Zeige Ergebnis 1 bis 5 von 5

Thema: AsScrPro.exe problem.....

  1. #1
    Einsteiger
    Registriert seit
    18.02.2010
    Beiträge
    3

    AsScrPro.exe problem.....

    Hallo zusammen,
    bin auf euer Forum gestoßen auf der suche nach hilfe meines Problems.

    Also wie im Titel bekannt gegeben geht es um den AsScrPro.exe virus/trojaner/wurm was auch immer (sorry habe davon nicht so die ahnung).

    Symptome: Windows 7 startet sehr sehr langsam, nachdem ich mein Kennwort eingegeben habe und Windows 7 hochgefahren wurde startet kurz ein Sytemfenster/Dosfenster und verschwindet sofort wieder. Mein Rechner ist weiterhin sehr langsam, das ist internet trotz 54 M/bit Leitung ist verdammt langsam. Naja mehr konnte ich zur zeit nicht feststellen.....
    Kaspersky erkennt dies außerdem nicht als Virus an.
    Zudem ist meine CPU Auslastung relativ hoch mit schwankungen zwischen 27% und 48%...kenne dies von alten Betriebssystemen nicht. Habe versucht die exe datei zu löschen, jedoch wurde mir immer gesagt das ich dafür administratorrechte benötige. Aber mein Hauptname ist mein Adminestrator....komisch komisch komisch

    Hier die Logs die ich mit Hilfe eurer Programme erstellt habe

    Code:
    OTL logfile created on: 18.02.2010 14:50:32 - Run 2
    OTL by OldTimer - Version 3.1.28.0     Folder = C:\Users\PICO\Downloads
     Home Premium Edition  (Version = 6.1.7600) - Type = NTWorkstation
    Internet Explorer (Version = 8.0.7600.16385)
    Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
     
    3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 65,00% Memory free
    6,00 Gb Paging File | 5,00 Gb Available in Paging File | 81,00% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]
     
    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
    Drive C: | 232,88 Gb Total Space | 170,45 Gb Free Space | 73,19% Space Free | Partition Type: NTFS
    Drive D: | 221,16 Gb Total Space | 212,37 Gb Free Space | 96,02% Space Free | Partition Type: NTFS
    E: Drive not present or media not loaded
    F: Drive not present or media not loaded
    G: Drive not present or media not loaded
    H: Drive not present or media not loaded
    I: Drive not present or media not loaded
     
    Computer Name: P_I_C_O
    Current User Name: PICO
    Logged in as Administrator.
     
    Current Boot Mode: Normal
    Scan Mode: Current user
    Company Name Whitelist: Off
    Skip Microsoft Files: Off
    File Age = 30 Days
    Output = Minimal
     
    ========== Processes (SafeList) ==========
     
    PRC - C:\Users\PICO\Downloads\OTL.exe (OldTimer Tools)
    PRC - C:\Programme\ICQ7.0\ICQ.exe (ICQ, Inc.)
    PRC - C:\Programme\ICQ6Toolbar\ICQ Service.exe ()
    PRC - C:\Programme\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)
    PRC - C:\Windows\explorer.exe (Microsoft Corporation)
    PRC - C:\Programme\Skype\Phone\Skype.exe (Skype Technologies S.A.)
    PRC - C:\Programme\Skype\Plugin Manager\skypePM.exe (Skype Technologies)
    PRC - C:\Windows\System32\atieclxx.exe (AMD)
    PRC - C:\Windows\System32\atiesrxx.exe (AMD)
    PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation)
    PRC - C:\Programme\Windows Sidebar\sidebar.exe (Microsoft Corporation)
    PRC - C:\Windows\System32\audiodg.exe (Microsoft Corporation)
    PRC - C:\Programme\VIA\VIAudioi\VDeck\VDECK.EXE (VIA)
    PRC - C:\Programme\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Advanced Micro Devices Inc.)
    PRC - C:\Programme\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (ATI Technologies Inc.)
    PRC - C:\Programme\Elantech\ETDCtrl.exe (ELAN Microelectronic Corp.)
    PRC - C:\Programme\SRS Labs\SRS Premium Sound\SRS_VolSync.exe (SRS Labs, Inc.)
    PRC - C:\Programme\ASUS\ATK Hotkey\HControl.exe (ASUS)
    PRC - C:\Programme\ASUS\Wireless Console 3\wcourier.exe ()
    PRC - C:\Programme\ASUS\ATK Hotkey\WDC.exe (ASUS)
    PRC - C:\Programme\ASUS\SmartLogon\sensorsrv.exe (ASUS)
    PRC - C:\Programme\P4G\BatteryLife.exe (ATK)
    PRC - C:\Programme\ASUS\ASUS CopyProtect\ASPG.exe (ASUS)
    PRC - C:\Programme\ASUS\Splendid\ACMON.exe (ATK)
    PRC - C:\Programme\ASUS\ATKOSD2\ATKOSD2.exe (ASUS)
    PRC - C:\Programme\ASUS\ATK Media\DMedia.exe (ASUS)
    PRC - C:\Programme\ASUS\ATK Hotkey\MsgTranAgt.exe (ASUS)
    PRC - C:\Programme\ASUS\ATK Hotkey\HControlUser.exe (ASUS)
    PRC - C:\Programme\ASUS\ATK Hotkey\KBFiltr.exe (ASUS)
    PRC - C:\Programme\ASUS\ATK Hotkey\AsLdrSrv.exe ()
    PRC - C:\Programme\ASUS\ATK Hotkey\ATKOSD.exe (ASUS)
    PRC - C:\Programme\CyberLink\Power2Go\CLMLSvc.exe (CyberLink)
    PRC - C:\Programme\Common Files\LightScribe\LSSrvc.exe (Hewlett-Packard Company)
    PRC - C:\Programme\Common Files\LightScribe\LightScribeControlPanel.exe (Hewlett-Packard Company)
    PRC - C:\Programme\Common Files\Adobe\Updater6\Adobe_Updater.exe (Adobe Systems Incorporated)
    PRC - C:\Programme\ASUS\ASUS Data Security Manager\ADSMTray.exe (ASUSTek Computer Inc.)
    PRC - C:\Programme\ASUS\ASUS Data Security Manager\ADSMSrv.exe (ASUSTek Computer Inc.)
    PRC - C:\Programme\ASUS\ASUS Live Update\ALU.exe ()
    PRC - C:\Programme\ATKGFNEX\GFNEXSrv.exe ()
    PRC - C:\Windows\System32\ACEngSvr.exe (ASUSTeK)
     
     
    ========== Modules (SafeList) ==========
     
    MOD - C:\Users\PICO\Downloads\OTL.exe (OldTimer Tools)
    MOD - C:\Windows\System32\sspicli.dll (Microsoft Corporation)
    MOD - C:\Windows\System32\sechost.dll (Microsoft Corporation)
    MOD - C:\Windows\System32\samcli.dll (Microsoft Corporation)
    MOD - C:\Windows\System32\profapi.dll (Microsoft Corporation)
    MOD - C:\Windows\System32\netutils.dll (Microsoft Corporation)
    MOD - C:\Windows\System32\KernelBase.dll (Microsoft Corporation)
    MOD - C:\Windows\System32\dwmapi.dll (Microsoft Corporation)
    MOD - C:\Windows\System32\devobj.dll (Microsoft Corporation)
    MOD - C:\Windows\System32\cryptbase.dll (Microsoft Corporation)
    MOD - C:\Windows\System32\cfgmgr32.dll (Microsoft Corporation)
    MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll (Microsoft Corporation)
    MOD - C:\Programme\Elantech\ETDApix.dll (ELAN Microelectronic Corp.)
     
     
    ========== Win32 Services (SafeList) ==========
     
    SRV - (ICQ Service) -- C:\Programme\ICQ6Toolbar\ICQ Service.exe ()
    SRV - (AMD External Events Utility) -- C:\Windows\System32\atiesrxx.exe (AMD)
    SRV - (WwanSvc) -- C:\Windows\System32\wwansvc.dll (Microsoft Corporation)
    SRV - (WbioSrvc) -- C:\Windows\System32\wbiosrvc.dll (Microsoft Corporation)
    SRV - (Power) -- C:\Windows\System32\umpo.dll (Microsoft Corporation)
    SRV - (Themes) -- C:\Windows\System32\themeservice.dll (Microsoft Corporation)
    SRV - (sppuinotify) -- C:\Windows\System32\sppuinotify.dll (Microsoft Corporation)
    SRV - (RpcEptMapper) -- C:\Windows\System32\RpcEpMap.dll (Microsoft Corporation)
    SRV - (SensrSvc) -- C:\Windows\System32\sensrsvc.dll (Microsoft Corporation)
    SRV - (PNRPsvc) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
    SRV - (p2pimsvc) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
    SRV - (HomeGroupProvider) -- C:\Windows\System32\provsvc.dll (Microsoft Corporation)
    SRV - (PNRPAutoReg) -- C:\Windows\System32\pnrpauto.dll (Microsoft Corporation)
    SRV - (WinDefend) -- C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation)
    SRV - (HomeGroupListener) -- C:\Windows\System32\ListSvc.dll (Microsoft Corporation)
    SRV - (FontCache) -- C:\Windows\System32\FntCache.dll (Microsoft Corporation)
    SRV - (Dhcp) -- C:\Windows\System32\dhcpcore.dll (Microsoft Corporation)
    SRV - (defragsvc) -- C:\Windows\System32\defragsvc.dll (Microsoft Corporation)
    SRV - (BDESVC) -- C:\Windows\System32\bdesvc.dll (Microsoft Corporation)
    SRV - (AxInstSV) ActiveX-Installer (AxInstSV) -- C:\Windows\System32\AxInstSv.dll (Microsoft Corporation)
    SRV - (AppIDSvc) -- C:\Windows\System32\appidsvc.dll (Microsoft Corporation)
    SRV - (sppsvc) -- C:\Windows\System32\sppsvc.exe (Microsoft Corporation)
    SRV - (AVP) -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe (Kaspersky Lab)
    SRV - (SRS_VolSync_Service) -- C:\Program Files\SRS Labs\SRS Premium Sound\SRS_VolSync.exe (SRS Labs, Inc.)
    SRV - (fsssvc) -- C:\Program Files\Windows Live\Family Safety\fsssvc.exe (Microsoft Corporation)
    SRV - (odserv) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE (Microsoft Corporation)
    SRV - (ASLDRService) -- C:\Programme\ASUS\ATK Hotkey\AsLdrSrv.exe ()
    SRV - (LightScribeService) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe (Hewlett-Packard Company)
    SRV - (ADSMService) -- C:\Programme\ASUS\ASUS Data Security Manager\ADSMSrv.exe (ASUSTek Computer Inc.)
    SRV - (ATKGFNEXSrv) -- C:\Programme\ATKGFNEX\GFNEXSrv.exe ()
    SRV - (ose) -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
     
     
    ========== Driver Services (SafeList) ==========
     
    DRV - (KLIF) -- C:\Windows\System32\drivers\klif.sys (Kaspersky Lab)
    DRV - (kl1) -- C:\Windows\System32\drivers\kl1.sys (Kaspersky Lab)
    DRV - (atikmdag) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
    DRV - (AsDsm) -- C:\Windows\System32\drivers\AsDsm.sys (ASUSTek Computer Inc)
    DRV - (cmdide) -- C:\Windows\system32\DRIVERS\cmdide.sys (CMD Technology, Inc.)
    DRV - (adpahci) -- C:\Windows\system32\DRIVERS\adpahci.sys (Adaptec, Inc.)
    DRV - (adp94xx) -- C:\Windows\system32\DRIVERS\adp94xx.sys (Adaptec, Inc.)
    DRV - (amdsbs) -- C:\Windows\system32\DRIVERS\amdsbs.sys (AMD Technologies Inc.)
    DRV - (adpu320) -- C:\Windows\system32\DRIVERS\adpu320.sys (Adaptec, Inc.)
    DRV - (arcsas) -- C:\Windows\system32\DRIVERS\arcsas.sys (Adaptec, Inc.)
    DRV - (amdsata) -- C:\Windows\system32\DRIVERS\amdsata.sys (Advanced Micro Devices)
    DRV - (arc) -- C:\Windows\system32\DRIVERS\arc.sys (Adaptec, Inc.)
    DRV - (amdxata) -- C:\Windows\system32\DRIVERS\amdxata.sys (Advanced Micro Devices)
    DRV - (aliide) -- C:\Windows\system32\DRIVERS\aliide.sys (Acer Laboratories Inc.)
    DRV - (nvstor) -- C:\Windows\system32\DRIVERS\nvstor.sys (NVIDIA Corporation)
    DRV - (nvraid) -- C:\Windows\system32\DRIVERS\nvraid.sys (NVIDIA Corporation)
    DRV - (nfrd960) -- C:\Windows\system32\DRIVERS\nfrd960.sys (IBM Corporation)
    DRV - (LSI_SAS) -- C:\Windows\system32\DRIVERS\lsi_sas.sys (LSI Corporation)
    DRV - (iaStorV) -- C:\Windows\system32\DRIVERS\iaStorV.sys (Intel Corporation)
    DRV - (MegaSR) -- C:\Windows\system32\DRIVERS\MegaSR.sys (LSI Corporation, Inc.)
    DRV - (KSecPkg) -- C:\Windows\System32\Drivers\ksecpkg.sys (Microsoft Corporation)
    DRV - (LSI_SCSI) -- C:\Windows\system32\DRIVERS\lsi_scsi.sys (LSI Corporation)
    DRV - (LSI_FC) -- C:\Windows\system32\DRIVERS\lsi_fc.sys (LSI Corporation)
    DRV - (LSI_SAS2) -- C:\Windows\system32\DRIVERS\lsi_sas2.sys (LSI Corporation)
    DRV - (iirsp) -- C:\Windows\system32\DRIVERS\iirsp.sys (Intel Corp./ICP vortex GmbH)
    DRV - (megasas) -- C:\Windows\system32\DRIVERS\megasas.sys (LSI Corporation)
    DRV - (hwpolicy) -- C:\Windows\System32\drivers\hwpolicy.sys (Microsoft Corporation)
    DRV - (elxstor) -- C:\Windows\system32\DRIVERS\elxstor.sys (Emulex)
    DRV - (aic78xx) -- C:\Windows\system32\DRIVERS\djsvs.sys (Adaptec, Inc.)
    DRV - (HpSAMD) -- C:\Windows\system32\DRIVERS\HpSAMD.sys (Hewlett-Packard Company)
    DRV - (FsDepends) -- C:\Windows\System32\drivers\fsdepends.sys (Microsoft Corporation)
    DRV - (vsmraid) -- C:\Windows\system32\DRIVERS\vsmraid.sys (VIA Technologies Inc.,Ltd)
    DRV - (vhdmp) -- C:\Windows\system32\DRIVERS\vhdmp.sys (Microsoft Corporation)
    DRV - (vdrvroot) -- C:\Windows\system32\DRIVERS\vdrvroot.sys (Microsoft Corporation)
    DRV - (WIMMount) -- C:\Windows\System32\drivers\wimmount.sys (Microsoft Corporation)
    DRV - (viaide) -- C:\Windows\system32\DRIVERS\viaide.sys (VIA Technologies, Inc.)
    DRV - (ql2300) -- C:\Windows\system32\DRIVERS\ql2300.sys (QLogic Corporation)
    DRV - (rdyboost) -- C:\Windows\System32\drivers\rdyboost.sys (Microsoft Corporation)
    DRV - (ql40xx) -- C:\Windows\system32\DRIVERS\ql40xx.sys (QLogic Corporation)
    DRV - (SiSRaid4) -- C:\Windows\system32\DRIVERS\sisraid4.sys (Silicon Integrated Systems)
    DRV - (pcw) -- C:\Windows\System32\drivers\pcw.sys (Microsoft Corporation)
    DRV - (SiSRaid2) -- C:\Windows\system32\DRIVERS\SiSRaid2.sys (Silicon Integrated Systems Corp.)
    DRV - (stexstor) -- C:\Windows\system32\DRIVERS\stexstor.sys (Promise Technology)
    DRV - (CNG) -- C:\Windows\System32\Drivers\cng.sys (Microsoft Corporation)
    DRV - (Brserid) Brother MFC Serial Port Interface Driver (WDM) -- C:\Windows\System32\Drivers\Brserid.sys (Brother Industries Ltd.)
    DRV - (rdpbus) -- C:\Windows\system32\DRIVERS\rdpbus.sys (Microsoft Corporation)
    DRV - (RDPREFMP) -- C:\Windows\System32\drivers\RDPREFMP.sys (Microsoft Corporation)
    DRV - (RasAgileVpn) WAN Miniport (IKEv2) -- C:\Windows\System32\drivers\agilevpn.sys (Microsoft Corporation)
    DRV - (WfpLwf) -- C:\Windows\System32\drivers\wfplwf.sys (Microsoft Corporation)
    DRV - (NdisCap) -- C:\Windows\System32\drivers\ndiscap.sys (Microsoft Corporation)
    DRV - (vwififlt) -- C:\Windows\System32\drivers\vwififlt.sys (Microsoft Corporation)
    DRV - (vwifibus) -- C:\Windows\System32\drivers\vwifibus.sys (Microsoft Corporation)
    DRV - (1394ohci) -- C:\Windows\system32\DRIVERS\1394ohci.sys (Microsoft Corporation)
    DRV - (UmPass) -- C:\Windows\system32\DRIVERS\umpass.sys (Microsoft Corporation)
    DRV - (mshidkmdf) -- C:\Windows\System32\drivers\mshidkmdf.sys (Microsoft Corporation)
    DRV - (MTConfig) -- C:\Windows\system32\DRIVERS\MTConfig.sys (Microsoft Corporation)
    DRV - (CompositeBus) -- C:\Windows\System32\drivers\CompositeBus.sys (Microsoft Corporation)
    DRV - (AppID) -- C:\Windows\system32\drivers\appid.sys (Microsoft Corporation)
    DRV - (scfilter) -- C:\Windows\System32\drivers\scfilter.sys (Microsoft Corporation)
    DRV - (discache) -- C:\Windows\System32\drivers\discache.sys (Microsoft Corporation)
    DRV - (HidBatt) -- C:\Windows\system32\DRIVERS\HidBatt.sys (Microsoft Corporation)
    DRV - (AcpiPmi) -- C:\Windows\system32\DRIVERS\acpipmi.sys (Microsoft Corporation)
    DRV - (AmdPPM) -- C:\Windows\System32\drivers\amdppm.sys (Microsoft Corporation)
    DRV - (hcw85cir) -- C:\Windows\system32\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
    DRV - (BrUsbMdm) -- C:\Windows\System32\Drivers\BrUsbMdm.sys (Brother Industries Ltd.)
    DRV - (BrUsbSer) -- C:\Windows\System32\Drivers\BrUsbSer.sys (Brother Industries Ltd.)
    DRV - (BrSerWdm) -- C:\Windows\System32\Drivers\BrSerWdm.sys (Brother Industries Ltd.)
    DRV - (BrFiltLo) -- C:\Windows\system32\DRIVERS\BrFiltLo.sys (Brother Industries, Ltd.)
    DRV - (BrFiltUp) -- C:\Windows\system32\DRIVERS\BrFiltUp.sys (Brother Industries, Ltd.)
    DRV - (SiSGbeLH) -- C:\Windows\System32\drivers\SiSGB6.sys (Silicon Integrated Systems Corp.)
    DRV - (b57nd60x) -- C:\Windows\System32\drivers\b57nd60x.sys (Broadcom Corporation)
    DRV - (ebdrv) -- C:\Windows\system32\DRIVERS\evbdx.sys (Broadcom Corporation)
    DRV - (b06bdrv) -- C:\Windows\system32\DRIVERS\bxvbdx.sys (Broadcom Corporation)
    DRV - (athr) -- C:\Windows\System32\drivers\athr.sys (Atheros Communications, Inc.)
    DRV - (secdrv) -- C:\Windows\System32\drivers\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
    DRV - (klmouflt) -- C:\Windows\System32\drivers\klmouflt.sys (Kaspersky Lab)
    DRV - (KLIM6) -- C:\Windows\System32\drivers\klim6.sys (Kaspersky Lab)
    DRV - (VIAHdAudAddService) -- C:\Windows\System32\drivers\viahduaa.sys (VIA Technologies, Inc.)
    DRV - (ETD) -- C:\Windows\System32\drivers\ETD.sys (ELAN Microelectronic Corp.)
    DRV - (MTsensor) -- C:\Windows\System32\drivers\ATKACPI.sys (ATK0100)
    DRV - (klbg) -- C:\Windows\system32\drivers\klbg.sys (Kaspersky Lab)
    DRV - (fssfltr) -- C:\Windows\System32\drivers\fssfltr.sys (Microsoft Corporation)
    DRV - (RTL8169) -- C:\Windows\System32\drivers\Rtlh86.sys (Realtek Corporation                                            )
    DRV - (kbfiltr) -- C:\Windows\System32\drivers\kbfiltr.sys ( )
    DRV - (SNP2UVC) USB2.0 PC Camera (SNP2UVC) -- C:\Windows\System32\drivers\snp2uvc.sys ()
    DRV - (lullaby) -- C:\Windows\system32\DRIVERS\lullaby.sys (Windows (R) Codename Longhorn DDK provider)
    DRV - (usbfilter) -- C:\Windows\System32\drivers\usbfilter.sys (Advanced Micro Devices Inc.)
    DRV - (AtiPcie) ATI PCI Express (3GIO) -- C:\Windows\system32\DRIVERS\AtiPcie.sys (ATI Technologies Inc.)
    DRV - (CRFILTER) -- C:\Windows\System32\drivers\CRFILTER.sys (Generic)
    DRV - (ASMMAP) -- C:\Programme\ATKGFNEX\ASMMAP.sys ()
     
     
    ========== Standard Registry (SafeList) ==========
     
     
    ========== Internet Explorer ==========
     
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
     
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
    IE - HKCU\..\URLSearchHook:  - Reg Error: Key error. File not found
    IE - HKCU\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Programme\ICQ6Toolbar\ICQToolBar.dll (ICQ)
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
     
    ========== FireFox ==========
     
    FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
    FF - prefs.js..browser.search.selectedEngine: "ICQ Search"
    FF - prefs.js..browser.startup.homepage: "http://www.google.de/"
    FF - prefs.js..extensions.enabledItems: {800b5000-a755-47e1-992b-48a1c1357f07}:2
    FF - prefs.js..extensions.enabledItems: linkfilter@kaspersky.ru:9.0.0.459
    FF - prefs.js..keyword.URL: "http://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=2.0.0.0&q="
     
    FF - HKLM\software\mozilla\Mozilla Firefox 3.5.7\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.01.13 11:38:53 | 000,000,000 | ---D | M]
    FF - HKLM\software\mozilla\Mozilla Firefox 3.5.7\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.01.13 11:38:53 | 000,000,000 | ---D | M]
     
    [2010.01.01 22:21:43 | 000,000,000 | ---D | M] -- C:\Users\PICO\AppData\Roaming\mozilla\Extensions
    [2010.01.02 19:55:55 | 000,000,000 | ---D | M] -- C:\Users\PICO\AppData\Roaming\mozilla\Firefox\Profiles\33ktvvb0.default\extensions
    [2010.02.15 09:59:17 | 000,000,955 | ---- | M] () -- C:\Users\PICO\AppData\Roaming\Mozilla\FireFox\Profiles\33ktvvb0.default\searchplugins\icqplugin.xml
    [2010.02.18 00:36:19 | 000,000,000 | ---D | M] -- C:\Programme\Mozilla Firefox\extensions
    [2010.02.07 17:28:31 | 000,000,000 | ---D | M] (No name found) -- C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
    [2010.02.18 00:36:19 | 000,000,000 | ---D | M] -- C:\Programme\Mozilla Firefox\extensions\linkfilter@kaspersky.ru
    [2009.12.02 09:31:53 | 000,001,392 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\amazondotcom-de.xml
    [2009.12.02 09:31:53 | 000,002,344 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\eBay-de.xml
    [2009.12.02 09:31:53 | 000,006,805 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\leo_ende_de.xml
    [2009.12.02 09:31:53 | 000,001,178 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\wikipedia-de.xml
    [2009.12.02 09:31:53 | 000,000,801 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\yahoo-de.xml
     
    O1 HOSTS File: ([2006.09.18 22:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
    O1 - Hosts: 127.0.0.1       localhost
    O1 - Hosts: ::1             localhost
    O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programme\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
    O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\ievkbd.dll (Kaspersky Lab)
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
    O2 - BHO: (Windows Live Anmelde-Hilfsprogramm) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
    O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
    O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab)
    O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Programme\ICQ6Toolbar\ICQToolBar.dll (ICQ)
    O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
    O4 - HKLM..\Run: [ACMON] C:\Programme\ASUS\Splendid\ACMON.exe (ATK)
    O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
    O4 - HKLM..\Run: [ADSMTray] C:\Programme\ASUS\ASUS Data Security Manager\ADSMTray.exe (ASUSTek Computer Inc.)
    O4 - HKLM..\Run: [ASUS Camera ScreenSaver] C:\Windows\AsScrProlog.exe ()
    O4 - HKLM..\Run: [ASUS Screen Saver Protector] C:\Windows\AsScrPro.exe File not found
    O4 - HKLM..\Run: [ATICustomerCare] C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe (Advanced Micro Devices, Inc.)
    O4 - HKLM..\Run: [ATKMEDIA] C:\Programme\ASUS\ATK Media\DMedia.exe (ASUS)
    O4 - HKLM..\Run: [ATKOSD2] C:\Programme\ASUS\ATKOSD2\ATKOSD2.exe (ASUS)
    O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe (Kaspersky Lab)
    O4 - HKLM..\Run: [CLMLServer] C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe (CyberLink)
    O4 - HKLM..\Run: [ETDWare] C:\Programme\Elantech\ETDCtrl.exe (ELAN Microelectronic Corp.)
    O4 - HKLM..\Run: [HControlUser] C:\Programme\ASUS\ATK Hotkey\HControlUser.exe (ASUS)
    O4 - HKLM..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe (VIA)
    O4 - HKLM..\Run: [P2Go_Menu] C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
    O4 - HKLM..\Run: [Setwallpaper] c:\programdata\SetWallpaper.cmd File not found
    O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
    O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)
    O4 - HKLM..\Run: [Wireless Console 3] C:\Programme\ASUS\Wireless Console 3\wcourier.exe ()
    O4 - HKCU..\Run: [ICQ] C:\Program Files\ICQ7.0\ICQ.exe (ICQ, Inc.)
    O4 - HKCU..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe (Hewlett-Packard Company)
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
    O9 - Extra Button: In Blog veröffentlichen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programme\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
    O9 - Extra 'Tools' menuitem : In Windows Live Writer in Blog veröffentliche&n - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programme\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
    O9 - Extra Button: &Virtuelle Tastatur - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab)
    O9 - Extra Button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Programme\ICQ7.0\ICQ.exe (ICQ, Inc.)
    O9 - Extra 'Tools' menuitem : ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Programme\ICQ7.0\ICQ.exe (ICQ, Inc.)
    O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programme\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
    O9 - Extra Button: Li&nks untersuchen - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab)
    O13 - gopher Prefix: missing
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
    O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
    O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.178.1
    O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation)
    O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programme\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
    O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation)
    O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programme\Common Files\Skype\Skype4COM.dll (Skype Technologies)
    O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Programme\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
    O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
    O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll) - C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\mzvkbd3.dll (Kaspersky Lab)
    O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
    O20 - Winlogon\Notify\klogon: DllName - C:\Windows\system32\klogon.dll - C:\Windows\System32\klogon.dll (Kaspersky Lab)
    O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
    O24 - Desktop WallPaper: C:\Windows\web\Wallpaper\img24.jpg
    O24 - Desktop BackupWallPaper: C:\Windows\web\Wallpaper\img24.jpg
    O30 - LSA: Security Packages - (pku2u) - C:\Windows\System32\pku2u.dll (Microsoft Corporation)
    O32 - HKLM CDRom: AutoRun - 1
    O32 - AutoRun File - [2006.09.18 22:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
    O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
    O35 - comfile [open] -- "%1" %*
    O35 - exefile [open] -- "%1" %*
     
    ========== Files/Folders - Created Within 30 Days ==========
     
    [2010.02.18 00:35:37 | 000,000,000 | ---D | C] -- C:\Programme\Kaspersky Lab
    [2010.02.18 00:35:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab
    [2010.02.18 00:35:29 | 000,280,592 | ---- | C] (Kaspersky Lab) -- C:\Windows\System32\drivers\klif.sys
    [2010.02.18 00:31:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab Setup Files
    [2010.02.17 21:56:33 | 000,000,000 | ---D | C] -- C:\Users\PICO\AppData\Local\Diagnostics
    [2010.02.17 21:47:34 | 000,000,000 | ---D | C] -- C:\Users\PICO\AppData\Local\Symantec
    [2010.02.10 12:08:28 | 000,369,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc.dll
    [2010.02.10 12:08:28 | 000,365,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_isv.dll
    [2010.02.10 12:08:28 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_isv.exe
    [2010.02.10 12:08:28 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate.exe
    [2010.02.10 12:08:28 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp.exe
    [2010.02.10 12:08:28 | 000,277,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp_isv.exe
    [2010.02.10 12:08:28 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp_isv.dll
    [2010.02.10 12:08:28 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp.dll
    [2010.02.10 12:08:24 | 003,955,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
    [2010.02.10 12:08:23 | 003,899,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
    [2010.02.10 12:08:18 | 001,328,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quartz.dll
    [2010.02.10 12:08:17 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\avifil32.dll
    [2010.02.10 12:08:17 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mciavi32.dll
    [2010.02.08 23:04:25 | 000,000,000 | ---D | C] -- C:\Users\PICO\Documents\ASUS
    [2010.02.08 23:04:13 | 000,000,000 | ---D | C] -- C:\ProgramData\ASUS
    [2010.02.08 23:04:11 | 000,000,000 | ---D | C] -- C:\Users\PICO\AppData\Local\ASUS
    [2010.02.08 22:57:07 | 000,000,000 | ---D | C] -- C:\Users\PICO\Documents\ICQ
    [2010.02.07 17:28:32 | 000,000,000 | ---D | C] -- C:\Programme\ICQ6Toolbar
    [2010.02.07 17:28:28 | 000,000,000 | ---D | C] -- C:\ProgramData\ICQ
    [2010.02.07 17:28:08 | 000,000,000 | ---D | C] -- C:\Users\PICO\AppData\Roaming\ICQ
    [2010.02.07 17:28:07 | 000,000,000 | ---D | C] -- C:\Users\PICO\AppData\Local\AOL
    [2010.02.07 17:27:56 | 000,000,000 | ---D | C] -- C:\Programme\ICQ7.0
    [2010.02.05 22:46:59 | 000,000,000 | ---D | C] -- C:\Users\PICO\AppData\Roaming\skypePM
    [2010.02.05 22:19:30 | 000,000,000 | ---D | C] -- C:\Users\PICO\AppData\Roaming\Skype
    [2010.02.05 22:18:57 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\Skype
    [2010.02.05 22:18:56 | 000,000,000 | R--D | C] -- C:\Programme\Skype
    [2010.02.05 22:18:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype
    [2010.02.05 22:18:01 | 002,614,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
    [2010.01.23 13:50:56 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
    [2010.01.23 13:50:56 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
    [2008.11.03 08:03:27 | 000,013,880 | ---- | C] ( ) -- C:\Windows\System32\drivers\kbfiltr.sys
     
    ========== Files - Modified Within 30 Days ==========
     
    [2010.02.18 14:50:40 | 001,310,720 | -HS- | M] () -- C:\Users\PICO\NTUSER.DAT
    [2010.02.18 12:09:11 | 000,010,896 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    [2010.02.18 12:09:11 | 000,010,896 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    [2010.02.18 12:02:35 | 000,045,056 | ---- | M] () -- C:\Windows\System32\acovcnt.exe
    [2010.02.18 12:01:59 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
    [2010.02.18 12:01:52 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
    [2010.02.18 12:01:40 | 2415,222,784 | -HS- | M] () -- C:\hiberfil.sys
    [2010.02.18 01:03:13 | 003,382,932 | -H-- | M] () -- C:\Users\PICO\AppData\Local\IconCache.db
    [2010.02.18 00:52:28 | 001,472,002 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
    [2010.02.18 00:52:28 | 000,643,866 | ---- | M] () -- C:\Windows\System32\perfh007.dat
    [2010.02.18 00:52:28 | 000,607,190 | ---- | M] () -- C:\Windows\System32\perfh009.dat
    [2010.02.18 00:52:28 | 000,126,394 | ---- | M] () -- C:\Windows\System32\perfc007.dat
    [2010.02.18 00:52:28 | 000,103,568 | ---- | M] () -- C:\Windows\System32\perfc009.dat
    [2010.02.18 00:42:49 | 000,280,592 | ---- | M] (Kaspersky Lab) -- C:\Windows\System32\drivers\klif.sys
    [2010.02.18 00:42:49 | 000,128,016 | ---- | M] (Kaspersky Lab) -- C:\Windows\System32\drivers\kl1.sys
    [2010.02.18 00:42:49 | 000,108,059 | ---- | M] () -- C:\Windows\System32\drivers\klin.dat
    [2010.02.18 00:42:49 | 000,095,259 | ---- | M] () -- C:\Windows\System32\drivers\klick.dat
    [2010.02.18 00:36:46 | 000,604,140 | -HS- | M] () -- C:\Windows\System32\drivers\ISwift3.dat
    [2010.02.07 17:29:49 | 000,001,777 | ---- | M] () -- C:\Users\Public\Desktop\ICQ7.lnk
    [2010.02.05 22:47:00 | 000,000,056 | -H-- | M] () -- C:\ProgramData\ezsidmv.dat
    [2010.02.05 22:18:57 | 000,002,505 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
    [2010.02.05 21:57:08 | 000,000,355 | ---- | M] () -- C:\Users\PICO\Desktop\Arbeitsplatz.lnk
     
    ========== Files Created - No Company Name ==========
     
    [2010.02.18 00:36:46 | 000,604,140 | -HS- | C] () -- C:\Windows\System32\drivers\ISwift3.dat
    [2010.02.18 00:36:09 | 000,108,059 | ---- | C] () -- C:\Windows\System32\drivers\klin.dat
    [2010.02.18 00:36:09 | 000,095,259 | ---- | C] () -- C:\Windows\System32\drivers\klick.dat
    [2010.02.07 17:29:49 | 000,001,777 | ---- | C] () -- C:\Users\Public\Desktop\ICQ7.lnk
    [2010.02.05 22:47:00 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
    [2010.02.05 22:18:57 | 000,002,505 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
    [2010.02.05 21:57:08 | 000,000,355 | ---- | C] () -- C:\Users\PICO\Desktop\Arbeitsplatz.lnk
    [2009.08.20 06:47:58 | 000,000,010 | ---- | C] () -- C:\Windows\System32\ABLKSR.ini
    [2009.07.14 00:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
    [2009.07.14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
    [2008.10.14 22:57:58 | 000,106,496 | ---- | C] () -- C:\Programme\Common Files\CPInstallAction.dll
    [2008.08.11 03:14:11 | 001,752,704 | ---- | C] () -- C:\Windows\System32\drivers\snp2uvc.sys
    [2008.05.22 16:35:54 | 000,051,962 | ---- | C] () -- C:\Programme\Common Files\banner.jpg
    [2008.05.12 04:20:31 | 000,028,672 | ---- | C] () -- C:\Windows\System32\drivers\sncduvc.sys
    [2008.04.07 07:00:45 | 000,005,120 | ---- | C] () -- C:\Windows\System32\CRFILTER.dll
    [2007.06.12 17:34:50 | 000,035,822 | ---- | C] () -- C:\Programme\Common Files\ASPG_icon.ico
     
    ========== LOP Check ==========
     
    [2010.02.08 12:21:00 | 000,000,000 | ---D | M] -- C:\Users\PICO\AppData\Roaming\ICQ
    [2010.01.12 22:35:10 | 000,000,000 | ---D | M] -- C:\Users\PICO\AppData\Roaming\Uniblue
    [2009.07.14 05:53:46 | 000,011,964 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
     
    ========== Purity Check ==========
     
     
    < End of report >
    Code:
    OTL Extras logfile created on: 18.02.2010 14:50:32 - Run 2
    OTL by OldTimer - Version 3.1.28.0     Folder = C:\Users\PICO\Downloads
     Home Premium Edition  (Version = 6.1.7600) - Type = NTWorkstation
    Internet Explorer (Version = 8.0.7600.16385)
    Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
     
    3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 65,00% Memory free
    6,00 Gb Paging File | 5,00 Gb Available in Paging File | 81,00% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]
     
    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
    Drive C: | 232,88 Gb Total Space | 170,45 Gb Free Space | 73,19% Space Free | Partition Type: NTFS
    Drive D: | 221,16 Gb Total Space | 212,37 Gb Free Space | 96,02% Space Free | Partition Type: NTFS
    E: Drive not present or media not loaded
    F: Drive not present or media not loaded
    G: Drive not present or media not loaded
    H: Drive not present or media not loaded
    I: Drive not present or media not loaded
     
    Computer Name: P_I_C_O
    Current User Name: PICO
    Logged in as Administrator.
     
    Current Boot Mode: Normal
    Scan Mode: Current user
    Company Name Whitelist: Off
    Skip Microsoft Files: Off
    File Age = 30 Days
    Output = Minimal
     
    ========== Extra Registry (SafeList) ==========
     
     
    ========== File Associations ==========
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
    .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
    .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
     
    [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
    .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
     
    ========== Shell Spawning ==========
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
    exefile [open] -- "%1" %*
    helpfile [open] -- Reg Error: Key error.
    hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
    htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
    htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
    htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
    htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation)
    http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
    https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
    inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
    Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
    Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft)
    Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [explore] -- Reg Error: Value error.
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
    CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
     
    ========== Security Center Settings ==========
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "cval" = 1
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
    "DisableMonitoring" = 1
    "" = 
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
    "VistaSp1" = Reg Error: Unknown registry data type -- File not found
    "AntiVirusOverride" = 0
    "AntiSpywareOverride" = 0
    "FirewallOverride" = 0
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
     
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1
     
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1
     
    ========== Authorized Applications List ==========
     
     
    ========== HKEY_LOCAL_MACHINE Uninstall List ==========
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{0969AF05-4FF6-4C00-9406-43599238DE0D}" = ASUS Splendid Video Enhancement Technology
    "{0BB72566-0D4C-7200-2CE7-02F298B49C88}" = CCC Help English
    "{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}" = LightScribe System Software  1.14.17.1
    "{110AD51E-D0E0-49B1-52FD-291373BA62EA}" = Catalyst Control Center Graphics Full New
    "{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}" = ASUS LifeFrame3
    "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live-Uploadtool
    "{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform
    "{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}" = Wireless Console 3
    "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
    "{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java(TM) 6 Update 17
    "{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Atheros Client Installation Program
    "{31557F4F-7D10-D32E-4B70-237A09FCC31B}" = Catalyst Control Center Graphics Previews Common
    "{3A608351-5980-4A47-AE08-3742C55B4016}" = Windows Live Family Safety
    "{3B05F2FB-745B-4012-ADF2-439F36B2E70B}" = ATKOSD2
    "{3C175604-F026-5D79-BBD8-F626AE10B3EF}" = Catalyst Control Center Graphics Full Existing
    "{3F4BA3A2-7BE0-48EA-B4BC-CA4D842A409A}" = Cisco EAP-FAST Module
    "{40BF1E83-20EB-11D8-97C5-0009C5020658}" = CyberLink Power2Go
    "{4640FDE1-B83A-4376-84ED-86F86BEE2D41}" = Driver Detective
    "{4AB8B41B-3AF1-46BE-99B0-0ACD3B300C0A}" = Junk Mail filter update
    "{4B6B024F-F6D4-4A7B-8ADA-F9F8370320CC}" = SRS Premium Sound
    "{541DEAC0-5F3D-45E6-B7CB-94ECF3B96748}" = Skype web features
    "{567C654B-7FE9-4970-8323-56E8191D1941}" = ASUS FancyStart
    "{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}" = Microsoft Office Live Add-in 1.3
    "{5A166C0B-9557-4364-A057-F946D674E6AC}" = Windows Live Mail
    "{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
    "{62C2067E-5851-BD4C-98E0-5C4D5E155A5B}" = Catalyst Control Center Core Implementation
    "{64452561-169F-4A36-A2FF-B5E118EC65F5}" = ASUS SmartLogon
    "{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites
    "{6B77A7F6-DD63-4F13-A6FF-83137A5AC354}" = ASUS CopyProtect
    "{6B96DADA-1A27-4A04-8CB2-CC45168D05FA}" = Windows Live Fotogalerie
    "{72736F5F-520D-472A-88CC-7B02872FD34E}" = ATI Catalyst Registration
    "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
    "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
    "{7C05592D-424B-46CB-B505-E0013E8E75C9}" = ATK Hotkey
    "{81821BF8-DA20-4F8C-AA87-F70A274828D4}" = Windows Live Writer
    "{835686C5-8650-49EB-8CA0-4528B4035495}" = Windows Live Call
    "{837B6259-6FF5-4E66-87C1-A5A15ED36FF4}" = Windows Live Messenger
    "{83E2CFA9-E0EB-4E08-9F85-43E577FF3D60}" = Windows Live Anmelde-Assistent
    "{87BB78C4-F36D-4D93-A7C7-F80F18219848}" = AMD DnD V1.0.19
    "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8169 8168 8101E 8102E Ethernet Driver
    "{88EB38EF-4D2C-436D-ABD3-56B232674062}" = ICQ7
    "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
    "{8C1E2925-14F8-45AA-B999-1E2A74BF5607}" = Windows Live Sync
    "{8D7133DE-27D2-47E5-B248-4180278D32AA}" = Catalyst Control Center - Branding
    "{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}" = Choice Guard
    "{90120000-0015-0407-0000-0000000FF1CE}" = Microsoft Office Access MUI (German) 2007
    "{90120000-0015-0407-0000-0000000FF1CE}_PROHYBRIDR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
    "{90120000-0015-0409-0000-0000000FF1CE}_PROHYBRIDR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0015-040C-0000-0000000FF1CE}" = Microsoft Office Access MUI (French) 2007
    "{90120000-0015-040C-0000-0000000FF1CE}_PROHYBRIDR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0015-0410-0000-0000000FF1CE}" = Microsoft Office Access MUI (Italian) 2007
    "{90120000-0015-0410-0000-0000000FF1CE}_PROHYBRIDR_{71CCE0F1-A3B4-49C9-A328-1DABE845E0C4}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0015-0413-0000-0000000FF1CE}" = Microsoft Office Access MUI (Dutch) 2007
    "{90120000-0015-0413-0000-0000000FF1CE}_PROHYBRIDR_{DC387AA5-94A6-4920-B004-D59846526D81}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2007
    "{90120000-0016-0407-0000-0000000FF1CE}_PROHYBRIDR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
    "{90120000-0016-0409-0000-0000000FF1CE}_PROHYBRIDR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0016-040C-0000-0000000FF1CE}" = Microsoft Office Excel MUI (French) 2007
    "{90120000-0016-040C-0000-0000000FF1CE}_PROHYBRIDR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0016-0410-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Italian) 2007
    "{90120000-0016-0410-0000-0000000FF1CE}_PROHYBRIDR_{71CCE0F1-A3B4-49C9-A328-1DABE845E0C4}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0016-0413-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Dutch) 2007
    "{90120000-0016-0413-0000-0000000FF1CE}_PROHYBRIDR_{DC387AA5-94A6-4920-B004-D59846526D81}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2007
    "{90120000-0018-0407-0000-0000000FF1CE}_PROHYBRIDR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
    "{90120000-0018-0409-0000-0000000FF1CE}_PROHYBRIDR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0018-040C-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (French) 2007
    "{90120000-0018-040C-0000-0000000FF1CE}_PROHYBRIDR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0018-0410-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Italian) 2007
    "{90120000-0018-0410-0000-0000000FF1CE}_PROHYBRIDR_{71CCE0F1-A3B4-49C9-A328-1DABE845E0C4}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0018-0413-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Dutch) 2007
    "{90120000-0018-0413-0000-0000000FF1CE}_PROHYBRIDR_{DC387AA5-94A6-4920-B004-D59846526D81}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0019-0407-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (German) 2007
    "{90120000-0019-0407-0000-0000000FF1CE}_PROHYBRIDR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
    "{90120000-0019-0409-0000-0000000FF1CE}_PROHYBRIDR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0019-040C-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (French) 2007
    "{90120000-0019-040C-0000-0000000FF1CE}_PROHYBRIDR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0019-0410-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Italian) 2007
    "{90120000-0019-0410-0000-0000000FF1CE}_PROHYBRIDR_{71CCE0F1-A3B4-49C9-A328-1DABE845E0C4}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0019-0413-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Dutch) 2007
    "{90120000-0019-0413-0000-0000000FF1CE}_PROHYBRIDR_{DC387AA5-94A6-4920-B004-D59846526D81}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-001A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (German) 2007
    "{90120000-001A-0407-0000-0000000FF1CE}_PROHYBRIDR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
    "{90120000-001A-0409-0000-0000000FF1CE}_PROHYBRIDR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-001A-040C-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (French) 2007
    "{90120000-001A-040C-0000-0000000FF1CE}_PROHYBRIDR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-001A-0410-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Italian) 2007
    "{90120000-001A-0410-0000-0000000FF1CE}_PROHYBRIDR_{71CCE0F1-A3B4-49C9-A328-1DABE845E0C4}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-001A-0413-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Dutch) 2007
    "{90120000-001A-0413-0000-0000000FF1CE}_PROHYBRIDR_{DC387AA5-94A6-4920-B004-D59846526D81}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2007
    "{90120000-001B-0407-0000-0000000FF1CE}_PROHYBRIDR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
    "{90120000-001B-0409-0000-0000000FF1CE}_PROHYBRIDR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-001B-040C-0000-0000000FF1CE}" = Microsoft Office Word MUI (French) 2007
    "{90120000-001B-040C-0000-0000000FF1CE}_PROHYBRIDR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-001B-0410-0000-0000000FF1CE}" = Microsoft Office Word MUI (Italian) 2007
    "{90120000-001B-0410-0000-0000000FF1CE}_PROHYBRIDR_{71CCE0F1-A3B4-49C9-A328-1DABE845E0C4}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-001B-0413-0000-0000000FF1CE}" = Microsoft Office Word MUI (Dutch) 2007
    "{90120000-001B-0413-0000-0000000FF1CE}_PROHYBRIDR_{DC387AA5-94A6-4920-B004-D59846526D81}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-001F-0401-0000-0000000FF1CE}" = Microsoft Office Proof (Arabic) 2007
    "{90120000-001F-0401-0000-0000000FF1CE}_PROHYBRIDR_{14809F99-C601-4D4A-9391-F1E8FAA964C5}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
    "{90120000-001F-0407-0000-0000000FF1CE}_PROHYBRIDR_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
    "{90120000-001F-0409-0000-0000000FF1CE}_PROHYBRIDR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
    "{90120000-001F-040C-0000-0000000FF1CE}_PROHYBRIDR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    "{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007
    "{90120000-001F-0410-0000-0000000FF1CE}_PROHYBRIDR_{322296D4-1EAE-4030-9FBC-D2787EB25FA2}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    "{90120000-001F-0413-0000-0000000FF1CE}" = Microsoft Office Proof (Dutch) 2007
    "{90120000-001F-0413-0000-0000000FF1CE}_PROHYBRIDR_{D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
    "{90120000-001F-0C0A-0000-0000000FF1CE}_PROHYBRIDR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    "{90120000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2007
    "{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
    "{90120000-002C-040C-0000-0000000FF1CE}" = Microsoft Office Proofing (French) 2007
    "{90120000-002C-0410-0000-0000000FF1CE}" = Microsoft Office Proofing (Italian) 2007
    "{90120000-002C-0413-0000-0000000FF1CE}" = Microsoft Office Proofing (Dutch) 2007
    "{90120000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2007
    "{90120000-006E-0407-0000-0000000FF1CE}_PROHYBRIDR_{26454C26-D259-4543-AA60-3189E09C5F76}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
    "{90120000-006E-0409-0000-0000000FF1CE}_PROHYBRIDR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-006E-040C-0000-0000000FF1CE}" = Microsoft Office Shared MUI (French) 2007
    "{90120000-006E-040C-0000-0000000FF1CE}_PROHYBRIDR_{B165D3C2-40AE-4D39-86F7-E5C87C4264C0}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-006E-0410-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Italian) 2007
    "{90120000-006E-0410-0000-0000000FF1CE}_PROHYBRIDR_{0A75DA12-55CB-4DE5-8B6A-74D97847204E}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-006E-0413-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Dutch) 2007
    "{90120000-006E-0413-0000-0000000FF1CE}_PROHYBRIDR_{89C8E56A-90D8-4598-B0E6-EB28F6270E07}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
    "{90120000-0115-0409-0000-0000000FF1CE}_PROHYBRIDR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
    "{90120000-0117-0409-0000-0000000FF1CE}_PROHYBRIDR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{91120000-0031-0000-0000-0000000FF1CE}" = Microsoft Office Professional Hybrid 2007
    "{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
    "{934528B2-09B3-C6E5-288A-4E554E6DF2B9}" = ATI Catalyst Install Manager
    "{934B3B19-8193-467A-B356-E73F82647D38}" = Cisco LEAP Module
    "{943B6738-4801-4982-90EC-0442EF7AEB16}" = Kaspersky Anti-Virus 2010
    "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
    "{95120000-0120-0407-0000-0000000FF1CE}" = Microsoft Office Outlook Connector
    "{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}" = ASUS Power4Gear Hybrid
    "{9D48531D-2135-49FC-BC29-ACCDA5396A76}" = ASUS MultiFrame
    "{A292C05C-840A-9D47-5350-EF39ECC7629E}" = Catalyst Control Center HydraVision Full
    "{A2D08D5A-74E8-7509-452A-E40E63D8FFC2}" = Catalyst Control Center InstallProxy
    "{A3AB35FA-943E-4799-99DC-46EFD59E998F}" = AMD USB Audio Driver Filter
    "{AC76BA86-7AD7-1031-7B44-A90100000001}" = Adobe Reader 9.0.1 - Deutsch
    "{AD17676C-5065-E427-130B-21CE713F93E7}" = Catalyst Control Center Graphics Light
    "{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Plus Web Player
    "{B970700B-E49F-ECEF-4ADB-0F3E1AFEDE91}" = ccc-core-static
    "{BAD1449B-DF0C-4118-B76D-68C54009576C}" = Cisco PEAP Module
    "{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint
    "{CD95F661-A5C4-44F5-A6AA-ECDD91C240BB}" = WinZip 14.0
    "{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1
    "{D1E5870E-E3E5-4475-98A6-ADD614524ADF}" = ATK Media
    "{D3D54F3E-C5C3-443D-978F-87A72E5616E8}" = ATK Generic Function Service
    "{DA41F9E9-B878-467F-95E7-27E4D1943533}" = Multimedia Card Reader
    "{DC35EF73-C7BD-4452-A793-4269990E1EA3}" = Windows Live Movie Maker-Betaversion
    "{DE10AB76-4756-4913-BE25-55D1C1051F9A}" = WinFlash
    "{DF5F687F-8018-4542-9F98-7084E9022917}" = Windows Live Essentials
    "{E63E34A7-E552-412B-9E40-FD6FC5227ABA}_is1" = Uniblue RegistryBooster 2010
    "{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}" = ASUS Live Update
    "{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}" = ASUS Virtual Camera
    "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
    "{F69E83CF-B440-43F8-89E6-6EA80712109B}" = Windows Live Communications Platform
    "{F9726DDC-D7B5-BF1F-5626-EA467FEEBC52}" = ccc-utility
    "{F9F13FEA-D51E-A1C3-4EDC-D04A91B62C93}" = Catalyst Control Center Graphics Previews Vista
    "{FA2092C5-7979-412D-A962-6485274AE1EE}" = ASUS Data Security Manager
    "{FC3D5BBB-CDF6-252C-2212-06D61AD2C628}" = Catalyst Control Center InstallProxy
    "Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites
    "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
    "Asus_Camera_ScreenSaver" = Asus_Camera_ScreenSaver
    "Elantech" = ETDWare PS/2-x86 7.0.5.3 WHQL
    "ICQToolbar" = ICQ Toolbar
    "InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Platform Device Manager
    "InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = CyberLink Power2Go
    "InstallWIX_{943B6738-4801-4982-90EC-0442EF7AEB16}" = Kaspersky Anti-Virus 2010
    "Mozilla Firefox (3.5.7)" = Mozilla Firefox (3.5.7)
    "PROHYBRIDR" = 2007 Microsoft Office system
    "ShockwaveFlash" = Adobe Flash Player 9 ActiveX
    "USB 2.0 1.3M UVC WebCam" = USB 2.0 1.3M UVC WebCam
    "USB Mass Storage Filter Driver" = Multimedia Card Reader
    "Winamp" = Winamp
    "WinLiveSuite_Wave3" = Windows Live Essentials
    "WinRAR archiver" = WinRAR
     
    ========== HKEY_CURRENT_USER Uninstall List ==========
     
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "Winamp Detect" = Winamp Anwendungserkennung
     
    ========== Last 10 Event Log Errors ==========
     
    Error reading Event Logs: The Event Service is not operating properly or the Event Logs are corrupt!
     
    < End of report >

    Code:
     
                            $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ 
                            º                                    º 
                                        hjtscanlist v2.0              
                            º                                    º 
                            $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ 
    
    Microsoft Windows [Version 6.1.7600]
     
     
    C:
    
           C:\pagefile.sys ---------    
           C:\hiberfil.sys ---------    
      18.02.2010 01:03     C:\ADSM_PData_0150 --------- 0   
      18.02.2010 01:03     C:\Windows --------- 32768   
      18.02.2010 00:44     C:\Program Files --------- 20480   
      18.02.2010 00:35     C:\ProgramData --------- 8192   
      18.02.2010 00:35     C:\System Volume Information --------- 28672   
      12.01.2010 19:12     C:\Games --------- 0   
      25.12.2009 18:51     C:\ATI --------- 0   
      25.12.2009 07:21     C:\BOOTSECT.BAK --------- 8192   
      25.12.2009 07:21     C:\Boot --------- 4096   
      25.12.2009 01:54     C:\Recovery --------- 0   
      25.12.2009 01:54     C:\Programme --------- 0   
      25.12.2009 01:54     C:\Dokumente und Einstellungen --------- 0   
      24.12.2009 23:06     C:\Users --------- 4096   
      20.08.2009 04:36     C:\$RECYCLE.BIN --------- 0   
      04.08.2009 16:08     C:\devlist.txt --------- 15399   
      04.08.2009 16:08     C:\Finish.log --------- 9   
      04.08.2009 16:06     C:\ASUS.DAT --------- 4096   
      04.08.2009 13:08     C:\setup.log --------- 90   
      04.08.2009 09:14     C:\MSOCache --------- 0   
      04.08.2009 03:50     C:\inject.log.txt --------- 19533263   
      04.08.2009 03:50     C:\inject.log --------- 22216704   
      04.08.2009 03:20     C:\Pass.txt --------- 146   
      04.08.2009 02:42     C:\SumHidd.txt --------- 170   
      04.08.2009 02:30     C:\SumOS.txt --------- 98   
      04.08.2009 02:12     C:\faclog.txt --------- 709   
      14.07.2009 05:53     C:\Documents and Settings --------- 0   
      14.07.2009 03:37     C:\PerfLogs --------- 0   
      14.07.2009 02:38     C:\bootmgr --------- 383562   
      19.06.2009 13:10     C:\Patch.LOG --------- 3502   
      07.06.2009 16:31     C:\Fix.log --------- 21   
      02.06.2009 12:11     C:\v55.txt --------- 24   
      27.04.2009 03:26     C:\K40AB_K50AB_VISTA.10 --------- 14   
      23.04.2009 03:13     C:\K50AB.BIN --------- 1048576   
      23.04.2009 03:10     C:\K40AB.BIN --------- 1048576   
      04.03.2009 08:47     C:\RECOVERY.DAT --------- 12   
      09.02.2009 06:30     C:\WindowsLive_A.TXT --------- 41   
      15.01.2009 09:13     C:\READER_A.TXT --------- 17   
      07.01.2009 10:16     C:\NIS2009.TXT --------- 30   
      08.08.2008 08:22     C:\NERO.LOG --------- 30   
      04.04.2007 20:01     C:\CA21.txt --------- 19   
      16.03.2007 00:18     C:\OFFICE2007_A.TXT --------- 25   
      18.09.2006 22:43     C:\config.sys --------- 10   
      18.09.2006 22:43     C:\autoexec.bat --------- 24   
      14.05.2006 17:22     C:\store.log --------- 5   
    ----------------------------------------
    
     
    C:\Windows
    
      18.02.2010 12:05     C:\Windows\WindowsUpdate.log --------- 1683606   
      18.02.2010 12:01     C:\Windows\setupact.log --------- 601252   
      18.02.2010 12:01     C:\Windows\bootstat.dat --------- 67584   
      18.02.2010 01:03     C:\Windows\PFRO.log --------- 203666   
      28.12.2009 13:21     C:\Windows\win.ini --------- 219   
      25.12.2009 13:13     C:\Windows\diagwrn.xml --------- 1908   
      25.12.2009 13:13     C:\Windows\diagerr.xml --------- 1908   
      25.12.2009 12:35     C:\Windows\setuperr.log --------- 0   
      24.12.2009 23:19     C:\Windows\comsetup.log --------- 6244   
      24.12.2009 23:07     C:\Windows\DtcInstall.log --------- 5157   
      24.12.2009 22:42     C:\Windows\TSSysprep.log --------- 3540   
      24.12.2009 22:41     C:\Windows\ativpsrm.bin --------- 0   
      24.12.2009 21:36     C:\Windows\WindowsUpdate (1).log --------- 96375   
      24.12.2009 20:31     C:\Windows\DirectX.log --------- 29377   
      31.10.2009 06:45     C:\Windows\explorer.exe --------- 2614272   
      04.08.2009 13:09     C:\Windows\AsScrProlog.exe --------- 47672   
      04.08.2009 13:09     C:\Windows\ASUS Camera ScreenSaver.exe --------- 4814371   
      04.08.2009 13:09     C:\Windows\ASUS Camera ScreenSaver Uninstaller.exe --------- 281144   
      04.08.2009 11:59     C:\Windows\DPINST.LOG --------- 5196   
      04.08.2009 09:25     C:\Windows\FixPQA.log --------- 211   
      14.07.2009 05:41     C:\Windows\WindowsShell.Manifest --------- 749   
      14.07.2009 02:16     C:\Windows\twain_32.dll --------- 51200   
      14.07.2009 02:14     C:\Windows\write.exe --------- 9216   
      14.07.2009 02:14     C:\Windows\winhlp32.exe --------- 9728   
      14.07.2009 02:14     C:\Windows\twunk_32.exe --------- 31232   
      14.07.2009 02:14     C:\Windows\regedit.exe --------- 398336   
      14.07.2009 02:14     C:\Windows\notepad.exe --------- 179712   
      14.07.2009 02:14     C:\Windows\hh.exe --------- 15360   
      14.07.2009 02:14     C:\Windows\HelpPane.exe --------- 497152   
      14.07.2009 02:14     C:\Windows\fveupdate.exe --------- 13824   
      14.07.2009 02:14     C:\Windows\bfsvc.exe --------- 65024   
      13.07.2009 23:58     C:\Windows\mib.bin --------- 43131   
      19.06.2009 13:09     C:\Windows\csup.txt --------- 10   
      17.06.2009 07:53     C:\Windows\atiogl.xml --------- 18333   
      10.06.2009 22:46     C:\Windows\system.ini --------- 219   
      10.06.2009 22:42     C:\Windows\_default.pif --------- 707   
      10.06.2009 22:42     C:\Windows\winhelp.exe --------- 256192   
      10.06.2009 22:41     C:\Windows\twunk_16.exe --------- 49680   
      10.06.2009 22:41     C:\Windows\twain.dll --------- 94784   
      10.06.2009 22:34     C:\Windows\WMSysPr9.prx --------- 316640   
      10.06.2009 22:19     C:\Windows\msdfmap.ini --------- 1405   
      10.06.2009 22:14     C:\Windows\Starter.xml --------- 48201   
      10.06.2009 22:14     C:\Windows\HomePremium.xml --------- 48265   
      02.02.2009 02:57     C:\Windows\Uninstsxga.bat --------- 2008   
      05.12.2008 00:19     C:\Windows\WLXPGSS.SCR --------- 308584   
      25.06.2008 12:38     C:\Windows\Uninstvga.bat --------- 2052   
      25.06.2008 12:00     C:\Windows\Uninstuxga.bat --------- 1682   
      21.03.2008 14:44     C:\Windows\Uninstvga.reg --------- 384   
      21.03.2008 14:44     C:\Windows\Uninstsxga.reg --------- 386   
      21.03.2008 14:38     C:\Windows\Uninstuxga.reg --------- 386   
      23.11.2006 15:20     C:\Windows\DrvInst.exe --------- 11776   
      22.02.2003 04:42     C:\Windows\msvcr71.dll --------- 348160   
      15.07.2000 08:00     C:\Windows\MSVCRTD.DLL --------- 434252   
    ----------------------------------------
    
     
    C:\Windows\System
    
     13.07.2009 22:41      C:\Windows\System\OLESVR.DLL --------- 24064 
     13.07.2009 22:41      C:\Windows\System\WFWNET.DRV --------- 12704 
     13.07.2009 22:41      C:\Windows\System\COMMDLG.DLL --------- 32816 
     13.07.2009 22:41      C:\Windows\System\TIMER.DRV --------- 4048 
     13.07.2009 22:41      C:\Windows\System\MMSYSTEM.DLL --------- 68992 
     13.07.2009 22:41      C:\Windows\System\mmtask.tsk --------- 1152 
     13.07.2009 22:41      C:\Windows\System\mouse.drv --------- 2032 
     13.07.2009 22:41      C:\Windows\System\vga.drv --------- 2176 
     13.07.2009 22:41      C:\Windows\System\sound.drv --------- 1744 
     13.07.2009 22:41      C:\Windows\System\keyboard.drv --------- 2000 
     13.07.2009 22:41      C:\Windows\System\SHELL.DLL --------- 5120 
     13.07.2009 22:41      C:\Windows\System\system.drv --------- 3360 
     10.06.2009 22:42      C:\Windows\System\ver.dll --------- 9008 
     10.06.2009 22:42      C:\Windows\System\olecli.dll --------- 82944 
     10.06.2009 22:42      C:\Windows\System\lzexpand.dll --------- 9936 
     10.06.2009 22:25      C:\Windows\System\stdole.tlb --------- 5532 
     10.06.2009 22:21      C:\Windows\System\msvideo.dll --------- 126912 
     10.06.2009 22:21      C:\Windows\System\mciwave.drv --------- 28160 
     10.06.2009 22:21      C:\Windows\System\mciseq.drv --------- 25264 
     10.06.2009 22:21      C:\Windows\System\mciavi.drv --------- 73376 
     10.06.2009 22:21      C:\Windows\System\avifile.dll --------- 109456 
     10.06.2009 22:21      C:\Windows\System\avicap.dll --------- 69584 
    ----------------------------------------
    
     
    C:\Windows\System32
    
     18.02.2010 12:12     C:\Windows\system32\config --------- 49152  
     18.02.2010 12:09     C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 --------- 10896  
     18.02.2010 12:09     C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 --------- 10896  
     18.02.2010 12:02     C:\Windows\system32\acovcnt.exe --------- 45056  
     18.02.2010 00:52     C:\Windows\system32\perfh009.dat --------- 607190  
     18.02.2010 00:52     C:\Windows\system32\perfc009.dat --------- 103568  
     18.02.2010 00:52     C:\Windows\system32\perfh007.dat --------- 643866  
     18.02.2010 00:52     C:\Windows\system32\perfc007.dat --------- 126394  
     18.02.2010 00:52     C:\Windows\system32\PerfStringBackup.INI --------- 1472002  
     18.02.2010 00:42     C:\Windows\system32\drivers --------- 65536  
     18.02.2010 00:36     C:\Windows\system32\catroot --------- 4096  
     18.02.2010 00:36     C:\Windows\system32\DriverStore --------- 4096  
     17.02.2010 23:08     C:\Windows\system32\NDF --------- 4096  
     17.02.2010 23:00     C:\Windows\system32\catroot2 --------- 32768  
     05.02.2010 22:19     C:\Windows\system32\Tasks --------- 4096  
     02.02.2010 14:34     C:\Windows\system32\migwiz --------- 8192  
     02.02.2010 14:34     C:\Windows\system32\oobe --------- 12288  
     02.02.2010 14:34     C:\Windows\system32\winrm --------- 4096  
     02.02.2010 14:34     C:\Windows\system32\slmgr --------- 4096  
     02.02.2010 14:34     C:\Windows\system32\Boot --------- 4096  
     02.02.2010 14:34     C:\Windows\system32\sysprep --------- 4096  
     02.02.2010 14:34     C:\Windows\system32\Setup --------- 4096  
     02.02.2010 14:34     C:\Windows\system32\migration --------- 8192  
     02.02.2010 14:34     C:\Windows\system32\XPSViewer --------- 4096  
     02.02.2010 14:34     C:\Windows\system32\en-US --------- 147456  
     02.02.2010 14:34     C:\Windows\system32\WCN --------- 4096  
     02.02.2010 14:34     C:\Windows\system32\Dism --------- 8192  
     02.02.2010 14:34     C:\Windows\system32\MUI --------- 4096  
     02.02.2010 14:34     C:\Windows\system32\Printing_Admin_Scripts --------- 4096  
     02.02.2010 14:34     C:\Windows\system32\wbem --------- 65536  
     02.02.2010 14:34     C:\Windows\system32\hu-HU --------- 217088  
     02.02.2010 14:33     C:\Windows\system32\com --------- 4096  
     02.02.2010 14:29     C:\Windows\system32\tr-TR --------- 217088  
     02.02.2010 14:25     C:\Windows\system32\cs-CZ --------- 299008  
     02.02.2010 14:20     C:\Windows\system32\th-TH --------- 65536  
     02.02.2010 14:17     C:\Windows\system32\es-ES --------- 221184  
     02.02.2010 14:13     C:\Windows\system32\sl-SI --------- 65536  
     02.02.2010 14:10     C:\Windows\system32\sk-SK --------- 61440  
     02.02.2010 14:07     C:\Windows\system32\sv-SE --------- 217088  
     02.02.2010 14:03     C:\Windows\system32\ru-RU --------- 327680  
     02.02.2010 13:58     C:\Windows\system32\ro-RO --------- 65536  
     02.02.2010 13:54     C:\Windows\system32\pt-PT --------- 286720  
     02.02.2010 13:50     C:\Windows\system32\fi-FI --------- 217088  
     01.02.2010 11:26     C:\Windows\system32\MRT.exe --------- 30364104  
     23.01.2010 20:57     C:\Windows\system32\pt-BR --------- 299008  
     23.01.2010 20:55     C:\Windows\system32\pl-PL --------- 217088  
     23.01.2010 20:53     C:\Windows\system32\nb-NO --------- 327680  
     23.01.2010 20:52     C:\Windows\system32\nl-NL --------- 221184  
     23.01.2010 20:50     C:\Windows\system32\ko-KR --------- 299008  
     23.01.2010 20:48     C:\Windows\system32\ja-JP --------- 221184  
     23.01.2010 20:46     C:\Windows\system32\it-IT --------- 221184  
     23.01.2010 20:44     C:\Windows\system32\he-IL --------- 143360  
     23.01.2010 20:43     C:\Windows\system32\el-GR --------- 327680  
     23.01.2010 20:41     C:\Windows\system32\fr-FR --------- 221184  
     23.01.2010 20:38     C:\Windows\system32\da-DK --------- 217088  
     23.01.2010 20:36     C:\Windows\system32\zh-TW --------- 299008  
     19.01.2010 00:29     C:\Windows\system32\secproc_ssp_isv.dll --------- 85504  
     19.01.2010 00:29     C:\Windows\system32\secproc_ssp.dll --------- 85504  
     19.01.2010 00:29     C:\Windows\system32\secproc_isv.dll --------- 365568  
     19.01.2010 00:29     C:\Windows\system32\secproc.dll --------- 369152  
     19.01.2010 00:28     C:\Windows\system32\RMActivate_ssp_isv.exe --------- 277504  
     19.01.2010 00:28     C:\Windows\system32\RMActivate_isv.exe --------- 324608  
     19.01.2010 00:28     C:\Windows\system32\RMActivate_ssp.exe --------- 280064  
     19.01.2010 00:28     C:\Windows\system32\RMActivate.exe --------- 320512  
     14.01.2010 11:12     C:\Windows\system32\MpSigStub.exe --------- 181120  
     11.01.2010 08:12     C:\Windows\system32\iedkcs32.dll --------- 381440  
     29.12.2009 08:28     C:\Windows\system32\FNTCACHE.DAT --------- 409760  
     28.12.2009 19:49     C:\Windows\system32\zh-HK --------- 12288  
     28.12.2009 19:48     C:\Windows\system32\zh-CN --------- 327680  
     28.12.2009 19:45     C:\Windows\system32\ar-SA --------- 147456  
     28.12.2009 18:06     C:\Windows\system32\wdi --------- 4096  
     26.12.2009 13:08     C:\Windows\system32\de-DE --------- 327680  
     25.12.2009 19:04     C:\Windows\system32\javaws.exe --------- 149280  
     25.12.2009 19:04     C:\Windows\system32\javaw.exe --------- 145184  
     25.12.2009 19:04     C:\Windows\system32\java.exe --------- 145184  
     25.12.2009 19:04     C:\Windows\system32\deploytk.dll --------- 411368  
     25.12.2009 18:43     C:\Windows\system32\restore --------- 0  
     25.12.2009 07:20     C:\Windows\system32\Microsoft --------- 0  
     25.12.2009 01:54     C:\Windows\system32\Recovery --------- 0  
     24.12.2009 23:26     C:\Windows\system32\license.rtf --------- 52953  
     24.12.2009 23:18     C:\Windows\system32\emptyregdb.dat --------- 21532  
     24.12.2009 22:56     C:\Windows\system32\RemInst --------- 0  
     24.12.2009 22:56     C:\Windows\system32\OEM --------- 0  
     24.12.2009 22:56     C:\Windows\system32\nn-NO --------- 0  
     24.12.2009 22:56     C:\Windows\system32\Macromed --------- 0  
     24.12.2009 22:56     C:\Windows\system32\DRVSTORE --------- 0  
     24.12.2009 22:56     C:\Windows\system32\Branding --------- 0  
     24.12.2009 22:56     C:\Windows\system32\Asus_Camera_ScreenSaver dir --------- 4096  
     24.12.2009 21:36     C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 --------- 3616  
     24.12.2009 21:36     C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 --------- 3616  
     24.12.2009 20:54     C:\Windows\system32\CCCInstall_200912242054573190.log --------- 17103  
     19.12.2009 10:02     C:\Windows\system32\wininet.dll --------- 977920  
     19.12.2009 10:02     C:\Windows\system32\urlmon.dll --------- 1224704  
     19.12.2009 10:02     C:\Windows\system32\tsbyuv.dll --------- 12288  
     19.12.2009 10:02     C:\Windows\system32\quartz.dll --------- 1328640  
     19.12.2009 10:02     C:\Windows\system32\msyuv.dll --------- 22016  
     19.12.2009 10:02     C:\Windows\system32\msvidc32.dll --------- 31744  
     19.12.2009 10:02     C:\Windows\system32\msrle32.dll --------- 13312  
     19.12.2009 10:02     C:\Windows\system32\msfeedsbs.dll --------- 64512  
     19.12.2009 10:02     C:\Windows\system32\mshtml.dll --------- 5961728  
    ----------------------------------------
    
     
    C:\Windows\Prefetch
    
    ----------------------------------------
    
     
    C:\Windows\Tasks
    
     18.02.2010 12:01     C:\Windows\Tasks\SA.DAT --------- 6  
     14.07.2009 05:53     C:\Windows\Tasks\SCHEDLGU.TXT --------- 11964  
    ----------------------------------------
    
     
    C:\Windows\Temp
    
    ----------------------------------------
    
     
    C:\Users\PICO\AppData\Local\Temp
    
     18.02.2010 14:52     C:\Users\PICO\AppData\Local\Temp\plugtmp-11 --------- 0  
     18.02.2010 12:07     C:\Users\PICO\AppData\Local\Temp\jusched.log --------- 25435  
     18.02.2010 12:02     C:\Users\PICO\AppData\Local\Temp\WPDNSE --------- 0  
     18.02.2010 00:52     C:\Users\PICO\AppData\Local\Temp\hsperfdata_PICO --------- 0  
     18.02.2010 00:52     C:\Users\PICO\AppData\Local\Temp\java_install_reg.log --------- 7111  
     18.02.2010 00:36     C:\Users\PICO\AppData\Local\Temp\kl-setup-2010-02-18-00-34-42.log --------- 7815  
     18.02.2010 00:36     C:\Users\PICO\AppData\Local\Temp\kl-install-2010-02-18-00-34-42.log --------- 4627924  
     18.02.2010 00:36     C:\Users\PICO\AppData\Local\Temp\ucaevents.log --------- 453544  
     18.02.2010 00:34     C:\Users\PICO\AppData\Local\Temp\tmpD06A.tmp --------- 30900  
     18.02.2010 00:34     C:\Users\PICO\AppData\Local\Temp\kl-setup-2010-02-18-00-32-05.log --------- 7934  
     18.02.2010 00:34     C:\Users\PICO\AppData\Local\Temp\kl-install-2010-02-18-00-32-05.log --------- 123468  
     18.02.2010 00:33     C:\Users\PICO\AppData\Local\Temp\SYMEVENT.LOG --------- 18881  
     18.02.2010 00:33     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-18-2010 0h33m10s.log --------- 113834  
     18.02.2010 00:32     C:\Users\PICO\AppData\Local\Temp\tmp6B61.tmp --------- 30900  
     18.02.2010 00:29     C:\Users\PICO\AppData\Local\Temp\plugtmp-10 --------- 24576  
     18.02.2010 00:28     C:\Users\PICO\AppData\Local\Temp\scan0.sca --------- 724  
     17.02.2010 23:09     C:\Users\PICO\AppData\Local\Temp\msdt --------- 0  
     17.02.2010 22:51     C:\Users\PICO\AppData\Local\Temp\wmplog13.sqm --------- 1160  
     17.02.2010 21:58     C:\Users\PICO\AppData\Local\Temp\plugtmp-9 --------- 4096  
     17.02.2010 21:40     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-17-2010 21h40m11s.log --------- 113834  
     16.02.2010 20:31     C:\Users\PICO\AppData\Local\Temp\wmplog12.sqm --------- 1256  
     16.02.2010 20:31     C:\Users\PICO\AppData\Local\Temp\wmsetup.log --------- 5028  
     16.02.2010 20:30     C:\Users\PICO\AppData\Local\Temp\wmplog11.sqm --------- 1400  
     16.02.2010 20:28     C:\Users\PICO\AppData\Local\Temp\wmplog10.sqm --------- 1424  
     16.02.2010 20:27     C:\Users\PICO\AppData\Local\Temp\wmplog09.sqm --------- 1160  
     16.02.2010 20:27     C:\Users\PICO\AppData\Local\Temp\wmplog08.sqm --------- 1160  
     16.02.2010 20:27     C:\Users\PICO\AppData\Local\Temp\wmplog07.sqm --------- 1160  
     16.02.2010 20:26     C:\Users\PICO\AppData\Local\Temp\wmplog06.sqm --------- 1160  
     16.02.2010 20:26     C:\Users\PICO\AppData\Local\Temp\wmplog05.sqm --------- 1160  
     16.02.2010 20:23     C:\Users\PICO\AppData\Local\Temp\plugtmp-8 --------- 4096  
     16.02.2010 20:10     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-16-2010 20h10m34s.log --------- 113830  
     16.02.2010 19:12     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-16-2010 19h12m46s.log --------- 113836  
     16.02.2010 18:07     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-16-2010 18h7m22s.log --------- 113836  
     15.02.2010 09:56     C:\Users\PICO\AppData\Local\Temp\plugtmp-7 --------- 4096  
     15.02.2010 09:48     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-15-2010 9h48m8s.log --------- 113832  
     12.02.2010 18:21     C:\Users\PICO\AppData\Local\Temp\plugtmp-6 --------- 8192  
     12.02.2010 17:08     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-12-2010 17h8m55s.log --------- 113832  
     12.02.2010 11:12     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-12-2010 11h12m7s.log --------- 113838  
     11.02.2010 01:06     C:\Users\PICO\AppData\Local\Temp\plugtmp-5 --------- 131072  
     10.02.2010 21:20     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-10-2010 21h20m33s.log --------- 113834  
     10.02.2010 12:59     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-10-2010 12h59m23s.log --------- 113838  
     10.02.2010 12:01     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-10-2010 12h1m25s.log --------- 113838  
     10.02.2010 01:26     C:\Users\PICO\AppData\Local\Temp\plugtmp-4 --------- 8192  
     09.02.2010 21:37     C:\Users\PICO\AppData\Local\Temp\trk7576.tmp --------- 0  
     09.02.2010 20:53     C:\Users\PICO\AppData\Local\Temp\trk1260.tmp --------- 0  
     09.02.2010 13:51     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-9-2010 13h51m55s.log --------- 113834  
     09.02.2010 03:05     C:\Users\PICO\AppData\Local\Temp\plugtmp-3 --------- 4096  
     08.02.2010 12:20     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-8-2010 12h20m19s.log --------- 113832  
     07.02.2010 23:48     C:\Users\PICO\AppData\Local\Temp\jar_cache2259475028925994895.tmp --------- 906  
     07.02.2010 23:48     C:\Users\PICO\AppData\Local\Temp\jar_cache7646479010097018696.tmp --------- 217  
     07.02.2010 23:48     C:\Users\PICO\AppData\Local\Temp\jar_cache7799391489593585069.tmp --------- 639  
     07.02.2010 23:48     C:\Users\PICO\AppData\Local\Temp\jar_cache4686464748202529008.tmp --------- 58  
     07.02.2010 23:48     C:\Users\PICO\AppData\Local\Temp\jar_cache1714674698832704033.tmp --------- 1007  
     07.02.2010 23:48     C:\Users\PICO\AppData\Local\Temp\jar_cache1965909017389440391.tmp --------- 2090  
     07.02.2010 23:48     C:\Users\PICO\AppData\Local\Temp\jar_cache3381878551995012735.tmp --------- 2072  
     07.02.2010 20:49     C:\Users\PICO\AppData\Local\Temp\jar_cache5375942681710480660.tmp --------- 2209  
     07.02.2010 20:48     C:\Users\PICO\AppData\Local\Temp\jar_cache3988389388749931987.tmp --------- 7218  
     07.02.2010 17:29     C:\Users\PICO\AppData\Local\Temp\{68613989-E2E8-44C6-8D59-412F5C54C75B} --------- 4096  
     07.02.2010 17:28     C:\Users\PICO\AppData\Local\Temp\Low --------- 0  
     07.02.2010 17:28     C:\Users\PICO\AppData\Local\Temp\rb --------- 12288  
     07.02.2010 17:26     C:\Users\PICO\AppData\Local\Temp\plugtmp-2 --------- 0  
     07.02.2010 16:17     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-7-2010 16h17m37s.log --------- 113828  
     06.02.2010 16:23     C:\Users\PICO\AppData\Local\Temp\wmplog04.sqm --------- 1636  
     06.02.2010 13:57     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-6-2010 13h57m50s.log --------- 113832  
     06.02.2010 13:35     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-6-2010 13h35m49s.log --------- 113836  
     06.02.2010 10:46     C:\Users\PICO\AppData\Local\Temp\wmplog03.sqm --------- 1172  
     06.02.2010 10:03     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-6-2010 10h3m25s.log --------- 113836  
     05.02.2010 22:19     C:\Users\PICO\AppData\Local\Temp\SkypeToolbars.msi --------- 2430976  
     05.02.2010 22:18     C:\Users\PICO\AppData\Local\Temp\Skype.msi --------- 18803200  
     02.02.2010 12:06     C:\Users\PICO\AppData\Local\Temp\SymNRT 2-2-2010 12h6m49s.log --------- 113838  
     25.01.2010 11:26     C:\Users\PICO\AppData\Local\Temp\SymNRT 1-25-2010 11h26m46s.log --------- 113826  
     23.01.2010 17:38     C:\Users\PICO\AppData\Local\Temp\plugtmp-1 --------- 4096  
     19.01.2010 12:42     C:\Users\PICO\AppData\Local\Temp\SymNRT 1-19-2010 12h42m49s.log --------- 113828  
     13.01.2010 19:26     C:\Users\PICO\AppData\Local\Temp\plugtmp --------- 0  
     13.01.2010 17:28     C:\Users\PICO\AppData\Local\Temp\SymNRT 1-13-2010 17h28m15s.log --------- 113852  
     13.01.2010 11:37     C:\Users\PICO\AppData\Local\Temp\SymNRT 1-13-2010 11h36m59s.log --------- 113836  
     12.01.2010 22:35     C:\Users\PICO\AppData\Local\Temp\comtypes_cache --------- 0  
     12.01.2010 20:00     C:\Users\PICO\AppData\Local\Temp\wze13d --------- 0  
     12.01.2010 19:35     C:\Users\PICO\AppData\Local\Temp\wzb444 --------- 0  
     12.01.2010 19:10     C:\Users\PICO\AppData\Local\Temp\wzeca1 --------- 0  
     12.01.2010 19:03     C:\Users\PICO\AppData\Local\Temp\wz73ca --------- 0  
     12.01.2010 18:29     C:\Users\PICO\AppData\Local\Temp\WZSE0.TMP --------- 0  
     12.01.2010 16:58     C:\Users\PICO\AppData\Local\Temp\D6BVW3g9.lnk --------- 0  
     12.01.2010 16:45     C:\Users\PICO\AppData\Local\Temp\SymNRT 1-12-2010 16h45m24s.log --------- 113830  
     11.01.2010 22:18     C:\Users\PICO\AppData\Local\Temp\wmplog02.sqm --------- 1192  
     11.01.2010 21:41     C:\Users\PICO\AppData\Local\Temp\SymNRT 1-11-2010 21h41m42s.log --------- 113856  
     11.01.2010 13:53     C:\Users\PICO\AppData\Local\Temp\SymNRT 1-11-2010 13h53m46s.log --------- 113852  
     02.01.2010 23:57     C:\Users\PICO\AppData\Local\Temp\SymNRT 1-2-2010 23h57m13s.log --------- 113832  
     02.01.2010 22:03     C:\Users\PICO\AppData\Local\Temp\SymNRT 1-2-2010 22h3m38s.log --------- 113834  
     02.01.2010 19:56     C:\Users\PICO\AppData\Local\Temp\trkB6E5.tmp --------- 0  
     02.01.2010 19:55     C:\Users\PICO\AppData\Local\Temp\wmplog01.sqm --------- 1160  
     02.01.2010 16:33     C:\Users\PICO\AppData\Local\Temp\wmplog00.sqm --------- 140  
     02.01.2010 16:11     C:\Users\PICO\AppData\Local\Temp\SymNRT 1-2-2010 16h11m15s.log --------- 113834  
     01.01.2010 22:31     C:\Users\PICO\AppData\Local\Temp\FP_PL_PFS_INSTALLER.exe --------- 1924840  
     01.01.2010 22:12     C:\Users\PICO\AppData\Local\Temp\SymNRT 1-1-2010 22h12m16s.log --------- 113830  
     31.12.2009 11:22     C:\Users\PICO\AppData\Local\Temp\StructuredQuery.log --------- 17534  
     31.12.2009 11:21     C:\Users\PICO\AppData\Local\Temp\trkAE0A.tmp --------- 0  
     31.12.2009 11:18     C:\Users\PICO\AppData\Local\Temp\SymNRT 12-31-2009 11h18m56s.log --------- 113846  
     30.12.2009 19:08     C:\Users\PICO\AppData\Local\Temp\trk16CF.tmp --------- 0  
     30.12.2009 18:56     C:\Users\PICO\AppData\Local\Temp\trkC1CC.tmp --------- 0  
     30.12.2009 18:56     C:\Users\PICO\AppData\Local\Temp\WLZ7F8B.tmp --------- 20480  
     30.12.2009 18:47     C:\Users\PICO\AppData\Local\Temp\SymNRT 12-30-2009 18h47m1s.log --------- 113836  
     29.12.2009 08:29     C:\Users\PICO\AppData\Local\Temp\SymNRT 12-29-2009 8h29m15s.log --------- 113842  
     28.12.2009 13:10     C:\Users\PICO\AppData\Local\Temp\SymNRT 12-28-2009 13h10m18s.log --------- 113840  
     26.12.2009 13:25     C:\Users\PICO\AppData\Local\Temp\SymNRT 12-26-2009 13h25m43s.log --------- 113846  
     26.12.2009 13:17     C:\Users\PICO\AppData\Local\Temp\DMI80B.tmp --------- 0  
     26.12.2009 12:54     C:\Users\PICO\AppData\Local\Temp\SymNRT 12-26-2009 12h54m10s.log --------- 113848  
     25.12.2009 20:36     C:\Users\PICO\AppData\Local\Temp\SymNRT 12-25-2009 18h32m59s.log --------- 227330  
     25.12.2009 19:05     C:\Users\PICO\AppData\Local\Temp\tmp86747.WMC --------- 0  
     25.12.2009 19:04     C:\Users\PICO\AppData\Local\Temp\java_install.log --------- 28351  
     25.12.2009 19:02     C:\Users\PICO\AppData\Local\Temp\java_install_sp.log --------- 1677  
     25.12.2009 19:02     C:\Users\PICO\AppData\Local\Temp\jinstall.cfg --------- 931  
     25.12.2009 12:34     C:\Users\PICO\AppData\Local\Temp\FXSAPIDebugLogFile.txt --------- 0  
     25.12.2009 12:34     C:\Users\PICO\AppData\Local\Temp\SymNRT 12-25-2009 12h34m10s.log --------- 113854  
     18.09.2006 20:31     C:\Users\PICO\AppData\Local\Temp\Catalyst.bmp --------- 57656  
    ----------------------------------------
    
     
    C:\Program Files
    
     18.02.2010 00:35     C:\Program Files\Kaspersky Lab --------- 0  
     18.02.2010 00:33     C:\Program Files\Common Files --------- 4096  
     07.02.2010 17:30     C:\Program Files\ICQ7.0 --------- 12288  
     07.02.2010 17:28     C:\Program Files\Mozilla Firefox --------- 24576  
     07.02.2010 17:28     C:\Program Files\ICQ6Toolbar --------- 4096  
     07.02.2010 17:28     C:\Program Files\InstallShield Installation Information --------- 4096  
     05.02.2010 22:48     C:\Program Files\Internet Explorer --------- 8192  
     05.02.2010 22:19     C:\Program Files\Skype --------- 0  
     02.02.2010 14:34     C:\Program Files\Windows Mail --------- 4096  
     02.02.2010 14:34     C:\Program Files\Windows Sidebar --------- 4096  
     02.02.2010 14:34     C:\Program Files\Windows Media Player --------- 8192  
     02.02.2010 14:34     C:\Program Files\Windows Journal --------- 8192  
     02.02.2010 14:34     C:\Program Files\Windows Photo Viewer --------- 4096  
     02.02.2010 14:34     C:\Program Files\Windows Defender --------- 4096  
     25.01.2010 10:32     C:\Program Files\Microsoft Silverlight --------- 4096  
     23.01.2010 20:39     C:\Program Files\DVD Maker --------- 8192  
     12.01.2010 22:38     C:\Program Files\WinRAR --------- 4096  
     12.01.2010 22:34     C:\Program Files\Uniblue --------- 0  
     12.01.2010 19:44     C:\Program Files\PC Drivers HeadQuarters --------- 0  
     12.01.2010 18:29     C:\Program Files\WinZip --------- 8192  
     01.01.2010 22:25     C:\Program Files\DivX --------- 4096  
     30.12.2009 18:55     C:\Program Files\Winamp --------- 4096  
     30.12.2009 18:53     C:\Program Files\Winamp Detect --------- 0  
     28.12.2009 13:22     C:\Program Files\Microsoft Works --------- 4096  
     25.12.2009 19:04     C:\Program Files\Java --------- 0  
     25.12.2009 18:55     C:\Program Files\ATI --------- 0  
     25.12.2009 18:54     C:\Program Files\ATI Technologies --------- 0  
     25.12.2009 01:54     C:\Program Files\Windows NT --------- 4096  
     25.12.2009 01:54     C:\Program Files\Gemeinsame Dateien --------- 0  
     24.12.2009 22:55     C:\Program Files\Windows Photo Gallery --------- 0  
     24.12.2009 22:55     C:\Program Files\Windows Live SkyDrive --------- 0  
     24.12.2009 22:55     C:\Program Files\Windows Live --------- 4096  
     24.12.2009 22:55     C:\Program Files\Windows Collaboration --------- 0  
     24.12.2009 22:55     C:\Program Files\Windows Calendar --------- 0  
     24.12.2009 22:55     C:\Program Files\VIA --------- 0  
     24.12.2009 22:55     C:\Program Files\SRS Labs --------- 0  
     24.12.2009 22:55     C:\Program Files\Realtek --------- 0  
     24.12.2009 22:55     C:\Program Files\P4G --------- 4096  
     24.12.2009 22:55     C:\Program Files\NortonInstaller --------- 0  
     24.12.2009 22:55     C:\Program Files\Multimedia Card Reader --------- 4096  
     24.12.2009 22:55     C:\Program Files\Microsoft.NET --------- 0  
     24.12.2009 22:55     C:\Program Files\Microsoft Visual Studio --------- 0  
     24.12.2009 22:55     C:\Program Files\Microsoft SQL Server Compact Edition --------- 0  
     24.12.2009 22:55     C:\Program Files\Microsoft Office Outlook Connector --------- 4096  
     24.12.2009 22:55     C:\Program Files\Microsoft Office --------- 4096  
     24.12.2009 22:54     C:\Program Files\Microsoft Games --------- 4096  
     24.12.2009 22:54     C:\Program Files\Microsoft --------- 0  
     24.12.2009 22:54     C:\Program Files\CyberLink --------- 4096  
     24.12.2009 22:53     C:\Program Files\Cisco --------- 0  
     24.12.2009 22:53     C:\Program Files\ATKGFNEX --------- 4096  
     24.12.2009 22:53     C:\Program Files\Atheros --------- 0  
     24.12.2009 22:53     C:\Program Files\ASUS --------- 4096  
     24.12.2009 22:53     C:\Program Files\AMD --------- 0  
     24.12.2009 22:53     C:\Program Files\Adobe --------- 0  
     24.12.2009 22:53     C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites --------- 8192  
     24.12.2009 22:41     C:\Program Files\Elantech --------- 4096  
     14.07.2009 05:53     C:\Program Files\Uninstall Information --------- 0  
     14.07.2009 05:52     C:\Program Files\Windows Portable Devices --------- 0  
     14.07.2009 05:52     C:\Program Files\Reference Assemblies --------- 0  
     14.07.2009 05:52     C:\Program Files\MSBuild --------- 0  
     14.07.2009 05:41     C:\Program Files\desktop.ini --------- 174  
    ----------------------------------------
    
     
    C:\ProgramData\.. 
    
    PICO    
    Default    
    Public    
    Default User    
    All Users    
    desktop.ini    
    ----------------------------------------
    
     
    C:\Windows\system32\drivers\etc\hosts
    
    127.0.0.1       localhost
    ::1             localhost
    
    ----------------------------------------
    
     
    
    Abbildname                     PID Sitzungsname       Sitz.-Nr. Speichernutzung
    ========================= ======== ================ =========== ===============
    System Idle Process              0 Services                   0            24 K
    System                           4 Services                   0           828 K
    smss.exe                       316 Services                   0           760 K
    csrss.exe                      400 Services                   0         3.252 K
    csrss.exe                      476 Console                    1        10.368 K
    wininit.exe                    484 Services                   0         3.460 K
    winlogon.exe                   520 Console                    1         4.712 K
    services.exe                   584 Services                   0         6.868 K
    lsass.exe                      600 Services                   0         7.992 K
    lsm.exe                        608 Services                   0         3.212 K
    svchost.exe                    716 Services                   0         7.016 K
    svchost.exe                    796 Services                   0         6.008 K
    atiesrxx.exe                   852 Services                   0         3.136 K
    svchost.exe                    932 Services                   0        19.300 K
    svchost.exe                    972 Services                   0        59.352 K
    svchost.exe                   1004 Services                   0        24.304 K
    svchost.exe                   1156 Services                   0         7.704 K
    atieclxx.exe                  1244 Console                    1         4.432 K
    svchost.exe                   1296 Services                   0        10.620 K
    ADSMSrv.exe                   1512 Services                   0         2.984 K
    AsLdrSrv.exe                  1540 Services                   0         2.940 K
    GFNEXSrv.exe                  1572 Services                   0         2.388 K
    spoolsv.exe                   1652 Services                   0         8.484 K
    svchost.exe                   1688 Services                   0        10.064 K
    avp.exe                       1828 Services                   0        20.900 K
    ICQ Service.exe               1888 Services                   0         6.124 K
    LSSrvc.exe                    1988 Services                   0         3.536 K
    SRS_VolSync.exe               2032 Services                   0         3.968 K
    svchost.exe                    276 Services                   0         4.124 K
    taskhost.exe                  2456 Console                    1         6.504 K
    explorer.exe                  2548 Console                    1        53.624 K
    taskeng.exe                   2624 Console                    1         4.672 K
    ASPG.exe                      2680 Console                    1           532 K
    sensorsrv.exe                 2692 Console                    1           532 K
    ALU.exe                       2700 Console                    1           532 K
    ACMON.exe                     2764 Console                    1         8.032 K
    HControl.exe                  2772 Console                    1         5.704 K
    MsgTranAgt.exe                2784 Console                    1         3.236 K
    wcourier.exe                  2824 Console                    1         6.472 K
    ATKOSD.exe                    2832 Console                    1         4.792 K
    BatteryLife.exe               2892 Console                    1           532 K
    KBFiltr.exe                   2908 Console                    1         3.272 K
    ACEngSvr.exe                  2968 Console                    1         4.748 K
    dwm.exe                       2996 Console                    1        43.956 K
    WDC.exe                       3004 Console                    1         4.180 K
    ETDCtrl.exe                   3548 Console                    1         6.136 K
    ADSMTray.exe                  3624 Console                    1         4.096 K
    DMedia.exe                    3648 Console                    1         3.188 K
    ATKOSD2.exe                   3676 Console                    1         3.964 K
    CLMLSvc.exe                   3748 Console                    1         8.804 K
    HControlUser.exe              3756 Console                    1         3.324 K
    VDECK.EXE                     3896 Console                    1        25.452 K
    SearchIndexer.exe             3920 Services                   0        19.720 K
    MOM.exe                       1724 Console                    1         4.276 K
    jusched.exe                   1840 Console                    1         7.472 K
    avp.exe                       2040 Console                    1         6.180 K
    sidebar.exe                   2312 Console                    1        37.628 K
    LightScribeControlPanel.e      624 Console                    1         9.340 K
    ICQ.exe                       2368 Console                    1        28.580 K
    CCC.exe                       1908 Console                    1        10.724 K
    Skype.exe                     3772 Console                    1        60.520 K
    skypePM.exe                   2156 Console                    1        25.504 K
    svchost.exe                   1956 Services                   0        24.780 K
    Adobe_Updater.exe             4616 Console                    1        10.840 K
    notepad.exe                   2852 Console                    1         4.996 K
    notepad.exe                   5184 Console                    1         5.604 K
    firefox.exe                   4080 Console                    1       107.404 K
    klwtblfs.exe                  4280 Console                    1         3.968 K
    cmd.exe                       5096 Console                    1         3.360 K
    conhost.exe                   5672 Console                    1         5.068 K
    SearchProtocolHost.exe        4456 Services                   0         6.456 K
    SearchFilterHost.exe          5804 Services                   0         4.528 K
    dllhost.exe                   5216 Console                    1         4.372 K
    tasklist.exe                  2072 Console                    1         4.540 K
    WmiPrvSE.exe                  3788 Services                   0         5.212 K
    
     
    ***** Ende des Scans 18.02.2010 um 14:59:44,69 ***

    So, würde mich freuen wenn ihr mir helfen könntet....

    MfG
    Geändert von Daniel321 (18.02.2010 um 14:20 Uhr) Grund: was vergessen gehabt....sorry

  2. #2
    Einsteiger
    Registriert seit
    18.02.2010
    Beiträge
    3

    AW: AsScrPro.exe problem.....



    Keiner da????

    Ich warte eisern


  3. #3
    Einsteiger
    Registriert seit
    18.02.2010
    Beiträge
    3

    AW: AsScrPro.exe problem.....

    Guten Tag ,

    ich wollte mal fragen ob jemand mir helfen kann und sich das problem mal anschaut oder könnte es sein das es an einem anderen virus/trojaner liegt?? Sehe durch die Protokolle nicht wirklich durch. wäre wirklich sehr nett wenn sich jemand damit befassen könnte,da ich alleine wirklich nicht weiterkomme.
    Würde mich freuen von euch zu hören....

    LG

  4. #4
    Moderator (global) Team-Mitglied Benutzerbild von Petra
    Registriert seit
    03.05.2007
    Ort
    Nähe Düsseldorf
    Beiträge
    28.599

    AW: AsScrPro.exe problem.....


    zunächst bitte anklicken und aufmerksam durchlesen: Worauf muss ich während der Bereinigung achten?

    ===== Punkt 1 =====

    Wie kommst Du darauf, dass es sich bei der AsScrPro.exe um einen Virus handelt? Soweit ich recherchieren konnte, ist diese Datei in Ordnung und gehört zum ASUS Screen Saver Protector.


    ===== Punkt 2 =====

    Hast Du an Deinem Windows 7 etwas geändert, Dateien gelöscht oder irgendwelche Tweak-Tools benutzt? Berichte möglichst genau, welche Probleme Du mit Deinem Rechner hast und welche Tools/Remover Du evtl. schon ausprobiert hast, um das Problem loszuwerden. Poste mir evtl. vorhandene Logfiles.

    Zudem ist meine CPU Auslastung relativ hoch mit schwankungen zwischen 27% und 48%...kenne dies von alten Betriebssystemen nicht. Habe versucht die exe datei zu löschen, jedoch wurde mir immer gesagt das ich dafür administratorrechte benötige. Aber mein Hauptname ist mein Adminestrator....komisch komisch komisch
    Welche Prozesse verursachen die hohe Auslastung? Welchen Prozess wolltest Du löschen? Apropos, Du solltest nicht einfach Prozesse löschen, wenn Du nicht sicher weißt, dass es sich um Schädlinge handelt. Damit kannst Du Dein System in einen instabilen Zustand bringen.

    ===== Punkt 3 =====

    Kannst Du auf Deinem Computer alle Dateien und Datei-Endungen sehen? Falls nein, bitte diese Einstellungen in den Ordneroptionen vornehmen.

    ===== Punkt 4 =====

    ProcessExplorer als Ersatz für den Windows Taskmanager installieren

    Lade Dir den Process Explorer als Ersatz für den Taskmanager herunter und installiere ihn, hier findest Du eine Anleitung. Das ist ein wesentlich leistungsfähigerer Ersatz für den Windows-Taskmanager. Im Menü unter "Options" kannst Du den ProcessExplorer dauerhaft als Ersatz für den Taskmanager einrichten (Replace Taskmanager). Das ist sehr empfehlenswert, weil der ProcessExplorer erheblich mehr Funktionen als der Taskmanager hat. Wenn Du diese Einstellung gemacht hast, öffnet sich mit der Tastenkombination STRG + ALT + Entf. nicht mehr der Taskmanager, sondern der ProcessExplorer. Das kann jederzeit durch Abhaken dieser Einstellung wieder rückgängig gemacht werden.

    Was wir jetzt konkret brauchen: In jeder Zeile steht ein Prozess, ein paar der Zeilen sind keine richtigen Prozesse, sondern nur Pseudoprozesse für die Tätigkeit des Windos-Kernels. Im Menü View => Select Columns wird ein Dialog geöffnet, in dem Du auswählen kannst, welche Spalten mit Informationen zu den Prozessen angezeigt werden sollen. In dem gehe in das Register "Process Performance" und stelle sicher, dass dort "CPU Usage" angehakt ist, "CPU History" wäre ebenfalls sinnvoll. Unter "CPU Usage" wird der aktuelle Wert der Prozessorauslastung für jeden Prozess angezeigt (im Tabellentitel steht nur kurz "CPU"), "CPU History" blendet für jeden Prozess ein Diagramm ein, das eine Kurve mit der Prozessorauslastung für die letzte Zeit anzeigt.

    Damit sollte es Dir möglich sein, zu identifizieren, welcher Prozess Deine CPU in Trab hält. Mache einen Doppelklick auf den Prozess. Du kannst von dem ganzen auch einen Screenshot machen und ihn als Anhang mit Deiner Antwort hochladen (auf "Erweitert" unter dem Textfeld klicken und über "Anhänge verwalten" auf Deinem Rechner suchen lassen und über "Hochladen" anhängen).


    ===== Punkt 5 =====

    Bereinigung mit Malwarebytes' Anti-Malware (Quick-Scan)

    Lade Malwarebytes Anti-Malware (ca. 2 MB) von einem dieser Downloadspiegel herunter:
    Malwarebytes - MajorGeeks.com - BestTechie
    • Anwendbar auf Windows 2000, XP, Vista und Windows 7.
    • Installiere das Programm in den vorgegebenen Pfad.
    • Denke daran, bei Vista das Programm als Admin zu starten, ansonsten per Doppelklick starten.
    • Lasse es online updaten (Reiter Updates), sofern sich das Programm bereits auf dem Rechner befand.
    • Aktiviere "Quick-Scan durchführen" => Scan.
    • Wenn der Scan beendet ist, klicke auf "Ergebnisse anzeigen".
    • Bei Funden in C:\System Volume Information den Haken entfernen.
      Ansonsten wird dieser Systemwiederherstellungspunkt nicht mehr funktionieren.
      Er könnte jedoch trotz Malware noch gebraucht werden.
    • Versichere Dich, dass ansonsten alle Funde markiert sind und drücke "Entferne Auswahl".
    • Poste das Logfile, welches sich in Notepad öffnet, hier in den Thread.
    • Nachträglich kannst du den Bericht unter "Scan-Berichte" finden.
    • Berichte, wie der Rechner nun läuft.
    Hier findest Du eine ausführliche und bebilderte Anleitung.

  5. #5
    Moderator (global) Team-Mitglied Benutzerbild von Petra
    Registriert seit
    03.05.2007
    Ort
    Nähe Düsseldorf
    Beiträge
    28.599

    AW: AsScrPro.exe problem.....

    Fehlende Rückmeldung

    Gibt es Probleme beim Abarbeiten obiger Anleitung, wenn ja welche? Wenn ich innerhalb von fünf Tagen keine Rückmeldung von Dir erhalte, gehe ich davon aus, dass Du nicht mehr weitermachen möchtest und/oder Du das Problem lösen konntest und werde diesen Thread kommentarlos schließen, damit Kapazitäten für andere wartende User frei werden.

    Hinweis: Das Verschwinden der Symptome bedeutet nicht, dass Dein Rechner schon sauber ist.


    Edit 04.03.2010:
    Thread wird mangels Rückmeldung erstmal geschlossen.
    Wenn Du wieder Zeit zum Weitermachen hast, schicke mir eine PN, ich werde den Thread dann wieder öffnen.
    Geändert von Petra (04.03.2010 um 12:15 Uhr)

Aktive Benutzer

Aktive Benutzer

Aktive Benutzer in diesem Thema: 1 (Registrierte Benutzer: 0, Gäste: 1)

     

Ähnliche Themen

  1. Trojaner AssCrPro.exe
    Von Melli im Forum Vista-Archiv
    Antworten: 7
    Letzter Beitrag: 04.12.2008, 13:47
  2. AssCrPro.exe- HILFE bitteeee!!
    Von Melli im Forum Vista-Archiv
    Antworten: 1
    Letzter Beitrag: 02.12.2008, 18:32
  3. Antworten: 2
    Letzter Beitrag: 14.02.2007, 09:42
  4. b.exe Problem
    Von Mark.D im Forum Archiv
    Antworten: 5
    Letzter Beitrag: 09.07.2006, 13:13
  5. Antworten: 23
    Letzter Beitrag: 25.06.2005, 11:45

Forumregeln

  • Es ist Ihnen nicht erlaubt, neue Themen zu verfassen.
  • Es ist Ihnen nicht erlaubt, auf Beiträge zu antworten.
  • Es ist Ihnen nicht erlaubt, Anhänge hochzuladen.
  • Es ist Ihnen nicht erlaubt, Ihre Beiträge zu bearbeiten.