_is1" = Men of War: Assault Squad ver. 0.9.60 (1.60.2) patch
"{83202942-84B3-4C50-8622-B8C0AA2D2885}" = Nero Express Help
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{85243696-5E58-4357-9CF8-3498C609941D}" = NeroLiveGadget Help
"{869200DB-287A-4DC0-B02B-2B6787FBCD4C}" = Nero DiscSpeed
"{86A4C6D9-29EE-4719-AFA1-BA3341862B83}" = Microsoft Games for Windows - LIVE
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver For Windows 7
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8DC910CD-8EE3-4ffc-A4EB-9B02701059C4}" = Battlefield Heroes
"{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}" = TomTom HOME Visual Studio Merge Modules
"{90120000-0015-0407-0000-0000000FF1CE}" = Microsoft Office Access MUI (German) 2007
"{90120000-0015-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2007
"{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2007
"{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0407-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (German) 2007
"{90120000-0019-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (German) 2007
"{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2007
"{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007
"{90120000-001F-0410-0000-0000000FF1CE}_ENTERPRISE_{322296D4-1EAE-4030-9FBC-D2787EB25FA2}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{E64BA721-2310-4B55-BE5A-2925F9706192}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002A-0407-1000-0000000FF1CE}_ENTERPRISE_{26454C26-D259-4543-AA60-3189E09C5F76}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0044-0407-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (German) 2007
"{90120000-0044-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2007
"{90120000-006E-0407-0000-0000000FF1CE}_ENTERPRISE_{26454C26-D259-4543-AA60-3189E09C5F76}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2007
"{90120000-00A1-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00BA-0407-0000-0000000FF1CE}" = Microsoft Office Groove MUI (German) 2007
"{90120000-00BA-0407-0000-0000000FF1CE}_ENTERPRISE_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90C1BD52-6D66-035B-D2E1-2021577A1DF4}" = CCC Help German
"{95C5F81D-0779-4932-BE83-32AAF814F4B9}" = League of Legends
"{97E5205F-EA4F-438F-B211-F1846419F1C1}" = Company of Heroes - FAKEMSI
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{987B04C4-B5AC-4AD6-A7E9-8D681085B850}" = AMD USB Filter Driver
"{98A67610-A3B5-4098-A423-3708040026D3}" = "Nero SoundTrax Help
"{99A7722D-9ACB-43F3-A222-ABC7133F159E}" = Company of Heroes - FAKEMSI
"{99AD9D6D-A456-49EE-8360-F22EE7AA1272}" = Express Gate
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9AB8E6CE-CE6D-43A0-B54E-422425524FF9}" = Menu Templates - Pack 2
"{9C16DA7C-0CA8-80C5-0AC0-86E6208F2132}" = CCC Help Chinese Traditional
"{9C2AC00C-0C06-4B7E-97A4-A833808D54D6}" = EPU
"{9E82B934-9A25-445B-B8DF-8012808074AC}" = Nero PhotoSnap
"{9E9FDDE6-2C26-492A-85A0-05646B3F2795}" = NeroLiveGadget
"{A0427801-0B7D-25CB-9C5A-B11B8C925274}" = CCC Help Finnish
"{A209525B-3377-43F4-B886-32F6B6E7356F}" = Nero WaveEditor
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1031-7B44-A94000000001}" = Adobe Reader 9.4.0 - Deutsch
"{AD6BC5CC-2EF0-49C4-B33D-CDC8B2C4DC80}" = Nero Recode Help
"{B194272D-1F92-46DF-99EB-8D5CE91CB4EC}" = Adobe AIR
"{B1ADF008-E898-4FE2-8A1F-690D9A06ACAF}" = DolbyFiles
"{B2BF0C85-ACEF-8711-EDD2-B57E6AFF0A80}" = CCC Help French
"{B2EC4A38-B545-4A00-8214-13FE0E915E6D}" = Advertising Center
"{B78120A0-CF84-4366-A393-4D0A59BC546C}" = Menu Templates - Starter Kit
"{B8887E02-C910-4498-A7C0-186ABFDCD110}" = GPU Boost Driver
"{BA801B94-C28D-46EE-B806-E1E021A3D519}" = Company of Heroes - FAKEMSI
"{BD5CA0DA-71AD-43DA-B19E-6EEE0C9ADC9A}" = Nero ControlCenter
"{BEE64C14-BEF1-4610-8A68-A16EAA47B882}" = Futuremark SystemInfo
"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = Die Sims™ 3
"{C40C3C3D-97CF-44B5-836C-766E374464B3}" = 3DMark Vantage
"{C5A7CB6C-E76D-408F-BA0E-85605420FE9D}" = SoundTrax
"{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}" = NVIDIA PhysX
"{CB9A9E1B-9643-3F0C-5DA9-49DE1451E220}" = CCC Help Chinese Standard
"{CC019E3F-59D2-4486-8D4B-878105B62A71}" = Nero DiscSpeed Help
"{CE96F5A5-584D-4F8F-AA3E-9BAED413DB72}" = Nero CoverDesigner Help
"{D025A639-B9C9-417D-8531-208859000AF8}" = NeroBurningROM
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.2
"{D4D244D1-05E0-4D24-86A2-B2433C435671}" = Company of Heroes - FAKEMSI
"{D5AED751-CD8F-43EF-8720-AD970CBEA741}" = Medal of Honor™ MP Open Beta
"{D7BF9739-8A68-4335-BBEE-37752AD9E86B}" = NEC Electronics USB 3.0 Host Controller Driver
"{D9DCF92E-72EB-412D-AC71-3B01276E5F8B}" = Nero ShowTime
"{DD13D7B7-3F88-5871-48D2-8D6ED67F87F6}" = CCC Help Russian
"{DF6A95F5-ADC1-406A-BDC6-2AA7CC0182AA}" = Nero Live
"{DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}" = jetAudio Plus VX
"{e1c6301b-6ed3-4731-ad89-157c58583465}" = Nero 9
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E498385E-1C51-459A-B45F-1721E37AA1A0}" = Movie Templates - Starter Kit
"{E5C7D048-F9B4-4219-B323-8BDB01A2563D}" = Nero DriveSpeed Help
"{E8A80433-302B-4FF1-815D-FCC8EAC482FF}" = Nero Installer
"{EA59CCC6-465F-3C8E-1FCB-FE62EDFF68D6}" = Catalyst Control Center InstallProxy
"{EAF636A9-F664-4703-A659-85A894DA264F}" = Company of Heroes - FAKEMSI
"{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F1861F30-3419-44DB-B2A1-C274825698B3}" = Nero Disc Copy Gadget
"{F241EC95-C81A-466E-8006-6B0B364B07A0}" = PCMark Vantage
"{F4041DCE-3FE1-4E18-8A9E-9DE65231EE36}" = Nero ControlCenter
"{F425DD1D-0097-41C3-B545-B79E3D51100E}" = Movie Templates - Pack 1
"{F524C571-CE0B-59D0-C3AF-0ABE5E493308}" = CCC Help Spanish
"{F6BDD7C5-89ED-4569-9318-469AA9732572}" = Nero BurnRights Help
"{F8FF18EE-264A-43FD-B2F6-5EAD40798C2F}" = Windows Live Essentials
"{FBCDFD61-7DCF-4E71-9226-873BA0053139}" = Nero InfoTool
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"AV Voice Changer Software DIAMOND 7.0" = AV Voice Changer Software DIAMOND 7.0
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"Blitzkrieg" = Blitzkrieg Mod
"Call of Duty: Black Ops_is1" = Call of Duty: Black Ops
"Company of Heroes" = Company of Heroes
"DivX Setup.divx.com" = DivX-Setup
"Driver Cleaner Pro" = DH Driver Cleaner Professional Edition
"ENTERPRISE" = Microsoft Office Enterprise 2007
"HyperCam 2" = HyperCam 2
"InstallShield_{D7BF9739-8A68-4335-BBEE-37752AD9E86B}" = NEC Electronics USB 3.0 Host Controller Driver
"Kate's Video Converter_is1" = Kate's Video Converter 3.0.2
"League of Legends_is1" = League of Legends
"Mumble" = Mumble and Murmur
"NFS World_is1" = NFS World
"OpenAL" = OpenAL
"oZone3D.Net FluidMark_is1" = oZone3D.Net FluidMark v1.1.1
"PunkBusterSvc" = PunkBuster Services
"R für Windows" = R für Windows
"rayatitray" = Ray Adams ATI Tray Tools
"RocketDock_is1" = RocketDock 1.3.5
"SEMC OMSI Module" = SEMC OMSI Module
"Statistiklabor 3" = Statistiklabor 3
"Steam App 10180" = Call of Duty: Modern Warfare 2
"Steam App 10190" = Call of Duty: Modern Warfare 2 - Multiplayer
"Steam App 27920" = Booster Trooper
"Steam App 400" = Portal
"Steam App 41010" = Serious Sam HD: The Second Encounter
"Steam App 41300" = Altitude
"Steam App 550" = Left 4 Dead 2
"Steam App 630" = Alien Swarm
"Steam App 64000" = Men of War: Assault Squad
"TomTom HOME" = TomTom HOME 2.7.6.2056
"VLC media player" = VLC media player 1.1.4
"Winamp" = Winamp
"WinLiveSuite_Wave3" = Windows Live Essentials
"Xfire" = Xfire (remove only)
"Yahoo! Messenger" = Yahoo! Messenger
"Yahoo! Software Update" = Yahoo! Software Update

[color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"477233b55d082a86" = Company of Heroes Online Launcher (THQ)
"Ai1" = Ai1
"Winamp Detect" = Winamp Erkennungs-Plug-in

[color=#E56717]========== Last 10 Event Log Errors ==========[/color]

[ Application Events ]
Error - 19.11.2010 06:44:19 | Computer Name = Home-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: attdrv64.exe, Version: 0.0.0.0, Zeitstempel:
0x4947bdb4  Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7600.16385,
Zeitstempel: 0x4a5bdbdf  Ausnahmecode: 0x0eedfade  Fehleroffset: 0x0000b727  ID des fehlerhaften
Prozesses: 0x1034  Startzeit der fehlerhaften Anwendung: 0x01cb87d6b50492b0  Pfad der
fehlerhaften Anwendung: C:\Program Files (x86)\Ray Adams\ATI Tray Tools\attdrv64.exe
Pfad
des fehlerhaften Moduls: C:\Windows\syswow64\KERNELBASE.dll  Berichtskennung: f608ad00-f3c9-11df-b6b9-e42159579624

Error - 19.11.2010 06:54:27 | Computer Name = Home-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung
werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter
ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste
DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich
und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.

Error - 19.11.2010 06:54:27 | Computer Name = Home-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung
werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter
ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste
DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich
und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.

Error - 19.11.2010 06:54:27 | Computer Name = Home-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011
Description = Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren
für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich.

Error - 19.11.2010 07:09:30 | Computer Name = Home-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung
werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter
ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste
DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich
und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.

Error - 19.11.2010 07:09:30 | Computer Name = Home-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung
werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter
ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste
DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich
und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.

Error - 19.11.2010 07:09:30 | Computer Name = Home-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011
Description = Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren
für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich.

Error - 19.11.2010 07:20:14 | Computer Name = Home-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung
werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter
ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste
DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich
und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.

Error - 19.11.2010 07:20:14 | Computer Name = Home-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung
werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter
ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste
DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich
und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.

Error - 19.11.2010 07:20:14 | Computer Name = Home-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011
Description = Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren
für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich.

[ OSession Events ]
Error - 24.05.2010 10:09:01 | Computer Name = Home-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
12.0.6524.5003, Microsoft Office Version: 12.0.6425.1000. This session lasted 856
seconds with 480 seconds of active time.  This session ended with a crash.

[ System Events ]
Error - 19.11.2010 07:14:45 | Computer Name = Home-PC | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name
Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet
wurde:   %%-2140993535

Error - 19.11.2010 07:14:55 | Computer Name = Home-PC | Source = Service Control Manager | ID = 7023
Description = Der Dienst "IKE- und AuthIP IPsec-Schlüsselerstellungsmodule" wurde
mit folgendem Fehler beendet:   %%1364

Error - 19.11.2010 07:14:58 | Computer Name = Home-PC | Source = PNRPSvc | ID = 102
Description =

Error - 19.11.2010 07:14:58 | Computer Name = Home-PC | Source = PNRPSvc | ID = 102
Description =

Error - 19.11.2010 07:14:58 | Computer Name = Home-PC | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name
Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet
wurde:   %%-2140993535

Error - 19.11.2010 07:14:58 | Computer Name = Home-PC | Source = Service Control Manager | ID = 7023
Description = Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler
beendet:   %%-2140993535

Error - 19.11.2010 07:14:58 | Computer Name = Home-PC | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name
Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet
wurde:   %%-2140993535

Error - 19.11.2010 07:14:58 | Computer Name = Home-PC | Source = Service Control Manager | ID = 7023
Description = Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler
beendet:   %%-2140993535

Error - 19.11.2010 07:25:55 | Computer Name = Home-PC | Source = Service Control Manager | ID = 7023
Description = Der Dienst "IKE- und AuthIP IPsec-Schlüsselerstellungsmodule" wurde
mit folgendem Fehler beendet:   %%1364

Error - 19.11.2010 07:25:55 | Computer Name = Home-PC | Source = Service Control Manager | ID = 7023
Description = Der Dienst "IKE- und AuthIP IPsec-Schlüsselerstellungsmodule" wurde
mit folgendem Fehler beendet:   %%1364


< End of report >


-------------------------------------------

Code

GMER 1.0.15.15530 - http://www.gmer.net
Rootkit scan 2010-11-19 12:47:01
Windows 6.1.7600  
Running: 8ko091l5.exe


---- Registry - GMER 1.0.15 ----

Reg  HKLM\SYSTEM\ControlSet002\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Bind        ????????? ??1???????????????Microsoft????????????????????????????????? ?????????????*6to4mp?{6????????????????????????????????H?????????????????????Net??T??*6to4mp??????????????&???????????????????????????????????????L???????????????7??????}"??Microsoft???????????6to4mp.ndi?}"???Microsoft???????????????????????????????????? ???????3??????13???????????????3??????????????????????????????6-21-2006????????????C??-9??6-21-2006???Microsoft???????????????s???5????????????????????????????????"??{1??????4m??????? ?????????????????????0????????????????????? ?????????????????????0??????????????????????.??????????????????????2??12??????????? ?????????????????????0????????????????????? ?????????????????????0????????????????????nettun.inf??13??????????????????????????? ?????????????????????0????????????????????????????????????????????????????????????????????? ?????????????????????0????????????????????????????? ????????????????????????"?????p???????FF???????????0??84??????? ???????????????????????????????????????f?????????
Reg  HKLM\SYSTEM\ControlSet002\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Route       ??????????N??????????????? ???????????????????????????$?????????????????????????65??6to4mp.ndi??????????os???????????????k???????5??? ?????????????????????:????????????&????????????????????c??? j??????????????????????????m??????????????? ?????????????????????:????????????&????????????????????{???????????|??????? ?????????????????????:??????????j?&????????????????????{???????????|???e???????????????y??nettun.inf??????????????????????LAN-Verbindung* 43??????????????6to4mp.ndi????????&?????? ???t??? ?????????????????????:??????????$?&???????????????????????{4d36e972-e325-11ce-bfc1-08002be10318}\0053?9&????P?????????????????? ?????????????????????:??????????v?&????????????????????F??? ???????n???????????????? ???????!??????????????????????????&???????F??????????????????????????????????????????? ??????????????????????????????????????????????S7=<#>;?????v2.10|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files (x86)\Skype\Phone\Skype.exe|Name=Skype|?CAE??v2.10|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files
Reg  HKLM\SYSTEM\ControlSet002\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Export      ????el??????Net?????????????????????????????????????{36fc9e60-c465-11cf-8056-444553540000}\0025??&????V?????????????????????????????????????????????????????????????????????????????????????????????????????????????? ????????????????????????????????????????????s?????????s???? ?????????????????????,????????N????????r??? ???????t????????????N?????????????{7bdf851f-5dfc-11df-b4b0-806e6f6e6963}??????????????????????? ??????????????????????????????????????????????????????? ?????????????????????0??L????????? ???????????????????????????????? ?????????????????????0????????????&???????????????????????? ?????????????????????0????????????????????? ?????????????????????0????????B???????????????????????????????????????????????????????????????????????????????????????????????? ?????????????????????0????????????&???????????????????????????na??oc??? ?????????????????????0????????????????????? ?????????????????????0????????????????????????????????????SI Pseudo Device SCSI Processor Device?????????????????????????????????????????
Reg  HKLM\SYSTEM\ControlSet002\services\LanmanServer\Linkage@Bind                                                                                ????????????????6???????????????????????Net??????????????????????????????????????????????x??Net??????????????????????????????????h???????e??Net?-3??????????????????????????????????Microsoft???????????????????????????????????????Net?|?????l???????????????????j?????????????11??????????????1514?7????N?????????????6-21-2006???usbstor.inf?????????????????????????Net?????EHCI.Dev????disk.inf??????????????????????(????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
Reg  HKLM\SYSTEM\ControlSet002\services\LanmanServer\Linkage@Route                                                                               ????????????????????????6???????????????????????Net??????????????????????????????????????????????x??Net??????????????????????????????????h???????e??Net?-3??????????????????????????????????Microsoft???????????????????????????????????????Net?|?????l???????????????????j?????????????11??????????????1514?7????N?????????????6-21-2006???usbstor.inf?????????????????????????Net?????EHCI.Dev????disk.inf??????????????????????(????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
Reg  HKLM\SYSTEM\ControlSet002\services\LanmanServer\Linkage@Export                                                                              ??????????N???????????D???????N????????????D????????????? ???????g?????????????0????????????&???????????????????????? ?????????????????????0????????????????????????????? ?????????????????????0?????????????????????? ?????? ??????????????????????????????????????? ???????g????????????????"?????????2???????????????????????????????Microsoft???? ????????????????????????"???&???????????????1?????{4d36e96f-e325-11ce-bfc1-08002be10318}\0000????????????????????s? ????N????????????????????????T????????C0??{745a17a0-74d3-11d0-b6fe-00a0c90f57da}?5::??? ????????????????????????(???$???????????????sd O??{36fc9e60-c465-11cf-8056-444553540000}??????????????????????????????????HDAUDIO\FUNC_01&VEN_10EC&DEV_0892&SUBSYS_104383C0&REV_1003?HDAUDIO\FUNC_01&VEN_10EC&DEV_0892&SUBSYS_104383C0????Audio-Ger?t am High Definition Audio-Bus????C:\Windows\system32\RtPgEx64.dll,-200??osi??? ?????????????????????0?????????????????????????????0??????HID\VID_046D&PID_C221&REV_0190&MI_00?HID\VID_046D&PID_C221&MI_00?HID_DEVICE_SYSTEM_KEYBOARD?HID
Reg  HKLM\SYSTEM\ControlSet002\services\LanmanWorkstation\Linkage@Bind                                                                           ????el???????????????B??????-2????????????????X??????s???M???????+??????11???????????p??????s???Net?????????????????*6to4mp?e????????????????????????4#?? ????b????????g????Net???????$??????4???????1??????5-20-2009???Microsoft?????X??????&???&??*6to4mp?FD??????????text????????????Net?????????????????*6to4mp??????????????????B??????????Net??????????%????????????????X??????-?g?.??????????????????11????????????-?}???*6to4mp??5??Root\*6TO4MP\0031?????????X??????m???s??11??????11??????????????6-21-2006???????????????????*6to4mp???????X?????????????Net???????$??????5???????8??????6D??????????????????????????????Net?????????????????????????????????Root\*6TO4MP\0030????????????????????????????????2???e???????????B??????????????????????Net??????????????????????B??.NT?????????#????????????????????????B??????????????????????????*6to4mp??????????????????????????????????'???????????????????????????????????y??????s????????????B???????????????????B????X?????????????????????tunnel?dcb????X??????.???6?????????????????????????
Reg  HKLM\SYSTEM\ControlSet002\services\LanmanWorkstation\Linkage@Route                                                                          ????????????????????Net??????????????????????B??.NT?????????#????????????????????????B??????????????????????????*6to4mp??????????????????????????????????'???????????????????????????????????y??????s????????????B???????????????????B????X?????????????????????tunnel?dcb????X??????.???6???????????????????????????????????7??????-4????????????? ?%??0???*6to4mp?????*6to4mp???????????????????????????????????????????N?????????????tu??Net?????? ????????????????????????"?????p?????????????N?????????????????{4d36e972-e325-11ce-bfc1-08002be10318}?22}??? ???????R??????????*6to4mp?????? ???????@?????m??????????????$?N?????????????????????????????????????????N??????V?????eKe???????????B??????????????????78056 78062 78072 78082 78102 78146 78156 78194 78200 78216 78224 78230?ri??v2.10|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files (x86)\Skype\Phone\Skype.exe|Name=Skype|?5D-???&???????5???????????????????e??? ?????????????????????0????????????????????????????????????Net??\??? ????????????????????????"?????p?????????????X
Reg  HKLM\SYSTEM\ControlSet002\services\LanmanWorkstation\Linkage@Export                                                                         ?????????????r?r?r?r?r??Microsoft ACPI-Treiber????????N??p?????????e????????????????????????????????????????????????? ???????o?????????????,???????????? ????????4??????????????tC??????????????????????????????????t???PNP_TDI??????????n??????????ODiag?????????????4??n????????h??????????????D??_5??????????????t??????????????g??????.??n?????????e????????????????t???system32\DRIVERS\ahcix64s.sys????????n??????p\??????????????????SCSI Storport?????????????????????????????????????????????????????????????R??n????????h?????\SystemRoot\system32\DRIVERS\adp94xx.sys?????????n??????p???SCSI Miniport?????V??n???????????d??adp94xx.inf_amd64_neutral_4928c8870f6a1577???????n?n?n?n?n?n??????????????????????????????????????????????????????????R??n??????????????\SystemRoot\system32\DRIVERS\adpahci.sys?????????n??????????SCSI Miniport?????V??n??????????????adpahci.inf_amd64_neutral_b082e95ec9f8c3f9???????n?n?n?n?n?n?n??????????????t??????n?????n???n??????????????? ???????n???????????????????????????????f??? ???????n?????n???????
Reg  HKLM\SYSTEM\ControlSet002\services\NetBIOS\Linkage@Bind                                                                                     ??????????????????????????8???????????h??????????????????????????????????????????????????????????????????????????e?????????????????s????????????????????????????Standard OpenHCD USB-Hostcontroller?????????????? ?????????????????????0????????????????????????????????????????????????????????????????????????? ?????????????????????0????????????????????pciide_Inst?????? ?????????????????????0????????????&????????????????????)??? ?????????????????????0????????????????????? ?????????????????????0????????????????????usbui.dll,USBControllerPropPageProvider?tr??????????????????Microsoft???? ?????????????????????0????????????&??????????????????????????????????????s????? ?????????????????????0????????????????????? ?????????????????????0???????????????????????????????????????????????????????????????????????????????????????s?????????????????????3???e??????RV??????????????????????????s?????x???????????????X??????????????????????F???e??????ta???????????????e??????????????????????????????????????????????Microsoft-6zu4-Adapter
Reg  HKLM\SYSTEM\ControlSet002\services\NetBIOS\Linkage@Route                                                                                    ?????????????????3??????????????????Microsoft???????????{8ECC055D-047F-11D1-A537-0000F8753ED1}?all??????????????????????????????????????????LegacyDriver????????????????s???????????????????LegacyDriver????????????? "??????y?????r????????????????????????????????????????????????? ?????s????????????????s???????22???????????????????????????????????e????????????????????????????????N???????????D?????.NT?????????????????text?c??????????????????????????????????@%SystemRoot%\system32\drivers\nsiproxy.sys,-2??????Microsoft???? ???????????????????????? ?????????(???????????????????????? ????????????????????????"???&?????????????????{8ECC055D-047F-11D1-A537-0000F8753ED1}??????{8ECC055D-047F-11D1-A537-0000F8753ED1}???????????3??? V??????D?????S\n??????????????????LegacyDriver????????pi??????????????????????s1029nd5????DiskDrive????????????????????4??LegacyDriver????????????????????????????????????STORAGE\Volume???????????????????????????????????????????????????????????????????????????????????1??????V_??V_????????????N????
Reg  HKLM\SYSTEM\ControlSet002\services\NetBIOS\Linkage@Export                                                                                   ????.s????N????????????D?????????????v??_S???????????"??Ne??????????????????????????? ????????????????????????????????????????????sve=??? ??5????m??????x|??? ??????????????????????????????????????????????????????????????????????????Typ?????????" ??????????????????nettun.inf?2-1???? ??????????~??????????????????????????? ??????????????????? ????????????????????????????????????????????????????????????????~??????4??-1??????????HID_Raw_Inst????? ????????????????????????"?????p?8??????????????????*??????\0??? ??8????????????????????????????\????&???????????????????????????????????N??????6????D69???????????????19??ROOT\*6TO4MP\0021?????Z???????????????????????????????????????????????????????????????????????????$?????????????????????????????????????? ????????????????????X??????n??????????????volume_install??????? ????????????????????????"?????p?7?????am??{00000000-0000-0000-FFFF-FFFFFFFFFFFF}???????????????4??-1??????????{4d36e972-e325-11ce-bfc1-08002be10318}\0261?es??-A??????????@nettun.inf,%6to4mp.displayname%;Mi
Reg  HKLM\SYSTEM\ControlSet002\services\NetBT\Linkage@Bind                                                                                       ????????????????? ?????????????????????0????????????????????? ?????????????????????0????????????????????volume_snapshot_install?????????os??t???????????? ???????????????????????????????????????????????5??????????????FF??????????????????volsnap.inf???????b????????????n????? ????????????????????????"?????p???????????LDDM Graphics Subsystem?????????os??????????????????????????*6to4mp?EV??????????? ?????????????????????0????????????????????????????????????????????????????????? ?????????????????????0????????????????????????????????????Controls the underlying video driver stacks to provide fully-featured display capabilities.???????8???????????h???????b????????????e????\SystemRoot\System32\drivers\dxgkrnl.sys????????????????????????????????? ??????????????????????????????????????????? ?????????????????????0??L????????? ???????????? ?????????????????????0????????????&???????????????????????? ?????????????????????0????????????????????? ?????????????????????0????????????????????volsnap.inf:MSFT.NTamd64:volume_snapsho
Reg  HKLM\SYSTEM\ControlSet002\services\NetBT\Linkage@Route                                                                                      ????????? ?????????????????????0????????????????????.NT????????????????????????????? ???Microsoft???????????????? ?????????????????????0????????????????????? ?????????????????????0?????????????????????????????????B??????????????????Microsoft????????T??????????????????????????%i??? ???????????????M??6-21-2006???????????????????????????????????????????????????????????????usb.inf:Generic.Section.NTamd64:BADDEVICE.Dev:6.1.7600.16385:usb\unknown????? ???????????????????????????? ???1???????????X??????_???_??{36fc9e60-c465-11cf-8056-444553540000}\0049?????????????{00000000-0000-0000-FFFF-FFFFFFFFFFFF}?"Ne????????????????????????????????*?????????????????????? ?????????????????????0??L????????? ???????????C:\Windows\INF\usb.inf??????????????????????? ?????????????????????0????????????????????? ?????????????????????0????????????????????????????????????????????????????? ??????????????????6.1.7600.16385??????? ?????????????????????0????????????????????? ?????????????????????0???????????????????????????????????????????
Reg  HKLM\SYSTEM\ControlSet002\services\NetBT\Linkage@Export                                                                                     ???????????????????????????????????????????? ???????????????????????????LegacyDriver?????????????#??ac????N??????4?????D2A??????????????????????????????? ????????????????????????(???????????????????sr????? ???????e?????tmg??????????? ?????????????????????,??4??????????????????????1??????????? ?????????????????????,?????????????????????y??????????????????????????????????? ?????????????????????,??????2??????????1??????????????????????????????? ????????????????????????????????????????????????d?????????????????????????????????????????????????????????Microsoft???? ????????????????????????????"??????????f??????????????????????????????????????????????mshdc.inf:MS_HDC.NTamd64:atapi_Inst:6.1.7600.16385:internal_ide_channel???????B?????????????197b-2361?Internal_IDE_Channel??????? ?????????????????????0??L????????? ???????????????????????????????? ?????????????????????0????????????&???????????????????????? ?????????????????????0????????????????????? ?????????????????????0????????????????????????????????????????????3??
Reg  HKLM\SYSTEM\ControlSet002\services\Smb\Linkage@Bind                                                                                         ??????????<???????????h?????????????????4m??????????????????????Net???????H?????????s???????????????????????????????????????s???????????????????????????????0????????????????A????"?????????p????????????????????B??????????????p????????????B??????????????????????????????p???????p???????????????? ????????????????????????????????????????????s?????? ???????????????????????????????????????f??? ?????????????????????0??L????????? ???????????????????????????????? ?????????????????????0????????????&???????????????????????? ?????????????????????0????????????????????? ?????????????????????0????????????????????????????????????????????????? ??????????????????????????????os??t???????????????????Standardvolume??????????????? ?????????????????????0????????????????????????os??t???? ?????????????????????0????????????????????????????????????????????????????????????????????? ?????????????????????0????????????????????????????????????????? ?????????????????????0????????????????????volume_install??????????????.NTAMD64????????????? ?
Reg  HKLM\SYSTEM\ControlSet002\services\Smb\Linkage@Route                                                                                        ??????????N??????1????D?????{36fc9e60-c465-11cf-8056-444553540000}?oso??????????????????????????? ?????????????????????0????????????????????????????????????????????????????Unknown Device??????????????? b?????????????????@usb.inf,%usb\unknown.devicedesc%;Unknown Device????{4d36e972-e325-11ce-bfc1-08002be10318}\0133?-7??3F????????????????????????/??????????????o???e??11?F47????X?????????????11??????*6to4mp?|?????????*?????11??????@nettun.inf,%6to4mp.displayname%;Microsoft-6zu4-Adapter?C-????????????????????????????X??????n??????????????????8D?????????????????i??????????????X??????n????????????????X??????n??????????????@nettun.inf,%6to4mp.displayname%;Microsoft-6zu4-Adapter?47??{00000000-0000-0000-FFFF-FFFFFFFFFFFF}?DC9??????????????????????11??????{00000000-0000-0000-FFFF-FFFFFFFFFFFF}?704??.NT?5B????????(?-4??????60??@nettun.inf,%msft%;Microsoft?D???????????5?????sDe????????X??????n????????????????N???????????????????N???????????????????:??????}?g"{????N???????????D??????????????????e???????????????e?????????
Reg  HKLM\SYSTEM\ControlSet002\services\Smb\Linkage@Export                                                                                       ????????????????????????6-21-2006???*6to4mp?????????????????????????????????? ?????????????????????0????????????????????????8N1?????????????????????LocalSystem??????????????????????????????????????????P???????????i???e??v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28527|Desc=@FirewallAPI.dll,-28530|EmbedCtxt=@FirewallAPI.dll,-28502|??API.dll,-28502|??????'???????????????????????????e??? ??????????????????????????Microsoft?????????,?????????????????usb.inf??????????????????????????????????????????????????????????????8?????e-9????N???????????????????N??????????????????????????3??4A??????E-??????????????? ???????c????? "{??tunnel?F}????? ??????????<??int?P??????????????????s????????????????????ndis5_ip6_tunnel?I??????????????????????????v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=3:*|App=System|Name=@FirewallAPI.dll,-25113|Desc=@FirewallAPI.dll,-25115|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|??????????
Reg  HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet)                                        
Reg  HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0                                                             C:\Program Files (x86)\DAEMON Tools Lite\
Reg  HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0                                                             0x00 0x00 0x00 0x00 ...
Reg  HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0                                                             0
Reg  HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12                                                          0x0C 0xEF 0x12 0xB8 ...
Reg  HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 (not active ControlSet)                              
Reg  HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0                                                    0x20 0x01 0x00 0x00 ...
Reg  HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12                                                 0xF4 0x10 0x9D 0x42 ...
Reg  HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 (not active ControlSet)                          
Reg  HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12                                            0x20 0xDF 0x57 0x20 ...
Reg  HKLM\SYSTEM\ControlSet002\services\TCPIP6\Linkage@Bind                                                                                      ??????????????????????????????????(??????i??r???Microsoft???Net?????.NT???????&LAN-Verbindung* 233??????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????6Microsoft-6zu4-Adapter #226???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
Reg  HKLM\SYSTEM\ControlSet002\services\TCPIP6\Linkage@Route                                                                                     ????????Microsoft???{4d36e972-e325-11ce-bfc1-08002be10318}?ume??? ??????????????????.NT?????????????? p???????????????????N??????-?????Dnf??text?o??????97??????????????????????????{00000000-0000-0000-FFFF-FFFFFFFFFFFF}??????Microsoft-6zu4-Adapter #247??2??? ???????T??????????????Net?????@nettun.inf,%msft%;Microsoft????????????????????????Microsoft?????.?????????????@nettun.inf,%msft%;Microsoft?E??? p?????????????????????????????????????????????????????????? ???????M?????oft??s???{4d36e972-e325-11ce-bfc1-08002be10318}\0262?????Microsoft???????????? ???????8?????0?9????N??????2????D18}??????81??????D0??????????{4d36e972-e325-11ce-bfc1-08002be10318}??84??????????????????????????????????????????????{00000000-0000-0000-FFFF-FFFFFFFFFFFF}??????{4d36e972-e325-11ce-bfc1-08002be10318}??????{4d36e972-e325-11ce-bfc1-08002be10318}\0265?? ??????????????????????????*6to4mp?????*6to4mp?????????????tunnel??????@nettun.inf,%6to4mp.displayname%;Microsoft-6zu4-Adapter???????N????????????D? ????:????????g???????????????????????
Reg  HKLM\SYSTEM\ControlSet002\services\TCPIP6\Linkage@Export                                                                                    ?????????????????????C???????????7??4C???????????g???????????????D??78??? ?????????????????????0??L????????? ??????col??? ?????????????????????0????????????&????????????????????e??? ?????????????????????0????????????????????????????? ?????????????????????0????????~?????????????~??????C?? D??nettun.inf:Microsoft.NTamd64:6to4mp.ndi:6.1.7600.16385:*6to4mp??????????? ????????????????????????????????????????????s?????? ???????????????????????????????????????f??? ?????????????????????0??L????????? ???????????????????????????????? ?????????????????????0????????????&????????????????????m??? ?????????????????????0????????????????????? ?????????????????????0????????~???????????nettun.inf:Microsoft.NTamd64:6to4mp.ndi:6.1.7600.16385:*6to4mp?0?3??? ?????????????????????0????????????&???????????????????????? ?????????????????????0????????????????????? ?????????????????????0?????????????????????????????0??dl??????????????????? ?????????????????????0????????????????????? ?????????????????????0???????????????????????????????
Reg  HKLM\SYSTEM\CurrentControlSet\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Bind    ???|?1??????? ???????????????????? ?t???????????????? ???????n?????|??????????????????????????r?????? ???????|???????? ??|??????????F??????????e?????????{??????e????? ??{???????????????|???????t????F??|???????y??%systemroot%\system32\msscntrs.dll?????????|?????|?????????????????e?????????|???(??????P???gsrvctr.ini??????????{??????e???? ??????????????r????????????????????????? ??{???????????|??? ???????????????????????????????????????|?|?|?|?|?|?|?|?|?|????? ???????n?????|????????????????????????????? ???????|???????? ??|??????????F??????????e?????????|???????t??Collect???????F??|???????y??%systemroot%\system32\msscntrs.dll?????????|?????|???????????'?????e?,???????|??????????????gthrctr.ini??,??LocalSystem?????? ??????????????r?????????????????????????T??|?????????e????? ????????????????????????????????p??????|?|?|?|?|?|?|?|?|?|????? ???????n???????????|????????$?????????????????@%SystemRoot%\system32\ui0detect.exe,-101?????H??|????????h?????%SystemRoot%\system32\UI0Detect.exe???????T??|?????????n????@%Syste
Reg  HKLM\SYSTEM\CurrentControlSet\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Route   ???@????4???.NT?????? ?????????????????????0????????????&????????????????????)??????????????????????????????????? ???????????????????h????????"??????????f??????????????????@system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,18,0)? ??? ?????????????g?????y????(???$??????????????????????????? ??????????????2??.NT?????? ???????????????? ???????"???&??????????????0??????????????????????????????????????????????????????????????????????????????????????????????????????????????????? ?????????????scc??? ??????????????s?????N????????????D????????????????? ???????h??????????????????????????(???????????????????????? ???????????????? ???????"???&??????????????2??? ??????????????????? ?????????????????????0????????????????????????????????????????????r????????????o?????????n? ??@system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,18,2)????????????????????????? ???????????????????<????????"?????????????? ?????????????j??????????(???$?????????????????pc???????? ???????????r???????????R????
Reg  HKLM\SYSTEM\CurrentControlSet\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Export  ????????8.723.0.0????????????????????4??mouhid?-96??? ????????????????????????????????????????????????????????????????????????X?? ???????????????????k???????????????????? ??????????????? ???????????????????"???????????????????????????????????????????????????x?? ???????????????????k???????????????????? ???????????????0?pci\ven_1002&dev_6899???ACPI\PNP0501\1????????????@??????????????? ???????????????????8?????????????s???Display???????P???????????????????h?@oem1.inf,%ati%;ATI Technologies Inc.?entypen)??????????????????????????? ????????????????????????????????????????x?? ???????????????????k??????????,????????? ???,??????0??????? ????????????????????????????????????????h?? ??????????????????????????????????????????????????????????????????????????????????????????????????????????????? ???????????????????o??????????????????????????????????????? ???????????????????p???????????????????? ??????????????? ???6???????????0?ati2mtag_Evergreen???? ??????????????? ???,???????????????????????????X?? ???????????????????s?
Reg  HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Bind                                                                            ?????:??????????????????????????????????????????????21234????????????:??????@%systemroot%\system32\drivers\mup.sys,-102?????????????????t???????????????????????????????NDIS Proxy??????@%SystemRoot%\system32\drivers\netbt.sys,-1???????????????????????????????????????6???????????h?????????????????t?????????????????????Z????????????e????Network?????????????????t???????????????t???????????????????????????g????????????0????????????????????????????????8???????????h???????????????????????&????????????e????@%SystemRoot%\system32\drivers\mountmgr.sys,-101????????????????t?????????????????????X????????????n???????????????????????????????????????????????????????????????????????????????????????????????????g??????????????(?????????p???????????????t???????????????????Network???????N????????????e????%SystemRoot%\system32\srvsvc.dll?????????????????????????????????????v???????G ??????????????????????????????????????????????????????????????t???????????s??ep???????????o????????????N???????????h?????? ?????????????????????????
Reg  HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Route                                                                           ??????????&????????????e????@%SystemRoot%\system32\drivers\mountmgr.sys,-101????????????????t?????????????????????X????????????n???????????????????????????????????????????????????????????????????????????????????????????????????g??????????????(?????????p???????????????t???????????????????Network???????N????????????e????%SystemRoot%\system32\srvsvc.dll?????????????????????????????????????v???????G ??????????????????????????????????????????????????????????????t???????????s??ep???????????o????????????N???????????h?????? ??????????????????????????????????????????????????tO???????????e?????????nab???????????*???*??@%systemroot%\system32\drivers\mup.sys,-101?????????????????????System32\DRIVERS\netbt.sys??????????????????????????????????????????????????????????????????????????????NDIS Wrapper?????? ?????????p???????????????????????????????????????t???????????????????@%SystemRoot%\system32\drivers\ndis.sys,-201?????????????????????????/??????????system32\drivers\ndis.sys?????P????????????n??????4????????????????????
Reg  HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Export                                                                          ?????????????:??@%systemroot%\system32\cscsvc.dll,-203??????s????????????B??????????????????MD???????????????????????A??????????????????????????Net?????????????????????{a??int?????????????6.1.7600.16385???????????????e??ce??????????????????????????????????*6to4mp?A1???????????????????B????.??????????????????????B??????????????????????????????????????????????Microsoft-6zu4-Adapter #231??2??????????????????6to4mp.ndi???1??????pi??Typ?????????????????????????????????????????????????? ???????????????????????????????????????f??????? ???????????????????????????????????????f??? ?????????????????????0??L????????? ???????????? ?????????????????????0????????????&???????????????????????????????? ?????????????????????0????????????????????????????? ?????????????????????0????????????????????@volsnap.inf,%storage\volumesnapshot.devicedesc%;Standard-Volumeschattenkopie???.NTAMD64????????????? ?????????????????????0????????????????????? ?????????????????????0????????????????????????da??????????????????????????????????? ?????
Reg  HKLM\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage@Bind                                                                       ??????????(?????????p???????????????t???????????????????Network???????N????????????e????%SystemRoot%\system32\srvsvc.dll?????????????????????????????????????v???????G ??????????????????????????????????????????????????????????????t???????????s??ep???????????o????????????N???????????h?????? ??????????????????????????????????????????????????tO???????????e?????????nab???????????*???*??@%systemroot%\system32\drivers\mup.sys,-101?????????????????????System32\DRIVERS\netbt.sys??????????????????????????????????????????????????????????????????????????????NDIS Wrapper?????? ?????????p???????????????????????????????????????t???????????????????@%SystemRoot%\system32\drivers\ndis.sys,-201?????????????????????????/??????????system32\drivers\ndis.sys?????P????????????n??????4???????????????????????????????????????????????????????????????????????`????????????e??????4???????????h?????@%SystemRoot%\system32\drivers\ndis.sys,-200????????????????t????????~??????????????t?????P????????????e???????????????????????????????????????
Reg  HKLM\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage@Route                                                                      ???????????????????????????????????????????????????????????????????????????????????????????????g??????????????(?????????p???????????????t???????????????????Network???????N????????????e????%SystemRoot%\system32\srvsvc.dll?????????????????????????????????????v???????G ??????????????????????????????????????????????????????????????t???????????s??ep???????????o????????????N???????????h?????? ??????????????????????????????????????????????????tO???????????e?????????nab???????????*???*??@%systemroot%\system32\drivers\mup.sys,-101?????????????????????System32\DRIVERS\netbt.sys??????????????????????????????????????????????????????????????????????????????NDIS Wrapper?????? ?????????p???????????????????????????????????????t???????????????????@%SystemRoot%\system32\drivers\ndis.sys,-201?????????????????????????/??????????system32\drivers\ndis.sys?????P????????????n??????4???????????????????????????????????????????????????????????????????????`????????????e??????4???????????h?????@%SystemRoot%\system32\drivers\ndis.sys,-20
Reg  HKLM\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage@Export                                                                     ??????????????????????????8???????????h???????????????????????&????????????e????@%SystemRoot%\system32\drivers\mountmgr.sys,-101????????????????t?????????????????????X????????????n???????????????????????????????????????????????????????????????????????????????????????????????????g??????????????(?????????p???????????????t???????????????????Network???????N????????????e????%SystemRoot%\system32\srvsvc.dll?????????????????????????????????????v???????G ??????????????????????????????????????????????????????????????t???????????s??ep???????????o????????????N???????????h?????? ??????????????????????????????????????????????????tO???????????e?????????nab???????????*???*??@%systemroot%\system32\drivers\mup.sys,-101?????????????????????System32\DRIVERS\netbt.sys??????????????????????????????????????????????????????????????????????????????NDIS Wrapper?????? ?????????p???????????????????????????????????????t???????????????????@%SystemRoot%\system32\drivers\ndis.sys,-201?????????????????????????/??????????system32\drivers\nd
Reg  HKLM\SYSTEM\CurrentControlSet\services\NetBIOS\Linkage@Bind                                                                                 ?????;????<???????????????????8???????????h???????b????????????e??????"????????????e????System Bus Extender???????\????????????e????Network?????Maus-HID-Treiber??????<???????????h?????system32\DRIVERS\mrxsmb.sys???????b????????????n????????????????????system32\DRIVERS\mouhid.sys?\mouhid.sys????????????????g????@%SystemRoot%\system32\drivers\mountmgr.sys,-100????System32\drivers\mpsdrv.sys?????? ??????????????????????@%systemroot%\system32\wkssvc.dll,-1002?????????????????????????????????t?????P????????????e??????????????<???????????h?????system32\DRIVERS\mrxsmb10.sys???????????????p???????????????????? ???????.?????mp???rdbss???????Tcpip???????????????????????Network?????????????????????????@%SystemRoot%\system32\FirewallAPI.dll,-23092???????????????t????????0??????????????p????????????1??8&??????????@%SystemRoot%\system32\FirewallAPI.dll,-23093???system32\DRIVERS\mrxsmb20.sys?????P????????????e????????????????p?????X????????????e??????8???????????h?????@%systemroot%\system32\wkssvc.dll,-1004????????????????
Reg  HKLM\SYSTEM\CurrentControlSet\services\NetBIOS\Linkage@Route                                                                                ????????????????????t???tunnel??????????????????? ???????F?????(x8??????????????????????????????{36fc9e60-c465-11cf-8056-444553540000}??????????????????6-21-2006????????????????????????????????????????????????????????n??????????????????????? ????????????????????????????0???????????????snag???????????????????_???0??????????????????????????????????????????? ???????????????????????????????????????f??????????f???? ?????????????????????0??L????????? ????????5??????????????????????.NT?????????????????????????? ?????????????????????0????????????&????????????????????g??? ?????????????????????0????????????????????? ?????????????????????0????????????????????oem11.inf:Logitech.ntamd64.6.0:PID09A1.VISTAX64:12.10.1110.0:usb\vid_046d&pid_09a1&mi_02?&????????????????????<?????????????????????? ?????????????????????0????????????????????????????????? ?????????????????????0????????????????????Microsoft???????????????????????????????????????? ?????????????????????0????????????????????????????????????????? ?????????????????????
Reg  HKLM\SYSTEM\CurrentControlSet\services\NetBIOS\Linkage@Export                                                                               ????????????????????????????????Net????????????????????e????????????*6to4mp?eB??tunnel?{38??????s????????????v??e\??{745a17a0-74d3-11d0-b6fe-00a0c90f57da}\0010?????????????????????????????e???????????????????????????????????????????????????????????{1e00457c-c326-5bdf-b553-7e6dc9c059ec}?ny?????*?????????????????????????????????????????t???tunnel??????????????????? ???????F?????(x8??????????????????????????????{36fc9e60-c465-11cf-8056-444553540000}??????????????????6-21-2006????????????????????????????????????????????????????????n??????????????????????? ????????????????????????????0???????????????snag???????????????????_???0??????????????????????????????????????????? ???????????????????????????????????????f??????????f???? ?????????????????????0??L????????? ????????5??????????????????????.NT?????????????????????????? ?????????????????????0????????????&????????????????????g??? ?????????????????????0????????????????????? ?????????????????????0????????????????????oem11.inf:Logitech.ntamd64.6.0:PID09A1.VISTAX64:12.
Reg  HKLM\SYSTEM\CurrentControlSet\services\NetBT\Linkage@Bind                                                                                   ?????0??????????????p????????????1??8&??????????@%SystemRoot%\system32\FirewallAPI.dll,-23093???system32\DRIVERS\mrxsmb20.sys?????P????????????e????????????????p?????X????????????e??????8???????????h?????@%systemroot%\system32\wkssvc.dll,-1004?????????????????????????????????????????????t?????P????????????e????system32\DRIVERS\msisadrv.sys??????????????g????Filter??????@%systemroot%\system32\wkssvc.dll,-1003?????????????????????????????????Network?????File system???????????????????????P????????????n????????????????????????mrxsmb????????<???????????h????????????????????????g????Boot Bus Extender????????????????????????????????????????????????????m????????????????????????????????????????P????????????e????????????????????????????mrxsmb????????????????????????2???????????h?????????????????????@%systemroot%\system32\wkssvc.dll,-1006???????V??????????????d??????????????p???????????????????????????????p???????????Network?????????????????????Network?????System32\Drivers\mup.sys????????????????t????????????????????:?
Reg  HKLM\SYSTEM\CurrentControlSet\services\NetBT\Linkage@Route                                                                                  ??????????????????&????????????e????@%SystemRoot%\system32\drivers\mountmgr.sys,-101????????????????t?????????????????????X????????????n???????????????????????????????????????????????????????????????????????????????????????????????????g??????????????(?????????p???????????????t???????????????????Network???????N????????????e????%SystemRoot%\system32\srvsvc.dll?????????????????????????????????????v???????G ??????????????????????????????????????????????????????????????t???????????s??ep???????????o????????????N???????????h?????? ??????????????????????????????????????????????????tO???????????e?????????nab???????????*???*??@%systemroot%\system32\drivers\mup.sys,-101?????????????????????System32\DRIVERS\netbt.sys??????????????????????????????????????????????????????????????????????????????NDIS Wrapper?????? ?????????p???????????????????????????????????????t???????????????????@%SystemRoot%\system32\drivers\ndis.sys,-201?????????????????????????/??????????system32\drivers\ndis.sys?????P????????????n??????4????????????
Reg  HKLM\SYSTEM\CurrentControlSet\services\NetBT\Linkage@Export                                                                                 ????????????????????p?????:???????????h????????????????????e????????????????????????????????t???????????????????????????????????????File system?????????????????t???Network?????11??6.??Boot File System????????????????e?????????????????^????????????e????????????????????????????????????t?????"?????????p????????????????????? ????????????e????????????????????system32\drivers\nsiproxy.sys????????????x????????????`????????????n??????N????????????e????????????????t???8-16-2010???????????????????????t????????????????????I???O?????????????g????????????????????????? ???????_?????672????6???????????h??????????????????????????????????????????????????????????????????????????????????????????d???????d????8?????????????????????tcpip????????????????????????????????????????D??????????@%SystemRoot%\system32\drivers\netbt.sys,-2???????????????????????????????$?????????p???????????????????? ??????????????????????????????????????????????????????????????????????????????????????????????????????????????t???????????????????????t??????
Reg  HKLM\SYSTEM\CurrentControlSet\services\Smb\Linkage@Bind                                                                                     ????????@%SystemRoot%\system32\FirewallAPI.dll,-23093???system32\DRIVERS\mrxsmb20.sys?????P????????????e????????????????p?????X????????????e??????8???????????h?????@%systemroot%\system32\wkssvc.dll,-1004?????????????????????????????????????????????t?????P????????????e????system32\DRIVERS\msisadrv.sys??????????????g????Filter??????@%systemroot%\system32\wkssvc.dll,-1003?????????????????????????????????Network?????File system???????????????????????P????????????n????????????????????????mrxsmb????????<???????????h????????????????????????g????Boot Bus Extender????????????????????????????????????????????????????m????????????????????????????????????????P????????????e????????????????????????????mrxsmb????????????????????????2???????????h?????????????????????@%systemroot%\system32\wkssvc.dll,-1006???????V??????????????d??????????????p???????????????????????????????p???????????Network?????????????????????Network?????System32\Drivers\mup.sys????????????????t????????????????????:???:??@%systemroot%\system32\wkssvc.dll,-
Reg  HKLM\SYSTEM\CurrentControlSet\services\Smb\Linkage@Route                                                                                    ????????????????.NT?????????????? ????????????????????????????????????#?????????????????????????????@nettun.inf,%6to4mp.displayname%;Microsoft-6zu4-Adapter?46??????????????????????????{00000000-0000-0000-FFFF-FFFFFFFFFFFF}?{50??{4d36e972-e325-11ce-bfc1-08002be10318}??????*6to4mp?????????#???? ??????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_COWON&PROD_D2&REV_0100#0283310033F839B07070816221611730&1#???????????????????????????????#???? ????????????????????????????????????#yst??\\?\WpdBusEnumRoot#UMB#2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_COWON&PROD_D2&REV_0100#0283310033F839B07070816221611730&0##{6ac27878-a6fa-4155-ba85-f98f491d4f33}?0????N?????????????????????#???? ??????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????{4d36e972-e325-11ce-bfc1-08002be10318}?8C2??{4d36e972-e325-11ce-bfc1-08002be103
Reg  HKLM\SYSTEM\CurrentControlSet\services\Smb\Linkage@Export                                                                                   ????A???????????????????????????????????????????????????????.NT?????????????????%SystemRoot%\System32\kernel32.dll??????system32\drivers\fltmgr.sys?????????????????????????text??????????????????????????????????????????????8???????????h???????:???????????h?????Extended Base???tunnel??????????????? ?????????????????????,????????Z?u?????????????????????t?????<???????????h?????????????????????????RPCSS??8-8??????A???????????????? ???????????????????????????????????????f??? ?????????????????????0??L????????? ???????????? ?????????????????????0????????????&???????????????????????? ?????????????????????0????????????????????? ?????????????????????0??????????????????????????????????????0?????????????????????????????????????????????????volsnap.inf:MSFT.NTamd64:volume_snapshot_install:6.1.7600.16385:storage\volumesnapshot??????? ?????????????????????0????????????????????? ?????????????????????0????????????????????????????????????????????????????????????????????? ?????????????????????0???????????????????????????????????
Reg  HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC                                                            
Reg  HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0                                                         C:\Program Files (x86)\DAEMON Tools Lite\
Reg  HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0                                                         0x00 0x00 0x00 0x00 ...
Reg  HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0                                                         0
Reg  HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12                                                      0x97 0x60 0x0E 0xE3 ...
Reg  HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001                                                  
Reg  HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0                                                0x20 0x01 0x00 0x00 ...
Reg  HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12                                             0xF4 0x10 0x9D 0x42 ...
Reg  HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0                                              
Reg  HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12                                        0xA0 0x85 0x76 0xC3 ...
Reg  HKLM\SYSTEM\CurrentControlSet\services\TCPIP6\Linkage@Bind                                                                                  ???????????????????g????Boot Bus Extender????????????????????????????????????????????????????m????????????????????????????????????????P????????????e????????????????????????????mrxsmb????????????????????????2???????????h?????????????????????@%systemroot%\system32\wkssvc.dll,-1006???????V??????????????d??????????????p???????????????????????????????p???????????Network?????????????????????Network?????System32\Drivers\mup.sys????????????????t????????????????????:???:??@%systemroot%\system32\wkssvc.dll,-1007?????????????????t???????????????????????????????t??????????????????????????????g????????????????p?????????????????????s?????C:\ProgramData\Microsoft\MF?????????????????t?????&?? ?????????????????????????????g????????????????????????????????????????????p??????????????????????????????????????????e??????????????$?????????p??????????????g?????????:??????????????????????????????????????????????21234????????????:??????@%systemroot%\system32\drivers\mup.sys,-102?????????????????t???????????????????????????????NDIS Pr
Reg  HKLM\SYSTEM\CurrentControlSet\services\TCPIP6\Linkage@Route                                                                                 ???????????????????????????????????????e??????????????$?????????p??????????????g?????????:??????????????????????????????????????????????21234????????????:??????@%systemroot%\system32\drivers\mup.sys,-102?????????????????t???????????????????????????????NDIS Proxy??????@%SystemRoot%\system32\drivers\netbt.sys,-1???????????????????????????????????????6???????????h?????????????????t?????????????????????Z????????????e????Network?????????????????t???????????????t???????????????????????????g????????????0????????????????????????????????8???????????h???????????????????????&????????????e????@%SystemRoot%\system32\drivers\mountmgr.sys,-101????????????????t?????????????????????X????????????n???????????????????????????????????????????????????????????????????????????????????????????????????g??????????????(?????????p???????????????t???????????????????Network???????N????????????e????%SystemRoot%\system32\srvsvc.dll?????????????????????????????????????v???????G ??????????????????????????????????????????????????????????????t?
Reg  HKLM\SYSTEM\CurrentControlSet\services\TCPIP6\Linkage@Export                                                                                ????A???Microsoft???????????????????LegacyDriver?.??{00000000-0000-0000-0000-000000000000}??????????????????????????????????????? ^?????????????????????????????????????? ^?????????????Mi????N???????????D????????????????????s?4??????????????????????????????????????t?????^????????????e??????8??????????????????????????B??????????????????????????????????????????????*6to4mp?E9??????????????????????????????? ????????????????????????????????????????????s?????6.1.7600.16385?0.1??? ???????????????????????????????????????f??? ?????????????????????0??L????????? ???????????????????????????????? ?????????????????????0????????????&???????????????????????? ?????????????????????0????????????????????? ?????????????????????0????????~???????????hal.inf:GENDEV_SYS.NTamd64:ACPI_AMD64_HAL:6.1.7600.16385:acpiapic????????????????????????????3??????????????? ?????????????????????0????????????&???????????????????????????????????? ?????????????????????0????????????????????? ?????????????????????0?????????????????????????????3???3?????
Reg  HKLM\SYSTEM\ControlSet004\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Bind        ????????????????????????\\?\Root#*6TO4MP#0253#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{4F371EC3-7ECF-4A57-B16B-AA3D11EF78E7}?16??????\\?\Root#*6TO4MP#0254#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{01E0076F-1BC8-4175-9BE0-C93EAD45099B}???????????$?????????????????\\?\Root#*6TO4MP#0255#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{26C31A1D-A5DB-4FE9-BA5F-96C0AB40C139}???????$??????}??????????????????????????????\\?\Root#*6TO4MP#0256#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{398271AD-805B-493A-A522-5FAB809FB5C5}?}?????$?????????????????Root\*6TO4MP\0257???????????????????????\\?\Root#*6TO4MP#0257#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{20685D11-4F65-4988-BB63-99F7A53B92E1}???????$?????????????????Root\*6TO4MP\0258????????????????n??????????\\?\Root#*6TO4MP#0258#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{D5E1DE64-8D39-42AC-9598-63A20451001D}???????????$?????????????????Root\*6TO4MP\0259???????????????????????????\\?\Root#*6TO4MP#0259#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{D60D0149-D841-4520-A480-594C44E6C458}???????????$????
Reg  HKLM\SYSTEM\ControlSet004\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Route       ??????????$?????????????????Root\*TEREDO\0000????????????????????????????;??16?5?5??????????????????????????Root\MEDIA\0001?8-???????????0??????74??????????????????????????? ?????????????????????,????????$???<???????????????????????????????? ??????????????????????????????????????????? ?????????????????????,????????z???????????? ?????????????????????,????????$???<???????????????????????????????-0??????#???????????#???\\?\HDAUDIO#FUNC_01&VEN_1002&DEV_AA01&SUBSYS_00AA0100&REV_1002#5&adbb4f4&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\AtiRearLineOutTopo???\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0892&SUBSYS_104383C0&REV_1003#4&1dde902d&0&0001#{dda54a40-1e4c-11d1-a050-405705c10000}\RtLineInTopo????\\?\Root#MEDIA#0001#{dda54a40-1e4c-11d1-a050-405705c10000}\Topology?AF????????????????????????4??????????????????????????????????????????????c???????4????????????????????????????2??????\???????e??USB\ROOT_HUB\4&67395f2&1????????????????????????\\?\USB#ROOT_HUB#4&67395f2&1#{f18a0e88-c30c-11d0-8815-00a0c906bed8}???????2????????
Reg  HKLM\SYSTEM\ControlSet004\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{2B07FAA1-8217-4E30-B5EC-FD4501E773BB}\Linkage@Export      ????d???????????????????????g???????????? ??????????????????Mouse??????????????????e????SYSTEM? ? ??? ??????????????s???0403????????????????????????????????? ??????????????????????????????? ??????????????????? ??????????????s????????????????,??????????????????????e???????????ms_firewall_upper?scheduler?encryption?compression?vpn?loadbalance?failover?diagnostic?custom???????Ndisuio,rspndr,lltdio,RasPppoe,Tcpip,Tcpip6????????????????????????????????????????????????)????????????????????????cdrom????????????????????????????/??????????????????????2e??CDROM???????????????????????n???????????????????????MEDIA???????????????????????????????disk?E??????? ?????????????????????,????????$???<???????????????????????????????1???? ?????????????????????,????????z?????#?????? ?????????????????????,????????z?????#?????? ?????????????????????,????????$???<???????????????????????????????ra??????#???pci?????????#???\\?\HDAUDIO#FUNC_01&VEN_10EC&DEV_0892&SUBSYS_104383C0&REV_1003#4&1dde902d&0&0001#{eb115ffc-10c8-4964-831d-6dcb02e6f
Reg  HKLM\SYSTEM\ControlSet004\services\LanmanServer\Linkage@Bind                                                                                ?????2??Microsoft-6zu4-Adapter #234?5????????????7???e????N??????l??????????????????????@nettun.inf,%6to4mp.displayname%;Microsoft-6zu4-Adapter???????????????????????????????????????????????&LAN-Verbindung* 193??????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????6Microsoft-6zu4-Adapter #186???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
Reg  HKLM\SYSTEM\ControlSet004\services\LanmanServer\Linkage@Route                                                                               ??????????????????????????<???????????h?????@%systemroot%\system32\wkssvc.dll,-1005?????@%systemroot%\system32\wkssvc.dll,-1006?????????????????????t???Boot Bus Extender?????????????????????R????????????e?????0?0????*6to4mp?????????????????????????????????????????22?????????????????g????machine.inf_amd64_neutral_9e6bb86c3b39a3e9???????????????????????????0?0?0???0??Typ?????????????al??????????????????? ?????????????????????0????????.?????????????.?????????????Microsoft-6zu4-Adapter??????????????? ?????????????????????0????????????????????? ?????????????????????0?????????????????????????????2??12??????????????????????????????t?????????????????????????:???????????h?????system32\drivers\drmkaud.sys??????@????????????e????Microsoft Trusted Audio Drivers???????N???????????h???????????????????????????\????????????n??????<???????????????????????????????????? ????????@%systemroot%\system32\drivers\luafv.sys,-100?????2??????l?????e\C??system32\DRIVERS\lvrs64.sys?????system32\DRIVERS\lvuvc64.sys????system32\DRIVERS\Ma
Reg  HKLM\SYSTEM\ControlSet004\services\LanmanServer\Linkage@Export                                                                              ????.1?????+???+????????t?????`????????????e????Logitech LVPr2M64 Driver??????V??????????????d?????????????g????????????????Extended Base??????????????g??????????????????????????X????????????e?????%?%???????????????????????????????g????????????????????????????????p?????b????????????e??????B?????????????????????????????????????????????????????msmouse.inf_amd64_neutral_7a5f47d3150cc0eb??????????????????????????@%SystemRoot%\system32\drivers\mountmgr.sys,-101??????????????????????P????????????n?????%?%t????????????????????????????.?.s???Maus-HID-Treiber????Pointer Class?????b????????????n??????? ??? ?B??????t???System32\drivers\mountmgr.sys???System32\drivers\mpsdrv.sys?????????????????????????text?/???%?%s???system32\DRIVERS\mouhid.sys?\mouhid.sys?????????????????????????@%SystemRoot%\system32\FirewallAPI.dll,-23092???? ??????????????????@%systemroot%\system32\webclnt.dll,-104?????????????????????????*6to4mp?????????????????t???tunnel????????????????????????X??????n??????tunnel??? ?????????????????????????????
Reg  HKLM\SYSTEM\ControlSet004\services\LanmanWorkstation\Linkage@Bind                                                                           ?????????????????????????????????????????????????+???+????8????????????e????????????????????PnP Filter??????????????????t?????<???????????h???????\????????????e??????^??????+?????e?+??????????????????????????????e???????????????????????????????????????system32\DRIVERS\hidusb.sys?\hidusb.sys????????+???+?????????????????????d???????????:???:????4???????????h???????8???????????h?????system32\DRIVERS\HDAudBus.sys?DAudBus.sys???Microsoft HID Class-Treiber??????????????????s??Microsoft-UAA-Bustreiber f?r High Definition Audio??????????????????p???@%systemroot%\system32\drivers\hwpolicy.sys,-101????????????????????????extended base????????????~??????????????????????????????????????????t?????f????????????e??????R??????????????d?????? ??????g????@%SystemRoot%\system32\drivers\http.sys,-1??????????????????t???6-21-2006?????V????????????n?????????????~???????"?"??????j??????~???????~??%SystemRoot%\system32\srvsvc.dll????????????????????????????????????@%systemroot%\system32\drivers\discache.sys,-102????Brother Removab
Reg  HKLM\SYSTEM\ControlSet004\services\LanmanWorkstation\Linkage@Route                                                                          ?????????????????????????????.?.????????????????????????????????????????????????????t????????????e?????????nab?????????????g?????????????????????????????????????????????s??eF??????????????????system32\drivers\LGBusEnum.sys??????@%SystemRoot%\system32\drivers\mountmgr.sys,-100??????8???????????h?????@%systemroot%\system32\webclnt.dll,-105??????????????????????e??@%systemroot%\system32\wkssvc.dll,-1003?????????????????????????system32\DRIVERS\mrxsmb20.sys?????????????????????????????????????s?????*6to4mp?92??????p???????????@%systemroot%\system32\wkssvc.dll,-1004????????$???$????????????????p???????????????t???6-21-2006???????????????????????File system?????system32\DRIVERS\msisadrv.sys???????????????t?????????????????????????????<???????????h?????@%systemroot%\system32\wkssvc.dll,-1005?????@%systemroot%\system32\wkssvc.dll,-1006?????????????????????t???Boot Bus Extender?????????????????????R????????????e?????0?0????*6to4mp?????????????????????????????????????????22?????????????????g????machine.inf_amd64_neutr
Reg  HKLM\SYSTEM\ControlSet004\services\LanmanWorkstation\Linkage@Export                                                                         ????????@%systemroot%\system32\wkssvc.dll,-1004????????$???$????????????????p???????????????t???6-21-2006???????????????????????File system?????system32\DRIVERS\msisadrv.sys???????????????t?????????????????????????????<???????????h?????@%systemroot%\system32\wkssvc.dll,-1005?????@%systemroot%\system32\wkssvc.dll,-1006?????????????????????t???Boot Bus Extender?????????????????????R????????????e?????0?0????*6to4mp?????????????????????????????????????????22?????????????????g????machine.inf_amd64_neutral_9e6bb86c3b39a3e9???????????????????????????0?0?0???0??Typ?????????????al??????????????????? ?????????????????????0????????.?????????????.?????????????Microsoft-6zu4-Adapter??????????????? ?????????????????????0????????????????????? ?????????????????????0?????????????????????????????2??12??????????????????????????????t?????????????????????????:???????????h?????system32\drivers\drmkaud.sys??????@????????????e????Microsoft Trusted Audio Drivers???????N???????????h???????????????????????????\????????????n??????<????
Reg  HKLM\SYSTEM\ControlSet004\services\NetBIOS\Linkage@Bind                                                                                     ???????????????????????????????????????g????CD/DVD File System Reader?????????????????????????????????4???????????h???????P??????+?????e?+??????????????????????????????????????????t????????????????????????????s??????m3????????????????????????????????????????????????????????$???????????h?????????????????????????????????1.0 1.0 1.0???????????????????????????P?????????????????????????????????????Network?????????????????????????????{36fc9e60-c465-11cf-8056-444553540000}??????{4d36e967-e325-11ce-bfc1-08002be10318}\0024?????? ????????????????????4??????_????hl????AMD-Prozessortreiber?????????????c??tn???????????h??ud????*????????????e????SysWow64\drivers\AsIO.sys???????????????????????system32\DRIVERS\atapi.sys????????N????????????D%???????int?????????s???????????????????????p???????????????????????????????????Extended Base????? ?????????????????mshdc.inf_amd64_neutral_a69a58a4286f0b22????????!??????g????AMD PCI Express (3GIO) Filter???Avira Security Enhacement Driver?0????????????????????????6????????????????????
Reg  HKLM\SYSTEM\ControlSet004\services\NetBIOS\Linkage@Route                                                                                    ????00??@%SystemRoot%\system32\drivers\fileinfo.sys,-100????@%SystemRoot%\system32\drivers\fvevol.sys,-100????????X??????????????d??hdaudbus.inf_amd64_neutral_c8d90bd70af55772????????????????g????????????????????????????????????t???System32\DRIVERS\fvevol.sys???????V????????????e????\??\Q:\Portable - Nicht l?schen\HWinfo\HWiNFO64A.SYS?7????????????????8???????????h??????????????????????????????????????????????????????+???+????8????????????e????????????????????PnP Filter??????????????????t?????<???????????h???????\????????????e??????^??????+?????e?+??????????????????????????????e???????????????????????????????????????system32\DRIVERS\hidusb.sys?\hidusb.sys????????+???+?????????????????????d???????????:???:????4???????????h???????8???????????h?????system32\DRIVERS\HDAudBus.sys?DAudBus.sys???Microsoft HID Class-Treiber??????????????????s??Microsoft-UAA-Bustreiber f?r High Definition Audio??????????????????p???@%systemroot%\system32\drivers\hwpolicy.sys,-101????????????????????????extended base????????????~?????
Reg  HKLM\SYSTEM\ControlSet004\services\NetBIOS\Linkage@Export                                                                                   ????????????????????t???system32\DRIVERS\jraid.sys??????system32\DRIVERS\kbdclass.sys?bdclass.sys???????????????t???System32\Drivers\ksecdd.sys???????X??!???????????d??????????????t??????????????????????????????????????e????????????????p?????????????????8???????????h?????System32\Drivers\ksecpkg.sys????????????????????????Kernel Streaming Thunks???????????????????????????????6???????????h???????4???????????h?????????????????????????????????? @??0???????????????? ??????????????e??????? ?????????????????????,????????<?^???????????Z????????????n????????????????????????????????????????????????????????????????????6-21-2006???????????????p??????????????g??????8???????????h???????????????????????:???????????h????????????????g??????????????????????????????????????*????????????e????????????????????Keyboard Port???Cryptography????????????????t???????????????p???PNP Filter????????R???????????h?????\SystemRoot\system32\drivers\ksthunk.sys????????????????????????????????????t???????????????????????????????System32\DRIVER
Reg  HKLM\SYSTEM\ControlSet004\services\NetBT\Linkage@Bind                                                                                       ??????????????????????????????????????????????$???????????h?????????????????????????????????1.0 1.0 1.0???????????????????????????P?????????????????????????????????????Network?????????????????????????????{36fc9e60-c465-11cf-8056-444553540000}??????{4d36e967-e325-11ce-bfc1-08002be10318}\0024?????? ????????????????????4??????_????hl????AMD-Prozessortreiber?????????????c??tn???????????h??ud????*????????????e????SysWow64\drivers\AsIO.sys???????????????????????system32\DRIVERS\atapi.sys????????N????????????D%???????int?????????s???????????????????????p???????????????????????????????????Extended Base????? ?????????????????mshdc.inf_amd64_neutral_a69a58a4286f0b22????????!??????g????AMD PCI Express (3GIO) Filter???Avira Security Enhacement Driver?0????????????????????????6??????????????????????????1??8&?????????????????????????????????g????????????????????????????????????????blbdrive.inf_amd64_neutral_1aa816fe7dc98c3f?????system32\DRIVERS\bowser.sys?????????????????????????????????t???????????????t???system32\DRIVER
Reg  HKLM\SYSTEM\ControlSet004\services\NetBT\Linkage@Route                                                                                      ????????tunnel??????? >??0???????????????? ?????????p?????????????????????6???????????h?????????????????t?????b????????????n??????.????????????e???????????????g????? z??$???:??????ws??????????tunnel??v2??USBSTOR\DiskSeagate_Portable________0130?USBSTOR\DiskSeagate_Portable________?USBSTOR\DiskSeagate_?USBSTOR\Seagate_Portable________0?Seagate_Portable________0?USBSTOR\GenDisk?GenDisk???????????&??? ??0???????????A???????????????????????????1????????A???????????????????? ??????????e??????0????????????????????????????????????"?"?l??? ?????????????????????5????????????&???????????????????? ??? ?????????????????????5??????6?????????\??????? ????_?????????????64\???????????s?????????????n?b???????????????????????????????????????%??sc??????????????????????? 4?????????????????Typ??w??????????????@disk.inf,%genmanufacturer%;(Standardlaufwerke)?????????????????p???{b188e498-efd6-5191-b360-ac2b0db26c9e}??????GER?6????????????-??????????USBSTOR\Disk?USBSTOR\RAW??????P?????????????????????PNP_TDI?????? ??0??????????????
Reg  HKLM\SYSTEM\ControlSet004\services\NetBT\Linkage@Export                                                                                     ??????????????8???????????h??????????????????????????????????????????????????????+???+????8????????????e????????????????????PnP Filter??????????????????t?????<???????????h???????\????????????e??????^??????+?????e?+??????????????????????????????e???????????????????????????????????????system32\DRIVERS\hidusb.sys?\hidusb.sys????????+???+?????????????????????d???????????:???:????4???????????h???????8???????????h?????system32\DRIVERS\HDAudBus.sys?DAudBus.sys???Microsoft HID Class-Treiber??????????????????s??Microsoft-UAA-Bustreiber f?r High Definition Audio??????????????????p???@%systemroot%\system32\drivers\hwpolicy.sys,-101????????????????????????extended base????????????~??????????????????????????????????????????t?????f????????????e??????R??????????????d?????? ??????g????@%SystemRoot%\system32\drivers\http.sys,-1??????????????????t???6-21-2006?????V????????????n?????????????~???????"?"??????j??????~???????~??%SystemRoot%\system32\srvsvc.dll????????????????????????????????????@%systemroot%\system32\drivers\disc
Reg  HKLM\SYSTEM\ControlSet004\services\Smb\Linkage@Bind                                                                                         ????t??????????????????e??????????????????????V??????????????d??????????? ?????????P?????????????????6??system32\DRIVERS\Rt64win7.sys???system32\DRIVERS\serial.sys?\serial.sys???????????????????????????????????????????????????????V????????????e????????????tunnel?-BF???????????????????????????e?ger????????????????????????<???????????h?????????????????????????????????? ??????????????n????????????e???h??????????????????????????p???????et??system32\DRIVERS\rspndr.sys?????Serenum-Filtertreiber????????????????????????????????????????!???????????P??Extended base???????????????t????????????????????%???%???????!???????????????????????????????????!???????????6????????????L??0???+????h?????????or????:???????????h??????????!?????????????????e??????N????????????n???????/???/?????????????????????????!???????????????e???????????????????????????????????????B??????@????????????????!???r?????P\M????<??????????????????????????m??????ow??Boot Bus Extender???????????????????????tunnel??md??????? ???????l?????251???????????????o?
Reg  HKLM\SYSTEM\ControlSet004\services\Smb\Linkage@Route                                                                                        ????????????? ??????????????n????????????e???h??????????????????????????p???????et??system32\DRIVERS\rspndr.sys?????Serenum-Filtertreiber????????????????????????????????????????!???????????P??Extended base???????????????t????????????????????%???%???????!???????????????????????????????????!???????????6????????????L??0???+????h?????????or????:???????????h??????????!?????????????????e??????N????????????n???????/???/?????????????????????????!???????????????e???????????????????????????????????????B??????@????????????????!???r?????P\M????<??????????????????????????m??????ow??Boot Bus Extender???????????????????????tunnel??md??????? ???????l?????251???????????????o???????????????????????????????m????8????????????????????????????g???????????????????? ????????!???????????6??????????????????????????????t?????@????????????e?????????????????????r?gdr???????????????:????V???????????????????<??????E????htxt????$?????????p????????????????????????????????????????????????????????????????-??????2???@%systemroot%\system32\srvs
Reg  HKLM\SYSTEM\ControlSet004\services\Smb\Linkage@Export                                                                                       ??????????L??0???+????h?????????or????:???????????h??????????!?????????????????e??????N????????????n???????/???/?????????????????????????!???????????????e???????????????????????????????????????B??????@????????????????!???r?????P\M????<??????????????????????????m??????ow??Boot Bus Extender???????????????????????tunnel??md??????? ???????l?????251???????????????o???????????????????????????????m????8????????????????????????????g???????????????????? ????????!???????????6??????????????????????????????t?????@????????????e?????????????????????r?gdr???????????????:????V???????????????????<??????E????htxt????$?????????p????????????????????????????????????????????????????????????????-??????2???@%systemroot%\system32\srvsvc.dll,-102???????????????????????e??system32\DRIVERS\swenum.sys?\swenum.sys?????????????????????????????????????????????????????????????????192.168.1.1?????? ???????_?????672??tunnel?ami??6-21-2006????????????\???B???????????????????????????5?????????d7-??tunnel?m F????????????????n??????????????v?????
Reg  HKLM\SYSTEM\ControlSet004\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet)                                        
Reg  HKLM\SYSTEM\ControlSet004\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0                                                             C:\Program Files (x86)\DAEMON Tools Lite\
Reg  HKLM\SYSTEM\ControlSet004\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0                                                             0x00 0x00 0x00 0x00 ...
Reg  HKLM\SYSTEM\ControlSet004\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0                                                             0
Reg  HKLM\SYSTEM\ControlSet004\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12                                                          0x97 0x60 0x0E 0xE3 ...
Reg  HKLM\SYSTEM\ControlSet004\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 (not active ControlSet)                              
Reg  HKLM\SYSTEM\ControlSet004\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0                                                    0x20 0x01 0x00 0x00 ...
Reg  HKLM\SYSTEM\ControlSet004\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12                                                 0xF4 0x10 0x9D 0x42 ...
Reg  HKLM\SYSTEM\ControlSet004\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 (not active ControlSet)                          
Reg  HKLM\SYSTEM\ControlSet004\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12                                            0xA0 0x85 0x76 0xC3 ...
Reg  HKLM\SYSTEM\ControlSet004\services\TCPIP6\Linkage@Bind                                                                                      ????????tunnel?-BF???????????????????????????e?ger????????????????????????<???????????h?????????????????????????????????? ??????????????n????????????e???h??????????????????????????p???????et??system32\DRIVERS\rspndr.sys?????Serenum-Filtertreiber????????????????????????????????????????!???????????P??Extended base???????????????t????????????????????%???%???????!???????????????????????????????????!???????????6????????????L??0???+????h?????????or????:???????????h??????????!?????????????????e??????N????????????n???????/???/?????????????????????????!???????????????e???????????????????????????????????????B??????@????????????????!???r?????P\M????<??????????????????????????m??????ow??Boot Bus Extender???????????????????????tunnel??md??????? ???????l?????251???????????????o???????????????????????????????m????8????????????????????????????g???????????????????? ????????!???????????6??????????????????????????????t?????@????????????e?????????????????????r?gdr???????????????:????V???????????????????<??????E????htxt????$????
Reg  HKLM\SYSTEM\ControlSet004\services\TCPIP6\Linkage@Route                                                                                     ?????????????????%???%???????!???????????????????????????????????!???????????6????????????L??0???+????h?????????or????:???????????h??????????!?????????????????e??????N????????????n???????/???/?????????????????????????!???????????????e???????????????????????????????????????B??????@????????????????!???r?????P\M????<??????????????????????????m??????ow??Boot Bus Extender???????????????????????tunnel??md??????? ???????l?????251???????????????o???????????????????????????????m????8????????????????????????????g???????????????????? ????????!???????????6??????????????????????????????t?????@????????????e?????????????????????r?gdr???????????????:????V???????????????????<??????E????htxt????$?????????p????????????????????????????????????????????????????????????????-??????2???@%systemroot%\system32\srvsvc.dll,-102???????????????????????e??system32\DRIVERS\swenum.sys?\swenum.sys?????????????????????????????????????????????????????????????????192.168.1.1?????? ???????_?????672??tunnel?ami??6-21-2006????????????\???B?????????
Reg  HKLM\SYSTEM\ControlSet004\services\TCPIP6\Linkage@Export                                                                                    ?????????????????r?gdr???????????????:????V???????????????????<??????E????htxt????$?????????p????????????????????????????????????????????????????????????????-??????2???@%systemroot%\system32\srvsvc.dll,-102???????????????????????e??system32\DRIVERS\swenum.sys?\swenum.sys?????????????????????????????????????????????????????????????????192.168.1.1?????? ???????_?????672??tunnel?ami??6-21-2006????????????\???B???????????????????????????5?????????d7-??tunnel?m F????????????????n??????????????v?????????eTc???????????????????f??????????????????????????????????????????????????????6???????????5?????????????????????3?????????????*6to4mp?????????????????????????????????????????????????????????????????????@%SystemRoot%\system32\vmstorfltres.dll,-1000???Software-Bus-Treiber????system32\DRIVERS\vmstorfl.sys????*?*?*?????&???&????@%systemroot%\system32\srvsvc.dll,-103??????????????????t?????<?????????????????? ?????????????;????????? ??????s????????????,???,????V??)?????????n?????????????????????????????*?*???????????????

---- EOF - GMER 1.0.15 ----
Dieser Beitrag wurde am 19.11.2010 um 14:45 Uhr von duAffentier editiert.
Seitenanfang Seitenende