1. Liebe Forumsgemeinde,

    aufgrund der Bestimmungen, die sich aus der DSGVO ergeben, müssten umfangreiche Anpassungen am Forum vorgenommen werden, die sich für uns nicht wirtschaftlich abbilden lassen. Daher haben wir uns entschlossen, das Forum in seiner aktuellen Form zu archivieren und online bereit zu stellen, jedoch keine Neuanmeldungen oder neuen Kommentare mehr zuzulassen. So ist sichergestellt, dass das gesammelte Wissen nicht verloren geht, und wir die Seite dennoch DSGVO-konform zur Verfügung stellen können.
    Dies wird in den nächsten Tagen umgesetzt.

    Ich danke allen, die sich in den letzten Jahren für Hilfesuchende und auch für das Forum selbst engagiert haben. Ich bin weiterhin für euch erreichbar unter tti(bei)pcwelt.de.
    Dismiss Notice

Das Laden folgender Boot und Systemtreiber ist Fehlgeschlagen

Discussion in 'Windows 7' started by rkandreas, Dec 3, 2014.

Thread Status:
Not open for further replies.
  1. rkandreas

    rkandreas Kbyte

    Hallo beim Booten aus dem Ruhestand ist heute bei meinem Sohn folgender fehler aufgetreten

    Das Laden folgender Boot und Systemtreiber ist fehlgeschlagen ID 7026


    Der Fehler Lautet phhalxrp

    Ich habe schon gegoogelt aber unter dem fehler phhalxrp finde ich nix.

    Kann da bitte jemand helfen.
     
  2. deoroller

    deoroller Wandelndes Forum

    Um welche Windows Version und Service Pack handelt es sich?

    Kopiere mal die Ereignismeldung in die Zwischenablage und füge sie hier ein.
     
  3. rkandreas

    rkandreas Kbyte

    Window 7 Service Pack 1 64 bit

    die Ereigniss Meldung kann ich erst morgen einfügen.

    Gute Nacht
     
  4. rkandreas

    rkandreas Kbyte

    Hallo nun habe ich mal von der Ereignisanzeige meines Sohn´s Computers hier eingefügt. Er hat eine Toshiba A 350-107







    System
    - Provider
    [ Name] Service Control Manager
    [ Guid] {555908d1-a6d7-4695-8e1e-26931d2012f4}
    [ EventSourceName] Service Control Manager

    - EventID 7026
    [ Qualifiers] 49152

    Version 0

    Level 2

    Task 0

    Opcode 0

    Keywords 0x8080000000000000

    - TimeCreated
    [ SystemTime] 2014-11-26T15:49:02.848686900Z

    EventRecordID 875781

    Correlation

    - Execution
    [ ProcessID] 704
    [ ThreadID] 708

    Channel System

    Computer Andreas-PC

    Security

    - EventData
    param1 phhalxrp
     
  5. deoroller

    deoroller Wandelndes Forum

  6. rkandreas

    rkandreas Kbyte

    Hatte ich schon getan habe da nichts gefunden mit einen Ausrufezeichen bin Ratlos.
     
  7. deoroller

    deoroller Wandelndes Forum

    Dann kannst du mal mit Autoruns gucken, ob dort "phhalxrp" gefunden wird.
     
  8. rkandreas

    rkandreas Kbyte

    Leider ist dieses Programm nur auf Englisch und ich bin dieser Sprache nicht mächtig.
     
  9. deoroller

    deoroller Wandelndes Forum

  10. rkandreas

    rkandreas Kbyte

    So ich hab das jetzt mal gemacht mit OTL hier ist der Ligifile bitte schreibt mir wenn was nicht in Ordnung ist bzw. wenn ich was ändern machen soll.


    OTL Extras logfile created on: 10.12.2014 12:09:10 - Run 1
    OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Andreas\Downloads
    64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
    Internet Explorer (Version = 9.11.9600.17501)
    Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy

    4,00 Gb Total Physical Memory | 1,71 Gb Available Physical Memory | 42,88% Memory free
    8,00 Gb Paging File | 5,57 Gb Available in Paging File | 69,67% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
    Drive C: | 149,04 Gb Total Space | 78,70 Gb Free Space | 52,80% Space Free | Partition Type: NTFS
    Drive D: | 147,58 Gb Total Space | 103,76 Gb Free Space | 70,31% Space Free | Partition Type: NTFS

    Computer Name: ANDREAS-PC | User Name: Andreas | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    ========== Extra Registry (SafeList) ==========


    ========== File Associations ==========

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
    .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
    .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

    [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
    .html [@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)

    ========== Shell Spawning ==========

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    exefile [open] -- "%1" %*
    helpfile [open] -- Reg Error: Key error.
    htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
    InternetShortcut [open] -- "C:\Windows\system32\rundll32.exe" "C:\Windows\system32\ieframe.dll",OpenURL %l (Microsoft Corporation)
    InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~4\Office12\ONENOTE.EXE "%L"
    Directory [Unstopcp] -- "C:\Program Files (x86)\Roadkil.Net\UnstopCpy_5_2_Win2K_UP.exe" "%1" * (Roadkil.Net)
    Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [explore] -- Reg Error: Value error.
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
    exefile [open] -- "%1" %*
    helpfile [open] -- Reg Error: Key error.
    htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~4\Office12\ONENOTE.EXE "%L"
    Directory [Unstopcp] -- "C:\Program Files (x86)\Roadkil.Net\UnstopCpy_5_2_Win2K_UP.exe" "%1" * (Roadkil.Net)
    Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [explore] -- Reg Error: Value error.
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

    ========== Security Center Settings ==========

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "cval" = 1

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
    "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
    "AntiVirusOverride" = 0
    "AntiSpywareOverride" = 0
    "FirewallOverride" = 0

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

    ========== Firewall Settings ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1
    "DoNotAllowExceptions" = 0

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1
    "DoNotAllowExceptions" = 0

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1
    "DoNotAllowExceptions" = 0

    ========== Authorized Applications List ==========


    ========== Vista Active Open Ports Exception List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{043308E3-3370-4DD4-A4C3-80267935518C}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{310484F9-B77E-4640-A217-7FF985CD6116}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
    "{3971CA5F-C9A1-423F-AB67-93970E2B0146}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
    "{44588839-0668-47F7-B289-76749A59D912}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
    "{45FC10C8-B979-434E-86D3-BD166BBD52AB}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{51CF09FA-880F-4CEC-9CD4-328B383A15B4}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |
    "{60DC70B3-EA29-437B-A6C8-B6AD049F0047}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
    "{6BAD3029-9E57-4055-856B-4F3AE9684D5E}" = rport=427 | protocol=17 | dir=in | svc=hpslpsvc | app=c:\windows\system32\svchost.exe |
    "{6E3B249C-3402-4B64-A7C1-3D19449C2BC3}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
    "{8DFC647B-153D-4A97-A7DA-8455F203CBF3}" = lport=2869 | protocol=6 | dir=in | app=system |
    "{9C8C3C2B-DB44-4847-A584-712BE2ED1FBC}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{B10A7352-8778-4342-8E21-F35197CF7732}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{C5DB00FE-6309-4C8D-AF40-A38E2DD2C0EE}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
    "{C9C6161E-39F4-4358-A211-39F59F9ED56D}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
    "{D81767BD-0918-453B-A204-7FDFBAA11694}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |

    ========== Vista Active Application Exception List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{041D17F9-AE1A-4E10-8F71-B8E90AC521C3}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{0CB86AD8-3289-499D-98E0-974653043E21}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
    "{13AB0628-DD55-445A-94C8-563CD4B199F6}" = protocol=6 | dir=in | app=c:\program files (x86)\terratec\terratec home cinema\cinergydvr.exe |
    "{14BFB295-9A1F-45B4-99A0-89C2985C04D0}" = protocol=6 | dir=in | app=c:\program files (x86)\terratec\terratec home cinema\cinergydvr.exe |
    "{1692062C-7626-4E3B-99D6-B5D682BFF094}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{18500243-9F15-4854-A7C3-4F758B11012D}" = protocol=17 | dir=in | app=c:\program files (x86)\terratec\terratec home cinema\cinergydvr.exe |
    "{1E611FFF-246C-4FFB-B539-EAED67512EE4}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{1F399360-C717-441E-B123-978EB4C39446}" = protocol=6 | dir=in | app=c:\program files (x86)\terratec\terratec home cinema\insttool.exe |
    "{24D492B7-62FF-4B57-92C6-008AFFDCA858}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
    "{2B22F5CE-6FC8-4FC8-B61A-84DB2221ECCC}" = protocol=17 | dir=in | app=c:\program files (x86)\terratec\terratec home cinema\cinergydvr.exe |
    "{36C7FF08-5598-40A1-AEEB-F8B07D15175A}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe |
    "{38A1B11F-3D5A-4929-B196-12B2DB6C9BB6}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
    "{3DC0F416-02D8-4E4A-B11A-9557272CE597}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{3E064F81-AECF-461E-B0AE-8D0FDE766022}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
    "{3FD594CC-ACF3-46AE-A757-646AAB03CDF3}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
    "{46991CEA-05C8-4F2A-8E0E-70EC855D752A}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
    "{59EC5126-8F90-4270-9DD8-36343849AFC6}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
    "{5FB61D36-E833-4C38-A819-A2DDC21F775D}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{649C0752-61A8-4C6A-9A9B-838A92F3F36E}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{652B94D2-A523-4D77-A1C9-8F47AF00833F}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{678444DE-0D5E-432F-9DB3-A59D4B00CADA}" = protocol=17 | dir=in | app=c:\program files (x86)\terratec\terratec home cinema\insttool.exe |
    "{6B6C763D-86A0-467E-B5E5-259E33232D8E}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{6EB67CBA-BBAE-4B26-B81E-81E0E909E35D}" = protocol=6 | dir=in | app=c:\users\andreas\appdata\local\microsoft\skydrive\skydrive.exe |
    "{718A61EB-713B-48BB-ACD4-8905D9EA2414}" = protocol=6 | dir=in | app=c:\program files (x86)\terratec\terratec home cinema\insttool.exe |
    "{7ACADF3F-5D19-487C-8F6D-BE4159DD9551}" = protocol=17 | dir=in | app=c:\program files (x86)\terratec\terratec home cinema\insttool.exe |
    "{8A0FDB0F-CD05-43DC-8304-14C76BC7125A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
    "{900BAC15-D15F-497A-83AA-8B4147A08FB5}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
    "{986F114F-109B-4BF1-B1B1-5B24ACD2C5F4}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
    "{99C5431C-0BF7-4271-B660-82E14D0D68E4}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
    "{A69BB565-DF1B-42A4-A1F7-0CE3EB176CE9}" = protocol=17 | dir=in | app=c:\users\andreas\appdata\local\microsoft\skydrive\skydrive.exe |
    "{B4AC98DA-244F-4C7C-8705-ECC112B01EF8}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
    "{BCE01AEE-9849-4E76-BA55-1BFFE8652EE4}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{BCE26649-F189-404A-AB04-ED4BCF991650}" = protocol=6 | dir=in | app=c:\program files (x86)\terratec\terratec home cinema\tvtvsetup\tvtv_wizard.exe |
    "{BD81B7A5-C6FE-45EF-8DCB-A8AD82C6CAEE}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{BEDDE7C6-ECEE-4DEF-9D26-2FFFF0B56D9E}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
    "{BFD9DB06-F399-44C1-8DF5-5048F137836A}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{C25805F3-4159-4C06-A490-AD317EA78F30}" = protocol=6 | dir=in | app=c:\program files (x86)\terratec\terratec home cinema\tvtvsetup\tvtv_wizard.exe |
    "{C61BB48C-4F50-48B4-9741-0DAAE776D7F9}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{CFBE6E49-F8A9-4C6D-9E7F-F8B281EA0212}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe |
    "{D2227B57-5A13-4C26-AD96-6CA8471A2125}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe |
    "{D6CDCD23-8EA5-4D5C-A751-3F0F8EE28E3E}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{D7A6D8E3-0DF7-4E0B-91B9-59686DB6BE08}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe |
    "{E35A8861-8B42-4F93-9316-081B1B4143FD}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
    "{E528C932-8557-46A5-83B5-6D32BE674B38}" = protocol=17 | dir=in | app=c:\program files (x86)\terratec\terratec home cinema\tvtvsetup\tvtv_wizard.exe |
    "{F1E571A8-96FE-4FA9-84AF-DAA06D4D0509}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{F6AF8434-B23F-4443-BAAF-EDF9A0EE0E37}" = protocol=17 | dir=in | app=c:\program files (x86)\terratec\terratec home cinema\tvtvsetup\tvtv_wizard.exe |
    "{F93EF050-1876-490C-8E31-4C023BE1069C}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{FA9AF375-4D6F-4B67-9615-2F05FED3561B}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
    "TCP Query User{0D3466FC-ADBA-4D65-ABE1-7F408C487A1F}C:\program files (x86)\terratec\terratec home cinema\versioncheck\versioncheck.exe" = protocol=6 | dir=in | app=c:\program files (x86)\terratec\terratec home cinema\versioncheck\versioncheck.exe |
    "TCP Query User{7A7C4528-739B-47A9-821A-87562F0027DC}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=6 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
    "TCP Query User{8823F8BE-08AC-42C3-A499-E780BE01A414}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
    "TCP Query User{91283493-13B4-4C86-BEF6-D3ADAA8E0409}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
    "TCP Query User{A7DEB7BB-1169-48DA-90C5-1DA870865488}C:\program files (x86)\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\plugin\geplugin.exe |
    "TCP Query User{CC442084-13DC-48E8-B240-650C2D54B314}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=6 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
    "UDP Query User{05B5584D-B2AC-4C3E-96D1-E77309528CD3}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=17 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
    "UDP Query User{07E3E37E-E0C2-4A01-B11E-08B70A8E22B3}C:\program files (x86)\terratec\terratec home cinema\versioncheck\versioncheck.exe" = protocol=17 | dir=in | app=c:\program files (x86)\terratec\terratec home cinema\versioncheck\versioncheck.exe |
    "UDP Query User{27339059-1947-4640-8A29-E8F8EF7A2A6F}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
    "UDP Query User{335AE082-F3E5-49D9-8941-42944724B4A3}C:\program files (x86)\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\plugin\geplugin.exe |
    "UDP Query User{4A8B252F-45D1-42F9-9D39-7F67FC0896D7}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
    "UDP Query User{4C21E874-511C-4094-98F8-DFD506851CF1}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=17 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |

    ========== HKEY_LOCAL_MACHINE Uninstall List ==========

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{01517A48-9217-431B-821C-F89F53918E3D}" = PdfGrabber 7.0 (64bit)
    "{02382870-19C7-3ACD-BBAE-F6E3760947DC}" = Microsoft .NET Framework 4 Extended DEU Language Pack
    "{034B6AC8-DCF6-585B-2AFD-3FF0D4A559BB}" = AMD Accelerated Video Transcoding
    "{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
    "{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
    "{0E3DAF3D-FF69-345A-A99E-1FED304CA083}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
    "{26A24AE4-039D-4CA4-87B4-2F86417055FF}" = Java 7 Update 55 (64-bit)
    "{26A24AE4-039D-4CA4-87B4-2F86418005FF}" = Java 8 Update 5 (64-bit)
    "{30921AC4-6875-F7DF-B48B-2BB68C000BB6}" = AMD Media Foundation Decoders
    "{37FCE154-7F59-74F0-3A35-BF503CEB230B}" = AMD Catalyst Install Manager
    "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
    "{4FFA2088-8317-3B14-93CD-4C699DB37843}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729
    "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
    "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
    "{6C676266-91E4-DC71-E661-13494AC29A3E}" = ccc-utility64
    "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
    "{72EF03F5-0507-4861-9A44-D99FD4C41418}" = Paint.NET v3.5.11
    "{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
    "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
    "{8338783A-0968-3B85-AFC7-BAAE0A63DC50}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570
    "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
    "{8C775E70-A791-4DA8-BCC3-6AB7136F4484}" = Visual Studio 2012 x64 Redistributables
    "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
    "{90120000-002A-0407-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (German) 2007
    "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
    "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
    "{999DB5B3-EE44-8837-2B51-4AF44CD1FD22}" = AMD Drag and Drop Transcoding
    "{9ED333F8-3E6C-4A38-BAFA-728454121CDA}" = PDF-XChange Viewer
    "{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = ALPS Touch Pad Driver
    "{a9264802-8a7a-40fe-a135-5c6d204aed7a}.sdb" = Internet Explorer (Enable DEP)
    "{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}" = Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175
    "{AD059E96-7165-455C-BBA4-C3608795B38D}" = Fresco Logic USB3.0 Host Controller
    "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
    "{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
    "{B8BA155B-1E75-405F-9CB4-8A99615D09DC}" = iTunes
    "{B8E88489-A304-45F1-9717-242035DE167D}" = PixelPlanet PdfPrinter 6 (64bit)
    "{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}" = PlayReady PC Runtime amd64
    "{CB1032F6-1108-30C7-01C9-C0C132D13BEE}" = AMD Fuel
    "{CB3CA48C-95CB-412B-B7AE-6F2EA8F89907}" = Windows Live Family Safety
    "{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant
    "{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba
    "{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
    "{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
    "{F67FA545-D8E5-4209-86B1-AEE045D1003F}" = TOSHIBA Face Recognition
    "{FF21C3E6-97FD-474F-9518-8DCBE94C2854}" = 64 Bit HP CIO Components Installer
    "4D0A78D60CE7E81C31D46CB92DBA41CCF993C9BD" = Windows-Treiberpaket - Chicony (usbvideo) Image (05/12/2009 6.3.251.0512)
    "CCleaner" = CCleaner
    "CyberGhost VPN 5_is1" = CyberGhost 5
    "EPSON XP-700 Series" = Druckerdeinstallation für EPSON XP-700 Series
    "maxdome - Online Videothek" = maxdome - Online Videothek
    "Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
    "Microsoft .NET Framework 4 Extended DEU Language Pack" = Microsoft .NET Framework 4 Extended DEU Language Pack
    "Ocster Backup" = Ocster Backup Pro
    "SynTPDeinstKey" = Synaptics Pointing Device Driver
    "TAP-Windows" = TAP-Windows 9.9.2
    "TeraCopy_is1" = TeraCopy 2.27
    "WinRAR archiver" = WinRAR 5.01 (64-Bit)
    "ZDFmediathek_is1" = ZDFmediathek Version 2.1.6

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{0099B484-C24C-4D5F-8167-B0F6DF196E72}" = Adobe Shockwave Player 12.0
    "{00F14E5B-E07A-2A1E-6788-580773CE1486}" = CCC Help English
    "{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}" = Windows Live UX Platform
    "{0138F525-6C8A-333F-A105-14AE030B9A54}" = Visual C++ 9.0 CRT (x86) WinSXS MSM
    "{02A312B5-1542-47B6-BFE9-F51358C39E86}" = Epson Easy Photo Print 2
    "{04BE4035-3C8E-4B48-BFB8-1655849C0C8B}" = Windows Live Writer
    "{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
    "{07AAB66E-4718-422D-9218-4AFB3C922A71}" = Photo Gallery
    "{086BADF8-9B1F-4E89-B207-2EDA520972D6}" = Grand Theft Auto San Andreas
    "{0A036215-0A8D-6FBE-7EA3-7AED4F9E162A}" = CCC Help Turkish
    "{0AFB35F6-7D55-45DE-AFD7-7819CD332EC2}" = Windows Live Family Safety
    "{0EDBEB2B-7C8D-42E6-8312-0F84394A3223}" = Windows Media Center Add-in for Silverlight
    "{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1
    "{111EE7DF-FC45-40C7-98A7-753AC46B12FB}" = QuickTime 7
    "{113EBE84-73FA-4C44-8C4D-CAAA3AEE960C}" = COMPUTERBILD Datei-Reparierer
    "{12B3A009-A080-4619-9A2A-C6DB151D8D67}" = TOSHIBA Assist
    "{15A05AAA-37E7-D516-5BE9-C960C2170403}" = CCC Help Czech
    "{172423F9-522A-483A-AD65-03600CE4CA4F}" = Microsoft Works 6-9 Converter
    "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
    "{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
    "{1D420647-DF79-D93E-66E1-6B053F1F9BE0}" = Application Profiles
    "{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}" = Windows Live Photo Common
    "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    "{21E9850E-58C2-FA88-D5AD-B64D253B8F82}" = CCC Help Thai
    "{224A804F-ABB4-4938-96EA-EC65BB699933}" = OfficeRecovery 2010 Essential 10.0.38278.1
    "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
    "{245B4DBC-80B2-48FD-B3DF-C13C37FC6F6C}" = OfficeLiveFiles
    "{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype&#8482; 6.20
    "{25A7270E-1B63-DFD1-ACBC-88852A305398}" = CCC Help Chinese Traditional
    "{28164BD8-81EA-639A-85E9-E659E3EE6DA7}" = Catalyst Control Center InstallProxy
    "{2E69E784-F84A-9A18-7D8E-4EB8504EEE1E}" = CCC Help Danish
    "{362614E4-9ABB-E7A7-CDDC-239AB168060A}" = CCC Help Japanese
    "{37C866E4-AA67-4725-9E95-A39968DD7960}" = Camera Assistant Software for Toshiba
    "{39D0E034-1042-4905-BECB-5502909FCB7C}" = Microsoft Works
    "{3E31400D-274E-4647-916C-2CACC3741799}" = EpsonNet Print
    "{402ED4A1-8F5B-387A-8688-997ABF58B8F2}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
    "{41BF4A3B-D60A-4E92-883F-C88C8C157261}" = Fotogalerie
    "{41C61308-6CFD-4D54-AB6A-7136ED08A18E}" = Windows Live Communications Platform
    "{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
    "{468D22C0-8080-11E2-B86E-B8AC6F98CCE3}" = Google Earth
    "{4745F6F8-09DA-CC39-EC19-0E8D764CF2B7}" = CCC Help Chinese Standard
    "{4FA31DE2-B613-24BB-1738-B655C00B1C9D}" = CCC Help Hungarian
    "{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver
    "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
    "{58771CF6-F212-CC4D-61B1-45CC70B6375C}" = CCC Help Dutch
    "{5D4C60AA-84E6-4E1A-8A68-69970D387BE1}" = TuneUp Utilities Language Pack (de-DE)
    "{5E6F6CF3-BACC-4144-868C-E14622C658F3}" = TOSHIBA Web Camera Application
    "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
    "{63B9BAB5-F36A-4A3B-9E5C-68A7F212BFB9}" = TerraTec Home Cinema
    "{6438EBAC-5305-39A5-A93E-88CDFA6CE947}" = Google Chrome
    "{659CB81C-B54E-4DF1-B618-F35777393A54}" = Windows Live Installer
    "{66233218-CA57-4AB2-BA43-A97AA4635960}" = Windows Live Essentials
    "{6669784C-0C28-415D-A688-6BEDECBF79D8}" = COMPUTERBILD Datei-Reparierer
    "{6C0A6B81-0D00-453F-B220-E1F7931B3C2A}" = LEGO® Star Wars&#8482; III: The Clone Wars&#8482;
    "{6D1221A9-17BF-4EC0-81F2-27D30EC30701}" = Skype Click to Call
    "{6D5CE5F1-CBB0-9ED4-1A1E-91DDCD6225FD}" = CCC Help Italian
    "{6FDDB201-2CA0-42BD-973F-7B2C4A61EA3F}" = Microsoft_VC100_CRT_x86
    "{707210B0-29F1-C550-BA96-6ECDA245CF24}" = CCC Help Spanish
    "{70C91B91-61E8-4D06-86D6-A9DCC291983A}" = Movie Maker
    "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
    "{714E162E-CD4F-4F1B-8302-7F5179409C25}" = Windows Live Writer
    "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
    "{763DEB88-48E6-4648-9CE6-A0FFC6900BEB}" = COMPUTERBILD Problemlöser 2011
    "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
    "{7D095455-D971-4D4C-9EFD-9AF6A6584F3A}" = Bing-Desktop
    "{7EE873AF-46BB-4B5D-BA6F-CFE4B0566E22}" = TuneUp Utilities Language Pack (de-DE)
    "{812B956B-37AB-24B9-4527-78A6D3ECE7F8}" = CCC Help Korean
    "{83293709-B863-0EF6-00DA-B026D486E8B5}" = CCC Help Polish
    "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
    "{846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE}" = HPDiagnosticAlert
    "{8618AE04-1210-3C32-A8C3-45A5E44CD340}" = Google Chrome Frame
    "{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
    "{87DABDEA-47A4-4182-AA7C-2C90DAAE3117}" = Photo Common
    "{88B2ABCF-9C00-47C1-8FC4-369B98845DD7}" = Catalyst Control Center - Branding
    "{88E4B682-219A-2656-44E1-18DF1F57EAE1}" = Catalyst Control Center Graphics Full Existing
    "{896667C8-53F8-47B8-B6B0-B113B10F05BC}" = Epson E-Web Print
    "{8C0CAA7A-3272-4991-A808-2C7559DE3409}" = Win7codecs
    "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
    "{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
    "{8F01524C-0676-4CC1-B4AE-64753C723391}" = Epson Event Manager
    "{90120000-0015-0407-0000-0000000FF1CE}" = Microsoft Office Access MUI (German) 2007
    "{90120000-0015-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2007
    "{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2007
    "{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0019-0407-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (German) 2007
    "{90120000-0019-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-001A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (German) 2007
    "{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2007
    "{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
    "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
    "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
    "{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007
    "{90120000-001F-0410-0000-0000000FF1CE}_ENTERPRISE_{A23BFC95-4A73-410F-9248-4C2B48E38C49}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-001F-0410-0000-0000000FF1CE}_HOMESTUDENTR_{A23BFC95-4A73-410F-9248-4C2B48E38C49}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-0020-0407-0000-0000000FF1CE}" = Compatibility Pack für 2007 Office System
    "{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-002A-0407-1000-0000000FF1CE}_ENTERPRISE_{A6353E8F-5B8D-47CC-8737-DFF032ED3973}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-002A-0407-1000-0000000FF1CE}_HOMESTUDENTR_{A6353E8F-5B8D-47CC-8737-DFF032ED3973}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2007
    "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
    "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0044-0407-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (German) 2007
    "{90120000-0044-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2007
    "{90120000-006E-0407-0000-0000000FF1CE}_ENTERPRISE_{A6353E8F-5B8D-47CC-8737-DFF032ED3973}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-006E-0407-0000-0000000FF1CE}_HOMESTUDENTR_{A6353E8F-5B8D-47CC-8737-DFF032ED3973}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2007
    "{90120000-00A1-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-00A1-0407-0000-0000000FF1CE}_HOMESTUDENTR_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-00B2-0407-0000-0000000FF1CE}" = Microsoft &#8211; Speichern als PDF oder XPS &#8211; Add-In für 2007 Microsoft Office-Programme
    "{90120000-00BA-0407-0000-0000000FF1CE}" = Microsoft Office Groove MUI (German) 2007
    "{90120000-00BA-0407-0000-0000000FF1CE}_ENTERPRISE_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
    "{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
    "{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{911904DE-EBB6-BC8E-D5BD-762B7DB42C46}" = CCC Help Greek
    "{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
    "{9480d4af-12b9-4e56-8034-4031ef6ab39d}" = Avira
    "{95120000-00AF-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (German)
    "{95140000-0081-0407-0000-0000000FF1CE}" = Microsoft Office Outlook Connector
    "{955E4722-1480-4198-A144-65FA5F4446DA}" = Windows Live Writer
    "{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader
    "{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}" = Visual Studio 2012 x86 Redistributables
    "{9903011B-5F1D-A2A1-8078-EE62B3324CCE}" = CCC Help Portuguese
    "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
    "{9A4D182C-35C7-4791-8484-4304EBC9101A}" = Windows 7 Upgrade Advisor
    "{9A7F1628-2126-34A5-852D-2B93328BCF3F}" = CCC Help German
    "{9B5D7FA6-9E73-426E-81C4-2C8FE5ACFBEF}" = Duden Korrektor Standard
    "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    "{9D318C86-AF4C-409F-A6AC-7183FF4CF424}" = Internet-TV für Windows Media Center
    "{A306FD29-7D3A-4287-91AC-9A0180931395}_is1" = Roadkil's Unstoppable Copier Version 5.2
    "{A8D647C8-65AC-409F-B7B2-3C0FEE1A32F2}" = PixiePack Codec Pack
    "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
    "{A951D5DA-4759-4C3B-9C36-C6BF30082A2F}" = Windows Live Writer Resources
    "{A9E5EDA7-2E6C-49E7-924B-A32B89C24A04}" = 1&1 Surf-Stick
    "{AB67580-257C-45FF-B8F4-C8C30682091A}_is1" = SIW 2013 Home Edition
    "{AC76BA86-7AD7-1031-7B44-AB0000000001}" = Adobe Reader XI (11.0.10) - Deutsch
    "{AE6C422B-DADB-D547-411C-E9E56DF03D16}" = CCC Help Russian
    "{B09567CC-E43F-10F1-752D-549AC7FB0C43}" = CCC Help Finnish
    "{B170B91D-E8E3-A6A3-D129-D8E36FEA8A0B}" = CCC Help Norwegian
    "{B23EE11C-66FA-4395-AB02-5F7103DC485C}" = Windows Live Messenger
    "{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}" = Windows Live PIMT Platform
    "{B2D55EB8-32C5-4B43-9006-9E97DECBA178}" = Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser)
    "{B307472F-7BD9-4040-9255-CE6D6A1196A3}" = Software Updater
    "{B8ECD0D3-AE08-4891-B6C7-32F96B75EB6C}" = EPSON Printer Finder
    "{BD96ABD3-D1D4-5513-6C60-11476D6DCFC5}" = Catalyst Control Center Localization All
    "{C39C7876-4D21-8A38-0A42-B5C8858EC6C7}" = CCC Help French
    "{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}" = TuneUp Utilities 2013
    "{C63E7C60-25EB-11D3-8EDA-00A0C911E8E5}" = Microsoft Outlook-Sicherung für Persönliche Ordner
    "{CB6075D9-F912-40AE-BEA6-E590DA24F16B}" = Adobe Photoshop Elements 7.0
    "{CBCFD97D-FE82-43F4-A978-996CACF71E6B}_is1" = UBitMenuDE
    "{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}" = Windows Live SOXE
    "{CE026CFE-73FE-4FED-9D5F-2C8D4DB512B0}" = TuneUp Utilities Language Pack (de-DE)
    "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
    "{D16A31F9-276D-4968-A753-FFEAC56995D0}" = Epson Print CD
    "{D1893000-EA77-493C-8DDD-E262436E959B}" = Windows Live SOXE Definitions
    "{D2763B4E-5BF4-468B-BB00-9B3B121E0FB2}" = Avira
    "{D4236B82-213F-679E-09A2-9AEB5EF4CADC}" = Catalyst Control Center Graphics Previews Common
    "{D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C}" = Epson Connect Printer Setup
    "{DD67BE4B-7E62-4215-AFA3-F123A800A389}" = Movie Maker
    "{DDA3C325-47B2-4730-9672-BF3771C08799}_is1" = XMedia Recode Version 3.1.7.9
    "{ddd1e4b8-371a-43c4-b872-53809cb42e74}" = Box Sync
    "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
    "{E703613B-BDAB-433E-A66A-DE0263E3D35D}" = Windows Live Messenger
    "{E9E34215-82EF-4909-BE2F-F581F0DC9062}" = DirectX for Managed Code Update (Summer 2004)
    "{EBBD4FE6-91DA-C397-6D56-FE85DBF24FCF}" = Catalyst Pro Control Center
    "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
    "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
    "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
    "{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}" = Microsoft Office Live Add-in 1.5
    "{F4811919-F252-4B25-9AB2-8859A85810B5}" = TuneUp Utilities Language Pack (de-DE)
    "{F9000000-0018-0000-0000-074957833700}" = ABBYY FineReader 9.0 Sprint
    "{FC071B45-4A5F-408F-92F8-4D9D693E866F}" = Windows Live UX Platform Language Pack
    "{FCEFDA6B-63CD-BB17-B845-478A42E24D39}" = CCC Help Swedish
    "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
    "1&1 Upload-Manager" = 1&1 Upload-Manager
    "ABBYY FineReader 9.0 Sprint" = ABBYY FineReader 9.0 Sprint
    "Adobe Flash Player ActiveX" = Adobe Flash Player 15 ActiveX
    "Adobe Flash Player Plugin" = Adobe Flash Player 13 Plugin
    "Adobe Photoshop Elements 7" = Adobe Photoshop Elements 7.0
    "Adobe Shockwave Player" = Adobe Shockwave Player 12.0
    "Adobe SVG Viewer" = Adobe SVG Viewer 3.0
    "Ashampoo Burning Studio Elements_is1" = Ashampoo Burning Studio Elements 10.0.9
    "Ashampoo Music Studio 3" = Ashampoo Music Studio 3
    "Avira AntiVir Desktop" = Avira Free Antivirus
    "CD goes MP3 v3.5 Essential3.5" = CD goes MP3 v3.5 Essential
    "Cinergy Hybrid Stick" = Cinergy Hybrid Stick V1.00.08.06a
    "ENTERPRISE" = Microsoft Office Enterprise 2007
    "Epson Connect Guide" = Anleitung für Epson Connect
    "EPSON Scanner" = EPSON Scan
    "EZ Vinyl/Tape Converter by MixMeister_is1" = EZ Vinyl/Tape Converter 7.4 by MixMeister
    "Google Updater" = Google Updater
    "HOMESTUDENTR" = Microsoft Office Home and Student 2007
    "InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
    "InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver
    "InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F}" = TOSHIBA Face Recognition
    "Kernel For PDF Repair_is1" = Kernel For PDF Repair ver 9.11.01
    "Mail Undelete Recovery Toolbox Free_is1" = Mail Undelete Recovery Toolbox Free 1.1
    "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware Version 2.0.2.1012
    "MP3 Repair Tool_is1" = MP3 Repair Tool v1.5.2
    "NirSoft BlueScreenView" = NirSoft BlueScreenView
    "PanoramaStudio2SE" = PanoramaStudio 2.0 SE (deinstallieren)
    "Passbild-Generator_is1" = Bewerbungsfoto-/Passbild-Generator v3.3b
    "Revo Uninstaller" = Revo Uninstaller 1.95
    "Siedler3Deinstall" = Siedler3
    "TeamViewer 9" = TeamViewer 9
    "TuneUp Utilities 2013" = TuneUp Utilities 2013
    "WinLiveSuite" = Windows Live Essentials
    "XP-700 Series Netg" = Epson Netzwerkhandbuch XP-700 Series
    "XP-700 Series Useg" = Epson Benutzerhandbuch XP-700 Series

    ========== HKEY_CURRENT_USER Uninstall List ==========

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "OneDriveSetup.exe" = Microsoft OneDrive

    ========== Last 20 Event Log Errors ==========

    [ Application Events ]
    Error - 07.11.2014 15:23:26 | Computer Name = Andreas-PC | Source = Application Hang | ID = 1002
    Description = Programm IEXPLORE.EXE, Version 11.0.9600.17344 kann nicht mehr unter
    Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf
    in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem
    zu suchen. Prozess-ID: 2fe4 Startzeit: 01cffabf6ec3960f Endzeit: 80 Anwendungspfad:
    C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Berichts-ID:

    Error - 10.11.2014 12:06:11 | Computer Name = Andreas-PC | Source = MsiInstaller | ID = 1023
    Description =

    Error - 10.11.2014 13:45:15 | Computer Name = Andreas-PC | Source = Application Error | ID = 1000
    Description = Name der fehlerhaften Anwendung: LEGOCloneWars.exe, Version: 1.0.0.0,
    Zeitstempel: 0x4d5abe1c Name des fehlerhaften Moduls: LEGOCloneWars.exe, Version:
    1.0.0.0, Zeitstempel: 0x4d5abe1c Ausnahmecode: 0xc0000005 Fehleroffset: 0x00355ec0
    ID
    des fehlerhaften Prozesses: 0x894 Startzeit der fehlerhaften Anwendung: 0x01cffd0b512abd8b
    Pfad
    der fehlerhaften Anwendung: C:\Program Files (x86)\LucasArts\LEGO Clone Wars\LEGOCloneWars.exe
    Pfad
    des fehlerhaften Moduls: C:\Program Files (x86)\LucasArts\LEGO Clone Wars\LEGOCloneWars.exe
    Berichtskennung:
    535d3087-6901-11e4-8d5e-b268ae8472dc

    Error - 10.11.2014 14:12:19 | Computer Name = Andreas-PC | Source = Application Error | ID = 1000
    Description = Name der fehlerhaften Anwendung: StartUpManager.exe, Version: 13.0.4000.245,
    Zeitstempel: 0x52e76b2f Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18409,
    Zeitstempel: 0x53159a86 Ausnahmecode: 0x0eedfade Fehleroffset: 0x0000c42d ID des fehlerhaften
    Prozesses: 0xcbc Startzeit der fehlerhaften Anwendung: 0x01cffd11be61595e Pfad der
    fehlerhaften Anwendung: C:\Program Files (x86)\TuneUp Utilities 2013\StartUpManager.exe
    Pfad
    des fehlerhaften Moduls: C:\Windows\syswow64\KERNELBASE.dll Berichtskennung: 1bae05aa-6905-11e4-9f20-cde432d538df

    Error - 10.11.2014 14:25:27 | Computer Name = Andreas-PC | Source = MsiInstaller | ID = 1023
    Description =

    Error - 17.11.2014 14:09:15 | Computer Name = Andreas-PC | Source = Application Error | ID = 1000
    Description = Name der fehlerhaften Anwendung: StartUpManager.exe, Version: 13.0.4000.245,
    Zeitstempel: 0x52e76b2f Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18409,
    Zeitstempel: 0x53159a86 Ausnahmecode: 0x0eedfade Fehleroffset: 0x0000c42d ID des fehlerhaften
    Prozesses: 0x19d8 Startzeit der fehlerhaften Anwendung: 0x01d002917d096f4a Pfad der
    fehlerhaften Anwendung: C:\Program Files (x86)\TuneUp Utilities 2013\StartUpManager.exe
    Pfad
    des fehlerhaften Moduls: C:\Windows\syswow64\KERNELBASE.dll Berichtskennung: d6b49811-6e84-11e4-9e6a-83464c4baec2

    Error - 17.11.2014 14:11:19 | Computer Name = Andreas-PC | Source = Application Error | ID = 1000
    Description = Name der fehlerhaften Anwendung: StartUpManager.exe, Version: 13.0.4000.245,
    Zeitstempel: 0x52e76b2f Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18409,
    Zeitstempel: 0x53159a86 Ausnahmecode: 0x0eedfade Fehleroffset: 0x0000c42d ID des fehlerhaften
    Prozesses: 0x1304 Startzeit der fehlerhaften Anwendung: 0x01d002919db3e6ba Pfad der
    fehlerhaften Anwendung: C:\Program Files (x86)\TuneUp Utilities 2013\StartUpManager.exe
    Pfad
    des fehlerhaften Moduls: C:\Windows\syswow64\KERNELBASE.dll Berichtskennung: 209ec83f-6e85-11e4-9e6a-83464c4baec2

    Error - 25.11.2014 10:49:53 | Computer Name = Andreas-PC | Source = Application Error | ID = 1000
    Description = Name der fehlerhaften Anwendung: mmc.exe, Version: 6.1.7600.16385,
    Zeitstempel: 0x4a5bc808 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18409,
    Zeitstempel: 0x5315a05a Ausnahmecode: 0x00000000 Fehleroffset: 0x000000000000940d
    ID
    des fehlerhaften Prozesses: 0xe4c Startzeit der fehlerhaften Anwendung: 0x01d008bedef72dbd
    Pfad
    der fehlerhaften Anwendung: C:\Windows\system32\mmc.exe Pfad des fehlerhaften Moduls:
    C:\Windows\system32\KERNELBASE.dll Berichtskennung: 4fe92003-74b2-11e4-9bb6-c14165b63cd8

    Error - 06.12.2014 12:27:45 | Computer Name = Andreas-PC | Source = Application Error | ID = 1000
    Description = Name der fehlerhaften Anwendung: TuneUpSystemStatusCheck.exe, Version:
    13.0.4000.245, Zeitstempel: 0x52e76b0c Name des fehlerhaften Moduls: ole32.dll,
    Version: 6.1.7601.17514, Zeitstempel: 0x4ce7b96f Ausnahmecode: 0xc0000005 Fehleroffset:
    0x0003bc24 ID des fehlerhaften Prozesses: 0x700 Startzeit der fehlerhaften Anwendung:
    0x01d01171615b6222 Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\TuneUp
    Utilities 2013\TuneUpSystemStatusCheck.exe Pfad des fehlerhaften Moduls: C:\Windows\syswow64\ole32.dll
    Berichtskennung:
    ce8c6eef-7d64-11e4-a624-e4b579e093c5

    Error - 09.12.2014 13:01:54 | Computer Name = Andreas-PC | Source = MsiInstaller | ID = 1023
    Description =

    [ Media Center Events ]
    Error - 18.11.2014 13:02:23 | Computer Name = Andreas-PC | Source = MCUpdate | ID = 0
    Description = 18:02:06 - EpgListings konnte nicht abgerufen werden (Fehler: Die
    Verbindung mit dem Remoteserver kann nicht hergestellt werden.)

    Error - 04.12.2014 05:40:01 | Computer Name = Andreas-PC | Source = MCUpdate | ID = 0
    Description = 10:39:44 - EpgListings konnte nicht abgerufen werden (Fehler: Die
    Verbindung mit dem Remoteserver kann nicht hergestellt werden.)

    Error - 04.12.2014 12:40:52 | Computer Name = Andreas-PC | Source = MCUpdate | ID = 0
    Description = 17:39:40 - EpgListings konnte nicht abgerufen werden (Fehler: Die
    Verbindung mit dem Remoteserver kann nicht hergestellt werden.)

    Error - 06.12.2014 12:07:53 | Computer Name = Andreas-PC | Source = MCUpdate | ID = 0
    Description = 17:07:52 - Broadband konnte nicht abgerufen werden (Fehler: Die Verbindung
    mit dem Remoteserver kann nicht hergestellt werden.)

    Error - 06.12.2014 12:08:39 | Computer Name = Andreas-PC | Source = MCUpdate | ID = 0
    Description = 17:07:56 - EpgListings konnte nicht abgerufen werden (Fehler: Die
    Verbindung mit dem Remoteserver kann nicht hergestellt werden.)

    Error - 06.12.2014 13:08:56 | Computer Name = Andreas-PC | Source = MCUpdate | ID = 0
    Description = 18:08:55 - Broadband konnte nicht abgerufen werden (Fehler: Die Verbindung
    mit dem Remoteserver kann nicht hergestellt werden.)

    Error - 08.12.2014 12:15:13 | Computer Name = Andreas-PC | Source = MCUpdate | ID = 0
    Description = 17:15:12 - Directory konnte nicht abgerufen werden (Fehler: Die Verbindung
    mit dem Remoteserver kann nicht hergestellt werden.)

    Error - 09.12.2014 13:14:22 | Computer Name = Andreas-PC | Source = MCUpdate | ID = 0
    Description = 18:13:57 - MCESpotlight konnte nicht abgerufen werden (Fehler: Die
    Verbindung mit dem Remoteserver kann nicht hergestellt werden.)

    Error - 10.12.2014 06:08:23 | Computer Name = Andreas-PC | Source = MCUpdate | ID = 0
    Description = 11:08:23 - Directory konnte nicht abgerufen werden (Fehler: Die Verbindung
    mit dem Remoteserver kann nicht hergestellt werden.)

    Error - 10.12.2014 07:17:12 | Computer Name = Andreas-PC | Source = MCUpdate | ID = 0
    Description = 12:17:11 - Directory konnte nicht abgerufen werden (Fehler: Die Verbindung
    mit dem Remoteserver kann nicht hergestellt werden.)

    [ OSession Events ]
    Error - 18.04.2012 02:48:47 | Computer Name = Andreas-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
    12.0.6612.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 57
    seconds with 0 seconds of active time. This session ended with a crash.

    Error - 18.04.2012 02:52:32 | Computer Name = Andreas-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
    12.0.6612.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 58
    seconds with 0 seconds of active time. This session ended with a crash.

    Error - 20.04.2012 04:05:05 | Computer Name = Andreas-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
    12.0.6612.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2442
    seconds with 900 seconds of active time. This session ended with a crash.

    Error - 18.05.2012 16:05:11 | Computer Name = Andreas-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
    12.0.6607.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 456
    seconds with 300 seconds of active time. This session ended with a crash.

    Error - 04.09.2012 09:35:32 | Computer Name = Andreas-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
    12.0.6661.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 15
    seconds with 0 seconds of active time. This session ended with a crash.

    Error - 09.12.2012 05:56:51 | Computer Name = Andreas-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
    12.0.6665.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 2964
    seconds with 180 seconds of active time. This session ended with a crash.

    Error - 22.12.2012 07:57:17 | Computer Name = Andreas-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
    12.0.6665.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 6
    seconds with 0 seconds of active time. This session ended with a crash.

    Error - 07.02.2013 08:55:29 | Computer Name = Andreas-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
    12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 53
    seconds with 0 seconds of active time. This session ended with a crash.

    Error - 07.02.2013 08:56:06 | Computer Name = Andreas-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
    12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 20
    seconds with 0 seconds of active time. This session ended with a crash.

    Error - 25.08.2013 13:36:00 | Computer Name = Andreas-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
    12.0.6680.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 51
    seconds with 0 seconds of active time. This session ended with a crash.

    [ System Events ]
    Error - 10.12.2014 06:23:57 | Computer Name = Andreas-PC | Source = atapi | ID = 262155
    Description = Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort0 gefunden.

    Error - 10.12.2014 06:23:57 | Computer Name = Andreas-PC | Source = atapi | ID = 262155
    Description = Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort0 gefunden.

    Error - 10.12.2014 06:23:57 | Computer Name = Andreas-PC | Source = atapi | ID = 262155
    Description = Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort0 gefunden.

    Error - 10.12.2014 06:23:57 | Computer Name = Andreas-PC | Source = atapi | ID = 262155
    Description = Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort0 gefunden.

    Error - 10.12.2014 06:23:57 | Computer Name = Andreas-PC | Source = atapi | ID = 262155
    Description = Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort0 gefunden.

    Error - 10.12.2014 06:23:57 | Computer Name = Andreas-PC | Source = atapi | ID = 262155
    Description = Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort0 gefunden.

    Error - 10.12.2014 06:24:36 | Computer Name = Andreas-PC | Source = volsnap | ID = 393230
    Description = Die Schattenkopien von Volume "C:" wurden aufgrund eines E/A-Fehlers
    auf Volume "C:" abgebrochen.

    Error - 10.12.2014 06:28:26 | Computer Name = Andreas-PC | Source = Service Control Manager | ID = 7009
    Description = Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst
    Windows Search erreicht.

    Error - 10.12.2014 06:28:26 | Computer Name = Andreas-PC | Source = Service Control Manager | ID = 7000
    Description = Der Dienst "Windows Search" wurde aufgrund folgenden Fehlers nicht
    gestartet: %%1053

    Error - 10.12.2014 06:56:36 | Computer Name = Andreas-PC | Source = Service Control Manager | ID = 7026
    Description = Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen:
    phhalxrp


    < End of report >
     
  11. deoroller

    deoroller Wandelndes Forum

    Ich habe nicht umsonst gepostet, dass die Datei im Anhang hoch geladen werden soll.
    Mir ist es eigentlich egal, wenn jemand den kompletten Inhalt seines PC so öffentlich preis gibt, aber es nimmt auch viel Platz ein und die Übersicht leidet und das kann auch nicht mehr nach einer Stunde selbst entfernt werden.

    phhalxrp ist nur dort zu finden. Es kann sich deshalb um einen versteckten Treiber oder Rootkit handeln.
     
    Last edited: Dec 10, 2014
  12. rkandreas

    rkandreas Kbyte

    Hallo aber mit meinen Daten kann doch keiner hier Missbrauch treiben oder?

    mache jetzt einen Rootkitscann.
     
  13. deoroller

    deoroller Wandelndes Forum

    Wenn da Seriennummern, Registrierungsschlüssel, IPs und andere persönliche Identifikationsmerkmale enthalten sind, kann man damit schon Schabernack treiben.
     
  14. rkandreas

    rkandreas Kbyte

    Was genau kann man da treiben, bzw. sind welche Registrierungsschlüssel enthalten wie kann man das Löschen.
     
  15. mike_kilo

    mike_kilo Ganzes Gigabyte

    Google hat die Page vermutlich schon längst via Webcrawler gescannt. Es ist zu spät zum Löschen, deshalb sollte man solch lange Logs grundsätzlich als ANHANG! posten. Die kann auch der Beitragsschreiber selbst nachträglich löschen im Kontrollzentrum> Verschiedenes> Anhänge....

    BTW:
    Das längste PCW-F-Log in 2014.
     
    Last edited: Dec 10, 2014
Thread Status:
Not open for further replies.

Share This Page