Register for your free account! | Forgot your password?

Go Back   elitepvpers > Off-Topics > Technical Support
You last visited: Today at 23:57

  • Please register to post and access all features, it's quick, easy and FREE!

Advertisement



Windows Vista - Ständig "keine Rückmeldung"

Discussion on Windows Vista - Ständig "keine Rückmeldung" within the Technical Support forum part of the Off-Topics category.

Reply
 
Old   #1
 
XbluesheepX's Avatar
 
elite*gold: 8
Join Date: Sep 2010
Posts: 1,037
Received Thanks: 475
Windows Vista - Ständig "keine Rückmeldung"

Hallo Leute,
ich habe jetzt schon seit sher langer Zeit das Problem, dass jedes mal "keine Rückmeldung" kommt, wenn ich auch nur Opera auf mache. Teilweise kann ich anschließend für Minuten den Pc nicht mal verwenden, weil alles hängt!.

Zu den Pc Daten:
Intel Core 2 DUO CPU E8200 2,66 GhZ
2 GB Arbeitsspeicher
MEDION Pc MS-7366
Win Vista 32 Bit Sp2
Bios: American Megatrends

Habe den Pc jetzt schon ca 4 Jahre glaube ich. Habe dieses Problem seit ca. einem Jahr und Systemwiderherstellung oder CCleaner oder Tuneup hilft nichts!
Habe natürlich auch chon das Problem gegooglt jedoch ohne gutes Ergebnis. Viele Raten einem ein Hijackthis Log zu machen ... was ich auch jetzt tue

Hijackthis Log File:
Code:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:31:15, on 29.03.2011
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.19019)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe
C:\Program Files\ScanSoft\OmniPageSE4.0\OpWareSE4.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\RocketDock\RocketDock.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Users\Majeto\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Majeto\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Majeto\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Majeto\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\rundll32.exe
C:\Users\Majeto\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
R3 - URLSearchHook: BittorrentBar_DE Toolbar - {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - C:\Program Files\BittorrentBar_DE\tbBitt.dll
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\ievkbd.dll
O2 - BHO: BittorrentBar_DE Toolbar - {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - C:\Program Files\BittorrentBar_DE\tbBitt.dll
O2 - BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll
O3 - Toolbar: BittorrentBar_DE Toolbar - {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - C:\Program Files\BittorrentBar_DE\tbBitt.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe"
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETZWERKDIENST')
O4 - HKUS\S-1-5-21-3205815240-3286382296-1311132070-1004\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun (User 'Marcelchen')
O4 - HKUS\S-1-5-21-3205815240-3286382296-1311132070-1004\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe" (User 'Marcelchen')
O4 - HKUS\S-1-5-21-3205815240-3286382296-1311132070-1004\..\Run: [AdobeBridge]  (User 'Marcelchen')
O4 - S-1-5-21-3205815240-3286382296-1311132070-1004 Startup: OpenOffice.org 3.3.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe (User 'Marcelchen')
O4 - S-1-5-21-3205815240-3286382296-1311132070-1004 User Startup: OpenOffice.org 3.3.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe (User 'Marcelchen')
O4 - Startup: OpenOffice.org 3.3.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube Download - C:\Users\Majeto\AppData\Roaming\DVDVideoSoftIEHelpers\youtubedownload.htm
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html
O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Öffnen mit WordPerfect - C:\Program Files\WordPerfect Office X3\Programs\WPLauncher.hta
O9 - Extra button: eBay - Der weltweite Online-Marktplatz - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - http://rover.ebay.com/rover/1/707-37276-17534-25/4 (file missing)
O9 - Extra 'Tools' menuitem: eBay - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - http://rover.ebay.com/rover/1/707-37276-17534-25/4 (file missing)
O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: &Virtuelle Tastatur - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Li&nks untersuchen - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll
O9 - Extra button: eBay - Der weltweite Online-Marktplatz - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - http://rover.ebay.com/rover/1/707-37276-17534-15/4 (file missing) (HKCU)
O9 - Extra 'Tools' menuitem: eBay - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - http://rover.ebay.com/rover/1/707-37276-17534-15/4 (file missing) (HKCU)
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL,C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL,C:\PROGRA~1\KASPER~1\KASPER~2\mzvkbd3.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Kaspersky Anti-Virus Service (AVP) - Kaspersky Lab ZAO - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe
O23 - Service: GnabService - Empolis GmbH - c:\program files\common files\gnab\service\servicecontroller.exe
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\Windows\system32\PSIService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe

--
End of file - 10473 bytes
Und mal ein Log File von meinen instllierten Programmen von CCleaner:
Code:
Activation Assistant for the 2007 Microsoft Office suites	Microsoft Corporation	25.11.2009	14,0MB	
Adobe AIR	Adobe Systems Inc.	25.12.2010	30,7MB	1.5.3.9120
Adobe Community Help	Adobe Systems Incorporated	15.12.2010	2,52MB	3.0.0.400
Adobe Download Manager	NOS Microsystems Ltd.	25.11.2009	0,37MB	1.6.2.49
Adobe Flash Player 10 ActiveX	Adobe Systems Incorporated	20.09.2010		10.1.85.3
Adobe Flash Player 10 Plugin	Adobe Systems Incorporated	24.03.2011		10.2.153.1
Adobe Media Player	Adobe Systems Incorporated	15.12.2010	2,70MB	1.8
Adobe Photoshop CS5	Adobe Systems Incorporated	25.12.2010	1.558,8MB	12.0
Adobe Reader 8.2.6 - Deutsch	Adobe Systems Incorporated	12.02.2011	109,1MB	8.2.6
Akamai NetSession Interface		29.10.2010	5,42MB	
ArcSoft PhotoStudio 5.5	ArcSoft	05.12.2009	25,0MB	
ATI Catalyst Install Manager	ATI Technologies, Inc.	30.01.2008	13,9MB	3.0.657.0
BitTorrent		24.02.2011	4,55MB	7.2.0
BittorrentBar_DE Toolbar	BittorrentBar_DE	24.02.2011	3,97MB	6.2.7.3
Canon MP Navigator 3.0		05.12.2009	17,7MB	
Canon MP600		05.12.2009		
Canon MP600 Benutzerregistrierung		05.12.2009	0,50MB	
Canon Utilities Easy-PhotoPrint		05.12.2009	30,0MB	
CCleaner	Piriform	03.06.2010	2,82MB	2.32
CD-LabelPrint		05.12.2009	11,7MB	
Compatibility Pack für 2007 Office System	Microsoft Corporation	10.11.2010	60,7MB	12.0.6425.1000
Conduit Engine	Conduit Ltd.	24.02.2011	3,82MB	
Dr. Hardware 2011 11.0d	Peter A. Gebhard	19.03.2011	10,3MB	
EASEUS Partition Master 7.0.1 Home Edition	EASEUS	24.01.2011	39,0MB	
FileZilla Client 3.2.7.1		03.03.2011	14,4MB	3.2.7.1
Google Chrome	Google Inc.	22.11.2010	305,5MB	10.0.648.204
Google Desktop	Google	25.11.2009	7,92MB	-
Google Toolbar for Internet Explorer	Google Inc.	25.02.2011	12,0MB	6.6.1409.1944
HiJackThis	Trend Micro	28.03.2011	0,36MB	1.0.0
Java(TM) 6 Update 24	Oracle	05.02.2011	97,1MB	6.0.240
Kaspersky Anti-Virus 2011	Kaspersky Lab	13.10.2010	61,7MB	11.0.1.400
MEDIONbox	Medion	29.01.2008	27,0MB	1.09.0000.00050
Microsoft .NET Framework 1.1		29.01.2008		
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU	Microsoft Corporation	09.04.2010	37,0MB	
Microsoft .NET Framework 3.5 SP1	Microsoft Corporation	27.11.2009	37,0MB	
Microsoft .NET Framework 4 Client Profile	Microsoft Corporation	29.06.2010	120,3MB	4.0.30319
Microsoft .NET Framework 4 Client Profile DEU Language Pack	Microsoft Corporation	29.06.2010	24,5MB	4.0.30319
Microsoft Office Home and Student 2007	Microsoft Corporation	07.07.2010	299,8MB	12.0.6425.1000
Microsoft Office PowerPoint Viewer 2007 (German)	Microsoft Corporation	10.11.2010	76,5MB	12.0.6425.1000
Microsoft Visual C++ 2005 Redistributable	Microsoft Corporation	28.06.2010	0,33MB	8.0.59193
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17	Microsoft Corporation	17.03.2011	0,23MB	9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148	Microsoft Corporation	05.02.2011	0,58MB	9.0.30729.4148
Microsoft Visual C++ Run Time  Lib Setup	Microsoft	27.06.2010	1,70MB	1.0.0
Microsoft Works	Microsoft Corporation	22.12.2010	544,7MB	9.7.0621
Mozilla Firefox (3.6.3)	Mozilla	15.04.2010	26,7MB	3.6.3 (de)
MSXML 4.0 SP2 (KB936181)	Microsoft Corporation	29.01.2008	1,28MB	4.20.9848.0
MSXML 4.0 SP2 (KB941833)	Microsoft Corporation	29.01.2008	1,28MB	4.20.9849.0
MSXML 4.0 SP2 (KB954430)	Microsoft Corporation	27.11.2009	35,00KB	4.20.9870.0
MSXML 4.0 SP2 (KB973688)	Microsoft Corporation	27.11.2009	1,34MB	4.20.9876.0
MSXML 4.0 SP2 Parser and SDK	Microsoft Corporation	04.04.2010	36,00KB	4.20.9818.0
Nero 8 Essentials	Nero AG	30.01.2008	1.763,9MB	8.10.284
NVIDIA 3D Vision Treiber 260.99	NVIDIA Corporation	04.01.2011	18,1MB	260.99
NVIDIA Drivers	NVIDIA Corporation	03.06.2010		1.10
NVIDIA Grafiktreiber 260.99	NVIDIA Corporation	04.01.2011	84,9MB	260.99
NVIDIA Photoshop Plug-ins		31.10.2010	1,61MB	1.00.000
NVIDIA PhysX-Systemsoftware 9.10.0514	NVIDIA Corporation	04.01.2011	73,3MB	9.10.0514
OpenOffice.org 3.3	OpenOffice.org	05.02.2011	432,8MB	3.3.9567
Pando Media Booster	Pando Networks Inc.	10.02.2011	6,70MB	2.3.3.6
QMC		30.01.2011	77,2MB	
Realtek High Definition Audio Driver	Realtek Semiconductor Corp.	29.01.2008	15,6MB	6.0.1.5512
RocketDock 1.3.5	Punk Software	01.10.2010	12,0MB	
ScanSoft OmniPage SE 4.0	Nuance Communications, Inc.	05.12.2009	156,3MB	15.00.0020
System Requirements Lab		04.01.2011	0,73MB	
TuneUp Utilities 2011	TuneUp Software	03.02.2011	64,3MB	10.0.3000.99
UseNeXT	Tangysoft Ltd.	24.03.2011	3,82MB	
VLC media player 1.1.5	VideoLAN	19.02.2011	78,1MB	1.1.5
Windows Live Anmelde-Assistent	Microsoft Corporation	26.09.2010	1,93MB	5.000.818.5
Windows Live Essentials	Microsoft Corporation	26.09.2010	43,9MB	14.0.8117.0416
Windows Live-Uploadtool	Microsoft Corporation	26.09.2010	0,22MB	14.0.8014.1029
WinRAR		20.12.2009	3,77MB	
XviD4PSP 6.0	Winnydows	15.03.2011	13,6MB	6.001

Was ich auch bemerkt habe ist, dass die CPU Auslastung extrem hoch ist. Sie ist selbst, wenn ich nur 1 bis 2 Programme offen habe auf 80%.
Und noch das letzte was ich zu sagen habe ist, dass ich auch schon ein Virenprogramm (Kaspersky) habe ...


Hoffe ihr könnt mir schnell helfen, BEVOR ich noch den SCHEI?ß Pc von ner Brücke werfe!
XbluesheepX
XbluesheepX is offline  
Old 03/29/2011, 23:25   #2
 
elite*gold: 4
Join Date: Dec 2010
Posts: 4,733
Received Thanks: 3,870
Ein Tipp, Finger weg von Tuneup!

Ich werde mal ein bisschen recherchieren, mal gucken ob ich etwas finde.

MfG

//edit - Falls das Betriebssytem vorinstalliert war, vorallem mit der ganzen Werbung, kann es sein dass ein Fehler bei der Installation von Vista bei dem Hersteller passiert ist, doch das setzten wir jetzt erstmal an letzte Stelle.

Prüfe bitte deine Festplatte auf Fehler. -> Rechtsklick auf deine Festplatte, meist C: -> Eigentschaften -> Tools "Auf Fehler überprüfen".

Lass die Festplatte auf Fehler durchsuchen, wenn keiner auftritt ist das schonmal in Ordnung.

Könntest du mir bitte deine Taktfrequenz von deinem Arbeitsspeicher sagen und wie die Auslastung während des Surfens so ist?

Am besten währe es wenn du mit deinen Arbeitsspeicher mindestens 12 Stunden auf Fehler überprüfen lässt, damit sicher ist dass nichts an der Hardware beschädigt ist.

Wenn du diese Schritte ausgeführt hast, dann melde dich nochmal

MfG
Wurzelhüpfer is offline  
Old 03/30/2011, 18:53   #3
 
XbluesheepX's Avatar
 
elite*gold: 8
Join Date: Sep 2010
Posts: 1,037
Received Thanks: 475
Quote:
Originally Posted by £aw View Post
Ein Tipp, Finger weg von Tuneup!

Ich werde mal ein bisschen recherchieren, mal gucken ob ich etwas finde.

MfG

//edit - Falls das Betriebssytem vorinstalliert war, vorallem mit der ganzen Werbung, kann es sein dass ein Fehler bei der Installation von Vista bei dem Hersteller passiert ist, doch das setzten wir jetzt erstmal an letzte Stelle.

Prüfe bitte deine Festplatte auf Fehler. -> Rechtsklick auf deine Festplatte, meist C: -> Eigentschaften -> Tools "Auf Fehler überprüfen".

Lass die Festplatte auf Fehler durchsuchen, wenn keiner auftritt ist das schonmal in Ordnung.

Könntest du mir bitte deine Taktfrequenz von deinem Arbeitsspeicher sagen und wie die Auslastung während des Surfens so ist?

Am besten währe es wenn du mit deinen Arbeitsspeicher mindestens 12 Stunden auf Fehler überprüfen lässt, damit sicher ist dass nichts an der Hardware beschädigt ist.

Wenn du diese Schritte ausgeführt hast, dann melde dich nochmal

MfG
Okey,
ja Win Vista war vorinstalliert und wurde auch schon mal neu formatiert.
Zu meiner Festplatte. Keine Fehler weder mit dem Tool vom Pc selbst noch i-wann mal mit TuneUp, wobei ich ab jetzt von TuneUp die Finger lasse ;D

Zu der Taktfrequenz: ... ich weiß net genau wo ich das bei Cpu-Z ablesen kann also habe ich mal diese Bilder angehängt:



Uploaded with

Zu dem Ram Test ... dies kann ich zur Zeit nicht machen, weil ich im Moment keine Zeit habe, aber das werde ich noch machen ... vllt gehts ja auch ohne
XbluesheepX is offline  
Old 03/30/2011, 19:01   #4
 
Diablo_'s Avatar
 
elite*gold: 5
Join Date: Sep 2010
Posts: 9,927
Received Thanks: 4,387
Guten Abend,

mache bitte einen Scan mit O.T.L, Downloadlink in meinem Sticky.

MfG Diablo_
Diablo_ is offline  
Old 03/30/2011, 19:08   #5
 
elite*gold: 4
Join Date: Dec 2010
Posts: 4,733
Received Thanks: 3,870
Die Auslastung deines Prozessor und Arbeitsspeichers findest du im Taskmanager.

STRG+ALT+ENTF - Steht links unten, du kannst davon einen Screenshot machen

MfG
Wurzelhüpfer is offline  
Thanks
1 User
Old 03/30/2011, 19:10   #6
 
XbluesheepX's Avatar
 
elite*gold: 8
Join Date: Sep 2010
Posts: 1,037
Received Thanks: 475
Okey wird grade gemacht ;D

Ach ja die Auslastung hatte ich vergessen. Die schwankt beim surfen zwischen 15 - 20% was noch sehr wenig ist. Hatte schon mal mehr ...

Aber die Taktfrequenz fehlte halt ... weiß nciht obs auf den Bildern ist

Hier die Logs von OTL:

Code:
OTL logfile created on: 30.03.2011 19:09:21 - Run 1
OTL by OldTimer - Version 3.2.22.3     Folder = C:\Users\Marcelchen\Desktop\Downloads
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.19019)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 49,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 62,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 312,83 Gb Total Space | 241,09 Gb Free Space | 77,07% Space Free | Partition Type: NTFS
Drive D: | 22,50 Gb Total Space | 16,95 Gb Free Space | 75,32% Space Free | Partition Type: FAT32
 
Computer Name: MAJETO-PC | User Name: Majeto | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
[color=#E56717]========== Processes (SafeList) ==========[/color]
 
PRC - [2011.03.30 19:07:02 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\Marcelchen\Desktop\Downloads\OTL.exe
PRC - [2011.01.31 15:11:44 | 000,943,472 | ---- | M] (Opera Software) -- C:\Programme\Opera\opera.exe
PRC - [2011.01.22 07:06:20 | 000,345,520 | ---- | M] (Adobe Systems Incorporated) -- C:\Programme\Adobe\Reader 8.0\Reader\AcroRd32.exe
PRC - [2011.01.17 19:50:34 | 011,322,880 | ---- | M] (OpenOffice.org) -- C:\Programme\OpenOffice.org 3\program\soffice.exe
PRC - [2011.01.17 19:50:34 | 011,314,688 | ---- | M] (OpenOffice.org) -- C:\Programme\OpenOffice.org 3\program\soffice.bin
PRC - [2010.12.14 15:04:48 | 000,653,120 | ---- | M] (TuneUp Software) -- C:\Programme\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
PRC - [2010.12.14 15:03:16 | 001,517,376 | ---- | M] (TuneUp Software) -- C:\Programme\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
PRC - [2010.10.16 13:42:38 | 000,792,680 | ---- | M] (NVIDIA Corporation) -- C:\Programme\NVIDIA Corporation\Display\NvXDSync.exe
PRC - [2010.10.16 12:46:40 | 000,369,256 | ---- | M] (NVIDIA Corporation) -- C:\Programme\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2010.10.14 12:57:54 | 000,352,976 | ---- | M] (Kaspersky Lab ZAO) -- C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe
PRC - [2010.04.16 22:12:28 | 003,872,080 | ---- | M] (Microsoft Corporation) -- C:\Programme\Windows Live\Messenger\msnmsgr.exe
PRC - [2010.04.16 18:36:42 | 000,026,480 | ---- | M] (Microsoft Corporation) -- C:\Programme\Windows Live\Contacts\wlcomm.exe
PRC - [2009.04.11 08:28:03 | 001,233,920 | ---- | M] (Microsoft Corporation) -- C:\Programme\Windows Sidebar\sidebar.exe
PRC - [2009.04.11 08:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2008.02.05 18:40:32 | 000,776,192 | ---- | M] (Google) -- C:\Programme\Google\Google Desktop Search\GoogleDesktopIndex.exe
PRC - [2008.01.19 09:38:38 | 001,008,184 | ---- | M] (Microsoft Corporation) -- C:\Programme\Windows Defender\MSASCui.exe
PRC - [2007.11.14 16:50:42 | 004,706,304 | ---- | M] (Realtek Semiconductor) -- C:\Windows\RtHDVCpl.exe
PRC - [2007.09.02 13:58:52 | 000,495,616 | ---- | M] () -- C:\Programme\RocketDock\RocketDock.exe
PRC - [2007.04.13 19:14:28 | 000,016,384 | ---- | M] (Empolis GmbH) -- C:\Programme\Medion\MEDIONbox\Program\GCS.exe
PRC - [2007.04.13 19:14:26 | 000,036,864 | ---- | M] (Empolis GmbH) -- c:\Programme\Common Files\Gnab\Service\ServiceController.exe
PRC - [2006.11.02 20:40:12 | 000,174,656 | ---- | M] () -- C:\Windows\System32\PSIService.exe
PRC - [2006.10.11 13:45:12 | 000,075,304 | ---- | M] (ScanSoft, Inc.) -- C:\Programme\ScanSoft\OmniPageSE4.0\OpWareSE4.exe
 
 
[color=#E56717]========== Modules (SafeList) ==========[/color]
 
MOD - [2011.03.30 19:07:02 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\Marcelchen\Desktop\Downloads\OTL.exe
MOD - [2010.08.31 17:43:52 | 001,686,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3\comctl32.dll
MOD - [2010.07.01 21:35:18 | 000,109,240 | ---- | M] (Kaspersky Lab ZAO) -- C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2011\mzvkbd3.dll
 
 
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
 
SRV - [2011.03.18 04:52:46 | 003,229,784 | ---- | M] () [Auto | Running] -- c:\Programme\Common Files\Akamai\netsession_win_d76cf65.dll -- (Akamai)
SRV - [2010.12.14 15:03:16 | 001,517,376 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe -- (TuneUp.UtilitiesSvc)
SRV - [2010.12.14 15:00:50 | 000,029,504 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\Windows\System32\uxtuneup.dll -- (UxTuneUp)
SRV - [2010.10.16 12:46:40 | 000,369,256 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Programme\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2010.10.14 12:57:54 | 000,352,976 | ---- | M] (Kaspersky Lab ZAO) [Auto | Running] -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe -- (AVP)
SRV - [2010.06.06 18:32:00 | 003,819,912 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\Windows\System32\GameMon.des -- (npggsvc)
SRV - [2010.02.19 14:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009.11.06 10:18:50 | 000,051,168 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Programme\NOS\bin\getPlus_Helper.dll -- (getPlusHelper) getPlus(R)
SRV - [2008.02.05 18:40:34 | 000,069,120 | ---- | M] (Google) [On_Demand | Stopped] -- C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe -- (GoogleDesktopManager)
SRV - [2008.01.19 09:38:24 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Programme\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2007.04.13 19:14:26 | 000,036,864 | ---- | M] (Empolis GmbH) [Auto | Running] -- c:\Programme\Common Files\Gnab\Service\ServiceController.exe -- (GnabService)
SRV - [2006.11.02 20:40:12 | 000,174,656 | ---- | M] () [Auto | Running] -- C:\Windows\System32\PSIService.exe -- (ProtexisLicensing)
 
 
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
 
DRV - [2011.03.02 18:27:02 | 000,722,416 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010.11.29 20:27:40 | 000,010,064 | ---- | M] (TuneUp Software) [Kernel | On_Demand | Running] -- C:\Programme\TuneUp Utilities 2011\TuneUpUtilitiesDriver32.sys -- (TuneUpUtilitiesDrv)
DRV - [2010.10.22 08:23:05 | 010,084,360 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2010.10.14 12:57:54 | 000,488,024 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\Windows\System32\drivers\klif.sys -- (KLIF)
DRV - [2010.07.15 09:44:20 | 000,014,216 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\epmntdrv.sys -- (epmntdrv)
DRV - [2010.07.15 09:44:20 | 000,008,456 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\EuGdiDrv.sys -- (EuGdiDrv)
DRV - [2010.06.09 17:43:52 | 000,011,352 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\System32\drivers\kl2.sys -- (kl2)
DRV - [2010.06.09 17:43:50 | 000,132,184 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\kl1.sys -- (kl1)
DRV - [2010.04.22 19:07:34 | 000,022,104 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\System32\drivers\klim6.sys -- (KLIM6)
DRV - [2010.03.22 18:29:10 | 000,021,064 | ---- | M] (gogo6 Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\gogotun.sys -- (gogoTunnelDevice)
DRV - [2010.02.03 15:56:56 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hamachi.sys -- (hamachi)
DRV - [2009.11.02 20:27:16 | 000,019,984 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\klmouflt.sys -- (klmouflt)
DRV - [2007.11.17 20:39:50 | 001,040,544 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvmfdx32.sys -- (NVENETFD)
DRV - [2007.10.31 12:23:20 | 000,115,744 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\nvstor32.sys -- (nvstor32)
DRV - [2007.10.12 16:53:10 | 000,013,312 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvsmu.sys -- (nvsmu)
DRV - [2005.12.01 11:49:22 | 000,023,600 | ---- | M] (Licensed for Gebhard Software) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\drhard.sys -- (drhard)
DRV - [2001.05.07 12:56:02 | 000,019,805 | ---- | M] (Thesycon GmbH, Germany) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbio.sys -- (USBIO) USBIO Driver (usbio.sys)
 
 
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
 
 
[color=#E56717]========== Internet Explorer ==========[/color]
 
IE - HKLM\..\URLSearchHook: {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - C:\Programme\BittorrentBar_DE\tbBitt.dll (Conduit Ltd.)
 
 
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 
 
IE - HKU\S-1-5-21-3205815240-3286382296-1311132070-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://de.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-3205815240-3286382296-1311132070-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
IE - HKU\S-1-5-21-3205815240-3286382296-1311132070-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = CD 3A C2 7C CE E7 CB 01  [binary data]
IE - HKU\S-1-5-21-3205815240-3286382296-1311132070-1002\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-3205815240-3286382296-1311132070-1002\..\URLSearchHook: {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - C:\Programme\BittorrentBar_DE\tbBitt.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-3205815240-3286382296-1311132070-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-21-3205815240-3286382296-1311132070-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://de.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-3205815240-3286382296-1311132070-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
IE - HKU\S-1-5-21-3205815240-3286382296-1311132070-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = A2 23 94 7C F8 C6 CB 01  [binary data]
IE - HKU\S-1-5-21-3205815240-3286382296-1311132070-1004\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-3205815240-3286382296-1311132070-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
[color=#E56717]========== FireFox ==========[/color]
 
FF - prefs.js..extensions.enabledItems: {ACAA314B-EEBA-48e4-AD47-84E31C44796C}:1.0.1
FF - prefs.js..extensions.enabledItems: :11.0.0.232
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: :3.2.5.2
FF - prefs.js..extensions.enabledItems: {64ead72b-ffd4-4e01-aa3a-4c71665d73e4}:3.2.5.2
 
 
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.04.16 16:14:18 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.02.13 16:44:24 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\{eea12ec4-729d-4703-bc37-106ce9879ce2}: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\THBExt [2010.10.14 12:49:25 | 000,000,000 | ---D | M]
 
[2010.04.16 16:14:37 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Majeto\AppData\Roaming\mozilla\Extensions
[2011.02.27 11:39:16 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Majeto\AppData\Roaming\mozilla\Firefox\Profiles\df0ir00m.default\extensions
[2010.04.16 16:15:20 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Majeto\AppData\Roaming\mozilla\Firefox\Profiles\df0ir00m.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011.02.07 20:33:36 | 000,000,000 | ---D | M] (BittorrentBar_DE Community Toolbar) -- C:\Users\Majeto\AppData\Roaming\mozilla\Firefox\Profiles\df0ir00m.default\extensions\{64ead72b-ffd4-4e01-aa3a-4c71665d73e4}
[2010.05.25 20:11:37 | 000,000,000 | ---D | M] ("DVDVideoSoft Menu") -- C:\Users\Majeto\AppData\Roaming\mozilla\Firefox\Profiles\df0ir00m.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
[2011.02.07 20:33:37 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Users\Majeto\AppData\Roaming\mozilla\Firefox\Profiles\df0ir00m.default\extensions\
[2011.03.21 16:01:22 | 000,000,000 | ---D | M] (No name found) -- C:\Programme\Mozilla Firefox\extensions
[2011.02.06 19:33:57 | 000,000,000 | ---D | M] (Java Console) -- C:\Programme\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011.03.21 16:01:22 | 000,000,000 | ---D | M] (Java Console) -- C:\Programme\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2010.07.10 12:12:02 | 000,000,000 | ---D | M] (Modul zur Link-Untersuchung) -- C:\Programme\Mozilla Firefox\extensions\
[2011.02.06 19:33:57 | 000,000,000 | ---D | M] (Java Console) -- C:\PROGRAM FILES\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2010.07.10 12:12:02 | 000,000,000 | ---D | M] (Modul zur Link-Untersuchung) -- C:\PROGRAM FILES\MOZILLA FIREFOX\EXTENSIONS\
[2011.02.02 22:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Programme\Mozilla Firefox\plugins\npdeployJava1.dll
[2011.02.11 16:54:00 | 000,238,776 | ---- | M] (Pando Networks) -- C:\Programme\Mozilla Firefox\plugins\npPandoWebInst.dll
[2010.04.01 18:54:38 | 000,001,392 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\amazondotcom-de.xml
[2010.04.01 18:54:38 | 000,002,344 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\eBay-de.xml
[2010.04.01 18:54:38 | 000,006,805 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\leo_ende_de.xml
[2010.04.01 18:54:38 | 000,001,178 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\wikipedia-de.xml
[2010.04.01 18:54:38 | 000,001,105 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\yahoo-de.xml
 
O1 HOSTS File: ([2010.05.13 18:53:40 | 000,001,204 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1       localhost
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 3dns-3.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com
O1 - Hosts: 127.0.0.1 activate-sea.adobe.com
O1 - Hosts: 127.0.0.1 wip3.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com
O1 - Hosts: 127.0.0.1 practivate.adobe.com
O1 - Hosts: 127.0.0.1 ereg.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com 
O1 - Hosts: ::1             localhost
O2 - BHO: (Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Programme\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2011\ievkbd.dll (Kaspersky Lab ZAO)
O2 - BHO: (BittorrentBar_DE Toolbar) - {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - C:\Programme\BittorrentBar_DE\tbBitt.dll (Conduit Ltd.)
O2 - BHO: (Windows Live Anmelde-Hilfsprogramm) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programme\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll (Google Inc.)
O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll (Kaspersky Lab ZAO)
O3 - HKLM\..\Toolbar: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Programme\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (BittorrentBar_DE Toolbar) - {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - C:\Programme\BittorrentBar_DE\tbBitt.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-3205815240-3286382296-1311132070-1002\..\Toolbar\WebBrowser: (BittorrentBar_DE Toolbar) - {64EAD72B-FFD4-4E01-AA3A-4C71665D73E4} - C:\Programme\BittorrentBar_DE\tbBitt.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-3205815240-3286382296-1311132070-1004\..\Toolbar\WebBrowser: (BittorrentBar_DE Toolbar) - {64EAD72B-FFD4-4E01-AA3A-4C71665D73E4} - C:\Programme\BittorrentBar_DE\tbBitt.dll (Conduit Ltd.)
O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe (Kaspersky Lab ZAO)
O4 - HKLM..\Run: [OpwareSE4] C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe (ScanSoft, Inc.)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-21-3205815240-3286382296-1311132070-1002..\Run: [AlcoholAutomount] C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe (Alcohol Soft Development Team)
O4 - HKU\S-1-5-21-3205815240-3286382296-1311132070-1004..\Run: [AdobeBridge]  File not found
O4 - HKU\S-1-5-21-3205815240-3286382296-1311132070-1004..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe (Nero AG)
O4 - HKU\S-1-5-21-3205815240-3286382296-1311132070-1004..\Run: [RocketDock] C:\Program Files\RocketDock\RocketDock.exe ()
O4 - Startup: C:\Users\Jenni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk = C:\Programme\OpenOffice.org 3\program\quickstart.exe ()
O4 - Startup: C:\Users\Jenni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk = C:\Programme\OpenOffice.org 3\program\quickstart.exe ()
O4 - Startup: C:\Users\Majeto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk = C:\Programme\OpenOffice.org 3\program\quickstart.exe ()
O4 - Startup: C:\Users\Marcelchen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk = C:\Programme\OpenOffice.org 3\program\quickstart.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 28
O8 - Extra context menu item: Free YouTube Download - C:\Users\Majeto\AppData\Roaming\DVDVideoSoftIEHelpers\youtubedownload.htm ()
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll (Google Inc.)
O8 - Extra context menu item: Nach Microsoft E&xel exportieren - C:\Programme\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: eBay - Der weltweite Online-Marktplatz - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} -  File not found
O9 - Extra 'Tools' menuitem : eBay - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} -  File not found
O9 - Extra Button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: &Virtuelle Tastatur - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll (Kaspersky Lab ZAO)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programme\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: Li&nks untersuchen - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll (Kaspersky Lab ZAO)
O13 - gopher Prefix: missing
O15 - HKU\S-1-5-21-3205815240-3286382296-1311132070-1002\..Trusted Ranges: GD ([http] in Lokales Intranet)
O15 - HKU\S-1-5-21-3205815240-3286382296-1311132070-1004\..Trusted Ranges: GD ([http] in Local intranet)
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab (System Requirements Lab Class)
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab (Checkers Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programme\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Programme\Common Files\microsoft shared\Information Retrieval\msitss.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL) - C:\Programme\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Google)
O20 - AppInit_DLLs: (C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL) - C:\Programme\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Google)
O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\KASPER~2\mzvkbd3.dll) - C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2011\mzvkbd3.dll (Kaspersky Lab ZAO)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\klogon: DllName - C:\Windows\system32\klogon.dll - C:\Windows\System32\klogon.dll (Kaspersky Lab ZAO)
O24 - Desktop WallPaper: C:\Users\Majeto\Pictures\Hintergrund\Elektric_HD_desktop_theme.jpg
O24 - Desktop BackupWallPaper: C:\Users\Majeto\Pictures\Hintergrund\Elektric_HD_desktop_theme.jpg
O27 - HKLM IFEO\backitup.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\coverdes.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\nero.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\neromediahome.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\neroscoutoptions.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\nerostartsmart.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\neroupgrade.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\nerovision.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\presentationhost.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\prwin13.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\ps130.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\qpw.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\recode.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\setupx.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\show.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\showtime.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\skype.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\waveedit.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\wpldes13.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O27 - HKLM IFEO\wpwin13.exe: Debugger - "C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe" (TuneUp Software)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006.09.18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk /p \??\C:) -  File not found
O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
 
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
 
[2011.03.29 19:26:03 | 000,000,000 | ---D | C] -- C:\Programme\Trend Micro
[2011.03.29 19:26:03 | 000,000,000 | ---D | C] -- C:\Users\Majeto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
[2011.03.25 18:15:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UseNeXT
[2011.03.25 18:15:15 | 000,000,000 | ---D | C] -- C:\Programme\UseNeXT
[2011.03.25 17:58:26 | 000,000,000 | ---D | C] -- C:\Users\Majeto\Documents\Firstload
[2011.03.25 17:19:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2011.03.25 17:19:42 | 000,000,000 | ---D | C] -- C:\Users\Majeto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2011.03.23 12:29:32 | 001,068,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DWrite.dll
[2011.03.23 12:29:32 | 000,288,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsGdiConverter.dll
[2011.03.21 16:04:02 | 000,000,000 | ---D | C] -- C:\Windows\Sun
[2011.03.21 16:01:21 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaws.exe
[2011.03.21 16:01:21 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaw.exe
[2011.03.21 16:01:21 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\java.exe
[2011.03.20 19:22:53 | 000,000,000 | ---D | C] -- C:\Programme\XBSlink
[2011.03.20 12:05:28 | 000,023,600 | ---- | C] (Licensed for Gebhard Software) -- C:\Windows\System32\drivers\drhard.sys
[2011.03.20 12:05:26 | 000,000,000 | ---D | C] -- C:\Programme\Dr. Hardware 2011
[2011.03.19 15:58:20 | 000,221,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\netio.sys
[2011.03.16 16:51:00 | 000,000,000 | ---D | C] -- C:\Users\Majeto\Documents\Winnydows
[2011.03.16 16:47:36 | 000,000,000 | ---D | C] -- C:\THM
[2011.03.16 16:38:45 | 000,000,000 | ---D | C] -- C:\Programme\Audacity
[2011.03.16 16:37:50 | 000,000,000 | ---D | C] -- C:\Users\Majeto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winnydows
[2011.03.09 13:27:20 | 000,429,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EncDec.dll
[2011.03.09 13:27:20 | 000,322,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sbe.dll
[2011.03.09 13:27:20 | 000,177,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mpg2splt.ax
[2011.03.09 13:27:20 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sbeio.dll
[2011.03.04 16:51:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
[2011.03.04 16:51:08 | 000,000,000 | ---D | C] -- C:\Programme\FileZilla FTP Client
[2011.03.02 20:29:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Age of Empires 3
[2011.03.02 19:28:08 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\DAEMON Tools Images
[2011.03.02 19:25:43 | 000,000,000 | ---D | C] -- C:\Users\Majeto\AppData\Roaming\DAEMON Tools Pro
[2011.03.02 19:25:43 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Pro
[2011.03.02 18:49:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Alcohol 120%
[2011.03.02 18:49:01 | 000,000,000 | ---D | C] -- C:\Programme\Alcohol Soft
[2011.03.02 18:25:41 | 000,000,000 | ---D | C] -- C:\Programme\Franzis
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
 
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
 
[2011.03.30 19:06:10 | 000,003,696 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011.03.30 19:06:10 | 000,003,696 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011.03.30 18:28:00 | 000,001,096 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011.03.30 18:27:00 | 000,001,122 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3205815240-3286382296-1311132070-1002UA.job
[2011.03.30 17:19:07 | 000,001,092 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011.03.30 17:14:51 | 000,638,510 | ---- | M] () -- C:\Windows\System32\perfh007.dat
[2011.03.30 17:14:51 | 000,604,126 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011.03.30 17:14:51 | 000,130,462 | ---- | M] () -- C:\Windows\System32\perfc007.dat
[2011.03.30 17:14:51 | 000,107,562 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011.03.30 17:13:52 | 000,012,246 | ---- | M] () -- C:\Users\Majeto\Documents\amtsgericht einspruch.odt
[2011.03.30 17:06:04 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.03.29 18:42:38 | 000,000,032 | ---- | M] () -- C:\Windows\Menu.INI
[2011.03.28 16:56:23 | 003,685,552 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011.03.27 15:34:00 | 000,001,070 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3205815240-3286382296-1311132070-1002Core.job
[2011.03.27 10:55:57 | 000,001,912 | ---- | M] () -- C:\Windows\epplauncher.mif
[2011.03.26 14:27:51 | 000,002,090 | ---- | M] () -- C:\Users\Majeto\Desktop\Google Chrome.lnk
[2011.03.20 18:04:14 | 000,016,015 | ---- | M] () -- C:\Users\Majeto\Documents\amtsgericht einspruch - Kopie.odt
[2011.03.13 12:40:44 | 000,000,376 | ---- | M] () -- C:\Windows\ODBC.INI
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
 
[color=#E56717]========== Files Created - No Company Name ==========[/color]
 
[2011.03.30 17:09:13 | 000,016,015 | ---- | C] () -- C:\Users\Majeto\Documents\amtsgericht einspruch - Kopie.odt
[2011.03.20 18:04:12 | 000,012,246 | ---- | C] () -- C:\Users\Majeto\Documents\amtsgericht einspruch.odt
[2011.03.20 12:05:28 | 000,020,651 | ---- | C] () -- C:\Windows\System32\drivers\DRHARD.VXD
[2011.03.19 16:00:39 | 000,001,912 | ---- | C] () -- C:\Windows\epplauncher.mif
[2011.03.13 12:39:34 | 000,000,376 | ---- | C] () -- C:\Windows\ODBC.INI
[2011.02.20 12:00:37 | 000,027,648 | ---- | C] () -- C:\Windows\System32\AVSredirect.dll
[2011.01.31 17:50:14 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2011.01.25 17:43:49 | 002,336,384 | ---- | C] () -- C:\Windows\System32\BootMan.exe
[2011.01.25 17:43:49 | 000,086,408 | ---- | C] () -- C:\Windows\System32\setupempdrv03.exe
[2011.01.25 17:43:49 | 000,014,848 | ---- | C] () -- C:\Windows\System32\EuEpmGdi.dll
[2011.01.25 17:43:49 | 000,014,216 | ---- | C] () -- C:\Windows\System32\epmntdrv.sys
[2011.01.25 17:43:49 | 000,008,456 | ---- | C] () -- C:\Windows\System32\EuGdiDrv.sys
[2011.01.18 17:51:33 | 000,000,032 | ---- | C] () -- C:\Windows\Menu.INI
[2010.11.09 17:27:45 | 000,000,023 | ---- | C] () -- C:\Windows\ODBCINST.INI
[2010.11.01 15:55:38 | 000,151,552 | ---- | C] () -- C:\Windows\System32\nvRegDev.dll
[2010.10.13 16:41:18 | 000,000,848 | -HS- | C] () -- C:\ProgramData\KGyGaAvL.sys
[2010.10.13 16:41:18 | 000,000,088 | RHS- | C] () -- C:\ProgramData\2923726535.sys
[2010.08.13 11:14:52 | 001,589,248 | ---- | C] () -- C:\Windows\System32\libmysql_d.dll
[2010.07.12 14:12:14 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010.06.29 19:49:30 | 000,237,568 | ---- | C] () -- C:\Windows\System32\lame_enc.dll
[2010.06.29 19:49:30 | 000,201,728 | ---- | C] () -- C:\Windows\lame.exe
[2010.06.04 10:35:27 | 000,070,894 | ---- | C] () -- C:\ProgramData\nvModes.001
[2010.06.04 10:35:26 | 000,071,018 | ---- | C] () -- C:\ProgramData\nvModes.dat
[2010.04.11 16:31:12 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2010.04.11 16:21:19 | 000,598,016 | ---- | C] () -- C:\Windows\System32\pngewhqf.dll
[2010.04.11 16:21:11 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2010.04.11 16:21:10 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2010.03.21 16:49:23 | 000,043,520 | ---- | C] () -- C:\Windows\System32\CmdLineExt03.dll
[2010.03.09 18:25:28 | 000,006,656 | ---- | C] () -- C:\Users\Majeto\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.01.12 17:13:03 | 000,002,560 | ---- | C] () -- C:\Windows\_MSRSTRT.EXE
[2009.12.30 18:57:40 | 000,000,916 | ---- | C] () -- C:\Users\Majeto\AppData\Roaming\wklnhst.dat
[2009.12.06 18:45:11 | 000,000,416 | ---- | C] () -- C:\Windows\MAXLINK.INI
[2009.11.26 19:19:03 | 000,114,243 | ---- | C] () -- C:\Windows\System32\drivers\klin.dat
[2009.11.26 19:19:02 | 000,097,859 | ---- | C] () -- C:\Windows\System32\drivers\klick.dat
[2009.11.26 19:18:47 | 004,390,432 | -HS- | C] () -- C:\Windows\System32\drivers\fidbox.dat
[2009.11.26 19:18:47 | 000,917,536 | -HS- | C] () -- C:\Windows\System32\drivers\fidbox2.dat
[2009.11.26 19:10:14 | 000,000,094 | ---- | C] () -- C:\Users\Majeto\AppData\Local\fusioncache.dat
[2009.11.26 19:00:12 | 000,003,636 | ---- | C] () -- C:\Windows\System32\drivers\nvphy.bin
[2009.09.09 19:01:40 | 000,027,675 | ---- | C] () -- C:\Windows\System32\drivers\klopp.dat
[2008.01.31 10:31:06 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2007.12.18 16:51:24 | 000,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll
[2006.11.02 20:40:12 | 000,174,656 | ---- | C] () -- C:\Windows\System32\PSIService.exe
[2006.11.02 17:33:31 | 000,638,510 | ---- | C] () -- C:\Windows\System32\perfh007.dat
[2006.11.02 17:33:31 | 000,290,748 | ---- | C] () -- C:\Windows\System32\perfi007.dat
[2006.11.02 17:33:31 | 000,130,462 | ---- | C] () -- C:\Windows\System32\perfc007.dat
[2006.11.02 17:33:31 | 000,036,916 | ---- | C] () -- C:\Windows\System32\perfd007.dat
[2006.11.02 14:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006.11.02 14:47:37 | 003,685,552 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006.11.02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006.11.02 12:33:01 | 000,604,126 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006.11.02 12:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006.11.02 12:33:01 | 000,107,562 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006.11.02 12:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006.11.02 12:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006.11.02 10:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006.11.02 10:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006.11.02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006.11.02 09:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
 
[color=#E56717]========== Alternate Data Streams ==========[/color]
 
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:671329E4

< End of report >
Code:
OTL Extras logfile created on: 30.03.2011 19:09:21 - Run 1
OTL by OldTimer - Version 3.2.22.3     Folder = C:\Users\Marcelchen\Desktop\Downloads
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.19019)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 49,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 62,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 312,83 Gb Total Space | 241,09 Gb Free Space | 77,07% Space Free | Partition Type: NTFS
Drive D: | 22,50 Gb Total Space | 16,95 Gb Free Space | 75,32% Space Free | Partition Type: FAT32
 
Computer Name: MAJETO-PC | User Name: Majeto | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
[color=#E56717]========== Extra Registry (SafeList) ==========[/color]
 
 
[color=#E56717]========== File Associations ==========[/color]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
 
[HKEY_USERS\S-1-5-21-3205815240-3286382296-1311132070-1004\SOFTWARE\Classes\<extension>]
.html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software)
 
[color=#E56717]========== Shell Spawning ==========[/color]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- C:\PROGRA~1\MICROS~3\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
[color=#E56717]========== Security Center Settings ==========[/color]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring" = 1
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\S-1-5-21-3205815240-3286382296-1311132070-1004]
"EnableNotifications" = 0
"EnableNotificationsRef" = 1
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
[color=#E56717]========== Firewall Settings ==========[/color]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[color=#E56717]========== Authorized Applications List ==========[/color]
 
 
[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{432671D7-6302-40B5-9ABA-81B15FC44473}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | 
"{80221B91-5475-48F9-BB21-BBD8368E63C2}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{A67D4667-A8F6-4A54-8322-4120DC321BA7}" = lport=5000 | protocol=17 | dir=in | name=akamai netsession interface | 
"{C1315FAE-8E1D-492B-AFE9-6B24862141B7}" = lport=49162 | protocol=6 | dir=in | name=akamai netsession interface | 
 
[color=#E56717]========== Vista Active Application Exception List ==========[/color]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{2108787F-591A-464F-A793-5DAA8B28ADBE}" = dir=in | app=c:\program files\pando networks\media booster\pmb.exe | 
"{21EEF582-03EA-4376-83A9-B8BA77B8B355}" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe | 
"{3A33D282-2668-48E7-9B68-3920C909067F}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | 
"{4E05CA82-19DE-4031-8829-5080D1093BC9}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | 
"{4EE25F53-4AE9-41DE-BFE9-36C17C31104D}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | 
"{74739800-773E-49D6-A6F2-3A143FFC4007}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe | 
"{8A5F07C6-B7A9-48BA-A838-B1A7E6875AB8}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | 
"{9A5193CD-72F0-4BF4-93D6-0FDB8ECB9959}" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe | 
"{9E037F47-5801-4AB8-8E0C-6EABFB6050B0}" = protocol=17 | dir=in | app=c:\users\marcelchen\appdata\local\microsoft\windows\temporary internet files\content.ie5\263fo9ab\dndhandle[1].exe | 
"{A520D87D-CF1E-4672-A481-13A85E82B289}" = dir=in | app=c:\program files\windows live\messenger\wlcsdk.exe | 
"{A616C46E-3744-4DDB-A5E3-59EF38D68600}" = protocol=6 | dir=in | app=c:\users\marcelchen\appdata\local\microsoft\windows\temporary internet files\content.ie5\263fo9ab\dndhandle[1].exe | 
"TCP Query User{0358D4CF-4E78-42D3-AB5C-2452D44959B9}C:\users\marcelchen\appdata\local\virtualstore\program files\teci\metin2\metin2.bin" = protocol=6 | dir=in | app=c:\users\marcelchen\appdata\local\virtualstore\program files\teci\metin2\metin2.bin | 
"TCP Query User{05030E56-E04C-4155-A837-644A98211815}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | 
"TCP Query User{0B233E3A-9DC4-4555-9A81-25FE4C8D239C}C:\users\marcelchen\downloads\elite\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\elite\mc.exe | 
"TCP Query User{12471BBA-2355-49F8-9E94-1E94BED7D7C8}C:\program files\teci\metin2\metin2.bin" = protocol=6 | dir=in | app=c:\program files\teci\metin2\metin2.bin | 
"TCP Query User{135EFE74-C437-481E-911B-513A9A1EF481}C:\users\marcelchen\downloads\p server\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\p server\mc.exe | 
"TCP Query User{14015FC4-7CA4-4E13-B1FB-079770852EE2}C:\users\marcelchen\appdata\local\temp\ocr4dd2.tmp\bin\ruby.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\appdata\local\temp\ocr4dd2.tmp\bin\ruby.exe | 
"TCP Query User{1BFFFC05-5D06-422A-AE63-FC7B3C5C9FCD}C:\users\marcelchen\downloads\metin2korea\metin2.bin" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\metin2korea\metin2.bin | 
"TCP Query User{1C69E7D5-4E7E-4D1C-9F73-BEE00C4F02FF}C:\users\marcelchen\downloads\noch einer\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\noch einer\mc.exe | 
"TCP Query User{2079B018-8FAD-4224-9F90-4D5AB72410C8}C:\program files\metin2_germany\yang\metin2client.bin" = protocol=6 | dir=in | app=c:\program files\metin2_germany\yang\metin2client.bin | 
"TCP Query User{2EE50AF1-DFFA-4E82-A12E-ABD3AE2CC715}C:\users\marcelchen\appdata\local\virtualstore\program files\metin2_germany\yang\metin2client.bin" = protocol=6 | dir=in | app=c:\users\marcelchen\appdata\local\virtualstore\program files\metin2_germany\yang\metin2client.bin | 
"TCP Query User{303CB5ED-B0D4-4DBC-BE9D-06F5DD527E2D}C:\users\marcelchen\downloads\modified-client 4.5 neonaxemt2\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\modified-client 4.5 neonaxemt2\mc.exe | 
"TCP Query User{350ABFD1-6008-4E5F-86D4-845C516520F8}C:\users\majeto\program files\dna\btdna.exe" = protocol=6 | dir=in | app=c:\users\majeto\program files\dna\btdna.exe | 
"TCP Query User{3A8D4EA8-AA72-4DB0-8C08-8BBE27094DFE}C:\users\marcelchen\downloads\wellness\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\wellness\mc.exe | 
"TCP Query User{40A747AE-311B-4CEB-BC5A-C90956189D1C}C:\users\marcelchen\downloads\metin2korea\metin2client.bin" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\metin2korea\metin2client.bin | 
"TCP Query User{43B28807-03CB-4476-BF71-3C8CB4B4FC9A}C:\users\marcelchen\appdata\local\temp\ocr54f.tmp\bin\ruby.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\appdata\local\temp\ocr54f.tmp\bin\ruby.exe | 
"TCP Query User{45C27EDD-6BBA-4C22-9329-BA5F94FFDFF9}C:\users\marcelchen\downloads\änder\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\änder\mc.exe | 
"TCP Query User{45C437A8-C5A7-4A1A-9211-32A7F2A5D02C}C:\program files\metin2_germany\metin2.bin" = protocol=6 | dir=in | app=c:\program files\metin2_germany\metin2.bin | 
"TCP Query User{48265868-8E3E-4615-BCC3-EB1B4725C0FD}C:\program files\metin2_germany\metin2client.bin" = protocol=6 | dir=in | app=c:\program files\metin2_germany\metin2client.bin | 
"TCP Query User{4AF053EA-CBA1-421A-94C4-39BE99EA0F5D}C:\users\marcelchen\downloads\blackrosemt2\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\blackrosemt2\mc.exe | 
"TCP Query User{5003325D-236B-432A-BB2A-77FF3F7FE46B}C:\program files\metin2_germany\yang\metin2.bin" = protocol=6 | dir=in | app=c:\program files\metin2_germany\yang\metin2.bin | 
"TCP Query User{51A0F2AA-D9FF-469A-ACE1-048F72D0840F}C:\users\marcelchen\downloads\2\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\2\mc.exe | 
"TCP Query User{56AE6689-0F90-4532-8804-ADA09F7A380F}C:\users\marcelchen\downloads\easy metin starter.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\easy metin starter.exe | 
"TCP Query User{590A523E-E9F8-49D7-9A51-D9AAF4645B62}C:\users\marcelchen\appdata\local\temp\ocr862f.tmp\bin\ruby.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\appdata\local\temp\ocr862f.tmp\bin\ruby.exe | 
"TCP Query User{593FBFAE-6321-4F25-80E5-2EEF31DC1C79}C:\program files\teci\metin2\metin2.bin" = protocol=6 | dir=in | app=c:\program files\teci\metin2\metin2.bin | 
"TCP Query User{59DDF9DA-AB71-4610-B453-0550F2F333EE}C:\program files\metin2_germany\easy metin starter.exe" = protocol=6 | dir=in | app=c:\program files\metin2_germany\easy metin starter.exe | 
"TCP Query User{5A50D14E-B6F3-402A-84F2-3EFFAB04066B}C:\users\marcelchen\downloads\snikimt2\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\snikimt2\mc.exe | 
"TCP Query User{6C58FEC3-3E0A-4E44-A554-81C759988893}C:\users\marcelchen\downloads\2\worldmt2.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\2\worldmt2.exe | 
"TCP Query User{6EECA462-4B14-4BFC-A715-A6AD02E08EDE}C:\users\marcelchen\downloads\m4in mt2\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\m4in mt2\mc.exe | 
"TCP Query User{70030E8C-E9D5-44BB-95DB-415356480729}C:\users\marcelchen\desktop\metin2korea\m2se.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\desktop\metin2korea\m2se.exe | 
"TCP Query User{75C99E43-6FE4-4632-9224-39C499926846}C:\program files\nero\nero8\nero showtime\showtime.exe" = protocol=6 | dir=in | app=c:\program files\nero\nero8\nero showtime\showtime.exe | 
"TCP Query User{78D398A8-39F4-4468-A8FA-D2B03C86C324}C:\users\marcelchen\appdata\local\virtualstore\program files\metin2_germany\yang\metin2client.bin" = protocol=6 | dir=in | app=c:\users\marcelchen\appdata\local\virtualstore\program files\metin2_germany\yang\metin2client.bin | 
"TCP Query User{7B4044DA-093C-4B7C-A41B-3A11DCA120C9}C:\users\marcelchen\downloads\metin2korea\m2se.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\metin2korea\m2se.exe | 
"TCP Query User{7DEDD2EA-EDE1-4673-BD41-87F76DE23D1E}C:\users\marcelchen\downloads\lavastrormmt2\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\lavastrormmt2\mc.exe | 
"TCP Query User{80830D75-14CE-429F-802B-1CC5A3E5CB99}C:\users\marcelchen\downloads\chernomt2\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\chernomt2\mc.exe | 
"TCP Query User{8303350D-9FF3-4EAB-B130-E3481283A755}C:\program files\bittorrent\bittorrent.exe" = protocol=6 | dir=in | app=c:\program files\bittorrent\bittorrent.exe | 
"TCP Query User{8A52A23D-868B-46F3-97CC-FA464ABCE69C}C:\users\marcelchen\downloads\zonefusionmt2\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\zonefusionmt2\mc.exe | 
"TCP Query User{9537B2B7-1EAE-49C2-84A8-5FF78A2CA7C8}C:\program files\metin2_germany\patching please wait\easy metin starter.exe" = protocol=6 | dir=in | app=c:\program files\metin2_germany\patching please wait\easy metin starter.exe | 
"TCP Query User{98B00805-0846-4657-8EBF-4AC70F1DF0FD}C:\users\marcelchen\downloads\noch einer\client\worldmt2.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\noch einer\client\worldmt2.exe | 
"TCP Query User{98D2C922-34A4-41C5-9D16-FDC180180794}C:\users\marcelchen\downloads\elite - kopie\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\elite - kopie\mc.exe | 
"TCP Query User{A5854D74-5879-457F-91C6-596944280D83}C:\users\majeto\documents\metin2client.bin" = protocol=6 | dir=in | app=c:\users\majeto\documents\metin2client.bin | 
"TCP Query User{A89BE653-5203-429F-9503-C81B03D63548}C:\users\marcelchen\downloads\whietrose\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\whietrose\mc.exe | 
"TCP Query User{ADF3C591-A977-49C3-B822-35E25B11880E}C:\users\marcelchen\downloads\modified-client\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\modified-client\mc.exe | 
"TCP Query User{B4159950-5AFD-4867-ACDE-238943E5C0C4}C:\users\marcelchen\appdata\local\virtualstore\program files\z8games\metin2\metin2.bin" = protocol=6 | dir=in | app=c:\users\marcelchen\appdata\local\virtualstore\program files\z8games\metin2\metin2.bin | 
"TCP Query User{BA5CD019-9298-43A1-996B-4B1A0854B6E1}C:\users\marcelchen\appdata\local\temp\ocr424e.tmp\bin\ruby.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\appdata\local\temp\ocr424e.tmp\bin\ruby.exe | 
"TCP Query User{BB1C3918-F62C-4372-80E2-86AF98D6B779}C:\users\marcelchen\desktop\metin2korea\metin2client.bin" = protocol=6 | dir=in | app=c:\users\marcelchen\desktop\metin2korea\metin2client.bin | 
"TCP Query User{BCF1BAF0-EC10-4B3D-8B0A-7B4472CE9728}C:\users\marcelchen\downloads\worldmt2\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\worldmt2\mc.exe | 
"TCP Query User{BD2F91B1-1A46-45E1-8101-01A361FCA8F6}C:\users\majeto\documents\metin2.bin" = protocol=6 | dir=in | app=c:\users\majeto\documents\metin2.bin | 
"TCP Query User{BDBFF989-FEB0-4AEB-8FBE-D89A0FF40790}C:\users\marcelchen\appdata\local\temp\ocr18cf.tmp\bin\ruby.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\appdata\local\temp\ocr18cf.tmp\bin\ruby.exe | 
"TCP Query User{CA9F7F0E-9921-4419-825E-7C50BF7BB935}C:\program files\metin2_germany\yang\metin2 - kopie.exe" = protocol=6 | dir=in | app=c:\program files\metin2_germany\yang\metin2 - kopie.exe | 
"TCP Query User{CB8A6E70-7278-41BD-A7D6-9DF48FEFD9C4}C:\users\marcelchen\downloads\stormlavamt2\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\stormlavamt2\mc.exe | 
"TCP Query User{CE5C6B50-C557-4FC1-BD88-C09DC8C0B62C}C:\users\marcelchen\desktop\metin2korea\metin2.bin" = protocol=6 | dir=in | app=c:\users\marcelchen\desktop\metin2korea\metin2.bin | 
"TCP Query User{D0315E90-80DE-4E81-965A-A6FF269EE288}C:\users\marcelchen\appdata\local\temp\ocre456.tmp\bin\ruby.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\appdata\local\temp\ocre456.tmp\bin\ruby.exe | 
"TCP Query User{D39D39DD-C0C3-4528-860F-3FBFE00C85E5}C:\programdata\kaspersky lab setup files\kaspersky anti-virus 2009\german\setup.exe" = protocol=6 | dir=in | app=c:\programdata\kaspersky lab setup files\kaspersky anti-virus 2009\german\setup.exe | 
"TCP Query User{D53816BE-B895-44C1-A7F4-3D36B4AF8517}C:\users\marcelchen\downloads\lavamt2\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\lavamt2\mc.exe | 
"TCP Query User{D71354FE-46C5-4A9A-8AD2-0F2A3EE85634}C:\users\marcelchen\downloads\gamerwelt\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\gamerwelt\mc.exe | 
"TCP Query User{E08A3E94-3A0B-43CC-B7D4-E5390591231C}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe | 
"TCP Query User{E8FB01DA-DD64-4D48-ACE0-231478FC73D1}C:\users\marcelchen\downloads\jennymt2\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\jennymt2\mc.exe | 
"TCP Query User{EB0CFB58-BD04-409F-94B7-BA00C97B1183}C:\users\marcelchen\appdata\local\virtualstore\program files\metin2_germany\metin2client.bin" = protocol=6 | dir=in | app=c:\users\marcelchen\appdata\local\virtualstore\program files\metin2_germany\metin2client.bin | 
"TCP Query User{EC225BBE-B261-4215-A4C3-7DE6E023C93A}C:\users\marcelchen\appdata\local\virtualstore\program files\teci\metin2\metin2.bin" = protocol=6 | dir=in | app=c:\users\marcelchen\appdata\local\virtualstore\program files\teci\metin2\metin2.bin | 
"TCP Query User{ECD52F5E-DEDF-4135-8E9E-5171C0026BAA}C:\users\marcelchen\appdata\local\temp\ocrac74.tmp\bin\ruby.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\appdata\local\temp\ocrac74.tmp\bin\ruby.exe | 
"TCP Query User{EF3CFC39-CC01-4813-A882-4EC9BC89EC44}C:\users\marcelchen\downloads\2\client\worldmt2.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\2\client\worldmt2.exe | 
"TCP Query User{F27B79B6-14A2-42E7-B69E-675F99E6841F}C:\users\marcelchen\appdata\local\temp\ocr2f1a.tmp\bin\ruby.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\appdata\local\temp\ocr2f1a.tmp\bin\ruby.exe | 
"TCP Query User{FF50B8AB-0C3C-4CF0-A58D-960BFD39FE05}C:\users\marcelchen\downloads\yaskamt2_de\mc.exe" = protocol=6 | dir=in | app=c:\users\marcelchen\downloads\yaskamt2_de\mc.exe | 
"UDP Query User{02C29AEC-2AD6-4F53-A6EB-DACD508E9732}C:\users\marcelchen\downloads\chernomt2\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\chernomt2\mc.exe | 
"UDP Query User{057E701F-6B8D-431A-B872-3F7BF1D36512}C:\users\marcelchen\downloads\modified-client\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\modified-client\mc.exe | 
"UDP Query User{0E0E9B2E-043D-47E2-B1C7-48EB4E7BA187}C:\users\marcelchen\downloads\yaskamt2_de\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\yaskamt2_de\mc.exe | 
"UDP Query User{0EB116EB-F633-48B7-84AB-16029D2E7125}C:\users\marcelchen\appdata\local\virtualstore\program files\z8games\metin2\metin2.bin" = protocol=17 | dir=in | app=c:\users\marcelchen\appdata\local\virtualstore\program files\z8games\metin2\metin2.bin | 
"UDP Query User{0EE5CA22-C3D2-475E-99EF-FE3FA1565A8F}C:\users\majeto\documents\metin2.bin" = protocol=17 | dir=in | app=c:\users\majeto\documents\metin2.bin | 
"UDP Query User{22B62B97-0154-4240-B3BA-F4D1F00F76E9}C:\users\marcelchen\downloads\stormlavamt2\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\stormlavamt2\mc.exe | 
"UDP Query User{252ECDC4-5F07-418C-B031-A631AAFC5326}C:\users\majeto\program files\dna\btdna.exe" = protocol=17 | dir=in | app=c:\users\majeto\program files\dna\btdna.exe | 
"UDP Query User{253AEFE8-7B08-4652-B8EE-E41F5FF72805}C:\users\marcelchen\downloads\jennymt2\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\jennymt2\mc.exe | 
"UDP Query User{2AD4E1C9-CE61-4A70-B523-B324E185F06B}C:\users\marcelchen\desktop\metin2korea\metin2.bin" = protocol=17 | dir=in | app=c:\users\marcelchen\desktop\metin2korea\metin2.bin | 
"UDP Query User{2B8D4FF4-7828-4ED4-8396-A0A45B029FB1}C:\program files\metin2_germany\metin2.bin" = protocol=17 | dir=in | app=c:\program files\metin2_germany\metin2.bin | 
"UDP Query User{2EF090E8-6D6C-4DF1-8616-FC8ADF436EED}C:\users\marcelchen\downloads\elite - kopie\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\elite - kopie\mc.exe | 
"UDP Query User{32E86CB7-81B6-4671-BB82-81BD6123A9CD}C:\users\marcelchen\appdata\local\temp\ocr18cf.tmp\bin\ruby.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\appdata\local\temp\ocr18cf.tmp\bin\ruby.exe | 
"UDP Query User{350EC047-E1BE-4ED8-AAA4-6D4617B43C7E}C:\program files\metin2_germany\easy metin starter.exe" = protocol=17 | dir=in | app=c:\program files\metin2_germany\easy metin starter.exe | 
"UDP Query User{38479DBA-3E29-4564-8424-8FE3F5EF4176}C:\users\marcelchen\downloads\2\client\worldmt2.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\2\client\worldmt2.exe | 
"UDP Query User{3850C152-38EF-4AE2-929A-D725D817E59E}C:\program files\metin2_germany\patching please wait\easy metin starter.exe" = protocol=17 | dir=in | app=c:\program files\metin2_germany\patching please wait\easy metin starter.exe | 
"UDP Query User{3B858D0D-D772-42CE-8024-B11CA2095173}C:\program files\metin2_germany\yang\metin2 - kopie.exe" = protocol=17 | dir=in | app=c:\program files\metin2_germany\yang\metin2 - kopie.exe | 
"UDP Query User{3C953449-4272-40B2-B2CD-18D64CFBFE4F}C:\users\marcelchen\downloads\whietrose\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\whietrose\mc.exe | 
"UDP Query User{3D372A61-0789-4B9C-8CA8-EED3846D7EA5}C:\users\marcelchen\downloads\2\worldmt2.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\2\worldmt2.exe | 
"UDP Query User{3EC9F67F-776F-424C-98E7-2C82B1755316}C:\users\marcelchen\downloads\metin2korea\metin2.bin" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\metin2korea\metin2.bin | 
"UDP Query User{4A0275FC-52A8-4DDC-94F8-E89693C514FD}C:\program files\nero\nero8\nero showtime\showtime.exe" = protocol=17 | dir=in | app=c:\program files\nero\nero8\nero showtime\showtime.exe | 
"UDP Query User{4D115BEA-CFBE-4FBA-8A78-BA7B6B760134}C:\users\marcelchen\downloads\änder\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\änder\mc.exe | 
"UDP Query User{5BE7BC4D-DFFC-4443-A313-9313F78FA5C2}C:\users\marcelchen\downloads\lavastrormmt2\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\lavastrormmt2\mc.exe | 
"UDP Query User{60FF2F11-B92A-499C-9FEC-8052B5569FDC}C:\users\marcelchen\appdata\local\virtualstore\program files\metin2_germany\yang\metin2client.bin" = protocol=17 | dir=in | app=c:\users\marcelchen\appdata\local\virtualstore\program files\metin2_germany\yang\metin2client.bin | 
"UDP Query User{6609850A-2E5F-4FEE-AEF6-6D000628E983}C:\users\majeto\documents\metin2client.bin" = protocol=17 | dir=in | app=c:\users\majeto\documents\metin2client.bin | 
"UDP Query User{68204174-1385-4446-9F54-27CF8C711F1F}C:\program files\metin2_germany\yang\metin2client.bin" = protocol=17 | dir=in | app=c:\program files\metin2_germany\yang\metin2client.bin | 
"UDP Query User{70D2BF9B-E20B-4EED-BDBD-0976ADFA78F9}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe | 
"UDP Query User{73D6A57E-C477-4F21-9B9D-6F94BBEEA7E6}C:\programdata\kaspersky lab setup files\kaspersky anti-virus 2009\german\setup.exe" = protocol=17 | dir=in | app=c:\programdata\kaspersky lab setup files\kaspersky anti-virus 2009\german\setup.exe | 
"UDP Query User{7A42C75A-7013-4E09-ACA2-392D4E9E01F1}C:\users\marcelchen\downloads\metin2korea\m2se.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\metin2korea\m2se.exe | 
"UDP Query User{7AFC45A8-1AD5-40B3-941E-4160D1921124}C:\users\marcelchen\appdata\local\temp\ocre456.tmp\bin\ruby.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\appdata\local\temp\ocre456.tmp\bin\ruby.exe | 
"UDP Query User{7D7647C4-ED41-4A91-8F84-576AD468661F}C:\users\marcelchen\downloads\gamerwelt\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\gamerwelt\mc.exe | 
"UDP Query User{7D7E3FAA-9A0A-4DB1-A0C9-D461DF4E4BDC}C:\users\marcelchen\downloads\modified-client 4.5 neonaxemt2\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\modified-client 4.5 neonaxemt2\mc.exe | 
"UDP Query User{7EF39889-FEA3-4A0B-AF71-CFC087466DD3}C:\users\marcelchen\appdata\local\virtualstore\program files\teci\metin2\metin2.bin" = protocol=17 | dir=in | app=c:\users\marcelchen\appdata\local\virtualstore\program files\teci\metin2\metin2.bin | 
"UDP Query User{86C7894A-343C-4396-87CB-A70C4A4EA07E}C:\users\marcelchen\downloads\m4in mt2\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\m4in mt2\mc.exe | 
"UDP Query User{87B7E8C7-7F85-485C-BBA6-66447BE628DC}C:\users\marcelchen\appdata\local\temp\ocr4dd2.tmp\bin\ruby.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\appdata\local\temp\ocr4dd2.tmp\bin\ruby.exe | 
"UDP Query User{89B48D4F-E1FA-4BC2-AE7B-47B66AC40D60}C:\users\marcelchen\downloads\lavamt2\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\lavamt2\mc.exe | 
"UDP Query User{8A529404-C795-49C9-BCB2-D77D288E9C3E}C:\users\marcelchen\desktop\metin2korea\m2se.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\desktop\metin2korea\m2se.exe | 
"UDP Query User{8B13F496-C051-4F9C-BA0D-BDC5252F7673}C:\users\marcelchen\downloads\elite\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\elite\mc.exe | 
"UDP Query User{8BF7ED98-E231-4E8C-B5BB-2ED60C62B4A0}C:\users\marcelchen\downloads\wellness\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\wellness\mc.exe | 
"UDP Query User{91B33255-3730-4371-9EB0-EB6211EA85B4}C:\users\marcelchen\desktop\metin2korea\metin2client.bin" = protocol=17 | dir=in | app=c:\users\marcelchen\desktop\metin2korea\metin2client.bin | 
"UDP Query User{A177559D-3ED7-4E6B-8B7C-4DF85E66084B}C:\users\marcelchen\downloads\metin2korea\metin2client.bin" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\metin2korea\metin2client.bin | 
"UDP Query User{A7624B36-D819-4C7A-9788-F368754B066F}C:\users\marcelchen\appdata\local\virtualstore\program files\metin2_germany\metin2client.bin" = protocol=17 | dir=in | app=c:\users\marcelchen\appdata\local\virtualstore\program files\metin2_germany\metin2client.bin | 
"UDP Query User{B1D1F57F-00AB-4F83-BEB5-A1B69C8B435F}C:\users\marcelchen\downloads\snikimt2\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\snikimt2\mc.exe | 
"UDP Query User{B2E43D37-3EAA-4C81-AFD5-1651DD8C5400}C:\users\marcelchen\appdata\local\virtualstore\program files\metin2_germany\yang\metin2client.bin" = protocol=17 | dir=in | app=c:\users\marcelchen\appdata\local\virtualstore\program files\metin2_germany\yang\metin2client.bin | 
"UDP Query User{B39EBF61-DBE7-45AC-B019-92444D364522}C:\users\marcelchen\appdata\local\temp\ocr424e.tmp\bin\ruby.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\appdata\local\temp\ocr424e.tmp\bin\ruby.exe | 
"UDP Query User{BC145E4F-52A5-4C6C-A810-9C50A890CDEB}C:\program files\metin2_germany\metin2client.bin" = protocol=17 | dir=in | app=c:\program files\metin2_germany\metin2client.bin | 
"UDP Query User{BDA43C79-A6EB-4C75-813A-9228BE3D87D7}C:\users\marcelchen\appdata\local\temp\ocr2f1a.tmp\bin\ruby.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\appdata\local\temp\ocr2f1a.tmp\bin\ruby.exe | 
"UDP Query User{C1A38ECD-E6D7-49EB-A520-CA2C4CEFF3F4}C:\users\marcelchen\downloads\zonefusionmt2\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\zonefusionmt2\mc.exe | 
"UDP Query User{C1D5287B-75EC-4197-A8A8-30B786FC34E5}C:\users\marcelchen\downloads\noch einer\client\worldmt2.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\noch einer\client\worldmt2.exe | 
"UDP Query User{C2CEF8AB-4395-4EF9-B2C0-6E40FC9640FC}C:\users\marcelchen\downloads\blackrosemt2\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\blackrosemt2\mc.exe | 
"UDP Query User{C76DE183-3E6C-4518-9439-A93FFB764403}C:\users\marcelchen\downloads\easy metin starter.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\easy metin starter.exe | 
"UDP Query User{C8ED0B64-76EB-4527-A61A-2C55D8FC5C3E}C:\users\marcelchen\downloads\noch einer\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\noch einer\mc.exe | 
"UDP Query User{CA5CC852-FA7A-4081-8C67-AF30D6105D1A}C:\users\marcelchen\appdata\local\temp\ocrac74.tmp\bin\ruby.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\appdata\local\temp\ocrac74.tmp\bin\ruby.exe | 
"UDP Query User{D0EDCBBA-9A3A-4612-AD5F-5CB96009F02C}C:\users\marcelchen\appdata\local\temp\ocr862f.tmp\bin\ruby.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\appdata\local\temp\ocr862f.tmp\bin\ruby.exe | 
"UDP Query User{D489F6CD-9916-4486-BC7A-48231E211A00}C:\program files\bittorrent\bittorrent.exe" = protocol=17 | dir=in | app=c:\program files\bittorrent\bittorrent.exe | 
"UDP Query User{D7421B74-FCF1-4238-A240-7996253207D6}C:\users\marcelchen\appdata\local\temp\ocr54f.tmp\bin\ruby.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\appdata\local\temp\ocr54f.tmp\bin\ruby.exe | 
"UDP Query User{D8EB710C-4A6C-41D3-8BC5-CDE4476BB5A9}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | 
"UDP Query User{DC2B5E2A-61E9-4B29-96D5-8E92C074E32A}C:\users\marcelchen\downloads\2\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\2\mc.exe | 
"UDP Query User{E349252C-12FA-41E6-BF96-407CD55737EC}C:\program files\metin2_germany\yang\metin2.bin" = protocol=17 | dir=in | app=c:\program files\metin2_germany\yang\metin2.bin | 
"UDP Query User{EA7AFD6C-7FC3-4F00-B7F9-1BC778AEBB1F}C:\users\marcelchen\downloads\p server\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\p server\mc.exe | 
"UDP Query User{EEEB0B8D-9447-4A01-A08E-3E734DC53E55}C:\users\marcelchen\downloads\worldmt2\mc.exe" = protocol=17 | dir=in | app=c:\users\marcelchen\downloads\worldmt2\mc.exe | 
"UDP Query User{F0A12560-8617-46CD-8F2D-0B3011C0BFA1}C:\program files\teci\metin2\metin2.bin" = protocol=17 | dir=in | app=c:\program files\teci\metin2\metin2.bin | 
"UDP Query User{F39A519D-8262-4A3E-84F5-1E4929843F5D}C:\program files\teci\metin2\metin2.bin" = protocol=17 | dir=in | app=c:\program files\teci\metin2\metin2.bin | 
"UDP Query User{F3C4E3E8-F89F-49C0-93CC-26C4849CF8E9}C:\users\marcelchen\appdata\local\virtualstore\program files\teci\metin2\metin2.bin" = protocol=17 | dir=in | app=c:\users\marcelchen\appdata\local\virtualstore\program files\teci\metin2\metin2.bin | 
 
[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{052FDD78-A6EA-3187-8386-C82F4CA3A929}" = Microsoft .NET Framework 3.5 Language Pack SP1 - deu
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP600" = Canon MP600
"{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live-Uploadtool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{23F79416-CAD1-41BF-99A3-040F6C814AAA}" = NVIDIA Photoshop Plug-ins
"{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}" = TuneUp Utilities 2011
"{26A24AE4-039D-4CA4-87B4-2F83216022FF}" = Java(TM) 6 Update 24
"{27FDF949-69CE-435A-8372-339F72336AC5}" = MEDIONbox
"{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform
"{3921A67A-5AB1-4E48-9444-C71814CF3027}" = VCRedistSetup
"{39D0E034-1042-4905-BECB-5502909FCB7C}" = Microsoft Works
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{4286716B-1287-48E7-9078-3DC8248DBA96}" = OpenOffice.org 3.3
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{52B97218-98CB-4B8B-9283-D213C85E1AA4}" = Windows Live Anmelde-Assistent
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5BB977A4-E843-4E31-9859-745F442B1031}" = Nero 8 Essentials
"{5D4C60AA-84E6-4E1A-8A68-69970D387BE1}" = TuneUp Utilities Language Pack (de-DE)
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites
"{66F1F013-008F-4875-B283-5A814B820347}" = Kaspersky Anti-Virus 2011
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{85309D89-7BE9-4094-BB17-24999C6118FC}" = ArcSoft PhotoStudio 5.5
"{90120000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2007
"{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2007
"{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2007
"{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007
"{90120000-001F-0410-0000-0000000FF1CE}_HOMESTUDENTR_{322296D4-1EAE-4030-9FBC-D2787EB25FA2}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-0020-0407-0000-0000000FF1CE}" = Compatibility Pack für 2007 Office System
"{90120000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2007
"{90120000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2007
"{90120000-006E-0407-0000-0000000FF1CE}_HOMESTUDENTR_{26454C26-D259-4543-AA60-3189E09C5F76}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2007
"{90120000-00A1-0407-0000-0000000FF1CE}_HOMESTUDENTR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{95120000-00AF-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (German)
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9D61D81-41E9-F5BC-56E4-275F05CE02FB}" = ATI Catalyst Install Manager
"{AAF4238F-7C29-451D-9925-C753271A5728}" = Microsoft Visual C++ Run Time  Lib Setup
"{AC76BA86-7AD7-1031-7B44-A82000000003}" = Adobe Reader 8.2.6 - Deutsch
"{AED2DD42-9853-407E-A6BC-8A1D6B715909}" = Windows Live Messenger
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA 3D Vision Treiber 260.99
"{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Systemsteuerung 260.99
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Grafiktreiber 260.99
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX-Systemsoftware 9.10.0514
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX
"{C1E693A4-B1D5-4DCD-B68D-2087835B7184}" = ScanSoft OmniPage SE 4.0
"{CAFA57E8-8927-4912-AFCF-B0AA3837E989}" = Windows Live Essentials
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D2041A37-5FEC-49F0-AE5C-3F2FFDFAA4F4}" = Windows Live Call
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{E2883E8F-472F-4fb0-9522-AC9BF37916A7}" = Adobe Download Manager
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F750C986-5310-3A5A-95F8-4EC71C8AC01C}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Akamai" = Akamai NetSession Interface
"BitTorrent" = BitTorrent
"BittorrentBar_DE Toolbar" = BittorrentBar_DE Toolbar
"Canon MP600 Benutzerregistrierung" = Canon MP600 Benutzerregistrierung
"CCleaner" = CCleaner
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"conduitEngine" = Conduit Engine
"Dr. Hardware 2011_is1" = Dr. Hardware 2011 11.0d
"EASEUS Partition Master Home Edition_is1" = EASEUS Partition Master 7.0.1 Home Edition
"Easy-PhotoPrint" = Canon Utilities Easy-PhotoPrint
"FileZilla Client" = FileZilla Client 3.2.7.1
"Google Desktop" = Google Desktop
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"InstallWIX_{66F1F013-008F-4875-B283-5A814B820347}" = Kaspersky Anti-Virus 2011
"MediaNavigation.CDLabelPrint" = CD-LabelPrint
"Microsoft .NET Framework 1.1  (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 Language Pack SP1 - deu" = Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3)
"MP Navigator 3.0" = Canon MP Navigator 3.0
"NVIDIA Drivers" = NVIDIA Drivers
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"RocketDock_is1" = RocketDock 1.3.5
"SystemRequirementsLab" = System Requirements Lab
"TuneUp Utilities 2011" = TuneUp Utilities 2011
"UseNeXT_is1" = UseNeXT
"VLC media player" = VLC media player 1.1.5
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR
"XviD4PSP60" = XviD4PSP 6.0
 
[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]
 
[HKEY_USERS\S-1-5-21-3205815240-3286382296-1311132070-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
"QUICKMEDIACONVERTER" = QMC
 
[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]
 
[HKEY_USERS\S-1-5-21-3205815240-3286382296-1311132070-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Opera 11.01.1190" = Opera 11.01
 
[color=#E56717]========== Last 10 Event Log Errors ==========[/color]
 
[ Application Events ]
Error - 21.08.2010 11:49:42 | Computer Name = Majeto-PC | Source = Application Hang | ID = 1002
Description = Programm firefox.exe, Version 1.9.2.3743 arbeitet nicht mehr mit Windows
 zusammen und wurde beendet. Überprüfen Sie den Problemverlauf im Applet "Lösungen
 für Probleme" in der Systemsteuerung, um nach weiteren Informationen über das Problem
 zu suchen.  Prozess-ID: 10cc  Anfangszeit: 01cb414817b1cb4f  Zeitpunkt der Beendigung:
 10
 
Error - 22.08.2010 04:37:54 | Computer Name = Majeto-PC | Source = Application Hang | ID = 1002
Description = Programm firefox.exe, Version 1.9.2.3743 arbeitet nicht mehr mit Windows
 zusammen und wurde beendet. Überprüfen Sie den Problemverlauf im Applet "Lösungen
 für Probleme" in der Systemsteuerung, um nach weiteren Informationen über das Problem
 zu suchen.  Prozess-ID: f78  Anfangszeit: 01cb41d4fa327462  Zeitpunkt der Beendigung:
 11
 
Error - 27.08.2010 05:32:02 | Computer Name = Majeto-PC | Source = SideBySide | ID = 16842811
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files\Metin2_Germany\Yang\EasyMetin2_de_\Update.exe".
 Fehler in Manifest- oder Richtliniendatei "C:\Program Files\Metin2_Germany\Yang\EasyMetin2_de_\Update.exe"
 in Zeile 0.  Ungültige XML-Syntax.
 
Error - 27.08.2010 06:05:55 | Computer Name = Majeto-PC | Source = Application Error | ID = 1000
Description = Fehlerhafte Anwendung metin2client.bin, Version 0.0.0.0, Zeitstempel
 0x4c120c20, fehlerhaftes Modul Adapter.dll, Version 1.0.0.1, Zeitstempel 0x4c3d1edf,
 Ausnahmecode 0x40000015, Fehleroffset 0x000a8a40,  Prozess-ID 0x1264, Anwendungsstartzeit
 01cb45cabb2db38c.
 
Error - 28.08.2010 07:59:39 | Computer Name = Majeto-PC | Source = SideBySide | ID = 16842811
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files\Metin2_Germany\Yang\EasyMetin2_de_\Update.exe".
 Fehler in Manifest- oder Richtliniendatei "C:\Program Files\Metin2_Germany\Yang\EasyMetin2_de_\Update.exe"
 in Zeile 0.  Ungültige XML-Syntax.
 
Error - 28.08.2010 08:00:36 | Computer Name = Majeto-PC | Source = Application Hang | ID = 1002
Description = Programm iexplore.exe, Version 8.0.6001.18943 arbeitet nicht mehr 
mit Windows zusammen und wurde beendet. Überprüfen Sie den Problemverlauf im Applet
 "Lösungen für Probleme" in der Systemsteuerung, um nach weiteren Informationen 
über das Problem zu suchen.  Prozess-ID: 87c  Anfangszeit: 01cb46a82193a209  Zeitpunkt
 der Beendigung: 0
 
Error - 28.08.2010 08:32:30 | Computer Name = Majeto-PC | Source = Application Hang | ID = 1002
Description = Programm iexplore.exe, Version 8.0.6001.18943 arbeitet nicht mehr 
mit Windows zusammen und wurde beendet. Überprüfen Sie den Problemverlauf im Applet
 "Lösungen für Probleme" in der Systemsteuerung, um nach weiteren Informationen 
über das Problem zu suchen.  Prozess-ID: 1d28  Anfangszeit: 01cb46a8a057d7a9  Zeitpunkt
 der Beendigung: 0
 
Error - 29.08.2010 04:18:49 | Computer Name = Majeto-PC | Source = Application Hang | ID = 1002
Description = Programm iexplore.exe, Version 8.0.6001.18943 arbeitet nicht mehr 
mit Windows zusammen und wurde beendet. Überprüfen Sie den Problemverlauf im Applet
 "Lösungen für Probleme" in der Systemsteuerung, um nach weiteren Informationen 
über das Problem zu suchen.  Prozess-ID: 514  Anfangszeit: 01cb474efe81b51a  Zeitpunkt
 der Beendigung: 0
 
Error - 31.08.2010 09:04:52 | Computer Name = Majeto-PC | Source = Application Error | ID = 1000
Description = Fehlerhafte Anwendung iexplore.exe, Version 8.0.6001.18943, Zeitstempel
 0x4c25813d, fehlerhaftes Modul unknown, Version 0.0.0.0, Zeitstempel 0x00000000,
 Ausnahmecode 0xc0000005, Fehleroffset 0xc033f28b,  Prozess-ID 0x19b0, Anwendungsstartzeit
 01cb49096decd53e.
 
Error - 31.08.2010 09:24:14 | Computer Name = Majeto-PC | Source = SideBySide | ID = 16842811
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files\Metin2_Germany\Yang\EasyMetin2_de_\Update.exe".
 Fehler in Manifest- oder Richtliniendatei "C:\Program Files\Metin2_Germany\Yang\EasyMetin2_de_\Update.exe"
 in Zeile 0.  Ungültige XML-Syntax.
 
[ System Events ]
Error - 24.03.2011 08:10:27 | Computer Name = Majeto-PC | Source = DCOM | ID = 10010
Description = 
 
Error - 24.03.2011 08:37:58 | Computer Name = Majeto-PC | Source = DCOM | ID = 10016
Description = 
 
Error - 25.03.2011 12:37:47 | Computer Name = Majeto-PC | Source = volsnap | ID = 393236
Description = Die Schattenkopien von Volume "C:" wurden aufgrund von einem fehlgeschlagenen
 Rechenvorgang bezüglich verfügbarem Speicher abgebrochen.
 
Error - 26.03.2011 05:54:28 | Computer Name = Majeto-PC | Source = Microsoft Antimalware | ID = 3002
Description = 
 
Error - 26.03.2011 08:19:08 | Computer Name = Majeto-PC | Source = DCOM | ID = 10016
Description = 
 
Error - 26.03.2011 10:40:31 | Computer Name = Majeto-PC | Source = DCOM | ID = 10016
Description = 
 
Error - 27.03.2011 04:16:04 | Computer Name = Majeto-PC | Source = DCOM | ID = 10016
Description = 
 
Error - 27.03.2011 08:47:00 | Computer Name = Majeto-PC | Source = DCOM | ID = 10016
Description = 
 
Error - 29.03.2011 05:32:41 | Computer Name = Majeto-PC | Source = DCOM | ID = 10016
Description = 
 
Error - 30.03.2011 11:40:31 | Computer Name = Majeto-PC | Source = Service Control Manager | ID = 7011
Description = 
 
 
< End of report >
XbluesheepX is offline  
Old 03/30/2011, 19:24   #7
 
Diablo_'s Avatar
 
elite*gold: 5
Join Date: Sep 2010
Posts: 9,927
Received Thanks: 4,387
Guten Abend,

ich bin noch nicht fertig mit dem Auswerten aber du kannst diese Dateien schonmal auf hochladen.

Code:
C:\Windows\System32\pngewhqf.dll
Code:
C:\Windows\lame.exe
MfG Diablo_

/Edit: Was ist diese "mc.exe"?
Diablo_ is offline  
Thanks
1 User
Old 03/30/2011, 19:31   #8
 
XbluesheepX's Avatar
 
elite*gold: 8
Join Date: Sep 2010
Posts: 1,037
Received Thanks: 475
Zum Ersten:

Code:
 Antivirus	Version	Last update	Result
AhnLab-V3	2011.03.26.00	2011.03.25	-
AntiVir	7.11.5.79	2011.03.25	-
Antiy-AVL	2.0.3.7	2011.03.26	-
Avast	4.8.1351.0	2011.03.26	-
Avast5	5.0.677.0	2011.03.26	-
AVG	10.0.0.1190	2011.03.26	-
BitDefender	7.2	2011.03.26	-
CAT-QuickHeal	11.00	2011.03.26	-
ClamAV	0.96.4.0	2011.03.26	-
Commtouch	5.2.11.5	2011.03.24	-
Comodo	8111	2011.03.26	-
DrWeb	5.0.2.03300	2011.03.26	-
Emsisoft	5.1.0.4	2011.03.26	-
eSafe	7.0.17.0	2011.03.24	-
eTrust-Vet	36.1.8236	2011.03.25	-
F-Prot	4.6.2.117	2011.03.26	-
F-Secure	9.0.16440.0	2011.03.23	-
Fortinet	4.2.254.0	2011.03.26	-
GData	21	2011.03.26	-
Ikarus	T3.1.1.97.0	2011.03.26	-
Jiangmin	13.0.900	2011.03.26	-
K7AntiVirus	9.94.4219	2011.03.26	-
Kaspersky	7.0.0.125	2011.03.26	-
McAfee	5.400.0.1158	2011.03.26	-
McAfee-GW-Edition	2010.1C	2011.03.26	-
Microsoft	1.6702	2011.03.26	-
NOD32	5987	2011.03.26	-
nProtect	2011-02-10.01	2011.02.15	-
Panda	10.0.3.5	2011.03.26	-
PCTools	7.0.3.5	2011.03.26	-
Prevx	3.0	2011.03.30	-
Rising	23.50.05.05	2011.03.26	-
Sophos	4.64.0	2011.03.26	-
SUPERAntiSpyware	4.40.0.1006	2011.03.26	-
Symantec	20101.3.0.103	2011.03.26	-
TheHacker	6.7.0.1.157	2011.03.26	-
TrendMicro	9.200.0.1012	2011.03.26	-
TrendMicro-HouseCall	9.200.0.1012	2011.03.26	-
VBA32	3.12.14.3	2011.03.25	-
VIPRE	8825	2011.03.26	-
ViRobot	2011.3.26.4378	2011.03.26	-
VirusBuster	13.6.270.0	2011.03.25	-
MD5: e084447b22accd45314e1fb0e5e89d47
SHA1: 0c9e724a12a8262d6858bf5a36daca1fbd829a19
SHA256: 0770aab5be6ec76e3ac65f799ebea6a7e59fa63e0518bc5d6ea59f3d55b3fbbd
File size: 598016 bytes
Scan date: 2011-03-30 17:23:49 (UTC)
Also nix!

Mc.exe ist noch von meinen Metin2 Jahren übriggeblieben denke ich ... hatte ewig viele Ordner vopn Metin ... kanns ja auch lösche oder scannen ;D

Zu der lame.exe:

Code:
Antivirus	Version	Last Update	Result
AhnLab-V3	2011.03.30.01	2011.03.30	-
AntiVir	7.11.5.119	2011.03.30	-
Antiy-AVL	2.0.3.7	2011.03.30	-
Avast	4.8.1351.0	2011.03.30	-
Avast5	5.0.677.0	2011.03.30	-
AVG	10.0.0.1190	2011.03.29	-
BitDefender	7.2	2011.03.30	-
CAT-QuickHeal	11.00	2011.03.30	-
ClamAV	0.96.4.0	2011.03.30	-
Commtouch	5.2.11.5	2011.03.24	-
Comodo	8148	2011.03.29	-
DrWeb	5.0.2.03300	2011.03.30	-
Emsisoft	5.1.0.4	2011.03.30	-
eSafe	7.0.17.0	2011.03.30	-
eTrust-Vet	36.1.8242	2011.03.29	-
F-Prot	4.6.2.117	2011.03.29	-
F-Secure	9.0.16440.0	2011.03.23	-
Fortinet	4.2.254.0	2011.03.30	-
GData	22	2011.03.30	-
Ikarus	T3.1.1.97.0	2011.03.30	-
Jiangmin	13.0.900	2011.03.29	-
K7AntiVirus	9.94.4241	2011.03.29	-
Kaspersky	7.0.0.125	2011.03.30	-
McAfee	5.400.0.1158	2011.03.30	-
McAfee-GW-Edition	2010.1C	2011.03.30	-
Microsoft	1.6702	2011.03.30	-
NOD32	5998	2011.03.30	-
Norman	6.07.03	2011.03.29	-
nProtect	2011-02-10.01	2011.02.15	-
Panda	10.0.3.5	2011.03.29	-
PCTools	7.0.3.5	2011.03.30	-
Prevx	3.0	2011.03.30	-
Rising	23.51.02.03	2011.03.30	-
Sophos	4.64.0	2011.03.30	-
SUPERAntiSpyware	4.40.0.1006	2011.03.30	-
Symantec	20101.3.0.103	2011.03.30	-
TheHacker	6.7.0.1.161	2011.03.30	-
TrendMicro	9.200.0.1012	2011.03.30	-
TrendMicro-HouseCall	9.200.0.1012	2011.03.30	-
VBA32	3.12.14.3	2011.03.30	-
VIPRE	8864	2011.03.30	-
ViRobot	2011.3.30.4383	2011.03.30	-
VirusBuster	13.6.276.0	2011.03.29	-
Ebenfalls nixxx
XbluesheepX is offline  
Reply

Tags
reinigen, rückmeldung, system


Similar Threads Similar Threads
[Request] tool, das Diablofenster schließt, wenn "Keine Rückmeldung"
02/06/2011 - Diablo 2 Programming - 7 Replies
Hi :D Wie der Titel schon sagt suche ich ein Tool, welches das Diablofenster schließt, wenn es sich aufhängt ("Keine Rückmeldung"), das passiert ja manchmal, dann zeigt d2nt immer please wait... (seconds) an... es muss nur geschlosse werden, sodass d2nt einen restart macht. ich offer dafür 500fg. grüße, PornoDin edit: oder meint ihr das reicht schon: case 25: // Lobby - Please Wait
D2NT: "Keine Rückmeldung"
12/31/2010 - Diablo 2 - 20 Replies
Ich mache mal ein eigenes Thema auf, da offensichtlich viele User das Problem haben und es sich über mehrere Botvarianten zieht: Man kommt zu seinen Bots und das Diablofenster des Leaders (bei mir ist es immer der Leader) zeigt den windowstypischen Befehl "Keine Rückmeldung" an. Im Manager kann man sehen, dass der Bot immer wieder 10 Sekunden runterzählt, keine Ahnung warum. Statt also weiter Games aufzumachen, macht der Leader gar nichts und auch die anderen Bots können somit keine neuen...
Windows Vista "Netzwerkadapter nicht installiert oder konfiguriert"
10/25/2010 - Technical Support - 3 Replies
Hallo ich kann meinen windows vista pc mit keinem wlan netzwerk verbinden. Bei der windows problemlösung kommt dann "Auf diesem computer sind keine Drathlosnetzwerkadapter installiert und konfiguriert.:confused: Was soll ich tun???



All times are GMT +2. The time now is 23:57.


Powered by vBulletin®
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Support | Contact Us | FAQ | Advertising | Privacy Policy | Terms of Service | Abuse
Copyright ©2024 elitepvpers All Rights Reserved.