Zeige Ergebnis 1 bis 10 von 10
  1. #1
    wurde beim Posten geblitzt Benutzerbild von Das kleine Streiferly
    [im Abistress :/]

    Dabei seit
    19.12.2007
    Alter
    22
    Beiträge
    2.419

    logfiles vom total lahmen laptop

    N’abend
    Ich hab hier mit hilfe von OTL 2 logfiles. Wäre schön, wenn ihr die mal durchschauen könntet:

    Code:
     OTL logfile created on: 16.02.2012 18:18:47 - Run 1
    OTL by OldTimer - Version 3.2.32.0     Folder = C:\Users\Lisa\Downloads
    64bit- Home Premium Edition  (Version = 6.1.7600) - Type = NTWorkstation
    Internet Explorer (Version = 9.0.8112.16421)
    Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
     
    3,75 Gb Total Physical Memory | 2,26 Gb Available Physical Memory | 60,18% Memory free
    7,49 Gb Paging File | 5,66 Gb Available in Paging File | 75,54% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]
     
    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
    Drive C: | 438,79 Gb Total Space | 326,30 Gb Free Space | 74,36% Space Free | Partition Type: NTFS
    Drive D: | 5,46 Gb Total Space | 5,41 Gb Free Space | 99,00% Space Free | Partition Type: NTFS
    Drive H: | 43,64 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
     
    Computer Name: LISA-PC | User Name: Lisa | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
     
    [color=#E56717]========== Processes (SafeList) ==========[/color]
     
    PRC - C:\Users\Lisa\Downloads\OTL.exe (OldTimer Tools)
    PRC - C:\Program Files (x86)\Tobit Radio.fx\Server\rfx-server.exe ()
    PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
    PRC - C:\Program Files (x86)\Tobit Radio.fx\Client\rfx-tray.exe (Tobit.Software)
    PRC - C:\Program Files (x86)\Warner Bros. Digital Copy Manager\Warner Bros. Digital Copy Manager.exe ()
    PRC - C:\Program Files (x86)\Kodak\AiO\Center\EKAiOHostService.exe (Eastman Kodak Company)
    PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
    PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
    PRC - C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe ()
    PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
    PRC - C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe (CyberLink Corp.)
    PRC - C:\Windows\PLFSetI.exe ()
    PRC - C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe (Acer Corp.)
    PRC - C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe (Vodafone)
    PRC - C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe (Vodafone)
    PRC - C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe (Egis Technology Inc.)
    PRC - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe (Acer Incorporated)
    PRC - C:\Program Files (x86)\Launch Manager\LManager.exe (Dritek System Inc.)
    PRC - C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe (Egis Technology Inc.)
    PRC - C:\Programme\Acer\Acer Updater\UpdaterService.exe (Acer)
    PRC - C:\Program Files (x86)\dcmsvc\dcmsvc.exe ()
    PRC - C:\Program Files (x86)\WordWeb\wweb32.exe (Antony Lewis)
     
     
    [color=#E56717]========== Modules (No Company Name) ==========[/color]
     
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\e0dbdfca9d4a65b1189481a168295866\System.Web.Services.ni.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\0a894f77b9aa64acbd3ce791916357d8\System.Runtime.Remoting.ni.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\f08bed8a99fdeed5f4ec538947851e29\System.Transactions.ni.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\0794d7af09099432ebfb51af1d7f15ae\System.Management.ni.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\5ca17001998a75ca774d2b80eead5579\System.ServiceProcess.ni.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Security\2726e2ab6218f17a1bef5fe81130078c\System.Security.ni.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\15742b3597258ce67cbe219005c197e5\System.Configuration.ni.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d49f4cb0755ccc34cd35ff96dc2ef9e3\System.Xml.ni.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\ff30db6905f8ec024fc808ed8779c0f3\System.Windows.Forms.ni.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\a09ee392fa90849f2e9313a1ebbe0279\System.Drawing.ni.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\de7aedafb2f0a3a4a707612d2f8faefe\System.Data.ni.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System\1f14b3e1ee0847f8662f513e67f92547\System.ni.dll ()
    MOD - C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\8e47wjau.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}\components\RadioWMPCoreGecko9.dll ()
    MOD - C:\Program Files (x86)\Tobit Radio.fx\Client\TOBITCLT.dll ()
    MOD - C:\Program Files (x86)\Tobit Radio.fx\Client\rfx-client$.ger ()
    MOD - C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ()
    MOD - C:\Program Files (x86)\Warner Bros. Digital Copy Manager\Warner Bros. Digital Copy Manager.exe ()
    MOD - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\d71769228ebe7732ae31ac194fe00ff0\Accessibility.ni.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\1b31ced9bb880d94fff1c6d47c16a81e\mscorlib.ni.dll ()
    MOD - C:\Windows\assembly\GAC_MSIL\System.Xml.resources\2.0.0.0_de_b77a5c561934e089\System.Xml.resources.dll ()
    MOD - C:\Windows\assembly\GAC_MSIL\System.Windows.Forms.resources\2.0.0.0_de_b77a5c561934e089\System.Windows.Forms.resources.dll ()
    MOD - C:\Windows\assembly\GAC_MSIL\System.resources\2.0.0.0_de_b77a5c561934e089\System.resources.dll ()
    MOD - C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll ()
    MOD - C:\Windows\PLFSetI.exe ()
    MOD - C:\Windows\SysWOW64\msjetoledb40.dll ()
    MOD - C:\Windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll ()
    MOD - C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll ()
    MOD - C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\NDISAPI.dll ()
    MOD - C:\Program Files (x86)\dcmsvc\dcmsvc.exe ()
     
     
    [color=#E56717]========== Win32 Services (SafeList) ==========[/color]
     
    SRV:64bit: - (MatSvc) -- C:\Program Files\Microsoft Fix it Center\Matsvc.exe (Microsoft Corporation)
    SRV:64bit: - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD)
    SRV - (Radio.fx) -- C:\Program Files (x86)\Tobit Radio.fx\Server\rfx-server.exe ()
    SRV - (Kodak AiO Network Discovery Service) -- C:\Program Files (x86)\Kodak\AiO\Center\EKAiOHostService.exe (Eastman Kodak Company)
    SRV - (AntiVirSchedulerService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
    SRV - (AntiVirService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
    SRV - (ICQ Service) -- C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe ()
    SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
    SRV - (VMCService) -- C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe (Vodafone)
    SRV - (MWLService) -- C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe ()
    SRV - (Greg_Service) -- C:\Program Files (x86)\Acer\Registration\GregHSRW.exe (Acer Incorporated)
    SRV - (ETService) -- C:\Programme\Acer\Empowering Technology\Service\ETService.exe ()
    SRV - (Updater Service) -- C:\Programme\Acer\Acer Updater\UpdaterService.exe (Acer)
    SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
    SRV - (HsfXAudioService) -- C:\Windows\SysWOW64\XAudio64.dll (Conexant Systems, Inc.)
     
     
    [color=#E56717]========== Driver Services (SafeList) ==========[/color]
     
    DRV:64bit: - (avipbb) -- C:\Windows\SysNative\drivers\avipbb.sys (Avira GmbH)
    DRV:64bit: - (avgntflt) -- C:\Windows\SysNative\drivers\avgntflt.sys (Avira GmbH)
    DRV:64bit: - (sptd) -- C:\Windows\SysNative\drivers\sptd.sys ()
    DRV:64bit: - (athr) -- C:\Windows\SysNative\drivers\athrx.sys (Atheros Communications, Inc.)
    DRV:64bit: - (atikmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.)
    DRV:64bit: - (amdkmdag) -- C:\Windows\SysNative\drivers\atipmdag.sys (ATI Technologies Inc.)
    DRV:64bit: - (amdkmdap) -- C:\Windows\SysNative\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
    DRV:64bit: - (AtiHdmiService) -- C:\Windows\SysNative\drivers\AtiHdmi.sys (ATI Technologies, Inc.)
    DRV:64bit: - (AtiPcie) AMD PCI Express (3GIO) -- C:\Windows\SysNative\drivers\AtiPcie.sys (Advanced Micro Devices Inc.)
    DRV:64bit: - (SynTP) -- C:\Windows\SysNative\drivers\SynTP.sys (Synaptics Incorporated)
    DRV:64bit: - (RSUSBSTOR) -- C:\Windows\SysNative\drivers\RtsUStor.sys (Realtek Semiconductor Corp.)
    DRV:64bit: - (hidshim) -- C:\Windows\SysNative\drivers\hidshim.sys (Windows (R) Win 7 DDK provider)
    DRV:64bit: - (nuvotonhidgeneric) -- C:\Windows\SysNative\drivers\nuvotonhidgeneric.sys (Nuvoton Technology Corporation)
    DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
    DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
    DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
    DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
    DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
    DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
    DRV:64bit: - (ewusbnet) -- C:\Windows\SysNative\drivers\ewusbnet.sys (Huawei Technologies Co., Ltd.)
    DRV:64bit: - (hwusbfake) -- C:\Windows\SysNative\drivers\ewusbfake.sys (Huawei Technologies Co., Ltd.)
    DRV:64bit: - (L1E) NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller(NDIS6.20) -- C:\Windows\SysNative\drivers\L1E62x64.sys (Atheros Communications, Inc.)
    DRV:64bit: - (mdmxsdk) -- C:\Windows\SysNative\drivers\mdmxsdk.sys (Conexant)
    DRV:64bit: - (XAudio) -- C:\Windows\SysNative\drivers\XAudio64.sys (Conexant Systems, Inc.)
    DRV:64bit: - (SrvHsfV92) -- C:\Windows\SysNative\drivers\VSTDPV6.SYS (Conexant Systems, Inc.)
    DRV:64bit: - (SrvHsfWinac) -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS (Conexant Systems, Inc.)
    DRV:64bit: - (SrvHsfHDA) -- C:\Windows\SysNative\drivers\VSTAZL6.SYS (Conexant Systems, Inc.)
    DRV:64bit: - (igfx) -- C:\Windows\SysNative\drivers\igdkmd64.sys (Intel Corporation)
    DRV:64bit: - (BCM43XX) -- C:\Windows\SysNative\drivers\BCMWL664.SYS (Broadcom Corporation)
    DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
    DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
    DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
    DRV:64bit: - (usbfilter) -- C:\Windows\SysNative\drivers\usbfilter.sys (Advanced Micro Devices)
    DRV:64bit: - (mwlPSDVDisk) -- C:\Windows\SysNative\drivers\mwlPSDVDisk.sys (Egis Technology Inc.)
    DRV:64bit: - (mwlPSDFilter) -- C:\Windows\SysNative\drivers\mwlPSDFilter.sys (Egis Technology Inc.)
    DRV:64bit: - (mwlPSDNServ) -- C:\Windows\SysNative\drivers\mwlPSDNserv.sys (Egis Technology Inc.)
    DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
    DRV:64bit: - (NTIDrvr) -- C:\Windows\SysNative\drivers\NTIDrvr.sys (NewTech Infosystems, Inc.)
    DRV:64bit: - (UBHelper) -- C:\Windows\SysNative\drivers\UBHelper.sys (NewTech Infosystems Corporation)
    DRV:64bit: - (hwdatacard) -- C:\Windows\SysNative\drivers\ewusbmdm.sys (Huawei Technologies Co., Ltd.)
    DRV:64bit: - (HSF_DPV) -- C:\Windows\SysNative\drivers\CAX_DPV.sys (Conexant Systems, Inc.)
    DRV:64bit: - (CAXHWAZL) -- C:\Windows\SysNative\drivers\CAXHWAZL.sys (Conexant Systems, Inc.)
    DRV:64bit: - (winachsf) -- C:\Windows\SysNative\drivers\CAX_CNXT.sys (Conexant Systems, Inc.)
    DRV - (RSUSBSTOR) -- C:\Windows\SysWOW64\drivers\RtsUStor.sys (Realtek Semiconductor Corp.)
    DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
    DRV - (int15) -- C:\Windows\SysWOW64\drivers\int15_64.sys (Acer, Inc.)
     
     
    [color=#E56717]========== Standard Registry (SafeList) ==========[/color]
     
     
    [color=#E56717]========== Internet Explorer ==========[/color]
     
    IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0407&m=aspire_8530&r=273607108206l0338zqj5t45j14642
    IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0407&m=aspire_8530&r=273607108206l0338zqj5t45j14642
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0407&m=aspire_8530&r=273607108206l0338zqj5t45j14642
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0407&m=aspire_8530&r=273607108206l0338zqj5t45j14642
    IE - HKLM\..\URLSearchHook:  - No CLSID value found
    IE - HKLM\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ)
     
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0407&m=aspire_8530&r=273607108206l0338zqj5t45j14642
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
    IE - HKCU\..\URLSearchHook:  - No CLSID value found
    IE - HKCU\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ)
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
     
    [color=#E56717]========== FireFox ==========[/color]
     
    FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
    FF - prefs.js..browser.search.defaultthis.engineName: "Search"
    FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2269050&SearchSource=3&q={searchTerms}"
    FF - prefs.js..browser.search.selectedEngine: "ICQ Search"
    FF - prefs.js..browser.search.useDBForOrder: true
    FF - prefs.js..browser.startup.homepage: "www.google.de"
    FF - prefs.js..extensions.enabledItems: {ACAA314B-EEBA-48e4-AD47-84E31C44796C}:1.0.1
    FF - prefs.js..extensions.enabledItems: DTToolbar@toolbarnet.com:1.1.2.0185
    FF - prefs.js..extensions.enabledItems: {872b5b88-9db5-4310-bdd0-ac189557e5f5}:3.8.0.8
    FF - prefs.js..extensions.enabledItems: {800b5000-a755-47e1-992b-48a1c1357f07}:1.4.1
    FF - prefs.js..keyword.URL: "chrome://browser-region/locale/region.properties"
     
     
    FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll File not found
    FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
    FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll ( Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll File not found
    FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
    FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
     
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012.01.25 21:39:09 | 000,000,000 | ---D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011.11.29 17:30:59 | 000,000,000 | ---D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 3.1.17\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2011.12.23 16:28:04 | 000,000,000 | ---D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 3.1.17\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins [2010.11.30 13:35:41 | 000,000,000 | ---D | M]
     
    [2010.07.26 22:47:07 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lisa\AppData\Roaming\mozilla\Extensions
    [2010.07.26 22:47:07 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lisa\AppData\Roaming\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
    [2012.02.16 16:27:40 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lisa\AppData\Roaming\mozilla\Firefox\Profiles\8e47wjau.default\extensions
    [2012.01.04 18:29:43 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Users\Lisa\AppData\Roaming\mozilla\Firefox\Profiles\8e47wjau.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
    [2012.02.16 16:27:40 | 000,000,000 | ---D | M] (DVDVideoSoftTB Community Toolbar) -- C:\Users\Lisa\AppData\Roaming\mozilla\Firefox\Profiles\8e47wjau.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}
    [2010.07.29 10:21:33 | 000,000,000 | ---D | M] ("DVDVideoSoft Menu") -- C:\Users\Lisa\AppData\Roaming\mozilla\Firefox\Profiles\8e47wjau.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
    [2010.10.24 13:24:21 | 000,000,873 | ---- | M] () -- C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\8e47wjau.default\searchplugins\conduit.xml
    [2010.09.07 08:33:45 | 000,002,055 | ---- | M] () -- C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\8e47wjau.default\searchplugins\daemon-search.xml
    [2012.02.09 22:29:11 | 000,000,950 | ---- | M] () -- C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\8e47wjau.default\searchplugins\icqplugin-1.xml
    [2012.01.25 21:39:19 | 000,000,950 | ---- | M] () -- C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\8e47wjau.default\searchplugins\icqplugin-10.xml
    [2011.08.19 09:16:46 | 000,000,950 | ---- | M] () -- C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\8e47wjau.default\searchplugins\icqplugin-2.xml
    [2011.08.31 21:22:52 | 000,000,950 | ---- | M] () -- C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\8e47wjau.default\searchplugins\icqplugin-3.xml
    [2011.09.07 19:36:26 | 000,000,950 | ---- | M] () -- C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\8e47wjau.default\searchplugins\icqplugin-4.xml
    [2011.09.27 19:46:19 | 000,000,950 | ---- | M] () -- C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\8e47wjau.default\searchplugins\icqplugin-5.xml
    [2011.09.30 18:12:07 | 000,000,950 | ---- | M] () -- C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\8e47wjau.default\searchplugins\icqplugin-6.xml
    [2011.11.07 13:45:38 | 000,000,950 | ---- | M] () -- C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\8e47wjau.default\searchplugins\icqplugin-7.xml
    [2011.11.29 17:28:29 | 000,000,950 | ---- | M] () -- C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\8e47wjau.default\searchplugins\icqplugin-8.xml
    [2011.11.29 17:31:15 | 000,000,950 | ---- | M] () -- C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\8e47wjau.default\searchplugins\icqplugin-9.xml
    [2012.01.04 14:54:58 | 000,000,168 | ---- | M] () -- C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\8e47wjau.default\searchplugins\icqplugin.gif
    [2012.01.04 14:54:58 | 000,000,618 | ---- | M] () -- C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\8e47wjau.default\searchplugins\icqplugin.src
    [2011.08.11 18:34:26 | 000,001,056 | ---- | M] () -- C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\8e47wjau.default\searchplugins\icqplugin.xml
    [2012.01.30 13:12:16 | 000,001,742 | ---- | M] () -- C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\8e47wjau.default\searchplugins\search-the-web.xml
    [2011.11.29 17:31:02 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
    [2010.07.28 13:07:21 | 000,000,000 | ---D | M] (Skype extension for Firefox) -- C:\Program Files (x86)\mozilla firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
    () (No name found) -- C:\USERS\LISA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8E47WJAU.DEFAULT\EXTENSIONS\{46551EC9-40F0-4E47-8E18-8E5CF550CFB8}.XPI
    [2012.01.25 21:39:08 | 000,121,816 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
    [2012.01.25 21:39:04 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
    [2012.01.25 21:39:04 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
    [2012.01.25 21:39:04 | 000,001,153 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
    [2012.01.25 21:39:04 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
    [2012.01.25 21:39:04 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml
    [2012.01.25 21:39:04 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
     
    O1 HOSTS File: ([2009.06.10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
    O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
    O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
    O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
    O2 - BHO: (QUICKfind BHO Object) - {C08DF07A-3E49-4E25-9AB0-D3882835F153} - C:\PROGRA~2\IDM\QUICKF~1\PlugIns\IEHelp.dll ()
    O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
    O3:64bit: - HKLM\..\Toolbar: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
    O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
    O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ)
    O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
    O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {147D6308-0614-4112-89B1-31402F9B82C4} - No CLSID value found.
    O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
    O4:64bit: - HKLM..\Run: [EKIJ5000StatusMonitor] C:\Windows\SysNative\spool\drivers\x64\3\EKIJ5000MUI.exe (Eastman Kodak Company)
    O4:64bit: - HKLM..\Run: [ePower_DMC] C:\Programme\Acer\Empowering Technology\ePower\ePower_DMC.exe (Acer Inc.)
    O4:64bit: - HKLM..\Run: [mwlDaemon] C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe (Egis Technology Inc.)
    O4:64bit: - HKLM..\Run: [PLFSetI] C:\Windows\PLFSetI.exe ()
    O4 - HKLM..\Run: [ArcadeDeluxeAgent] C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe (CyberLink Corp.)
    O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
    O4 - HKLM..\Run: [Conime] %windir%\system32\conime.exe File not found
    O4 - HKLM..\Run: [dcmsvc] C:\Program Files (x86)\dcmsvc\dcmsvc.exe ()
    O4 - HKLM..\Run: [EgisTecLiveUpdate] C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe (Egis Technology Inc.)
    O4 - HKLM..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe (Dritek System Inc.)
    O4 - HKLM..\Run: [PlayMovie] C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe (Acer Corp.)
    O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
    O4 - HKLM..\Run: [tuloxFreeWBF]  File not found
    O4 - HKCU..\Run: [EA Core] "C:\Program Files (x86)\Electronic Arts\EADM\Core.exe" -silent File not found
    O4 - HKCU..\Run: [L07DXLRD_90293] "C:\Program Files (x86)\Microsoft Lernen und Wissen\Microsoft Encarta 2007 – Lernen und Wissen DVD\EDICT.EXE" -m File not found
    O4 - HKCU..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe File not found
    O4 - HKCU..\Run: [rfxsrvtray] C:\Program Files (x86)\Tobit Radio.fx\Client\rfx-tray.exe (Tobit.Software)
    O4 - Startup: C:\Users\Lisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Warner Bros.lnk = C:\Program Files (x86)\Warner Bros. Digital Copy Manager\Warner Bros. Digital Copy Manager.exe ()
    O4 - Startup: C:\Users\Lisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WordWeb.lnk = C:\Program Files (x86)\WordWeb\wweb32.exe (Antony Lewis)
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
    O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000 File not found
    O8:64bit: - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\Lisa\AppData\Roaming\DVDVideoSoftIEHelpers\youtubetomp3.htm ()
    O8:64bit: - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~2\MICROS~3\OFFICE11\EXCEL.EXE/3000 File not found
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000 File not found
    O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\Lisa\AppData\Roaming\DVDVideoSoftIEHelpers\youtubetomp3.htm ()
    O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~2\MICROS~3\OFFICE11\EXCEL.EXE/3000 File not found
    O9:64bit: - Extra Button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Programme\Bonjour\ExplorerPlugin.dll (Apple Inc.)
    O9 - Extra Button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe (ICQ, LLC.)
    O9 - Extra 'Tools' menuitem : ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe (ICQ, LLC.)
    O9 - Extra Button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Program Files (x86)\Bonjour\ExplorerPlugin.dll (Apple Inc.)
    O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
    O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
    O9 - Extra Button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
    O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Programme\Bonjour\mdnsNSP.dll (Apple Inc.)
    O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
    O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
    O1364bit: - gopher Prefix: missing
    O13 - gopher Prefix: missing
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 139.7.30.126 139.7.30.125
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{23E228A0-D1B4-45AD-B094-BD59E9AAA5C0}: DhcpNameServer = 217.68.161.141 217.68.161.171
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2F03BC72-F7AA-40A3-967D-1AC9F9A2423B}: DhcpNameServer = 192.168.178.1
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EBFBEE82-D0F6-497A-B2EF-616A73C547EE}: DhcpNameServer = 139.7.30.126 139.7.30.125
    O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
    O18:64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
    O18:64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
    O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
    O18:64bit: - Protocol\Handler\mso-offdap - No CLSID value found
    O18:64bit: - Protocol\Handler\mso-offdap11 - No CLSID value found
    O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
    O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
    O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
    O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
    O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
    O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files (x86)\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL File not found
    O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL (Microsoft Corporation)
    O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
    O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
    O18:64bit: - Protocol\Filter\text/xml - No CLSID value found
    O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
    O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
    O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
    O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
    O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
    O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
    O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
    O32 - HKLM CDRom: AutoRun - 1
    O32 - AutoRun File - [2009.09.11 19:53:06 | 000,000,119 | R--- | M] () - H:\autorun.inf -- [ CDFS ]
    O33 - MountPoints2\{0565817f-5a07-11e0-ae4a-a3f0b6c08aa2}\Shell - "" = AutoRun
    O33 - MountPoints2\{0565817f-5a07-11e0-ae4a-a3f0b6c08aa2}\Shell\AutoRun\command - "" = F:\setup_vmc_lite.exe /checkApplicationPresence
    O33 - MountPoints2\{05cd918a-98cd-11df-bd71-001d72eab1f9}\Shell - "" = AutoRun
    O33 - MountPoints2\{05cd918a-98cd-11df-bd71-001d72eab1f9}\Shell\AutoRun\command - "" = F:\setup_vmc_lite.exe /checkApplicationPresence
    O33 - MountPoints2\{05cd919f-98cd-11df-bd71-001d72eab1f9}\Shell - "" = AutoRun
    O33 - MountPoints2\{05cd919f-98cd-11df-bd71-001d72eab1f9}\Shell\AutoRun\command - "" = H:\setup_vmc_lite.exe -- [2009.07.23 15:55:39 | 000,266,240 | R--- | M] (Vodafone)
    O33 - MountPoints2\{54097c58-9bf6-11df-8edd-001d72eab1f9}\Shell - "" = AutoRun
    O33 - MountPoints2\{54097c58-9bf6-11df-8edd-001d72eab1f9}\Shell\AutoRun\command - "" = G:\setup_vmc_lite.exe /checkApplicationPresence
    O33 - MountPoints2\{70e88b4a-ba59-11df-b85e-001d72eab1f9}\Shell - "" = AutoRun
    O33 - MountPoints2\{70e88b4a-ba59-11df-b85e-001d72eab1f9}\Shell\AutoRun\command - "" = F:\Startup.exe
    O33 - MountPoints2\{86185734-c67a-11df-a077-001d72eab1f9}\Shell - "" = AutoRun
    O33 - MountPoints2\{86185734-c67a-11df-a077-001d72eab1f9}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -a
    O33 - MountPoints2\{d60a7ff4-9ae6-11df-a3ed-001e101fb45e}\Shell - "" = AutoRun
    O33 - MountPoints2\{d60a7ff4-9ae6-11df-a3ed-001e101fb45e}\Shell\AutoRun\command - "" = F:\setup_vmc_lite.exe /checkApplicationPresence
    O33 - MountPoints2\{db55c4bb-9a29-11df-8c1a-001d72eab1f9}\Shell - "" = AutoRun
    O33 - MountPoints2\{db55c4bb-9a29-11df-8c1a-001d72eab1f9}\Shell\AutoRun\command - "" = G:\setup_vmc_lite.exe /checkApplicationPresence
    O33 - MountPoints2\F\Shell - "" = AutoRun
    O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\setup_vmc_lite.exe /checkApplicationPresence
    O33 - MountPoints2\G\Shell - "" = AutoRun
    O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\setup_vmc_lite.exe /checkApplicationPresence
    O33 - MountPoints2\H\Shell - "" = AutoRun
    O33 - MountPoints2\H\Shell\AutoRun\command - "" = H:\setup_vmc_lite.exe -- [2009.07.23 15:55:39 | 000,266,240 | R--- | M] (Vodafone)
    O34 - HKLM BootExecute: (autocheck autochk *)
    O35:64bit: - HKLM\..comfile [open] -- "%1" %*
    O35:64bit: - HKLM\..exefile [open] -- "%1" %*
    O35 - HKLM\..comfile [open] -- "%1" %*
    O35 - HKLM\..exefile [open] -- "%1" %*
    O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
    O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
    O37 - HKLM\...com [@ = comfile] -- "%1" %*
    O37 - HKLM\...exe [@ = exefile] -- "%1" %*
     
    [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
     
    [2012.02.16 03:01:23 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
    [2012.02.16 03:01:21 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
    [2012.02.16 03:01:15 | 002,308,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
    [2012.02.16 03:01:14 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
    [2012.02.16 03:01:14 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
    [2012.02.16 03:01:13 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
    [2012.02.16 03:01:11 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
    [2012.02.16 03:01:10 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
    [2012.02.16 03:01:09 | 000,818,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
    [2012.02.16 03:01:05 | 001,427,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
    [2012.02.16 03:01:04 | 001,493,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
    [2012.02.15 20:16:03 | 000,509,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntshrui.dll
    [2012.02.15 20:14:52 | 000,515,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\timedate.cpl
    [2012.02.15 20:14:51 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\timedate.cpl
    [2012.02.15 20:14:10 | 000,634,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msvcrt.dll
    [2012.02.08 21:57:12 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Local\{439A0277-CE30-424B-9944-13E00083DD1A}
    [2012.02.08 21:57:11 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Local\{D7CDEAE6-0436-41B4-83D9-0A92AB21ADBF}
    [2012.01.18 09:27:13 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Local\{AAE91971-E3F7-46FC-8EE4-B26F1B490021}
    [2012.01.18 09:22:01 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Local\{7B2FBE1F-E2E5-4FCE-9AF2-901C40EC1E08}
    [2012.01.18 09:18:11 | 000,000,000 | ---D | C] -- C:\Windows\de
    [2012.01.18 09:14:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
    [2012.01.18 09:12:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Windows Live
    [2012.01.18 09:11:59 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
    [2012.01.18 09:11:15 | 000,523,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_42.dll
    [2012.01.18 09:11:15 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_5.dll
    [2012.01.18 09:11:15 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_3.dll
    [2012.01.18 09:11:10 | 004,398,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_32.dll
    [2012.01.18 09:11:10 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_32.dll
    [2012.01.18 09:09:36 | 002,983,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbon.dll
    [2012.01.18 09:09:36 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbonRes.dll
    [2012.01.18 09:09:36 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIRibbonRes.dll
    [2012.01.18 09:09:35 | 003,860,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIRibbon.dll
    [2012.01.18 09:07:18 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Local\Windows Live
    [2009.11.03 20:42:43 | 000,036,136 | ---- | C] (Oberon Media) -- C:\ProgramData\FullRemove.exe
     
    [color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
     
    [2012.02.16 17:51:00 | 000,001,110 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
    [2012.02.16 16:51:06 | 000,001,106 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
    [2012.02.16 16:30:29 | 007,234,118 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
    [2012.02.16 16:30:29 | 002,599,110 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
    [2012.02.16 16:30:29 | 002,235,038 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
    [2012.02.16 16:30:29 | 002,004,050 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
    [2012.02.16 16:30:29 | 000,005,194 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
    [2012.02.16 16:30:07 | 000,017,376 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    [2012.02.16 16:30:07 | 000,017,376 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    [2012.02.16 16:20:04 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
    [2012.02.16 16:19:56 | 3018,559,488 | -HS- | M] () -- C:\hiberfil.sys
    [2012.02.16 04:04:04 | 000,412,960 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
    [2012.02.06 19:59:53 | 331,090,444 | ---- | M] () -- C:\Windows\MEMORY.DMP
    [2012.01.19 12:15:52 | 003,537,752 | ---- | M] (Tobit.Software) -- C:\Windows\RXSUnins.exe
    [2012.01.19 12:15:52 | 003,537,752 | ---- | M] (Tobit.Software) -- C:\Windows\RXCUnins.exe
     
    [color=#E56717]========== Files Created - No Company Name ==========[/color]
     
    [2012.01.18 09:16:34 | 000,001,309 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk
    [2012.01.18 09:15:26 | 000,001,378 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk
    [2012.01.10 08:01:16 | 000,004,096 | -H-- | C] () -- C:\Users\Lisa\AppData\Local\keyfile3.drm
    [2011.07.24 17:54:49 | 000,021,504 | ---- | C] () -- C:\Windows\jestertb.dll
    [2011.05.26 20:17:34 | 000,092,847 | ---- | C] () -- C:\Users\Lisa\AppData\Roaming\mdbu.bin
    [2011.05.11 07:23:34 | 000,000,000 | ---- | C] () -- C:\Users\Lisa\AppData\Local\{44DB8544-C2B6-417E-8E5E-CB08A2544898}
    [2011.05.11 07:22:06 | 000,000,000 | ---- | C] () -- C:\Users\Lisa\AppData\Local\{51B0C737-ED1A-451A-AC06-FEFEA2329223}
    [2011.04.09 17:55:28 | 000,179,261 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
    [2010.11.22 19:54:15 | 000,000,578 | ---- | C] () -- C:\Users\Lisa\AppData\Roaming\wklnhst.dat
    [2010.10.25 07:37:54 | 000,022,712 | ---- | C] () -- C:\Users\Lisa\AppData\Roaming\UserTile.png
    [2010.08.19 11:11:37 | 000,000,056 | -H-- | C] () -- C:\Windows\SysWow64\ezsidmv.dat
    [2010.08.12 16:35:59 | 000,554,496 | ---- | C] () -- C:\Windows\SysWow64\dvmsg.dll
    [2010.07.26 22:12:17 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
    [2010.07.26 18:05:52 | 000,000,400 | ---- | C] () -- C:\Windows\ODBC.INI
    [2010.07.26 12:12:51 | 000,626,688 | ---- | C] () -- C:\Windows\Image.dll
    [2010.07.26 12:12:51 | 000,200,704 | ---- | C] () -- C:\Windows\PLFSetI.exe
    [2010.07.26 12:12:51 | 000,020,480 | ---- | C] () -- C:\Windows\USB_VIDEO_REG.exe
    [2010.07.26 12:12:51 | 000,000,323 | ---- | C] () -- C:\Windows\PidList.ini
    [2010.01.26 08:23:56 | 000,001,005 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
    [2010.01.26 08:09:24 | 000,002,001 | ---- | C] () -- C:\Windows\WPatchProgress.ini
    [2009.11.25 12:40:50 | 000,085,504 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
    [2009.11.03 05:32:46 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
    [2009.11.03 05:21:12 | 000,000,193 | ---- | C] () -- C:\Windows\Prelaunch.ini
    [2009.11.03 05:21:12 | 000,000,168 | ---- | C] () -- C:\Windows\WisLangCode.ini
    [2009.11.03 05:21:12 | 000,000,147 | ---- | C] () -- C:\Windows\WisPriority.ini
    [2009.07.14 06:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
    [2009.07.14 03:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
    [2009.07.14 03:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
    [2009.07.14 01:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
    [2009.07.14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
    [2009.07.13 22:59:36 | 000,982,196 | ---- | C] () -- C:\Windows\SysWow64\igkrng500.bin
    [2009.07.13 22:59:36 | 000,139,824 | ---- | C] () -- C:\Windows\SysWow64\igfcg500.bin
    [2009.07.13 22:59:36 | 000,097,448 | ---- | C] () -- C:\Windows\SysWow64\igfcg500m.bin
    [2009.07.13 22:59:35 | 000,417,344 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng500.bin
    [2009.07.13 22:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
    [2009.06.16 12:25:02 | 000,121,512 | R--- | C] () -- C:\ProgramData\DeviceManager.xml.rc4
    [2009.06.10 22:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
    [2008.10.07 08:13:30 | 000,197,912 | ---- | C] () -- C:\Windows\SysWow64\physxcudart_20.dll
    [2008.10.07 08:13:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelTraditionalChinese.dll
    [2008.10.07 08:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSwedish.dll
    [2008.10.07 08:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSpanish.dll
    [2008.10.07 08:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSimplifiedChinese.dll
    [2008.10.07 08:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelPortugese.dll
    [2008.10.07 08:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelKorean.dll
    [2008.10.07 08:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelJapanese.dll
    [2008.10.07 08:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelGerman.dll
    [2008.10.07 08:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelFrench.dll
    [2004.08.31 10:32:48 | 000,327,680 | ---- | C] () -- C:\Windows\SysWow64\QFClient2.dll
    [1997.06.14 12:56:08 | 000,056,832 | ---- | C] () -- C:\Windows\SysWow64\iyvu9_32.dll
     
    [color=#E56717]========== LOP Check ==========[/color]
     
    [2010.07.26 21:46:49 | 000,000,000 | -HSD | M] -- C:\Users\Lisa\AppData\Roaming\.#
    [2010.09.30 06:16:11 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\Audacity
    [2010.08.18 11:26:17 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\Bioshock
    [2010.07.26 22:08:40 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\Blender Foundation
    [2012.01.06 00:03:52 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\com.warnerbros.DigitalCopyManager.449F66ACC381FDC604DC2AA255FEECEEBBBEE1E5.1
    [2010.09.07 11:23:47 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\DAEMON Tools Lite
    [2010.07.29 10:21:33 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\DVDVideoSoftIEHelpers
    [2010.07.26 15:06:33 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\GameConsole
    [2010.08.20 17:44:33 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\gnupg
    [2011.12.02 20:08:49 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\gtk-2.0
    [2011.11.24 21:00:10 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\ICQ
    [2011.08.15 07:13:46 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\Jens Lorek
    [2010.11.26 11:10:09 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\ldoce4
    [2011.08.19 21:03:17 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\mp3DirectCut
    [2011.12.27 16:54:53 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\Origin
    [2010.08.07 15:30:46 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\PlayFirst
    [2010.07.28 16:36:06 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\PowerCinema
    [2010.10.10 15:23:41 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\Scribus
    [2010.08.06 16:28:57 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\SoftDMA
    [2011.06.08 20:07:44 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\Temp
    [2010.11.22 19:54:18 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\Template
    [2010.07.26 22:47:06 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\Thunderbird
    [2010.08.15 15:47:14 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\Tobit
    [2011.07.17 14:28:24 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\Ubisoft
    [2010.08.27 12:23:57 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\ViquaSoft
    [2010.07.26 16:53:22 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\Vodafone
    [2012.01.06 00:07:36 | 000,032,640 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
     
    [color=#E56717]========== Purity Check ==========[/color]
     
     
     
    [color=#E56717]========== Alternate Data Streams ==========[/color]
     
    @Alternate Data Stream - 153 bytes -> C:\ProgramData\Temp:4D066AD2
    @Alternate Data Stream - 152 bytes -> C:\ProgramData\Temp:AB689DEA
    @Alternate Data Stream - 138 bytes -> C:\ProgramData\Temp:5D7E5A8F
    @Alternate Data Stream - 136 bytes -> C:\ProgramData\Temp:E1F04E8D
    @Alternate Data Stream - 133 bytes -> C:\ProgramData\Temp:93DE1838
    @Alternate Data Stream - 133 bytes -> C:\ProgramData\Temp:0B9176C0
    @Alternate Data Stream - 128 bytes -> C:\ProgramData\Temp:444C53BA
    @Alternate Data Stream - 125 bytes -> C:\ProgramData\Temp:E3C56885
    @Alternate Data Stream - 122 bytes -> C:\ProgramData\Temp:ABE89FFE
    @Alternate Data Stream - 118 bytes -> C:\ProgramData\Temp:4CF61E54
    
    < End of report >
    Code:
     OTL Extras logfile created on: 16.02.2012 18:18:47 - Run 1
    OTL by OldTimer - Version 3.2.32.0     Folder = C:\Users\Lisa\Downloads
    64bit- Home Premium Edition  (Version = 6.1.7600) - Type = NTWorkstation
    Internet Explorer (Version = 9.0.8112.16421)
    Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
     
    3,75 Gb Total Physical Memory | 2,26 Gb Available Physical Memory | 60,18% Memory free
    7,49 Gb Paging File | 5,66 Gb Available in Paging File | 75,54% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]
     
    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
    Drive C: | 438,79 Gb Total Space | 326,30 Gb Free Space | 74,36% Space Free | Partition Type: NTFS
    Drive D: | 5,46 Gb Total Space | 5,41 Gb Free Space | 99,00% Space Free | Partition Type: NTFS
    Drive H: | 43,64 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
     
    Computer Name: LISA-PC | User Name: Lisa | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
     
    [color=#E56717]========== Extra Registry (SafeList) ==========[/color]
     
     
    [color=#E56717]========== File Associations ==========[/color]
     
    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
     
    [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
    .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
     
    [color=#E56717]========== Shell Spawning ==========[/color]
     
    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    exefile [open] -- "%1" %*
    helpfile [open] -- Reg Error: Key error.
    inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
    InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
    InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
    Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
    Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [explore] -- Reg Error: Value error.
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
    exefile [open] -- "%1" %*
    helpfile [open] -- Reg Error: Key error.
    inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
    Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
    Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [explore] -- Reg Error: Value error.
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
     
    [color=#E56717]========== Security Center Settings ==========[/color]
     
    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "cval" = 1
     
    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
     
    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
    "VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
    "AntiVirusOverride" = 0
    "AntiSpywareOverride" = 0
    "FirewallOverride" = 0
     
    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
     
    [color=#E56717]========== Firewall Settings ==========[/color]
     
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1
     
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1
     
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1
     
    [color=#E56717]========== Authorized Applications List ==========[/color]
     
     
    [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
     
    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{0645A454-AD44-4F0D-99CF-6B762735AD1F}" = aioprnt
    "{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
    "{0E3DAF3D-FF69-345A-A99E-1FED304CA083}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
    "{180C8888-50F1-426B-A9DC-AB83A1989C65}" = Windows Live Language Selector
    "{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
    "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219
    "{27EF8E7F-88D1-4ec5-ADE2-7E447FDF114E}" = Kodak AIO Printer
    "{4C7C9273-E685-BE8F-C56A-D73252A7B421}" = ccc-utility64
    "{5EA69616-C13E-F906-0845-58E84AA0903B}" = ATI Catalyst Install Manager
    "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
    "{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}" = Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175
    "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
    "{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
    "{B7588D45-AFDC-4C93-9E2E-A100F3554B64}" = Microsoft Fix it Center
    "{DAE239CE-EB9D-4EB3-B0D4-528D6BAA48FD}" = Bonjour
    "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
    "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin 64-bit
    "CNXT_MODEM_HDA_HSF" = HDAUDIO Soft Data Fax Modem with SmartCP
    "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
    "Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
    "Recuva" = Recuva
    "SynTPDeinstKey" = Synaptics Pointing Device Driver
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{066340A4-1715-46BB-8685-B48960CD46AD}" = 10 Fun Games
    "{07103840-959A-4B0D-8825-2C533F0DDB19}" = Microsoft Mathe
    "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
    "{0EDBEB2B-7C8D-42E6-8312-0F84394A3223}" = Windows Media Center Add-in for Silverlight
    "{10467861-5234-6F56-5052-AA0E2ED256D5}" = CCC Help French
    "{10934A28-0CC6-4B98-A14F-76B3546003AF}" = ksDIP
    "{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now Standard
    "{147A8145-0AA6-0921-8414-9B1EE5A8108F}" = Warner Bros. Digital Copy Manager
    "{14A38D45-694A-9DB9-7B52-286339AE5873}" = CCC Help English
    "{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2
    "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
    "{1BA7B743-E521-AB52-38E9-65C486844EF6}" = CCC Help Norwegian
    "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
    "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
    "{234BB568-B9D5-9A5F-196C-E9B0FEDE9756}" = CCC Help Chinese Traditional
    "{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8
    "{24F5BFDD-18E0-41F6-8A68-A22C742FC4A1}" = TubeBox!
    "{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = Acer Arcade Deluxe
    "{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
    "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
    "{343EFA17-5BC5-44DA-924F-539ECBEFF68C}" = Viva Pinata
    "{376348C2-E372-48BC-A138-E896757BD86A}" = aioscnnr
    "{37B33B16-2535-49E7-8990-32668708A0A3}" = Windows Live UX Platform Language Pack
    "{38B32606-477A-9E86-9946-64168226A07B}" = CCC Help Spanish
    "{3C3A8B15-6E46-7CC4-ED87-FF193EE77815}" = CCC Help Korean
    "{3E84E806-55B0-D045-3A47-B810422AC7F7}" = CCC Help Russian
    "{427417CE-864B-2D13-6CD6-DCFD5CA33E59}" = CCC Help Hungarian
    "{44E6DE02-8C0D-4A23-8675-2BB1F78B53BC}" = Dynamic Photo Manager
    "{48B41C3A-9A92-4B81-B653-C97FEB85C910}" = C4USelfUpdater
    "{4B87796C-E986-C6E5-ADFD-A7FF14EE7E85}" = CCC Help Swedish
    "{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
    "{4F5B18A3-E921-4FFE-BEF4-ACBB98964FC2}" = AMD USB Filter Driver
    "{54165008-BF89-9B3F-3C40-61C7B60DD579}" = CCC Help Greek
    "{54D84BA3-538A-422C-ADAA-39EBACF98885}" = Dynamic Photo Manager
    "{56BA241F-580C-43D2-8403-947241AAE633}" = center
    "{58E5844B-7CE2-413D-83D1-99294BF6C74F}" = Acer ePower Management
    "{593AFFA4-D08E-4272-BABB-420949D32A10}" = QUICKfind
    "{5BE7BA90-B896-BDB7-4B40-E0B8AE5D1247}" = CCC Help Japanese
    "{5D8AB6E3-5F94-5DEB-8F70-04591DC5CBA4}" = CCC Help Portuguese
    "{62F7DA7E-CCCB-439C-A760-00C3926E761F}" = Microsoft Works
    "{63CFD835-FF50-4F8B-91CD-5662A8C640F8}" = Photo Transport
    "{64EEA791-0271-4B53-00AC-2BF05F5FBEF6}" = Die Sims™ Inselgeschichten
    "{6727D4D2-DB9F-29E9-D9E0-34971ABBF907}" = Catalyst Control Center Graphics Light
    "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
    "{68301905-2DEA-41CE-A4D4-E8B443B099BA}" = MyWinLocker
    "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
    "{6EAE1642-A90C-8881-E76D-DF795D70ADCD}" = ccc-core-static
    "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
    "{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
    "{71734598-0666-0CDA-8C78-3B46A2272CA8}" = CCC Help Italian
    "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
    "{73633A23-2855-7FF9-DAA0-65D11014EC57}" = CCC Help Chinese Standard
    "{7578ADEA-D65F-4C89-A249-B1C88B6FFC20}" = ICQ7.5
    "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
    "{7760D94E-B1B5-40A0-9AA0-ABF942108755}" = Acer Crystal Eye Webcam
    "{79A64F98-1796-4FA2-B5FF-C90F83D8BACD}" = Vodafone Mobile Connect Lite
    "{7C4C9DE0-017E-3F61-7E5C-0F52764F8303}" = CCC Help Turkish
    "{7E19B002-4CA3-4C9F-BA92-91D101B97219}" = James Cameron's AVATAR(tm): DAS SPIEL
    "{7F811A54-5A09-4579-90E1-C93498E230D9}" = Acer eRecovery Management
    "{8160D698-2652-F07E-3E2B-4F8F80817EE3}" = CCC Help Finnish
    "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
    "{8507C915-D1B4-59D0-AC19-1B0A8178F280}" = CCC Help German
    "{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
    "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
    "{8B18CFCF-2B70-FBD6-4F6E-25E12E3BE65F}" = Catalyst Control Center Core Implementation
    "{8B999A44-8314-493B-877E-A1DA5B54D9B8}" = Catalyst Control Center - Branding
    "{8CFA9151-6404-409A-AF22-4632D04582FD}" = Assassin's Creed
    "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
    "{8ed9688e-4f79-4308-91ca-f1c37ca142b4}_is1" = Acer GameZone Console
    "{8F1B6239-FEA0-450A-A950-B05276CE177C}" = Acer Empowering Technology
    "{90110407-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
    "{90120000-0020-0407-0000-0000000FF1CE}" = Compatibility Pack für 2007 Office System
    "{92975DF9-EA36-4F36-A9AC-D412BC1D709E}" = Nuvoton EC Generic HID Driver
    "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
    "{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader
    "{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars
    "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    "{9D318C86-AF4C-409F-A6AC-7183FF4CF424}" = Internet-TV für Windows Media Center
    "{9DA3239B-426A-F65C-5B66-C34294CA45A5}" = CCC Help Thai
    "{A09A59DC-391A-E961-2666-3756B91A7C20}" = CCC Help Polish
    "{A8D647C8-65AC-409F-B7B2-3C0FEE1A32F2}" = PixiePack Codec Pack
    "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
    "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
    "{AAF42F9E-8900-4FC1-8087-000B12A91AE2}" = Tunebite
    "{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.4.1 MUI
    "{AEDBD563-24BB-4EE3-8366-A654DAC2D988}" = Mirror's Edge™
    "{B113D18C-67B0-4FB7-B329-E89B66194AE6}" = Windows Live Fotogalerie
    "{B348E585-E872-41DF-8234-E2D49917CFBB}" = Werkzeuge und Vorlagen für Microsoft Office
    "{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}" = Die Sims™ 3 Reiseabenteuer
    "{BE94C681-68E2-4561-8ABC-8D2E799168B4}" = essentials
    "{BFBCF96F-7361-486A-965C-54B17AC35421}" = ocr
    "{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = Die Sims™ 3
    "{C12631C6-804D-4B32-B0DD-8A496462F106}" = Die Sims™ 3 Einfach tierisch
    "{C2AB7DC4-489E-4BE9-887A-52262FBADBE0}" = Windows Live Photo Common
    "{CC159AA8-6644-3909-881D-B3BB1F71BE15}" = CCC Help Dutch
    "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
    "{CFAECA54-E201-76A9-13CA-8A14FE0A5396}" = Catalyst Control Center Graphics Full New
    "{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.2
    "{D206D0BE-7683-E129-2969-CE6EA9CBB110}" = CCC Help Danish
    "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
    "{D6020571-527E-4E3A-603A-515577BB1BC3}" = Catalyst Control Center Localization All
    "{DA5BDB2A-12F0-4343-8351-21AAEB293990}" = PreReq
    "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
    "{E0F274B7-592B-4669-8FB8-8D9825A09858}" = KODAK All-in-One Software
    "{E280923D-C5D9-4728-8C79-AC9A0DC75875}" = BioShock
    "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
    "{E4D15328-8C89-484B-B9AA-F5BE9EA6D01C}" = NVIDIA PhysX v8.10.17
    "{E4E88B54-4777-4659-967A-2EED1E6AFD83}" = Windows Live Movie Maker
    "{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}" = Microsoft Office Suite Activation Assistant
    "{EDC3B1B4-CDA8-ADE0-EF2E-B28752FFFA7E}" = CCC Help Czech
    "{EE171732-BEB4-4576-887D-CB62727F01CA}" = Acer Updater
    "{EF53BFAB-4C10-40DB-A82D-9B07111715C6}" = aioscnnr
    "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
    "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
    "{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable
    "{F95E4EE0-0C6E-4273-B6B9-91FD6F071D76}" = Windows Live Essentials
    "{FD564ED9-36D5-1B93-EE1C-34EAC2B5AFF2}" = Catalyst Control Center Graphics Full Existing
    "{FE23D063-934D-4829-A0D8-00634CE79B4A}" = Adobe AIR
    "Acer Registration" = Acer Registration
    "Acer Screensaver" = Acer ScreenSaver
    "Acer Welcome Center" = Welcome Center
    "Adobe AIR" = Adobe AIR
    "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
    "Age of Empires" = Microsoft Age of Empires
    "Age of Empires 2.0" = Microsoft Age of Empires II
    "Age of Empires Expansion 1.0" = Microsoft Age of Empires Expansion
    "Age of Empires II: The Conquerors Expansion 1.0" = Microsoft Age of Empires II: The Conquerors Expansion
    "Alone In The Dark_is1" = Alone In The Dark
    "Audacity 1.3 Beta (Unicode)_is1" = Audacity 1.3.10 (Unicode)
    "Audacity_is1" = Audacity 1.2.6
    "Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
    "AVS Update Manager_is1" = AVS Update Manager 1.0
    "AVS4YOU Software Navigator_is1" = AVS4YOU Software Navigator 1.4
    "AVS4YOU Video Converter 7_is1" = AVS Video Converter 8
    "CCleaner" = CCleaner
    "com.warnerbros.DigitalCopyManager.449F66ACC381FDC604DC2AA255FEECEEBBBEE1E5.1" = Warner Bros. Digital Copy Manager
    "dcmsvc_is1" = dcmsvc 1.0
    "EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v5.50
    "Free Audio CD Burner_is1" = Free Audio CD Burner version 1.4
    "Free YouTube Downloader Converter" = Free YouTube Downloader Converter
    "Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.8
    "GameSpy Arcade" = GameSpy Arcade
    "GridVista" = Acer GridVista
    "ICQToolbar" = ICQ Toolbar
    "Identity Card" = Identity Card
    "InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now 5
    "InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2
    "InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8
    "InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = Acer Arcade Deluxe
    "InstallShield_{343EFA17-5BC5-44DA-924F-539ECBEFF68C}" = Viva Piñata
    "Klett Software Sicher ins Abitur" = Klett Software Sicher ins Abitur
    "LManager" = Launch Manager
    "Mozilla Firefox 9.0.1 (x86 de)" = Mozilla Firefox 9.0.1 (x86 de)
    "Mozilla Thunderbird (3.1.17)" = Mozilla Thunderbird (3.1.17)
    "MP3DirectCut" = MP3DirectCut 2.12
    "Origin" = Origin
    "Scribus 1.3.8" = Scribus 1.3.8
    "SYBEX Power Sudoku_is1" = SYBEX Power Sudoku
    "Tobit Radio.fx Server" = Radio.fx
    "tulox Freeware-Wörterbuch (Französisch)" = tulox Freeware-Wörterbuch (Französisch)
    "Uninstall_is1" = Uninstall 1.0.0.1
    "VLC media player" = VLC media player 1.1.0
    "WinGimp-2.0_is1" = GIMP 2.6.11
    "WinLiveSuite" = Windows Live Essentials
    "WordWeb" = WordWeb
     
    [color=#E56717]========== Last 10 Event Log Errors ==========[/color]
     
    Error reading Event Logs: The Event Service is not operating properly or the Event Logs are corrupt!
     
    < End of report >

    Hier ist mein ursprünglicher text den ich gepostet hatte und wodurch ich den tipp mit OTL bekam:

    hallöchen,
    ich habe einen acer-laptop mit windows 7. seit ende januar hab ich jetzt jedoch das problem, dass mein laptop total lahm ist. selbst einfache seiten brauchen teilweise ewig, bis sie geladen haben, sowohl, wenn ich nur so auf meinem laptop unterwegs bin, als auch im i-net. so im internet surfen geht noch, aber spiele kann ich zum beispiel kaum noch im i-net spielen. außerdem knackt es, wenn ich mir was anhöre oder videos anschaue. zunächst dachte ich, das liegt an den integrierten laptop-boxen, jedoch ist dieses knackgeräusch auch vorhanden, wenn ich meine computerboxen anschließe. da ich den laptop für die schule brauche , ist das ziemlich belastend.
    ich hab auch schon meine festplatte defragmentiert und den laptop auf viren untersucht. jedoch brachte das keine änderung zustande...
    ich habe 2 theorien, was daran liegen könnte und was in den zeitraum passen könnte, seitdem mein laptop so langsam ist. zum einen war mein laptop 2 tage lang in einem relativ kalten raum (vlt 14°?) und wurde kaum genutzt und konnte sich somit nicht wirklich aufheitzen. deswegen hab ich ein wenig bammel, dass er jetzt kälteschäden^^ davon getragen hat, jedoch kam das schonmal öfters vor und da gab es nie i-welche probleme.
    außerdem hab ich mich in diesem zeitraum ungefähr auf einer seite angemeldet, die mir eh net so 100% koscher war und die ich mit facebook verbunden hab um hilfe für mein spiel zu haben. dafür musste ich auch ein add on auf firefox installieren. jedoch hab ich das add on wieder gelöscht, aber leider hab ich noch net heraus gefunden, wie ich mich auf dieser seite löschen kann. jetzt hab ich angst, dass diese seite mir irgendein spy-programm oder so untergeschmuggelt hat und deswegen alles so langsam ist...

    kann mir vlt i-jemand helfen? würd mich echt freuen...

    LG
    447e...aber ich hätte gern noch mehr

  2. #2
    wurde beim Posten geblitzt Benutzerbild von Das kleine Streiferly
    [im Abistress :/]

    Dabei seit
    19.12.2007
    Alter
    22
    Beiträge
    2.419

    Re: logfiles vom total lahmen laptop

    kann mir echt niemand helfen?
    447e...aber ich hätte gern noch mehr

  3. #3
    Made by GIGA
    [Oberboss]

    Dabei seit
    11.08.2005
    Beiträge
    2.753

    Re: logfiles vom total lahmen laptop

    Ich werde es mal versuchen, habe allerdings seit Jahren nichts mehr mit dem Thema zu tun, bin also nicht auf dem neuesten Stand.

    Also wenn es an der Hardware liegt kann man natürlich nichts machen, 14°C sind ja kein Problem, Hauptsache es war nicht nass oder ähnliches.

    Was die Logfiles angeht, kann ich dir HiJackThis empfehlen.
    Download von Chip.de
    online Auswertung
    Lade es herunter, dann starte den PC ohne Internetanschluss und im abgesicherten Modus neu.
    Dann führe HJT aus und speichere den Logfile.
    Bevor du fortfährst scanne nochmals den ganzen Rechner mit deinem Virenscanner, da Rootkits im abgesicherten Modus nicht funktionieren sollten.
    Internetanschluss wieder herstellen und Logfile hochladen, bzw. zusätzlich hier posten.

    Bist du der Benutzer "lisa"? Dann weißt du wohl am besten welche der aufgelisteten Programme installiert sind und welche dort nicht hingehört.
    Falls es an Schadsoftware liegt nehme ich an, das sie keine Profisoftware ist, da du den Unterschied an deinem System bemerkst.
    Dann könntest du sie auf diese Weise finden nehme ich an.
    Ich hoffe das ich nicht all zu sehr aus der Materie bin und keinen Unsinn erzähle.

  4. #4
    wurde beim Posten geblitzt Benutzerbild von Das kleine Streiferly
    [im Abistress :/]

    Dabei seit
    19.12.2007
    Alter
    22
    Beiträge
    2.419

    Re: logfiles vom total lahmen laptop

    Ja, lisa bin ich, aber da der manche programme nur mit zahlen und i-welchen englischen programmen anzeigt, weiß ich nichts damit anzufangen^^

    Also hab jetzt im abgesicherten modus nen virenscan gemacht und diesen scan von hijackthis
    Hier ist der logfile dazu:

    Code:
     Logfile of Trend Micro HijackThis v2.0.4
    Scan saved at 17:52:44, on 25.02.2012
    Platform: Windows 7  (WinNT 6.00.3504)
    MSIE: Internet Explorer v9.00 (9.00.8112.16421)
    Boot mode: Safe mode
    
    Running processes:
    C:\Users\Lisa\Downloads\HiJackThis204.exe
    
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0407&m=aspire_8530&r=273607108206l0338zqj5t45j14642
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0407&m=aspire_8530&r=273607108206l0338zqj5t45j14642
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0407&m=aspire_8530&r=273607108206l0338zqj5t45j14642
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
    R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll
    R3 - URLSearchHook: (no name) -  - (no file)
    F2 - REG:system.ini: UserInit=userinit.exe
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
    O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O2 - BHO: QUICKfind BHO Object - {C08DF07A-3E49-4E25-9AB0-D3882835F153} - C:\PROGRA~2\IDM\QUICKF~1\PlugIns\IEHelp.dll
    O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll
    O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [EgisTecLiveUpdate] "C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe"
    O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
    O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
    O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
    O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    O4 - HKLM\..\Run: [Conime] %windir%\system32\conime.exe
    O4 - HKLM\..\Run: [dcmsvc] C:\Program Files (x86)\dcmsvc\dcmsvc.exe
    O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    O4 - HKCU\..\Run: [L07DXLRD_90293] "C:\Program Files (x86)\Microsoft Lernen und Wissen\Microsoft Encarta 2007 – Lernen und Wissen DVD\EDICT.EXE" -m
    O4 - HKCU\..\Run: [EA Core] "C:\Program Files (x86)\Electronic Arts\EADM\Core.exe" -silent
    O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
    O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11e_Plugin.exe -update plugin
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOKALER DIENST')
    O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOKALER DIENST')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETZWERKDIENST')
    O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETZWERKDIENST')
    O4 - HKUS\S-1-5-18\..\RunOnce: [KodakHomeCenter] "C:\Program Files (x86)\Kodak\AiO\Center\AiOHomeCenter.exe" (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\RunOnce: [KodakHomeCenter] "C:\Program Files (x86)\Kodak\AiO\Center\AiOHomeCenter.exe" (User 'Default user')
    O4 - Startup: Warner Bros.lnk = C:\Program Files (x86)\Warner Bros. Digital Copy Manager\Warner Bros. Digital Copy Manager.exe
    O4 - Startup: WordWeb.lnk = C:\Program Files (x86)\WordWeb\wweb32.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
    O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~2\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe
    O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe
    O9 - Extra button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Program Files (x86)\Bonjour\ExplorerPlugin.dll
    O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O9 - Extra button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\OFFICE11\REFIEBAR.DLL
    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
    O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
    O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
    O23 - Service: Avira AntiVir Planer (AntiVirSchedulerService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
    O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
    O23 - Service: Bonjour-Dienst (Bonjour Service) - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
    O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
    O23 - Service: GRegService (Greg_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
    O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    O23 - Service: Google Update-Dienst (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: ICQ Service - Unknown owner - C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: Kodak AiO Network Discovery Service - Eastman Kodak Company - C:\Program Files (x86)\Kodak\AiO\Center\EKAiOHostService.exe
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
    O23 - Service: MyWinLocker Service (MWLService) - Egis Technology Inc. - C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
    O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
    O23 - Service: Druckwarteschlange (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
    O23 - Service: Updater Service - Acer - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
    O23 - Service: Vodafone Mobile Connect Service (VMCService) - Vodafone - C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
    
    --
    End of file - 11362 bytes
    Hab das ganze auch mal bei der online-auswertung eingegeben.
    Die meisten dateien waren neutral bis sehr sicher.
    Bei der datei R3 - URLSearchHook: (no name) - - (no file) steht da Schädlich (2.72 / 5.00).
    die folgende datei: O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll stand 2x da und da stand als auswertung: Prüfen Sie Ihre Festplatte mit Spybot S&D von Kolla.de oder LSPFix von Cexx.org!
    Hab einige dateien wo als auswertung folgendes steht: Der angebliche Systemprozess läuft nicht im System32 Ordner und ist deshalb als schädlich einzustufen. Obwohl da immer neutral bis sehr sicher steht.

    Ich muss sagen, dass mein laptop im abgesicherten modus viel schneller war. Also quasi so wie früher auch. Aber bin mir net sicher, ob das daran liegt, dass dieses spy-programm im abgesicherten modus net aktiviert ist, oder ob es daran liegt, dass der laptop allgemein mit weniger dateien kämpfen muss^^
    Geändert von Das kleine Streiferly (25.02.2012 um 20:00 Uhr)
    447e...aber ich hätte gern noch mehr

  5. #5
    Made by GIGA
    [Oberboss]

    Dabei seit
    11.08.2005
    Beiträge
    2.753

    Re: logfiles vom total lahmen laptop

    Entschuldige, dass ich jetzt erst antworte.
    Wenn dort etwas als Schädlich eingestuft ist, ist das natürlich immer schon schlecht.

    Du sollstest diesem Punkt mit HJT fixen und eventuell deinen Rechner allgemein mal aufräumen, also unbenötigte Programme deinstallieren und vor allem Programme aus dem Autostart nehmen, das hilft nach meiner Erfahrung immer bei schlechter Performance.

    Die Länge deines Logfiles weißt ja schon alleine darauf hin, was da alles dein System belastet, ob Schadsoftware oder nicht.

  6. #6
    wurde beim Posten geblitzt Benutzerbild von Das kleine Streiferly
    [im Abistress :/]

    Dabei seit
    19.12.2007
    Alter
    22
    Beiträge
    2.419

    Re: logfiles vom total lahmen laptop

    also diese hook datei hab ich jetzt gelöscht, außerdem hab ich mir dieses spy s & d runtergeladen und meinen lappi nochmal damit gecheckt, es hat zwar auch 5 dateien gefunden, aber das waren nur i-welche cookies und nicht die 2 dateien, die von hijackthis gefunden wurden. und hjt kann die net löschen, der sagt, ich soll das mit spy s& d machen.
    ich bin mir auch net sicher, ob ich die dateien löschen soll, wo steht, dass die net im system 32 vorhanden und deswegen schädlich sind. hab ein bisschen bammel, dass, wenn ich die lösche, dann i-was systemmäßiges net stimmt, weil die datei wichtig war...
    447e...aber ich hätte gern noch mehr

  7. #7
    ein Tag hat 86.400 Postings Benutzerbild von dongeiss
    [Geissenhaft]

    Dabei seit
    26.04.2004
    Beiträge
    57.395

    Re: logfiles vom total lahmen laptop

    virenbefall automatisch reinigen zu lassen ohne grundwissen ist immer heikel....
    stell dich darauf ein, dass du deine wichtigen daten vom backup auf eine formatierte und neu installiertes windows kopieren musst. <- so sparst du eine menge zeit und du musst dich nicht ständig fragen "ist der virus/trojaner immer noch aktiv?"

    altgriechische weisheit: «Surmayye a'raasac!»

  8. #8
    Made by GIGA
    [Oberboss]

    Dabei seit
    11.08.2005
    Beiträge
    2.753

    Re: logfiles vom total lahmen laptop

    Sollte dein System wirklich infiziert sein, kann ich dongeiss nur beipflichten.
    Ein einmal infiziertes System ist nie wieder sicher. Bei unprofessioneller Schadsoftware kannst du dir nach dem formatieren ziemlich sicher sein, dass dein Rechner nicht mehr infiziert ist.
    Das würde auch sonst dein System gut entrumpeln.
    Ist auf jeden Fall die sicherste Methode. Beim Backup allerdings keine .exe oder andere ausführbaren Dateien sichern.
    Auch keine .iso Dateien oder ähnliches, lediglich Dokumente, Bilder und Videos würde ich als vergleichweise Sicher beschreiben.

    Wenn du wirkliche Sicherheit willst und wichtige Daten bearbeitest, solltest du wirklich formatieren und dein System neu auflegen.

  9. #9
    wurde beim Posten geblitzt Benutzerbild von Das kleine Streiferly
    [im Abistress :/]

    Dabei seit
    19.12.2007
    Alter
    22
    Beiträge
    2.419

    Re: logfiles vom total lahmen laptop

    also erstmal zu dem backup. als ich den laptop gekauft hatte, war windows 7 schon vorinstalliert und es gab keine software-cd dazu. deswegen hatte ich nach der installation erstmal ein backup gemacht (fast 2 jahre her). kann ich die da jetzt nicht nehmen, oder soll ich wirklich ein neues machen? weil im grunde kann ich ja wichtige dateien und bilder und so auf'n stick machen.
    dann hab ich folgendes gelesen
    Stellen Sie als Erstes sicher, dass der Computer überhaupt über eine CD oder DVD gebootet werden kann. Die nötige Einstellung müssen Sie unter Umständen im Bios vornehmen.
    was genau heißt das und wie finde ich das raus, ohne im bios rummehren zu müssen. da ich, was sowas angeht, ziemlich unsicherbin, will ich nicht unbedingt im bios rumkramen, aus angst, der fliegt mir dann um die ohren, wenn ich ausversehen was falsch mache ich weiß auch garnet, welche taste ich beim hochfahren nochmal drücken musste, um da rein zu kommen ...
    447e...aber ich hätte gern noch mehr

  10. #10
    ein Tag hat 86.400 Postings Benutzerbild von dongeiss
    [Geissenhaft]

    Dabei seit
    26.04.2004
    Beiträge
    57.395

    Re: logfiles vom total lahmen laptop

    Im BIOS stellst du lediglich die Boot Reihenfolge ein, damit auf der cd/DVD als erstes nach einem Windows gesucht wird. Auf der Acer.de Website kannst du das Handbuch runterladen.

    altgriechische weisheit: «Surmayye a'raasac!»


 

Forumregeln

  • Neue Themen erstellen: Nein
  • Themen beantworten: Nein
  • Anhänge hochladen: Nein
  • Beiträge bearbeiten: Nein
  •  
User Editable Threads, Thread Admins and Group Moderators provided by Threadmins and Group Moderators (Lite) - vBulletin Mods & Addons Copyright © 2014 DragonByte Technologies Ltd.