morning! ive scanned my laptop with all the three softwares.
here's the result!
1.result from minitoolbox
MiniToolBox by Farbar Version: 25-06-2012
Ran by Nadia (administrator) on 04-07-2012 at 02:52:27
Microsoft Windows 7 Professional Service Pack 1 (X86)
Boot Mode: Normal
***************************************************************************
========================= Flush DNS: ===================================
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
========================= IE Proxy Settings: ==============================
Proxy is not enabled.
No Proxy Server is set.
"Reset IE Proxy Settings": IE Proxy Settings were reset.
========================= Hosts content: =================================
========================= IP Configuration: ================================
Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20) = Local Area Connection (Connected)
Intel® WiFi Link 5100 AGN = Wireless Network Connection (Media disconnected)
Microsoft Virtual WiFi Miniport Adapter = Wireless Network Connection 2 (Media disconnected)
# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4
reset
set global defaultcurhoplimit=64 icmpredirects=enabled taskoffload=enabled
popd
# End of IPv4 configuration
Windows IP Configuration
Host Name . . . . . . . . . . . . : Nadia-PC
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
Wireless LAN adapter Wireless Network Connection 2:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapter
Physical Address. . . . . . . . . : 00-22-FA-C0-FE-75
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Ethernet adapter Local Area Connection:
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20)
Physical Address. . . . . . . . . : 00-23-5A-BC-42-14
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::249a:abd9:5fa5:84c3%11(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.23.151(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Mittwoch, 4. Juli 2012 02:48:38
Lease Expires . . . . . . . . . . : Mittwoch, 4. Juli 2012 02:58:38
Default Gateway . . . . . . . . . : 192.168.23.254
DHCP Server . . . . . . . . . . . : 192.168.23.254
DHCPv6 IAID . . . . . . . . . . . : 268444506
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-14-DE-E2-B1-00-23-5A-46-68-78
DNS Servers . . . . . . . . . . . : 192.168.23.254
Primary WINS Server . . . . . . . : 192.168.23.254
NetBIOS over Tcpip. . . . . . . . : Enabled
Wireless LAN adapter Wireless Network Connection:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . : hs-offenburg.de
Description . . . . . . . . . . . : Intel® WiFi Link 5100 AGN
Physical Address. . . . . . . . . : 00-22-FA-C0-FE-74
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Tunnel adapter isatap.{F894D83F-187A-4C0C-B61F-966567E8A50A}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Tunnel adapter Local Area Connection* 11:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Tunnel adapter isatap.HPINTERN:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Tunnel adapter isatap.wh-greifengasse:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #3
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Tunnel adapter isatap.{645BCA1F-1BB1-44FC-A05A-CA73CE5EB915}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #4
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Server: UnKnown
Address: 192.168.23.254
Name: google.com
Addresses: 2a00:1450:4001:c01::64
209.85.148.100
209.85.148.101
209.85.148.102
209.85.148.113
209.85.148.138
209.85.148.139
Pinging google.com [209.85.148.139] with 32 bytes of data:
Reply from 209.85.148.139: bytes=32 time=14ms TTL=55
Reply from 209.85.148.139: bytes=32 time=13ms TTL=55
Ping statistics for 209.85.148.139:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 13ms, Maximum = 14ms, Average = 13ms
Server: UnKnown
Address: 192.168.23.254
Name: yahoo.com
Addresses: 72.30.38.140
98.139.183.24
209.191.122.70
Pinging yahoo.com [209.191.122.70] with 32 bytes of data:
Reply from 209.191.122.70: bytes=32 time=184ms TTL=52
Reply from 209.191.122.70: bytes=32 time=179ms TTL=52
Ping statistics for 209.191.122.70:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 179ms, Maximum = 184ms, Average = 181ms
Server: UnKnown
Address: 192.168.23.254
Name: bleepingcomputer.com
Address: 208.43.87.2
Pinging bleepingcomputer.com [208.43.87.2] with 32 bytes of data:
Reply from 208.43.87.2: Destination host unreachable.
Reply from 208.43.87.2: Destination host unreachable.
Ping statistics for 208.43.87.2:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=64
Reply from 127.0.0.1: bytes=32 time<1ms TTL=64
Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
15...00 22 fa c0 fe 75 ......Microsoft Virtual WiFi Miniport Adapter
11...00 23 5a bc 42 14 ......Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20)
10...00 22 fa c0 fe 74 ......Intel® WiFi Link 5100 AGN
1...........................Software Loopback Interface 1
16...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
12...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
24...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #2
22...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #3
23...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #4
===========================================================================
IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.23.254 192.168.23.151 20
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
192.168.23.0 255.255.255.0 On-link 192.168.23.151 276
192.168.23.151 255.255.255.255 On-link 192.168.23.151 276
192.168.23.255 255.255.255.255 On-link 192.168.23.151 276
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 192.168.23.151 276
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 192.168.23.151 276
===========================================================================
Persistent Routes:
None
IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
1 306 ::1/128 On-link
11 276 fe80::/64 On-link
11 276 fe80::249a:abd9:5fa5:84c3/128
On-link
1 306 ff00::/8 On-link
11 276 ff00::/8 On-link
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================
Catalog5 01 C:\Windows\system32\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\system32\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\system32\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\system32\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\system32\wshbth.dll [36352] (Microsoft Corporation)
Catalog5 06 C:\Windows\System32\mswsock.dll [232448] (Microsoft Corporation)
Catalog5 07 C:\Windows\System32\winrnr.dll [20992] (Microsoft Corporation)
Catalog9 01 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 14 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 15 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 16 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 17 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 18 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 19 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 20 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 21 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 22 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 23 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 24 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 25 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 26 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 27 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 28 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 29 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 30 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 31 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 32 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 33 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 34 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 35 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 36 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 37 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 38 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 39 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 40 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 41 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
========================= Event log errors: ===============================
Application errors:
==================
Error: (06/17/2012 09:41:48 PM) (Source: Application Error) (User: )
Description: Faulting application name: WINWORD.EXE, version: 12.0.6661.5000, time stamp: 0x4f7cd9da
Faulting module name: wwlib.dll, version: 12.0.6661.5000, time stamp: 0x4f7cdad7
Exception code: 0xc00000fd
Fault offset: 0x00007166
Faulting process id: 0xd20
Faulting application start time: 0xWINWORD.EXE0
Faulting application path: WINWORD.EXE1
Faulting module path: WINWORD.EXE2
Report Id: WINWORD.EXE3
Error: (06/17/2012 03:33:45 PM) (Source: Application Hang) (User: )
Description: The program YahooMessenger.exe version 10.0.0.1270 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
Process ID: 1628
Start Time: 01cd4c89d7132da9
Termination Time: 160
Application Path: C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
Report Id: 0c485a2f-b881-11e1-986d-00235abc4214
Error: (06/15/2012 11:45:47 PM) (Source: VSS) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.
Operation:
Gathering Writer Data
Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {051252a5-7bef-47f3-a286-e366375365a2}
Error: (06/10/2012 09:41:50 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Failed extract of third-party root list from auto update cab at: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.
Error: (06/10/2012 09:41:50 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Failed extract of third-party root list from auto update cab at: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.
Error: (06/10/2012 09:41:30 PM) (Source: Application Error) (User: )
Description: Faulting application name: AvastSvc.exe, version: 6.0.1289.0, time stamp: 0x4e6684a2
Faulting module name: aswScan.dll, version: 7.0.1441.0, time stamp: 0x4fd2240b
Exception code: 0xc0000005
Fault offset: 0x00007a93
Faulting process id: 0x5bc
Faulting application start time: 0xAvastSvc.exe0
Faulting application path: AvastSvc.exe1
Faulting module path: AvastSvc.exe2
Report Id: AvastSvc.exe3
Error: (05/28/2012 10:38:06 PM) (Source: Application Error) (User: )
Description: Faulting application name: Explorer.EXE, version: 6.1.7601.17567, time stamp: 0x4d6727a7
Faulting module name: msi.dll, version: 5.0.7601.17514, time stamp: 0x4ce7b902
Exception code: 0xc0000005
Fault offset: 0x00029936
Faulting process id: 0xd9c
Faulting application start time: 0xExplorer.EXE0
Faulting application path: Explorer.EXE1
Faulting module path: Explorer.EXE2
Report Id: Explorer.EXE3
Error: (05/26/2012 02:10:06 AM) (Source: Application Hang) (User: )
Description: The program LowRateVoip.exe version 4.8.645.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
Process ID: 4d8
Start Time: 01cd3ad3ace654f5
Termination Time: 67
Application Path: C:\Program Files\LowRateVoip.com\LowRateVoip\LowRateVoip.exe
Report Id: 22a3163b-a6c7-11e1-959b-00235abc4214
Error: (05/26/2012 02:08:19 AM) (Source: Application Error) (User: )
Description: Faulting application name: LowRateVoip.exe, version: 4.8.645.0, time stamp: 0x4e4557ee
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0xac0fc000
Faulting process id: 0x130c
Faulting application start time: 0xLowRateVoip.exe0
Faulting application path: LowRateVoip.exe1
Faulting module path: LowRateVoip.exe2
Report Id: LowRateVoip.exe3
Error: (05/26/2012 00:42:10 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Failed extract of third-party root list from auto update cab at: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.
System errors:
=============
Error: (07/04/2012 02:50:39 AM) (Source: WMPNetworkSvc) (User: )
Description: 0x80070422
Error: (07/04/2012 02:50:39 AM) (Source: WMPNetworkSvc) (User: )
Description: 0x80070422
Error: (07/04/2012 02:47:52 AM) (Source: volmgr) (User: )
Description: Crash dump initialization failed!
Error: (07/04/2012 02:47:43 AM) (Source: volmgr) (User: )
Description: Crash dump initialization failed!
Error: (07/04/2012 01:36:21 AM) (Source: Service Control Manager) (User: )
Description: The Hotspot Shield Monitoring Service service terminated unexpectedly. It has done this 1 time(s).
Error: (07/04/2012 01:36:20 AM) (Source: Service Control Manager) (User: )
Description: The Hotspot Shield Routing Service service terminated unexpectedly. It has done this 1 time(s).
Error: (07/04/2012 00:49:20 AM) (Source: Service Control Manager) (User: )
Description: The Hotspot Shield Service service depends the following service: taphss. This service might not be installed.
Error: (07/04/2012 00:49:19 AM) (Source: Service Control Manager) (User: )
Description: The Hotspot Shield Service service depends the following service: taphss. This service might not be installed.
Error: (07/04/2012 00:49:17 AM) (Source: Service Control Manager) (User: )
Description: The Hotspot Shield Service service depends the following service: taphss. This service might not be installed.
Error: (07/04/2012 00:49:16 AM) (Source: Service Control Manager) (User: )
Description: The Hotspot Shield Service service depends the following service: taphss. This service might not be installed.
Microsoft Office Sessions:
=========================
Error: (06/17/2012 09:41:47 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 5908 seconds with 5100 seconds of active time. This session ended with a crash.
Error: (04/10/2012 07:19:57 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6612.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 27038 seconds with 12960 seconds of active time. This session ended with a crash.
Error: (10/11/2011 03:34:17 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 8120 seconds with 6000 seconds of active time. This session ended with a crash.
Error: (10/06/2011 09:36:57 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 29638 seconds with 10860 seconds of active time. This session ended with a crash.
Error: (07/18/2011 06:07:22 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6557.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 3456 seconds with 0 seconds of active time. This session ended with a crash.
=========================== Installed Programs ============================
Update for Microsoft Office 2007 (KB2508958)
Adobe Flash Player 10 ActiveX (Version: 10.1.102.64)
Adobe Reader X (10.1.3) - Deutsch (Version: 10.1.3)
Advanced SystemCare 3 (Version: 3.3.1)
avast! Free Antivirus (Version: 6.0.1289.0)
BlackBerry App World Browser Plugin (Version: 3.0.3.2)
BlackBerry Desktop Software 6.0 (Version: 6.0.0.40)
BlackBerry Device Software Updater (Version: 6.0.1.37)
Canon Easy-PhotoPrint EX
Canon iP2600 series Benutzerregistrierung
Canon My Printer
Canon Utilities Solution Menu
DivX Setup (Version: 2.6.1.3)
ENE CIR Receiver Driver (Version: 2.7.3.519)
GOM Player (Version: 2.1.28.5039)
Google Chrome (Version: 20.0.1132.47)
HP MediaSmart Webcam (Version: 4.1.3130)
HP Wireless Assistant (Version: 3.50.12.1)
IDT Audio (Version: 1.0.6225.0)
Java Auto Updater (Version: 2.1.6.0)
Java 7 Update 5 (Version: 7.0.50)
JavaFX 2.1.1 (Version: 2.1.1)
LightScribe System Software (Version: 1.18.15.1)
LowRateVoip (Version: 4.07 build 629)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office Enterprise 2007 (Version: 12.0.6612.1000)
Microsoft Office Excel MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003)
Microsoft Office Groove MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office InfoPath MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office OneNote MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office Outlook MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office PowerPoint MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (Italian) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proofing (German) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office Word MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Silverlight (Version: 4.1.10329.0)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
NVIDIA Drivers (Version: 1.10)
PVSonyDll (Version: 1.00.0001)
Realtek USB 2.0 Card Reader (Version: 6.1.7100.30094)
Salaat Time 2.1 (Version: 2.1)
Skype™ 5.5 (Version: 5.5.124)
Smart Defrag 2 (Version: Beta 1.21)
Solid Edge V20 (Version: 20.00.1202)
Synaptics Pointing Device Driver (Version: 15.0.17.4)
Uninstall 1.0.0.1
Update für Microsoft Office Excel 2007 Help (KB963678)
Update für Microsoft Office Outlook 2007 Help (KB963677)
Update für Microsoft Office Powerpoint 2007 Help (KB963669)
Update für Microsoft Office Word 2007 Help (KB963665)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2687267) 32-Bit Edition
VC80CRTRedist - 8.0.50727.6195 (Version: 1.2.0)
VoipBuster (Version: 4.07 build 629)
Yahoo! Messenger
Yahoo! Toolbar
========================= Memory info: ===================================
Percentage of memory in use: 37%
Total physical RAM: 2044.96 MB
Available physical RAM: 1281.19 MB
Total Pagefile: 4089.92 MB
Available Pagefile: 3156.45 MB
Total Virtual: 2047.88 MB
Available Virtual: 1946.82 MB
========================= Partitions: =====================================
1 Drive c: () (Fixed) (Total:227.4 GB) (Free:170.19 GB) NTFS
2 Drive d: (Nadia's Stuff) (Fixed) (Total:58.9 GB) (Free:38.56 GB) NTFS
3 Drive e: (RECOVERY) (Fixed) (Total:11.78 GB) (Free:1.85 GB) NTFS
========================= Users: ========================================
User accounts for \\NADIA-PC
Administrator Guest Nadia
**** End of log ****
2. result from malwarebytes
Malwarebytes Anti-Malware (Trial) 1.61.0.1400
www.malwarebytes.org
Database version: v2012.07.04.01
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
Nadia :: NADIA-PC [administrator]
Protection: Disabled
04.07.2012 02:57:46
mbam-log-2012-07-04 (02-57-46).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 199478
Time elapsed: 7 minute(s), 9 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
(end)
3. result from ESETscan
C:\$Recycle.Bin\S-1-5-21-990703012-3677673030-544339573-1000\$R4JR1T3.exe a variant of Win32/InstallCore.D application cleaned by deleting - quarantined
C:\$Recycle.Bin\S-1-5-21-990703012-3677673030-544339573-1000\$R9TZ0AQ.exe a variant of Win32/InstallCore.D application cleaned by deleting - quarantined
C:\Users\Nadia\AppData\Local\Temp\ICReinstall\cnet2_ComboFix_exe.exe a variant of Win32/InstallCore.D application cleaned by deleting - quarantined
C:\Users\Nadia\AppData\Local\Temp\ICReinstall\cnet2_rt60ln90_exe.exe a variant of Win32/InstallCore.D application cleaned by deleting - quarantined
C:\Users\Nadia\AppData\Local\Temp\is1598539481\MyBabylonTB.exe Win32/Toolbar.Babylon application cleaned by deleting - quarantined
C:\Users\Nadia\Desktop\cnet2_rt60ln90_exe.exe a variant of Win32/InstallCore.D application cleaned by deleting - quarantined